logic88 utworzono 31 lipca 2010 utworzono 31 lipca 2010 Witam, zwracam się z prośbą o pomoc, bo sam nie jestem w stanie już nic zrobić. - menedżer zadań i edycja rejestru zablokowane, - przy starcie systemu automatycznie wyłącza się zapora windows, - na dysku C: mnożą się skróty do nieistniejących plików - po uruchomieniu windowsa pojawia się informacja o plikach nieznanego pochodzenia gotowych do zapisania na płycie DVD Skanowałem system Malwarebytes' Anti-Malware, oto log [log] Malwarebytes' Anti-Malware 1.46 www.malwarebytes.org Wersja bazy: 4370 Windows 6.0.6002 Service Pack 2 (Safe Mode) Internet Explorer 8.0.6001.18928 2010-07-31 13:40:55 mbam-log-2010-07-31 (13-40-55).txt Typ skanowania: Pełne skanowanie (C:\|) Przeskanowano obiektów: 305282 Upłynęło: 1 godzin(y), 20 minut(y), 8 sekund(y) Zainfekowanych procesów w pamięci: 0 Zainfekowanych modułów w pamięci: 0 Zainfekowanych kluczy rejestru: 0 Zainfekowanych wartości rejestru: 0 Zainfekowane informacje rejestru systemowego: 5 Zainfekowanych folderów: 0 Zainfekowanych plików: 4 Zainfekowanych procesów w pamięci: (Nie znaleziono zagrożeń) Zainfekowanych modułów w pamięci: (Nie znaleziono zagrożeń) Zainfekowanych kluczy rejestru: (Nie znaleziono zagrożeń) Zainfekowanych wartości rejestru: (Nie znaleziono zagrożeń) Zainfekowane informacje rejestru systemowego: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\AntiVirusDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> No action taken. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\FirewallDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> No action taken. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\UpdatesDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> No action taken. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\DisableRegistryTools (Hijack.Regedit) -> Bad: (1) Good: (0) -> No action taken. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\DisableTaskMgr (Hijack.TaskManager) -> Bad: (1) Good: (0) -> No action taken. Zainfekowanych folderów: (Nie znaleziono zagrożeń) Zainfekowanych plików: C:\autorun.inf (Malware.Packer.Gen) -> No action taken. C:\wrrh.pif (Malware.Packer.Gen) -> No action taken. C:\Users\Michał\AppData\Local\Temp\wingjsviv.exe (Trojan.Pramro) -> No action taken. C:\Windows\Temp\ecvlq.exe (Trojan.Pramro) -> No action taken. [/log] i logi z OTL [log] OTL logfile created on: 2010-07-31 16:34:34 - Run 1 OTL by OldTimer - Version 3.2.9.1 Folder = C:\Users\Michał\Desktop Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation Internet Explorer (Version = 8.0.6001.18928) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 2,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 63,00% Memory free 5,00 Gb Paging File | 4,00 Gb Available in Paging File | 79,00% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 81,46 Gb Total Space | 40,74 Gb Free Space | 50,02% Space Free | Partition Type: NTFS Drive D: | 6,93 Gb Total Space | 2,39 Gb Free Space | 34,49% Space Free | Partition Type: NTFS E: Drive not present or media not loaded F: Drive not present or media not loaded Drive G: | 60,66 Gb Total Space | 5,55 Gb Free Space | 9,14% Space Free | Partition Type: NTFS H: Drive not present or media not loaded I: Drive not present or media not loaded Computer Name: MICHAŁ-PC Current User Name: Michał Logged in as Administrator. Current Boot Mode: Normal Scan Mode: All users Company Name Whitelist: On Skip Microsoft Files: On File Age = 60 Days Output = Standard [color=#E56717]========== Processes (All) ==========[/color] PRC - [2010-07-31 16:22:16 | 000,035,840 | ---- | M] () -- C:\Windows\Temp\w87f0e.exe PRC - [2010-07-31 16:22:13 | 000,035,840 | ---- | M] () -- C:\Users\MICHA~1\AppData\Local\Temp\w86f45.exe PRC - [2010-07-31 16:17:56 | 000,011,776 | ---- | M] () -- C:\Windows\Temp\winqalplt.exe PRC - [2010-07-31 16:17:53 | 000,030,208 | ---- | M] () -- C:\Users\MICHA~1\AppData\Local\Temp\wintiwr.exe PRC - [2010-07-31 16:17:47 | 000,030,208 | ---- | M] () -- C:\Windows\Temp\winshhrqa.exe PRC - [2010-07-31 16:17:38 | 000,011,776 | ---- | M] () -- C:\Users\MICHA~1\AppData\Local\Temp\winoopl.exe PRC - [2010-07-31 13:36:43 | 000,574,976 | ---- | M] (OldTimer Tools) -- C:\Users\Michał\Desktop\OTL.exe PRC - [2010-05-04 08:00:35 | 000,638,232 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Internet Explorer\iexplore.exe PRC - [2009-11-20 21:33:00 | 000,122,984 | ---- | M] (NVIDIA Corporation) -- C:\Windows\System32\nvvsvc.exe PRC - [2009-08-18 11:29:22 | 001,529,728 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVC.EXE PRC - [2009-08-18 11:29:22 | 000,183,152 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVCM.EXE PRC - [2009-07-23 12:04:42 | 000,498,744 | ---- | M] (Hewlett-Packard) -- C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe PRC - [2009-06-15 14:48:49 | 000,009,728 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\lsass.exe PRC - [2009-05-19 12:36:18 | 000,240,512 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe PRC - [2009-04-11 08:28:15 | 000,247,296 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\wbem\WmiPrvSE.exe PRC - [2009-04-11 08:28:13 | 000,314,368 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\winlogon.exe PRC - [2009-04-11 08:28:08 | 000,037,888 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\wbem\unsecapp.exe PRC - [2009-04-11 08:28:07 | 000,169,984 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\taskeng.exe PRC - [2009-04-11 08:28:05 | 000,127,488 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\spoolsv.exe PRC - [2009-04-11 08:28:04 | 000,064,000 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\smss.exe PRC - [2009-04-11 08:27:59 | 000,441,344 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\SearchIndexer.exe PRC - [2009-04-11 08:27:59 | 000,279,552 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\services.exe PRC - [2009-04-11 08:27:49 | 003,408,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\SLsvc.exe PRC - [2009-04-11 08:27:45 | 000,073,216 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\msiexec.exe PRC - [2009-04-11 08:27:36 | 002,926,592 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe PRC - [2009-04-11 08:27:33 | 000,081,920 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\dwm.exe PRC - [2009-02-23 15:58:52 | 000,996,616 | ---- | M] (Raxco Software, Inc.) -- G:\Programy\defragmentator dysku\PDAgent.exe PRC - [2009-02-23 15:58:52 | 000,140,552 | ---- | M] (Raxco Software, Inc.) -- G:\Programy\defragmentator dysku\PDAgentS1.exe PRC - [2008-06-20 17:37:44 | 000,103,720 | ---- | M] (Synaptics, Inc.) -- C:\Program Files\Synaptics\SynTP\SynTPHelper.exe PRC - [2008-06-20 17:37:34 | 001,385,768 | ---- | M] (Synaptics, Inc.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe PRC - [2008-06-09 11:21:58 | 000,151,552 | ---- | M] (Hewlett-Packard Company) -- C:\Program Files\Common Files\LightScribe\LSSrvc.exe PRC - [2008-05-01 17:25:56 | 000,165,192 | ---- | M] (Hewlett-Packard Development Company, L.P.) -- C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe PRC - [2008-04-11 10:04:54 | 000,685,360 | ---- | M] () -- C:\Program Files\Hewlett-Packard\Shared\HpqToaster.exe PRC - [2008-03-09 17:34:41 | 000,066,872 | ---- | M] () -- C:\Windows\System32\PnkBstrA.exe PRC - [2008-01-19 09:38:38 | 001,008,184 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Windows Defender\MSASCui.exe PRC - [2008-01-19 09:33:39 | 000,074,240 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\wlanext.exe PRC - [2008-01-19 09:33:37 | 000,096,768 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\wininit.exe PRC - [2008-01-19 09:33:35 | 000,056,320 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\wermgr.exe PRC - [2008-01-19 09:33:32 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2008-01-19 09:33:32 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2008-01-19 09:33:32 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2008-01-19 09:33:32 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2008-01-19 09:33:32 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2008-01-19 09:33:32 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2008-01-19 09:33:32 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2008-01-19 09:33:32 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2008-01-19 09:33:32 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2008-01-19 09:33:32 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2008-01-19 09:33:32 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2008-01-19 09:33:32 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2008-01-19 09:33:32 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2008-01-19 09:33:32 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2008-01-19 09:33:32 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2008-01-19 09:33:32 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2008-01-19 09:33:32 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2008-01-19 09:33:32 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2008-01-19 09:33:32 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2008-01-19 09:33:14 | 000,229,888 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\lsm.exe PRC - [2008-01-19 09:33:09 | 000,125,952 | ---- | M] (Microsoft Corporation) -- C:\Windows\ehome\ehtray.exe PRC - [2008-01-19 09:33:09 | 000,037,376 | ---- | M] (Microsoft Corporation) -- C:\Windows\ehome\ehmsas.exe PRC - [2008-01-19 09:33:05 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\csrss.exe PRC - [2007-07-10 07:28:08 | 000,386,560 | ---- | M] (Conexant Systems, Inc.) -- C:\Windows\System32\drivers\XAudio.exe PRC - [2007-05-28 18:57:54 | 000,357,888 | ---- | M] (Rocket Division Software) -- G:\Programy\Alcohol 120\StarWind\StarWindServiceAE.exe PRC - [2007-04-23 18:11:42 | 000,262,243 | ---- | M] () -- C:\Program Files\HP\QuickPlay\Kernel\TV\CLCapSvc.exe [color=#E56717]========== Modules (All) ==========[/color] MOD - [2010-07-31 13:36:43 | 000,574,976 | ---- | M] (OldTimer Tools) -- C:\Users\Michał\Desktop\OTL.exe MOD - [2009-09-25 00:54:55 | 000,258,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\winspool.drv MOD - [2009-07-17 15:54:43 | 000,071,680 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\atl.dll MOD - [2009-06-15 16:53:43 | 000,072,704 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\secur32.dll MOD - [2009-06-15 16:52:42 | 000,023,552 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\lpk.dll MOD - [2009-04-23 14:15:07 | 000,784,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\rpcrt4.dll MOD - [2009-04-11 08:28:25 | 001,077,248 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\vssapi.dll MOD - [2009-04-11 08:28:25 | 000,627,712 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\user32.dll MOD - [2009-04-11 08:28:25 | 000,502,272 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\usp10.dll MOD - [2009-04-11 08:28:25 | 000,287,744 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\Wldap32.dll MOD - [2009-04-11 08:28:25 | 000,108,544 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\userenv.dll MOD - [2009-04-11 08:28:25 | 000,020,480 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\version.dll MOD - [2009-04-11 08:28:24 | 011,584,000 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\shell32.dll MOD - [2009-04-11 08:28:24 | 001,591,296 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\setupapi.dll MOD - [2009-04-11 08:28:24 | 001,068,032 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\shdocvw.dll MOD - [2009-04-11 08:28:24 | 000,353,280 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\shlwapi.dll MOD - [2009-04-11 08:28:24 | 000,142,336 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\spp.dll MOD - [2009-04-11 08:28:24 | 000,057,344 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\samlib.dll MOD - [2009-04-11 08:28:23 | 001,316,864 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\ole32.dll MOD - [2009-04-11 08:28:23 | 000,754,688 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\propsys.dll MOD - [2009-04-11 08:28:23 | 000,563,712 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\oleaut32.dll MOD - [2009-04-11 08:28:23 | 000,467,456 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\netapi32.dll MOD - [2009-04-11 08:28:23 | 000,121,344 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\ntmarta.dll MOD - [2009-04-11 08:28:23 | 000,088,576 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\olepro32.dll MOD - [2009-04-11 08:28:22 | 000,679,936 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\msvcrt.dll MOD - [2009-04-11 08:28:20 | 000,891,392 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\kernel32.dll MOD - [2009-04-11 08:28:20 | 000,807,424 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\msctf.dll MOD - [2009-04-11 08:28:20 | 000,114,688 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\imm32.dll MOD - [2009-04-11 08:28:20 | 000,068,608 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\mpr.dll MOD - [2009-04-11 08:28:19 | 000,297,472 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\gdi32.dll MOD - [2009-04-11 08:28:18 | 000,450,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\comdlg32.dll MOD - [2009-04-11 08:28:18 | 000,079,872 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\authz.dll MOD - [2009-04-11 08:28:17 | 000,800,768 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\advapi32.dll MOD - [2009-04-11 08:28:17 | 000,171,008 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\apphelp.dll MOD - [2009-04-11 08:27:49 | 001,202,168 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\ntdll.dll MOD - [2009-04-11 08:21:38 | 001,686,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6002.18005_none_5cb72f96088b0de0\comctl32.dll MOD - [2008-01-19 09:37:12 | 000,183,296 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\xmllite.dll MOD - [2008-01-19 09:37:09 | 000,179,200 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\ws2_32.dll MOD - [2008-01-19 09:36:48 | 000,069,120 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\vsstrace.dll MOD - [2008-01-19 09:36:47 | 000,240,128 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\uxtheme.dll MOD - [2008-01-19 09:36:35 | 000,040,960 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\srclient.dll MOD - [2008-01-19 09:35:57 | 000,008,192 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\nsi.dll MOD - [2008-01-19 09:33:52 | 000,523,776 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\clbcatq.dll MOD - [2008-01-19 09:33:00 | 000,110,592 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\msscript.ocx MOD - [2006-11-02 11:46:12 | 000,012,288 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\psapi.dll MOD - [2006-07-13 07:55:00 | 000,056,832 | R--- | M] (Cognizance Corporation) -- C:\Windows\System32\APSHook.dll [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV - File not found [Disabled | Stopped] -- C:\Program Files\Common Files\SureThing Shared\stllssvr.exe -- (stllssvr) SRV - File not found [Disabled | Stopped] -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer) SRV - File not found [Auto | Stopped] -- C:\Windows\System32\PGPsdkServ.exe -- (PGPsdkServ) SRV - File not found [On_Demand | Stopped] -- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE -- (ose) SRV - File not found [On_Demand | Stopped] -- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE -- (odserv) SRV - File not found [Auto | Stopped] -- C:\Program Files\HP\QuickPlay\Kernel\TV\CLSched.exe -- (CLSched) CyberLink Task Scheduler (CTS) SRV - [2010-04-15 08:25:20 | 001,872,320 | ---- | M] (Emsi Software GmbH) [Auto | Stopped] -- C:\Program Files\a-squared Free\a2service.exe -- (a2free) SRV - [2009-09-25 03:27:04 | 000,793,088 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\FntCache.dll -- (FontCache) SRV - [2009-08-18 11:29:22 | 001,529,728 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE -- (wlidsvc) SRV - [2009-08-05 23:48:42 | 000,782,688 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Live\Family Safety\fsssvc.exe -- (fsssvc) SRV - [2009-05-19 12:36:18 | 000,240,512 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe -- (SeaPort) SRV - [2009-02-23 15:58:54 | 001,107,208 | ---- | M] (Raxco Software, Inc.) [On_Demand | Stopped] -- G:\Programy\defragmentator dysku\PDEngine.exe -- (PDEngine) SRV - [2009-02-23 15:58:52 | 000,996,616 | ---- | M] (Raxco Software, Inc.) [Auto | Running] -- G:\Programy\defragmentator dysku\PDAgent.exe -- (PDAgent) SRV - [2008-01-19 09:38:24 | 000,272,952 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend) SRV - [2007-05-28 18:57:54 | 000,357,888 | ---- | M] (Rocket Division Software) [Auto | Running] -- G:\Programy\Alcohol 120\StarWind\StarWindServiceAE.exe -- (StarWindServiceAE) SRV - [2007-04-23 18:11:42 | 000,262,243 | ---- | M] () [Auto | Running] -- C:\Program Files\HP\QuickPlay\Kernel\TV\CLCapSvc.exe -- (CLCapSvc) CyberLink Background Capture Service (CBCS) SRV - [2007-02-07 16:30:00 | 000,074,240 | R--- | M] (Cognizance Corporation) [Auto | Running] -- c:\Program Files\Bioscrypt\VeriSoft\Bin\ASWLNPkg.dll -- (ASBroker) SRV - [2006-06-22 09:14:00 | 000,131,584 | R--- | M] (Cognizance Corporation) [Auto | Running] -- c:\Program Files\Bioscrypt\VeriSoft\Bin\ASChnl.dll -- (ASChannel) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\System32\DRIVERS\VNUSB.sys -- (VNUSB) DRV - File not found [Kernel | Auto | Stopped] -- C:\Windows\System32\Drivers\PGPsdk.sys -- (PGPsdkDriver) DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\System32\DRIVERS\nwlnkfwd.sys -- (NwlnkFwd) DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\System32\DRIVERS\nwlnkflt.sys -- (NwlnkFlt) DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\System32\DRIVERS\ipinip.sys -- (IpInIp) DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\h648103.sys -- (h648103) DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\h648101.sys -- (h648101) DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\h647906.sys -- (h647906) DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\EagleNT.sys -- (EagleNT) DRV - File not found [Kernel | Disabled | Stopped] -- C:\Windows\System32\drivers\blbdrive.sys -- (blbdrive) DRV - [2010-04-21 22:41:19 | 000,691,696 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\System32\Drivers\sptd.sys -- (sptd) DRV - [2010-02-24 09:30:20 | 001,331,192 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\BCMWL6.SYS -- (BCM43XX) DRV - [2010-02-24 09:30:20 | 001,331,192 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\BCMWL6.SYS -- (BCM43XV) DRV - [2010-02-03 15:56:56 | 000,026,176 | -H-- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\hamachi.sys -- (hamachi) DRV - [2009-11-21 04:34:54 | 011,515,752 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\nvlddmkm.sys -- (nvlddmkm) DRV - [2009-09-16 17:55:00 | 000,008,456 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\System32\EuGdiDrv.sys -- (EuGdiDrv) DRV - [2009-08-26 13:45:10 | 000,014,216 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\System32\epmntdrv.sys -- (epmntdrv) DRV - [2009-08-05 23:48:42 | 000,054,632 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\fssfltr.sys -- (fssfltr) DRV - [2009-07-05 08:15:53 | 000,281,760 | ---- | M] () [Kernel | Auto | Running] -- C:\Windows\System32\drivers\atksgt.sys -- (atksgt) DRV - [2009-07-05 08:15:52 | 000,025,888 | ---- | M] () [Kernel | Auto | Running] -- C:\Windows\System32\drivers\lirsgt.sys -- (lirsgt) DRV - [2009-04-11 06:42:54 | 000,073,216 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\USBAUDIO.sys -- (usbaudio) Sterownik audio USB (WDM) DRV - [2009-02-24 19:42:14 | 000,116,736 | ---- | M] (MagicISO, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\mcdbus.sys -- (mcdbus) DRV - [2009-02-09 08:37:56 | 000,007,808 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\usbser_lowerfltj.sys -- (UsbserFilt) DRV - [2009-02-09 08:37:48 | 000,007,808 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\usbser_lowerflt.sys -- (upperdev) DRV - [2009-01-09 10:49:06 | 000,071,184 | ---- | M] (Raxco Software, Inc.) [File_System | Auto | Running] -- C:\Windows\System32\drivers\DefragFs.sys -- (DefragFS) DRV - [2008-08-26 10:26:12 | 000,018,816 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\pccsmcfd.sys -- (pccsmcfd) DRV - [2008-08-08 15:31:18 | 000,043,192 | ---- | M] (Your Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\hid8101.sys -- (hid8101) DRV - [2008-08-08 15:31:18 | 000,040,856 | ---- | M] (Your Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\hid8103.sys -- (hid8103) DRV - [2008-08-08 15:31:16 | 000,041,272 | ---- | M] (Your Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\hid7906.sys -- (hid7906) DRV - [2008-06-20 17:37:38 | 000,200,112 | ---- | M] (Synaptics, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\SynTP.sys -- (SynTP) DRV - [2008-04-14 15:39:06 | 000,009,344 | ---- | M] (Hewlett-Packard Development Company, L.P.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\CPQBttn.sys -- (HBtnKey) DRV - [2008-03-04 02:32:00 | 000,188,416 | ---- | M] (Conexant Systems Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\CHDRT32.sys -- (CnxtHdAudService) DRV - [2007-07-10 07:27:56 | 000,008,704 | ---- | M] (Conexant Systems, Inc.) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\XAudio.sys -- (XAudio) DRV - [2007-06-29 15:47:34 | 000,034,304 | ---- | M] (AMD, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\AmdLLD.sys -- (AmdLLD) DRV - [2007-06-26 09:38:14 | 000,163,328 | ---- | M] (Conexant Systems Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\CHDART.sys -- (HdAudAddService) DRV - [2007-06-20 04:29:56 | 000,984,064 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\HSX_DPV.sys -- (HSF_DPV) DRV - [2007-06-20 04:28:34 | 000,208,896 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\HSXHWAZL.sys -- (HSXHWAZL) DRV - [2007-06-20 04:28:22 | 000,660,480 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\HSX_CNXT.sys -- (winachsf) DRV - [2007-06-18 18:12:04 | 000,016,768 | ---- | M] (Hewlett-Packard Development Company, L.P.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\HpqKbFiltr.sys -- (HpqKbFiltr) DRV - [2007-04-18 10:51:14 | 000,081,200 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\btwavdt.sys -- (btwavdt) DRV - [2007-04-18 10:51:14 | 000,016,432 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\btwrchid.sys -- (btwrchid) DRV - [2007-04-18 10:51:12 | 000,079,664 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\btwaudio.sys -- (btwaudio) DRV - [2007-03-28 18:44:22 | 000,140,424 | ---- | M] (AuthenTec, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\atswpdrv.sys -- (ATSWPDRV) AuthenTec TruePrint USB Driver (SwipeSensor) DRV - [2007-03-07 06:15:58 | 001,059,112 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\nvmfdx32.sys -- (NVENETFD) DRV - [2007-02-24 16:42:22 | 000,039,936 | ---- | M] (REDC) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\rimmptsk.sys -- (rimmptsk) DRV - [2007-02-17 01:50:32 | 000,012,032 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\nvsmu.sys -- (nvsmu) DRV - [2007-01-23 19:03:28 | 000,037,376 | ---- | M] (REDC) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\rixdptsk.sys -- (rismxdp) DRV - [2007-01-23 18:40:20 | 000,042,496 | ---- | M] (REDC) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\rimsptsk.sys -- (rimsptsk) DRV - [2006-11-02 11:51:45 | 000,900,712 | ---- | M] (QLogic Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\ql2300.sys -- (ql2300) DRV - [2006-11-02 11:51:38 | 000,420,968 | ---- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\adp94xx.sys -- (adp94xx) DRV - [2006-11-02 11:51:34 | 000,316,520 | ---- | M] (Emulex) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\elxstor.sys -- (elxstor) DRV - [2006-11-02 11:51:32 | 000,297,576 | ---- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\adpahci.sys -- (adpahci) DRV - [2006-11-02 11:51:25 | 000,235,112 | ---- | M] (ULi Electronics Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\uliahci.sys -- (uliahci) DRV - [2006-11-02 11:51:25 | 000,232,040 | ---- | M] (Intel Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\iastorv.sys -- (iaStorV) DRV - [2006-11-02 11:51:00 | 000,147,048 | ---- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\adpu320.sys -- (adpu320) DRV - [2006-11-02 11:50:45 | 000,115,816 | ---- | M] (Promise Technology, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\ulsata2.sys -- (ulsata2) DRV - [2006-11-02 11:50:41 | 000,112,232 | ---- | M] (VIA Technologies Inc.,Ltd) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\vsmraid.sys -- (vsmraid) DRV - [2006-11-02 11:50:35 | 000,106,088 | ---- | M] (QLogic Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\ql40xx.sys -- (ql40xx) DRV - [2006-11-02 11:50:35 | 000,098,408 | ---- | M] (Promise Technology, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\ulsata.sys -- (UlSata) DRV - [2006-11-02 11:50:35 | 000,098,408 | ---- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\adpu160m.sys -- (adpu160m) DRV - [2006-11-02 11:50:24 | 000,088,680 | ---- | M] (NVIDIA Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\nvraid.sys -- (nvraid) DRV - [2006-11-02 11:50:19 | 000,045,160 | ---- | M] (IBM Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\nfrd960.sys -- (nfrd960) DRV - [2006-11-02 11:50:17 | 000,041,576 | ---- | M] (Intel Corp./ICP vortex GmbH) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\iirsp.sys -- (iirsp) DRV - [2006-11-02 11:50:16 | 000,071,784 | ---- | M] (Silicon Integrated Systems) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\sisraid4.sys -- (SiSRaid4) DRV - [2006-11-02 11:50:13 | 000,040,040 | ---- | M] (NVIDIA Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\nvstor.sys -- (nvstor) DRV - [2006-11-02 11:50:11 | 000,071,272 | ---- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\djsvs.sys -- (aic78xx) DRV - [2006-11-02 11:50:10 | 000,067,688 | ---- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\arcsas.sys -- (arcsas) DRV - [2006-11-02 11:50:10 | 000,065,640 | ---- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\lsi_scsi.sys -- (LSI_SCSI) DRV - [2006-11-02 11:50:10 | 000,038,504 | ---- | M] (Silicon Integrated Systems Corp.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\sisraid2.sys -- (SiSRaid2) DRV - [2006-11-02 11:50:10 | 000,037,480 | ---- | M] (Hewlett-Packard Company) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\hpcisss.sys -- (HpCISSs) DRV - [2006-11-02 11:50:09 | 000,067,688 | ---- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\arc.sys -- (arc) DRV - [2006-11-02 11:50:09 | 000,035,944 | ---- | M] (Integrated Technology Express, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\iteraid.sys -- (iteraid) DRV - [2006-11-02 11:50:07 | 000,035,944 | ---- | M] (Integrated Technology Express, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\iteatapi.sys -- (iteatapi) DRV - [2006-11-02 11:50:05 | 000,065,640 | ---- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\lsi_sas.sys -- (LSI_SAS) DRV - [2006-11-02 11:50:05 | 000,035,944 | ---- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\symc8xx.sys -- (Symc8xx) DRV - [2006-11-02 11:50:04 | 000,065,640 | ---- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\lsi_fc.sys -- (LSI_FC) DRV - [2006-11-02 11:50:03 | 000,034,920 | ---- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\sym_u3.sys -- (Sym_u3) DRV - [2006-11-02 11:49:59 | 000,033,384 | ---- | M] (LSI Logic Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\mraid35x.sys -- (Mraid35x) DRV - [2006-11-02 11:49:56 | 000,031,848 | ---- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\sym_hi.sys -- (Sym_hi) DRV - [2006-11-02 11:49:53 | 000,028,776 | ---- | M] (LSI Logic Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\megasas.sys -- (megasas) DRV - [2006-11-02 11:49:30 | 000,017,512 | ---- | M] (VIA Technologies, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\viaide.sys -- (viaide) DRV - [2006-11-02 11:49:28 | 000,016,488 | ---- | M] (CMD Technology, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\cmdide.sys -- (cmdide) DRV - [2006-11-02 11:49:20 | 000,014,952 | ---- | M] (Acer Laboratories Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\aliide.sys -- (aliide) DRV - [2006-11-02 10:25:24 | 000,071,808 | ---- | M] (Brother Industries Ltd.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\brserid.sys -- (Brserid) Brother MFC Serial Port Interface Driver (WDM) DRV - [2006-11-02 10:24:47 | 000,011,904 | ---- | M] (Brother Industries Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\drivers\brusbser.sys -- (BrUsbSer) DRV - [2006-11-02 10:24:46 | 000,005,248 | ---- | M] (Brother Industries, Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\drivers\brfiltup.sys -- (BrFiltUp) DRV - [2006-11-02 10:24:45 | 000,013,568 | ---- | M] (Brother Industries, Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\drivers\brfiltlo.sys -- (BrFiltLo) DRV - [2006-11-02 10:24:44 | 000,062,336 | ---- | M] (Brother Industries Ltd.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\brserwdm.sys -- (BrSerWdm) DRV - [2006-11-02 10:24:44 | 000,012,160 | ---- | M] (Brother Industries Ltd.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\brusbmdm.sys -- (BrUsbMdm) DRV - [2006-11-02 09:41:49 | 000,200,704 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\VSTAZL3.SYS -- (HSFHWAZL) DRV - [2006-11-02 09:36:50 | 000,020,608 | ---- | M] (N-trig Innovative Technologies) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\ntrigdigi.sys -- (ntrigdigi) DRV - [2006-11-02 09:30:54 | 000,117,760 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\E1G60I32.sys -- (E1G60) Intel(R) DRV - [2006-10-19 04:10:57 | 001,380,864 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\igdkmd32.sys -- (ialm) DRV - [2004-08-09 13:33:26 | 000,114,016 | ---- | M] (Protection Technology) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\prohlp02.sys -- (prohlp02) DRV - [2004-08-09 13:29:28 | 000,053,920 | ---- | M] (Protection Technology) [Kernel | System | Running] -- C:\Windows\System32\drivers\prodrv06.sys -- (prodrv06) DRV - [2004-07-19 16:49:54 | 000,007,040 | ---- | M] (Protection Technology) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\prosync1.sys -- (prosync1) DRV - [2003-12-01 17:20:52 | 000,004,832 | ---- | M] (Protection Technology) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\sfhlp01.sys -- (sfhlp01) DRV - [2002-05-06 11:01:08 | 000,017,005 | ---- | M] (Adaptec) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\ASPI32.SYS -- (ASPI32) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-3022643457-1393697231-3139819596-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.pl/ IE - HKU\S-1-5-21-3022643457-1393697231-3139819596-1000\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1 IE - HKU\S-1-5-21-3022643457-1393697231-3139819596-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 [color=#E56717]========== FireFox ==========[/color] FF - prefs.js..browser.search.defaultenginename: "Bing" FF - prefs.js..browser.search.defaulturl: "http://www.bing.com/search?FORM=IEFM1&q=" FF - prefs.js..browser.search.selectedEngine: "Google" FF - prefs.js..browser.search.useDBForOrder: true FF - prefs.js..browser.startup.homepage: "http://home.speedbit.com/?aff=105" FF - prefs.js..extensions.enabledItems: {F17C1572-C9EC-4e5c-A542-D05CBB5C5A08}:9.4.0.5 FF - prefs.js..extensions.enabledItems: zrzuta.eu@gmail.com:1.2 FF - prefs.js..keyword.URL: "http://home.speedbit.com/search.aspx?aff=106&q=" FF - HKLM\software\mozilla\Firefox\Extensions\\bkmrksync@nokia.com: C:\Program Files\Nokia\Nokia PC Suite 7\bkmrksync\ [2009-06-23 15:50:23 | 000,000,000 | ---D | M] [2010-07-30 10:46:41 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\mozilla\Extensions [2010-07-30 10:47:20 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\mozilla\Firefox\Profiles\4m19v5y3.default\extensions [2010-07-30 10:47:45 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Users\Michał\AppData\Roaming\mozilla\Firefox\Profiles\4m19v5y3.default\extensions\{20a82645-c095-46ed-80e3-08825760534b} [2010-07-30 10:47:25 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\mozilla\Firefox\Profiles\4m19v5y3.default\extensions\zrzuta.eu@gmail.com [2009-12-18 16:55:17 | 000,002,163 | ---- | M] () -- C:\Users\Michał\AppData\Roaming\Mozilla\FireFox\Profiles\4m19v5y3.default\searchplugins\bing.xml O1 HOSTS File: ([2006-09-18 23:41:30 | 000,000,736 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts O1 - Hosts: ::1 localhost O2 - BHO: (Adobe PDF Reader Link Helper) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated) O2 - BHO: (Skype add-on (mastermind)) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Skype Technologies S.A.) O2 - BHO: (Search Helper) - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll (Microsoft Corporation) O2 - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll (Google Inc.) O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.4.4525.1752\swg.dll (Google Inc.) O2 - BHO: (PDF-XChange Viewer IE-Plugin) - {C5D07EB6-BBCE-4DAE-ACBB-D13A8D28CB1F} - G:\Programy\Tracker Software\PDF Viewer\PDFXCviewIEPlugin.dll (Tracker Software Products Ltd.) O2 - BHO: (Google Dictionary Compression sdch) - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll (Google Inc.) O2 - BHO: (VeriSoft Access Manager) - {DF21F1DB-80C6-11D3-9483-B03D0EC10000} - c:\Program Files\Bioscrypt\VeriSoft\Bin\ItIEAddIn.dll (Bioscrypt Inc.) O2 - BHO: (Windows Live Toolbar Helper) - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll (Microsoft Corporation) O2 - BHO: (DAPIELoader Class) - {FF6C3CF0-4B15-11D1-ABED-709549C10000} - G:\Programy\DAP\dapieloader.dll (SpeedBit Ltd.) O3 - HKLM\..\Toolbar: (no name) - - No CLSID value found. O3 - HKLM\..\Toolbar: (&Windows Live Toolbar) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll (Microsoft Corporation) O3 - HKLM\..\Toolbar: (Google Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll (Google Inc.) O3 - HKU\S-1-5-21-3022643457-1393697231-3139819596-1000\..\Toolbar\WebBrowser: (&Windows Live Toolbar) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll (Microsoft Corporation) O3 - HKU\S-1-5-21-3022643457-1393697231-3139819596-1000\..\Toolbar\WebBrowser: (Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll (Google Inc.) O4 - HKLM..\Run: [Adobe Reader Speed Launcher] C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe File not found O4 - HKLM..\Run: [CognizanceTS] c:\Program Files\Bioscrypt\VeriSoft\Bin\ASTSVCC.dll (Cognizance Corporation) O4 - HKLM..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe File not found O4 - HKLM..\Run: [NWEReboot] File not found O4 - HKLM..\Run: [QlbCtrl.exe] C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe File not found O4 - HKLM..\Run: [USB Gamepad] C:\Windows\USB Vibration\dr100&110\USB Gamepad.exe File not found O4 - HKLM..\Run: [Windows Defender] C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation) O4 - HKU\S-1-5-19..\Run: [WindowsWelcomeCenter] C:\Windows\System32\oobefldr.dll (Microsoft Corporation) O4 - HKU\S-1-5-20..\Run: [WindowsWelcomeCenter] C:\Windows\System32\oobefldr.dll (Microsoft Corporation) O4 - HKU\S-1-5-21-3022643457-1393697231-3139819596-1000..\Run: [IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe File not found O4 - HKU\S-1-5-21-3022643457-1393697231-3139819596-1000..\Run: [LightScribe Control Panel] C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe File not found O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableTaskMgr = 1 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableRegistryTools = 1 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableTaskMgr = 1 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableRegistryTools = 1 O7 - HKU\S-1-5-21-3022643457-1393697231-3139819596-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableRegistryTools = 1 O7 - HKU\S-1-5-21-3022643457-1393697231-3139819596-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableTaskMgr = 1 O8 - Extra context menu item: &Clean Traces - G:\Programy\DAP\Privacy Package\dapcleanerie.htm () O8 - Extra context menu item: &Download with &DAP - G:\Programy\DAP\dapextie.htm () O8 - Extra context menu item: Download &all with DAP - G:\Programy\DAP\dapextie2.htm () O8 - Extra context menu item: Wyślij obraz do urządzenia &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm () O8 - Extra context menu item: Wyślij stronę do urządzenia &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm () O9 - Extra Button: Wpis w blogu - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll (Microsoft Corporation) O9 - Extra 'Tools' menuitem : &Wpis w blogu w Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll (Microsoft Corporation) O9 - Extra 'Tools' menuitem : Skype add-on for Internet Explorer - {5067A26B-1337-4436-8AFE-EE169C2DA79F} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Skype Technologies S.A.) O9 - Extra Button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Skype Technologies S.A.) O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Program Files\Microsoft Office\Office12\REFIEBAR.DLL (Microsoft Corporation) O9 - Extra Button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm () O9 - Extra 'Tools' menuitem : @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm () O13 - gopher Prefix: missing O16 - DPF: {1E54D648-B804-468d-BC78-4AFFED8E262F} http://www.nvidia.com/content/DriverDownload/srl/3.0.0.4/srl_bin/sysreqlab_nvd.cab (System Requirements Lab Class) O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} http://download.eset.com/special/eos/OnlineScanner.cab (Reg Error: Key error.) O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab (Java Plug-in 1.6.0_17) O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} http://fpdownload.macromedia.com/get/flashplayer/current/polarbear/ultrashim.cab (Reg Error: Key error.) O16 - DPF: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab (Java Plug-in 1.6.0_17) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab (Java Plug-in 1.6.0_17) O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 172.20.1.100 94.230.20.34 94.230.20.3 O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Program Files\Common Files\microsoft shared\Help\hxds.dll (Microsoft Corporation) O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies) O18 - Protocol\Handler\vnd.ms.radio {3DA2AA3B-3D96-11D2-9BD2-204C4F4F5020} - C:\Windows\System32\Msdxm6.ocx (Microsoft Corporation) O18 - Protocol\Handler\wlmailhtml {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Program Files\Windows Live\Mail\mailcomm.dll (Microsoft Corporation) O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation) O18 - Protocol\Filter\x-sdch {B1759355-3EEC-4C1E-B0F1-B719FE26E377} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll (Google Inc.) O20 - AppInit_DLLs: (APSHook.dll) - C:\Windows\System32\APSHook.dll (Cognizance Corporation) O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation) O24 - Desktop WallPaper: C:\Users\Michał\AppData\Roaming\Microsoft\Windows Photo Gallery\Tapeta z Galerii fotografii systemu Windows.jpg O24 - Desktop BackupWallPaper: C:\Users\Michał\AppData\Roaming\Microsoft\Windows Photo Gallery\Tapeta z Galerii fotografii systemu Windows.jpg O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2010-07-31 13:44:05 | 000,000,191 | RHS- | M] () - C:\autorun.inf -- [ NTFS ] O32 - AutoRun File - [2005-09-11 17:18:54 | 000,000,340 | -HS- | M] () - D:\AUTOMODE -- [ NTFS ] O32 - AutoRun File - [2010-07-25 22:03:57 | 000,000,339 | RHS- | M] () - D:\autorun.inf -- [ NTFS ] O32 - AutoRun File - [2006-09-18 23:43:36 | 000,000,024 | ---- | M] () - G:\autoexec.bat -- [ NTFS ] O32 - AutoRun File - [2010-07-25 22:03:57 | 000,000,266 | RHS- | M] () - G:\autorun.inf -- [ NTFS ] O33 - MountPoints2\{02018f16-6d6c-11df-86c8-001a6bf6d8ad}\Shell\AUtOpLaY\commAnd - "" = K:\pxvmxb.pif -- File not found O33 - MountPoints2\{02018f16-6d6c-11df-86c8-001a6bf6d8ad}\Shell\AutoRun\command - "" = K:\pxvmxb.pif -- File not found O33 - MountPoints2\{02018f16-6d6c-11df-86c8-001a6bf6d8ad}\Shell\EXPlorE\COMMAnD - "" = K:\pxvmxb.pif -- File not found O33 - MountPoints2\{02018f16-6d6c-11df-86c8-001a6bf6d8ad}\Shell\oPEn\coMManD - "" = K:\pxvmxb.pif -- File not found O33 - MountPoints2\{10768efd-f66a-11de-ad2e-001a739c945a}\Shell\AUtOpLay\CommAnd - "" = H:\ekwkf.pif -- File not found O33 - MountPoints2\{10768efd-f66a-11de-ad2e-001a739c945a}\Shell\AutoRun\command - "" = H:\ekwkf.pif -- File not found O33 - MountPoints2\{10768efd-f66a-11de-ad2e-001a739c945a}\Shell\exPLOre\COMManD - "" = H:\ekwkf.pif -- File not found O33 - MountPoints2\{10768efd-f66a-11de-ad2e-001a739c945a}\Shell\open\CommaND - "" = H:\ekwkf.pif -- File not found O33 - MountPoints2\{19268d2d-8e45-11dc-a060-001a6bf6d8ad}\Shell - "" = AutoRun O33 - MountPoints2\{19268d2d-8e45-11dc-a060-001a6bf6d8ad}\Shell\AutoRun\command - "" = F:\start.exe -- File not found O33 - MountPoints2\{4af83a4b-91ea-11dc-ba69-001a6bf6d8ad}\Shell - "" = AutoRun O33 - MountPoints2\{4af83a4b-91ea-11dc-ba69-001a6bf6d8ad}\Shell\AutoRun\command - "" = I:\autorun.exe -- File not found O33 - MountPoints2\{4e6aefc2-2858-11df-9d75-001a6bf6d8ad}\Shell\aUtopLaY\coMmand - "" = K:\ewxt.exe -- File not found O33 - MountPoints2\{4e6aefc2-2858-11df-9d75-001a6bf6d8ad}\Shell\AutoRun\command - "" = K:\ewxt.exe -- File not found O33 - MountPoints2\{4e6aefc2-2858-11df-9d75-001a6bf6d8ad}\Shell\exPloRE\CoMManD - "" = K:\ewxt.exe -- File not found O33 - MountPoints2\{4e6aefc2-2858-11df-9d75-001a6bf6d8ad}\Shell\oPEn\cOmManD - "" = K:\ewxt.exe -- File not found O33 - MountPoints2\{4f568fab-8d53-11de-8062-001a6bf6d8ad}\Shell\AutoRun\command - "" = J:\EmDesk.exe -- File not found O33 - MountPoints2\{4f568fab-8d53-11de-8062-001a6bf6d8ad}\Shell\EmDesk\command - "" = J:\EmDesk.exe -- File not found O33 - MountPoints2\{6b505977-8e8e-11df-8d37-001a6bf6d8ad}\Shell\AUtOpLay\commanD - "" = K:\wfoun.exe -- File not found O33 - MountPoints2\{6b505977-8e8e-11df-8d37-001a6bf6d8ad}\Shell\AutoRun\command - "" = K:\wfoun.exe -- File not found O33 - MountPoints2\{6b505977-8e8e-11df-8d37-001a6bf6d8ad}\Shell\eXpLORE\CommANd - "" = K:\wfoun.exe -- File not found O33 - MountPoints2\{6b505977-8e8e-11df-8d37-001a6bf6d8ad}\Shell\opeN\comMANd - "" = K:\wfoun.exe -- File not found O33 - MountPoints2\{717196b4-1fd0-11df-8964-001a6bf6d8ad}\Shell\AUtOpLaY\coMmand - "" = M:\rmita.pif -- File not found O33 - MountPoints2\{717196b4-1fd0-11df-8964-001a6bf6d8ad}\Shell\AutoRun\command - "" = M:\rmita.pif -- File not found O33 - MountPoints2\{717196b4-1fd0-11df-8964-001a6bf6d8ad}\Shell\ExPLoRE\CommanD - "" = M:\rmita.pif -- File not found O33 - MountPoints2\{717196b4-1fd0-11df-8964-001a6bf6d8ad}\Shell\Open\commAnD - "" = M:\rmita.pif -- File not found O33 - MountPoints2\{717196b9-1fd0-11df-8964-001a6bf6d8ad}\Shell - "" = AutoRun O33 - MountPoints2\{717196b9-1fd0-11df-8964-001a6bf6d8ad}\Shell\AutoRun\command - "" = L:\LaunchU3.exe -- File not found O33 - MountPoints2\{79cd89a6-66cc-11de-a693-001a6bf6d8ad}\Shell\AUToPLaY\cOmMaND - "" = K:\hjnxqo.exe -- File not found O33 - MountPoints2\{79cd89a6-66cc-11de-a693-001a6bf6d8ad}\Shell\AutoRun\command - "" = K:\hjnxqo.exe -- File not found O33 - MountPoints2\{79cd89a6-66cc-11de-a693-001a6bf6d8ad}\Shell\exploRe\COmMAnD - "" = K:\hjnxqo.exe -- File not found O33 - MountPoints2\{79cd89a6-66cc-11de-a693-001a6bf6d8ad}\Shell\oPEN\CommAnd - "" = K:\hjnxqo.exe -- File not found O33 - MountPoints2\{7b025c05-97cc-11de-ac45-001a6bf6d8ad}\Shell\AUTOpLAY\cOMmanD - "" = ubkhsv.pif O33 - MountPoints2\{7b025c05-97cc-11de-ac45-001a6bf6d8ad}\Shell\AutoRun\command - "" = ubkhsv.pif O33 - MountPoints2\{7b025c05-97cc-11de-ac45-001a6bf6d8ad}\Shell\EXPloRE\Command - "" = ubkhsv.pif O33 - MountPoints2\{7b025c05-97cc-11de-ac45-001a6bf6d8ad}\Shell\OPEN\ComMaNd - "" = ubkhsv.pif O33 - MountPoints2\{88634b9e-e623-11dc-821a-001b24b7bb4b}\Shell\AutoRun\command - "" = I:\EXPLORER.EXE -- File not found O33 - MountPoints2\{88634b9e-e623-11dc-821a-001b24b7bb4b}\Shell\explore\Command - "" = I:\EXPLORER.EXE -- File not found O33 - MountPoints2\{88634b9e-e623-11dc-821a-001b24b7bb4b}\Shell\open\Command - "" = I:\EXPLORER.EXE -- File not found O33 - MountPoints2\{8d142531-4d86-11df-a7be-001a6bf6d8ad}\Shell - "" = AutoRun O33 - MountPoints2\{8d142531-4d86-11df-a7be-001a6bf6d8ad}\Shell\AutoRun\command - "" = J:\SETUP.EXE -- File not found O33 - MountPoints2\{8d142531-4d86-11df-a7be-001a6bf6d8ad}\Shell\configure\command - "" = J:\SETUP.EXE -- File not found O33 - MountPoints2\{8d142531-4d86-11df-a7be-001a6bf6d8ad}\Shell\install\command - "" = J:\SETUP.EXE -- File not found O33 - MountPoints2\{91a4b2f4-781d-11de-a84a-001a6bf6d8ad}\Shell\AutoRun\command - "" = K:\wyskq6lt.exe -- File not found O33 - MountPoints2\{91a4b2f4-781d-11de-a84a-001a6bf6d8ad}\Shell\open\Command - "" = K:\wyskq6lt.exe -- File not found O33 - MountPoints2\{95ee9936-62ae-11dd-bf0c-001a6bf6d8ad}\Shell\explore\Command - "" = I:\EXPLORER.EXE -- File not found O33 - MountPoints2\{95ee9936-62ae-11dd-bf0c-001a6bf6d8ad}\Shell\open\Command - "" = I:\EXPLORER.EXE -- File not found O33 - MountPoints2\{a125cecf-ba62-11de-9218-001a6bf6d8ad}\Shell\AutoRun\command - "" = I:\RECYCLER\S-1-5-21-1482476501-1644491937-682003330-1013\isee.exe -- File not found O33 - MountPoints2\{a125cecf-ba62-11de-9218-001a6bf6d8ad}\Shell\open\command - "" = I:\RECYCLER\S-1-5-21-1482476501-1644491937-682003330-1013\isee.exe -- File not found O33 - MountPoints2\{ae202dc5-6303-11df-8751-001a6bf6d8ad}\Shell\AuToplAY\COMMand - "" = F:\xigbgp.cmd -- File not found O33 - MountPoints2\{ae202dc5-6303-11df-8751-001a6bf6d8ad}\Shell\AutoRun\command - "" = F:\xigbgp.cmd -- File not found O33 - MountPoints2\{ae202dc5-6303-11df-8751-001a6bf6d8ad}\Shell\exPlOrE\Command - "" = F:\xigbgp.cmd -- File not found O33 - MountPoints2\{ae202dc5-6303-11df-8751-001a6bf6d8ad}\Shell\OPeN\Command - "" = F:\xigbgp.cmd -- File not found O33 - MountPoints2\{cfac50d0-e7b5-11dd-a821-001a6bf6d8ad}\Shell\AutopLay\cOmMand - "" = J:\karif.exe -- File not found O33 - MountPoints2\{cfac50d0-e7b5-11dd-a821-001a6bf6d8ad}\Shell\AutoRun\command - "" = J:\karif.exe -- File not found O33 - MountPoints2\{cfac50d0-e7b5-11dd-a821-001a6bf6d8ad}\Shell\eXPlore\Command - "" = J:\karif.exe -- File not found O33 - MountPoints2\{cfac50d0-e7b5-11dd-a821-001a6bf6d8ad}\Shell\Open\CoMmand - "" = J:\karif.exe -- File not found O33 - MountPoints2\{e2091e18-dfdd-11de-b4d3-001a6bf6d8ad}\Shell\AutoRun\command - "" = RECYCLER\S-1-5-21-1482476501-1644491937-682003330-1013\isee.exe O33 - MountPoints2\{e2091e18-dfdd-11de-b4d3-001a6bf6d8ad}\Shell\open\command - "" = RECYCLER\S-1-5-21-1482476501-1644491937-682003330-1013\isee.exe O33 - MountPoints2\{e224d8d2-99d0-11dc-a622-001a6bf6d8ad}\Shell\auTOplAy\comMAnd - "" = K:\pyeva.pif -- File not found O33 - MountPoints2\{e224d8d2-99d0-11dc-a622-001a6bf6d8ad}\Shell\AutoRun\command - "" = K:\pyeva.pif -- File not found O33 - MountPoints2\{e224d8d2-99d0-11dc-a622-001a6bf6d8ad}\Shell\EXplOre\CommANd - "" = K:\pyeva.pif -- File not found O33 - MountPoints2\{e224d8d2-99d0-11dc-a622-001a6bf6d8ad}\Shell\open\COMmAnd - "" = K:\pyeva.pif -- File not found O34 - HKLM BootExecute: (PDBoot.exe) - C:\Windows\System32\PDBoot.exe (Raxco Software, Inc.) O34 - HKLM BootExecute: (autocheck autochk *) - File not found O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* NetSvcs: FastUserSwitchingCompatibility - File not found NetSvcs: Ias - File not found NetSvcs: Nla - File not found NetSvcs: Ntmssvc - File not found NetSvcs: NWCWorkstation - File not found NetSvcs: Nwsapagent - File not found NetSvcs: SRService - File not found NetSvcs: Wmi - C:\Windows\System32\wmi.dll (Microsoft Corporation) NetSvcs: WmdmPmSp - File not found NetSvcs: LogonHours - File not found NetSvcs: PCAudit - File not found NetSvcs: helpsvc - File not found NetSvcs: uploadmgr - File not found MsConfig - StartUpFolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Adobe Reader Speed Launch.lnk - C:\PROGRA~1\Adobe\READER~1.0\Reader\READER~1.EXE - File not found MsConfig - StartUpFolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Adobe Reader Synchronizer.lnk - C:\Program Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe - (Adobe Systems Incorporated) MsConfig - StartUpFolder: C:^Users^Michał^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Tworzenie wycinków ekranu i uruchamianie programu OneNote 2007.lnk - G:\Programy\OFFICE~1\Office12\ONENOTEM.EXE - File not found MsConfig - StartUpReg: [b]AlcoholAutomount[/b] - hkey= - key= - G:\Programy\Alcohol 120\axcmd.exe () MsConfig - StartUpReg: [b]Malwarebytes Anti-Malware (reboot)[/b] - hkey= - key= - G:\Programy\Malwarebytes' Anti-Malware\mbam.exe (Malwarebytes Corporation) MsConfig - StartUpReg: [b]Onet.pl AutoUpdate[/b] - hkey= - key= - C:\Program Files\Common Files\Onet.pl\NewAutoUpdate.exe File not found MsConfig - StartUpReg: [b]swg[/b] - hkey= - key= - C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe (Google Inc.) MsConfig - StartUpReg: [b]WinampAgent[/b] - hkey= - key= - G:\Programy\Winamp\winampa.exe File not found MsConfig - State: "bootini" - 2 MsConfig - State: "startup" - 2 SafeBootMin: AppMgmt - Service SafeBootMin: Base - Driver Group SafeBootMin: Boot Bus Extender - Driver Group SafeBootMin: Boot file system - Driver Group SafeBootMin: File system - Driver Group SafeBootMin: Filter - Driver Group SafeBootMin: HelpSvc - Service SafeBootMin: NTDS - File not found SafeBootMin: PCI Configuration - Driver Group SafeBootMin: PNP Filter - Driver Group SafeBootMin: Primary disk - Driver Group SafeBootMin: sacsvr - Service SafeBootMin: SCSI Class - Driver Group SafeBootMin: System Bus Extender - Driver Group SafeBootMin: WinDefend - C:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation) SafeBootMin: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers SafeBootMin: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive SafeBootMin: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive SafeBootMin: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller SafeBootMin: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc SafeBootMin: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard SafeBootMin: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse SafeBootMin: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters SafeBootMin: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter SafeBootMin: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System SafeBootMin: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive SafeBootMin: {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy SafeBootMin: {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers SafeBootMin: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume SafeBootMin: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices SafeBootMin: {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices SafeBootMin: {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices SafeBootNet: AppMgmt - Service SafeBootNet: Base - Driver Group SafeBootNet: Boot Bus Extender - Driver Group SafeBootNet: Boot file system - Driver Group SafeBootNet: File system - Driver Group SafeBootNet: Filter - Driver Group SafeBootNet: HelpSvc - Service SafeBootNet: Messenger - Service SafeBootNet: NDIS Wrapper - Driver Group SafeBootNet: NetBIOSGroup - Driver Group SafeBootNet: NetDDEGroup - Driver Group SafeBootNet: Network - Driver Group SafeBootNet: NetworkProvider - Driver Group SafeBootNet: NTDS - File not found SafeBootNet: PCI Configuration - Driver Group SafeBootNet: PNP Filter - Driver Group SafeBootNet: PNP_TDI - Driver Group SafeBootNet: Primary disk - Driver Group SafeBootNet: rdsessmgr - Service SafeBootNet: sacsvr - Service SafeBootNet: SCSI Class - Driver Group SafeBootNet: Streams Drivers - Driver Group SafeBootNet: System Bus Extender - Driver Group SafeBootNet: TDI - Driver Group SafeBootNet: WinDefend - C:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation) SafeBootNet: WudfPf - Driver SafeBootNet: WudfUsbccidDriver - Driver SafeBootNet: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers SafeBootNet: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive SafeBootNet: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive SafeBootNet: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller SafeBootNet: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc SafeBootNet: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard SafeBootNet: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse SafeBootNet: {4D36E972-E325-11CE-BFC1-08002BE10318} - Net SafeBootNet: {4D36E973-E325-11CE-BFC1-08002BE10318} - NetClient SafeBootNet: {4D36E974-E325-11CE-BFC1-08002BE10318} - NetService SafeBootNet: {4D36E975-E325-11CE-BFC1-08002BE10318} - NetTrans SafeBootNet: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters SafeBootNet: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter SafeBootNet: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System SafeBootNet: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive SafeBootNet: {50DD5230-BA8A-11D1-BF5D-0000F805F530} - Smart card readers SafeBootNet: {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy SafeBootNet: {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers SafeBootNet: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume SafeBootNet: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices SafeBootNet: {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices SafeBootNet: {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices [color=#E56717]========== Files/Folders - Created Within 60 Days ==========[/color] [2010-07-31 13:36:43 | 000,574,976 | ---- | C] (OldTimer Tools) -- C:\Users\Michał\Desktop\OTL.exe [2010-07-31 00:20:44 | 000,401,720 | ---- | C] (Trend Micro Inc.) -- C:\Users\Michał\Desktop\HiJackThis.exe [2010-07-30 17:26:40 | 000,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbamswissarmy.sys [2010-07-30 17:26:36 | 000,020,952 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys [2010-07-30 17:22:37 | 006,227,080 | ---- | C] (Malwarebytes Corporation ) -- C:\Users\Michał\Desktop\mbam-setup-1.46(dobreprogramy.pl).exe [2010-07-29 19:40:58 | 000,000,000 | ---D | C] -- C:\Users\Michał\Desktop\backups [2010-07-29 10:16:38 | 000,000,000 | ---D | C] -- C:\Program Files\PROnetworks [2010-07-29 10:13:49 | 000,191,488 | ---- | C] (PROnetworks) -- C:\Users\Michał\Desktop\VistaBootPRO_3.3.0.exe [2010-07-28 14:02:31 | 000,000,000 | ---D | C] -- C:\Program Files\a-squared Free [2010-07-24 18:57:53 | 000,000,000 | ---D | C] -- C:\Users\Michał\Documents\a-squared Free [4 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ] [1 C:\Users\Michał\*.tmp files -> C:\Users\Michał\*.tmp -> ] [color=#E56717]========== Files - Modified Within 60 Days ==========[/color] [2010-07-31 17:12:53 | 006,291,456 | -HS- | M] () -- C:\Users\Michał\ntuser.dat [2010-07-31 17:11:00 | 000,000,456 | -H-- | M] () -- C:\Windows\tasks\User_Feed_Synchronization-{94C9E3AC-2D7B-448B-9D50-923637CB0158}.job [2010-07-31 16:14:02 | 000,198,114 | ---- | M] () -- C:\ProgramData\nvModes.dat [2010-07-31 16:14:02 | 000,198,114 | ---- | M] () -- C:\ProgramData\nvModes.001 [2010-07-31 16:13:41 | 000,003,296 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0 [2010-07-31 16:13:41 | 000,003,296 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0 [2010-07-31 16:13:34 | 000,000,006 | -H-- | M] () -- C:\Windows\tasks\SA.DAT [2010-07-31 16:13:21 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat [2010-07-31 13:44:05 | 000,103,140 | RHS- | M] () -- C:\ftoodu.pif [2010-07-31 13:44:05 | 000,000,191 | RHS- | M] () -- C:\autorun.inf [2010-07-31 13:41:37 | 000,524,288 | -HS- | M] () -- C:\Users\Michał\ntuser.dat{4b254e09-061c-11dd-b1a8-001a6bf6d8ad}.TMContainer00000000000000000002.regtrans-ms [2010-07-31 13:41:37 | 000,065,536 | -HS- | M] () -- C:\Users\Michał\ntuser.dat{4b254e09-061c-11dd-b1a8-001a6bf6d8ad}.TM.blf [2010-07-31 13:39:55 | 000,339,991 | ---- | M] () -- C:\Users\Michał\Desktop\RSIT.exe [2010-07-31 13:36:43 | 000,574,976 | ---- | M] (OldTimer Tools) -- C:\Users\Michał\Desktop\OTL.exe [2010-07-31 11:25:56 | 000,132,597 | ---- | M] () -- C:\Users\Michał\Desktop\Flash_Disinfector.exe [2010-07-31 01:40:33 | 000,000,202 | ---- | M] () -- C:\Users\Michał\AppData\Local\QuickPlay.lnk [2010-07-31 01:39:55 | 000,000,202 | ---- | M] () -- C:\Users\Michał\AppData\Local\GameLocalInfo.xml.lnk [2010-07-31 01:22:34 | 000,000,202 | ---- | M] () -- C:\Users\Public\Documents\ScanChInfo.lnk [2010-07-31 01:22:33 | 000,000,202 | ---- | M] () -- C:\ProgramData\VirtualDevice.lnk [2010-07-31 01:21:05 | 000,000,202 | ---- | M] () -- C:\ProgramData\Photoalbum.lnk [2010-07-31 01:15:38 | 036,747,456 | ---- | M] () -- C:\Users\Michał\Desktop\Nokia_PC_Suite_pol_web.exe [2010-07-31 00:44:38 | 000,000,420 | -H-- | M] () -- C:\Windows\tasks\User_Feed_Synchronization-{33A78335-0818-4987-8D74-5A2DA5C573C0}.job [2010-07-31 00:38:50 | 000,000,012 | ---- | M] () -- C:\Windows\bthservsdp.dat [2010-07-31 00:20:57 | 000,401,720 | ---- | M] (Trend Micro Inc.) -- C:\Users\Michał\Desktop\HiJackThis.exe [2010-07-30 21:55:45 | 000,045,568 | ---- | M] () -- C:\Users\Michał\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2010-07-30 17:58:04 | 000,681,360 | ---- | M] () -- C:\Windows\System32\PerfStringBackup.INI [2010-07-30 17:58:04 | 000,341,478 | ---- | M] () -- C:\Windows\System32\perfh009.dat [2010-07-30 17:58:04 | 000,240,676 | ---- | M] () -- C:\Windows\System32\perfh015.dat [2010-07-30 17:58:04 | 000,070,286 | ---- | M] () -- C:\Windows\System32\perfc015.dat [2010-07-30 17:58:04 | 000,045,456 | ---- | M] () -- C:\Windows\System32\perfc009.dat [2010-07-30 17:26:44 | 000,000,601 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk [2010-07-30 17:23:10 | 006,227,080 | ---- | M] (Malwarebytes Corporation ) -- C:\Users\Michał\Desktop\mbam-setup-1.46(dobreprogramy.pl).exe [2010-07-30 13:41:36 | 048,006,456 | ---- | M] () -- C:\Users\Michał\Desktop\launch.exe [2010-07-30 04:30:48 | 000,000,202 | ---- | M] () -- C:\Users\Michał\AppData\Local\groom.avi.lnk [2010-07-30 02:44:36 | 000,000,202 | ---- | M] () -- C:\Users\Michał\AppData\Local\kleopatra.avi.lnk [2010-07-30 02:25:07 | 000,000,202 | ---- | M] () -- C:\ProgramData\Shortcut.lnk [2010-07-30 02:24:23 | 000,000,202 | ---- | M] () -- C:\ProgramData\XXX archive.lnk [2010-07-29 20:42:14 | 002,672,312 | ---- | M] () -- C:\Users\Michał\Desktop\esetsmartinstaller_plk.exe [2010-07-29 10:19:09 | 000,032,768 | ---- | M] () -- C:\backup.bcd [2010-07-29 10:16:41 | 000,001,976 | ---- | M] () -- C:\Users\Public\Desktop\VistaBootPRO 3.3.lnk [2010-07-29 10:15:02 | 000,191,488 | ---- | M] (PROnetworks) -- C:\Users\Michał\Desktop\VistaBootPRO_3.3.0.exe [2010-07-29 06:46:47 | 000,008,192 | R-S- | M] () -- C:\BOOTSECT.BAK [2010-07-28 20:30:59 | 000,001,887 | ---- | M] () -- C:\Windows\diagwrn.xml [2010-07-28 20:30:59 | 000,001,887 | ---- | M] () -- C:\Windows\diagerr.xml [2010-07-28 19:04:04 | 000,000,266 | RHS- | M] () -- C:\ProgramData\ntuser.pol [2010-07-24 19:05:17 | 000,008,484 | ---- | M] () -- C:\Users\Michał\AppData\Local\d3d9caps.dat [2010-07-24 17:27:56 | 000,004,096 | ---- | M] () -- C:\Windows\d3dx.dat [2010-07-13 14:52:53 | 000,001,223 | ---- | M] () -- C:\Windows\bestplayer.ini [2010-07-13 14:52:53 | 000,000,121 | ---- | M] () -- C:\Windows\bestplayer.bpp [2010-07-13 14:52:53 | 000,000,000 | ---- | M] () -- C:\Windows\bestplayer.bbt [2010-07-07 11:11:43 | 000,000,445 | ---- | M] () -- C:\Windows\win.ini [2010-06-10 14:57:15 | 000,435,336 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT [4 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ] [1 C:\Users\Michał\*.tmp files -> C:\Users\Michał\*.tmp -> ] [color=#E56717]========== Files Created - No Company Name ==========[/color] [2010-07-31 13:44:18 | 000,000,191 | RHS- | C] () -- C:\autorun.inf [2010-07-31 13:44:05 | 000,103,140 | RHS- | C] () -- C:\ftoodu.pif [2010-07-31 13:39:55 | 000,339,991 | ---- | C] () -- C:\Users\Michał\Desktop\RSIT.exe [2010-07-31 11:25:55 | 000,132,597 | ---- | C] () -- C:\Users\Michał\Desktop\Flash_Disinfector.exe [2010-07-31 02:20:33 | 000,000,202 | ---- | C] () -- C:\Users\Michał\AppData\Roaming\privacy_policy.txt.lnk [2010-07-31 01:40:33 | 000,000,202 | ---- | C] () -- C:\Users\Michał\AppData\Local\QuickPlay.lnk [2010-07-31 01:39:55 | 000,000,202 | ---- | C] () -- C:\Users\Michał\AppData\Local\GameLocalInfo.xml.lnk [2010-07-31 01:22:34 | 000,000,202 | ---- | C] () -- C:\Users\Public\Documents\ScanChInfo.lnk [2010-07-31 01:22:33 | 000,000,202 | ---- | C] () -- C:\ProgramData\VirtualDevice.lnk [2010-07-31 01:21:05 | 000,000,202 | ---- | C] () -- C:\ProgramData\Photoalbum.lnk [2010-07-31 01:15:30 | 036,747,456 | ---- | C] () -- C:\Users\Michał\Desktop\Nokia_PC_Suite_pol_web.exe [2010-07-30 17:26:44 | 000,000,601 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk [2010-07-30 13:18:36 | 048,006,456 | ---- | C] () -- C:\Users\Michał\Desktop\launch.exe [2010-07-30 02:44:36 | 000,000,202 | ---- | C] () -- C:\Users\Michał\AppData\Local\kleopatra.avi.lnk [2010-07-30 02:43:39 | 000,000,202 | ---- | C] () -- C:\Users\Michał\AppData\Local\groom.avi.lnk [2010-07-30 02:25:07 | 000,000,202 | ---- | C] () -- C:\ProgramData\Shortcut.lnk [2010-07-30 02:24:23 | 000,000,202 | ---- | C] () -- C:\ProgramData\XXX archive.lnk [2010-07-29 20:40:49 | 002,672,312 | ---- | C] () -- C:\Users\Michał\Desktop\esetsmartinstaller_plk.exe [2010-07-29 10:19:04 | 000,032,768 | ---- | C] () -- C:\backup.bcd [2010-07-29 10:16:41 | 000,001,976 | ---- | C] () -- C:\Users\Public\Desktop\VistaBootPRO 3.3.lnk [2010-07-28 12:47:00 | 000,008,192 | R-S- | C] () -- C:\BOOTSECT.BAK [2010-07-24 17:27:56 | 000,004,096 | ---- | C] () -- C:\Windows\d3dx.dat [2010-07-13 14:52:53 | 000,001,223 | ---- | C] () -- C:\Windows\bestplayer.ini [2010-07-13 14:52:53 | 000,000,121 | ---- | C] () -- C:\Windows\bestplayer.bpp [2010-07-13 14:52:53 | 000,000,000 | ---- | C] () -- C:\Windows\bestplayer.bbt [2010-04-02 17:17:34 | 000,179,091 | ---- | C] () -- C:\Windows\System32\xlive.dll.cat [2010-02-24 09:30:28 | 000,006,656 | ---- | C] () -- C:\Windows\System32\bcmwlrc.dll [2010-01-27 01:45:05 | 000,000,038 | ---- | C] () -- C:\Windows\avisplitter.INI [2010-01-08 10:34:30 | 000,014,848 | ---- | C] () -- C:\Windows\System32\EuEpmGdi.dll [2010-01-08 10:34:22 | 000,014,216 | ---- | C] () -- C:\Windows\System32\epmntdrv.sys [2010-01-08 10:34:22 | 000,008,456 | ---- | C] () -- C:\Windows\System32\EuGdiDrv.sys [2009-09-24 09:37:52 | 000,117,248 | ---- | C] () -- C:\Windows\System32\EhStorAuthn.dll [2009-07-05 08:15:53 | 000,281,760 | ---- | C] () -- C:\Windows\System32\drivers\atksgt.sys [2009-07-05 08:15:52 | 000,025,888 | ---- | C] () -- C:\Windows\System32\drivers\lirsgt.sys [2009-01-06 21:46:50 | 000,062,032 | ---- | C] () -- C:\Windows\lsw2_gameexplorerhelper.dll [2008-10-07 09:13:30 | 000,197,912 | ---- | C] () -- C:\Windows\System32\physxcudart_20.dll [2008-10-07 09:13:22 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelTraditionalChinese.dll [2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelSwedish.dll [2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelSpanish.dll [2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelSimplifiedChinese.dll [2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelPortugese.dll [2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelKorean.dll [2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelJapanese.dll [2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelGerman.dll [2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelFrench.dll [2008-07-29 06:41:12 | 000,000,048 | ---- | C] () -- C:\Windows\winfile.ini [2008-04-06 13:47:31 | 000,000,035 | ---- | C] () -- C:\Windows\powerplayer.ini [2008-04-06 13:47:14 | 000,000,374 | ---- | C] () -- C:\Windows\psnetwork.ini [2008-04-02 16:14:15 | 000,164,352 | ---- | C] () -- C:\Windows\System32\unrar.dll [2008-04-02 16:14:13 | 003,596,288 | ---- | C] () -- C:\Windows\System32\qt-dx331.dll [2008-04-02 16:14:13 | 000,755,027 | ---- | C] () -- C:\Windows\System32\xvidcore.dll [2008-04-02 16:14:13 | 000,159,839 | ---- | C] () -- C:\Windows\System32\xvidvfw.dll [2008-04-02 16:14:12 | 000,007,680 | ---- | C] () -- C:\Windows\System32\ff_vfw.dll [2008-04-02 16:14:12 | 000,000,547 | ---- | C] () -- C:\Windows\System32\ff_vfw.dll.manifest [2008-03-24 20:59:02 | 000,000,000 | ---- | C] () -- C:\Windows\Irremote.ini [2008-03-09 17:35:00 | 000,022,328 | ---- | C] () -- C:\Windows\System32\drivers\PnkBstrK.sys [2008-03-04 19:52:34 | 000,286,720 | ---- | C] () -- C:\Windows\System32\libcurl.dll [2008-01-01 19:14:22 | 000,000,069 | ---- | C] () -- C:\Windows\NeroDigital.ini [2007-12-12 13:20:51 | 000,000,271 | ---- | C] () -- C:\Windows\game.ini [2007-11-13 22:21:48 | 000,000,412 | ---- | C] () -- C:\Windows\ODBC.INI [2007-11-13 16:12:28 | 000,069,632 | ---- | C] () -- C:\Windows\System32\xmltok.dll [2007-11-13 16:12:28 | 000,036,864 | ---- | C] () -- C:\Windows\System32\xmlparse.dll [2007-11-08 23:50:43 | 000,691,696 | ---- | C] () -- C:\Windows\System32\drivers\sptd.sys [2007-10-28 17:35:12 | 000,014,848 | ---- | C] () -- C:\Windows\System32\BASSMOD.dll [2007-05-17 14:58:10 | 000,143,360 | ---- | C] () -- C:\Windows\System32\libexpatw.dll [2007-03-29 12:42:38 | 000,389,120 | ---- | C] () -- C:\Windows\System32\btwhidcs.dll [2007-02-27 22:43:02 | 000,000,000 | ---- | C] () -- C:\Windows\System32\px.ini [2006-12-13 23:01:36 | 000,520,192 | ---- | C] () -- C:\Windows\System32\CddbPlaylist2Roxio.dll [2006-12-13 23:01:36 | 000,204,800 | ---- | C] () -- C:\Windows\System32\CddbFileTaggerRoxio.dll [2006-11-02 14:35:32 | 000,005,632 | ---- | C] () -- C:\Windows\System32\sysprepMCE.dll [2006-11-02 12:25:21 | 000,061,440 | ---- | C] () -- C:\Windows\System32\igfxTMM.dll [2006-11-02 09:40:29 | 000,013,750 | ---- | C] () -- C:\Windows\System32\pacerprf.ini [2006-05-03 00:38:24 | 000,000,748 | ---- | C] () -- C:\Windows\SetBrowser.ini [2006-03-10 02:58:00 | 001,060,424 | ---- | C] () -- C:\Windows\System32\WdfCoInstaller01000.dll [2005-05-07 14:06:00 | 000,016,480 | ---- | C] () -- C:\Windows\System32\rixdicon.dll [2005-04-03 22:30:00 | 000,110,592 | R--- | C] () -- C:\Windows\System32\scardsyn.dll [2001-11-14 13:56:00 | 001,802,240 | ---- | C] () -- C:\Windows\System32\lcppn21.dll [1998-06-13 23:53:26 | 000,044,544 | ---- | C] () -- C:\Windows\System32\Gif89.dll [1998-05-07 03:10:00 | 000,069,632 | R--- | C] () -- C:\Windows\System32\ODMA32.dll [color=#E56717]========== LOP Check ==========[/color] [2010-07-31 02:21:03 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\Alawar [2010-07-31 02:21:04 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\Ashampoo [2010-07-31 02:21:12 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\AutoUpdate [2010-07-31 02:21:13 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\BESTplayer [2010-07-31 02:21:15 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\Braid [2010-07-31 02:21:15 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\Canneverbe_Limited [2010-07-31 02:21:19 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\Codeton [2010-07-31 02:21:21 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\Crayon Physics Deluxe [2010-07-31 02:21:33 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\DAEMON Tools [2010-07-31 02:21:35 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\DAEMON Tools Lite [2010-07-31 02:21:37 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\DeepBurner [2010-07-31 02:21:39 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\Flock [2010-07-31 02:22:05 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\foobar2000 [2010-07-31 02:22:06 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\Gadu-Gadu [2010-07-31 02:22:25 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\GanymedeNet [2010-07-31 02:26:14 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\Image Zone Express [2010-07-31 02:26:15 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\InfraRecorder [2010-07-31 02:26:22 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\Kamerzysta [2010-07-31 02:26:35 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\Leadertech [2010-07-31 02:26:43 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\Ludia [2010-07-30 10:48:17 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\My Games [2010-07-30 10:49:50 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\Nokia [2010-07-30 10:50:43 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\Opera [2010-07-30 10:54:22 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\PC Suite [2010-07-30 10:54:38 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\PeerNetworking [2010-07-30 10:54:42 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\PGP Corporation [2010-07-30 10:54:52 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\PPMate [2010-07-30 10:55:03 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\ppStream [2010-07-30 10:55:08 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\Printer Info Cache [2010-07-30 10:59:40 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\SPORE Creature Creator [2010-07-30 10:59:59 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\Sudeki [2010-07-30 11:11:28 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\The Path [2010-07-30 11:11:50 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\Tropico 3 [2010-07-30 11:12:22 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\Ubisoft [2010-07-30 11:12:38 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\Unity [2010-07-31 09:32:47 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\uTorrent [2010-07-30 11:13:19 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\Vso [2010-07-31 00:38:50 | 000,032,560 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT [2010-07-31 00:44:38 | 000,000,420 | -H-- | M] () -- C:\Windows\Tasks\User_Feed_Synchronization-{33A78335-0818-4987-8D74-5A2DA5C573C0}.job [2010-07-31 17:11:00 | 000,000,456 | -H-- | M] () -- C:\Windows\Tasks\User_Feed_Synchronization-{94C9E3AC-2D7B-448B-9D50-923637CB0158}.job [color=#E56717]========== Purity Check ==========[/color] [color=#E56717]========== Custom Scans ==========[/color] [color=#A23BEC]< %systemdrive%\*.* >[/color] [2010-07-31 13:44:05 | 000,000,191 | RHS- | M] () -- C:\autorun.inf [2010-07-29 10:19:09 | 000,032,768 | ---- | M] () -- C:\backup.bcd [2010-07-29 10:19:09 | 000,029,696 | -H-- | M] () -- C:\backup.bcd.LOG [2010-07-29 10:19:09 | 000,000,000 | -H-- | M] () -- C:\backup.bcd.LOG1 [2010-07-29 10:19:09 | 000,000,000 | -H-- | M] () -- C:\backup.bcd.LOG2 [2010-04-18 22:34:05 | 000,000,086 | ---- | M] () -- C:\bcmwl6.log [2009-07-14 03:38:58 | 000,383,562 | RHS- | M] () -- C:\bootmgr [2010-07-29 06:46:47 | 000,008,192 | R-S- | M] () -- C:\BOOTSECT.BAK [2006-09-18 23:43:37 | 000,000,010 | ---- | M] () -- C:\config.sys [2010-07-31 13:44:05 | 000,103,140 | RHS- | M] () -- C:\ftoodu.pif [2007-11-13 20:37:44 | 000,000,000 | RHS- | M] () -- C:\IO.SYS [2008-05-16 00:04:00 | 000,000,177 | ---- | M] () -- C:\ioSpecial.ini [2010-07-29 19:10:35 | 000,106,190 | ---- | M] () -- C:\mksbasel.cpp.log [2007-11-13 20:37:44 | 000,000,000 | RHS- | M] () -- C:\MSDOS.SYS [2010-07-31 16:13:16 | 2997,080,064 | -HS- | M] () -- C:\pagefile.sys [color=#A23BEC]< MD5 for: AGP440.SYS >[/color] [2008-01-19 09:42:25 | 000,056,376 | ---- | M] (Microsoft Corporation) MD5=13F9E33747E6B41A3FF305C37DB0D360 -- C:\Windows\System32\DriverStore\FileRepository\machine.inf_51b95d75\AGP440.sys [2008-01-19 09:42:25 | 000,056,376 | ---- | M] (Microsoft Corporation) MD5=13F9E33747E6B41A3FF305C37DB0D360 -- C:\Windows\System32\DriverStore\FileRepository\machine.inf_f750e484\AGP440.sys [2008-01-19 09:42:25 | 000,056,376 | ---- | M] (Microsoft Corporation) MD5=13F9E33747E6B41A3FF305C37DB0D360 -- C:\Windows\winsxs\x86_machine.inf_31bf3856ad364e35_6.0.6001.18000_none_ba12ed3bbeb0d97a\AGP440.sys [2008-01-19 09:42:25 | 000,056,376 | ---- | M] (Microsoft Corporation) MD5=13F9E33747E6B41A3FF305C37DB0D360 -- C:\Windows\winsxs\x86_machine.inf_31bf3856ad364e35_6.0.6002.18005_none_bbfe6647bbd2a4c6\AGP440.sys [2007-08-22 04:44:27 | 000,053,864 | ---- | M] (Microsoft Corporation) MD5=313FF294978EA6AF715722D708FB249F -- C:\Windows\winsxs\x86_machine.inf_31bf3856ad364e35_6.0.6000.20494_none_b858f78adaed51b3\AGP440.sys [2007-08-22 04:44:28 | 000,053,864 | ---- | M] (Microsoft Corporation) MD5=CE71AFD6738AA025D742CDBCFBDC8B9C -- C:\Windows\System32\DriverStore\FileRepository\machine.inf_f2490cb0\AGP440.sys [2007-08-22 04:44:28 | 000,053,864 | ---- | M] (Microsoft Corporation) MD5=CE71AFD6738AA025D742CDBCFBDC8B9C -- C:\Windows\winsxs\x86_machine.inf_31bf3856ad364e35_6.0.6000.16399_none_b7d45c31c1cb309c\AGP440.sys [2006-11-02 11:49:52 | 000,053,864 | ---- | M] (Microsoft Corporation) MD5=EF23439CDD587F64C2C1B8825CEAD7D8 -- C:\Windows\System32\drivers\AGP440.sys [2006-11-02 11:49:52 | 000,053,864 | ---- | M] (Microsoft Corporation) MD5=EF23439CDD587F64C2C1B8825CEAD7D8 -- C:\Windows\System32\DriverStore\FileRepository\machine.inf_920a2c1f\AGP440.sys [color=#A23BEC]< MD5 for: ATAPI.SYS >[/color] [2009-04-11 08:32:26 | 000,019,944 | ---- | M] (Microsoft Corporation) MD5=1F05B78AB91C9075565A9D8A4B880BC4 -- C:\Windows\System32\drivers\atapi.sys [2009-04-11 08:32:26 | 000,019,944 | ---- | M] (Microsoft Corporation) MD5=1F05B78AB91C9075565A9D8A4B880BC4 -- C:\Windows\System32\DriverStore\FileRepository\mshdc.inf_b12d8e84\atapi.sys [2009-04-11 08:32:26 | 000,019,944 | ---- | M] (Microsoft Corporation) MD5=1F05B78AB91C9075565A9D8A4B880BC4 -- C:\Windows\winsxs\x86_mshdc.inf_31bf3856ad364e35_6.0.6002.18005_none_df23a1261eab99e8\atapi.sys [2008-01-19 09:41:30 | 000,021,560 | ---- | M] (Microsoft Corporation) MD5=2D9C903DC76A66813D350A562DE40ED9 -- C:\Windows\System32\DriverStore\FileRepository\mshdc.inf_cc18792d\atapi.sys [2008-01-19 09:41:30 | 000,021,560 | ---- | M] (Microsoft Corporation) MD5=2D9C903DC76A66813D350A562DE40ED9 -- C:\Windows\winsxs\x86_mshdc.inf_31bf3856ad364e35_6.0.6001.18000_none_dd38281a2189ce9c\atapi.sys [2006-11-02 11:49:36 | 000,019,048 | ---- | M] (Microsoft Corporation) MD5=4F4FCB8B6EA06784FB6D475B7EC7300F -- C:\Windows\System32\DriverStore\FileRepository\mshdc.inf_c6c2e699\atapi.sys [2008-02-13 12:58:34 | 000,021,560 | ---- | M] (Microsoft Corporation) MD5=B35CFCEF838382AB6490B321C87EDF17 -- C:\Windows\System32\DriverStore\FileRepository\mshdc.inf_7de13c21\atapi.sys [2008-02-13 12:58:34 | 000,021,560 | ---- | M] (Microsoft Corporation) MD5=B35CFCEF838382AB6490B321C87EDF17 -- C:\Windows\winsxs\x86_mshdc.inf_31bf3856ad364e35_6.0.6000.16632_none_db337a442479c42c\atapi.sys [2008-02-13 12:58:33 | 000,021,560 | ---- | M] (Microsoft Corporation) MD5=E03E8C99D15D0381E02743C36AFC7C6F -- C:\Windows\winsxs\x86_mshdc.inf_31bf3856ad364e35_6.0.6000.20757_none_dbac78a93da31a8b\atapi.sys [color=#A23BEC]< MD5 for: BEEP.SYS >[/color] [2008-01-19 07:49:10 | 000,006,144 | ---- | M] (Microsoft Corporation) MD5=67E506B75BD5326A3EC7B70BD014DFB6 -- C:\Windows\System32\drivers\beep.sys [2008-01-19 07:49:10 | 000,006,144 | ---- | M] (Microsoft Corporation) MD5=67E506B75BD5326A3EC7B70BD014DFB6 -- C:\Windows\winsxs\x86_microsoft-windows-beepsys_31bf3856ad364e35_6.0.6001.18000_none_c420a153079d485b\beep.sys [2006-11-02 10:51:03 | 000,006,144 | ---- | M] (Microsoft Corporation) MD5=AC3DD1708B22761EBD7CBE14DCC3B5D7 -- C:\Windows\winsxs\x86_microsoft-windows-beepsys_31bf3856ad364e35_6.0.6000.16386_none_c1e9df570ab23787\beep.sys [color=#A23BEC]< MD5 for: CDROM.SYS >[/color] [2008-01-19 07:49:51 | 000,067,072 | ---- | M] (Microsoft Corporation) MD5=1EC25CEA0DE6AC4718BF89F9E1778B57 -- C:\Windows\System32\DriverStore\FileRepository\cdrom.inf_a29e71c6\cdrom.sys [2008-01-19 07:49:51 | 000,067,072 | ---- | M] (Microsoft Corporation) MD5=1EC25CEA0DE6AC4718BF89F9E1778B57 -- C:\Windows\winsxs\x86_cdrom.inf_31bf3856ad364e35_6.0.6001.18000_none_5fa95be2a3c76a4a\cdrom.sys [2009-04-11 06:39:17 | 000,067,072 | ---- | M] (Microsoft Corporation) MD5=6B4BFFB9BECD728097024276430DB314 -- C:\Windows\System32\drivers\cdrom.sys [2009-04-11 06:39:17 | 000,067,072 | ---- | M] (Microsoft Corporation) MD5=6B4BFFB9BECD728097024276430DB314 -- C:\Windows\System32\DriverStore\FileRepository\cdrom.inf_c949a5b6\cdrom.sys [2009-04-11 06:39:17 | 000,067,072 | ---- | M] (Microsoft Corporation) MD5=6B4BFFB9BECD728097024276430DB314 -- C:\Windows\winsxs\x86_cdrom.inf_31bf3856ad364e35_6.0.6002.18005_none_6194d4eea0e93596\cdrom.sys [2006-11-02 10:51:44 | 000,067,072 | ---- | M] (Microsoft Corporation) MD5=8D1866E61AF096AE8B582454F5E4D303 -- C:\Windows\System32\DriverStore\FileRepository\cdrom.inf_e487f727\cdrom.sys [color=#A23BEC]< MD5 for: NDIS.SYS >[/color] [2009-04-11 08:32:49 | 000,527,848 | ---- | M] (Microsoft Corporation) MD5=1357274D1883F68300AEADD15D7BBB42 -- C:\Windows\System32\drivers\ndis.sys [2009-04-11 08:32:49 | 000,527,848 | ---- | M] (Microsoft Corporation) MD5=1357274D1883F68300AEADD15D7BBB42 -- C:\Windows\winsxs\x86_microsoft-windows-ndis_31bf3856ad364e35_6.0.6002.18005_none_a9b2a4d31930d864\ndis.sys [2006-11-02 11:51:42 | 000,500,840 | ---- | M] (Microsoft Corporation) MD5=227C11E1E7CF6EF8AFB2A238D209760C -- C:\Windows\winsxs\x86_microsoft-windows-ndis_31bf3856ad364e35_6.0.6000.16386_none_a59069cb1f23fc44\ndis.sys [2008-01-19 09:43:31 | 000,529,464 | ---- | M] (Microsoft Corporation) MD5=9BDC71790FA08F0A0B5F10462B1BD0B1 -- C:\Windows\winsxs\x86_microsoft-windows-ndis_31bf3856ad364e35_6.0.6001.18000_none_a7c72bc71c0f0d18\ndis.sys [color=#A23BEC]< MD5 for: WINLOGON.EXE >[/color] [2009-04-11 08:28:13 | 000,314,368 | ---- | M] (Microsoft Corporation) MD5=898E7C06A350D4A1A64A9EA264D55452 -- C:\Windows\System32\winlogon.exe [2009-04-11 08:28:13 | 000,314,368 | ---- | M] (Microsoft Corporation) MD5=898E7C06A350D4A1A64A9EA264D55452 -- C:\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.0.6002.18005_none_71ae7a22d2134741\winlogon.exe [2006-11-02 11:45:57 | 000,308,224 | ---- | M] (Microsoft Corporation) MD5=9F75392B9128A91ABAFB044EA350BAAD -- C:\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.0.6000.16386_none_6d8c3f1ad8066b21\winlogon.exe [2008-01-19 09:33:37 | 000,314,880 | ---- | M] (Microsoft Corporation) MD5=C2610B6BDBEFC053BBDAB4F1B965CB24 -- C:\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.0.6001.18000_none_6fc30116d4f17bf5\winlogon.exe [color=#E56717]========== Alternate Data Streams ==========[/color] @Alternate Data Stream - 119 bytes -> C:\ProgramData\TEMP:0F8F5844 @Alternate Data Stream - 109 bytes -> C:\ProgramData\TEMP:010ADD2C < End of report > [/log] [log] OTL Extras logfile created on: 2010-07-31 16:34:34 - Run 1 OTL by OldTimer - Version 3.2.9.1 Folder = C:\Users\Michał\Desktop Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation Internet Explorer (Version = 8.0.6001.18928) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 2,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 63,00% Memory free 5,00 Gb Paging File | 4,00 Gb Available in Paging File | 79,00% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 81,46 Gb Total Space | 40,74 Gb Free Space | 50,02% Space Free | Partition Type: NTFS Drive D: | 6,93 Gb Total Space | 2,39 Gb Free Space | 34,49% Space Free | Partition Type: NTFS E: Drive not present or media not loaded F: Drive not present or media not loaded Drive G: | 60,66 Gb Total Space | 5,55 Gb Free Space | 9,14% Space Free | Partition Type: NTFS H: Drive not present or media not loaded I: Drive not present or media not loaded Computer Name: MICHAŁ-PC Current User Name: Michał Logged in as Administrator. Current Boot Mode: Normal Scan Mode: All users Company Name Whitelist: On Skip Microsoft Files: On File Age = 60 Days Output = Standard [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>] .cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation) .hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation) .html [@ = Opera.HTML] -- G:\Programy\Opera\Opera.exe (Opera Software) [color=#E56717]========== Shell Spawning ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation) htmlfile [edit] -- "G:\Programy\Office\OFFICE11\msohtmed.exe" %1 File not found htmlfile [print] -- "G:\Programy\Office\OFFICE11\msohtmed.exe" /p %1 File not found http [open] -- "G:\Programy\Opera\opera.exe" (Opera Software) https [open] -- "G:\Programy\Opera\opera.exe" (Opera Software) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation) scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [MediaMonkey.1Play] -- "G:\Programy\MediaMonkey\MediaMonkey.exe" "%1" (Ventis Media Inc.) Directory [MediaMonkey.2PlayNext] -- "G:\Programy\MediaMonkey\MediaMonkey.exe" /NEXT "%1" (Ventis Media Inc.) Directory [MediaMonkey.3Enqueue] -- "G:\Programy\MediaMonkey\MediaMonkey.exe" /ADD "%1" (Ventis Media Inc.) Directory [Winamp.Bookmark] -- "G:\Programy\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft) Directory [Winamp.Enqueue] -- "G:\Programy\Winamp\winamp.exe" /ADD "%1" (Nullsoft) Directory [Winamp.Play] -- "G:\Programy\Winamp\winamp.exe" "%1" (Nullsoft) Folder [open] -- %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L (Microsoft Corporation) Folder [explore] -- %SystemRoot%\Explorer.exe /separate,/e,/idlist,%I,%L (Microsoft Corporation) Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 "UacDisableNotify" = 1 "InternetSettingsDisableNotify" = 1 "AutoUpdateDisableNotify" = 1 "AntiVirusOverride" = 1 "FirewallOverride" = 1 "AntiVirusDisableNotify" = 1 "FirewallDisableNotify" = 1 "UpdatesDisableNotify" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] "DisableMonitoring" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus] "DisableMonitoring" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall] "DisableMonitoring" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "AntiVirusOverride" = 1 "AntiSpywareOverride" = 1 "FirewallOverride" = 0 "VistaSp1" = Reg Error: Unknown registry data type -- File not found "VistaSp2" = Reg Error: Unknown registry data type -- File not found [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 1 "EnableFirewall" = 0 "DoNotAllowExceptions" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 0 "DoNotAllowExceptions" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] "G:\Programy\PPMate\ppmate.exe" = G:\Programy\PPMate\ppmate.exe:*:Enabled:PPMate -- File not found "G:\Programy\PPMate\ppamnet.exe" = G:\Programy\PPMate\ppamnet.exe:*:Enabled:PPMate -- File not found "E:\Postal 2 Share the Pain\POSTAL2 STP\Setup.exe" = E:\Postal 2 Share the Pain\POSTAL2 STP\Setup.exe:*:Enabled:ipsec -- File not found "C:\Windows\system32\netsh.exe" = C:\Windows\system32\netsh.exe:*:Enabled:ipsec -- (Microsoft Corporation) "c:\Program Files\Bioscrypt\VeriSoft\Bin\AsGHost.exe" = c:\Program Files\Bioscrypt\VeriSoft\Bin\AsGHost.exe:*:Enabled:ipsec -- File not found "G:\Programy\EASEUS Partition Master 4.1.1 Home Edition\bin\Main.exe" = G:\Programy\EASEUS Partition Master 4.1.1 Home Edition\bin\Main.exe:*:Enabled:ipsec -- File not found "C:\Program Files\Synaptics\SynTP\SynTPStart.exe" = C:\Program Files\Synaptics\SynTP\SynTPStart.