x-kom hosting

Problem z wirusami - zamieszczam logi

logic88
utworzono
utworzono

Witam, zwracam się z prośbą o pomoc, bo sam nie jestem w stanie już nic zrobić.

- menedżer zadań i edycja rejestru zablokowane,
- przy starcie systemu automatycznie wyłącza się zapora windows,
- na dysku C: mnożą się skróty do nieistniejących plików
- po uruchomieniu windowsa pojawia się informacja o plikach nieznanego pochodzenia gotowych do zapisania na płycie DVD


Skanowałem system Malwarebytes' Anti-Malware, oto log
[log]
Malwarebytes' Anti-Malware 1.46
www.malwarebytes.org

Wersja bazy: 4370

Windows 6.0.6002 Service Pack 2 (Safe Mode)
Internet Explorer 8.0.6001.18928

2010-07-31 13:40:55
mbam-log-2010-07-31 (13-40-55).txt

Typ skanowania: Pełne skanowanie (C:\|)
Przeskanowano obiektów: 305282
Upłynęło: 1 godzin(y), 20 minut(y), 8 sekund(y)

Zainfekowanych procesów w pamięci: 0
Zainfekowanych modułów w pamięci: 0
Zainfekowanych kluczy rejestru: 0
Zainfekowanych wartości rejestru: 0
Zainfekowane informacje rejestru systemowego: 5
Zainfekowanych folderów: 0
Zainfekowanych plików: 4

Zainfekowanych procesów w pamięci:
(Nie znaleziono zagrożeń)

Zainfekowanych modułów w pamięci:
(Nie znaleziono zagrożeń)

Zainfekowanych kluczy rejestru:
(Nie znaleziono zagrożeń)

Zainfekowanych wartości rejestru:
(Nie znaleziono zagrożeń)

Zainfekowane informacje rejestru systemowego:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\AntiVirusDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\FirewallDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\UpdatesDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\DisableRegistryTools (Hijack.Regedit) -> Bad: (1) Good: (0) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\DisableTaskMgr (Hijack.TaskManager) -> Bad: (1) Good: (0) -> No action taken.

Zainfekowanych folderów:
(Nie znaleziono zagrożeń)

Zainfekowanych plików:
C:\autorun.inf (Malware.Packer.Gen) -> No action taken.
C:\wrrh.pif (Malware.Packer.Gen) -> No action taken.
C:\Users\Michał\AppData\Local\Temp\wingjsviv.exe (Trojan.Pramro) -> No action taken.
C:\Windows\Temp\ecvlq.exe (Trojan.Pramro) -> No action taken.
[/log]

i logi z OTL

[log]
OTL logfile created on: 2010-07-31 16:34:34 - Run 1
OTL by OldTimer - Version 3.2.9.1 Folder = C:\Users\Michał\Desktop
Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18928)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd

2,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 63,00% Memory free
5,00 Gb Paging File | 4,00 Gb Available in Paging File | 79,00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 81,46 Gb Total Space | 40,74 Gb Free Space | 50,02% Space Free | Partition Type: NTFS
Drive D: | 6,93 Gb Total Space | 2,39 Gb Free Space | 34,49% Space Free | Partition Type: NTFS
E: Drive not present or media not loaded
F: Drive not present or media not loaded
Drive G: | 60,66 Gb Total Space | 5,55 Gb Free Space | 9,14% Space Free | Partition Type: NTFS
H: Drive not present or media not loaded
I: Drive not present or media not loaded

Computer Name: MICHAŁ-PC
Current User Name: Michał
Logged in as Administrator.

Current Boot Mode: Normal
Scan Mode: All users
Company Name Whitelist: On
Skip Microsoft Files: On
File Age = 60 Days
Output = Standard

[color=#E56717]========== Processes (All) ==========[/color]

PRC - [2010-07-31 16:22:16 | 000,035,840 | ---- | M] () -- C:\Windows\Temp\w87f0e.exe
PRC - [2010-07-31 16:22:13 | 000,035,840 | ---- | M] () -- C:\Users\MICHA~1\AppData\Local\Temp\w86f45.exe
PRC - [2010-07-31 16:17:56 | 000,011,776 | ---- | M] () -- C:\Windows\Temp\winqalplt.exe
PRC - [2010-07-31 16:17:53 | 000,030,208 | ---- | M] () -- C:\Users\MICHA~1\AppData\Local\Temp\wintiwr.exe
PRC - [2010-07-31 16:17:47 | 000,030,208 | ---- | M] () -- C:\Windows\Temp\winshhrqa.exe
PRC - [2010-07-31 16:17:38 | 000,011,776 | ---- | M] () -- C:\Users\MICHA~1\AppData\Local\Temp\winoopl.exe
PRC - [2010-07-31 13:36:43 | 000,574,976 | ---- | M] (OldTimer Tools) -- C:\Users\Michał\Desktop\OTL.exe
PRC - [2010-05-04 08:00:35 | 000,638,232 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Internet Explorer\iexplore.exe
PRC - [2009-11-20 21:33:00 | 000,122,984 | ---- | M] (NVIDIA Corporation) -- C:\Windows\System32\nvvsvc.exe
PRC - [2009-08-18 11:29:22 | 001,529,728 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVC.EXE
PRC - [2009-08-18 11:29:22 | 000,183,152 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVCM.EXE
PRC - [2009-07-23 12:04:42 | 000,498,744 | ---- | M] (Hewlett-Packard) -- C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
PRC - [2009-06-15 14:48:49 | 000,009,728 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\lsass.exe
PRC - [2009-05-19 12:36:18 | 000,240,512 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
PRC - [2009-04-11 08:28:15 | 000,247,296 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\wbem\WmiPrvSE.exe
PRC - [2009-04-11 08:28:13 | 000,314,368 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\winlogon.exe
PRC - [2009-04-11 08:28:08 | 000,037,888 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\wbem\unsecapp.exe
PRC - [2009-04-11 08:28:07 | 000,169,984 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\taskeng.exe
PRC - [2009-04-11 08:28:05 | 000,127,488 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\spoolsv.exe
PRC - [2009-04-11 08:28:04 | 000,064,000 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\smss.exe
PRC - [2009-04-11 08:27:59 | 000,441,344 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\SearchIndexer.exe
PRC - [2009-04-11 08:27:59 | 000,279,552 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\services.exe
PRC - [2009-04-11 08:27:49 | 003,408,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\SLsvc.exe
PRC - [2009-04-11 08:27:45 | 000,073,216 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\msiexec.exe
PRC - [2009-04-11 08:27:36 | 002,926,592 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe
PRC - [2009-04-11 08:27:33 | 000,081,920 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\dwm.exe
PRC - [2009-02-23 15:58:52 | 000,996,616 | ---- | M] (Raxco Software, Inc.) -- G:\Programy\defragmentator dysku\PDAgent.exe
PRC - [2009-02-23 15:58:52 | 000,140,552 | ---- | M] (Raxco Software, Inc.) -- G:\Programy\defragmentator dysku\PDAgentS1.exe
PRC - [2008-06-20 17:37:44 | 000,103,720 | ---- | M] (Synaptics, Inc.) -- C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
PRC - [2008-06-20 17:37:34 | 001,385,768 | ---- | M] (Synaptics, Inc.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
PRC - [2008-06-09 11:21:58 | 000,151,552 | ---- | M] (Hewlett-Packard Company) -- C:\Program Files\Common Files\LightScribe\LSSrvc.exe
PRC - [2008-05-01 17:25:56 | 000,165,192 | ---- | M] (Hewlett-Packard Development Company, L.P.) -- C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
PRC - [2008-04-11 10:04:54 | 000,685,360 | ---- | M] () -- C:\Program Files\Hewlett-Packard\Shared\HpqToaster.exe
PRC - [2008-03-09 17:34:41 | 000,066,872 | ---- | M] () -- C:\Windows\System32\PnkBstrA.exe
PRC - [2008-01-19 09:38:38 | 001,008,184 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Windows Defender\MSASCui.exe
PRC - [2008-01-19 09:33:39 | 000,074,240 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\wlanext.exe
PRC - [2008-01-19 09:33:37 | 000,096,768 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\wininit.exe
PRC - [2008-01-19 09:33:35 | 000,056,320 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\wermgr.exe
PRC - [2008-01-19 09:33:32 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch]
PRC - [2008-01-19 09:33:32 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch]
PRC - [2008-01-19 09:33:32 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch]
PRC - [2008-01-19 09:33:32 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch]
PRC - [2008-01-19 09:33:32 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch]
PRC - [2008-01-19 09:33:32 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch]
PRC - [2008-01-19 09:33:32 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch]
PRC - [2008-01-19 09:33:32 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch]
PRC - [2008-01-19 09:33:32 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch]
PRC - [2008-01-19 09:33:32 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch]
PRC - [2008-01-19 09:33:32 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch]
PRC - [2008-01-19 09:33:32 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch]
PRC - [2008-01-19 09:33:32 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch]
PRC - [2008-01-19 09:33:32 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch]
PRC - [2008-01-19 09:33:32 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch]
PRC - [2008-01-19 09:33:32 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch]
PRC - [2008-01-19 09:33:32 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch]
PRC - [2008-01-19 09:33:32 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch]
PRC - [2008-01-19 09:33:32 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch]
PRC - [2008-01-19 09:33:14 | 000,229,888 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\lsm.exe
PRC - [2008-01-19 09:33:09 | 000,125,952 | ---- | M] (Microsoft Corporation) -- C:\Windows\ehome\ehtray.exe
PRC - [2008-01-19 09:33:09 | 000,037,376 | ---- | M] (Microsoft Corporation) -- C:\Windows\ehome\ehmsas.exe
PRC - [2008-01-19 09:33:05 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\csrss.exe
PRC - [2007-07-10 07:28:08 | 000,386,560 | ---- | M] (Conexant Systems, Inc.) -- C:\Windows\System32\drivers\XAudio.exe
PRC - [2007-05-28 18:57:54 | 000,357,888 | ---- | M] (Rocket Division Software) -- G:\Programy\Alcohol 120\StarWind\StarWindServiceAE.exe
PRC - [2007-04-23 18:11:42 | 000,262,243 | ---- | M] () -- C:\Program Files\HP\QuickPlay\Kernel\TV\CLCapSvc.exe


[color=#E56717]========== Modules (All) ==========[/color]

MOD - [2010-07-31 13:36:43 | 000,574,976 | ---- | M] (OldTimer Tools) -- C:\Users\Michał\Desktop\OTL.exe
MOD - [2009-09-25 00:54:55 | 000,258,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\winspool.drv
MOD - [2009-07-17 15:54:43 | 000,071,680 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\atl.dll
MOD - [2009-06-15 16:53:43 | 000,072,704 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\secur32.dll
MOD - [2009-06-15 16:52:42 | 000,023,552 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\lpk.dll
MOD - [2009-04-23 14:15:07 | 000,784,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\rpcrt4.dll
MOD - [2009-04-11 08:28:25 | 001,077,248 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\vssapi.dll
MOD - [2009-04-11 08:28:25 | 000,627,712 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\user32.dll
MOD - [2009-04-11 08:28:25 | 000,502,272 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\usp10.dll
MOD - [2009-04-11 08:28:25 | 000,287,744 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\Wldap32.dll
MOD - [2009-04-11 08:28:25 | 000,108,544 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\userenv.dll
MOD - [2009-04-11 08:28:25 | 000,020,480 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\version.dll
MOD - [2009-04-11 08:28:24 | 011,584,000 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\shell32.dll
MOD - [2009-04-11 08:28:24 | 001,591,296 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\setupapi.dll
MOD - [2009-04-11 08:28:24 | 001,068,032 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\shdocvw.dll
MOD - [2009-04-11 08:28:24 | 000,353,280 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\shlwapi.dll
MOD - [2009-04-11 08:28:24 | 000,142,336 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\spp.dll
MOD - [2009-04-11 08:28:24 | 000,057,344 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\samlib.dll
MOD - [2009-04-11 08:28:23 | 001,316,864 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\ole32.dll
MOD - [2009-04-11 08:28:23 | 000,754,688 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\propsys.dll
MOD - [2009-04-11 08:28:23 | 000,563,712 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\oleaut32.dll
MOD - [2009-04-11 08:28:23 | 000,467,456 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\netapi32.dll
MOD - [2009-04-11 08:28:23 | 000,121,344 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\ntmarta.dll
MOD - [2009-04-11 08:28:23 | 000,088,576 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\olepro32.dll
MOD - [2009-04-11 08:28:22 | 000,679,936 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\msvcrt.dll
MOD - [2009-04-11 08:28:20 | 000,891,392 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\kernel32.dll
MOD - [2009-04-11 08:28:20 | 000,807,424 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\msctf.dll
MOD - [2009-04-11 08:28:20 | 000,114,688 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\imm32.dll
MOD - [2009-04-11 08:28:20 | 000,068,608 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\mpr.dll
MOD - [2009-04-11 08:28:19 | 000,297,472 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\gdi32.dll
MOD - [2009-04-11 08:28:18 | 000,450,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\comdlg32.dll
MOD - [2009-04-11 08:28:18 | 000,079,872 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\authz.dll
MOD - [2009-04-11 08:28:17 | 000,800,768 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\advapi32.dll
MOD - [2009-04-11 08:28:17 | 000,171,008 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\apphelp.dll
MOD - [2009-04-11 08:27:49 | 001,202,168 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\ntdll.dll
MOD - [2009-04-11 08:21:38 | 001,686,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6002.18005_none_5cb72f96088b0de0\comctl32.dll
MOD - [2008-01-19 09:37:12 | 000,183,296 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\xmllite.dll
MOD - [2008-01-19 09:37:09 | 000,179,200 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\ws2_32.dll
MOD - [2008-01-19 09:36:48 | 000,069,120 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\vsstrace.dll
MOD - [2008-01-19 09:36:47 | 000,240,128 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\uxtheme.dll
MOD - [2008-01-19 09:36:35 | 000,040,960 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\srclient.dll
MOD - [2008-01-19 09:35:57 | 000,008,192 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\nsi.dll
MOD - [2008-01-19 09:33:52 | 000,523,776 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\clbcatq.dll
MOD - [2008-01-19 09:33:00 | 000,110,592 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\msscript.ocx
MOD - [2006-11-02 11:46:12 | 000,012,288 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\psapi.dll
MOD - [2006-07-13 07:55:00 | 000,056,832 | R--- | M] (Cognizance Corporation) -- C:\Windows\System32\APSHook.dll


[color=#E56717]========== Win32 Services (SafeList) ==========[/color]

SRV - File not found [Disabled | Stopped] -- C:\Program Files\Common Files\SureThing Shared\stllssvr.exe -- (stllssvr)
SRV - File not found [Disabled | Stopped] -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer)
SRV - File not found [Auto | Stopped] -- C:\Windows\System32\PGPsdkServ.exe -- (PGPsdkServ)
SRV - File not found [On_Demand | Stopped] -- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE -- (ose)
SRV - File not found [On_Demand | Stopped] -- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE -- (odserv)
SRV - File not found [Auto | Stopped] -- C:\Program Files\HP\QuickPlay\Kernel\TV\CLSched.exe -- (CLSched) CyberLink Task Scheduler (CTS)
SRV - [2010-04-15 08:25:20 | 001,872,320 | ---- | M] (Emsi Software GmbH) [Auto | Stopped] -- C:\Program Files\a-squared Free\a2service.exe -- (a2free)
SRV - [2009-09-25 03:27:04 | 000,793,088 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\FntCache.dll -- (FontCache)
SRV - [2009-08-18 11:29:22 | 001,529,728 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE -- (wlidsvc)
SRV - [2009-08-05 23:48:42 | 000,782,688 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Live\Family Safety\fsssvc.exe -- (fsssvc)
SRV - [2009-05-19 12:36:18 | 000,240,512 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe -- (SeaPort)
SRV - [2009-02-23 15:58:54 | 001,107,208 | ---- | M] (Raxco Software, Inc.) [On_Demand | Stopped] -- G:\Programy\defragmentator dysku\PDEngine.exe -- (PDEngine)
SRV - [2009-02-23 15:58:52 | 000,996,616 | ---- | M] (Raxco Software, Inc.) [Auto | Running] -- G:\Programy\defragmentator dysku\PDAgent.exe -- (PDAgent)
SRV - [2008-01-19 09:38:24 | 000,272,952 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV - [2007-05-28 18:57:54 | 000,357,888 | ---- | M] (Rocket Division Software) [Auto | Running] -- G:\Programy\Alcohol 120\StarWind\StarWindServiceAE.exe -- (StarWindServiceAE)
SRV - [2007-04-23 18:11:42 | 000,262,243 | ---- | M] () [Auto | Running] -- C:\Program Files\HP\QuickPlay\Kernel\TV\CLCapSvc.exe -- (CLCapSvc) CyberLink Background Capture Service (CBCS)
SRV - [2007-02-07 16:30:00 | 000,074,240 | R--- | M] (Cognizance Corporation) [Auto | Running] -- c:\Program Files\Bioscrypt\VeriSoft\Bin\ASWLNPkg.dll -- (ASBroker)
SRV - [2006-06-22 09:14:00 | 000,131,584 | R--- | M] (Cognizance Corporation) [Auto | Running] -- c:\Program Files\Bioscrypt\VeriSoft\Bin\ASChnl.dll -- (ASChannel)


[color=#E56717]========== Driver Services (SafeList) ==========[/color]

DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\System32\DRIVERS\VNUSB.sys -- (VNUSB)
DRV - File not found [Kernel | Auto | Stopped] -- C:\Windows\System32\Drivers\PGPsdk.sys -- (PGPsdkDriver)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\System32\DRIVERS\nwlnkfwd.sys -- (NwlnkFwd)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\System32\DRIVERS\nwlnkflt.sys -- (NwlnkFlt)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\System32\DRIVERS\ipinip.sys -- (IpInIp)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\h648103.sys -- (h648103)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\h648101.sys -- (h648101)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\h647906.sys -- (h647906)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\EagleNT.sys -- (EagleNT)
DRV - File not found [Kernel | Disabled | Stopped] -- C:\Windows\System32\drivers\blbdrive.sys -- (blbdrive)
DRV - [2010-04-21 22:41:19 | 000,691,696 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\System32\Drivers\sptd.sys -- (sptd)
DRV - [2010-02-24 09:30:20 | 001,331,192 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\BCMWL6.SYS -- (BCM43XX)
DRV - [2010-02-24 09:30:20 | 001,331,192 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\BCMWL6.SYS -- (BCM43XV)
DRV - [2010-02-03 15:56:56 | 000,026,176 | -H-- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\hamachi.sys -- (hamachi)
DRV - [2009-11-21 04:34:54 | 011,515,752 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\nvlddmkm.sys -- (nvlddmkm)
DRV - [2009-09-16 17:55:00 | 000,008,456 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\System32\EuGdiDrv.sys -- (EuGdiDrv)
DRV - [2009-08-26 13:45:10 | 000,014,216 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\System32\epmntdrv.sys -- (epmntdrv)
DRV - [2009-08-05 23:48:42 | 000,054,632 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\fssfltr.sys -- (fssfltr)
DRV - [2009-07-05 08:15:53 | 000,281,760 | ---- | M] () [Kernel | Auto | Running] -- C:\Windows\System32\drivers\atksgt.sys -- (atksgt)
DRV - [2009-07-05 08:15:52 | 000,025,888 | ---- | M] () [Kernel | Auto | Running] -- C:\Windows\System32\drivers\lirsgt.sys -- (lirsgt)
DRV - [2009-04-11 06:42:54 | 000,073,216 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\USBAUDIO.sys -- (usbaudio) Sterownik audio USB (WDM)
DRV - [2009-02-24 19:42:14 | 000,116,736 | ---- | M] (MagicISO, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\mcdbus.sys -- (mcdbus)
DRV - [2009-02-09 08:37:56 | 000,007,808 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\usbser_lowerfltj.sys -- (UsbserFilt)
DRV - [2009-02-09 08:37:48 | 000,007,808 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\usbser_lowerflt.sys -- (upperdev)
DRV - [2009-01-09 10:49:06 | 000,071,184 | ---- | M] (Raxco Software, Inc.) [File_System | Auto | Running] -- C:\Windows\System32\drivers\DefragFs.sys -- (DefragFS)
DRV - [2008-08-26 10:26:12 | 000,018,816 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\pccsmcfd.sys -- (pccsmcfd)
DRV - [2008-08-08 15:31:18 | 000,043,192 | ---- | M] (Your Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\hid8101.sys -- (hid8101)
DRV - [2008-08-08 15:31:18 | 000,040,856 | ---- | M] (Your Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\hid8103.sys -- (hid8103)
DRV - [2008-08-08 15:31:16 | 000,041,272 | ---- | M] (Your Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\hid7906.sys -- (hid7906)
DRV - [2008-06-20 17:37:38 | 000,200,112 | ---- | M] (Synaptics, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\SynTP.sys -- (SynTP)
DRV - [2008-04-14 15:39:06 | 000,009,344 | ---- | M] (Hewlett-Packard Development Company, L.P.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\CPQBttn.sys -- (HBtnKey)
DRV - [2008-03-04 02:32:00 | 000,188,416 | ---- | M] (Conexant Systems Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\CHDRT32.sys -- (CnxtHdAudService)
DRV - [2007-07-10 07:27:56 | 000,008,704 | ---- | M] (Conexant Systems, Inc.) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\XAudio.sys -- (XAudio)
DRV - [2007-06-29 15:47:34 | 000,034,304 | ---- | M] (AMD, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\AmdLLD.sys -- (AmdLLD)
DRV - [2007-06-26 09:38:14 | 000,163,328 | ---- | M] (Conexant Systems Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\CHDART.sys -- (HdAudAddService)
DRV - [2007-06-20 04:29:56 | 000,984,064 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\HSX_DPV.sys -- (HSF_DPV)
DRV - [2007-06-20 04:28:34 | 000,208,896 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\HSXHWAZL.sys -- (HSXHWAZL)
DRV - [2007-06-20 04:28:22 | 000,660,480 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\HSX_CNXT.sys -- (winachsf)
DRV - [2007-06-18 18:12:04 | 000,016,768 | ---- | M] (Hewlett-Packard Development Company, L.P.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\HpqKbFiltr.sys -- (HpqKbFiltr)
DRV - [2007-04-18 10:51:14 | 000,081,200 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\btwavdt.sys -- (btwavdt)
DRV - [2007-04-18 10:51:14 | 000,016,432 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\btwrchid.sys -- (btwrchid)
DRV - [2007-04-18 10:51:12 | 000,079,664 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\btwaudio.sys -- (btwaudio)
DRV - [2007-03-28 18:44:22 | 000,140,424 | ---- | M] (AuthenTec, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\atswpdrv.sys -- (ATSWPDRV) AuthenTec TruePrint USB Driver (SwipeSensor)
DRV - [2007-03-07 06:15:58 | 001,059,112 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\nvmfdx32.sys -- (NVENETFD)
DRV - [2007-02-24 16:42:22 | 000,039,936 | ---- | M] (REDC) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\rimmptsk.sys -- (rimmptsk)
DRV - [2007-02-17 01:50:32 | 000,012,032 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\nvsmu.sys -- (nvsmu)
DRV - [2007-01-23 19:03:28 | 000,037,376 | ---- | M] (REDC) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\rixdptsk.sys -- (rismxdp)
DRV - [2007-01-23 18:40:20 | 000,042,496 | ---- | M] (REDC) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\rimsptsk.sys -- (rimsptsk)
DRV - [2006-11-02 11:51:45 | 000,900,712 | ---- | M] (QLogic Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\ql2300.sys -- (ql2300)
DRV - [2006-11-02 11:51:38 | 000,420,968 | ---- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\adp94xx.sys -- (adp94xx)
DRV - [2006-11-02 11:51:34 | 000,316,520 | ---- | M] (Emulex) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\elxstor.sys -- (elxstor)
DRV - [2006-11-02 11:51:32 | 000,297,576 | ---- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\adpahci.sys -- (adpahci)
DRV - [2006-11-02 11:51:25 | 000,235,112 | ---- | M] (ULi Electronics Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\uliahci.sys -- (uliahci)
DRV - [2006-11-02 11:51:25 | 000,232,040 | ---- | M] (Intel Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\iastorv.sys -- (iaStorV)
DRV - [2006-11-02 11:51:00 | 000,147,048 | ---- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\adpu320.sys -- (adpu320)
DRV - [2006-11-02 11:50:45 | 000,115,816 | ---- | M] (Promise Technology, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\ulsata2.sys -- (ulsata2)
DRV - [2006-11-02 11:50:41 | 000,112,232 | ---- | M] (VIA Technologies Inc.,Ltd) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\vsmraid.sys -- (vsmraid)
DRV - [2006-11-02 11:50:35 | 000,106,088 | ---- | M] (QLogic Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\ql40xx.sys -- (ql40xx)
DRV - [2006-11-02 11:50:35 | 000,098,408 | ---- | M] (Promise Technology, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\ulsata.sys -- (UlSata)
DRV - [2006-11-02 11:50:35 | 000,098,408 | ---- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\adpu160m.sys -- (adpu160m)
DRV - [2006-11-02 11:50:24 | 000,088,680 | ---- | M] (NVIDIA Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\nvraid.sys -- (nvraid)
DRV - [2006-11-02 11:50:19 | 000,045,160 | ---- | M] (IBM Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\nfrd960.sys -- (nfrd960)
DRV - [2006-11-02 11:50:17 | 000,041,576 | ---- | M] (Intel Corp./ICP vortex GmbH) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\iirsp.sys -- (iirsp)
DRV - [2006-11-02 11:50:16 | 000,071,784 | ---- | M] (Silicon Integrated Systems) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\sisraid4.sys -- (SiSRaid4)
DRV - [2006-11-02 11:50:13 | 000,040,040 | ---- | M] (NVIDIA Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\nvstor.sys -- (nvstor)
DRV - [2006-11-02 11:50:11 | 000,071,272 | ---- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\djsvs.sys -- (aic78xx)
DRV - [2006-11-02 11:50:10 | 000,067,688 | ---- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\arcsas.sys -- (arcsas)
DRV - [2006-11-02 11:50:10 | 000,065,640 | ---- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\lsi_scsi.sys -- (LSI_SCSI)
DRV - [2006-11-02 11:50:10 | 000,038,504 | ---- | M] (Silicon Integrated Systems Corp.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\sisraid2.sys -- (SiSRaid2)
DRV - [2006-11-02 11:50:10 | 000,037,480 | ---- | M] (Hewlett-Packard Company) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\hpcisss.sys -- (HpCISSs)
DRV - [2006-11-02 11:50:09 | 000,067,688 | ---- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\arc.sys -- (arc)
DRV - [2006-11-02 11:50:09 | 000,035,944 | ---- | M] (Integrated Technology Express, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\iteraid.sys -- (iteraid)
DRV - [2006-11-02 11:50:07 | 000,035,944 | ---- | M] (Integrated Technology Express, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\iteatapi.sys -- (iteatapi)
DRV - [2006-11-02 11:50:05 | 000,065,640 | ---- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\lsi_sas.sys -- (LSI_SAS)
DRV - [2006-11-02 11:50:05 | 000,035,944 | ---- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\symc8xx.sys -- (Symc8xx)
DRV - [2006-11-02 11:50:04 | 000,065,640 | ---- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\lsi_fc.sys -- (LSI_FC)
DRV - [2006-11-02 11:50:03 | 000,034,920 | ---- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\sym_u3.sys -- (Sym_u3)
DRV - [2006-11-02 11:49:59 | 000,033,384 | ---- | M] (LSI Logic Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\mraid35x.sys -- (Mraid35x)
DRV - [2006-11-02 11:49:56 | 000,031,848 | ---- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\sym_hi.sys -- (Sym_hi)
DRV - [2006-11-02 11:49:53 | 000,028,776 | ---- | M] (LSI Logic Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\megasas.sys -- (megasas)
DRV - [2006-11-02 11:49:30 | 000,017,512 | ---- | M] (VIA Technologies, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\viaide.sys -- (viaide)
DRV - [2006-11-02 11:49:28 | 000,016,488 | ---- | M] (CMD Technology, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\cmdide.sys -- (cmdide)
DRV - [2006-11-02 11:49:20 | 000,014,952 | ---- | M] (Acer Laboratories Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\aliide.sys -- (aliide)
DRV - [2006-11-02 10:25:24 | 000,071,808 | ---- | M] (Brother Industries Ltd.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\brserid.sys -- (Brserid) Brother MFC Serial Port Interface Driver (WDM)
DRV - [2006-11-02 10:24:47 | 000,011,904 | ---- | M] (Brother Industries Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\drivers\brusbser.sys -- (BrUsbSer)
DRV - [2006-11-02 10:24:46 | 000,005,248 | ---- | M] (Brother Industries, Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\drivers\brfiltup.sys -- (BrFiltUp)
DRV - [2006-11-02 10:24:45 | 000,013,568 | ---- | M] (Brother Industries, Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\drivers\brfiltlo.sys -- (BrFiltLo)
DRV - [2006-11-02 10:24:44 | 000,062,336 | ---- | M] (Brother Industries Ltd.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\brserwdm.sys -- (BrSerWdm)
DRV - [2006-11-02 10:24:44 | 000,012,160 | ---- | M] (Brother Industries Ltd.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\brusbmdm.sys -- (BrUsbMdm)
DRV - [2006-11-02 09:41:49 | 000,200,704 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\VSTAZL3.SYS -- (HSFHWAZL)
DRV - [2006-11-02 09:36:50 | 000,020,608 | ---- | M] (N-trig Innovative Technologies) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\ntrigdigi.sys -- (ntrigdigi)
DRV - [2006-11-02 09:30:54 | 000,117,760 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\E1G60I32.sys -- (E1G60) Intel(R)
DRV - [2006-10-19 04:10:57 | 001,380,864 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\igdkmd32.sys -- (ialm)
DRV - [2004-08-09 13:33:26 | 000,114,016 | ---- | M] (Protection Technology) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\prohlp02.sys -- (prohlp02)
DRV - [2004-08-09 13:29:28 | 000,053,920 | ---- | M] (Protection Technology) [Kernel | System | Running] -- C:\Windows\System32\drivers\prodrv06.sys -- (prodrv06)
DRV - [2004-07-19 16:49:54 | 000,007,040 | ---- | M] (Protection Technology) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\prosync1.sys -- (prosync1)
DRV - [2003-12-01 17:20:52 | 000,004,832 | ---- | M] (Protection Technology) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\sfhlp01.sys -- (sfhlp01)
DRV - [2002-05-06 11:01:08 | 000,017,005 | ---- | M] (Adaptec) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\ASPI32.SYS -- (ASPI32)


[color=#E56717]========== Standard Registry (SafeList) ==========[/color]


[color=#E56717]========== Internet Explorer ==========[/color]



IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0



IE - HKU\S-1-5-21-3022643457-1393697231-3139819596-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.pl/
IE - HKU\S-1-5-21-3022643457-1393697231-3139819596-1000\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1
IE - HKU\S-1-5-21-3022643457-1393697231-3139819596-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

[color=#E56717]========== FireFox ==========[/color]

FF - prefs.js..browser.search.defaultenginename: "Bing"
FF - prefs.js..browser.search.defaulturl: "http://www.bing.com/search?FORM=IEFM1&q="
FF - prefs.js..browser.search.selectedEngine: "Google"
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: "http://home.speedbit.com/?aff=105"
FF - prefs.js..extensions.enabledItems: {F17C1572-C9EC-4e5c-A542-D05CBB5C5A08}:9.4.0.5
FF - prefs.js..extensions.enabledItems: zrzuta.eu@gmail.com:1.2
FF - prefs.js..keyword.URL: "http://home.speedbit.com/search.aspx?aff=106&q="

FF - HKLM\software\mozilla\Firefox\Extensions\\bkmrksync@nokia.com: C:\Program Files\Nokia\Nokia PC Suite 7\bkmrksync\ [2009-06-23 15:50:23 | 000,000,000 | ---D | M]

[2010-07-30 10:46:41 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\mozilla\Extensions
[2010-07-30 10:47:20 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\mozilla\Firefox\Profiles\4m19v5y3.default\extensions
[2010-07-30 10:47:45 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Users\Michał\AppData\Roaming\mozilla\Firefox\Profiles\4m19v5y3.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2010-07-30 10:47:25 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\mozilla\Firefox\Profiles\4m19v5y3.default\extensions\zrzuta.eu@gmail.com
[2009-12-18 16:55:17 | 000,002,163 | ---- | M] () -- C:\Users\Michał\AppData\Roaming\Mozilla\FireFox\Profiles\4m19v5y3.default\searchplugins\bing.xml

O1 HOSTS File: ([2006-09-18 23:41:30 | 000,000,736 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts
O1 - Hosts: ::1 localhost
O2 - BHO: (Adobe PDF Reader Link Helper) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
O2 - BHO: (Skype add-on (mastermind)) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Skype Technologies S.A.)
O2 - BHO: (Search Helper) - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll (Microsoft Corporation)
O2 - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll (Google Inc.)
O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.4.4525.1752\swg.dll (Google Inc.)
O2 - BHO: (PDF-XChange Viewer IE-Plugin) - {C5D07EB6-BBCE-4DAE-ACBB-D13A8D28CB1F} - G:\Programy\Tracker Software\PDF Viewer\PDFXCviewIEPlugin.dll (Tracker Software Products Ltd.)
O2 - BHO: (Google Dictionary Compression sdch) - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll (Google Inc.)
O2 - BHO: (VeriSoft Access Manager) - {DF21F1DB-80C6-11D3-9483-B03D0EC10000} - c:\Program Files\Bioscrypt\VeriSoft\Bin\ItIEAddIn.dll (Bioscrypt Inc.)
O2 - BHO: (Windows Live Toolbar Helper) - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll (Microsoft Corporation)
O2 - BHO: (DAPIELoader Class) - {FF6C3CF0-4B15-11D1-ABED-709549C10000} - G:\Programy\DAP\dapieloader.dll (SpeedBit Ltd.)
O3 - HKLM\..\Toolbar: (no name) - - No CLSID value found.
O3 - HKLM\..\Toolbar: (&Windows Live Toolbar) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll (Microsoft Corporation)
O3 - HKLM\..\Toolbar: (Google Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll (Google Inc.)
O3 - HKU\S-1-5-21-3022643457-1393697231-3139819596-1000\..\Toolbar\WebBrowser: (&Windows Live Toolbar) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll (Microsoft Corporation)
O3 - HKU\S-1-5-21-3022643457-1393697231-3139819596-1000\..\Toolbar\WebBrowser: (Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll (Google Inc.)
O4 - HKLM..\Run: [Adobe Reader Speed Launcher] C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe File not found
O4 - HKLM..\Run: [CognizanceTS] c:\Program Files\Bioscrypt\VeriSoft\Bin\ASTSVCC.dll (Cognizance Corporation)
O4 - HKLM..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe File not found
O4 - HKLM..\Run: [NWEReboot] File not found
O4 - HKLM..\Run: [QlbCtrl.exe] C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe File not found
O4 - HKLM..\Run: [USB Gamepad] C:\Windows\USB Vibration\dr100&110\USB Gamepad.exe File not found
O4 - HKLM..\Run: [Windows Defender] C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation)
O4 - HKU\S-1-5-19..\Run: [WindowsWelcomeCenter] C:\Windows\System32\oobefldr.dll (Microsoft Corporation)
O4 - HKU\S-1-5-20..\Run: [WindowsWelcomeCenter] C:\Windows\System32\oobefldr.dll (Microsoft Corporation)
O4 - HKU\S-1-5-21-3022643457-1393697231-3139819596-1000..\Run: [IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe File not found
O4 - HKU\S-1-5-21-3022643457-1393697231-3139819596-1000..\Run: [LightScribe Control Panel] C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe File not found
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableTaskMgr = 1
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableRegistryTools = 1
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableTaskMgr = 1
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableRegistryTools = 1
O7 - HKU\S-1-5-21-3022643457-1393697231-3139819596-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableRegistryTools = 1
O7 - HKU\S-1-5-21-3022643457-1393697231-3139819596-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableTaskMgr = 1
O8 - Extra context menu item: &Clean Traces - G:\Programy\DAP\Privacy Package\dapcleanerie.htm ()
O8 - Extra context menu item: &Download with &DAP - G:\Programy\DAP\dapextie.htm ()
O8 - Extra context menu item: Download &all with DAP - G:\Programy\DAP\dapextie2.htm ()
O8 - Extra context menu item: Wyślij obraz do urządzenia &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm ()
O8 - Extra context menu item: Wyślij stronę do urządzenia &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9 - Extra Button: Wpis w blogu - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : &Wpis w blogu w Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Skype add-on for Internet Explorer - {5067A26B-1337-4436-8AFE-EE169C2DA79F} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Skype Technologies S.A.)
O9 - Extra Button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Skype Technologies S.A.)
O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Program Files\Microsoft Office\Office12\REFIEBAR.DLL (Microsoft Corporation)
O9 - Extra Button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9 - Extra 'Tools' menuitem : @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O13 - gopher Prefix: missing
O16 - DPF: {1E54D648-B804-468d-BC78-4AFFED8E262F} http://www.nvidia.com/content/DriverDownload/srl/3.0.0.4/srl_bin/sysreqlab_nvd.cab (System Requirements Lab Class)
O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} http://download.eset.com/special/eos/OnlineScanner.cab (Reg Error: Key error.)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab (Java Plug-in 1.6.0_17)
O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} http://fpdownload.macromedia.com/get/flashplayer/current/polarbear/ultrashim.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab (Java Plug-in 1.6.0_17)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab (Java Plug-in 1.6.0_17)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 172.20.1.100 94.230.20.34 94.230.20.3
O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Program Files\Common Files\microsoft shared\Help\hxds.dll (Microsoft Corporation)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\vnd.ms.radio {3DA2AA3B-3D96-11D2-9BD2-204C4F4F5020} - C:\Windows\System32\Msdxm6.ocx (Microsoft Corporation)
O18 - Protocol\Handler\wlmailhtml {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Program Files\Windows Live\Mail\mailcomm.dll (Microsoft Corporation)
O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
O18 - Protocol\Filter\x-sdch {B1759355-3EEC-4C1E-B0F1-B719FE26E377} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll (Google Inc.)
O20 - AppInit_DLLs: (APSHook.dll) - C:\Windows\System32\APSHook.dll (Cognizance Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O24 - Desktop WallPaper: C:\Users\Michał\AppData\Roaming\Microsoft\Windows Photo Gallery\Tapeta z Galerii fotografii systemu Windows.jpg
O24 - Desktop BackupWallPaper: C:\Users\Michał\AppData\Roaming\Microsoft\Windows Photo Gallery\Tapeta z Galerii fotografii systemu Windows.jpg
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2010-07-31 13:44:05 | 000,000,191 | RHS- | M] () - C:\autorun.inf -- [ NTFS ]
O32 - AutoRun File - [2005-09-11 17:18:54 | 000,000,340 | -HS- | M] () - D:\AUTOMODE -- [ NTFS ]
O32 - AutoRun File - [2010-07-25 22:03:57 | 000,000,339 | RHS- | M] () - D:\autorun.inf -- [ NTFS ]
O32 - AutoRun File - [2006-09-18 23:43:36 | 000,000,024 | ---- | M] () - G:\autoexec.bat -- [ NTFS ]
O32 - AutoRun File - [2010-07-25 22:03:57 | 000,000,266 | RHS- | M] () - G:\autorun.inf -- [ NTFS ]
O33 - MountPoints2\{02018f16-6d6c-11df-86c8-001a6bf6d8ad}\Shell\AUtOpLaY\commAnd - "" = K:\pxvmxb.pif -- File not found
O33 - MountPoints2\{02018f16-6d6c-11df-86c8-001a6bf6d8ad}\Shell\AutoRun\command - "" = K:\pxvmxb.pif -- File not found
O33 - MountPoints2\{02018f16-6d6c-11df-86c8-001a6bf6d8ad}\Shell\EXPlorE\COMMAnD - "" = K:\pxvmxb.pif -- File not found
O33 - MountPoints2\{02018f16-6d6c-11df-86c8-001a6bf6d8ad}\Shell\oPEn\coMManD - "" = K:\pxvmxb.pif -- File not found
O33 - MountPoints2\{10768efd-f66a-11de-ad2e-001a739c945a}\Shell\AUtOpLay\CommAnd - "" = H:\ekwkf.pif -- File not found
O33 - MountPoints2\{10768efd-f66a-11de-ad2e-001a739c945a}\Shell\AutoRun\command - "" = H:\ekwkf.pif -- File not found
O33 - MountPoints2\{10768efd-f66a-11de-ad2e-001a739c945a}\Shell\exPLOre\COMManD - "" = H:\ekwkf.pif -- File not found
O33 - MountPoints2\{10768efd-f66a-11de-ad2e-001a739c945a}\Shell\open\CommaND - "" = H:\ekwkf.pif -- File not found
O33 - MountPoints2\{19268d2d-8e45-11dc-a060-001a6bf6d8ad}\Shell - "" = AutoRun
O33 - MountPoints2\{19268d2d-8e45-11dc-a060-001a6bf6d8ad}\Shell\AutoRun\command - "" = F:\start.exe -- File not found
O33 - MountPoints2\{4af83a4b-91ea-11dc-ba69-001a6bf6d8ad}\Shell - "" = AutoRun
O33 - MountPoints2\{4af83a4b-91ea-11dc-ba69-001a6bf6d8ad}\Shell\AutoRun\command - "" = I:\autorun.exe -- File not found
O33 - MountPoints2\{4e6aefc2-2858-11df-9d75-001a6bf6d8ad}\Shell\aUtopLaY\coMmand - "" = K:\ewxt.exe -- File not found
O33 - MountPoints2\{4e6aefc2-2858-11df-9d75-001a6bf6d8ad}\Shell\AutoRun\command - "" = K:\ewxt.exe -- File not found
O33 - MountPoints2\{4e6aefc2-2858-11df-9d75-001a6bf6d8ad}\Shell\exPloRE\CoMManD - "" = K:\ewxt.exe -- File not found
O33 - MountPoints2\{4e6aefc2-2858-11df-9d75-001a6bf6d8ad}\Shell\oPEn\cOmManD - "" = K:\ewxt.exe -- File not found
O33 - MountPoints2\{4f568fab-8d53-11de-8062-001a6bf6d8ad}\Shell\AutoRun\command - "" = J:\EmDesk.exe -- File not found
O33 - MountPoints2\{4f568fab-8d53-11de-8062-001a6bf6d8ad}\Shell\EmDesk\command - "" = J:\EmDesk.exe -- File not found
O33 - MountPoints2\{6b505977-8e8e-11df-8d37-001a6bf6d8ad}\Shell\AUtOpLay\commanD - "" = K:\wfoun.exe -- File not found
O33 - MountPoints2\{6b505977-8e8e-11df-8d37-001a6bf6d8ad}\Shell\AutoRun\command - "" = K:\wfoun.exe -- File not found
O33 - MountPoints2\{6b505977-8e8e-11df-8d37-001a6bf6d8ad}\Shell\eXpLORE\CommANd - "" = K:\wfoun.exe -- File not found
O33 - MountPoints2\{6b505977-8e8e-11df-8d37-001a6bf6d8ad}\Shell\opeN\comMANd - "" = K:\wfoun.exe -- File not found
O33 - MountPoints2\{717196b4-1fd0-11df-8964-001a6bf6d8ad}\Shell\AUtOpLaY\coMmand - "" = M:\rmita.pif -- File not found
O33 - MountPoints2\{717196b4-1fd0-11df-8964-001a6bf6d8ad}\Shell\AutoRun\command - "" = M:\rmita.pif -- File not found
O33 - MountPoints2\{717196b4-1fd0-11df-8964-001a6bf6d8ad}\Shell\ExPLoRE\CommanD - "" = M:\rmita.pif -- File not found
O33 - MountPoints2\{717196b4-1fd0-11df-8964-001a6bf6d8ad}\Shell\Open\commAnD - "" = M:\rmita.pif -- File not found
O33 - MountPoints2\{717196b9-1fd0-11df-8964-001a6bf6d8ad}\Shell - "" = AutoRun
O33 - MountPoints2\{717196b9-1fd0-11df-8964-001a6bf6d8ad}\Shell\AutoRun\command - "" = L:\LaunchU3.exe -- File not found
O33 - MountPoints2\{79cd89a6-66cc-11de-a693-001a6bf6d8ad}\Shell\AUToPLaY\cOmMaND - "" = K:\hjnxqo.exe -- File not found
O33 - MountPoints2\{79cd89a6-66cc-11de-a693-001a6bf6d8ad}\Shell\AutoRun\command - "" = K:\hjnxqo.exe -- File not found
O33 - MountPoints2\{79cd89a6-66cc-11de-a693-001a6bf6d8ad}\Shell\exploRe\COmMAnD - "" = K:\hjnxqo.exe -- File not found
O33 - MountPoints2\{79cd89a6-66cc-11de-a693-001a6bf6d8ad}\Shell\oPEN\CommAnd - "" = K:\hjnxqo.exe -- File not found
O33 - MountPoints2\{7b025c05-97cc-11de-ac45-001a6bf6d8ad}\Shell\AUTOpLAY\cOMmanD - "" = ubkhsv.pif
O33 - MountPoints2\{7b025c05-97cc-11de-ac45-001a6bf6d8ad}\Shell\AutoRun\command - "" = ubkhsv.pif
O33 - MountPoints2\{7b025c05-97cc-11de-ac45-001a6bf6d8ad}\Shell\EXPloRE\Command - "" = ubkhsv.pif
O33 - MountPoints2\{7b025c05-97cc-11de-ac45-001a6bf6d8ad}\Shell\OPEN\ComMaNd - "" = ubkhsv.pif
O33 - MountPoints2\{88634b9e-e623-11dc-821a-001b24b7bb4b}\Shell\AutoRun\command - "" = I:\EXPLORER.EXE -- File not found
O33 - MountPoints2\{88634b9e-e623-11dc-821a-001b24b7bb4b}\Shell\explore\Command - "" = I:\EXPLORER.EXE -- File not found
O33 - MountPoints2\{88634b9e-e623-11dc-821a-001b24b7bb4b}\Shell\open\Command - "" = I:\EXPLORER.EXE -- File not found
O33 - MountPoints2\{8d142531-4d86-11df-a7be-001a6bf6d8ad}\Shell - "" = AutoRun
O33 - MountPoints2\{8d142531-4d86-11df-a7be-001a6bf6d8ad}\Shell\AutoRun\command - "" = J:\SETUP.EXE -- File not found
O33 - MountPoints2\{8d142531-4d86-11df-a7be-001a6bf6d8ad}\Shell\configure\command - "" = J:\SETUP.EXE -- File not found
O33 - MountPoints2\{8d142531-4d86-11df-a7be-001a6bf6d8ad}\Shell\install\command - "" = J:\SETUP.EXE -- File not found
O33 - MountPoints2\{91a4b2f4-781d-11de-a84a-001a6bf6d8ad}\Shell\AutoRun\command - "" = K:\wyskq6lt.exe -- File not found
O33 - MountPoints2\{91a4b2f4-781d-11de-a84a-001a6bf6d8ad}\Shell\open\Command - "" = K:\wyskq6lt.exe -- File not found
O33 - MountPoints2\{95ee9936-62ae-11dd-bf0c-001a6bf6d8ad}\Shell\explore\Command - "" = I:\EXPLORER.EXE -- File not found
O33 - MountPoints2\{95ee9936-62ae-11dd-bf0c-001a6bf6d8ad}\Shell\open\Command - "" = I:\EXPLORER.EXE -- File not found
O33 - MountPoints2\{a125cecf-ba62-11de-9218-001a6bf6d8ad}\Shell\AutoRun\command - "" = I:\RECYCLER\S-1-5-21-1482476501-1644491937-682003330-1013\isee.exe -- File not found
O33 - MountPoints2\{a125cecf-ba62-11de-9218-001a6bf6d8ad}\Shell\open\command - "" = I:\RECYCLER\S-1-5-21-1482476501-1644491937-682003330-1013\isee.exe -- File not found
O33 - MountPoints2\{ae202dc5-6303-11df-8751-001a6bf6d8ad}\Shell\AuToplAY\COMMand - "" = F:\xigbgp.cmd -- File not found
O33 - MountPoints2\{ae202dc5-6303-11df-8751-001a6bf6d8ad}\Shell\AutoRun\command - "" = F:\xigbgp.cmd -- File not found
O33 - MountPoints2\{ae202dc5-6303-11df-8751-001a6bf6d8ad}\Shell\exPlOrE\Command - "" = F:\xigbgp.cmd -- File not found
O33 - MountPoints2\{ae202dc5-6303-11df-8751-001a6bf6d8ad}\Shell\OPeN\Command - "" = F:\xigbgp.cmd -- File not found
O33 - MountPoints2\{cfac50d0-e7b5-11dd-a821-001a6bf6d8ad}\Shell\AutopLay\cOmMand - "" = J:\karif.exe -- File not found
O33 - MountPoints2\{cfac50d0-e7b5-11dd-a821-001a6bf6d8ad}\Shell\AutoRun\command - "" = J:\karif.exe -- File not found
O33 - MountPoints2\{cfac50d0-e7b5-11dd-a821-001a6bf6d8ad}\Shell\eXPlore\Command - "" = J:\karif.exe -- File not found
O33 - MountPoints2\{cfac50d0-e7b5-11dd-a821-001a6bf6d8ad}\Shell\Open\CoMmand - "" = J:\karif.exe -- File not found
O33 - MountPoints2\{e2091e18-dfdd-11de-b4d3-001a6bf6d8ad}\Shell\AutoRun\command - "" = RECYCLER\S-1-5-21-1482476501-1644491937-682003330-1013\isee.exe
O33 - MountPoints2\{e2091e18-dfdd-11de-b4d3-001a6bf6d8ad}\Shell\open\command - "" = RECYCLER\S-1-5-21-1482476501-1644491937-682003330-1013\isee.exe
O33 - MountPoints2\{e224d8d2-99d0-11dc-a622-001a6bf6d8ad}\Shell\auTOplAy\comMAnd - "" = K:\pyeva.pif -- File not found
O33 - MountPoints2\{e224d8d2-99d0-11dc-a622-001a6bf6d8ad}\Shell\AutoRun\command - "" = K:\pyeva.pif -- File not found
O33 - MountPoints2\{e224d8d2-99d0-11dc-a622-001a6bf6d8ad}\Shell\EXplOre\CommANd - "" = K:\pyeva.pif -- File not found
O33 - MountPoints2\{e224d8d2-99d0-11dc-a622-001a6bf6d8ad}\Shell\open\COMmAnd - "" = K:\pyeva.pif -- File not found
O34 - HKLM BootExecute: (PDBoot.exe) - C:\Windows\System32\PDBoot.exe (Raxco Software, Inc.)
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

NetSvcs: FastUserSwitchingCompatibility - File not found
NetSvcs: Ias - File not found
NetSvcs: Nla - File not found
NetSvcs: Ntmssvc - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: SRService - File not found
NetSvcs: Wmi - C:\Windows\System32\wmi.dll (Microsoft Corporation)
NetSvcs: WmdmPmSp - File not found
NetSvcs: LogonHours - File not found
NetSvcs: PCAudit - File not found
NetSvcs: helpsvc - File not found
NetSvcs: uploadmgr - File not found

MsConfig - StartUpFolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Adobe Reader Speed Launch.lnk - C:\PROGRA~1\Adobe\READER~1.0\Reader\READER~1.EXE - File not found
MsConfig - StartUpFolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Adobe Reader Synchronizer.lnk - C:\Program Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe - (Adobe Systems Incorporated)
MsConfig - StartUpFolder: C:^Users^Michał^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Tworzenie wycinków ekranu i uruchamianie programu OneNote 2007.lnk - G:\Programy\OFFICE~1\Office12\ONENOTEM.EXE - File not found
MsConfig - StartUpReg: [b]AlcoholAutomount[/b] - hkey= - key= - G:\Programy\Alcohol 120\axcmd.exe ()
MsConfig - StartUpReg: [b]Malwarebytes Anti-Malware (reboot)[/b] - hkey= - key= - G:\Programy\Malwarebytes' Anti-Malware\mbam.exe (Malwarebytes Corporation)
MsConfig - StartUpReg: [b]Onet.pl AutoUpdate[/b] - hkey= - key= - C:\Program Files\Common Files\Onet.pl\NewAutoUpdate.exe File not found
MsConfig - StartUpReg: [b]swg[/b] - hkey= - key= - C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe (Google Inc.)
MsConfig - StartUpReg: [b]WinampAgent[/b] - hkey= - key= - G:\Programy\Winamp\winampa.exe File not found
MsConfig - State: "bootini" - 2
MsConfig - State: "startup" - 2

SafeBootMin: AppMgmt - Service
SafeBootMin: Base - Driver Group
SafeBootMin: Boot Bus Extender - Driver Group
SafeBootMin: Boot file system - Driver Group
SafeBootMin: File system - Driver Group
SafeBootMin: Filter - Driver Group
SafeBootMin: HelpSvc - Service
SafeBootMin: NTDS - File not found
SafeBootMin: PCI Configuration - Driver Group
SafeBootMin: PNP Filter - Driver Group
SafeBootMin: Primary disk - Driver Group
SafeBootMin: sacsvr - Service
SafeBootMin: SCSI Class - Driver Group
SafeBootMin: System Bus Extender - Driver Group
SafeBootMin: WinDefend - C:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation)
SafeBootMin: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
SafeBootMin: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
SafeBootMin: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
SafeBootMin: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
SafeBootMin: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
SafeBootMin: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
SafeBootMin: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
SafeBootMin: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
SafeBootMin: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
SafeBootMin: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
SafeBootMin: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
SafeBootMin: {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy
SafeBootMin: {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers
SafeBootMin: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
SafeBootMin: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices
SafeBootMin: {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices
SafeBootMin: {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices

SafeBootNet: AppMgmt - Service
SafeBootNet: Base - Driver Group
SafeBootNet: Boot Bus Extender - Driver Group
SafeBootNet: Boot file system - Driver Group
SafeBootNet: File system - Driver Group
SafeBootNet: Filter - Driver Group
SafeBootNet: HelpSvc - Service
SafeBootNet: Messenger - Service
SafeBootNet: NDIS Wrapper - Driver Group
SafeBootNet: NetBIOSGroup - Driver Group
SafeBootNet: NetDDEGroup - Driver Group
SafeBootNet: Network - Driver Group
SafeBootNet: NetworkProvider - Driver Group
SafeBootNet: NTDS - File not found
SafeBootNet: PCI Configuration - Driver Group
SafeBootNet: PNP Filter - Driver Group
SafeBootNet: PNP_TDI - Driver Group
SafeBootNet: Primary disk - Driver Group
SafeBootNet: rdsessmgr - Service
SafeBootNet: sacsvr - Service
SafeBootNet: SCSI Class - Driver Group
SafeBootNet: Streams Drivers - Driver Group
SafeBootNet: System Bus Extender - Driver Group
SafeBootNet: TDI - Driver Group
SafeBootNet: WinDefend - C:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation)
SafeBootNet: WudfPf - Driver
SafeBootNet: WudfUsbccidDriver - Driver
SafeBootNet: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
SafeBootNet: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
SafeBootNet: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
SafeBootNet: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
SafeBootNet: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
SafeBootNet: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
SafeBootNet: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
SafeBootNet: {4D36E972-E325-11CE-BFC1-08002BE10318} - Net
SafeBootNet: {4D36E973-E325-11CE-BFC1-08002BE10318} - NetClient
SafeBootNet: {4D36E974-E325-11CE-BFC1-08002BE10318} - NetService
SafeBootNet: {4D36E975-E325-11CE-BFC1-08002BE10318} - NetTrans
SafeBootNet: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
SafeBootNet: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
SafeBootNet: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
SafeBootNet: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
SafeBootNet: {50DD5230-BA8A-11D1-BF5D-0000F805F530} - Smart card readers
SafeBootNet: {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy
SafeBootNet: {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers
SafeBootNet: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
SafeBootNet: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices
SafeBootNet: {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices
SafeBootNet: {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices

[color=#E56717]========== Files/Folders - Created Within 60 Days ==========[/color]

[2010-07-31 13:36:43 | 000,574,976 | ---- | C] (OldTimer Tools) -- C:\Users\Michał\Desktop\OTL.exe
[2010-07-31 00:20:44 | 000,401,720 | ---- | C] (Trend Micro Inc.) -- C:\Users\Michał\Desktop\HiJackThis.exe
[2010-07-30 17:26:40 | 000,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbamswissarmy.sys
[2010-07-30 17:26:36 | 000,020,952 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys
[2010-07-30 17:22:37 | 006,227,080 | ---- | C] (Malwarebytes Corporation ) -- C:\Users\Michał\Desktop\mbam-setup-1.46(dobreprogramy.pl).exe
[2010-07-29 19:40:58 | 000,000,000 | ---D | C] -- C:\Users\Michał\Desktop\backups
[2010-07-29 10:16:38 | 000,000,000 | ---D | C] -- C:\Program Files\PROnetworks
[2010-07-29 10:13:49 | 000,191,488 | ---- | C] (PROnetworks) -- C:\Users\Michał\Desktop\VistaBootPRO_3.3.0.exe
[2010-07-28 14:02:31 | 000,000,000 | ---D | C] -- C:\Program Files\a-squared Free
[2010-07-24 18:57:53 | 000,000,000 | ---D | C] -- C:\Users\Michał\Documents\a-squared Free
[4 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
[1 C:\Users\Michał\*.tmp files -> C:\Users\Michał\*.tmp -> ]

[color=#E56717]========== Files - Modified Within 60 Days ==========[/color]