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\mprkvv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\mprkvv.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\mrtiwx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\mrtiwx.exe:*:Enabled:ipsec -- File not found "C:\Windows\Explorer.EXE" = C:\Windows\Explorer.EXE:*:Enabled:ipsec -- (Microsoft Corporation) "G:\Programy\EvilLyrics\EvilLyrics.exe" = G:\Programy\EvilLyrics\EvilLyrics.exe:*:Enabled:ipsec -- File not found "C:\Windows\helppane.exe" = C:\Windows\helppane.exe:*:Enabled:ipsec -- (Microsoft Corporation) "C:\Users\MICHA~1\AppData\Local\Temp\maveep.exe" = C:\Users\MICHA~1\AppData\Local\Temp\maveep.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\krwb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\krwb.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winmjnqcs.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winmjnqcs.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winywyjij.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winywyjij.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winmblt.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winmblt.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\mxqup.exe" = C:\Users\MICHA~1\AppData\Local\Temp\mxqup.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winfgom.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winfgom.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winelcr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winelcr.exe:*:Enabled:ipsec -- File not found "C:\Program Files\Google\Update\GoogleUpdate.exe" = C:\Program Files\Google\Update\GoogleUpdate.exe:*:Enabled:ipsec -- File not found "C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe" = C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winxvqdex.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winxvqdex.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winrhdmir.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winrhdmir.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winwfao.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winwfao.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winubjhuh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winubjhuh.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winfvot.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winfvot.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winkjnljx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winkjnljx.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winlphova.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winlphova.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winxslq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winxslq.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winkytlda.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winkytlda.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winvadgh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winvadgh.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\uqpbf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\uqpbf.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\usqwt.exe" = C:\Users\MICHA~1\AppData\Local\Temp\usqwt.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wintihgx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wintihgx.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winogql.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winogql.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\wintalm.exe" = C:\Windows\TEMP\wintalm.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\xyext.exe" = C:\Users\MICHA~1\AppData\Local\Temp\xyext.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\wingcfv.exe" = C:\Windows\TEMP\wingcfv.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winfydd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winfydd.exe:*:Enabled:ipsec -- File not found "C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE" = C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winfshp.exe" = C:\Windows\TEMP\winfshp.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winiexg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winiexg.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wincjqe.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wincjqe.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\vtxutf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\vtxutf.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winobor.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winobor.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\esag.exe" = C:\Users\MICHA~1\AppData\Local\Temp\esag.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winxvpdil.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winxvpdil.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winebpyd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winebpyd.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\kkgux.exe" = C:\Users\MICHA~1\AppData\Local\Temp\kkgux.exe:*:Enabled:ipsec -- File not found "C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe" = C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winonyhk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winonyhk.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winrcgtvu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winrcgtvu.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winqagnvv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winqagnvv.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winupyh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winupyh.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winivqch.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winivqch.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winlnrb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winlnrb.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winqtpkw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winqtpkw.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winohsku.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winohsku.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winlpav.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winlpav.exe:*:Enabled:ipsec -- File not found "C:\Program Files\HP\QuickPlay\QPService.exe" = C:\Program Files\HP\QuickPlay\QPService.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winghysmu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winghysmu.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\vkuw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\vkuw.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winlocgv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winlocgv.exe:*:Enabled:ipsec -- File not found "G:\Programy\defragmentator dysku\PDEngine.exe" = G:\Programy\defragmentator dysku\PDEngine.exe:*:Enabled:ipsec -- (Raxco Software, Inc.) "C:\Windows\TEMP\ecmw.exe" = C:\Windows\TEMP\ecmw.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winjtmgia.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winjtmgia.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winkdwiik.exe" = C:\Windows\TEMP\winkdwiik.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\qsivk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\qsivk.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winljpag.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winljpag.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winlrpa.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winlrpa.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\krcxh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\krcxh.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\efotpa.exe" = C:\Users\MICHA~1\AppData\Local\Temp\efotpa.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\tvmivd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\tvmivd.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winhmht.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhmht.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winukvwgq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winukvwgq.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\hqsort.exe" = C:\Users\MICHA~1\AppData\Local\Temp\hqsort.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\pggpj.exe" = C:\Users\MICHA~1\AppData\Local\Temp\pggpj.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winfmkbl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winfmkbl.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\ytdxra.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ytdxra.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\baocfa.exe" = C:\Users\MICHA~1\AppData\Local\Temp\baocfa.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\sngcxu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\sngcxu.exe:*:Enabled:ipsec -- File not found "G:\Gry\Tropico\Tropico 3\uninst.exe" = G:\Gry\Tropico\Tropico 3\uninst.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\~nsu.tmp\Au_.exe" = C:\Users\MICHA~1\AppData\Local\Temp\~nsu.tmp\Au_.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\boem.exe" = C:\Windows\TEMP\boem.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winxicks.exe" = C:\Windows\TEMP\winxicks.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\biua.exe" = C:\Windows\TEMP\biua.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\ojhvd.exe" = C:\Windows\TEMP\ojhvd.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\knki.exe" = C:\Windows\TEMP\knki.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winbdin.exe" = C:\Windows\TEMP\winbdin.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winogjmue.exe" = C:\Windows\TEMP\winogjmue.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winfbhw.exe" = C:\Windows\TEMP\winfbhw.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\cnooao.exe" = C:\Windows\TEMP\cnooao.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\opxd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\opxd.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winycgst.exe" = C:\Windows\TEMP\winycgst.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winbffyu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbffyu.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winqkcop.exe" = C:\Windows\TEMP\winqkcop.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\riope.exe" = C:\Users\MICHA~1\AppData\Local\Temp\riope.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winqhyff.exe" = C:\Windows\TEMP\winqhyff.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\gunyf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\gunyf.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\plti.exe" = C:\Windows\TEMP\plti.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winjxlku.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winjxlku.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\eoomjn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\eoomjn.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winrfaa.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winrfaa.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\gcvk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\gcvk.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winypnqe.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winypnqe.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\wingdorb.exe" = C:\Windows\TEMP\wingdorb.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winridno.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winridno.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\vmxpcj.exe" = C:\Windows\TEMP\vmxpcj.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\xpuhx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\xpuhx.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winpxjvd.exe" = C:\Windows\TEMP\winpxjvd.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winmnuvbc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winmnuvbc.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winvyep.exe" = C:\Windows\TEMP\winvyep.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winsjefm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winsjefm.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winvmdhb.exe" = C:\Windows\TEMP\winvmdhb.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winkdot.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winkdot.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winuebdgp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winuebdgp.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winwdmdmq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winwdmdmq.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winbjfr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbjfr.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\gmdkyh.exe" = C:\Windows\TEMP\gmdkyh.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\cofur.exe" = C:\Windows\TEMP\cofur.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\prla.exe" = C:\Windows\TEMP\prla.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\pugvy.exe" = C:\Windows\TEMP\pugvy.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winfhaq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winfhaq.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winxdgn.exe" = C:\Windows\TEMP\winxdgn.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wincugfpm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wincugfpm.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winevhjre.exe" = C:\Windows\TEMP\winevhjre.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\vclqsb.exe" = C:\Windows\TEMP\vclqsb.exe:*:Enabled:ipsec -- File not found "C:\Program Files\AMD\Dual-Core Optimizer\amd_dc_opt.exe" = C:\Program Files\AMD\Dual-Core Optimizer\amd_dc_opt.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\ogjm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ogjm.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winkwpcyr.exe" = C:\Windows\TEMP\winkwpcyr.exe:*:Enabled:ipsec -- File not found "C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe" = C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe:*:Enabled:ipsec -- (Broadcom Corporation.) "C:\Users\MICHA~1\AppData\Local\Temp\winppqmqs.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winppqmqs.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winjmwl.exe" = C:\Windows\TEMP\winjmwl.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\wcejo.exe" = C:\Windows\TEMP\wcejo.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\lmbvmg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\lmbvmg.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\xnpqn.exe" = C:\Windows\TEMP\xnpqn.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\wnrmpv.exe" = C:\Windows\TEMP\wnrmpv.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winbhqwfd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbhqwfd.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winphpc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winphpc.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\iorcsc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\iorcsc.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wincufngt.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wincufngt.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\ynaq.exe" = C:\Windows\TEMP\ynaq.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winxtvwno.exe" = C:\Windows\TEMP\winxtvwno.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\unog.exe" = C:\Users\MICHA~1\AppData\Local\Temp\unog.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winjhwwq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winjhwwq.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winftbl.exe" = C:\Windows\TEMP\winftbl.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\ubdky.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ubdky.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\wevjro.exe" = C:\Windows\TEMP\wevjro.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winoqaef.exe" = C:\Windows\TEMP\winoqaef.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winhhwyvt.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhhwyvt.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winsfvpq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winsfvpq.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\whyd.exe" = C:\Windows\TEMP\whyd.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\ofgjkq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ofgjkq.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winndnphv.exe" = C:\Windows\TEMP\winndnphv.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wintmry.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wintmry.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winsqidee.exe" = C:\Windows\TEMP\winsqidee.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\dqegfo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\dqegfo.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\ggcg.exe" = C:\Windows\TEMP\ggcg.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winfsnkd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winfsnkd.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winlktqf.exe" = C:\Windows\TEMP\winlktqf.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\windbon.exe" = C:\Users\MICHA~1\AppData\Local\Temp\windbon.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winhvfo.exe" = C:\Windows\TEMP\winhvfo.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wintmgg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wintmgg.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winxqfe.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winxqfe.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winpcsck.exe" = C:\Windows\TEMP\winpcsck.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winsxty.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winsxty.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\windcah.exe" = C:\Windows\TEMP\windcah.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winxwwo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winxwwo.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winogbix.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winogbix.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wintgpu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wintgpu.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winbyom.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbyom.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winfnjc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winfnjc.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\teosy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\teosy.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wingqddl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wingqddl.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winqcxuba.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winqcxuba.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\ldaif.exe" = C:\Windows\TEMP\ldaif.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winqensu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winqensu.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\gjvqe.exe" = C:\Windows\TEMP\gjvqe.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\windrnwv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\windrnwv.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winfddbg.exe" = C:\Windows\TEMP\winfddbg.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wincckm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wincckm.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winmemlow.exe" = C:\Windows\TEMP\winmemlow.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\fgfkew.exe" = C:\Users\MICHA~1\AppData\Local\Temp\fgfkew.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winbyick.exe" = C:\Windows\TEMP\winbyick.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\negk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\negk.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winkpbqf.exe" = C:\Windows\TEMP\winkpbqf.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winfmrcs.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winfmrcs.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\cpcq.exe" = C:\Windows\TEMP\cpcq.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winawond.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winawond.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winjfwae.exe" = C:\Windows\TEMP\winjfwae.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winbyeaq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbyeaq.exe:*:Enabled:ipsec -- File not found "C:\Program Files\Windows Defender\MSASCui.exe" = C:\Program Files\Windows Defender\MSASCui.exe:*:Enabled:ipsec -- (Microsoft Corporation) "C:\Users\MICHA~1\AppData\Local\Temp\winplkli.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winplkli.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\ntukre.exe" = C:\Windows\TEMP\ntukre.exe:*:Enabled:ipsec -- File not found "C:\Program Files\HP\QuickPlay\Kernel\TV\CLSched.exe" = C:\Program Files\HP\QuickPlay\Kernel\TV\CLSched.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\ctulx.exe" = C:\Windows\TEMP\ctulx.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\tuws.exe" = C:\Users\MICHA~1\AppData\Local\Temp\tuws.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\ekks.exe" = C:\Windows\TEMP\ekks.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winfseefk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winfseefk.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winolpn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winolpn.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\ggnqgx.exe" = C:\Windows\TEMP\ggnqgx.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winhdadql.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhdadql.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winshkmc.exe" = C:\Windows\TEMP\winshkmc.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wintvpeq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wintvpeq.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\oees.exe" = C:\Windows\TEMP\oees.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winfxqxm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winfxqxm.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\doeok.exe" = C:\Windows\TEMP\doeok.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wqush.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wqush.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\dyrkxx.exe" = C:\Windows\TEMP\dyrkxx.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winticnkw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winticnkw.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winohwcr.exe" = C:\Windows\TEMP\winohwcr.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\gdhe.exe" = C:\Users\MICHA~1\AppData\Local\Temp\gdhe.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\yfuq.exe" = C:\Windows\TEMP\yfuq.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winuawvn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winuawvn.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\bchmn.exe" = C:\Windows\TEMP\bchmn.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\auyhf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\auyhf.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winkfyuit.exe" = C:\Windows\TEMP\winkfyuit.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winnalun.exe" = C:\Windows\TEMP\winnalun.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\iyrb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\iyrb.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winbwpd.exe" = C:\Windows\TEMP\winbwpd.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wingakcl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wingakcl.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winvsjp.exe" = C:\Windows\TEMP\winvsjp.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\nylcs.exe" = C:\Users\MICHA~1\AppData\Local\Temp\nylcs.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winnvrha.exe" = C:\Windows\TEMP\winnvrha.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\eqhg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\eqhg.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\oxwun.exe" = C:\Users\MICHA~1\AppData\Local\Temp\oxwun.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wsuc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wsuc.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winjrtu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winjrtu.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\ixlnlv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ixlnlv.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winilnh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winilnh.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\pdygx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\pdygx.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\qpdspw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\qpdspw.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winvvxfcx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winvvxfcx.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winfyufn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winfyufn.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winwohd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winwohd.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\ngcrpb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ngcrpb.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\unlv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\unlv.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winrxhe.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winrxhe.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winakxau.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winakxau.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winxjakx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winxjakx.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wvktnp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wvktnp.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\tilgp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\tilgp.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\wingvasmc.exe" = C:\Windows\TEMP\wingvasmc.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\yfjlb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\yfjlb.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winhnses.exe" = C:\Windows\TEMP\winhnses.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wrfd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wrfd.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winaotl.exe" = C:\Windows\TEMP\winaotl.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\iwnhlb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\iwnhlb.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\gljc.exe" = C:\Windows\TEMP\gljc.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winqtol.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winqtol.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\wuvfew.exe" = C:\Windows\TEMP\wuvfew.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winiakfcm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winiakfcm.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winkiqkqr.exe" = C:\Windows\TEMP\winkiqkqr.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\ictjvf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ictjvf.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winoscec.exe" = C:\Windows\TEMP\winoscec.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winkfuhlp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winkfuhlp.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\ubig.exe" = C:\Windows\TEMP\ubig.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winfvqcrr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winfvqcrr.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winttixl.exe" = C:\Windows\TEMP\winttixl.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winmckr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winmckr.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\utfu.exe" = C:\Windows\TEMP\utfu.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winiahum.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winiahum.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winfojfr.exe" = C:\Windows\TEMP\winfojfr.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winunmph.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winunmph.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winkxng.exe" = C:\Windows\TEMP\winkxng.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\xpbf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\xpbf.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winmdbeh.exe" = C:\Windows\TEMP\winmdbeh.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\jtsdkm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\jtsdkm.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\wsxh.exe" = C:\Windows\TEMP\wsxh.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\auqfqw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\auqfqw.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\spmw.exe" = C:\Windows\TEMP\spmw.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wintyvn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wintyvn.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\wintybjl.exe" = C:\Windows\TEMP\wintybjl.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\ciffb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ciffb.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\wintughg.exe" = C:\Windows\TEMP\wintughg.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winhekhma.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhekhma.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\kvkbs.exe" = C:\Windows\TEMP\kvkbs.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\fufqo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\fufqo.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winsdsf.exe" = C:\Windows\TEMP\winsdsf.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winppid.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winppid.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\qlhd.exe" = C:\Windows\TEMP\qlhd.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\toaf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\toaf.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winmdrxxn.exe" = C:\Windows\TEMP\winmdrxxn.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winqybi.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winqybi.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\nrwm.exe" = C:\Windows\TEMP\nrwm.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winbsndx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbsndx.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winjrxov.exe" = C:\Windows\TEMP\winjrxov.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\jcdgs.exe" = C:\Windows\TEMP\jcdgs.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wpjtmy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wpjtmy.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\tiyjtv.exe" = C:\Windows\TEMP\tiyjtv.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winejqvqc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winejqvqc.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winljdpi.exe" = C:\Windows\TEMP\winljdpi.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winryeg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winryeg.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winaehtbh.exe" = C:\Windows\TEMP\winaehtbh.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wincxman.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wincxman.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\nmdva.exe" = C:\Windows\TEMP\nmdva.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winhsljlj.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhsljlj.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\fwpp.exe" = C:\Windows\TEMP\fwpp.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\aihdv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\aihdv.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winvknrq.exe" = C:\Windows\TEMP\winvknrq.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\iiaks.exe" = C:\Users\MICHA~1\AppData\Local\Temp\iiaks.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winqosb.exe" = C:\Windows\TEMP\winqosb.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wineobe.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wineobe.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\wincvdp.exe" = C:\Windows\TEMP\wincvdp.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winuufq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winuufq.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\yreryo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\yreryo.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winjtwa.exe" = C:\Windows\TEMP\winjtwa.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winfjxgvu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winfjxgvu.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\wintrrerh.exe" = C:\Windows\TEMP\wintrrerh.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winfjlnfr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winfjlnfr.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\beyapj.exe" = C:\Windows\TEMP\beyapj.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winpqnw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winpqnw.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winkowho.exe" = C:\Windows\TEMP\winkowho.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winsmyb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winsmyb.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\uxvcny.exe" = C:\Windows\TEMP\uxvcny.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\mkgc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\mkgc.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\dkfl.exe" = C:\Windows\TEMP\dkfl.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\fqldb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\fqldb.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winicdr.exe" = C:\Windows\TEMP\winicdr.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\cpsl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\cpsl.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\mcpsfr.exe" = C:\Windows\TEMP\mcpsfr.exe:*:Enabled:ipsec -- File not found "C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\hiddata.exe" = C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\hiddata.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winjpccq.exe" = C:\Windows\TEMP\winjpccq.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\aoeewo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\aoeewo.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winunhnj.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winunhnj.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winidlo.exe" = C:\Windows\TEMP\winidlo.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\tgyjpb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\tgyjpb.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\xnbcp.exe" = C:\Windows\TEMP\xnbcp.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winarba.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winarba.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winqvmup.exe" = C:\Windows\TEMP\winqvmup.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\cajhd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\cajhd.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\wintkqnp.exe" = C:\Windows\TEMP\wintkqnp.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winoabb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winoabb.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winknbt.exe" = C:\Windows\TEMP\winknbt.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winnagbv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winnagbv.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\agkfxs.exe" = C:\Users\MICHA~1\AppData\Local\Temp\agkfxs.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\cxtvxj.exe" = C:\Windows\TEMP\cxtvxj.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winykhy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winykhy.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\qabwgk.exe" = C:\Windows\TEMP\qabwgk.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winrnal.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winrnal.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winseuj.exe" = C:\Windows\TEMP\winseuj.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\xwms.exe" = C:\Users\MICHA~1\AppData\Local\Temp\xwms.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\wingqjdst.exe" = C:\Windows\TEMP\wingqjdst.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\pygvxj.exe" = C:\Users\MICHA~1\AppData\Local\Temp\pygvxj.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winnkoen.exe" = C:\Windows\TEMP\winnkoen.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winusfwo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winusfwo.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\iewg.exe" = C:\Windows\TEMP\iewg.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\qsndf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\qsndf.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winwloh.exe" = C:\Windows\TEMP\winwloh.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winrpkno.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winrpkno.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winwpcclv.exe" = C:\Windows\TEMP\winwpcclv.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winyhhm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winyhhm.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\vgmniy.exe" = C:\Windows\TEMP\vgmniy.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winfnrg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winfnrg.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\pjny.exe" = C:\Windows\TEMP\pjny.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\windtwtqv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\windtwtqv.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\pnpw.exe" = C:\Windows\TEMP\pnpw.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winxwfdkg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winxwfdkg.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\wingkkty.exe" = C:\Windows\TEMP\wingkkty.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winvabnra.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winvabnra.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winperxb.exe" = C:\Windows\TEMP\winperxb.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\rokngb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\rokngb.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\mumqcd.exe" = C:\Windows\TEMP\mumqcd.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\vadsya.exe" = C:\Users\MICHA~1\AppData\Local\Temp\vadsya.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\dvrxo.exe" = C:\Windows\TEMP\dvrxo.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winqcip.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winqcip.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\ywqki.exe" = C:\Windows\TEMP\ywqki.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winygibt.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winygibt.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winadnoqa.exe" = C:\Windows\TEMP\winadnoqa.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\jqtyiq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\jqtyiq.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winjohwkj.exe" = C:\Windows\TEMP\winjohwkj.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\sgdd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\sgdd.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\mqacvk.exe" = C:\Windows\TEMP\mqacvk.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winvyia.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winvyia.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\girsyy.exe" = C:\Windows\TEMP\girsyy.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\uqhqi.exe" = C:\Users\MICHA~1\AppData\Local\Temp\uqhqi.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winflmnxg.exe" = C:\Windows\TEMP\winflmnxg.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winbdjmcp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbdjmcp.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winhaiy.exe" = C:\Windows\TEMP\winhaiy.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winiqbnyi.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winiqbnyi.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\qyytct.exe" = C:\Windows\TEMP\qyytct.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winrgri.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winrgri.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winkbdwh.exe" = C:\Windows\TEMP\winkbdwh.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\ipnurl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ipnurl.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winnklc.exe" = C:\Windows\TEMP\winnklc.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\kcypx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\kcypx.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winsfditm.exe" = C:\Windows\TEMP\winsfditm.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\bfoiqg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\bfoiqg.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\swsam.exe" = C:\Windows\TEMP\swsam.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winjrstml.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winjrstml.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\wintvved.exe" = C:\Windows\TEMP\wintvved.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\pjknf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\pjknf.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\tmdglj.exe" = C:\Windows\TEMP\tmdglj.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winkbrpk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winkbrpk.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\ontbgg.exe" = C:\Windows\TEMP\ontbgg.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\esege.exe" = C:\Users\MICHA~1\AppData\Local\Temp\esege.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winxilui.exe" = C:\Windows\TEMP\winxilui.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\mjju.exe" = C:\Users\MICHA~1\AppData\Local\Temp\mjju.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winiaspgk.exe" = C:\Windows\TEMP\winiaspgk.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winenckxd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winenckxd.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winfrnrn.exe" = C:\Windows\TEMP\winfrnrn.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\kbihhd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\kbihhd.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\rxuhnv.exe" = C:\Windows\TEMP\rxuhnv.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\cren.exe" = C:\Users\MICHA~1\AppData\Local\Temp\cren.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winxowe.exe" = C:\Windows\TEMP\winxowe.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winwbpv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winwbpv.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\wincqfmes.exe" = C:\Windows\TEMP\wincqfmes.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\ghik.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ghik.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\wingmhl.exe" = C:\Windows\TEMP\wingmhl.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\sbjegh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\sbjegh.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\yblrur.exe" = C:\Windows\TEMP\yblrur.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winduwu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winduwu.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winddebk.exe" = C:\Windows\TEMP\winddebk.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\jvhp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\jvhp.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\rwfw.exe" = C:\Windows\TEMP\rwfw.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winrjgonc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winrjgonc.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wingntxvg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wingntxvg.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\giaeks.exe" = C:\Users\MICHA~1\AppData\Local\Temp\giaeks.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winaupaf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winaupaf.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\alard.exe" = C:\Users\MICHA~1\AppData\Local\Temp\alard.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\sdhxd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\sdhxd.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\omrth.exe" = C:\Users\MICHA~1\AppData\Local\Temp\omrth.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\kxybrd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\kxybrd.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winodqw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winodqw.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winqpfjbm.exe" = C:\Windows\TEMP\winqpfjbm.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winyxkkoq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winyxkkoq.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\dbfa.exe" = C:\Windows\TEMP\dbfa.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wintqoaey.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wintqoaey.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\oxsrky.exe" = C:\Windows\TEMP\oxsrky.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wineiuv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wineiuv.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\ltxhly.exe" = C:\Windows\TEMP\ltxhly.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winagymm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winagymm.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\hhrc.exe" = C:\Windows\TEMP\hhrc.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winofdwry.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winofdwry.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\ilao.exe" = C:\Windows\TEMP\ilao.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winkcmd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winkcmd.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winfmvl.exe" = C:\Windows\TEMP\winfmvl.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\ciogm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ciogm.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winmpvg.exe" = C:\Windows\TEMP\winmpvg.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winybsqq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winybsqq.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winfmmb.exe" = C:\Windows\TEMP\winfmmb.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winhedpl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhedpl.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\wintahwg.exe" = C:\Windows\TEMP\wintahwg.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winvbsjql.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winvbsjql.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\tfbxg.exe" = C:\Windows\TEMP\tfbxg.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wqdqt.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wqdqt.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\windwky.exe" = C:\Windows\TEMP\windwky.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\vnkv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\vnkv.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\wintruvij.exe" = C:\Windows\TEMP\wintruvij.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winrxymse.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winrxymse.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winflcg.exe" = C:\Windows\TEMP\winflcg.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winremvcq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winremvcq.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winjbtol.exe" = C:\Windows\TEMP\winjbtol.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winqnycas.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winqnycas.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\wineovhw.exe" = C:\Windows\TEMP\wineovhw.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\windghrgq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\windghrgq.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\yqfis.exe" = C:\Windows\TEMP\yqfis.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\vlkwgr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\vlkwgr.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winxgbscw.exe" = C:\Windows\TEMP\winxgbscw.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\qfmdrc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\qfmdrc.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winfblru.exe" = C:\Windows\TEMP\winfblru.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\peaeq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\peaeq.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\wincsgxq.exe" = C:\Windows\TEMP\wincsgxq.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winevfwf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winevfwf.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winoeniwq.exe" = C:\Windows\TEMP\winoeniwq.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winssvlr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winssvlr.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winvdlmlt.exe" = C:\Windows\TEMP\winvdlmlt.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\ofiisk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ofiisk.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winjmmbc.exe" = C:\Windows\TEMP\winjmmbc.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winomqmu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winomqmu.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winxvai.exe" = C:\Windows\TEMP\winxvai.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\efywcg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\efywcg.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winvexvgc.exe" = C:\Windows\TEMP\winvexvgc.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\fnhp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\fnhp.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\vcub.exe" = C:\Windows\TEMP\vcub.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winqilx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winqilx.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wineixm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wineixm.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winkmxwu.exe" = C:\Windows\TEMP\winkmxwu.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winqorf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winqorf.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\whcxf.exe" = C:\Windows\TEMP\whcxf.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\afhsh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\afhsh.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winfbgs.exe" = C:\Windows\TEMP\winfbgs.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\esrn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\esrn.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winmjivp.exe" = C:\Windows\TEMP\winmjivp.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winummhg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winummhg.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\wintsgl.exe" = C:\Windows\TEMP\wintsgl.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\windrbl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\windrbl.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winmjxw.exe" = C:\Windows\TEMP\winmjxw.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winaepde.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winaepde.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winlfkny.exe" = C:\Windows\TEMP\winlfkny.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winyialv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winyialv.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\wingudm.exe" = C:\Windows\TEMP\wingudm.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\dnjrja.exe" = C:\Users\MICHA~1\AppData\Local\Temp\dnjrja.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winfqpkf.exe" = C:\Windows\TEMP\winfqpkf.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\yylgre.exe" = C:\Users\MICHA~1\AppData\Local\Temp\yylgre.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winuxps.exe" = C:\Windows\TEMP\winuxps.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\snbva.exe" = C:\Users\MICHA~1\AppData\Local\Temp\snbva.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\yvkgv.exe" = C:\Windows\TEMP\yvkgv.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winpbof.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winpbof.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winaqrvu.exe" = C:\Windows\TEMP\winaqrvu.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winmfvncy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winmfvncy.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winorjya.exe" = C:\Windows\TEMP\winorjya.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winicxmg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winicxmg.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winiprx.exe" = C:\Windows\TEMP\winiprx.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\smcys.exe" = C:\Users\MICHA~1\AppData\Local\Temp\smcys.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winfktwk.exe" = C:\Windows\TEMP\winfktwk.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\windaljub.exe" = C:\Users\MICHA~1\AppData\Local\Temp\windaljub.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\sfapcr.exe" = C:\Windows\TEMP\sfapcr.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winbork.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbork.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\cftljd.exe" = C:\Windows\TEMP\cftljd.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\dbba.exe" = C:\Users\MICHA~1\AppData\Local\Temp\dbba.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\wincdhf.exe" = C:\Windows\TEMP\wincdhf.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winmhyw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winmhyw.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\undaoh.exe" = C:\Windows\TEMP\undaoh.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winjkjqv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winjkjqv.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winedkrkm.exe" = C:\Windows\TEMP\winedkrkm.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winfmsxt.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winfmsxt.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winfpncdl.exe" = C:\Windows\TEMP\winfpncdl.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\ufiym.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ufiym.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winygcuri.exe" = C:\Windows\TEMP\winygcuri.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\windahlgn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\windahlgn.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winhmowq.exe" = C:\Windows\TEMP\winhmowq.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\rtew.exe" = C:\Users\MICHA~1\AppData\Local\Temp\rtew.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winladnda.exe" = C:\Windows\TEMP\winladnda.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winpont.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winpont.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winnpxno.exe" = C:\Windows\TEMP\winnpxno.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\gxrcgt.exe" = C:\Users\MICHA~1\AppData\Local\Temp\gxrcgt.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\mpfg.exe" = C:\Windows\TEMP\mpfg.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\owblk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\owblk.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winkhtd.exe" = C:\Windows\TEMP\winkhtd.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\mvkupg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\mvkupg.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\lesno.exe" = C:\Windows\TEMP\lesno.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\ykpge.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ykpge.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winbvud.exe" = C:\Windows\TEMP\winbvud.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winodwyt.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winodwyt.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winypsb.exe" = C:\Windows\TEMP\winypsb.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\drnk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\drnk.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winrxfwf.exe" = C:\Windows\TEMP\winrxfwf.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\ymwcss.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ymwcss.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winwssg.exe" = C:\Windows\TEMP\winwssg.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\vxhq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\vxhq.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\lefl.exe" = C:\Windows\TEMP\lefl.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wingkux.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wingkux.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\wincdixkf.exe" = C:\Windows\TEMP\wincdixkf.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winfbghu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winfbghu.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winqrrseo.exe" = C:\Windows\TEMP\winqrrseo.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winfvrlh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winfvrlh.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\sysby.exe" = C:\Windows\TEMP\sysby.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winykepfe.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winykepfe.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winkingg.exe" = C:\Windows\TEMP\winkingg.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winujrup.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winujrup.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winsrspqy.exe" = C:\Windows\TEMP\winsrspqy.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wintwmgb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wintwmgb.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winnkcvc.exe" = C:\Windows\TEMP\winnkcvc.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\rmprcr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\rmprcr.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\igew.exe" = C:\Windows\TEMP\igew.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wininsy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wininsy.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winkbfhn.exe" = C:\Windows\TEMP\winkbfhn.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wrgxo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wrgxo.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\jryum.exe" = C:\Windows\TEMP\jryum.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\vpdw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\vpdw.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winwtnjd.exe" = C:\Windows\TEMP\winwtnjd.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\windffkm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\windffkm.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winweyyjb.exe" = C:\Windows\TEMP\winweyyjb.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wintpwijl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wintpwijl.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\kmmkha.exe" = C:\Windows\TEMP\kmmkha.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winuaua.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winuaua.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winlmhw.exe" = C:\Windows\TEMP\winlmhw.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winwabb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winwabb.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\kfujbf.exe" = C:\Windows\TEMP\kfujbf.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winocplv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winocplv.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winjnmicp.exe" = C:\Windows\TEMP\winjnmicp.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\mhvf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\mhvf.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winloasqa.exe" = C:\Windows\TEMP\winloasqa.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winmtsaq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winmtsaq.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\xpte.exe" = C:\Windows\TEMP\xpte.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winvquvbf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winvquvbf.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\knskl.exe" = C:\Windows\TEMP\knskl.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winvvgvh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winvvgvh.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\ppirf.exe" = C:\Windows\TEMP\ppirf.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winbcag.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbcag.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winwjco.exe" = C:\Windows\TEMP\winwjco.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winhful.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhful.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winerce.exe" = C:\Windows\TEMP\winerce.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\lqyi.exe" = C:\Users\MICHA~1\AppData\Local\Temp\lqyi.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winjqhiq.exe" = C:\Windows\TEMP\winjqhiq.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wintenf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wintenf.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\wintafb.exe" = C:\Windows\TEMP\wintafb.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\yawo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\yawo.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winyxqv.exe" = C:\Windows\TEMP\winyxqv.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winepvm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winepvm.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\xxrqx.exe" = C:\Windows\TEMP\xxrqx.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\xsfnai.exe" = C:\Users\MICHA~1\AppData\Local\Temp\xsfnai.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winqcsjef.exe" = C:\Windows\TEMP\winqcsjef.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\auuvsn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\auuvsn.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winahcy.exe" = C:\Windows\TEMP\winahcy.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winldoc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winldoc.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\wincqcomq.exe" = C:\Windows\TEMP\wincqcomq.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\mbuqp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\mbuqp.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winhejew.exe" = C:\Windows\TEMP\winhejew.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winjupwo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winjupwo.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winxyail.exe" = C:\Windows\TEMP\winxyail.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\okuod.exe" = C:\Users\MICHA~1\AppData\Local\Temp\okuod.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\wineyjpng.exe" = C:\Windows\TEMP\wineyjpng.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winhxwuin.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhxwuin.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\qqguut.exe" = C:\Windows\TEMP\qqguut.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\elhy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\elhy.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\hxdhua.exe" = C:\Windows\TEMP\hxdhua.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winrkabpe.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winrkabpe.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\ckme.exe" = C:\Windows\TEMP\ckme.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\ggwjo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ggwjo.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winflolxn.exe" = C:\Windows\TEMP\winflolxn.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winwayvr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winwayvr.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winhhmk.exe" = C:\Windows\TEMP\winhhmk.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winagnvix.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winagnvix.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winthuoev.exe" = C:\Windows\TEMP\winthuoev.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\kink.exe" = C:\Users\MICHA~1\AppData\Local\Temp\kink.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\lxxno.exe" = C:\Windows\TEMP\lxxno.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\ndfnkt.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ndfnkt.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winrostd.exe" = C:\Windows\TEMP\winrostd.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\luusk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\luusk.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winyjum.exe" = C:\Windows\TEMP\winyjum.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winspfqv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winspfqv.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\durjf.exe" = C:\Windows\TEMP\durjf.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\hgyeql.exe" = C:\Users\MICHA~1\AppData\Local\Temp\hgyeql.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winhduvv.exe" = C:\Windows\TEMP\winhduvv.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\pratmg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\pratmg.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winobrt.exe" = C:\Windows\TEMP\winobrt.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\pycu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\pycu.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winppqdjg.exe" = C:\Windows\TEMP\winppqdjg.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\sgewre.exe" = C:\Windows\TEMP\sgewre.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winpscu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winpscu.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\vufdf.exe" = C:\Windows\TEMP\vufdf.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winpqnp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winpqnp.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winkcdc.exe" = C:\Windows\TEMP\winkcdc.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\kftb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\kftb.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\vcvxfn.exe" = C:\Windows\TEMP\vcvxfn.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\kmlit.exe" = C:\Users\MICHA~1\AppData\Local\Temp\kmlit.exe:*:Enabled:ipsec -- File not found "C:\Program Files\Windows Calendar\WinCal.exe" = C:\Program Files\Windows Calendar\WinCal.exe:*:Enabled:ipsec -- (Microsoft Corporation) "C:\Users\MICHA~1\AppData\Local\Temp\eokcvr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\eokcvr.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\fbyx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\fbyx.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\nrix.exe" = C:\Users\MICHA~1\AppData\Local\Temp\nrix.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winepdjwp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winepdjwp.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winmjjg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winmjjg.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winvukst.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winvukst.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winxspssy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winxspssy.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wingxwa.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wingxwa.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winhebajy.exe" = C:\Windows\TEMP\winhebajy.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winulwsal.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winulwsal.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\odwm.exe" = C:\Windows\TEMP\odwm.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\juumqh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\juumqh.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winlbkhdn.exe" = C:\Windows\TEMP\winlbkhdn.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winbblexa.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbblexa.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winpknag.exe" = C:\Windows\TEMP\winpknag.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\cfkq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\cfkq.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\qyede.exe" = C:\Windows\TEMP\qyede.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\intpby.exe" = C:\Users\MICHA~1\AppData\Local\Temp\intpby.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winwuob.exe" = C:\Windows\TEMP\winwuob.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winombmw.exe" = C:\Windows\TEMP\winombmw.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winbmet.exe" = C:\Windows\TEMP\winbmet.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winspnqfh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winspnqfh.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\qninp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\qninp.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winmygam.exe" = C:\Windows\TEMP\winmygam.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\olwrfs.exe" = C:\Windows\TEMP\olwrfs.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winhetm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhetm.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winkdgnr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winkdgnr.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winjemb.exe" = C:\Windows\TEMP\winjemb.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\hcsd.exe" = C:\Windows\TEMP\hcsd.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winjrfch.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winjrfch.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\windcqej.exe" = C:\Windows\TEMP\windcqej.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winhicmo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhicmo.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\ifdrva.exe" = C:\Windows\TEMP\ifdrva.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\eswi.exe" = C:\Users\MICHA~1\AppData\Local\Temp\eswi.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winowaa.exe" = C:\Windows\TEMP\winowaa.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\mjxtm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\mjxtm.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\windmcd.exe" = C:\Windows\TEMP\windmcd.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winankjc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winankjc.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winvsuyh.exe" = C:\Windows\TEMP\winvsuyh.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winaftf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winaftf.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\vwul.exe" = C:\Windows\TEMP\vwul.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\vlkwqs.exe" = C:\Users\MICHA~1\AppData\Local\Temp\vlkwqs.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\vqpk.exe" = C:\Windows\TEMP\vqpk.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winsrtx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winsrtx.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winumsgdr.exe" = C:\Windows\TEMP\winumsgdr.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\bjoiom.exe" = C:\Users\MICHA~1\AppData\Local\Temp\bjoiom.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\pihu.exe" = C:\Windows\TEMP\pihu.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winlvrhdm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winlvrhdm.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winuhmied.exe" = C:\Windows\TEMP\winuhmied.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\cyre.exe" = C:\Users\MICHA~1\AppData\Local\Temp\cyre.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\fulgdj.exe" = C:\Windows\TEMP\fulgdj.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wincdrqp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wincdrqp.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winmbpw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winmbpw.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winvaetvd.exe" = C:\Windows\TEMP\winvaetvd.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winbaukmi.exe" = C:\Windows\TEMP\winbaukmi.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winevcr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winevcr.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wincvsa.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wincvsa.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winehrmim.exe" = C:\Windows\TEMP\winehrmim.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winrllnkb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winrllnkb.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\hdhi.exe" = C:\Windows\TEMP\hdhi.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winthyswa.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winthyswa.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\ndlp.exe" = C:\Windows\TEMP\ndlp.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winqebg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winqebg.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winhsryx.exe" = C:\Windows\TEMP\winhsryx.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winlhkrv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winlhkrv.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winpevpbu.exe" = C:\Windows\TEMP\winpevpbu.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\khsyi.exe" = C:\Users\MICHA~1\AppData\Local\Temp\khsyi.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winvihgnx.exe" = C:\Windows\TEMP\winvihgnx.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\omksbg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\omksbg.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\aheqgb.exe" = C:\Windows\TEMP\aheqgb.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winrxja.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winrxja.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\wintrxosg.exe" = C:\Windows\TEMP\wintrxosg.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\oqyt.exe" = C:\Users\MICHA~1\AppData\Local\Temp\oqyt.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winaehxbg.exe" = C:\Windows\TEMP\winaehxbg.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winhmsjo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhmsjo.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\bkwtxs.exe" = C:\Windows\TEMP\bkwtxs.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\whawhv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\whawhv.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\cnruh.exe" = C:\Windows\TEMP\cnruh.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winjjniei.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winjjniei.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winjbrc.exe" = C:\Windows\TEMP\winjbrc.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\cpwv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\cpwv.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\dioud.exe" = C:\Windows\TEMP\dioud.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winmecxe.exe" = C:\Windows\TEMP\winmecxe.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\rqdc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\rqdc.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winwjscme.exe" = C:\Windows\TEMP\winwjscme.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wekflp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wekflp.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\jwws.exe" = C:\Windows\TEMP\jwws.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\bvop.exe" = C:\Users\MICHA~1\AppData\Local\Temp\bvop.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\wingtbik.exe" = C:\Windows\TEMP\wingtbik.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\rahp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\rahp.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winwbdrkr.exe" = C:\Windows\TEMP\winwbdrkr.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winmybg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winmybg.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\ybas.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ybas.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winadecc.exe" = C:\Windows\TEMP\winadecc.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winyvbe.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winyvbe.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winwnfjk.exe" = C:\Windows\TEMP\winwnfjk.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\jjaxy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\jjaxy.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winnsrsgo.exe" = C:\Windows\TEMP\winnsrsgo.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winkofa.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winkofa.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\vbqgwx.exe" = C:\Windows\TEMP\vbqgwx.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winyvmg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winyvmg.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winhdbhw.exe" = C:\Windows\TEMP\winhdbhw.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\gtvmbs.exe" = C:\Users\MICHA~1\AppData\Local\Temp\gtvmbs.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winlyqhb.exe" = C:\Windows\TEMP\winlyqhb.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\mcfvrx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\mcfvrx.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\stkfgx.exe" = C:\Windows\TEMP\stkfgx.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\peaqb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\peaqb.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\xdhwqu.exe" = C:\Windows\TEMP\xdhwqu.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winysosjc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winysosjc.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winyocp.exe" = C:\Windows\TEMP\winyocp.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\idmjr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\idmjr.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winhjhf.exe" = C:\Windows\TEMP\winhjhf.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\aboqus.exe" = C:\Users\MICHA~1\AppData\Local\Temp\aboqus.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\windgfw.exe" = C:\Windows\TEMP\windgfw.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winarmcn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winarmcn.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\yddbmo.exe" = C:\Windows\TEMP\yddbmo.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winbgaa.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbgaa.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winsnev.exe" = C:\Windows\TEMP\winsnev.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winejkebh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winejkebh.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\nknh.exe" = C:\Windows\TEMP\nknh.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\knss.exe" = C:\Users\MICHA~1\AppData\Local\Temp\knss.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\ewjwe.exe" = C:\Windows\TEMP\ewjwe.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winumyr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winumyr.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winpcba.exe" = C:\Windows\TEMP\winpcba.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\yxwd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\yxwd.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\windssh.exe" = C:\Windows\TEMP\windssh.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winwsxe.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winwsxe.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winexaox.exe" = C:\Windows\TEMP\winexaox.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\igsjq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\igsjq.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winvcfb.exe" = C:\Windows\TEMP\winvcfb.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winpmon.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winpmon.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winhtyf.exe" = C:\Windows\TEMP\winhtyf.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\ibgni.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ibgni.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winiaudh.exe" = C:\Windows\TEMP\winiaudh.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\ywcrye.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ywcrye.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\iqnnhi.exe" = C:\Windows\TEMP\iqnnhi.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\khfw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\khfw.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\xntff.exe" = C:\Windows\TEMP\xntff.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\gvtpe.exe" = C:\Users\MICHA~1\AppData\Local\Temp\gvtpe.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winkdhd.exe" = C:\Windows\TEMP\winkdhd.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\dkovge.exe" = C:\Users\MICHA~1\AppData\Local\Temp\dkovge.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\uflu.exe" = C:\Windows\TEMP\uflu.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\fuiui.exe" = C:\Users\MICHA~1\AppData\Local\Temp\fuiui.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\vejs.exe" = C:\Windows\TEMP\vejs.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\ltjbs.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ltjbs.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winnpappv.exe" = C:\Windows\TEMP\winnpappv.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\rhycva.exe" = C:\Users\MICHA~1\AppData\Local\Temp\rhycva.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winhrer.exe" = C:\Windows\TEMP\winhrer.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winasnyvs.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winasnyvs.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\hvks.exe" = C:\Windows\TEMP\hvks.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wintirj.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wintirj.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\wingvau.exe" = C:\Windows\TEMP\wingvau.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winxoyi.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winxoyi.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winfbfn.exe" = C:\Windows\TEMP\winfbfn.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winsapnpd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winsapnpd.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\crbef.exe" = C:\Windows\TEMP\crbef.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\ssqcl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ssqcl.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\sytqc.exe" = C:\Windows\TEMP\sytqc.exe:*:Enabled:ipsec -- File not found "C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe" = C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winrfwfmx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winrfwfmx.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\mykhft.exe" = C:\Windows\TEMP\mykhft.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\rrfe.exe" = C:\Users\MICHA~1\AppData\Local\Temp\rrfe.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winpjdrvc.exe" = C:\Windows\TEMP\winpjdrvc.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\lmhmxm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\lmhmxm.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\rgyvq.exe" = C:\Windows\TEMP\rgyvq.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\gtewf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\gtewf.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\tmawr.exe" = C:\Windows\TEMP\tmawr.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winuopuan.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winuopuan.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winxcnbbm.exe" = C:\Windows\TEMP\winxcnbbm.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\btjn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\btjn.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winqewyec.exe" = C:\Windows\TEMP\winqewyec.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winvxbmgc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winvxbmgc.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\erugm.exe" = C:\Windows\TEMP\erugm.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\jhrn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\jhrn.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winwbrwck.exe" = C:\Windows\TEMP\winwbrwck.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winkjume.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winkjume.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\windxexfk.exe" = C:\Windows\TEMP\windxexfk.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\qbwibo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\qbwibo.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winvgormh.exe" = C:\Windows\TEMP\winvgormh.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wpgilb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wpgilb.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\rpvo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\rpvo.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winfvlo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winfvlo.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\ockvso.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ockvso.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wingiwss.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wingiwss.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wineqjfoo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wineqjfoo.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winjpsjr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winjpsjr.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\vsvsp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\vsvsp.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winfuyvdy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winfuyvdy.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winjdthxo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winjdthxo.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\windlyotm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\windlyotm.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winowfyll.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winowfyll.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winkwkgyl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winkwkgyl.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winuslip.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winuslip.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\vpgpx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\vpgpx.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winbyhu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbyhu.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winmwdv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winmwdv.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winqxuvmu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winqxuvmu.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\aiwt.exe" = C:\Users\MICHA~1\AppData\Local\Temp\aiwt.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winqeldl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winqeldl.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\ljlbar.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ljlbar.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\ayxue.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ayxue.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\trrn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\trrn.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winmdyv.exe" = C:\Windows\TEMP\winmdyv.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winhdtxm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhdtxm.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winydws.exe" = C:\Windows\TEMP\winydws.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\vywo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\vywo.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winbgrya.exe" = C:\Windows\TEMP\winbgrya.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\iomxqw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\iomxqw.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\cfiucs.exe" = C:\Windows\TEMP\cfiucs.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winxmowja.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winxmowja.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\lenat.exe" = C:\Windows\TEMP\lenat.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wincibq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wincibq.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winbdij.exe" = C:\Windows\TEMP\winbdij.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\ktnw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ktnw.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winsnepjb.exe" = C:\Windows\TEMP\winsnepjb.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winovqdd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winovqdd.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winpeuc.exe" = C:\Windows\TEMP\winpeuc.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winhvabs.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhvabs.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winriue.exe" = C:\Windows\TEMP\winriue.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winppetp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winppetp.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\vwcsao.exe" = C:\Windows\TEMP\vwcsao.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winyole.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winyole.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winwwtisc.exe" = C:\Windows\TEMP\winwwtisc.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\lwia.exe" = C:\Users\MICHA~1\AppData\Local\Temp\lwia.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winjaeqx.exe" = C:\Windows\TEMP\winjaeqx.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\txjx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\txjx.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\vcfko.exe" = C:\Windows\TEMP\vcfko.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winaxef.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winaxef.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winurgn.exe" = C:\Windows\TEMP\winurgn.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winhljqro.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhljqro.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winlnibob.exe" = C:\Windows\TEMP\winlnibob.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winldvvb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winldvvb.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winkjhbol.exe" = C:\Windows\TEMP\winkjhbol.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winjyfcsc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winjyfcsc.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winaeqt.exe" = C:\Windows\TEMP\winaeqt.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\trfevm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\trfevm.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\qaewsi.exe" = C:\Windows\TEMP\qaewsi.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winqbnej.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winqbnej.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\fvas.exe" = C:\Windows\TEMP\fvas.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winyrteti.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winyrteti.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winyyewua.exe" = C:\Windows\TEMP\winyyewua.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winvlnkh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winvlnkh.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winubba.exe" = C:\Windows\TEMP\winubba.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\pxiiou.exe" = C:\Users\MICHA~1\AppData\Local\Temp\pxiiou.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winhouv.exe" = C:\Windows\TEMP\winhouv.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\jpdfw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\jpdfw.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winayjep.exe" = C:\Windows\TEMP\winayjep.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wintyagj.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wintyagj.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winscko.exe" = C:\Windows\TEMP\winscko.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winjgihwy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winjgihwy.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winpkbr.exe" = C:\Windows\TEMP\winpkbr.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\ssib.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ssib.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\wincqjl.exe" = C:\Windows\TEMP\wincqjl.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\hbdmd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\hbdmd.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\euct.exe" = C:\Windows\TEMP\euct.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winadvk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winadvk.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\olpp.exe" = C:\Windows\TEMP\olpp.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winffqr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winffqr.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winaxblox.exe" = C:\Windows\TEMP\winaxblox.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\qjotm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\qjotm.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\jivskx.exe" = C:\Windows\TEMP\jivskx.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winfljie.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winfljie.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winyjnxt.exe" = C:\Windows\TEMP\winyjnxt.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wineauofi.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wineauofi.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\vlvyv.exe" = C:\Windows\TEMP\vlvyv.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\tjud.exe" = C:\Users\MICHA~1\AppData\Local\Temp\tjud.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winmekcd.exe" = C:\Windows\TEMP\winmekcd.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winmrgqwl.exe" = C:\Windows\TEMP\winmrgqwl.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winuubk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winuubk.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winrvcnqu.exe" = C:\Windows\TEMP\winrvcnqu.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\sybdff.exe" = C:\Users\MICHA~1\AppData\Local\Temp\sybdff.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winralqql.exe" = C:\Windows\TEMP\winralqql.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\ydyhrk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ydyhrk.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\wineaywwt.exe" = C:\Windows\TEMP\wineaywwt.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winjdcuhe.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winjdcuhe.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\sliuvd.exe" = C:\Windows\TEMP\sliuvd.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winirfa.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winirfa.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\wincnojys.exe" = C:\Windows\TEMP\wincnojys.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winkbbxau.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winkbbxau.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\pxrhdq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\pxrhdq.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\clif.exe" = C:\Windows\TEMP\clif.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winmshx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winmshx.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winombrh.exe" = C:\Windows\TEMP\winombrh.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winqdorq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winqdorq.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\eojm.exe" = C:\Windows\TEMP\eojm.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winchifb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winchifb.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\goaxp.exe" = C:\Windows\TEMP\goaxp.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\shdxj.exe" = C:\Users\MICHA~1\AppData\Local\Temp\shdxj.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\ebsk.exe" = C:\Windows\TEMP\ebsk.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winbwrwm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbwrwm.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winmmjxqy.exe" = C:\Windows\TEMP\winmmjxqy.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winmndikl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winmndikl.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\oycnvq.exe" = C:\Windows\TEMP\oycnvq.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winmcin.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winmcin.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\ckpxxv.exe" = C:\Windows\TEMP\ckpxxv.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winadtqib.exe" = C:\Windows\TEMP\winadtqib.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\kqpc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\kqpc.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\eqqei.exe" = C:\Windows\TEMP\eqqei.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\yxyu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\yxyu.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winxlbem.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winxlbem.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winufvvy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winufvvy.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\usscw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\usscw.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\windrbb.exe" = C:\Windows\TEMP\windrbb.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wintati.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wintati.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\rvnkvp.exe" = C:\Windows\TEMP\rvnkvp.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wjqehg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wjqehg.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winmpeao.exe" = C:\Windows\TEMP\winmpeao.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\rdcq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\rdcq.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\vqydc.exe" = C:\Windows\TEMP\vqydc.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\tnlj.exe" = C:\Users\MICHA~1\AppData\Local\Temp\tnlj.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\ytha.exe" = C:\Windows\TEMP\ytha.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\rdhbln.exe" = C:\Users\MICHA~1\AppData\Local\Temp\rdhbln.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winqdui.exe" = C:\Windows\TEMP\winqdui.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\eyucyh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\eyucyh.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winvaqds.exe" = C:\Windows\TEMP\winvaqds.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\mwtm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\mwtm.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winusipv.exe" = C:\Windows\TEMP\winusipv.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\kjjcms.exe" = C:\Users\MICHA~1\AppData\Local\Temp\kjjcms.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\muxf.exe" = C:\Windows\TEMP\muxf.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\gpadow.exe" = C:\Users\MICHA~1\AppData\Local\Temp\gpadow.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\uggpbo.exe" = C:\Windows\TEMP\uggpbo.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\ovufu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ovufu.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winwkvk.exe" = C:\Windows\TEMP\winwkvk.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\duts.exe" = C:\Users\MICHA~1\AppData\Local\Temp\duts.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winaouh.exe" = C:\Windows\TEMP\winaouh.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\xptc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\xptc.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\pyox.exe" = C:\Windows\TEMP\pyox.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\aaeeib.exe" = C:\Windows\TEMP\aaeeib.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\windoii.exe" = C:\Users\MICHA~1\AppData\Local\Temp\windoii.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winuacmh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winuacmh.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winxahx.exe" = C:\Windows\TEMP\winxahx.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winqvwfth.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winqvwfth.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winmhda.exe" = C:\Windows\TEMP\winmhda.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winbjjbin.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbjjbin.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winiyljd.exe" = C:\Windows\TEMP\winiyljd.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\llvkt.exe" = C:\Users\MICHA~1\AppData\Local\Temp\llvkt.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winpxccuc.exe" = C:\Windows\TEMP\winpxccuc.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winosfxwh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winosfxwh.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\befv.exe" = C:\Windows\TEMP\befv.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winytlq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winytlq.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winbpvuu.exe" = C:\Windows\TEMP\winbpvuu.exe:*:Enabled:ipsec -- File not found "G:\Programy\Malwarebytes' Anti-Malware\mbam.exe" = G:\Programy\Malwarebytes' Anti-Malware\mbam.exe:*:Enabled:ipsec -- (Malwarebytes Corporation) "C:\Users\MICHA~1\AppData\Local\Temp\hirbvs.exe" = C:\Users\MICHA~1\AppData\Local\Temp\hirbvs.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\hstcw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\hstcw.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winrvii.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winrvii.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\lapmg.exe" = C:\Windows\TEMP\lapmg.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\fwfvae.exe" = C:\Users\MICHA~1\AppData\Local\Temp\fwfvae.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winxxqwyo.exe" = C:\Windows\TEMP\winxxqwyo.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\hwbrt.exe" = C:\Users\MICHA~1\AppData\Local\Temp\hwbrt.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winbqea.exe" = C:\Windows\TEMP\winbqea.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\dxssfy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\dxssfy.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winirwlas.exe" = C:\Windows\TEMP\winirwlas.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\wincdnpu.exe" = C:\Windows\TEMP\wincdnpu.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winhcca.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhcca.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winywkphi.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winywkphi.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\wiokyu.exe" = C:\Windows\TEMP\wiokyu.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winwqrvx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winwqrvx.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winpxqqeu.exe" = C:\Windows\TEMP\winpxqqeu.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winguygmy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winguygmy.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winsqsqp.exe" = C:\Windows\TEMP\winsqsqp.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winhtmus.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhtmus.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winkocgv.exe" = C:\Windows\TEMP\winkocgv.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winwkox.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winwkox.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winavpe.exe" = C:\Windows\TEMP\winavpe.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\xhneg.exe" = C:\Windows\TEMP\xhneg.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\qvcywg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\qvcywg.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winjuobh.exe" = C:\Windows\TEMP\winjuobh.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winagvoiu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winagvoiu.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winvmtw.exe" = C:\Windows\TEMP\winvmtw.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\tvlpo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\tvlpo.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\blvxl.exe" = C:\Windows\TEMP\blvxl.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\gippqv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\gippqv.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winhgkjhr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhgkjhr.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\utegsp.exe" = C:\Windows\TEMP\utegsp.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winqsec.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winqsec.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\cvqjj.exe" = C:\Windows\TEMP\cvqjj.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\xqtke.exe" = C:\Users\MICHA~1\AppData\Local\Temp\xqtke.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\ohwxk.exe" = C:\Windows\TEMP\ohwxk.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winywegya.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winywegya.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winpcrsrq.exe" = C:\Windows\TEMP\winpcrsrq.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\cibyyk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\cibyyk.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winswoym.exe" = C:\Windows\TEMP\winswoym.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winpuqid.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winpuqid.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winhnxba.exe" = C:\Windows\TEMP\winhnxba.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winqtqoo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winqtqoo.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winamyj.exe" = C:\Windows\TEMP\winamyj.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wintyrpso.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wintyrpso.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\abrcs.exe" = C:\Windows\TEMP\abrcs.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\orva.exe" = C:\Users\MICHA~1\AppData\Local\Temp\orva.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winichbkl.exe" = C:\Windows\TEMP\winichbkl.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\iaoyur.exe" = C:\Users\MICHA~1\AppData\Local\Temp\iaoyur.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winlqkko.exe" = C:\Windows\TEMP\winlqkko.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\ebpw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ebpw.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winvsseb.exe" = C:\Windows\TEMP\winvsseb.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\rwnqv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\rwnqv.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winprecie.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winprecie.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wdc2771.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wdc2771.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\gbltuy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\gbltuy.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winaipsjf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winaipsjf.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\umye.exe" = C:\Users\MICHA~1\AppData\Local\Temp\umye.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winhmwrbk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhmwrbk.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winabdss.exe" = C:\Windows\TEMP\winabdss.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\fcmmrw.exe" = C:\Windows\TEMP\fcmmrw.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\w123f09b.exe" = C:\Windows\TEMP\w123f09b.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\ckfm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ckfm.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winhjltek.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhjltek.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winelkij.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winelkij.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\windesu.exe" = C:\Windows\TEMP\windesu.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winvgffw.exe" = C:\Windows\TEMP\winvgffw.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winmhhicv.exe" = C:\Windows\TEMP\winmhhicv.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\pnkop.exe" = C:\Users\MICHA~1\AppData\Local\Temp\pnkop.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\clmtrg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\clmtrg.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wintceg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wintceg.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winnwrqfa.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winnwrqfa.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winwcuig.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winwcuig.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winawlxgb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winawlxgb.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wintlgvs.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wintlgvs.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\jnbx.exe" = C:\Windows\TEMP\jnbx.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winqoowpv.exe" = C:\Windows\TEMP\winqoowpv.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\kbek.exe" = C:\Windows\TEMP\kbek.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winpqvvu.exe" = C:\Windows\TEMP\winpqvvu.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winjlek.exe" = C:\Windows\TEMP\winjlek.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\wingncau.exe" = C:\Windows\TEMP\wingncau.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winkifahl.exe" = C:\Windows\TEMP\winkifahl.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winnvjtd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winnvjtd.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\cfsgfn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\cfsgfn.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\dsdb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\dsdb.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winpmau.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winpmau.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winnerk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winnerk.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winhigi.exe" = C:\Windows\TEMP\winhigi.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winlbhxtq.exe" = C:\Windows\TEMP\winlbhxtq.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\huueax.exe" = C:\Windows\TEMP\huueax.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winhspo.exe" = C:\Windows\TEMP\winhspo.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winpsfch.exe" = C:\Windows\TEMP\winpsfch.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winghgbnn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winghgbnn.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winvhjm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winvhjm.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\pkpuhy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\pkpuhy.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winjsic.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winjsic.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winwlqt.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winwlqt.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\pvgmjw.exe" = C:\Windows\TEMP\pvgmjw.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winhtlb.exe" = C:\Windows\TEMP\winhtlb.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\ktdq.exe" = C:\Windows\TEMP\ktdq.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winnidi.exe" = C:\Windows\TEMP\winnidi.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winkjfn.exe" = C:\Windows\TEMP\winkjfn.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winamaldl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winamaldl.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winfgjp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winfgjp.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winbsud.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbsud.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winywpyr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winywpyr.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\axcn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\axcn.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winrbeo.exe" = C:\Windows\TEMP\winrbeo.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winfgyk.exe" = C:\Windows\TEMP\winfgyk.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winiaxukv.exe" = C:\Windows\TEMP\winiaxukv.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winiiqmg.exe" = C:\Windows\TEMP\winiiqmg.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\wingjcgvd.exe" = C:\Windows\TEMP\wingjcgvd.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winuwbr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winuwbr.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winlretme.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winlretme.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\khrn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\khrn.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winwpjsp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winwpjsp.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winwfut.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winwfut.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\dtxs.exe" = C:\Windows\TEMP\dtxs.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winpldu.exe" = C:\Windows\TEMP\winpldu.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winsfhnfg.exe" = C:\Windows\TEMP\winsfhnfg.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winimceq.exe" = C:\Windows\TEMP\winimceq.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winbuysk.exe" = C:\Windows\TEMP\winbuysk.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winvqenpd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winvqenpd.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winbpcfrp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbpcfrp.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winnfbxhs.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winnfbxhs.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\rbvmnp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\rbvmnp.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\hhtlwt.exe" = C:\Users\MICHA~1\AppData\Local\Temp\hhtlwt.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\qkpjsj.exe" = C:\Windows\TEMP\qkpjsj.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winwtbw.exe" = C:\Windows\TEMP\winwtbw.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\srcqbp.exe" = C:\Windows\TEMP\srcqbp.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winxrbxi.exe" = C:\Windows\TEMP\winxrbxi.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winvtopx.exe" = C:\Windows\TEMP\winvtopx.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winaftskc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winaftskc.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winlmvtxl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winlmvtxl.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\otoakv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\otoakv.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\malohk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\malohk.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\windxijhn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\windxijhn.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winotovrr.exe" = C:\Windows\TEMP\winotovrr.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winjbkg.exe" = C:\Windows\TEMP\winjbkg.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winprqcc.exe" = C:\Windows\TEMP\winprqcc.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winqgepxn.exe" = C:\Windows\TEMP\winqgepxn.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winlvsx.exe" = C:\Windows\TEMP\winlvsx.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winirnt.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winirnt.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winmpcb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winmpcb.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winkgli.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winkgli.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winglwgr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winglwgr.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\fvbf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\fvbf.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\lvabpx.exe" = C:\Windows\TEMP\lvabpx.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\windswnwd.exe" = C:\Windows\TEMP\windswnwd.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winwvymmn.exe" = C:\Windows\TEMP\winwvymmn.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winglay.exe" = C:\Windows\TEMP\winglay.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winppbyx.exe" = C:\Windows\TEMP\winppbyx.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winmsqu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winmsqu.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winarvuko.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winarvuko.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\wpgjf.exe" = C:\Windows\TEMP\wpgjf.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winadjvpf.exe" = C:\Windows\TEMP\winadjvpf.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\ysfxfi.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ysfxfi.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winomwb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winomwb.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\ugvg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ugvg.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winukal.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winukal.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winocqir.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winocqir.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\jgrklv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\jgrklv.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\ikox.exe" = C:\Windows\TEMP\ikox.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winicrs.exe" = C:\Windows\TEMP\winicrs.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winfpfxxu.exe" = C:\Windows\TEMP\winfpfxxu.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winhvdgg.exe" = C:\Windows\TEMP\winhvdgg.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\ghwaw.exe" = C:\Windows\TEMP\ghwaw.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winvpxe.exe" = C:\Windows\TEMP\winvpxe.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wbdd92.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wbdd92.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\wf07bd.exe" = C:\Windows\TEMP\wf07bd.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winjuysx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winjuysx.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winiknqgr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winiknqgr.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\nffm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\nffm.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\bhyic.exe" = C:\Users\MICHA~1\AppData\Local\Temp\bhyic.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winofntu.exe" = C:\Windows\TEMP\winofntu.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\wingwegmv.exe" = C:\Windows\TEMP\wingwegmv.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\gqmg.exe" = C:\Windows\TEMP\gqmg.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winidwkuu.exe" = C:\Windows\TEMP\winidwkuu.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\vnyu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\vnyu.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\ovbhe.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ovbhe.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\qplvf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\qplvf.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\lcno.exe" = C:\Users\MICHA~1\AppData\Local\Temp\lcno.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winaley.exe" = C:\Windows\TEMP\winaley.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\mdmq.exe" = C:\Windows\TEMP\mdmq.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\gnuav.exe" = C:\Windows\TEMP\gnuav.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winbvwxqh.exe" = C:\Windows\TEMP\winbvwxqh.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\xxysx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\xxysx.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\sves.exe" = C:\Users\MICHA~1\AppData\Local\Temp\sves.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\ncjq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ncjq.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winngfy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winngfy.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\rrab.exe" = C:\Windows\TEMP\rrab.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\tpugrx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\tpugrx.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\ltruyy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ltruyy.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wincynap.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wincynap.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winqcvrjy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winqcvrjy.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winasccdp.exe" = C:\Windows\TEMP\winasccdp.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\rsxwr.exe" = C:\Windows\TEMP\rsxwr.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\qigit.exe" = C:\Windows\TEMP\qigit.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winsnrscb.exe" = C:\Windows\TEMP\winsnrscb.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winamnhb.exe" = C:\Windows\TEMP\winamnhb.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winmcfjg.exe" = C:\Windows\TEMP\winmcfjg.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\xjdwo.exe" = C:\Windows\TEMP\xjdwo.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winmxawp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winmxawp.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winthlurt.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winthlurt.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wintihxol.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wintihxol.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winjxsa.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winjxsa.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winthnk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winthnk.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\yhtig.exe" = C:\Users\MICHA~1\AppData\Local\Temp\yhtig.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winvftkj.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winvftkj.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\ivac.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ivac.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winprjnwu.exe" = C:\Windows\TEMP\winprjnwu.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\ixuq.exe" = C:\Windows\TEMP\ixuq.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winusyvom.exe" = C:\Windows\TEMP\winusyvom.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winkvije.exe" = C:\Windows\TEMP\winkvije.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winpacqkj.exe" = C:\Windows\TEMP\winpacqkj.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winiddtr.exe" = C:\Windows\TEMP\winiddtr.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\njes.exe" = C:\Windows\TEMP\njes.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\oewuo.exe" = C:\Windows\TEMP\oewuo.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winvgfvdj.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winvgfvdj.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\yexw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\yexw.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\mfchn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\mfchn.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wkhm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wkhm.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winhrajoa.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhrajoa.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\trwcf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\trwcf.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winekvv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winekvv.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winadmp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winadmp.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\ldbqwh.exe" = C:\Windows\TEMP\ldbqwh.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\rngmo.exe" = C:\Windows\TEMP\rngmo.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\wincbao.exe" = C:\Windows\TEMP\wincbao.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\wincsgwq.exe" = C:\Windows\TEMP\wincsgwq.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winjsly.exe" = C:\Windows\TEMP\winjsly.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\outu.exe" = C:\Windows\TEMP\outu.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winlfvj.exe" = C:\Windows\TEMP\winlfvj.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\yrcjd.exe" = C:\Windows\TEMP\yrcjd.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\nqijd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\nqijd.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\hhkei.exe" = C:\Users\MICHA~1\AppData\Local\Temp\hhkei.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winbgyea.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbgyea.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\ninxui.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ninxui.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winrpfkub.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winrpfkub.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winytavqp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winytavqp.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wxce.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wxce.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winclbly.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winclbly.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\vgsdh.exe" = C:\Windows\TEMP\vgsdh.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\boyk.exe" = C:\Windows\TEMP\boyk.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\xhnj.exe" = C:\Windows\TEMP\xhnj.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\mceoey.exe" = C:\Windows\TEMP\mceoey.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winqrrnb.exe" = C:\Windows\TEMP\winqrrnb.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winmigiem.exe" = C:\Windows\TEMP\winmigiem.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winoutao.exe" = C:\Windows\TEMP\winoutao.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winugasl.exe" = C:\Windows\TEMP\winugasl.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winawraau.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winawraau.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\gnwpp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\gnwpp.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\bbbxc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\bbbxc.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winplxps.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winplxps.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\anrd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\anrd.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\elnhc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\elnhc.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winykqce.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winykqce.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winthwd.exe" = C:\Windows\TEMP\winthwd.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winolpjdg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winolpjdg.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\wingkvles.exe" = C:\Windows\TEMP\wingkvles.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\ogingm.exe" = C:\Windows\TEMP\ogingm.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winklasn.exe" = C:\Windows\TEMP\winklasn.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\eane.exe" = C:\Windows\TEMP\eane.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\ugvob.exe" = C:\Windows\TEMP\ugvob.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winbqqgd.exe" = C:\Windows\TEMP\winbqqgd.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winskige.exe" = C:\Windows\TEMP\winskige.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\tdon.exe" = C:\Users\MICHA~1\AppData\Local\Temp\tdon.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winteynx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winteynx.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winkaunn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winkaunn.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wintkxknq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wintkxknq.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winijuh.exe" = C:\Windows\TEMP\winijuh.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winybrjd.exe" = C:\Windows\TEMP\winybrjd.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\obcg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\obcg.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winasfui.exe" = C:\Windows\TEMP\winasfui.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winujny.exe" = C:\Windows\TEMP\winujny.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wincuxnq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wincuxnq.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wincmort.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wincmort.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winokln.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winokln.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\kmxno.exe" = C:\Windows\TEMP\kmxno.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winlvgmdg.exe" = C:\Windows\TEMP\winlvgmdg.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\roog.exe" = C:\Windows\TEMP\roog.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\wintimeac.exe" = C:\Windows\TEMP\wintimeac.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winwvihl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winwvihl.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winnwhd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winnwhd.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winhscjg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhscjg.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\rpaex.exe" = C:\Users\MICHA~1\AppData\Local\Temp\rpaex.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\mlqav.exe" = C:\Windows\TEMP\mlqav.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\etbaf.exe" = C:\Windows\TEMP\etbaf.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\wintnee.exe" = C:\Windows\TEMP\wintnee.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winloqo.exe" = C:\Windows\TEMP\winloqo.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winopmy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winopmy.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\nupqh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\nupqh.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winiuin.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winiuin.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\bqrtj.exe" = C:\Users\MICHA~1\AppData\Local\Temp\bqrtj.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winavhd.exe" = C:\Windows\TEMP\winavhd.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\bwkhm.exe" = C:\Windows\TEMP\bwkhm.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winseqrlk.exe" = C:\Windows\TEMP\winseqrlk.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\tvoi.exe" = C:\Windows\TEMP\tvoi.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\sofej.exe" = C:\Users\MICHA~1\AppData\Local\Temp\sofej.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\qwtvs.exe" = C:\Users\MICHA~1\AppData\Local\Temp\qwtvs.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winmmxu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winmmxu.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winuwmejk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winuwmejk.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\lhnm.exe" = C:\Windows\TEMP\lhnm.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winhidm.exe" = C:\Windows\TEMP\winhidm.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winwnjs.exe" = C:\Windows\TEMP\winwnjs.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winygvqtr.exe" = C:\Windows\TEMP\winygvqtr.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winjlhkm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winjlhkm.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winjpuk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winjpuk.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winbmkbyk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbmkbyk.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winqkst.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winqkst.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\hmlx.exe" = C:\Windows\TEMP\hmlx.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winbahu.exe" = C:\Windows\TEMP\winbahu.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\tytetw.exe" = C:\Windows\TEMP\tytetw.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\rwip.exe" = C:\Windows\TEMP\rwip.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\yjdfq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\yjdfq.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\xddwh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\xddwh.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winbqup.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbqup.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\bdec.exe" = C:\Users\MICHA~1\AppData\Local\Temp\bdec.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\nkrpe.exe" = C:\Windows\TEMP\nkrpe.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\bkgp.exe" = C:\Windows\TEMP\bkgp.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winykgj.exe" = C:\Windows\TEMP\winykgj.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winqgadi.exe" = C:\Windows\TEMP\winqgadi.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\fhioqi.exe" = C:\Users\MICHA~1\AppData\Local\Temp\fhioqi.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winexac.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winexac.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\quvhpr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\quvhpr.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\obrpf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\obrpf.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\wipox.exe" = C:\Windows\TEMP\wipox.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\oovf.exe" = C:\Windows\TEMP\oovf.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\xfjhfa.exe" = C:\Windows\TEMP\xfjhfa.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\rnaeqr.exe" = C:\Windows\TEMP\rnaeqr.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winyahqca.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winyahqca.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\axmbuo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\axmbuo.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\xigovs.exe" = C:\Users\MICHA~1\AppData\Local\Temp\xigovs.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\hggj.exe" = C:\Users\MICHA~1\AppData\Local\Temp\hggj.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\uvaipe.exe" = C:\Windows\TEMP\uvaipe.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winsayeab.exe" = C:\Windows\TEMP\winsayeab.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winlstbi.exe" = C:\Windows\TEMP\winlstbi.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winetfew.exe" = C:\Windows\TEMP\winetfew.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\jgni.exe" = C:\Users\MICHA~1\AppData\Local\Temp\jgni.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\windxmjm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\windxmjm.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\hciir.exe" = C:\Users\MICHA~1\AppData\Local\Temp\hciir.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\gblg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\gblg.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winmkwv.exe" = C:\Windows\TEMP\winmkwv.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winpwns.exe" = C:\Windows\TEMP\winpwns.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winmakht.exe" = C:\Windows\TEMP\winmakht.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\luqp.exe" = C:\Windows\TEMP\luqp.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winrcij.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winrcij.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winiuvrcr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winiuvrcr.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winsxmrac.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winsxmrac.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wintipg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wintipg.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winhbjqyf.exe" = C:\Windows\TEMP\winhbjqyf.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\windbicu.exe" = C:\Windows\TEMP\windbicu.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\hwgmat.exe" = C:\Windows\TEMP\hwgmat.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\iqnae.exe" = C:\Windows\TEMP\iqnae.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\rxyavs.exe" = C:\Users\MICHA~1\AppData\Local\Temp\rxyavs.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\qcuj.exe" = C:\Users\MICHA~1\AppData\Local\Temp\qcuj.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\uhyeo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\uhyeo.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\ujjwb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ujjwb.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winnixqws.exe" = C:\Windows\TEMP\winnixqws.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winnfsw.exe" = C:\Windows\TEMP\winnfsw.exe:*:Enabled:ipsec -- File not found "G:\Programy\Gadu-Gadu\gg.exe" = G:\Programy\Gadu-Gadu\gg.exe:*:Enabled:ipsec -- (sms-express.com) "C:\Windows\TEMP\winuucn.exe" = C:\Windows\TEMP\winuucn.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\oastp.exe" = C:\Windows\TEMP\oastp.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winoxvj.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winoxvj.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winxksd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winxksd.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winphduoy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winphduoy.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\cqbgox.exe" = C:\Users\MICHA~1\AppData\Local\Temp\cqbgox.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winwppgo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winwppgo.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wingsih.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wingsih.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\w90991.exe" = C:\Users\MICHA~1\AppData\Local\Temp\w90991.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\wb2970.exe" = C:\Windows\TEMP\wb2970.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winyjxs.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winyjxs.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wincdvp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wincdvp.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winjrcmgp.exe" = C:\Windows\TEMP\winjrcmgp.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\rdutej.exe" = C:\Users\MICHA~1\AppData\Local\Temp\rdutej.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winarihw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winarihw.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\pqgug.exe" = C:\Windows\TEMP\pqgug.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winkjhmu.exe" = C:\Windows\TEMP\winkjhmu.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winoyiloc.exe" = C:\Windows\TEMP\winoyiloc.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winoeqfo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winoeqfo.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winuqqwdu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winuqqwdu.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\nofva.exe" = C:\Users\MICHA~1\AppData\Local\Temp\nofva.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winnaosas.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winnaosas.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winpmrjs.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winpmrjs.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winkudyeb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winkudyeb.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winougodx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winougodx.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winnqej.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winnqej.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winwwemcb.exe" = C:\Windows\TEMP\winwwemcb.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winccllqs.exe" = C:\Windows\TEMP\winccllqs.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\wincmrj.exe" = C:\Windows\TEMP\wincmrj.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winiaiey.exe" = C:\Windows\TEMP\winiaiey.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\yycnh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\yycnh.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\pxvp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\pxvp.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\pswiv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\pswiv.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\windmowm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\windmowm.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winhjmtee.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhjmtee.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winkxdvu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winkxdvu.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winjrjsgn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winjrjsgn.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\sxlg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\sxlg.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\wperrj.exe" = C:\Windows\TEMP\wperrj.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\lpdpl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\lpdpl.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winsrul.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winsrul.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\pbobv.exe" = C:\Windows\TEMP\pbobv.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\fjdl.exe" = C:\Windows\TEMP\fjdl.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winsycjdu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winsycjdu.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\tlamn.exe" = C:\Windows\TEMP\tlamn.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winbkwihf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbkwihf.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wingkohi.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wingkohi.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\spxx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\spxx.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\iuqcxw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\iuqcxw.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winjejtdm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winjejtdm.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\sasq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\sasq.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winxbrkw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winxbrkw.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\vjtl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\vjtl.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\rgorqi.exe" = C:\Windows\TEMP\rgorqi.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\oetw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\oetw.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winnaweg.exe" = C:\Windows\TEMP\winnaweg.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\ygnebc.exe" = C:\Windows\TEMP\ygnebc.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\ttvw.exe" = C:\Windows\TEMP\ttvw.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winseqnyf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winseqnyf.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\imfm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\imfm.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wintelaht.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wintelaht.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winqftvpj.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winqftvpj.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\jyhdvt.exe" = C:\Users\MICHA~1\AppData\Local\Temp\jyhdvt.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\ritdjq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ritdjq.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\aods.exe" = C:\Users\MICHA~1\AppData\Local\Temp\aods.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winmepmns.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winmepmns.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winxmphq.exe" = C:\Windows\TEMP\winxmphq.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winpmiyl.exe" = C:\Windows\TEMP\winpmiyl.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winkqdnfo.exe" = C:\Windows\TEMP\winkqdnfo.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\ejpsl.exe" = C:\Windows\TEMP\ejpsl.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winfhbg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winfhbg.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\qqol.exe" = C:\Users\MICHA~1\AppData\Local\Temp\qqol.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\ynhs.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ynhs.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winamul.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winamul.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winmrwl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winmrwl.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winqjilko.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winqjilko.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\windhfu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\windhfu.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\glxvl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\glxvl.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winpapvsa.exe" = C:\Windows\TEMP\winpapvsa.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\vsxp.exe" = C:\Windows\TEMP\vsxp.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\gknown.exe" = C:\Windows\TEMP\gknown.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winwddpcn.exe" = C:\Windows\TEMP\winwddpcn.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\gfihir.exe" = C:\Users\MICHA~1\AppData\Local\Temp\gfihir.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\yiox.exe" = C:\Users\MICHA~1\AppData\Local\Temp\yiox.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winakoc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winakoc.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winsqyoa.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winsqyoa.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wingaydpk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wingaydpk.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wintdvaqo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wintdvaqo.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winduvlsf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winduvlsf.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\vweo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\vweo.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\iqppyg.exe" = C:\Windows\TEMP\iqppyg.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\cjxxe.exe" = C:\Windows\TEMP\cjxxe.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\wingfot.exe" = C:\Windows\TEMP\wingfot.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winerel.exe" = C:\Windows\TEMP\winerel.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\anfi.exe" = C:\Users\MICHA~1\AppData\Local\Temp\anfi.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winonsxq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winonsxq.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winsekix.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winsekix.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\sgwfdt.exe" = C:\Users\MICHA~1\AppData\Local\Temp\sgwfdt.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winbhdn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbhdn.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wincwbj.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wincwbj.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winnftewe.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winnftewe.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\xdriox.exe" = C:\Users\MICHA~1\AppData\Local\Temp\xdriox.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\wlty.exe" = C:\Windows\TEMP\wlty.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winptchq.exe" = C:\Windows\TEMP\winptchq.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winfekdv.exe" = C:\Windows\TEMP\winfekdv.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winwfhgso.exe" = C:\Windows\TEMP\winwfhgso.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\asok.exe" = C:\Users\MICHA~1\AppData\Local\Temp\asok.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winieewsn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winieewsn.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winllcn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winllcn.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\ghtq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ghtq.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\oxxtyw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\oxxtyw.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winsvvad.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winsvvad.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winhinx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhinx.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winlugp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winlugp.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\pbxs.exe" = C:\Windows\TEMP\pbxs.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\qdxc.exe" = C:\Windows\TEMP\qdxc.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\wincuxtcq.exe" = C:\Windows\TEMP\wincuxtcq.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\xflrql.exe" = C:\Windows\TEMP\xflrql.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\oqnxe.exe" = C:\Users\MICHA~1\AppData\Local\Temp\oqnxe.