[2010-07-31 17:12:53 | 006,291,456 | -HS- | M] () -- C:\Users\Michał\ntuser.dat
[2010-07-31 17:11:00 | 000,000,456 | -H-- | M] () -- C:\Windows\tasks\User_Feed_Synchronization-{94C9E3AC-2D7B-448B-9D50-923637CB0158}.job
[2010-07-31 16:14:02 | 000,198,114 | ---- | M] () -- C:\ProgramData\nvModes.dat
[2010-07-31 16:14:02 | 000,198,114 | ---- | M] () -- C:\ProgramData\nvModes.001
[2010-07-31 16:13:41 | 000,003,296 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
[2010-07-31 16:13:41 | 000,003,296 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
[2010-07-31 16:13:34 | 000,000,006 | -H-- | M] () -- C:\Windows\tasks\SA.DAT
[2010-07-31 16:13:21 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2010-07-31 13:44:05 | 000,103,140 | RHS- | M] () -- C:\ftoodu.pif
[2010-07-31 13:44:05 | 000,000,191 | RHS- | M] () -- C:\autorun.inf
[2010-07-31 13:41:37 | 000,524,288 | -HS- | M] () -- C:\Users\Michał\ntuser.dat{4b254e09-061c-11dd-b1a8-001a6bf6d8ad}.TMContainer00000000000000000002.regtrans-ms
[2010-07-31 13:41:37 | 000,065,536 | -HS- | M] () -- C:\Users\Michał\ntuser.dat{4b254e09-061c-11dd-b1a8-001a6bf6d8ad}.TM.blf
[2010-07-31 13:39:55 | 000,339,991 | ---- | M] () -- C:\Users\Michał\Desktop\RSIT.exe
[2010-07-31 13:36:43 | 000,574,976 | ---- | M] (OldTimer Tools) -- C:\Users\Michał\Desktop\OTL.exe
[2010-07-31 11:25:56 | 000,132,597 | ---- | M] () -- C:\Users\Michał\Desktop\Flash_Disinfector.exe
[2010-07-31 01:40:33 | 000,000,202 | ---- | M] () -- C:\Users\Michał\AppData\Local\QuickPlay.lnk
[2010-07-31 01:39:55 | 000,000,202 | ---- | M] () -- C:\Users\Michał\AppData\Local\GameLocalInfo.xml.lnk
[2010-07-31 01:22:34 | 000,000,202 | ---- | M] () -- C:\Users\Public\Documents\ScanChInfo.lnk
[2010-07-31 01:22:33 | 000,000,202 | ---- | M] () -- C:\ProgramData\VirtualDevice.lnk
[2010-07-31 01:21:05 | 000,000,202 | ---- | M] () -- C:\ProgramData\Photoalbum.lnk
[2010-07-31 01:15:38 | 036,747,456 | ---- | M] () -- C:\Users\Michał\Desktop\Nokia_PC_Suite_pol_web.exe
[2010-07-31 00:44:38 | 000,000,420 | -H-- | M] () -- C:\Windows\tasks\User_Feed_Synchronization-{33A78335-0818-4987-8D74-5A2DA5C573C0}.job
[2010-07-31 00:38:50 | 000,000,012 | ---- | M] () -- C:\Windows\bthservsdp.dat
[2010-07-31 00:20:57 | 000,401,720 | ---- | M] (Trend Micro Inc.) -- C:\Users\Michał\Desktop\HiJackThis.exe
[2010-07-30 21:55:45 | 000,045,568 | ---- | M] () -- C:\Users\Michał\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010-07-30 17:58:04 | 000,681,360 | ---- | M] () -- C:\Windows\System32\PerfStringBackup.INI
[2010-07-30 17:58:04 | 000,341,478 | ---- | M] () -- C:\Windows\System32\perfh009.dat
[2010-07-30 17:58:04 | 000,240,676 | ---- | M] () -- C:\Windows\System32\perfh015.dat
[2010-07-30 17:58:04 | 000,070,286 | ---- | M] () -- C:\Windows\System32\perfc015.dat
[2010-07-30 17:58:04 | 000,045,456 | ---- | M] () -- C:\Windows\System32\perfc009.dat
[2010-07-30 17:26:44 | 000,000,601 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2010-07-30 17:23:10 | 006,227,080 | ---- | M] (Malwarebytes Corporation ) -- C:\Users\Michał\Desktop\mbam-setup-1.46(dobreprogramy.pl).exe
[2010-07-30 13:41:36 | 048,006,456 | ---- | M] () -- C:\Users\Michał\Desktop\launch.exe
[2010-07-30 04:30:48 | 000,000,202 | ---- | M] () -- C:\Users\Michał\AppData\Local\groom.avi.lnk
[2010-07-30 02:44:36 | 000,000,202 | ---- | M] () -- C:\Users\Michał\AppData\Local\kleopatra.avi.lnk
[2010-07-30 02:25:07 | 000,000,202 | ---- | M] () -- C:\ProgramData\Shortcut.lnk
[2010-07-30 02:24:23 | 000,000,202 | ---- | M] () -- C:\ProgramData\XXX archive.lnk
[2010-07-29 20:42:14 | 002,672,312 | ---- | M] () -- C:\Users\Michał\Desktop\esetsmartinstaller_plk.exe
[2010-07-29 10:19:09 | 000,032,768 | ---- | M] () -- C:\backup.bcd
[2010-07-29 10:16:41 | 000,001,976 | ---- | M] () -- C:\Users\Public\Desktop\VistaBootPRO 3.3.lnk
[2010-07-29 10:15:02 | 000,191,488 | ---- | M] (PROnetworks) -- C:\Users\Michał\Desktop\VistaBootPRO_3.3.0.exe
[2010-07-29 06:46:47 | 000,008,192 | R-S- | M] () -- C:\BOOTSECT.BAK
[2010-07-28 20:30:59 | 000,001,887 | ---- | M] () -- C:\Windows\diagwrn.xml
[2010-07-28 20:30:59 | 000,001,887 | ---- | M] () -- C:\Windows\diagerr.xml
[2010-07-28 19:04:04 | 000,000,266 | RHS- | M] () -- C:\ProgramData\ntuser.pol
[2010-07-24 19:05:17 | 000,008,484 | ---- | M] () -- C:\Users\Michał\AppData\Local\d3d9caps.dat
[2010-07-24 17:27:56 | 000,004,096 | ---- | M] () -- C:\Windows\d3dx.dat
[2010-07-13 14:52:53 | 000,001,223 | ---- | M] () -- C:\Windows\bestplayer.ini
[2010-07-13 14:52:53 | 000,000,121 | ---- | M] () -- C:\Windows\bestplayer.bpp
[2010-07-13 14:52:53 | 000,000,000 | ---- | M] () -- C:\Windows\bestplayer.bbt
[2010-07-07 11:11:43 | 000,000,445 | ---- | M] () -- C:\Windows\win.ini
[2010-06-10 14:57:15 | 000,435,336 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT
[4 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
[1 C:\Users\Michał\*.tmp files -> C:\Users\Michał\*.tmp -> ]

[color=#E56717]========== Files Created - No Company Name ==========[/color]

[2010-07-31 13:44:18 | 000,000,191 | RHS- | C] () -- C:\autorun.inf
[2010-07-31 13:44:05 | 000,103,140 | RHS- | C] () -- C:\ftoodu.pif
[2010-07-31 13:39:55 | 000,339,991 | ---- | C] () -- C:\Users\Michał\Desktop\RSIT.exe
[2010-07-31 11:25:55 | 000,132,597 | ---- | C] () -- C:\Users\Michał\Desktop\Flash_Disinfector.exe
[2010-07-31 02:20:33 | 000,000,202 | ---- | C] () -- C:\Users\Michał\AppData\Roaming\privacy_policy.txt.lnk
[2010-07-31 01:40:33 | 000,000,202 | ---- | C] () -- C:\Users\Michał\AppData\Local\QuickPlay.lnk
[2010-07-31 01:39:55 | 000,000,202 | ---- | C] () -- C:\Users\Michał\AppData\Local\GameLocalInfo.xml.lnk
[2010-07-31 01:22:34 | 000,000,202 | ---- | C] () -- C:\Users\Public\Documents\ScanChInfo.lnk
[2010-07-31 01:22:33 | 000,000,202 | ---- | C] () -- C:\ProgramData\VirtualDevice.lnk
[2010-07-31 01:21:05 | 000,000,202 | ---- | C] () -- C:\ProgramData\Photoalbum.lnk
[2010-07-31 01:15:30 | 036,747,456 | ---- | C] () -- C:\Users\Michał\Desktop\Nokia_PC_Suite_pol_web.exe
[2010-07-30 17:26:44 | 000,000,601 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2010-07-30 13:18:36 | 048,006,456 | ---- | C] () -- C:\Users\Michał\Desktop\launch.exe
[2010-07-30 02:44:36 | 000,000,202 | ---- | C] () -- C:\Users\Michał\AppData\Local\kleopatra.avi.lnk
[2010-07-30 02:43:39 | 000,000,202 | ---- | C] () -- C:\Users\Michał\AppData\Local\groom.avi.lnk
[2010-07-30 02:25:07 | 000,000,202 | ---- | C] () -- C:\ProgramData\Shortcut.lnk
[2010-07-30 02:24:23 | 000,000,202 | ---- | C] () -- C:\ProgramData\XXX archive.lnk
[2010-07-29 20:40:49 | 002,672,312 | ---- | C] () -- C:\Users\Michał\Desktop\esetsmartinstaller_plk.exe
[2010-07-29 10:19:04 | 000,032,768 | ---- | C] () -- C:\backup.bcd
[2010-07-29 10:16:41 | 000,001,976 | ---- | C] () -- C:\Users\Public\Desktop\VistaBootPRO 3.3.lnk
[2010-07-28 12:47:00 | 000,008,192 | R-S- | C] () -- C:\BOOTSECT.BAK
[2010-07-24 17:27:56 | 000,004,096 | ---- | C] () -- C:\Windows\d3dx.dat
[2010-07-13 14:52:53 | 000,001,223 | ---- | C] () -- C:\Windows\bestplayer.ini
[2010-07-13 14:52:53 | 000,000,121 | ---- | C] () -- C:\Windows\bestplayer.bpp
[2010-07-13 14:52:53 | 000,000,000 | ---- | C] () -- C:\Windows\bestplayer.bbt
[2010-04-02 17:17:34 | 000,179,091 | ---- | C] () -- C:\Windows\System32\xlive.dll.cat
[2010-02-24 09:30:28 | 000,006,656 | ---- | C] () -- C:\Windows\System32\bcmwlrc.dll
[2010-01-27 01:45:05 | 000,000,038 | ---- | C] () -- C:\Windows\avisplitter.INI
[2010-01-08 10:34:30 | 000,014,848 | ---- | C] () -- C:\Windows\System32\EuEpmGdi.dll
[2010-01-08 10:34:22 | 000,014,216 | ---- | C] () -- C:\Windows\System32\epmntdrv.sys
[2010-01-08 10:34:22 | 000,008,456 | ---- | C] () -- C:\Windows\System32\EuGdiDrv.sys
[2009-09-24 09:37:52 | 000,117,248 | ---- | C] () -- C:\Windows\System32\EhStorAuthn.dll
[2009-07-05 08:15:53 | 000,281,760 | ---- | C] () -- C:\Windows\System32\drivers\atksgt.sys
[2009-07-05 08:15:52 | 000,025,888 | ---- | C] () -- C:\Windows\System32\drivers\lirsgt.sys
[2009-01-06 21:46:50 | 000,062,032 | ---- | C] () -- C:\Windows\lsw2_gameexplorerhelper.dll
[2008-10-07 09:13:30 | 000,197,912 | ---- | C] () -- C:\Windows\System32\physxcudart_20.dll
[2008-10-07 09:13:22 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelTraditionalChinese.dll
[2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelSwedish.dll
[2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelSpanish.dll
[2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelSimplifiedChinese.dll
[2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelPortugese.dll
[2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelKorean.dll
[2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelJapanese.dll
[2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelGerman.dll
[2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelFrench.dll
[2008-07-29 06:41:12 | 000,000,048 | ---- | C] () -- C:\Windows\winfile.ini
[2008-04-06 13:47:31 | 000,000,035 | ---- | C] () -- C:\Windows\powerplayer.ini
[2008-04-06 13:47:14 | 000,000,374 | ---- | C] () -- C:\Windows\psnetwork.ini
[2008-04-02 16:14:15 | 000,164,352 | ---- | C] () -- C:\Windows\System32\unrar.dll
[2008-04-02 16:14:13 | 003,596,288 | ---- | C] () -- C:\Windows\System32\qt-dx331.dll
[2008-04-02 16:14:13 | 000,755,027 | ---- | C] () -- C:\Windows\System32\xvidcore.dll
[2008-04-02 16:14:13 | 000,159,839 | ---- | C] () -- C:\Windows\System32\xvidvfw.dll
[2008-04-02 16:14:12 | 000,007,680 | ---- | C] () -- C:\Windows\System32\ff_vfw.dll
[2008-04-02 16:14:12 | 000,000,547 | ---- | C] () -- C:\Windows\System32\ff_vfw.dll.manifest
[2008-03-24 20:59:02 | 000,000,000 | ---- | C] () -- C:\Windows\Irremote.ini
[2008-03-09 17:35:00 | 000,022,328 | ---- | C] () -- C:\Windows\System32\drivers\PnkBstrK.sys
[2008-03-04 19:52:34 | 000,286,720 | ---- | C] () -- C:\Windows\System32\libcurl.dll
[2008-01-01 19:14:22 | 000,000,069 | ---- | C] () -- C:\Windows\NeroDigital.ini
[2007-12-12 13:20:51 | 000,000,271 | ---- | C] () -- C:\Windows\game.ini
[2007-11-13 22:21:48 | 000,000,412 | ---- | C] () -- C:\Windows\ODBC.INI
[2007-11-13 16:12:28 | 000,069,632 | ---- | C] () -- C:\Windows\System32\xmltok.dll
[2007-11-13 16:12:28 | 000,036,864 | ---- | C] () -- C:\Windows\System32\xmlparse.dll
[2007-11-08 23:50:43 | 000,691,696 | ---- | C] () -- C:\Windows\System32\drivers\sptd.sys
[2007-10-28 17:35:12 | 000,014,848 | ---- | C] () -- C:\Windows\System32\BASSMOD.dll
[2007-05-17 14:58:10 | 000,143,360 | ---- | C] () -- C:\Windows\System32\libexpatw.dll
[2007-03-29 12:42:38 | 000,389,120 | ---- | C] () -- C:\Windows\System32\btwhidcs.dll
[2007-02-27 22:43:02 | 000,000,000 | ---- | C] () -- C:\Windows\System32\px.ini
[2006-12-13 23:01:36 | 000,520,192 | ---- | C] () -- C:\Windows\System32\CddbPlaylist2Roxio.dll
[2006-12-13 23:01:36 | 000,204,800 | ---- | C] () -- C:\Windows\System32\CddbFileTaggerRoxio.dll
[2006-11-02 14:35:32 | 000,005,632 | ---- | C] () -- C:\Windows\System32\sysprepMCE.dll
[2006-11-02 12:25:21 | 000,061,440 | ---- | C] () -- C:\Windows\System32\igfxTMM.dll
[2006-11-02 09:40:29 | 000,013,750 | ---- | C] () -- C:\Windows\System32\pacerprf.ini
[2006-05-03 00:38:24 | 000,000,748 | ---- | C] () -- C:\Windows\SetBrowser.ini
[2006-03-10 02:58:00 | 001,060,424 | ---- | C] () -- C:\Windows\System32\WdfCoInstaller01000.dll
[2005-05-07 14:06:00 | 000,016,480 | ---- | C] () -- C:\Windows\System32\rixdicon.dll
[2005-04-03 22:30:00 | 000,110,592 | R--- | C] () -- C:\Windows\System32\scardsyn.dll
[2001-11-14 13:56:00 | 001,802,240 | ---- | C] () -- C:\Windows\System32\lcppn21.dll
[1998-06-13 23:53:26 | 000,044,544 | ---- | C] () -- C:\Windows\System32\Gif89.dll
[1998-05-07 03:10:00 | 000,069,632 | R--- | C] () -- C:\Windows\System32\ODMA32.dll

[color=#E56717]========== LOP Check ==========[/color]

[2010-07-31 02:21:03 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\Alawar
[2010-07-31 02:21:04 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\Ashampoo
[2010-07-31 02:21:12 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\AutoUpdate
[2010-07-31 02:21:13 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\BESTplayer
[2010-07-31 02:21:15 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\Braid
[2010-07-31 02:21:15 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\Canneverbe_Limited
[2010-07-31 02:21:19 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\Codeton
[2010-07-31 02:21:21 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\Crayon Physics Deluxe
[2010-07-31 02:21:33 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\DAEMON Tools
[2010-07-31 02:21:35 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\DAEMON Tools Lite
[2010-07-31 02:21:37 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\DeepBurner
[2010-07-31 02:21:39 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\Flock
[2010-07-31 02:22:05 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\foobar2000
[2010-07-31 02:22:06 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\Gadu-Gadu
[2010-07-31 02:22:25 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\GanymedeNet
[2010-07-31 02:26:14 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\Image Zone Express
[2010-07-31 02:26:15 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\InfraRecorder
[2010-07-31 02:26:22 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\Kamerzysta
[2010-07-31 02:26:35 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\Leadertech
[2010-07-31 02:26:43 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\Ludia
[2010-07-30 10:48:17 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\My Games
[2010-07-30 10:49:50 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\Nokia
[2010-07-30 10:50:43 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\Opera
[2010-07-30 10:54:22 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\PC Suite
[2010-07-30 10:54:38 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\PeerNetworking
[2010-07-30 10:54:42 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\PGP Corporation
[2010-07-30 10:54:52 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\PPMate
[2010-07-30 10:55:03 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\ppStream
[2010-07-30 10:55:08 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\Printer Info Cache
[2010-07-30 10:59:40 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\SPORE Creature Creator
[2010-07-30 10:59:59 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\Sudeki
[2010-07-30 11:11:28 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\The Path
[2010-07-30 11:11:50 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\Tropico 3
[2010-07-30 11:12:22 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\Ubisoft
[2010-07-30 11:12:38 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\Unity
[2010-07-31 09:32:47 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\uTorrent
[2010-07-30 11:13:19 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\Vso
[2010-07-31 00:38:50 | 000,032,560 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT
[2010-07-31 00:44:38 | 000,000,420 | -H-- | M] () -- C:\Windows\Tasks\User_Feed_Synchronization-{33A78335-0818-4987-8D74-5A2DA5C573C0}.job
[2010-07-31 17:11:00 | 000,000,456 | -H-- | M] () -- C:\Windows\Tasks\User_Feed_Synchronization-{94C9E3AC-2D7B-448B-9D50-923637CB0158}.job

[color=#E56717]========== Purity Check ==========[/color]



[color=#E56717]========== Custom Scans ==========[/color]


[color=#A23BEC]< %systemdrive%\*.* >[/color]
[2010-07-31 13:44:05 | 000,000,191 | RHS- | M] () -- C:\autorun.inf
[2010-07-29 10:19:09 | 000,032,768 | ---- | M] () -- C:\backup.bcd
[2010-07-29 10:19:09 | 000,029,696 | -H-- | M] () -- C:\backup.bcd.LOG
[2010-07-29 10:19:09 | 000,000,000 | -H-- | M] () -- C:\backup.bcd.LOG1
[2010-07-29 10:19:09 | 000,000,000 | -H-- | M] () -- C:\backup.bcd.LOG2
[2010-04-18 22:34:05 | 000,000,086 | ---- | M] () -- C:\bcmwl6.log
[2009-07-14 03:38:58 | 000,383,562 | RHS- | M] () -- C:\bootmgr
[2010-07-29 06:46:47 | 000,008,192 | R-S- | M] () -- C:\BOOTSECT.BAK
[2006-09-18 23:43:37 | 000,000,010 | ---- | M] () -- C:\config.sys
[2010-07-31 13:44:05 | 000,103,140 | RHS- | M] () -- C:\ftoodu.pif
[2007-11-13 20:37:44 | 000,000,000 | RHS- | M] () -- C:\IO.SYS
[2008-05-16 00:04:00 | 000,000,177 | ---- | M] () -- C:\ioSpecial.ini
[2010-07-29 19:10:35 | 000,106,190 | ---- | M] () -- C:\mksbasel.cpp.log
[2007-11-13 20:37:44 | 000,000,000 | RHS- | M] () -- C:\MSDOS.SYS
[2010-07-31 16:13:16 | 2997,080,064 | -HS- | M] () -- C:\pagefile.sys


[color=#A23BEC]< MD5 for: AGP440.SYS >[/color]
[2008-01-19 09:42:25 | 000,056,376 | ---- | M] (Microsoft Corporation) MD5=13F9E33747E6B41A3FF305C37DB0D360 -- C:\Windows\System32\DriverStore\FileRepository\machine.inf_51b95d75\AGP440.sys
[2008-01-19 09:42:25 | 000,056,376 | ---- | M] (Microsoft Corporation) MD5=13F9E33747E6B41A3FF305C37DB0D360 -- C:\Windows\System32\DriverStore\FileRepository\machine.inf_f750e484\AGP440.sys
[2008-01-19 09:42:25 | 000,056,376 | ---- | M] (Microsoft Corporation) MD5=13F9E33747E6B41A3FF305C37DB0D360 -- C:\Windows\winsxs\x86_machine.inf_31bf3856ad364e35_6.0.6001.18000_none_ba12ed3bbeb0d97a\AGP440.sys
[2008-01-19 09:42:25 | 000,056,376 | ---- | M] (Microsoft Corporation) MD5=13F9E33747E6B41A3FF305C37DB0D360 -- C:\Windows\winsxs\x86_machine.inf_31bf3856ad364e35_6.0.6002.18005_none_bbfe6647bbd2a4c6\AGP440.sys
[2007-08-22 04:44:27 | 000,053,864 | ---- | M] (Microsoft Corporation) MD5=313FF294978EA6AF715722D708FB249F -- C:\Windows\winsxs\x86_machine.inf_31bf3856ad364e35_6.0.6000.20494_none_b858f78adaed51b3\AGP440.sys
[2007-08-22 04:44:28 | 000,053,864 | ---- | M] (Microsoft Corporation) MD5=CE71AFD6738AA025D742CDBCFBDC8B9C -- C:\Windows\System32\DriverStore\FileRepository\machine.inf_f2490cb0\AGP440.sys
[2007-08-22 04:44:28 | 000,053,864 | ---- | M] (Microsoft Corporation) MD5=CE71AFD6738AA025D742CDBCFBDC8B9C -- C:\Windows\winsxs\x86_machine.inf_31bf3856ad364e35_6.0.6000.16399_none_b7d45c31c1cb309c\AGP440.sys
[2006-11-02 11:49:52 | 000,053,864 | ---- | M] (Microsoft Corporation) MD5=EF23439CDD587F64C2C1B8825CEAD7D8 -- C:\Windows\System32\drivers\AGP440.sys
[2006-11-02 11:49:52 | 000,053,864 | ---- | M] (Microsoft Corporation) MD5=EF23439CDD587F64C2C1B8825CEAD7D8 -- C:\Windows\System32\DriverStore\FileRepository\machine.inf_920a2c1f\AGP440.sys

[color=#A23BEC]< MD5 for: ATAPI.SYS >[/color]
[2009-04-11 08:32:26 | 000,019,944 | ---- | M] (Microsoft Corporation) MD5=1F05B78AB91C9075565A9D8A4B880BC4 -- C:\Windows\System32\drivers\atapi.sys
[2009-04-11 08:32:26 | 000,019,944 | ---- | M] (Microsoft Corporation) MD5=1F05B78AB91C9075565A9D8A4B880BC4 -- C:\Windows\System32\DriverStore\FileRepository\mshdc.inf_b12d8e84\atapi.sys
[2009-04-11 08:32:26 | 000,019,944 | ---- | M] (Microsoft Corporation) MD5=1F05B78AB91C9075565A9D8A4B880BC4 -- C:\Windows\winsxs\x86_mshdc.inf_31bf3856ad364e35_6.0.6002.18005_none_df23a1261eab99e8\atapi.sys
[2008-01-19 09:41:30 | 000,021,560 | ---- | M] (Microsoft Corporation) MD5=2D9C903DC76A66813D350A562DE40ED9 -- C:\Windows\System32\DriverStore\FileRepository\mshdc.inf_cc18792d\atapi.sys
[2008-01-19 09:41:30 | 000,021,560 | ---- | M] (Microsoft Corporation) MD5=2D9C903DC76A66813D350A562DE40ED9 -- C:\Windows\winsxs\x86_mshdc.inf_31bf3856ad364e35_6.0.6001.18000_none_dd38281a2189ce9c\atapi.sys
[2006-11-02 11:49:36 | 000,019,048 | ---- | M] (Microsoft Corporation) MD5=4F4FCB8B6EA06784FB6D475B7EC7300F -- C:\Windows\System32\DriverStore\FileRepository\mshdc.inf_c6c2e699\atapi.sys
[2008-02-13 12:58:34 | 000,021,560 | ---- | M] (Microsoft Corporation) MD5=B35CFCEF838382AB6490B321C87EDF17 -- C:\Windows\System32\DriverStore\FileRepository\mshdc.inf_7de13c21\atapi.sys
[2008-02-13 12:58:34 | 000,021,560 | ---- | M] (Microsoft Corporation) MD5=B35CFCEF838382AB6490B321C87EDF17 -- C:\Windows\winsxs\x86_mshdc.inf_31bf3856ad364e35_6.0.6000.16632_none_db337a442479c42c\atapi.sys
[2008-02-13 12:58:33 | 000,021,560 | ---- | M] (Microsoft Corporation) MD5=E03E8C99D15D0381E02743C36AFC7C6F -- C:\Windows\winsxs\x86_mshdc.inf_31bf3856ad364e35_6.0.6000.20757_none_dbac78a93da31a8b\atapi.sys

[color=#A23BEC]< MD5 for: BEEP.SYS >[/color]
[2008-01-19 07:49:10 | 000,006,144 | ---- | M] (Microsoft Corporation) MD5=67E506B75BD5326A3EC7B70BD014DFB6 -- C:\Windows\System32\drivers\beep.sys
[2008-01-19 07:49:10 | 000,006,144 | ---- | M] (Microsoft Corporation) MD5=67E506B75BD5326A3EC7B70BD014DFB6 -- C:\Windows\winsxs\x86_microsoft-windows-beepsys_31bf3856ad364e35_6.0.6001.18000_none_c420a153079d485b\beep.sys
[2006-11-02 10:51:03 | 000,006,144 | ---- | M] (Microsoft Corporation) MD5=AC3DD1708B22761EBD7CBE14DCC3B5D7 -- C:\Windows\winsxs\x86_microsoft-windows-beepsys_31bf3856ad364e35_6.0.6000.16386_none_c1e9df570ab23787\beep.sys

[color=#A23BEC]< MD5 for: CDROM.SYS >[/color]
[2008-01-19 07:49:51 | 000,067,072 | ---- | M] (Microsoft Corporation) MD5=1EC25CEA0DE6AC4718BF89F9E1778B57 -- C:\Windows\System32\DriverStore\FileRepository\cdrom.inf_a29e71c6\cdrom.sys
[2008-01-19 07:49:51 | 000,067,072 | ---- | M] (Microsoft Corporation) MD5=1EC25CEA0DE6AC4718BF89F9E1778B57 -- C:\Windows\winsxs\x86_cdrom.inf_31bf3856ad364e35_6.0.6001.18000_none_5fa95be2a3c76a4a\cdrom.sys
[2009-04-11 06:39:17 | 000,067,072 | ---- | M] (Microsoft Corporation) MD5=6B4BFFB9BECD728097024276430DB314 -- C:\Windows\System32\drivers\cdrom.sys
[2009-04-11 06:39:17 | 000,067,072 | ---- | M] (Microsoft Corporation) MD5=6B4BFFB9BECD728097024276430DB314 -- C:\Windows\System32\DriverStore\FileRepository\cdrom.inf_c949a5b6\cdrom.sys
[2009-04-11 06:39:17 | 000,067,072 | ---- | M] (Microsoft Corporation) MD5=6B4BFFB9BECD728097024276430DB314 -- C:\Windows\winsxs\x86_cdrom.inf_31bf3856ad364e35_6.0.6002.18005_none_6194d4eea0e93596\cdrom.sys
[2006-11-02 10:51:44 | 000,067,072 | ---- | M] (Microsoft Corporation) MD5=8D1866E61AF096AE8B582454F5E4D303 -- C:\Windows\System32\DriverStore\FileRepository\cdrom.inf_e487f727\cdrom.sys

[color=#A23BEC]< MD5 for: NDIS.SYS >[/color]
[2009-04-11 08:32:49 | 000,527,848 | ---- | M] (Microsoft Corporation) MD5=1357274D1883F68300AEADD15D7BBB42 -- C:\Windows\System32\drivers\ndis.sys
[2009-04-11 08:32:49 | 000,527,848 | ---- | M] (Microsoft Corporation) MD5=1357274D1883F68300AEADD15D7BBB42 -- C:\Windows\winsxs\x86_microsoft-windows-ndis_31bf3856ad364e35_6.0.6002.18005_none_a9b2a4d31930d864\ndis.sys
[2006-11-02 11:51:42 | 000,500,840 | ---- | M] (Microsoft Corporation) MD5=227C11E1E7CF6EF8AFB2A238D209760C -- C:\Windows\winsxs\x86_microsoft-windows-ndis_31bf3856ad364e35_6.0.6000.16386_none_a59069cb1f23fc44\ndis.sys
[2008-01-19 09:43:31 | 000,529,464 | ---- | M] (Microsoft Corporation) MD5=9BDC71790FA08F0A0B5F10462B1BD0B1 -- C:\Windows\winsxs\x86_microsoft-windows-ndis_31bf3856ad364e35_6.0.6001.18000_none_a7c72bc71c0f0d18\ndis.sys

[color=#A23BEC]< MD5 for: WINLOGON.EXE >[/color]
[2009-04-11 08:28:13 | 000,314,368 | ---- | M] (Microsoft Corporation) MD5=898E7C06A350D4A1A64A9EA264D55452 -- C:\Windows\System32\winlogon.exe
[2009-04-11 08:28:13 | 000,314,368 | ---- | M] (Microsoft Corporation) MD5=898E7C06A350D4A1A64A9EA264D55452 -- C:\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.0.6002.18005_none_71ae7a22d2134741\winlogon.exe
[2006-11-02 11:45:57 | 000,308,224 | ---- | M] (Microsoft Corporation) MD5=9F75392B9128A91ABAFB044EA350BAAD -- C:\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.0.6000.16386_none_6d8c3f1ad8066b21\winlogon.exe
[2008-01-19 09:33:37 | 000,314,880 | ---- | M] (Microsoft Corporation) MD5=C2610B6BDBEFC053BBDAB4F1B965CB24 -- C:\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.0.6001.18000_none_6fc30116d4f17bf5\winlogon.exe

[color=#E56717]========== Alternate Data Streams ==========[/color]

@Alternate Data Stream - 119 bytes -> C:\ProgramData\TEMP:0F8F5844
@Alternate Data Stream - 109 bytes -> C:\ProgramData\TEMP:010ADD2C
< End of report >

[/log]


[log]
OTL Extras logfile created on: 2010-07-31 16:34:34 - Run 1
OTL by OldTimer - Version 3.2.9.1 Folder = C:\Users\Michał\Desktop
Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18928)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd

2,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 63,00% Memory free
5,00 Gb Paging File | 4,00 Gb Available in Paging File | 79,00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 81,46 Gb Total Space | 40,74 Gb Free Space | 50,02% Space Free | Partition Type: NTFS
Drive D: | 6,93 Gb Total Space | 2,39 Gb Free Space | 34,49% Space Free | Partition Type: NTFS
E: Drive not present or media not loaded
F: Drive not present or media not loaded
Drive G: | 60,66 Gb Total Space | 5,55 Gb Free Space | 9,14% Space Free | Partition Type: NTFS
H: Drive not present or media not loaded
I: Drive not present or media not loaded

Computer Name: MICHAŁ-PC
Current User Name: Michał
Logged in as Administrator.

Current Boot Mode: Normal
Scan Mode: All users
Company Name Whitelist: On
Skip Microsoft Files: On
File Age = 60 Days
Output = Standard

[color=#E56717]========== Extra Registry (SafeList) ==========[/color]


[color=#E56717]========== File Associations ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation)
.hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation)
.html [@ = Opera.HTML] -- G:\Programy\Opera\Opera.exe (Opera Software)

[color=#E56717]========== Shell Spawning ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation)
htmlfile [edit] -- "G:\Programy\Office\OFFICE11\msohtmed.exe" %1 File not found
htmlfile [print] -- "G:\Programy\Office\OFFICE11\msohtmed.exe" /p %1 File not found
http [open] -- "G:\Programy\Opera\opera.exe" (Opera Software)
https [open] -- "G:\Programy\Opera\opera.exe" (Opera Software)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation)
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [MediaMonkey.1Play] -- "G:\Programy\MediaMonkey\MediaMonkey.exe" "%1" (Ventis Media Inc.)
Directory [MediaMonkey.2PlayNext] -- "G:\Programy\MediaMonkey\MediaMonkey.exe" /NEXT "%1" (Ventis Media Inc.)
Directory [MediaMonkey.3Enqueue] -- "G:\Programy\MediaMonkey\MediaMonkey.exe" /ADD "%1" (Ventis Media Inc.)
Directory [Winamp.Bookmark] -- "G:\Programy\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft)
Directory [Winamp.Enqueue] -- "G:\Programy\Winamp\winamp.exe" /ADD "%1" (Nullsoft)
Directory [Winamp.Play] -- "G:\Programy\Winamp\winamp.exe" "%1" (Nullsoft)
Folder [open] -- %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /separate,/e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

[color=#E56717]========== Security Center Settings ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
"UacDisableNotify" = 1
"InternetSettingsDisableNotify" = 1
"AutoUpdateDisableNotify" = 1
"AntiVirusOverride" = 1
"FirewallOverride" = 1
"AntiVirusDisableNotify" = 1
"FirewallDisableNotify" = 1
"UpdatesDisableNotify" = 1

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
"DisableMonitoring" = 1

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]
"DisableMonitoring" = 1

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]
"DisableMonitoring" = 1

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"AntiVirusOverride" = 1
"AntiSpywareOverride" = 1
"FirewallOverride" = 0
"VistaSp1" = Reg Error: Unknown registry data type -- File not found
"VistaSp2" = Reg Error: Unknown registry data type -- File not found

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 1
"EnableFirewall" = 0
"DoNotAllowExceptions" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 0
"DoNotAllowExceptions" = 0

[color=#E56717]========== Authorized Applications List ==========[/color]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"G:\Programy\PPMate\ppmate.exe" = G:\Programy\PPMate\ppmate.exe:*:Enabled:PPMate -- File not found
"G:\Programy\PPMate\ppamnet.exe" = G:\Programy\PPMate\ppamnet.exe:*:Enabled:PPMate -- File not found
"E:\Postal 2 Share the Pain\POSTAL2 STP\Setup.exe" = E:\Postal 2 Share the Pain\POSTAL2 STP\Setup.exe:*:Enabled:ipsec -- File not found
"C:\Windows\system32\netsh.exe" = C:\Windows\system32\netsh.exe:*:Enabled:ipsec -- (Microsoft Corporation)
"c:\Program Files\Bioscrypt\VeriSoft\Bin\AsGHost.exe" = c:\Program Files\Bioscrypt\VeriSoft\Bin\AsGHost.exe:*:Enabled:ipsec -- File not found
"G:\Programy\EASEUS Partition Master 4.1.1 Home Edition\bin\Main.exe" = G:\Programy\EASEUS Partition Master 4.1.1 Home Edition\bin\Main.exe:*:Enabled:ipsec -- File not found
"C:\Program Files\Synaptics\SynTP\SynTPStart.exe" = C:\Program Files\Synaptics\SynTP\SynTPStart.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\mprkvv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\mprkvv.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\mrtiwx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\mrtiwx.exe:*:Enabled:ipsec -- File not found
"C:\Windows\Explorer.EXE" = C:\Windows\Explorer.EXE:*:Enabled:ipsec -- (Microsoft Corporation)
"G:\Programy\EvilLyrics\EvilLyrics.exe" = G:\Programy\EvilLyrics\EvilLyrics.exe:*:Enabled:ipsec -- File not found
"C:\Windows\helppane.exe" = C:\Windows\helppane.exe:*:Enabled:ipsec -- (Microsoft Corporation)
"C:\Users\MICHA~1\AppData\Local\Temp\maveep.exe" = C:\Users\MICHA~1\AppData\Local\Temp\maveep.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\krwb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\krwb.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winmjnqcs.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winmjnqcs.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winywyjij.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winywyjij.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winmblt.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winmblt.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\mxqup.exe" = C:\Users\MICHA~1\AppData\Local\Temp\mxqup.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winfgom.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winfgom.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winelcr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winelcr.exe:*:Enabled:ipsec -- File not found
"C:\Program Files\Google\Update\GoogleUpdate.exe" = C:\Program Files\Google\Update\GoogleUpdate.exe:*:Enabled:ipsec -- File not found
"C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe" = C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winxvqdex.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winxvqdex.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winrhdmir.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winrhdmir.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winwfao.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winwfao.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winubjhuh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winubjhuh.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winfvot.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winfvot.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winkjnljx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winkjnljx.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winlphova.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winlphova.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winxslq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winxslq.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winkytlda.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winkytlda.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winvadgh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winvadgh.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\uqpbf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\uqpbf.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\usqwt.exe" = C:\Users\MICHA~1\AppData\Local\Temp\usqwt.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wintihgx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wintihgx.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winogql.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winogql.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\wintalm.exe" = C:\Windows\TEMP\wintalm.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\xyext.exe" = C:\Users\MICHA~1\AppData\Local\Temp\xyext.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\wingcfv.exe" = C:\Windows\TEMP\wingcfv.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winfydd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winfydd.exe:*:Enabled:ipsec -- File not found
"C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE" = C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winfshp.exe" = C:\Windows\TEMP\winfshp.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winiexg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winiexg.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wincjqe.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wincjqe.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\vtxutf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\vtxutf.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winobor.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winobor.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\esag.exe" = C:\Users\MICHA~1\AppData\Local\Temp\esag.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winxvpdil.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winxvpdil.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winebpyd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winebpyd.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\kkgux.exe" = C:\Users\MICHA~1\AppData\Local\Temp\kkgux.exe:*:Enabled:ipsec -- File not found
"C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe" = C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winonyhk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winonyhk.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winrcgtvu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winrcgtvu.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winqagnvv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winqagnvv.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winupyh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winupyh.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winivqch.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winivqch.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winlnrb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winlnrb.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winqtpkw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winqtpkw.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winohsku.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winohsku.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winlpav.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winlpav.exe:*:Enabled:ipsec -- File not found
"C:\Program Files\HP\QuickPlay\QPService.exe" = C:\Program Files\HP\QuickPlay\QPService.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winghysmu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winghysmu.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\vkuw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\vkuw.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winlocgv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winlocgv.exe:*:Enabled:ipsec -- File not found
"G:\Programy\defragmentator dysku\PDEngine.exe" = G:\Programy\defragmentator dysku\PDEngine.exe:*:Enabled:ipsec -- (Raxco Software, Inc.)
"C:\Windows\TEMP\ecmw.exe" = C:\Windows\TEMP\ecmw.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winjtmgia.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winjtmgia.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winkdwiik.exe" = C:\Windows\TEMP\winkdwiik.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\qsivk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\qsivk.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winljpag.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winljpag.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winlrpa.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winlrpa.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\krcxh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\krcxh.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\efotpa.exe" = C:\Users\MICHA~1\AppData\Local\Temp\efotpa.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\tvmivd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\tvmivd.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winhmht.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhmht.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winukvwgq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winukvwgq.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\hqsort.exe" = C:\Users\MICHA~1\AppData\Local\Temp\hqsort.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\pggpj.exe" = C:\Users\MICHA~1\AppData\Local\Temp\pggpj.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winfmkbl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winfmkbl.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\ytdxra.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ytdxra.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\baocfa.exe" = C:\Users\MICHA~1\AppData\Local\Temp\baocfa.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\sngcxu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\sngcxu.exe:*:Enabled:ipsec -- File not found
"G:\Gry\Tropico\Tropico 3\uninst.exe" = G:\Gry\Tropico\Tropico 3\uninst.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\~nsu.tmp\Au_.exe" = C:\Users\MICHA~1\AppData\Local\Temp\~nsu.tmp\Au_.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\boem.exe" = C:\Windows\TEMP\boem.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winxicks.exe" = C:\Windows\TEMP\winxicks.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\biua.exe" = C:\Windows\TEMP\biua.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\ojhvd.exe" = C:\Windows\TEMP\ojhvd.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\knki.exe" = C:\Windows\TEMP\knki.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winbdin.exe" = C:\Windows\TEMP\winbdin.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winogjmue.exe" = C:\Windows\TEMP\winogjmue.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winfbhw.exe" = C:\Windows\TEMP\winfbhw.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\cnooao.exe" = C:\Windows\TEMP\cnooao.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\opxd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\opxd.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winycgst.exe" = C:\Windows\TEMP\winycgst.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winbffyu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbffyu.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winqkcop.exe" = C:\Windows\TEMP\winqkcop.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\riope.exe" = C:\Users\MICHA~1\AppData\Local\Temp\riope.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winqhyff.exe" = C:\Windows\TEMP\winqhyff.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\gunyf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\gunyf.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\plti.exe" = C:\Windows\TEMP\plti.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winjxlku.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winjxlku.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\eoomjn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\eoomjn.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winrfaa.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winrfaa.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\gcvk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\gcvk.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winypnqe.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winypnqe.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\wingdorb.exe" = C:\Windows\TEMP\wingdorb.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winridno.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winridno.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\vmxpcj.exe" = C:\Windows\TEMP\vmxpcj.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\xpuhx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\xpuhx.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winpxjvd.exe" = C:\Windows\TEMP\winpxjvd.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winmnuvbc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winmnuvbc.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winvyep.exe" = C:\Windows\TEMP\winvyep.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winsjefm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winsjefm.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winvmdhb.exe" = C:\Windows\TEMP\winvmdhb.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winkdot.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winkdot.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winuebdgp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winuebdgp.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winwdmdmq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winwdmdmq.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winbjfr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbjfr.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\gmdkyh.exe" = C:\Windows\TEMP\gmdkyh.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\cofur.exe" = C:\Windows\TEMP\cofur.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\prla.exe" = C:\Windows\TEMP\prla.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\pugvy.exe" = C:\Windows\TEMP\pugvy.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winfhaq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winfhaq.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winxdgn.exe" = C:\Windows\TEMP\winxdgn.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wincugfpm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wincugfpm.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winevhjre.exe" = C:\Windows\TEMP\winevhjre.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\vclqsb.exe" = C:\Windows\TEMP\vclqsb.exe:*:Enabled:ipsec -- File not found
"C:\Program Files\AMD\Dual-Core Optimizer\amd_dc_opt.exe" = C:\Program Files\AMD\Dual-Core Optimizer\amd_dc_opt.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\ogjm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ogjm.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winkwpcyr.exe" = C:\Windows\TEMP\winkwpcyr.exe:*:Enabled:ipsec -- File not found
"C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe" = C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe:*:Enabled:ipsec -- (Broadcom Corporation.)
"C:\Users\MICHA~1\AppData\Local\Temp\winppqmqs.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winppqmqs.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winjmwl.exe" = C:\Windows\TEMP\winjmwl.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\wcejo.exe" = C:\Windows\TEMP\wcejo.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\lmbvmg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\lmbvmg.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\xnpqn.exe" = C:\Windows\TEMP\xnpqn.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\wnrmpv.exe" = C:\Windows\TEMP\wnrmpv.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winbhqwfd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbhqwfd.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winphpc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winphpc.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\iorcsc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\iorcsc.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wincufngt.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wincufngt.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\ynaq.exe" = C:\Windows\TEMP\ynaq.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winxtvwno.exe" = C:\Windows\TEMP\winxtvwno.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\unog.exe" = C:\Users\MICHA~1\AppData\Local\Temp\unog.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winjhwwq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winjhwwq.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winftbl.exe" = C:\Windows\TEMP\winftbl.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\ubdky.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ubdky.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\wevjro.exe" = C:\Windows\TEMP\wevjro.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winoqaef.exe" = C:\Windows\TEMP\winoqaef.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winhhwyvt.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhhwyvt.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winsfvpq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winsfvpq.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\whyd.exe" = C:\Windows\TEMP\whyd.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\ofgjkq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ofgjkq.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winndnphv.exe" = C:\Windows\TEMP\winndnphv.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wintmry.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wintmry.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winsqidee.exe" = C:\Windows\TEMP\winsqidee.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\dqegfo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\dqegfo.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\ggcg.exe" = C:\Windows\TEMP\ggcg.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winfsnkd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winfsnkd.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winlktqf.exe" = C:\Windows\TEMP\winlktqf.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\windbon.exe" = C:\Users\MICHA~1\AppData\Local\Temp\windbon.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winhvfo.exe" = C:\Windows\TEMP\winhvfo.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wintmgg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wintmgg.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winxqfe.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winxqfe.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winpcsck.exe" = C:\Windows\TEMP\winpcsck.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winsxty.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winsxty.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\windcah.exe" = C:\Windows\TEMP\windcah.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winxwwo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winxwwo.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winogbix.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winogbix.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wintgpu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wintgpu.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winbyom.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbyom.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winfnjc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winfnjc.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\teosy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\teosy.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wingqddl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wingqddl.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winqcxuba.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winqcxuba.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\ldaif.exe" = C:\Windows\TEMP\ldaif.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winqensu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winqensu.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\gjvqe.exe" = C:\Windows\TEMP\gjvqe.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\windrnwv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\windrnwv.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winfddbg.exe" = C:\Windows\TEMP\winfddbg.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wincckm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wincckm.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winmemlow.exe" = C:\Windows\TEMP\winmemlow.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\fgfkew.exe" = C:\Users\MICHA~1\AppData\Local\Temp\fgfkew.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winbyick.exe" = C:\Windows\TEMP\winbyick.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\negk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\negk.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winkpbqf.exe" = C:\Windows\TEMP\winkpbqf.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winfmrcs.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winfmrcs.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\cpcq.exe" = C:\Windows\TEMP\cpcq.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winawond.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winawond.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winjfwae.exe" = C:\Windows\TEMP\winjfwae.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winbyeaq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbyeaq.exe:*:Enabled:ipsec -- File not found
"C:\Program Files\Windows Defender\MSASCui.exe" = C:\Program Files\Windows Defender\MSASCui.exe:*:Enabled:ipsec -- (Microsoft Corporation)
"C:\Users\MICHA~1\AppData\Local\Temp\winplkli.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winplkli.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\ntukre.exe" = C:\Windows\TEMP\ntukre.exe:*:Enabled:ipsec -- File not found
"C:\Program Files\HP\QuickPlay\Kernel\TV\CLSched.exe" = C:\Program Files\HP\QuickPlay\Kernel\TV\CLSched.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\ctulx.exe" = C:\Windows\TEMP\ctulx.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\tuws.exe" = C:\Users\MICHA~1\AppData\Local\Temp\tuws.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\ekks.exe" = C:\Windows\TEMP\ekks.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winfseefk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winfseefk.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winolpn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winolpn.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\ggnqgx.exe" = C:\Windows\TEMP\ggnqgx.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winhdadql.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhdadql.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winshkmc.exe" = C:\Windows\TEMP\winshkmc.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wintvpeq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wintvpeq.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\oees.exe" = C:\Windows\TEMP\oees.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winfxqxm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winfxqxm.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\doeok.exe" = C:\Windows\TEMP\doeok.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wqush.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wqush.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\dyrkxx.exe" = C:\Windows\TEMP\dyrkxx.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winticnkw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winticnkw.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winohwcr.exe" = C:\Windows\TEMP\winohwcr.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\gdhe.exe" = C:\Users\MICHA~1\AppData\Local\Temp\gdhe.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\yfuq.exe" = C:\Windows\TEMP\yfuq.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winuawvn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winuawvn.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\bchmn.exe" = C:\Windows\TEMP\bchmn.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\auyhf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\auyhf.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winkfyuit.exe" = C:\Windows\TEMP\winkfyuit.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winnalun.exe" = C:\Windows\TEMP\winnalun.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\iyrb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\iyrb.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winbwpd.exe" = C:\Windows\TEMP\winbwpd.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wingakcl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wingakcl.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winvsjp.exe" = C:\Windows\TEMP\winvsjp.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\nylcs.exe" = C:\Users\MICHA~1\AppData\Local\Temp\nylcs.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winnvrha.exe" = C:\Windows\TEMP\winnvrha.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\eqhg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\eqhg.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\oxwun.exe" = C:\Users\MICHA~1\AppData\Local\Temp\oxwun.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wsuc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wsuc.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winjrtu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winjrtu.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\ixlnlv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ixlnlv.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winilnh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winilnh.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\pdygx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\pdygx.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\qpdspw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\qpdspw.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winvvxfcx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winvvxfcx.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winfyufn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winfyufn.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winwohd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winwohd.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\ngcrpb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ngcrpb.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\unlv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\unlv.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winrxhe.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winrxhe.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winakxau.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winakxau.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winxjakx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winxjakx.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wvktnp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wvktnp.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\tilgp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\tilgp.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\wingvasmc.exe" = C:\Windows\TEMP\wingvasmc.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\yfjlb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\yfjlb.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winhnses.exe" = C:\Windows\TEMP\winhnses.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wrfd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wrfd.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winaotl.exe" = C:\Windows\TEMP\winaotl.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\iwnhlb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\iwnhlb.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\gljc.exe" = C:\Windows\TEMP\gljc.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winqtol.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winqtol.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\wuvfew.exe" = C:\Windows\TEMP\wuvfew.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winiakfcm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winiakfcm.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winkiqkqr.exe" = C:\Windows\TEMP\winkiqkqr.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\ictjvf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ictjvf.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winoscec.exe" = C:\Windows\TEMP\winoscec.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winkfuhlp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winkfuhlp.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\ubig.exe" = C:\Windows\TEMP\ubig.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winfvqcrr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winfvqcrr.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winttixl.exe" = C:\Windows\TEMP\winttixl.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winmckr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winmckr.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\utfu.exe" = C:\Windows\TEMP\utfu.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winiahum.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winiahum.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winfojfr.exe" = C:\Windows\TEMP\winfojfr.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winunmph.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winunmph.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winkxng.exe" = C:\Windows\TEMP\winkxng.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\xpbf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\xpbf.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winmdbeh.exe" = C:\Windows\TEMP\winmdbeh.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\jtsdkm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\jtsdkm.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\wsxh.exe" = C:\Windows\TEMP\wsxh.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\auqfqw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\auqfqw.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\spmw.exe" = C:\Windows\TEMP\spmw.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wintyvn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wintyvn.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\wintybjl.exe" = C:\Windows\TEMP\wintybjl.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\ciffb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ciffb.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\wintughg.exe" = C:\Windows\TEMP\wintughg.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winhekhma.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhekhma.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\kvkbs.exe" = C:\Windows\TEMP\kvkbs.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\fufqo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\fufqo.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winsdsf.exe" = C:\Windows\TEMP\winsdsf.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winppid.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winppid.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\qlhd.exe" = C:\Windows\TEMP\qlhd.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\toaf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\toaf.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winmdrxxn.exe" = C:\Windows\TEMP\winmdrxxn.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winqybi.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winqybi.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\nrwm.exe" = C:\Windows\TEMP\nrwm.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winbsndx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbsndx.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winjrxov.exe" = C:\Windows\TEMP\winjrxov.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\jcdgs.exe" = C:\Windows\TEMP\jcdgs.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wpjtmy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wpjtmy.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\tiyjtv.exe" = C:\Windows\TEMP\tiyjtv.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winejqvqc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winejqvqc.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winljdpi.exe" = C:\Windows\TEMP\winljdpi.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winryeg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winryeg.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winaehtbh.exe" = C:\Windows\TEMP\winaehtbh.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wincxman.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wincxman.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\nmdva.exe" = C:\Windows\TEMP\nmdva.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winhsljlj.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhsljlj.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\fwpp.exe" = C:\Windows\TEMP\fwpp.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\aihdv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\aihdv.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winvknrq.exe" = C:\Windows\TEMP\winvknrq.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\iiaks.exe" = C:\Users\MICHA~1\AppData\Local\Temp\iiaks.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winqosb.exe" = C:\Windows\TEMP\winqosb.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wineobe.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wineobe.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\wincvdp.exe" = C:\Windows\TEMP\wincvdp.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winuufq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winuufq.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\yreryo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\yreryo.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winjtwa.exe" = C:\Windows\TEMP\winjtwa.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winfjxgvu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winfjxgvu.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\wintrrerh.exe" = C:\Windows\TEMP\wintrrerh.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winfjlnfr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winfjlnfr.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\beyapj.exe" = C:\Windows\TEMP\beyapj.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winpqnw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winpqnw.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winkowho.exe" = C:\Windows\TEMP\winkowho.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winsmyb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winsmyb.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\uxvcny.exe" = C:\Windows\TEMP\uxvcny.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\mkgc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\mkgc.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\dkfl.exe" = C:\Windows\TEMP\dkfl.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\fqldb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\fqldb.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winicdr.exe" = C:\Windows\TEMP\winicdr.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\cpsl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\cpsl.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\mcpsfr.exe" = C:\Windows\TEMP\mcpsfr.exe:*:Enabled:ipsec -- File not found
"C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\hiddata.exe" = C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\hiddata.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winjpccq.exe" = C:\Windows\TEMP\winjpccq.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\aoeewo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\aoeewo.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winunhnj.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winunhnj.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winidlo.exe" = C:\Windows\TEMP\winidlo.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\tgyjpb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\tgyjpb.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\xnbcp.exe" = C:\Windows\TEMP\xnbcp.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winarba.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winarba.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winqvmup.exe" = C:\Windows\TEMP\winqvmup.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\cajhd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\cajhd.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\wintkqnp.exe" = C:\Windows\TEMP\wintkqnp.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winoabb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winoabb.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winknbt.exe" = C:\Windows\TEMP\winknbt.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winnagbv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winnagbv.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\agkfxs.exe" = C:\Users\MICHA~1\AppData\Local\Temp\agkfxs.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\cxtvxj.exe" = C:\Windows\TEMP\cxtvxj.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winykhy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winykhy.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\qabwgk.exe" = C:\Windows\TEMP\qabwgk.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winrnal.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winrnal.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winseuj.exe" = C:\Windows\TEMP\winseuj.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\xwms.exe" = C:\Users\MICHA~1\AppData\Local\Temp\xwms.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\wingqjdst.exe" = C:\Windows\TEMP\wingqjdst.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\pygvxj.exe" = C:\Users\MICHA~1\AppData\Local\Temp\pygvxj.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winnkoen.exe" = C:\Windows\TEMP\winnkoen.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winusfwo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winusfwo.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\iewg.exe" = C:\Windows\TEMP\iewg.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\qsndf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\qsndf.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winwloh.exe" = C:\Windows\TEMP\winwloh.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winrpkno.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winrpkno.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winwpcclv.exe" = C:\Windows\TEMP\winwpcclv.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winyhhm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winyhhm.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\vgmniy.exe" = C:\Windows\TEMP\vgmniy.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winfnrg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winfnrg.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\pjny.exe" = C:\Windows\TEMP\pjny.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\windtwtqv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\windtwtqv.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\pnpw.exe" = C:\Windows\TEMP\pnpw.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winxwfdkg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winxwfdkg.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\wingkkty.exe" = C:\Windows\TEMP\wingkkty.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winvabnra.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winvabnra.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winperxb.exe" = C:\Windows\TEMP\winperxb.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\rokngb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\rokngb.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\mumqcd.exe" = C:\Windows\TEMP\mumqcd.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\vadsya.exe" = C:\Users\MICHA~1\AppData\Local\Temp\vadsya.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\dvrxo.exe" = C:\Windows\TEMP\dvrxo.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winqcip.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winqcip.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\ywqki.exe" = C:\Windows\TEMP\ywqki.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winygibt.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winygibt.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winadnoqa.exe" = C:\Windows\TEMP\winadnoqa.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\jqtyiq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\jqtyiq.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winjohwkj.exe" = C:\Windows\TEMP\winjohwkj.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\sgdd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\sgdd.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\mqacvk.exe" = C:\Windows\TEMP\mqacvk.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winvyia.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winvyia.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\girsyy.exe" = C:\Windows\TEMP\girsyy.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\uqhqi.exe" = C:\Users\MICHA~1\AppData\Local\Temp\uqhqi.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winflmnxg.exe" = C:\Windows\TEMP\winflmnxg.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winbdjmcp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbdjmcp.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winhaiy.exe" = C:\Windows\TEMP\winhaiy.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winiqbnyi.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winiqbnyi.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\qyytct.exe" = C:\Windows\TEMP\qyytct.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winrgri.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winrgri.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winkbdwh.exe" = C:\Windows\TEMP\winkbdwh.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\ipnurl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ipnurl.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winnklc.exe" = C:\Windows\TEMP\winnklc.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\kcypx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\kcypx.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winsfditm.exe" = C:\Windows\TEMP\winsfditm.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\bfoiqg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\bfoiqg.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\swsam.exe" = C:\Windows\TEMP\swsam.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winjrstml.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winjrstml.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\wintvved.exe" = C:\Windows\TEMP\wintvved.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\pjknf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\pjknf.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\tmdglj.exe" = C:\Windows\TEMP\tmdglj.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winkbrpk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winkbrpk.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\ontbgg.exe" = C:\Windows\TEMP\ontbgg.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\esege.exe" = C:\Users\MICHA~1\AppData\Local\Temp\esege.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winxilui.exe" = C:\Windows\TEMP\winxilui.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\mjju.exe" = C:\Users\MICHA~1\AppData\Local\Temp\mjju.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winiaspgk.exe" = C:\Windows\TEMP\winiaspgk.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winenckxd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winenckxd.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winfrnrn.exe" = C:\Windows\TEMP\winfrnrn.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\kbihhd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\kbihhd.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\rxuhnv.exe" = C:\Windows\TEMP\rxuhnv.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\cren.exe" = C:\Users\MICHA~1\AppData\Local\Temp\cren.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winxowe.exe" = C:\Windows\TEMP\winxowe.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winwbpv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winwbpv.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\wincqfmes.exe" = C:\Windows\TEMP\wincqfmes.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\ghik.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ghik.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\wingmhl.exe" = C:\Windows\TEMP\wingmhl.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\sbjegh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\sbjegh.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\yblrur.exe" = C:\Windows\TEMP\yblrur.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winduwu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winduwu.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winddebk.exe" = C:\Windows\TEMP\winddebk.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\jvhp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\jvhp.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\rwfw.exe" = C:\Windows\TEMP\rwfw.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winrjgonc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winrjgonc.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wingntxvg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wingntxvg.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\giaeks.exe" = C:\Users\MICHA~1\AppData\Local\Temp\giaeks.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winaupaf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winaupaf.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\alard.exe" = C:\Users\MICHA~1\AppData\Local\Temp\alard.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\sdhxd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\sdhxd.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\omrth.exe" = C:\Users\MICHA~1\AppData\Local\Temp\omrth.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\kxybrd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\kxybrd.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winodqw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winodqw.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winqpfjbm.exe" = C:\Windows\TEMP\winqpfjbm.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winyxkkoq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winyxkkoq.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\dbfa.exe" = C:\Windows\TEMP\dbfa.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wintqoaey.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wintqoaey.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\oxsrky.exe" = C:\Windows\TEMP\oxsrky.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wineiuv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wineiuv.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\ltxhly.exe" = C:\Windows\TEMP\ltxhly.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winagymm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winagymm.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\hhrc.exe" = C:\Windows\TEMP\hhrc.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winofdwry.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winofdwry.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\ilao.exe" = C:\Windows\TEMP\ilao.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winkcmd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winkcmd.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winfmvl.exe" = C:\Windows\TEMP\winfmvl.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\ciogm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ciogm.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winmpvg.exe" = C:\Windows\TEMP\winmpvg.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winybsqq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winybsqq.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winfmmb.exe" = C:\Windows\TEMP\winfmmb.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winhedpl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhedpl.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\wintahwg.exe" = C:\Windows\TEMP\wintahwg.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winvbsjql.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winvbsjql.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\tfbxg.exe" = C:\Windows\TEMP\tfbxg.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wqdqt.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wqdqt.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\windwky.exe" = C:\Windows\TEMP\windwky.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\vnkv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\vnkv.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\wintruvij.exe" = C:\Windows\TEMP\wintruvij.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winrxymse.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winrxymse.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winflcg.exe" = C:\Windows\TEMP\winflcg.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winremvcq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winremvcq.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winjbtol.exe" = C:\Windows\TEMP\winjbtol.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winqnycas.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winqnycas.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\wineovhw.exe" = C:\Windows\TEMP\wineovhw.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\windghrgq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\windghrgq.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\yqfis.exe" = C:\Windows\TEMP\yqfis.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\vlkwgr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\vlkwgr.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winxgbscw.exe" = C:\Windows\TEMP\winxgbscw.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\qfmdrc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\qfmdrc.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winfblru.exe" = C:\Windows\TEMP\winfblru.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\peaeq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\peaeq.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\wincsgxq.exe" = C:\Windows\TEMP\wincsgxq.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winevfwf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winevfwf.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winoeniwq.exe" = C:\Windows\TEMP\winoeniwq.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winssvlr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winssvlr.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winvdlmlt.exe" = C:\Windows\TEMP\winvdlmlt.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\ofiisk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ofiisk.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winjmmbc.exe" = C:\Windows\TEMP\winjmmbc.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winomqmu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winomqmu.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winxvai.exe" = C:\Windows\TEMP\winxvai.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\efywcg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\efywcg.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winvexvgc.exe" = C:\Windows\TEMP\winvexvgc.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\fnhp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\fnhp.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\vcub.exe" = C:\Windows\TEMP\vcub.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winqilx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winqilx.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wineixm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wineixm.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winkmxwu.exe" = C:\Windows\TEMP\winkmxwu.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winqorf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winqorf.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\whcxf.exe" = C:\Windows\TEMP\whcxf.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\afhsh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\afhsh.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winfbgs.exe" = C:\Windows\TEMP\winfbgs.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\esrn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\esrn.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winmjivp.exe" = C:\Windows\TEMP\winmjivp.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winummhg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winummhg.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\wintsgl.exe" = C:\Windows\TEMP\wintsgl.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\windrbl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\windrbl.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winmjxw.exe" = C:\Windows\TEMP\winmjxw.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winaepde.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winaepde.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winlfkny.exe" = C:\Windows\TEMP\winlfkny.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winyialv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winyialv.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\wingudm.exe" = C:\Windows\TEMP\wingudm.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\dnjrja.exe" = C:\Users\MICHA~1\AppData\Local\Temp\dnjrja.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winfqpkf.exe" = C:\Windows\TEMP\winfqpkf.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\yylgre.exe" = C:\Users\MICHA~1\AppData\Local\Temp\yylgre.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winuxps.exe" = C:\Windows\TEMP\winuxps.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\snbva.exe" = C:\Users\MICHA~1\AppData\Local\Temp\snbva.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\yvkgv.exe" = C:\Windows\TEMP\yvkgv.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winpbof.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winpbof.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winaqrvu.exe" = C:\Windows\TEMP\winaqrvu.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winmfvncy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winmfvncy.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winorjya.exe" = C:\Windows\TEMP\winorjya.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winicxmg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winicxmg.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winiprx.exe" = C:\Windows\TEMP\winiprx.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\smcys.exe" = C:\Users\MICHA~1\AppData\Local\Temp\smcys.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winfktwk.exe" = C:\Windows\TEMP\winfktwk.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\windaljub.exe" = C:\Users\MICHA~1\AppData\Local\Temp\windaljub.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\sfapcr.exe" = C:\Windows\TEMP\sfapcr.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winbork.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbork.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\cftljd.exe" = C:\Windows\TEMP\cftljd.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\dbba.exe" = C:\Users\MICHA~1\AppData\Local\Temp\dbba.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\wincdhf.exe" = C:\Windows\TEMP\wincdhf.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winmhyw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winmhyw.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\undaoh.exe" = C:\Windows\TEMP\undaoh.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winjkjqv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winjkjqv.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winedkrkm.exe" = C:\Windows\TEMP\winedkrkm.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winfmsxt.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winfmsxt.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winfpncdl.exe" = C:\Windows\TEMP\winfpncdl.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\ufiym.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ufiym.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winygcuri.exe" = C:\Windows\TEMP\winygcuri.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\windahlgn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\windahlgn.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winhmowq.exe" = C:\Windows\TEMP\winhmowq.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\rtew.exe" = C:\Users\MICHA~1\AppData\Local\Temp\rtew.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winladnda.exe" = C:\Windows\TEMP\winladnda.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winpont.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winpont.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winnpxno.exe" = C:\Windows\TEMP\winnpxno.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\gxrcgt.exe" = C:\Users\MICHA~1\AppData\Local\Temp\gxrcgt.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\mpfg.exe" = C:\Windows\TEMP\mpfg.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\owblk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\owblk.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winkhtd.exe" = C:\Windows\TEMP\winkhtd.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\mvkupg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\mvkupg.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\lesno.exe" = C:\Windows\TEMP\lesno.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\ykpge.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ykpge.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winbvud.exe" = C:\Windows\TEMP\winbvud.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winodwyt.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winodwyt.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winypsb.exe" = C:\Windows\TEMP\winypsb.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\drnk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\drnk.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winrxfwf.exe" = C:\Windows\TEMP\winrxfwf.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\ymwcss.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ymwcss.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winwssg.exe" = C:\Windows\TEMP\winwssg.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\vxhq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\vxhq.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\lefl.exe" = C:\Windows\TEMP\lefl.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wingkux.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wingkux.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\wincdixkf.exe" = C:\Windows\TEMP\wincdixkf.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winfbghu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winfbghu.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winqrrseo.exe" = C:\Windows\TEMP\winqrrseo.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winfvrlh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winfvrlh.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\sysby.exe" = C:\Windows\TEMP\sysby.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winykepfe.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winykepfe.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winkingg.exe" = C:\Windows\TEMP\winkingg.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winujrup.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winujrup.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winsrspqy.exe" = C:\Windows\TEMP\winsrspqy.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wintwmgb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wintwmgb.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winnkcvc.exe" = C:\Windows\TEMP\winnkcvc.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\rmprcr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\rmprcr.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\igew.exe" = C:\Windows\TEMP\igew.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wininsy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wininsy.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winkbfhn.exe" = C:\Windows\TEMP\winkbfhn.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wrgxo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wrgxo.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\jryum.exe" = C:\Windows\TEMP\jryum.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\vpdw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\vpdw.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winwtnjd.exe" = C:\Windows\TEMP\winwtnjd.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\windffkm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\windffkm.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winweyyjb.exe" = C:\Windows\TEMP\winweyyjb.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wintpwijl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wintpwijl.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\kmmkha.exe" = C:\Windows\TEMP\kmmkha.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winuaua.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winuaua.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winlmhw.exe" = C:\Windows\TEMP\winlmhw.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winwabb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winwabb.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\kfujbf.exe" = C:\Windows\TEMP\kfujbf.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winocplv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winocplv.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winjnmicp.exe" = C:\Windows\TEMP\winjnmicp.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\mhvf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\mhvf.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winloasqa.exe" = C:\Windows\TEMP\winloasqa.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winmtsaq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winmtsaq.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\xpte.exe" = C:\Windows\TEMP\xpte.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winvquvbf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winvquvbf.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\knskl.exe" = C:\Windows\TEMP\knskl.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winvvgvh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winvvgvh.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\ppirf.exe" = C:\Windows\TEMP\ppirf.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winbcag.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbcag.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winwjco.exe" = C:\Windows\TEMP\winwjco.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winhful.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhful.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winerce.exe" = C:\Windows\TEMP\winerce.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\lqyi.exe" = C:\Users\MICHA~1\AppData\Local\Temp\lqyi.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winjqhiq.exe" = C:\Windows\TEMP\winjqhiq.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wintenf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wintenf.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\wintafb.exe" = C:\Windows\TEMP\wintafb.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\yawo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\yawo.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winyxqv.exe" = C:\Windows\TEMP\winyxqv.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winepvm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winepvm.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\xxrqx.exe" = C:\Windows\TEMP\xxrqx.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\xsfnai.exe" = C:\Users\MICHA~1\AppData\Local\Temp\xsfnai.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winqcsjef.exe" = C:\Windows\TEMP\winqcsjef.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\auuvsn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\auuvsn.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winahcy.exe" = C:\Windows\TEMP\winahcy.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winldoc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winldoc.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\wincqcomq.exe" = C:\Windows\TEMP\wincqcomq.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\mbuqp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\mbuqp.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winhejew.exe" = C:\Windows\TEMP\winhejew.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winjupwo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winjupwo.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winxyail.exe" = C:\Windows\TEMP\winxyail.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\okuod.exe" = C:\Users\MICHA~1\AppData\Local\Temp\okuod.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\wineyjpng.exe" = C:\Windows\TEMP\wineyjpng.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winhxwuin.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhxwuin.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\qqguut.exe" = C:\Windows\TEMP\qqguut.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\elhy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\elhy.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\hxdhua.exe" = C:\Windows\TEMP\hxdhua.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winrkabpe.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winrkabpe.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\ckme.exe" = C:\Windows\TEMP\ckme.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\ggwjo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ggwjo.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winflolxn.exe" = C:\Windows\TEMP\winflolxn.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winwayvr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winwayvr.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winhhmk.exe" = C:\Windows\TEMP\winhhmk.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winagnvix.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winagnvix.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winthuoev.exe" = C:\Windows\TEMP\winthuoev.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\kink.exe" = C:\Users\MICHA~1\AppData\Local\Temp\kink.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\lxxno.exe" = C:\Windows\TEMP\lxxno.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\ndfnkt.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ndfnkt.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winrostd.exe" = C:\Windows\TEMP\winrostd.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\luusk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\luusk.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winyjum.exe" = C:\Windows\TEMP\winyjum.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winspfqv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winspfqv.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\durjf.exe" = C:\Windows\TEMP\durjf.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\hgyeql.exe" = C:\Users\MICHA~1\AppData\Local\Temp\hgyeql.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winhduvv.exe" = C:\Windows\TEMP\winhduvv.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\pratmg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\pratmg.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winobrt.exe" = C:\Windows\TEMP\winobrt.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\pycu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\pycu.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winppqdjg.exe" = C:\Windows\TEMP\winppqdjg.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\sgewre.exe" = C:\Windows\TEMP\sgewre.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winpscu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winpscu.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\vufdf.exe" = C:\Windows\TEMP\vufdf.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winpqnp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winpqnp.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winkcdc.exe" = C:\Windows\TEMP\winkcdc.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\kftb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\kftb.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\vcvxfn.exe" = C:\Windows\TEMP\vcvxfn.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\kmlit.exe" = C:\Users\MICHA~1\AppData\Local\Temp\kmlit.exe:*:Enabled:ipsec -- File not found
"C:\Program Files\Windows Calendar\WinCal.exe" = C:\Program Files\Windows Calendar\WinCal.exe:*:Enabled:ipsec -- (Microsoft Corporation)
"C:\Users\MICHA~1\AppData\Local\Temp\eokcvr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\eokcvr.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\fbyx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\fbyx.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\nrix.exe" = C:\Users\MICHA~1\AppData\Local\Temp\nrix.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winepdjwp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winepdjwp.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winmjjg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winmjjg.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winvukst.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winvukst.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winxspssy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winxspssy.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wingxwa.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wingxwa.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winhebajy.exe" = C:\Windows\TEMP\winhebajy.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winulwsal.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winulwsal.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\odwm.exe" = C:\Windows\TEMP\odwm.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\juumqh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\juumqh.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winlbkhdn.exe" = C:\Windows\TEMP\winlbkhdn.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winbblexa.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbblexa.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winpknag.exe" = C:\Windows\TEMP\winpknag.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\cfkq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\cfkq.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\qyede.exe" = C:\Windows\TEMP\qyede.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\intpby.exe" = C:\Users\MICHA~1\AppData\Local\Temp\intpby.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winwuob.exe" = C:\Windows\TEMP\winwuob.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winombmw.exe" = C:\Windows\TEMP\winombmw.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winbmet.exe" = C:\Windows\TEMP\winbmet.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winspnqfh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winspnqfh.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\qninp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\qninp.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winmygam.exe" = C:\Windows\TEMP\winmygam.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\olwrfs.exe" = C:\Windows\TEMP\olwrfs.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winhetm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhetm.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winkdgnr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winkdgnr.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winjemb.exe" = C:\Windows\TEMP\winjemb.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\hcsd.exe" = C:\Windows\TEMP\hcsd.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winjrfch.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winjrfch.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\windcqej.exe" = C:\Windows\TEMP\windcqej.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winhicmo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhicmo.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\ifdrva.exe" = C:\Windows\TEMP\ifdrva.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\eswi.exe" = C:\Users\MICHA~1\AppData\Local\Temp\eswi.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winowaa.exe" = C:\Windows\TEMP\winowaa.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\mjxtm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\mjxtm.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\windmcd.exe" = C:\Windows\TEMP\windmcd.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winankjc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winankjc.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winvsuyh.exe" = C:\Windows\TEMP\winvsuyh.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winaftf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winaftf.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\vwul.exe" = C:\Windows\TEMP\vwul.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\vlkwqs.exe" = C:\Users\MICHA~1\AppData\Local\Temp\vlkwqs.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\vqpk.exe" = C:\Windows\TEMP\vqpk.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winsrtx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winsrtx.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winumsgdr.exe" = C:\Windows\TEMP\winumsgdr.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\bjoiom.exe" = C:\Users\MICHA~1\AppData\Local\Temp\bjoiom.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\pihu.exe" = C:\Windows\TEMP\pihu.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winlvrhdm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winlvrhdm.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winuhmied.exe" = C:\Windows\TEMP\winuhmied.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\cyre.exe" = C:\Users\MICHA~1\AppData\Local\Temp\cyre.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\fulgdj.exe" = C:\Windows\TEMP\fulgdj.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wincdrqp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wincdrqp.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winmbpw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winmbpw.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winvaetvd.exe" = C:\Windows\TEMP\winvaetvd.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winbaukmi.exe" = C:\Windows\TEMP\winbaukmi.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winevcr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winevcr.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wincvsa.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wincvsa.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winehrmim.exe" = C:\Windows\TEMP\winehrmim.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winrllnkb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winrllnkb.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\hdhi.exe" = C:\Windows\TEMP\hdhi.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winthyswa.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winthyswa.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\ndlp.exe" = C:\Windows\TEMP\ndlp.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winqebg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winqebg.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winhsryx.exe" = C:\Windows\TEMP\winhsryx.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winlhkrv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winlhkrv.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winpevpbu.exe" = C:\Windows\TEMP\winpevpbu.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\khsyi.exe" = C:\Users\MICHA~1\AppData\Local\Temp\khsyi.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winvihgnx.exe" = C:\Windows\TEMP\winvihgnx.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\omksbg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\omksbg.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\aheqgb.exe" = C:\Windows\TEMP\aheqgb.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winrxja.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winrxja.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\wintrxosg.exe" = C:\Windows\TEMP\wintrxosg.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\oqyt.exe" = C:\Users\MICHA~1\AppData\Local\Temp\oqyt.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winaehxbg.exe" = C:\Windows\TEMP\winaehxbg.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winhmsjo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhmsjo.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\bkwtxs.exe" = C:\Windows\TEMP\bkwtxs.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\whawhv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\whawhv.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\cnruh.exe" = C:\Windows\TEMP\cnruh.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winjjniei.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winjjniei.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winjbrc.exe" = C:\Windows\TEMP\winjbrc.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\cpwv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\cpwv.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\dioud.exe" = C:\Windows\TEMP\dioud.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winmecxe.exe" = C:\Windows\TEMP\winmecxe.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\rqdc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\rqdc.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winwjscme.exe" = C:\Windows\TEMP\winwjscme.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wekflp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wekflp.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\jwws.exe" = C:\Windows\TEMP\jwws.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\bvop.exe" = C:\Users\MICHA~1\AppData\Local\Temp\bvop.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\wingtbik.exe" = C:\Windows\TEMP\wingtbik.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\rahp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\rahp.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winwbdrkr.exe" = C:\Windows\TEMP\winwbdrkr.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winmybg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winmybg.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\ybas.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ybas.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winadecc.exe" = C:\Windows\TEMP\winadecc.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winyvbe.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winyvbe.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winwnfjk.exe" = C:\Windows\TEMP\winwnfjk.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\jjaxy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\jjaxy.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winnsrsgo.exe" = C:\Windows\TEMP\winnsrsgo.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winkofa.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winkofa.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\vbqgwx.exe" = C:\Windows\TEMP\vbqgwx.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winyvmg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winyvmg.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winhdbhw.exe" = C:\Windows\TEMP\winhdbhw.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\gtvmbs.exe" = C:\Users\MICHA~1\AppData\Local\Temp\gtvmbs.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winlyqhb.exe" = C:\Windows\TEMP\winlyqhb.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\mcfvrx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\mcfvrx.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\stkfgx.exe" = C:\Windows\TEMP\stkfgx.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\peaqb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\peaqb.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\xdhwqu.exe" = C:\Windows\TEMP\xdhwqu.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winysosjc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winysosjc.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winyocp.exe" = C:\Windows\TEMP\winyocp.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\idmjr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\idmjr.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winhjhf.exe" = C:\Windows\TEMP\winhjhf.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\aboqus.exe" = C:\Users\MICHA~1\AppData\Local\Temp\aboqus.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\windgfw.exe" = C:\Windows\TEMP\windgfw.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winarmcn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winarmcn.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\yddbmo.exe" = C:\Windows\TEMP\yddbmo.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winbgaa.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbgaa.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winsnev.exe" = C:\Windows\TEMP\winsnev.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winejkebh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winejkebh.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\nknh.exe" = C:\Windows\TEMP\nknh.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\knss.exe" = C:\Users\MICHA~1\AppData\Local\Temp\knss.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\ewjwe.exe" = C:\Windows\TEMP\ewjwe.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winumyr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winumyr.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winpcba.exe" = C:\Windows\TEMP\winpcba.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\yxwd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\yxwd.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\windssh.exe" = C:\Windows\TEMP\windssh.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winwsxe.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winwsxe.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winexaox.exe" = C:\Windows\TEMP\winexaox.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\igsjq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\igsjq.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winvcfb.exe" = C:\Windows\TEMP\winvcfb.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winpmon.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winpmon.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winhtyf.exe" = C:\Windows\TEMP\winhtyf.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\ibgni.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ibgni.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winiaudh.exe" = C:\Windows\TEMP\winiaudh.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\ywcrye.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ywcrye.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\iqnnhi.exe" = C:\Windows\TEMP\iqnnhi.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\khfw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\khfw.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\xntff.exe" = C:\Windows\TEMP\xntff.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\gvtpe.exe" = C:\Users\MICHA~1\AppData\Local\Temp\gvtpe.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winkdhd.exe" = C:\Windows\TEMP\winkdhd.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\dkovge.exe" = C:\Users\MICHA~1\AppData\Local\Temp\dkovge.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\uflu.exe" = C:\Windows\TEMP\uflu.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\fuiui.exe" = C:\Users\MICHA~1\AppData\Local\Temp\fuiui.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\vejs.exe" = C:\Windows\TEMP\vejs.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\ltjbs.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ltjbs.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winnpappv.exe" = C:\Windows\TEMP\winnpappv.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\rhycva.exe" = C:\Users\MICHA~1\AppData\Local\Temp\rhycva.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winhrer.exe" = C:\Windows\TEMP\winhrer.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winasnyvs.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winasnyvs.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\hvks.exe" = C:\Windows\TEMP\hvks.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wintirj.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wintirj.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\wingvau.exe" = C:\Windows\TEMP\wingvau.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winxoyi.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winxoyi.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winfbfn.exe" = C:\Windows\TEMP\winfbfn.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winsapnpd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winsapnpd.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\crbef.exe" = C:\Windows\TEMP\crbef.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\ssqcl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ssqcl.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\sytqc.exe" = C:\Windows\TEMP\sytqc.exe:*:Enabled:ipsec -- File not found
"C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe" = C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winrfwfmx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winrfwfmx.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\mykhft.exe" = C:\Windows\TEMP\mykhft.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\rrfe.exe" = C:\Users\MICHA~1\AppData\Local\Temp\rrfe.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winpjdrvc.exe" = C:\Windows\TEMP\winpjdrvc.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\lmhmxm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\lmhmxm.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\rgyvq.exe" = C:\Windows\TEMP\rgyvq.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\gtewf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\gtewf.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\tmawr.exe" = C:\Windows\TEMP\tmawr.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winuopuan.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winuopuan.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winxcnbbm.exe" = C:\Windows\TEMP\winxcnbbm.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\btjn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\btjn.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winqewyec.exe" = C:\Windows\TEMP\winqewyec.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winvxbmgc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winvxbmgc.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\erugm.exe" = C:\Windows\TEMP\erugm.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\jhrn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\jhrn.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winwbrwck.exe" = C:\Windows\TEMP\winwbrwck.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winkjume.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winkjume.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\windxexfk.exe" = C:\Windows\TEMP\windxexfk.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\qbwibo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\qbwibo.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winvgormh.exe" = C:\Windows\TEMP\winvgormh.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wpgilb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wpgilb.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\rpvo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\rpvo.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winfvlo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winfvlo.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\ockvso.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ockvso.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wingiwss.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wingiwss.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wineqjfoo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wineqjfoo.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winjpsjr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winjpsjr.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\vsvsp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\vsvsp.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winfuyvdy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winfuyvdy.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winjdthxo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winjdthxo.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\windlyotm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\windlyotm.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winowfyll.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winowfyll.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winkwkgyl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winkwkgyl.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winuslip.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winuslip.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\vpgpx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\vpgpx.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winbyhu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbyhu.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winmwdv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winmwdv.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winqxuvmu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winqxuvmu.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\aiwt.exe" = C:\Users\MICHA~1\AppData\Local\Temp\aiwt.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winqeldl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winqeldl.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\ljlbar.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ljlbar.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\ayxue.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ayxue.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\trrn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\trrn.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winmdyv.exe" = C:\Windows\TEMP\winmdyv.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winhdtxm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhdtxm.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winydws.exe" = C:\Windows\TEMP\winydws.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\vywo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\vywo.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winbgrya.exe" = C:\Windows\TEMP\winbgrya.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\iomxqw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\iomxqw.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\cfiucs.exe" = C:\Windows\TEMP\cfiucs.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winxmowja.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winxmowja.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\lenat.exe" = C:\Windows\TEMP\lenat.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wincibq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wincibq.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winbdij.exe" = C:\Windows\TEMP\winbdij.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\ktnw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ktnw.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winsnepjb.exe" = C:\Windows\TEMP\winsnepjb.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winovqdd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winovqdd.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winpeuc.exe" = C:\Windows\TEMP\winpeuc.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winhvabs.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhvabs.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winriue.exe" = C:\Windows\TEMP\winriue.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winppetp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winppetp.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\vwcsao.exe" = C:\Windows\TEMP\vwcsao.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winyole.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winyole.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winwwtisc.exe" = C:\Windows\TEMP\winwwtisc.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\lwia.exe" = C:\Users\MICHA~1\AppData\Local\Temp\lwia.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winjaeqx.exe" = C:\Windows\TEMP\winjaeqx.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\txjx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\txjx.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\vcfko.exe" = C:\Windows\TEMP\vcfko.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winaxef.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winaxef.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winurgn.exe" = C:\Windows\TEMP\winurgn.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winhljqro.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhljqro.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winlnibob.exe" = C:\Windows\TEMP\winlnibob.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winldvvb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winldvvb.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winkjhbol.exe" = C:\Windows\TEMP\winkjhbol.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winjyfcsc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winjyfcsc.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winaeqt.exe" = C:\Windows\TEMP\winaeqt.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\trfevm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\trfevm.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\qaewsi.exe" = C:\Windows\TEMP\qaewsi.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winqbnej.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winqbnej.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\fvas.exe" = C:\Windows\TEMP\fvas.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winyrteti.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winyrteti.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winyyewua.exe" = C:\Windows\TEMP\winyyewua.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winvlnkh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winvlnkh.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winubba.exe" = C:\Windows\TEMP\winubba.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\pxiiou.exe" = C:\Users\MICHA~1\AppData\Local\Temp\pxiiou.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winhouv.exe" = C:\Windows\TEMP\winhouv.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\jpdfw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\jpdfw.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winayjep.exe" = C:\Windows\TEMP\winayjep.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wintyagj.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wintyagj.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winscko.exe" = C:\Windows\TEMP\winscko.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winjgihwy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winjgihwy.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winpkbr.exe" = C:\Windows\TEMP\winpkbr.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\ssib.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ssib.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\wincqjl.exe" = C:\Windows\TEMP\wincqjl.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\hbdmd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\hbdmd.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\euct.exe" = C:\Windows\TEMP\euct.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winadvk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winadvk.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\olpp.exe" = C:\Windows\TEMP\olpp.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winffqr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winffqr.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winaxblox.exe" = C:\Windows\TEMP\winaxblox.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\qjotm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\qjotm.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\jivskx.exe" = C:\Windows\TEMP\jivskx.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winfljie.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winfljie.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winyjnxt.exe" = C:\Windows\TEMP\winyjnxt.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wineauofi.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wineauofi.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\vlvyv.exe" = C:\Windows\TEMP\vlvyv.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\tjud.exe" = C:\Users\MICHA~1\AppData\Local\Temp\tjud.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winmekcd.exe" = C:\Windows\TEMP\winmekcd.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winmrgqwl.exe" = C:\Windows\TEMP\winmrgqwl.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winuubk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winuubk.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winrvcnqu.exe" = C:\Windows\TEMP\winrvcnqu.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\sybdff.exe" = C:\Users\MICHA~1\AppData\Local\Temp\sybdff.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winralqql.exe" = C:\Windows\TEMP\winralqql.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\ydyhrk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ydyhrk.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\wineaywwt.exe" = C:\Windows\TEMP\wineaywwt.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winjdcuhe.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winjdcuhe.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\sliuvd.exe" = C:\Windows\TEMP\sliuvd.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winirfa.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winirfa.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\wincnojys.exe" = C:\Windows\TEMP\wincnojys.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winkbbxau.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winkbbxau.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\pxrhdq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\pxrhdq.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\clif.exe" = C:\Windows\TEMP\clif.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winmshx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winmshx.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winombrh.exe" = C:\Windows\TEMP\winombrh.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winqdorq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winqdorq.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\eojm.exe" = C:\Windows\TEMP\eojm.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winchifb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winchifb.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\goaxp.exe" = C:\Windows\TEMP\goaxp.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\shdxj.exe" = C:\Users\MICHA~1\AppData\Local\Temp\shdxj.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\ebsk.exe" = C:\Windows\TEMP\ebsk.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winbwrwm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbwrwm.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winmmjxqy.exe" = C:\Windows\TEMP\winmmjxqy.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winmndikl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winmndikl.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\oycnvq.exe" = C:\Windows\TEMP\oycnvq.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winmcin.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winmcin.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\ckpxxv.exe" = C:\Windows\TEMP\ckpxxv.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winadtqib.exe" = C:\Windows\TEMP\winadtqib.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\kqpc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\kqpc.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\eqqei.exe" = C:\Windows\TEMP\eqqei.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\yxyu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\yxyu.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winxlbem.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winxlbem.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winufvvy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winufvvy.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\usscw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\usscw.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\windrbb.exe" = C:\Windows\TEMP\windrbb.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wintati.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wintati.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\rvnkvp.exe" = C:\Windows\TEMP\rvnkvp.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wjqehg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wjqehg.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winmpeao.exe" = C:\Windows\TEMP\winmpeao.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\rdcq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\rdcq.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\vqydc.exe" = C:\Windows\TEMP\vqydc.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\tnlj.exe" = C:\Users\MICHA~1\AppData\Local\Temp\tnlj.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\ytha.exe" = C:\Windows\TEMP\ytha.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\rdhbln.exe" = C:\Users\MICHA~1\AppData\Local\Temp\rdhbln.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winqdui.exe" = C:\Windows\TEMP\winqdui.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\eyucyh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\eyucyh.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winvaqds.exe" = C:\Windows\TEMP\winvaqds.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\mwtm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\mwtm.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winusipv.exe" = C:\Windows\TEMP\winusipv.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\kjjcms.exe" = C:\Users\MICHA~1\AppData\Local\Temp\kjjcms.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\muxf.exe" = C:\Windows\TEMP\muxf.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\gpadow.exe" = C:\Users\MICHA~1\AppData\Local\Temp\gpadow.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\uggpbo.exe" = C:\Windows\TEMP\uggpbo.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\ovufu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ovufu.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winwkvk.exe" = C:\Windows\TEMP\winwkvk.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\duts.exe" = C:\Users\MICHA~1\AppData\Local\Temp\duts.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winaouh.exe" = C:\Windows\TEMP\winaouh.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\xptc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\xptc.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\pyox.exe" = C:\Windows\TEMP\pyox.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\aaeeib.exe" = C:\Windows\TEMP\aaeeib.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\windoii.exe" = C:\Users\MICHA~1\AppData\Local\Temp\windoii.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winuacmh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winuacmh.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winxahx.exe" = C:\Windows\TEMP\winxahx.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winqvwfth.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winqvwfth.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winmhda.exe" = C:\Windows\TEMP\winmhda.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winbjjbin.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbjjbin.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winiyljd.exe" = C:\Windows\TEMP\winiyljd.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\llvkt.exe" = C:\Users\MICHA~1\AppData\Local\Temp\llvkt.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winpxccuc.exe" = C:\Windows\TEMP\winpxccuc.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winosfxwh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winosfxwh.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\befv.exe" = C:\Windows\TEMP\befv.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winytlq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winytlq.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winbpvuu.exe" = C:\Windows\TEMP\winbpvuu.exe:*:Enabled:ipsec -- File not found
"G:\Programy\Malwarebytes' Anti-Malware\mbam.exe" = G:\Programy\Malwarebytes' Anti-Malware\mbam.exe:*:Enabled:ipsec -- (Malwarebytes Corporation)
"C:\Users\MICHA~1\AppData\Local\Temp\hirbvs.exe" = C:\Users\MICHA~1\AppData\Local\Temp\hirbvs.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\hstcw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\hstcw.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winrvii.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winrvii.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\lapmg.exe" = C:\Windows\TEMP\lapmg.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\fwfvae.exe" = C:\Users\MICHA~1\AppData\Local\Temp\fwfvae.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winxxqwyo.exe" = C:\Windows\TEMP\winxxqwyo.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\hwbrt.exe" = C:\Users\MICHA~1\AppData\Local\Temp\hwbrt.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winbqea.exe" = C:\Windows\TEMP\winbqea.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\dxssfy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\dxssfy.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winirwlas.exe" = C:\Windows\TEMP\winirwlas.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\wincdnpu.exe" = C:\Windows\TEMP\wincdnpu.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winhcca.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhcca.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winywkphi.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winywkphi.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\wiokyu.exe" = C:\Windows\TEMP\wiokyu.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winwqrvx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winwqrvx.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winpxqqeu.exe" = C:\Windows\TEMP\winpxqqeu.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winguygmy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winguygmy.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winsqsqp.exe" = C:\Windows\TEMP\winsqsqp.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winhtmus.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhtmus.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winkocgv.exe" = C:\Windows\TEMP\winkocgv.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winwkox.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winwkox.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winavpe.exe" = C:\Windows\TEMP\winavpe.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\xhneg.exe" = C:\Windows\TEMP\xhneg.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\qvcywg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\qvcywg.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winjuobh.exe" = C:\Windows\TEMP\winjuobh.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winagvoiu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winagvoiu.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winvmtw.exe" = C:\Windows\TEMP\winvmtw.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\tvlpo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\tvlpo.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\blvxl.exe" = C:\Windows\TEMP\blvxl.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\gippqv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\gippqv.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winhgkjhr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhgkjhr.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\utegsp.exe" = C:\Windows\TEMP\utegsp.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winqsec.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winqsec.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\cvqjj.exe" = C:\Windows\TEMP\cvqjj.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\xqtke.exe" = C:\Users\MICHA~1\AppData\Local\Temp\xqtke.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\ohwxk.exe" = C:\Windows\TEMP\ohwxk.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winywegya.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winywegya.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winpcrsrq.exe" = C:\Windows\TEMP\winpcrsrq.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\cibyyk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\cibyyk.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winswoym.exe" = C:\Windows\TEMP\winswoym.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winpuqid.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winpuqid.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winhnxba.exe" = C:\Windows\TEMP\winhnxba.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winqtqoo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winqtqoo.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winamyj.exe" = C:\Windows\TEMP\winamyj.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wintyrpso.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wintyrpso.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\abrcs.exe" = C:\Windows\TEMP\abrcs.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\orva.exe" = C:\Users\MICHA~1\AppData\Local\Temp\orva.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winichbkl.exe" = C:\Windows\TEMP\winichbkl.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\iaoyur.exe" = C:\Users\MICHA~1\AppData\Local\Temp\iaoyur.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winlqkko.exe" = C:\Windows\TEMP\winlqkko.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\ebpw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ebpw.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winvsseb.exe" = C:\Windows\TEMP\winvsseb.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\rwnqv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\rwnqv.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winprecie.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winprecie.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wdc2771.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wdc2771.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\gbltuy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\gbltuy.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winaipsjf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winaipsjf.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\umye.exe" = C:\Users\MICHA~1\AppData\Local\Temp\umye.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winhmwrbk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhmwrbk.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winabdss.exe" = C:\Windows\TEMP\winabdss.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\fcmmrw.exe" = C:\Windows\TEMP\fcmmrw.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\w123f09b.exe" = C:\Windows\TEMP\w123f09b.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\ckfm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ckfm.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winhjltek.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhjltek.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winelkij.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winelkij.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\windesu.exe" = C:\Windows\TEMP\windesu.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winvgffw.exe" = C:\Windows\TEMP\winvgffw.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winmhhicv.exe" = C:\Windows\TEMP\winmhhicv.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\pnkop.exe" = C:\Users\MICHA~1\AppData\Local\Temp\pnkop.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\clmtrg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\clmtrg.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wintceg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wintceg.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winnwrqfa.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winnwrqfa.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winwcuig.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winwcuig.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winawlxgb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winawlxgb.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wintlgvs.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wintlgvs.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\jnbx.exe" = C:\Windows\TEMP\jnbx.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winqoowpv.exe" = C:\Windows\TEMP\winqoowpv.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\kbek.exe" = C:\Windows\TEMP\kbek.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winpqvvu.exe" = C:\Windows\TEMP\winpqvvu.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winjlek.exe" = C:\Windows\TEMP\winjlek.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\wingncau.exe" = C:\Windows\TEMP\wingncau.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winkifahl.exe" = C:\Windows\TEMP\winkifahl.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winnvjtd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winnvjtd.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\cfsgfn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\cfsgfn.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\dsdb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\dsdb.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winpmau.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winpmau.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winnerk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winnerk.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winhigi.exe" = C:\Windows\TEMP\winhigi.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winlbhxtq.exe" = C:\Windows\TEMP\winlbhxtq.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\huueax.exe" = C:\Windows\TEMP\huueax.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winhspo.exe" = C:\Windows\TEMP\winhspo.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winpsfch.exe" = C:\Windows\TEMP\winpsfch.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winghgbnn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winghgbnn.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winvhjm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winvhjm.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\pkpuhy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\pkpuhy.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winjsic.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winjsic.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winwlqt.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winwlqt.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\pvgmjw.exe" = C:\Windows\TEMP\pvgmjw.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winhtlb.exe" = C:\Windows\TEMP\winhtlb.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\ktdq.exe" = C:\Windows\TEMP\ktdq.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winnidi.exe" = C:\Windows\TEMP\winnidi.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winkjfn.exe" = C:\Windows\TEMP\winkjfn.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winamaldl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winamaldl.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winfgjp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winfgjp.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winbsud.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbsud.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winywpyr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winywpyr.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\axcn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\axcn.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winrbeo.exe" = C:\Windows\TEMP\winrbeo.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winfgyk.exe" = C:\Windows\TEMP\winfgyk.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winiaxukv.exe" = C:\Windows\TEMP\winiaxukv.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winiiqmg.exe" = C:\Windows\TEMP\winiiqmg.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\wingjcgvd.exe" = C:\Windows\TEMP\wingjcgvd.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winuwbr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winuwbr.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winlretme.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winlretme.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\khrn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\khrn.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winwpjsp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winwpjsp.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winwfut.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winwfut.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\dtxs.exe" = C:\Windows\TEMP\dtxs.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winpldu.exe" = C:\Windows\TEMP\winpldu.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winsfhnfg.exe" = C:\Windows\TEMP\winsfhnfg.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winimceq.exe" = C:\Windows\TEMP\winimceq.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winbuysk.exe" = C:\Windows\TEMP\winbuysk.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winvqenpd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winvqenpd.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winbpcfrp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbpcfrp.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winnfbxhs.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winnfbxhs.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\rbvmnp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\rbvmnp.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\hhtlwt.exe" = C:\Users\MICHA~1\AppData\Local\Temp\hhtlwt.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\qkpjsj.exe" = C:\Windows\TEMP\qkpjsj.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winwtbw.exe" = C:\Windows\TEMP\winwtbw.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\srcqbp.exe" = C:\Windows\TEMP\srcqbp.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winxrbxi.exe" = C:\Windows\TEMP\winxrbxi.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winvtopx.exe" = C:\Windows\TEMP\winvtopx.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winaftskc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winaftskc.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winlmvtxl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winlmvtxl.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\otoakv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\otoakv.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\malohk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\malohk.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\windxijhn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\windxijhn.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winotovrr.exe" = C:\Windows\TEMP\winotovrr.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winjbkg.exe" = C:\Windows\TEMP\winjbkg.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winprqcc.exe" = C:\Windows\TEMP\winprqcc.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winqgepxn.exe" = C:\Windows\TEMP\winqgepxn.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winlvsx.exe" = C:\Windows\TEMP\winlvsx.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winirnt.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winirnt.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winmpcb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winmpcb.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winkgli.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winkgli.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winglwgr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winglwgr.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\fvbf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\fvbf.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\lvabpx.exe" = C:\Windows\TEMP\lvabpx.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\windswnwd.exe" = C:\Windows\TEMP\windswnwd.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winwvymmn.exe" = C:\Windows\TEMP\winwvymmn.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winglay.exe" = C:\Windows\TEMP\winglay.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winppbyx.exe" = C:\Windows\TEMP\winppbyx.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winmsqu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winmsqu.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winarvuko.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winarvuko.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\wpgjf.exe" = C:\Windows\TEMP\wpgjf.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winadjvpf.exe" = C:\Windows\TEMP\winadjvpf.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\ysfxfi.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ysfxfi.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winomwb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winomwb.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\ugvg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ugvg.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winukal.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winukal.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winocqir.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winocqir.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\jgrklv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\jgrklv.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\ikox.exe" = C:\Windows\TEMP\ikox.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winicrs.exe" = C:\Windows\TEMP\winicrs.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winfpfxxu.exe" = C:\Windows\TEMP\winfpfxxu.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winhvdgg.exe" = C:\Windows\TEMP\winhvdgg.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\ghwaw.exe" = C:\Windows\TEMP\ghwaw.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winvpxe.exe" = C:\Windows\TEMP\winvpxe.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wbdd92.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wbdd92.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\wf07bd.exe" = C:\Windows\TEMP\wf07bd.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winjuysx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winjuysx.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winiknqgr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winiknqgr.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\nffm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\nffm.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\bhyic.exe" = C:\Users\MICHA~1\AppData\Local\Temp\bhyic.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winofntu.exe" = C:\Windows\TEMP\winofntu.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\wingwegmv.exe" = C:\Windows\TEMP\wingwegmv.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\gqmg.exe" = C:\Windows\TEMP\gqmg.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winidwkuu.exe" = C:\Windows\TEMP\winidwkuu.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\vnyu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\vnyu.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\ovbhe.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ovbhe.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\qplvf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\qplvf.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\lcno.exe" = C:\Users\MICHA~1\AppData\Local\Temp\lcno.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winaley.exe" = C:\Windows\TEMP\winaley.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\mdmq.exe" = C:\Windows\TEMP\mdmq.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\gnuav.exe" = C:\Windows\TEMP\gnuav.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winbvwxqh.exe" = C:\Windows\TEMP\winbvwxqh.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\xxysx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\xxysx.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\sves.exe" = C:\Users\MICHA~1\AppData\Local\Temp\sves.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\ncjq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ncjq.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winngfy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winngfy.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\rrab.exe" = C:\Windows\TEMP\rrab.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\tpugrx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\tpugrx.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\ltruyy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ltruyy.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wincynap.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wincynap.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winqcvrjy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winqcvrjy.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winasccdp.exe" = C:\Windows\TEMP\winasccdp.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\rsxwr.exe" = C:\Windows\TEMP\rsxwr.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\qigit.exe" = C:\Windows\TEMP\qigit.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winsnrscb.exe" = C:\Windows\TEMP\winsnrscb.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winamnhb.exe" = C:\Windows\TEMP\winamnhb.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winmcfjg.exe" = C:\Windows\TEMP\winmcfjg.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\xjdwo.exe" = C:\Windows\TEMP\xjdwo.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winmxawp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winmxawp.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winthlurt.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winthlurt.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wintihxol.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wintihxol.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winjxsa.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winjxsa.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winthnk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winthnk.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\yhtig.exe" = C:\Users\MICHA~1\AppData\Local\Temp\yhtig.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winvftkj.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winvftkj.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\ivac.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ivac.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winprjnwu.exe" = C:\Windows\TEMP\winprjnwu.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\ixuq.exe" = C:\Windows\TEMP\ixuq.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winusyvom.exe" = C:\Windows\TEMP\winusyvom.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winkvije.exe" = C:\Windows\TEMP\winkvije.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winpacqkj.exe" = C:\Windows\TEMP\winpacqkj.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winiddtr.exe" = C:\Windows\TEMP\winiddtr.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\njes.exe" = C:\Windows\TEMP\njes.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\oewuo.exe" = C:\Windows\TEMP\oewuo.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winvgfvdj.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winvgfvdj.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\yexw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\yexw.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\mfchn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\mfchn.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wkhm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wkhm.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winhrajoa.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhrajoa.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\trwcf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\trwcf.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winekvv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winekvv.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winadmp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winadmp.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\ldbqwh.exe" = C:\Windows\TEMP\ldbqwh.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\rngmo.exe" = C:\Windows\TEMP\rngmo.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\wincbao.exe" = C:\Windows\TEMP\wincbao.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\wincsgwq.exe" = C:\Windows\TEMP\wincsgwq.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winjsly.exe" = C:\Windows\TEMP\winjsly.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\outu.exe" = C:\Windows\TEMP\outu.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winlfvj.exe" = C:\Windows\TEMP\winlfvj.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\yrcjd.exe" = C:\Windows\TEMP\yrcjd.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\nqijd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\nqijd.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\hhkei.exe" = C:\Users\MICHA~1\AppData\Local\Temp\hhkei.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winbgyea.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbgyea.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\ninxui.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ninxui.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winrpfkub.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winrpfkub.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winytavqp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winytavqp.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wxce.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wxce.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winclbly.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winclbly.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\vgsdh.exe" = C:\Windows\TEMP\vgsdh.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\boyk.exe" = C:\Windows\TEMP\boyk.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\xhnj.exe" = C:\Windows\TEMP\xhnj.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\mceoey.exe" = C:\Windows\TEMP\mceoey.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winqrrnb.exe" = C:\Windows\TEMP\winqrrnb.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winmigiem.exe" = C:\Windows\TEMP\winmigiem.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winoutao.exe" = C:\Windows\TEMP\winoutao.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winugasl.exe" = C:\Windows\TEMP\winugasl.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winawraau.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winawraau.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\gnwpp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\gnwpp.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\bbbxc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\bbbxc.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winplxps.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winplxps.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\anrd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\anrd.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\elnhc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\elnhc.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winykqce.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winykqce.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winthwd.exe" = C:\Windows\TEMP\winthwd.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winolpjdg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winolpjdg.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\wingkvles.exe" = C:\Windows\TEMP\wingkvles.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\ogingm.exe" = C:\Windows\TEMP\ogingm.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winklasn.exe" = C:\Windows\TEMP\winklasn.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\eane.exe" = C:\Windows\TEMP\eane.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\ugvob.exe" = C:\Windows\TEMP\ugvob.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winbqqgd.exe" = C:\Windows\TEMP\winbqqgd.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winskige.exe" = C:\Windows\TEMP\winskige.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\tdon.exe" = C:\Users\MICHA~1\AppData\Local\Temp\tdon.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winteynx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winteynx.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winkaunn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winkaunn.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wintkxknq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wintkxknq.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winijuh.exe" = C:\Windows\TEMP\winijuh.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winybrjd.exe" = C:\Windows\TEMP\winybrjd.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\obcg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\obcg.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winasfui.exe" = C:\Windows\TEMP\winasfui.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winujny.exe" = C:\Windows\TEMP\winujny.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wincuxnq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wincuxnq.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wincmort.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wincmort.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winokln.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winokln.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\kmxno.exe" = C:\Windows\TEMP\kmxno.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winlvgmdg.exe" = C:\Windows\TEMP\winlvgmdg.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\roog.exe" = C:\Windows\TEMP\roog.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\wintimeac.exe" = C:\Windows\TEMP\wintimeac.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winwvihl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winwvihl.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winnwhd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winnwhd.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winhscjg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhscjg.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\rpaex.exe" = C:\Users\MICHA~1\AppData\Local\Temp\rpaex.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\mlqav.exe" = C:\Windows\TEMP\mlqav.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\etbaf.exe" = C:\Windows\TEMP\etbaf.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\wintnee.exe" = C:\Windows\TEMP\wintnee.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winloqo.exe" = C:\Windows\TEMP\winloqo.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winopmy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winopmy.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\nupqh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\nupqh.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winiuin.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winiuin.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\bqrtj.exe" = C:\Users\MICHA~1\AppData\Local\Temp\bqrtj.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winavhd.exe" = C:\Windows\TEMP\winavhd.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\bwkhm.exe" = C:\Windows\TEMP\bwkhm.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winseqrlk.exe" = C:\Windows\TEMP\winseqrlk.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\tvoi.exe" = C:\Windows\TEMP\tvoi.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\sofej.exe" = C:\Users\MICHA~1\AppData\Local\Temp\sofej.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\qwtvs.exe" = C:\Users\MICHA~1\AppData\Local\Temp\qwtvs.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winmmxu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winmmxu.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winuwmejk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winuwmejk.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\lhnm.exe" = C:\Windows\TEMP\lhnm.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winhidm.exe" = C:\Windows\TEMP\winhidm.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winwnjs.exe" = C:\Windows\TEMP\winwnjs.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winygvqtr.exe" = C:\Windows\TEMP\winygvqtr.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winjlhkm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winjlhkm.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winjpuk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winjpuk.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winbmkbyk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbmkbyk.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winqkst.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winqkst.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\hmlx.exe" = C:\Windows\TEMP\hmlx.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winbahu.exe" = C:\Windows\TEMP\winbahu.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\tytetw.exe" = C:\Windows\TEMP\tytetw.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\rwip.exe" = C:\Windows\TEMP\rwip.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\yjdfq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\yjdfq.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\xddwh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\xddwh.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winbqup.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbqup.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\bdec.exe" = C:\Users\MICHA~1\AppData\Local\Temp\bdec.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\nkrpe.exe" = C:\Windows\TEMP\nkrpe.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\bkgp.exe" = C:\Windows\TEMP\bkgp.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winykgj.exe" = C:\Windows\TEMP\winykgj.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winqgadi.exe" = C:\Windows\TEMP\winqgadi.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\fhioqi.exe" = C:\Users\MICHA~1\AppData\Local\Temp\fhioqi.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winexac.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winexac.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\quvhpr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\quvhpr.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\obrpf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\obrpf.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\wipox.exe" = C:\Windows\TEMP\wipox.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\oovf.exe" = C:\Windows\TEMP\oovf.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\xfjhfa.exe" = C:\Windows\TEMP\xfjhfa.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\rnaeqr.exe" = C:\Windows\TEMP\rnaeqr.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winyahqca.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winyahqca.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\axmbuo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\axmbuo.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\xigovs.exe" = C:\Users\MICHA~1\AppData\Local\Temp\xigovs.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\hggj.exe" = C:\Users\MICHA~1\AppData\Local\Temp\hggj.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\uvaipe.exe" = C:\Windows\TEMP\uvaipe.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winsayeab.exe" = C:\Windows\TEMP\winsayeab.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winlstbi.exe" = C:\Windows\TEMP\winlstbi.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winetfew.exe" = C:\Windows\TEMP\winetfew.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\jgni.exe" = C:\Users\MICHA~1\AppData\Local\Temp\jgni.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\windxmjm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\windxmjm.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\hciir.exe" = C:\Users\MICHA~1\AppData\Local\Temp\hciir.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\gblg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\gblg.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winmkwv.exe" = C:\Windows\TEMP\winmkwv.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winpwns.exe" = C:\Windows\TEMP\winpwns.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winmakht.exe" = C:\Windows\TEMP\winmakht.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\luqp.exe" = C:\Windows\TEMP\luqp.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winrcij.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winrcij.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winiuvrcr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winiuvrcr.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winsxmrac.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winsxmrac.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wintipg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wintipg.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winhbjqyf.exe" = C:\Windows\TEMP\winhbjqyf.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\windbicu.exe" = C:\Windows\TEMP\windbicu.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\hwgmat.exe" = C:\Windows\TEMP\hwgmat.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\iqnae.exe" = C:\Windows\TEMP\iqnae.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\rxyavs.exe" = C:\Users\MICHA~1\AppData\Local\Temp\rxyavs.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\qcuj.exe" = C:\Users\MICHA~1\AppData\Local\Temp\qcuj.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\uhyeo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\uhyeo.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\ujjwb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ujjwb.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winnixqws.exe" = C:\Windows\TEMP\winnixqws.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winnfsw.exe" = C:\Windows\TEMP\winnfsw.exe:*:Enabled:ipsec -- File not found
"G:\Programy\Gadu-Gadu\gg.exe" = G:\Programy\Gadu-Gadu\gg.exe:*:Enabled:ipsec -- (sms-express.com)
"C:\Windows\TEMP\winuucn.exe" = C:\Windows\TEMP\winuucn.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\oastp.exe" = C:\Windows\TEMP\oastp.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winoxvj.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winoxvj.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winxksd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winxksd.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winphduoy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winphduoy.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\cqbgox.exe" = C:\Users\MICHA~1\AppData\Local\Temp\cqbgox.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winwppgo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winwppgo.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wingsih.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wingsih.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\w90991.exe" = C:\Users\MICHA~1\AppData\Local\Temp\w90991.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\wb2970.exe" = C:\Windows\TEMP\wb2970.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winyjxs.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winyjxs.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wincdvp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wincdvp.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winjrcmgp.exe" = C:\Windows\TEMP\winjrcmgp.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\rdutej.exe" = C:\Users\MICHA~1\AppData\Local\Temp\rdutej.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winarihw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winarihw.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\pqgug.exe" = C:\Windows\TEMP\pqgug.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winkjhmu.exe" = C:\Windows\TEMP\winkjhmu.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winoyiloc.exe" = C:\Windows\TEMP\winoyiloc.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winoeqfo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winoeqfo.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winuqqwdu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winuqqwdu.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\nofva.exe" = C:\Users\MICHA~1\AppData\Local\Temp\nofva.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winnaosas.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winnaosas.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winpmrjs.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winpmrjs.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winkudyeb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winkudyeb.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winougodx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winougodx.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winnqej.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winnqej.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winwwemcb.exe" = C:\Windows\TEMP\winwwemcb.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winccllqs.exe" = C:\Windows\TEMP\winccllqs.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\wincmrj.exe" = C:\Windows\TEMP\wincmrj.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winiaiey.exe" = C:\Windows\TEMP\winiaiey.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\yycnh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\yycnh.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\pxvp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\pxvp.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\pswiv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\pswiv.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\windmowm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\windmowm.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winhjmtee.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhjmtee.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winkxdvu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winkxdvu.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winjrjsgn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winjrjsgn.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\sxlg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\sxlg.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\wperrj.exe" = C:\Windows\TEMP\wperrj.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\lpdpl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\lpdpl.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winsrul.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winsrul.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\pbobv.exe" = C:\Windows\TEMP\pbobv.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\fjdl.exe" = C:\Windows\TEMP\fjdl.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winsycjdu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winsycjdu.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\tlamn.exe" = C:\Windows\TEMP\tlamn.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winbkwihf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbkwihf.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wingkohi.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wingkohi.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\spxx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\spxx.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\iuqcxw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\iuqcxw.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winjejtdm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winjejtdm.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\sasq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\sasq.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winxbrkw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winxbrkw.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\vjtl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\vjtl.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\rgorqi.exe" = C:\Windows\TEMP\rgorqi.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\oetw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\oetw.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winnaweg.exe" = C:\Windows\TEMP\winnaweg.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\ygnebc.exe" = C:\Windows\TEMP\ygnebc.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\ttvw.exe" = C:\Windows\TEMP\ttvw.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winseqnyf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winseqnyf.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\imfm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\imfm.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wintelaht.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wintelaht.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winqftvpj.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winqftvpj.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\jyhdvt.exe" = C:\Users\MICHA~1\AppData\Local\Temp\jyhdvt.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\ritdjq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ritdjq.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\aods.exe" = C:\Users\MICHA~1\AppData\Local\Temp\aods.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winmepmns.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winmepmns.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winxmphq.exe" = C:\Windows\TEMP\winxmphq.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winpmiyl.exe" = C:\Windows\TEMP\winpmiyl.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winkqdnfo.exe" = C:\Windows\TEMP\winkqdnfo.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\ejpsl.exe" = C:\Windows\TEMP\ejpsl.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winfhbg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winfhbg.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\qqol.exe" = C:\Users\MICHA~1\AppData\Local\Temp\qqol.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\ynhs.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ynhs.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winamul.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winamul.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winmrwl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winmrwl.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winqjilko.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winqjilko.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\windhfu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\windhfu.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\glxvl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\glxvl.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winpapvsa.exe" = C:\Windows\TEMP\winpapvsa.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\vsxp.exe" = C:\Windows\TEMP\vsxp.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\gknown.exe" = C:\Windows\TEMP\gknown.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winwddpcn.exe" = C:\Windows\TEMP\winwddpcn.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\gfihir.exe" = C:\Users\MICHA~1\AppData\Local\Temp\gfihir.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\yiox.exe" = C:\Users\MICHA~1\AppData\Local\Temp\yiox.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winakoc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winakoc.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winsqyoa.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winsqyoa.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wingaydpk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wingaydpk.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wintdvaqo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wintdvaqo.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winduvlsf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winduvlsf.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\vweo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\vweo.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\iqppyg.exe" = C:\Windows\TEMP\iqppyg.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\cjxxe.exe" = C:\Windows\TEMP\cjxxe.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\wingfot.exe" = C:\Windows\TEMP\wingfot.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winerel.exe" = C:\Windows\TEMP\winerel.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\anfi.exe" = C:\Users\MICHA~1\AppData\Local\Temp\anfi.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winonsxq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winonsxq.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winsekix.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winsekix.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\sgwfdt.exe" = C:\Users\MICHA~1\AppData\Local\Temp\sgwfdt.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winbhdn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbhdn.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wincwbj.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wincwbj.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winnftewe.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winnftewe.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\xdriox.exe" = C:\Users\MICHA~1\AppData\Local\Temp\xdriox.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\wlty.exe" = C:\Windows\TEMP\wlty.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winptchq.exe" = C:\Windows\TEMP\winptchq.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winfekdv.exe" = C:\Windows\TEMP\winfekdv.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winwfhgso.exe" = C:\Windows\TEMP\winwfhgso.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\asok.exe" = C:\Users\MICHA~1\AppData\Local\Temp\asok.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winieewsn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winieewsn.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winllcn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winllcn.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\ghtq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ghtq.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\oxxtyw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\oxxtyw.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winsvvad.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winsvvad.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winhinx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhinx.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winlugp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winlugp.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\pbxs.exe" = C:\Windows\TEMP\pbxs.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\qdxc.exe" = C:\Windows\TEMP\qdxc.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\wincuxtcq.exe" = C:\Windows\TEMP\wincuxtcq.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\xflrql.exe" = C:\Windows\TEMP\xflrql.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\oqnxe.exe" = C:\Users\MICHA~1\AppData\Local\Temp\oqnxe.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winiibqeu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winiibqeu.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winlxncad.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winlxncad.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winnsxd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winnsxd.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\jjth.exe" = C:\Users\MICHA~1\AppData\Local\Temp\jjth.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\htgojg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\htgojg.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winvuuv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winvuuv.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wcvs.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wcvs.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\ewjio.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ewjio.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winntgd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winntgd.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winmesg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winmesg.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wintimvne.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wintimvne.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\lhevhm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\lhevhm.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winsstit.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winsstit.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\yitvbf.exe" = C:\Windows\TEMP\yitvbf.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winvqjy.exe" = C:\Windows\TEMP\winvqjy.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winvqpkn.exe" = C:\Windows\TEMP\winvqpkn.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\wineewlc.exe" = C:\Windows\TEMP\wineewlc.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\w9b52b.exe" = C:\Users\MICHA~1\AppData\Local\Temp\w9b52b.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\wb45f5.exe" = C:\Windows\TEMP\wb45f5.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\toosw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\toosw.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\dguk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\dguk.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winycjt.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winycjt.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\abii.exe" = C:\Users\MICHA~1\AppData\Local\Temp\abii.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wffkwh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wffkwh.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\badncq.exe" = C:\Windows\TEMP\badncq.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winccnevt.exe" = C:\Windows\TEMP\winccnevt.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\windjmtar.exe" = C:\Windows\TEMP\windjmtar.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winbgtwp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbgtwp.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winnbimqh.exe" = C:\Windows\TEMP\winnbimqh.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winetjt.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winetjt.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winsqktcd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winsqktcd.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winqcmapx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winqcmapx.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winvihw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winvihw.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\gsoo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\gsoo.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winelwfbn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winelwfbn.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\nyydxn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\nyydxn.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\jwgfei.exe" = C:\Users\MICHA~1\AppData\Local\Temp\jwgfei.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wykvas.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wykvas.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winqmjrpf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winqmjrpf.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\lrfj.exe" = C:\Users\MICHA~1\AppData\Local\Temp\lrfj.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winpxqne.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winpxqne.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winupagjs.exe" = C:\Windows\TEMP\winupagjs.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winasjw.exe" = C:\Windows\TEMP\winasjw.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winkhiyy.exe" = C:\Windows\TEMP\winkhiyy.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\windwpi.exe" = C:\Windows\TEMP\windwpi.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\w9696c.exe" = C:\Users\MICHA~1\AppData\Local\Temp\w9696c.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\wba67b.exe" = C:\Windows\TEMP\wba67b.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wineooi.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wineooi.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winihwa.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winihwa.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winmgxb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winmgxb.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\ykrgk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ykrgk.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winbusqr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbusqr.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winvdhw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winvdhw.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\etdxai.exe" = C:\Users\MICHA~1\AppData\Local\Temp\etdxai.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winyiweaa.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winyiweaa.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winrcjhtr.exe" = C:\Windows\TEMP\winrcjhtr.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\gbvno.exe" = C:\Windows\TEMP\gbvno.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\kriwi.exe" = C:\Windows\TEMP\kriwi.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winpkvli.exe" = C:\Windows\TEMP\winpkvli.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winebpx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winebpx.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winpgmddv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winpgmddv.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\rtjq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\rtjq.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\qsui.exe" = C:\Users\MICHA~1\AppData\Local\Temp\qsui.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winorrqw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winorrqw.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\windoohr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\windoohr.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winhshf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhshf.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winckhd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winckhd.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\bjniwt.exe" = C:\Windows\TEMP\bjniwt.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\fdcjb.exe" = C:\Windows\TEMP\fdcjb.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\wincruuus.exe" = C:\Windows\TEMP\wincruuus.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winogjr.exe" = C:\Windows\TEMP\winogjr.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\hbaet.exe" = C:\Users\MICHA~1\AppData\Local\Temp\hbaet.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winptrseu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winptrseu.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winqtcam.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winqtcam.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\quyj.exe" = C:\Users\MICHA~1\AppData\Local\Temp\quyj.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\trmn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\trmn.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\pidja.exe" = C:\Users\MICHA~1\AppData\Local\Temp\pidja.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winietsko.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winietsko.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winqjgrn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winqjgrn.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\wincpwb.exe" = C:\Windows\TEMP\wincpwb.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winakhipm.exe" = C:\Windows\TEMP\winakhipm.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\tstln.exe" = C:\Windows\TEMP\tstln.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\xvgfkm.exe" = C:\Windows\TEMP\xvgfkm.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\rjdyaq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\rjdyaq.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wingvusu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wingvusu.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\hreec.exe" = C:\Users\MICHA~1\AppData\Local\Temp\hreec.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winxqnsgi.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winxqnsgi.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winuxljj.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winuxljj.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\kkos.exe" = C:\Users\MICHA~1\AppData\Local\Temp\kkos.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\ahst.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ahst.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winkddm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winkddm.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\aagum.exe" = C:\Windows\TEMP\aagum.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\lembal.exe" = C:\Windows\TEMP\lembal.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\gwhouy.exe" = C:\Windows\TEMP\gwhouy.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\xqmowj.exe" = C:\Windows\TEMP\xqmowj.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winfonn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winfonn.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\sygwte.exe" = C:\Users\MICHA~1\AppData\Local\Temp\sygwte.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winpgry.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winpgry.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\uliqh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\uliqh.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wineyfwuw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wineyfwuw.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winqjnewj.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winqjnewj.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\qeswih.exe" = C:\Users\MICHA~1\AppData\Local\Temp\qeswih.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wintyyd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wintyyd.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\gqghlx.exe" = C:\Windows\TEMP\gqghlx.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\tfjug.exe" = C:\Windows\TEMP\tfjug.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\ggysu.exe" = C:\Windows\TEMP\ggysu.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winyyymjf.exe" = C:\Windows\TEMP\winyyymjf.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\denf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\denf.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winanjmqh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winanjmqh.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\uupi.exe" = C:\Users\MICHA~1\AppData\Local\Temp\uupi.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winlmgwtq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winlmgwtq.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\cageti.exe" = C:\Users\MICHA~1\AppData\Local\Temp\cageti.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\dvwsc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\dvwsc.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winkync.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winkync.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winpvgo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winpvgo.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\dgxs.exe" = C:\Windows\TEMP\dgxs.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winrwqglo.exe" = C:\Windows\TEMP\winrwqglo.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winqtxsp.exe" = C:\Windows\TEMP\winqtxsp.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winngdbxw.exe" = C:\Windows\TEMP\winngdbxw.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\windlcwxm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\windlcwxm.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winooqu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winooqu.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winjrfrpb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winjrfrpb.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\lallt.exe" = C:\Users\MICHA~1\AppData\Local\Temp\lallt.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\gtugxx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\gtugxx.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\yuxoig.exe" = C:\Users\MICHA~1\AppData\Local\Temp\yuxoig.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winchcwgk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winchcwgk.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wintnrip.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wintnrip.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\qvjucr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\qvjucr.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\irkslt.exe" = C:\Users\MICHA~1\AppData\Local\Temp\irkslt.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\ebsy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ebsy.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winqryprc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winqryprc.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winufahyn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winufahyn.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\ktofr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ktofr.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\lbkols.exe" = C:\Users\MICHA~1\AppData\Local\Temp\lbkols.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\ahcqh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ahcqh.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winapqp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winapqp.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\tdyy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\tdyy.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winmwpx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winmwpx.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wineiwdn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wineiwdn.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winrnrwl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winrnrwl.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\higjtp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\higjtp.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winrtxxbn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winrtxxbn.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winxatx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winxatx.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\fdha.exe" = C:\Users\MICHA~1\AppData\Local\Temp\fdha.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winuxmnfl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winuxmnfl.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\vmqui.exe" = C:\Users\MICHA~1\AppData\Local\Temp\vmqui.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\vchvw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\vchvw.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winltepgv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winltepgv.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winaqvtx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winaqvtx.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winwdbaeu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winwdbaeu.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\pdsl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\pdsl.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wintaup.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wintaup.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winkcgr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winkcgr.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\jxnbe.exe" = C:\Users\MICHA~1\AppData\Local\Temp\jxnbe.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winmbotco.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winmbotco.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\fujgfm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\fujgfm.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\pujbn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\pujbn.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winnkgn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winnkgn.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\sbngor.exe" = C:\Users\MICHA~1\AppData\Local\Temp\sbngor.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wintrjs.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wintrjs.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winhppww.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhppww.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\windpqov.exe" = C:\Users\MICHA~1\AppData\Local\Temp\windpqov.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winkvgc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winkvgc.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winvbnu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winvbnu.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winlkrju.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winlkrju.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winwcdjf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winwcdjf.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winpjcin.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winpjcin.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\psep.exe" = C:\Users\MICHA~1\AppData\Local\Temp\psep.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winkelerp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winkelerp.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winwnxu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winwnxu.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winulfh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winulfh.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winqugc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winqugc.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\cemqsf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\cemqsf.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winfbtbhc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winfbtbhc.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winrvpveo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winrvpveo.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winmpeyh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winmpeyh.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\hetsec.exe" = C:\Users\MICHA~1\AppData\Local\Temp\hetsec.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\ucwskf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ucwskf.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winslvdc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winslvdc.exe:*:Enabled:ipsec -- File not found
"C:\Program Files\WIDCOMM\Bluetooth Software\BtStackServer.exe" = C:\Program Files\WIDCOMM\Bluetooth Software\BtStackServer.exe:*:Enabled:ipsec -- (Broadcom Corporation.)
"C:\Windows\TEMP\winfgsk.exe" = C:\Windows\TEMP\winfgsk.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\mwjl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\mwjl.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winutih.exe" = C:\Windows\TEMP\winutih.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\pmbd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\pmbd.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winwcllm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winwcllm.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winybcbgx.exe" = C:\Windows\TEMP\winybcbgx.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\w9fa64.exe" = C:\Users\MICHA~1\AppData\Local\Temp\w9fa64.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\wa3ba8.exe" = C:\Windows\TEMP\wa3ba8.exe:*:Enabled:ipsec -- File not found
"G:\Programy\WinRAR\WinRAR.exe" = G:\Programy\WinRAR\WinRAR.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\uxjbf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\uxjbf.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\malekw.exe" = C:\Windows\TEMP\malekw.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\jxnku.exe" = C:\Users\MICHA~1\AppData\Local\Temp\jxnku.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winuymvq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winuymvq.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\windauhcy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\windauhcy.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winnufiv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winnufiv.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\w9317b.exe" = C:\Users\MICHA~1\AppData\Local\Temp\w9317b.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winjinayl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winjinayl.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winsigj.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winsigj.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winfoycny.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winfoycny.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wintvst.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wintvst.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winhkghl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhkghl.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wa297f.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wa297f.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\vqyugn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\vqyugn.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\gvedd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\gvedd.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\kvsl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\kvsl.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\ctard.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ctard.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\windgccd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\windgccd.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\oaty.exe" = C:\Users\MICHA~1\AppData\Local\Temp\oaty.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\pksb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\pksb.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\bucwo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\bucwo.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winxuytbm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winxuytbm.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winjlmfn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winjlmfn.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winaeatp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winaeatp.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winkguxpy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winkguxpy.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winfaco.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winfaco.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\w8401b.exe" = C:\Users\MICHA~1\AppData\Local\Temp\w8401b.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winmpbg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winmpbg.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winnqhsw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winnqhsw.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winvjhnjw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winvjhnjw.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wklk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wklk.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\w845c6.exe" = C:\Users\MICHA~1\AppData\Local\Temp\w845c6.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\nveb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\nveb.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winjkqgac.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winjkqgac.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\ictn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ictn.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\yfdjat.exe" = C:\Users\MICHA~1\AppData\Local\Temp\yfdjat.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\ksgsax.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ksgsax.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winmujd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winmujd.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winikntcy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winikntcy.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\yhfrr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\yhfrr.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\mmipjj.exe" = C:\Users\MICHA~1\AppData\Local\Temp\mmipjj.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\nfqek.exe" = C:\Users\MICHA~1\AppData\Local\Temp\nfqek.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winbwkf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbwkf.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\hrrgms.exe" = C:\Users\MICHA~1\AppData\Local\Temp\hrrgms.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winjdagy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winjdagy.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\windfaq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\windfaq.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\trakxo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\trakxo.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\vsxxk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\vsxxk.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\w8b7aa.exe" = C:\Users\MICHA~1\AppData\Local\Temp\w8b7aa.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\windlhfu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\windlhfu.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\dsbsc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\dsbsc.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\hbffi.exe" = C:\Users\MICHA~1\AppData\Local\Temp\hbffi.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winhcbwg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhcbwg.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\oddgb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\oddgb.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\fqea.exe" = C:\Users\MICHA~1\AppData\Local\Temp\fqea.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\nahlfl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\nahlfl.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\egvp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\egvp.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winamnrxq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winamnrxq.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\turu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\turu.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\efvh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\efvh.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\mvruk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\mvruk.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winbslaa.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbslaa.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winwmeuy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winwmeuy.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winasalk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winasalk.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\dvlt.exe" = C:\Users\MICHA~1\AppData\Local\Temp\dvlt.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winqdffne.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winqdffne.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winqpcd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winqpcd.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winrgxvuf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winrgxvuf.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\cwybgy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\cwybgy.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winomji.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winomji.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\crtwlg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\crtwlg.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\ewdqnw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ewdqnw.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winpcgnqc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winpcgnqc.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\qbbjo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\qbbjo.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winoremm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winoremm.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\windrcvh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\windrcvh.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wineyyy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wineyyy.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\hcsq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\hcsq.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winirkfek.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winirkfek.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winjumbu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winjumbu.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\jstn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\jstn.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winjxojd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winjxojd.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\ucbdc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ucbdc.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wincgfisd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wincgfisd.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\xhha.exe" = C:\Users\MICHA~1\AppData\Local\Temp\xhha.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\eexmgb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\eexmgb.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\rpfju.exe" = C:\Users\MICHA~1\AppData\Local\Temp\rpfju.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winmjsc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winmjsc.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\onuwie.exe" = C:\Users\MICHA~1\AppData\Local\Temp\onuwie.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winspax.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winspax.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winycvtwl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winycvtwl.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\pxvfx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\pxvfx.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winlvna.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winlvna.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\orbnf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\orbnf.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\pbrurc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\pbrurc.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wintbuc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wintbuc.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\epweey.exe" = C:\Users\MICHA~1\AppData\Local\Temp\epweey.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\ueygle.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ueygle.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winvtqyv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winvtqyv.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winbytu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbytu.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winmkugiq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winmkugiq.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wineplir.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wineplir.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\ayjbf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ayjbf.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\w7e790.exe" = C:\Users\MICHA~1\AppData\Local\Temp\w7e790.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winteslyh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winteslyh.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winmbrb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winmbrb.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winhnasn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhnasn.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\xpnwyk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\xpnwyk.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winwkdwqo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winwkdwqo.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winfqmax.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winfqmax.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\mdcrk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\mdcrk.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winkgsnjg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winkgsnjg.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winpkvihc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winpkvihc.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winsyybj.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winsyybj.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wingymtdh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wingymtdh.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\cvbld.exe" = C:\Users\MICHA~1\AppData\Local\Temp\cvbld.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\jefng.exe" = C:\Users\MICHA~1\AppData\Local\Temp\jefng.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winwrts.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winwrts.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\oftde.exe" = C:\Users\MICHA~1\AppData\Local\Temp\oftde.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winwbhs.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winwbhs.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winhprk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhprk.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\uytqwk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\uytqwk.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winuyrdiq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winuyrdiq.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\xqxjy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\xqxjy.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winbuefxa.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbuefxa.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\yabftq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\yabftq.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winbgsihv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbgsihv.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winaelnmb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winaelnmb.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winryveys.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winryveys.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winuroi.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winuroi.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\chxdai.exe" = C:\Users\MICHA~1\AppData\Local\Temp\chxdai.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\knijv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\knijv.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winrmfsmv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winrmfsmv.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\xwxfx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\xwxfx.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winlwlh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winlwlh.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winoxpq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winoxpq.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\dfclj.exe" = C:\Users\MICHA~1\AppData\Local\Temp\dfclj.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winrmvy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winrmvy.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\cwsd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\cwsd.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\rxaq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\rxaq.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winusrpjp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winusrpjp.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winyxxt.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winyxxt.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winaicc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winaicc.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winaumbu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winaumbu.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\esgew.exe" = C:\Users\MICHA~1\AppData\Local\Temp\esgew.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\sfhxll.exe" = C:\Users\MICHA~1\AppData\Local\Temp\sfhxll.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\pfoh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\pfoh.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winvalq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winvalq.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\upxfa.exe" = C:\Users\MICHA~1\AppData\Local\Temp\upxfa.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winjrplos.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winjrplos.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winybcprg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winybcprg.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winxhpny.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winxhpny.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\ewalpx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ewalpx.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winlmhpd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winlmhpd.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\windplfv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\windplfv.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winuhvm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winuhvm.exe:*:Enabled:ipsec -- File not found
"G:\Programy\MediaMonkey\MediaMonkey.exe" = G:\Programy\MediaMonkey\MediaMonkey.exe:*:Enabled:ipsec -- (Ventis Media Inc.)
"C:\Users\MICHA~1\AppData\Local\Temp\dfgq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\dfgq.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\jhgp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\jhgp.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\emxtk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\emxtk.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winukgmr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winukgmr.exe:*:Enabled:ipsec -- File not found
"G:\Programy\DeepBurner\Uninstall.exe" = G:\Programy\DeepBurner\Uninstall.exe:*:Enabled:ipsec -- File not found
"G:\Programy\Opera\opera.exe" = G:\Programy\Opera\opera.exe:*:Enabled:ipsec -- (Opera Software)
"C:\Users\MICHA~1\AppData\Local\Temp\winsuwmfe.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winsuwmfe.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\hgcddp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\hgcddp.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\ikwmk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ikwmk.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\nkbpk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\nkbpk.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winsdhd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winsdhd.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winkjuy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winkjuy.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wcb1a2.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wcb1a2.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\aace.exe" = C:\Users\MICHA~1\AppData\Local\Temp\aace.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\gigdcg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\gigdcg.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\hmbln.exe" = C:\Users\MICHA~1\AppData\Local\Temp\hmbln.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\buaaay.exe" = C:\Users\MICHA~1\AppData\Local\Temp\buaaay.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winusfas.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winusfas.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\vbvfkj.exe" = C:\Users\MICHA~1\AppData\Local\Temp\vbvfkj.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winyrey.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winyrey.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winkmghqs.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winkmghqs.exe:*:Enabled:ipsec -- File not found
"C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" = C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe:*:Enabled:ipsec -- (Google Inc.)
"C:\Windows\TEMP\mtulvm.exe" = C:\Windows\TEMP\mtulvm.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\pbar.exe" = C:\Windows\TEMP\pbar.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winssni.exe" = C:\Windows\TEMP\winssni.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winbhweo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbhweo.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\wineycyk.exe" = C:\Windows\TEMP\wineycyk.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\jfeff.exe" = C:\Windows\TEMP\jfeff.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\aicq.exe" = C:\Windows\TEMP\aicq.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\onvuk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\onvuk.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winaaacep.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winaaacep.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\niray.exe" = C:\Users\MICHA~1\AppData\Local\Temp\niray.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\bovq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\bovq.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\njodh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\njodh.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\rnwf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\rnwf.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\mcgbd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\mcgbd.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\oywtj.exe" = C:\Users\MICHA~1\AppData\Local\Temp\oywtj.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winbdkpcq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbdkpcq.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\w8780c.exe" = C:\Users\MICHA~1\AppData\Local\Temp\w8780c.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\w877cd.exe" = C:\Windows\TEMP\w877cd.exe:*:Enabled:ipsec -- File not found
"G:\Programy\defragmentator dysku\PDAgentS1.exe" = G:\Programy\defragmentator dysku\PDAgentS1.exe:*:Enabled:ipsec -- (Raxco Software, Inc.)
"C:\Users\MICHA~1\AppData\Local\Temp\winbcem.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbcem.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winhgni.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhgni.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\iwqfba.exe" = C:\Users\MICHA~1\AppData\Local\Temp\iwqfba.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winppjag.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winppjag.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winreqk.exe" = C:\Windows\TEMP\winreqk.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\wtxm.exe" = C:\Windows\TEMP\wtxm.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winsmucm.exe" = C:\Windows\TEMP\winsmucm.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\yluafm.exe" = C:\Windows\TEMP\yluafm.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winywyst.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winywyst.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winkibo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winkibo.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winncfmk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winncfmk.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winefaaby.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winefaaby.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\nndwpf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\nndwpf.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wefnj.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wefnj.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winuoyo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winuoyo.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winafxriu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winafxriu.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\dkfyty.exe" = C:\Users\MICHA~1\AppData\Local\Temp\dkfyty.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winnqlju.exe" = C:\Windows\TEMP\winnqlju.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winbbbaq.exe" = C:\Windows\TEMP\winbbbaq.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winkvoq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winkvoq.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\hpcrmq.exe" = C:\Windows\TEMP\hpcrmq.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\wnscd.exe" = C:\Windows\TEMP\wnscd.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winwvkjf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winwvkjf.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winwrvan.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winwrvan.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winkfsuw.exe" = C:\Windows\TEMP\winkfsuw.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winuxdbjd.exe" = C:\Windows\TEMP\winuxdbjd.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\cwxapy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\cwxapy.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winqgqyvp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winqgqyvp.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\bslu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\bslu.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winwgpiq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winwgpiq.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winvgqqf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winvgqqf.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winkolo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winkolo.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\w806c3.exe" = C:\Users\MICHA~1\AppData\Local\Temp\w806c3.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\w87fd9.exe" = C:\Windows\TEMP\w87fd9.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winkoyg.exe" = C:\Windows\TEMP\winkoyg.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\efpxak.exe" = C:\Users\MICHA~1\AppData\Local\Temp\efpxak.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\lgtw.exe" = C:\Windows\TEMP\lgtw.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\oqbsj.exe" = C:\Windows\TEMP\oqbsj.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\nntml.exe" = C:\Windows\TEMP\nntml.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winkwjx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winkwjx.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\pqew.exe" = C:\Users\MICHA~1\AppData\Local\Temp\pqew.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wincqwwhh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wincqwwhh.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winqhkw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winqhkw.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wsbx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wsbx.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winvbumos.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winvbumos.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wsll.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wsll.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winmdnl.exe" = C:\Windows\TEMP\winmdnl.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winojem.exe" = C:\Windows\TEMP\winojem.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\xcov.exe" = C:\Windows\TEMP\xcov.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\ahsuvh.exe" = C:\Windows\TEMP\ahsuvh.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\krvl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\krvl.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winvoym.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winvoym.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winhsyo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhsyo.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winvjbqxb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winvjbqxb.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winfxuhkw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winfxuhkw.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\sbfm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\sbfm.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winacjnb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winacjnb.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wintgwgwy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wintgwgwy.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\rdrva.exe" = C:\Windows\TEMP\rdrva.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winmnmkc.exe" = C:\Windows\TEMP\winmnmkc.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winafav.exe" = C:\Windows\TEMP\winafav.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\mwlmg.exe" = C:\Windows\TEMP\mwlmg.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winvuyshl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winvuyshl.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\dtrkqa.exe" = C:\Users\MICHA~1\AppData\Local\Temp\dtrkqa.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wintjvdh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wintjvdh.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wcclb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wcclb.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\vbobov.exe" = C:\Users\MICHA~1\AppData\Local\Temp\vbobov.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wingljkgx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wingljkgx.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\ujcowa.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ujcowa.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winpqtgk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winpqtgk.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\windhcul.exe" = C:\Windows\TEMP\windhcul.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winkdwof.exe" = C:\Windows\TEMP\winkdwof.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\ohfxig.exe" = C:\Windows\TEMP\ohfxig.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\vdlkn.exe" = C:\Windows\TEMP\vdlkn.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wfwb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wfwb.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\mkmq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\mkmq.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winyhmhqv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winyhmhqv.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winjrvnov.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winjrvnov.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\buij.exe" = C:\Users\MICHA~1\AppData\Local\Temp\buij.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winwllbl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winwllbl.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\tuxyvv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\tuxyvv.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winaitx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winaitx.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\bqdnh.exe" = C:\Windows\TEMP\bqdnh.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\arhujx.exe" = C:\Windows\TEMP\arhujx.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winukueev.exe" = C:\Windows\TEMP\winukueev.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winycecgp.exe" = C:\Windows\TEMP\winycecgp.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\jayh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\jayh.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wintase.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wintase.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winskng.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winskng.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\hghln.exe" = C:\Users\MICHA~1\AppData\Local\Temp\hghln.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\coijn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\coijn.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\bmkk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\bmkk.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winwqlxqw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winwqlxqw.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winpoebnm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winpoebnm.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\okkc.exe" = C:\Windows\TEMP\okkc.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winvdqb.exe" = C:\Windows\TEMP\winvdqb.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winmlfadp.exe" = C:\Windows\TEMP\winmlfadp.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\iuiy.exe" = C:\Windows\TEMP\iuiy.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wintwnef.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wintwnef.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\nfcvau.exe" = C:\Users\MICHA~1\AppData\Local\Temp\nfcvau.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winjsitoo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winjsitoo.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winmerv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winmerv.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winvccy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winvccy.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\windsatvr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\windsatvr.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\mwnt.exe" = C:\Users\MICHA~1\AppData\Local\Temp\mwnt.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\hnyumj.exe" = C:\Users\MICHA~1\AppData\Local\Temp\hnyumj.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winvxswlk.exe" = C:\Windows\TEMP\winvxswlk.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winuncqk.exe" = C:\Windows\TEMP\winuncqk.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\rrlfcq.exe" = C:\Windows\TEMP\rrlfcq.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\hvyjo.exe" = C:\Windows\TEMP\hvyjo.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winbkktl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbkktl.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winjaxij.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winjaxij.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wintudh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wintudh.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winouuro.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winouuro.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winqdje.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winqdje.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winifvhn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winifvhn.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winagvtp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winagvtp.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\ruuhd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ruuhd.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winuilv.exe" = C:\Windows\TEMP\winuilv.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winfpcx.exe" = C:\Windows\TEMP\winfpcx.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winhsiqkc.exe" = C:\Windows\TEMP\winhsiqkc.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\wineabiik.exe" = C:\Windows\TEMP\wineabiik.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\rsauw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\rsauw.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wintwpyyf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wintwpyyf.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\mcnxt.exe" = C:\Users\MICHA~1\AppData\Local\Temp\mcnxt.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winbkpq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbkpq.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winlqjeh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winlqjeh.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winbhcr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbhcr.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wingyry.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wingyry.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\anvfn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\anvfn.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\fljlnl.exe" = C:\Windows\TEMP\fljlnl.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winwsuuue.exe" = C:\Windows\TEMP\winwsuuue.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\swll.exe" = C:\Windows\TEMP\swll.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\olefqj.exe" = C:\Windows\TEMP\olefqj.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wyfr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wyfr.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\ufmwf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ufmwf.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winenaba.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winenaba.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\windxdkbb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\windxdkbb.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winjmhuhw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winjmhuhw.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winecit.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winecit.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winipxh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winipxh.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\windohbg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\windohbg.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winbaxuu.exe" = C:\Windows\TEMP\winbaxuu.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winnkegql.exe" = C:\Windows\TEMP\winnkegql.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\vfqpl.exe" = C:\Windows\TEMP\vfqpl.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winxcuvsm.exe" = C:\Windows\TEMP\winxcuvsm.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winhcil.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhcil.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\twst.exe" = C:\Users\MICHA~1\AppData\Local\Temp\twst.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\yhfa.exe" = C:\Users\MICHA~1\AppData\Local\Temp\yhfa.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\qqksh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\qqksh.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winfuqqm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winfuqqm.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wrixm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wrixm.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\ekddyl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ekddyl.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wincmsyu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wincmsyu.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winfcoqo.exe" = C:\Windows\TEMP\winfcoqo.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winpocqkw.exe" = C:\Windows\TEMP\winpocqkw.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winfxuoj.exe" = C:\Windows\TEMP\winfxuoj.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\bukls.exe" = C:\Windows\TEMP\bukls.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winnvsso.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winnvsso.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\rroirw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\rroirw.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wlhi.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wlhi.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\ebuqg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ebuqg.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winsdasg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winsdasg.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\ovrgj.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ovrgj.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\jpgj.exe" = C:\Users\MICHA~1\AppData\Local\Temp\jpgj.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winapqcg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winapqcg.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\imugon.exe" = C:\Windows\TEMP\imugon.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winsdgmtx.exe" = C:\Windows\TEMP\winsdgmtx.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\lbii.exe" = C:\Windows\TEMP\lbii.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winlfmhy.exe" = C:\Windows\TEMP\winlfmhy.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winekdvew.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winekdvew.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\kmeece.exe" = C:\Users\MICHA~1\AppData\Local\Temp\kmeece.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winoyjjxu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winoyjjxu.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\fnwpqg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\fnwpqg.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\embms.exe" = C:\Users\MICHA~1\AppData\Local\Temp\embms.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winvfxupv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winvfxupv.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wblols.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wblols.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wineqof.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wineqof.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winoeux.exe" = C:\Windows\TEMP\winoeux.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winuuig.exe" = C:\Windows\TEMP\winuuig.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winkeqlj.exe" = C:\Windows\TEMP\winkeqlj.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winhinub.exe" = C:\Windows\TEMP\winhinub.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winbrnyi.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbrnyi.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winnlqvsn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winnlqvsn.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\ktlfli.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ktlfli.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\syed.exe" = C:\Users\MICHA~1\AppData\Local\Temp\syed.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winusagxh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winusagxh.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\yldrb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\yldrb.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winbtwiy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbtwiy.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wkudqa.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wkudqa.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winvetbgi.exe" = C:\Windows\TEMP\winvetbgi.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winefliq.exe" = C:\Windows\TEMP\winefliq.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winnbku.exe" = C:\Windows\TEMP\winnbku.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\wtdyw.exe" = C:\Windows\TEMP\wtdyw.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winqpmo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winqpmo.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\windbunnf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\windbunnf.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winrlgxl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winrlgxl.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winsbsue.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winsbsue.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winpado.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winpado.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winkiqr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winkiqr.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\gwmnp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\gwmnp.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\nnxp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\nnxp.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winvnpdg.exe" = C:\Windows\TEMP\winvnpdg.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\elwktf.exe" = C:\Windows\TEMP\elwktf.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winrmtqt.exe" = C:\Windows\TEMP\winrmtqt.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\wxlhu.exe" = C:\Windows\TEMP\wxlhu.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\citlhh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\citlhh.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winqiwsc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winqiwsc.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\hqlebc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\hqlebc.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\xjho.exe" = C:\Users\MICHA~1\AppData\Local\Temp\xjho.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\dcif.exe" = C:\Users\MICHA~1\AppData\Local\Temp\dcif.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winwjfold.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winwjfold.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\gegcqs.exe" = C:\Users\MICHA~1\AppData\Local\Temp\gegcqs.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winycku.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winycku.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\inioe.exe" = C:\Windows\TEMP\inioe.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winurotgc.exe" = C:\Windows\TEMP\winurotgc.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\jtridq.exe" = C:\Windows\TEMP\jtridq.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\irwv.exe" = C:\Windows\TEMP\irwv.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winblaxh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winblaxh.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\gknji.exe" = C:\Users\MICHA~1\AppData\Local\Temp\gknji.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winlaogk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winlaogk.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wincgqq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wincgqq.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\ujki.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ujki.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winlbfyao.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winlbfyao.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winpwdfd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winpwdfd.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winndvxk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winndvxk.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winckqq.exe" = C:\Windows\TEMP\winckqq.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\vmpk.exe" = C:\Windows\TEMP\vmpk.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winnbkdv.exe" = C:\Windows\TEMP\winnbkdv.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winwyvi.exe" = C:\Windows\TEMP\winwyvi.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\veut.exe" = C:\Users\MICHA~1\AppData\Local\Temp\veut.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winisma.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winisma.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winhrppoc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhrppoc.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\jxqei.exe" = C:\Users\MICHA~1\AppData\Local\Temp\jxqei.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\qluwu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\qluwu.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winsxwfn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winsxwfn.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wintdmsc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wintdmsc.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\iwer.exe" = C:\Users\MICHA~1\AppData\Local\Temp\iwer.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\ywqre.exe" = C:\Windows\TEMP\ywqre.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winqbyir.exe" = C:\Windows\TEMP\winqbyir.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winetmw.exe" = C:\Windows\TEMP\winetmw.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\dkmt.exe" = C:\Windows\TEMP\dkmt.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winbjcfy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbjcfy.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winaxpkh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winaxpkh.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\dhifrr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\dhifrr.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\ogays.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ogays.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\evsgw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\evsgw.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\vhbqp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\vhbqp.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\holm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\holm.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\uifl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\uifl.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winakeyd.exe" = C:\Windows\TEMP\winakeyd.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\fextp.exe" = C:\Windows\TEMP\fextp.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\vnabin.exe" = C:\Windows\TEMP\vnabin.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winaurx.exe" = C:\Windows\TEMP\winaurx.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wingjaxx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wingjaxx.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winwslks.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winwslks.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\ykar.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ykar.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\bqeewk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\bqeewk.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\ddwg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ddwg.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winmsbxb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winmsbxb.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\khsq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\khsq.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\vdnhxx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\vdnhxx.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\hdugxh.exe" = C:\Windows\TEMP\hdugxh.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\ngcc.exe" = C:\Windows\TEMP\ngcc.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\xflipn.exe" = C:\Windows\TEMP\xflipn.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wincmfcab.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wincmfcab.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wingbah.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wingbah.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winsslwq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winsslwq.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winttrea.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winttrea.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wingtwp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wingtwp.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winkmlbuk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winkmlbuk.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\paqf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\paqf.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\tewq.exe" = C:\Windows\TEMP\tewq.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winvnhe.exe" = C:\Windows\TEMP\winvnhe.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winknxswe.exe" = C:\Windows\TEMP\winknxswe.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winkblls.exe" = C:\Windows\TEMP\winkblls.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\iayi.exe" = C:\Users\MICHA~1\AppData\Local\Temp\iayi.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\dutov.exe" = C:\Users\MICHA~1\AppData\Local\Temp\dutov.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\cvpf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\cvpf.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winuximcy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winuximcy.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\moqe.exe" = C:\Users\MICHA~1\AppData\Local\Temp\moqe.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winpqguqy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winpqguqy.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\gadiue.exe" = C:\Users\MICHA~1\AppData\Local\Temp\gadiue.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winxwvlx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winxwvlx.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winfbgtmc.exe" = C:\Windows\TEMP\winfbgtmc.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\nosxew.exe" = C:\Windows\TEMP\nosxew.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\hhjr.exe" = C:\Windows\TEMP\hhjr.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winvttd.exe" = C:\Windows\TEMP\winvttd.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\uwtf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\uwtf.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winilbsa.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winilbsa.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\dcba.exe" = C:\Users\MICHA~1\AppData\Local\Temp\dcba.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\piya.exe" = C:\Users\MICHA~1\AppData\Local\Temp\piya.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winoyagg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winoyagg.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winfjhh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winfjhh.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winnlnh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winnlnh.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wintycij.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wintycij.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\fduh.exe" = C:\Windows\TEMP\fduh.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winypcnx.exe" = C:\Windows\TEMP\winypcnx.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winhhjgu.exe" = C:\Windows\TEMP\winhhjgu.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winpqlo.exe" = C:\Windows\TEMP\winpqlo.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winvduce.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winvduce.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winxgmkhy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winxgmkhy.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winnfwy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winnfwy.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winhtuf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhtuf.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\akemdg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\akemdg.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winrdai.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winrdai.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winxlash.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winxlash.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winduvhj.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winduvhj.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winswbkx.exe" = C:\Windows\TEMP\winswbkx.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winhqbj.exe" = C:\Windows\TEMP\winhqbj.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winvguri.exe" = C:\Windows\TEMP\winvguri.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winkbjy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winkbjy.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\rvpru.exe" = C:\Users\MICHA~1\AppData\Local\Temp\rvpru.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\issu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\issu.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winemrg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winemrg.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winutcqu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winutcqu.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winayurey.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winayurey.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winewglwu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winewglwu.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\iixbf.exe" = C:\Windows\TEMP\iixbf.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winxpnga.exe" = C:\Windows\TEMP\winxpnga.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winqcjstp.exe" = C:\Windows\TEMP\winqcjstp.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\xvuxpb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\xvuxpb.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winykwxos.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winykwxos.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\ackr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ackr.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winllwr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winllwr.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winwxkfrb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winwxkfrb.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wintbquoe.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wintbquoe.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\hgujb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\hgujb.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winmcfyxh.exe" = C:\Windows\TEMP\winmcfyxh.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\kgjkcs.exe" = C:\Windows\TEMP\kgjkcs.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\dkenk.exe" = C:\Windows\TEMP\dkenk.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\nxowq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\nxowq.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wincheex.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wincheex.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winmagla.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winmagla.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\windnvjn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\windnvjn.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\bjav.exe" = C:\Windows\TEMP\bjav.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winflepgj.exe" = C:\Windows\TEMP\winflepgj.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\ejwe.exe" = C:\Windows\TEMP\ejwe.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\bennpd.exe" = C:\Windows\TEMP\bennpd.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winbovvxj.exe" = C:\Windows\TEMP\winbovvxj.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wincmue.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wincmue.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wingcnaul.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wingcnaul.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\cwuxi.exe" = C:\Users\MICHA~1\AppData\Local\Temp\cwuxi.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\windgfyl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\windgfyl.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winrxldo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winrxldo.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wdwuhj.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wdwuhj.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winjsdb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winjsdb.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wincfqq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wincfqq.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\w86161.exe" = C:\Windows\TEMP\w86161.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\w87139.exe" = C:\Users\MICHA~1\AppData\Local\Temp\w87139.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\upyn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\upyn.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winemdkm.exe" = C:\Windows\TEMP\winemdkm.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\lfmr.exe" = C:\Windows\TEMP\lfmr.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\xqboeh.exe" = C:\Windows\TEMP\xqboeh.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winltnqy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winltnqy.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\niyc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\niyc.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\svuejh.exe" = C:\Windows\TEMP\svuejh.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winpmwpk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winpmwpk.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winnffjw.exe" = C:\Windows\TEMP\winnffjw.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\lvfobs.exe" = C:\Users\MICHA~1\AppData\Local\Temp\lvfobs.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\lmcos.exe" = C:\Users\MICHA~1\AppData\Local\Temp\lmcos.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wingtmeo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wingtmeo.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winjgvbve.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winjgvbve.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\nqip.exe" = C:\Users\MICHA~1\AppData\Local\Temp\nqip.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\w8674a.exe" = C:\Users\MICHA~1\AppData\Local\Temp\w8674a.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\w90157.exe" = C:\Windows\TEMP\w90157.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\wincixh.exe" = C:\Windows\TEMP\wincixh.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\gbvxqu.exe" = C:\Windows\TEMP\gbvxqu.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\lfwkgf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\lfwkgf.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\wintiwjw.exe" = C:\Windows\TEMP\wintiwjw.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winvxolgb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winvxolgb.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winhnkvta.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhnkvta.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winafwdmx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winafwdmx.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wineycyj.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wineycyj.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winqmsxhd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winqmsxhd.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winpadk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winpadk.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\obem.exe" = C:\Windows\TEMP\obem.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winegghx.exe" = C:\Windows\TEMP\winegghx.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\guacn.exe" = C:\Windows\TEMP\guacn.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\kmdpd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\kmdpd.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wkcx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wkcx.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winbpvo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbpvo.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\jassxe.exe" = C:\Users\MICHA~1\AppData\Local\Temp\jassxe.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winiajtj.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winiajtj.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\pxdgwq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\pxdgwq.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\rddf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\rddf.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\vsqjk.exe" = C:\Windows\TEMP\vsqjk.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winhglx.exe" = C:\Windows\TEMP\winhglx.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\mcpll.exe" = C:\Windows\TEMP\mcpll.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\uupl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\uupl.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wjji.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wjji.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wincxgvt.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wincxgvt.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\ijylu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ijylu.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\putim.exe" = C:\Users\MICHA~1\AppData\Local\Temp\putim.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\nwytc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\nwytc.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winnwecf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winnwecf.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winwotje.exe" = C:\Windows\TEMP\winwotje.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winmxtj.exe" = C:\Windows\TEMP\winmxtj.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\qqpn.exe" = C:\Windows\TEMP\qqpn.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wingrpf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wingrpf.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\skudyk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\skudyk.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\pdpxv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\pdpxv.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\vocgh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\vocgh.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winmmyw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winmmyw.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winlgak.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winlgak.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wineoki.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wineoki.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winrlxu.exe" = C:\Windows\TEMP\winrlxu.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winrvdfk.exe" = C:\Windows\TEMP\winrvdfk.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\litha.exe" = C:\Windows\TEMP\litha.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winqbgxkd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winqbgxkd.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winxqyr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winxqyr.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\bbdlu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\bbdlu.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winkqly.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winkqly.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\tuqfkq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\tuqfkq.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winbmuobh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbmuobh.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winnvgk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winnvgk.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winqneay.exe" = C:\Windows\TEMP\winqneay.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winkkfjn.exe" = C:\Windows\TEMP\winkkfjn.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\mjbw.exe" = C:\Windows\TEMP\mjbw.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\windrwu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\windrwu.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\ameeyx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ameeyx.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winkqwu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winkqwu.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winptwe.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winptwe.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\siik.exe" = C:\Users\MICHA~1\AppData\Local\Temp\siik.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winahkpn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winahkpn.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\ienwp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ienwp.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winicvsm.exe" = C:\Windows\TEMP\winicvsm.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winnsdljx.exe" = C:\Windows\TEMP\winnsdljx.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\pjifl.exe" = C:\Windows\TEMP\pjifl.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winowoyk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winowoyk.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\jnfav.exe" = C:\Users\MICHA~1\AppData\Local\Temp\jnfav.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\gmwtrt.exe" = C:\Users\MICHA~1\AppData\Local\Temp\gmwtrt.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\kfnamv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\kfnamv.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\kqpanf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\kqpanf.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\sajl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\sajl.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\nqqrlw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\nqqrlw.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winsqfn.exe" = C:\Windows\TEMP\winsqfn.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\eivs.exe" = C:\Windows\TEMP\eivs.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winnnodeq.exe" = C:\Windows\TEMP\winnnodeq.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winjkyas.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winjkyas.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winhxedad.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhxedad.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\ehmj.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ehmj.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\djrpqu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\djrpqu.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\eyhnby.exe" = C:\Users\MICHA~1\AppData\Local\Temp\eyhnby.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wingtjy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wingtjy.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\phguvc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\phguvc.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winwsnjdy.exe" = C:\Windows\TEMP\winwsnjdy.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\yqkwkx.exe" = C:\Windows\TEMP\yqkwkx.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winxrsm.exe" = C:\Windows\TEMP\winxrsm.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winrhhgl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winrhhgl.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winoenjfo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winoenjfo.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winabsr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winabsr.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winbaxpel.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbaxpel.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\xpws.exe" = C:\Users\MICHA~1\AppData\Local\Temp\xpws.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\twqibl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\twqibl.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\xprw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\xprw.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\windlegi.exe" = C:\Windows\TEMP\windlegi.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\windeasja.exe" = C:\Windows\TEMP\windeasja.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winsgcht.exe" = C:\Windows\TEMP\winsgcht.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winicffig.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winicffig.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winhlax.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhlax.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\cbjy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\cbjy.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\icio.exe" = C:\Users\MICHA~1\AppData\Local\Temp\icio.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winsmiklm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winsmiklm.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winnbvl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winnbvl.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winxwupg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winxwupg.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winpuqd.exe" = C:\Windows\TEMP\winpuqd.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\tyem.exe" = C:\Windows\TEMP\tyem.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\icxcf.exe" = C:\Windows\TEMP\icxcf.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winihdtgl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winihdtgl.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\gquh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\gquh.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winaujvv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winaujvv.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winbqcqb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbqcqb.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winhybrxb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhybrxb.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\nvdb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\nvdb.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winetpa.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winetpa.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\jwgcv.exe" = C:\Windows\TEMP\jwgcv.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\wincyph.exe" = C:\Windows\TEMP\wincyph.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winpdanaa.exe" = C:\Windows\TEMP\winpdanaa.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winrmioo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winrmioo.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winasbv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winasbv.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\llssnk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\llssnk.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\cpxrwh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\cpxrwh.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winutvmo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winutvmo.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\qkuyo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\qkuyo.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\waoy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\waoy.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\ilfqp.exe" = C:\Windows\TEMP\ilfqp.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winvrsmi.exe" = C:\Windows\TEMP\winvrsmi.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\gekr.exe" = C:\Windows\TEMP\gekr.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\windbwx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\windbwx.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winrpohu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winrpohu.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winoyvrkr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winoyvrkr.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\tftn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\tftn.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winllvdf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winllvdf.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\qxol.exe" = C:\Users\MICHA~1\AppData\Local\Temp\qxol.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winnhngwd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winnhngwd.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winhmygyc.exe" = C:\Windows\TEMP\winhmygyc.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\eulgfg.exe" = C:\Windows\TEMP\eulgfg.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winvbgt.exe" = C:\Windows\TEMP\winvbgt.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\hvcvv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\hvcvv.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\ogqy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ogqy.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\nxiuvp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\nxiuvp.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winkkbvk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winkkbvk.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\vuihn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\vuihn.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winished.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winished.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winsgxy.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winsgxy.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\wintoih.exe" = C:\Windows\TEMP\wintoih.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\vgpe.exe" = C:\Windows\TEMP\vgpe.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winrsapb.exe" = C:\Windows\TEMP\winrsapb.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winflrc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winflrc.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winhgstwd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhgstwd.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winocpsxx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winocpsxx.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\mwqkrg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\mwqkrg.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winioda.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winioda.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\pxkfu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\pxkfu.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\fblo.exe" = C:\Users\MICHA~1\AppData\Local\Temp\fblo.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winwuhn.exe" = C:\Windows\TEMP\winwuhn.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\fauw.exe" = C:\Windows\TEMP\fauw.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\ovkcy.exe" = C:\Windows\TEMP\ovkcy.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\gbfp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\gbfp.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winmwbur.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winmwbur.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winxgdg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winxgdg.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winuvykt.exe" = C:\Windows\TEMP\winuvykt.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winaaedvf.exe" = C:\Windows\TEMP\winaaedvf.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\kihgip.exe" = C:\Users\MICHA~1\AppData\Local\Temp\kihgip.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winkyvj.exe" = C:\Windows\TEMP\winkyvj.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\wuxjk.exe" = C:\Windows\TEMP\wuxjk.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\tuar.exe" = C:\Users\MICHA~1\AppData\Local\Temp\tuar.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winmyhc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winmyhc.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\jbxcww.exe" = C:\Users\MICHA~1\AppData\Local\Temp\jbxcww.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\w7bb72.exe" = C:\Users\MICHA~1\AppData\Local\Temp\w7bb72.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\w83ee3.exe" = C:\Windows\TEMP\w83ee3.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winnghip.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winnghip.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winetxau.exe" = C:\Windows\TEMP\winetxau.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\ecvlq.exe" = C:\Windows\TEMP\ecvlq.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winxduvr.exe" = C:\Windows\TEMP\winxduvr.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winbxqki.exe" = C:\Windows\TEMP\winbxqki.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winqqypf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winqqypf.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\ejixf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ejixf.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winfcucm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winfcucm.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winmoeie.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winmoeie.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\rcikpr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\rcikpr.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winxpmobi.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winxpmobi.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\w81a91.exe" = C:\Users\MICHA~1\AppData\Local\Temp\w81a91.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\w836b9.exe" = C:\Windows\TEMP\w836b9.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\wingkbcx.exe" = C:\Windows\TEMP\wingkbcx.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winfmjou.exe" = C:\Windows\TEMP\winfmjou.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\sltonr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\sltonr.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winlqil.exe" = C:\Windows\TEMP\winlqil.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winhdfncu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhdfncu.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wvmfba.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wvmfba.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winmrydk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winmrydk.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winymxluk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winymxluk.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\cnhlf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\cnhlf.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\igxaqf.exe" = C:\Windows\TEMP\igxaqf.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\saosad.exe" = C:\Windows\TEMP\saosad.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\pyqho.exe" = C:\Windows\TEMP\pyqho.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winjlfoc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winjlfoc.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winkquwm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winkquwm.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winkujf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winkujf.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\oeneq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\oeneq.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winaafqg.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winaafqg.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winfftvrq.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winfftvrq.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\tlgqsh.exe" = C:\Windows\TEMP\tlgqsh.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\xbxj.exe" = C:\Windows\TEMP\xbxj.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winqcne.exe" = C:\Windows\TEMP\winqcne.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winebrqux.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winebrqux.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\oaeihe.exe" = C:\Users\MICHA~1\AppData\Local\Temp\oaeihe.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\iwvv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\iwvv.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winyppxds.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winyppxds.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wingjsviv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wingjsviv.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\dngl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\dngl.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winmwyfnb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winmwyfnb.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\w13ba49.exe" = C:\Users\MICHA~1\AppData\Local\Temp\w13ba49.exe:*:Enabled:ipsec -- File not found
"C:\Program Files\Nokia\Nokia Software Updater\nsu_ui_client.exe" = C:\Program Files\Nokia\Nokia Software Updater\nsu_ui_client.exe:*:Enabled:ipsec -- (Nokia Corporation)
"C:\Users\MICHA~1\AppData\Local\Temp\winslndk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winslndk.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winlhutk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winlhutk.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\nppqpf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\nppqpf.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winwhem.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winwhem.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winnpivw.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winnpivw.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\windywud.exe" = C:\Users\MICHA~1\AppData\Local\Temp\windywud.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\jteff.exe" = C:\Users\MICHA~1\AppData\Local\Temp\jteff.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winokqog.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winokqog.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\skfglk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\skfglk.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winofsfr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winofsfr.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winwthxl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winwthxl.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winltmr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winltmr.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\iulmn.exe" = C:\Users\MICHA~1\AppData\Local\Temp\iulmn.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\wincraslb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wincraslb.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\motb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\motb.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\itjuwx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\itjuwx.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winsdabmd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winsdabmd.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winhyon.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhyon.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winvuws.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winvuws.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winhhbda.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winhhbda.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winyysp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winyysp.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winhfubcn.exe" = C:\Windows\TEMP\winhfubcn.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\wiceq.exe" = C:\Windows\TEMP\wiceq.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\iroap.exe" = C:\Users\MICHA~1\AppData\Local\Temp\iroap.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winrfroqe.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winrfroqe.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\edpsqb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\edpsqb.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\xfgtvm.exe" = C:\Users\MICHA~1\AppData\Local\Temp\xfgtvm.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winwomdom.exe" = C:\Windows\TEMP\winwomdom.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\ljcwj.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ljcwj.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\lujwer.exe" = C:\Users\MICHA~1\AppData\Local\Temp\lujwer.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\tqamc.exe" = C:\Windows\TEMP\tqamc.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\w90424.exe" = C:\Users\MICHA~1\AppData\Local\Temp\w90424.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\w9f353.exe" = C:\Windows\TEMP\w9f353.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\windnfjb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\windnfjb.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\wincrcwle.exe" = C:\Windows\TEMP\wincrcwle.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\gwevs.exe" = C:\Users\MICHA~1\AppData\Local\Temp\gwevs.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winaspsx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winaspsx.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\wingvfomr.exe" = C:\Windows\TEMP\wingvfomr.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winwatpwv.exe" = C:\Windows\TEMP\winwatpwv.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winlnmxb.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winlnmxb.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winqylbvr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winqylbvr.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\drmwp.exe" = C:\Users\MICHA~1\AppData\Local\Temp\drmwp.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winoopl.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winoopl.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\kxcf.exe" = C:\Users\MICHA~1\AppData\Local\Temp\kxcf.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winshhrqa.exe" = C:\Windows\TEMP\winshhrqa.exe:*:Enabled:ipsec -- ()
"C:\Users\MICHA~1\AppData\Local\Temp\wintiwr.exe" = C:\Users\MICHA~1\AppData\Local\Temp\wintiwr.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winiodnx.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winiodnx.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winqalplt.exe" = C:\Windows\TEMP\winqalplt.exe:*:Enabled:ipsec -- ()
"C:\Windows\TEMP\xtwiik.exe" = C:\Windows\TEMP\xtwiik.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\egkio.exe" = C:\Windows\TEMP\egkio.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winbuliiv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winbuliiv.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\ccfrud.exe" = C:\Users\MICHA~1\AppData\Local\Temp\ccfrud.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winthhgh.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winthhgh.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\w86f45.exe" = C:\Users\MICHA~1\AppData\Local\Temp\w86f45.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\w87f0e.exe" = C:\Windows\TEMP\w87f0e.exe:*:Enabled:ipsec -- ()
"C:\Users\MICHA~1\AppData\Local\Temp\winibrgik.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winibrgik.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\bxun.exe" = C:\Windows\TEMP\bxun.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\winjnvdvb.exe" = C:\Windows\TEMP\winjnvdvb.exe:*:Enabled:ipsec -- File not found
"C:\Windows\TEMP\qcrj.exe" = C:\Windows\TEMP\qcrj.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\hmrkdc.exe" = C:\Users\MICHA~1\AppData\Local\Temp\hmrkdc.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\windhkohk.exe" = C:\Users\MICHA~1\AppData\Local\Temp\windhkohk.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\hhottv.exe" = C:\Users\MICHA~1\AppData\Local\Temp\hhottv.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winuqemu.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winuqemu.exe:*:Enabled:ipsec -- File not found
"C:\Users\MICHA~1\AppData\Local\Temp\winuhsgd.exe" = C:\Users\MICHA~1\AppData\Local\Temp\winuhsgd.exe:*:Enabled:ipsec -- File not found