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winiibqeu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winiibqeu.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winlxncad.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winlxncad.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winnsxd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winnsxd.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\jjth.exe" = C:\Users\MICHA~1\AppData\Local\Temp\jjth.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\htgojg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\htgojg.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winvuuv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winvuuv.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wcvs.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wcvs.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\ewjio.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ewjio.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winntgd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winntgd.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winmesg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winmesg.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wintimvne.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wintimvne.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\lhevhm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\lhevhm.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winsstit.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winsstit.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\yitvbf.exe" = C:\Windows\TEMP\yitvbf.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winvqjy.exe" = C:\Windows\TEMP\winvqjy.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winvqpkn.exe" = C:\Windows\TEMP\winvqpkn.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\wineewlc.exe" = C:\Windows\TEMP\wineewlc.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\w9b52b.exe" = C:\Users\MICHA~1\AppData\Local\Temp\w9b52b.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\wb45f5.exe" = C:\Windows\TEMP\wb45f5.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\toosw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\toosw.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\dguk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\dguk.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winycjt.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winycjt.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\abii.exe" = C:\Users\MICHA~1\AppData\Local\Temp\abii.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wffkwh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wffkwh.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\badncq.exe" = C:\Windows\TEMP\badncq.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winccnevt.exe" = C:\Windows\TEMP\winccnevt.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\windjmtar.exe" = C:\Windows\TEMP\windjmtar.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winbgtwp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbgtwp.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winnbimqh.exe" = C:\Windows\TEMP\winnbimqh.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winetjt.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winetjt.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winsqktcd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winsqktcd.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winqcmapx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winqcmapx.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winvihw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winvihw.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\gsoo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\gsoo.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winelwfbn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winelwfbn.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\nyydxn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\nyydxn.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\jwgfei.exe" = C:\Users\MICHA~1\AppData\Local\Temp\jwgfei.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wykvas.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wykvas.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winqmjrpf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winqmjrpf.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\lrfj.exe" = C:\Users\MICHA~1\AppData\Local\Temp\lrfj.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winpxqne.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winpxqne.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winupagjs.exe" = C:\Windows\TEMP\winupagjs.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winasjw.exe" = C:\Windows\TEMP\winasjw.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winkhiyy.exe" = C:\Windows\TEMP\winkhiyy.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\windwpi.exe" = C:\Windows\TEMP\windwpi.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\w9696c.exe" = C:\Users\MICHA~1\AppData\Local\Temp\w9696c.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\wba67b.exe" = C:\Windows\TEMP\wba67b.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wineooi.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wineooi.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winihwa.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winihwa.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winmgxb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winmgxb.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\ykrgk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ykrgk.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winbusqr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbusqr.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winvdhw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winvdhw.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\etdxai.exe" = C:\Users\MICHA~1\AppData\Local\Temp\etdxai.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winyiweaa.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winyiweaa.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winrcjhtr.exe" = C:\Windows\TEMP\winrcjhtr.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\gbvno.exe" = C:\Windows\TEMP\gbvno.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\kriwi.exe" = C:\Windows\TEMP\kriwi.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winpkvli.exe" = C:\Windows\TEMP\winpkvli.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winebpx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winebpx.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winpgmddv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winpgmddv.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\rtjq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\rtjq.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\qsui.exe" = C:\Users\MICHA~1\AppData\Local\Temp\qsui.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winorrqw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winorrqw.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\windoohr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\windoohr.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winhshf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhshf.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winckhd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winckhd.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\bjniwt.exe" = C:\Windows\TEMP\bjniwt.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\fdcjb.exe" = C:\Windows\TEMP\fdcjb.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\wincruuus.exe" = C:\Windows\TEMP\wincruuus.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winogjr.exe" = C:\Windows\TEMP\winogjr.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\hbaet.exe" = C:\Users\MICHA~1\AppData\Local\Temp\hbaet.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winptrseu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winptrseu.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winqtcam.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winqtcam.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\quyj.exe" = C:\Users\MICHA~1\AppData\Local\Temp\quyj.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\trmn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\trmn.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\pidja.exe" = C:\Users\MICHA~1\AppData\Local\Temp\pidja.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winietsko.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winietsko.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winqjgrn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winqjgrn.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\wincpwb.exe" = C:\Windows\TEMP\wincpwb.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winakhipm.exe" = C:\Windows\TEMP\winakhipm.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\tstln.exe" = C:\Windows\TEMP\tstln.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\xvgfkm.exe" = C:\Windows\TEMP\xvgfkm.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\rjdyaq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\rjdyaq.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wingvusu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wingvusu.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\hreec.exe" = C:\Users\MICHA~1\AppData\Local\Temp\hreec.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winxqnsgi.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winxqnsgi.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winuxljj.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winuxljj.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\kkos.exe" = C:\Users\MICHA~1\AppData\Local\Temp\kkos.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\ahst.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ahst.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winkddm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winkddm.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\aagum.exe" = C:\Windows\TEMP\aagum.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\lembal.exe" = C:\Windows\TEMP\lembal.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\gwhouy.exe" = C:\Windows\TEMP\gwhouy.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\xqmowj.exe" = C:\Windows\TEMP\xqmowj.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winfonn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winfonn.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\sygwte.exe" = C:\Users\MICHA~1\AppData\Local\Temp\sygwte.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winpgry.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winpgry.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\uliqh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\uliqh.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wineyfwuw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wineyfwuw.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winqjnewj.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winqjnewj.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\qeswih.exe" = C:\Users\MICHA~1\AppData\Local\Temp\qeswih.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wintyyd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wintyyd.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\gqghlx.exe" = C:\Windows\TEMP\gqghlx.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\tfjug.exe" = C:\Windows\TEMP\tfjug.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\ggysu.exe" = C:\Windows\TEMP\ggysu.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winyyymjf.exe" = C:\Windows\TEMP\winyyymjf.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\denf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\denf.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winanjmqh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winanjmqh.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\uupi.exe" = C:\Users\MICHA~1\AppData\Local\Temp\uupi.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winlmgwtq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winlmgwtq.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\cageti.exe" = C:\Users\MICHA~1\AppData\Local\Temp\cageti.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\dvwsc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\dvwsc.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winkync.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winkync.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winpvgo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winpvgo.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\dgxs.exe" = C:\Windows\TEMP\dgxs.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winrwqglo.exe" = C:\Windows\TEMP\winrwqglo.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winqtxsp.exe" = C:\Windows\TEMP\winqtxsp.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winngdbxw.exe" = C:\Windows\TEMP\winngdbxw.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\windlcwxm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\windlcwxm.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winooqu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winooqu.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winjrfrpb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winjrfrpb.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\lallt.exe" = C:\Users\MICHA~1\AppData\Local\Temp\lallt.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\gtugxx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\gtugxx.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\yuxoig.exe" = C:\Users\MICHA~1\AppData\Local\Temp\yuxoig.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winchcwgk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winchcwgk.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wintnrip.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wintnrip.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\qvjucr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\qvjucr.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\irkslt.exe" = C:\Users\MICHA~1\AppData\Local\Temp\irkslt.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\ebsy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ebsy.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winqryprc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winqryprc.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winufahyn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winufahyn.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\ktofr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ktofr.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\lbkols.exe" = C:\Users\MICHA~1\AppData\Local\Temp\lbkols.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\ahcqh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ahcqh.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winapqp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winapqp.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\tdyy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\tdyy.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winmwpx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winmwpx.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wineiwdn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wineiwdn.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winrnrwl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winrnrwl.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\higjtp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\higjtp.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winrtxxbn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winrtxxbn.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winxatx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winxatx.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\fdha.exe" = C:\Users\MICHA~1\AppData\Local\Temp\fdha.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winuxmnfl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winuxmnfl.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\vmqui.exe" = C:\Users\MICHA~1\AppData\Local\Temp\vmqui.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\vchvw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\vchvw.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winltepgv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winltepgv.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winaqvtx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winaqvtx.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winwdbaeu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winwdbaeu.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\pdsl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\pdsl.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wintaup.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wintaup.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winkcgr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winkcgr.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\jxnbe.exe" = C:\Users\MICHA~1\AppData\Local\Temp\jxnbe.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winmbotco.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winmbotco.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\fujgfm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\fujgfm.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\pujbn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\pujbn.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winnkgn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winnkgn.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\sbngor.exe" = C:\Users\MICHA~1\AppData\Local\Temp\sbngor.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wintrjs.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wintrjs.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winhppww.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhppww.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\windpqov.exe" = C:\Users\MICHA~1\AppData\Local\Temp\windpqov.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winkvgc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winkvgc.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winvbnu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winvbnu.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winlkrju.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winlkrju.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winwcdjf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winwcdjf.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winpjcin.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winpjcin.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\psep.exe" = C:\Users\MICHA~1\AppData\Local\Temp\psep.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winkelerp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winkelerp.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winwnxu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winwnxu.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winulfh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winulfh.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winqugc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winqugc.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\cemqsf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\cemqsf.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winfbtbhc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winfbtbhc.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winrvpveo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winrvpveo.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winmpeyh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winmpeyh.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\hetsec.exe" = C:\Users\MICHA~1\AppData\Local\Temp\hetsec.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\ucwskf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ucwskf.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winslvdc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winslvdc.exe:*:Enabled:ipsec -- File not found "C:\Program Files\WIDCOMM\Bluetooth Software\BtStackServer.exe" = C:\Program Files\WIDCOMM\Bluetooth Software\BtStackServer.exe:*:Enabled:ipsec -- (Broadcom Corporation.) "C:\Windows\TEMP\winfgsk.exe" = C:\Windows\TEMP\winfgsk.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\mwjl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\mwjl.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winutih.exe" = C:\Windows\TEMP\winutih.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\pmbd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\pmbd.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winwcllm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winwcllm.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winybcbgx.exe" = C:\Windows\TEMP\winybcbgx.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\w9fa64.exe" = C:\Users\MICHA~1\AppData\Local\Temp\w9fa64.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\wa3ba8.exe" = C:\Windows\TEMP\wa3ba8.exe:*:Enabled:ipsec -- File not found "G:\Programy\WinRAR\WinRAR.exe" = G:\Programy\WinRAR\WinRAR.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\uxjbf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\uxjbf.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\malekw.exe" = C:\Windows\TEMP\malekw.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\jxnku.exe" = C:\Users\MICHA~1\AppData\Local\Temp\jxnku.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winuymvq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winuymvq.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\windauhcy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\windauhcy.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winnufiv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winnufiv.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\w9317b.exe" = C:\Users\MICHA~1\AppData\Local\Temp\w9317b.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winjinayl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winjinayl.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winsigj.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winsigj.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winfoycny.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winfoycny.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wintvst.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wintvst.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winhkghl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhkghl.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wa297f.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wa297f.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\vqyugn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\vqyugn.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\gvedd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\gvedd.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\kvsl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\kvsl.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\ctard.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ctard.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\windgccd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\windgccd.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\oaty.exe" = C:\Users\MICHA~1\AppData\Local\Temp\oaty.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\pksb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\pksb.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\bucwo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\bucwo.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winxuytbm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winxuytbm.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winjlmfn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winjlmfn.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winaeatp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winaeatp.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winkguxpy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winkguxpy.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winfaco.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winfaco.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\w8401b.exe" = C:\Users\MICHA~1\AppData\Local\Temp\w8401b.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winmpbg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winmpbg.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winnqhsw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winnqhsw.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winvjhnjw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winvjhnjw.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wklk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wklk.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\w845c6.exe" = C:\Users\MICHA~1\AppData\Local\Temp\w845c6.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\nveb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\nveb.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winjkqgac.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winjkqgac.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\ictn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ictn.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\yfdjat.exe" = C:\Users\MICHA~1\AppData\Local\Temp\yfdjat.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\ksgsax.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ksgsax.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winmujd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winmujd.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winikntcy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winikntcy.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\yhfrr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\yhfrr.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\mmipjj.exe" = C:\Users\MICHA~1\AppData\Local\Temp\mmipjj.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\nfqek.exe" = C:\Users\MICHA~1\AppData\Local\Temp\nfqek.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winbwkf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbwkf.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\hrrgms.exe" = C:\Users\MICHA~1\AppData\Local\Temp\hrrgms.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winjdagy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winjdagy.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\windfaq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\windfaq.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\trakxo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\trakxo.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\vsxxk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\vsxxk.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\w8b7aa.exe" = C:\Users\MICHA~1\AppData\Local\Temp\w8b7aa.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\windlhfu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\windlhfu.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\dsbsc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\dsbsc.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\hbffi.exe" = C:\Users\MICHA~1\AppData\Local\Temp\hbffi.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winhcbwg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhcbwg.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\oddgb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\oddgb.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\fqea.exe" = C:\Users\MICHA~1\AppData\Local\Temp\fqea.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\nahlfl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\nahlfl.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\egvp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\egvp.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winamnrxq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winamnrxq.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\turu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\turu.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\efvh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\efvh.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\mvruk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\mvruk.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winbslaa.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbslaa.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winwmeuy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winwmeuy.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winasalk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winasalk.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\dvlt.exe" = C:\Users\MICHA~1\AppData\Local\Temp\dvlt.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winqdffne.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winqdffne.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winqpcd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winqpcd.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winrgxvuf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winrgxvuf.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\cwybgy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\cwybgy.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winomji.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winomji.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\crtwlg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\crtwlg.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\ewdqnw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ewdqnw.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winpcgnqc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winpcgnqc.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\qbbjo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\qbbjo.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winoremm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winoremm.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\windrcvh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\windrcvh.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wineyyy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wineyyy.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\hcsq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\hcsq.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winirkfek.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winirkfek.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winjumbu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winjumbu.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\jstn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\jstn.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winjxojd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winjxojd.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\ucbdc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ucbdc.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wincgfisd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wincgfisd.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\xhha.exe" = C:\Users\MICHA~1\AppData\Local\Temp\xhha.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\eexmgb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\eexmgb.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\rpfju.exe" = C:\Users\MICHA~1\AppData\Local\Temp\rpfju.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winmjsc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winmjsc.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\onuwie.exe" = C:\Users\MICHA~1\AppData\Local\Temp\onuwie.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winspax.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winspax.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winycvtwl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winycvtwl.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\pxvfx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\pxvfx.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winlvna.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winlvna.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\orbnf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\orbnf.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\pbrurc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\pbrurc.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wintbuc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wintbuc.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\epweey.exe" = C:\Users\MICHA~1\AppData\Local\Temp\epweey.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\ueygle.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ueygle.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winvtqyv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winvtqyv.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winbytu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbytu.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winmkugiq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winmkugiq.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wineplir.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wineplir.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\ayjbf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ayjbf.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\w7e790.exe" = C:\Users\MICHA~1\AppData\Local\Temp\w7e790.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winteslyh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winteslyh.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winmbrb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winmbrb.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winhnasn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhnasn.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\xpnwyk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\xpnwyk.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winwkdwqo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winwkdwqo.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winfqmax.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winfqmax.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\mdcrk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\mdcrk.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winkgsnjg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winkgsnjg.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winpkvihc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winpkvihc.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winsyybj.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winsyybj.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wingymtdh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wingymtdh.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\cvbld.exe" = C:\Users\MICHA~1\AppData\Local\Temp\cvbld.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\jefng.exe" = C:\Users\MICHA~1\AppData\Local\Temp\jefng.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winwrts.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winwrts.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\oftde.exe" = C:\Users\MICHA~1\AppData\Local\Temp\oftde.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winwbhs.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winwbhs.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winhprk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhprk.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\uytqwk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\uytqwk.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winuyrdiq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winuyrdiq.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\xqxjy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\xqxjy.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winbuefxa.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbuefxa.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\yabftq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\yabftq.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winbgsihv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbgsihv.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winaelnmb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winaelnmb.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winryveys.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winryveys.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winuroi.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winuroi.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\chxdai.exe" = C:\Users\MICHA~1\AppData\Local\Temp\chxdai.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\knijv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\knijv.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winrmfsmv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winrmfsmv.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\xwxfx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\xwxfx.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winlwlh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winlwlh.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winoxpq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winoxpq.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\dfclj.exe" = C:\Users\MICHA~1\AppData\Local\Temp\dfclj.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winrmvy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winrmvy.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\cwsd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\cwsd.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\rxaq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\rxaq.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winusrpjp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winusrpjp.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winyxxt.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winyxxt.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winaicc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winaicc.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winaumbu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winaumbu.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\esgew.exe" = C:\Users\MICHA~1\AppData\Local\Temp\esgew.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\sfhxll.exe" = C:\Users\MICHA~1\AppData\Local\Temp\sfhxll.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\pfoh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\pfoh.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winvalq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winvalq.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\upxfa.exe" = C:\Users\MICHA~1\AppData\Local\Temp\upxfa.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winjrplos.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winjrplos.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winybcprg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winybcprg.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winxhpny.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winxhpny.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\ewalpx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ewalpx.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winlmhpd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winlmhpd.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\windplfv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\windplfv.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winuhvm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winuhvm.exe:*:Enabled:ipsec -- File not found "G:\Programy\MediaMonkey\MediaMonkey.exe" = G:\Programy\MediaMonkey\MediaMonkey.exe:*:Enabled:ipsec -- (Ventis Media Inc.) "C:\Users\MICHA~1\AppData\Local\Temp\dfgq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\dfgq.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\jhgp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\jhgp.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\emxtk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\emxtk.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winukgmr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winukgmr.exe:*:Enabled:ipsec -- File not found "G:\Programy\DeepBurner\Uninstall.exe" = G:\Programy\DeepBurner\Uninstall.exe:*:Enabled:ipsec -- File not found "G:\Programy\Opera\opera.exe" = G:\Programy\Opera\opera.exe:*:Enabled:ipsec -- (Opera Software) "C:\Users\MICHA~1\AppData\Local\Temp\winsuwmfe.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winsuwmfe.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\hgcddp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\hgcddp.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\ikwmk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ikwmk.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\nkbpk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\nkbpk.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winsdhd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winsdhd.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winkjuy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winkjuy.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wcb1a2.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wcb1a2.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\aace.exe" = C:\Users\MICHA~1\AppData\Local\Temp\aace.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\gigdcg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\gigdcg.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\hmbln.exe" = C:\Users\MICHA~1\AppData\Local\Temp\hmbln.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\buaaay.exe" = C:\Users\MICHA~1\AppData\Local\Temp\buaaay.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winusfas.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winusfas.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\vbvfkj.exe" = C:\Users\MICHA~1\AppData\Local\Temp\vbvfkj.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winyrey.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winyrey.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winkmghqs.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winkmghqs.exe:*:Enabled:ipsec -- File not found "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" = C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe:*:Enabled:ipsec -- (Google Inc.) "C:\Windows\TEMP\mtulvm.exe" = C:\Windows\TEMP\mtulvm.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\pbar.exe" = C:\Windows\TEMP\pbar.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winssni.exe" = C:\Windows\TEMP\winssni.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winbhweo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbhweo.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\wineycyk.exe" = C:\Windows\TEMP\wineycyk.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\jfeff.exe" = C:\Windows\TEMP\jfeff.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\aicq.exe" = C:\Windows\TEMP\aicq.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\onvuk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\onvuk.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winaaacep.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winaaacep.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\niray.exe" = C:\Users\MICHA~1\AppData\Local\Temp\niray.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\bovq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\bovq.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\njodh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\njodh.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\rnwf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\rnwf.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\mcgbd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\mcgbd.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\oywtj.exe" = C:\Users\MICHA~1\AppData\Local\Temp\oywtj.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winbdkpcq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbdkpcq.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\w8780c.exe" = C:\Users\MICHA~1\AppData\Local\Temp\w8780c.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\w877cd.exe" = C:\Windows\TEMP\w877cd.exe:*:Enabled:ipsec -- File not found "G:\Programy\defragmentator dysku\PDAgentS1.exe" = G:\Programy\defragmentator dysku\PDAgentS1.exe:*:Enabled:ipsec -- (Raxco Software, Inc.) "C:\Users\MICHA~1\AppData\Local\Temp\winbcem.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbcem.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winhgni.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhgni.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\iwqfba.exe" = C:\Users\MICHA~1\AppData\Local\Temp\iwqfba.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winppjag.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winppjag.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winreqk.exe" = C:\Windows\TEMP\winreqk.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\wtxm.exe" = C:\Windows\TEMP\wtxm.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winsmucm.exe" = C:\Windows\TEMP\winsmucm.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\yluafm.exe" = C:\Windows\TEMP\yluafm.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winywyst.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winywyst.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winkibo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winkibo.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winncfmk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winncfmk.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winefaaby.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winefaaby.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\nndwpf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\nndwpf.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wefnj.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wefnj.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winuoyo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winuoyo.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winafxriu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winafxriu.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\dkfyty.exe" = C:\Users\MICHA~1\AppData\Local\Temp\dkfyty.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winnqlju.exe" = C:\Windows\TEMP\winnqlju.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winbbbaq.exe" = C:\Windows\TEMP\winbbbaq.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winkvoq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winkvoq.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\hpcrmq.exe" = C:\Windows\TEMP\hpcrmq.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\wnscd.exe" = C:\Windows\TEMP\wnscd.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winwvkjf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winwvkjf.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winwrvan.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winwrvan.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winkfsuw.exe" = C:\Windows\TEMP\winkfsuw.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winuxdbjd.exe" = C:\Windows\TEMP\winuxdbjd.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\cwxapy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\cwxapy.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winqgqyvp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winqgqyvp.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\bslu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\bslu.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winwgpiq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winwgpiq.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winvgqqf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winvgqqf.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winkolo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winkolo.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\w806c3.exe" = C:\Users\MICHA~1\AppData\Local\Temp\w806c3.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\w87fd9.exe" = C:\Windows\TEMP\w87fd9.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winkoyg.exe" = C:\Windows\TEMP\winkoyg.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\efpxak.exe" = C:\Users\MICHA~1\AppData\Local\Temp\efpxak.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\lgtw.exe" = C:\Windows\TEMP\lgtw.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\oqbsj.exe" = C:\Windows\TEMP\oqbsj.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\nntml.exe" = C:\Windows\TEMP\nntml.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winkwjx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winkwjx.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\pqew.exe" = C:\Users\MICHA~1\AppData\Local\Temp\pqew.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wincqwwhh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wincqwwhh.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winqhkw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winqhkw.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wsbx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wsbx.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winvbumos.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winvbumos.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wsll.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wsll.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winmdnl.exe" = C:\Windows\TEMP\winmdnl.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winojem.exe" = C:\Windows\TEMP\winojem.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\xcov.exe" = C:\Windows\TEMP\xcov.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\ahsuvh.exe" = C:\Windows\TEMP\ahsuvh.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\krvl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\krvl.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winvoym.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winvoym.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winhsyo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhsyo.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winvjbqxb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winvjbqxb.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winfxuhkw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winfxuhkw.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\sbfm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\sbfm.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winacjnb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winacjnb.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wintgwgwy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wintgwgwy.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\rdrva.exe" = C:\Windows\TEMP\rdrva.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winmnmkc.exe" = C:\Windows\TEMP\winmnmkc.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winafav.exe" = C:\Windows\TEMP\winafav.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\mwlmg.exe" = C:\Windows\TEMP\mwlmg.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winvuyshl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winvuyshl.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\dtrkqa.exe" = C:\Users\MICHA~1\AppData\Local\Temp\dtrkqa.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wintjvdh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wintjvdh.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wcclb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wcclb.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\vbobov.exe" = C:\Users\MICHA~1\AppData\Local\Temp\vbobov.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wingljkgx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wingljkgx.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\ujcowa.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ujcowa.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winpqtgk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winpqtgk.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\windhcul.exe" = C:\Windows\TEMP\windhcul.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winkdwof.exe" = C:\Windows\TEMP\winkdwof.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\ohfxig.exe" = C:\Windows\TEMP\ohfxig.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\vdlkn.exe" = C:\Windows\TEMP\vdlkn.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wfwb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wfwb.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\mkmq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\mkmq.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winyhmhqv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winyhmhqv.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winjrvnov.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winjrvnov.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\buij.exe" = C:\Users\MICHA~1\AppData\Local\Temp\buij.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winwllbl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winwllbl.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\tuxyvv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\tuxyvv.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winaitx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winaitx.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\bqdnh.exe" = C:\Windows\TEMP\bqdnh.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\arhujx.exe" = C:\Windows\TEMP\arhujx.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winukueev.exe" = C:\Windows\TEMP\winukueev.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winycecgp.exe" = C:\Windows\TEMP\winycecgp.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\jayh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\jayh.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wintase.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wintase.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winskng.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winskng.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\hghln.exe" = C:\Users\MICHA~1\AppData\Local\Temp\hghln.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\coijn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\coijn.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\bmkk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\bmkk.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winwqlxqw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winwqlxqw.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winpoebnm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winpoebnm.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\okkc.exe" = C:\Windows\TEMP\okkc.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winvdqb.exe" = C:\Windows\TEMP\winvdqb.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winmlfadp.exe" = C:\Windows\TEMP\winmlfadp.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\iuiy.exe" = C:\Windows\TEMP\iuiy.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wintwnef.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wintwnef.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\nfcvau.exe" = C:\Users\MICHA~1\AppData\Local\Temp\nfcvau.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winjsitoo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winjsitoo.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winmerv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winmerv.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winvccy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winvccy.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\windsatvr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\windsatvr.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\mwnt.exe" = C:\Users\MICHA~1\AppData\Local\Temp\mwnt.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\hnyumj.exe" = C:\Users\MICHA~1\AppData\Local\Temp\hnyumj.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winvxswlk.exe" = C:\Windows\TEMP\winvxswlk.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winuncqk.exe" = C:\Windows\TEMP\winuncqk.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\rrlfcq.exe" = C:\Windows\TEMP\rrlfcq.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\hvyjo.exe" = C:\Windows\TEMP\hvyjo.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winbkktl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbkktl.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winjaxij.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winjaxij.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wintudh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wintudh.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winouuro.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winouuro.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winqdje.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winqdje.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winifvhn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winifvhn.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winagvtp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winagvtp.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\ruuhd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ruuhd.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winuilv.exe" = C:\Windows\TEMP\winuilv.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winfpcx.exe" = C:\Windows\TEMP\winfpcx.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winhsiqkc.exe" = C:\Windows\TEMP\winhsiqkc.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\wineabiik.exe" = C:\Windows\TEMP\wineabiik.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\rsauw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\rsauw.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wintwpyyf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wintwpyyf.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\mcnxt.exe" = C:\Users\MICHA~1\AppData\Local\Temp\mcnxt.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winbkpq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbkpq.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winlqjeh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winlqjeh.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winbhcr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbhcr.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wingyry.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wingyry.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\anvfn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\anvfn.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\fljlnl.exe" = C:\Windows\TEMP\fljlnl.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winwsuuue.exe" = C:\Windows\TEMP\winwsuuue.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\swll.exe" = C:\Windows\TEMP\swll.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\olefqj.exe" = C:\Windows\TEMP\olefqj.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wyfr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wyfr.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\ufmwf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ufmwf.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winenaba.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winenaba.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\windxdkbb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\windxdkbb.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winjmhuhw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winjmhuhw.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winecit.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winecit.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winipxh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winipxh.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\windohbg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\windohbg.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winbaxuu.exe" = C:\Windows\TEMP\winbaxuu.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winnkegql.exe" = C:\Windows\TEMP\winnkegql.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\vfqpl.exe" = C:\Windows\TEMP\vfqpl.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winxcuvsm.exe" = C:\Windows\TEMP\winxcuvsm.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winhcil.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhcil.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\twst.exe" = C:\Users\MICHA~1\AppData\Local\Temp\twst.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\yhfa.exe" = C:\Users\MICHA~1\AppData\Local\Temp\yhfa.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\qqksh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\qqksh.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winfuqqm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winfuqqm.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wrixm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wrixm.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\ekddyl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ekddyl.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wincmsyu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wincmsyu.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winfcoqo.exe" = C:\Windows\TEMP\winfcoqo.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winpocqkw.exe" = C:\Windows\TEMP\winpocqkw.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winfxuoj.exe" = C:\Windows\TEMP\winfxuoj.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\bukls.exe" = C:\Windows\TEMP\bukls.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winnvsso.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winnvsso.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\rroirw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\rroirw.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wlhi.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wlhi.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\ebuqg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ebuqg.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winsdasg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winsdasg.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\ovrgj.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ovrgj.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\jpgj.exe" = C:\Users\MICHA~1\AppData\Local\Temp\jpgj.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winapqcg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winapqcg.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\imugon.exe" = C:\Windows\TEMP\imugon.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winsdgmtx.exe" = C:\Windows\TEMP\winsdgmtx.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\lbii.exe" = C:\Windows\TEMP\lbii.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winlfmhy.exe" = C:\Windows\TEMP\winlfmhy.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winekdvew.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winekdvew.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\kmeece.exe" = C:\Users\MICHA~1\AppData\Local\Temp\kmeece.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winoyjjxu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winoyjjxu.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\fnwpqg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\fnwpqg.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\embms.exe" = C:\Users\MICHA~1\AppData\Local\Temp\embms.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winvfxupv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winvfxupv.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wblols.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wblols.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wineqof.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wineqof.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winoeux.exe" = C:\Windows\TEMP\winoeux.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winuuig.exe" = C:\Windows\TEMP\winuuig.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winkeqlj.exe" = C:\Windows\TEMP\winkeqlj.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winhinub.exe" = C:\Windows\TEMP\winhinub.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winbrnyi.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbrnyi.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winnlqvsn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winnlqvsn.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\ktlfli.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ktlfli.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\syed.exe" = C:\Users\MICHA~1\AppData\Local\Temp\syed.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winusagxh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winusagxh.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\yldrb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\yldrb.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winbtwiy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbtwiy.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wkudqa.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wkudqa.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winvetbgi.exe" = C:\Windows\TEMP\winvetbgi.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winefliq.exe" = C:\Windows\TEMP\winefliq.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winnbku.exe" = C:\Windows\TEMP\winnbku.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\wtdyw.exe" = C:\Windows\TEMP\wtdyw.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winqpmo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winqpmo.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\windbunnf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\windbunnf.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winrlgxl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winrlgxl.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winsbsue.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winsbsue.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winpado.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winpado.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winkiqr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winkiqr.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\gwmnp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\gwmnp.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\nnxp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\nnxp.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winvnpdg.exe" = C:\Windows\TEMP\winvnpdg.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\elwktf.exe" = C:\Windows\TEMP\elwktf.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winrmtqt.exe" = C:\Windows\TEMP\winrmtqt.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\wxlhu.exe" = C:\Windows\TEMP\wxlhu.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\citlhh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\citlhh.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winqiwsc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winqiwsc.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\hqlebc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\hqlebc.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\xjho.exe" = C:\Users\MICHA~1\AppData\Local\Temp\xjho.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\dcif.exe" = C:\Users\MICHA~1\AppData\Local\Temp\dcif.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winwjfold.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winwjfold.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\gegcqs.exe" = C:\Users\MICHA~1\AppData\Local\Temp\gegcqs.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winycku.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winycku.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\inioe.exe" = C:\Windows\TEMP\inioe.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winurotgc.exe" = C:\Windows\TEMP\winurotgc.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\jtridq.exe" = C:\Windows\TEMP\jtridq.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\irwv.exe" = C:\Windows\TEMP\irwv.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winblaxh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winblaxh.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\gknji.exe" = C:\Users\MICHA~1\AppData\Local\Temp\gknji.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winlaogk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winlaogk.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wincgqq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wincgqq.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\ujki.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ujki.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winlbfyao.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winlbfyao.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winpwdfd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winpwdfd.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winndvxk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winndvxk.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winckqq.exe" = C:\Windows\TEMP\winckqq.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\vmpk.exe" = C:\Windows\TEMP\vmpk.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winnbkdv.exe" = C:\Windows\TEMP\winnbkdv.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winwyvi.exe" = C:\Windows\TEMP\winwyvi.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\veut.exe" = C:\Users\MICHA~1\AppData\Local\Temp\veut.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winisma.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winisma.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winhrppoc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhrppoc.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\jxqei.exe" = C:\Users\MICHA~1\AppData\Local\Temp\jxqei.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\qluwu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\qluwu.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winsxwfn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winsxwfn.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wintdmsc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wintdmsc.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\iwer.exe" = C:\Users\MICHA~1\AppData\Local\Temp\iwer.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\ywqre.exe" = C:\Windows\TEMP\ywqre.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winqbyir.exe" = C:\Windows\TEMP\winqbyir.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winetmw.exe" = C:\Windows\TEMP\winetmw.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\dkmt.exe" = C:\Windows\TEMP\dkmt.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winbjcfy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbjcfy.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winaxpkh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winaxpkh.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\dhifrr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\dhifrr.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\ogays.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ogays.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\evsgw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\evsgw.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\vhbqp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\vhbqp.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\holm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\holm.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\uifl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\uifl.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winakeyd.exe" = C:\Windows\TEMP\winakeyd.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\fextp.exe" = C:\Windows\TEMP\fextp.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\vnabin.exe" = C:\Windows\TEMP\vnabin.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winaurx.exe" = C:\Windows\TEMP\winaurx.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wingjaxx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wingjaxx.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winwslks.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winwslks.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\ykar.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ykar.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\bqeewk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\bqeewk.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\ddwg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ddwg.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winmsbxb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winmsbxb.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\khsq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\khsq.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\vdnhxx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\vdnhxx.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\hdugxh.exe" = C:\Windows\TEMP\hdugxh.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\ngcc.exe" = C:\Windows\TEMP\ngcc.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\xflipn.exe" = C:\Windows\TEMP\xflipn.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wincmfcab.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wincmfcab.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wingbah.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wingbah.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winsslwq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winsslwq.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winttrea.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winttrea.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wingtwp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wingtwp.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winkmlbuk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winkmlbuk.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\paqf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\paqf.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\tewq.exe" = C:\Windows\TEMP\tewq.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winvnhe.exe" = C:\Windows\TEMP\winvnhe.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winknxswe.exe" = C:\Windows\TEMP\winknxswe.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winkblls.exe" = C:\Windows\TEMP\winkblls.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\iayi.exe" = C:\Users\MICHA~1\AppData\Local\Temp\iayi.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\dutov.exe" = C:\Users\MICHA~1\AppData\Local\Temp\dutov.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\cvpf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\cvpf.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winuximcy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winuximcy.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\moqe.exe" = C:\Users\MICHA~1\AppData\Local\Temp\moqe.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winpqguqy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winpqguqy.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\gadiue.exe" = C:\Users\MICHA~1\AppData\Local\Temp\gadiue.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winxwvlx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winxwvlx.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winfbgtmc.exe" = C:\Windows\TEMP\winfbgtmc.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\nosxew.exe" = C:\Windows\TEMP\nosxew.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\hhjr.exe" = C:\Windows\TEMP\hhjr.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winvttd.exe" = C:\Windows\TEMP\winvttd.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\uwtf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\uwtf.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winilbsa.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winilbsa.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\dcba.exe" = C:\Users\MICHA~1\AppData\Local\Temp\dcba.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\piya.exe" = C:\Users\MICHA~1\AppData\Local\Temp\piya.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winoyagg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winoyagg.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winfjhh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winfjhh.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winnlnh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winnlnh.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wintycij.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wintycij.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\fduh.exe" = C:\Windows\TEMP\fduh.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winypcnx.exe" = C:\Windows\TEMP\winypcnx.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winhhjgu.exe" = C:\Windows\TEMP\winhhjgu.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winpqlo.exe" = C:\Windows\TEMP\winpqlo.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winvduce.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winvduce.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winxgmkhy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winxgmkhy.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winnfwy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winnfwy.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winhtuf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhtuf.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\akemdg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\akemdg.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winrdai.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winrdai.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winxlash.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winxlash.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winduvhj.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winduvhj.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winswbkx.exe" = C:\Windows\TEMP\winswbkx.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winhqbj.exe" = C:\Windows\TEMP\winhqbj.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winvguri.exe" = C:\Windows\TEMP\winvguri.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winkbjy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winkbjy.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\rvpru.exe" = C:\Users\MICHA~1\AppData\Local\Temp\rvpru.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\issu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\issu.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winemrg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winemrg.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winutcqu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winutcqu.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winayurey.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winayurey.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winewglwu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winewglwu.