[color=#E56717]========== Vista Active Open Ports Exception List ==========[/color]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{03B65D2F-B57E-4B3E-BDC4-B5522667822C}" = lport=2869 | protocol=6 | dir=in | app=system |
"{40FE7636-7FC9-454F-B87C-EC28940407FE}" = lport=139 | protocol=6 | dir=in | app=system |
"{63CDDFAB-0FF2-48EB-A6D3-625AC7914D24}" = lport=137 | protocol=17 | dir=in | app=system |
"{8137CD25-82A8-4FEC-9F73-483D853BB3DD}" = rport=139 | protocol=6 | dir=out | app=system |
"{86E9BF43-D594-4F6B-8365-60ED7D8429C3}" = lport=138 | protocol=17 | dir=in | app=system |
"{986F6AFC-EC61-42EF-9B9B-589DC16BC329}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
"{9FB7A6D7-3813-40B3-8FF1-4EFE04AEF9D4}" = rport=137 | protocol=17 | dir=out | app=system |
"{AD541E15-1313-4FA6-BB6F-830A29FA6A52}" = lport=445 | protocol=6 | dir=in | app=system |
"{B0F6068F-3DCA-42B1-8B56-1AC4D215EDD8}" = rport=138 | protocol=17 | dir=out | app=system |
"{C4BCBA28-76DC-41D9-86EC-C1D6F9E86F58}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 |
"{D1984D9D-BC30-462E-ADEC-61A513AF6819}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=svchost.exe |
"{D5439A99-2095-42EB-980C-55273B0DE533}" = rport=445 | protocol=6 | dir=out | app=system |

[color=#E56717]========== Vista Active Application Exception List ==========[/color]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{04F33B5C-F32F-4798-A4A6-83412E1A1B62}" = protocol=6 | dir=in | app=g:\gry\world of warcraft\wow-3.2.0-enus-downloader.exe |
"{0A04B056-92EE-4928-898C-1F8BEF452372}" = protocol=6 | dir=in | app=h:\gta\grand theft auto iv\launchgtaiv.exe |
"{0A4A0C2C-1744-4B8F-A448-59C9F7758C71}" = protocol=6 | dir=in | app=c:\program files\winamp remote\bin\orbstreamerclient.exe |
"{0E989BB6-CDD6-4D41-9CEE-858D7C180D46}" = protocol=6 | dir=in | app=g:\gry\starcraft ii beta\starcraft ii.exe |
"{1843E0EE-E4EE-47A0-8F11-E8017439B395}" = protocol=17 | dir=in | app=c:\program files\ubisoft\the settlers - rise of an empire demo\base\bin\settlers6demo.exe |
"{1E4BFADE-39C1-4B09-9297-3C079FDE4B62}" = protocol=17 | dir=in | app=g:\programy\speedbit video accelerator\videoaccelerator.exe |
"{1F56B22D-8195-4AFE-84A0-83AFF08D31BB}" = dir=in | app=c:\program files\windows live\messenger\msnmsgr.exe |
"{211DFBF5-F0D3-4F8E-A275-0CB1CA1E5318}" = protocol=17 | dir=in | app=c:\program files\pando networks\media booster\pmb.exe |
"{21488640-59DC-4D42-92CC-EDD93235D602}" = protocol=6 | dir=in | app=g:\programy\opera unite\opera.exe |
"{2C7CBE78-6869-4B69-8221-5D88AB19F60B}" = protocol=17 | dir=in | app=h:\gta\rockstar games social club\rgsclauncher.exe |
"{32F5CE12-CC71-4B1E-8F13-D8032FFE71B3}" = protocol=17 | dir=in | app=g:\gry\s.t.a.l.k.e.r. - shadow of chernobyl\bin\dedicated\xr_3da.exe |
"{3845B7AF-F91D-4212-8E3E-FF647689A555}" = protocol=6 | dir=in | app=h:\gta\rockstar games social club\rgsclauncher.exe |
"{3A3EC3ED-C6F0-43E0-8EB1-E3447FB11475}" = protocol=6 | dir=in | app=c:\program files\winamp remote\bin\orbir.exe |
"{3D29C6BF-B6DF-4995-A30E-9634C74E3D35}" = protocol=6 | dir=in | app=g:\gry\s.t.a.l.k.e.r. - shadow of chernobyl\bin\xr_3da.exe |
"{3DCD7D0F-3115-4582-8F66-E711AB0DFAF4}" = protocol=6 | dir=in | app=c:\program files\winamp remote\bin\orbtray.exe |
"{4FE10500-7E31-475E-AAF6-A89FCB10E5BC}" = protocol=17 | dir=in | app=c:\program files\winamp remote\bin\orbtray.exe |
"{540B6098-0197-483E-844A-CA26F432FB76}" = dir=in | app=c:\program files\skype\phone\skype.exe |
"{59F54F09-DE2E-444A-B0E2-C785F288F205}" = protocol=6 | dir=in | app=c:\program files\winamp remote\bin\orb.exe |
"{5DAB0726-8724-4821-9055-A557A73398AC}" = protocol=17 | dir=in | app=c:\program files\winamp remote\bin\orb.exe |
"{63A5E45B-3BEC-4641-923A-12F26EF1DC63}" = protocol=17 | dir=in | app=c:\gry\civilization4\civilization4.exe |
"{64C7EA39-0445-4887-8A23-C2D939901EAC}" = protocol=6 | dir=in | app=c:\program files\skype\plugin manager\skypepm.exe |
"{685C5545-C4C3-4640-8F49-51E2F29D1F17}" = protocol=17 | dir=in | app=c:\program files\skype\plugin manager\skypepm.exe |
"{698D1FA7-B5C3-4AD5-B142-DAF4BABBFFCC}" = protocol=17 | dir=in | app=g:\gry\starcraft ii beta\starcraft ii.exe |
"{716C537B-5C9B-4755-869D-EA9C587FC0D4}" = protocol=6 | dir=in | app=c:\program files\utorrent\utorrent.exe |
"{73A66F5A-C7BF-45FB-9093-4F9652E8A0C2}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 |
"{75F8D50E-5F9E-47C3-A437-DDBB2C06FD9B}" = dir=in | app=c:\program files\windows live\sync\windowslivesync.exe |
"{79484371-BD02-48D4-8FBA-EFABC042A190}" = protocol=6 | dir=in | app=g:\gry\swat\contentexpansion\system\swat4xdedicatedserver.exe |
"{7AE2193A-E330-416A-AD9E-9CA898C4EA2C}" = protocol=17 | dir=in | app=g:\programy\opera unite\opera.exe |
"{83697E8B-1258-41A6-913A-9C434BB5F6BD}" = protocol=6 | dir=in | app=g:\gry\swat\contentexpansion\system\swat4x.exe |
"{92CB3776-675C-438C-8D0D-663E4AB1E193}" = dir=in | app=c:\program files\hp\quickplay\qpservice.exe |
"{93A0D73E-D64E-4338-AEE3-90A4AEE347C6}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |
"{A79B3806-13A5-4487-B0AA-E2150BD4F58E}" = protocol=17 | dir=in | app=g:\gry\s.t.a.l.k.e.r. - shadow of chernobyl\bin\xr_3da.exe |
"{AA44D16D-BF09-453F-8228-4B679F1456AB}" = protocol=17 | dir=in | app=c:\program files\konami\pro evolution soccer 2009\pes2009.exe |
"{AD794E80-FB5C-41A1-B8AC-31322D13E4C9}" = protocol=17 | dir=in | app=g:\gry\swat\contentexpansion\system\swat4xdedicatedserver.exe |
"{AF707AF7-4D46-464C-8CCE-78789B007C9E}" = protocol=17 | dir=in | app=g:\programy\opera unite\opera.exe |
"{B4302CEE-E145-481E-B779-43A73FCB2943}" = protocol=17 | dir=in | app=c:\program files\konami\pro evolution soccer 2009\pes2009.exe |
"{B537E7AF-B332-4FEC-9E09-F6AB1F0E7494}" = protocol=17 | dir=in | app=g:\gry\swat\contentexpansion\system\swat4x.exe |
"{B7C5E350-2A0E-4B86-BED2-2753EC3C9DB3}" = protocol=17 | dir=in | app=c:\program files\winamp remote\bin\orbstreamerclient.exe |
"{B7DC7773-281C-40C9-9A02-0B81EE505013}" = protocol=6 | dir=in | app=c:\gry\civilization4\civilization4.exe |
"{B7DE914C-5248-490D-968C-A93F2D143BC6}" = dir=in | app=c:\program files\hp\quickplay\qp.exe |
"{BE2539DF-5696-458B-8900-3CE65D8DC118}" = protocol=6 | dir=in | app=g:\gry\s.t.a.l.k.e.r. - shadow of chernobyl\bin\dedicated\xr_3da.exe |
"{C7D15DE4-A0EF-4B85-A394-46996D683529}" = protocol=6 | dir=in | app=g:\programy\speedbit video accelerator\videoaccelerator.exe |
"{C7EDAC03-0325-45C1-A0C1-255B3AB5CBC6}" = protocol=6 | dir=in | app=c:\program files\ubisoft\the settlers - rise of an empire demo\base\bin\settlers6demo.exe |
"{D010A1FC-F6D6-4600-93AD-D0CD20296C9A}" = protocol=6 | dir=in | app=c:\program files\pando networks\media booster\pmb.exe |
"{D0BBA9A0-11F7-4F61-AD2D-6A25EF7F56F8}" = protocol=6 | dir=in | app=c:\program files\konami\pro evolution soccer 2009\pes2009.exe |
"{D0F9C81B-A82B-4781-A924-002425A1B2F8}" = protocol=6 | dir=in | app=g:\programy\opera unite\opera.exe |
"{D683720D-87DB-41D9-AA7A-B700FB646129}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |
"{DA3F20BC-305B-4B4D-9D33-FF5174262292}" = protocol=17 | dir=in | app=c:\program files\utorrent\utorrent.exe |
"{DEC7D029-1826-48C4-BC23-751FDD199E31}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 |
"{DFE3DD40-AF2F-46D3-9C05-82C962018B86}" = protocol=17 | dir=in | app=h:\gta\grand theft auto iv\launchgtaiv.exe |
"{F3E33A83-321E-4442-90E1-74BAC87863DA}" = protocol=17 | dir=in | app=g:\gry\world of warcraft\wow-3.2.0-enus-downloader.exe |
"{FC4F4D0A-CAF9-4DE5-8F2F-21C4EBB97878}" = protocol=6 | dir=in | app=c:\program files\konami\pro evolution soccer 2009\pes2009.exe |
"{FD33570C-B5F6-4259-BAC0-85A926EB6CAC}" = protocol=17 | dir=in | app=c:\program files\winamp remote\bin\orbir.exe |
"TCP Query User{005589C6-47BB-46F8-BB56-3C68C967F7CF}C:\users\michał\appdata\local\temp\tssiw.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\tssiw.exe |
"TCP Query User{00E49D1C-40B3-4E6F-91C2-8409D152BF5C}C:\program files\skype\phone\skype.exe" = protocol=6 | dir=in | app=c:\program files\skype\phone\skype.exe |
"TCP Query User{014276B9-D0ED-494F-9228-4D1B92C3E9B6}C:\program files\amd\dual-core optimizer\amd_dc_opt.exe" = protocol=6 | dir=in | app=c:\program files\amd\dual-core optimizer\amd_dc_opt.exe |
"TCP Query User{0344E1E0-C655-4B8D-8657-3151D542DDFD}G:\programy\napi-projekt\napisy.exe" = protocol=6 | dir=in | app=g:\programy\napi-projekt\napisy.exe |
"TCP Query User{0445CE68-E1D3-44F9-8E17-FF042C5AC09A}C:\users\michał\appdata\local\temp\atte.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\atte.exe |
"TCP Query User{04DD58C7-3C5A-469B-AA6C-64469DFC226A}G:\gry\worldofgoo\worldofgoo.exe" = protocol=6 | dir=in | app=g:\gry\worldofgoo\worldofgoo.exe |
"TCP Query User{064922DF-913E-4754-8DA8-A4B188037400}C:\users\michał\appdata\local\temp\rpdq.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\rpdq.exe |
"TCP Query User{06A6947D-ED88-4A62-A485-DB629C6E5FBC}C:\program files\internet explorer\iexplore.exe" = protocol=6 | dir=in | app=c:\program files\internet explorer\iexplore.exe |
"TCP Query User{06C0EEF8-4292-4419-BFE0-F8B7D6538E1C}C:\users\michał\appdata\local\temp\winnutfvm.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winnutfvm.exe |
"TCP Query User{06C8AD65-A94C-473F-9C08-2E200BF710F2}C:\users\michał\appdata\local\temp\winispl.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winispl.exe |
"TCP Query User{078661DD-4BC7-493A-ADE8-C534B47E99BC}C:\users\michał\appdata\local\temp\winmdwnq.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winmdwnq.exe |
"TCP Query User{07F0060A-DE1C-4B2D-988E-248B44111698}C:\users\michał\appdata\local\temp\wineqmnb.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\wineqmnb.exe |
"TCP Query User{09125E32-7433-4534-B654-92AC93D1B82D}C:\windows\system32\conime.exe" = protocol=6 | dir=in | app=c:\windows\system32\conime.exe |
"TCP Query User{09D86157-9653-44B7-A9B7-CBD53A3365C7}C:\users\michał\appdata\local\temp\bdfvb.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\bdfvb.exe |
"TCP Query User{09F567C3-67D0-4776-8010-46D8D7635FC7}C:\program files\nokia\nokia software updater\nsu_ui_client.exe" = protocol=6 | dir=in | app=c:\program files\nokia\nokia software updater\nsu_ui_client.exe |
"TCP Query User{0AFFF800-A163-4403-8276-0F4769951D89}C:\users\michał\appdata\local\temp\xgbmw.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\xgbmw.exe |
"TCP Query User{0C2593D2-E580-4A43-B05D-88690C678D5F}C:\users\michał\appdata\local\temp\wincufca.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\wincufca.exe |
"TCP Query User{0DB1C9C3-9600-4C5B-842F-DDD917E84D3B}G:\programy\sopcast\sopcast.exe" = protocol=6 | dir=in | app=g:\programy\sopcast\sopcast.exe |
"TCP Query User{0EF15B93-42A6-4D4A-BCA5-CEDAB17BD266}G:\programy\easeus partition master 4.1.1 home edition\bin\main.exe" = protocol=6 | dir=in | app=g:\programy\easeus partition master 4.1.1 home edition\bin\main.exe |
"TCP Query User{0F3EC85A-9CC2-4785-9D56-606B5EC5B3F4}C:\users\michał\appdata\local\temp\ehws.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\ehws.exe |
"TCP Query User{0F61C3A5-8ED9-44CE-876F-2B2745C7C96F}C:\users\michał\appdata\local\temp\winemgvhj.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winemgvhj.exe |
"TCP Query User{0F907DBD-5B17-43EE-A877-7AA7196C9494}C:\program files\electronic arts\eadm\core.exe" = protocol=6 | dir=in | app=c:\program files\electronic arts\eadm\core.exe |
"TCP Query User{0FA41434-5146-4A0E-B400-B7DBB03FEEE4}C:\users\michał\appdata\local\temp\winddgty.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winddgty.exe |
"TCP Query User{1019F781-27D8-46E0-B9A1-24A37ECEBB32}C:\users\michał\appdata\local\temp\mviqpq.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\mviqpq.exe |
"TCP Query User{10CE2D14-FE24-47B2-B747-DEE0286DAE13}C:\users\michał\appdata\local\temp\winheurl.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winheurl.exe |
"TCP Query User{10F4CCEA-5A02-420E-8E5E-14268AC7D972}G:\gry\monopoly by parker brothers\monopolypb.exe" = protocol=6 | dir=in | app=g:\gry\monopoly by parker brothers\monopolypb.exe |
"TCP Query User{111D43ED-575B-4E19-91A3-48CCB2979E17}C:\users\michał\appdata\local\temp\gvjj.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\gvjj.exe |
"TCP Query User{11668402-056D-4384-A58E-97F0344B86DD}C:\users\michał\appdata\local\temp\winiubga.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winiubga.exe |
"TCP Query User{12FE167C-5BEA-4F45-B5E4-86D309721AAD}C:\users\michał\appdata\local\temp\rvftjn.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\rvftjn.exe |
"TCP Query User{13996FE6-9B0A-44B6-9224-57B1D3C90109}G:\programy\bearshare2\bearshare.exe" = protocol=6 | dir=in | app=g:\programy\bearshare2\bearshare.exe |
"TCP Query User{13A03BFF-4130-4591-978E-DD8F91884965}C:\users\michał\appdata\local\temp\winuojcyh.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winuojcyh.exe |
"TCP Query User{147CCB1A-E8F5-4078-8E1C-0FE27B75607A}C:\users\michał\appdata\local\temp\winnarl.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winnarl.exe |
"TCP Query User{15CD2C45-610B-47F1-8A07-544E95DF8574}C:\program files\windows defender\msascui.exe" = protocol=6 | dir=in | app=c:\program files\windows defender\msascui.exe |
"TCP Query User{1880AF92-8AAF-4A5A-B7F0-9284AE3BA181}C:\users\michał\appdata\local\temp\spey.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\spey.exe |
"TCP Query User{1B3EC6B5-E51C-428C-A997-02F86DB55367}C:\program files\hewlett-packard\hp quick launch buttons\qlbctrl.exe" = protocol=6 | dir=in | app=c:\program files\hewlett-packard\hp quick launch buttons\qlbctrl.exe |
"TCP Query User{1B4A22CF-F1D6-4E88-B437-FDCA86392AFD}C:\users\michał\appdata\local\temp\winhiqcrc.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winhiqcrc.exe |
"TCP Query User{1B9F7F9C-05F0-4320-A1A9-AB3940CD2B33}C:\users\michał\appdata\local\temp\winsynhea.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winsynhea.exe |
"TCP Query User{1C16DCFA-27D6-4498-96D4-8EA209406BDD}C:\program files\bioscrypt\verisoft\bin\asghost.exe" = protocol=6 | dir=in | app=c:\program files\bioscrypt\verisoft\bin\asghost.exe |
"TCP Query User{20CE32FF-B8E5-4556-A114-7DC4103F9092}C:\windows\ehome\ehtray.exe" = protocol=6 | dir=in | app=c:\windows\ehome\ehtray.exe |
"TCP Query User{23DF8FC9-0C9E-47BB-8AB1-44F48AE6E252}C:\users\michał\appdata\local\temp\winintfo.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winintfo.exe |
"TCP Query User{25C0326A-66E4-4DC7-A606-4A2D86B5A187}C:\users\michał\appdata\local\temp\wincohq.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\wincohq.exe |
"TCP Query User{25FDFAD0-1F3D-4C88-BA3A-2A1C5A274250}C:\windows\system32\taskeng.exe" = protocol=6 | dir=in | app=c:\windows\system32\taskeng.exe |
"TCP Query User{26D38CC8-3B55-4FDF-B45F-B7C03B328E82}C:\users\michał\appdata\local\temp\iumaqi.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\iumaqi.exe |
"TCP Query User{26D9CE6C-94A5-430D-85B7-C452B31949F4}C:\users\michał\appdata\local\temp\ebjj.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\ebjj.exe |
"TCP Query User{274CD7A5-736C-4D45-9C72-325E2D0F190F}C:\program files\winamp remote\bin\orb.exe" = protocol=6 | dir=in | app=c:\program files\winamp remote\bin\orb.exe |
"TCP Query User{290B0947-158D-41EF-A795-0DCFCC0D2B22}H:\gta\grand theft auto iv\gtaiv.exe" = protocol=6 | dir=in | app=h:\gta\grand theft auto iv\gtaiv.exe |
"TCP Query User{297C8847-29F8-4D0E-B287-C01C5FE5AB7A}C:\users\michał\appdata\local\temp\winblouy.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winblouy.exe |
"TCP Query User{2A780F72-AAAA-40BB-B648-4DD8E572056F}C:\users\michał\appdata\local\temp\windmhgqb.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\windmhgqb.exe |
"TCP Query User{2AAFA4EC-E984-484A-9B2A-25315B97119C}C:\users\michał\appdata\local\temp\kwqc.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\kwqc.exe |
"TCP Query User{2B2E030E-C01F-4835-95DA-4FC7C9866707}C:\users\michał\appdata\local\temp\nqblve.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\nqblve.exe |
"TCP Query User{2B62E2F1-E27E-4868-9543-B780A9C6C461}C:\users\michał\appdata\local\temp\winemuxgx.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winemuxgx.exe |
"TCP Query User{2C15E91C-E556-4732-A125-B6395CA2373F}C:\users\michał\appdata\local\temp\winikjy.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winikjy.exe |
"TCP Query User{2C7FE1A4-D5C6-4371-A7AC-5CCC5DFACA29}C:\program files\tvuplayer\tvuplayer.exe" = protocol=6 | dir=in | app=c:\program files\tvuplayer\tvuplayer.exe |
"TCP Query User{2D68DDB3-B339-4F60-9B01-DF06370A33A9}G:\gry\bmoworld\bomberman.exe" = protocol=6 | dir=in | app=g:\gry\bmoworld\bomberman.exe |
"TCP Query User{2FA7BC05-B794-419E-A5F9-E023B10996DC}C:\program files\amd\dual-core optimizer\amd_dc_opt.exe" = protocol=6 | dir=in | app=c:\program files\amd\dual-core optimizer\amd_dc_opt.exe |
"TCP Query User{30149AAB-35D7-4533-B9E6-E39B327B01F0}C:\users\michał\appdata\local\temp\winbxfrp.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winbxfrp.exe |
"TCP Query User{314BAD32-5B20-488B-82D9-4D085BF2A84F}C:\windows\system32\taskeng.exe" = protocol=6 | dir=in | app=c:\windows\system32\taskeng.exe |
"TCP Query User{333AF561-87D5-4021-84DB-6CBE0263A7E9}C:\users\michał\appdata\local\temp\wintrsvs.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\wintrsvs.exe |
"TCP Query User{3349CB5F-1135-4991-A72F-464CD0429A29}C:\users\michał\appdata\local\temp\winamja.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winamja.exe |
"TCP Query User{3381C3E6-B7E4-4EBF-BC45-C99CD87966AC}C:\users\michał\appdata\local\temp\kmsdi.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\kmsdi.exe |
"TCP Query User{347824AE-121C-46D6-827B-D37EF6043B73}C:\users\michał\appdata\local\temp\winkbien.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winkbien.exe |
"TCP Query User{34BB6722-3ACE-408D-A76D-11BFD2A11262}C:\users\michał\appdata\local\temp\winkusyyn.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winkusyyn.exe |
"TCP Query User{35108289-6E53-491B-A9F9-69B73B76B3D7}C:\users\michał\appdata\local\temp\winvrdma.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winvrdma.exe |
"TCP Query User{36B30F44-A04D-4BFC-B183-84D591394C2D}C:\users\michał\appdata\local\temp\wkhr.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\wkhr.exe |
"TCP Query User{37B5FAD7-4ABF-4D9F-B627-5B11E9446CDC}C:\users\michał\appdata\local\temp\dviku.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\dviku.exe |
"TCP Query User{3A825BB7-AFF8-469C-A8C6-5E82D9D042A4}C:\users\michał\appdata\local\temp\rgbnuk.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\rgbnuk.exe |
"TCP Query User{3AA27CD3-5DF9-4787-8E9E-F60572A68611}C:\users\michał\appdata\local\temp\rlfui.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\rlfui.exe |
"TCP Query User{3C2DD698-0349-4DDF-BC77-DEE6A7F6758F}C:\users\michał\appdata\local\temp\winsgrfgx.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winsgrfgx.exe |
"TCP Query User{3F95CF11-D275-4DDC-858B-E22ADF186CAB}C:\users\michał\appdata\local\temp\njbvaa.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\njbvaa.exe |
"TCP Query User{408F0444-877B-41AB-B30A-D0B6EA91965A}C:\users\michał\appdata\local\temp\axypcl.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\axypcl.exe |
"TCP Query User{40C164EE-EF17-4FE7-ACC2-6CAA65C3469A}C:\program files\internet explorer\iexplore.exe" = protocol=6 | dir=in | app=c:\program files\internet explorer\iexplore.exe |
"TCP Query User{414B3CC7-2E61-4E03-9F87-01F04744907A}C:\windows\system32\userinit.exe" = protocol=6 | dir=in | app=c:\windows\system32\userinit.exe |
"TCP Query User{41F30853-C502-45FC-ABC2-336E718A3B2B}C:\gry\pes2009\pes2009.exe" = protocol=6 | dir=in | app=c:\gry\pes2009\pes2009.exe |
"TCP Query User{42F985F3-E628-469D-AD17-F8E2A9BF3045}C:\users\michał\appdata\local\temp\mmdqkq.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\mmdqkq.exe |
"TCP Query User{434B8126-B4FA-4DB3-AE94-D26082BC72B7}C:\windows\system32\dwm.exe" = protocol=6 | dir=in | app=c:\windows\system32\dwm.exe |
"TCP Query User{4376728F-01FC-48C2-872B-AFE4E77C655C}G:\programy\opera\opera.exe" = protocol=6 | dir=in | app=g:\programy\opera\opera.exe |
"TCP Query User{447DC703-07AF-4DF4-9973-6C434970A089}G:\gry\bmoworld\bomberman.exe" = protocol=6 | dir=in | app=g:\gry\bmoworld\bomberman.exe |
"TCP Query User{45175612-B0DB-40CD-AEF4-B04748908CB6}C:\users\michał\appdata\local\temp\winhleoua.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winhleoua.exe |
"TCP Query User{45D624C8-8C4C-469A-82E2-286152EE0DEC}C:\users\michał\appdata\local\temp\winpdixh.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winpdixh.exe |
"TCP Query User{45EA7477-1EE7-4F17-867C-2B9A5023D6EE}C:\program files\widcomm\bluetooth software\bttray.exe" = protocol=6 | dir=in | app=c:\program files\widcomm\bluetooth software\bttray.exe |
"TCP Query User{4719DE39-B0E9-4BD0-8A67-9EE47DAEF3CF}E:\postal 2 share the pain\postal2 stp\setup.exe" = protocol=6 | dir=in | app=e:\postal 2 share the pain\postal2 stp\setup.exe |
"TCP Query User{481E7747-BC3E-43FC-AB76-CC6FBFB37AE1}C:\program files\synaptics\syntp\syntpenh.exe" = protocol=6 | dir=in | app=c:\program files\synaptics\syntp\syntpenh.exe |
"TCP Query User{485DFBB8-7ACB-471F-8266-F940BD3798E1}G:\programy\evillyrics\evillyrics.exe" = protocol=6 | dir=in | app=g:\programy\evillyrics\evillyrics.exe |
"TCP Query User{492A4DEE-83AD-483E-A23D-7664F0B72D01}C:\users\michał\appdata\local\temp\winlvor.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winlvor.exe |
"TCP Query User{49F0AD0A-83CA-4337-93D7-EE0E5DBBC81C}C:\users\michał\appdata\local\temp\iqil.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\iqil.exe |
"TCP Query User{4A73729F-7544-478C-81D4-9B12E7878CE4}C:\users\michał\appdata\local\temp\qsxsl.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\qsxsl.exe |
"TCP Query User{4B4DA044-ADB1-4B10-83FB-7593E8293C3F}G:\programy\opera beta\opera.exe" = protocol=6 | dir=in | app=g:\programy\opera beta\opera.exe |
"TCP Query User{4CB44DE0-22AB-4A05-A9F3-C5824BB3BCFA}C:\program files\synaptics\syntp\syntpenh.exe" = protocol=6 | dir=in | app=c:\program files\synaptics\syntp\syntpenh.exe |
"TCP Query User{4E5DA9B9-6DD9-4AF8-B000-9B2B42937870}C:\users\michał\appdata\local\temp\hucb.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\hucb.exe |
"TCP Query User{502CC5CB-F0F6-47E6-A034-20B38E1295DD}C:\users\michał\appdata\local\temp\winyivvb.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winyivvb.exe |
"TCP Query User{50805811-87BE-4062-80D5-B25F36D7CD93}C:\users\michał\appdata\local\temp\vpag.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\vpag.exe |
"TCP Query User{51D8847F-4252-42C0-8B6D-59BCDF0808C6}C:\users\michał\appdata\local\temp\gclxuk.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\gclxuk.exe |
"TCP Query User{5450FEDA-F177-44D3-B920-D9D2727EC0EE}C:\users\michał\appdata\local\temp\nfhg.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\nfhg.exe |
"TCP Query User{585760CA-CE30-4DB1-843E-317A6ED11D81}C:\users\michał\appdata\local\temp\winnpfhf.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winnpfhf.exe |
"TCP Query User{590D75E0-D346-4670-985A-D857C431BC6C}G:\gry\call of juarez\protect.exe" = protocol=6 | dir=in | app=g:\gry\call of juarez\protect.exe |
"TCP Query User{599F6DDF-CE76-4211-BA5B-4B4E6EDEF46C}C:\users\michał\appdata\local\temp\winwerk.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winwerk.exe |
"TCP Query User{59AB739B-20B9-4B45-9B2A-7D18F6C7B8E9}C:\users\michał\appdata\local\temp\winlvdlph.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winlvdlph.exe |
"TCP Query User{5AAE50A5-C92E-4A1D-86EF-F148980BC3A2}G:\gry\medieval ii total war\medieval2.exe" = protocol=6 | dir=in | app=g:\gry\medieval ii total war\medieval2.exe |
"TCP Query User{5C08D6B9-DA38-4B4B-8573-E91F173E8F9D}G:\programy\ashampoo burning studio 2010\burningstudio2010.exe" = protocol=6 | dir=in | app=g:\programy\ashampoo burning studio 2010\burningstudio2010.exe |
"TCP Query User{5D0D1DF9-8D2D-4F84-97BB-46B97B7D38A8}G:\gry\quake4\quake4.exe" = protocol=6 | dir=in | app=g:\gry\quake4\quake4.exe |
"TCP Query User{5DA56E6C-8971-460F-B4F0-D21C2C3FB467}C:\users\michał\appdata\local\temp\winwjala.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winwjala.exe |
"TCP Query User{5E1E9915-DDB8-4560-BA98-8BB05B474262}C:\users\michał\appdata\local\temp\eyvkbx.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\eyvkbx.exe |
"TCP Query User{611BD506-A494-4B8B-8DBD-CC58220647BF}C:\program files\utorrent\utorrent.exe" = protocol=6 | dir=in | app=c:\program files\utorrent\utorrent.exe |
"TCP Query User{662CBB6F-594E-4727-A738-2C5925383CD4}C:\users\michał\appdata\local\temp\winupleln.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winupleln.exe |
"TCP Query User{676A5945-7138-403F-AC54-7AE3360D74D3}C:\users\michał\appdata\local\temp\winatvwt.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winatvwt.exe |
"TCP Query User{67ECFEE2-9230-4D50-87D7-0C973DFB6D65}C:\program files\widcomm\bluetooth software\bttray.exe" = protocol=6 | dir=in | app=c:\program files\widcomm\bluetooth software\bttray.exe |
"TCP Query User{68554F38-7FBF-46CF-AECE-5077F179E09D}C:\program files\hewlett-packard\hp wireless assistant\wifimsg.exe" = protocol=6 | dir=in | app=c:\program files\hewlett-packard\hp wireless assistant\wifimsg.exe |
"TCP Query User{68C3F932-1B19-4391-8AEE-413875361A4C}C:\users\michał\appdata\local\temp\winsupp.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winsupp.exe |
"TCP Query User{68C76E89-ED38-4253-8BB7-F7B0F015BFCC}C:\users\michał\appdata\local\temp\winfrkjr.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winfrkjr.exe |
"TCP Query User{69526FE6-26B6-4F7A-8691-8D8151AC7506}C:\users\michał\appdata\local\temp\kkqxry.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\kkqxry.exe |
"TCP Query User{6989942D-678D-40D6-9FB5-1EE900DFC25F}C:\program files\adobe\reader 8.0\reader\acrord32.exe" = protocol=6 | dir=in | app=c:\program files\adobe\reader 8.0\reader\acrord32.exe |
"TCP Query User{6C37D298-E950-42AB-8C56-EAC6E9C05A4C}G:\programy\dap\dap.exe" = protocol=6 | dir=in | app=g:\programy\dap\dap.exe |
"TCP Query User{6FB53273-4E90-465D-AE50-914099CA8A1D}G:\programy\sopcast\adv\sopadver.exe" = protocol=6 | dir=in | app=g:\programy\sopcast\adv\sopadver.exe |
"TCP Query User{7053EA39-28FE-47EA-B3BF-73911FBB059C}C:\users\michał\appdata\local\temp\winopeke.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winopeke.exe |
"TCP Query User{70844D68-3766-4290-BBC7-3CF53E40F32B}C:\users\michał\appdata\local\temp\winbjbye.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winbjbye.exe |
"TCP Query User{70BA13AD-916F-4318-89BD-C65A455A17F3}C:\users\michał\appdata\local\temp\jjelfu.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\jjelfu.exe |
"TCP Query User{70D7C52D-C665-4E08-8897-F15BA1E25CAA}G:\gry\tropico\tropico 3\uninst.exe" = protocol=6 | dir=in | app=g:\gry\tropico\tropico 3\uninst.exe |
"TCP Query User{714D1C64-79EE-4AC2-A00F-6E9C27BE5915}C:\program files\tvants\tvants.exe" = protocol=6 | dir=in | app=c:\program files\tvants\tvants.exe |
"TCP Query User{733F5312-8432-4FE1-9C37-A4C48FFB118D}C:\users\michał\appdata\local\temp\winmvrin.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winmvrin.exe |
"TCP Query User{735D6EB2-41A9-4921-9305-B4D015C397E2}C:\users\michał\appdata\local\temp\eunkq.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\eunkq.exe |
"TCP Query User{73D144F5-F07B-4CFA-A4B6-81DC6E2F7A3D}C:\users\michał\appdata\local\temp\xksrc.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\xksrc.exe |
"TCP Query User{74D0644B-A214-48AF-864B-62B7695403C3}C:\users\michał\appdata\local\temp\swuqnb.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\swuqnb.exe |
"TCP Query User{758EBF79-161D-46B2-A401-328F5F01EAD3}G:\programy\gadu-gadu\gg.exe" = protocol=6 | dir=in | app=g:\programy\gadu-gadu\gg.exe |
"TCP Query User{7639F296-C063-4C5D-99CF-42DEA45A5DBC}G:\programy\bearshare\bearshare.exe" = protocol=6 | dir=in | app=g:\programy\bearshare\bearshare.exe |
"TCP Query User{763F307C-0807-408D-AF5D-4D534F9DA2F7}C:\users\michał\appdata\local\temp\rrhyel.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\rrhyel.exe |
"TCP Query User{7669B11E-9B81-4593-BE82-FAF8A2C09946}C:\program files\google\googletoolbarnotifier\googletoolbarnotifier.exe" = protocol=6 | dir=in | app=c:\program files\google\googletoolbarnotifier\googletoolbarnotifier.exe |
"TCP Query User{78A4620B-950D-4C59-BBD3-43343D3369D8}G:\gry\world of warcraft\launcher.exe" = protocol=6 | dir=in | app=g:\gry\world of warcraft\launcher.exe |
"TCP Query User{78BA1B0A-EAB7-48D7-8A5D-709EEC957056}C:\program files\mozilla firefox\firefox.exe" = protocol=6 | dir=in | app=c:\program files\mozilla firefox\firefox.exe |
"TCP Query User{79F79A89-C5DD-49D5-9B2C-AD7F36310798}G:\programy\ppmate\ppamnet.exe" = protocol=6 | dir=in | app=g:\programy\ppmate\ppamnet.exe |
"TCP Query User{7A9E1FBD-8BB7-47AC-9586-562B17AE2D23}C:\users\michał\appdata\local\temp\hlkbe.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\hlkbe.exe |
"TCP Query User{7BB45162-32B2-425D-99C0-D4B25F031615}C:\windows\explorer.exe" = protocol=6 | dir=in | app=c:\windows\explorer.exe |
"TCP Query User{7DE581C8-00CD-4C63-AE12-110C88EAD6E0}G:\programy\office 2007\office12\groovemonitor.exe" = protocol=6 | dir=in | app=g:\programy\office 2007\office12\groovemonitor.exe |
"TCP Query User{7F8C4EF6-CC7A-4205-A689-E7FAA53FA311}C:\program files\synaptics\syntp\syntpstart.exe" = protocol=6 | dir=in | app=c:\program files\synaptics\syntp\syntpstart.exe |
"TCP Query User{80E8B22A-08D1-4047-9A28-7180D7585ED9}C:\users\michał\appdata\local\temp\slthpy.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\slthpy.exe |
"TCP Query User{82A37D2B-05F9-4252-8A95-60AAC80693DA}C:\users\michał\appdata\local\temp\yfjlb.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\yfjlb.exe |
"TCP Query User{846FBB34-BF5F-48E9-BF33-C6994605B6E5}C:\users\michał\appdata\local\temp\qavkmb.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\qavkmb.exe |
"TCP Query User{84C0A792-339C-42FA-8AF3-982DE5C1AE0F}C:\users\michał\appdata\local\temp\winmefp.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winmefp.exe |
"TCP Query User{84FA5170-4B45-4E17-9481-4D5B215669FF}C:\users\michał\appdata\local\temp\winunfrb.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winunfrb.exe |
"TCP Query User{87FF2B86-7A6A-4BE3-B7FA-4C43E68A9443}G:\programy\tvants\tvants.exe" = protocol=6 | dir=in | app=g:\programy\tvants\tvants.exe |
"TCP Query User{88DA5E0A-C6D8-4E5D-9F03-7D1D8685C811}C:\windows\explorer.exe" = protocol=6 | dir=in | app=c:\windows\explorer.exe |
"TCP Query User{88FED34E-0EE7-4DEF-B9C2-3FE4F0A88B05}C:\users\michał\appdata\local\temp\winvgcjq.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winvgcjq.exe |
"TCP Query User{8A7F1836-6126-419E-92A8-27E7242FF3F3}C:\windows\ehome\ehtray.exe" = protocol=6 | dir=in | app=c:\windows\ehome\ehtray.exe |
"TCP Query User{8A89F659-3769-4445-973A-0B45C0D2BBF8}C:\users\michał\appdata\local\temp\kjgxu.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\kjgxu.exe |
"TCP Query User{8AB720E5-F481-4D1A-9319-12D0B67C7D97}C:\users\michał\appdata\local\temp\wintyjmc.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\wintyjmc.exe |
"TCP Query User{8BB8E722-B8AC-4736-9D23-CF8EDF20E77D}C:\users\michał\appdata\local\temp\winrmqch.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winrmqch.exe |
"TCP Query User{8C3F42E9-2845-4394-AD1B-8D544EC12DE0}G:\programy\dap\dap.exe" = protocol=6 | dir=in | app=g:\programy\dap\dap.exe |
"TCP Query User{8E1E4E06-5E7C-4BD9-9905-171B25E669AF}C:\program files\winamp remote\bin\orbtray.exe" = protocol=6 | dir=in | app=c:\program files\winamp remote\bin\orbtray.exe |
"TCP Query User{8E9DA736-6DAC-4367-9898-27671DF80411}C:\users\michał\appdata\roaming\sopcast\adv\sopadver.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\roaming\sopcast\adv\sopadver.exe |
"TCP Query User{8EC4F12D-DDCE-431A-95A1-4981622414F4}C:\users\michał\appdata\local\temp\winbvslsq.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winbvslsq.exe |
"TCP Query User{8FBE43F5-4EEC-4102-BCC3-18E634F229EA}C:\users\michał\appdata\local\temp\winittx.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winittx.exe |
"TCP Query User{9000D4CE-9E9D-467A-8FA5-32F76F02E358}C:\program files\synaptics\syntp\syntpstart.exe" = protocol=6 | dir=in | app=c:\program files\synaptics\syntp\syntpstart.exe |
"TCP Query User{90941F32-0172-4731-8A37-1002F9205BBE}G:\programy\opera\opera.exe" = protocol=6 | dir=in | app=g:\programy\opera\opera.exe |
"TCP Query User{9121EC7A-414E-4D24-9BA8-088075B776F6}C:\users\michał\appdata\local\temp\rbon.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\rbon.exe |
"TCP Query User{927E0B89-FABF-4DAA-8E1C-11834ED99622}C:\users\michał\appdata\local\temp\winrgtw.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winrgtw.exe |
"TCP Query User{9305817F-3976-41CF-8D44-54140CCA4905}C:\windows\ehome\ehmsas.exe" = protocol=6 | dir=in | app=c:\windows\ehome\ehmsas.exe |
"TCP Query User{933CD4A6-CBD9-4C89-A2D6-180D40E72F8C}C:\windows\system32\mobsync.exe" = protocol=6 | dir=in | app=c:\windows\system32\mobsync.exe |
"TCP Query User{93407B9C-101F-48CC-80AF-6A2124A59815}C:\users\michał\appdata\local\temp\winojabe.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winojabe.exe |
"TCP Query User{9343E592-DBBB-48B0-8EB4-390D1ACD4277}C:\program files\bioscrypt\verisoft\bin\aspanel.exe" = protocol=6 | dir=in | app=c:\program files\bioscrypt\verisoft\bin\aspanel.exe |
"TCP Query User{93C97CD4-4B71-4E84-A141-8042C95B9B00}C:\users\michał\appdata\local\temp\wingakj.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\wingakj.exe |
"TCP Query User{9760948B-D17F-43A8-B533-2446CE2130CE}G:\gry\need_for_speed_underground2[upbyatyll]\speed2.exe" = protocol=6 | dir=in | app=g:\gry\need_for_speed_underground2[upbyatyll]\speed2.exe |
"TCP Query User{98BEEC7F-DA70-4EDF-BE47-D148B2182714}C:\users\michał\appdata\local\temp\winkssl.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winkssl.exe |
"TCP Query User{992FE77A-A6B0-42CC-82F6-99D04F65B9FD}C:\users\michał\appdata\local\temp\winvwyxaa.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winvwyxaa.exe |
"TCP Query User{9B55A071-4C41-4E23-A573-D4F14F8DFD10}C:\users\michał\appdata\local\temp\winmdwyt.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winmdwyt.exe |
"TCP Query User{9BDF1C2A-49AD-48BA-884D-2528F99BD714}C:\users\michał\appdata\local\temp\windhgucp.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\windhgucp.exe |
"TCP Query User{9C74BCF1-2AD8-4ADE-A118-D03937213993}C:\program files\hewlett-packard\hp quick launch buttons\qlbctrl.exe" = protocol=6 | dir=in | app=c:\program files\hewlett-packard\hp quick launch buttons\qlbctrl.exe |
"TCP Query User{9F13ED11-E2EC-459E-BCA1-5DFBFC9E00EF}C:\users\michał\appdata\local\temp\oddtpt.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\oddtpt.exe |
"TCP Query User{9FA345E7-4A9D-4DC2-9B79-83D79D989859}C:\program files\windows defender\msascui.exe" = protocol=6 | dir=in | app=c:\program files\windows defender\msascui.exe |
"TCP Query User{A0276BD0-FD38-436E-984F-83ECF3D95D2B}G:\programy\bearshare2\bearshare.exe" = protocol=6 | dir=in | app=g:\programy\bearshare2\bearshare.exe |
"TCP Query User{A2757E99-08B4-44FD-9768-68631D213C5E}C:\program files\java\jre6\bin\jusched.exe" = protocol=6 | dir=in | app=c:\program files\java\jre6\bin\jusched.exe |
"TCP Query User{A442EE45-B412-43D7-A346-F8B7C2F854EE}C:\users\michał\appdata\local\temp\qsjnu.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\qsjnu.exe |
"TCP Query User{A456A6AA-4A89-499A-85EC-DDC48A8378D4}C:\users\michał\appdata\local\temp\wincckm.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\wincckm.exe |
"TCP Query User{A524F400-E4E8-4001-9CCB-F382E5CD2F3F}C:\users\michał\appdata\local\temp\lcpc.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\lcpc.exe |
"TCP Query User{A6778BF0-E518-4436-9160-FDCC1897C207}G:\programy\sopcast\sopvod.exe" = protocol=6 | dir=in | app=g:\programy\sopcast\sopvod.exe |
"TCP Query User{A6DA10CC-34D9-4D61-B0E7-9F37EDC0D3AB}C:\users\michał\appdata\local\temp\winkyrowc.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winkyrowc.exe |
"TCP Query User{A6DE52D8-6120-4119-914C-9159DF33DD1C}C:\users\michał\appdata\local\temp\winpdyhd.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winpdyhd.exe |
"TCP Query User{AA053F56-2C59-4219-BCCF-54A83051FD28}C:\users\anno\appdata\local\temp\igwre.exe" = protocol=6 | dir=in | app=c:\users\anno\appdata\local\temp\igwre.exe |
"TCP Query User{AA247DE4-A648-4F7B-A092-85740AB4131C}G:\gry\nfs\speed2.exe" = protocol=6 | dir=in | app=g:\gry\nfs\speed2.exe |
"TCP Query User{AB97C4D6-19B5-4433-8FC8-8FB75EB1039E}C:\users\michał\appdata\local\temp\winpikil.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winpikil.exe |
"TCP Query User{ACC4EAF6-C71B-4804-A4AB-C8E9F1348E55}C:\users\michał\appdata\local\temp\nujfdy.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\nujfdy.exe |
"TCP Query User{AD199CA9-046A-4831-9AEC-D81D2AFED278}C:\users\michał\appdata\local\temp\winvruk.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winvruk.exe |
"TCP Query User{ADB3EBF3-CAE6-4A2B-9841-DDE601E3DBE6}C:\program files\common files\nokia\service layer\a\nsl_host_process.exe" = protocol=6 | dir=in | app=c:\program files\common files\nokia\service layer\a\nsl_host_process.exe |
"TCP Query User{ADBDA749-8A67-48F6-B23D-D4197C70B411}C:\users\michał\appdata\local\temp\winucth.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winucth.exe |
"TCP Query User{B2618ABE-0898-452E-93B3-EE39DABCC499}C:\users\michał\appdata\local\temp\winntgno.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winntgno.exe |
"TCP Query User{B2F2083D-BC8B-4670-A903-EC77D8EC4F8B}C:\program files\nokia\nokia software updater\nsu_ui_client.exe" = protocol=6 | dir=in | app=c:\program files\nokia\nokia software updater\nsu_ui_client.exe |
"TCP Query User{B32E6E56-C871-488C-ACB7-8988C240421D}C:\users\michał\appdata\local\temp\winheqdew.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winheqdew.exe |
"TCP Query User{B38C1F90-334B-419D-9C17-20A9958676A1}C:\users\michał\appdata\local\temp\dqetv.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\dqetv.exe |
"TCP Query User{B5E0ECA3-11EC-485C-86DC-464955D5AEEE}C:\windows\system32\netsh.exe" = protocol=6 | dir=in | app=c:\windows\system32\netsh.exe |
"TCP Query User{B71A88AE-8206-46B5-86B2-B1F65A7CBE7A}C:\program files\google\googletoolbarnotifier\googletoolbarnotifier.exe" = protocol=6 | dir=in | app=c:\program files\google\googletoolbarnotifier\googletoolbarnotifier.exe |
"TCP Query User{B7D9BE11-AC37-42F8-8266-F02B5B013637}C:\program files\common files\nokia\service layer\a\nsl_host_process.exe" = protocol=6 | dir=in | app=c:\program files\common files\nokia\service layer\a\nsl_host_process.exe |
"TCP Query User{B9F269ED-1A5B-4712-AA36-C771E67A7AC0}C:\users\michał\appdata\local\temp\wlgk.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\wlgk.exe |
"TCP Query User{BD121A35-C235-4C57-BE60-CE01A54CD047}G:\programy\sopcast\sopcast.exe" = protocol=6 | dir=in | app=g:\programy\sopcast\sopcast.exe |
"TCP Query User{BDBE33EC-18E3-47D0-AECB-72E4E5672EA2}C:\users\michał\appdata\local\temp\wincouf.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\wincouf.exe |
"TCP Query User{BEA4EAB5-0CBD-47D9-8F31-CFD98F246028}C:\program files\hewlett-packard\hp wireless assistant\hpwamain.exe" = protocol=6 | dir=in | app=c:\program files\hewlett-packard\hp wireless assistant\hpwamain.exe |
"TCP Query User{C03CDA50-91F0-4C07-80E5-4819352D5BC5}G:\gry\call of juarez\protect.exe" = protocol=6 | dir=in | app=g:\gry\call of juarez\protect.exe |
"TCP Query User{C08B2EEE-CC18-40AF-969F-52453F82021B}C:\users\michał\desktop\nestopia\nestopia.exe" = protocol=6 | dir=in | app=c:\users\michał\desktop\nestopia\nestopia.exe |
"TCP Query User{C17345F5-C3D4-402A-AB28-B9968763AD29}C:\program files\codemasters\dirt\dirt.exe" = protocol=6 | dir=in | app=c:\program files\codemasters\dirt\dirt.exe |
"TCP Query User{C1C18CEC-C1D9-45D8-90FD-7413C9B34B13}C:\program files\electronic arts\eadm\core.exe" = protocol=6 | dir=in | app=c:\program files\electronic arts\eadm\core.exe |
"TCP Query User{C20EF0AD-144F-4F9F-A13E-9CD7EC786DDB}G:\programy\gadu-gadu2\gg.exe" = protocol=6 | dir=in | app=g:\programy\gadu-gadu2\gg.exe |
"TCP Query User{C4706336-F936-4105-9E2A-BD2E1A4AC4C9}G:\programy\gadu-gadu\gg.exe" = protocol=6 | dir=in | app=g:\programy\gadu-gadu\gg.exe |
"TCP Query User{C72863D0-2145-4907-8EB7-1984BB750E80}C:\users\michał\appdata\local\temp\winskbqln.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winskbqln.exe |
"TCP Query User{C80B2D74-63D7-4B9D-8EC2-0FA557E786D0}C:\windows\system32\dwm.exe" = protocol=6 | dir=in | app=c:\windows\system32\dwm.exe |
"TCP Query User{C8F8F1E5-8604-41F9-A366-FBFB6B6D13FF}C:\users\michał\appdata\local\temp\mebc.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\mebc.exe |
"TCP Query User{C907DCB9-81EE-4509-9E20-6187802069CC}C:\users\michał\appdata\local\temp\sgoyf.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\sgoyf.exe |
"TCP Query User{C91087A9-FD1C-4942-9680-DB0BE8BE3D7B}G:\programy\tvants\tvants.exe" = protocol=6 | dir=in | app=g:\programy\tvants\tvants.exe |
"TCP Query User{CC16F5A5-266C-4FC2-9A53-462E0946C698}C:\users\michał\appdata\local\temp\winltejq.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winltejq.exe |
"TCP Query User{CC23E5A6-8B46-47A2-BEA3-0C3A478F8446}C:\users\michał\appdata\local\temp\winemnbmh.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winemnbmh.exe |
"TCP Query User{D06B7E15-D884-40DA-9B24-3419123682A5}C:\users\michał\appdata\local\temp\jwbft.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\jwbft.exe |
"TCP Query User{D125CD79-9EE7-42F8-9C22-B4EB5CE185D8}C:\users\michał\appdata\roaming\macromedia\flash player\www.macromedia.com\bin\octoshape\octoshape.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\roaming\macromedia\flash player\www.macromedia.com\bin\octoshape\octoshape.exe |
"TCP Query User{D18ABF4C-8AB9-42E0-A3D4-D0FDCA45BF10}C:\program files\winamp remote\bin\orbir.exe" = protocol=6 | dir=in | app=c:\program files\winamp remote\bin\orbir.exe |
"TCP Query User{D2930565-D7ED-461F-AACB-BC2B301AE9F3}G:\programy\hamachi\hamachi.exe" = protocol=6 | dir=in | app=g:\programy\hamachi\hamachi.exe |
"TCP Query User{D37E6078-85CE-457B-9822-EAEF51FDD96D}G:\programy\office 2007\office12\groovemonitor.exe" = protocol=6 | dir=in | app=g:\programy\office 2007\office12\groovemonitor.exe |
"TCP Query User{D494B93D-3774-4185-BF74-6C9CF21222C7}G:\gry\world of warcraft\wow-3.2.0.10192-to-3.3.0.10958-enus-downloader.exe" = protocol=6 | dir=in | app=g:\gry\world of warcraft\wow-3.2.0.10192-to-3.3.0.10958-enus-downloader.exe |
"TCP Query User{D517ABC0-8BE4-4DA6-8E81-02609DEA329B}G:\gry\call of juarez\coj.exe" = protocol=6 | dir=in | app=g:\gry\call of juarez\coj.exe |
"TCP Query User{D729632B-A52B-45D2-9085-E2E4D36E041E}C:\users\michał\appdata\local\temp\winreoh.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winreoh.exe |
"TCP Query User{D95C1758-97BE-4FBF-8A57-2A01630155FC}G:\programy\bearshare\bearshare.exe" = protocol=6 | dir=in | app=g:\programy\bearshare\bearshare.exe |
"TCP Query User{D9F2A66F-855C-4F4F-B357-A545B67A9CC3}C:\users\michał\appdata\local\temp\winixks.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winixks.exe |
"TCP Query User{DA281CFD-AC45-43E1-A4BA-50C7DFEE1D49}C:\users\michał\appdata\local\temp\jebfeb.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\jebfeb.exe |
"TCP Query User{DAB4B7F4-3A52-4295-9320-05E72D5E3889}G:\programy\alcohol 120\axcmd.bin" = protocol=6 | dir=in | app=g:\programy\alcohol 120\axcmd.bin |
"TCP Query User{DEC105C3-AC31-4F81-B6D3-0F896B52B31B}G:\programy\sopcast\adv\sopadver.exe" = protocol=6 | dir=in | app=g:\programy\sopcast\adv\sopadver.exe |
"TCP Query User{E059DEB5-31D8-4BF9-88F2-AC1F2AA6433E}C:\users\michał\appdata\local\temp\winernyng.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winernyng.exe |
"TCP Query User{E298869D-E84B-4F83-BEDC-AC8BD364F598}C:\users\michał\appdata\local\temp\ucrnd.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\ucrnd.exe |
"TCP Query User{E2EE6954-78DE-4EF5-89DA-0576FA8823EB}C:\users\michał\appdata\local\temp\winhlxoj.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winhlxoj.exe |
"TCP Query User{E39B4349-92AC-4CDE-8367-904CC332D524}C:\users\michał\appdata\local\temp\ibpm.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\ibpm.exe |
"TCP Query User{E42A3D1E-A2E7-4C97-BD05-71FD39351C52}G:\programy\opera\program\plugins\npswf32_flashutil.exe" = protocol=6 | dir=in | app=g:\programy\opera\program\plugins\npswf32_flashutil.exe |
"TCP Query User{E4BE949C-87EB-457F-A6C2-BD1FA646D29B}C:\users\michał\appdata\local\temp\windcgdo.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\windcgdo.exe |
"TCP Query User{E524BC4D-62B5-4955-890E-47810D03B0F8}C:\users\michał\appdata\local\temp\winqvcf.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winqvcf.exe |
"TCP Query User{E52FA440-E098-4B94-8DDF-7C2B010A7832}C:\users\michał\appdata\local\temp\winslbh.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winslbh.exe |
"TCP Query User{E589D251-E373-4FA2-9542-AC326D262E0B}C:\users\michał\appdata\local\temp\winfowvr.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winfowvr.exe |
"TCP Query User{E65960A0-66F7-414A-8B0B-720068EFC0E2}C:\program files\utorrent\utorrent.exe" = protocol=6 | dir=in | app=c:\program files\utorrent\utorrent.exe |
"TCP Query User{E667E788-A2B3-4E46-8F78-3DEE9C3E7865}C:\windows\system32\dllhost.exe" = protocol=6 | dir=in | app=c:\windows\system32\dllhost.exe |
"TCP Query User{E7154D80-A6B9-4B22-B0D3-BE3F3366FD48}C:\users\michał\appdata\local\temp\csdqab.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\csdqab.exe |
"TCP Query User{E842B2DE-7BC7-446E-8D6E-35B92A3D9C65}G:\programy\opera unite\program\plugins\npswf32_flashutil.exe" = protocol=6 | dir=in | app=g:\programy\opera unite\program\plugins\npswf32_flashutil.exe |
"TCP Query User{E9CD0DAD-89EF-4916-99C8-7B905B06E719}C:\users\michał\appdata\local\temp\winkhkqg.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winkhkqg.exe |
"TCP Query User{EA7E3188-63E2-4002-83C5-70A6B4BD8F4E}C:\users\michał\appdata\local\temp\windrjtc.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\windrjtc.exe |
"TCP Query User{EBA7207C-B524-42F2-9F52-8ABAC5D4BBAF}G:\gry\trine\trine\trine_launcher.exe" = protocol=6 | dir=in | app=g:\gry\trine\trine\trine_launcher.exe |
"TCP Query User{EBFC05D0-B4C4-4E03-9200-A1BE064C3491}C:\users\michał\appdata\local\temp\vifn.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\vifn.exe |
"TCP Query User{EC601E70-4F96-4DCF-B820-3315CED72E5D}C:\users\michał\appdata\local\temp\winmdox.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winmdox.exe |
"TCP Query User{ED674859-FF98-40F9-BE10-14D8AA501EA7}C:\users\michał\appdata\local\temp\lqefqu.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\lqefqu.exe |
"TCP Query User{EDA04E2E-8F91-43FB-8F90-636B65620047}C:\windows\system32\netsh.exe" = protocol=6 | dir=in | app=c:\windows\system32\netsh.exe |
"TCP Query User{EF9DEA96-6CAE-4AA8-834E-A8CF864DE98B}C:\users\michał\appdata\local\temp\lnjfe.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\lnjfe.exe |
"TCP Query User{F1B90532-18A5-4B16-B7E1-65067E452D9C}C:\users\michał\appdata\local\temp\winkqgc.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winkqgc.exe |
"TCP Query User{F28C7D53-1EB5-4F08-92F3-E83D60351EA9}C:\users\michał\appdata\local\temp\winrkyi.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winrkyi.exe |
"TCP Query User{F292215D-988E-40BB-B933-68659A111D9B}C:\users\michał\appdata\local\temp\winkbivh.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winkbivh.exe |
"TCP Query User{F3EB3A5D-0FCF-4074-B161-DCA3E3378AD1}G:\programy\dc++\dcplusplus.exe" = protocol=6 | dir=in | app=g:\programy\dc++\dcplusplus.exe |
"TCP Query User{F862ECE2-C37B-4773-A7B9-155060879903}G:\gry\starcraft ii beta\support\blizzarddownloader.exe" = protocol=6 | dir=in | app=g:\gry\starcraft ii beta\support\blizzarddownloader.exe |
"TCP Query User{F979C5B0-9E9D-4645-B8B9-C122F619AFA8}G:\programy\evillyrics\evillyrics.exe" = protocol=6 | dir=in | app=g:\programy\evillyrics\evillyrics.exe |
"TCP Query User{FAD4B605-4BA8-4F9C-B6BD-8C34BD04A0FD}C:\users\michał\appdata\local\temp\futhf.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\futhf.exe |
"TCP Query User{FBBE246B-DAFF-4CF8-AE29-31472485535E}C:\users\michał\appdata\local\temp\naxg.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\naxg.exe |
"TCP Query User{FDD862C2-0804-4F0C-8D44-B9F33BDC70F2}G:\gry\starcraft ii beta\versions\base14093\sc2.exe" = protocol=6 | dir=in | app=g:\gry\starcraft ii beta\versions\base14093\sc2.exe |
"TCP Query User{FECB825A-DF75-441F-AAC7-9C405B586784}C:\users\michał\appdata\local\temp\winmdmwa.exe" = protocol=6 | dir=in | app=c:\users\michał\appdata\local\temp\winmdmwa.exe |
"UDP Query User{01013624-DE77-49AA-A87D-9A23DBA7E55C}G:\gry\world of warcraft\launcher.exe" = protocol=17 | dir=in | app=g:\gry\world of warcraft\launcher.exe |
"UDP Query User{0150AC20-9DE9-44EC-9594-3B28FABAA43E}G:\programy\office 2007\office12\groovemonitor.exe" = protocol=17 | dir=in | app=g:\programy\office 2007\office12\groovemonitor.exe |
"UDP Query User{01C344A0-0FCE-4479-AEB3-0A0F30FF7FCC}C:\users\michał\appdata\local\temp\wineqmnb.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\wineqmnb.exe |
"UDP Query User{02F50649-FEC5-4159-8064-6BF9E476AAEA}C:\program files\adobe\reader 8.0\reader\acrord32.exe" = protocol=17 | dir=in | app=c:\program files\adobe\reader 8.0\reader\acrord32.exe |
"UDP Query User{035B2904-3485-40E5-89E2-601F4DC488C6}C:\users\michał\appdata\local\temp\winittx.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winittx.exe |
"UDP Query User{0414E0E0-529B-4866-A03E-4F273134A47D}C:\users\michał\appdata\local\temp\csdqab.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\csdqab.exe |
"UDP Query User{0458FBC1-200B-4886-8947-11920B0207D1}C:\users\michał\appdata\local\temp\axypcl.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\axypcl.exe |
"UDP Query User{0497720F-2086-45C4-9690-312900BA215F}C:\windows\system32\mobsync.exe" = protocol=17 | dir=in | app=c:\windows\system32\mobsync.exe |
"UDP Query User{05DA0E48-A9D3-4BA3-B7EC-89DBCDEC85F3}C:\program files\utorrent\utorrent.exe" = protocol=17 | dir=in | app=c:\program files\utorrent\utorrent.exe |
"UDP Query User{063F7115-1BF8-4F81-9486-F5A5E0D9ACDA}C:\program files\hewlett-packard\hp quick launch buttons\qlbctrl.exe" = protocol=17 | dir=in | app=c:\program files\hewlett-packard\hp quick launch buttons\qlbctrl.exe |
"UDP Query User{06E8B5AC-8C84-4B87-8C5A-A7124C43D4E9}G:\programy\opera unite\program\plugins\npswf32_flashutil.exe" = protocol=17 | dir=in | app=g:\programy\opera unite\program\plugins\npswf32_flashutil.exe |
"UDP Query User{06E91958-E964-4267-A505-EB69BB699792}C:\users\michał\appdata\local\temp\winpdixh.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winpdixh.exe |
"UDP Query User{074F5AC4-6711-4D86-8326-92386CCAA989}G:\gry\need_for_speed_underground2[upbyatyll]\speed2.exe" = protocol=17 | dir=in | app=g:\gry\need_for_speed_underground2[upbyatyll]\speed2.exe |
"UDP Query User{08AFF79A-5BB9-4457-BA40-44AE1F730F80}C:\users\michał\appdata\local\temp\rpdq.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\rpdq.exe |
"UDP Query User{08D49FBB-FCA2-41D6-A8CF-D8FA12E20514}C:\users\michał\appdata\local\temp\winupleln.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winupleln.exe |
"UDP Query User{0AB6ADDE-3258-4AEE-9575-156DCF136F34}C:\users\michał\appdata\local\temp\nfhg.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\nfhg.exe |
"UDP Query User{0AC3D0AB-8156-4B5F-BBD3-E837373542BA}G:\gry\monopoly by parker brothers\monopolypb.exe" = protocol=17 | dir=in | app=g:\gry\monopoly by parker brothers\monopolypb.exe |
"UDP Query User{0CAE8E75-19A2-460D-92A0-1A39A7B755FE}G:\gry\starcraft ii beta\support\blizzarddownloader.exe" = protocol=17 | dir=in | app=g:\gry\starcraft ii beta\support\blizzarddownloader.exe |
"UDP Query User{0CBDA64C-60EE-467E-B97F-CBA0618E33D7}C:\program files\nokia\nokia software updater\nsu_ui_client.exe" = protocol=17 | dir=in | app=c:\program files\nokia\nokia software updater\nsu_ui_client.exe |
"UDP Query User{0CCB4729-85B7-43B8-8F72-EF202B82D992}C:\users\michał\appdata\local\temp\winhiqcrc.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winhiqcrc.exe |
"UDP Query User{0CDAFA83-02BF-430B-9E2F-A212A619BEEB}C:\users\michał\appdata\local\temp\lcpc.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\lcpc.exe |
"UDP Query User{0CEDF484-783A-4D44-9D35-8FFE68C6A27F}G:\gry\bmoworld\bomberman.exe" = protocol=17 | dir=in | app=g:\gry\bmoworld\bomberman.exe |
"UDP Query User{0D2C63E0-17C2-4FE0-BBD3-E3321F8FD16C}C:\users\michał\appdata\local\temp\iumaqi.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\iumaqi.exe |
"UDP Query User{0FA7ECD6-28FB-4A2A-990E-1AB37D10639A}G:\gry\bmoworld\bomberman.exe" = protocol=17 | dir=in | app=g:\gry\bmoworld\bomberman.exe |
"UDP Query User{10010BC9-63C6-42FD-93EE-30CDD518F716}C:\users\michał\appdata\local\temp\winyivvb.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winyivvb.exe |
"UDP Query User{101499DE-19B9-4764-982E-99C86F66E74A}C:\users\michał\appdata\roaming\sopcast\adv\sopadver.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\roaming\sopcast\adv\sopadver.exe |
"UDP Query User{10BF45FF-7FB4-4459-8E67-87EFDEAB63C4}G:\programy\dap\dap.exe" = protocol=17 | dir=in | app=g:\programy\dap\dap.exe |
"UDP Query User{133DBA97-855F-4236-84C8-E7EB38C1440A}C:\users\michał\appdata\local\temp\winucth.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winucth.exe |
"UDP Query User{135162A3-F4C7-4540-A911-5A64A7545483}C:\users\michał\appdata\local\temp\winmvrin.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winmvrin.exe |
"UDP Query User{14C22E6B-EC56-4517-AB98-6EABDD150B05}C:\users\michał\appdata\local\temp\winpikil.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winpikil.exe |
"UDP Query User{186987A5-FDFE-4D33-BAAC-07CC24412B58}C:\users\michał\appdata\local\temp\winntgno.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winntgno.exe |
"UDP Query User{19D40641-72E1-4360-8227-C9111547DFBE}C:\users\michał\appdata\roaming\macromedia\flash player\www.macromedia.com\bin\octoshape\octoshape.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\roaming\macromedia\flash player\www.macromedia.com\bin\octoshape\octoshape.exe |
"UDP Query User{1B098D75-068D-4B7C-9281-A10176DE2000}C:\program files\utorrent\utorrent.exe" = protocol=17 | dir=in | app=c:\program files\utorrent\utorrent.exe |
"UDP Query User{1B26A7DF-F843-4A59-A1BE-375D0005BF83}C:\users\michał\appdata\local\temp\rrhyel.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\rrhyel.exe |
"UDP Query User{1E304F4D-EDE2-4F7A-BEC9-90D39B6D5C76}C:\users\michał\appdata\local\temp\winwjala.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winwjala.exe |
"UDP Query User{1E866A3C-3D81-49D7-94D9-6E94A092BA6B}C:\users\michał\appdata\local\temp\ibpm.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\ibpm.exe |
"UDP Query User{1F548E68-EE56-4C32-8338-CF9BFBBA106E}C:\program files\amd\dual-core optimizer\amd_dc_opt.exe" = protocol=17 | dir=in | app=c:\program files\amd\dual-core optimizer\amd_dc_opt.exe |
"UDP Query User{2058661B-0B11-4EF6-B61B-1EA6B1ED752D}C:\program files\google\googletoolbarnotifier\googletoolbarnotifier.exe" = protocol=17 | dir=in | app=c:\program files\google\googletoolbarnotifier\googletoolbarnotifier.exe |
"UDP Query User{2445DC1E-D832-4406-808C-D603FF90283A}G:\programy\sopcast\sopvod.exe" = protocol=17 | dir=in | app=g:\programy\sopcast\sopvod.exe |
"UDP Query User{246EA99F-D24C-428B-9592-840523E68DEC}C:\users\michał\appdata\local\temp\winamja.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winamja.exe |
"UDP Query User{24B0CA28-E203-4C08-94F1-11B85A0BECC9}C:\users\anno\appdata\local\temp\igwre.exe" = protocol=17 | dir=in | app=c:\users\anno\appdata\local\temp\igwre.exe |
"UDP Query User{24FF7675-96AE-47CC-A87A-94216BFF87A6}G:\programy\napi-projekt\napisy.exe" = protocol=17 | dir=in | app=g:\programy\napi-projekt\napisy.exe |
"UDP Query User{29AFA6A4-D615-411F-ADD8-807B20760020}C:\users\michał\appdata\local\temp\winnarl.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winnarl.exe |
"UDP Query User{29E6C5DF-6AF5-4204-A3C6-BC8DACEAB934}E:\postal 2 share the pain\postal2 stp\setup.exe" = protocol=17 | dir=in | app=e:\postal 2 share the pain\postal2 stp\setup.exe |
"UDP Query User{2DB05B56-2C34-4FFD-9807-77E71CCC95CA}C:\program files\mozilla firefox\firefox.exe" = protocol=17 | dir=in | app=c:\program files\mozilla firefox\firefox.exe |
"UDP Query User{2EC9D9F5-22F9-4A63-8D91-A9F0F8015ADC}C:\users\michał\appdata\local\temp\wintrsvs.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\wintrsvs.exe |
"UDP Query User{3002E5B1-3754-4EC8-A484-515A287FE76B}C:\users\michał\appdata\local\temp\winbjbye.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winbjbye.exe |
"UDP Query User{30F0DA98-21A0-46D6-B425-50F481A5C4EE}G:\gry\call of juarez\protect.exe" = protocol=17 | dir=in | app=g:\gry\call of juarez\protect.exe |
"UDP Query User{343A6A05-398D-4488-9BF5-AEBA6C3EC044}G:\programy\dap\dap.exe" = protocol=17 | dir=in | app=g:\programy\dap\dap.exe |
"UDP Query User{356A26D0-BE5A-4F74-9DD1-914BA0178F79}C:\users\michał\appdata\local\temp\wintyjmc.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\wintyjmc.exe |
"UDP Query User{37FAADC6-04E9-4A83-A7FE-BF4D33363FA5}C:\users\michał\appdata\local\temp\sgoyf.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\sgoyf.exe |
"UDP Query User{388118ED-FD66-4536-9E53-F5E3B9B29CEB}C:\users\michał\appdata\local\temp\atte.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\atte.exe |
"UDP Query User{3A815C50-ABB9-47AF-B418-E7AD8C199806}C:\users\michał\appdata\local\temp\vifn.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\vifn.exe |
"UDP Query User{3AE33C4D-8B7A-4DFC-A25B-BF43B6A3C745}C:\windows\explorer.exe" = protocol=17 | dir=in | app=c:\windows\explorer.exe |
"UDP Query User{3C2D78D5-D56A-461E-A4C9-AAC1C426AC9F}G:\programy\opera\opera.exe" = protocol=17 | dir=in | app=g:\programy\opera\opera.exe |
"UDP Query User{3F0AE480-45D6-4CB7-A2CF-33B9DB3C7BE6}C:\program files\tvants\tvants.exe" = protocol=17 | dir=in | app=c:\program files\tvants\tvants.exe |
"UDP Query User{3F2D347A-D756-476D-92AC-A2A37ACD1C69}C:\users\michał\appdata\local\temp\winslbh.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winslbh.exe |
"UDP Query User{401F532E-E4AE-460F-917B-0E49254F2862}C:\users\michał\appdata\local\temp\xksrc.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\xksrc.exe |
"UDP Query User{40587BDE-E044-41EC-80CE-812AFAF11FE9}G:\gry\starcraft ii beta\versions\base14093\sc2.exe" = protocol=17 | dir=in | app=g:\gry\starcraft ii beta\versions\base14093\sc2.exe |
"UDP Query User{40ACE728-7DBA-493B-ADDA-D2C24FDFF6C9}C:\users\michał\appdata\local\temp\kkqxry.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\kkqxry.exe |
"UDP Query User{40B93A5B-1A76-4A9B-8609-765872EF4DD4}C:\users\michał\appdata\local\temp\winsynhea.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winsynhea.exe |
"UDP Query User{425FFC12-D1A9-40F4-A7EE-440403E5BC38}C:\windows\system32\taskeng.exe" = protocol=17 | dir=in | app=c:\windows\system32\taskeng.exe |
"UDP Query User{42A05507-AC0D-4C66-9154-F36DA7492F2A}C:\users\michał\appdata\local\temp\winnpfhf.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winnpfhf.exe |
"UDP Query User{43D3330D-DE54-41E0-91C4-A69EF2F3F385}C:\program files\hewlett-packard\hp wireless assistant\wifimsg.exe" = protocol=17 | dir=in | app=c:\program files\hewlett-packard\hp wireless assistant\wifimsg.exe |
"UDP Query User{43F3AB4F-D746-4B10-9537-D9CF28CE5B09}C:\windows\system32\dwm.exe" = protocol=17 | dir=in | app=c:\windows\system32\dwm.exe |
"UDP Query User{458F12F6-CD2E-4408-8F07-F8D96E3E53C9}C:\users\michał\appdata\local\temp\winkqgc.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winkqgc.exe |
"UDP Query User{4595176F-94CC-4A18-921C-DB4659A15125}C:\windows\explorer.exe" = protocol=17 | dir=in | app=c:\windows\explorer.exe |
"UDP Query User{45DC9FFC-605A-4319-9D3D-C221BD7D2C6F}G:\gry\nfs\speed2.exe" = protocol=17 | dir=in | app=g:\gry\nfs\speed2.exe |
"UDP Query User{47624CFC-EC54-4727-8F16-F8E39B0AB99F}C:\users\michał\appdata\local\temp\lnjfe.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\lnjfe.exe |
"UDP Query User{4764505E-10CD-4A18-AEEB-43D15C618C4E}C:\program files\winamp remote\bin\orb.exe" = protocol=17 | dir=in | app=c:\program files\winamp remote\bin\orb.exe |
"UDP Query User{479220A5-FD7E-445C-816C-349CAA35FA72}C:\users\michał\appdata\local\temp\wincouf.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\wincouf.exe |
"UDP Query User{48F03BFB-9DB7-49B3-B445-B244B159FA3D}C:\users\michał\appdata\local\temp\winlvor.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winlvor.exe |
"UDP Query User{4C02A32B-B206-4070-B555-5326571B29AA}G:\gry\medieval ii total war\medieval2.exe" = protocol=17 | dir=in | app=g:\gry\medieval ii total war\medieval2.exe |
"UDP Query User{4C560BFA-039A-45A2-B5E4-B9B19BFF2665}C:\program files\synaptics\syntp\syntpenh.exe" = protocol=17 | dir=in | app=c:\program files\synaptics\syntp\syntpenh.exe |
"UDP Query User{4C64A117-FAD5-47A6-B09E-99A1FEFE9434}C:\users\michał\appdata\local\temp\winkyrowc.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winkyrowc.exe |
"UDP Query User{4DA75A88-EFAC-4906-B49D-028084788D68}C:\users\michał\appdata\local\temp\winrmqch.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winrmqch.exe |
"UDP Query User{4FE077D8-371E-4FD5-B6B9-23B0BD439AB2}C:\program files\electronic arts\eadm\core.exe" = protocol=17 | dir=in | app=c:\program files\electronic arts\eadm\core.exe |
"UDP Query User{508C7ECC-9367-496B-84F2-0F552E589E08}C:\windows\system32\taskeng.exe" = protocol=17 | dir=in | app=c:\windows\system32\taskeng.exe |
"UDP Query User{50BAB524-5FEC-472E-8E63-DA7A3A9FADC4}C:\users\michał\appdata\local\temp\kwqc.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\kwqc.exe |
"UDP Query User{52EDA739-8B01-4FBC-B74B-77097EB93455}C:\users\michał\appdata\local\temp\rgbnuk.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\rgbnuk.exe |
"UDP Query User{530154D1-9C99-4CEE-A4B5-4757AC0C5401}G:\programy\easeus partition master 4.1.1 home edition\bin\main.exe" = protocol=17 | dir=in | app=g:\programy\easeus partition master 4.1.1 home edition\bin\main.exe |
"UDP Query User{5394085A-2951-46F5-A016-04BD5BE9BF67}G:\programy\tvants\tvants.exe" = protocol=17 | dir=in | app=g:\programy\tvants\tvants.exe |
"UDP Query User{54150800-9554-4065-98C8-80C7397736A9}G:\gry\world of warcraft\wow-3.2.0.10192-to-3.3.0.10958-enus-downloader.exe" = protocol=17 | dir=in | app=g:\gry\world of warcraft\wow-3.2.0.10192-to-3.3.0.10958-enus-downloader.exe |
"UDP Query User{550E5FF0-FBF7-4A97-9824-28FF16C9E8F0}C:\users\michał\appdata\local\temp\winfowvr.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winfowvr.exe |
"UDP Query User{56367055-B098-4EA3-B596-43EF35754B0F}C:\users\michał\appdata\local\temp\winsgrfgx.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winsgrfgx.exe |
"UDP Query User{56879092-C899-4586-9E08-F7C8A1AFE228}C:\users\michał\appdata\local\temp\spey.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\spey.exe |
"UDP Query User{575B8ADB-C22B-453A-838F-8BACF28A223E}C:\users\michał\appdata\local\temp\winfrkjr.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winfrkjr.exe |
"UDP Query User{57A76A09-F7CA-46E6-9495-95B39F64C19B}C:\users\michał\appdata\local\temp\oddtpt.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\oddtpt.exe |
"UDP Query User{57C60CBD-196F-447C-95CD-5F574501B5BE}G:\programy\sopcast\adv\sopadver.exe" = protocol=17 | dir=in | app=g:\programy\sopcast\adv\sopadver.exe |
"UDP Query User{59473203-FF16-4A0C-80BB-BE17A9BDCA34}C:\program files\widcomm\bluetooth software\bttray.exe" = protocol=17 | dir=in | app=c:\program files\widcomm\bluetooth software\bttray.exe |
"UDP Query User{5968FEA6-ABB3-42D9-904F-EF5355207648}G:\programy\office 2007\office12\groovemonitor.exe" = protocol=17 | dir=in | app=g:\programy\office 2007\office12\groovemonitor.exe |
"UDP Query User{59C66B6E-F625-4C10-8431-A9B62A143BC4}C:\users\michał\appdata\local\temp\qsjnu.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\qsjnu.exe |
"UDP Query User{59CEFA1F-3910-40F2-B587-B7806FF49D57}C:\users\michał\appdata\local\temp\winkssl.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winkssl.exe |
"UDP Query User{5A12A449-D41A-4B4F-9CC1-BCBBE0872816}G:\gry\call of juarez\protect.exe" = protocol=17 | dir=in | app=g:\gry\call of juarez\protect.exe |
"UDP Query User{5AA7DDEC-0A78-4D0F-A6F4-6D9581BF8192}C:\users\michał\appdata\local\temp\yfjlb.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\yfjlb.exe |
"UDP Query User{5B5A33F7-D6F0-40C7-84ED-68A248F4B6DB}C:\users\michał\appdata\local\temp\nujfdy.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\nujfdy.exe |
"UDP Query User{5BB77135-2FB3-47E5-B461-CB662D2A208B}C:\program files\synaptics\syntp\syntpstart.exe" = protocol=17 | dir=in | app=c:\program files\synaptics\syntp\syntpstart.exe |
"UDP Query User{5C59E171-F7D5-4776-8C8B-488AEAC19343}C:\users\michał\appdata\local\temp\vpag.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\vpag.exe |
"UDP Query User{5CF5731C-DB8F-4CB6-91CF-175799E344D5}C:\users\michał\appdata\local\temp\winskbqln.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winskbqln.exe |
"UDP Query User{5DA17109-BBE5-43D4-88BD-5EA972424E3F}G:\gry\call of juarez\coj.exe" = protocol=17 | dir=in | app=g:\gry\call of juarez\coj.exe |
"UDP Query User{60579A7B-B435-4D8B-A6DB-9C7BE21E7D71}C:\users\michał\appdata\local\temp\winreoh.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winreoh.exe |
"UDP Query User{607C9A1E-C874-4C22-A62E-6523797C3952}C:\windows\system32\dwm.exe" = protocol=17 | dir=in | app=c:\windows\system32\dwm.exe |
"UDP Query User{6140C70F-B820-447A-9078-6B5921196CE1}C:\users\michał\appdata\local\temp\swuqnb.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\swuqnb.exe |
"UDP Query User{61A16853-1E9E-4BDD-81E5-8D9C822BA0DE}G:\programy\gadu-gadu2\gg.exe" = protocol=17 | dir=in | app=g:\programy\gadu-gadu2\gg.exe |
"UDP Query User{61B8FD0C-D565-45B2-9CC5-5BF57122EA0C}C:\users\michał\appdata\local\temp\kjgxu.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\kjgxu.exe |
"UDP Query User{62756A02-3C04-46CC-BB42-00DD3ADF38B2}C:\users\michał\appdata\local\temp\winkbivh.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winkbivh.exe |
"UDP Query User{62FCECBE-003B-4A84-BB5B-A2DC16870397}C:\users\michał\appdata\local\temp\winuojcyh.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winuojcyh.exe |
"UDP Query User{637095B8-E367-4FB3-A556-90D29B1FBDC4}C:\program files\tvuplayer\tvuplayer.exe" = protocol=17 | dir=in | app=c:\program files\tvuplayer\tvuplayer.exe |
"UDP Query User{68ED58FD-853C-4CF6-ACD1-3FA0FE9223C5}C:\users\michał\appdata\local\temp\qsxsl.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\qsxsl.exe |
"UDP Query User{69FC2389-489D-4593-ACAB-347B7A7A69B0}C:\users\michał\appdata\local\temp\eyvkbx.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\eyvkbx.exe |
"UDP Query User{6C627161-AC98-44D6-A6D9-54AE2953F71D}C:\program files\synaptics\syntp\syntpenh.exe" = protocol=17 | dir=in | app=c:\program files\synaptics\syntp\syntpenh.exe |
"UDP Query User{6E40BDCF-189F-4638-A114-090A8C19F4DB}H:\gta\grand theft auto iv\gtaiv.exe" = protocol=17 | dir=in | app=h:\gta\grand theft auto iv\gtaiv.exe |
"UDP Query User{703C901F-924E-4060-A828-CE137004CED4}G:\programy\gadu-gadu\gg.exe" = protocol=17 | dir=in | app=g:\programy\gadu-gadu\gg.exe |
"UDP Query User{70FB4E06-2CDF-46B5-9379-B20318E5CA71}C:\users\michał\appdata\local\temp\winkbien.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winkbien.exe |
"UDP Query User{71395C56-7FF8-46DB-BA21-9D541DF65D0A}C:\users\michał\appdata\local\temp\winintfo.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winintfo.exe |
"UDP Query User{7298C4D1-EAF0-4423-9411-86970343CCC9}C:\users\michał\appdata\local\temp\hlkbe.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\hlkbe.exe |
"UDP Query User{74929622-3AA8-4145-BBC5-90EC742E4261}C:\users\michał\appdata\local\temp\winhleoua.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winhleoua.exe |
"UDP Query User{754EC714-83C1-4A23-BA1B-A9A0108B5898}C:\windows\system32\netsh.exe" = protocol=17 | dir=in | app=c:\windows\system32\netsh.exe |
"UDP Query User{76540D4F-8852-4359-99AC-EE04A2DE82E4}C:\users\michał\appdata\local\temp\njbvaa.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\njbvaa.exe |
"UDP Query User{76700051-3B1F-41E9-8E71-0AB0AAE97FE3}C:\users\michał\appdata\local\temp\winunfrb.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winunfrb.exe |
"UDP Query User{779DD79C-84FA-49E7-913F-7FB586A05566}C:\users\michał\appdata\local\temp\winatvwt.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winatvwt.exe |
"UDP Query User{78717642-D4F9-4F5A-B821-96163A98821B}C:\users\michał\appdata\local\temp\wlgk.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\wlgk.exe |
"UDP Query User{789BBDFA-B754-4553-A86C-FE5E2911FEB4}C:\users\michał\appdata\local\temp\winvgcjq.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winvgcjq.exe |
"UDP Query User{78A4CC2B-A169-4D2B-94D7-8B288DD78B2E}G:\programy\ashampoo burning studio 2010\burningstudio2010.exe" = protocol=17 | dir=in | app=g:\programy\ashampoo burning studio 2010\burningstudio2010.exe |
"UDP Query User{7911F5A5-E99A-4EA4-B5FD-425F9CAC1002}C:\users\michał\appdata\local\temp\winrgtw.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winrgtw.exe |
"UDP Query User{7C187CC8-B1AF-4E0C-AF3B-ADAA3CFE6389}C:\users\michał\appdata\local\temp\jebfeb.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\jebfeb.exe |
"UDP Query User{7E0F56AF-7C40-4DC7-AFC2-5C31FAE69ADA}C:\users\michał\appdata\local\temp\winixks.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winixks.exe |
"UDP Query User{7E7B7E58-D70E-4F94-BC6E-6AAFD096DD5E}C:\users\michał\appdata\local\temp\mmdqkq.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\mmdqkq.exe |
"UDP Query User{7EE99C37-91E8-48A2-BC3C-CB3D461988BA}G:\programy\sopcast\sopcast.exe" = protocol=17 | dir=in | app=g:\programy\sopcast\sopcast.exe |
"UDP Query User{7FDFB2EA-D2AD-47FD-BF87-5F17AAE7830E}C:\users\michał\appdata\local\temp\winhlxoj.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winhlxoj.exe |
"UDP Query User{817CA701-3DF0-45B0-92C0-ABE70FF46EB6}C:\windows\system32\netsh.exe" = protocol=17 | dir=in | app=c:\windows\system32\netsh.exe |
"UDP Query User{81954F28-5285-448F-9742-C95209690B97}C:\users\michał\appdata\local\temp\winqvcf.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winqvcf.exe |
"UDP Query User{84D26908-9B8D-4ABD-A3D9-B18489795924}G:\programy\hamachi\hamachi.exe" = protocol=17 | dir=in | app=g:\programy\hamachi\hamachi.exe |
"UDP Query User{860815D9-1344-466A-BEE2-6DB1E36BE06D}G:\programy\bearshare\bearshare.exe" = protocol=17 | dir=in | app=g:\programy\bearshare\bearshare.exe |
"UDP Query User{87355580-68E5-438B-A6B7-AE42321AB207}C:\users\michał\appdata\local\temp\winkhkqg.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winkhkqg.exe |
"UDP Query User{8828F899-DEAC-4C9D-8049-6036DBD9E8F3}C:\users\michał\appdata\local\temp\winbxfrp.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winbxfrp.exe |
"UDP Query User{88C3AA1A-B386-492F-9CFD-D8D4DF7EBA19}C:\users\michał\appdata\local\temp\rvftjn.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\rvftjn.exe |
"UDP Query User{8A340422-8A75-4B3C-B95F-1836CA279AC5}C:\program files\internet explorer\iexplore.exe" = protocol=17 | dir=in | app=c:\program files\internet explorer\iexplore.exe |
"UDP Query User{8A63B91B-8AA1-4139-BE9C-A33466B1B502}C:\users\michał\appdata\local\temp\qavkmb.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\qavkmb.exe |
"UDP Query User{8C3BB662-CC1F-442B-AC82-80CFF101CD30}C:\users\michał\appdata\local\temp\windcgdo.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\windcgdo.exe |
"UDP Query User{8CBA84A5-2F7F-484B-AD1F-34C133AEA053}C:\users\michał\appdata\local\temp\rlfui.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\rlfui.exe |
"UDP Query User{8E6E960A-8808-48AD-93D6-13982B32779F}C:\program files\hewlett-packard\hp quick launch buttons\qlbctrl.exe" = protocol=17 | dir=in | app=c:\program files\hewlett-packard\hp quick launch buttons\qlbctrl.exe |
"UDP Query User{8F8ED6A8-C737-4E1E-8C89-DF9A96D08D57}C:\users\michał\appdata\local\temp\winrkyi.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winrkyi.exe |
"UDP Query User{90920C4B-54D0-4331-88D4-A5AFCE465965}G:\programy\bearshare2\bearshare.exe" = protocol=17 | dir=in | app=g:\programy\bearshare2\bearshare.exe |
"UDP Query User{91E7CB5D-BE3E-44D0-9387-195713C84068}G:\programy\opera beta\opera.exe" = protocol=17 | dir=in | app=g:\programy\opera beta\opera.exe |
"UDP Query User{9215DC84-7E47-41C5-9282-944792596C63}G:\programy\bearshare\bearshare.exe" = protocol=17 | dir=in | app=g:\programy\bearshare\bearshare.exe |
"UDP Query User{92B2A751-F4A4-4045-B7A0-8978176D80DC}G:\gry\quake4\quake4.exe" = protocol=17 | dir=in | app=g:\gry\quake4\quake4.exe |
"UDP Query User{92D1DD85-B05A-4B80-916E-D691B60699F5}C:\program files\hewlett-packard\hp wireless assistant\hpwamain.exe" = protocol=17 | dir=in | app=c:\program files\hewlett-packard\hp wireless assistant\hpwamain.exe |
"UDP Query User{9907CB19-C3AF-4960-81AB-D7AAC2239B8A}C:\users\michał\appdata\local\temp\winlvdlph.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winlvdlph.exe |
"UDP Query User{99C53BB2-9577-49B5-96A3-D19408CC1D0D}C:\users\michał\appdata\local\temp\jjelfu.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\jjelfu.exe |
"UDP Query User{9F805744-D16A-4499-8D9A-2C4ED869D3B0}C:\program files\windows defender\msascui.exe" = protocol=17 | dir=in | app=c:\program files\windows defender\msascui.exe |
"UDP Query User{A0196F9B-146C-45C3-96EF-B726700DD5C9}C:\users\michał\appdata\local\temp\winemgvhj.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winemgvhj.exe |
"UDP Query User{A22E992F-2746-4039-85DD-F8576E043847}C:\users\michał\appdata\local\temp\ehws.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\ehws.exe |
"UDP Query User{A28BA519-161D-40EE-881C-A2A87E2B778C}C:\users\michał\appdata\local\temp\winheqdew.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winheqdew.exe |
"UDP Query User{A39B6286-3C02-4C0A-9567-970ED9DD868E}C:\users\michał\appdata\local\temp\winnutfvm.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winnutfvm.exe |
"UDP Query User{A494C07A-FD7F-4D31-BFEE-69397674A745}G:\programy\sopcast\sopcast.exe" = protocol=17 | dir=in | app=g:\programy\sopcast\sopcast.exe |
"UDP Query User{A607B90B-2C49-4D2D-94C1-66B19BC7255A}C:\users\michał\appdata\local\temp\winvruk.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winvruk.exe |
"UDP Query User{A63F7DFB-4A00-4563-9095-E45901FA0B9A}G:\programy\evillyrics\evillyrics.exe" = protocol=17 | dir=in | app=g:\programy\evillyrics\evillyrics.exe |
"UDP Query User{A663CD29-DFE0-4CE5-8915-62AFA903BD5F}C:\users\michał\appdata\local\temp\winpdyhd.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winpdyhd.exe |
"UDP Query User{A820838A-B32D-4E68-AFDE-90AEE30B3C19}C:\users\michał\appdata\local\temp\winmdox.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winmdox.exe |
"UDP Query User{ABE85185-E0DC-4569-9E74-CDB3AEB11717}C:\users\michał\appdata\local\temp\winmdwnq.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winmdwnq.exe |
"UDP Query User{AC9DAA82-509A-4924-B5BA-3E3530798D0D}C:\program files\winamp remote\bin\orbir.exe" = protocol=17 | dir=in | app=c:\program files\winamp remote\bin\orbir.exe |
"UDP Query User{ACB9B514-5177-4A96-AB83-970D06D6B379}C:\program files\common files\nokia\service layer\a\nsl_host_process.exe" = protocol=17 | dir=in | app=c:\program files\common files\nokia\service layer\a\nsl_host_process.exe |
"UDP Query User{AD469F8D-1AF5-4429-B412-70EE39DD55F3}C:\users\michał\appdata\local\temp\iqil.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\iqil.exe |
"UDP Query User{AE43015E-45E8-410C-A952-FEB1FE1EF4B7}C:\users\michał\appdata\local\temp\xgbmw.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\xgbmw.exe |
"UDP Query User{B007086B-F2B7-4BB2-8AC1-A39C96D25D43}C:\users\michał\appdata\local\temp\dviku.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\dviku.exe |
"UDP Query User{B352AA3D-4A8F-431E-B399-1A4CF8AF56D4}C:\users\michał\appdata\local\temp\eunkq.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\eunkq.exe |
"UDP Query User{B3786435-683C-4B5E-9392-6713C4798CA4}C:\users\michał\appdata\local\temp\mebc.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\mebc.exe |
"UDP Query User{B46E770F-0AA9-4C3F-B1B8-0266461E96A7}G:\programy\alcohol 120\axcmd.bin" = protocol=17 | dir=in | app=g:\programy\alcohol 120\axcmd.bin |
"UDP Query User{B7657589-0F5F-4C6F-A22A-B70D58D90D83}C:\users\michał\appdata\local\temp\gclxuk.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\gclxuk.exe |
"UDP Query User{B7B5E48C-7E88-47F7-A6AC-CF80B9FDBC1E}G:\gry\tropico\tropico 3\uninst.exe" = protocol=17 | dir=in | app=g:\gry\tropico\tropico 3\uninst.exe |
"UDP Query User{B8845DF7-9ABD-4551-B3CB-64A0779A0D62}C:\program files\synaptics\syntp\syntpstart.exe" = protocol=17 | dir=in | app=c:\program files\synaptics\syntp\syntpstart.exe |
"UDP Query User{B93A1E00-CCB6-4F72-939A-6B466E675900}C:\users\michał\appdata\local\temp\windmhgqb.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\windmhgqb.exe |
"UDP Query User{BA076FD9-7D7A-4185-8A9C-C3912783F360}C:\users\michał\appdata\local\temp\winddgty.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winddgty.exe |
"UDP Query User{BA242668-A248-4B62-812D-F03BCC1CD71E}C:\program files\winamp remote\bin\orbtray.exe" = protocol=17 | dir=in | app=c:\program files\winamp remote\bin\orbtray.exe |
"UDP Query User{BA925A52-BA30-4DD4-A525-E395BD648B02}G:\programy\opera\program\plugins\npswf32_flashutil.exe" = protocol=17 | dir=in | app=g:\programy\opera\program\plugins\npswf32_flashutil.exe |
"UDP Query User{BAB00898-03FC-40A8-A431-5B6E943DFD41}C:\users\michał\appdata\local\temp\winkusyyn.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winkusyyn.exe |
"UDP Query User{BB1B98AD-B249-4038-8FFC-65BA184CD334}C:\users\michał\appdata\local\temp\ebjj.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\ebjj.exe |
"UDP Query User{BB468622-61F9-4BAC-AEBA-D984FBA8C640}G:\gry\worldofgoo\worldofgoo.exe" = protocol=17 | dir=in | app=g:\gry\worldofgoo\worldofgoo.exe |
"UDP Query User{BC0C9E76-B649-485E-8868-F961A3B6E2FE}C:\users\michał\appdata\local\temp\naxg.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\naxg.exe |
"UDP Query User{BC193B83-7595-46E0-B714-B234C9C83A68}C:\users\michał\appdata\local\temp\winmdwyt.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winmdwyt.exe |
"UDP Query User{BCCCD758-DE51-4C03-8D5D-53C73858035C}C:\users\michał\appdata\local\temp\wincohq.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\wincohq.exe |
"UDP Query User{BDA2184A-4361-43DA-AAB2-955111E22F89}C:\users\michał\appdata\local\temp\winvwyxaa.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winvwyxaa.exe |
"UDP Query User{BE7B2D4D-82FD-496E-B8BE-A9F3A043E21A}C:\users\michał\appdata\local\temp\dqetv.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\dqetv.exe |
"UDP Query User{C0C32F9F-218C-449C-B887-EF6C38B0F390}C:\users\michał\appdata\local\temp\winltejq.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winltejq.exe |
"UDP Query User{C0D55E50-A534-43C9-8725-B09319DAA26E}C:\program files\bioscrypt\verisoft\bin\asghost.exe" = protocol=17 | dir=in | app=c:\program files\bioscrypt\verisoft\bin\asghost.exe |
"UDP Query User{C14B6908-384B-4685-85A9-706B1062E2F4}C:\users\michał\appdata\local\temp\wkhr.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\wkhr.exe |
"UDP Query User{C313B12C-A392-45BA-91AE-0A1D57C61A99}C:\program files\internet explorer\iexplore.exe" = protocol=17 | dir=in | app=c:\program files\internet explorer\iexplore.exe |
"UDP Query User{C31D9C4F-9007-4C26-BD1E-D55673A47F0C}C:\users\michał\appdata\local\temp\winemnbmh.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winemnbmh.exe |
"UDP Query User{C3D661F8-636B-46C1-80D5-632B7EEC0A6B}C:\windows\ehome\ehtray.exe" = protocol=17 | dir=in | app=c:\windows\ehome\ehtray.exe |
"UDP Query User{C445425A-7057-403A-8E55-A7C336BF7D79}C:\users\michał\appdata\local\temp\winblouy.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winblouy.exe |
"UDP Query User{C7D66BAF-0D7C-4741-B0C9-8CA80FB5BEE6}C:\users\michał\appdata\local\temp\rbon.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\rbon.exe |
"UDP Query User{C9D9C9F8-3AF2-4966-B3BA-374EB8C35202}C:\users\michał\appdata\local\temp\windrjtc.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\windrjtc.exe |
"UDP Query User{CB23964C-4C03-48F1-B053-23D14009B4F4}C:\users\michał\desktop\nestopia\nestopia.exe" = protocol=17 | dir=in | app=c:\users\michał\desktop\nestopia\nestopia.exe |
"UDP Query User{CBD62A3A-683A-4339-81EB-66BAE489AD48}C:\windows\system32\conime.exe" = protocol=17 | dir=in | app=c:\windows\system32\conime.exe |
"UDP Query User{CC04593E-7BBA-45A8-BD02-4C52B4703F03}C:\users\michał\appdata\local\temp\nqblve.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\nqblve.exe |
"UDP Query User{CC69D788-DF9E-4F6F-8961-9AB40DA3C6BF}C:\users\michał\appdata\local\temp\winojabe.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winojabe.exe |
"UDP Query User{CD2F693E-48B3-4A61-A063-AA7FB8B1F91F}C:\users\michał\appdata\local\temp\winsupp.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winsupp.exe |
"UDP Query User{D063F46A-76D1-43AB-BB9B-59CC35A16D15}C:\program files\amd\dual-core optimizer\amd_dc_opt.exe" = protocol=17 | dir=in | app=c:\program files\amd\dual-core optimizer\amd_dc_opt.exe |
"UDP Query User{D19B7393-F7FE-4799-AA18-3010867CCBBB}C:\program files\nokia\nokia software updater\nsu_ui_client.exe" = protocol=17 | dir=in | app=c:\program files\nokia\nokia software updater\nsu_ui_client.exe |
"UDP Query User{D1B04553-B185-46CB-8700-D8943FE788CB}C:\users\michał\appdata\local\temp\futhf.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\futhf.exe |
"UDP Query User{D4522912-5DFE-4AAC-98F1-D7BB141B6E52}C:\program files\bioscrypt\verisoft\bin\aspanel.exe" = protocol=17 | dir=in | app=c:\program files\bioscrypt\verisoft\bin\aspanel.exe |
"UDP Query User{D4B6D534-39DE-4AB5-AB79-7C51A34F4E6E}C:\windows\ehome\ehmsas.exe" = protocol=17 | dir=in | app=c:\windows\ehome\ehmsas.exe |
"UDP Query User{D604A1D3-49CC-43E1-ADFE-8F8C16AD9D14}G:\programy\ppmate\ppamnet.exe" = protocol=17 | dir=in | app=g:\programy\ppmate\ppamnet.exe |
"UDP Query User{D662DC8F-C4B4-4761-A8C7-E3FC8466DE7C}C:\program files\java\jre6\bin\jusched.exe" = protocol=17 | dir=in | app=c:\program files\java\jre6\bin\jusched.exe |
"UDP Query User{D7D89629-3365-4E63-8973-79CF42726C77}C:\users\michał\appdata\local\temp\bdfvb.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\bdfvb.exe |
"UDP Query User{D839B1DA-BBD6-47A1-A264-BACC2E1826AE}C:\program files\windows defender\msascui.exe" = protocol=17 | dir=in | app=c:\program files\windows defender\msascui.exe |
"UDP Query User{D8AB478D-FB9A-4989-A736-F806941DD79E}C:\program files\common files\nokia\service layer\a\nsl_host_process.exe" = protocol=17 | dir=in | app=c:\program files\common files\nokia\service layer\a\nsl_host_process.exe |
"UDP Query User{DB9D2F4B-F4CE-49DF-AE47-784CDC414391}C:\users\michał\appdata\local\temp\winmdmwa.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winmdmwa.exe |
"UDP Query User{DCAB9647-6F52-4B76-9AD9-1778F755C592}G:\programy\evillyrics\evillyrics.exe" = protocol=17 | dir=in | app=g:\programy\evillyrics\evillyrics.exe |
"UDP Query User{DDEFCFA4-0D86-47C4-9BB6-219A310F860C}C:\users\michał\appdata\local\temp\winispl.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winispl.exe |
"UDP Query User{E355403E-84F2-45E4-8BB4-2992F7FFEFFC}C:\program files\electronic arts\eadm\core.exe" = protocol=17 | dir=in | app=c:\program files\electronic arts\eadm\core.exe |
"UDP Query User{E4E7926B-C619-4013-A248-4FCFCD85D64B}C:\users\michał\appdata\local\temp\winemuxgx.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winemuxgx.exe |
"UDP Query User{E53324A5-15A6-492C-A59B-F57927E5015F}G:\gry\trine\trine\trine_launcher.exe" = protocol=17 | dir=in | app=g:\gry\trine\trine\trine_launcher.exe |
"UDP Query User{E5F96F0E-F765-4E55-8D68-F53E94D481A8}C:\program files\google\googletoolbarnotifier\googletoolbarnotifier.exe" = protocol=17 | dir=in | app=c:\program files\google\googletoolbarnotifier\googletoolbarnotifier.exe |
"UDP Query User{E7AEE263-7D7C-4A07-B394-28F01618B8CC}C:\users\michał\appdata\local\temp\winiubga.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winiubga.exe |
"UDP Query User{E8090EA7-E1F3-4304-9F57-6777E5DA50B9}C:\users\michał\appdata\local\temp\winwerk.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winwerk.exe |
"UDP Query User{E819B643-7900-4F21-BF0E-3801C7B0D851}C:\users\michał\appdata\local\temp\winheurl.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winheurl.exe |
"UDP Query User{E9ABB358-EC03-40B5-87BC-EE55CD2555AE}G:\programy\tvants\tvants.exe" = protocol=17 | dir=in | app=g:\programy\tvants\tvants.exe |
"UDP Query User{EA0548E3-2AAC-4740-8DBD-7230FC0E0FF4}C:\windows\system32\userinit.exe" = protocol=17 | dir=in | app=c:\windows\system32\userinit.exe |
"UDP Query User{EA1D048F-C52C-4CFD-B999-5F78E7245EE5}G:\programy\dc++\dcplusplus.exe" = protocol=17 | dir=in | app=g:\programy\dc++\dcplusplus.exe |
"UDP Query User{EA6DAD51-893F-4975-9807-42C40E554B77}C:\users\michał\appdata\local\temp\wincufca.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\wincufca.exe |
"UDP Query User{EA8B6B09-79E4-4E2E-987A-BED3075A22DC}C:\users\michał\appdata\local\temp\kmsdi.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\kmsdi.exe |
"UDP Query User{EB053E7D-4E1B-494C-9B0F-EA8EA67D8EAE}G:\programy\bearshare2\bearshare.exe" = protocol=17 | dir=in | app=g:\programy\bearshare2\bearshare.exe |
"UDP Query User{EB05412E-E515-4A1D-881F-117BC077292E}C:\users\michał\appdata\local\temp\winbvslsq.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winbvslsq.exe |
"UDP Query User{EB80A093-14FA-40A9-8265-63BEA45CB8EE}C:\program files\codemasters\dirt\dirt.exe" = protocol=17 | dir=in | app=c:\program files\codemasters\dirt\dirt.exe |
"UDP Query User{EC166A2F-0AE8-4686-8492-3331780136B2}C:\users\michał\appdata\local\temp\winmefp.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winmefp.exe |
"UDP Query User{ED39E34E-FE19-45F5-AC3A-019EC443065D}C:\program files\skype\phone\skype.exe" = protocol=17 | dir=in | app=c:\program files\skype\phone\skype.exe |
"UDP Query User{EF9377A6-CE86-46F8-AD38-EE2D2A64C921}G:\programy\gadu-gadu\gg.exe" = protocol=17 | dir=in | app=g:\programy\gadu-gadu\gg.exe |
"UDP Query User{F1594AD9-11E5-42CA-B3C3-C57121A6B501}C:\program files\widcomm\bluetooth software\bttray.exe" = protocol=17 | dir=in | app=c:\program files\widcomm\bluetooth software\bttray.exe |
"UDP Query User{F1DCC08A-02A8-4AAB-B01F-A691F5D75AAD}C:\users\michał\appdata\local\temp\wingakj.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\wingakj.exe |
"UDP Query User{F26B89E8-87AE-4513-B067-89DD4D2E4CF5}C:\users\michał\appdata\local\temp\winikjy.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winikjy.exe |
"UDP Query User{F283A0CE-5249-4EFC-AA65-62BAAC9A1962}C:\users\michał\appdata\local\temp\slthpy.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\slthpy.exe |
"UDP Query User{F399BBF0-2B66-4C78-AC79-D9F84BC628B2}C:\users\michał\appdata\local\temp\windhgucp.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\windhgucp.exe |
"UDP Query User{F3FA2967-9FC4-4695-A65F-87F1473755B4}C:\users\michał\appdata\local\temp\gvjj.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\gvjj.exe |
"UDP Query User{F604E959-803E-468D-828E-BFB1DB64E668}C:\gry\pes2009\pes2009.exe" = protocol=17 | dir=in | app=c:\gry\pes2009\pes2009.exe |
"UDP Query User{F69CAE72-9326-4C10-8817-734A16061AB4}G:\programy\opera\opera.exe" = protocol=17 | dir=in | app=g:\programy\opera\opera.exe |
"UDP Query User{F97A14AE-355F-4CFF-8561-41C8C5FBA95A}C:\users\michał\appdata\local\temp\ucrnd.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\ucrnd.exe |
"UDP Query User{F9A4713E-1EDD-4162-A1C7-F10E6C2EB2E9}C:\windows\ehome\ehtray.exe" = protocol=17 | dir=in | app=c:\windows\ehome\ehtray.exe |
"UDP Query User{F9B513C3-1748-422F-BA5C-D5AFE362164A}G:\programy\sopcast\adv\sopadver.exe" = protocol=17 | dir=in | app=g:\programy\sopcast\adv\sopadver.exe |
"UDP Query User{F9F6967B-93DF-479E-852B-2651DB5C7CB9}C:\users\michał\appdata\local\temp\wincckm.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\wincckm.exe |
"UDP Query User{FA417F78-2261-4597-AF00-30C21887B5B2}C:\users\michał\appdata\local\temp\mviqpq.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\mviqpq.exe |
"UDP Query User{FAF91F4E-4C52-4465-BDA8-9D2A6BEF3869}C:\users\michał\appdata\local\temp\jwbft.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\jwbft.exe |
"UDP Query User{FC32BEE4-276E-410F-915C-FBF1031C8D63}C:\users\michał\appdata\local\temp\winopeke.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winopeke.exe |
"UDP Query User{FC6C19B9-67BA-48F0-947E-00EBA2B576BC}C:\users\michał\appdata\local\temp\hucb.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\hucb.exe |
"UDP Query User{FC9FE2AD-A7AB-4E1B-B963-BEBDF94A4426}C:\users\michał\appdata\local\temp\lqefqu.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\lqefqu.exe |
"UDP Query User{FD444C46-EE86-4ECC-90D9-EC8AEFA21027}C:\windows\system32\dllhost.exe" = protocol=17 | dir=in | app=c:\windows\system32\dllhost.exe |
"UDP Query User{FE2BE954-E87E-45D4-B4E6-8FEC9DE6095C}C:\users\michał\appdata\local\temp\winernyng.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winernyng.exe |
"UDP Query User{FE37EA33-F2C9-4B3A-9398-908547DC677E}C:\users\michał\appdata\local\temp\tssiw.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\tssiw.exe |
"UDP Query User{FEB19534-696E-470F-A2FA-AC00EEFCA562}C:\users\michał\appdata\local\temp\winvrdma.exe" = protocol=17 | dir=in | app=c:\users\michał\appdata\local\temp\winvrdma.exe |