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\iixbf.exe" = C:\Windows\TEMP\iixbf.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winxpnga.exe" = C:\Windows\TEMP\winxpnga.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winqcjstp.exe" = C:\Windows\TEMP\winqcjstp.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\xvuxpb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\xvuxpb.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winykwxos.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winykwxos.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\ackr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ackr.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winllwr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winllwr.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winwxkfrb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winwxkfrb.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wintbquoe.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wintbquoe.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\hgujb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\hgujb.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winmcfyxh.exe" = C:\Windows\TEMP\winmcfyxh.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\kgjkcs.exe" = C:\Windows\TEMP\kgjkcs.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\dkenk.exe" = C:\Windows\TEMP\dkenk.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\nxowq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\nxowq.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wincheex.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wincheex.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winmagla.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winmagla.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\windnvjn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\windnvjn.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\bjav.exe" = C:\Windows\TEMP\bjav.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winflepgj.exe" = C:\Windows\TEMP\winflepgj.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\ejwe.exe" = C:\Windows\TEMP\ejwe.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\bennpd.exe" = C:\Windows\TEMP\bennpd.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winbovvxj.exe" = C:\Windows\TEMP\winbovvxj.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wincmue.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wincmue.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wingcnaul.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wingcnaul.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\cwuxi.exe" = C:\Users\MICHA~1\AppData\Local\Temp\cwuxi.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\windgfyl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\windgfyl.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winrxldo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winrxldo.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wdwuhj.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wdwuhj.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winjsdb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winjsdb.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wincfqq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wincfqq.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\w86161.exe" = C:\Windows\TEMP\w86161.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\w87139.exe" = C:\Users\MICHA~1\AppData\Local\Temp\w87139.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\upyn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\upyn.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winemdkm.exe" = C:\Windows\TEMP\winemdkm.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\lfmr.exe" = C:\Windows\TEMP\lfmr.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\xqboeh.exe" = C:\Windows\TEMP\xqboeh.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winltnqy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winltnqy.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\niyc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\niyc.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\svuejh.exe" = C:\Windows\TEMP\svuejh.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winpmwpk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winpmwpk.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winnffjw.exe" = C:\Windows\TEMP\winnffjw.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\lvfobs.exe" = C:\Users\MICHA~1\AppData\Local\Temp\lvfobs.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\lmcos.exe" = C:\Users\MICHA~1\AppData\Local\Temp\lmcos.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wingtmeo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wingtmeo.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winjgvbve.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winjgvbve.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\nqip.exe" = C:\Users\MICHA~1\AppData\Local\Temp\nqip.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\w8674a.exe" = C:\Users\MICHA~1\AppData\Local\Temp\w8674a.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\w90157.exe" = C:\Windows\TEMP\w90157.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\wincixh.exe" = C:\Windows\TEMP\wincixh.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\gbvxqu.exe" = C:\Windows\TEMP\gbvxqu.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\lfwkgf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\lfwkgf.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\wintiwjw.exe" = C:\Windows\TEMP\wintiwjw.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winvxolgb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winvxolgb.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winhnkvta.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhnkvta.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winafwdmx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winafwdmx.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wineycyj.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wineycyj.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winqmsxhd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winqmsxhd.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winpadk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winpadk.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\obem.exe" = C:\Windows\TEMP\obem.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winegghx.exe" = C:\Windows\TEMP\winegghx.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\guacn.exe" = C:\Windows\TEMP\guacn.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\kmdpd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\kmdpd.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wkcx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wkcx.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winbpvo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbpvo.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\jassxe.exe" = C:\Users\MICHA~1\AppData\Local\Temp\jassxe.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winiajtj.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winiajtj.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\pxdgwq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\pxdgwq.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\rddf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\rddf.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\vsqjk.exe" = C:\Windows\TEMP\vsqjk.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winhglx.exe" = C:\Windows\TEMP\winhglx.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\mcpll.exe" = C:\Windows\TEMP\mcpll.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\uupl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\uupl.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wjji.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wjji.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wincxgvt.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wincxgvt.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\ijylu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ijylu.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\putim.exe" = C:\Users\MICHA~1\AppData\Local\Temp\putim.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\nwytc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\nwytc.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winnwecf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winnwecf.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winwotje.exe" = C:\Windows\TEMP\winwotje.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winmxtj.exe" = C:\Windows\TEMP\winmxtj.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\qqpn.exe" = C:\Windows\TEMP\qqpn.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wingrpf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wingrpf.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\skudyk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\skudyk.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\pdpxv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\pdpxv.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\vocgh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\vocgh.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winmmyw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winmmyw.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winlgak.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winlgak.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wineoki.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wineoki.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winrlxu.exe" = C:\Windows\TEMP\winrlxu.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winrvdfk.exe" = C:\Windows\TEMP\winrvdfk.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\litha.exe" = C:\Windows\TEMP\litha.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winqbgxkd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winqbgxkd.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winxqyr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winxqyr.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\bbdlu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\bbdlu.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winkqly.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winkqly.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\tuqfkq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\tuqfkq.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winbmuobh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbmuobh.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winnvgk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winnvgk.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winqneay.exe" = C:\Windows\TEMP\winqneay.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winkkfjn.exe" = C:\Windows\TEMP\winkkfjn.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\mjbw.exe" = C:\Windows\TEMP\mjbw.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\windrwu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\windrwu.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\ameeyx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ameeyx.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winkqwu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winkqwu.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winptwe.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winptwe.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\siik.exe" = C:\Users\MICHA~1\AppData\Local\Temp\siik.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winahkpn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winahkpn.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\ienwp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ienwp.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winicvsm.exe" = C:\Windows\TEMP\winicvsm.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winnsdljx.exe" = C:\Windows\TEMP\winnsdljx.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\pjifl.exe" = C:\Windows\TEMP\pjifl.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winowoyk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winowoyk.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\jnfav.exe" = C:\Users\MICHA~1\AppData\Local\Temp\jnfav.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\gmwtrt.exe" = C:\Users\MICHA~1\AppData\Local\Temp\gmwtrt.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\kfnamv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\kfnamv.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\kqpanf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\kqpanf.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\sajl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\sajl.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\nqqrlw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\nqqrlw.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winsqfn.exe" = C:\Windows\TEMP\winsqfn.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\eivs.exe" = C:\Windows\TEMP\eivs.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winnnodeq.exe" = C:\Windows\TEMP\winnnodeq.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winjkyas.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winjkyas.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winhxedad.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhxedad.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\ehmj.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ehmj.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\djrpqu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\djrpqu.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\eyhnby.exe" = C:\Users\MICHA~1\AppData\Local\Temp\eyhnby.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wingtjy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wingtjy.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\phguvc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\phguvc.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winwsnjdy.exe" = C:\Windows\TEMP\winwsnjdy.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\yqkwkx.exe" = C:\Windows\TEMP\yqkwkx.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winxrsm.exe" = C:\Windows\TEMP\winxrsm.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winrhhgl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winrhhgl.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winoenjfo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winoenjfo.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winabsr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winabsr.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winbaxpel.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbaxpel.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\xpws.exe" = C:\Users\MICHA~1\AppData\Local\Temp\xpws.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\twqibl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\twqibl.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\xprw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\xprw.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\windlegi.exe" = C:\Windows\TEMP\windlegi.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\windeasja.exe" = C:\Windows\TEMP\windeasja.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winsgcht.exe" = C:\Windows\TEMP\winsgcht.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winicffig.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winicffig.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winhlax.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhlax.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\cbjy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\cbjy.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\icio.exe" = C:\Users\MICHA~1\AppData\Local\Temp\icio.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winsmiklm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winsmiklm.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winnbvl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winnbvl.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winxwupg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winxwupg.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winpuqd.exe" = C:\Windows\TEMP\winpuqd.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\tyem.exe" = C:\Windows\TEMP\tyem.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\icxcf.exe" = C:\Windows\TEMP\icxcf.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winihdtgl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winihdtgl.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\gquh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\gquh.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winaujvv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winaujvv.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winbqcqb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbqcqb.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winhybrxb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhybrxb.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\nvdb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\nvdb.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winetpa.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winetpa.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\jwgcv.exe" = C:\Windows\TEMP\jwgcv.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\wincyph.exe" = C:\Windows\TEMP\wincyph.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winpdanaa.exe" = C:\Windows\TEMP\winpdanaa.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winrmioo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winrmioo.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winasbv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winasbv.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\llssnk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\llssnk.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\cpxrwh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\cpxrwh.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winutvmo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winutvmo.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\qkuyo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\qkuyo.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\waoy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\waoy.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\ilfqp.exe" = C:\Windows\TEMP\ilfqp.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winvrsmi.exe" = C:\Windows\TEMP\winvrsmi.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\gekr.exe" = C:\Windows\TEMP\gekr.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\windbwx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\windbwx.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winrpohu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winrpohu.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winoyvrkr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winoyvrkr.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\tftn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\tftn.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winllvdf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winllvdf.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\qxol.exe" = C:\Users\MICHA~1\AppData\Local\Temp\qxol.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winnhngwd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winnhngwd.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winhmygyc.exe" = C:\Windows\TEMP\winhmygyc.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\eulgfg.exe" = C:\Windows\TEMP\eulgfg.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winvbgt.exe" = C:\Windows\TEMP\winvbgt.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\hvcvv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\hvcvv.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\ogqy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ogqy.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\nxiuvp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\nxiuvp.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winkkbvk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winkkbvk.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\vuihn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\vuihn.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winished.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winished.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winsgxy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winsgxy.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\wintoih.exe" = C:\Windows\TEMP\wintoih.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\vgpe.exe" = C:\Windows\TEMP\vgpe.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winrsapb.exe" = C:\Windows\TEMP\winrsapb.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winflrc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winflrc.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winhgstwd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhgstwd.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winocpsxx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winocpsxx.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\mwqkrg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\mwqkrg.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winioda.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winioda.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\pxkfu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\pxkfu.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\fblo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\fblo.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winwuhn.exe" = C:\Windows\TEMP\winwuhn.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\fauw.exe" = C:\Windows\TEMP\fauw.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\ovkcy.exe" = C:\Windows\TEMP\ovkcy.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\gbfp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\gbfp.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winmwbur.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winmwbur.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winxgdg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winxgdg.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winuvykt.exe" = C:\Windows\TEMP\winuvykt.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winaaedvf.exe" = C:\Windows\TEMP\winaaedvf.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\kihgip.exe" = C:\Users\MICHA~1\AppData\Local\Temp\kihgip.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winkyvj.exe" = C:\Windows\TEMP\winkyvj.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\wuxjk.exe" = C:\Windows\TEMP\wuxjk.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\tuar.exe" = C:\Users\MICHA~1\AppData\Local\Temp\tuar.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winmyhc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winmyhc.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\jbxcww.exe" = C:\Users\MICHA~1\AppData\Local\Temp\jbxcww.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\w7bb72.exe" = C:\Users\MICHA~1\AppData\Local\Temp\w7bb72.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\w83ee3.exe" = C:\Windows\TEMP\w83ee3.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winnghip.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winnghip.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winetxau.exe" = C:\Windows\TEMP\winetxau.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\ecvlq.exe" = C:\Windows\TEMP\ecvlq.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winxduvr.exe" = C:\Windows\TEMP\winxduvr.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winbxqki.exe" = C:\Windows\TEMP\winbxqki.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winqqypf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winqqypf.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\ejixf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ejixf.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winfcucm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winfcucm.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winmoeie.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winmoeie.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\rcikpr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\rcikpr.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winxpmobi.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winxpmobi.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\w81a91.exe" = C:\Users\MICHA~1\AppData\Local\Temp\w81a91.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\w836b9.exe" = C:\Windows\TEMP\w836b9.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\wingkbcx.exe" = C:\Windows\TEMP\wingkbcx.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winfmjou.exe" = C:\Windows\TEMP\winfmjou.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\sltonr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\sltonr.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winlqil.exe" = C:\Windows\TEMP\winlqil.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winhdfncu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhdfncu.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wvmfba.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wvmfba.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winmrydk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winmrydk.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winymxluk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winymxluk.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\cnhlf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\cnhlf.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\igxaqf.exe" = C:\Windows\TEMP\igxaqf.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\saosad.exe" = C:\Windows\TEMP\saosad.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\pyqho.exe" = C:\Windows\TEMP\pyqho.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winjlfoc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winjlfoc.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winkquwm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winkquwm.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winkujf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winkujf.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\oeneq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\oeneq.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winaafqg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winaafqg.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winfftvrq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winfftvrq.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\tlgqsh.exe" = C:\Windows\TEMP\tlgqsh.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\xbxj.exe" = C:\Windows\TEMP\xbxj.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winqcne.exe" = C:\Windows\TEMP\winqcne.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winebrqux.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winebrqux.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\oaeihe.exe" = C:\Users\MICHA~1\AppData\Local\Temp\oaeihe.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\iwvv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\iwvv.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winyppxds.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winyppxds.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wingjsviv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wingjsviv.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\dngl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\dngl.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winmwyfnb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winmwyfnb.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\w13ba49.exe" = C:\Users\MICHA~1\AppData\Local\Temp\w13ba49.exe:*:Enabled:ipsec -- File not found "C:\Program Files\Nokia\Nokia Software Updater\nsu_ui_client.exe" = C:\Program Files\Nokia\Nokia Software Updater\nsu_ui_client.exe:*:Enabled:ipsec -- (Nokia Corporation) "C:\Users\MICHA~1\AppData\Local\Temp\winslndk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winslndk.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winlhutk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winlhutk.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\nppqpf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\nppqpf.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winwhem.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winwhem.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winnpivw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winnpivw.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\windywud.exe" = C:\Users\MICHA~1\AppData\Local\Temp\windywud.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\jteff.exe" = C:\Users\MICHA~1\AppData\Local\Temp\jteff.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winokqog.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winokqog.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\skfglk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\skfglk.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winofsfr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winofsfr.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winwthxl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winwthxl.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winltmr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winltmr.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\iulmn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\iulmn.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\wincraslb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wincraslb.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\motb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\motb.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\itjuwx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\itjuwx.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winsdabmd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winsdabmd.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winhyon.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhyon.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winvuws.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winvuws.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winhhbda.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhhbda.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winyysp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winyysp.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winhfubcn.exe" = C:\Windows\TEMP\winhfubcn.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\wiceq.exe" = C:\Windows\TEMP\wiceq.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\iroap.exe" = C:\Users\MICHA~1\AppData\Local\Temp\iroap.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winrfroqe.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winrfroqe.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\edpsqb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\edpsqb.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\xfgtvm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\xfgtvm.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winwomdom.exe" = C:\Windows\TEMP\winwomdom.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\ljcwj.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ljcwj.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\lujwer.exe" = C:\Users\MICHA~1\AppData\Local\Temp\lujwer.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\tqamc.exe" = C:\Windows\TEMP\tqamc.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\w90424.exe" = C:\Users\MICHA~1\AppData\Local\Temp\w90424.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\w9f353.exe" = C:\Windows\TEMP\w9f353.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\windnfjb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\windnfjb.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\wincrcwle.exe" = C:\Windows\TEMP\wincrcwle.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\gwevs.exe" = C:\Users\MICHA~1\AppData\Local\Temp\gwevs.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winaspsx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winaspsx.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\wingvfomr.exe" = C:\Windows\TEMP\wingvfomr.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winwatpwv.exe" = C:\Windows\TEMP\winwatpwv.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winlnmxb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winlnmxb.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winqylbvr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winqylbvr.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\drmwp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\drmwp.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winoopl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winoopl.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\kxcf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\kxcf.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winshhrqa.exe" = C:\Windows\TEMP\winshhrqa.exe:*:Enabled:ipsec -- () "C:\Users\MICHA~1\AppData\Local\Temp\wintiwr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wintiwr.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winiodnx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winiodnx.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winqalplt.exe" = C:\Windows\TEMP\winqalplt.exe:*:Enabled:ipsec -- () "C:\Windows\TEMP\xtwiik.exe" = C:\Windows\TEMP\xtwiik.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\egkio.exe" = C:\Windows\TEMP\egkio.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winbuliiv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbuliiv.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\ccfrud.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ccfrud.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winthhgh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winthhgh.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\w86f45.exe" = C:\Users\MICHA~1\AppData\Local\Temp\w86f45.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\w87f0e.exe" = C:\Windows\TEMP\w87f0e.exe:*:Enabled:ipsec -- () "C:\Users\MICHA~1\AppData\Local\Temp\winibrgik.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winibrgik.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\bxun.exe" = C:\Windows\TEMP\bxun.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\winjnvdvb.exe" = C:\Windows\TEMP\winjnvdvb.exe:*:Enabled:ipsec -- File not found "C:\Windows\TEMP\qcrj.exe" = C:\Windows\TEMP\qcrj.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\hmrkdc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\hmrkdc.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\windhkohk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\windhkohk.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\hhottv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\hhottv.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winuqemu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winuqemu.exe:*:Enabled:ipsec -- File not found "C:\Users\MICHA~1\AppData\Local\Temp\winuhsgd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winuhsgd.exe:*:Enabled:ipsec -- File not found [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{03B65D2F-B57E-4B3E-BDC4-B5522667822C}" = lport=2869 | protocol=6 | dir=in | app=system | "{40FE7636-7FC9-454F-B87C-EC28940407FE}" = lport=139 | protocol=6 | dir=in | app=system | "{63CDDFAB-0FF2-48EB-A6D3-625AC7914D24}" = lport=137 | protocol=17 | dir=in | app=system | "{8137CD25-82A8-4FEC-9F73-483D853BB3DD}" = rport=139 | protocol=6 | dir=out | app=system | "{86E9BF43-D594-4F6B-8365-60ED7D8429C3}" = lport=138 | protocol=17 | dir=in | app=system | "{986F6AFC-EC61-42EF-9B9B-589DC16BC329}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{9FB7A6D7-3813-40B3-8FF1-4EFE04AEF9D4}" = rport=137 | protocol=17 | dir=out | app=system | "{AD541E15-1313-4FA6-BB6F-830A29FA6A52}" = lport=445 | protocol=6 | dir=in | app=system | "{B0F6068F-3DCA-42B1-8B56-1AC4D215EDD8}" = rport=138 | protocol=17 | dir=out | app=system | "{C4BCBA28-76DC-41D9-86EC-C1D6F9E86F58}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{D1984D9D-BC30-462E-ADEC-61A513AF6819}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=svchost.exe | "{D5439A99-2095-42EB-980C-55273B0DE533}" = rport=445 | protocol=6 | dir=out | app=system | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{04F33B5C-F32F-4798-A4A6-83412E1A1B62}" = protocol=6 | dir=in | app=g:\gry\world of warcraft\wow-3.2.0-enus-downloader.exe | "{0A04B056-92EE-4928-898C-1F8BEF452372}" = protocol=6 | dir=in | app=h:\gta\grand theft auto iv\launchgtaiv.exe | "{0A4A0C2C-1744-4B8F-A448-59C9F7758C71}" = protocol=6 | dir=in | app=c:\program files\winamp remote\bin\orbstreamerclient.exe | "{0E989BB6-CDD6-4D41-9CEE-858D7C180D46}" = protocol=6 | dir=in | app=g:\gry\starcraft ii beta\starcraft ii.exe | "{1843E0EE-E4EE-47A0-8F11-E8017439B395}" = protocol=17 | dir=in | app=c:\program files\ubisoft\the settlers - rise of an empire demo\base\bin\settlers6demo.exe | "{1E4BFADE-39C1-4B09-9297-3C079FDE4B62}" = protocol=17 | dir=in | app=g:\programy\speedbit video accelerator\videoaccelerator.exe | "{1F56B22D-8195-4AFE-84A0-83AFF08D31BB}" = dir=in | app=c:\program files\windows live\messenger\msnmsgr.exe | "{211DFBF5-F0D3-4F8E-A275-0CB1CA1E5318}" = protocol=17 | dir=in | app=c:\program files\pando networks\media booster\pmb.exe | "{21488640-59DC-4D42-92CC-EDD93235D602}" = protocol=6 | dir=in | app=g:\programy\opera unite\opera.exe | "{2C7CBE78-6869-4B69-8221-5D88AB19F60B}" = protocol=17 | dir=in | app=h:\gta\rockstar games social club\rgsclauncher.exe | "{32F5CE12-CC71-4B1E-8F13-D8032FFE71B3}" = protocol=17 | dir=in | app=g:\gry\s.t.a.l.k.e.r. - shadow of chernobyl\bin\dedicated\xr_3da.exe | "{3845B7AF-F91D-4212-8E3E-FF647689A555}" = protocol=6 | dir=in | app=h:\gta\rockstar games social club\rgsclauncher.exe | "{3A3EC3ED-C6F0-43E0-8EB1-E3447FB11475}" = protocol=6 | dir=in | app=c:\program files\winamp remote\bin\orbir.exe | "{3D29C6BF-B6DF-4995-A30E-9634C74E3D35}" = protocol=6 | dir=in | app=g:\gry\s.t.a.l.k.e.r. - shadow of chernobyl\bin\xr_3da.exe | "{3DCD7D0F-3115-4582-8F66-E711AB0DFAF4}" = protocol=6 | dir=in | app=c:\program files\winamp remote\bin\orbtray.exe | "{4FE10500-7E31-475E-AAF6-A89FCB10E5BC}" = protocol=17 | dir=in | app=c:\program files\winamp remote\bin\orbtray.exe | "{540B6098-0197-483E-844A-CA26F432FB76}" = dir=in | app=c:\program files\skype\phone\skype.exe | "{59F54F09-DE2E-444A-B0E2-C785F288F205}" = protocol=6 | dir=in | app=c:\program files\winamp remote\bin\orb.exe | "{5DAB0726-8724-4821-9055-A557A73398AC}" = protocol=17 | dir=in | app=c:\program files\winamp remote\bin\orb.exe | "{63A5E45B-3BEC-4641-923A-12F26EF1DC63}" = protocol=17 | dir=in | app=c:\gry\civilization4\civilization4.exe | "{64C7EA39-0445-4887-8A23-C2D939901EAC}" = protocol=6 | dir=in | app=c:\program files\skype\plugin manager\skypepm.exe | "{685C5545-C4C3-4640-8F49-51E2F29D1F17}" = protocol=17 | dir=in | app=c:\program files\skype\plugin manager\skypepm.exe | "{698D1FA7-B5C3-4AD5-B142-DAF4BABBFFCC}" = protocol=17 | dir=in | app=g:\gry\starcraft ii beta\starcraft ii.exe | "{716C537B-5C9B-4755-869D-EA9C587FC0D4}" = protocol=6 | dir=in | app=c:\program files\utorrent\utorrent.exe | "{73A66F5A-C7BF-45FB-9093-4F9652E8A0C2}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{75F8D50E-5F9E-47C3-A437-DDBB2C06FD9B}" = dir=in | app=c:\program files\windows live\sync\windowslivesync.exe | "{79484371-BD02-48D4-8FBA-EFABC042A190}" = protocol=6 | dir=in | app=g:\gry\swat\contentexpansion\system\swat4xdedicatedserver.exe | "{7AE2193A-E330-416A-AD9E-9CA898C4EA2C}" = protocol=17 | dir=in | app=g:\programy\opera unite\opera.exe | "{83697E8B-1258-41A6-913A-9C434BB5F6BD}" = protocol=6 | dir=in | app=g:\gry\swat\contentexpansion\system\swat4x.exe | "{92CB3776-675C-438C-8D0D-663E4AB1E193}" = dir=in | app=c:\program files\hp\quickplay\qpservice.exe | "{93A0D73E-D64E-4338-AEE3-90A4AEE347C6}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{A79B3806-13A5-4487-B0AA-E2150BD4F58E}" = protocol=17 | dir=in | app=g:\gry\s.t.a.l.k.e.r. - shadow of chernobyl\bin\xr_3da.exe | "{AA44D16D-BF09-453F-8228-4B679F1456AB}" = protocol=17 | dir=in | app=c:\program files\konami\pro evolution soccer 2009\pes2009.exe | "{AD794E80-FB5C-41A1-B8AC-31322D13E4C9}" = protocol=17 | dir=in | app=g:\gry\swat\contentexpansion\system\swat4xdedicatedserver.exe | "{AF707AF7-4D46-464C-8CCE-78789B007C9E}" = protocol=17 | dir=in | app=g:\programy\opera unite\opera.exe | "{B4302CEE-E145-481E-B779-43A73FCB2943}" = protocol=17 | dir=in | app=c:\program files\konami\pro evolution soccer 2009\pes2009.exe | "{B537E7AF-B332-4FEC-9E09-F6AB1F0E7494}" = protocol=17 | dir=in | app=g:\gry\swat\contentexpansion\system\swat4x.exe | "{B7C5E350-2A0E-4B86-BED2-2753EC3C9DB3}" = protocol=17 | dir=in | app=c:\program files\winamp remote\bin\orbstreamerclient.exe | "{B7DC7773-281C-40C9-9A02-0B81EE505013}" = protocol=6 | dir=in | app=c:\gry\civilization4\civilization4.exe | "{B7DE914C-5248-490D-968C-A93F2D143BC6}" = dir=in | app=c:\program files\hp\quickplay\qp.exe | "{BE2539DF-5696-458B-8900-3CE65D8DC118}" = protocol=6 | dir=in | app=g:\gry\s.t.a.l.k.e.r. - shadow of chernobyl\bin\dedicated\xr_3da.exe | "{C7D15DE4-A0EF-4B85-A394-46996D683529}" = protocol=6 | dir=in | app=g:\programy\speedbit video accelerator\videoaccelerator.exe | "{C7EDAC03-0325-45C1-A0C1-255B3AB5CBC6}" = protocol=6 | dir=in | app=c:\program files\ubisoft\the settlers - rise of an empire demo\base\bin\settlers6demo.exe | "{D010A1FC-F6D6-4600-93AD-D0CD20296C9A}" = protocol=6 | dir=in | app=c:\program files\pando networks\media booster\pmb.exe | "{D0BBA9A0-11F7-4F61-AD2D-6A25EF7F56F8}" = protocol=6 | dir=in | app=c:\program files\konami\pro evolution soccer 2009\pes2009.exe | "{D0F9C81B-A82B-4781-A924-002425A1B2F8}" = protocol=6 | dir=in | app=g:\programy\opera unite\opera.exe | "{D683720D-87DB-41D9-AA7A-B700FB646129}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{DA3F20BC-305B-4B4D-9D33-FF5174262292}" = protocol=17 | dir=in | app=c:\program files\utorrent\utorrent.exe | "{DEC7D029-1826-48C4-BC23-751FDD199E31}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{DFE3DD40-AF2F-46D3-9C05-82C962018B86}" = protocol=17 | dir=in | app=h:\gta\grand theft auto iv\launchgtaiv.exe | "{F3E33A83-321E-4442-90E1-74BAC87863DA}" = protocol=17 | dir=in | app=g:\gry\world of warcraft\wow-3.2.0-enus-downloader.exe | "{FC4F4D0A-CAF9-4DE5-8F2F-21C4EBB97878}" = protocol=6 | dir=in | app=c:\program files\konami\pro evolution soccer 2009\pes2009.exe | "{FD33570C-B5F6-4259-BAC0-85A926EB6CAC}" = protocol=17 | dir=in | app=c:\program files\winamp remote\bin\orbir.exe | "TCP Query User{005589C6-47BB-46F8-BB56-3C68C967F7CF}C:\users\michał\appdata\local\temp\tssiw.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\tssiw.exe | "TCP Query User{00E49D1C-40B3-4E6F-91C2-8409D152BF5C}C:\program files\skype\phone\skype.exe" = protocol=6 | dir=in | app=c:\program files\skype\phone\skype.exe | "TCP Query User{014276B9-D0ED-494F-9228-4D1B92C3E9B6}C:\program files\amd\dual-core optimizer\amd_dc_opt.exe" = protocol=6 | dir=in | app=c:\program files\amd\dual-core optimizer\amd_dc_opt.exe | "TCP Query User{0344E1E0-C655-4B8D-8657-3151D542DDFD}G:\programy\napi-projekt\napisy.exe" = protocol=6 | dir=in | app=g:\programy\napi-projekt\napisy.exe | "TCP Query User{0445CE68-E1D3-44F9-8E17-FF042C5AC09A}C:\users\michał\appdata\local\temp\atte.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\atte.exe | "TCP Query User{04DD58C7-3C5A-469B-AA6C-64469DFC226A}G:\gry\worldofgoo\worldofgoo.exe" = protocol=6 | dir=in | app=g:\gry\worldofgoo\worldofgoo.exe | "TCP Query User{064922DF-913E-4754-8DA8-A4B188037400}C:\users\michał\appdata\local\temp\rpdq.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\rpdq.exe | "TCP Query User{06A6947D-ED88-4A62-A485-DB629C6E5FBC}C:\program files\internet explorer\iexplore.exe" = protocol=6 | dir=in | app=c:\program files\internet explorer\iexplore.exe | "TCP Query User{06C0EEF8-4292-4419-BFE0-F8B7D6538E1C}C:\users\michał\appdata\local\temp\winnutfvm.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winnutfvm.exe | "TCP Query User{06C8AD65-A94C-473F-9C08-2E200BF710F2}C:\users\michał\appdata\local\temp\winispl.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winispl.exe | "TCP Query User{078661DD-4BC7-493A-ADE8-C534B47E99BC}C:\users\michał\appdata\local\temp\winmdwnq.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winmdwnq.exe | "TCP Query User{07F0060A-DE1C-4B2D-988E-248B44111698}C:\users\michał\appdata\local\temp\wineqmnb.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\wineqmnb.exe | "TCP Query User{09125E32-7433-4534-B654-92AC93D1B82D}C:\windows\system32\conime.exe" = protocol=6 | dir=in | app=c:\windows\system32\conime.exe | "TCP Query User{09D86157-9653-44B7-A9B7-CBD53A3365C7}C:\users\michał\appdata\local\temp\bdfvb.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\bdfvb.exe | "TCP Query User{09F567C3-67D0-4776-8010-46D8D7635FC7}C:\program files\nokia\nokia software updater\nsu_ui_client.exe" = protocol=6 | dir=in | app=c:\program files\nokia\nokia software updater\nsu_ui_client.exe | "TCP Query User{0AFFF800-A163-4403-8276-0F4769951D89}C:\users\michał\appdata\local\temp\xgbmw.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\xgbmw.exe | "TCP Query User{0C2593D2-E580-4A43-B05D-88690C678D5F}C:\users\michał\appdata\local\temp\wincufca.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\wincufca.exe | "TCP Query User{0DB1C9C3-9600-4C5B-842F-DDD917E84D3B}G:\programy\sopcast\sopcast.exe" = protocol=6 | dir=in | app=g:\programy\sopcast\sopcast.exe | "TCP Query User{0EF15B93-42A6-4D4A-BCA5-CEDAB17BD266}G:\programy\easeus partition master 4.1.1 home edition\bin\main.exe" = protocol=6 | dir=in | app=g:\programy\easeus partition master 4.1.1 home edition\bin\main.exe | "TCP Query User{0F3EC85A-9CC2-4785-9D56-606B5EC5B3F4}C:\users\michał\appdata\local\temp\ehws.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\ehws.exe | "TCP Query User{0F61C3A5-8ED9-44CE-876F-2B2745C7C96F}C:\users\michał\appdata\local\temp\winemgvhj.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winemgvhj.exe | "TCP Query User{0F907DBD-5B17-43EE-A877-7AA7196C9494}C:\program files\electronic arts\eadm\core.exe" = protocol=6 | dir=in | app=c:\program files\electronic arts\eadm\core.exe | "TCP Query User{0FA41434-5146-4A0E-B400-B7DBB03FEEE4}C:\users\michał\appdata\local\temp\winddgty.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winddgty.exe | "TCP Query User{1019F781-27D8-46E0-B9A1-24A37ECEBB32}C:\users\michał\appdata\local\temp\mviqpq.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\mviqpq.exe | "TCP Query User{10CE2D14-FE24-47B2-B747-DEE0286DAE13}C:\users\michał\appdata\local\temp\winheurl.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winheurl.exe | "TCP Query User{10F4CCEA-5A02-420E-8E5E-14268AC7D972}G:\gry\monopoly by parker brothers\monopolypb.exe" = protocol=6 | dir=in | app=g:\gry\monopoly by parker brothers\monopolypb.exe | "TCP Query User{111D43ED-575B-4E19-91A3-48CCB2979E17}C:\users\michał\appdata\local\temp\gvjj.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\gvjj.exe | "TCP Query User{11668402-056D-4384-A58E-97F0344B86DD}C:\users\michał\appdata\local\temp\winiubga.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winiubga.exe | "TCP Query User{12FE167C-5BEA-4F45-B5E4-86D309721AAD}C:\users\michał\appdata\local\temp\rvftjn.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\rvftjn.exe | "TCP Query User{13996FE6-9B0A-44B6-9224-57B1D3C90109}G:\programy\bearshare2\bearshare.exe" = protocol=6 | dir=in | app=g:\programy\bearshare2\bearshare.exe | "TCP Query User{13A03BFF-4130-4591-978E-DD8F91884965}C:\users\michał\appdata\local\temp\winuojcyh.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winuojcyh.exe | "TCP Query User{147CCB1A-E8F5-4078-8E1C-0FE27B75607A}C:\users\michał\appdata\local\temp\winnarl.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winnarl.exe | "TCP Query User{15CD2C45-610B-47F1-8A07-544E95DF8574}C:\program files\windows defender\msascui.exe" = protocol=6 | dir=in | app=c:\program files\windows defender\msascui.exe | "TCP Query User{1880AF92-8AAF-4A5A-B7F0-9284AE3BA181}C:\users\michał\appdata\local\temp\spey.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\spey.exe | "TCP Query User{1B3EC6B5-E51C-428C-A997-02F86DB55367}C:\program files\hewlett-packard\hp quick launch buttons\qlbctrl.exe" = protocol=6 | dir=in | app=c:\program files\hewlett-packard\hp quick launch buttons\qlbctrl.exe | "TCP Query User{1B4A22CF-F1D6-4E88-B437-FDCA86392AFD}C:\users\michał\appdata\local\temp\winhiqcrc.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winhiqcrc.exe | "TCP Query User{1B9F7F9C-05F0-4320-A1A9-AB3940CD2B33}C:\users\michał\appdata\local\temp\winsynhea.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winsynhea.exe | "TCP Query User{1C16DCFA-27D6-4498-96D4-8EA209406BDD}C:\program files\bioscrypt\verisoft\bin\asghost.exe" = protocol=6 | dir=in | app=c:\program files\bioscrypt\verisoft\bin\asghost.exe | "TCP Query User{20CE32FF-B8E5-4556-A114-7DC4103F9092}C:\windows\ehome\ehtray.exe" = protocol=6 | dir=in | app=c:\windows\ehome\ehtray.exe | "TCP Query User{23DF8FC9-0C9E-47BB-8AB1-44F48AE6E252}C:\users\michał\appdata\local\temp\winintfo.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winintfo.exe | "TCP Query User{25C0326A-66E4-4DC7-A606-4A2D86B5A187}C:\users\michał\appdata\local\temp\wincohq.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\wincohq.exe | "TCP Query User{25FDFAD0-1F3D-4C88-BA3A-2A1C5A274250}C:\windows\system32\taskeng.exe" = protocol=6 | dir=in | app=c:\windows\system32\taskeng.exe | "TCP Query User{26D38CC8-3B55-4FDF-B45F-B7C03B328E82}C:\users\michał\appdata\local\temp\iumaqi.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\iumaqi.exe | "TCP Query User{26D9CE6C-94A5-430D-85B7-C452B31949F4}C:\users\michał\appdata\local\temp\ebjj.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\ebjj.exe | "TCP Query User{274CD7A5-736C-4D45-9C72-325E2D0F190F}C:\program files\winamp remote\bin\orb.exe" = protocol=6 | dir=in | app=c:\program files\winamp remote\bin\orb.exe | "TCP Query User{290B0947-158D-41EF-A795-0DCFCC0D2B22}H:\gta\grand theft auto iv\gtaiv.exe" = protocol=6 | dir=in | app=h:\gta\grand theft auto iv\gtaiv.exe | "TCP Query User{297C8847-29F8-4D0E-B287-C01C5FE5AB7A}C:\users\michał\appdata\local\temp\winblouy.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winblouy.exe | "TCP Query User{2A780F72-AAAA-40BB-B648-4DD8E572056F}C:\users\michał\appdata\local\temp\windmhgqb.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\windmhgqb.exe | "TCP Query User{2AAFA4EC-E984-484A-9B2A-25315B97119C}C:\users\michał\appdata\local\temp\kwqc.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\kwqc.exe | "TCP Query User{2B2E030E-C01F-4835-95DA-4FC7C9866707}C:\users\michał\appdata\local\temp\nqblve.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\nqblve.exe | "TCP Query User{2B62E2F1-E27E-4868-9543-B780A9C6C461}C:\users\michał\appdata\local\temp\winemuxgx.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winemuxgx.exe | "TCP Query User{2C15E91C-E556-4732-A125-B6395CA2373F}C:\users\michał\appdata\local\temp\winikjy.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winikjy.exe | "TCP Query User{2C7FE1A4-D5C6-4371-A7AC-5CCC5DFACA29}C:\program files\tvuplayer\tvuplayer.exe" = protocol=6 | dir=in | app=c:\program files\tvuplayer\tvuplayer.exe | "TCP Query User{2D68DDB3-B339-4F60-9B01-DF06370A33A9}G:\gry\bmoworld\bomberman.exe" = protocol=6 | dir=in | app=g:\gry\bmoworld\bomberman.exe | "TCP Query User{2FA7BC05-B794-419E-A5F9-E023B10996DC}C:\program files\amd\dual-core optimizer\amd_dc_opt.exe" = protocol=6 | dir=in | app=c:\program files\amd\dual-core optimizer\amd_dc_opt.exe | "TCP Query User{30149AAB-35D7-4533-B9E6-E39B327B01F0}C:\users\michał\appdata\local\temp\winbxfrp.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winbxfrp.exe | "TCP Query User{314BAD32-5B20-488B-82D9-4D085BF2A84F}C:\windows\system32\taskeng.exe" = protocol=6 | dir=in | app=c:\windows\system32\taskeng.exe | "TCP Query User{333AF561-87D5-4021-84DB-6CBE0263A7E9}C:\users\michał\appdata\local\temp\wintrsvs.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\wintrsvs.exe | "TCP Query User{3349CB5F-1135-4991-A72F-464CD0429A29}C:\users\michał\appdata\local\temp\winamja.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winamja.exe | "TCP Query User{3381C3E6-B7E4-4EBF-BC45-C99CD87966AC}C:\users\michał\appdata\local\temp\kmsdi.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\kmsdi.exe | "TCP Query User{347824AE-121C-46D6-827B-D37EF6043B73}C:\users\michał\appdata\local\temp\winkbien.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winkbien.exe | "TCP Query User{34BB6722-3ACE-408D-A76D-11BFD2A11262}C:\users\michał\appdata\local\temp\winkusyyn.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winkusyyn.exe | "TCP Query User{35108289-6E53-491B-A9F9-69B73B76B3D7}C:\users\michał\appdata\local\temp\winvrdma.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winvrdma.exe | "TCP Query User{36B30F44-A04D-4BFC-B183-84D591394C2D}C:\users\michał\appdata\local\temp\wkhr.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\wkhr.exe | "TCP Query User{37B5FAD7-4ABF-4D9F-B627-5B11E9446CDC}C:\users\michał\appdata\local\temp\dviku.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\dviku.exe | "TCP Query User{3A825BB7-AFF8-469C-A8C6-5E82D9D042A4}C:\users\michał\appdata\local\temp\rgbnuk.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\rgbnuk.exe | "TCP Query User{3AA27CD3-5DF9-4787-8E9E-F60572A68611}C:\users\michał\appdata\local\temp\rlfui.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\rlfui.exe | "TCP Query User{3C2DD698-0349-4DDF-BC77-DEE6A7F6758F}C:\users\michał\appdata\local\temp\winsgrfgx.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winsgrfgx.exe | "TCP Query User{3F95CF11-D275-4DDC-858B-E22ADF186CAB}C:\users\michał\appdata\local\temp\njbvaa.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\njbvaa.exe | "TCP Query User{408F0444-877B-41AB-B30A-D0B6EA91965A}C:\users\michał\appdata\local\temp\axypcl.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\axypcl.exe | "TCP Query User{40C164EE-EF17-4FE7-ACC2-6CAA65C3469A}C:\program files\internet explorer\iexplore.exe" = protocol=6 | dir=in | app=c:\program files\internet explorer\iexplore.exe | "TCP Query User{414B3CC7-2E61-4E03-9F87-01F04744907A}C:\windows\system32\userinit.exe" = protocol=6 | dir=in | app=c:\windows\system32\userinit.exe | "TCP Query User{41F30853-C502-45FC-ABC2-336E718A3B2B}C:\gry\pes2009\pes2009.exe" = protocol=6 | dir=in | app=c:\gry\pes2009\pes2009.exe | "TCP Query User{42F985F3-E628-469D-AD17-F8E2A9BF3045}C:\users\michał\appdata\local\temp\mmdqkq.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\mmdqkq.exe | "TCP Query User{434B8126-B4FA-4DB3-AE94-D26082BC72B7}C:\windows\system32\dwm.exe" = protocol=6 | dir=in | app=c:\windows\system32\dwm.exe | "TCP Query User{4376728F-01FC-48C2-872B-AFE4E77C655C}G:\programy\opera\opera.exe" = protocol=6 | dir=in | app=g:\programy\opera\opera.exe | "TCP Query User{447DC703-07AF-4DF4-9973-6C434970A089}G:\gry\bmoworld\bomberman.exe" = protocol=6 | dir=in | app=g:\gry\bmoworld\bomberman.exe | "TCP Query User{45175612-B0DB-40CD-AEF4-B04748908CB6}C:\users\michał\appdata\local\temp\winhleoua.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winhleoua.exe | "TCP Query User{45D624C8-8C4C-469A-82E2-286152EE0DEC}C:\users\michał\appdata\local\temp\winpdixh.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winpdixh.exe | "TCP Query User{45EA7477-1EE7-4F17-867C-2B9A5023D6EE}C:\program files\widcomm\bluetooth software\bttray.exe" = protocol=6 | dir=in | app=c:\program files\widcomm\bluetooth software\bttray.exe | "TCP Query User{4719DE39-B0E9-4BD0-8A67-9EE47DAEF3CF}E:\postal 2 share the pain\postal2 stp\setup.exe" = protocol=6 | dir=in | app=e:\postal 2 share the pain\postal2 stp\setup.exe | "TCP Query User{481E7747-BC3E-43FC-AB76-CC6FBFB37AE1}C:\program files\synaptics\syntp\syntpenh.exe" = protocol=6 | dir=in | app=c:\program files\synaptics\syntp\syntpenh.exe | "TCP Query User{485DFBB8-7ACB-471F-8266-F940BD3798E1}G:\programy\evillyrics\evillyrics.exe" = protocol=6 | dir=in | app=g:\programy\evillyrics\evillyrics.exe | "TCP Query User{492A4DEE-83AD-483E-A23D-7664F0B72D01}C:\users\michał\appdata\local\temp\winlvor.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winlvor.exe | "TCP Query User{49F0AD0A-83CA-4337-93D7-EE0E5DBBC81C}C:\users\michał\appdata\local\temp\iqil.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\iqil.exe | "TCP Query User{4A73729F-7544-478C-81D4-9B12E7878CE4}C:\users\michał\appdata\local\temp\qsxsl.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\qsxsl.exe | "TCP Query User{4B4DA044-ADB1-4B10-83FB-7593E8293C3F}G:\programy\opera beta\opera.exe" = protocol=6 | dir=in | app=g:\programy\opera beta\opera.exe | "TCP Query User{4CB44DE0-22AB-4A05-A9F3-C5824BB3BCFA}C:\program files\synaptics\syntp\syntpenh.exe" = protocol=6 | dir=in | app=c:\program files\synaptics\syntp\syntpenh.exe | "TCP Query User{4E5DA9B9-6DD9-4AF8-B000-9B2B42937870}C:\users\michał\appdata\local\temp\hucb.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\hucb.exe | "TCP Query User{502CC5CB-F0F6-47E6-A034-20B38E1295DD}C:\users\michał\appdata\local\temp\winyivvb.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winyivvb.exe | "TCP Query User{50805811-87BE-4062-80D5-B25F36D7CD93}C:\users\michał\appdata\local\temp\vpag.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\vpag.exe | "TCP Query User{51D8847F-4252-42C0-8B6D-59BCDF0808C6}C:\users\michał\appdata\local\temp\gclxuk.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\gclxuk.exe | "TCP Query User{5450FEDA-F177-44D3-B920-D9D2727EC0EE}C:\users\michał\appdata\local\temp\nfhg.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\nfhg.exe | "TCP Query User{585760CA-CE30-4DB1-843E-317A6ED11D81}C:\users\michał\appdata\local\temp\winnpfhf.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winnpfhf.exe | "TCP Query User{590D75E0-D346-4670-985A-D857C431BC6C}G:\gry\call of juarez\protect.exe" = protocol=6 | dir=in | app=g:\gry\call of juarez\protect.exe | "TCP Query User{599F6DDF-CE76-4211-BA5B-4B4E6EDEF46C}C:\users\michał\appdata\local\temp\winwerk.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winwerk.exe | "TCP Query User{59AB739B-20B9-4B45-9B2A-7D18F6C7B8E9}C:\users\michał\appdata\local\temp\winlvdlph.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winlvdlph.exe | "TCP Query User{5AAE50A5-C92E-4A1D-86EF-F148980BC3A2}G:\gry\medieval ii total war\medieval2.exe" = protocol=6 | dir=in | app=g:\gry\medieval ii total war\medieval2.exe | "TCP Query User{5C08D6B9-DA38-4B4B-8573-E91F173E8F9D}G:\programy\ashampoo burning studio 2010\burningstudio2010.exe" = protocol=6 | dir=in | app=g:\programy\ashampoo burning studio 2010\burningstudio2010.exe | "TCP Query User{5D0D1DF9-8D2D-4F84-97BB-46B97B7D38A8}G:\gry\quake4\quake4.exe" = protocol=6 | dir=in | app=g:\gry\quake4\quake4.exe | "TCP Query User{5DA56E6C-8971-460F-B4F0-D21C2C3FB467}C:\users\michał\appdata\local\temp\winwjala.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winwjala.exe | "TCP Query User{5E1E9915-DDB8-4560-BA98-8BB05B474262}C:\users\michał\appdata\local\temp\eyvkbx.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\eyvkbx.exe | "TCP Query User{611BD506-A494-4B8B-8DBD-CC58220647BF}C:\program files\utorrent\utorrent.exe" = protocol=6 | dir=in | app=c:\program files\utorrent\utorrent.exe | "TCP Query User{662CBB6F-594E-4727-A738-2C5925383CD4}C:\users\michał\appdata\local\temp\winupleln.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winupleln.exe | "TCP Query User{676A5945-7138-403F-AC54-7AE3360D74D3}C:\users\michał\appdata\local\temp\winatvwt.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winatvwt.exe | "TCP Query User{67ECFEE2-9230-4D50-87D7-0C973DFB6D65}C:\program files\widcomm\bluetooth software\bttray.exe" = protocol=6 | dir=in | app=c:\program files\widcomm\bluetooth software\bttray.exe | "TCP Query User{68554F38-7FBF-46CF-AECE-5077F179E09D}C:\program files\hewlett-packard\hp wireless assistant\wifimsg.exe" = protocol=6 | dir=in | app=c:\program files\hewlett-packard\hp wireless assistant\wifimsg.exe | "TCP Query User{68C3F932-1B19-4391-8AEE-413875361A4C}C:\users\michał\appdata\local\temp\winsupp.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winsupp.exe | "TCP Query User{68C76E89-ED38-4253-8BB7-F7B0F015BFCC}C:\users\michał\appdata\local\temp\winfrkjr.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winfrkjr.exe | "TCP Query User{69526FE6-26B6-4F7A-8691-8D8151AC7506}C:\users\michał\appdata\local\temp\kkqxry.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\kkqxry.exe | "TCP Query User{6989942D-678D-40D6-9FB5-1EE900DFC25F}C:\program files\adobe\reader 8.0\reader\acrord32.exe" = protocol=6 | dir=in | app=c:\program files\adobe\reader 8.0\reader\acrord32.exe | "TCP Query User{6C37D298-E950-42AB-8C56-EAC6E9C05A4C}G:\programy\dap\dap.exe" = protocol=6 | dir=in | app=g:\programy\dap\dap.exe | "TCP Query User{6FB53273-4E90-465D-AE50-914099CA8A1D}G:\programy\sopcast\adv\sopadver.exe" = protocol=6 | dir=in | app=g:\programy\sopcast\adv\sopadver.exe | "TCP Query User{7053EA39-28FE-47EA-B3BF-73911FBB059C}C:\users\michał\appdata\local\temp\winopeke.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winopeke.exe | "TCP Query User{70844D68-3766-4290-BBC7-3CF53E40F32B}C:\users\michał\appdata\local\temp\winbjbye.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winbjbye.exe | "TCP Query User{70BA13AD-916F-4318-89BD-C65A455A17F3}C:\users\michał\appdata\local\temp\jjelfu.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\jjelfu.exe | "TCP Query User{70D7C52D-C665-4E08-8897-F15BA1E25CAA}G:\gry\tropico\tropico 3\uninst.exe" = protocol=6 | dir=in | app=g:\gry\tropico\tropico 3\uninst.exe | "TCP Query User{714D1C64-79EE-4AC2-A00F-6E9C27BE5915}C:\program files\tvants\tvants.exe" = protocol=6 | dir=in | app=c:\program files\tvants\tvants.exe | "TCP Query User{733F5312-8432-4FE1-9C37-A4C48FFB118D}C:\users\michał\appdata\local\temp\winmvrin.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winmvrin.exe | "TCP Query User{735D6EB2-41A9-4921-9305-B4D015C397E2}C:\users\michał\appdata\local\temp\eunkq.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\eunkq.exe | "TCP Query User{73D144F5-F07B-4CFA-A4B6-81DC6E2F7A3D}C:\users\michał\appdata\local\temp\xksrc.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\xksrc.exe | "TCP Query User{74D0644B-A214-48AF-864B-62B7695403C3}C:\users\michał\appdata\local\temp\swuqnb.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\swuqnb.exe | "TCP Query User{758EBF79-161D-46B2-A401-328F5F01EAD3}G:\programy\gadu-gadu\gg.exe" = protocol=6 | dir=in | app=g:\programy\gadu-gadu\gg.exe | "TCP Query User{7639F296-C063-4C5D-99CF-42DEA45A5DBC}G:\programy\bearshare\bearshare.exe" = protocol=6 | dir=in | app=g:\programy\bearshare\bearshare.exe | "TCP Query User{763F307C-0807-408D-AF5D-4D534F9DA2F7}C:\users\michał\appdata\local\temp\rrhyel.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\rrhyel.exe | "TCP Query User{7669B11E-9B81-4593-BE82-FAF8A2C09946}C:\program files\google\googletoolbarnotifier\googletoolbarnotifier.exe" = protocol=6 | dir=in | app=c:\program files\google\googletoolbarnotifier\googletoolbarnotifier.exe | "TCP Query User{78A4620B-950D-4C59-BBD3-43343D3369D8}G:\gry\world of warcraft\launcher.exe" = protocol=6 | dir=in | app=g:\gry\world of warcraft\launcher.exe | "TCP Query User{78BA1B0A-EAB7-48D7-8A5D-709EEC957056}C:\program files\mozilla firefox\firefox.exe" = protocol=6 | dir=in | app=c:\program files\mozilla firefox\firefox.exe | "TCP Query User{79F79A89-C5DD-49D5-9B2C-AD7F36310798}G:\programy\ppmate\ppamnet.exe" = protocol=6 | dir=in | app=g:\programy\ppmate\ppamnet.exe | "TCP Query User{7A9E1FBD-8BB7-47AC-9586-562B17AE2D23}C:\users\michał\appdata\local\temp\hlkbe.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\hlkbe.exe | "TCP Query User{7BB45162-32B2-425D-99C0-D4B25F031615}C:\windows\explorer.exe" = protocol=6 | dir=in | app=c:\windows\explorer.exe | "TCP Query User{7DE581C8-00CD-4C63-AE12-110C88EAD6E0}G:\programy\office 2007\office12\groovemonitor.exe" = protocol=6 | dir=in | app=g:\programy\office 2007\office12\groovemonitor.exe | "TCP Query User{7F8C4EF6-CC7A-4205-A689-E7FAA53FA311}C:\program files\synaptics\syntp\syntpstart.exe" = protocol=6 | dir=in | app=c:\program files\synaptics\syntp\syntpstart.exe | "TCP Query User{80E8B22A-08D1-4047-9A28-7180D7585ED9}C:\users\michał\appdata\local\temp\slthpy.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\slthpy.exe | "TCP Query User{82A37D2B-05F9-4252-8A95-60AAC80693DA}C:\users\michał\appdata\local\temp\yfjlb.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\yfjlb.exe | "TCP Query User{846FBB34-BF5F-48E9-BF33-C6994605B6E5}C:\users\michał\appdata\local\temp\qavkmb.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\qavkmb.exe | "TCP Query User{84C0A792-339C-42FA-8AF3-982DE5C1AE0F}C:\users\michał\appdata\local\temp\winmefp.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winmefp.exe | "TCP Query User{84FA5170-4B45-4E17-9481-4D5B215669FF}C:\users\michał\appdata\local\temp\winunfrb.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winunfrb.exe | "TCP Query User{87FF2B86-7A6A-4BE3-B7FA-4C43E68A9443}G:\programy\tvants\tvants.exe" = protocol=6 | dir=in | app=g:\programy\tvants\tvants.exe | "TCP Query User{88DA5E0A-C6D8-4E5D-9F03-7D1D8685C811}C:\windows\explorer.exe" = protocol=6 | dir=in | app=c:\windows\explorer.exe | "TCP Query User{88FED34E-0EE7-4DEF-B9C2-3FE4F0A88B05}C:\users\michał\appdata\local\temp\winvgcjq.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winvgcjq.exe | "TCP Query User{8A7F1836-6126-419E-92A8-27E7242FF3F3}C:\windows\ehome\ehtray.exe" = protocol=6 | dir=in | app=c:\windows\ehome\ehtray.exe | "TCP Query User{8A89F659-3769-4445-973A-0B45C0D2BBF8}C:\users\michał\appdata\local\temp\kjgxu.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\kjgxu.exe | "TCP Query User{8AB720E5-F481-4D1A-9319-12D0B67C7D97}C:\users\michał\appdata\local\temp\wintyjmc.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\wintyjmc.exe | "TCP Query User{8BB8E722-B8AC-4736-9D23-CF8EDF20E77D}C:\users\michał\appdata\local\temp\winrmqch.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winrmqch.exe | "TCP Query User{8C3F42E9-2845-4394-AD1B-8D544EC12DE0}G:\programy\dap\dap.exe" = protocol=6 | dir=in | app=g:\programy\dap\dap.exe | "TCP Query User{8E1E4E06-5E7C-4BD9-9905-171B25E669AF}C:\program files\winamp remote\bin\orbtray.exe" = protocol=6 | dir=in | app=c:\program files\winamp remote\bin\orbtray.exe | "TCP Query User{8E9DA736-6DAC-4367-9898-27671DF80411}C:\users\michał\appdata\roaming\sopcast\adv\sopadver.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\roaming\sopcast\adv\sopadver.exe | "TCP Query User{8EC4F12D-DDCE-431A-95A1-4981622414F4}C:\users\michał\appdata\local\temp\winbvslsq.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winbvslsq.exe | "TCP Query User{8FBE43F5-4EEC-4102-BCC3-18E634F229EA}C:\users\michał\appdata\local\temp\winittx.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winittx.exe | "TCP Query User{9000D4CE-9E9D-467A-8FA5-32F76F02E358}C:\program files\synaptics\syntp\syntpstart.exe" = protocol=6 | dir=in | app=c:\program files\synaptics\syntp\syntpstart.exe | "TCP Query User{90941F32-0172-4731-8A37-1002F9205BBE}G:\programy\opera\opera.exe" = protocol=6 | dir=in | app=g:\programy\opera\opera.exe | "TCP Query User{9121EC7A-414E-4D24-9BA8-088075B776F6}C:\users\michał\appdata\local\temp\rbon.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\rbon.exe | "TCP Query User{927E0B89-FABF-4DAA-8E1C-11834ED99622}C:\users\michał\appdata\local\temp\winrgtw.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winrgtw.exe | "TCP Query User{9305817F-3976-41CF-8D44-54140CCA4905}C:\windows\ehome\ehmsas.exe" = protocol=6 | dir=in | app=c:\windows\ehome\ehmsas.exe | "TCP Query User{933CD4A6-CBD9-4C89-A2D6-180D40E72F8C}C:\windows\system32\mobsync.exe" = protocol=6 | dir=in | app=c:\windows\system32\mobsync.exe | "TCP Query User{93407B9C-101F-48CC-80AF-6A2124A59815}C:\users\michał\appdata\local\temp\winojabe.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winojabe.exe | "TCP Query User{9343E592-DBBB-48B0-8EB4-390D1ACD4277}C:\program files\bioscrypt\verisoft\bin\aspanel.exe" = protocol=6 | dir=in | app=c:\program files\bioscrypt\verisoft\bin\aspanel.exe | "TCP Query User{93C97CD4-4B71-4E84-A141-8042C95B9B00}C:\users\michał\appdata\local\temp\wingakj.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\wingakj.exe | "TCP Query User{9760948B-D17F-43A8-B533-2446CE2130CE}G:\gry\need_for_speed_underground2[upbyatyll]\speed2.exe" = protocol=6 | dir=in | app=g:\gry\need_for_speed_underground2[upbyatyll]\speed2.exe | "TCP Query User{98BEEC7F-DA70-4EDF-BE47-D148B2182714}C:\users\michał\appdata\local\temp\winkssl.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winkssl.exe | "TCP Query User{992FE77A-A6B0-42CC-82F6-99D04F65B9FD}C:\users\michał\appdata\local\temp\winvwyxaa.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winvwyxaa.exe | "TCP Query User{9B55A071-4C41-4E23-A573-D4F14F8DFD10}C:\users\michał\appdata\local\temp\winmdwyt.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winmdwyt.exe | "TCP Query User{9BDF1C2A-49AD-48BA-884D-2528F99BD714}C:\users\michał\appdata\local\temp\windhgucp.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\windhgucp.exe | "TCP Query User{9C74BCF1-2AD8-4ADE-A118-D03937213993}C:\program files\hewlett-packard\hp quick launch buttons\qlbctrl.exe" = protocol=6 | dir=in | app=c:\program files\hewlett-packard\hp quick launch buttons\qlbctrl.exe | "TCP Query User{9F13ED11-E2EC-459E-BCA1-5DFBFC9E00EF}C:\users\michał\appdata\local\temp\oddtpt.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\oddtpt.exe | "TCP Query User{9FA345E7-4A9D-4DC2-9B79-83D79D989859}C:\program files\windows defender\msascui.exe" = protocol=6 | dir=in | app=c:\program files\windows defender\msascui.exe | "TCP Query User{A0276BD0-FD38-436E-984F-83ECF3D95D2B}G:\programy\bearshare2\bearshare.exe" = protocol=6 | dir=in | app=g:\programy\bearshare2\bearshare.exe | "TCP Query User{A2757E99-08B4-44FD-9768-68631D213C5E}C:\program files\java\jre6\bin\jusched.exe" = protocol=6 | dir=in | app=c:\program files\java\jre6\bin\jusched.exe | "TCP Query User{A442EE45-B412-43D7-A346-F8B7C2F854EE}C:\users\michał\appdata\local\temp\qsjnu.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\qsjnu.exe | "TCP Query User{A456A6AA-4A89-499A-85EC-DDC48A8378D4}C:\users\michał\appdata\local\temp\wincckm.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\wincckm.exe | "TCP Query User{A524F400-E4E8-4001-9CCB-F382E5CD2F3F}C:\users\michał\appdata\local\temp\lcpc.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\lcpc.exe | "TCP Query User{A6778BF0-E518-4436-9160-FDCC1897C207}G:\programy\sopcast\sopvod.exe" = protocol=6 | dir=in | app=g:\programy\sopcast\sopvod.exe | "TCP Query User{A6DA10CC-34D9-4D61-B0E7-9F37EDC0D3AB}C:\users\michał\appdata\local\temp\winkyrowc.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winkyrowc.exe | "TCP Query User{A6DE52D8-6120-4119-914C-9159DF33DD1C}C:\users\michał\appdata\local\temp\winpdyhd.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winpdyhd.exe | "TCP Query User{AA053F56-2C59-4219-BCCF-54A83051FD28}C:\users\anno\appdata\local\temp\igwre.exe" = protocol=6 | dir=in | app=c:\users\anno\appdata\local\temp\igwre.exe | "TCP Query User{AA247DE4-A648-4F7B-A092-85740AB4131C}G:\gry\nfs\speed2.exe" = protocol=6 | dir=in | app=g:\gry\nfs\speed2.exe | "TCP Query User{AB97C4D6-19B5-4433-8FC8-8FB75EB1039E}C:\users\michał\appdata\local\temp\winpikil.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winpikil.exe | "TCP Query User{ACC4EAF6-C71B-4804-A4AB-C8E9F1348E55}C:\users\michał\appdata\local\temp\nujfdy.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\nujfdy.exe | "TCP Query User{AD199CA9-046A-4831-9AEC-D81D2AFED278}C:\users\michał\appdata\local\temp\winvruk.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winvruk.exe | "TCP Query User{ADB3EBF3-CAE6-4A2B-9841-DDE601E3DBE6}C:\program files\common files\nokia\service layer\a\nsl_host_process.exe" = protocol=6 | dir=in | app=c:\program files\common files\nokia\service layer\a\nsl_host_process.exe | "TCP Query User{ADBDA749-8A67-48F6-B23D-D4197C70B411}C:\users\michał\appdata\local\temp\winucth.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winucth.exe | "TCP Query User{B2618ABE-0898-452E-93B3-EE39DABCC499}C:\users\michał\appdata\local\temp\winntgno.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winntgno.exe | "TCP Query User{B2F2083D-BC8B-4670-A903-EC77D8EC4F8B}C:\program files\nokia\nokia software updater\nsu_ui_client.exe" = protocol=6 | dir=in | app=c:\program files\nokia\nokia software updater\nsu_ui_client.exe | "TCP Query User{B32E6E56-C871-488C-ACB7-8988C240421D}C:\users\michał\appdata\local\temp\winheqdew.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winheqdew.exe | "TCP Query User{B38C1F90-334B-419D-9C17-20A9958676A1}C:\users\michał\appdata\local\temp\dqetv.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\dqetv.exe | "TCP Query User{B5E0ECA3-11EC-485C-86DC-464955D5AEEE}C:\windows\system32\netsh.exe" = protocol=6 | dir=in | app=c:\windows\system32\netsh.exe | "TCP Query User{B71A88AE-8206-46B5-86B2-B1F65A7CBE7A}C:\program files\google\googletoolbarnotifier\googletoolbarnotifier.exe" = protocol=6 | dir=in | app=c:\program files\google\googletoolbarnotifier\googletoolbarnotifier.exe | "TCP Query User{B7D9BE11-AC37-42F8-8266-F02B5B013637}C:\program files\common files\nokia\service layer\a\nsl_host_process.exe" = protocol=6 | dir=in | app=c:\program files\common files\nokia\service layer\a\nsl_host_process.exe | "TCP Query User{B9F269ED-1A5B-4712-AA36-C771E67A7AC0}C:\users\michał\appdata\local\temp\wlgk.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\wlgk.exe | "TCP Query User{BD121A35-C235-4C57-BE60-CE01A54CD047}G:\programy\sopcast\sopcast.exe" = protocol=6 | dir=in | app=g:\programy\sopcast\sopcast.exe | "TCP Query User{BDBE33EC-18E3-47D0-AECB-72E4E5672EA2}C:\users\michał\appdata\local\temp\wincouf.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\wincouf.exe | "TCP Query User{BEA4EAB5-0CBD-47D9-8F31-CFD98F246028}C:\program files\hewlett-packard\hp wireless assistant\hpwamain.exe" = protocol=6 | dir=in | app=c:\program files\hewlett-packard\hp wireless assistant\hpwamain.exe | "TCP Query User{C03CDA50-91F0-4C07-80E5-4819352D5BC5}G:\gry\call of juarez\protect.exe" = protocol=6 | dir=in | app=g:\gry\call of juarez\protect.exe | "TCP Query User{C08B2EEE-CC18-40AF-969F-52453F82021B}C:\users\michał\desktop\nestopia\nestopia.exe" = protocol=6 | dir=in | app=c:\users\michał\desktop\nestopia\nestopia.exe | "TCP Query User{C17345F5-C3D4-402A-AB28-B9968763AD29}C:\program files\codemasters\dirt\dirt.exe" = protocol=6 | dir=in | app=c:\program files\codemasters\dirt\dirt.exe | "TCP Query User{C1C18CEC-C1D9-45D8-90FD-7413C9B34B13}C:\program files\electronic arts\eadm\core.exe" = protocol=6 | dir=in | app=c:\program files\electronic arts\eadm\core.exe | "TCP Query User{C20EF0AD-144F-4F9F-A13E-9CD7EC786DDB}G:\programy\gadu-gadu2\gg.exe" = protocol=6 | dir=in | app=g:\programy\gadu-gadu2\gg.exe | "TCP Query User{C4706336-F936-4105-9E2A-BD2E1A4AC4C9}G:\programy\gadu-gadu\gg.exe" = protocol=6 | dir=in | app=g:\programy\gadu-gadu\gg.exe | "TCP Query User{C72863D0-2145-4907-8EB7-1984BB750E80}C:\users\michał\appdata\local\temp\winskbqln.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winskbqln.exe | "TCP Query User{C80B2D74-63D7-4B9D-8EC2-0FA557E786D0}C:\windows\system32\dwm.exe" = protocol=6 | dir=in | app=c:\windows\system32\dwm.exe | "TCP Query User{C8F8F1E5-8604-41F9-A366-FBFB6B6D13FF}C:\users\michał\appdata\local\temp\mebc.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\mebc.exe | "TCP Query User{C907DCB9-81EE-4509-9E20-6187802069CC}C:\users\michał\appdata\local\temp\sgoyf.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\sgoyf.exe | "TCP Query User{C91087A9-FD1C-4942-9680-DB0BE8BE3D7B}G:\programy\tvants\tvants.exe" = protocol=6 | dir=in | app=g:\programy\tvants\tvants.exe | "TCP Query User{CC16F5A5-266C-4FC2-9A53-462E0946C698}C:\users\michał\appdata\local\temp\winltejq.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winltejq.exe | "TCP Query User{CC23E5A6-8B46-47A2-BEA3-0C3A478F8446}C:\users\michał\appdata\local\temp\winemnbmh.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winemnbmh.exe | "TCP Query User{D06B7E15-D884-40DA-9B24-3419123682A5}C:\users\michał\appdata\local\temp\jwbft.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\jwbft.exe | "TCP Query User{D125CD79-9EE7-42F8-9C22-B4EB5CE185D8}C:\users\michał\appdata\roaming\macromedia\flash player\www.macromedia.com\bin\octoshape\octoshape.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\roaming\macromedia\flash player\www.macromedia.com\bin\octoshape\octoshape.exe | "TCP Query User{D18ABF4C-8AB9-42E0-A3D4-D0FDCA45BF10}C:\program files\winamp remote\bin\orbir.exe" = protocol=6 | dir=in | app=c:\program files\winamp remote\bin\orbir.exe | "TCP Query User{D2930565-D7ED-461F-AACB-BC2B301AE9F3}G:\programy\hamachi\hamachi.exe" = protocol=6 | dir=in | app=g:\programy\hamachi\hamachi.exe | "TCP Query User{D37E6078-85CE-457B-9822-EAEF51FDD96D}G:\programy\office 2007\office12\groovemonitor.exe" = protocol=6 | dir=in | app=g:\programy\office 2007\office12\groovemonitor.exe | "TCP Query User{D494B93D-3774-4185-BF74-6C9CF21222C7}G:\gry\world of warcraft\wow-3.2.0.10192-to-3.3.0.10958-enus-downloader.exe" = protocol=6 | dir=in | app=g:\gry\world of warcraft\wow-3.2.0.10192-to-3.3.0.10958-enus-downloader.exe | "TCP Query User{D517ABC0-8BE4-4DA6-8E81-02609DEA329B}G:\gry\call of juarez\coj.exe" = protocol=6 | dir=in | app=g:\gry\call of juarez\coj.exe | "TCP Query User{D729632B-A52B-45D2-9085-E2E4D36E041E}C:\users\michał\appdata\local\temp\winreoh.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winreoh.exe | "TCP Query User{D95C1758-97BE-4FBF-8A57-2A01630155FC}G:\programy\bearshare\bearshare.exe" = protocol=6 | dir=in | app=g:\programy\bearshare\bearshare.exe | "TCP Query User{D9F2A66F-855C-4F4F-B357-A545B67A9CC3}C:\users\michał\appdata\local\temp\winixks.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winixks.exe | "TCP Query User{DA281CFD-AC45-43E1-A4BA-50C7DFEE1D49}C:\users\michał\appdata\local\temp\jebfeb.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\jebfeb.exe | "TCP Query User{DAB4B7F4-3A52-4295-9320-05E72D5E3889}G:\programy\alcohol 120\axcmd.bin" = protocol=6 | dir=in | app=g:\programy\alcohol 120\axcmd.bin | "TCP Query User{DEC105C3-AC31-4F81-B6D3-0F896B52B31B}G:\programy\sopcast\adv\sopadver.exe" = protocol=6 | dir=in | app=g:\programy\sopcast\adv\sopadver.exe | "TCP Query User{E059DEB5-31D8-4BF9-88F2-AC1F2AA6433E}C:\users\michał\appdata\local\temp\winernyng.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winernyng.exe | "TCP Query User{E298869D-E84B-4F83-BEDC-AC8BD364F598}C:\users\michał\appdata\local\temp\ucrnd.