[color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{0394CDC8-FABD-4ed8-B104-03393876DFDF}" = Roxio Creator Tools
"{03D1988F-469F-4843-8E6E-E5FE9D17889D}" = HP Integrated Module with Bluetooth wireless technology 6.0.1.4900
"{082702D5-5DD8-4600-BCE5-48B15174687F}" = HP Doc Viewer
"{0840B4D6-7DD1-4187-8523-E6FC0007EFB7}" = Asystent rejestrowania za pomocą identyfikatora Windows Live
"{09F25F86-F957-4051-8AB2-0E0D948BBB5D}" = 1310
"{0ABA40AF-288D-41F1-B735-C5155692CD7D}" = VeriSoft Access Manager
"{0C973594-7DDF-4BD0-84ED-3517F7622037}" = PC Connectivity Solution
"{0CFD3BAF-9F4D-4D70-BD0B-638EA2504C25}" = PSSWCORE
"{0D2E9DCB-9938-475E-B4DD-8851738852FF}" = AIO_Scan
"{0D397393-9B50-4c52-84D5-77E344289F87}" = Roxio Creator Data
"{0E7DBD52-B097-4F2B-A7C7-F105B0D20FDB}" = LightScribe System Software 1.14.17.1
"{11F93B4B-48F0-4A4E-AE77-DFA96A99664B}" = Roxio Creator EasyArchive
"{1746EA69-DCB6-4408-B5A5-E75F55439CDF}" = Scan
"{179C56A4-F57F-4561-8BBF-F911D26EB435}" = WebReg
"{18455581-E099-4BA8-BC6B-F34B2F06600C}" = Google Toolbar for Internet Explorer
"{1B9B5B3B-28E7-4E59-A80D-D670AA984514}" = Nokia Connectivity Cable Driver
"{1C338B34-1BFB-4BAD-B4A3-7B71A2E221F6}" = GameTap Web Player
"{1D2C96C3-A3F3-49E7-B839-95279DED837F}" = Opera 10.60
"{205C6BDD-7B73-42DE-8505-9A093F35A238}" = Narzędzie do przekazywania usługi Windows Live
"{212748BB-0DA5-46DE-82A1-403736DC9F27}" = MSVC80_x86
"{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}" = MSVCRT
"{2318C2B1-4965-11d4-9B18-009027A5CD4F}" = Google Toolbar for Internet Explorer
"{254C37AA-6B72-4300-84F6-98A82419187E}" = Hewlett-Packard Active Check
"{26A24AE4-039D-4CA4-87B4-2F83216010FF}" = Java(TM) 6 Update 17
"{290B83AA-093A-45BF-A917-D1C4A1E8D917}" = HP Active Support Library
"{2ADE2157-7A5E-122C-B51D-EB8A01B15943}" = DeepBurner v1.9.0.228
"{2E522ED6-01E2-4207-82D5-B3BFB31B8BD4}" = Windows Live Sync
"{3248F0A8-6813-11D6-A77B-00B0D0160000}" = Java(TM) SE Runtime Environment 6
"{3248F0A8-6813-11D6-A77B-00B0D0160050}" = Java(TM) 6 Update 5
"{3248F0A8-6813-11D6-A77B-00B0D0160070}" = Java(TM) 6 Update 7
"{33C65B6A-5D73-4E3E-A1F9-127C27BD3F72}" = Roxio MyDVD Basic v9
"{34D2AB40-150D-475D-AE32-BD23FB5EE355}" = HP Quick Launch Buttons 6.40 H2
"{35E1EC43-D4FC-4E4A-AAB3-20DDA27E8BB0}" = Roxio Activation Module
"{3921A67A-5AB1-4E48-9444-C71814CF3027}" = VCRedistSetup
"{39930321-4C58-4B8B-BCBF-342698C9801D}" = Max Payne
"{3F732D97-7E10-4FC4-854B-8C95030BA89F}" = Polski (Akcent)
"{40F7AED3-0C7D-4582-99F6-484A515C73F2}" = HP Easy Setup - Frontend
"{43602F34-1AA3-44FB-AEB2-D08C2C73743F}" = Paint.NET v3.36
"{45D707E9-F3C4-11D9-A373-0050BAE317E1}" = HP QuickPlay 3.2
"{49F2B650-2D7B-4F59-B33D-346F63776BD3}" = DocProc
"{4CBA3D4C-8F51-4D60-B27E-F6B641C571E7}" = Microsoft Search Enhancement Pack
"{4CD2F5E3-4CDA-4F18-934A-5DD4F23CFEC9}" = ESU for Microsoft Vista
"{4D78E819-D633-43AF-A594-A7645E53EC3C}" = MSCU for Microsoft Vista
"{541DEAC0-5F3D-45E6-B7CB-94ECF3B96748}" = Skype web features
"{54CC7901-804D-4155-B353-21F0CC9112AB}" = HP Wireless Assistant
"{55495E65-7C5B-48E4-BC7D-DE54F3DE5ED6}" = Nokia PC Suite
"{56C049BE-79E9-4502-BEA7-9754A3E60F9B}" = neroxml
"{5AE3D9F1-9E9E-4015-8787-E22705AA32C5}" = msxml4
"{6053FE9B-5473-41D6-AEBF-AD6F98138191}" = Windows Live Movie Maker
"{619CDD8A-14B6-43a1-AB6C-0F4EE48CE048}" = Roxio Creator Copy
"{6663554C-2FC7-4CDC-809D-1BCD59189853}_is1" = Trine
"{6675CA7F-E51B-4F6A-99D4-F8F0124C6EAA}" = Roxio Express Labeler 3
"{669D4A35-146B-4314-89F1-1AC3D7B88367}" = Hewlett-Packard Asset Agent
"{66E6CE0C-5A1E-430C-B40A-0C90FF1804A8}" = eSupportQFolder
"{66ED8E01-C915-41F5-B33E-C5C31F27B885}" = USB Network Driver
"{67D3F1A0-A1F2-49b7-B9EE-011277B170CD}" = HPProductAssistant
"{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}" = Windows Media Player Firefox Plugin
"{6C9FA746-8759-4040-A436-42922CB3492E}" = VistaBootPRO 3.3
"{6D3245B1-8DB8-4A23-9CD2-2C90F40ABAF6}" = MSVC80_x86_v2
"{6D4553DF-2095-4D10-92C0-17934733B51D}" = 1310_Help
"{6D7E031C-4C05-4265-854A-FE9FDEA9984D}" = 1310Trb
"{6F5E2F4A-377D-4700-B0E3-8F7F7507EA15}" = CustomerResearchQFolder
"{7059BDA7-E1DB-442C-B7A1-6144596720A4}" = HP Update
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
"{7A7DC702-DEDE-42A8-8722-B3BA724D546F}" = Fax
"{7B738CD9-D107-48C7-8E65-2E6639A39C8D}" = PerfectDisk 10 Professional
"{83FFCFC7-88C6-41c6-8752-958A45325C82}" = Roxio Creator Audio
"{87E2B986-07E8-477a-93DC-AF0B6758B192}" = DocProcQFolder
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8CEA85DE-955B-4BF4-87F2-0BAA62821633}" = HP Photosmart Essential2.5
"{8D273DE5-ABFA-4BD0-A9D7-EE9C971438C4}_is1" = PDF-Viewer
"{8FB1B528-E260-451E-9B55-E9152F94B80B}" = Microsoft Games for Windows - LIVE Redistributable
"{90120000-0015-0415-0000-0000000FF1CE}" = Microsoft Office Access MUI (Polish) 2007
"{90120000-0015-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0016-0415-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Polish) 2007
"{90120000-0016-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0018-0415-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Polish) 2007
"{90120000-0018-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0019-0415-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Polish) 2007
"{90120000-0019-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001A-0415-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Polish) 2007
"{90120000-001A-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001B-0415-0000-0000000FF1CE}" = Microsoft Office Word MUI (Polish) 2007
"{90120000-001B-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-0415-0000-0000000FF1CE}" = Microsoft Office Proof (Polish) 2007
"{90120000-002C-0415-0000-0000000FF1CE}" = Microsoft Office Proofing (Polish) 2007
"{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007
"{90120000-0044-0415-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Polish) 2007
"{90120000-0044-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-006E-0415-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Polish) 2007
"{90120000-006E-0415-0000-0000000FF1CE}_ENTERPRISE_{D45F91DE-F0FC-4D5F-9A0C-FDE5B251AAC6}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-00A1-0415-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Polish) 2007
"{90120000-00A1-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-00BA-0415-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Polish) 2007
"{90120000-00BA-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{9061CEF2-51F5-42C9-8A70-9ED351C6597A}" = HP Help and Support
"{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting
"{95D08F4E-DFC2-4ce3-ACB7-8C8E206217E9}" = MarketResearch
"{978C25EE-5777-46e4-8988-732C297CBDBD}" = Status
"{980A182F-E0A2-4A40-94C1-AE0C1235902E}" = Pando Media Booster
"{9862473C-E063-4C68-A161-2CDE0E8048A5}" = Podstawowe programy Windows Live
"{9AB614A6-719C-4A6E-A63E-831E0A35F62A}" = Windows Live Writer
"{9B1FD9CE-0776-4f0b-A6F5-C6AB7B650CDF}" = Destinations
"{9CDEAEC9-2F14-4D39-8541-C1EEC4B5D1CB}" = Galeria fotografii usługi Windows Live
"{9EFDFBA8-9174-3C61-8645-28376C5CA994}" = Microsoft .NET Framework 3.5 Language Pack SP1 - plk
"{9FD6F1A8-5550-46AF-8509-271DF0E768B5}" = Dual-Core Optimizer
"{A36CD345-625C-4d6c-B3E2-76E1248CB451}" = SolutionCenter
"{A3B7C670-4A1E-4EE2-950E-C875BC1965D0}" = Copy
"{A49F249F-0C91-497F-86DF-B2585E8E76B7}" = Microsoft Visual C++ 2005 Redistributable
"{A7388312-4FBB-48E5-8DC0-B63DA02658AE}" = Windows Live Toolbar
"{A8F2089B-1F79-4BF6-B385-A2C2B0B9A74D}" = ImagXpress
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{AB5D51AE-EBC3-438D-872C-705C7C2084B0}" = DeviceManagementQFolder
"{AB5E289E-76BF-4251-9F3F-9B763F681AE0}" = HP Customer Experience Enhancements
"{AC76BA86-7AD7-1033-7B44-A81300000003}" = Adobe Reader 8.1.4
"{B61B6668-A674-4A06-8405-51944D5CCDDD}" = AuthenTec Fingerprint Sensor Minimum Install
"{BD64AF4A-8C80-4152-AD77-FCDDF05208AB}" = Microsoft Sync Framework Services Native v1.0 (x86)
"{BE77A81F-B315-4666-9BF3-AE70C0ADB057}" = BufferChm
"{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}" = The Sims™ 3
"{C084BC61-E537-11DE-8616-005056806466}" = Google Earth
"{C35FE07E-24B5-410F-85B7-122087A0C7DD}" = Poczta usługi Windows Live
"{C5C1C0F0-D62F-4DBF-81D4-D7EF397C228B}" = NVIDIA PhysX
"{C6B7E731-A9E1-4AEC-A1E7-2E63646647FE}" = Prince of Persia Warrior Within (Demo)
"{C716522C-3731-4667-8579-40B098294500}" = Toolbox
"{C8B0680B-CDAE-4809-9F91-387B6DE00F7C}" = Roxio Creator Basic v9
"{C916D86C-AB76-49c7-B0E4-A946E0FD9BC2}" = HP Photosmart, Officejet, PSC and Deskjet All-In-One Driver Software 8.0.B
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{D103C4BA-F905-437A-8049-DB24763BBE36}" = Skype™ 4.1
"{D1803CD4-0CE7-4484-98E3-88D7A2D629A4}" = Windows Live Messenger
"{D642E38E-0D24-486C-9A2D-E316DD696F4B}" = Microsoft XML Parser
"{DDFD9BA2-8E26-4E49-92AE-882424DAB1BC}" = HP User Guides 0057
"{E06F04B9-45E6-4AC0-8083-85F7515F40F7}" = UnloadSupport
"{E09575B2-498D-4C8B-A9D2-623F78574F29}" = AIO_CDB_Software
"{E2DFE069-083E-4631-9B6C-43C48E991DE5}" = Junk Mail filter update
"{E3E71D07-CD27-46CB-8448-16D4FB29AA13}" = Microsoft WSE 3.0 Runtime
"{E7112940-5F8E-4918-B9FE-251F2F8DC81F}" = AIO_CDB_ProductContext
"{E9AD90C1-6281-45AB-9458-098D2EF770A1}" = Microsoft Works
"{EB21A812-671B-4D08-B974-2A347F0D8F70}" = HP Photosmart Essential
"{EB75DE50-5754-4F6F-875D-126EDF8E4CB3}" = HPSSupply
"{ECEE0279-785F-4CB3-9F28-E69813234BF8}" = SPORE™ Fabryka stworów, wersja próbna
"{ED00D08A-3C5F-488D-93A0-A04F21F23956}" = Windows Live Communications Platform
"{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
"{F0E12BBA-AD66-4022-A453-A1C8A0C4D570}" = Microsoft Choice Guard
"{F1E63043-54FC-429B-AB2C-31AF9FBA4BC7}" = 32 Bit HP CIO Components Installer
"{F40BBEC7-C2A4-4A00-9B24-7A055A2C5262}" = Microsoft Office Live Add-in 1.5
"{F88335A8-CA7B-41DE-B37D-81306C73B507}" = Bezpieczeństwo rodzinne usługi Windows Live
"{F97E3841-CA9D-4964-9D64-26066241D26F}" = Microsoft Games for Windows - LIVE
"{F983B4FE-547B-4C44-BAF7-4F4DBA93D548}" = Nokia Software Updater
"{FAB0C302-CB18-4A7A-BA03-C3DC23101A68}" = HP Active Support Library 32 bit components
"{FF075778-6E50-47ed-991D-3B07FD4E3250}" = TrayApp
"504244733D18C8F63FF584AEB290E3904E791693" = Pakiet sterowników systemu Windows - Nokia pccsmcfd (08/22/2008 7.0.0.0)
"6A630DCEC5EEC912115F2FF59D8C2C769798D930" = Pakiet sterowników systemu Windows - Nokia Modem (10/12/2007 3.6)
"7-Zip" = 7-Zip 4.65
"819D45A9F73817F5B6D7C71A33ADAB88C5DA1765" = Pakiet sterowników systemu Windows - Nokia Modem (08/03/2007 6.84.0.2)
"Ad-Aware SE Personal" = Ad-Aware SE Personal
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"Adobe Shockwave Player" = Adobe Shockwave Player 11.5
"Ashampoo Burning Studio 2010_is1" = Ashampoo Burning Studio 2010
"a-squared Free_is1" = a-squared Free 4.5
"BitComet FLV Converter" = BitComet FLV Converter 1.0
"CBF192A85B624E32B8D19ADEEF2DCFC5BC3AA73A" = Pakiet sterowników systemu Windows - Nokia Modem (03/05/2008 3.7)
"CDisplay_is1" = CDisplay 1.8
"CNXT_AUDIO_HDA" = Conexant HD Audio
"CNXT_MODEM_HDA_HSF" = HDAUDIO Soft Data Fax Modem with SmartCP
"DC++" = DC++ 0.705
"Download Accelerator Plus (DAP)" = Download Accelerator Plus (DAP)
"E092B2EBF2FFE83E896F8F7F829A7B5D7D1B2F9D" = Pakiet sterowników systemu Windows - Nokia Modem (03/13/2008 6.86.0.1)
"E8A6D621B6D3FC5D43C68C549D959DE76EEF5D84" = Pakiet sterowników systemu Windows - Nokia Modem (06/01/2009 4.1)
"EADM" = EA Download Manager
"EASEUS Partition Master Home Edition_is1" = EASEUS Partition Master 4.1.1 Home Edition
"ENTERPRISE" = Microsoft Office Enterprise 2007
"EVEREST Ultimate + Corporate Edition_is1" = EVEREST Ultimate v4.20.1257 + Corporate Edition Beta Registered
"EvilLyrics" = EvilLyrics
"F779F5541ABD99C95C03B0FD5E3C058B22DA0FF7" = Pakiet sterowników systemu Windows - Nokia Modem (06/01/2009 7.01.0.3)
"Gadu-Gadu" = Gadu-Gadu 7.7
"GameDesire-Pool & Snooker" = GameDesire-Pool & Snooker
"Google Updater" = Aktualizator Google
"GTA2" = GTA2
"Guitar Pro 5_is1" = Guitar Pro 5.2
"HijackThis" = HijackThis 2.0.2
"HP Imaging Device Functions" = HP Imaging Device Functions 8.0
"HP Photosmart Essential" = HP Photosmart Essential 2.0
"HP Solution Center & Imaging Support Tools" = HP Solution Center 8.0
"HPExtendedCapabilities" = HP Customer Participation Program 8.0
"HPOCR" = HP OCR Software 8.0
"IrfanView" = IrfanView (remove only)
"JAP" = JAP
"KLiteCodecPack_is1" = K-Lite Codec Pack 3.8.0 Full
"LogonStudio Vista" = LogonStudio Vista
"Machinarium" = Machinarium
"Magic ISO Maker v5.5 (build 0281)" = Magic ISO Maker v5.5 (build 0281)
"MagicDisc 2.7.106" = MagicDisc 2.7.106
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware
"MediaMonkey_is1" = MediaMonkey 3.1
"Microsoft .NET Framework 3.5 Language Pack SP1 - plk" = Pakiet językowy programu Microsoft .NET Framework 3.5 z dodatkiem SP1 — PLK
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"Monopoly by Parker Brothers" = Monopoly by Parker Brothers
"NAPIPROJEKT_is1" = NAPIPROJEKT 1.0.6.2
"Nokia PC Suite" = Nokia PC Suite
"NVIDIA Display Control Panel" = NVIDIA Display Control Panel
"NVIDIA Drivers" = NVIDIA Drivers
"OpenAL" = OpenAL
"Paseczek_is1" = Paseczek 1.1.0.365
"PGP" = PGP 8.0.2
"RealAlt_is1" = Real Alternative 1.7.5
"SkanerOnline" = Skaner on-line mks_vir
"SmartAudio" = SmartAudio
"SMPlayer" = SMPlayer 0.6.8
"Snarfer" = Snarfer
"SopCast" = SopCast 3.2.9
"StarCraft II Beta" = StarCraft II Beta
"SynTPDeinstKey" = Synaptics Pointing Device Driver
"SystemRequirementsLab" = System Requirements Lab
"The KMPlayer" = The KMPlayer (remove only)
"TVAnts 1.0" = TVAnts 1.0
"Underground Fighting_is1" = Underground Fighting
"UnityWebPlayer" = Unity Web Player
"VLC media player" = VideoLAN VLC media player 0.8.6e
"Wielki słownik polsko-angielski i angielsko-polski PWN-OXFORD" = Wielki słownik polsko-angielski i angielsko-polski PWN-OXFORD
"Winamp" = Winamp
"WinLiveSuite_Wave3" = Podstawowe programy Windows Live
"WinRAR archiver" = Archiwizator WinRAR
"WinZip" = WinZip
"World of Warcraft" = World of Warcraft
"Xfire" = Xfire (remove only)

[color=#E56717]========== HKEY_USERS Uninstall List ==========[/color]

[HKEY_USERS\S-1-5-21-3022643457-1393697231-3139819596-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"BankBrowser" = BankBrowser
"Hex Online" = Hex Online
"Octoshape add-in for Adobe Flash Player" = Octoshape add-in for Adobe Flash Player
"uTorrent" = µTorrent

[color=#E56717]========== Last 10 Event Log Errors ==========[/color]

[ Application Events ]
Error - 2009-04-27 13:25:15 | Computer Name = Michał-PC | Source = Application Error | ID = 1000
Description = Aplikacja powodująca błąd braid.exe, wersja 0.0.0.0, sygnatura czasowa
0x49dcf764, moduł powodujący błąd d3dx9_39.dll, wersja 6.0.6001.18000, sygnatura
czasowa 0x4791a7a6, kod wyjątku 0xc0000135, przesunięcie błędu 0x00009cac, identyfikator
procesu 0x32c, godzina rozpoczęcia aplikacji 0x01c9c75d1ff1e088.

Error - 2009-04-27 13:43:55 | Computer Name = Michał-PC | Source = Application Error | ID = 1000
Description = Aplikacja powodująca błąd braid.exe, wersja 0.0.0.0, sygnatura czasowa
0x49dcf764, moduł powodujący błąd d3dx9_39.dll, wersja 6.0.6001.18000, sygnatura
czasowa 0x4791a7a6, kod wyjątku 0xc0000135, przesunięcie błędu 0x00009cac, identyfikator
procesu 0x1100, godzina rozpoczęcia aplikacji 0x01c9c75fb57c6e28.

Error - 2009-04-27 13:44:13 | Computer Name = Michał-PC | Source = Application Error | ID = 1000
Description = Aplikacja powodująca błąd braid.exe, wersja 0.0.0.0, sygnatura czasowa
0x49dcf764, moduł powodujący błąd d3dx9_39.dll, wersja 6.0.6001.18000, sygnatura
czasowa 0x4791a7a6, kod wyjątku 0xc0000135, przesunięcie błędu 0x00009cac, identyfikator
procesu 0x159c, godzina rozpoczęcia aplikacji 0x01c9c75fc3243038.

Error - 2009-04-27 14:03:53 | Computer Name = Michał-PC | Source = VSS | ID = 8194
Description =

Error - 2009-04-27 14:04:39 | Computer Name = Michał-PC | Source = System Restore | ID = 8193
Description =

Error - 2009-04-28 01:43:38 | Computer Name = Michał-PC | Source = Application Error | ID = 1000
Description = Aplikacja powodująca błąd opera.exe, wersja 9.63.10476.0, sygnatura
czasowa 0x4940357c, moduł powodujący błąd Opera.dll, wersja 9.63.10476.0, sygnatura
czasowa 0x49403590, kod wyjątku 0xc0000005, przesunięcie błędu 0x0031149c, identyfikator
procesu 0xd54, godzina rozpoczęcia aplikacji 0x01c9c7c09deb2e9f.

Error - 2009-04-28 11:42:05 | Computer Name = Michał-PC | Source = Application Error | ID = 1000
Description = Aplikacja powodująca błąd KMPlayer.exe, wersja 2.9.3.1430, sygnatura
czasowa 0x2a425e19, moduł powodujący błąd ntdll.dll, wersja 6.0.6001.18000, sygnatura
czasowa 0x4791a7a6, kod wyjątku 0xc0000005, przesunięcie błędu 0x0006a786, identyfikator
procesu 0x1338, godzina rozpoczęcia aplikacji 0x01c9c806ce8ed60b.

Error - 2009-05-04 10:18:34 | Computer Name = Michał-PC | Source = Application Error | ID = 1000
Description = Aplikacja powodująca błąd Opera.exe, wersja 10.0.1355.0, sygnatura
czasowa 0x49b9315a, moduł powodujący błąd Opera.dll, wersja 10.0.1355.0, sygnatura
czasowa 0x49b931d7, kod wyjątku 0xc0000005, przesunięcie błędu 0x005b03c4, identyfikator
procesu 0xa94, godzina rozpoczęcia aplikacji 0x01c9ccb646e707f8.

Error - 2009-05-05 14:48:01 | Computer Name = Michał-PC | Source = Google Update | ID = 20
Description =

Error - 2009-05-05 15:47:39 | Computer Name = Michał-PC | Source = Application Error | ID = 1000
Description = Aplikacja powodująca błąd opera.exe, wersja 9.63.10476.0, sygnatura
czasowa 0x4940357c, moduł powodujący błąd Opera.dll, wersja 9.63.10476.0, sygnatura
czasowa 0x49403590, kod wyjątku 0xc0000005, przesunięcie błędu 0x0031149c, identyfikator
procesu 0x890, godzina rozpoczęcia aplikacji 0x01c9cdb2e79aa4bb.

[ System Events ]
Error - 2010-07-31 10:15:01 | Computer Name = Michał-PC | Source = Service Control Manager | ID = 7000
Description =

Error - 2010-07-31 10:15:59 | Computer Name = Michał-PC | Source = Service Control Manager | ID = 7022
Description =

Error - 2010-07-31 10:15:59 | Computer Name = Michał-PC | Source = Service Control Manager | ID = 7001
Description =

Error - 2010-07-31 10:16:30 | Computer Name = Michał-PC | Source = Service Control Manager | ID = 7009
Description =

Error - 2010-07-31 10:16:30 | Computer Name = Michał-PC | Source = Service Control Manager | ID = 7000
Description =

Error - 2010-07-31 10:17:14 | Computer Name = Michał-PC | Source = DCOM | ID = 10005
Description =

Error - 2010-07-31 10:18:33 | Computer Name = Michał-PC | Source = Service Control Manager | ID = 7009
Description =

Error - 2010-07-31 10:18:33 | Computer Name = Michał-PC | Source = Service Control Manager | ID = 7000
Description =

Error - 2010-07-31 10:25:21 | Computer Name = Michał-PC | Source = DCOM | ID = 10010
Description =

Error - 2010-07-31 10:46:59 | Computer Name = Michał-PC | Source = DCOM | ID = 10000
Description =

[ VeriSoft Events ]
Error - 2009-11-14 17:05:03 | Computer Name = Michał-PC | Source = AuthWiz | ID = 100796068
Description = The submitted credentials were rejected. User: Michał@Michał-PC Credentials:
Password Error: (0xC516020B) The system could not log you on. Verify your user
name and domain are correct and then type your password again. Letters in passwords
must be typed using the correct case. Verify that Caps Lock is off.

Error - 2009-11-14 17:05:13 | Computer Name = Michał-PC | Source = AuthWiz | ID = 100796068
Description = The submitted credentials were rejected. User: Michał@Michał-PC Credentials:
Password Error: (0xC516020B) The system could not log you on. Verify your user
name and domain are correct and then type your password again. Letters in passwords
must be typed using the correct case. Verify that Caps Lock is off.

Error - 2009-12-25 09:56:18 | Computer Name = Michał-PC | Source = AuthWiz | ID = 100796068
Description = The submitted credentials were rejected. User: anno@MICHAŁ-PC Credentials:
Password Error: (0xC516020B) The system could not log you on. Verify your user
name and domain are correct and then type your password again. Letters in passwords
must be typed using the correct case. Verify that Caps Lock is off.


< End of report >
[/log]


lo

Logi RSIT:

[log]
Logfile of random's system information tool 1.08 (written by random/random)
Run by Michał at 2010-07-31 18:22:22
Microsoft® Windows Vista™ Home Premium Service Pack 2
System drive C: has 42 GB (50%) free of 83 GB
Total RAM: 2558 MB (41% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 18:22:41, on 2010-07-31
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v8.00 (8.00.6001.18928)
Boot mode: Normal

Running processes:
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
C:\Windows\ehome\ehtray.exe
C:\Windows\ehome\ehmsas.exe
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
G:\Programy\defragmentator dysku\PDAgentS1.exe
G:\Programy\defragmentator dysku\PDAgentS1.exe
C:\Users\MICHA~1\AppData\Local\Temp\winoopl.exe
C:\Users\MICHA~1\AppData\Local\Temp\wintiwr.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\Hewlett-Packard\Shared\HpqToaster.exe
C:\Users\MICHA~1\AppData\Local\Temp\w86f45.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Users\Michał\Desktop\RSIT.exe
C:\Users\Michał\Desktop\RSIT.exe
C:\Program Files\trend micro\Michał.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.pl/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: Pomocnik rejestrowania za pomocą identyfikatora Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.4.4525.1752\swg.dll
O2 - BHO: PDF-XChange Viewer IE-Plugin - {C5D07EB6-BBCE-4DAE-ACBB-D13A8D28CB1F} - G:\Programy\Tracker Software\PDF Viewer\PDFXCviewIEPlugin.dll
O2 - BHO: Google Dictionary Compression sdch - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: VeriSoft Access Manager - {DF21F1DB-80C6-11D3-9483-B03D0EC10000} - c:\Program Files\Bioscrypt\VeriSoft\Bin\ItIEAddIn.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O2 - BHO: DAPIELoader Class - {FF6C3CF0-4B15-11D1-ABED-709549C10000} - G:\Programy\DAP\DAPIEL~1.DLL
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [CognizanceTS] rundll32.exe c:\PROGRA~1\BIOSCR~1\VeriSoft\Bin\ASTSVCC.dll,RegisterModule
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [QlbCtrl.exe] C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start
O4 - HKLM\..\Run: [WirelessAssistant] C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
O4 - HKLM\..\Run: [USB Gamepad] C:\Windows\USB Vibration\dr100&110\USB Gamepad.exe -boot
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKCU\..\Run: [LightScribe Control Panel] C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe -hidden
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe" ASO-616B5711-6DAE-4795-A05F-39A1E5104020
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'USŁUGA LOKALNA')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'USŁUGA LOKALNA')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'USŁUGA SIECIOWA')
O7 - HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\System, DisableRegedit=1
O8 - Extra context menu item: &Clean Traces - G:\Programy\DAP\Privacy Package\dapcleanerie.htm
O8 - Extra context menu item: &Download with &DAP - G:\Programy\DAP\dapextie.htm
O8 - Extra context menu item: Download &all with DAP - G:\Programy\DAP\dapextie2.htm
O8 - Extra context menu item: E&ksport do programu Microsoft Excel - res://G:\Programy\Office\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: E&ksportuj do programu Microsoft Excel - res://G:\Programy\OFFICE~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Wyślij obraz do urządzenia &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Wyślij stronę do urządzenia &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: Wpis w blogu - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Wpis w blogu w Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: (no name) - {5067A26B-1337-4436-8AFE-EE169C2DA79F} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra 'Tools' menuitem: Skype add-on for Internet Explorer - {5067A26B-1337-4436-8AFE-EE169C2DA79F} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O16 - DPF: {1E54D648-B804-468d-BC78-4AFFED8E262F} (System Requirements Lab) - http://www.nvidia.com/content/DriverDownload/srl/3.0.0.4/srl_bin/sysreqlab_nvd.cab
O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} - http://download.eset.com/special/eos/OnlineScanner.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Filter: x-sdch - {B1759355-3EEC-4C1E-B0F1-B719FE26E377} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll
O20 - AppInit_DLLs: APSHook.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O23 - Service: a-squared Free Service (a2free) - Emsi Software GmbH - C:\Program Files\a-squared Free\a2service.exe
O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - C:\Program Files\HP\QuickPlay\Kernel\TV\CLCapSvc.exe
O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - C:\Program Files\HP\QuickPlay\Kernel\TV\CLSched.exe (file missing)
O23 - Service: Com4QLBEx - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
O23 - Service: HP Health Check Service - Hewlett-Packard - C:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe
O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: Microsoft Office Diagnostics Service (odserv) - Unknown owner - C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE (file missing)
O23 - Service: Office Source Engine (ose) - Unknown owner - C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE (file missing)
O23 - Service: PDAgent - Raxco Software, Inc. - G:\Programy\defragmentator dysku\PDAgent.exe
O23 - Service: PDEngine - Raxco Software, Inc. - G:\Programy\defragmentator dysku\PDEngine.exe
O23 - Service: PGPsdkService (PGPsdkServ) - Unknown owner - C:\Windows\system32\PGPsdkServ.exe (file missing)
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: RoxMediaDB9 - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
O23 - Service: StarWind AE Service (StarWindServiceAE) - Rocket Division Software - G:\Programy\Alcohol 120\StarWind\StarWindServiceAE.exe
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe

--
End of file - 10804 bytes

======Scheduled tasks folder======

C:\Windows\tasks\User_Feed_Synchronization-{33A78335-0818-4987-8D74-5A2DA5C573C0}.job
C:\Windows\tasks\User_Feed_Synchronization-{94C9E3AC-2D7B-448B-9D50-923637CB0158}.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Adobe PDF Reader Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-23 62080]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{22BF413B-C6D2-4d91-82A9-A0F997BA588C}]
Skype add-on (mastermind) - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2009-08-04 1586472]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
Search Helper - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll [2009-05-19 137600]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Pomocnik rejestrowania za pomocą identyfikatora Windows Live - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 403840]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll [2009-07-19 259696]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.4.4525.1752\swg.dll [2009-11-23 764912]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C5D07EB6-BBCE-4DAE-ACBB-D13A8D28CB1F}]
PDF-XChange Viewer IE-Plugin - G:\Programy\Tracker Software\PDF Viewer\PDFXCviewIEPlugin.dll [2009-07-14 1093400]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C84D72FE-E17D-4195-BB24-76C02E2E7C4E}]
Google Dictionary Compression sdch - C:\Program Files\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll [2009-07-19 470512]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2009-10-11 41760]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DF21F1DB-80C6-11D3-9483-B03D0EC10000}]
VeriSoft Access Manager - c:\Program Files\Bioscrypt\VeriSoft\Bin\ItIEAddIn.dll [2006-11-21 71192]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E15A8DC0-8516-42A1-81EA-DC94EC1ACF10}]
Windows Live Toolbar Helper - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FF6C3CF0-4B15-11D1-ABED-709549C10000}]
DAPIELoader Class - G:\Programy\DAP\DAPIEL~1.DLL [2010-05-27 140880]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll [2009-07-19 259696]
{21FA44EF-376D-4D53-9B0F-8A89D3229068} - &Windows Live Toolbar - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-19 1008184]
"CognizanceTS"=c:\PROGRA~1\BIOSCR~1\VeriSoft\Bin\ASTSVCC.dll [2003-12-22 17920]
"NWEReboot"= []
"HP Software Update"=C:\Program Files\HP\HP Software Update\HPWuSchd2.exe []
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2008-06-20 1385768]
"QlbCtrl.exe"=C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start []
"WirelessAssistant"=C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe [2009-07-23 498744]
"USB Gamepad"=C:\Windows\USB Vibration\dr100&110\USB Gamepad.exe -boot []
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe []

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"LightScribe Control Panel"=C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe -hidden []
"ehTray.exe"=C:\Windows\ehome\ehTray.exe [2008-01-19 125952]
"IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"=C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe ASO-616B5711-6DAE-4795-A05F-39A1E5104020 []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AlcoholAutomount]
G:\Programy\Alcohol 120\axcmd.exe [2009-04-21 82432]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Malwarebytes Anti-Malware (reboot)]
G:\Programy\Malwarebytes' Anti-Malware\mbam.exe [2010-04-29 1160584]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Onet.pl AutoUpdate]
C:\Program Files\Common Files\Onet.pl\NewAutoUpdate.exe /updateexe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\swg]
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2009-01-17 33792]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WinampAgent]
G:\Programy\Winamp\winampa.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Adobe Reader Speed Launch.lnk]
C:\PROGRA~1\Adobe\READER~1.0\Reader\READER~1.EXE []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Adobe Reader Synchronizer.lnk]
C:\PROGRA~1\Adobe\READER~1.0\Reader\ADOBEC~1.EXE [2007-05-11 733184]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Michał^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Tworzenie wycinków ekranu i uruchamianie programu OneNote 2007.lnk]
G:\Programy\OFFICE~1\Office12\ONENOTEM.EXE /tsr []

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="APSHook.dll"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"notification packages"=scecli
ASWLNPkg

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DisableRegistryTools"=1
"DisableTaskMgr"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"EnableLUA"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"BindDirectlyToPropertySetStorage"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"G:\Programy\PPMate\ppmate.exe"="G:\Programy\PPMate\ppmate.exe:*:Enabled:PPMate"
"G:\Programy\PPMate\ppamnet.exe"="G:\Programy\PPMate\ppamnet.exe:*:Enabled:PPMate"
"E:\Postal 2 Share the Pain\POSTAL2 STP\Setup.exe"="E:\Postal 2 Share the Pain\POSTAL2 STP\Setup.exe:*:Enabled:ipsec"
"C:\Windows\system32\netsh.exe"="C:\Windows\system32\netsh.exe:*:Enabled:ipsec"
"C:\Windows\system32\Dwm.exe"="C:\Windows\system32\Dwm.exe:*:Enabled:ipsec"
"c:\Program Files\Bioscrypt\VeriSoft\Bin\AsGHost.exe"="c:\Program Files\Bioscrypt\VeriSoft\Bin\AsGHost.exe:*:Enabled:ipsec"
"G:\Programy\EASEUS Partition Master 4.1.1 Home Edition\bin\Main.exe"="G:\Programy\EASEUS Partition Master 4.1.1 Home Edition\bin\Main.exe:*:Enabled:ipsec"
"C:\Program Files\Synaptics\SynTP\SynTPStart.exe"="C:\Program Files\Synaptics\SynTP\SynTPStart.exe:*:Enabled:ipsec"
"C:\Users\MICHA~1\AppData\Local\Temp\mprkvv.exe"="C:\Users\MICHA~1\AppData\Local\Temp\mprkvv.exe:*:Enabled:ipsec"
"C:\Users\MICHA~1\AppData\Local\Temp\mrtiwx.exe"="C:\Users\MICHA~1\AppData\Local\Temp\mrtiwx.exe:*:Enabled:ipsec"
"C:\Windows\Explorer.EXE"="C:\Windows\Explorer.EXE:*:Enabled:ipsec"
"G:\Programy\EvilLyrics\EvilLyrics.exe"="G:\Programy\EvilLyrics\EvilLyrics.exe:*:Enabled:ipsec"
"C:\Windows\helppane.exe"="C:\Windows\helppane.exe:*:Enabled:ipsec"
"C:\Users\MICHA~1\AppData\Local\Temp\maveep.exe"="C:\Users\MICHA~1\AppData\Local\Temp\maveep.exe:*:Enabled:ipsec"
"C:\Users\MICHA~1\AppData\Local\Temp\krwb.exe"="C:\Users\MICHA~1\AppData\Local\Temp\krwb.exe:*:Enabled:ipsec"
"C:\Windows\system32\userinit.exe"="C:\Windows\system32\userinit.exe:*:Enabled:ipsec"
"C:\Users\MICHA~1\AppData\Local\Temp\winmjnqcs.exe"="C:\Users\MICHA~1\AppData\Local\Temp\winmjnqcs.exe:*:Enabled:ipsec"
"C:\Users\MICHA~1\AppData\Local\Temp\winywyjij.exe"="C:\Users\MICHA~1\AppData\Local\Temp\winywyjij.exe:*:Enabled:ipsec"
"C:\Users\MICHA~1\AppData\Local\Temp\winmblt.exe"="C:\Users\MICHA~1\AppData\Local\Temp\winmblt.exe:*:Enabled:ipsec"
"C:\Users\MICHA~1\AppData\Local\Temp\mxqup.exe"="C:\Users\MICHA~1\AppData\Local\Temp\mxqup.exe:*:Enabled:ipsec"
"C:\Users\MICHA~1\AppData\Local\Temp\winfgom.exe"="C:\Users\MICHA~1\AppData\Local\Temp\winfgom.exe:*:Enabled:ipsec"
"C:\Users\MICHA~1\AppData\Local\Temp\winelcr.exe"="C:\Users\MICHA~1\AppData\Local\Temp\winelcr.exe:*:Enabled:ipsec"
"C:\Program Files\Google\Update\GoogleUpdate.exe"="C:\Program Files\Google\Update\GoogleUpdate.exe:*:Enabled:ipsec"
"C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe"="C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe:*:Enabled:ipsec"
"C:\Users\MICHA~1\AppData\Local\Temp\winxvqdex.exe"="C:\Users\MICHA~1\AppData\Local\Temp\winxvqdex.exe:*:Enabled:ipsec"
"C:\Users\MICHA~1\AppData\Local\Temp\winrhdmir.exe"="C:\Users\MICHA~1\AppData\Local\Temp\winrhdmir.exe:*:Enabled:ipsec"
"C:\Users\MICHA~1\AppData\Local\Temp\winwfao.exe"="C:\Users\MICHA~1\AppData\Local\Temp\winwfao.exe:*:Enabled:ipsec"
"C:\Users\MICHA~1\AppData\Local\Temp\winubjhuh.exe"="C:\Users\MICHA~1\AppData\Local\Temp\winubjhuh.exe:*:Enabled:ipsec"
"C:\Windows\system32\taskeng.exe"="C:\Windows\system32\taskeng.exe:*:Enabled:ipsec"
"C:\Users\MICHA~1\AppData\Local\Temp\winfvot.exe"="C:\Users\MICHA~1\AppData\Local\Temp\winfvot.exe:*:Enabled:ipsec"
"C:\Users\MICHA~1\AppData\Local\Temp\winkjnljx.exe"="C:\Users\MICHA~1\AppData\Local\Temp\winkjnljx.exe:*:Enabled:ipsec"
"C:\Users\MICHA~1\AppData\Local\Temp\winlphova.exe"="C:\Users\MICHA~1\AppData\Local\Temp\winlphova.exe:*:Enabled:ipsec"
"C:\Users\MICHA~1\AppData\Local\Temp\winxslq.exe"="C:\Users\MICHA~1\AppData\Local\Temp\winxslq.exe:*:Enabled:ipsec"
"C:\Users\MICHA~1\AppData\Local\Temp\winkytlda.exe"="C:\Users\MICHA~1\AppData\Local\Temp\winkytlda.exe:*:Enabled:ipsec"
"C:\Users\MICHA~1\AppData\Local\Temp\winvadgh.exe"="C:\Users\MICHA~1\AppData\Local\Temp\winvadgh.exe:*:Enabled:ipsec"
"C:\Users\MICHA~1\AppData\Local\Temp\uqpbf.exe"="C:\Users\MICHA~1\AppData\Local\Temp\uqpbf.exe:*:Enabled:ipsec"
"C:\Users\MICHA~1\AppData\Local\Temp\usqwt.exe"="C:\Users\MICHA~1\AppData\Local\Temp\usqwt.exe:*:Enabled:ipsec"
"C:\Users\MICHA~1\AppData\Local\Temp\wintihgx.exe"="C:\Users\MICHA~1\AppData\Local\Temp\wintihgx.exe:*:Enabled:ipsec"
"C:\Users\MICHA~1\AppData\Local\Temp\winogql.exe"="C:\Users\MICHA~1\AppData\Local\Temp\winogql.exe:*:Enabled:ipsec"
"C:\Windows\TEMP\wintalm.exe"="C:\Windows\TEMP\wintalm.exe:*:Enabled:ipsec"
"C:\Users\MICHA~1\AppData\Local\Temp\xyext.exe"="C:\Users\MICHA~1\AppData\Local\Temp\xyext.exe:*:Enabled:ipsec"
"C:\Windows\TEMP\wingcfv.exe"="C:\Windows\TEMP\wingcfv.exe:*:Enabled:ipsec"
"C:\Users\MICHA~1\AppData\Local\Temp\winfydd.exe"="C:\Users\MICHA~1\AppData\Local\Temp\winfydd.exe:*:Enabled:ipsec"
"C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE"="C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE:*:Enabled:ipsec"
"C:\Windows\TEMP\winfshp.exe"="C:\Windows\TEMP\winfshp.exe:*:Enabled:ipsec"
"C:\Users\MICHA~1\AppData\Local\Temp\winiexg.exe"="C:\Users\MICHA~1\AppData\Local\Temp\winiexg.exe:*:Enabled:ipsec"
"C:\Users\MICHA~1\AppData\Local\Temp\wincjqe.exe"="C:\Users\MICHA~1\AppData\Local\Temp\wincjqe.exe:*:Enabled:ipsec"
"C:\Users\MICHA~1\AppData\Local\Temp\vtxutf.exe"="C:\Users\MICHA~1\AppData\Local\Temp\vtxutf.exe:*:Enabled:ipsec"
"C:\Users\MICHA~1\AppData\Local\Temp\winobor.exe"="C:\Users\MICHA~1\AppData\Local\Temp\winobor.exe:*:Enabled:ipsec"
"C:\Windows\ehome\ehtray.exe"="C:\Windows\ehome\ehtray.exe:*:Enabled:ipsec"
"C:\Users\MICHA~1\AppData\Local\Temp\esag.exe"="C:\Users\MICHA~1\AppData\Local\Temp\esag.exe:*:Enabled:ipsec"
"C:\Users\MICHA~1\AppData\Local\Temp\winxvpdil.exe"="C:\Users\MICHA~1\AppData\Local\Temp\winxvpdil.exe:*:Enabled:ipsec"
"C:\Users\MICHA~1\AppData\Local\Temp\winebpyd.exe"="C:\Users\MICHA~1\AppData\Local\Temp\winebpyd.exe:*:Enabled:ipsec"
"C:\Users\MICHA~1\AppData\Local\Temp\kkgux.exe"="C:\Users\MICHA~1\AppData\Local\Temp\kkgux.exe:*:Enabled:ipsec"
"C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe"="C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe:*:Enabled:ipsec"
"C:\Users\MICHA~1\AppData\Local\Temp\winonyhk.exe"="C:\Users\MICHA~1\AppData\Local\Temp\winonyhk.exe:*:Enabled:ipsec"
"C:\Users\MICHA~1\AppData\Local\Temp\winrcgtvu.exe"="C:\Users\MICHA~1\AppData\Local\Temp\winrcgtvu.exe:*:Enabled:ipsec"
"C:\Users\MICHA~1\AppData\Local\Temp\winqagnvv.exe"="C:\Users\MICHA~1\AppData\Local\Temp\winqagnvv.exe:*:Enabled:ipsec"
"C:\Users\MICHA~1\AppData\Local\Temp\winupyh.exe"="C:\Users\MICHA~1\AppData\Local\Temp\winupyh.exe:*:Enabled:ipsec"
"C:\Users\MICHA~1\AppData\Local\Temp\winivqch.exe"="C:\Users\MICHA~1\AppData\Local\Temp\winivqch.exe:*:Enabled:ipsec"
"C:\Users\MICHA~1\AppData\Local\Temp\winlnrb.exe"="C:\Users\MICHA~1\AppData\Local\Temp\winlnrb.exe:*:Enabled:ipsec"
"C:\Users\MICHA~1\AppData\Local\Temp\winqtpkw.exe"="C:\Users\MICHA~1\AppData\Local\Temp\winqtpkw.exe:*:Enabled:ipsec"
"C:\Users\MICHA~1\AppData\Local\Temp\winohsku.exe"="C:\Users\MICHA~1\AppData\Local\Temp\winohsku.exe:*:Enabled:ipsec"
"C:\Users\MICHA~1\AppData\Local\Temp\winlpav.exe"="C:\Users\MICHA~1\AppData\Local\Temp\winlpav.exe:*:Enabled:ipsec"
"C:\Program Files\HP\QuickPlay\QPService.exe"="C:\Program Files\HP\QuickPlay\QPService.exe:*:Enabled:ipsec"
"C:\Users\MICHA~1\AppData\Local\Temp\winghysmu.exe"="C:\Users\MICHA~1\AppData\Local\Temp\winghysmu.exe:*:Enabled:ipsec"
"C:\Users\MICHA~1\AppData\Local\Temp\vkuw.exe"="C:\Users\MICHA~1\AppData\Local\Temp\vkuw.exe:*:Enabled:ipsec"
"C:\Users\MICHA~1\AppData\Local\Temp\winlocgv.exe"="C:\Users\MICHA~1\AppData\Local\Temp\winlocgv.exe:*:Enabled:ipsec"
"G:\Programy\defragmentator dysku\PDEngine.exe"="G:\Programy\defragmentator dysku\PDEngine.exe:*:Enabled:ipsec"
"C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe"="C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe:*:Enabled:ipsec"
"C:\Windows\TEMP\ecmw.exe"="C:\Windows\TEMP\ecmw.exe:*:Enabled:ipsec"
"C:\Users\MICHA~1\AppData\Local\Temp\winjtmgia.exe"="C:\Users\MICHA~1\AppData\Local\Temp\winjtmgia.exe:*:Enabled:ipsec"
"C:\Windows\TEMP\winkdwiik.exe"="C:\Windows\TEMP\winkdwiik.exe:*:Enabled:ipsec"
"C:\Users\MICHA~1\AppData\Local\Temp\qsivk.exe"="C:\Users\MICHA~1\AppData\Local\Temp\qsivk.exe:*:Enabled:ipsec"
"C:\Users\MICHA~1\AppData\Local\Temp\winljpag.exe"="C:\Users\MICHA~1\AppData\Local\Temp\winljpag.exe:*:Enabled:ipsec"
"C:\Users\MICHA~1\AppData\Local\Temp\winlrpa.exe"="C:\Users\MICHA~1\AppData\Local\Temp\winlrpa.exe:*:Enabled:ipsec"
"C:\Users\MICHA~1\AppData\Local\Temp\krcxh.exe"="C:\Users\MICHA~1\AppData\Local\Temp\krcxh.exe:*:Enabled:ipsec"
"C:\Users\MICHA~1\AppData\Local\Temp\efotpa.exe"="C:\Users\MICHA~1\AppData\Local\Temp\efotpa.exe:*:Enabled:ipsec"
"C:\Users\MICHA~1\AppData\Local\Temp\tvmivd.exe"="C:\Users\MICHA~1\AppData\Local\Temp\tvmivd.exe:*:Enabled:ipsec"
"C:\Users\MICHA~1\AppData\Local\Temp\winhmht.exe"="C:\Users\MICHA~1\AppData\Local\Temp\winhmht.exe:*:Enabled:ipsec"
"C:\Users\MICHA~1\AppData\Local\Temp\winukvwgq.exe"="C:\Users\MICHA~1\AppData\Local\Temp\winukvwgq.exe:*:Enabled:ipsec"
"C:\Users\MICHA~1\AppData\Local\Temp\hqsort.exe"="C:\Users\MICHA~1\AppData\Local\Temp\hqsort.exe:*:Enabled:ipsec"
"C:\Users\MICHA~1\AppData\Local\Temp\pggpj.exe"="C:\Users\MICHA~1\AppData\Local\Temp\pggpj.exe:*:Enabled:ipsec"
"C:\Users\MICHA~1\AppData\Local\Temp\winfmkbl.exe"="C:\Users\MICHA~1\AppData\Local\Temp\winfmkbl.exe:*:Enabled:ipsec"
"C:\Users\MICHA~1\AppData\Local\Temp\ytdxra.exe"="C:\Users\MICHA~1\AppData\Local\Temp\ytdxra.exe:*:Enabled:ipsec"
"C:\Users\MICHA~1\AppData\Local\Temp\baocfa.exe"="C:\Users\MICHA~1\AppData\Local\Temp\baocfa.exe:*:Enabled:ipsec"
"C:\Users\MICHA~1\AppData\Local\Temp\sngcxu.exe"="C:\Users\MICHA~1\AppData\Local\Temp\sngcxu.exe:*:Enabled:ipsec"
"G:\Gry\Tropico\Tropico 3\uninst.exe"="G:\Gry\Tropico\Tropico 3\uninst.exe:*:Enabled:ipsec"
"C:\Users\MICHA~1\AppData\Local\Temp\~nsu.tmp\Au_.exe"="C:\Users\MICHA~1\AppData\Local\Temp\~nsu.tmp\Au_.exe:*:Enabled:ipsec"
"C:\Windows\TEMP\boem.exe"="C:\Windows\TEMP\boem.exe:*:Enabled:ipsec"
"C:\Windows\TEMP\winxicks.exe"="C:\Windows\TEMP\winxicks.exe:*:Enabled:ipsec"
"C:\Windows\TEMP\biua.exe"="C:\Windows\TEMP\biua.exe:*:Enabled:ipsec"
"C:\Windows\TEMP\ojhvd.exe"="C:\Windows\TEMP\ojhvd.exe:*:Enabled:ipsec"
"C:\Windows\TEMP\knki.exe"="C:\Windows\TEMP\knki.exe:*:Enabled:ipsec"
"C:\Windows\TEMP\winbdin.exe"="C:\Windows\TEMP\winbdin.exe:*:Enabled:ipsec"
"C:\Windows\TEMP\winogjmue.exe"="C:\Windows\TEMP\winogjmue.exe:*:Enabled:ipsec"
"C:\Windows\TEMP\winfbhw.exe"="C:\Windows\TEMP\winfbhw.exe:*:Enabled:ipsec"
"C:\Windows\TEMP\cnooao.exe"="C:\Windows\TEMP\cnooao.exe:*:Enabled:ipsec"
"C:\Users\MICHA~1\AppData\Local\Temp\opxd.exe"="C:\Users\MICHA~1\AppData\Local\Temp\opxd.exe:*:Enabled:ipsec"
"C:\Windows\TEMP\winycgst.exe"="C:\Windows\TEMP\winycgst.exe:*:Enabled:ipsec"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 months======

2010-07-31 17:40:04 ----D---- C:\Program Files\trend micro
2010-07-31 17:40:02 ----D---- C:\rsit
2010-07-31 13:44:05 ----RSH---- C:\ftoodu.pif
2010-07-31 02:20:33 ----A---- C:\Users\Michał\AppData\Roaming\privacy_policy.txt.lnk
2010-07-30 17:26:40 ----A---- C:\Windows\system32\drivers\mbamswissarmy.sys
2010-07-30 17:26:36 ----A---- C:\Windows\system32\drivers\mbam.sys
2010-07-29 10:16:38 ----D---- C:\Program Files\PROnetworks
2010-07-28 14:02:31 ----D---- C:\Program Files\a-squared Free
2010-07-28 12:47:00 ----RAS---- C:\BOOTSECT.BAK
2010-07-13 14:52:53 ----A---- C:\Windows\bestplayer.ini

======List of files/folders modified in the last 1 months======

2010-07-31 18:22:37 ----D---- C:\Windows\Temp
2010-07-31 17:40:04 ----D---- C:\Program Files
2010-07-31 16:34:01 ----SHD---- C:\Windows\Installer
2010-07-31 16:34:01 ----HD---- C:\Config.Msi
2010-07-31 16:14:34 ----A---- C:\ProgramData\HPWALog.txt
2010-07-31 16:14:33 ----HD---- C:\ProgramData
2010-07-31 13:54:45 ----SHD---- C:\System Volume Information
2010-07-31 13:46:12 ----RD---- C:\Users
2010-07-31 13:46:00 ----D---- C:\Windows
2010-07-31 13:42:13 ----D---- C:\Windows\system32\drivers
2010-07-31 13:42:13 ----D---- C:\Windows\system
2010-07-31 11:31:02 ----A---- C:\Windows\ntbtlog.txt
2010-07-31 09:32:47 ----D---- C:\Users\Michał\AppData\Roaming\uTorrent
2010-07-31 02:26:45 ----D---- C:\Users\Michał\AppData\Roaming\Macromedia
2010-07-31 02:26:43 ----D---- C:\Users\Michał\AppData\Roaming\Ludia
2010-07-31 02:26:35 ----D---- C:\Users\Michał\AppData\Roaming\Leadertech
2010-07-31 02:26:23 ----D---- C:\Users\Michał\AppData\Roaming\Lavasoft
2010-07-31 02:26:22 ----D---- C:\Users\Michał\AppData\Roaming\Kamerzysta
2010-07-31 02:26:19 ----D---- C:\Users\Michał\AppData\Roaming\InstallShield
2010-07-31 02:26:15 ----D---- C:\Users\Michał\AppData\Roaming\InfraRecorder
2010-07-31 02:26:14 ----D---- C:\Users\Michał\AppData\Roaming\Image Zone Express
2010-07-31 02:25:52 ----D---- C:\Users\Michał\AppData\Roaming\Identities
2010-07-31 02:25:41 ----D---- C:\Users\Michał\AppData\Roaming\hpqLog
2010-07-31 02:25:36 ----D---- C:\Users\Michał\AppData\Roaming\HP
2010-07-31 02:25:32 ----D---- C:\Users\Michał\AppData\Roaming\Hewlett-Packard
2010-07-31 02:25:27 ----D---- C:\Users\Michał\AppData\Roaming\Hamachi
2010-07-31 02:25:25 ----D---- C:\Users\Michał\AppData\Roaming\Google
2010-07-31 02:22:25 ----D---- C:\Users\Michał\AppData\Roaming\GanymedeNet
2010-07-31 02:22:06 ----D---- C:\Users\Michał\AppData\Roaming\Gadu-Gadu
2010-07-31 02:22:05 ----D---- C:\Users\Michał\AppData\Roaming\foobar2000
2010-07-31 02:21:39 ----D---- C:\Users\Michał\AppData\Roaming\Flock
2010-07-31 02:21:38 ----D---- C:\Users\Michał\AppData\Roaming\dvdcss
2010-07-31 02:21:37 ----D---- C:\Users\Michał\AppData\Roaming\DeepBurner
2010-07-31 02:21:35 ----D---- C:\Users\Michał\AppData\Roaming\DAEMON Tools Lite
2010-07-31 02:21:33 ----D---- C:\Users\Michał\AppData\Roaming\DAEMON Tools
2010-07-31 02:21:24 ----D---- C:\Users\Michał\AppData\Roaming\CyberLink
2010-07-31 02:21:21 ----D---- C:\Users\Michał\AppData\Roaming\Crayon Physics Deluxe
2010-07-31 02:21:19 ----D---- C:\Users\Michał\AppData\Roaming\Codeton
2010-07-31 02:21:15 ----D---- C:\Users\Michał\AppData\Roaming\Canneverbe_Limited
2010-07-31 02:21:15 ----D---- C:\Users\Michał\AppData\Roaming\Braid
2010-07-31 02:21:13 ----D---- C:\Users\Michał\AppData\Roaming\BESTplayer
2010-07-31 02:21:12 ----D---- C:\Users\Michał\AppData\Roaming\AutoUpdate
2010-07-31 02:21:04 ----D---- C:\Users\Michał\AppData\Roaming\Ashampoo
2010-07-31 02:21:03 ----D---- C:\Users\Michał\AppData\Roaming\Alawar
2010-07-31 02:21:01 ----D---- C:\Users\Michał\AppData\Roaming\Ahead
2010-07-31 02:20:34 ----D---- C:\Users\Michał\AppData\Roaming\Adobe
2010-07-31 01:51:56 ----D---- C:\Windows\system32\catroot2
2010-07-31 01:51:56 ----D---- C:\Windows\system32\catroot
2010-07-31 01:51:54 ----D---- C:\Windows\inf
2010-07-31 01:38:20 ----D---- C:\ProgramData\WindowsSearch
2010-07-31 01:38:19 ----D---- C:\ProgramData\WEBREG
2010-07-31 01:38:18 ----D---- C:\ProgramData\vsosdk
2010-07-31 01:38:15 ----D---- C:\ProgramData\TVU Networks
2010-07-31 01:38:14 ----AD---- C:\ProgramData\TEMP
2010-07-31 01:38:13 ----D---- C:\ProgramData\Tages
2010-07-31 01:38:04 ----D---- C:\ProgramData\Symantec
2010-07-31 01:38:03 ----D---- C:\ProgramData\Stardock
2010-07-31 01:37:47 ----D---- C:\ProgramData\SpeedBit
2010-07-31 01:37:45 ----D---- C:\ProgramData\Sonic
2010-07-31 01:37:21 ----D---- C:\ProgramData\Skype
2010-07-31 01:37:16 ----D---- C:\ProgramData\Roxio
2010-07-31 01:37:15 ----D---- C:\ProgramData\Real
2010-07-31 01:37:12 ----D---- C:\ProgramData\Raxco
2010-07-31 01:37:09 ----D---- C:\ProgramData\POPWWPROFILES
2010-07-31 01:37:09 ----D---- C:\ProgramData\PMB Files
2010-07-31 01:37:06 ----D---- C:\ProgramData\PGP Corporation
2010-07-31 01:37:02 ----D---- C:\ProgramData\PC Suite
2010-07-31 01:37:02 ----D---- C:\ProgramData\NVIDIA
2010-07-31 01:36:59 ----D---- C:\ProgramData\NortonInstaller
2010-07-31 01:36:58 ----D---- C:\ProgramData\Norton
2010-07-31 01:36:48 ----D---- C:\ProgramData\Nokia
2010-07-31 01:36:31 ----D---- C:\ProgramData\Nero
2010-07-31 01:36:30 ----D---- C:\ProgramData\Microsoft Help
2010-07-31 01:28:39 ----D---- C:\Program Files\Nokia
2010-07-31 01:28:23 ----D---- C:\Windows\winsxs
2010-07-31 01:23:58 ----SD---- C:\ProgramData\Microsoft
2010-07-31 01:23:56 ----D---- C:\ProgramData\Malwarebytes
2010-07-31 01:23:55 ----D---- C:\ProgramData\Ludia
2010-07-31 01:23:54 ----D---- C:\ProgramData\LightScribe
2010-07-31 01:23:52 ----D---- C:\ProgramData\KONAMI
2010-07-31 01:23:51 ----D---- C:\ProgramData\InstallShield
2010-07-31 01:23:29 ----D---- C:\ProgramData\Installations
2010-07-31 01:23:28 ----D---- C:\ProgramData\HPSSUPPLY
2010-07-31 01:23:18 ----D---- C:\ProgramData\HP
2010-07-31 01:23:14 ----D---- C:\ProgramData\Hewlett-Packard
2010-07-31 01:23:12 ----D---- C:\ProgramData\Google Updater
2010-07-31 01:23:10 ----D---- C:\ProgramData\Google
2010-07-31 01:22:43 ----D---- C:\ProgramData\GameTap Web Player
2010-07-31 01:22:34 ----D---- C:\ProgramData\Electronic Arts
2010-07-31 01:22:33 ----D---- C:\ProgramData\DAEMON Tools Lite
2010-07-31 01:22:15 ----D---- C:\ProgramData\CyberLink
2010-07-31 01:21:54 ----D---- C:\ProgramData\Brontes Processing
2010-07-31 01:21:40 ----D---- C:\ProgramData\Blizzard Entertainment
2010-07-31 01:21:38 ----D---- C:\ProgramData\Blizzard
2010-07-31 01:21:34 ----D---- C:\ProgramData\ashampoo
2010-07-31 01:21:31 ----D---- C:\ProgramData\Alwil Software
2010-07-31 01:21:14 ----D---- C:\ProgramData\Adobe
2010-07-31 01:21:06 ----D---- C:\ProgramData\2DBoy
2010-07-31 00:09:14 ----D---- C:\Windows\schemas
2010-07-30 17:58:04 ----D---- C:\Windows\System32
2010-07-30 17:58:04 ----A---- C:\Windows\system32\PerfStringBackup.INI
2010-07-30 11:13:57 ----D---- C:\Users\Michał\AppData\Roaming\Xfire
2010-07-30 11:13:51 ----D---- C:\Users\Michał\AppData\Roaming\WinRAR
2010-07-30 11:13:26 ----D---- C:\Users\Michał\AppData\Roaming\Winamp
2010-07-30 11:13:19 ----D---- C:\Users\Michał\AppData\Roaming\Vso
2010-07-30 11:13:09 ----D---- C:\Users\Michał\AppData\Roaming\vlc
2010-07-30 11:12:38 ----D---- C:\Users\Michał\AppData\Roaming\Unity
2010-07-30 11:12:22 ----D---- C:\Users\Michał\AppData\Roaming\Ubisoft
2010-07-30 11:12:12 ----D---- C:\Users\Michał\AppData\Roaming\U3
2010-07-30 11:11:50 ----D---- C:\Users\Michał\AppData\Roaming\Tropico 3
2010-07-30 11:11:35 ----D---- C:\Users\Michał\AppData\Roaming\THQ
2010-07-30 11:11:28 ----D---- C:\Users\Michał\AppData\Roaming\The Path
2010-07-30 11:04:59 ----D---- C:\Users\Michał\AppData\Roaming\Sun
2010-07-30 10:59:59 ----D---- C:\Users\Michał\AppData\Roaming\Sudeki
2010-07-30 10:59:40 ----D---- C:\Users\Michał\AppData\Roaming\SPORE Creature Creator
2010-07-30 10:59:25 ----D---- C:\Users\Michał\AppData\Roaming\SopCast
2010-07-30 10:59:20 ----D---- C:\Users\Michał\AppData\Roaming\skypePM
2010-07-30 10:57:53 ----D---- C:\Users\Michał\AppData\Roaming\Skype
2010-07-30 10:57:43 ----D---- C:\Users\Michał\AppData\Roaming\SecuROM
2010-07-30 10:56:04 ----D---- C:\Users\Michał\AppData\Roaming\Roxio
2010-07-30 10:55:13 ----D---- C:\Users\Michał\AppData\Roaming\Real
2010-07-30 10:55:08 ----D---- C:\Users\Michał\AppData\Roaming\Printer Info Cache
2010-07-30 10:55:03 ----D---- C:\Users\Michał\AppData\Roaming\ppStream
2010-07-30 10:54:52 ----D---- C:\Users\Michał\AppData\Roaming\PPMate
2010-07-30 10:54:42 ----D---- C:\Users\Michał\AppData\Roaming\PGP Corporation
2010-07-30 10:54:38 ----D---- C:\Users\Michał\AppData\Roaming\PeerNetworking
2010-07-30 10:54:22 ----D---- C:\Users\Michał\AppData\Roaming\PC Suite
2010-07-30 10:50:43 ----D---- C:\Users\Michał\AppData\Roaming\Opera
2010-07-30 10:49:50 ----D---- C:\Users\Michał\AppData\Roaming\Nokia
2010-07-30 10:48:22 ----D---- C:\Users\Michał\AppData\Roaming\Nero
2010-07-30 10:48:17 ----D---- C:\Users\Michał\AppData\Roaming\My Games
2010-07-30 10:46:36 ----D---- C:\Users\Michał\AppData\Roaming\Mozilla
2010-07-30 10:36:38 ----SD---- C:\Users\Michał\AppData\Roaming\Microsoft
2010-07-30 10:36:33 ----D---- C:\Users\Michał\AppData\Roaming\Media Player Classic
2010-07-30 10:36:27 ----D---- C:\Users\Michał\AppData\Roaming\Media Center Programs
2010-07-30 10:36:07 ----D---- C:\Users\Michał\AppData\Roaming\Malwarebytes
2010-07-29 22:48:02 ----D---- C:\Program Files\uTorrent
2010-07-29 22:45:09 ----D---- C:\Program Files\OpenAL
2010-07-29 22:43:53 ----D---- C:\Program Files\Microsoft Works
2010-07-29 22:22:10 ----D---- C:\Program Files\Common Files\LightScribe
2010-07-29 06:46:46 ----SHD---- C:\boot
2010-07-29 06:08:53 ----SHD---- C:\$RECYCLE.BIN
2010-07-28 18:26:31 ----D---- C:\Program Files\PC Connectivity Solution
2010-07-28 18:24:55 ----D---- C:\Program Files\Jahshaka
2010-07-27 21:20:49 ----D---- C:\Program Files\Common Files
2010-07-27 20:21:41 ----D---- C:\Program Files\Codemasters
2010-07-24 19:02:35 ----HD---- C:\Program Files\InstallShield Installation Information
2010-07-24 19:02:26 ----RSD---- C:\Windows\Media
2010-07-24 19:02:25 ----D---- C:\Windows\registration
2010-07-16 03:18:53 ----D---- C:\Program Files\Windows Mail
2010-07-07 11:11:43 ----A---- C:\Windows\win.ini
2010-07-02 21:39:05 ----A---- C:\Windows\system32\mrt.exe
2010-07-02 20:54:26 ----D---- C:\Windows\system32\Tasks

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 prohlp02;StarForce Protection Helper Driver v2; C:\Windows\System32\drivers\prohlp02.sys [2004-08-09 114016]
R0 prosync1;StarForce Protection Synchronization Driver v1; C:\Windows\System32\drivers\prosync1.sys [2004-07-19 7040]
R0 PxHelp20;PxHelp20; C:\Windows\System32\Drivers\PxHelp20.sys [2007-02-02 43528]
R0 sfhlp01;StarForce Protection Helper Driver; C:\Windows\System32\drivers\sfhlp01.sys [2003-12-01 4832]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2010-04-21 691696]
R1 prodrv06;StarForce Protection Environment Driver v6; C:\Windows\System32\drivers\prodrv06.sys [2004-08-09 53920]
R2 ASPI32;ASPI32; C:\Windows\system32\drivers\ASPI32.sys [2002-05-06 17005]
R2 atksgt;atksgt; C:\Windows\system32\DRIVERS\atksgt.sys [2009-07-05 281760]
R2 DefragFS;DefragFS; C:\Windows\system32\drivers\DefragFS.sys [2009-01-09 71184]
R2 lirsgt;lirsgt; C:\Windows\system32\DRIVERS\lirsgt.sys [2009-07-05 25888]
R2 mdmxsdk;mdmxsdk; C:\Windows\system32\DRIVERS\mdmxsdk.sys [2006-06-19 12672]
R2 rimmptsk;rimmptsk; C:\Windows\system32\DRIVERS\rimmptsk.sys [2007-02-24 39936]
R2 rimsptsk;rimsptsk; C:\Windows\system32\DRIVERS\rimsptsk.sys [2007-01-23 42496]
R2 rismxdp;Ricoh xD-Picture Card Driver; C:\Windows\system32\DRIVERS\rixdptsk.sys [2007-01-23 37376]
R2 XAudio;XAudio; C:\Windows\system32\DRIVERS\xaudio.sys [2007-07-10 8704]
R3 AmdLLD;AMD Low Level Device Driver; C:\Windows\system32\DRIVERS\AmdLLD.sys [2007-06-29 34304]
R3 ATSWPDRV;AuthenTec TruePrint USB Driver (SwipeSensor); C:\Windows\system32\DRIVERS\ATSwpDrv.sys [2007-03-28 140424]
R3 BCM43XX;Sterownik karty sieciowej Broadcom 802.11; C:\Windows\system32\DRIVERS\bcmwl6.sys [2010-02-24 1331192]
R3 CnxtHdAudService;Conexant UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\CHDRT32.sys [2008-03-04 188416]
R3 HBtnKey;HBtnKey; C:\Windows\system32\DRIVERS\cpqbttn.sys [2008-04-14 9344]
R3 HpqKbFiltr;HpqKbFilter Driver; C:\Windows\system32\DRIVERS\HpqKbFiltr.sys [2007-06-18 16768]
R3 HSF_DPV;HSF_DPV; C:\Windows\system32\DRIVERS\HSX_DPV.sys [2007-06-20 984064]
R3 HSXHWAZL;HSXHWAZL; C:\Windows\system32\DRIVERS\HSXHWAZL.sys [2007-06-20 208896]
R3 mcdbus;Driver for MagicISO SCSI Host Controller; C:\Windows\system32\DRIVERS\mcdbus.sys [2009-02-24 116736]
R3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\Windows\system32\DRIVERS\nvmfdx32.sys [2007-03-07 1059112]
R3 nvlddmkm;nvlddmkm; C:\Windows\system32\DRIVERS\nvlddmkm.sys [2009-11-21 11515752]
R3 nvsmu;nvsmu; C:\Windows\system32\DRIVERS\nvsmu.sys [2007-02-17 12032]
R3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2009-04-11 89088]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2008-06-20 200112]
R3 usbvideo;Urządzenie wideo USB (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2008-01-19 134016]
R3 winachsf;winachsf; C:\Windows\system32\DRIVERS\HSX_CNXT.sys [2007-06-20 660480]
S2 PGPsdkDriver;PGPsdkDriver; C:\Windows\System32\Drivers\PGPsdk.sys []
S3 a64kji4e;a64kji4e; C:\Windows\system32\drivers\a64kji4e.sys []
S3 awmmvq7b;awmmvq7b; C:\Windows\system32\drivers\awmmvq7b.sys []
S3 ayhegh7g;ayhegh7g; C:\Windows\system32\drivers\ayhegh7g.sys []
S3 BCM43XV;Sterownik karty sieciowej Broadcom Extensible 802.11; C:\Windows\system32\DRIVERS\bcmwl6.sys [2010-02-24 1331192]
S3 BthEnum;Usługa wyliczania Bluetooth; C:\Windows\system32\DRIVERS\BthEnum.sys [2009-04-11 22528]
S3 BthPan;Urządzenie Bluetooth (sieć osobista); C:\Windows\system32\DRIVERS\bthpan.sys [2008-01-19 92160]
S3 BTHPORT;Sterownik portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2009-04-11 507904]
S3 BTHUSB;Sterownik USB odbiornika radiowego Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2009-04-11 29696]
S3 btwaudio;Urz1dzenie dYwiekowe Bluetooth; C:\Windows\system32\drivers\btwaudio.sys [2007-04-18 79664]
S3 btwavdt;Bluetooth AVDT Service; C:\Windows\system32\drivers\btwavdt.sys [2007-04-18 81200]
S3 btwrchid;btwrchid; C:\Windows\system32\DRIVERS\btwrchid.sys [2007-04-18 16432]
S3 Dot4;Sterownik MS IEEE-1284.4; C:\Windows\system32\DRIVERS\Dot4.sys [2008-01-19 131584]
S3 Dot4Print;Sterownik klasy drukowania dla IEEE-1284.4; C:\Windows\system32\DRIVERS\Dot4Prt.sys [2008-01-19 16384]
S3 dot4usb;MS Dot4USB Filter Dot4USB Filter; C:\Windows\system32\DRIVERS\dot4usb.sys [2008-01-19 36864]
S3 drmkaud;Microsoft Kernel DRM Audio Descrambler; C:\Windows\system32\drivers\drmkaud.sys [2008-01-19 5632]
S3 E100B;Sterownik karty Intel(R) PRO; C:\Windows\system32\DRIVERS\e100b325.sys [2006-11-02 163328]
S3 EagleNT;EagleNT; \??\C:\Windows\system32\drivers\EagleNT.sys []
S3 epmntdrv;epmntdrv; \??\C:\Windows\system32\epmntdrv.sys [2009-08-26 14216]
S3 EuGdiDrv;EuGdiDrv; \??\C:\Windows\system32\EuGdiDrv.sys [2009-09-16 8456]
S3 fssfltr;FssFltr; C:\Windows\system32\DRIVERS\fssfltr.sys [2009-08-05 54632]
S3 h647906;DragonRise H647906 AMD64 Driver; C:\Windows\system32\drivers\h647906.sys []
S3 h648101;DragonRise H648101 AMD64 Driver; C:\Windows\system32\drivers\h648101.sys []
S3 h648103;DragonRise H648103 AMD64 Driver; C:\Windows\system32\drivers\h648103.sys []
S3 hamachi;Hamachi Network Interface; C:\Windows\system32\DRIVERS\hamachi.sys [2010-02-03 26176]
S3 HdAudAddService;Microsoft UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\CHDART.sys [2007-06-26 163328]
S3 hid7906;hid7906; C:\Windows\system32\drivers\hid7906.sys [2008-08-08 41272]
S3 hid8101;hid8101; C:\Windows\system32\drivers\hid8101.sys [2008-08-08 43192]
S3 hid8103;hid8103; C:\Windows\system32\drivers\hid8103.sys [2008-08-08 40856]
S3 HSFHWAZL;HSFHWAZL; C:\Windows\system32\DRIVERS\VSTAZL3.SYS [2006-11-02 200704]
S3 ialm;ialm; C:\Windows\system32\DRIVERS\igdkmd32.sys [2006-10-19 1380864]
S3 MSKSSRV;Serwer proxy usługi Microsoft Streaming; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-19 8192]
S3 MSPCLOCK;Serwer proxy zegara Microsoft Streaming; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-19 5888]
S3 MSPQM;Serwer proxy menedżera jakości Microsoft Streaming; C:\Windows\system32\drivers\MSPQM.sys [2008-01-19 5504]
S3 MSTEE;Konwerter strumieni Tee/Sink-to-Sink Microsoft Streaming; C:\Windows\system32\drivers\MSTEE.sys [2008-01-19 6016]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfd.sys [2008-08-26 18816]
S3 pcouffin;VSO Software pcouffin; C:\Windows\System32\Drivers\pcouffin.sys [2008-12-08 47360]
S3 RFCOMM;Urządzenie Bluetooth (Protokół TDI RFCOMM); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-04-11 148992]
S3 upperdev;upperdev; C:\Windows\system32\DRIVERS\usbser_lowerflt.sys [2009-02-09 7808]
S3 usbaudio;Sterownik audio USB (WDM); C:\Windows\system32\drivers\usbaudio.sys [2009-04-11 73216]
S3 usbscan;Sterownik skanera USB; C:\Windows\system32\DRIVERS\usbscan.sys [2008-01-19 35328]
S3 usbser;USB Modem Driver; C:\Windows\system32\drivers\usbser.sys [2009-04-11 27648]
S3 UsbserFilt;UsbserFilt; C:\Windows\system32\DRIVERS\usbser_lowerfltj.sys [2009-02-09 7808]
S3 VNUSB;VN Series Device; C:\Windows\system32\DRIVERS\VNUSB.sys []
S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2009-10-01 40448]
S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-19 83328]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 ASBroker;Logon Session Broker; C:\Windows\System32\svchost.exe [2008-01-19 21504]
R2 ASChannel;Local Communication Channel; C:\Windows\System32\svchost.exe [2008-01-19 21504]
R2 BthServ;@%SystemRoot%\System32\bthserv.dll,-101; C:\Windows\system32\svchost.exe [2008-01-19 21504]
R2 CLCapSvc;CyberLink Background Capture Service (CBCS); C:\Program Files\HP\QuickPlay\Kernel\TV\CLCapSvc.exe [2007-04-23 262243]
R2 hpqddsvc;Usługa HP CUE DeviceDiscovery; C:\Windows\system32\svchost.exe [2008-01-19 21504]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2008-06-09 151552]
R2 Net Driver HPZ12;Net Driver HPZ12; C:\Windows\System32\svchost.exe [2008-01-19 21504]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2009-11-20 122984]
R2 PDAgent;PDAgent; G:\Programy\defragmentator dysku\PDAgent.exe [2009-02-23 996616]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\Windows\System32\svchost.exe [2008-01-19 21504]
R2 PnkBstrA;PnkBstrA; C:\Windows\system32\PnkBstrA.exe [2008-03-09 66872]
R2 SeaPort;SeaPort; C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe [2009-05-19 240512]
R2 StarWindServiceAE;StarWind AE Service; G:\Programy\Alcohol 120\StarWind\StarWindServiceAE.exe [2007-05-28 357888]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2009-08-18 1529728]
R2 XAudioService;XAudioService; C:\Windows\system32\DRIVERS\xaudio.exe [2007-07-10 386560]
R3 hpqcxs08;hpqcxs08; C:\Windows\system32\svchost.exe [2008-01-19 21504]
R3 hpqwmiex;hpqwmiex; C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe [2008-05-01 165192]
S2 a2free;a-squared Free Service; C:\Program Files\a-squared Free\a2service.exe [2010-04-15 1872320]
S2 CLSched;CyberLink Task Scheduler (CTS); C:\Program Files\HP\QuickPlay\Kernel\TV\CLSched.exe []
S2 HP Health Check Service;HP Health Check Service; C:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe [2007-03-14 136712]
S2 PGPsdkServ;PGPsdkService; C:\Windows\system32\PGPsdkServ.exe []
S3 Com4QLBEx;Com4QLBEx; C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe [2008-04-03 275760]
S3 FontCache;@%systemroot%\system32\FntCache.dll,-100; C:\Windows\system32\svchost.exe [2008-01-19 21504]
S3 fsssvc;Funkcja Bezpieczeństwo rodzinne usługi Windows Live; C:\Program Files\Windows Live\Family Safety\fsssvc.exe [2009-08-05 782688]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe [2004-10-22 151552]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE []
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE []
S3 PDEngine;PDEngine; G:\Programy\defragmentator dysku\PDEngine.exe [2009-02-23 1107208]
S3 RoxMediaDB9;RoxMediaDB9; C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe [2007-02-12 958464]
S3 usprserv;User Privilege Service; C:\Windows\System32\svchost.exe [2008-01-19 21504]
S4 ServiceLayer;ServiceLayer; C:\Program Files\PC Connectivity Solution\ServiceLayer.exe []
S4 stllssvr;stllssvr; C:\Program Files\Common Files\SureThing Shared\stllssvr.exe []