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\ucrnd.exe | "TCP Query User{E2EE6954-78DE-4EF5-89DA-0576FA8823EB}C:\users\michał\appdata\local\temp\winhlxoj.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winhlxoj.exe | "TCP Query User{E39B4349-92AC-4CDE-8367-904CC332D524}C:\users\michał\appdata\local\temp\ibpm.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\ibpm.exe | "TCP Query User{E42A3D1E-A2E7-4C97-BD05-71FD39351C52}G:\programy\opera\program\plugins\npswf32_flashutil.exe" = protocol=6 | dir=in | app=g:\programy\opera\program\plugins\npswf32_flashutil.exe | "TCP Query User{E4BE949C-87EB-457F-A6C2-BD1FA646D29B}C:\users\michał\appdata\local\temp\windcgdo.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\windcgdo.exe | "TCP Query User{E524BC4D-62B5-4955-890E-47810D03B0F8}C:\users\michał\appdata\local\temp\winqvcf.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winqvcf.exe | "TCP Query User{E52FA440-E098-4B94-8DDF-7C2B010A7832}C:\users\michał\appdata\local\temp\winslbh.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winslbh.exe | "TCP Query User{E589D251-E373-4FA2-9542-AC326D262E0B}C:\users\michał\appdata\local\temp\winfowvr.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winfowvr.exe | "TCP Query User{E65960A0-66F7-414A-8B0B-720068EFC0E2}C:\program files\utorrent\utorrent.exe" = protocol=6 | dir=in | app=c:\program files\utorrent\utorrent.exe | "TCP Query User{E667E788-A2B3-4E46-8F78-3DEE9C3E7865}C:\windows\system32\dllhost.exe" = protocol=6 | dir=in | app=c:\windows\system32\dllhost.exe | "TCP Query User{E7154D80-A6B9-4B22-B0D3-BE3F3366FD48}C:\users\michał\appdata\local\temp\csdqab.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\csdqab.exe | "TCP Query User{E842B2DE-7BC7-446E-8D6E-35B92A3D9C65}G:\programy\opera unite\program\plugins\npswf32_flashutil.exe" = protocol=6 | dir=in | app=g:\programy\opera unite\program\plugins\npswf32_flashutil.exe | "TCP Query User{E9CD0DAD-89EF-4916-99C8-7B905B06E719}C:\users\michał\appdata\local\temp\winkhkqg.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winkhkqg.exe | "TCP Query User{EA7E3188-63E2-4002-83C5-70A6B4BD8F4E}C:\users\michał\appdata\local\temp\windrjtc.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\windrjtc.exe | "TCP Query User{EBA7207C-B524-42F2-9F52-8ABAC5D4BBAF}G:\gry\trine\trine\trine_launcher.exe" = protocol=6 | dir=in | app=g:\gry\trine\trine\trine_launcher.exe | "TCP Query User{EBFC05D0-B4C4-4E03-9200-A1BE064C3491}C:\users\michał\appdata\local\temp\vifn.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\vifn.exe | "TCP Query User{EC601E70-4F96-4DCF-B820-3315CED72E5D}C:\users\michał\appdata\local\temp\winmdox.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winmdox.exe | "TCP Query User{ED674859-FF98-40F9-BE10-14D8AA501EA7}C:\users\michał\appdata\local\temp\lqefqu.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\lqefqu.exe | "TCP Query User{EDA04E2E-8F91-43FB-8F90-636B65620047}C:\windows\system32\netsh.exe" = protocol=6 | dir=in | app=c:\windows\system32\netsh.exe | "TCP Query User{EF9DEA96-6CAE-4AA8-834E-A8CF864DE98B}C:\users\michał\appdata\local\temp\lnjfe.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\lnjfe.exe | "TCP Query User{F1B90532-18A5-4B16-B7E1-65067E452D9C}C:\users\michał\appdata\local\temp\winkqgc.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winkqgc.exe | "TCP Query User{F28C7D53-1EB5-4F08-92F3-E83D60351EA9}C:\users\michał\appdata\local\temp\winrkyi.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winrkyi.exe | "TCP Query User{F292215D-988E-40BB-B933-68659A111D9B}C:\users\michał\appdata\local\temp\winkbivh.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winkbivh.exe | "TCP Query User{F3EB3A5D-0FCF-4074-B161-DCA3E3378AD1}G:\programy\dc++\dcplusplus.exe" = protocol=6 | dir=in | app=g:\programy\dc++\dcplusplus.exe | "TCP Query User{F862ECE2-C37B-4773-A7B9-155060879903}G:\gry\starcraft ii beta\support\blizzarddownloader.exe" = protocol=6 | dir=in | app=g:\gry\starcraft ii beta\support\blizzarddownloader.exe | "TCP Query User{F979C5B0-9E9D-4645-B8B9-C122F619AFA8}G:\programy\evillyrics\evillyrics.exe" = protocol=6 | dir=in | app=g:\programy\evillyrics\evillyrics.exe | "TCP Query User{FAD4B605-4BA8-4F9C-B6BD-8C34BD04A0FD}C:\users\michał\appdata\local\temp\futhf.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\futhf.exe | "TCP Query User{FBBE246B-DAFF-4CF8-AE29-31472485535E}C:\users\michał\appdata\local\temp\naxg.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\naxg.exe | "TCP Query User{FDD862C2-0804-4F0C-8D44-B9F33BDC70F2}G:\gry\starcraft ii beta\versions\base14093\sc2.exe" = protocol=6 | dir=in | app=g:\gry\starcraft ii beta\versions\base14093\sc2.exe | "TCP Query User{FECB825A-DF75-441F-AAC7-9C405B586784}C:\users\michał\appdata\local\temp\winmdmwa.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winmdmwa.exe | "UDP Query User{01013624-DE77-49AA-A87D-9A23DBA7E55C}G:\gry\world of warcraft\launcher.exe" = protocol=17 | dir=in | app=g:\gry\world of warcraft\launcher.exe | "UDP Query User{0150AC20-9DE9-44EC-9594-3B28FABAA43E}G:\programy\office 2007\office12\groovemonitor.exe" = protocol=17 | dir=in | app=g:\programy\office 2007\office12\groovemonitor.exe | "UDP Query User{01C344A0-0FCE-4479-AEB3-0A0F30FF7FCC}C:\users\michał\appdata\local\temp\wineqmnb.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\wineqmnb.exe | "UDP Query User{02F50649-FEC5-4159-8064-6BF9E476AAEA}C:\program files\adobe\reader 8.0\reader\acrord32.exe" = protocol=17 | dir=in | app=c:\program files\adobe\reader 8.0\reader\acrord32.exe | "UDP Query User{035B2904-3485-40E5-89E2-601F4DC488C6}C:\users\michał\appdata\local\temp\winittx.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winittx.exe | "UDP Query User{0414E0E0-529B-4866-A03E-4F273134A47D}C:\users\michał\appdata\local\temp\csdqab.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\csdqab.exe | "UDP Query User{0458FBC1-200B-4886-8947-11920B0207D1}C:\users\michał\appdata\local\temp\axypcl.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\axypcl.exe | "UDP Query User{0497720F-2086-45C4-9690-312900BA215F}C:\windows\system32\mobsync.exe" = protocol=17 | dir=in | app=c:\windows\system32\mobsync.exe | "UDP Query User{05DA0E48-A9D3-4BA3-B7EC-89DBCDEC85F3}C:\program files\utorrent\utorrent.exe" = protocol=17 | dir=in | app=c:\program files\utorrent\utorrent.exe | "UDP Query User{063F7115-1BF8-4F81-9486-F5A5E0D9ACDA}C:\program files\hewlett-packard\hp quick launch buttons\qlbctrl.exe" = protocol=17 | dir=in | app=c:\program files\hewlett-packard\hp quick launch buttons\qlbctrl.exe | "UDP Query User{06E8B5AC-8C84-4B87-8C5A-A7124C43D4E9}G:\programy\opera unite\program\plugins\npswf32_flashutil.exe" = protocol=17 | dir=in | app=g:\programy\opera unite\program\plugins\npswf32_flashutil.exe | "UDP Query User{06E91958-E964-4267-A505-EB69BB699792}C:\users\michał\appdata\local\temp\winpdixh.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winpdixh.exe | "UDP Query User{074F5AC4-6711-4D86-8326-92386CCAA989}G:\gry\need_for_speed_underground2[upbyatyll]\speed2.exe" = protocol=17 | dir=in | app=g:\gry\need_for_speed_underground2[upbyatyll]\speed2.exe | "UDP Query User{08AFF79A-5BB9-4457-BA40-44AE1F730F80}C:\users\michał\appdata\local\temp\rpdq.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\rpdq.exe | "UDP Query User{08D49FBB-FCA2-41D6-A8CF-D8FA12E20514}C:\users\michał\appdata\local\temp\winupleln.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winupleln.exe | "UDP Query User{0AB6ADDE-3258-4AEE-9575-156DCF136F34}C:\users\michał\appdata\local\temp\nfhg.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\nfhg.exe | "UDP Query User{0AC3D0AB-8156-4B5F-BBD3-E837373542BA}G:\gry\monopoly by parker brothers\monopolypb.exe" = protocol=17 | dir=in | app=g:\gry\monopoly by parker brothers\monopolypb.exe | "UDP Query User{0CAE8E75-19A2-460D-92A0-1A39A7B755FE}G:\gry\starcraft ii beta\support\blizzarddownloader.exe" = protocol=17 | dir=in | app=g:\gry\starcraft ii beta\support\blizzarddownloader.exe | "UDP Query User{0CBDA64C-60EE-467E-B97F-CBA0618E33D7}C:\program files\nokia\nokia software updater\nsu_ui_client.exe" = protocol=17 | dir=in | app=c:\program files\nokia\nokia software updater\nsu_ui_client.exe | "UDP Query User{0CCB4729-85B7-43B8-8F72-EF202B82D992}C:\users\michał\appdata\local\temp\winhiqcrc.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winhiqcrc.exe | "UDP Query User{0CDAFA83-02BF-430B-9E2F-A212A619BEEB}C:\users\michał\appdata\local\temp\lcpc.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\lcpc.exe | "UDP Query User{0CEDF484-783A-4D44-9D35-8FFE68C6A27F}G:\gry\bmoworld\bomberman.exe" = protocol=17 | dir=in | app=g:\gry\bmoworld\bomberman.exe | "UDP Query User{0D2C63E0-17C2-4FE0-BBD3-E3321F8FD16C}C:\users\michał\appdata\local\temp\iumaqi.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\iumaqi.exe | "UDP Query User{0FA7ECD6-28FB-4A2A-990E-1AB37D10639A}G:\gry\bmoworld\bomberman.exe" = protocol=17 | dir=in | app=g:\gry\bmoworld\bomberman.exe | "UDP Query User{10010BC9-63C6-42FD-93EE-30CDD518F716}C:\users\michał\appdata\local\temp\winyivvb.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winyivvb.exe | "UDP Query User{101499DE-19B9-4764-982E-99C86F66E74A}C:\users\michał\appdata\roaming\sopcast\adv\sopadver.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\roaming\sopcast\adv\sopadver.exe | "UDP Query User{10BF45FF-7FB4-4459-8E67-87EFDEAB63C4}G:\programy\dap\dap.exe" = protocol=17 | dir=in | app=g:\programy\dap\dap.exe | "UDP Query User{133DBA97-855F-4236-84C8-E7EB38C1440A}C:\users\michał\appdata\local\temp\winucth.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winucth.exe | "UDP Query User{135162A3-F4C7-4540-A911-5A64A7545483}C:\users\michał\appdata\local\temp\winmvrin.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winmvrin.exe | "UDP Query User{14C22E6B-EC56-4517-AB98-6EABDD150B05}C:\users\michał\appdata\local\temp\winpikil.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winpikil.exe | "UDP Query User{186987A5-FDFE-4D33-BAAC-07CC24412B58}C:\users\michał\appdata\local\temp\winntgno.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winntgno.exe | "UDP Query User{19D40641-72E1-4360-8227-C9111547DFBE}C:\users\michał\appdata\roaming\macromedia\flash player\www.macromedia.com\bin\octoshape\octoshape.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\roaming\macromedia\flash player\www.macromedia.com\bin\octoshape\octoshape.exe | "UDP Query User{1B098D75-068D-4B7C-9281-A10176DE2000}C:\program files\utorrent\utorrent.exe" = protocol=17 | dir=in | app=c:\program files\utorrent\utorrent.exe | "UDP Query User{1B26A7DF-F843-4A59-A1BE-375D0005BF83}C:\users\michał\appdata\local\temp\rrhyel.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\rrhyel.exe | "UDP Query User{1E304F4D-EDE2-4F7A-BEC9-90D39B6D5C76}C:\users\michał\appdata\local\temp\winwjala.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winwjala.exe | "UDP Query User{1E866A3C-3D81-49D7-94D9-6E94A092BA6B}C:\users\michał\appdata\local\temp\ibpm.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\ibpm.exe | "UDP Query User{1F548E68-EE56-4C32-8338-CF9BFBBA106E}C:\program files\amd\dual-core optimizer\amd_dc_opt.exe" = protocol=17 | dir=in | app=c:\program files\amd\dual-core optimizer\amd_dc_opt.exe | "UDP Query User{2058661B-0B11-4EF6-B61B-1EA6B1ED752D}C:\program files\google\googletoolbarnotifier\googletoolbarnotifier.exe" = protocol=17 | dir=in | app=c:\program files\google\googletoolbarnotifier\googletoolbarnotifier.exe | "UDP Query User{2445DC1E-D832-4406-808C-D603FF90283A}G:\programy\sopcast\sopvod.exe" = protocol=17 | dir=in | app=g:\programy\sopcast\sopvod.exe | "UDP Query User{246EA99F-D24C-428B-9592-840523E68DEC}C:\users\michał\appdata\local\temp\winamja.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winamja.exe | "UDP Query User{24B0CA28-E203-4C08-94F1-11B85A0BECC9}C:\users\anno\appdata\local\temp\igwre.exe" = protocol=17 | dir=in | app=c:\users\anno\appdata\local\temp\igwre.exe | "UDP Query User{24FF7675-96AE-47CC-A87A-94216BFF87A6}G:\programy\napi-projekt\napisy.exe" = protocol=17 | dir=in | app=g:\programy\napi-projekt\napisy.exe | "UDP Query User{29AFA6A4-D615-411F-ADD8-807B20760020}C:\users\michał\appdata\local\temp\winnarl.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winnarl.exe | "UDP Query User{29E6C5DF-6AF5-4204-A3C6-BC8DACEAB934}E:\postal 2 share the pain\postal2 stp\setup.exe" = protocol=17 | dir=in | app=e:\postal 2 share the pain\postal2 stp\setup.exe | "UDP Query User{2DB05B56-2C34-4FFD-9807-77E71CCC95CA}C:\program files\mozilla firefox\firefox.exe" = protocol=17 | dir=in | app=c:\program files\mozilla firefox\firefox.exe | "UDP Query User{2EC9D9F5-22F9-4A63-8D91-A9F0F8015ADC}C:\users\michał\appdata\local\temp\wintrsvs.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\wintrsvs.exe | "UDP Query User{3002E5B1-3754-4EC8-A484-515A287FE76B}C:\users\michał\appdata\local\temp\winbjbye.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winbjbye.exe | "UDP Query User{30F0DA98-21A0-46D6-B425-50F481A5C4EE}G:\gry\call of juarez\protect.exe" = protocol=17 | dir=in | app=g:\gry\call of juarez\protect.exe | "UDP Query User{343A6A05-398D-4488-9BF5-AEBA6C3EC044}G:\programy\dap\dap.exe" = protocol=17 | dir=in | app=g:\programy\dap\dap.exe | "UDP Query User{356A26D0-BE5A-4F74-9DD1-914BA0178F79}C:\users\michał\appdata\local\temp\wintyjmc.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\wintyjmc.exe | "UDP Query User{37FAADC6-04E9-4A83-A7FE-BF4D33363FA5}C:\users\michał\appdata\local\temp\sgoyf.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\sgoyf.exe | "UDP Query User{388118ED-FD66-4536-9E53-F5E3B9B29CEB}C:\users\michał\appdata\local\temp\atte.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\atte.exe | "UDP Query User{3A815C50-ABB9-47AF-B418-E7AD8C199806}C:\users\michał\appdata\local\temp\vifn.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\vifn.exe | "UDP Query User{3AE33C4D-8B7A-4DFC-A25B-BF43B6A3C745}C:\windows\explorer.exe" = protocol=17 | dir=in | app=c:\windows\explorer.exe | "UDP Query User{3C2D78D5-D56A-461E-A4C9-AAC1C426AC9F}G:\programy\opera\opera.exe" = protocol=17 | dir=in | app=g:\programy\opera\opera.exe | "UDP Query User{3F0AE480-45D6-4CB7-A2CF-33B9DB3C7BE6}C:\program files\tvants\tvants.exe" = protocol=17 | dir=in | app=c:\program files\tvants\tvants.exe | "UDP Query User{3F2D347A-D756-476D-92AC-A2A37ACD1C69}C:\users\michał\appdata\local\temp\winslbh.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winslbh.exe | "UDP Query User{401F532E-E4AE-460F-917B-0E49254F2862}C:\users\michał\appdata\local\temp\xksrc.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\xksrc.exe | "UDP Query User{40587BDE-E044-41EC-80CE-812AFAF11FE9}G:\gry\starcraft ii beta\versions\base14093\sc2.exe" = protocol=17 | dir=in | app=g:\gry\starcraft ii beta\versions\base14093\sc2.exe | "UDP Query User{40ACE728-7DBA-493B-ADDA-D2C24FDFF6C9}C:\users\michał\appdata\local\temp\kkqxry.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\kkqxry.exe | "UDP Query User{40B93A5B-1A76-4A9B-8609-765872EF4DD4}C:\users\michał\appdata\local\temp\winsynhea.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winsynhea.exe | "UDP Query User{425FFC12-D1A9-40F4-A7EE-440403E5BC38}C:\windows\system32\taskeng.exe" = protocol=17 | dir=in | app=c:\windows\system32\taskeng.exe | "UDP Query User{42A05507-AC0D-4C66-9154-F36DA7492F2A}C:\users\michał\appdata\local\temp\winnpfhf.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winnpfhf.exe | "UDP Query User{43D3330D-DE54-41E0-91C4-A69EF2F3F385}C:\program files\hewlett-packard\hp wireless assistant\wifimsg.exe" = protocol=17 | dir=in | app=c:\program files\hewlett-packard\hp wireless assistant\wifimsg.exe | "UDP Query User{43F3AB4F-D746-4B10-9537-D9CF28CE5B09}C:\windows\system32\dwm.exe" = protocol=17 | dir=in | app=c:\windows\system32\dwm.exe | "UDP Query User{458F12F6-CD2E-4408-8F07-F8D96E3E53C9}C:\users\michał\appdata\local\temp\winkqgc.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winkqgc.exe | "UDP Query User{4595176F-94CC-4A18-921C-DB4659A15125}C:\windows\explorer.exe" = protocol=17 | dir=in | app=c:\windows\explorer.exe | "UDP Query User{45DC9FFC-605A-4319-9D3D-C221BD7D2C6F}G:\gry\nfs\speed2.exe" = protocol=17 | dir=in | app=g:\gry\nfs\speed2.exe | "UDP Query User{47624CFC-EC54-4727-8F16-F8E39B0AB99F}C:\users\michał\appdata\local\temp\lnjfe.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\lnjfe.exe | "UDP Query User{4764505E-10CD-4A18-AEEB-43D15C618C4E}C:\program files\winamp remote\bin\orb.exe" = protocol=17 | dir=in | app=c:\program files\winamp remote\bin\orb.exe | "UDP Query User{479220A5-FD7E-445C-816C-349CAA35FA72}C:\users\michał\appdata\local\temp\wincouf.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\wincouf.exe | "UDP Query User{48F03BFB-9DB7-49B3-B445-B244B159FA3D}C:\users\michał\appdata\local\temp\winlvor.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winlvor.exe | "UDP Query User{4C02A32B-B206-4070-B555-5326571B29AA}G:\gry\medieval ii total war\medieval2.exe" = protocol=17 | dir=in | app=g:\gry\medieval ii total war\medieval2.exe | "UDP Query User{4C560BFA-039A-45A2-B5E4-B9B19BFF2665}C:\program files\synaptics\syntp\syntpenh.exe" = protocol=17 | dir=in | app=c:\program files\synaptics\syntp\syntpenh.exe | "UDP Query User{4C64A117-FAD5-47A6-B09E-99A1FEFE9434}C:\users\michał\appdata\local\temp\winkyrowc.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winkyrowc.exe | "UDP Query User{4DA75A88-EFAC-4906-B49D-028084788D68}C:\users\michał\appdata\local\temp\winrmqch.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winrmqch.exe | "UDP Query User{4FE077D8-371E-4FD5-B6B9-23B0BD439AB2}C:\program files\electronic arts\eadm\core.exe" = protocol=17 | dir=in | app=c:\program files\electronic arts\eadm\core.exe | "UDP Query User{508C7ECC-9367-496B-84F2-0F552E589E08}C:\windows\system32\taskeng.exe" = protocol=17 | dir=in | app=c:\windows\system32\taskeng.exe | "UDP Query User{50BAB524-5FEC-472E-8E63-DA7A3A9FADC4}C:\users\michał\appdata\local\temp\kwqc.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\kwqc.exe | "UDP Query User{52EDA739-8B01-4FBC-B74B-77097EB93455}C:\users\michał\appdata\local\temp\rgbnuk.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\rgbnuk.exe | "UDP Query User{530154D1-9C99-4CEE-A4B5-4757AC0C5401}G:\programy\easeus partition master 4.1.1 home edition\bin\main.exe" = protocol=17 | dir=in | app=g:\programy\easeus partition master 4.1.1 home edition\bin\main.exe | "UDP Query User{5394085A-2951-46F5-A016-04BD5BE9BF67}G:\programy\tvants\tvants.exe" = protocol=17 | dir=in | app=g:\programy\tvants\tvants.exe | "UDP Query User{54150800-9554-4065-98C8-80C7397736A9}G:\gry\world of warcraft\wow-3.2.0.10192-to-3.3.0.10958-enus-downloader.exe" = protocol=17 | dir=in | app=g:\gry\world of warcraft\wow-3.2.0.10192-to-3.3.0.10958-enus-downloader.exe | "UDP Query User{550E5FF0-FBF7-4A97-9824-28FF16C9E8F0}C:\users\michał\appdata\local\temp\winfowvr.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winfowvr.exe | "UDP Query User{56367055-B098-4EA3-B596-43EF35754B0F}C:\users\michał\appdata\local\temp\winsgrfgx.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winsgrfgx.exe | "UDP Query User{56879092-C899-4586-9E08-F7C8A1AFE228}C:\users\michał\appdata\local\temp\spey.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\spey.exe | "UDP Query User{575B8ADB-C22B-453A-838F-8BACF28A223E}C:\users\michał\appdata\local\temp\winfrkjr.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winfrkjr.exe | "UDP Query User{57A76A09-F7CA-46E6-9495-95B39F64C19B}C:\users\michał\appdata\local\temp\oddtpt.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\oddtpt.exe | "UDP Query User{57C60CBD-196F-447C-95CD-5F574501B5BE}G:\programy\sopcast\adv\sopadver.exe" = protocol=17 | dir=in | app=g:\programy\sopcast\adv\sopadver.exe | "UDP Query User{59473203-FF16-4A0C-80BB-BE17A9BDCA34}C:\program files\widcomm\bluetooth software\bttray.exe" = protocol=17 | dir=in | app=c:\program files\widcomm\bluetooth software\bttray.exe | "UDP Query User{5968FEA6-ABB3-42D9-904F-EF5355207648}G:\programy\office 2007\office12\groovemonitor.exe" = protocol=17 | dir=in | app=g:\programy\office 2007\office12\groovemonitor.exe | "UDP Query User{59C66B6E-F625-4C10-8431-A9B62A143BC4}C:\users\michał\appdata\local\temp\qsjnu.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\qsjnu.exe | "UDP Query User{59CEFA1F-3910-40F2-B587-B7806FF49D57}C:\users\michał\appdata\local\temp\winkssl.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winkssl.exe | "UDP Query User{5A12A449-D41A-4B4F-9CC1-BCBBE0872816}G:\gry\call of juarez\protect.exe" = protocol=17 | dir=in | app=g:\gry\call of juarez\protect.exe | "UDP Query User{5AA7DDEC-0A78-4D0F-A6F4-6D9581BF8192}C:\users\michał\appdata\local\temp\yfjlb.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\yfjlb.exe | "UDP Query User{5B5A33F7-D6F0-40C7-84ED-68A248F4B6DB}C:\users\michał\appdata\local\temp\nujfdy.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\nujfdy.exe | "UDP Query User{5BB77135-2FB3-47E5-B461-CB662D2A208B}C:\program files\synaptics\syntp\syntpstart.exe" = protocol=17 | dir=in | app=c:\program files\synaptics\syntp\syntpstart.exe | "UDP Query User{5C59E171-F7D5-4776-8C8B-488AEAC19343}C:\users\michał\appdata\local\temp\vpag.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\vpag.exe | "UDP Query User{5CF5731C-DB8F-4CB6-91CF-175799E344D5}C:\users\michał\appdata\local\temp\winskbqln.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winskbqln.exe | "UDP Query User{5DA17109-BBE5-43D4-88BD-5EA972424E3F}G:\gry\call of juarez\coj.exe" = protocol=17 | dir=in | app=g:\gry\call of juarez\coj.exe | "UDP Query User{60579A7B-B435-4D8B-A6DB-9C7BE21E7D71}C:\users\michał\appdata\local\temp\winreoh.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winreoh.exe | "UDP Query User{607C9A1E-C874-4C22-A62E-6523797C3952}C:\windows\system32\dwm.exe" = protocol=17 | dir=in | app=c:\windows\system32\dwm.exe | "UDP Query User{6140C70F-B820-447A-9078-6B5921196CE1}C:\users\michał\appdata\local\temp\swuqnb.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\swuqnb.exe | "UDP Query User{61A16853-1E9E-4BDD-81E5-8D9C822BA0DE}G:\programy\gadu-gadu2\gg.exe" = protocol=17 | dir=in | app=g:\programy\gadu-gadu2\gg.exe | "UDP Query User{61B8FD0C-D565-45B2-9CC5-5BF57122EA0C}C:\users\michał\appdata\local\temp\kjgxu.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\kjgxu.exe | "UDP Query User{62756A02-3C04-46CC-BB42-00DD3ADF38B2}C:\users\michał\appdata\local\temp\winkbivh.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winkbivh.exe | "UDP Query User{62FCECBE-003B-4A84-BB5B-A2DC16870397}C:\users\michał\appdata\local\temp\winuojcyh.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winuojcyh.exe | "UDP Query User{637095B8-E367-4FB3-A556-90D29B1FBDC4}C:\program files\tvuplayer\tvuplayer.exe" = protocol=17 | dir=in | app=c:\program files\tvuplayer\tvuplayer.exe | "UDP Query User{68ED58FD-853C-4CF6-ACD1-3FA0FE9223C5}C:\users\michał\appdata\local\temp\qsxsl.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\qsxsl.exe | "UDP Query User{69FC2389-489D-4593-ACAB-347B7A7A69B0}C:\users\michał\appdata\local\temp\eyvkbx.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\eyvkbx.exe | "UDP Query User{6C627161-AC98-44D6-A6D9-54AE2953F71D}C:\program files\synaptics\syntp\syntpenh.exe" = protocol=17 | dir=in | app=c:\program files\synaptics\syntp\syntpenh.exe | "UDP Query User{6E40BDCF-189F-4638-A114-090A8C19F4DB}H:\gta\grand theft auto iv\gtaiv.exe" = protocol=17 | dir=in | app=h:\gta\grand theft auto iv\gtaiv.exe | "UDP Query User{703C901F-924E-4060-A828-CE137004CED4}G:\programy\gadu-gadu\gg.exe" = protocol=17 | dir=in | app=g:\programy\gadu-gadu\gg.exe | "UDP Query User{70FB4E06-2CDF-46B5-9379-B20318E5CA71}C:\users\michał\appdata\local\temp\winkbien.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winkbien.exe | "UDP Query User{71395C56-7FF8-46DB-BA21-9D541DF65D0A}C:\users\michał\appdata\local\temp\winintfo.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winintfo.exe | "UDP Query User{7298C4D1-EAF0-4423-9411-86970343CCC9}C:\users\michał\appdata\local\temp\hlkbe.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\hlkbe.exe | "UDP Query User{74929622-3AA8-4145-BBC5-90EC742E4261}C:\users\michał\appdata\local\temp\winhleoua.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winhleoua.exe | "UDP Query User{754EC714-83C1-4A23-BA1B-A9A0108B5898}C:\windows\system32\netsh.exe" = protocol=17 | dir=in | app=c:\windows\system32\netsh.exe | "UDP Query User{76540D4F-8852-4359-99AC-EE04A2DE82E4}C:\users\michał\appdata\local\temp\njbvaa.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\njbvaa.exe | "UDP Query User{76700051-3B1F-41E9-8E71-0AB0AAE97FE3}C:\users\michał\appdata\local\temp\winunfrb.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winunfrb.exe | "UDP Query User{779DD79C-84FA-49E7-913F-7FB586A05566}C:\users\michał\appdata\local\temp\winatvwt.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winatvwt.exe | "UDP Query User{78717642-D4F9-4F5A-B821-96163A98821B}C:\users\michał\appdata\local\temp\wlgk.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\wlgk.exe | "UDP Query User{789BBDFA-B754-4553-A86C-FE5E2911FEB4}C:\users\michał\appdata\local\temp\winvgcjq.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winvgcjq.exe | "UDP Query User{78A4CC2B-A169-4D2B-94D7-8B288DD78B2E}G:\programy\ashampoo burning studio 2010\burningstudio2010.exe" = protocol=17 | dir=in | app=g:\programy\ashampoo burning studio 2010\burningstudio2010.exe | "UDP Query User{7911F5A5-E99A-4EA4-B5FD-425F9CAC1002}C:\users\michał\appdata\local\temp\winrgtw.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winrgtw.exe | "UDP Query User{7C187CC8-B1AF-4E0C-AF3B-ADAA3CFE6389}C:\users\michał\appdata\local\temp\jebfeb.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\jebfeb.exe | "UDP Query User{7E0F56AF-7C40-4DC7-AFC2-5C31FAE69ADA}C:\users\michał\appdata\local\temp\winixks.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winixks.exe | "UDP Query User{7E7B7E58-D70E-4F94-BC6E-6AAFD096DD5E}C:\users\michał\appdata\local\temp\mmdqkq.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\mmdqkq.exe | "UDP Query User{7EE99C37-91E8-48A2-BC3C-CB3D461988BA}G:\programy\sopcast\sopcast.exe" = protocol=17 | dir=in | app=g:\programy\sopcast\sopcast.exe | "UDP Query User{7FDFB2EA-D2AD-47FD-BF87-5F17AAE7830E}C:\users\michał\appdata\local\temp\winhlxoj.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winhlxoj.exe | "UDP Query User{817CA701-3DF0-45B0-92C0-ABE70FF46EB6}C:\windows\system32\netsh.exe" = protocol=17 | dir=in | app=c:\windows\system32\netsh.exe | "UDP Query User{81954F28-5285-448F-9742-C95209690B97}C:\users\michał\appdata\local\temp\winqvcf.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winqvcf.exe | "UDP Query User{84D26908-9B8D-4ABD-A3D9-B18489795924}G:\programy\hamachi\hamachi.exe" = protocol=17 | dir=in | app=g:\programy\hamachi\hamachi.exe | "UDP Query User{860815D9-1344-466A-BEE2-6DB1E36BE06D}G:\programy\bearshare\bearshare.exe" = protocol=17 | dir=in | app=g:\programy\bearshare\bearshare.exe | "UDP Query User{87355580-68E5-438B-A6B7-AE42321AB207}C:\users\michał\appdata\local\temp\winkhkqg.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winkhkqg.exe | "UDP Query User{8828F899-DEAC-4C9D-8049-6036DBD9E8F3}C:\users\michał\appdata\local\temp\winbxfrp.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winbxfrp.exe | "UDP Query User{88C3AA1A-B386-492F-9CFD-D8D4DF7EBA19}C:\users\michał\appdata\local\temp\rvftjn.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\rvftjn.exe | "UDP Query User{8A340422-8A75-4B3C-B95F-1836CA279AC5}C:\program files\internet explorer\iexplore.exe" = protocol=17 | dir=in | app=c:\program files\internet explorer\iexplore.exe | "UDP Query User{8A63B91B-8AA1-4139-BE9C-A33466B1B502}C:\users\michał\appdata\local\temp\qavkmb.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\qavkmb.exe | "UDP Query User{8C3BB662-CC1F-442B-AC82-80CFF101CD30}C:\users\michał\appdata\local\temp\windcgdo.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\windcgdo.exe | "UDP Query User{8CBA84A5-2F7F-484B-AD1F-34C133AEA053}C:\users\michał\appdata\local\temp\rlfui.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\rlfui.exe | "UDP Query User{8E6E960A-8808-48AD-93D6-13982B32779F}C:\program files\hewlett-packard\hp quick launch buttons\qlbctrl.exe" = protocol=17 | dir=in | app=c:\program files\hewlett-packard\hp quick launch buttons\qlbctrl.exe | "UDP Query User{8F8ED6A8-C737-4E1E-8C89-DF9A96D08D57}C:\users\michał\appdata\local\temp\winrkyi.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winrkyi.exe | "UDP Query User{90920C4B-54D0-4331-88D4-A5AFCE465965}G:\programy\bearshare2\bearshare.exe" = protocol=17 | dir=in | app=g:\programy\bearshare2\bearshare.exe | "UDP Query User{91E7CB5D-BE3E-44D0-9387-195713C84068}G:\programy\opera beta\opera.exe" = protocol=17 | dir=in | app=g:\programy\opera beta\opera.exe | "UDP Query User{9215DC84-7E47-41C5-9282-944792596C63}G:\programy\bearshare\bearshare.exe" = protocol=17 | dir=in | app=g:\programy\bearshare\bearshare.exe | "UDP Query User{92B2A751-F4A4-4045-B7A0-8978176D80DC}G:\gry\quake4\quake4.exe" = protocol=17 | dir=in | app=g:\gry\quake4\quake4.exe | "UDP Query User{92D1DD85-B05A-4B80-916E-D691B60699F5}C:\program files\hewlett-packard\hp wireless assistant\hpwamain.exe" = protocol=17 | dir=in | app=c:\program files\hewlett-packard\hp wireless assistant\hpwamain.exe | "UDP Query User{9907CB19-C3AF-4960-81AB-D7AAC2239B8A}C:\users\michał\appdata\local\temp\winlvdlph.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winlvdlph.exe | "UDP Query User{99C53BB2-9577-49B5-96A3-D19408CC1D0D}C:\users\michał\appdata\local\temp\jjelfu.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\jjelfu.exe | "UDP Query User{9F805744-D16A-4499-8D9A-2C4ED869D3B0}C:\program files\windows defender\msascui.exe" = protocol=17 | dir=in | app=c:\program files\windows defender\msascui.exe | "UDP Query User{A0196F9B-146C-45C3-96EF-B726700DD5C9}C:\users\michał\appdata\local\temp\winemgvhj.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winemgvhj.exe | "UDP Query User{A22E992F-2746-4039-85DD-F8576E043847}C:\users\michał\appdata\local\temp\ehws.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\ehws.exe | "UDP Query User{A28BA519-161D-40EE-881C-A2A87E2B778C}C:\users\michał\appdata\local\temp\winheqdew.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winheqdew.exe | "UDP Query User{A39B6286-3C02-4C0A-9567-970ED9DD868E}C:\users\michał\appdata\local\temp\winnutfvm.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winnutfvm.exe | "UDP Query User{A494C07A-FD7F-4D31-BFEE-69397674A745}G:\programy\sopcast\sopcast.exe" = protocol=17 | dir=in | app=g:\programy\sopcast\sopcast.exe | "UDP Query User{A607B90B-2C49-4D2D-94C1-66B19BC7255A}C:\users\michał\appdata\local\temp\winvruk.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winvruk.exe | "UDP Query User{A63F7DFB-4A00-4563-9095-E45901FA0B9A}G:\programy\evillyrics\evillyrics.exe" = protocol=17 | dir=in | app=g:\programy\evillyrics\evillyrics.exe | "UDP Query User{A663CD29-DFE0-4CE5-8915-62AFA903BD5F}C:\users\michał\appdata\local\temp\winpdyhd.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winpdyhd.exe | "UDP Query User{A820838A-B32D-4E68-AFDE-90AEE30B3C19}C:\users\michał\appdata\local\temp\winmdox.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winmdox.exe | "UDP Query User{ABE85185-E0DC-4569-9E74-CDB3AEB11717}C:\users\michał\appdata\local\temp\winmdwnq.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winmdwnq.exe | "UDP Query User{AC9DAA82-509A-4924-B5BA-3E3530798D0D}C:\program files\winamp remote\bin\orbir.exe" = protocol=17 | dir=in | app=c:\program files\winamp remote\bin\orbir.exe | "UDP Query User{ACB9B514-5177-4A96-AB83-970D06D6B379}C:\program files\common files\nokia\service layer\a\nsl_host_process.exe" = protocol=17 | dir=in | app=c:\program files\common files\nokia\service layer\a\nsl_host_process.exe | "UDP Query User{AD469F8D-1AF5-4429-B412-70EE39DD55F3}C:\users\michał\appdata\local\temp\iqil.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\iqil.exe | "UDP Query User{AE43015E-45E8-410C-A952-FEB1FE1EF4B7}C:\users\michał\appdata\local\temp\xgbmw.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\xgbmw.exe | "UDP Query User{B007086B-F2B7-4BB2-8AC1-A39C96D25D43}C:\users\michał\appdata\local\temp\dviku.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\dviku.exe | "UDP Query User{B352AA3D-4A8F-431E-B399-1A4CF8AF56D4}C:\users\michał\appdata\local\temp\eunkq.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\eunkq.exe | "UDP Query User{B3786435-683C-4B5E-9392-6713C4798CA4}C:\users\michał\appdata\local\temp\mebc.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\mebc.exe | "UDP Query User{B46E770F-0AA9-4C3F-B1B8-0266461E96A7}G:\programy\alcohol 120\axcmd.bin" = protocol=17 | dir=in | app=g:\programy\alcohol 120\axcmd.bin | "UDP Query User{B7657589-0F5F-4C6F-A22A-B70D58D90D83}C:\users\michał\appdata\local\temp\gclxuk.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\gclxuk.exe | "UDP Query User{B7B5E48C-7E88-47F7-A6AC-CF80B9FDBC1E}G:\gry\tropico\tropico 3\uninst.exe" = protocol=17 | dir=in | app=g:\gry\tropico\tropico 3\uninst.exe | "UDP Query User{B8845DF7-9ABD-4551-B3CB-64A0779A0D62}C:\program files\synaptics\syntp\syntpstart.exe" = protocol=17 | dir=in | app=c:\program files\synaptics\syntp\syntpstart.exe | "UDP Query User{B93A1E00-CCB6-4F72-939A-6B466E675900}C:\users\michał\appdata\local\temp\windmhgqb.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\windmhgqb.exe | "UDP Query User{BA076FD9-7D7A-4185-8A9C-C3912783F360}C:\users\michał\appdata\local\temp\winddgty.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winddgty.exe | "UDP Query User{BA242668-A248-4B62-812D-F03BCC1CD71E}C:\program files\winamp remote\bin\orbtray.exe" = protocol=17 | dir=in | app=c:\program files\winamp remote\bin\orbtray.exe | "UDP Query User{BA925A52-BA30-4DD4-A525-E395BD648B02}G:\programy\opera\program\plugins\npswf32_flashutil.exe" = protocol=17 | dir=in | app=g:\programy\opera\program\plugins\npswf32_flashutil.exe | "UDP Query User{BAB00898-03FC-40A8-A431-5B6E943DFD41}C:\users\michał\appdata\local\temp\winkusyyn.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winkusyyn.exe | "UDP Query User{BB1B98AD-B249-4038-8FFC-65BA184CD334}C:\users\michał\appdata\local\temp\ebjj.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\ebjj.exe | "UDP Query User{BB468622-61F9-4BAC-AEBA-D984FBA8C640}G:\gry\worldofgoo\worldofgoo.exe" = protocol=17 | dir=in | app=g:\gry\worldofgoo\worldofgoo.exe | "UDP Query User{BC0C9E76-B649-485E-8868-F961A3B6E2FE}C:\users\michał\appdata\local\temp\naxg.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\naxg.exe | "UDP Query User{BC193B83-7595-46E0-B714-B234C9C83A68}C:\users\michał\appdata\local\temp\winmdwyt.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winmdwyt.exe | "UDP Query User{BCCCD758-DE51-4C03-8D5D-53C73858035C}C:\users\michał\appdata\local\temp\wincohq.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\wincohq.exe | "UDP Query User{BDA2184A-4361-43DA-AAB2-955111E22F89}C:\users\michał\appdata\local\temp\winvwyxaa.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winvwyxaa.exe | "UDP Query User{BE7B2D4D-82FD-496E-B8BE-A9F3A043E21A}C:\users\michał\appdata\local\temp\dqetv.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\dqetv.exe | "UDP Query User{C0C32F9F-218C-449C-B887-EF6C38B0F390}C:\users\michał\appdata\local\temp\winltejq.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winltejq.exe | "UDP Query User{C0D55E50-A534-43C9-8725-B09319DAA26E}C:\program files\bioscrypt\verisoft\bin\asghost.exe" = protocol=17 | dir=in | app=c:\program files\bioscrypt\verisoft\bin\asghost.exe | "UDP Query User{C14B6908-384B-4685-85A9-706B1062E2F4}C:\users\michał\appdata\local\temp\wkhr.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\wkhr.exe | "UDP Query User{C313B12C-A392-45BA-91AE-0A1D57C61A99}C:\program files\internet explorer\iexplore.exe" = protocol=17 | dir=in | app=c:\program files\internet explorer\iexplore.exe | "UDP Query User{C31D9C4F-9007-4C26-BD1E-D55673A47F0C}C:\users\michał\appdata\local\temp\winemnbmh.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winemnbmh.exe | "UDP Query User{C3D661F8-636B-46C1-80D5-632B7EEC0A6B}C:\windows\ehome\ehtray.exe" = protocol=17 | dir=in | app=c:\windows\ehome\ehtray.exe | "UDP Query User{C445425A-7057-403A-8E55-A7C336BF7D79}C:\users\michał\appdata\local\temp\winblouy.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winblouy.exe | "UDP Query User{C7D66BAF-0D7C-4741-B0C9-8CA80FB5BEE6}C:\users\michał\appdata\local\temp\rbon.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\rbon.exe | "UDP Query User{C9D9C9F8-3AF2-4966-B3BA-374EB8C35202}C:\users\michał\appdata\local\temp\windrjtc.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\windrjtc.exe | "UDP Query User{CB23964C-4C03-48F1-B053-23D14009B4F4}C:\users\michał\desktop\nestopia\nestopia.exe" = protocol=17 | dir=in | app=c:\users\michał\desktop\nestopia\nestopia.exe | "UDP Query User{CBD62A3A-683A-4339-81EB-66BAE489AD48}C:\windows\system32\conime.exe" = protocol=17 | dir=in | app=c:\windows\system32\conime.exe | "UDP Query User{CC04593E-7BBA-45A8-BD02-4C52B4703F03}C:\users\michał\appdata\local\temp\nqblve.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\nqblve.exe | "UDP Query User{CC69D788-DF9E-4F6F-8961-9AB40DA3C6BF}C:\users\michał\appdata\local\temp\winojabe.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winojabe.exe | "UDP Query User{CD2F693E-48B3-4A61-A063-AA7FB8B1F91F}C:\users\michał\appdata\local\temp\winsupp.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winsupp.exe | "UDP Query User{D063F46A-76D1-43AB-BB9B-59CC35A16D15}C:\program files\amd\dual-core optimizer\amd_dc_opt.exe" = protocol=17 | dir=in | app=c:\program files\amd\dual-core optimizer\amd_dc_opt.exe | "UDP Query User{D19B7393-F7FE-4799-AA18-3010867CCBBB}C:\program files\nokia\nokia software updater\nsu_ui_client.exe" = protocol=17 | dir=in | app=c:\program files\nokia\nokia software updater\nsu_ui_client.exe | "UDP Query User{D1B04553-B185-46CB-8700-D8943FE788CB}C:\users\michał\appdata\local\temp\futhf.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\futhf.exe | "UDP Query User{D4522912-5DFE-4AAC-98F1-D7BB141B6E52}C:\program files\bioscrypt\verisoft\bin\aspanel.exe" = protocol=17 | dir=in | app=c:\program files\bioscrypt\verisoft\bin\aspanel.exe | "UDP Query User{D4B6D534-39DE-4AB5-AB79-7C51A34F4E6E}C:\windows\ehome\ehmsas.exe" = protocol=17 | dir=in | app=c:\windows\ehome\ehmsas.exe | "UDP Query User{D604A1D3-49CC-43E1-ADFE-8F8C16AD9D14}G:\programy\ppmate\ppamnet.exe" = protocol=17 | dir=in | app=g:\programy\ppmate\ppamnet.exe | "UDP Query User{D662DC8F-C4B4-4761-A8C7-E3FC8466DE7C}C:\program files\java\jre6\bin\jusched.exe" = protocol=17 | dir=in | app=c:\program files\java\jre6\bin\jusched.exe | "UDP Query User{D7D89629-3365-4E63-8973-79CF42726C77}C:\users\michał\appdata\local\temp\bdfvb.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\bdfvb.exe | "UDP Query User{D839B1DA-BBD6-47A1-A264-BACC2E1826AE}C:\program files\windows defender\msascui.exe" = protocol=17 | dir=in | app=c:\program files\windows defender\msascui.exe | "UDP Query User{D8AB478D-FB9A-4989-A736-F806941DD79E}C:\program files\common files\nokia\service layer\a\nsl_host_process.exe" = protocol=17 | dir=in | app=c:\program files\common files\nokia\service layer\a\nsl_host_process.exe | "UDP Query User{DB9D2F4B-F4CE-49DF-AE47-784CDC414391}C:\users\michał\appdata\local\temp\winmdmwa.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winmdmwa.exe | "UDP Query User{DCAB9647-6F52-4B76-9AD9-1778F755C592}G:\programy\evillyrics\evillyrics.exe" = protocol=17 | dir=in | app=g:\programy\evillyrics\evillyrics.exe | "UDP Query User{DDEFCFA4-0D86-47C4-9BB6-219A310F860C}C:\users\michał\appdata\local\temp\winispl.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winispl.exe | "UDP Query User{E355403E-84F2-45E4-8BB4-2992F7FFEFFC}C:\program files\electronic arts\eadm\core.exe" = protocol=17 | dir=in | app=c:\program files\electronic arts\eadm\core.exe | "UDP Query User{E4E7926B-C619-4013-A248-4FCFCD85D64B}C:\users\michał\appdata\local\temp\winemuxgx.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winemuxgx.exe | "UDP Query User{E53324A5-15A6-492C-A59B-F57927E5015F}G:\gry\trine\trine\trine_launcher.exe" = protocol=17 | dir=in | app=g:\gry\trine\trine\trine_launcher.exe | "UDP Query User{E5F96F0E-F765-4E55-8D68-F53E94D481A8}C:\program files\google\googletoolbarnotifier\googletoolbarnotifier.exe" = protocol=17 | dir=in | app=c:\program files\google\googletoolbarnotifier\googletoolbarnotifier.exe | "UDP Query User{E7AEE263-7D7C-4A07-B394-28F01618B8CC}C:\users\michał\appdata\local\temp\winiubga.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winiubga.exe | "UDP Query User{E8090EA7-E1F3-4304-9F57-6777E5DA50B9}C:\users\michał\appdata\local\temp\winwerk.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winwerk.exe | "UDP Query User{E819B643-7900-4F21-BF0E-3801C7B0D851}C:\users\michał\appdata\local\temp\winheurl.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winheurl.exe | "UDP Query User{E9ABB358-EC03-40B5-87BC-EE55CD2555AE}G:\programy\tvants\tvants.exe" = protocol=17 | dir=in | app=g:\programy\tvants\tvants.exe | "UDP Query User{EA0548E3-2AAC-4740-8DBD-7230FC0E0FF4}C:\windows\system32\userinit.exe" = protocol=17 | dir=in | app=c:\windows\system32\userinit.exe | "UDP Query User{EA1D048F-C52C-4CFD-B999-5F78E7245EE5}G:\programy\dc++\dcplusplus.exe" = protocol=17 | dir=in | app=g:\programy\dc++\dcplusplus.exe | "UDP Query User{EA6DAD51-893F-4975-9807-42C40E554B77}C:\users\michał\appdata\local\temp\wincufca.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\wincufca.exe | "UDP Query User{EA8B6B09-79E4-4E2E-987A-BED3075A22DC}C:\users\michał\appdata\local\temp\kmsdi.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\kmsdi.exe | "UDP Query User{EB053E7D-4E1B-494C-9B0F-EA8EA67D8EAE}G:\programy\bearshare2\bearshare.exe" = protocol=17 | dir=in | app=g:\programy\bearshare2\bearshare.exe | "UDP Query User{EB05412E-E515-4A1D-881F-117BC077292E}C:\users\michał\appdata\local\temp\winbvslsq.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winbvslsq.exe | "UDP Query User{EB80A093-14FA-40A9-8265-63BEA45CB8EE}C:\program files\codemasters\dirt\dirt.exe" = protocol=17 | dir=in | app=c:\program files\codemasters\dirt\dirt.exe | "UDP Query User{EC166A2F-0AE8-4686-8492-3331780136B2}C:\users\michał\appdata\local\temp\winmefp.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winmefp.exe | "UDP Query User{ED39E34E-FE19-45F5-AC3A-019EC443065D}C:\program files\skype\phone\skype.exe" = protocol=17 | dir=in | app=c:\program files\skype\phone\skype.exe | "UDP Query User{EF9377A6-CE86-46F8-AD38-EE2D2A64C921}G:\programy\gadu-gadu\gg.exe" = protocol=17 | dir=in | app=g:\programy\gadu-gadu\gg.exe | "UDP Query User{F1594AD9-11E5-42CA-B3C3-C57121A6B501}C:\program files\widcomm\bluetooth software\bttray.exe" = protocol=17 | dir=in | app=c:\program files\widcomm\bluetooth software\bttray.exe | "UDP Query User{F1DCC08A-02A8-4AAB-B01F-A691F5D75AAD}C:\users\michał\appdata\local\temp\wingakj.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\wingakj.exe | "UDP Query User{F26B89E8-87AE-4513-B067-89DD4D2E4CF5}C:\users\michał\appdata\local\temp\winikjy.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winikjy.exe | "UDP Query User{F283A0CE-5249-4EFC-AA65-62BAAC9A1962}C:\users\michał\appdata\local\temp\slthpy.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\slthpy.exe | "UDP Query User{F399BBF0-2B66-4C78-AC79-D9F84BC628B2}C:\users\michał\appdata\local\temp\windhgucp.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\windhgucp.exe | "UDP Query User{F3FA2967-9FC4-4695-A65F-87F1473755B4}C:\users\michał\appdata\local\temp\gvjj.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\gvjj.exe | "UDP Query User{F604E959-803E-468D-828E-BFB1DB64E668}C:\gry\pes2009\pes2009.exe" = protocol=17 | dir=in | app=c:\gry\pes2009\pes2009.exe | "UDP Query User{F69CAE72-9326-4C10-8817-734A16061AB4}G:\programy\opera\opera.exe" = protocol=17 | dir=in | app=g:\programy\opera\opera.exe | "UDP Query User{F97A14AE-355F-4CFF-8561-41C8C5FBA95A}C:\users\michał\appdata\local\temp\ucrnd.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\ucrnd.exe | "UDP Query User{F9A4713E-1EDD-4162-A1C7-F10E6C2EB2E9}C:\windows\ehome\ehtray.exe" = protocol=17 | dir=in | app=c:\windows\ehome\ehtray.exe | "UDP Query User{F9B513C3-1748-422F-BA5C-D5AFE362164A}G:\programy\sopcast\adv\sopadver.exe" = protocol=17 | dir=in | app=g:\programy\sopcast\adv\sopadver.exe | "UDP Query User{F9F6967B-93DF-479E-852B-2651DB5C7CB9}C:\users\michał\appdata\local\temp\wincckm.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\wincckm.exe | "UDP Query User{FA417F78-2261-4597-AF00-30C21887B5B2}C:\users\michał\appdata\local\temp\mviqpq.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\mviqpq.exe | "UDP Query User{FAF91F4E-4C52-4465-BDA8-9D2A6BEF3869}C:\users\michał\appdata\local\temp\jwbft.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\jwbft.exe | "UDP Query User{FC32BEE4-276E-410F-915C-FBF1031C8D63}C:\users\michał\appdata\local\temp\winopeke.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winopeke.exe | "UDP Query User{FC6C19B9-67BA-48F0-947E-00EBA2B576BC}C:\users\michał\appdata\local\temp\hucb.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\hucb.exe | "UDP Query User{FC9FE2AD-A7AB-4E1B-B963-BEBDF94A4426}C:\users\michał\appdata\local\temp\lqefqu.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\lqefqu.exe | "UDP Query User{FD444C46-EE86-4ECC-90D9-EC8AEFA21027}C:\windows\system32\dllhost.exe" = protocol=17 | dir=in | app=c:\windows\system32\dllhost.exe | "UDP Query User{FE2BE954-E87E-45D4-B4E6-8FEC9DE6095C}C:\users\michał\appdata\local\temp\winernyng.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winernyng.exe | "UDP Query User{FE37EA33-F2C9-4B3A-9398-908547DC677E}C:\users\michał\appdata\local\temp\tssiw.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\tssiw.exe | "UDP Query User{FEB19534-696E-470F-A2FA-AC00EEFCA562}C:\users\michał\appdata\local\temp\winvrdma.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winvrdma.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{0394CDC8-FABD-4ed8-B104-03393876DFDF}" = Roxio Creator Tools "{03D1988F-469F-4843-8E6E-E5FE9D17889D}" = HP Integrated Module with Bluetooth wireless technology 6.0.1.4900 "{082702D5-5DD8-4600-BCE5-48B15174687F}" = HP Doc Viewer "{0840B4D6-7DD1-4187-8523-E6FC0007EFB7}" = Asystent rejestrowania za pomocą identyfikatora Windows Live "{09F25F86-F957-4051-8AB2-0E0D948BBB5D}" = 1310 "{0ABA40AF-288D-41F1-B735-C5155692CD7D}" = VeriSoft Access Manager "{0C973594-7DDF-4BD0-84ED-3517F7622037}" = PC Connectivity Solution "{0CFD3BAF-9F4D-4D70-BD0B-638EA2504C25}" = PSSWCORE "{0D2E9DCB-9938-475E-B4DD-8851738852FF}" = AIO_Scan "{0D397393-9B50-4c52-84D5-77E344289F87}" = Roxio Creator Data "{0E7DBD52-B097-4F2B-A7C7-F105B0D20FDB}" = LightScribe System Software 1.14.17.1 "{11F93B4B-48F0-4A4E-AE77-DFA96A99664B}" = Roxio Creator EasyArchive "{1746EA69-DCB6-4408-B5A5-E75F55439CDF}" = Scan "{179C56A4-F57F-4561-8BBF-F911D26EB435}" = WebReg "{18455581-E099-4BA8-BC6B-F34B2F06600C}" = Google Toolbar for Internet Explorer "{1B9B5B3B-28E7-4E59-A80D-D670AA984514}" = Nokia Connectivity Cable Driver "{1C338B34-1BFB-4BAD-B4A3-7B71A2E221F6}" = GameTap Web Player "{1D2C96C3-A3F3-49E7-B839-95279DED837F}" = Opera 10.60 "{205C6BDD-7B73-42DE-8505-9A093F35A238}" = Narzędzie do przekazywania usługi Windows Live "{212748BB-0DA5-46DE-82A1-403736DC9F27}" = MSVC80_x86 "{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}" = MSVCRT "{2318C2B1-4965-11d4-9B18-009027A5CD4F}" = Google Toolbar for Internet Explorer "{254C37AA-6B72-4300-84F6-98A82419187E}" = Hewlett-Packard Active Check "{26A24AE4-039D-4CA4-87B4-2F83216010FF}" = Java(TM) 6 Update 17 "{290B83AA-093A-45BF-A917-D1C4A1E8D917}" = HP Active Support Library "{2ADE2157-7A5E-122C-B51D-EB8A01B15943}" = DeepBurner v1.9.0.228 "{2E522ED6-01E2-4207-82D5-B3BFB31B8BD4}" = Windows Live Sync "{3248F0A8-6813-11D6-A77B-00B0D0160000}" = Java(TM) SE Runtime Environment 6 "{3248F0A8-6813-11D6-A77B-00B0D0160050}" = Java(TM) 6 Update 5 "{3248F0A8-6813-11D6-A77B-00B0D0160070}" = Java(TM) 6 Update 7 "{33C65B6A-5D73-4E3E-A1F9-127C27BD3F72}" = Roxio MyDVD Basic v9 "{34D2AB40-150D-475D-AE32-BD23FB5EE355}" = HP Quick Launch Buttons 6.40 H2 "{35E1EC43-D4FC-4E4A-AAB3-20DDA27E8BB0}" = Roxio Activation Module "{3921A67A-5AB1-4E48-9444-C71814CF3027}" = VCRedistSetup "{39930321-4C58-4B8B-BCBF-342698C9801D}" = Max Payne "{3F732D97-7E10-4FC4-854B-8C95030BA89F}" = Polski (Akcent) "{40F7AED3-0C7D-4582-99F6-484A515C73F2}" = HP Easy Setup - Frontend "{43602F34-1AA3-44FB-AEB2-D08C2C73743F}" = Paint.NET v3.36 "{45D707E9-F3C4-11D9-A373-0050BAE317E1}" = HP QuickPlay 3.2 "{49F2B650-2D7B-4F59-B33D-346F63776BD3}" = DocProc "{4CBA3D4C-8F51-4D60-B27E-F6B641C571E7}" = Microsoft Search Enhancement Pack "{4CD2F5E3-4CDA-4F18-934A-5DD4F23CFEC9}" = ESU for Microsoft Vista "{4D78E819-D633-43AF-A594-A7645E53EC3C}" = MSCU for Microsoft Vista "{541DEAC0-5F3D-45E6-B7CB-94ECF3B96748}" = Skype web features "{54CC7901-804D-4155-B353-21F0CC9112AB}" = HP Wireless Assistant "{55495E65-7C5B-48E4-BC7D-DE54F3DE5ED6}" = Nokia PC Suite "{56C049BE-79E9-4502-BEA7-9754A3E60F9B}" = neroxml "{5AE3D9F1-9E9E-4015-8787-E22705AA32C5}" = msxml4 "{6053FE9B-5473-41D6-AEBF-AD6F98138191}" = Windows Live Movie Maker "{619CDD8A-14B6-43a1-AB6C-0F4EE48CE048}" = Roxio Creator Copy "{6663554C-2FC7-4CDC-809D-1BCD59189853}_is1" = Trine "{6675CA7F-E51B-4F6A-99D4-F8F0124C6EAA}" = Roxio Express Labeler 3 "{669D4A35-146B-4314-89F1-1AC3D7B88367}" = Hewlett-Packard Asset Agent "{66E6CE0C-5A1E-430C-B40A-0C90FF1804A8}" = eSupportQFolder "{66ED8E01-C915-41F5-B33E-C5C31F27B885}" = USB Network Driver "{67D3F1A0-A1F2-49b7-B9EE-011277B170CD}" = HPProductAssistant "{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}" = Windows Media Player Firefox Plugin "{6C9FA746-8759-4040-A436-42922CB3492E}" = VistaBootPRO 3.3 "{6D3245B1-8DB8-4A23-9CD2-2C90F40ABAF6}" = MSVC80_x86_v2 "{6D4553DF-2095-4D10-92C0-17934733B51D}" = 1310_Help "{6D7E031C-4C05-4265-854A-FE9FDEA9984D}" = 1310Trb "{6F5E2F4A-377D-4700-B0E3-8F7F7507EA15}" = CustomerResearchQFolder "{7059BDA7-E1DB-442C-B7A1-6144596720A4}" = HP Update "{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable "{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 "{7A7DC702-DEDE-42A8-8722-B3BA724D546F}" = Fax "{7B738CD9-D107-48C7-8E65-2E6639A39C8D}" = PerfectDisk 10 Professional "{83FFCFC7-88C6-41c6-8752-958A45325C82}" = Roxio Creator Audio "{87E2B986-07E8-477a-93DC-AF0B6758B192}" = DocProcQFolder "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{8CEA85DE-955B-4BF4-87F2-0BAA62821633}" = HP Photosmart Essential2.5 "{8D273DE5-ABFA-4BD0-A9D7-EE9C971438C4}_is1" = PDF-Viewer "{8FB1B528-E260-451E-9B55-E9152F94B80B}" = Microsoft Games for Windows - LIVE Redistributable "{90120000-0015-0415-0000-0000000FF1CE}" = Microsoft Office Access MUI (Polish) 2007 "{90120000-0015-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-0016-0415-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Polish) 2007 "{90120000-0016-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-0018-0415-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Polish) 2007 "{90120000-0018-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-0019-0415-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Polish) 2007 "{90120000-0019-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-001A-0415-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Polish) 2007 "{90120000-001A-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-001B-0415-0000-0000000FF1CE}" = Microsoft Office Word MUI (Polish) 2007 "{90120000-001B-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007 "{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007 "{90120000-001F-0415-0000-0000000FF1CE}" = Microsoft Office Proof (Polish) 2007 "{90120000-002C-0415-0000-0000000FF1CE}" = Microsoft Office Proofing (Polish) 2007 "{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007 "{90120000-0044-0415-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Polish) 2007 "{90120000-0044-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-006E-0415-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Polish) 2007 "{90120000-006E-0415-0000-0000000FF1CE}_ENTERPRISE_{D45F91DE-F0FC-4D5F-9A0C-FDE5B251AAC6}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-00A1-0415-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Polish) 2007 "{90120000-00A1-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-00BA-0415-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Polish) 2007 "{90120000-00BA-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2) "{9061CEF2-51F5-42C9-8A70-9ED351C6597A}" = HP Help and Support "{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting "{95D08F4E-DFC2-4ce3-ACB7-8C8E206217E9}" = MarketResearch "{978C25EE-5777-46e4-8988-732C297CBDBD}" = Status "{980A182F-E0A2-4A40-94C1-AE0C1235902E}" = Pando Media Booster "{9862473C-E063-4C68-A161-2CDE0E8048A5}" = Podstawowe programy Windows Live "{9AB614A6-719C-4A6E-A63E-831E0A35F62A}" = Windows Live Writer "{9B1FD9CE-0776-4f0b-A6F5-C6AB7B650CDF}" = Destinations "{9CDEAEC9-2F14-4D39-8541-C1EEC4B5D1CB}" = Galeria fotografii usługi Windows Live "{9EFDFBA8-9174-3C61-8645-28376C5CA994}" = Microsoft .NET Framework 3.5 Language Pack SP1 - plk "{9FD6F1A8-5550-46AF-8509-271DF0E768B5}" = Dual-Core Optimizer "{A36CD345-625C-4d6c-B3E2-76E1248CB451}" = SolutionCenter "{A3B7C670-4A1E-4EE2-950E-C875BC1965D0}" = Copy "{A49F249F-0C91-497F-86DF-B2585E8E76B7}" = Microsoft Visual C++ 2005 Redistributable "{A7388312-4FBB-48E5-8DC0-B63DA02658AE}" = Windows Live Toolbar "{A8F2089B-1F79-4BF6-B385-A2C2B0B9A74D}" = ImagXpress "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{AB5D51AE-EBC3-438D-872C-705C7C2084B0}" = DeviceManagementQFolder "{AB5E289E-76BF-4251-9F3F-9B763F681AE0}" = HP Customer Experience Enhancements "{AC76BA86-7AD7-1033-7B44-A81300000003}" = Adobe Reader 8.1.4 "{B61B6668-A674-4A06-8405-51944D5CCDDD}" = AuthenTec Fingerprint Sensor Minimum Install "{BD64AF4A-8C80-4152-AD77-FCDDF05208AB}" = Microsoft Sync Framework Services Native v1.0 (x86) "{BE77A81F-B315-4666-9BF3-AE70C0ADB057}" = BufferChm "{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}" = The Sims™ 3 "{C084BC61-E537-11DE-8616-005056806466}" = Google Earth "{C35FE07E-24B5-410F-85B7-122087A0C7DD}" = Poczta usługi Windows Live "{C5C1C0F0-D62F-4DBF-81D4-D7EF397C228B}" = NVIDIA PhysX "{C6B7E731-A9E1-4AEC-A1E7-2E63646647FE}" = Prince of Persia Warrior Within (Demo) "{C716522C-3731-4667-8579-40B098294500}" = Toolbox "{C8B0680B-CDAE-4809-9F91-387B6DE00F7C}" = Roxio Creator Basic v9 "{C916D86C-AB76-49c7-B0E4-A946E0FD9BC2}" = HP Photosmart, Officejet, PSC and Deskjet All-In-One Driver Software 8.0.B "{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1 "{D103C4BA-F905-437A-8049-DB24763BBE36}" = Skype™ 4.1 "{D1803CD4-0CE7-4484-98E3-88D7A2D629A4}" = Windows Live Messenger "{D642E38E-0D24-486C-9A2D-E316DD696F4B}" = Microsoft XML Parser "{DDFD9BA2-8E26-4E49-92AE-882424DAB1BC}" = HP User Guides 0057 "{E06F04B9-45E6-4AC0-8083-85F7515F40F7}" = UnloadSupport "{E09575B2-498D-4C8B-A9D2-623F78574F29}" = AIO_CDB_Software "{E2DFE069-083E-4631-9B6C-43C48E991DE5}" = Junk Mail filter update "{E3E71D07-CD27-46CB-8448-16D4FB29AA13}" = Microsoft WSE 3.0 Runtime "{E7112940-5F8E-4918-B9FE-251F2F8DC81F}" = AIO_CDB_ProductContext "{E9AD90C1-6281-45AB-9458-098D2EF770A1}" = Microsoft Works "{EB21A812-671B-4D08-B974-2A347F0D8F70}" = HP Photosmart Essential "{EB75DE50-5754-4F6F-875D-126EDF8E4CB3}" = HPSSupply "{ECEE0279-785F-4CB3-9F28-E69813234BF8}" = SPORE™ Fabryka stworów, wersja próbna "{ED00D08A-3C5F-488D-93A0-A04F21F23956}" = Windows Live Communications Platform "{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU] "{F0E12BBA-AD66-4022-A453-A1C8A0C4D570}" = Microsoft Choice Guard "{F1E63043-54FC-429B-AB2C-31AF9FBA4BC7}" = 32 Bit HP CIO Components Installer "{F40BBEC7-C2A4-4A00-9B24-7A055A2C5262}" = Microsoft Office Live Add-in 1.5 "{F88335A8-CA7B-41DE-B37D-81306C73B507}" = Bezpieczeństwo rodzinne usługi Windows Live "{F97E3841-CA9D-4964-9D64-26066241D26F}" = Microsoft Games for Windows - LIVE "{F983B4FE-547B-4C44-BAF7-4F4DBA93D548}" = Nokia Software Updater "{FAB0C302-CB18-4A7A-BA03-C3DC23101A68}" = HP Active Support Library 32 bit components "{FF075778-6E50-47ed-991D-3B07FD4E3250}" = TrayApp "504244733D18C8F63FF584AEB290E3904E791693" = Pakiet sterowników systemu Windows - Nokia pccsmcfd (08/22/2008 7.0.0.0) "6A630DCEC5EEC912115F2FF59D8C2C769798D930" = Pakiet sterowników systemu Windows - Nokia Modem (10/12/2007 3.6) "7-Zip" = 7-Zip 4.65 "819D45A9F73817F5B6D7C71A33ADAB88C5DA1765" = Pakiet sterowników systemu Windows - Nokia Modem (08/03/2007 6.84.0.2) "Ad-Aware SE Personal" = Ad-Aware SE Personal "Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin "Adobe Shockwave Player" = Adobe Shockwave Player 11.5 "Ashampoo Burning Studio 2010_is1" = Ashampoo Burning Studio 2010 "a-squared Free_is1" = a-squared Free 4.5 "BitComet FLV Converter" = BitComet FLV Converter 1.0 "CBF192A85B624E32B8D19ADEEF2DCFC5BC3AA73A" = Pakiet sterowników systemu Windows - Nokia Modem (03/05/2008 3.7) "CDisplay_is1" = CDisplay 1.8 "CNXT_AUDIO_HDA" = Conexant HD Audio "CNXT_MODEM_HDA_HSF" = HDAUDIO Soft Data Fax Modem with SmartCP "DC++" = DC++ 0.705 "Download Accelerator Plus (DAP)" = Download Accelerator Plus (DAP) "E092B2EBF2FFE83E896F8F7F829A7B5D7D1B2F9D" = Pakiet sterowników systemu Windows - Nokia Modem (03/13/2008 6.86.0.1) "E8A6D621B6D3FC5D43C68C549D959DE76EEF5D84" = Pakiet sterowników systemu Windows - Nokia Modem (06/01/2009 4.1) "EADM" = EA Download Manager "EASEUS Partition Master Home Edition_is1" = EASEUS Partition Master 4.1.1 Home Edition "ENTERPRISE" = Microsoft Office Enterprise 2007 "EVEREST Ultimate + Corporate Edition_is1" = EVEREST Ultimate v4.20.1257 + Corporate Edition Beta Registered "EvilLyrics" = EvilLyrics "F779F5541ABD99C95C03B0FD5E3C058B22DA0FF7" = Pakiet sterowników systemu Windows - Nokia Modem (06/01/2009 7.01.0.3) "Gadu-Gadu" = Gadu-Gadu 7.7 "GameDesire-Pool & Snooker" = GameDesire-Pool & Snooker "Google Updater" = Aktualizator Google "GTA2" = GTA2 "Guitar Pro 5_is1" = Guitar Pro 5.2 "HijackThis" = HijackThis 2.0.2 "HP Imaging Device Functions" = HP Imaging Device Functions 8.0 "HP Photosmart Essential" = HP Photosmart Essential 2.0 "HP Solution Center & Imaging Support Tools" = HP Solution Center 8.0 "HPExtendedCapabilities" = HP Customer Participation Program 8.0 "HPOCR" = HP OCR Software 8.0 "IrfanView" = IrfanView (remove only) "JAP" = JAP "KLiteCodecPack_is1" = K-Lite Codec Pack 3.8.0 Full "LogonStudio Vista" = LogonStudio Vista "Machinarium" = Machinarium "Magic ISO Maker v5.5 (build 0281)" = Magic ISO Maker v5.5 (build 0281) "MagicDisc 2.7.106" = MagicDisc 2.7.106 "Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware "MediaMonkey_is1" = MediaMonkey 3.1 "Microsoft .NET Framework 3.5 Language Pack SP1 - plk" = Pakiet językowy programu Microsoft .NET Framework 3.5 z dodatkiem SP1 — PLK "Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1 "Monopoly by Parker Brothers" = Monopoly by Parker Brothers "NAPIPROJEKT_is1" = NAPIPROJEKT 1.0.6.2 "Nokia PC Suite" = Nokia PC Suite "NVIDIA Display Control Panel" = NVIDIA Display Control Panel "NVIDIA Drivers" = NVIDIA Drivers "OpenAL" = OpenAL "Paseczek_is1" = Paseczek 1.1.0.365 "PGP" = PGP 8.0.2 "RealAlt_is1" = Real Alternative 1.7.5 "SkanerOnline" = Skaner on-line mks_vir "SmartAudio" = SmartAudio "SMPlayer" = SMPlayer 0.6.8 "Snarfer" = Snarfer "SopCast" = SopCast 3.2.9 "StarCraft II Beta" = StarCraft II Beta "SynTPDeinstKey" = Synaptics Pointing Device Driver "SystemRequirementsLab" = System Requirements Lab "The KMPlayer" = The KMPlayer (remove only) "TVAnts 1.0" = TVAnts 1.0 "Underground Fighting_is1" = Underground Fighting "UnityWebPlayer" = Unity Web Player "VLC media player" = VideoLAN VLC media player 0.8.6e "Wielki słownik polsko-angielski i angielsko-polski PWN-OXFORD" = Wielki słownik polsko-angielski i angielsko-polski PWN-OXFORD "Winamp" = Winamp "WinLiveSuite_Wave3" = Podstawowe programy Windows Live "WinRAR archiver" = Archiwizator WinRAR "WinZip" = WinZip "World of Warcraft" = World of Warcraft "Xfire" = Xfire (remove only) [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-3022643457-1393697231-3139819596-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "BankBrowser" = BankBrowser "Hex Online" = Hex Online "Octoshape add-in for Adobe Flash Player" = Octoshape add-in for Adobe Flash Player "uTorrent" = µTorrent [color=#E56717]========== Last 10 Event Log Errors ==========[/color] [ Application Events ] Error - 2009-04-27 13:25:15 | Computer Name = Michał-PC | Source = Application Error | ID = 1000 Description = Aplikacja powodująca błąd braid.exe, wersja 0.0.0.0, sygnatura czasowa 0x49dcf764, moduł powodujący błąd d3dx9_39.dll, wersja 6.0.6001.18000, sygnatura czasowa 0x4791a7a6, kod wyjątku 0xc0000135, przesunięcie błędu 0x00009cac, identyfikator procesu 0x32c, godzina rozpoczęcia aplikacji 0x01c9c75d1ff1e088. Error - 2009-04-27 13:43:55 | Computer Name = Michał-PC | Source = Application Error | ID = 1000 Description = Aplikacja powodująca błąd braid.exe, wersja 0.0.0.0, sygnatura czasowa 0x49dcf764, moduł powodujący błąd d3dx9_39.dll, wersja 6.0.6001.18000, sygnatura czasowa 0x4791a7a6, kod wyjątku 0xc0000135, przesunięcie błędu 0x00009cac, identyfikator procesu 0x1100, godzina rozpoczęcia aplikacji 0x01c9c75fb57c6e28. Error - 2009-04-27 13:44:13 | Computer Name = Michał-PC | Source = Application Error | ID = 1000 Description = Aplikacja powodująca błąd braid.exe, wersja 0.0.0.0, sygnatura czasowa 0x49dcf764, moduł powodujący błąd d3dx9_39.dll, wersja 6.0.6001.18000, sygnatura czasowa 0x4791a7a6, kod wyjątku 0xc0000135, przesunięcie błędu 0x00009cac, identyfikator procesu 0x159c, godzina rozpoczęcia aplikacji 0x01c9c75fc3243038. Error - 2009-04-27 14:03:53 | Computer Name = Michał-PC | Source = VSS | ID = 8194 Description = Error - 2009-04-27 14:04:39 | Computer Name = Michał-PC | Source = System Restore | ID = 8193 Description = Error - 2009-04-28 01:43:38 | Computer Name = Michał-PC | Source = Application Error | ID = 1000 Description = Aplikacja powodująca błąd opera.exe, wersja 9.63.10476.0, sygnatura czasowa 0x4940357c, moduł powodujący błąd Opera.dll, wersja 9.63.10476.0, sygnatura czasowa 0x49403590, kod wyjątku 0xc0000005, przesunięcie błędu 0x0031149c, identyfikator procesu 0xd54, godzina rozpoczęcia aplikacji 0x01c9c7c09deb2e9f. Error - 2009-04-28 11:42:05 | Computer Name = Michał-PC | Source = Application Error | ID = 1000 Description = Aplikacja powodująca błąd KMPlayer.exe, wersja 2.9.3.1430, sygnatura czasowa 0x2a425e19, moduł powodujący błąd ntdll.dll, wersja 6.0.6001.18000, sygnatura czasowa 0x4791a7a6, kod wyjątku 0xc0000005, przesunięcie błędu 0x0006a786, identyfikator procesu 0x1338, godzina rozpoczęcia aplikacji 0x01c9c806ce8ed60b. Error - 2009-05-04 10:18:34 | Computer Name = Michał-PC | Source = Application Error | ID = 1000 Description = Aplikacja powodująca błąd Opera.exe, wersja 10.0.1355.0, sygnatura czasowa 0x49b9315a, moduł powodujący błąd Opera.dll, wersja 10.0.1355.0, sygnatura czasowa 0x49b931d7, kod wyjątku 0xc0000005, przesunięcie błędu 0x005b03c4, identyfikator procesu 0xa94, godzina rozpoczęcia aplikacji 0x01c9ccb646e707f8. Error - 2009-05-05 14:48:01 | Computer Name = Michał-PC | Source = Google Update | ID = 20 Description = Error - 2009-05-05 15:47:39 | Computer Name = Michał-PC | Source = Application Error | ID = 1000 Description = Aplikacja powodująca błąd opera.exe, wersja 9.63.10476.0, sygnatura czasowa 0x4940357c, moduł powodujący błąd Opera.dll, wersja 9.63.10476.0, sygnatura czasowa 0x49403590, kod wyjątku 0xc0000005, przesunięcie błędu 0x0031149c, identyfikator procesu 0x890, godzina rozpoczęcia aplikacji 0x01c9cdb2e79aa4bb. [ System Events ] Error - 2010-07-31 10:15:01 | Computer Name = Michał-PC | Source = Service Control Manager | ID = 7000 Description = Error - 2010-07-31 10:15:59 | Computer Name = Michał-PC | Source = Service Control Manager | ID = 7022 Description = Error - 2010-07-31 10:15:59 | Computer Name = Michał-PC | Source = Service Control Manager | ID = 7001 Description = Error - 2010-07-31 10:16:30 | Computer Name = Michał-PC | Source = Service Control Manager | ID = 7009 Description = Error - 2010-07-31 10:16:30 | Computer Name = Michał-PC | Source = Service Control Manager | ID = 7000 Description = Error - 2010-07-31 10:17:14 | Computer Name = Michał-PC | Source = DCOM | ID = 10005 Description = Error - 2010-07-31 10:18:33 | Computer Name = Michał-PC | Source = Service Control Manager | ID = 7009 Description = Error - 2010-07-31 10:18:33 | Computer Name = Michał-PC | Source = Service Control Manager | ID = 7000 Description = Error - 2010-07-31 10:25:21 | Computer Name = Michał-PC | Source = DCOM | ID = 10010 Description = Error - 2010-07-31 10:46:59 | Computer Name = Michał-PC | Source = DCOM | ID = 10000 Description = [ VeriSoft Events ] Error - 2009-11-14 17:05:03 | Computer Name = Michał-PC | Source = AuthWiz | ID = 100796068 Description = The submitted credentials were rejected. User: Michał@Michał-PC Credentials: Password Error: (0xC516020B) The system could not log you on. Verify your user name and domain are correct and then type your password again. Letters in passwords must be typed using the correct case. Verify that Caps Lock is off. Error - 2009-11-14 17:05:13 | Computer Name = Michał-PC | Source = AuthWiz | ID = 100796068 Description = The submitted credentials were rejected. User: Michał@Michał-PC Credentials: Password Error: (0xC516020B) The system could not log you on. Verify your user name and domain are correct and then type your password again. Letters in passwords must be typed using the correct case. Verify that Caps Lock is off. Error - 2009-12-25 09:56:18 | Computer Name = Michał-PC | Source = AuthWiz | ID = 100796068 Description = The submitted credentials were rejected. User: anno@MICHAŁ-PC Credentials: Password Error: (0xC516020B) The system could not log you on. Verify your user name and domain are correct and then type your password again. Letters in passwords must be typed using the correct case. Verify that Caps Lock is off. < End of report > [/log] lo Logi RSIT: [log] Logfile of random's system information tool 1.08 (written by random/random) Run by Michał at 2010-07-31 18:22:22 Microsoft® Windows Vista™ Home Premium Service Pack 2 System drive C: has 42 GB (50%) free of 83 GB Total RAM: 2558 MB (41% free) Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 18:22:41, on 2010-07-31 Platform: Windows Vista SP2 (WinNT 6.00.1906) MSIE: Internet Explorer v8.00 (8.00.6001.18928) Boot mode: Normal Running processes: C:\Windows\system32\taskeng.exe C:\Windows\system32\Dwm.exe C:\Windows\Explorer.EXE C:\Program Files\Windows Defender\MSASCui.exe C:\Program Files\Synaptics\SynTP\SynTPEnh.exe C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe C:\Windows\ehome\ehtray.exe C:\Windows\ehome\ehmsas.exe C:\Program Files\Synaptics\SynTP\SynTPHelper.exe G:\Programy\defragmentator dysku\PDAgentS1.exe G:\Programy\defragmentator dysku\PDAgentS1.exe C:\Users\MICHA~1\AppData\Local\Temp\winoopl.exe C:\Users\MICHA~1\AppData\Local\Temp\wintiwr.exe C:\Windows\system32\wbem\unsecapp.exe C:\Program Files\Hewlett-Packard\Shared\HpqToaster.exe C:\Users\MICHA~1\AppData\Local\Temp\w86f45.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Users\Michał\Desktop\RSIT.exe C:\Users\Michał\Desktop\RSIT.exe C:\Program Files\trend micro\Michał.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.pl/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = O1 - Hosts: ::1 localhost O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll O2 - BHO: Pomocnik rejestrowania za pomocą identyfikatora Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.4.4525.1752\swg.dll O2 - BHO: PDF-XChange Viewer IE-Plugin - {C5D07EB6-BBCE-4DAE-ACBB-D13A8D28CB1F} - G:\Programy\Tracker Software\PDF Viewer\PDFXCviewIEPlugin.dll O2 - BHO: Google Dictionary Compression sdch - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll O2 - BHO: VeriSoft Access Manager - {DF21F1DB-80C6-11D3-9483-B03D0EC10000} - c:\Program Files\Bioscrypt\VeriSoft\Bin\ItIEAddIn.dll O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll O2 - BHO: DAPIELoader Class - {FF6C3CF0-4B15-11D1-ABED-709549C10000} - G:\Programy\DAP\DAPIEL~1.DLL O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide O4 - HKLM\..\Run: [CognizanceTS] rundll32.exe c:\PROGRA~1\BIOSCR~1\VeriSoft\Bin\ASTSVCC.dll,RegisterModule O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe O4 - HKLM\..\Run: [QlbCtrl.exe] C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start O4 - HKLM\..\Run: [WirelessAssistant] C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe O4 - HKLM\..\Run: [USB Gamepad] C:\Windows\USB Vibration\dr100&110\USB Gamepad.exe -boot O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" O4 - HKCU\..\Run: [LightScribe Control Panel] C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe -hidden O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe O4 - HKCU\..\Run: [IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe" ASO-616B5711-6DAE-4795-A05F-39A1E5104020 O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'USŁUGA LOKALNA') O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'USŁUGA LOKALNA') O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'USŁUGA SIECIOWA') O7 - HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\System, DisableRegedit=1 O8 - Extra context menu item: &Clean Traces - G:\Programy\DAP\Privacy Package\dapcleanerie.htm O8 - Extra context menu item: &Download with &DAP - G:\Programy\DAP\dapextie.htm O8 - Extra context menu item: Download &all with DAP - G:\Programy\DAP\dapextie2.htm O8 - Extra context menu item: E&ksport do programu Microsoft Excel - res://G:\Programy\Office\OFFICE11\EXCEL.EXE/3000 O8 - Extra context menu item: E&ksportuj do programu Microsoft Excel - res://G:\Programy\OFFICE~1\Office12\EXCEL.EXE/3000 O8 - Extra context menu item: Wyślij obraz do urządzenia &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm O8 - Extra context menu item: Wyślij stronę do urządzenia &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm O9 - Extra button: Wpis w blogu - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra 'Tools' menuitem: &Wpis w blogu w Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra button: (no name) - {5067A26B-1337-4436-8AFE-EE169C2DA79F} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll O9 - Extra 'Tools' menuitem: Skype add-on for Internet Explorer - {5067A26B-1337-4436-8AFE-EE169C2DA79F} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm O16 - DPF: {1E54D648-B804-468d-BC78-4AFFED8E262F} (System Requirements Lab) - http://www.nvidia.com/content/DriverDownload/srl/3.0.0.4/srl_bin/sysreqlab_nvd.cab O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} - http://download.eset.com/special/eos/OnlineScanner.cab O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL O18 - Filter: x-sdch - {B1759355-3EEC-4C1E-B0F1-B719FE26E377} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll O20 - AppInit_DLLs: APSHook.dll O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll O23 - Service: a-squared Free Service (a2free) - Emsi Software GmbH - C:\Program Files\a-squared Free\a2service.exe O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - C:\Program Files\HP\QuickPlay\Kernel\TV\CLCapSvc.exe O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - C:\Program Files\HP\QuickPlay\Kernel\TV\CLSched.exe (file missing) O23 - Service: Com4QLBEx - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe O23 - Service: HP Health Check Service - Hewlett-Packard - C:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe O23 - Service: Microsoft Office Diagnostics Service (odserv) - Unknown owner - C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE (file missing) O23 - Service: Office Source Engine (ose) - Unknown owner - C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE (file missing) O23 - Service: PDAgent - Raxco Software, Inc. - G:\Programy\defragmentator dysku\PDAgent.exe O23 - Service: PDEngine - Raxco Software, Inc. - G:\Programy\defragmentator dysku\PDEngine.exe O23 - Service: PGPsdkService (PGPsdkServ) - Unknown owner - C:\Windows\system32\PGPsdkServ.exe (file missing) O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe O23 - Service: RoxMediaDB9 - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe O23 - Service: StarWind AE Service (StarWindServiceAE) - Rocket Division Software - G:\Programy\Alcohol 120\StarWind\StarWindServiceAE.exe O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe -- End of file - 10804 bytes ======Scheduled tasks folder====== C:\Windows\tasks\User_Feed_Synchronization-{33A78335-0818-4987-8D74-5A2DA5C573C0}.job C:\Windows\tasks\User_Feed_Synchronization-{94C9E3AC-2D7B-448B-9D50-923637CB0158}.job ======Registry dump====== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}] Adobe PDF Reader Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-23 62080] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{22BF413B-C6D2-4d91-82A9-A0F997BA588C}] Skype add-on (mastermind) - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2009-08-04 1586472] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}] Search Helper - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll [2009-05-19 137600] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}] Pomocnik rejestrowania za pomocą identyfikatora Windows Live - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 403840] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}] Google Toolbar Helper - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll [2009-07-19 259696] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}] Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.4.4525.1752\swg.dll [2009-11-23 764912] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C5D07EB6-BBCE-4DAE-ACBB-D13A8D28CB1F}] PDF-XChange Viewer IE-Plugin - G:\Programy\Tracker Software\PDF Viewer\PDFXCviewIEPlugin.dll [2009-07-14 1093400] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C84D72FE-E17D-4195-BB24-76C02E2E7C4E}] Google Dictionary Compression sdch - C:\Program Files\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll [2009-07-19 470512] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}] Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2009-10-11 41760] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DF21F1DB-80C6-11D3-9483-B03D0EC10000}] VeriSoft Access Manager - c:\Program Files\Bioscrypt\VeriSoft\Bin\ItIEAddIn.dll [2006-11-21 71192] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E15A8DC0-8516-42A1-81EA-DC94EC1ACF10}] Windows Live Toolbar Helper - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FF6C3CF0-4B15-11D1-ABED-709549C10000}] DAPIELoader Class - G:\Programy\DAP\DAPIEL~1.DLL [2010-05-27 140880] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar] {2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll [2009-07-19 259696] {21FA44EF-376D-4D53-9B0F-8A89D3229068} - &Windows Live Toolbar - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run] "Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-19 1008184] "CognizanceTS"=c:\PROGRA~1\BIOSCR~1\VeriSoft\Bin\ASTSVCC.dll [2003-12-22 17920] "NWEReboot"= [] "HP Software Update"=C:\Program Files\HP\HP Software Update\HPWuSchd2.exe [] "SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2008-06-20 1385768] "QlbCtrl.exe"=C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start [] "WirelessAssistant"=C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe [2009-07-23 498744] "USB Gamepad"=C:\Windows\USB Vibration\dr100&110\USB Gamepad.exe -boot [] "Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe [] [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "LightScribe Control Panel"=C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe -hidden [] "ehTray.exe"=C:\Windows\ehome\ehTray.exe [2008-01-19 125952] "IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"=C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe ASO-616B5711-6DAE-4795-A05F-39A1E5104020 [] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AlcoholAutomount] G:\Programy\Alcohol 120\axcmd.exe [2009-04-21 82432] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Malwarebytes Anti-Malware (reboot)] G:\Programy\Malwarebytes' Anti-Malware\mbam.exe [2010-04-29 1160584] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Onet.pl AutoUpdate] C:\Program Files\Common Files\Onet.pl\NewAutoUpdate.exe /updateexe [] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2009-01-17 33792] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WinampAgent] G:\Programy\Winamp\winampa.exe [] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Adobe Reader Speed Launch.lnk] C:\PROGRA~1\Adobe\READER~1.0\Reader\READER~1.EXE [] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Adobe Reader Synchronizer.lnk] C:\PROGRA~1\Adobe\READER~1.0\Reader\ADOBEC~1.EXE [2007-05-11 733184] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Michał^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Tworzenie wycinków ekranu i uruchamianie programu OneNote 2007.lnk] G:\Programy\OFFICE~1\Office12\ONENOTEM.EXE /tsr [] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] "AppInit_DLLs"="APSHook.dll" [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa] "notification packages"=scecli ASWLNPkg [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver] [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System] "DisableRegistryTools"=1 "DisableTaskMgr"=1 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System] "EnableLUA"=0 "dontdisplaylastusername"=0 "legalnoticecaption"= "legalnoticetext"= "shutdownwithoutlogon"=1 "undockwithoutlogon"=1 "EnableUIADesktopToggle"=0 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "BindDirectlyToPropertySetStorage"=0 [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list] "G:\Programy\PPMate\ppmate.exe"="G:\Programy\PPMate\ppmate.exe:*:Enabled:PPMate" "G:\Programy\PPMate\ppamnet.exe"="G:\Programy\PPMate\ppamnet.exe:*:Enabled:PPMate" "E:\Postal 2 Share the Pain\POSTAL2 STP\Setup.exe"="E:\Postal 2 Share the Pain\POSTAL2 STP\Setup.exe:*:Enabled:ipsec" "C:\Windows\system32\netsh.exe"="C:\Windows\system32\netsh.exe:*:Enabled:ipsec" "C:\Windows\system32\Dwm.exe"="C:\Windows\system32\Dwm.exe:*:Enabled:ipsec" "c:\Program Files\Bioscrypt\VeriSoft\Bin\AsGHost.exe"="c:\Program Files\Bioscrypt\VeriSoft\Bin\AsGHost.exe:*:Enabled:ipsec" "G:\Programy\EASEUS Partition Master 4.1.1 Home Edition\bin\Main.exe"="G:\Programy\EASEUS Partition Master 4.1.1 Home Edition\bin\Main.exe:*:Enabled:ipsec" "C:\Program Files\Synaptics\SynTP\SynTPStart.exe"="C:\Program Files\Synaptics\SynTP\SynTPStart.exe:*:Enabled:ipsec" "C:\Users\MICHA~1\AppData\Local\Temp\mprkvv.exe"="C:\Users\MICHA~1\AppData\Local\Temp\mprkvv.exe:*:Enabled:ipsec" "C:\Users\MICHA~1\AppData\Local\Temp\mrtiwx.exe"="C:\Users\MICHA~1\AppData\Local\Temp\mrtiwx.exe:*:Enabled:ipsec" "C:\Windows\Explorer.EXE"="C:\Windows\Explorer.EXE:*:Enabled:ipsec" "G:\Programy\EvilLyrics\EvilLyrics.exe"="G:\Programy\EvilLyrics\EvilLyrics.exe:*:Enabled:ipsec" "C:\Windows\helppane.exe"="C:\Windows\helppane.exe:*:Enabled:ipsec" "C:\Users\MICHA~1\AppData\Local\Temp\maveep.exe"="C:\Users\MICHA~1\AppData\Local\Temp\maveep.exe:*:Enabled:ipsec" "C:\Users\MICHA~1\AppData\Local\Temp\krwb.exe"="C:\Users\MICHA~1\AppData\Local\Temp\krwb.exe:*:Enabled:ipsec" "C:\Windows\system32\userinit.exe"="C:\Windows\system32\userinit.exe:*:Enabled:ipsec" "C:\Users\MICHA~1\AppData\Local\Temp\winmjnqcs.exe"="C:\Users\MICHA~1\AppData\Local\Temp\winmjnqcs.exe:*:Enabled:ipsec" "C:\Users\MICHA~1\AppData\Local\Temp\winywyjij.exe"="C:\Users\MICHA~1\AppData\Local\Temp\winywyjij.exe:*:Enabled:ipsec" "C:\Users\MICHA~1\AppData\Local\Temp\winmblt.exe"="C:\Users\MICHA~1\AppData\Local\Temp\winmblt.exe:*:Enabled:ipsec" "C:\Users\MICHA~1\AppData\Local\Temp\mxqup.exe"="C:\Users\MICHA~1\AppData\Local\Temp\mxqup.exe:*:Enabled:ipsec" "C:\Users\MICHA~1\AppData\Local\Temp\winfgom.exe"="C:\Users\MICHA~1\AppData\Local\Temp\winfgom.exe:*:Enabled:ipsec" "C:\Users\MICHA~1\AppData\Local\Temp\winelcr.exe"="C:\Users\MICHA~1\AppData\Local\Temp\winelcr.exe:*:Enabled:ipsec" "C:\Program Files\Google\Update\GoogleUpdate.exe"="C:\Program Files\Google\Update\GoogleUpdate.exe:*:Enabled:ipsec" "C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe"="C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe:*:Enabled:ipsec" "C:\Users\MICHA~1\AppData\Local\Temp\winxvqdex.exe"="C:\Users\MICHA~1\AppData\Local\Temp\winxvqdex.exe:*:Enabled:ipsec" "C:\Users\MICHA~1\AppData\Local\Temp\winrhdmir.exe"="C:\Users\MICHA~1\AppData\Local\Temp\winrhdmir.exe:*:Enabled:ipsec" "C:\Users\MICHA~1\AppData\Local\Temp\winwfao.exe"="C:\Users\MICHA~1\AppData\Local\Temp\winwfao.exe:*:Enabled:ipsec" "C:\Users\MICHA~1\AppData\Local\Temp\winubjhuh.exe"="C:\Users\MICHA~1\AppData\Local\Temp\winubjhuh.exe:*:Enabled:ipsec" "C:\Windows\system32\taskeng.exe"="C:\Windows\system32\taskeng.exe:*:Enabled:ipsec" "C:\Users\MICHA~1\AppData\Local\Temp\winfvot.exe"="C:\Users\MICHA~1\AppData\Local\Temp\winfvot.exe:*:Enabled:ipsec" "C:\Users\MICHA~1\AppData\Local\Temp\winkjnljx.exe"="C:\Users\MICHA~1\AppData\Local\Temp\winkjnljx.exe:*:Enabled:ipsec" "C:\Users\MICHA~1\AppData\Local\Temp\winlphova.exe"="C:\Users\MICHA~1\AppData\Local\Temp\winlphova.exe:*:Enabled:ipsec" "C:\Users\MICHA~1\AppData\Local\Temp\winxslq.exe"="C:\Users\MICHA~1\AppData\Local\Temp\winxslq.exe:*:Enabled:ipsec" "C:\Users\MICHA~1\AppData\Local\Temp\winkytlda.exe"="C:\Users\MICHA~1\AppData\Local\Temp\winkytlda.exe:*:Enabled:ipsec" "C:\Users\MICHA~1\AppData\Local\Temp\winvadgh.exe"="C:\Users\MICHA~1\AppData\Local\Temp\winvadgh.exe:*:Enabled:ipsec" "C:\Users\MICHA~1\AppData\Local\Temp\uqpbf.exe"="C:\Users\MICHA~1\AppData\Local\Temp\uqpbf.exe:*:Enabled:ipsec" "C:\Users\MICHA~1\AppData\Local\Temp\usqwt.exe"="C:\Users\MICHA~1\AppData\Local\Temp\usqwt.exe:*:Enabled:ipsec" "C:\Users\MICHA~1\AppData\Local\Temp\wintihgx.exe"="C:\Users\MICHA~1\AppData\Local\Temp\wintihgx.exe:*:Enabled:ipsec" "C:\Users\MICHA~1\AppData\Local\Temp\winogql.exe"="C:\Users\MICHA~1\AppData\Local\Temp\winogql.exe:*:Enabled:ipsec" "C:\Windows\TEMP\wintalm.exe"="C:\Windows\TEMP\wintalm.exe:*:Enabled:ipsec" "C:\Users\MICHA~1\AppData\Local\Temp\xyext.exe"="C:\Users\MICHA~1\AppData\Local\Temp\xyext.exe:*:Enabled:ipsec" "C:\Windows\TEMP\wingcfv.exe"="C:\Windows\TEMP\wingcfv.exe:*:Enabled:ipsec" "C:\Users\MICHA~1\AppData\Local\Temp\winfydd.exe"="C:\Users\MICHA~1\AppData\Local\Temp\winfydd.exe:*:Enabled:ipsec" "C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE"="C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE:*:Enabled:ipsec" "C:\Windows\TEMP\winfshp.exe"="C:\Windows\TEMP\winfshp.exe:*:Enabled:ipsec" "C:\Users\MICHA~1\AppData\Local\Temp\winiexg.exe"="C:\Users\MICHA~1\AppData\Local\Temp\winiexg.exe:*:Enabled:ipsec" "C:\Users\MICHA~1\AppData\Local\Temp\wincjqe.exe"="C:\Users\MICHA~1\AppData\Local\Temp\wincjqe.exe:*:Enabled:ipsec" "C:\Users\MICHA~1\AppData\Local\Temp\vtxutf.exe"="C:\Users\MICHA~1\AppData\Local\Temp\vtxutf.exe:*:Enabled:ipsec" "C:\Users\MICHA~1\AppData\Local\Temp\winobor.exe"="C:\Users\MICHA~1\AppData\Local\Temp\winobor.exe:*:Enabled:ipsec" "C:\Windows\ehome\ehtray.exe"="C:\Windows\ehome\ehtray.exe:*:Enabled:ipsec" "C:\Users\MICHA~1\AppData\Local\Temp\esag.exe"="C:\Users\MICHA~1\AppData\Local\Temp\esag.exe:*:Enabled:ipsec" "C:\Users\MICHA~1\AppData\Local\Temp\winxvpdil.exe"="C:\Users\MICHA~1\AppData\Local\Temp\winxvpdil.exe:*:Enabled:ipsec" "C:\Users\MICHA~1\AppData\Local\Temp\winebpyd.exe"="C:\Users\MICHA~1\AppData\Local\Temp\winebpyd.exe:*:Enabled:ipsec" "C:\Users\MICHA~1\AppData\Local\Temp\kkgux.exe"="C:\Users\MICHA~1\AppData\Local\Temp\kkgux.exe:*:Enabled:ipsec" "C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe"="C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe:*:Enabled:ipsec" "C:\Users\MICHA~1\AppData\Local\Temp\winonyhk.exe"="C:\Users\MICHA~1\AppData\Local\Temp\winonyhk.exe:*:Enabled:ipsec" "C:\Users\MICHA~1\AppData\Local\Temp\winrcgtvu.exe"="C:\Users\MICHA~1\AppData\Local\Temp\winrcgtvu.exe:*:Enabled:ipsec" "C:\Users\MICHA~1\AppData\Local\Temp\winqagnvv.exe"="C:\Users\MICHA~1\AppData\Local\Temp\winqagnvv.exe:*:Enabled:ipsec" "C:\Users\MICHA~1\AppData\Local\Temp\winupyh.exe"="C:\Users\MICHA~1\AppData\Local\Temp\winupyh.exe:*:Enabled:ipsec" "C:\Users\MICHA~1\AppData\Local\Temp\winivqch.exe"="C:\Users\MICHA~1\AppData\Local\Temp\winivqch.exe:*:Enabled:ipsec" "C:\Users\MICHA~1\AppData\Local\Temp\winlnrb.exe"="C:\Users\MICHA~1\AppData\Local\Temp\winlnrb.exe:*:Enabled:ipsec" "C:\Users\MICHA~1\AppData\Local\Temp\winqtpkw.exe"="C:\Users\MICHA~1\AppData\Local\Temp\winqtpkw.exe:*:Enabled:ipsec" "C:\Users\MICHA~1\AppData\Local\Temp\winohsku.exe"="C:\Users\MICHA~1\AppData\Local\Temp\winohsku.exe:*:Enabled:ipsec" "C:\Users\MICHA~1\AppData\Local\Temp\winlpav.exe"="C:\Users\MICHA~1\AppData\Local\Temp\winlpav.exe:*:Enabled:ipsec" "C:\Program Files\HP\QuickPlay\QPService.exe"="C:\Program Files\HP\QuickPlay\QPService.exe:*:Enabled:ipsec" "C:\Users\MICHA~1\AppData\Local\Temp\winghysmu.exe"="C:\Users\MICHA~1\AppData\Local\Temp\winghysmu.exe:*:Enabled:ipsec" "C:\Users\MICHA~1\AppData\Local\Temp\vkuw.exe"="C:\Users\MICHA~1\AppData\Local\Temp\vkuw.exe:*:Enabled:ipsec" "C:\Users\MICHA~1\AppData\Local\Temp\winlocgv.exe"="C:\Users\MICHA~1\AppData\Local\Temp\winlocgv.exe:*:Enabled:ipsec" "G:\Programy\defragmentator dysku\PDEngine.exe"="G:\Programy\defragmentator dysku\PDEngine.exe:*:Enabled:ipsec" "C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe"="C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe:*:Enabled:ipsec" "C:\Windows\TEMP\ecmw.exe"="C:\Windows\TEMP\ecmw.exe:*:Enabled:ipsec" "C:\Users\MICHA~1\AppData\Local\Temp\winjtmgia.exe"="C:\Users\MICHA~1\AppData\Local\Temp\winjtmgia.exe:*:Enabled:ipsec" "C:\Windows\TEMP\winkdwiik.exe"="C:\Windows\TEMP\winkdwiik.exe:*:Enabled:ipsec" "C:\Users\MICHA~1\AppData\Local\Temp\qsivk.exe"="C:\Users\MICHA~1\AppData\Local\Temp\qsivk.exe:*:Enabled:ipsec" "C:\Users\MICHA~1\AppData\Local\Temp\winljpag.exe"="C:\Users\MICHA~1\AppData\Local\Temp\winljpag.exe:*:Enabled:ipsec" "C:\Users\MICHA~1\AppData\Local\Temp\winlrpa.exe"="C:\Users\MICHA~1\AppData\Local\Temp\winlrpa.exe:*:Enabled:ipsec" "C:\Users\MICHA~1\AppData\Local\Temp\krcxh.exe"="C:\Users\MICHA~1\AppData\Local\Temp\krcxh.exe:*:Enabled:ipsec" "C:\Users\MICHA~1\AppData\Local\Temp\efotpa.exe"="C:\Users\MICHA~1\AppData\Local\Temp\efotpa.exe:*:Enabled:ipsec" "C:\Users\MICHA~1\AppData\Local\Temp\tvmivd.exe"="C:\Users\MICHA~1\AppData\Local\Temp\tvmivd.exe:*:Enabled:ipsec" "C:\Users\MICHA~1\AppData\Local\Temp\winhmht.exe"="C:\Users\MICHA~1\AppData\Local\Temp\winhmht.exe:*:Enabled:ipsec" "C:\Users\MICHA~1\AppData\Local\Temp\winukvwgq.exe"="C:\Users\MICHA~1\AppData\Local\Temp\winukvwgq.exe:*:Enabled:ipsec" "C:\Users\MICHA~1\AppData\Local\Temp\hqsort.exe"="C:\Users\MICHA~1\AppData\Local\Temp\hqsort.exe:*:Enabled:ipsec" "C:\Users\MICHA~1\AppData\Local\Temp\pggpj.exe"="C:\Users\MICHA~1\AppData\Local\Temp\pggpj.exe:*:Enabled:ipsec" "C:\Users\MICHA~1\AppData\Local\Temp\winfmkbl.exe"="C:\Users\MICHA~1\AppData\Local\Temp\winfmkbl.exe:*:Enabled:ipsec" "C:\Users\MICHA~1\AppData\Local\Temp\ytdxra.exe"="C:\Users\MICHA~1\AppData\Local\Temp\ytdxra.exe:*:Enabled:ipsec" "C:\Users\MICHA~1\AppData\Local\Temp\baocfa.exe"="C:\Users\MICHA~1\AppData\Local\Temp\baocfa.exe:*:Enabled:ipsec" "C:\Users\MICHA~1\AppData\Local\Temp\sngcxu.exe"="C:\Users\MICHA~1\AppData\Local\Temp\sngcxu.exe:*:Enabled:ipsec" "G:\Gry\Tropico\Tropico 3\uninst.exe"="G:\Gry\Tropico\Tropico 3\uninst.exe:*:Enabled:ipsec" "C:\Users\MICHA~1\AppData\Local\Temp\~nsu.tmp\Au_.exe"="C:\Users\MICHA~1\AppData\Local\Temp\~nsu.tmp\Au_.exe:*:Enabled:ipsec" "C:\Windows\TEMP\boem.exe"="C:\Windows\TEMP\boem.exe:*:Enabled:ipsec" "C:\Windows\TEMP\winxicks.exe"="C:\Windows\TEMP\winxicks.exe:*:Enabled:ipsec" "C:\Windows\TEMP\biua.exe"="C:\Windows\TEMP\biua.exe:*:Enabled:ipsec" "C:\Windows\TEMP\ojhvd.exe"="C:\Windows\TEMP\ojhvd.exe:*:Enabled:ipsec" "C:\Windows\TEMP\knki.exe"="C:\Windows\TEMP\knki.exe:*:Enabled:ipsec" "C:\Windows\TEMP\winbdin.exe"="C:\Windows\TEMP\winbdin.exe:*:Enabled:ipsec" "C:\Windows\TEMP\winogjmue.exe"="C:\Windows\TEMP\winogjmue.exe:*:Enabled:ipsec" "C:\Windows\TEMP\winfbhw.exe"="C:\Windows\TEMP\winfbhw.exe:*:Enabled:ipsec" "C:\Windows\TEMP\cnooao.exe"="C:\Windows\TEMP\cnooao.exe:*:Enabled:ipsec" "C:\Users\MICHA~1\AppData\Local\Temp\opxd.exe"="C:\Users\MICHA~1\AppData\Local\Temp\opxd.exe:*:Enabled:ipsec" "C:\Windows\TEMP\winycgst.exe"="C:\Windows\TEMP\winycgst.exe:*:Enabled:ipsec" [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list] ======File associations====== .js - edit - C:\Windows\System32\Notepad.exe %1 .js - open - C:\Windows\System32\WScript.exe "%1" %* ======List of files/folders created in the last 1 months====== 2010-07-31 17:40:04 ----D---- C:\Program Files\trend micro 2010-07-31 17:40:02 ----D---- C:\rsit 2010-07-31 13:44:05 ----RSH---- C:\ftoodu.pif 2010-07-31 02:20:33 ----A---- C:\Users\Michał\AppData\Roaming\privacy_policy.txt.lnk 2010-07-30 17:26:40 ----A---- C:\Windows\system32\drivers\mbamswissarmy.sys 2010-07-30 17:26:36 ----A---- C:\Windows\system32\drivers\mbam.sys 2010-07-29 10:16:38 ----D---- C:\Program Files\PROnetworks 2010-07-28 14:02:31 ----D---- C:\Program Files\a-squared Free 2010-07-28 12:47:00 ----RAS---- C:\BOOTSECT.BAK 2010-07-13 14:52:53 ----A---- C:\Windows\bestplayer.ini ======List of files/folders modified in the last 1 months====== 2010-07-31 18:22:37 ----D---- C:\Windows\Temp 2010-07-31 17:40:04 ----D---- C:\Program Files 2010-07-31 16:34:01 ----SHD---- C:\Windows\Installer 2010-07-31 16:34:01 ----HD---- C:\Config.Msi 2010-07-31 16:14:34 ----A---- C:\ProgramData\HPWALog.txt 2010-07-31 16:14:33 ----HD---- C:\ProgramData 2010-07-31 13:54:45 ----SHD---- C:\System Volume Information 2010-07-31 13:46:12 ----RD---- C:\Users 2010-07-31 13:46:00 ----D---- C:\Windows 2010-07-31 13:42:13 ----D---- C:\Windows\system32\drivers 2010-07-31 13:42:13 ----D---- C:\Windows\system 2010-07-31 11:31:02 ----A---- C:\Windows\ntbtlog.txt 2010-07-31 09:32:47 ----D---- C:\Users\Michał\AppData\Roaming\uTorrent 2010-07-31 02:26:45 ----D---- C:\Users\Michał\AppData\Roaming\Macromedia 2010-07-31 02:26:43 ----D---- C:\Users\Michał\AppData\Roaming\Ludia 2010-07-31 02:26:35 ----D---- C:\Users\Michał\AppData\Roaming\Leadertech 2010-07-31 02:26:23 ----D---- C:\Users\Michał\AppData\Roaming\Lavasoft 2010-07-31 02:26:22 ----D---- C:\Users\Michał\AppData\Roaming\Kamerzysta 2010-07-31 02:26:19 ----D---- C:\Users\Michał\AppData\Roaming\InstallShield 2010-07-31 02:26:15 ----D---- C:\Users\Michał\AppData\Roaming\InfraRecorder 2010-07-31 02:26:14 ----D---- C:\Users\Michał\AppData\Roaming\Image Zone Express 2010-07-31 02:25:52 ----D---- C:\Users\Michał\AppData\Roaming\Identities 2010-07-31 02:25:41 ----D---- C:\Users\Michał\AppData\Roaming\hpqLog 2010-07-31 02:25:36 ----D---- C:\Users\Michał\AppData\Roaming\HP 2010-07-31 02:25:32 ----D---- C:\Users\Michał\AppData\Roaming\Hewlett-Packard 2010-07-31 02:25:27 ----D---- C:\Users\Michał\AppData\Roaming\Hamachi 2010-07-31 02:25:25 ----D---- C:\Users\Michał\AppData\Roaming\Google 2010-07-31 02:22:25 ----D---- C:\Users\Michał\AppData\Roaming\GanymedeNet 2010-07-31 02:22:06 ----D---- C:\Users\Michał\AppData\Roaming\Gadu-Gadu 2010-07-31 02:22:05 ----D---- C:\Users\Michał\AppData\Roaming\foobar2000 2010-07-31 02:21:39 ----D---- C:\Users\Michał\AppData\Roaming\Flock 2010-07-31 02:21:38 ----D---- C:\Users\Michał\AppData\Roaming\dvdcss 2010-07-31 02:21:37 ----D---- C:\Users\Michał\AppData\Roaming\DeepBurner 2010-07-31 02:21:35 ----D---- C:\Users\Michał\AppData\Roaming\DAEMON Tools Lite 2010-07-31 02:21:33 ----D---- C:\Users\Michał\AppData\Roaming\DAEMON Tools 2010-07-31 02:21:24 ----D---- C:\Users\Michał\AppData\Roaming\CyberLink 2010-07-31 02:21:21 ----D---- C:\Users\Michał\AppData\Roaming\Crayon Physics Deluxe 2010-07-31 02:21:19 ----D---- C:\Users\Michał\AppData\Roaming\Codeton 2010-07-31 02:21:15 ----D---- C:\Users\Michał\AppData\Roaming\Canneverbe_Limited 2010-07-31 02:21:15 ----D---- C:\Users\Michał\AppData\Roaming\Braid 2010-07-31 02:21:13 ----D---- C:\Users\Michał\AppData\Roaming\BESTplayer 2010-07-31 02:21:12 ----D---- C:\Users\Michał\AppData\Roaming\AutoUpdate 2010-07-31 02:21:04 ----D---- C:\Users\Michał\AppData\Roaming\Ashampoo 2010-07-31 02:21:03 ----D---- C:\Users\Michał\AppData\Roaming\Alawar 2010-07-31 02:21:01 ----D---- C:\Users\Michał\AppData\Roaming\Ahead 2010-07-31 02:20:34 ----D---- C:\Users\Michał\AppData\Roaming\Adobe 2010-07-31 01:51:56 ----D---- C:\Windows\system32\catroot2 2010-07-31 01:51:56 ----D---- C:\Windows\system32\catroot 2010-07-31 01:51:54 ----D---- C:\Windows\inf 2010-07-31 01:38:20 ----D---- C:\ProgramData\WindowsSearch 2010-07-31 01:38:19 ----D---- C:\ProgramData\WEBREG 2010-07-31 01:38:18 ----D---- C:\ProgramData\vsosdk 2010-07-31 01:38:15 ----D---- C:\ProgramData\TVU Networks 2010-07-31 01:38:14 ----AD---- C:\ProgramData\TEMP 2010-07-31 01:38:13 ----D---- C:\ProgramData\Tages 2010-07-31 01:38:04 ----D---- C:\ProgramData\Symantec 2010-07-31 01:38:03 ----D---- C:\ProgramData\Stardock 2010-07-31 01:37:47 ----D---- C:\ProgramData\SpeedBit 2010-07-31 01:37:45 ----D---- C:\ProgramData\Sonic 2010-07-31 01:37:21 ----D---- C:\ProgramData\Skype 2010-07-31 01:37:16 ----D---- C:\ProgramData\Roxio 2010-07-31 01:37:15 ----D---- C:\ProgramData\Real 2010-07-31 01:37:12 ----D---- C:\ProgramData\Raxco 2010-07-31 01:37:09 ----D---- C:\ProgramData\POPWWPROFILES 2010-07-31 01:37:09 ----D---- C:\ProgramData\PMB Files 2010-07-31 01:37:06 ----D---- C:\ProgramData\PGP Corporation 2010-07-31 01:37:02 ----D---- C:\ProgramData\PC Suite 2010-07-31 01:37:02 ----D---- C:\ProgramData\NVIDIA 2010-07-31 01:36:59 ----D---- C:\ProgramData\NortonInstaller 2010-07-31 01:36:58 ----D---- C:\ProgramData\Norton 2010-07-31 01:36:48 ----D---- C:\ProgramData\Nokia 2010-07-31 01:36:31 ----D---- C:\ProgramData\Nero 2010-07-31 01:36:30 ----D---- C:\ProgramData\Microsoft Help 2010-07-31 01:28:39 ----D---- C:\Program Files\Nokia 2010-07-31 01:28:23 ----D---- C:\Windows\winsxs 2010-07-31 01:23:58 ----SD---- C:\ProgramData\Microsoft 2010-07-31 01:23:56 ----D---- C:\ProgramData\Malwarebytes 2010-07-31 01:23:55 ----D---- C:\ProgramData\Ludia 2010-07-31 01:23:54 ----D---- C:\ProgramData\LightScribe 2010-07-31 01:23:52 ----D---- C:\ProgramData\KONAMI 2010-07-31 01:23:51 ----D---- C:\ProgramData\InstallShield 2010-07-31 01:23:29 ----D---- C:\ProgramData\Installations 2010-07-31 01:23:28 ----D---- C:\ProgramData\HPSSUPPLY 2010-07-31 01:23:18 ----D---- C:\ProgramData\HP 2010-07-31 01:23:14 ----D---- C:\ProgramData\Hewlett-Packard 2010-07-31 01:23:12 ----D---- C:\ProgramData\Google Updater 2010-07-31 01:23:10 ----D---- C:\ProgramData\Google 2010-07-31 01:22:43 ----D---- C:\ProgramData\GameTap Web Player 2010-07-31 01:22:34 ----D---- C:\ProgramData\Electronic Arts 2010-07-31 01:22:33 ----D---- C:\ProgramData\DAEMON Tools Lite 2010-07-31 01:22:15 ----D---- C:\ProgramData\CyberLink 2010-07-31 01:21:54 ----D---- C:\ProgramData\Brontes Processing 2010-07-31 01:21:40 ----D---- C:\ProgramData\Blizzard Entertainment 2010-07-31 01:21:38 ----D---- C:\ProgramData\Blizzard 2010-07-31 01:21:34 ----D---- C:\ProgramData\ashampoo 2010-07-31 01:21:31 ----D---- C:\ProgramData\Alwil Software 2010-07-31 01:21:14 ----D---- C:\ProgramData\Adobe 2010-07-31 01:21:06 ----D---- C:\ProgramData\2DBoy 2010-07-31 00:09:14 ----D---- C:\Windows\schemas 2010-07-30 17:58:04 ----D---- C:\Windows\System32 2010-07-30 17:58:04 ----A---- C:\Windows\system32\PerfStringBackup.INI 2010-07-30 11:13:57 ----D---- C:\Users\Michał\AppData\Roaming\Xfire 2010-07-30 11:13:51 ----D---- C:\Users\Michał\AppData\Roaming\WinRAR 2010-07-30 11:13:26 ----D---- C:\Users\Michał\AppData\Roaming\Winamp 2010-07-30 11:13:19 ----D---- C:\Users\Michał\AppData\Roaming\Vso 2010-07-30 11:13:09 ----D---- C:\Users\Michał\AppData\Roaming\vlc 2010-07-30 11:12:38 ----D---- C:\Users\Michał\AppData\Roaming\Unity 2010-07-30 11:12:22 ----D---- C:\Users\Michał\AppData\Roaming\Ubisoft 2010-07-30 11:12:12 ----D---- C:\Users\Michał\AppData\Roaming\U3 2010-07-30 11:11:50 ----D---- C:\Users\Michał\AppData\Roaming\Tropico 3 2010-07-30 11:11:35 ----D---- C:\Users\Michał\AppData\Roaming\THQ 2010-07-30 11:11:28 ----D---- C:\Users\Michał\AppData\Roaming\The Path 2010-07-30 11:04:59 ----D---- C:\Users\Michał\AppData\Roaming\Sun 2010-07-30 10:59:59 ----D---- C:\Users\Michał\AppData\Roaming\Sudeki 2010-07-30 10:59:40 ----D---- C:\Users\Michał\AppData\Roaming\SPORE Creature Creator 2010-07-30 10:59:25 ----D---- C:\Users\Michał\AppData\Roaming\SopCast 2010-07-30 10:59:20 ----D---- C:\Users\Michał\AppData\Roaming\skypePM 2010-07-30 10:57:53 ----D---- C:\Users\Michał\AppData\Roaming\Skype 2010-07-30 10:57:43 ----D---- C:\Users\Michał\AppData\Roaming\SecuROM 2010-07-30 10:56:04 ----D---- C:\Users\Michał\AppData\Roaming\Roxio 2010-07-30 10:55:13 ----D---- C:\Users\Michał\AppData\Roaming\Real 2010-07-30 10:55:08 ----D---- C:\Users\Michał\AppData\Roaming\Printer Info Cache 2010-07-30 10:55:03 ----D---- C:\Users\Michał\AppData\Roaming\ppStream 2010-07-30 10:54:52 ----D---- C:\Users\Michał\AppData\Roaming\PPMate 2010-07-30 10:54:42 ----D---- C:\Users\Michał\AppData\Roaming\PGP Corporation 2010-07-30 10:54:38 ----D---- C:\Users\Michał\AppData\Roaming\PeerNetworking 2010-07-30 10:54:22 ----D---- C:\Users\Michał\AppData\Roaming\PC Suite 2010-07-30 10:50:43 ----D---- C:\Users\Michał\AppData\Roaming\Opera 2010-07-30 10:49:50 ----D---- C:\Users\Michał\AppData\Roaming\Nokia 2010-07-30 10:48:22 ----D---- C:\Users\Michał\AppData\Roaming\Nero 2010-07-30 10:48:17 ----D---- C:\Users\Michał\AppData\Roaming\My Games 2010-07-30 10:46:36 ----D---- C:\Users\Michał\AppData\Roaming\Mozilla 2010-07-30 10:36:38 ----SD---- C:\Users\Michał\AppData\Roaming\Microsoft 2010-07-30 10:36:33 ----D---- C:\Users\Michał\AppData\Roaming\Media Player Classic 2010-07-30 10:36:27 ----D---- C:\Users\Michał\AppData\Roaming\Media Center Programs 2010-07-30 10:36:07 ----D---- C:\Users\Michał\AppData\Roaming\Malwarebytes 2010-07-29 22:48:02 ----D---- C:\Program Files\uTorrent 2010-07-29 22:45:09 ----D---- C:\Program Files\OpenAL 2010-07-29 22:43:53 ----D---- C:\Program Files\Microsoft Works 2010-07-29 22:22:10 ----D---- C:\Program Files\Common Files\LightScribe 2010-07-29 06:46:46 ----SHD---- C:\boot 2010-07-29 06:08:53 ----SHD---- C:\$RECYCLE.BIN 2010-07-28 18:26:31 ----D---- C:\Program Files\PC Connectivity Solution 2010-07-28 18:24:55 ----D---- C:\Program Files\Jahshaka 2010-07-27 21:20:49 ----D---- C:\Program Files\Common Files 2010-07-27 20:21:41 ----D---- C:\Program Files\Codemasters 2010-07-24 19:02:35 ----HD---- C:\Program Files\InstallShield Installation Information 2010-07-24 19:02:26 ----RSD---- C:\Windows\Media 2010-07-24 19:02:25 ----D---- C:\Windows\registration 2010-07-16 03:18:53 ----D---- C:\Program Files\Windows Mail 2010-07-07 11:11:43 ----A---- C:\Windows\win.ini 2010-07-02 21:39:05 ----A---- C:\Windows\system32\mrt.exe 2010-07-02 20:54:26 ----D---- C:\Windows\system32\Tasks ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R0 prohlp02;StarForce Protection Helper Driver v2; C:\Windows\System32\drivers\prohlp02.sys [2004-08-09 114016] R0 prosync1;StarForce Protection Synchronization Driver v1; C:\Windows\System32\drivers\prosync1.sys [2004-07-19 7040] R0 PxHelp20;PxHelp20; C:\Windows\System32\Drivers\PxHelp20.sys [2007-02-02 43528] R0 sfhlp01;StarForce Protection Helper Driver; C:\Windows\System32\drivers\sfhlp01.sys [2003-12-01 4832] R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2010-04-21 691696] R1 prodrv06;StarForce Protection Environment Driver v6; C:\Windows\System32\drivers\prodrv06.sys [2004-08-09 53920] R2 ASPI32;ASPI32; C:\Windows\system32\drivers\ASPI32.sys [2002-05-06 17005] R2 atksgt;atksgt; C:\Windows\system32\DRIVERS\atksgt.sys [2009-07-05 281760] R2 DefragFS;DefragFS; C:\Windows\system32\drivers\DefragFS.sys [2009-01-09 71184] R2 lirsgt;lirsgt; C:\Windows\system32\DRIVERS\lirsgt.sys [2009-07-05 25888] R2 mdmxsdk;mdmxsdk; C:\Windows\system32\DRIVERS\mdmxsdk.sys [2006-06-19 12672] R2 rimmptsk;rimmptsk; C:\Windows\system32\DRIVERS\rimmptsk.sys [2007-02-24 39936] R2 rimsptsk;rimsptsk; C:\Windows\system32\DRIVERS\rimsptsk.sys [2007-01-23 42496] R2 rismxdp;Ricoh xD-Picture Card Driver; C:\Windows\system32\DRIVERS\rixdptsk.sys [2007-01-23 37376] R2 XAudio;XAudio; C:\Windows\system32\DRIVERS\xaudio.sys [2007-07-10 8704] R3 AmdLLD;AMD Low Level Device Driver; C:\Windows\system32\DRIVERS\AmdLLD.sys [2007-06-29 34304] R3 ATSWPDRV;AuthenTec TruePrint USB Driver (SwipeSensor); C:\Windows\system32\DRIVERS\ATSwpDrv.sys [2007-03-28 140424] R3 BCM43XX;Sterownik karty sieciowej Broadcom 802.11; C:\Windows\system32\DRIVERS\bcmwl6.sys [2010-02-24 1331192] R3 CnxtHdAudService;Conexant UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\CHDRT32.sys [2008-03-04 188416] R3 HBtnKey;HBtnKey; C:\Windows\system32\DRIVERS\cpqbttn.sys [2008-04-14 9344] R3 HpqKbFiltr;HpqKbFilter Driver; C:\Windows\system32\DRIVERS\HpqKbFiltr.sys [2007-06-18 16768] R3 HSF_DPV;HSF_DPV; C:\Windows\system32\DRIVERS\HSX_DPV.sys [2007-06-20 984064] R3 HSXHWAZL;HSXHWAZL; C:\Windows\system32\DRIVERS\HSXHWAZL.sys [2007-06-20 208896] R3 mcdbus;Driver for MagicISO SCSI Host Controller; C:\Windows\system32\DRIVERS\mcdbus.sys [2009-02-24 116736] R3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\Windows\system32\DRIVERS\nvmfdx32.sys [2007-03-07 1059112] R3 nvlddmkm;nvlddmkm; C:\Windows\system32\DRIVERS\nvlddmkm.sys [2009-11-21 11515752] R3 nvsmu;nvsmu; C:\Windows\system32\DRIVERS\nvsmu.sys [2007-02-17 12032] R3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2009-04-11 89088] R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2008-06-20 200112] R3 usbvideo;Urządzenie wideo USB (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2008-01-19 134016] R3 winachsf;winachsf; C:\Windows\system32\DRIVERS\HSX_CNXT.sys [2007-06-20 660480] S2 PGPsdkDriver;PGPsdkDriver; C:\Windows\System32\Drivers\PGPsdk.sys [] S3 a64kji4e;a64kji4e; C:\Windows\system32\drivers\a64kji4e.sys [] S3 awmmvq7b;awmmvq7b; C:\Windows\system32\drivers\awmmvq7b.sys [] S3 ayhegh7g;ayhegh7g; C:\Windows\system32\drivers\ayhegh7g.sys [] S3 BCM43XV;Sterownik karty sieciowej Broadcom Extensible 802.11; C:\Windows\system32\DRIVERS\bcmwl6.sys [2010-02-24 1331192] S3 BthEnum;Usługa wyliczania Bluetooth; C:\Windows\system32\DRIVERS\BthEnum.sys [2009-04-11 22528] S3 BthPan;Urządzenie Bluetooth (sieć osobista); C:\Windows\system32\DRIVERS\bthpan.sys [2008-01-19 92160] S3 BTHPORT;Sterownik portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2009-04-11 507904] S3 BTHUSB;Sterownik USB odbiornika radiowego Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2009-04-11 29696] S3 btwaudio;Urz1dzenie dYwiekowe Bluetooth; C:\Windows\system32\drivers\btwaudio.sys [2007-04-18 79664] S3 btwavdt;Bluetooth AVDT Service; C:\Windows\system32\drivers\btwavdt.sys [2007-04-18 81200] S3 btwrchid;btwrchid; C:\Windows\system32\DRIVERS\btwrchid.sys [2007-04-18 16432] S3 Dot4;Sterownik MS IEEE-1284.4; C:\Windows\system32\DRIVERS\Dot4.sys [2008-01-19 131584] S3 Dot4Print;Sterownik klasy drukowania dla IEEE-1284.4; C:\Windows\system32\DRIVERS\Dot4Prt.sys [2008-01-19 16384] S3 dot4usb;MS Dot4USB Filter Dot4USB Filter; C:\Windows\system32\DRIVERS\dot4usb.sys [2008-01-19 36864] S3 drmkaud;Microsoft Kernel DRM Audio Descrambler; C:\Windows\system32\drivers\drmkaud.sys [2008-01-19 5632] S3 E100B;Sterownik karty Intel(R) PRO; C:\Windows\system32\DRIVERS\e100b325.sys [2006-11-02 163328] S3 EagleNT;EagleNT; \??\C:\Windows\system32\drivers\EagleNT.sys [] S3 epmntdrv;epmntdrv; \??\C:\Windows\system32\epmntdrv.sys [2009-08-26 14216] S3 EuGdiDrv;EuGdiDrv; \??\C:\Windows\system32\EuGdiDrv.sys [2009-09-16 8456] S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2009-08-05 54632] S3 h647906;DragonRise H647906 AMD64 Driver; C:\Windows\system32\drivers\h647906.sys [] S3 h648101;DragonRise H648101 AMD64 Driver; C:\Windows\system32\drivers\h648101.sys [] S3 h648103;DragonRise H648103 AMD64 Driver; C:\Windows\system32\drivers\h648103.sys [] S3 hamachi;Hamachi Network Interface; C:\Windows\system32\DRIVERS\hamachi.sys [2010-02-03 26176] S3 HdAudAddService;Microsoft UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\CHDART.sys [2007-06-26 163328] S3 hid7906;hid7906; C:\Windows\system32\drivers\hid7906.sys [2008-08-08 41272] S3 hid8101;hid8101; C:\Windows\system32\drivers\hid8101.sys [2008-08-08 43192] S3 hid8103;hid8103; C:\Windows\system32\drivers\hid8103.sys [2008-08-08 40856] S3 HSFHWAZL;HSFHWAZL; C:\Windows\system32\DRIVERS\VSTAZL3.SYS [2006-11-02 200704] S3 ialm;ialm; C:\Windows\system32\DRIVERS\igdkmd32.sys [2006-10-19 1380864] S3 MSKSSRV;Serwer proxy usługi Microsoft Streaming; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-19 8192] S3 MSPCLOCK;Serwer proxy zegara Microsoft Streaming; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-19 5888] S3 MSPQM;Serwer proxy menedżera jakości Microsoft Streaming; C:\Windows\system32\drivers\MSPQM.sys [2008-01-19 5504] S3 MSTEE;Konwerter strumieni Tee/Sink-to-Sink Microsoft Streaming; C:\Windows\system32\drivers\MSTEE.sys [2008-01-19 6016] S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfd.sys [2008-08-26 18816] S3 pcouffin;VSO Software pcouffin; C:\Windows\System32\Drivers\pcouffin.sys [2008-12-08 47360] S3 RFCOMM;Urządzenie Bluetooth (Protokół TDI RFCOMM); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-04-11 148992] S3 upperdev;upperdev; C:\Windows\system32\DRIVERS\usbser_lowerflt.sys [2009-02-09 7808] S3 usbaudio;Sterownik audio USB (WDM); C:\Windows\system32\drivers\usbaudio.sys [2009-04-11 73216] S3 usbscan;Sterownik skanera USB; C:\Windows\system32\DRIVERS\usbscan.sys [2008-01-19 35328] S3 usbser;USB Modem Driver; C:\Windows\system32\drivers\usbser.sys [2009-04-11 27648] S3 UsbserFilt;UsbserFilt; C:\Windows\system32\DRIVERS\usbser_lowerfltj.sys [2009-02-09 7808] S3 VNUSB;VN Series Device; C:\Windows\system32\DRIVERS\VNUSB.sys [] S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2009-10-01 40448] S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-19 83328] ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R2 ASBroker;Logon Session Broker; C:\Windows\System32\svchost.exe [2008-01-19 21504] R2 ASChannel;Local Communication Channel; C:\Windows\System32\svchost.exe [2008-01-19 21504] R2 BthServ;@%SystemRoot%\System32\bthserv.dll,-101; C:\Windows\system32\svchost.exe [2008-01-19 21504] R2 CLCapSvc;CyberLink Background Capture Service (CBCS); C:\Program Files\HP\QuickPlay\Kernel\TV\CLCapSvc.exe [2007-04-23 262243] R2 hpqddsvc;Usługa HP CUE DeviceDiscovery; C:\Windows\system32\svchost.exe [2008-01-19 21504] R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2008-06-09 151552] R2 Net Driver HPZ12;Net Driver HPZ12; C:\Windows\System32\svchost.exe [2008-01-19 21504] R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2009-11-20 122984] R2 PDAgent;PDAgent; G:\Programy\defragmentator dysku\PDAgent.exe [2009-02-23 996616] R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\Windows\System32\svchost.exe [2008-01-19 21504] R2 PnkBstrA;PnkBstrA; C:\Windows\system32\PnkBstrA.exe [2008-03-09 66872] R2 SeaPort;SeaPort; C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe [2009-05-19 240512] R2 StarWindServiceAE;StarWind AE Service; G:\Programy\Alcohol 120\StarWind\StarWindServiceAE.exe [2007-05-28 357888] R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2009-08-18 1529728] R2 XAudioService;XAudioService; C:\Windows\system32\DRIVERS\xaudio.exe [2007-07-10 386560] R3 hpqcxs08;hpqcxs08; C:\Windows\system32\svchost.exe [2008-01-19 21504] R3 hpqwmiex;hpqwmiex; C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe [2008-05-01 165192] S2 a2free;a-squared Free Service; C:\Program Files\a-squared Free\a2service.exe [2010-04-15 1872320] S2 CLSched;CyberLink Task Scheduler (CTS); C:\Program Files\HP\QuickPlay\Kernel\TV\CLSched.exe [] S2 HP Health Check Service;HP Health Check Service; C:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe [2007-03-14 136712] S2 PGPsdkServ;PGPsdkService; C:\Windows\system32\PGPsdkServ.exe [] S3 Com4QLBEx;Com4QLBEx; C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe [2008-04-03 275760] S3 FontCache;@%systemroot%\system32\FntCache.dll,-100; C:\Windows\system32\svchost.exe [2008-01-19 21504] S3 fsssvc;Funkcja Bezpieczeństwo rodzinne usługi Windows Live; C:\Program Files\Windows Live\Family Safety\fsssvc.exe [2009-08-05 782688] S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe [2004-10-22 151552] S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [] S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [] S3 PDEngine;PDEngine; G:\Programy\defragmentator dysku\PDEngine.exe [2009-02-23 1107208] S3 RoxMediaDB9;RoxMediaDB9; C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe [2007-02-12 958464] S3 usprserv;User Privilege Service; C:\Windows\System32\svchost.exe [2008-01-19 21504] S4 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe [] S4 stllssvr;stllssvr; C:\Program Files\Common Files\SureThing Shared\stllssvr.exe [] -----------------EOF----------------- [/log] [log] info.txt logfile of random's system information tool 1.08 2010-07-31 17:40:50 ======Uninstall list====== -->MsiExec /X{C5C1C0F0-D62F-4DBF-81D4-D7EF397C228B} 32 Bit HP CIO Components Installer-->MsiExec.exe /I{F1E63043-54FC-429B-AB2C-31AF9FBA4BC7} 7-Zip 4.65-->"G:\Programy\7-Zip\Uninstall.exe" Ad-Aware SE Personal-->G:\Programy\AD-AWA~1\UNWISE.EXE G:\Programy\AD-AWA~1\INSTALL.LOG Adobe Flash Player 10 ActiveX-->C:\Windows\system32\Macromed\Flash\FlashUtil10h_ActiveX.exe -maintain activex Adobe Flash Player 10 Plugin-->C:\Windows\system32\Macromed\Flash\FlashUtil10h_Plugin.exe -maintain plugin Adobe Reader 8.1.4-->MsiExec.exe /I{AC76BA86-7AD7-1033-7B44-A81300000003} Adobe Shockwave Player 11.5-->"C:\Windows\system32\Adobe\Shockwave 11\uninstaller.exe" Aktualizacja produktu Microsoft Office Excel 2007 Help (KB963678)-->msiexec /package {90120000-0016-0415-0000-0000000FF1CE} /uninstall {04E205D6-88B1-4652-B162-42DF2C3B1228} Aktualizacja produktu Microsoft Office Powerpoint 2007 Help (KB963669)-->msiexec /package {90120000-0018-0415-0000-0000000FF1CE} /uninstall {442ECBCF-94A7-48CC-8CD9-D31FFFD5FA86} Aktualizacja produktu Microsoft Office Word 2007 Help (KB963665)-->msiexec /package {90120000-001B-0415-0000-0000000FF1CE} /uninstall {128A36ED-21BE-4547-9FFE-5B85AEC735DD} Aktualizator Google-->"C:\Program Files\Google\Google Updater\GoogleUpdater.exe" -uninstall Archiwizator WinRAR-->G:\Programy\WinRAR\uninstall.exe Ashampoo Burning Studio 2010-->"G:\Programy\Ashampoo Burning Studio 2010\unins000.exe" a-squared Free 4.5-->"C:\Program Files\a-squared Free\unins000.exe" Asystent rejestrowania za pomocą identyfikatora Windows Live-->MsiExec.exe /X{0840B4D6-7DD1-4187-8523-E6FC0007EFB7} AuthenTec Fingerprint Sensor Minimum Install-->MsiExec.exe /I{B61B6668-A674-4A06-8405-51944D5CCDDD} Bezpieczeństwo rodzinne usługi Windows Live-->MsiExec.exe /X{F88335A8-CA7B-41DE-B37D-81306C73B507} BitComet FLV Converter 1.0-->G:\Programy\BitComet FLV Converter\uninst.exe CDisplay 1.8-->G:\Programy\CDisplay\unins000.exe Conexant HD Audio-->C:\Program Files\CONEXANT\CNXT_AUDIO_HDA\UIU32a.exe -U -IQv30CFza.INF DC++ 0.705-->"G:\Programy\DC++\uninstall.exe" DeepBurner v1.9.0.228-->"G:\Programy\DeepBurner\Uninstall.exe" "G:\Programy\DeepBurner\install.log" -u Download Accelerator Plus (DAP)-->G:\Programy\DAP\DAPREMOVE.EXE Dual-Core Optimizer-->MsiExec.exe /X{9FD6F1A8-5550-46AF-8509-271DF0E768B5} EA Download Manager-->C:\Program Files\Electronic Arts\EADM\Uninstall.exe EASEUS Partition Master 4.1.1 Home Edition-->"G:\Programy\EASEUS Partition Master 4.1.1 Home Edition\unins000.exe" ESU for Microsoft Vista-->MsiExec.exe /X{4CD2F5E3-4CDA-4F18-934A-5DD4F23CFEC9} EVEREST Ultimate v4.20.1257 + Corporate Edition Beta Registered-->"G:\Programy\EVEREST Corporate + Ultimate Edition\unins000.exe" EvilLyrics-->"G:\Programy\EvilLyrics\uninst.exe" Gadu-Gadu 7.7-->G:\Programy\Gadu-Gadu3\Setup.exe Galeria fotografii usługi Windows Live-->MsiExec.exe /X{9CDEAEC9-2F14-4D39-8541-C1EEC4B5D1CB} GameDesire-Pool & Snooker-->G:\Programy\Ganymede\billiards_uninstall.exe GameTap Web Player-->C:\Program Files\InstallShield Installation Information\{1C338B34-1BFB-4BAD-B4A3-7B71A2E221F6}\setup.exe -runfromtemp -l0x0009 -removeonly Google Earth-->MsiExec.exe /X{C084BC61-E537-11DE-8616-005056806466} Google Toolbar for Internet Explorer-->"C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarManager_9DE96A29E721D90A.exe" /uninstall Google Toolbar for Internet Explorer-->MsiExec.exe /I{18455581-E099-4BA8-BC6B-F34B2F06600C} Google Update Helper-->MsiExec.exe /I{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} GTA2-->C:\Windows\IsUninst.exe -fg:\gry\gta2\Uninst.isu Guitar Pro 5.2-->"G:\Programy\Guitar Pro 5\unins000.exe" HDAUDIO Soft Data Fax Modem with SmartCP-->C:\Program Files\CONEXANT\CNXT_MODEM_HDA_HSF\UIU32m.exe -U -IwqcVenz.inf Hewlett-Packard Active Check-->MsiExec.exe /X{254C37AA-6B72-4300-84F6-98A82419187E} Hewlett-Packard Asset Agent-->MsiExec.exe /X{669D4A35-146B-4314-89F1-1AC3D7B88367} HijackThis 2.0.2-->"G:\Programy\Hijack\HijackThis.exe" /uninstall Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)-->C:\Windows\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall /qb+ REBOOTPROMPT="" Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)-->C:\Windows\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {A7EEA2F2-BFCD-4A54-A575-7B81A786E658} /qb+ REBOOTPROMPT="" HP Active Support Library 32 bit components-->MsiExec.exe /I{FAB0C302-CB18-4A7A-BA03-C3DC23101A68} HP Active Support Library-->C:\Program Files\InstallShield Installation Information\{290B83AA-093A-45BF-A917-D1C4A1E8D917}\setup.exe -runfromtemp -l0x0409 HP Customer Experience Enhancements-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{AB5E289E-76BF-4251-9F3F-9B763F681AE0}\setup.exe" -l0x9 -removeonly HP Customer Participation Program 8.0-->C:\Program Files\HP\Digital Imaging\ExtCapUninstall\hpzscr01.exe -datfile hpqhsc01.dat HP Doc Viewer-->MsiExec.exe /I{082702D5-5DD8-4600-BCE5-48B15174687F} HP Easy Setup - Frontend-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{40F7AED3-0C7D-4582-99F6-484A515C73F2}\setup.exe" -l0x9 -removeonly HP Help and Support-->MsiExec.exe /I{9061CEF2-51F5-42C9-8A70-9ED351C6597A} HP Imaging Device Functions 8.0-->C:\Program Files\HP\Digital Imaging\DeviceManagement\hpzscr01.exe -datfile hpqbud01.dat HP Integrated Module with Bluetooth wireless technology 6.0.1.4900-->MsiExec.exe /X{03D1988F-469F-4843-8E6E-E5FE9D17889D} HP OCR Software 8.0-->C:\Program Files\HP\Digital Imaging\OCR\hpzscr01.exe -datfile hpqbud11.dat HP Photosmart Essential 2.0-->C:\Program Files\HP\Digital Imaging\PhotoSmartEssential\hpzscr01.exe -datfile hpqbud13.dat HP Photosmart Essential-->MsiExec.exe /X{EB21A812-671B-4D08-B974-2A347F0D8F70} HP Photosmart, Officejet, PSC and Deskjet All-In-One Driver Software 8.0.B-->C:\Program Files\HP\Digital Imaging\{C916D86C-AB76-49c7-B0E4-A946E0FD9BC2}\setup\hpzscr01.exe -datfile hposcr19.dat -onestop -showdisconnect -forcereboot HP Quick Launch Buttons 6.40 H2-->C:\Program Files\InstallShield Installation Information\{34D2AB40-150D-475D-AE32-BD23FB5EE355}\Setup.exe -runfromtemp -l0x0015 -removeonly uninst HP QuickPlay 3.2-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{45D707E9-F3C4-11D9-A373-0050BAE317E1}\setup.exe" -uninstall HP Solution Center 8.0-->C:\Program Files\HP\Digital Imaging\eSupport\hpzscr01.exe -datfile hpqbud05.dat HP Update-->MsiExec.exe /X{7059BDA7-E1DB-442C-B7A1-6144596720A4} HP User Guides 0057-->MsiExec.exe /I{DDFD9BA2-8E26-4E49-92AE-882424DAB1BC} HP Wireless Assistant-->MsiExec.exe /X{54CC7901-804D-4155-B353-21F0CC9112AB} HPSSupply-->MsiExec.exe /X{EB75DE50-5754-4F6F-875D-126EDF8E4CB3} IrfanView (remove only)-->G:\Programy\IrfanView\iv_uninstall.exe JAP-->G:\Programy\JAP\uninstall.exe Java(TM) 6 Update 17-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216010FF} Java(TM) 6 Update 5-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160050} Java(TM) 6 Update 7-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160070} Java(TM) SE Runtime Environment 6-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160000} Junk Mail filter update-->MsiExec.exe /I{E2DFE069-083E-4631-9B6C-43C48E991DE5} K-Lite Codec Pack 3.8.0 Full-->"G:\Programy\K-Lite Codec Pack\unins000.exe" LightScribe System Software 1.14.17.1-->MsiExec.exe /X{0E7DBD52-B097-4F2B-A7C7-F105B0D20FDB} LogonStudio Vista-->C:\PROGRA~1\Stardock\OBJECT~1\LOGONS~1\UNWISE.EXE C:\PROGRA~1\Stardock\OBJECT~1\LOGONS~1\INSTALL.LOG Machinarium-->G:\Gry\Machinarium\uninst.exe Magic ISO Maker v5.5 (build 0281)-->G:\Programy\MagicISO\UNWISE.EXE G:\Programy\MagicISO\INSTALL.LOG MagicDisc 2.7.106-->G:\Programy\MAGICD~1\UNWISE.EXE G:\Programy\MAGICD~1\INSTALL.LOG Malwarebytes' Anti-Malware-->"G:\Programy\Malwarebytes' Anti-Malware\unins000.exe" Max Payne-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{39930321-4C58-4B8B-BCBF-342698C9801D}\setup.exe" uninstall uninstall MediaMonkey 3.1-->"G:\Programy\MediaMonkey\unins000.exe" Microsoft .NET Framework 3.5 Language Pack SP1 - plk-->MsiExec.exe /I{9EFDFBA8-9174-3C61-8645-28376C5CA994} Microsoft .NET Framework 3.5 SP1-->C:\Windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setup.exe Microsoft .NET Framework 3.5 SP1-->MsiExec.exe /I{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} Microsoft Choice Guard-->MsiExec.exe /X{F0E12BBA-AD66-4022-A453-A1C8A0C4D570} Microsoft Games for Windows - LIVE Redistributable-->MsiExec.exe /X{8FB1B528-E260-451E-9B55-E9152F94B80B} Microsoft Games for Windows - LIVE-->MsiExec.exe /X{F97E3841-CA9D-4964-9D64-26066241D26F} Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0015-0415-0000-0000000FF1CE} /uninstall {79EB535E-76E4-4356-8146-A24EE55AB69D} Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0016-0415-0000-0000000FF1CE} /uninstall {79EB535E-76E4-4356-8146-A24EE55AB69D} Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0018-0415-0000-0000000FF1CE} /uninstall {79EB535E-76E4-4356-8146-A24EE55AB69D} Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0019-0415-0000-0000000FF1CE} /uninstall {79EB535E-76E4-4356-8146-A24EE55AB69D} Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001A-0415-0000-0000000FF1CE} /uninstall {79EB535E-76E4-4356-8146-A24EE55AB69D} Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001B-0415-0000-0000000FF1CE} /uninstall {79EB535E-76E4-4356-8146-A24EE55AB69D} Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0044-0415-0000-0000000FF1CE} /uninstall {79EB535E-76E4-4356-8146-A24EE55AB69D} Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-006E-0415-0000-0000000FF1CE} /uninstall {D45F91DE-F0FC-4D5F-9A0C-FDE5B251AAC6} Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-00A1-0415-0000-0000000FF1CE} /uninstall {79EB535E-76E4-4356-8146-A24EE55AB69D} Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-00BA-0415-0000-0000000FF1CE} /uninstall {79EB535E-76E4-4356-8146-A24EE55AB69D} Microsoft Office Access MUI (Polish) 2007-->MsiExec.exe /X{90120000-0015-0415-0000-0000000FF1CE} Microsoft Office Enterprise 2007-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall ENTERPRISE /dll OSETUP.DLL Microsoft Office Enterprise 2007-->MsiExec.exe /X{90120000-0030-0000-0000-0000000FF1CE} Microsoft Office Excel MUI (Polish) 2007-->MsiExec.exe /X{90120000-0016-0415-0000-0000000FF1CE} Microsoft Office Groove MUI (Polish) 2007-->MsiExec.exe /X{90120000-00BA-0415-0000-0000000FF1CE} Microsoft Office InfoPath MUI (Polish) 2007-->MsiExec.exe /X{90120000-0044-0415-0000-0000000FF1CE} Microsoft Office Live Add-in 1.5-->MsiExec.exe /I{F40BBEC7-C2A4-4A00-9B24-7A055A2C5262} Microsoft Office OneNote MUI (Polish) 2007-->MsiExec.exe /X{90120000-00A1-0415-0000-0000000FF1CE} Microsoft Office Outlook MUI (Polish) 2007-->MsiExec.exe /X{90120000-001A-0415-0000-0000000FF1CE} Microsoft Office PowerPoint MUI (Polish) 2007-->MsiExec.exe /X{90120000-0018-0415-0000-0000000FF1CE} Microsoft Office Proof (English) 2007-->MsiExec.exe /X{90120000-001F-0409-0000-0000000FF1CE} Microsoft Office Proof (German) 2007-->MsiExec.exe /X{90120000-001F-0407-0000-0000000FF1CE} Microsoft Office Proof (Polish) 2007-->MsiExec.exe /X{90120000-001F-0415-0000-0000000FF1CE} Microsoft Office Proofing (Polish) 2007-->MsiExec.exe /X{90120000-002C-0415-0000-0000000FF1CE} Microsoft Office Publisher MUI (Polish) 2007-->MsiExec.exe /X{90120000-0019-0415-0000-0000000FF1CE} Microsoft Office Shared MUI (Polish) 2007-->MsiExec.exe /X{90120000-006E-0415-0000-0000000FF1CE} Microsoft Office Word MUI (Polish) 2007-->MsiExec.exe /X{90120000-001B-0415-0000-0000000FF1CE} Microsoft Search Enhancement Pack-->MsiExec.exe /X{4CBA3D4C-8F51-4D60-B27E-F6B641C571E7} Microsoft Silverlight-->MsiExec.exe /I{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} Microsoft SQL Server 2005 Compact Edition [ENU]-->MsiExec.exe /I{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8} Microsoft Sync Framework Services Native v1.0 (x86)-->MsiExec.exe /I{BD64AF4A-8C80-4152-AD77-FCDDF05208AB} Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053-->MsiExec.exe /X{770657D0-A123-3C07-8E44-1C83EC895118} Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d} Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{A49F249F-0C91-497F-86DF-B2585E8E76B7} Microsoft Works-->MsiExec.exe /I{E9AD90C1-6281-45AB-9458-098D2EF770A1} Microsoft WSE 3.0 Runtime-->MsiExec.exe /X{E3E71D07-CD27-46CB-8448-16D4FB29AA13} Monopoly by Parker Brothers-->G:\Gry\MONOPO~1\UNWISE.EXE /U G:\Gry\MONOPO~1\INSTALL.LOG MSCU for Microsoft Vista-->MsiExec.exe /I{4D78E819-D633-43AF-A594-A7645E53EC3C} MSVC80_x86_v2-->MsiExec.exe /I{6D3245B1-8DB8-4A23-9CD2-2C90F40ABAF6} MSVC80_x86-->MsiExec.exe /I{212748BB-0DA5-46DE-82A1-403736DC9F27} MSVCRT-->MsiExec.exe /I{22B775E7-6C42-4FC5-8E10-9A5E3257BD94} MSXML 4.0 SP2 (KB936181)-->MsiExec.exe /I{C04E32E0-0416-434D-AFB9-6969D703A9EF} MSXML 4.0 SP2 (KB941833)-->MsiExec.exe /I{C523D256-313D-4866-B36A-F3DE528246EF} MSXML 4.0 SP2 (KB954430)-->MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5DCDC52A71} MSXML 4.0 SP2 (KB973688)-->MsiExec.exe /I{F662A8E6-F4DC-41A2-901E-8C11F044BDEC} msxml4-->MsiExec.exe /X{5AE3D9F1-9E9E-4015-8787-E22705AA32C5} NAPIPROJEKT 1.0.6.2-->"G:\Programy\NAPI-PROJEKT\unins000.exe" Narzędzie do przekazywania usługi Windows Live-->MsiExec.exe /I{205C6BDD-7B73-42DE-8505-9A093F35A238} neroxml-->MsiExec.exe /I{56C049BE-79E9-4502-BEA7-9754A3E60F9B} Nokia Connectivity Cable Driver-->MsiExec.exe /I{1B9B5B3B-28E7-4E59-A80D-D670AA984514} Nokia PC Suite-->C:\ProgramData\Installations\{55495E65-7C5B-48E4-BC7D-DE54F3DE5ED6}\Nokia_PC_Suite_7_1_30_8_pol.exe Nokia PC Suite-->MsiExec.exe /I{55495E65-7C5B-48E4-BC7D-DE54F3DE5ED6} Nokia Software Updater-->MsiExec.exe /X{F983B4FE-547B-4C44-BAF7-4F4DBA93D548} NVIDIA Display Control Panel-->C:\Program Files\NVIDIA Corporation\Uninstall\nvuninst.exe DisplayControlPanel NVIDIA Drivers-->C:\Program Files\NVIDIA Corporation\Uninstall\nvuninst.exe UninstallGUI NVIDIA PhysX-->MsiExec.exe /X{C5C1C0F0-D62F-4DBF-81D4-D7EF397C228B} OpenAL-->"C:\Program Files\OpenAL\OpenALwEAX.exe" /U /S Opera 10.60-->MsiExec.exe /X{1D2C96C3-A3F3-49E7-B839-95279DED837F} Paint.NET v3.36-->MsiExec.exe /X{43602F34-1AA3-44FB-AEB2-D08C2C73743F} Pakiet językowy programu Microsoft .NET Framework 3.5 z dodatkiem SP1 — PLK-->C:\Windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 Language Pack SP1 - plk\setup.exe Pakiet sterowników systemu Windows - Nokia Modem (03/05/2008 3.7)-->C:\PROGRA~1\DIFX\270581355A767BF1\dpinst.exe /u C:\Windows\System32\DriverStore\FileRepository\nokia_bluetooth.inf_ce5ad925\nokia_bluetooth.inf Pakiet sterowników systemu Windows - Nokia Modem (03/13/2008 6.86.0.1)-->C:\PROGRA~1\DIFX\270581355A767BF1\dpinst.exe /u C:\Windows\System32\DriverStore\FileRepository\nokbtmdm.inf_674398ba\nokbtmdm.inf Pakiet sterowników systemu Windows - Nokia Modem (06/01/2009 4.1)-->C:\PROGRA~1\DIFX\270581355A767BF1\dpinst.exe /u C:\Windows\System32\DriverStore\FileRepository\nokia_bluetooth.inf_44b2e2d6\nokia_bluetooth.inf Pakiet sterowników systemu Windows - Nokia Modem (06/01/2009 7.01.0.3)-->C:\PROGRA~1\DIFX\270581355A767BF1\dpinst.exe /u C:\Windows\System32\DriverStore\FileRepository\nokbtmdm.inf_34a3d799\nokbtmdm.inf Pakiet sterowników systemu Windows - Nokia Modem (08/03/2007 6.84.0.2)-->C:\PROGRA~1\DIFX\270581355A767BF1\dpinst.exe /u C:\Windows\System32\DriverStore\FileRepository\nokbtmdm.inf_7837a5db\nokbtmdm.inf Pakiet sterowników systemu Windows - Nokia Modem (10/12/2007 3.6)-->C:\PROGRA~1\DIFX\270581355A767BF1\dpinst.exe /u C:\Windows\System32\DriverStore\FileRepository\nokia_bluetooth.inf_ee12375f\nokia_bluetooth.inf Pakiet sterowników systemu Windows - Nokia pccsmcfd (08/22/2008 7.0.0.0)-->C:\PROGRA~1\DIFX\B4723E9A0713E5B1\dpinst.exe /u C:\Windows\system32\DRVSTORE\pccsmcfd_A3B3916E5D8138F59EE218321B27B044D3B18294\pccsmcfd.inf Pando Media Booster-->C:\Program Files\Pando Networks\Media Booster\uninst.exe Paseczek 1.1.0.365-->"G:\Programy\Paseczek\unins000.exe" PC Connectivity Solution-->MsiExec.exe /I{0C973594-7DDF-4BD0-84ED-3517F7622037} PDF-Viewer-->"G:\Programy\Tracker Software\PDF Viewer\unins000.exe" PerfectDisk 10 Professional-->MsiExec.exe /I{7B738CD9-D107-48C7-8E65-2E6639A39C8D} PGP 8.0.2-->PGPUNI~1\setup.exe PGP Poczta usługi Windows Live-->MsiExec.exe /I{C35FE07E-24B5-410F-85B7-122087A0C7DD} Podstawowe programy Windows Live-->C:\Program Files\Windows Live\Installer\wlarp.exe Podstawowe programy Windows Live-->MsiExec.exe /I{9862473C-E063-4C68-A161-2CDE0E8048A5} Polski (Akcent)-->MsiExec.exe /I{3F732D97-7E10-4FC4-854B-8C95030BA89F} Real Alternative 1.7.5-->"G:\Programy\K-Lite Codec Pack\Real Alternative\unins000.exe" Roxio Activation Module-->MsiExec.exe /I{35E1EC43-D4FC-4E4A-AAB3-20DDA27E8BB0} Roxio Creator Audio-->MsiExec.exe /I{83FFCFC7-88C6-41c6-8752-958A45325C82} Roxio Creator Basic v9-->MsiExec.exe /I{C8B0680B-CDAE-4809-9F91-387B6DE00F7C} Roxio Creator Copy-->MsiExec.exe /I{619CDD8A-14B6-43a1-AB6C-0F4EE48CE048} Roxio Creator Data-->MsiExec.exe /I{0D397393-9B50-4c52-84D5-77E344289F87} Roxio Creator EasyArchive-->MsiExec.exe /I{11F93B4B-48F0-4A4E-AE77-DFA96A99664B} Roxio Creator Tools-->MsiExec.exe /I{0394CDC8-FABD-4ed8-B104-03393876DFDF} Roxio Express Labeler 3-->MsiExec.exe /I{6675CA7F-E51B-4F6A-99D4-F8F0124C6EAA} Roxio MyDVD Basic v9-->MsiExec.exe /I{33C65B6A-5D73-4E3E-A1F9-127C27BD3F72} Security Update for 2007 Microsoft Office System (KB951550)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {B243E9A5-ED77-4F1B-B338-2486FD82DC85} Security Update for 2007 Microsoft Office System (KB951944)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {797AE457-BA17-4BBC-B501-25FB3A0103C7} Security Update for 2007 Microsoft Office System (KB960003)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {F04F8702-18D0-458D-921E-146FB7CD38CF} Security Update for CAPICOM (KB931906)-->MsiExec.exe /I{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A} Security Update for CAPICOM (KB931906)-->MsiExec.exe /X{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A} Security Update for Microsoft Office Excel 2007 (KB959997)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {9EAC3AEC-5C81-4856-A05B-DE9DC236D740} Security Update for Microsoft Office OneNote 2007 (KB950130)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {F1B2401C-B610-4BF2-AA1C-52C55827A8F4} Security Update for Microsoft Office PowerPoint 2007 (KB951338)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {558B709B-821B-4FC5-90FC-9A8890641E77} Security Update for Microsoft Office Publisher 2007 (KB950114)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {F9C3CDBA-1F00-4D4D-959D-75C9D3ACDD85} Security Update for Microsoft Office system 2007 (KB954326)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {5F7F6FFF-395D-480E-8450-64F385D82C5F} Security Update for Microsoft Office system 2007 (KB956828)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {885E081B-72BD-4E76-8E98-30B4BE468FAC} Security Update for Microsoft Office Word 2007 (KB956358)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {4551666D-0FD6-4C69-8A81-1C6F2E64517C} Skaner on-line mks_vir-->C:\Windows\system32\SkanerOnlineUninstall.exe Skype web features-->MsiExec.exe /I{541DEAC0-5F3D-45E6-B7CB-94ECF3B96748} Skype™ 4.1-->MsiExec.exe /X{D103C4BA-F905-437A-8049-DB24763BBE36} SmartAudio-->C:\Program Files\Conexant\SmartAudio\SETUP.EXE -U -ISmartAudio /F1"C:\Program Files\InstallShield Installation Information\{E621DCAF-82F7-4F6D-B563-B6A4004B2397}\setup.iss" /S SMPlayer 0.6.8-->G:\Programy\SMPlayer\uninst.exe Snarfer-->G:\Programy\snarfer\uninstall.exe SopCast 3.2.9-->G:\Programy\SopCast\uninst.exe SPORE™ Fabryka stworów, wersja próbna-->"C:\Program Files\InstallShield Installation Information\{ECEE0279-785F-4CB3-9F28-E69813234BF8}\setup.exe" -runfromtemp -l0x0015 -removeonly StarCraft II Beta-->C:\Program Files\Common Files\Blizzard Entertainment\StarCraft II Beta\Uninstall.exe Synaptics Pointing Device Driver-->rundll32.exe "C:\Program Files\Synaptics\SynTP\SynISDLL.dll",standAloneUninstall System Requirements Lab-->C:\Program Files\SystemRequirementsLab\Uninstall.exe The KMPlayer (remove only)-->"G:\Programy\km player\The KMPlayer\uninstall.exe" The Sims™ 3-->"C:\Program Files\InstallShield Installation Information\{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}\Sims3Setup.exe" -runfromtemp -l0x0015 -removeonly Trine-->"G:\Gry\Trine\Trine\unins000.exe" TVAnts 1.0-->G:\Programy\TVAnts\UNWISE.EXE G:\Programy\TVAnts\INSTALL.LOG Underground Fighting-->"C:\Program Files\MAD HOG\Underground Fighting\unins000.exe" Unity Web Player-->C:\Program Files\Unity\WebPlayer\Uninstall.exe Update for 2007 Microsoft Office System (KB967642)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {C444285D-5E4F-48A4-91DD-47AAAA68E92D} Update for Microsoft .NET Framework 3.5 SP1 (KB963707)-->C:\Windows\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {B2AE9C82-DC7B-3641-BFC8-87275C4F3607} /qb+ REBOOTPROMPT="" Update for Microsoft Office Outlook 2007 (KB952142)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {4AD3A076-427C-491F-A5B7-7D1DE788A756} Update for Office 2007 (KB932080)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {EDC9CA29-6BC1-471C-828C-7A36109005D7} Update for Office 2007 (KB934391)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {B3091818-7C56-4C45-BE7D-CA23027A5EA5} Update for Outlook 2007 Junk Email Filter (kb2202131)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {A67392E8-282B-4BEF-8020-EF3DD664DE7B} USB Network Driver-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0700\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{66ED8E01-C915-41F5-B33E-C5C31F27B885}\setup.exe" -l0x9 VCRedistSetup-->MsiExec.exe /I{3921A67A-5AB1-4E48-9444-C71814CF3027} VeriSoft Access Manager-->rundll32.exe "c:\Program Files\Bioscrypt\VeriSoft\Bin\SetupHelper.dll",ExecMain /Uninstall {0ABA40AF-288D-41F1-B735-C5155692CD7D} VideoLAN VLC media player 0.8.6e-->G:\Programy\VLC\uninstall.exe VistaBootPRO 3.3-->MsiExec.exe /I{6C9FA746-8759-4040-A436-42922CB3492E} Wielki słownik polsko-angielski i angielsko-polski PWN-OXFORD-->C:\Windows\IsUn0415.exe -f"g:\programy\OxfordPWN Słownik\Uninst.isu" Winamp-->"G:\Programy\Winamp\UninstWA.exe" Windows Live Communications Platform-->MsiExec.exe /I{ED00D08A-3C5F-488D-93A0-A04F21F23956} Windows Live Messenger-->MsiExec.exe /X{D1803CD4-0CE7-4484-98E3-88D7A2D629A4} Windows Live Movie Maker-->MsiExec.exe /X{6053FE9B-5473-41D6-AEBF-AD6F98138191} Windows Live Sync-->MsiExec.exe /X{2E522ED6-01E2-4207-82D5-B3BFB31B8BD4} Windows Live Toolbar-->MsiExec.exe /X{A7388312-4FBB-48E5-8DC0-B63DA02658AE} Windows Live Writer-->MsiExec.exe /X{9AB614A6-719C-4A6E-A63E-831E0A35F62A} Windows Media Player Firefox Plugin-->MsiExec.exe /I{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4} WinZip-->G:\Programy\WinZip\WINZIP32.EXE /uninstall World of Warcraft-->C:\Program Files\Common Files\Blizzard Entertainment\World of Warcraft (2)\Uninstall.exe Xfire (remove only)-->"G:\Programy\Xfire\uninst.exe" ======Security center information====== AS: Windows Defender ======System event log====== Computer Name: Michał-PC Event Code: 4386 Message: Obsługa systemu Windows zażądała ponownego uruchomienia w celu ukończenia zmieniania stanu aktualizacji 975561-4_neutral_LDR z pakietu KB975561(Security Update) na Przemieszczanie(Staging). Record Number: 365429 Source Name: Microsoft-Windows-Servicing Time Written: 20100310080747.000000-000 Even [/log]
Sohei komentarz 31 lipca 2010 komentarz 31 lipca 2010 czytasz dokładnie ten temat http://www.bleepingcomputer.com/combofix/pl/instrukcja-uzycia-combofix Po czym pobierasz combofix i dajesz z niego loga. Pamiętaj o zainstalowania konsoli odzyskiwania !!!
logic88 komentarz 1 sierpnia 2010 Autor komentarz 1 sierpnia 2010 Log z Combofixa [log] ComboFix 10-07-31.04 - Michał 2010-08-01 10:02:00.1.2 - x86 Microsoft® Windows Vista™ Home Premium 6.0.6002.2.1250.48.1045.18.2558.1835 [GMT 2:00] Uruchomiony z: c:\users\Michał\Desktop\ComboFix.exe SP: Windows Defender *enabled* (Updated) {D68DDC3A-831F-4FAE-9E44-DA132C1ACF46} . ((((((((((((((((((((((((((((((((((((((( Usunięto ))))))))))))))))))))))))))))))))))))))))))))))))) . C:\autorun.inf C:\ftoodu.pif c:\programdata\Microsoft\Windows\Templates\_caroline.avi.lnk c:\programdata\Microsoft\Windows\Templates\9.png.lnk c:\programdata\Microsoft\Windows\Templates\Alwil Software.lnk c:\programdata\Microsoft\Windows\Templates\Julie.lnk c:\programdata\Microsoft\Windows\Templates\mapping.lnk c:\programdata\Microsoft\Windows\Templates\player.config.lnk c:\users\Default\AppData\Roaming\Microsoft\Windows\Templates\Aline.lnk c:\users\Default\AppData\Roaming\Microsoft\Windows\Templates\code_of_conduct.txt.lnk c:\users\Default\AppData\Roaming\Microsoft\Windows\Templates\images_earth.gif.lnk c:\users\Default\AppData\Roaming\Microsoft\Windows\Templates\INSTMAP2.lnk c:\users\Default\AppData\Roaming\Microsoft\Windows\Templates\My Photos.lnk c:\users\Default\AppData\Roaming\Microsoft\Windows\Templates\users.config.lnk D:\Autorun.inf D:\gfjrq.exe G:\Autorun.inf G:\rbwprr.exe . ((((((((((((((((((((((((( Pliki utworzone od 2010-07-01 do 2010-08-01 ))))))))))))))))))))))))))))))) . 2010-07-31 15:40 . 2010-07-31 16:22 -------- d-----w- c:\program files\trend micro 2010-07-31 15:40 . 2010-07-31 15:40 -------- d-----w- C:\rsit 2010-07-30 15:26 . 2010-04-29 13:39 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys 2010-07-30 15:26 . 2010-04-29 13:39 20952 ----a-w- c:\windows\system32\drivers\mbam.sys 2010-07-29 08:16 . 2010-07-29 08:16 -------- d-----w- c:\program files\PROnetworks 2010-07-28 12:02 . 2010-07-28 12:05 -------- d-----w- c:\program files\a-squared Free 2010-07-24 15:27 . 2010-07-24 15:27 4096 ----a-w- c:\windows\d3dx.dat . (((((((((((((((((((((((((((((((((((((((( Sekcja Find3M )))))))))))))))))))))))))))))))))))))))))))))))))))) . 2010-08-01 08:34 . 2010-08-01 08:34 103140 --sh--r- C:\loew.pif 2010-08-01 08:33 . 2009-07-11 17:53 198114 ----a-w- c:\programdata\nvModes.dat 2010-08-01 08:31 . 2007-10-26 21:59 12 ----a-w- c:\windows\bthservsdp.dat 2010-08-01 00:16 . 2006-11-02 12:37 -------- d-----w- c:\users\Default\AppData\Roaming\Media Center Programs 2010-08-01 00:16 . 2008-07-26 15:17 -------- d-----w- c:\programdata\WindowsSearch 2010-08-01 00:16 . 2009-09-19 15:41 -------- d-----w- c:\programdata\WEBREG 2010-08-01 00:16 . 2008-12-08 14:14 -------- d-----w- c:\programdata\vsosdk 2010-08-01 00:16 . 2008-11-06 19:17 -------- d-----w- c:\programdata\TVU Networks 2010-08-01 00:16 . 2009-07-05 06:19 -------- d-----w- c:\programdata\Tages 2010-08-01 00:14 . 2008-09-11 05:06 -------- d-----w- c:\programdata\Nokia 2010-08-01 00:14 . 2007-11-30 21:14 -------- d-----w- c:\programdata\Nero 2010-08-01 00:14 . 2010-03-15 08:17 -------- d-----w- c:\programdata\Microsoft Help 2010-08-01 00:04 . 2010-01-09 08:56 -------- d-----w- c:\programdata\Malwarebytes 2010-08-01 00:03 . 2008-06-18 13:35 -------- d-----w- c:\programdata\Ludia 2010-08-01 00:03 . 2007-12-23 17:05 -------- d-----w- c:\programdata\LightScribe 2010-08-01 00:03 . 2010-05-27 17:26 -------- d-----w- c:\programdata\KONAMI 2010-08-01 00:03 . 2008-07-29 05:05 -------- d-----w- c:\programdata\InstallShield 2010-08-01 00:03 . 2009-09-19 15:33 -------- d-----w- c:\programdata\HPSSUPPLY 2010-08-01 00:03 . 2008-02-28 11:43 -------- d-----w- c:\programdata\Installations 2010-08-01 00:03 . 2007-08-22 02:33 -------- d-----w- c:\programdata\HP 2010-08-01 00:03 . 2007-08-22 02:55 -------- d-----w- c:\programdata\Hewlett-Packard 2010-08-01 00:03 . 2009-01-17 09:10 -------- d-----w- c:\programdata\Google Updater 2010-08-01 00:02 . 2008-10-12 09:14 -------- d-----w- c:\programdata\GameTap Web Player 2010-08-01 00:02 . 2009-06-06 09:32 -------- d-----w- c:\programdata\Electronic Arts 2010-08-01 00:02 . 2010-04-21 20:39 -------- d-----w- c:\programdata\DAEMON Tools Lite 2010-08-01 00:02 . 2007-08-22 02:24 -------- d-----w- c:\programdata\CyberLink 2010-08-01 00:02 . 2008-09-25 17:38 -------- d-----w- c:\programdata\Brontes Processing 2010-08-01 00:02 . 2010-03-02 08:10 -------- d-----w- c:\programdata\Blizzard Entertainment 2010-08-01 00:02 . 2010-03-01 22:55 -------- d-----w- c:\programdata\Blizzard 2010-08-01 00:02 . 2010-02-08 08:11 -------- d-----w- c:\programdata\ashampoo 2010-08-01 00:02 . 2010-01-19 19:22 -------- d-----w- c:\programdata\Alwil Software 2010-07-30 23:28 . 2008-09-11 04:31 -------- d-----w- c:\program files\Nokia 2010-07-30 23:21 . 2009-01-12 11:40 -------- d-----w- c:\programdata\2DBoy 2010-07-30 15:58 . 2006-12-05 05:22 70286 ----a-w- c:\windows\system32\perfc015.dat 2010-07-30 15:58 . 2006-12-05 05:22 240676 ----a-w- c:\windows\system32\perfh015.dat 2010-07-29 20:48 . 2007-11-06 15:08 -------- d-----w- c:\program files\uTorrent 2010-07-29 20:45 . 2009-01-12 18:03 -------- d-----w- c:\program files\OpenAL 2010-07-29 20:43 . 2007-08-22 02:22 -------- d-----w- c:\program files\Microsoft Works 2010-07-29 20:22 . 2008-12-09 07:43 -------- d-----w- c:\program files\Common Files\LightScribe 2010-07-28 16:26 . 2009-06-23 13:47 -------- d-----w- c:\program files\PC Connectivity Solution 2010-07-28 16:24 . 2008-03-12 19:40 -------- d-----w- c:\program files\Jahshaka 2010-07-27 18:21 . 2009-11-27 07:58 -------- d-----w- c:\program files\Codemasters 2010-07-24 17:02 . 2007-08-22 01:39 -------- d--h--w- c:\program files\InstallShield Installation Information 2010-07-16 01:18 . 2006-11-02 11:18 -------- d-----w- c:\program files\Windows Mail 2010-06-21 08:14 . 2007-08-22 02:05 -------- d-----w- c:\program files\Common Files\SureThing Shared 2010-06-04 14:59 . 2008-09-02 18:37 -------- d-----w- c:\program files\Microsoft Silverlight 2010-05-26 17:06 . 2010-06-10 07:34 34304 ----a-w- c:\windows\system32\atmlib.dll 2010-05-26 14:47 . 2010-06-10 07:34 289792 ----a-w- c:\windows\system32\atmfd.dll 2010-05-21 12:14 . 2009-10-05 13:54 221568 ------w- c:\windows\system32\MpSigStub.exe 2010-05-04 05:59 . 2010-06-10 07:34 916480 ----a-w- c:\windows\system32\wininet.dll 2010-05-04 05:55 . 2010-06-10 07:34 71680 ----a-w- c:\windows\system32\iesetup.dll 2010-05-04 05:55 . 2010-06-10 07:34 109056 ----a-w- c:\windows\system32\iesysprep.dll 2010-05-04 04:31 . 2010-06-10 07:34 133632 ----a-w- c:\windows\system32\ieUnatt.exe 2007-10-27 13:00 . 2007-10-27 13:00 22 --sha-w- c:\windows\SMINST\HPCD.sys . ((((((((((((((((((((((((((((((((((((( Wpisy startowe rejestru )))))))))))))))))))))))))))))))))))))))))))))))))) . . *Uwaga* puste wpisy oraz domyślne, prawidłowe wpisy nie są pokazane REGEDIT4 [HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{FF6C3CF0-4B15-11D1-ABED-709549C10000}] [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "ehTray.exe"="c:\windows\ehome\ehTray.exe" [2008-01-19 125952] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Windows Defender"="c:\program files\Windows Defender\MSASCui.exe" [2008-01-19 1008184] "CognizanceTS"="c:\progra~1\BIOSCR~1\VeriSoft\Bin\ASTSVCC.dll" [2003-12-22 17920] "SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2008-06-20 1385768] "WirelessAssistant"="c:\program files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe" [2009-07-23 498744] [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "EnableLUA"= 0 (0x0) "EnableUIADesktopToggle"= 0 (0x0) [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\system] "DisableTaskMgr"= 1 (0x1) "DisableRegistryTools"= 1 (0x1) [HKEY_USERS\.default\software\microsoft\windows\currentversion\policies\system] "DisableTaskMgr"= 1 (0x1) "DisableRegistryTools"= 1 (0x1) [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows] "AppInit_DLLs"=c:\windows\System32\APSHook.dll [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager] BootExecute REG_MULTI_SZ PDBoot.exe\0autocheck autochk * [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys] @="Driver" [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend] @="Service" [HKLM\~\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Adobe Reader Speed Launch.lnk] path=c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Reader Speed Launch.lnk backup=c:\windows\pss\Adobe Reader Speed Launch.lnk.CommonStartup backupExtension=.CommonStartup [HKLM\~\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Adobe Reader Synchronizer.lnk] path=c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Reader Synchronizer.lnk backup=c:\windows\pss\Adobe Reader Synchronizer.lnk.CommonStartup backupExtension=.CommonStartup [HKLM\~\startupfolder\C:^Users^Michał^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Tworzenie wycinków ekranu i uruchamianie programu OneNote 2007.lnk] path=c:\users\Michał\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Tworzenie wycinków ekranu i uruchamianie programu OneNote 2007.lnk backup=c:\windows\pss\Tworzenie wycinków ekranu i uruchamianie programu OneNote 2007.lnk.Startup backupExtension=.Startup [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AlcoholAutomount] 2009-04-21 14:56 82432 ----a-w- g:\programy\Alcohol 120\AxCmd.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Malwarebytes Anti-Malware (reboot)] 2010-04-29 13:39 1160584 ----a-w- g:\programy\Malwarebytes' Anti-Malware\mbam.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\swg] 2009-01-17 09:10 33792 ----a-w- c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [HKEY_LOCAL_MACHINE\software\microsoft\security center] "AntiVirusOverride"=dword:00000001 "FirewallOverride"=dword:00000001 "AntiVirusDisableNotify"=dword:00000001 "FirewallDisableNotify"=dword:00000001 "UpdatesDisableNotify"=dword:00000001 "UacDisableNotify"=dword:00000001 [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring] "DisableMonitoring"=dword:00000001 [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus] "DisableMonitoring"=dword:00000001 [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall] "DisableMonitoring"=dword:00000001 [HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc] "AntiVirusOverride"=dword:00000001 "AntiSpywareOverride"=dword:00000001 "VistaSp2"=hex(b):e8,5c,10,3c,d3,3d,ca,01 R2 a2free;a-squared Free Service;c:\program files\a-squared Free\a2service.exe [2010-04-15 1872320] R2 PGPsdkServ;PGPsdkService;c:\windows\system32\PGPsdkServ.exe [x] R3 Com4QLBEx;Com4QLBEx;c:\program files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe [2008-04-03 275760] R3 epmntdrv;epmntdrv;c:\windows\system32\epmntdrv.sys [2009-08-26 14216] R3 EuGdiDrv;EuGdiDrv;c:\windows\system32\EuGdiDrv.sys [2009-09-16 8456] R3 h647906;DragonRise H647906 AMD64 Driver;c:\windows\system32\drivers\h647906.sys [x] R3 h648101;DragonRise H648101 AMD64 Driver;c:\windows\system32\drivers\h648101.sys [x] R3 h648103;DragonRise H648103 AMD64 Driver;c:\windows\system32\drivers\h648103.sys [x] R3 hid7906;hid7906;c:\windows\system32\drivers\hid7906.sys [2008-08-08 41272] R3 hid8101;hid8101;c:\windows\system32\drivers\hid8101.sys [2008-08-08 43192] R3 hid8103;hid8103;c:\windows\system32\drivers\hid8103.sys [2008-08-08 40856] R4 sptd;sptd;c:\windows\system32\Drivers\sptd.sys [2010-04-21 691696] S2 ASBroker;Logon Session Broker;c:\windows\System32\svchost.exe [2008-01-19 21504] S2 ASChannel;Local Communication Channel;c:\windows\System32\svchost.exe [2008-01-19 21504] [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost] bthsvcs REG_MULTI_SZ BthServ Cognizance REG_MULTI_SZ ASBroker ASChannel HPZ12 REG_MULTI_SZ Pml Driver HPZ12 Net Driver HPZ12 hpdevmgmt REG_MULTI_SZ hpqcxs08 hpqddsvc LocalServiceAndNoImpersonation REG_MULTI_SZ FontCache [HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{10880D85-AAD9-4558-ABDC-2AB1552D831F}] 2008-06-09 09:14 533792 ----a-w- c:\program files\Common Files\LightScribe\LSRunOnce.exe . Zawartość folderu 'Zaplanowane zadania' 2010-08-01 c:\windows\Tasks\User_Feed_Synchronization-{33A78335-0818-4987-8D74-5A2DA5C573C0}.job - c:\windows\system32\msfeedssync.exe [2010-06-10 04:30] 2010-08-01 c:\windows\Tasks\User_Feed_Synchronization-{94C9E3AC-2D7B-448B-9D50-923637CB0158}.job - c:\windows\system32\msfeedssync.exe [2010-06-10 04:30] . . ------- Skan uzupełniający ------- . uStart Page = hxxp://www.google.pl/ IE: &Clean Traces - g:\programy\DAP\Privacy Package\dapcleanerie.htm IE: &Download with &DAP - g:\programy\DAP\dapextie.htm IE: Download &all with DAP - g:\programy\DAP\dapextie2.htm IE: E&ksport do programu Microsoft Excel - g:\programy\Office\OFFICE11\EXCEL.EXE/3000 IE: E&ksportuj do programu Microsoft Excel - g:\programy\OFFICE~1\Office12\EXCEL.EXE/3000 IE: Wyślij obraz do urządzenia &Bluetooth... - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm IE: Wyślij stronę do urządzenia &Bluetooth... - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie.htm FF - ProfilePath - c:\users\Michał\AppData\Roaming\Mozilla\Firefox\Profiles\4m19v5y3.default\ FF - prefs.js: browser.search.defaulturl - hxxp://www.bing.com/search?FORM=IEFM1&q= FF - prefs.js: browser.search.selectedEngine - Google FF - prefs.js: browser.startup.homepage - hxxp://home.speedbit.com/?aff=105 FF - prefs.js: keyword.URL - hxxp://home.speedbit.com/search.aspx?aff=106&q= FF - component: g:\programy\DAP\DAPFireFox\components\DAPFireFox.dll FF - plugin: c:\program files\Google\Google Earth\plugin\npgeplugin.dll FF - plugin: c:\program files\Google\Google Updater\2.4.1536.6592\npCIDetect13.dll FF - plugin: c:\program files\Google\Update\1.2.183.13\npGoogleOneClick8.dll FF - plugin: c:\program files\Microsoft\Office Live\npOLW.dll FF - plugin: c:\program files\Unity\WebPlayer\loader\npUnity3D32.dll FF - plugin: c:\program files\Windows Live\Photo Gallery\NPWLPG.dll FF - plugin: g:\programy\K-Lite Codec Pack\Real Alternative\browser\plugins\nppl3260.dll FF - plugin: g:\programy\K-Lite Codec Pack\Real Alternative\browser\plugins\nprpjplug.dll FF - plugin: g:\programy\Opera\program\plugins\npganymedenet.dll FF - plugin: g:\programy\Opera\program\plugins\NPOFF12.DLL FF - plugin: g:\programy\Opera\program\plugins\nppl3260.dll FF - plugin: g:\programy\Opera\program\plugins\nprpjplug.dll FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ ---- FIREFOX - SPOSÓB POSTĘPOWANIA ---- g:\programy\mozilla firefox\greprefs\all.js - pref("ui.use_native_colors", true); g:\programy\mozilla firefox\greprefs\all.js - pref("network.IDN.whitelist.lu", true); g:\programy\mozilla firefox\greprefs\all.js - pref("network.IDN.whitelist.nu", true); g:\programy\mozilla firefox\greprefs\all.js - pref("network.IDN.whitelist.nz", true); g:\programy\mozilla firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgbaam7a8h", true); g:\programy\mozilla firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgberp4a5d4ar", true); g:\programy\mozilla firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--p1ai", true); g:\programy\mozilla firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgbayh7gpa", true); g:\programy\mozilla firefox\greprefs\all.js - pref("network.IDN.whitelist.tel", true); g:\programy\mozilla firefox\greprefs\all.js - pref("network.auth.force-generic-ntlm", false); g:\programy\mozilla firefox\greprefs\all.js - pref("network.proxy.type", 5); g:\programy\mozilla firefox\greprefs\all.js - pref("network.buffer.cache.count", 24); g:\programy\mozilla firefox\greprefs\all.js - pref("network.buffer.cache.size", 4096); g:\programy\mozilla firefox\greprefs\all.js - pref("dom.ipc.plugins.timeoutSecs", 45); g:\programy\mozilla firefox\greprefs\all.js - pref("svg.smil.enabled", false); g:\programy\mozilla firefox\greprefs\all.js - pref("accelerometer.enabled", true); g:\programy\mozilla firefox\greprefs\security-prefs.js - pref("security.ssl.allow_unrestricted_renego_everywhere__temporarily_available_pref", true); g:\programy\mozilla firefox\greprefs\security-prefs.js - pref("security.ssl.renego_unrestricted_hosts", ""); g:\programy\mozilla firefox\greprefs\security-prefs.js - pref("security.ssl.treat_unsafe_negotiation_as_broken", false); g:\programy\mozilla firefox\greprefs\security-prefs.js - pref("security.ssl.require_safe_negotiation", false); g:\programy\mozilla firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name", "chrome://browser/locale/browser.properties"); g:\programy\mozilla firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description", "chrome://browser/locale/browser.properties"); g:\programy\mozilla firefox\defaults\pref\firefox.js - pref("plugins.update.notifyUser", false); g:\programy\mozilla firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled.nptest.dll", true); g:\programy\mozilla firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled.npswf32.dll", true); g:\programy\mozilla firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled.npctrl.dll", true); g:\programy\mozilla firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled.npqtplugin.dll", true); g:\programy\mozilla firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled", false); . - - - - USUNIĘTO PUSTE WPISY - - - - HKCU-Run-LightScribe Control Panel - c:\program files\Common Files\LightScribe\LightScribeControlPanel.exe HKCU-Run-IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA} - c:\program files\Common Files\Nero\Lib\NMIndexStoreSvr.exe HKLM-Run-NWEReboot - (no file) HKLM-Run-HP Software Update - c:\program files\HP\HP Software Update\HPWuSchd2.exe HKLM-Run-QlbCtrl.exe - c:\program files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe HKLM-Run-USB Gamepad - c:\windows\USB Vibration\dr100&110\USB Gamepad.exe HKLM-Run-Adobe Reader Speed Launcher - c:\program files\Adobe\Reader 8.0\Reader\Reader_sl.exe MSConfigStartUp-Onet - c:\program files\Common Files\Onet.pl\NewAutoUpdate.exe MSConfigStartUp-WinampAgent - g:\programy\Winamp\winampa.exe AddRemove-504244733D18C8F63FF584AEB290E3904E791693 - c:\progra~1\DIFX\B4723E9A0713E5B1\dpinst.exe AddRemove-6A630DCEC5EEC912115F2FF59D8C2C769798D930 - c:\progra~1\DIFX\270581355A767BF1\dpinst.exe AddRemove-819D45A9F73817F5B6D7C71A33ADAB88C5DA1765 - c:\progra~1\DIFX\270581355A767BF1\dpinst.exe AddRemove-Ad-Aware SE Personal - g:\programy\AD-AWA~1\UNWISE.EXE AddRemove-BitComet FLV Converter - g:\programy\BitComet FLV Converter\uninst.exe AddRemove-CBF192A85B624E32B8D19ADEEF2DCFC5BC3AA73A - c:\progra~1\DIFX\270581355A767BF1\dpinst.exe AddRemove-CNXT_AUDIO_HDA - c:\program files\CONEXANT\CNXT_AUDIO_HDA\UIU32a.exe AddRemove-CNXT_MODEM_HDA_HSF - c:\program files\CONEXANT\CNXT_MODEM_HDA_HSF\UIU32m.exe AddRemove-DC++ - g:\programy\DC++\uninstall.exe AddRemove-Download Accelerator Plus (DAP) - g:\programy\DAP\DAPREMOVE.EXE AddRemove-E092B2EBF2FFE83E896F8F7F829A7B5D7D1B2F9D - c:\progra~1\DIFX\270581355A767BF1\dpinst.exe AddRemove-E8A6D621B6D3FC5D43C68C549D959DE76EEF5D84 - c:\progra~1\DIFX\270581355A767BF1\dpinst.exe AddRemove-EADM - c:\program files\Electronic Arts\EADM\Uninstall.exe AddRemove-ENTERPRISE - c:\program files\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe AddRemove-F779F5541ABD99C95C03B0FD5E3C058B22DA0FF7 - c:\progra~1\DIFX\270581355A767BF1\dpinst.exe AddRemove-GameDesire-Pool & Snooker - g:\programy\Ganymede\billiards_uninstall.exe AddRemove-Google Updater - c:\program files\Google\Google Updater\GoogleUpdater.exe AddRemove-GTA2 - g:\gry\gta2\Uninst.isu AddRemove-Guitar Pro 5_is1 - g:\programy\Guitar Pro 5\unins000.exe AddRemove-HijackThis - g:\programy\Hijack\HijackThis.exe AddRemove-HP Imaging Device Functions - c:\program files\HP\Digital Imaging\DeviceManagement\hpzscr01.exe AddRemove-HP Photosmart Essential - c:\program files\HP\Digital Imaging\PhotoSmartEssential\hpzscr01.exe AddRemove-HP Solution Center & Imaging Support Tools - c:\program files\HP\Digital Imaging\eSupport\hpzscr01.exe AddRemove-HPExtendedCapabilities - c:\program files\HP\Digital Imaging\ExtCapUninstall\hpzscr01.exe AddRemove-HPOCR - c:\program files\HP\Digital Imaging\OCR\hpzscr01.exe AddRemove-JAP - g:\programy\JAP\uninstall.exe AddRemove-LogonStudio Vista - c:\progra~1\Stardock\OBJECT~1\LOGONS~1\UNWISE.EXE AddRemove-Magic ISO Maker v5.5 (build 0281) - g:\programy\MagicISO\UNWISE.EXE AddRemove-MagicDisc 2.7.106 - g:\programy\MAGICD~1\UNWISE.EXE AddRemove-Monopoly by Parker Brothers - g:\gry\MONOPO~1\UNWISE.EXE AddRemove-Nokia PC Suite - c:\programdata\Installations\{55495E65-7C5B-48E4-BC7D-DE54F3DE5ED6}\Nokia_PC_Suite_7_1_30_8_pol.exe AddRemove-NVIDIA Display Control Panel - c:\program files\NVIDIA Corporation\Uninstall\nvuninst.exe AddRemove-NVIDIA Drivers - c:\program files\NVIDIA Corporation\Uninstall\nvuninst.exe AddRemove-SmartAudio - c:\program files\Conexant\SmartAudio\SETUP.EXE AddRemove-SMPlayer - g:\programy\SMPlayer\uninst.exe AddRemove-SopCast - g:\programy\SopCast\uninst.exe AddRemove-StarCraft II Beta - c:\program files\Common Files\Blizzard Entertainment\StarCraft II Beta\Uninstall.exe AddRemove-SystemRequirementsLab - c:\program files\SystemRequirementsLab\Uninstall.exe AddRemove-The KMPlayer - g:\programy\km player\The KMPlayer\uninstall.exe AddRemove-TVAnts 1.0 - g:\programy\TVAnts\UNWISE.EXE AddRemove-UnityWebPlayer - c:\program files\Unity\WebPlayer\Uninstall.exe AddRemove-VLC media player - g:\programy\VLC\uninstall.exe AddRemove-Winamp - g:\programy\Winamp\UninstWA.exe AddRemove-WinLiveSuite_Wave3 - c:\program files\Windows Live\Installer\wlarp.exe AddRemove-WinRAR archiver - g:\programy\WinRAR\uninstall.exe AddRemove-WinZip - g:\programy\WinZip\WINZIP32.EXE AddRemove-World of Warcraft - c:\program files\Common Files\Blizzard Entertainment\World of Warcraft (2)\Uninstall.exe AddRemove-Xfire - g:\programy\Xfire\uninst.exe AddRemove-{1C338B34-1BFB-4BAD-B4A3-7B71A2E221F6} - c:\program files\InstallShield Installation Information\{1C338B34-1BFB-4BAD-B4A3-7B71A2E221F6}\setup.exe AddRemove-{2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\Google\Google Toolbar\Component\GoogleToolbarManager_9DE96A29E721D90A.exe AddRemove-{290B83AA-093A-45BF-A917-D1C4A1E8D917} - c:\program files\InstallShield Installation Information\{290B83AA-093A-45BF-A917-D1C4A1E8D917}\setup.exe AddRemove-{2ADE2157-7A5E-122C-B51D-EB8A01B15943} - g:\programy\DeepBurner\Uninstall.exe AddRemove-{34D2AB40-150D-475D-AE32-BD23FB5EE355} - c:\program files\InstallShield Installation Information\{34D2AB40-150D-475D-AE32-BD23FB5EE355}\Setup.exe AddRemove-{980A182F-E0A2-4A40-94C1-AE0C1235902E} - c:\program files\Pando Networks\Media Booster\uninst.exe AddRemove-{C05D8CDB-417D-4335-A38C-A0659EDFD6B8} - c:\program files\InstallShield Installation Information\{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}\Sims3Setup.exe AddRemove-{C916D86C-AB76-49c7-B0E4-A946E0FD9BC2} - c:\program files\HP\Digital Imaging\{C916D86C-AB76-49c7-B0E4-A946E0FD9BC2}\setup\hpzscr01.exe AddRemove-{ECEE0279-785F-4CB3-9F28-E69813234BF8} - c:\program files\InstallShield Installation Information\{ECEE0279-785F-4CB3-9F28-E69813234BF8}\setup.exe AddRemove-BankBrowser - c:\users\Michał\AppData\Local\Opera\Opera\temporary_downloads\bankbrowser_3_6.exe ************************************************************************** catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net Rootkit scan 2010-08-01 10:36 Windows 6.0.6002 Service Pack 2 NTFS skanowanie ukrytych procesów ... skanowanie ukrytych wpisów autostartu ... skanowanie ukrytych plików ... c:\users\Michał\AppData\Roaming\Microsoft\Windows\Cookies\michał@guide.opendns[1].txt 81 bytes skanowanie pomyślnie ukończone ukryte pliki: 1 ************************************************************************** . --------------------- ZABLOKOWANE KLUCZE REJESTRU --------------------- [HKEY_USERS\S-1-5-21-3022643457-1393697231-3139819596-1000\Software\SecuROM\!CAUTION! NEVER A OR CHANGE ANY KEY*] "??"=hex:10,d5,77,4b,ae,44,8c,91,0f,2c,44,24,83,0a,0f,b4,47,a4,e7,10,6b,7a,99, 03,17,a1,cd,4a,90,9f,89,d5,dd,d3,85,79,77,cf,72,bf,9c,b3,f0,d9,33,7f,ea,f5,\ "??"=hex:9c,6f,33,5f,e5,e4,22,eb,74,dc,85,17,2a,45,e9,4f [HKEY_USERS\S-1-5-21-3022643457-1393697231-3139819596-1000\Software\SecuROM\License information*] "datasecu"=hex:48,28,74,33,ac,de,53,aa,22,d6,9f,b5,6d,75,81,1b,17,2b,cc,c1,62, d7,ff,69,bf,e6,83,6a,22,5d,c3,57,82,57,fd,52,72,4d,59,d8,e4,ed,1b,91,67,64,\ "rkeysecu"=hex:96,dd,10,95,1d,ea,41,33,ec,c6,19,a9,ca,a9,3d,1a [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0002\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0003\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0005\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0006\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 "MSCurrentCountry"=dword:00000000 [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0008\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . --------------------- Pliki DLL ładowane pod uruchomionymi procesami --------------------- - - - - - - - > 'Explorer.exe'(6080) c:\windows\system32\btncopy.dll c:\program files\Nokia\Nokia PC Suite 7\PhoneBrowser.dll c:\program files\Nokia\Nokia PC Suite 7\NGSCM.DLL c:\program files\Nokia\Nokia PC Suite 7\Lang\PhoneBrowser_pol.nlr c:\program files\Nokia\Nokia PC Suite 7\Resource\PhoneBrowser_Nokia.ngr . ------------------------ Pozostałe uruchomione procesy ------------------------ . c:\windows\system32\nvvsvc.exe c:\windows\system32\nvvsvc.exe c:\windows\system32\WLANExt.exe c:\windows\system32\conime.exe c:\program files\HP\QuickPlay\Kernel\TV\CLCapSvc.exe c:\program files\Common Files\LightScribe\LSSrvc.exe g:\programy\defragmentator dysku\PDAgent.exe c:\windows\system32\PnkBstrA.exe c:\program files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe g:\programy\Alcohol 120\StarWind\StarWindServiceAE.exe c:\program files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE c:\windows\system32\DRIVERS\xaudio.exe c:\windows\ehome\ehmsas.exe c:\windows\system32\wbem\unsecapp.exe c:\program files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe c:\program files\Synaptics\SynTP\SynTPHelper.exe c:\program files\Hewlett-Packard\Shared\hpqwmiex.exe c:\users\MICHA~1\AppData\Local\Temp\winjikrhg.exe c:\program files\Hewlett-Packard\Shared\HpqToaster.exe c:\windows\system32\msiexec.exe c:\users\MICHA~1\AppData\Local\Temp\w7ea1f.exe . ************************************************************************** . Czas ukończenia: 2010-08-01 10:49:50 - komputer został uruchomiony ponownie ComboFix-quarantined-files.txt 2010-08-01 08:49 Przed: 43 275 653 120 bajtów wolnych Po: 49 944 129 536 bajtów wolnych - - End Of File - - D30F54395C266C7D834D9CB415BB1736 [/log]
Sohei komentarz 1 sierpnia 2010 komentarz 1 sierpnia 2010 Daj mi jeszcze loga z OTL i powiedz czy rejestr i menadżer zadań działają?
logic88 komentarz 1 sierpnia 2010 Autor komentarz 1 sierpnia 2010 (edytowane) OTL [log] OTL logfile created on: 2010-08-01 15:20:18 - Run 2 OTL by OldTimer - Version 3.2.9.1 Folder = C:\Users\Michał\Desktop Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation Internet Explorer (Version = 8.0.6001.18928) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 2,00 Gb Total Physical Memory | 1,00 Gb Available Physical Memory | 59,00% Memory free 5,00 Gb Paging File | 4,00 Gb Available in Paging File | 73,00% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 81,46 Gb Total Space | 46,46 Gb Free Space | 57,03% Space Free | Partition Type: NTFS Drive D: | 6,93 Gb Total Space | 2,39 Gb Free Space | 34,49% Space Free | Partition Type: NTFS E: Drive not present or media not loaded F: Drive not present or media not loaded Drive G: | 60,66 Gb Total Space | 4,94 Gb Free Space | 8,15% Space Free | Partition Type: NTFS H: Drive not present or media not loaded I: Drive not present or media not loaded Computer Name: MICHAŁ-PC Current User Name: Michał Logged in as Administrator. Current Boot Mode: Normal Scan Mode: All users Company Name Whitelist: On Skip Microsoft Files: On File Age = 60 Days Output = Standard [color=#E56717]========== Processes (All) ==========[/color] PRC - [2010-08-01 15:13:26 | 000,011,776 | ---- | M] () -- C:\Users\MICHA~1\AppData\Local\Temp\windjspjc.exe PRC - [2010-08-01 15:11:25 | 000,011,776 | ---- | M] () -- C:\Windows\temp\winlopb.exe PRC - [2010-08-01 11:07:18 | 000,035,840 | ---- | M] () -- C:\Windows\temp\w86ca7.exe PRC - [2010-08-01 11:06:37 | 000,035,840 | ---- | M] () -- C:\Users\MICHA~1\AppData\Local\Temp\w7c522.exe PRC - [2010-07-31 13:36:43 | 000,645,120 | ---- | M] (OldTimer Tools) -- C:\Users\Michał\Desktop\OTL.exe PRC - [2009-11-20 21:33:00 | 000,122,984 | ---- | M] (NVIDIA Corporation) -- C:\Windows\System32\nvvsvc.exe PRC - [2009-09-10 16:58:25 | 000,168,960 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Windows Media Player\wmplayer.exe PRC - [2009-08-18 11:29:22 | 001,529,728 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVC.EXE PRC - [2009-08-18 11:29:22 | 000,183,152 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVCM.EXE PRC - [2009-07-23 12:04:42 | 000,498,744 | ---- | M] (Hewlett-Packard) -- C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe PRC - [2009-06-15 14:48:49 | 000,009,728 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\lsass.exe PRC - [2009-05-19 12:36:18 | 000,240,512 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe PRC - [2009-04-11 08:28:15 | 000,247,296 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\wbem\WmiPrvSE.exe PRC - [2009-04-11 08:28:13 | 000,314,368 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\winlogon.exe PRC - [2009-04-11 08:28:08 | 000,037,888 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\wbem\unsecapp.exe PRC - [2009-04-11 08:28:07 | 000,169,984 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\taskeng.exe PRC - [2009-04-11 08:28:05 | 000,127,488 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\spoolsv.exe PRC - [2009-04-11 08:28:04 | 000,064,000 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\smss.exe PRC - [2009-04-11 08:27:59 | 000,441,344 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\SearchIndexer.exe PRC - [2009-04-11 08:27:59 | 000,279,552 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\services.exe PRC - [2009-04-11 08:27:59 | 000,185,344 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\SearchProtocolHost.exe PRC - [2009-04-11 08:27:58 | 000,087,552 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\SearchFilterHost.exe PRC - [2009-04-11 08:27:49 | 003,408,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\SLsvc.exe PRC - [2009-04-11 08:27:36 | 002,926,592 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe PRC - [2009-04-11 08:27:33 | 000,081,920 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\dwm.exe PRC - [2009-02-23 15:58:52 | 000,996,616 | ---- | M] (Raxco Software, Inc.) -- G:\Programy\defragmentator dysku\PDAgent.exe PRC - [2009-02-23 15:58:52 | 000,140,552 | ---- | M] (Raxco Software, Inc.) -- G:\Programy\defragmentator dysku\PDAgentS1.exe PRC - [2008-06-20 17:37:44 | 000,103,720 | ---- | M] (Synaptics, Inc.) -- C:\Program Files\Synaptics\SynTP\SynTPHelper.exe PRC - [2008-06-20 17:37:34 | 001,385,768 | ---- | M] (Synaptics, Inc.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe PRC - [2008-06-09 11:21:58 | 000,151,552 | ---- | M] (Hewlett-Packard Company) -- C:\Program Files\Common Files\LightScribe\LSSrvc.exe PRC - [2008-05-01 17:25:56 | 000,165,192 | ---- | M] (Hewlett-Packard Development Company, L.P.) -- C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe PRC - [2008-04-11 10:04:54 | 000,685,360 | ---- | M] () -- C:\Program Files\Hewlett-Packard\Shared\HpqToaster.exe PRC - [2008-03-09 17:34:41 | 000,066,872 | ---- | M] () -- C:\Windows\System32\PnkBstrA.exe PRC - [2008-01-19 09:33:39 | 000,074,240 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\wlanext.exe PRC - [2008-01-19 09:33:37 | 000,096,768 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\wininit.exe PRC - [2008-01-19 09:33:32 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2008-01-19 09:33:32 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2008-01-19 09:33:32 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2008-01-19 09:33:32 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2008-01-19 09:33:32 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2008-01-19 09:33:32 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2008-01-19 09:33:32 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2008-01-19 09:33:32 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2008-01-19 09:33:32 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2008-01-19 09:33:32 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2008-01-19 09:33:32 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2008-01-19 09:33:32 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2008-01-19 09:33:32 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2008-01-19 09:33:32 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2008-01-19 09:33:32 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2008-01-19 09:33:32 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2008-01-19 09:33:32 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2008-01-19 09:33:32 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2008-01-19 09:33:15 | 000,095,744 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\mobsync.exe PRC - [2008-01-19 09:33:14 | 000,229,888 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\lsm.exe PRC - [2008-01-19 09:33:09 | 000,125,952 | ---- | M] (Microsoft Corporation) -- C:\Windows\ehome\ehtray.exe PRC - [2008-01-19 09:33:09 | 000,037,376 | ---- | M] (Microsoft Corporation) -- C:\Windows\ehome\ehmsas.exe PRC - [2008-01-19 09:33:05 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\csrss.exe PRC - [2007-07-10 07:28:08 | 000,386,560 | ---- | M] (Conexant Systems, Inc.) -- C:\Windows\System32\drivers\XAudio.exe PRC - [2007-05-28 18:57:54 | 000,357,888 | ---- | M] (Rocket Division Software) -- G:\Programy\Alcohol 120\StarWind\StarWindServiceAE.exe PRC - [2007-04-23 18:11:42 | 000,262,243 | ---- | M] () -- C:\Program Files\HP\QuickPlay\Kernel\TV\CLCapSvc.exe [color=#E56717]========== Modules (All) ==========[/color] MOD - [2010-07-31 13:36:43 | 000,645,120 | ---- | M] (OldTimer Tools) -- C:\Users\Michał\Desktop\OTL.exe MOD - [2009-09-25 00:54:55 | 000,258,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\winspool.drv MOD - [2009-07-17 15:54:43 | 000,071,680 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\atl.dll MOD - [2009-06-15 16:53:43 | 000,072,704 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\secur32.dll MOD - [2009-06-15 16:52:42 | 000,023,552 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\lpk.dll MOD - [2009-04-23 14:15:07 | 000,784,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\rpcrt4.dll MOD - [2009-04-11 08:28:25 | 001,077,248 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\vssapi.dll MOD - [2009-04-11 08:28:25 | 000,627,712 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\user32.dll MOD - [2009-04-11 08:28:25 | 000,502,272 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\usp10.dll MOD - [2009-04-11 08:28:25 | 000,287,744 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\Wldap32.dll MOD - [2009-04-11 08:28:25 | 000,108,544 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\userenv.dll MOD - [2009-04-11 08:28:25 | 000,020,480 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\version.dll MOD - [2009-04-11 08:28:24 | 011,584,000 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\shell32.dll MOD - [2009-04-11 08:28:24 | 001,591,296 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\setupapi.dll MOD - [2009-04-11 08:28:24 | 001,068,032 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\shdocvw.dll MOD - [2009-04-11 08:28:24 | 000,353,280 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\shlwapi.dll MOD - [2009-04-11 08:28:24 | 000,142,336 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\spp.dll MOD - [2009-04-11 08:28:24 | 000,057,344 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\samlib.dll MOD - [2009-04-11 08:28:23 | 001,316,864 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\ole32.dll MOD - [2009-04-11 08:28:23 | 000,754,688 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\propsys.dll MOD - [2009-04-11 08:28:23 | 000,563,712 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\oleaut32.dll MOD - [2009-04-11 08:28:23 | 000,467,456 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\netapi32.dll MOD - [2009-04-11 08:28:23 | 000,121,344 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\ntmarta.dll MOD - [2009-04-11 08:28:23 | 000,088,576 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\olepro32.dll MOD - [2009-04-11 08:28:22 | 000,679,936 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\msvcrt.dll MOD - [2009-04-11 08:28:20 | 000,891,392 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\kernel32.dll MOD - [2009-04-11 08:28:20 | 000,807,424 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\msctf.dll MOD - [2009-04-11 08:28:20 | 000,114,688 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\imm32.dll MOD - [2009-04-11 08:28:20 | 000,068,608 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\mpr.dll MOD - [2009-04-11 08:28:19 | 000,297,472 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\gdi32.dll MOD - [2009-04-11 08:28:18 | 000,450,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\comdlg32.dll MOD - [2009-04-11 08:28:18 | 000,079,872 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\authz.dll MOD - [2009-04-11 08:28:17 | 000,800,768 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\advapi32.dll MOD - [2009-04-11 08:28:17 | 000,171,008 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\apphelp.dll MOD - [2009-04-11 08:27:49 | 001,202,168 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\ntdll.dll MOD - [2009-04-11 08:21:38 | 001,686,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6002.18005_none_5cb72f96088b0de0\comctl32.dll MOD - [2008-01-19 09:37:12 | 000,183,296 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\xmllite.dll MOD - [2008-01-19 09:37:09 | 000,179,200 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\ws2_32.dll MOD - [2008-01-19 09:36:48 | 000,069,120 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\vsstrace.dll MOD - [2008-01-19 09:36:47 | 000,240,128 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\uxtheme.dll MOD - [2008-01-19 09:36:35 | 000,040,960 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\srclient.dll MOD - [2008-01-19 09:35:57 | 000,008,192 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\nsi.dll MOD - [2008-01-19 09:33:52 | 000,523,776 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\clbcatq.dll MOD - [2008-01-19 09:33:00 | 000,110,592 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\msscript.ocx MOD - [2006-11-02 11:46:12 | 000,012,288 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\psapi.dll [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV - File not found [Disabled | Stopped] -- C:\Program Files\Common Files\SureThing Shared\stllssvr.exe -- (stllssvr) SRV - File not found [Disabled | Stopped] -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer) SRV - File not found [Auto | Stopped] -- C:\Windows\System32\PGPsdkServ.exe -- (PGPsdkServ) SRV - File not found [On_Demand | Stopped] -- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE -- (ose) SRV - File not found [On_Demand | Stopped] -- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE -- (odserv) SRV - File not found [Auto | Stopped] -- C:\Program Files\HP\QuickPlay\Kernel\TV\CLSched.exe -- (CLSched) CyberLink Task Scheduler (CTS) SRV - [2010-04-15 08:25:20 | 001,872,320 | ---- | M] (Emsi Software GmbH) [Auto | Stopped] -- C:\Program Files\a-squared Free\a2service.exe -- (a2free) SRV - [2009-09-25 03:27:04 | 000,793,088 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\FntCache.dll -- (FontCache) SRV - [2009-08-18 11:29:22 | 001,529,728 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE -- (wlidsvc) SRV - [2009-08-05 23:48:42 | 000,860,512 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Live\Family Safety\fsssvc.exe -- (fsssvc) SRV - [2009-05-19 12:36:18 | 000,240,512 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe -- (SeaPort) SRV - [2009-02-23 15:58:54 | 001,107,208 | ---- | M] (Raxco Software, Inc.) [On_Demand | Stopped] -- G:\Programy\defragmentator dysku\PDEngine.exe -- (PDEngine) SRV - [2009-02-23 15:58:52 | 000,996,616 | ---- | M] (Raxco Software, Inc.) [Auto | Running] -- G:\Programy\defragmentator dysku\PDAgent.exe -- (PDAgent) SRV - [2008-01-19 09:38:24 | 000,272,952 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend) SRV - [2007-05-28 18:57:54 | 000,357,888 | ---- | M] (Rocket Division Software) [Auto | Running] -- G:\Programy\Alcohol 120\StarWind\StarWindServiceAE.exe -- (StarWindServiceAE) SRV - [2007-04-23 18:11:42 | 000,262,243 | ---- | M] () [Auto | Running] -- C:\Program Files\HP\QuickPlay\Kernel\TV\CLCapSvc.exe -- (CLCapSvc) CyberLink Background Capture Service (CBCS) SRV - [2007-02-07 16:30:00 | 000,074,240 | R--- | M] (Cognizance Corporation) [Auto | Running] -- c:\Program Files\Bioscrypt\VeriSoft\Bin\ASWLNPkg.dll -- (ASBroker) SRV - [2006-06-22 09:14:00 | 000,131,584 | R--- | M] (Cognizance Corporation) [Auto | Running] -- c:\Program Files\Bioscrypt\VeriSoft\Bin\ASChnl.dll -- (ASChannel) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\System32\DRIVERS\VNUSB.sys -- (VNUSB) DRV - File not found [Kernel | Auto | Stopped] -- C:\Windows\System32\Drivers\PGPsdk.sys -- (PGPsdkDriver) DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\System32\DRIVERS\nwlnkfwd.sys -- (NwlnkFwd) DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\System32\DRIVERS\nwlnkflt.sys -- (NwlnkFlt) DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\System32\DRIVERS\ipinip.sys -- (IpInIp) DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\h648103.sys -- (h648103) DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\h648101.sys -- (h648101) DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\h647906.sys -- (h647906) DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\EagleNT.sys -- (EagleNT) DRV - File not found [Kernel | On_Demand | Stopped] -- C:\ComboFix\catchme.sys -- (catchme) DRV - File not found [Kernel | Disabled | Stopped] -- C:\Windows\System32\drivers\blbdrive.sys -- (blbdrive) DRV - [2010-04-21 22:41:19 | 000,691,696 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\System32\Drivers\sptd.sys -- (sptd) DRV - [2010-02-24 09:30:20 | 001,331,192 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\BCMWL6.SYS -- (BCM43XX) DRV - [2010-02-24 09:30:20 | 001,331,192 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\BCMWL6.SYS -- (BCM43XV) DRV - [2010-02-03 15:56:56 | 000,026,176 | -H-- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\hamachi.sys -- (hamachi) DRV - [2009-11-21 04:34:54 | 011,515,752 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\nvlddmkm.sys -- (nvlddmkm) DRV - [2009-09-16 17:55:00 | 000,008,456 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\System32\EuGdiDrv.sys -- (EuGdiDrv) DRV - [2009-08-26 13:45:10 | 000,014,216 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\System32\epmntdrv.sys -- (epmntdrv) DRV - [2009-08-05 23:48:42 | 000,054,632 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\fssfltr.sys -- (fssfltr) DRV - [2009-07-05 08:15:53 | 000,281,760 | ---- | M] () [Kernel | Auto | Running] -- C:\Windows\System32\drivers\atksgt.sys -- (atksgt) DRV - [2009-07-05 08:15:52 | 000,025,888 | ---- | M] () [Kernel | Auto | Running] -- C:\Windows\System32\drivers\lirsgt.sys -- (lirsgt) DRV - [2009-04-11 06:42:54 | 000,073,216 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\USBAUDIO.sys -- (usbaudio) Sterownik audio USB (WDM) DRV - [2009-02-24 19:42:14 | 000,116,736 | ---- | M] (MagicISO, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\mcdbus.sys -- (mcdbus) DRV - [2009-02-09 08:37:56 | 000,007,808 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\usbser_lowerfltj.sys -- (UsbserFilt) DRV - [2009-02-09 08:37:48 | 000,007,808 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\usbser_lowerflt.sys -- (upperdev) DRV - [2009-01-09 10:49:06 | 000,071,184 | ---- | M] (Raxco Software, Inc.) [File_System | Auto | Running] -- C:\Windows\System32\drivers\DefragFs.sys -- (DefragFS) DRV - [2008-08-26 10:26:12 | 000,018,816 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\pccsmcfd.sys -- (pccsmcfd) DRV - [2008-08-08 15:31:18 | 000,043,192 | ---- | M] (Your Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\hid8101.sys -- (hid8101) DRV - [2008-08-08 15:31:18 | 000,040,856 | ---- | M] (Your Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\hid8103.sys -- (hid8103) DRV - [2008-08-08 15:31:16 | 000,041,272 | ---- | M] (Your Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\hid7906.sys -- (hid7906) DRV - [2008-06-20 17:37:38 | 000,200,112 | ---- | M] (Synaptics, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\SynTP.sys -- (SynTP) DRV - [2008-04-14 15:39:06 | 000,009,344 | ---- | M] (Hewlett-Packard Development Company, L.P.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\CPQBttn.sys -- (HBtnKey) DRV - [2008-03-04 02:32:00 | 000,188,416 | ---- | M] (Conexant Systems Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\CHDRT32.sys -- (CnxtHdAudService) DRV - [2007-07-10 07:27:56 | 000,008,704 | ---- | M] (Conexant Systems, Inc.) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\XAudio.sys -- (XAudio) DRV - [2007-06-29 15:47:34 | 000,034,304 | ---- | M] (AMD, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\AmdLLD.sys -- (AmdLLD) DRV - [2007-06-26 09:38:14 | 000,163,328 | ---- | M] (Conexant Systems Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\CHDART.sys -- (HdAudAddService) DRV - [2007-06-20 04:29:56 | 000,984,064 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\HSX_DPV.sys -- (HSF_DPV) DRV - [2007-06-20 04:28:34 | 000,208,896 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\HSXHWAZL.sys -- (HSXHWAZL) DRV - [2007-06-20 04:28:22 | 000,660,480 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\HSX_CNXT.sys -- (winachsf) DRV - [2007-06-18 18:12:04 | 000,016,768 | ---- | M] (Hewlett-Packard Development Company, L.P.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\HpqKbFiltr.sys -- (HpqKbFiltr) DRV - [2007-04-18 10:51:14 | 000,081,200 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\btwavdt.sys -- (btwavdt) DRV - [2007-04-18 10:51:14 | 000,016,432 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\btwrchid.sys -- (btwrchid) DRV - [2007-04-18 10:51:12 | 000,079,664 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\btwaudio.sys -- (btwaudio) DRV - [2007-03-28 18:44:22 | 000,140,424 | ---- | M] (AuthenTec, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\atswpdrv.sys -- (ATSWPDRV) AuthenTec TruePrint USB Driver (SwipeSensor) DRV - [2007-03-07 06:15:58 | 001,059,112 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\nvmfdx32.sys -- (NVENETFD) DRV - [2007-02-24 16:42:22 | 000,039,936 | ---- | M] (REDC) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\rimmptsk.sys -- (rimmptsk) DRV - [2007-02-17 01:50:32 | 000,012,032 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\nvsmu.sys -- (nvsmu) DRV - [2007-01-23 19:03:28 | 000,037,376 | ---- | M] (REDC) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\rixdptsk.sys -- (rismxdp) DRV - [2007-01-23 18:40:20 | 000,042,496 | ---- | M] (REDC) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\rimsptsk.sys -- (rimsptsk) DRV - [2006-11-02 11:51:45 | 000,900,712 | ---- | M] (QLogic Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\ql2300.sys -- (ql2300) DRV - [2006-11-02 11:51:38 | 000,420,968 | ---- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\adp94xx.sys -- (adp94xx) DRV - [2006-11-02 11:51:34 | 000,316,520 | ---- | M] (Emulex) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\elxstor.sys -- (elxstor) DRV - [2006-11-02 11:51:32 | 000,297,576 | ---- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\adpahci.sys -- (adpahci) DRV - [2006-11-02 11:51:25 | 000,235,112 | ---- | M] (ULi Electronics Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\uliahci.sys -- (uliahci) DRV - [2006-11-02 11:51:25 | 000,232,040 | ---- | M] (Intel Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\iastorv.sys -- (iaStorV) DRV - [2006-11-02 11:51:00 | 000,147,048 | ---- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\adpu320.sys -- (adpu320) DRV - [2006-11-02 11:50:45 | 000,115,816 | ---- | M] (Promise Technology, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\ulsata2.sys -- (ulsata2) DRV - [2006-11-02 11:50:41 | 000,112,232 | ---- | M] (VIA Technologies Inc.,Ltd) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\vsmraid.sys -- (vsmraid) DRV - [2006-11-02 11:50:35 | 000,106,088 | ---- | M] (QLogic Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\ql40xx.sys -- (ql40xx) DRV - [2006-11-02 11:50:35 | 000,098,408 | ---- | M] (Promise Technology, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\ulsata.sys -- (UlSata) DRV - [2006-11-02 11:50:35 | 000,098,408 | ---- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\adpu160m.sys -- (adpu160m) DRV - [2006-11-02 11:50:24 | 000,088,680 | ---- | M] (NVIDIA Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\nvraid.sys -- (nvraid) DRV - [2006-11-02 11:50:19 | 000,045,160 | ---- | M] (IBM Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\nfrd960.sys -- (nfrd960) DRV - [2006-11-02 11:50:17 | 000,041,576 | ---- | M] (Intel Corp./ICP vortex GmbH) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\iirsp.sys -- (iirsp) DRV - [2006-11-02 11:50:16 | 000,071,784 | ---- | M] (Silicon Integrated Systems) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\sisraid4.sys -- (SiSRaid4) DRV - [2006-11-02 11:50:13 | 000,040,040 | ---- | M] (NVIDIA Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\nvstor.sys -- (nvstor) DRV - [2006-11-02 11:50:11 | 000,071,272 | ---- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\djsvs.sys -- (aic78xx) DRV - [2006-11-02 11:50:10 | 000,067,688 | ---- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\arcsas.sys -- (arcsas) DRV - [2006-11-02 11:50:10 | 000,065,640 | ---- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\lsi_scsi.sys -- (LSI_SCSI) DRV - [2006-11-02 11:50:10 | 000,038,504 | ---- | M] (Silicon Integrated Systems Corp.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\sisraid2.sys -- (SiSRaid2) DRV - [2006-11-02 11:50:10 | 000,037,480 | ---- | M] (Hewlett-Packard Company) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\hpcisss.sys -- (HpCISSs) DRV - [2006-11-02 11:50:09 | 000,067,688 | ---- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\arc.sys -- (arc) DRV - [2006-11-02 11:50:09 | 000,035,944 | ---- | M] (Integrated Technology Express, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\iteraid.sys -- (iteraid) DRV - [2006-11-02 11:50:07 | 000,035,944 | ---- | M] (Integrated Technology Express, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\iteatapi.sys -- (iteatapi) DRV - [2006-11-02 11:50:05 | 000,065,640 | ---- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\lsi_sas.sys -- (LSI_SAS) DRV - [2006-11-02 11:50:05 | 000,035,944 | ---- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\symc8xx.sys -- (Symc8xx) DRV - [2006-11-02 11:50:04 | 000,065,640 | ---- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\lsi_fc.sys -- (LSI_FC) DRV - [2006-11-02 11:50:03 | 000,034,920 | ---- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\sym_u3.sys -- (Sym_u3) DRV - [2006-11-02 11:49:59 | 000,033,384 | ---- | M] (LSI Logic Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\mraid35x.sys -- (Mraid35x) DRV - [2006-11-02 11:49:56 | 000,031,848 | ---- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\sym_hi.sys -- (Sym_hi) DRV - [2006-11-02 11:49:53 | 000,028,776 | ---- | M] (LSI Logic Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\megasas.sys -- (megasas) DRV - [2006-11-02 11:49:30 | 000,017,512 | ---- | M] (VIA Technologies, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\viaide.sys -- (viaide) DRV - [2006-11-02 11:49:28 | 000,016,488 | ---- | M] (CMD Technology, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\cmdide.sys -- (cmdide) DRV - [2006-11-02 11:49:20 | 000,014,952 | ---- | M] (Acer Laboratories Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\aliide.sys -- (aliide) DRV - [2006-11-02 10:25:24 | 000,071,808 | ---- | M] (Brother Industries Ltd.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\brserid.sys -- (Brserid) Brother MFC Serial Port Interface Driver (WDM) DRV - [2006-11-02 10:24:47 | 000,011,904 | ---- | M] (Brother Industries Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\drivers\brusbser.sys -- (BrUsbSer) DRV - [2006-11-02 10:24:46 | 000,005,248 | ---- | M] (Brother Industries, Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\drivers\brfiltup.sys -- (BrFiltUp) DRV - [2006-11-02 10:24:45 | 000,013,568 | ---- | M] (Brother Industries, Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\drivers\brfiltlo.sys -- (BrFiltLo) DRV - [2006-11-02 10:24:44 | 000,062,336 | ---- | M] (Brother Industries Ltd.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\brserwdm.sys -- (BrSerWdm) DRV - [2006-11-02 10:24:44 | 000,012,160 | ---- | M] (Brother Industries Ltd.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\brusbmdm.sys -- (BrUsbMdm) DRV - [2006-11-02 09:41:49 | 000,200,704 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\VSTAZL3.SYS -- (HSFHWAZL) DRV - [2006-11-02 09:36:50 | 000,020,608 | ---- | M] (N-trig Innovative Technologies) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\ntrigdigi.sys -- (ntrigdigi) DRV - [2006-11-02 09:30:54 | 000,117,760 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\E1G60I32.sys -- (E1G60) Intel(R) DRV - [2006-10-19 04:10:57 | 001,380,864 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\igdkmd32.sys -- (ialm) DRV - [2004-08-09 13:33:26 | 000,114,016 | ---- | M] (Protection Technology) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\prohlp02.sys -- (prohlp02) DRV - [2004-08-09 13:29:28 | 000,053,920 | ---- | M] (Protection Technology) [Kernel | System | Running] -- C:\Windows\System32\drivers\prodrv06.sys -- (prodrv06) DRV - [2004-07-19 16:49:54 | 000,007,040 | ---- | M] (Protection Technology) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\prosync1.sys -- (prosync1) DRV - [2003-12-01 17:20:52 | 000,004,832 | ---- | M] (Protection Technology) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\sfhlp01.sys -- (sfhlp01) DRV - [2002-05-06 11:01:08 | 000,017,005 | ---- | M] (Adaptec) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\ASPI32.SYS -- (ASPI32) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-3022643457-1393697231-3139819596-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.pl/ IE - HKU\S-1-5-21-3022643457-1393697231-3139819596-1000\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1 IE - HKU\S-1-5-21-3022643457-1393697231-3139819596-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 [color=#E56717]========== FireFox ==========[/color] FF - prefs.js..browser.search.defaultenginename: "Bing" FF - prefs.js..browser.search.defaulturl: "http://www.bing.com/search?FORM=IEFM1&q=" FF - prefs.js..browser.search.selectedEngine: "Google" FF - prefs.js..browser.search.useDBForOrder: true FF - prefs.js..browser.startup.homepage: "http://home.speedbit.com/?aff=105" FF - prefs.js..extensions.enabledItems: {F17C1572-C9EC-4e5c-A542-D05CBB5C5A08}:9.4.0.5 FF - prefs.js..extensions.enabledItems: zrzuta.eu@gmail.com:1.2 FF - prefs.js..keyword.URL: "http://home.speedbit.com/search.aspx?aff=106&q=" FF - HKLM\software\mozilla\Firefox\Extensions\\bkmrksync@nokia.com: C:\Program Files\Nokia\Nokia PC Suite 7\bkmrksync\ [2009-06-23 15:50:23 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 3.6.8\extensions\\Components: G:\Programy\mozilla firefox\components [2010-07-31 18:48:10 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 3.6.8\extensions\\Plugins: G:\Programy\mozilla firefox\plugins [2010-07-31 18:48:08 | 000,000,000 | ---D | M] [2010-07-30 10:46:41 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\mozilla\Extensions [2010-08-01 09:44:37 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\mozilla\Firefox\Profiles\4m19v5y3.default\extensions [2010-08-01 09:44:37 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Users\Michał\AppData\Roaming\mozilla\Firefox\Profiles\4m19v5y3.default\extensions\{20a82645-c095-46ed-80e3-08825760534b} [2010-07-30 10:47:25 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\mozilla\Firefox\Profiles\4m19v5y3.default\extensions\zrzuta.eu@gmail.com [2009-12-18 16:55:17 | 000,002,163 | ---- | M] () -- C:\Users\Michał\AppData\Roaming\Mozilla\FireFox\Profiles\4m19v5y3.default\searchplugins\bing.xml O1 HOSTS File: ([2010-08-01 10:33:21 | 000,000,027 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O2 - BHO: (Adobe PDF Reader Link Helper) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated) O2 - BHO: (Skype add-on (mastermind)) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Skype Technologies S.A.) O2 - BHO: (Search Helper) - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll (Microsoft Corporation) O2 - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll (Google Inc.) O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.4.4525.1752\swg.dll (Google Inc.) O2 - BHO: (PDF-XChange Viewer IE-Plugin) - {C5D07EB6-BBCE-4DAE-ACBB-D13A8D28CB1F} - G:\Programy\Tracker Software\PDF Viewer\PDFXCviewIEPlugin.dll (Tracker Software Products Ltd.) O2 - BHO: (Google Dictionary Compression sdch) - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll (Google Inc.) O2 - BHO: (VeriSoft Access Manager) - {DF21F1DB-80C6-11D3-9483-B03D0EC10000} - c:\Program Files\Bioscrypt\VeriSoft\Bin\ItIEAddIn.dll (Bioscrypt Inc.) O2 - BHO: (Windows Live Toolbar Helper) - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll (Microsoft Corporation) O2 - BHO: (DAPIELoader Class) - {FF6C3CF0-4B15-11D1-ABED-709549C10000} - G:\Programy\DAP\dapieloader.dll (SpeedBit Ltd.) O3 - HKLM\..\Toolbar: (no name) - - No CLSID value found. O3 - HKLM\..\Toolbar: (&Windows Live Toolbar) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll (Microsoft Corporation) O3 - HKLM\..\Toolbar: (Google Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll (Google Inc.) O3 - HKU\S-1-5-21-3022643457-1393697231-3139819596-1000\..\Toolbar\WebBrowser: (&Windows Live Toolbar) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll (Microsoft Corporation) O3 - HKU\S-1-5-21-3022643457-1393697231-3139819596-1000\..\Toolbar\WebBrowser: (Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll (Google Inc.) O4 - HKLM..\Run: [CognizanceTS] c:\Program Files\Bioscrypt\VeriSoft\Bin\ASTSVCC.dll (Cognizance Corporation) O4 - HKLM..\Run: [Malwarebytes Anti-Malware (reboot)] G:\Programy\Malwarebytes' Anti-Malware\mbam.exe (Malwarebytes Corporation) O4 - HKLM..\Run: [Windows Defender] C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation) O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0 O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableTaskMgr = 1 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableRegistryTools = 1 O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableTaskMgr = 1 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableRegistryTools = 1 O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-21-3022643457-1393697231-3139819596-1000\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-21-3022643457-1393697231-3139819596-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O7 - HKU\S-1-5-21-3022643457-1393697231-3139819596-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableTaskMgr = 1 O7 - HKU\S-1-5-21-3022643457-1393697231-3139819596-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableRegistryTools = 1 O8 - Extra context menu item: &Clean Traces - G:\Programy\DAP\Privacy Package\dapcleanerie.htm () O8 - Extra context menu item: &Download with &DAP - G:\Programy\DAP\dapextie.htm () O8 - Extra context menu item: Download &all with DAP - G:\Programy\DAP\dapextie2.htm () O8 - Extra context menu item: Wyślij obraz do urządzenia &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm () O8 - Extra context menu item: Wyślij stronę do urządzenia &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm () O9 - Extra Button: Wpis w blogu - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll (Microsoft Corporation) O9 - Extra 'Tools' menuitem : &Wpis w blogu w Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll (Microsoft Corporation) O9 - Extra 'Tools' menuitem : Skype add-on for Internet Explorer - {5067A26B-1337-4436-8AFE-EE169C2DA79F} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Skype Technologies S.A.) O9 - Extra Button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Skype Technologies S.A.) O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Program Files\Microsoft Office\Office12\REFIEBAR.DLL (Microsoft Corporation) O9 - Extra Button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm () O9 - Extra 'Tools' menuitem : @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm () O16 - DPF: {1E54D648-B804-468d-BC78-4AFFED8E262F} http://www.nvidia.com/content/DriverDownload/srl/3.0.0.4/srl_bin/sysreqlab_nvd.cab (System Requirements Lab Class) O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} http://download.eset.com/special/eos/OnlineScanner.cab (Reg Error: Key error.) O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab (Java Plug-in 1.6.0_17) O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} http://fpdownload.macromedia.com/get/flashplayer/current/polarbear/ultrashim.cab (Reg Error: Key error.) O16 - DPF: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab (Java Plug-in 1.6.0_17) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab (Java Plug-in 1.6.0_17) O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 172.20.1.100 94.230.20.34 94.230.20.3 O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Program Files\Common Files\microsoft shared\Help\hxds.dll (Microsoft Corporation) O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies) O18 - Protocol\Handler\vnd.ms.radio {3DA2AA3B-3D96-11D2-9BD2-204C4F4F5020} - C:\Windows\System32\Msdxm6.ocx (Microsoft Corporation) O18 - Protocol\Handler\wlmailhtml {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Program Files\Windows Live\Mail\mailcomm.dll (Microsoft Corporation) O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation) O18 - Protocol\Filter\x-sdch {B1759355-3EEC-4C1E-B0F1-B719FE26E377} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll (Google Inc.) O20 - AppInit_DLLs: (C:\Windows\System32\APSHook.dll) - C:\Windows\System32\APSHook.dll (Cognizance Corporation) O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation) O24 - Desktop WallPaper: C:\Users\Michał\AppData\Roaming\Microsoft\Windows Photo Gallery\Tapeta z Galerii fotografii systemu Windows.jpg O24 - Desktop BackupWallPaper: C:\Users\Michał\AppData\Roaming\Microsoft\Windows Photo Gallery\Tapeta z Galerii fotografii systemu Windows.jpg O28 - HKLM ShellExecuteHooks: {AEB6717E-7E19-11d0-97EE-00C04FD91972} - Reg Error: Key error. File not found O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2010-08-01 10:34:08 | 000,000,341 | ---- | M] () - C:\autorun.inf -- [ NTFS ] O32 - AutoRun File - [2005-09-11 17:18:54 | 000,000,340 | -HS- | M] () - D:\AUTOMODE -- [ NTFS ] O32 - AutoRun File - [2010-08-01 10:34:08 | 000,000,272 | RHS- | M] () - D:\autorun.inf -- [ NTFS ] O32 - AutoRun File - [2006-09-18 23:43:36 | 000,000,024 | ---- | M] () - G:\autoexec.bat -- [ NTFS ] O32 - AutoRun File - [2010-08-01 10:34:08 | 000,000,191 | RHS- | M] () - G:\autorun.inf -- [ NTFS ] O34 - HKLM BootExecute: (PDBoot.exe) - C:\Windows\System32\PDBoot.exe (Raxco Software, Inc.) O34 - HKLM BootExecute: (autocheck autochk *) - File not found O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = ComFile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* NetSvcs: FastUserSwitchingCompatibility - File not found NetSvcs: Ias - File not found NetSvcs: Nla - File not found NetSvcs: Ntmssvc - File not found NetSvcs: NWCWorkstation - File not found NetSvcs: Nwsapagent - File not found NetSvcs: SRService - File not found NetSvcs: Wmi - C:\Windows\System32\wmi.dll (Microsoft Corporation) NetSvcs: WmdmPmSp - File not found NetSvcs: LogonHours - File not found NetSvcs: PCAudit - File not found NetSvcs: helpsvc - File not found NetSvcs: uploadmgr - File not found MsConfig - StartUpFolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Adobe Reader Speed Launch.lnk - C:\PROGRA~1\Adobe\READER~1.0\Reader\READER~1.EXE - File not found MsConfig - StartUpFolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Adobe Reader Synchronizer.lnk - C:\Program Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe - (Adobe Systems Incorporated) MsConfig - StartUpFolder: C:^Users^Michał^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Tworzenie wycinków ekranu i uruchamianie programu OneNote 2007.lnk - G:\Programy\OFFICE~1\Office12\ONENOTEM.EXE - File not found MsConfig - StartUpReg: [b]AlcoholAutomount[/b] - hkey= - key= - G:\Programy\Alcohol 120\axcmd.exe () MsConfig - StartUpReg: [b]Malwarebytes Anti-Malware (reboot)[/b] - hkey= - key= - G:\Programy\Malwarebytes' Anti-Malware\mbam.exe (Malwarebytes Corporation) MsConfig - StartUpReg: [b]swg[/b] - hkey= - key= - C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe (Google Inc.) MsConfig - State: "bootini" - 2 MsConfig - State: "startup" - 2 SafeBootMin: AppMgmt - C:\Windows\System32\appmgmts.dll File not found SafeBootMin: Base - Driver Group SafeBootMin: Boot Bus Extender - Driver Group SafeBootMin: Boot file system - Driver Group SafeBootMin: File system - Driver Group SafeBootMin: Filter - Driver Group SafeBootMin: HelpSvc - Service SafeBootMin: NTDS - File not found SafeBootMin: PCI Configuration - Driver Group SafeBootMin: PNP Filter - Driver Group SafeBootMin: Primary disk - Driver Group SafeBootMin: sacsvr - Service SafeBootMin: SCSI Class - Driver Group SafeBootMin: System Bus Extender - Driver Group SafeBootMin: WinDefend - C:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation) SafeBootMin: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers SafeBootMin: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive SafeBootMin: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive SafeBootMin: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller SafeBootMin: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc SafeBootMin: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard SafeBootMin: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse SafeBootMin: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters SafeBootMin: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter SafeBootMin: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System SafeBootMin: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive SafeBootMin: {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy SafeBootMin: {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers SafeBootMin: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume SafeBootMin: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices SafeBootMin: {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices SafeBootMin: {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices SafeBootNet: AppMgmt - C:\Windows\System32\appmgmts.dll File not found SafeBootNet: Base - Driver Group SafeBootNet: Boot Bus Extender - Driver Group SafeBootNet: Boot file system - Driver Group SafeBootNet: File system - Driver Group SafeBootNet: Filter - Driver Group SafeBootNet: HelpSvc - Service SafeBootNet: Messenger - Service SafeBootNet: NDIS Wrapper - Driver Group SafeBootNet: NetBIOSGroup - Driver Group SafeBootNet: NetDDEGroup - Driver Group SafeBootNet: Network - Driver Group SafeBootNet: NetworkProvider - Driver Group SafeBootNet: NTDS - File not found SafeBootNet: PCI Configuration - Driver Group SafeBootNet: PNP Filter - Driver Group SafeBootNet: PNP_TDI - Driver Group SafeBootNet: Primary disk - Driver Group SafeBootNet: rdsessmgr - Service SafeBootNet: sacsvr - Service SafeBootNet: SCSI Class - Driver Group SafeBootNet: Streams Drivers - Driver Group SafeBootNet: System Bus Extender - Driver Group SafeBootNet: TDI - Driver Group SafeBootNet: WinDefend - C:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation) SafeBootNet: WudfPf - Driver SafeBootNet: WudfUsbccidDriver - Driver SafeBootNet: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers SafeBootNet: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive SafeBootNet: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive SafeBootNet: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller SafeBootNet: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc SafeBootNet: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard SafeBootNet: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse SafeBootNet: {4D36E972-E325-11CE-BFC1-08002BE10318} - Net SafeBootNet: {4D36E973-E325-11CE-BFC1-08002BE10318} - NetClient SafeBootNet: {4D36E974-E325-11CE-BFC1-08002BE10318} - NetService SafeBootNet: {4D36E975-E325-11CE-BFC1-08002BE10318} - NetTrans SafeBootNet: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters SafeBootNet: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter SafeBootNet: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System SafeBootNet: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive SafeBootNet: {50DD5230-BA8A-11D1-BF5D-0000F805F530} - Smart card readers SafeBootNet: {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy SafeBootNet: {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers SafeBootNet: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume SafeBootNet: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices SafeBootNet: {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices SafeBootNet: {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices [color=#E56717]========== Files/Folders - Created Within 60 Days ==========[/color] [2010-08-01 15:18:42 | 010,491,128 | ---- | C] (Simply Super Software ) -- C:\Users\Michał\Desktop\trjsetup682.exe [2010-08-01 10:49:56 | 000,000,000 | ---D | C] -- C:\Windows\temp [2010-08-01 10:47:39 | 000,000,000 | -HSD | C] -- C:\$RECYCLE.BIN [2010-08-01 10:30:43 | 000,000,000 | ---D | C] -- C:\Users\Michał\AppData\Local\temp [2010-08-01 09:52:56 | 000,161,792 | ---- | C] (SteelWerX) -- C:\Windows\SWREG.exe [2010-08-01 09:52:56 | 000,136,704 | ---- | C] (SteelWerX) -- C:\Windows\SWSC.exe [2010-08-01 09:52:56 | 000,031,232 | ---- | C] (NirSoft) -- C:\Windows\NIRCMD.exe [2010-08-01 09:52:28 | 000,000,000 | ---D | C] -- C:\Windows\ERDNT [2010-08-01 09:49:29 | 000,000,000 | ---D | C] -- C:\Qoobox [2010-08-01 09:47:37 | 000,212,480 | ---- | C] (SteelWerX) -- C:\Windows\SWXCACLS.exe [2010-07-31 17:40:04 | 000,000,000 | ---D | C] -- C:\Program Files\trend micro [2010-07-31 17:40:02 | 000,000,000 | ---D | C] -- C:\rsit [2010-07-31 13:36:43 | 000,645,120 | ---- | C] (OldTimer Tools) -- C:\Users\Michał\Desktop\OTL.exe [2010-07-31 00:20:44 | 000,484,152 | ---- | C] (Trend Micro Inc.) -- C:\Users\Michał\Desktop\HiJackThis.exe [2010-07-30 17:26:40 | 000,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbamswissarmy.sys [2010-07-30 17:26:36 | 000,020,952 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys [2010-07-30 17:22:37 | 006,227,080 | ---- | C] (Malwarebytes Corporation ) -- C:\Users\Michał\Desktop\mbam-setup-1.46(dobreprogramy.pl).exe [2010-07-29 19:40:58 | 000,000,000 | ---D | C] -- C:\Users\Michał\Desktop\backups [2010-07-29 10:16:38 | 000,000,000 | ---D | C] -- C:\Program Files\PROnetworks [2010-07-29 10:13:49 | 000,191,488 | ---- | C] (PROnetworks) -- C:\Users\Michał\Desktop\VistaBootPRO_3.3.0.exe [2010-07-28 14:02:31 | 000,000,000 | ---D | C] -- C:\Program Files\a-squared Free [2010-07-24 18:57:53 | 000,000,000 | ---D | C] -- C:\Users\Michał\Documents\a-squared Free [4 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ] [1 C:\Users\Michał\*.tmp files -> C:\Users\Michał\*.tmp -> ] [color=#E56717]========== Files - Modified Within 60 Days ==========[/color] [2010-08-01 15:21:15 | 006,291,456 | -HS- | M] () -- C:\Users\Michał\ntuser.dat [2010-08-01 15:21:00 | 000,000,456 | -H-- | M] () -- C:\Windows\tasks\User_Feed_Synchronization-{94C9E3AC-2D7B-448B-9D50-923637CB0158}.job [2010-08-01 15:18:43 | 010,491,128 | ---- | M] (Simply Super Software ) -- C:\Users\Michał\Desktop\trjsetup682.exe [2010-08-01 15:09:54 | 000,054,016 | ---- | M] () -- C:\Windows\System32\drivers\wbsv.sys [2010-08-01 15:09:53 | 000,103,140 | ---- | M] () -- C:\loew.pif [2010-08-01 14:58:38 | 000,003,296 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0 [2010-08-01 14:58:38 | 000,003,296 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0 [2010-08-01 10:59:12 | 000,198,114 | ---- | M] () -- C:\ProgramData\nvModes.dat [2010-08-01 10:59:12 | 000,198,114 | ---- | M] () -- C:\ProgramData\nvModes.001 [2010-08-01 10:58:43 | 000,000,006 | -H-- | M] () -- C:\Windows\tasks\SA.DAT [2010-08-01 10:58:33 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat [2010-08-01 10:57:35 | 000,524,288 | -HS- | M] () -- C:\Users\Michał\ntuser.dat{4b254e09-061c-11dd-b1a8-001a6bf6d8ad}.TMContainer00000000000000000002.regtrans-ms [2010-08-01 10:57:35 | 000,065,536 | -HS- | M] () -- C:\Users\Michał\ntuser.dat{4b254e09-061c-11dd-b1a8-001a6bf6d8ad}.TM.blf [2010-08-01 10:57:30 | 000,000,012 | ---- | M] () -- C:\Windows\bthservsdp.dat [2010-08-01 10:57:23 | 002,167,789 | -H-- | M] () -- C:\Users\Michał\AppData\Local\IconCache.db [2010-08-01 10:34:08 | 000,000,341 | ---- | M] () -- C:\autorun.inf [2010-08-01 10:34:03 | 000,000,251 | ---- | M] () -- C:\Windows\system.ini [2010-08-01 10:33:21 | 000,000,027 | ---- | M] () -- C:\Windows\System32\drivers\etc\hosts [2010-08-01 09:47:01 | 003,748,898 | R--- | M] () -- C:\Users\Michał\Desktop\ComboFix.exe [2010-08-01 02:18:02 | 000,000,204 | ---- | M] () -- C:\Users\Michał\AppData\Local\user.config.lnk [2010-08-01 02:17:28 | 000,000,204 | ---- | M] () -- C:\Users\Michał\AppData\Local\Download.lnk [2010-08-01 02:17:25 | 000,000,204 | ---- | M] () -- C:\Users\Michał\Blizzard.lnk [2010-08-01 02:16:48 | 000,000,420 | -H-- | M] () -- C:\Windows\tasks\User_Feed_Synchronization-{33A78335-0818-4987-8D74-5A2DA5C573C0}.job [2010-08-01 02:15:20 | 000,000,204 | ---- | M] () -- C:\Users\Public\Desktop\AdobeESDGlobalApps.xml.lnk [2010-08-01 02:07:38 | 000,000,204 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\data.lnk [2010-08-01 02:02:45 | 000,000,204 | ---- | M] () -- C:\Users\Public\Documents\ashampoo.lnk [2010-08-01 02:02:44 | 000,000,204 | ---- | M] () -- C:\ProgramData\Download.lnk [2010-08-01 02:02:16 | 000,000,204 | ---- | M] () -- C:\ProgramData\Mandy.lnk [2010-07-31 18:48:13 | 000,000,715 | ---- | M] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk [2010-07-31 13:39:55 | 000,420,887 | ---- | M] () -- C:\Users\Michał\Desktop\RSIT.exe [2010-07-31 13:36:43 | 000,645,120 | ---- | M] (OldTimer Tools) -- C:\Users\Michał\Desktop\OTL.exe [2010-07-31 11:25:56 | 000,216,565 | ---- | M] () -- C:\Users\Michał\Desktop\Flash_Disinfector.exe [2010-07-31 01:40:33 | 000,000,202 | ---- | M] () -- C:\Users\Michał\AppData\Local\QuickPlay.lnk [2010-07-31 01:39:55 | 000,000,202 | ---- | M] () -- C:\Users\Michał\AppData\Local\GameLocalInfo.xml.lnk [2010-07-31 01:22:34 | 000,000,202 | ---- | M] () -- C:\Users\Public\Documents\ScanChInfo.lnk [2010-07-31 01:22:33 | 000,000,202 | ---- | M] () -- C:\ProgramData\VirtualDevice.lnk [2010-07-31 01:21:05 | 000,000,202 | ---- | M] () -- C:\ProgramData\Photoalbum.lnk [2010-07-31 01:15:38 | 036,829,376 | ---- | M] () -- C:\Users\Michał\Desktop\Nokia_PC_Suite_pol_web.exe [2010-07-31 00:20:57 | 000,484,152 | ---- | M] (Trend Micro Inc.) -- C:\Users\Michał\Desktop\HiJackThis.exe [2010-07-30 21:55:45 | 000,045,568 | ---- | M] () -- C:\Users\Michał\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2010-07-30 17:58:04 | 000,681,360 | ---- | M] () -- C:\Windows\System32\PerfStringBackup.INI [2010-07-30 17:58:04 | 000,341,478 | ---- | M] () -- C:\Windows\System32\perfh009.dat [2010-07-30 17:58:04 | 000,240,676 | ---- | M] () -- C:\Windows\System32\perfh015.dat [2010-07-30 17:58:04 | 000,070,286 | ---- | M] () -- C:\Windows\System32\perfc015.dat [2010-07-30 17:58:04 | 000,045,456 | ---- | M] () -- C:\Windows\System32\perfc009.dat [2010-07-30 17:26:44 | 000,000,601 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk [2010-07-30 17:23:10 | 006,227,080 | ---- | M] (Malwarebytes Corporation ) -- C:\Users\Michał\Desktop\mbam-setup-1.46(dobreprogramy.pl).exe [2010-07-30 13:41:36 | 048,006,456 | ---- | M] () -- C:\Users\Michał\Desktop\launch.exe [2010-07-30 04:30:48 | 000,000,202 | ---- | M] () -- C:\Users\Michał\AppData\Local\groom.avi.lnk [2010-07-30 02:44:36 | 000,000,202 | ---- | M] () -- C:\Users\Michał\AppData\Local\kleopatra.avi.lnk [2010-07-30 02:25:07 | 000,000,202 | ---- | M] () -- C:\ProgramData\Shortcut.lnk [2010-07-30 02:24:23 | 000,000,202 | ---- | M] () -- C:\ProgramData\XXX archive.lnk [2010-07-29 20:42:14 | 002,672,312 | ---- | M] () -- C:\Users\Michał\Desktop\esetsmartinstaller_plk.exe [2010-07-29 10:19:09 | 000,032,768 | ---- | M] () -- C:\backup.bcd [2010-07-29 10:16:41 | 000,001,976 | ---- | M] () -- C:\Users\Public\Desktop\VistaBootPRO 3.3.lnk [2010-07-29 10:15:02 | 000,191,488 | ---- | M] (PROnetworks) -- C:\Users\Michał\Desktop\VistaBootPRO_3.3.0.exe [2010-07-29 06:46:47 | 000,008,192 | R-S- | M] () -- C:\BOOTSECT.BAK [2010-07-28 20:30:59 | 000,001,887 | ---- | M] () -- C:\Windows\diagwrn.xml [2010-07-28 20:30:59 | 000,001,887 | ---- | M] () -- C:\Windows\diagerr.xml [2010-07-28 19:04:04 | 000,000,266 | RHS- | M] () -- C:\ProgramData\ntuser.pol [2010-07-24 19:05:17 | 000,008,484 | ---- | M] () -- C:\Users\Michał\AppData\Local\d3d9caps.dat [2010-07-24 17:27:56 | 000,004,096 | ---- | M] () -- C:\Windows\d3dx.dat [2010-07-13 14:52:53 | 000,001,223 | ---- | M] () -- C:\Windows\bestplayer.ini [2010-07-13 14:52:53 | 000,000,121 | ---- | M] () -- C:\Windows\bestplayer.bpp [2010-07-13 14:52:53 | 000,000,000 | ---- | M] () -- C:\Windows\bestplayer.bbt [2010-07-07 11:11:43 | 000,000,445 | ---- | M] () -- C:\Windows\win.ini [2010-06-10 14:57:15 | 000,435,336 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT [4 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ] [1 C:\Users\Michał\*.tmp files -> C:\Users\Michał\*.tmp -> ] [color=#E56717]========== Files Created - No Company Name ==========[/color] [2010-08-01 15:09:54 | 000,054,016 | ---- | C] () -- C:\Windows\System32\drivers\wbsv.sys [2010-08-01 10:34:15 | 000,000,341 | ---- | C] () -- C:\autorun.inf [2010-08-01 10:34:08 | 000,103,140 | ---- | C] () -- C:\loew.pif [2010-08-01 09:52:56 | 000,256,512 | ---- | C] () -- C:\Windows\PEV.exe [2010-08-01 09:52:56 | 000,098,816 | ---- | C] () -- C:\Windows\sed.exe [2010-08-01 09:52:56 | 000,080,412 | ---- | C] () -- C:\Windows\grep.exe [2010-08-01 09:52:56 | 000,077,312 | ---- | C] () -- C:\Windows\MBR.exe [2010-08-01 09:52:56 | 000,068,096 | ---- | C] () -- C:\Windows\zip.exe [2010-08-01 09:46:01 | 003,748,898 | R--- | C] () -- C:\Users\Michał\Desktop\ComboFix.exe [2010-08-01 02:18:02 | 000,000,204 | ---- | C] () -- C:\Users\Michał\AppData\Local\user.config.lnk [2010-08-01 02:17:28 | 000,000,204 | ---- | C] () -- C:\Users\Michał\AppData\Local\Download.lnk [2010-08-01 02:17:24 | 000,000,204 | ---- | C] () -- C:\Users\Michał\Blizzard.lnk [2010-08-01 02:15:20 | 000,000,204 | ---- | C] () -- C:\Users\Public\Desktop\AdobeESDGlobalApps.xml.lnk [2010-08-01 02:07:38 | 000,000,204 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\data.lnk [2010-08-01 02:02:45 | 000,000,204 | ---- | C] () -- C:\Users\Public\Documents\ashampoo.lnk [2010-08-01 02:02:44 | 000,000,204 | ---- | C] () -- C:\ProgramData\Download.lnk [2010-08-01 02:02:16 | 000,000,204 | ---- | C] () -- C:\ProgramData\Mandy.lnk [2010-07-31 18:48:13 | 000,000,715 | ---- | C] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk [2010-07-31 13:39:55 | 000,420,887 | ---- | C] () -- C:\Users\Michał\Desktop\RSIT.exe [2010-07-31 11:25:55 | 000,216,565 | ---- | C] () -- C:\Users\Michał\Desktop\Flash_Disinfector.exe [2010-07-31 02:20:33 | 000,000,202 | ---- | C] () -- C:\Users\Michał\AppData\Roaming\privacy_policy.txt.lnk [2010-07-31 01:40:33 | 000,000,202 | ---- | C] () -- C:\Users\Michał\AppData\Local\QuickPlay.lnk [2010-07-31 01:39:55 | 000,000,202 | ---- | C] () -- C:\Users\Michał\AppData\Local\GameLocalInfo.xml.lnk [2010-07-31 01:22:34 | 000,000,202 | ---- | C] () -- C:\Users\Public\Documents\ScanChInfo.lnk [2010-07-31 01:22:33 | 000,000,202 | ---- | C] () -- C:\ProgramData\VirtualDevice.lnk [2010-07-31 01:21:05 | 000,000,202 | ---- | C] () -- C:\ProgramData\Photoalbum.lnk [2010-07-31 01:15:30 | 036,829,376 | ---- | C] () -- C:\Users\Michał\Desktop\Nokia_PC_Suite_pol_web.exe [2010-07-30 17:26:44 | 000,000,601 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk [2010-07-30 13:18:36 | 048,006,456 | ---- | C] () -- C:\Users\Michał\Desktop\launch.exe [2010-07-30 02:44:36 | 000,000,202 | ---- | C] () -- C:\Users\Michał\AppData\Local\kleopatra.avi.lnk [2010-07-30 02:43:39 | 000,000,202 | ---- | C] () -- C:\Users\Michał\AppData\Local\groom.avi.lnk [2010-07-30 02:25:07 | 000,000,202 | ---- | C] () -- C:\ProgramData\Shortcut.lnk [2010-07-30 02:24:23 | 000,000,202 | ---- | C] () -- C:\ProgramData\XXX archive.lnk [2010-07-29 20:40:49 | 002,672,312 | ---- | C] () -- C:\Users\Michał\Desktop\esetsmartinstaller_plk.exe [2010-07-29 10:19:04 | 000,032,768 | ---- | C] () -- C:\backup.bcd [2010-07-29 10:16:41 | 000,001,976 | ---- | C] () -- C:\Users\Public\Desktop\VistaBootPRO 3.3.lnk [2010-07-28 12:47:00 | 000,008,192 | R-S- | C] () -- C:\BOOTSECT.BAK [2010-07-24 17:27:56 | 000,004,096 | ---- | C] () -- C:\Windows\d3dx.dat [2010-07-13 14:52:53 | 000,001,223 | ---- | C] () -- C:\Windows\bestplayer.ini [2010-07-13 14:52:53 | 000,000,121 | ---- | C] () -- C:\Windows\bestplayer.bpp [2010-07-13 14:52:53 | 000,000,000 | ---- | C] () -- C:\Windows\bestplayer.bbt [2010-04-02 17:17:34 | 000,179,091 | ---- | C] () -- C:\Windows\System32\xlive.dll.cat [2010-02-24 09:30:28 | 000,006,656 | ---- | C] () -- C:\Windows\System32\bcmwlrc.dll [2010-01-27 01:45:05 | 000,000,038 | ---- | C] () -- C:\Windows\avisplitter.INI [2010-01-08 10:34:30 | 000,014,848 | ---- | C] () -- C:\Windows\System32\EuEpmGdi.dll [2010-01-08 10:34:22 | 000,014,216 | ---- | C] () -- C:\Windows\System32\epmntdrv.sys [2010-01-08 10:34:22 | 000,008,456 | ---- | C] () -- C:\Windows\System32\EuGdiDrv.sys [2009-09-24 09:37:52 | 000,117,248 | ---- | C] () -- C:\Windows\System32\EhStorAuthn.dll [2009-07-05 08:15:53 | 000,281,760 | ---- | C] () -- C:\Windows\System32\drivers\atksgt.sys [2009-07-05 08:15:52 | 000,025,888 | ---- | C] () -- C:\Windows\System32\drivers\lirsgt.sys [2009-01-06 21:46:50 | 000,062,032 | ---- | C] () -- C:\Windows\lsw2_gameexplorerhelper.dll [2008-10-07 09:13:30 | 000,197,912 | ---- | C] () -- C:\Windows\System32\physxcudart_20.dll [2008-10-07 09:13:22 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelTraditionalChinese.dll [2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelSwedish.dll [2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelSpanish.dll [2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelSimplifiedChinese.dll [2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelPortugese.dll [2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelKorean.dll [2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelJapanese.dll [2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelGerman.dll [2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelFrench.dll [2008-07-29 06:41:12 | 000,000,048 | ---- | C] () -- C:\Windows\winfile.ini [2008-04-06 13:47:31 | 000,000,035 | ---- | C] () -- C:\Windows\powerplayer.ini [2008-04-06 13:47:14 | 000,000,374 | ---- | C] () -- C:\Windows\psnetwork.ini [2008-04-02 16:14:15 | 000,164,352 | ---- | C] () -- C:\Windows\System32\unrar.dll [2008-04-02 16:14:13 | 003,596,288 | ---- | C] () -- C:\Windows\System32\qt-dx331.dll [2008-04-02 16:14:13 | 000,755,027 | ---- | C] () -- C:\Windows\System32\xvidcore.dll [2008-04-02 16:14:13 | 000,159,839 | ---- | C] () -- C:\Windows\System32\xvidvfw.dll [2008-04-02 16:14:12 | 000,007,680 | ---- | C] () -- C:\Windows\System32\ff_vfw.dll [2008-04-02 16:14:12 | 000,000,547 | ---- | C] () -- C:\Windows\System32\ff_vfw.dll.manifest [2008-03-24 20:59:02 | 000,000,000 | ---- | C] () -- C:\Windows\Irremote.ini [2008-03-09 17:35:00 | 000,022,328 | ---- | C] () -- C:\Windows\System32\drivers\PnkBstrK.sys [2008-03-04 19:52:34 | 000,286,720 | ---- | C] () -- C:\Windows\System32\libcurl.dll [2008-01-01 19:14:22 | 000,000,069 | ---- | C] () -- C:\Windows\NeroDigital.ini [2007-12-12 13:20:51 | 000,000,271 | ---- | C] () -- C:\Windows\game.ini [2007-11-13 22:21:48 | 000,000,412 | ---- | C] () -- C:\Windows\ODBC.INI [2007-11-13 16:12:28 | 000,069,632 | ---- | C] () -- C:\Windows\System32\xmltok.dll [2007-11-13 16:12:28 | 000,036,864 | ---- | C] () -- C:\Windows\System32\xmlparse.dll [2007-11-08 23:50:43 | 000,691,696 | ---- | C] () -- C:\Windows\System32\drivers\sptd.sys [2007-10-28 17:35:12 | 000,014,848 | ---- | C] () -- C:\Windows\System32\BASSMOD.dll [2007-05-17 14:58:10 | 000,143,360 | ---- | C] () -- C:\Windows\System32\libexpatw.dll [2007-03-29 12:42:38 | 000,389,120 | ---- | C] () -- C:\Windows\System32\btwhidcs.dll [2007-02-27 22:43:02 | 000,000,000 | ---- | C] () -- C:\Windows\System32\px.ini [2006-12-13 23:01:36 | 000,520,192 | ---- | C] () -- C:\Windows\System32\CddbPlaylist2Roxio.dll [2006-12-13 23:01:36 | 000,204,800 | ---- | C] () -- C:\Windows\System32\CddbFileTaggerRoxio.dll [2006-11-02 14:35:32 | 000,005,632 | ---- | C] () -- C:\Windows\System32\sysprepMCE.dll [2006-11-02 12:25:21 | 000,061,440 | ---- | C] () -- C:\Windows\System32\igfxTMM.dll [2006-11-02 09:40:29 | 000,013,750 | ---- | C] () -- C:\Windows\System32\pacerprf.ini [2006-05-03 00:38:24 | 000,000,748 | ---- | C] () -- C:\Windows\SetBrowser.ini [2006-03-10 02:58:00 | 001,060,424 | ---- | C] () -- C:\Windows\System32\WdfCoInstaller01000.dll [2005-05-07 14:06:00 | 000,016,480 | ---- | C] () -- C:\Windows\System32\rixdicon.dll [2005-04-03 22:30:00 | 000,110,592 | R--- | C] () -- C:\Windows\System32\scardsyn.dll [2001-11-14 13:56:00 | 001,802,240 | ---- | C] () -- C:\Windows\System32\lcppn21.dll [1998-06-13 23:53:26 | 000,044,544 | ---- | C] () -- C:\Windows\System32\Gif89.dll [1998-05-07 03:10:00 | 000,069,632 | R--- | C] () -- C:\Windows\System32\ODMA32.dll [color=#E56717]========== LOP Check ==========[/color] [2010-07-31 02:21:03 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\Alawar [2010-07-31 02:21:04 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\Ashampoo [2010-07-31 02:21:12 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\AutoUpdate [2010-07-31 02:21:13 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\BESTplayer [2010-07-31 02:21:15 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\Braid [2010-07-31 02:21:15 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\Canneverbe_Limited [2010-07-31 02:21:19 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\Codeton [2010-07-31 02:21:21 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\Crayon Physics Deluxe [2010-07-31 02:21:33 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\DAEMON Tools [2010-07-31 02:21:35 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\DAEMON Tools Lite [2010-07-31 02:21:37 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\DeepBurner [2010-07-31 02:21:39 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\Flock [2010-07-31 02:22:05 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\foobar2000 [2010-07-31 02:22:06 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\Gadu-Gadu [2010-07-31 02:22:25 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\GanymedeNet [2010-07-31 02:26:14 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\Image Zone Express [2010-07-31 02:26:15 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\InfraRecorder [2010-07-31 02:26:22 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\Kamerzysta [2010-07-31 02:26:35 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\Leadertech [2010-07-31 02:26:43 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\Ludia [2010-07-30 10:48:17 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\My Games [2010-07-30 10:49:50 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\Nokia [2010-07-30 10:50:43 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\Opera [2010-07-30 10:54:22 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\PC Suite [2010-07-30 10:54:38 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\PeerNetworking [2010-07-30 10:54:42 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\PGP Corporation [2010-07-30 10:54:52 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\PPMate [2010-07-30 10:55:03 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\ppStream [2010-07-30 10:55:08 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\Printer Info Cache [2010-07-30 10:59:40 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\SPORE Creature Creator [2010-07-30 10:59:59 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\Sudeki [2010-07-30 11:11:28 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\The Path [2010-07-30 11:11:50 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\Tropico 3 [2010-07-30 11:12:22 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\Ubisoft [2010-07-30 11:12:38 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\Unity [2010-08-01 15:10:01 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\uTorrent [2010-07-30 11:13:19 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\Vso [2010-08-01 10:57:31 | 000,032,560 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT [2010-08-01 02:16:48 | 000,000,420 | -H-- | M] () -- C:\Windows\Tasks\User_Feed_Synchronization-{33A78335-0818-4987-8D74-5A2DA5C573C0}.job [2010-08-01 15:21:00 | 000,000,456 | -H-- | M] () -- C:\Windows\Tasks\User_Feed_Synchronization-{94C9E3AC-2D7B-448B-9D50-923637CB0158}.job [color=#E56717]========== Purity Check ==========[/color] [color=#E56717]========== Custom Scans ==========[/color] [color=#A23BEC]< %systemdrive%\*.* >[/color] [2010-08-01 10:34:08 | 000,000,341 | ---- | M] () -- C:\autorun.inf [2010-07-29 10:19:09 | 000,032,768 | ---- | M] () -- C:\backup.bcd [2010-07-29 10:19:09 | 000,029,696 | -H-- | M] () -- C:\backup.bcd.LOG [2010-07-29 10:19:09 | 000,000,000 | -H-- | M] () -- C:\backup.bcd.LOG1 [2010-07-29 10:19:09 | 000,000,000 | -H-- | M] () -- C:\backup.bcd.LOG2 [2010-04-18 22:34:05 | 000,000,086 | ---- | M] () -- C:\bcmwl6.log [2009-07-14 03:38:58 | 000,383,562 | RHS- | M] () -- C:\bootmgr [2010-07-29 06:46:47 | 000,008,192 | R-S- | M] () -- C:\BOOTSECT.BAK [2010-08-01 10:49:53 | 000,028,904 | ---- | M] () -- C:\ComboFix.txt [2006-09-18 23:43:37 | 000,000,010 | ---- | M] () -- C:\config.sys [2007-11-13 20:37:44 | 000,000,000 | RHS- | M] () -- C:\IO.SYS [2008-05-16 00:04:00 | 000,000,177 | ---- | M] () -- C:\ioSpecial.ini [2010-08-01 15:09:53 | 000,103,140 | ---- | M] () -- C:\loew.pif [2010-07-29 19:10:35 | 000,106,190 | ---- | M] () -- C:\mksbasel.cpp.log [2007-11-13 20:37:44 | 000,000,000 | RHS- | M] () -- C:\MSDOS.SYS [2010-08-01 10:58:27 | 2997,080,064 | -HS- | M] () -- C:\pagefile.sys [color=#A23BEC]< MD5 for: AGP440.SYS >[/color] [2008-01-19 09:42:25 | 000,056,376 | ---- | M] (Microsoft Corporation) MD5=13F9E33747E6B41A3FF305C37DB0D360 -- C:\Windows\System32\DriverStore\FileRepository\machine.inf_51b95d75\AGP440.sys [2008-01-19 09:42:25 | 000,056,376 | ---- | M] (Microsoft Corporation) MD5=13F9E33747E6B41A3FF305C37DB0D360 -- C:\Windows\System32\DriverStore\FileRepository\machine.inf_f750e484\AGP440.sys [2008-01-19 09:42:25 | 000,056,376 | ---- | M] (Microsoft Corporation) MD5=13F9E33747E6B41A3FF305C37DB0D360 -- C:\Windows\winsxs\x86_machine.inf_31bf3856ad364e35_6.0.6001.18000_none_ba12ed3bbeb0d97a\AGP440.sys [2008-01-19 09:42:25 | 000,056,376 | ---- | M] (Microsoft Corporation) MD5=13F9E33747E6B41A3FF305C37DB0D360 -- C:\Windows\winsxs\x86_machine.inf_31bf3856ad364e35_6.0.6002.18005_none_bbfe6647bbd2a4c6\AGP440.sys [2007-08-22 04:44:27 | 000,053,864 | ---- | M] (Microsoft Corporation) MD5=313FF294978EA6AF715722D708FB249F -- C:\Windows\winsxs\x86_machine.inf_31bf3856ad364e35_6.0.6000.20494_none_b858f78adaed51b3\AGP440.sys [2007-08-22 04:44:28 | 000,053,864 | ---- | M] (Microsoft Corporation) MD5=CE71AFD6738AA025D742CDBCFBDC8B9C -- C:\Windows\System32\DriverStore\FileRepository\machine.inf_f2490cb0\AGP440.sys [2007-08-22 04:44:28 | 000,053,864 | ---- | M] (Microsoft Corporation) MD5=CE71AFD6738AA025D742CDBCFBDC8B9C -- C:\Windows\winsxs\x86_machine.inf_31bf3856ad364e35_6.0.6000.16399_none_b7d45c31c1cb309c\AGP440.sys [2006-11-02 11:49:52 | 000,053,864 | ---- | M] (Microsoft Corporation) MD5=EF23439CDD587F64C2C1B8825CEAD7D8 -- C:\Windows\ERDNT\cache\AGP440.sys [2006-11-02 11:49:52 | 000,053,864 | ---- | M] (Microsoft Corporation) MD5=EF23439CDD587F64C2C1B8825CEAD7D8 -- C:\Windows\System32\drivers\AGP440.sys [2006-11-02 11:49:52 | 000,053,864 | ---- | M] (Microsoft Corporation) MD5=EF23439CDD587F64C2C1B8825CEAD7D8 -- C:\Windows\System32\DriverStore\FileRepository\machine.inf_920a2c1f\AGP440.sys [color=#A23BEC]< MD5 for: ATAPI.SYS >[/color] [2009-04-11 08:32:26 | 000,019,944 | ---- | M] (Microsoft Corporation) MD5=1F05B78AB91C9075565A9D8A4B880BC4 -- C:\Windows\ERDNT\cache\atapi.sys [2009-04-11 08:32:26 | 000,019,944 | ---- | M] (Microsoft Corporation) MD5=1F05B78AB91C9075565A9D8A4B880BC4 -- C:\Windows\System32\drivers\atapi.sys [2009-04-11 08:32:26 | 000,019,944 | ---- | M] (Microsoft Corporation) MD5=1F05B78AB91C9075565A9D8A4B880BC4 -- C:\Windows\System32\DriverStore\FileRepository\mshdc.inf_b12d8e84\atapi.sys [2009-04-11 08:32:26 | 000,019,944 | ---- | M] (Microsoft Corporation) MD5=1F05B78AB91C9075565A9D8A4B880BC4 -- C:\Windows\winsxs\x86_mshdc.inf_31bf3856ad364e35_6.0.6002.18005_none_df23a1261eab99e8\atapi.sys [2008-01-19 09:41:30 | 000,021,560 | ---- | M] (Microsoft Corporation) MD5=2D9C903DC76A66813D350A562DE40ED9 -- C:\Windows\System32\DriverStore\FileRepository\mshdc.inf_cc18792d\atapi.sys [2008-01-19 09:41:30 | 000,021,560 | ---- | M] (Microsoft Corporation) MD5=2D9C903DC76A66813D350A562DE40ED9 -- C:\Windows\winsxs\x86_mshdc.inf_31bf3856ad364e35_6.0.6001.18000_none_dd38281a2189ce9c\atapi.sys [2006-11-02 11:49:36 | 000,019,048 | ---- | M] (Microsoft Corporation) MD5=4F4FCB8B6EA06784FB6D475B7EC7300F -- C:\Windows\System32\DriverStore\FileRepository\mshdc.inf_c6c2e699\atapi.sys [2008-02-13 12:58:34 | 000,021,560 | ---- | M] (Microsoft Corporation) MD5=B35CFCEF838382AB6490B321C87EDF17 -- C:\Windows\System32\DriverStore\FileRepository\mshdc.inf_7de13c21\atapi.sys [2008-02-13 12:58:34 | 000,021,560 | ---- | M] (Microsoft Corporation) MD5=B35CFCEF838382AB6490B321C87EDF17 -- C:\Windows\winsxs\x86_mshdc.inf_31bf3856ad364e35_6.0.6000.16632_none_db337a442479c42c\atapi.sys [2008-02-13 12:58:33 | 000,021,560 | ---- | M] (Microsoft Corporation) MD5=E03E8C99D15D0381E02743C36AFC7C6F -- C:\Windows\winsxs\x86_mshdc.inf_31bf3856ad364e35_6.0.6000.20757_none_dbac78a93da31a8b\atapi.sys [color=#A23BEC]< MD5 for: BEEP.SYS >[/color] [2008-01-19 07:49:10 | 000,006,144 | ---- | M] (Microsoft Corporation) MD5=67E506B75BD5326A3EC7B70BD014DFB6 -- C:\Windows\ERDNT\cache\beep.sys [2008-01-19 07:49:10 | 000,006,144 | ---- | M] (Microsoft Corporation) MD5=67E506B75BD5326A3EC7B70BD014DFB6 -- C:\Windows\System32\drivers\beep.sys [2008-01-19 07:49:10 | 000,006,144 | ---- | M] (Microsoft Corporation) MD5=67E506B75BD5326A3EC7B70BD014DFB6 -- C:\Windows\winsxs\x86_microsoft-windows-beepsys_31bf3856ad364e35_6.0.6001.18000_none_c420a153079d485b\beep.sys [2006-11-02 10:51:03 | 000,006,144 | ---- | M] (Microsoft Corporation) MD5=AC3DD1708B22761EBD7CBE14DCC3B5D7 -- C:\Windows\winsxs\x86_microsoft-windows-beepsys_31bf3856ad364e35_6.0.6000.16386_none_c1e9df570ab23787\beep.sys [color=#A23BEC]< MD5 for: CDROM.SYS >[/color] [2008-01-19 07:49:51 | 000,067,072 | ---- | M] (Microsoft Corporation) MD5=1EC25CEA0DE6AC4718BF89F9E1778B57 -- C:\Windows\System32\DriverStore\FileRepository\cdrom.inf_a29e71c6\cdrom.sys [2008-01-19 07:49:51 | 000,067,072 | ---- | M] (Microsoft Corporation) MD5=1EC25CEA0DE6AC4718BF89F9E1778B57 -- C:\Windows\winsxs\x86_cdrom.inf_31bf3856ad364e35_6.0.6001.18000_none_5fa95be2a3c76a4a\cdrom.sys [2009-04-11 06:39:17 | 000,067,072 | ---- | M] (Microsoft Corporation) MD5=6B4BFFB9BECD728097024276430DB314 -- C:\Windows\System32\drivers\cdrom.sys [2009-04-11 06:39:17 | 000,067,072 | ---- | M] (Microsoft Corporation) MD5=6B4BFFB9BECD728097024276430DB314 -- C:\Windows\System32\DriverStore\FileRepository\cdrom.inf_c949a5b6\cdrom.sys [2009-04-11 06:39:17 | 000,067,072 | ---- | M] (Microsoft Corporation) MD5=6B4BFFB9BECD728097024276430DB314 -- C:\Windows\winsxs\x86_cdrom.inf_31bf3856ad364e35_6.0.6002.18005_none_6194d4eea0e93596\cdrom.sys [2006-11-02 10:51:44 | 000,067,072 | ---- | M] (Microsoft Corporation) MD5=8D1866E61AF096AE8B582454F5E4D303 -- C:\Windows\System32\DriverStore\FileRepository\cdrom.inf_e487f727\cdrom.sys [color=#A23BEC]< MD5 for: NDIS.SYS >[/color] [2009-04-11 08:32:49 | 000,527,848 | ---- | M] (Microsoft Corporation) MD5=1357274D1883F68300AEADD15D7BBB42 -- C:\Windows\ERDNT\cache\ndis.sys [2009-04-11 08:32:49 | 000,527,848 | ---- | M] (Microsoft Corporation) MD5=1357274D1883F68300AEADD15D7BBB42 -- C:\Windows\System32\drivers\ndis.sys [2009-04-11 08:32:49 | 000,527,848 | ---- | M] (Microsoft Corporation) MD5=1357274D1883F68300AEADD15D7BBB42 -- C:\Windows\winsxs\x86_microsoft-windows-ndis_31bf3856ad364e35_6.0.6002.18005_none_a9b2a4d31930d864\ndis.sys [2006-11-02 11:51:42 | 000,500,840 | ---- | M] (Microsoft Corporation) MD5=227C11E1E7CF6EF8AFB2A238D209760C -- C:\Windows\winsxs\x86_microsoft-windows-ndis_31bf3856ad364e35_6.0.6000.16386_none_a59069cb1f23fc44\ndis.sys [2008-01-19 09:43:31 | 000,529,464 | ---- | M] (Microsoft Corporation) MD5=9BDC71790FA08F0A0B5F10462B1BD0B1 -- C:\Windows\winsxs\x86_microsoft-windows-ndis_31bf3856ad364e35_6.0.6001.18000_none_a7c72bc71c0f0d18\ndis.sys [color=#A23BEC]< MD5 for: WINLOGON.EXE >[/color] [2009-04-11 08:28:13 | 000,314,368 | ---- | M] (Microsoft Corporation) MD5=898E7C06A350D4A1A64A9EA264D55452 -- C:\Windows\ERDNT\cache\winlogon.exe [2009-04-11 08:28:13 | 000,314,368 | ---- | M] (Microsoft Corporation) MD5=898E7C06A350D4A1A64A9EA264D55452 -- C:\Windows\System32\winlogon.exe [2009-04-11 08:28:13 | 000,314,368 | ---- | M] (Microsoft Corporation) MD5=898E7C06A350D4A1A64A9EA264D55452 -- C:\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.0.6002.18005_none_71ae7a22d2134741\winlogon.exe [2006-11-02 11:45:57 | 000,308,224 | ---- | M] (Microsoft Corporation) MD5=9F75392B9128A91ABAFB044EA350BAAD -- C:\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.0.6000.16386_none_6d8c3f1ad8066b21\winlogon.exe [2008-01-19 09:33:37 | 000,314,880 | ---- | M] (Microsoft Corporation) MD5=C2610B6BDBEFC053BBDAB4F1B965CB24 -- C:\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.0.6001.18000_none_6fc30116d4f17bf5\winlogon.exe [color=#E56717]========== Alternate Data Streams ==========[/color] @Alternate Data Stream - 119 bytes -> C:\ProgramData\TEMP:0F8F5844 @Alternate Data Stream - 109 bytes -> C:\ProgramData\TEMP:010ADD2C < End of report > [/log] I rejestr i menadżer są nadal zablokowane.
Sohei komentarz 1 sierpnia 2010 komentarz 1 sierpnia 2010 [code]:Processes Explorer.exe :OTL PRC - [2010-08-01 15:13:26 | 000,011,776 | ---- | M] () -- C:\Users\MICHA~1\AppData\Local\Temp\windjspjc.exe PRC - [2010-08-01 15:11:25 | 000,011,776 | ---- | M] () -- C:\Windows\temp\winlopb.exe PRC - [2010-08-01 11:07:18 | 000,035,840 | ---- | M] () -- C:\Windows\temp\w86ca7.exe PRC - [2010-08-01 11:06:37 | 000,035,840 | ---- | M] () -- C:\Users\MICHA~1\AppData\Local\Temp\w7c522.exe :files D:\autorun.inf G:\autorun.inf C:\Users\Michał\Desktop\trjsetup682.exe C:\loew.pif C:\Users\MICHA~1\AppData\Local\Temp\w7c522.exe C:\Windows\temp\w86ca7.exe C:\Windows\temp\winlopb.exe C:\Users\MICHA~1\AppData\Local\Temp\windjspjc.exe :Commands [emptytemp] [start explorer] [Reboot][/code] Do OTL i run fix. Wykonaj pełny skan [url=http://dobreprogramy.pl/index.php?dz=2&id=1998][b]DR WEB CureIt[/b][/url] Wykonaj pełny skan[url=http://www.dobreprogramy.pl/Malwarebytes-AntiMalware,Program,Windows,13117.html][b]MBAM[/b][/url] Co znajda usun po czym daj logi z usuwania + nowy log OTL @@ Po wykonaniu skanów a zwłaszcza MBAM powiedz mi czy rejestr i menadżer się odblokował jeśli nie to napisze skrypt który temu zaradzi: )
Wciąż szukasz rozwiązania problemu? Napisz teraz na forum!
Możesz zadać pytanie bez konieczności rejestracji - wystarczy, że wypełnisz formularz.