-----------------EOF-----------------
[/log]

[log]
info.txt logfile of random's system information tool 1.08 2010-07-31 17:40:50

======Uninstall list======

-->MsiExec /X{C5C1C0F0-D62F-4DBF-81D4-D7EF397C228B}
32 Bit HP CIO Components Installer-->MsiExec.exe /I{F1E63043-54FC-429B-AB2C-31AF9FBA4BC7}
7-Zip 4.65-->"G:\Programy\7-Zip\Uninstall.exe"
Ad-Aware SE Personal-->G:\Programy\AD-AWA~1\UNWISE.EXE G:\Programy\AD-AWA~1\INSTALL.LOG
Adobe Flash Player 10 ActiveX-->C:\Windows\system32\Macromed\Flash\FlashUtil10h_ActiveX.exe -maintain activex
Adobe Flash Player 10 Plugin-->C:\Windows\system32\Macromed\Flash\FlashUtil10h_Plugin.exe -maintain plugin
Adobe Reader 8.1.4-->MsiExec.exe /I{AC76BA86-7AD7-1033-7B44-A81300000003}
Adobe Shockwave Player 11.5-->"C:\Windows\system32\Adobe\Shockwave 11\uninstaller.exe"
Aktualizacja produktu Microsoft Office Excel 2007 Help (KB963678)-->msiexec /package {90120000-0016-0415-0000-0000000FF1CE} /uninstall {04E205D6-88B1-4652-B162-42DF2C3B1228}
Aktualizacja produktu Microsoft Office Powerpoint 2007 Help (KB963669)-->msiexec /package {90120000-0018-0415-0000-0000000FF1CE} /uninstall {442ECBCF-94A7-48CC-8CD9-D31FFFD5FA86}
Aktualizacja produktu Microsoft Office Word 2007 Help (KB963665)-->msiexec /package {90120000-001B-0415-0000-0000000FF1CE} /uninstall {128A36ED-21BE-4547-9FFE-5B85AEC735DD}
Aktualizator Google-->"C:\Program Files\Google\Google Updater\GoogleUpdater.exe" -uninstall
Archiwizator WinRAR-->G:\Programy\WinRAR\uninstall.exe
Ashampoo Burning Studio 2010-->"G:\Programy\Ashampoo Burning Studio 2010\unins000.exe"
a-squared Free 4.5-->"C:\Program Files\a-squared Free\unins000.exe"
Asystent rejestrowania za pomocą identyfikatora Windows Live-->MsiExec.exe /X{0840B4D6-7DD1-4187-8523-E6FC0007EFB7}
AuthenTec Fingerprint Sensor Minimum Install-->MsiExec.exe /I{B61B6668-A674-4A06-8405-51944D5CCDDD}
Bezpieczeństwo rodzinne usługi Windows Live-->MsiExec.exe /X{F88335A8-CA7B-41DE-B37D-81306C73B507}
BitComet FLV Converter 1.0-->G:\Programy\BitComet FLV Converter\uninst.exe
CDisplay 1.8-->G:\Programy\CDisplay\unins000.exe
Conexant HD Audio-->C:\Program Files\CONEXANT\CNXT_AUDIO_HDA\UIU32a.exe -U -IQv30CFza.INF
DC++ 0.705-->"G:\Programy\DC++\uninstall.exe"
DeepBurner v1.9.0.228-->"G:\Programy\DeepBurner\Uninstall.exe" "G:\Programy\DeepBurner\install.log" -u
Download Accelerator Plus (DAP)-->G:\Programy\DAP\DAPREMOVE.EXE
Dual-Core Optimizer-->MsiExec.exe /X{9FD6F1A8-5550-46AF-8509-271DF0E768B5}
EA Download Manager-->C:\Program Files\Electronic Arts\EADM\Uninstall.exe
EASEUS Partition Master 4.1.1 Home Edition-->"G:\Programy\EASEUS Partition Master 4.1.1 Home Edition\unins000.exe"
ESU for Microsoft Vista-->MsiExec.exe /X{4CD2F5E3-4CDA-4F18-934A-5DD4F23CFEC9}
EVEREST Ultimate v4.20.1257 + Corporate Edition Beta Registered-->"G:\Programy\EVEREST Corporate + Ultimate Edition\unins000.exe"
EvilLyrics-->"G:\Programy\EvilLyrics\uninst.exe"
Gadu-Gadu 7.7-->G:\Programy\Gadu-Gadu3\Setup.exe
Galeria fotografii usługi Windows Live-->MsiExec.exe /X{9CDEAEC9-2F14-4D39-8541-C1EEC4B5D1CB}
GameDesire-Pool & Snooker-->G:\Programy\Ganymede\billiards_uninstall.exe
GameTap Web Player-->C:\Program Files\InstallShield Installation Information\{1C338B34-1BFB-4BAD-B4A3-7B71A2E221F6}\setup.exe -runfromtemp -l0x0009 -removeonly
Google Earth-->MsiExec.exe /X{C084BC61-E537-11DE-8616-005056806466}
Google Toolbar for Internet Explorer-->"C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarManager_9DE96A29E721D90A.exe" /uninstall
Google Toolbar for Internet Explorer-->MsiExec.exe /I{18455581-E099-4BA8-BC6B-F34B2F06600C}
Google Update Helper-->MsiExec.exe /I{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
GTA2-->C:\Windows\IsUninst.exe -fg:\gry\gta2\Uninst.isu
Guitar Pro 5.2-->"G:\Programy\Guitar Pro 5\unins000.exe"
HDAUDIO Soft Data Fax Modem with SmartCP-->C:\Program Files\CONEXANT\CNXT_MODEM_HDA_HSF\UIU32m.exe -U -IwqcVenz.inf
Hewlett-Packard Active Check-->MsiExec.exe /X{254C37AA-6B72-4300-84F6-98A82419187E}
Hewlett-Packard Asset Agent-->MsiExec.exe /X{669D4A35-146B-4314-89F1-1AC3D7B88367}
HijackThis 2.0.2-->"G:\Programy\Hijack\HijackThis.exe" /uninstall
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)-->C:\Windows\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall /qb+ REBOOTPROMPT=""
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)-->C:\Windows\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {A7EEA2F2-BFCD-4A54-A575-7B81A786E658} /qb+ REBOOTPROMPT=""
HP Active Support Library 32 bit components-->MsiExec.exe /I{FAB0C302-CB18-4A7A-BA03-C3DC23101A68}
HP Active Support Library-->C:\Program Files\InstallShield Installation Information\{290B83AA-093A-45BF-A917-D1C4A1E8D917}\setup.exe -runfromtemp -l0x0409
HP Customer Experience Enhancements-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{AB5E289E-76BF-4251-9F3F-9B763F681AE0}\setup.exe" -l0x9 -removeonly
HP Customer Participation Program 8.0-->C:\Program Files\HP\Digital Imaging\ExtCapUninstall\hpzscr01.exe -datfile hpqhsc01.dat
HP Doc Viewer-->MsiExec.exe /I{082702D5-5DD8-4600-BCE5-48B15174687F}
HP Easy Setup - Frontend-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{40F7AED3-0C7D-4582-99F6-484A515C73F2}\setup.exe" -l0x9 -removeonly
HP Help and Support-->MsiExec.exe /I{9061CEF2-51F5-42C9-8A70-9ED351C6597A}
HP Imaging Device Functions 8.0-->C:\Program Files\HP\Digital Imaging\DeviceManagement\hpzscr01.exe -datfile hpqbud01.dat
HP Integrated Module with Bluetooth wireless technology 6.0.1.4900-->MsiExec.exe /X{03D1988F-469F-4843-8E6E-E5FE9D17889D}
HP OCR Software 8.0-->C:\Program Files\HP\Digital Imaging\OCR\hpzscr01.exe -datfile hpqbud11.dat
HP Photosmart Essential 2.0-->C:\Program Files\HP\Digital Imaging\PhotoSmartEssential\hpzscr01.exe -datfile hpqbud13.dat
HP Photosmart Essential-->MsiExec.exe /X{EB21A812-671B-4D08-B974-2A347F0D8F70}
HP Photosmart, Officejet, PSC and Deskjet All-In-One Driver Software 8.0.B-->C:\Program Files\HP\Digital Imaging\{C916D86C-AB76-49c7-B0E4-A946E0FD9BC2}\setup\hpzscr01.exe -datfile hposcr19.dat -onestop -showdisconnect -forcereboot
HP Quick Launch Buttons 6.40 H2-->C:\Program Files\InstallShield Installation Information\{34D2AB40-150D-475D-AE32-BD23FB5EE355}\Setup.exe -runfromtemp -l0x0015 -removeonly uninst
HP QuickPlay 3.2-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{45D707E9-F3C4-11D9-A373-0050BAE317E1}\setup.exe" -uninstall
HP Solution Center 8.0-->C:\Program Files\HP\Digital Imaging\eSupport\hpzscr01.exe -datfile hpqbud05.dat
HP Update-->MsiExec.exe /X{7059BDA7-E1DB-442C-B7A1-6144596720A4}
HP User Guides 0057-->MsiExec.exe /I{DDFD9BA2-8E26-4E49-92AE-882424DAB1BC}
HP Wireless Assistant-->MsiExec.exe /X{54CC7901-804D-4155-B353-21F0CC9112AB}
HPSSupply-->MsiExec.exe /X{EB75DE50-5754-4F6F-875D-126EDF8E4CB3}
IrfanView (remove only)-->G:\Programy\IrfanView\iv_uninstall.exe
JAP-->G:\Programy\JAP\uninstall.exe
Java(TM) 6 Update 17-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216010FF}
Java(TM) 6 Update 5-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160050}
Java(TM) 6 Update 7-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160070}
Java(TM) SE Runtime Environment 6-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160000}
Junk Mail filter update-->MsiExec.exe /I{E2DFE069-083E-4631-9B6C-43C48E991DE5}
K-Lite Codec Pack 3.8.0 Full-->"G:\Programy\K-Lite Codec Pack\unins000.exe"
LightScribe System Software 1.14.17.1-->MsiExec.exe /X{0E7DBD52-B097-4F2B-A7C7-F105B0D20FDB}
LogonStudio Vista-->C:\PROGRA~1\Stardock\OBJECT~1\LOGONS~1\UNWISE.EXE C:\PROGRA~1\Stardock\OBJECT~1\LOGONS~1\INSTALL.LOG
Machinarium-->G:\Gry\Machinarium\uninst.exe
Magic ISO Maker v5.5 (build 0281)-->G:\Programy\MagicISO\UNWISE.EXE G:\Programy\MagicISO\INSTALL.LOG
MagicDisc 2.7.106-->G:\Programy\MAGICD~1\UNWISE.EXE G:\Programy\MAGICD~1\INSTALL.LOG
Malwarebytes' Anti-Malware-->"G:\Programy\Malwarebytes' Anti-Malware\unins000.exe"
Max Payne-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{39930321-4C58-4B8B-BCBF-342698C9801D}\setup.exe" uninstall uninstall
MediaMonkey 3.1-->"G:\Programy\MediaMonkey\unins000.exe"
Microsoft .NET Framework 3.5 Language Pack SP1 - plk-->MsiExec.exe /I{9EFDFBA8-9174-3C61-8645-28376C5CA994}
Microsoft .NET Framework 3.5 SP1-->C:\Windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setup.exe
Microsoft .NET Framework 3.5 SP1-->MsiExec.exe /I{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}
Microsoft Choice Guard-->MsiExec.exe /X{F0E12BBA-AD66-4022-A453-A1C8A0C4D570}
Microsoft Games for Windows - LIVE Redistributable-->MsiExec.exe /X{8FB1B528-E260-451E-9B55-E9152F94B80B}
Microsoft Games for Windows - LIVE-->MsiExec.exe /X{F97E3841-CA9D-4964-9D64-26066241D26F}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0015-0415-0000-0000000FF1CE} /uninstall {79EB535E-76E4-4356-8146-A24EE55AB69D}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0016-0415-0000-0000000FF1CE} /uninstall {79EB535E-76E4-4356-8146-A24EE55AB69D}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0018-0415-0000-0000000FF1CE} /uninstall {79EB535E-76E4-4356-8146-A24EE55AB69D}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0019-0415-0000-0000000FF1CE} /uninstall {79EB535E-76E4-4356-8146-A24EE55AB69D}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001A-0415-0000-0000000FF1CE} /uninstall {79EB535E-76E4-4356-8146-A24EE55AB69D}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001B-0415-0000-0000000FF1CE} /uninstall {79EB535E-76E4-4356-8146-A24EE55AB69D}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0044-0415-0000-0000000FF1CE} /uninstall {79EB535E-76E4-4356-8146-A24EE55AB69D}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-006E-0415-0000-0000000FF1CE} /uninstall {D45F91DE-F0FC-4D5F-9A0C-FDE5B251AAC6}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-00A1-0415-0000-0000000FF1CE} /uninstall {79EB535E-76E4-4356-8146-A24EE55AB69D}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-00BA-0415-0000-0000000FF1CE} /uninstall {79EB535E-76E4-4356-8146-A24EE55AB69D}
Microsoft Office Access MUI (Polish) 2007-->MsiExec.exe /X{90120000-0015-0415-0000-0000000FF1CE}
Microsoft Office Enterprise 2007-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall ENTERPRISE /dll OSETUP.DLL
Microsoft Office Enterprise 2007-->MsiExec.exe /X{90120000-0030-0000-0000-0000000FF1CE}
Microsoft Office Excel MUI (Polish) 2007-->MsiExec.exe /X{90120000-0016-0415-0000-0000000FF1CE}
Microsoft Office Groove MUI (Polish) 2007-->MsiExec.exe /X{90120000-00BA-0415-0000-0000000FF1CE}
Microsoft Office InfoPath MUI (Polish) 2007-->MsiExec.exe /X{90120000-0044-0415-0000-0000000FF1CE}
Microsoft Office Live Add-in 1.5-->MsiExec.exe /I{F40BBEC7-C2A4-4A00-9B24-7A055A2C5262}
Microsoft Office OneNote MUI (Polish) 2007-->MsiExec.exe /X{90120000-00A1-0415-0000-0000000FF1CE}
Microsoft Office Outlook MUI (Polish) 2007-->MsiExec.exe /X{90120000-001A-0415-0000-0000000FF1CE}
Microsoft Office PowerPoint MUI (Polish) 2007-->MsiExec.exe /X{90120000-0018-0415-0000-0000000FF1CE}
Microsoft Office Proof (English) 2007-->MsiExec.exe /X{90120000-001F-0409-0000-0000000FF1CE}
Microsoft Office Proof (German) 2007-->MsiExec.exe /X{90120000-001F-0407-0000-0000000FF1CE}
Microsoft Office Proof (Polish) 2007-->MsiExec.exe /X{90120000-001F-0415-0000-0000000FF1CE}
Microsoft Office Proofing (Polish) 2007-->MsiExec.exe /X{90120000-002C-0415-0000-0000000FF1CE}
Microsoft Office Publisher MUI (Polish) 2007-->MsiExec.exe /X{90120000-0019-0415-0000-0000000FF1CE}
Microsoft Office Shared MUI (Polish) 2007-->MsiExec.exe /X{90120000-006E-0415-0000-0000000FF1CE}
Microsoft Office Word MUI (Polish) 2007-->MsiExec.exe /X{90120000-001B-0415-0000-0000000FF1CE}
Microsoft Search Enhancement Pack-->MsiExec.exe /X{4CBA3D4C-8F51-4D60-B27E-F6B641C571E7}
Microsoft Silverlight-->MsiExec.exe /I{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
Microsoft SQL Server 2005 Compact Edition [ENU]-->MsiExec.exe /I{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}
Microsoft Sync Framework Services Native v1.0 (x86)-->MsiExec.exe /I{BD64AF4A-8C80-4152-AD77-FCDDF05208AB}
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053-->MsiExec.exe /X{770657D0-A123-3C07-8E44-1C83EC895118}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{A49F249F-0C91-497F-86DF-B2585E8E76B7}
Microsoft Works-->MsiExec.exe /I{E9AD90C1-6281-45AB-9458-098D2EF770A1}
Microsoft WSE 3.0 Runtime-->MsiExec.exe /X{E3E71D07-CD27-46CB-8448-16D4FB29AA13}
Monopoly by Parker Brothers-->G:\Gry\MONOPO~1\UNWISE.EXE /U G:\Gry\MONOPO~1\INSTALL.LOG
MSCU for Microsoft Vista-->MsiExec.exe /I{4D78E819-D633-43AF-A594-A7645E53EC3C}
MSVC80_x86_v2-->MsiExec.exe /I{6D3245B1-8DB8-4A23-9CD2-2C90F40ABAF6}
MSVC80_x86-->MsiExec.exe /I{212748BB-0DA5-46DE-82A1-403736DC9F27}
MSVCRT-->MsiExec.exe /I{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}
MSXML 4.0 SP2 (KB936181)-->MsiExec.exe /I{C04E32E0-0416-434D-AFB9-6969D703A9EF}
MSXML 4.0 SP2 (KB941833)-->MsiExec.exe /I{C523D256-313D-4866-B36A-F3DE528246EF}
MSXML 4.0 SP2 (KB954430)-->MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
MSXML 4.0 SP2 (KB973688)-->MsiExec.exe /I{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}
msxml4-->MsiExec.exe /X{5AE3D9F1-9E9E-4015-8787-E22705AA32C5}
NAPIPROJEKT 1.0.6.2-->"G:\Programy\NAPI-PROJEKT\unins000.exe"
Narzędzie do przekazywania usługi Windows Live-->MsiExec.exe /I{205C6BDD-7B73-42DE-8505-9A093F35A238}
neroxml-->MsiExec.exe /I{56C049BE-79E9-4502-BEA7-9754A3E60F9B}
Nokia Connectivity Cable Driver-->MsiExec.exe /I{1B9B5B3B-28E7-4E59-A80D-D670AA984514}
Nokia PC Suite-->C:\ProgramData\Installations\{55495E65-7C5B-48E4-BC7D-DE54F3DE5ED6}\Nokia_PC_Suite_7_1_30_8_pol.exe
Nokia PC Suite-->MsiExec.exe /I{55495E65-7C5B-48E4-BC7D-DE54F3DE5ED6}
Nokia Software Updater-->MsiExec.exe /X{F983B4FE-547B-4C44-BAF7-4F4DBA93D548}
NVIDIA Display Control Panel-->C:\Program Files\NVIDIA Corporation\Uninstall\nvuninst.exe DisplayControlPanel
NVIDIA Drivers-->C:\Program Files\NVIDIA Corporation\Uninstall\nvuninst.exe UninstallGUI
NVIDIA PhysX-->MsiExec.exe /X{C5C1C0F0-D62F-4DBF-81D4-D7EF397C228B}
OpenAL-->"C:\Program Files\OpenAL\OpenALwEAX.exe" /U /S
Opera 10.60-->MsiExec.exe /X{1D2C96C3-A3F3-49E7-B839-95279DED837F}
Paint.NET v3.36-->MsiExec.exe /X{43602F34-1AA3-44FB-AEB2-D08C2C73743F}
Pakiet językowy programu Microsoft .NET Framework 3.5 z dodatkiem SP1 — PLK-->C:\Windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 Language Pack SP1 - plk\setup.exe
Pakiet sterowników systemu Windows - Nokia Modem (03/05/2008 3.7)-->C:\PROGRA~1\DIFX\270581355A767BF1\dpinst.exe /u C:\Windows\System32\DriverStore\FileRepository\nokia_bluetooth.inf_ce5ad925\nokia_bluetooth.inf
Pakiet sterowników systemu Windows - Nokia Modem (03/13/2008 6.86.0.1)-->C:\PROGRA~1\DIFX\270581355A767BF1\dpinst.exe /u C:\Windows\System32\DriverStore\FileRepository\nokbtmdm.inf_674398ba\nokbtmdm.inf
Pakiet sterowników systemu Windows - Nokia Modem (06/01/2009 4.1)-->C:\PROGRA~1\DIFX\270581355A767BF1\dpinst.exe /u C:\Windows\System32\DriverStore\FileRepository\nokia_bluetooth.inf_44b2e2d6\nokia_bluetooth.inf
Pakiet sterowników systemu Windows - Nokia Modem (06/01/2009 7.01.0.3)-->C:\PROGRA~1\DIFX\270581355A767BF1\dpinst.exe /u C:\Windows\System32\DriverStore\FileRepository\nokbtmdm.inf_34a3d799\nokbtmdm.inf
Pakiet sterowników systemu Windows - Nokia Modem (08/03/2007 6.84.0.2)-->C:\PROGRA~1\DIFX\270581355A767BF1\dpinst.exe /u C:\Windows\System32\DriverStore\FileRepository\nokbtmdm.inf_7837a5db\nokbtmdm.inf
Pakiet sterowników systemu Windows - Nokia Modem (10/12/2007 3.6)-->C:\PROGRA~1\DIFX\270581355A767BF1\dpinst.exe /u C:\Windows\System32\DriverStore\FileRepository\nokia_bluetooth.inf_ee12375f\nokia_bluetooth.inf
Pakiet sterowników systemu Windows - Nokia pccsmcfd (08/22/2008 7.0.0.0)-->C:\PROGRA~1\DIFX\B4723E9A0713E5B1\dpinst.exe /u C:\Windows\system32\DRVSTORE\pccsmcfd_A3B3916E5D8138F59EE218321B27B044D3B18294\pccsmcfd.inf
Pando Media Booster-->C:\Program Files\Pando Networks\Media Booster\uninst.exe
Paseczek 1.1.0.365-->"G:\Programy\Paseczek\unins000.exe"
PC Connectivity Solution-->MsiExec.exe /I{0C973594-7DDF-4BD0-84ED-3517F7622037}
PDF-Viewer-->"G:\Programy\Tracker Software\PDF Viewer\unins000.exe"
PerfectDisk 10 Professional-->MsiExec.exe /I{7B738CD9-D107-48C7-8E65-2E6639A39C8D}
PGP 8.0.2-->PGPUNI~1\setup.exe PGP
Poczta usługi Windows Live-->MsiExec.exe /I{C35FE07E-24B5-410F-85B7-122087A0C7DD}
Podstawowe programy Windows Live-->C:\Program Files\Windows Live\Installer\wlarp.exe
Podstawowe programy Windows Live-->MsiExec.exe /I{9862473C-E063-4C68-A161-2CDE0E8048A5}
Polski (Akcent)-->MsiExec.exe /I{3F732D97-7E10-4FC4-854B-8C95030BA89F}
Real Alternative 1.7.5-->"G:\Programy\K-Lite Codec Pack\Real Alternative\unins000.exe"
Roxio Activation Module-->MsiExec.exe /I{35E1EC43-D4FC-4E4A-AAB3-20DDA27E8BB0}
Roxio Creator Audio-->MsiExec.exe /I{83FFCFC7-88C6-41c6-8752-958A45325C82}
Roxio Creator Basic v9-->MsiExec.exe /I{C8B0680B-CDAE-4809-9F91-387B6DE00F7C}
Roxio Creator Copy-->MsiExec.exe /I{619CDD8A-14B6-43a1-AB6C-0F4EE48CE048}
Roxio Creator Data-->MsiExec.exe /I{0D397393-9B50-4c52-84D5-77E344289F87}
Roxio Creator EasyArchive-->MsiExec.exe /I{11F93B4B-48F0-4A4E-AE77-DFA96A99664B}
Roxio Creator Tools-->MsiExec.exe /I{0394CDC8-FABD-4ed8-B104-03393876DFDF}
Roxio Express Labeler 3-->MsiExec.exe /I{6675CA7F-E51B-4F6A-99D4-F8F0124C6EAA}
Roxio MyDVD Basic v9-->MsiExec.exe /I{33C65B6A-5D73-4E3E-A1F9-127C27BD3F72}
Security Update for 2007 Microsoft Office System (KB951550)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {B243E9A5-ED77-4F1B-B338-2486FD82DC85}
Security Update for 2007 Microsoft Office System (KB951944)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {797AE457-BA17-4BBC-B501-25FB3A0103C7}
Security Update for 2007 Microsoft Office System (KB960003)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {F04F8702-18D0-458D-921E-146FB7CD38CF}
Security Update for CAPICOM (KB931906)-->MsiExec.exe /I{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
Security Update for CAPICOM (KB931906)-->MsiExec.exe /X{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
Security Update for Microsoft Office Excel 2007 (KB959997)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {9EAC3AEC-5C81-4856-A05B-DE9DC236D740}
Security Update for Microsoft Office OneNote 2007 (KB950130)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {F1B2401C-B610-4BF2-AA1C-52C55827A8F4}
Security Update for Microsoft Office PowerPoint 2007 (KB951338)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {558B709B-821B-4FC5-90FC-9A8890641E77}
Security Update for Microsoft Office Publisher 2007 (KB950114)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {F9C3CDBA-1F00-4D4D-959D-75C9D3ACDD85}
Security Update for Microsoft Office system 2007 (KB954326)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {5F7F6FFF-395D-480E-8450-64F385D82C5F}
Security Update for Microsoft Office system 2007 (KB956828)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {885E081B-72BD-4E76-8E98-30B4BE468FAC}
Security Update for Microsoft Office Word 2007 (KB956358)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {4551666D-0FD6-4C69-8A81-1C6F2E64517C}
Skaner on-line mks_vir-->C:\Windows\system32\SkanerOnlineUninstall.exe
Skype web features-->MsiExec.exe /I{541DEAC0-5F3D-45E6-B7CB-94ECF3B96748}
Skype™ 4.1-->MsiExec.exe /X{D103C4BA-F905-437A-8049-DB24763BBE36}
SmartAudio-->C:\Program Files\Conexant\SmartAudio\SETUP.EXE -U -ISmartAudio /F1"C:\Program Files\InstallShield Installation Information\{E621DCAF-82F7-4F6D-B563-B6A4004B2397}\setup.iss" /S
SMPlayer 0.6.8-->G:\Programy\SMPlayer\uninst.exe
Snarfer-->G:\Programy\snarfer\uninstall.exe
SopCast 3.2.9-->G:\Programy\SopCast\uninst.exe
SPORE™ Fabryka stworów, wersja próbna-->"C:\Program Files\InstallShield Installation Information\{ECEE0279-785F-4CB3-9F28-E69813234BF8}\setup.exe" -runfromtemp -l0x0015 -removeonly
StarCraft II Beta-->C:\Program Files\Common Files\Blizzard Entertainment\StarCraft II Beta\Uninstall.exe
Synaptics Pointing Device Driver-->rundll32.exe "C:\Program Files\Synaptics\SynTP\SynISDLL.dll",standAloneUninstall
System Requirements Lab-->C:\Program Files\SystemRequirementsLab\Uninstall.exe
The KMPlayer (remove only)-->"G:\Programy\km player\The KMPlayer\uninstall.exe"
The Sims™ 3-->"C:\Program Files\InstallShield Installation Information\{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}\Sims3Setup.exe" -runfromtemp -l0x0015 -removeonly
Trine-->"G:\Gry\Trine\Trine\unins000.exe"
TVAnts 1.0-->G:\Programy\TVAnts\UNWISE.EXE G:\Programy\TVAnts\INSTALL.LOG
Underground Fighting-->"C:\Program Files\MAD HOG\Underground Fighting\unins000.exe"
Unity Web Player-->C:\Program Files\Unity\WebPlayer\Uninstall.exe
Update for 2007 Microsoft Office System (KB967642)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {C444285D-5E4F-48A4-91DD-47AAAA68E92D}
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)-->C:\Windows\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {B2AE9C82-DC7B-3641-BFC8-87275C4F3607} /qb+ REBOOTPROMPT=""
Update for Microsoft Office Outlook 2007 (KB952142)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {4AD3A076-427C-491F-A5B7-7D1DE788A756}
Update for Office 2007 (KB932080)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {EDC9CA29-6BC1-471C-828C-7A36109005D7}
Update for Office 2007 (KB934391)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {B3091818-7C56-4C45-BE7D-CA23027A5EA5}
Update for Outlook 2007 Junk Email Filter (kb2202131)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {A67392E8-282B-4BEF-8020-EF3DD664DE7B}
USB Network Driver-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0700\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{66ED8E01-C915-41F5-B33E-C5C31F27B885}\setup.exe" -l0x9
VCRedistSetup-->MsiExec.exe /I{3921A67A-5AB1-4E48-9444-C71814CF3027}
VeriSoft Access Manager-->rundll32.exe "c:\Program Files\Bioscrypt\VeriSoft\Bin\SetupHelper.dll",ExecMain /Uninstall {0ABA40AF-288D-41F1-B735-C5155692CD7D}
VideoLAN VLC media player 0.8.6e-->G:\Programy\VLC\uninstall.exe
VistaBootPRO 3.3-->MsiExec.exe /I{6C9FA746-8759-4040-A436-42922CB3492E}
Wielki słownik polsko-angielski i angielsko-polski PWN-OXFORD-->C:\Windows\IsUn0415.exe -f"g:\programy\OxfordPWN Słownik\Uninst.isu"
Winamp-->"G:\Programy\Winamp\UninstWA.exe"
Windows Live Communications Platform-->MsiExec.exe /I{ED00D08A-3C5F-488D-93A0-A04F21F23956}
Windows Live Messenger-->MsiExec.exe /X{D1803CD4-0CE7-4484-98E3-88D7A2D629A4}
Windows Live Movie Maker-->MsiExec.exe /X{6053FE9B-5473-41D6-AEBF-AD6F98138191}
Windows Live Sync-->MsiExec.exe /X{2E522ED6-01E2-4207-82D5-B3BFB31B8BD4}
Windows Live Toolbar-->MsiExec.exe /X{A7388312-4FBB-48E5-8DC0-B63DA02658AE}
Windows Live Writer-->MsiExec.exe /X{9AB614A6-719C-4A6E-A63E-831E0A35F62A}
Windows Media Player Firefox Plugin-->MsiExec.exe /I{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}
WinZip-->G:\Programy\WinZip\WINZIP32.EXE /uninstall
World of Warcraft-->C:\Program Files\Common Files\Blizzard Entertainment\World of Warcraft (2)\Uninstall.exe
Xfire (remove only)-->"G:\Programy\Xfire\uninst.exe"

======Security center information======

AS: Windows Defender

======System event log======

Computer Name: Michał-PC
Event Code: 4386
Message: Obsługa systemu Windows zażądała ponownego uruchomienia w celu ukończenia zmieniania stanu aktualizacji 975561-4_neutral_LDR z pakietu KB975561(Security Update) na Przemieszczanie(Staging).
Record Number: 365429
Source Name: Microsoft-Windows-Servicing
Time Written: 20100310080747.000000-000
Even

[/log]

Sohei
komentarz
komentarz

czytasz dokładnie ten temat http://www.bleepingcomputer.com/combofix/pl/instrukcja-uzycia-combofix
Po czym pobierasz combofix i dajesz z niego loga. Pamiętaj o zainstalowania konsoli odzyskiwania !!!

logic88
komentarz
komentarz

Log z Combofixa


[log]
ComboFix 10-07-31.04 - Michał 2010-08-01 10:02:00.1.2 - x86
Microsoft® Windows Vista™ Home Premium 6.0.6002.2.1250.48.1045.18.2558.1835 [GMT 2:00]
Uruchomiony z: c:\users\Michał\Desktop\ComboFix.exe
SP: Windows Defender *enabled* (Updated) {D68DDC3A-831F-4FAE-9E44-DA132C1ACF46}
.

((((((((((((((((((((((((((((((((((((((( Usunięto )))))))))))))))))))))))))))))))))))))))))))))))))
.

C:\autorun.inf
C:\ftoodu.pif
c:\programdata\Microsoft\Windows\Templates\_caroline.avi.lnk
c:\programdata\Microsoft\Windows\Templates\9.png.lnk
c:\programdata\Microsoft\Windows\Templates\Alwil Software.lnk
c:\programdata\Microsoft\Windows\Templates\Julie.lnk
c:\programdata\Microsoft\Windows\Templates\mapping.lnk
c:\programdata\Microsoft\Windows\Templates\player.config.lnk
c:\users\Default\AppData\Roaming\Microsoft\Windows\Templates\Aline.lnk
c:\users\Default\AppData\Roaming\Microsoft\Windows\Templates\code_of_conduct.txt.lnk
c:\users\Default\AppData\Roaming\Microsoft\Windows\Templates\images_earth.gif.lnk
c:\users\Default\AppData\Roaming\Microsoft\Windows\Templates\INSTMAP2.lnk
c:\users\Default\AppData\Roaming\Microsoft\Windows\Templates\My Photos.lnk
c:\users\Default\AppData\Roaming\Microsoft\Windows\Templates\users.config.lnk
D:\Autorun.inf
D:\gfjrq.exe
G:\Autorun.inf
G:\rbwprr.exe

.
((((((((((((((((((((((((( Pliki utworzone od 2010-07-01 do 2010-08-01 )))))))))))))))))))))))))))))))
.

2010-07-31 15:40 . 2010-07-31 16:22 -------- d-----w- c:\program files\trend micro
2010-07-31 15:40 . 2010-07-31 15:40 -------- d-----w- C:\rsit
2010-07-30 15:26 . 2010-04-29 13:39 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2010-07-30 15:26 . 2010-04-29 13:39 20952 ----a-w- c:\windows\system32\drivers\mbam.sys
2010-07-29 08:16 . 2010-07-29 08:16 -------- d-----w- c:\program files\PROnetworks
2010-07-28 12:02 . 2010-07-28 12:05 -------- d-----w- c:\program files\a-squared Free
2010-07-24 15:27 . 2010-07-24 15:27 4096 ----a-w- c:\windows\d3dx.dat

.
(((((((((((((((((((((((((((((((((((((((( Sekcja Find3M ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-08-01 08:34 . 2010-08-01 08:34 103140 --sh--r- C:\loew.pif
2010-08-01 08:33 . 2009-07-11 17:53 198114 ----a-w- c:\programdata\nvModes.dat
2010-08-01 08:31 . 2007-10-26 21:59 12 ----a-w- c:\windows\bthservsdp.dat
2010-08-01 00:16 . 2006-11-02 12:37 -------- d-----w- c:\users\Default\AppData\Roaming\Media Center Programs
2010-08-01 00:16 . 2008-07-26 15:17 -------- d-----w- c:\programdata\WindowsSearch
2010-08-01 00:16 . 2009-09-19 15:41 -------- d-----w- c:\programdata\WEBREG
2010-08-01 00:16 . 2008-12-08 14:14 -------- d-----w- c:\programdata\vsosdk
2010-08-01 00:16 . 2008-11-06 19:17 -------- d-----w- c:\programdata\TVU Networks
2010-08-01 00:16 . 2009-07-05 06:19 -------- d-----w- c:\programdata\Tages
2010-08-01 00:14 . 2008-09-11 05:06 -------- d-----w- c:\programdata\Nokia
2010-08-01 00:14 . 2007-11-30 21:14 -------- d-----w- c:\programdata\Nero
2010-08-01 00:14 . 2010-03-15 08:17 -------- d-----w- c:\programdata\Microsoft Help
2010-08-01 00:04 . 2010-01-09 08:56 -------- d-----w- c:\programdata\Malwarebytes
2010-08-01 00:03 . 2008-06-18 13:35 -------- d-----w- c:\programdata\Ludia
2010-08-01 00:03 . 2007-12-23 17:05 -------- d-----w- c:\programdata\LightScribe
2010-08-01 00:03 . 2010-05-27 17:26 -------- d-----w- c:\programdata\KONAMI
2010-08-01 00:03 . 2008-07-29 05:05 -------- d-----w- c:\programdata\InstallShield
2010-08-01 00:03 . 2009-09-19 15:33 -------- d-----w- c:\programdata\HPSSUPPLY
2010-08-01 00:03 . 2008-02-28 11:43 -------- d-----w- c:\programdata\Installations
2010-08-01 00:03 . 2007-08-22 02:33 -------- d-----w- c:\programdata\HP
2010-08-01 00:03 . 2007-08-22 02:55 -------- d-----w- c:\programdata\Hewlett-Packard
2010-08-01 00:03 . 2009-01-17 09:10 -------- d-----w- c:\programdata\Google Updater
2010-08-01 00:02 . 2008-10-12 09:14 -------- d-----w- c:\programdata\GameTap Web Player
2010-08-01 00:02 . 2009-06-06 09:32 -------- d-----w- c:\programdata\Electronic Arts
2010-08-01 00:02 . 2010-04-21 20:39 -------- d-----w- c:\programdata\DAEMON Tools Lite
2010-08-01 00:02 . 2007-08-22 02:24 -------- d-----w- c:\programdata\CyberLink
2010-08-01 00:02 . 2008-09-25 17:38 -------- d-----w- c:\programdata\Brontes Processing
2010-08-01 00:02 . 2010-03-02 08:10 -------- d-----w- c:\programdata\Blizzard Entertainment
2010-08-01 00:02 . 2010-03-01 22:55 -------- d-----w- c:\programdata\Blizzard
2010-08-01 00:02 . 2010-02-08 08:11 -------- d-----w- c:\programdata\ashampoo
2010-08-01 00:02 . 2010-01-19 19:22 -------- d-----w- c:\programdata\Alwil Software
2010-07-30 23:28 . 2008-09-11 04:31 -------- d-----w- c:\program files\Nokia
2010-07-30 23:21 . 2009-01-12 11:40 -------- d-----w- c:\programdata\2DBoy
2010-07-30 15:58 . 2006-12-05 05:22 70286 ----a-w- c:\windows\system32\perfc015.dat
2010-07-30 15:58 . 2006-12-05 05:22 240676 ----a-w- c:\windows\system32\perfh015.dat
2010-07-29 20:48 . 2007-11-06 15:08 -------- d-----w- c:\program files\uTorrent
2010-07-29 20:45 . 2009-01-12 18:03 -------- d-----w- c:\program files\OpenAL
2010-07-29 20:43 . 2007-08-22 02:22 -------- d-----w- c:\program files\Microsoft Works
2010-07-29 20:22 . 2008-12-09 07:43 -------- d-----w- c:\program files\Common Files\LightScribe
2010-07-28 16:26 . 2009-06-23 13:47 -------- d-----w- c:\program files\PC Connectivity Solution
2010-07-28 16:24 . 2008-03-12 19:40 -------- d-----w- c:\program files\Jahshaka
2010-07-27 18:21 . 2009-11-27 07:58 -------- d-----w- c:\program files\Codemasters
2010-07-24 17:02 . 2007-08-22 01:39 -------- d--h--w- c:\program files\InstallShield Installation Information
2010-07-16 01:18 . 2006-11-02 11:18 -------- d-----w- c:\program files\Windows Mail
2010-06-21 08:14 . 2007-08-22 02:05 -------- d-----w- c:\program files\Common Files\SureThing Shared
2010-06-04 14:59 . 2008-09-02 18:37 -------- d-----w- c:\program files\Microsoft Silverlight
2010-05-26 17:06 . 2010-06-10 07:34 34304 ----a-w- c:\windows\system32\atmlib.dll
2010-05-26 14:47 . 2010-06-10 07:34 289792 ----a-w- c:\windows\system32\atmfd.dll
2010-05-21 12:14 . 2009-10-05 13:54 221568 ------w- c:\windows\system32\MpSigStub.exe
2010-05-04 05:59 . 2010-06-10 07:34 916480 ----a-w- c:\windows\system32\wininet.dll
2010-05-04 05:55 . 2010-06-10 07:34 71680 ----a-w- c:\windows\system32\iesetup.dll
2010-05-04 05:55 . 2010-06-10 07:34 109056 ----a-w- c:\windows\system32\iesysprep.dll
2010-05-04 04:31 . 2010-06-10 07:34 133632 ----a-w- c:\windows\system32\ieUnatt.exe
2007-10-27 13:00 . 2007-10-27 13:00 22 --sha-w- c:\windows\SMINST\HPCD.sys
.

((((((((((((((((((((((((((((((((((((( Wpisy startowe rejestru ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Uwaga* puste wpisy oraz domyślne, prawidłowe wpisy nie są pokazane
REGEDIT4

[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{FF6C3CF0-4B15-11D1-ABED-709549C10000}]

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ehTray.exe"="c:\windows\ehome\ehTray.exe" [2008-01-19 125952]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"="c:\program files\Windows Defender\MSASCui.exe" [2008-01-19 1008184]
"CognizanceTS"="c:\progra~1\BIOSCR~1\VeriSoft\Bin\ASTSVCC.dll" [2003-12-22 17920]
"SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2008-06-20 1385768]
"WirelessAssistant"="c:\program files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe" [2009-07-23 498744]

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableLUA"= 0 (0x0)
"EnableUIADesktopToggle"= 0 (0x0)

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\system]
"DisableTaskMgr"= 1 (0x1)
"DisableRegistryTools"= 1 (0x1)

[HKEY_USERS\.default\software\microsoft\windows\currentversion\policies\system]
"DisableTaskMgr"= 1 (0x1)
"DisableRegistryTools"= 1 (0x1)

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=c:\windows\System32\APSHook.dll

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ PDBoot.exe\0autocheck autochk *

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
@="Driver"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend]
@="Service"

[HKLM\~\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Adobe Reader Speed Launch.lnk]
path=c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Reader Speed Launch.lnk
backup=c:\windows\pss\Adobe Reader Speed Launch.lnk.CommonStartup
backupExtension=.CommonStartup

[HKLM\~\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Adobe Reader Synchronizer.lnk]
path=c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Reader Synchronizer.lnk
backup=c:\windows\pss\Adobe Reader Synchronizer.lnk.CommonStartup
backupExtension=.CommonStartup

[HKLM\~\startupfolder\C:^Users^Michał^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Tworzenie wycinków ekranu i uruchamianie programu OneNote 2007.lnk]
path=c:\users\Michał\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Tworzenie wycinków ekranu i uruchamianie programu OneNote 2007.lnk
backup=c:\windows\pss\Tworzenie wycinków ekranu i uruchamianie programu OneNote 2007.lnk.Startup
backupExtension=.Startup

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AlcoholAutomount]
2009-04-21 14:56 82432 ----a-w- g:\programy\Alcohol 120\AxCmd.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Malwarebytes Anti-Malware (reboot)]
2010-04-29 13:39 1160584 ----a-w- g:\programy\Malwarebytes' Anti-Malware\mbam.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\swg]
2009-01-17 09:10 33792 ----a-w- c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe

[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"AntiVirusOverride"=dword:00000001
"FirewallOverride"=dword:00000001
"AntiVirusDisableNotify"=dword:00000001
"FirewallDisableNotify"=dword:00000001
"UpdatesDisableNotify"=dword:00000001
"UacDisableNotify"=dword:00000001

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring]
"DisableMonitoring"=dword:00000001

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]
"DisableMonitoring"=dword:00000001

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]
"DisableMonitoring"=dword:00000001

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc]
"AntiVirusOverride"=dword:00000001
"AntiSpywareOverride"=dword:00000001
"VistaSp2"=hex(b):e8,5c,10,3c,d3,3d,ca,01

R2 a2free;a-squared Free Service;c:\program files\a-squared Free\a2service.exe [2010-04-15 1872320]
R2 PGPsdkServ;PGPsdkService;c:\windows\system32\PGPsdkServ.exe [x]
R3 Com4QLBEx;Com4QLBEx;c:\program files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe [2008-04-03 275760]
R3 epmntdrv;epmntdrv;c:\windows\system32\epmntdrv.sys [2009-08-26 14216]
R3 EuGdiDrv;EuGdiDrv;c:\windows\system32\EuGdiDrv.sys [2009-09-16 8456]
R3 h647906;DragonRise H647906 AMD64 Driver;c:\windows\system32\drivers\h647906.sys [x]
R3 h648101;DragonRise H648101 AMD64 Driver;c:\windows\system32\drivers\h648101.sys [x]
R3 h648103;DragonRise H648103 AMD64 Driver;c:\windows\system32\drivers\h648103.sys [x]
R3 hid7906;hid7906;c:\windows\system32\drivers\hid7906.sys [2008-08-08 41272]
R3 hid8101;hid8101;c:\windows\system32\drivers\hid8101.sys [2008-08-08 43192]
R3 hid8103;hid8103;c:\windows\system32\drivers\hid8103.sys [2008-08-08 40856]
R4 sptd;sptd;c:\windows\system32\Drivers\sptd.sys [2010-04-21 691696]
S2 ASBroker;Logon Session Broker;c:\windows\System32\svchost.exe [2008-01-19 21504]
S2 ASChannel;Local Communication Channel;c:\windows\System32\svchost.exe [2008-01-19 21504]


[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
bthsvcs REG_MULTI_SZ BthServ
Cognizance REG_MULTI_SZ ASBroker ASChannel
HPZ12 REG_MULTI_SZ Pml Driver HPZ12 Net Driver HPZ12
hpdevmgmt REG_MULTI_SZ hpqcxs08 hpqddsvc
LocalServiceAndNoImpersonation REG_MULTI_SZ FontCache

[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{10880D85-AAD9-4558-ABDC-2AB1552D831F}]
2008-06-09 09:14 533792 ----a-w- c:\program files\Common Files\LightScribe\LSRunOnce.exe
.
Zawartość folderu 'Zaplanowane zadania'

2010-08-01 c:\windows\Tasks\User_Feed_Synchronization-{33A78335-0818-4987-8D74-5A2DA5C573C0}.job
- c:\windows\system32\msfeedssync.exe [2010-06-10 04:30]

2010-08-01 c:\windows\Tasks\User_Feed_Synchronization-{94C9E3AC-2D7B-448B-9D50-923637CB0158}.job
- c:\windows\system32\msfeedssync.exe [2010-06-10 04:30]
.
.
------- Skan uzupełniający -------
.
uStart Page = hxxp://www.google.pl/
IE: &Clean Traces - g:\programy\DAP\Privacy Package\dapcleanerie.htm
IE: &Download with &DAP - g:\programy\DAP\dapextie.htm
IE: Download &all with DAP - g:\programy\DAP\dapextie2.htm
IE: E&ksport do programu Microsoft Excel - g:\programy\Office\OFFICE11\EXCEL.EXE/3000
IE: E&ksportuj do programu Microsoft Excel - g:\programy\OFFICE~1\Office12\EXCEL.EXE/3000
IE: Wyślij obraz do urządzenia &Bluetooth... - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
IE: Wyślij stronę do urządzenia &Bluetooth... - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
FF - ProfilePath - c:\users\Michał\AppData\Roaming\Mozilla\Firefox\Profiles\4m19v5y3.default\
FF - prefs.js: browser.search.defaulturl - hxxp://www.bing.com/search?FORM=IEFM1&q=
FF - prefs.js: browser.search.selectedEngine - Google
FF - prefs.js: browser.startup.homepage - hxxp://home.speedbit.com/?aff=105
FF - prefs.js: keyword.URL - hxxp://home.speedbit.com/search.aspx?aff=106&q=
FF - component: g:\programy\DAP\DAPFireFox\components\DAPFireFox.dll
FF - plugin: c:\program files\Google\Google Earth\plugin\npgeplugin.dll
FF - plugin: c:\program files\Google\Google Updater\2.4.1536.6592\npCIDetect13.dll
FF - plugin: c:\program files\Google\Update\1.2.183.13\npGoogleOneClick8.dll
FF - plugin: c:\program files\Microsoft\Office Live\npOLW.dll
FF - plugin: c:\program files\Unity\WebPlayer\loader\npUnity3D32.dll
FF - plugin: c:\program files\Windows Live\Photo Gallery\NPWLPG.dll
FF - plugin: g:\programy\K-Lite Codec Pack\Real Alternative\browser\plugins\nppl3260.dll
FF - plugin: g:\programy\K-Lite Codec Pack\Real Alternative\browser\plugins\nprpjplug.dll
FF - plugin: g:\programy\Opera\program\plugins\npganymedenet.dll
FF - plugin: g:\programy\Opera\program\plugins\NPOFF12.DLL
FF - plugin: g:\programy\Opera\program\plugins\nppl3260.dll
FF - plugin: g:\programy\Opera\program\plugins\nprpjplug.dll
FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\

---- FIREFOX - SPOSÓB POSTĘPOWANIA ----
g:\programy\mozilla firefox\greprefs\all.js - pref("ui.use_native_colors", true);
g:\programy\mozilla firefox\greprefs\all.js - pref("network.IDN.whitelist.lu", true);
g:\programy\mozilla firefox\greprefs\all.js - pref("network.IDN.whitelist.nu", true);
g:\programy\mozilla firefox\greprefs\all.js - pref("network.IDN.whitelist.nz", true);
g:\programy\mozilla firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgbaam7a8h", true);
g:\programy\mozilla firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgberp4a5d4ar", true);
g:\programy\mozilla firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--p1ai", true);
g:\programy\mozilla firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgbayh7gpa", true);
g:\programy\mozilla firefox\greprefs\all.js - pref("network.IDN.whitelist.tel", true);
g:\programy\mozilla firefox\greprefs\all.js - pref("network.auth.force-generic-ntlm", false);
g:\programy\mozilla firefox\greprefs\all.js - pref("network.proxy.type", 5);
g:\programy\mozilla firefox\greprefs\all.js - pref("network.buffer.cache.count", 24);
g:\programy\mozilla firefox\greprefs\all.js - pref("network.buffer.cache.size", 4096);
g:\programy\mozilla firefox\greprefs\all.js - pref("dom.ipc.plugins.timeoutSecs", 45);
g:\programy\mozilla firefox\greprefs\all.js - pref("svg.smil.enabled", false);
g:\programy\mozilla firefox\greprefs\all.js - pref("accelerometer.enabled", true);
g:\programy\mozilla firefox\greprefs\security-prefs.js - pref("security.ssl.allow_unrestricted_renego_everywhere__temporarily_available_pref", true);
g:\programy\mozilla firefox\greprefs\security-prefs.js - pref("security.ssl.renego_unrestricted_hosts", "");
g:\programy\mozilla firefox\greprefs\security-prefs.js - pref("security.ssl.treat_unsafe_negotiation_as_broken", false);
g:\programy\mozilla firefox\greprefs\security-prefs.js - pref("security.ssl.require_safe_negotiation", false);
g:\programy\mozilla firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name", "chrome://browser/locale/browser.properties");
g:\programy\mozilla firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description", "chrome://browser/locale/browser.properties");
g:\programy\mozilla firefox\defaults\pref\firefox.js - pref("plugins.update.notifyUser", false);
g:\programy\mozilla firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled.nptest.dll", true);
g:\programy\mozilla firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled.npswf32.dll", true);
g:\programy\mozilla firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled.npctrl.dll", true);
g:\programy\mozilla firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled.npqtplugin.dll", true);
g:\programy\mozilla firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled", false);
.
- - - - USUNIĘTO PUSTE WPISY - - - -

HKCU-Run-LightScribe Control Panel - c:\program files\Common Files\LightScribe\LightScribeControlPanel.exe
HKCU-Run-IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA} - c:\program files\Common Files\Nero\Lib\NMIndexStoreSvr.exe
HKLM-Run-NWEReboot - (no file)
HKLM-Run-HP Software Update - c:\program files\HP\HP Software Update\HPWuSchd2.exe
HKLM-Run-QlbCtrl.exe - c:\program files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe
HKLM-Run-USB Gamepad - c:\windows\USB Vibration\dr100&110\USB Gamepad.exe
HKLM-Run-Adobe Reader Speed Launcher - c:\program files\Adobe\Reader 8.0\Reader\Reader_sl.exe
MSConfigStartUp-Onet - c:\program files\Common Files\Onet.pl\NewAutoUpdate.exe
MSConfigStartUp-WinampAgent - g:\programy\Winamp\winampa.exe
AddRemove-504244733D18C8F63FF584AEB290E3904E791693 - c:\progra~1\DIFX\B4723E9A0713E5B1\dpinst.exe
AddRemove-6A630DCEC5EEC912115F2FF59D8C2C769798D930 - c:\progra~1\DIFX\270581355A767BF1\dpinst.exe
AddRemove-819D45A9F73817F5B6D7C71A33ADAB88C5DA1765 - c:\progra~1\DIFX\270581355A767BF1\dpinst.exe
AddRemove-Ad-Aware SE Personal - g:\programy\AD-AWA~1\UNWISE.EXE
AddRemove-BitComet FLV Converter - g:\programy\BitComet FLV Converter\uninst.exe
AddRemove-CBF192A85B624E32B8D19ADEEF2DCFC5BC3AA73A - c:\progra~1\DIFX\270581355A767BF1\dpinst.exe
AddRemove-CNXT_AUDIO_HDA - c:\program files\CONEXANT\CNXT_AUDIO_HDA\UIU32a.exe
AddRemove-CNXT_MODEM_HDA_HSF - c:\program files\CONEXANT\CNXT_MODEM_HDA_HSF\UIU32m.exe
AddRemove-DC++ - g:\programy\DC++\uninstall.exe
AddRemove-Download Accelerator Plus (DAP) - g:\programy\DAP\DAPREMOVE.EXE
AddRemove-E092B2EBF2FFE83E896F8F7F829A7B5D7D1B2F9D - c:\progra~1\DIFX\270581355A767BF1\dpinst.exe
AddRemove-E8A6D621B6D3FC5D43C68C549D959DE76EEF5D84 - c:\progra~1\DIFX\270581355A767BF1\dpinst.exe
AddRemove-EADM - c:\program files\Electronic Arts\EADM\Uninstall.exe
AddRemove-ENTERPRISE - c:\program files\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe
AddRemove-F779F5541ABD99C95C03B0FD5E3C058B22DA0FF7 - c:\progra~1\DIFX\270581355A767BF1\dpinst.exe
AddRemove-GameDesire-Pool & Snooker - g:\programy\Ganymede\billiards_uninstall.exe
AddRemove-Google Updater - c:\program files\Google\Google Updater\GoogleUpdater.exe
AddRemove-GTA2 - g:\gry\gta2\Uninst.isu
AddRemove-Guitar Pro 5_is1 - g:\programy\Guitar Pro 5\unins000.exe
AddRemove-HijackThis - g:\programy\Hijack\HijackThis.exe
AddRemove-HP Imaging Device Functions - c:\program files\HP\Digital Imaging\DeviceManagement\hpzscr01.exe
AddRemove-HP Photosmart Essential - c:\program files\HP\Digital Imaging\PhotoSmartEssential\hpzscr01.exe
AddRemove-HP Solution Center & Imaging Support Tools - c:\program files\HP\Digital Imaging\eSupport\hpzscr01.exe
AddRemove-HPExtendedCapabilities - c:\program files\HP\Digital Imaging\ExtCapUninstall\hpzscr01.exe
AddRemove-HPOCR - c:\program files\HP\Digital Imaging\OCR\hpzscr01.exe
AddRemove-JAP - g:\programy\JAP\uninstall.exe
AddRemove-LogonStudio Vista - c:\progra~1\Stardock\OBJECT~1\LOGONS~1\UNWISE.EXE
AddRemove-Magic ISO Maker v5.5 (build 0281) - g:\programy\MagicISO\UNWISE.EXE
AddRemove-MagicDisc 2.7.106 - g:\programy\MAGICD~1\UNWISE.EXE
AddRemove-Monopoly by Parker Brothers - g:\gry\MONOPO~1\UNWISE.EXE
AddRemove-Nokia PC Suite - c:\programdata\Installations\{55495E65-7C5B-48E4-BC7D-DE54F3DE5ED6}\Nokia_PC_Suite_7_1_30_8_pol.exe
AddRemove-NVIDIA Display Control Panel - c:\program files\NVIDIA Corporation\Uninstall\nvuninst.exe
AddRemove-NVIDIA Drivers - c:\program files\NVIDIA Corporation\Uninstall\nvuninst.exe
AddRemove-SmartAudio - c:\program files\Conexant\SmartAudio\SETUP.EXE
AddRemove-SMPlayer - g:\programy\SMPlayer\uninst.exe
AddRemove-SopCast - g:\programy\SopCast\uninst.exe
AddRemove-StarCraft II Beta - c:\program files\Common Files\Blizzard Entertainment\StarCraft II Beta\Uninstall.exe
AddRemove-SystemRequirementsLab - c:\program files\SystemRequirementsLab\Uninstall.exe
AddRemove-The KMPlayer - g:\programy\km player\The KMPlayer\uninstall.exe
AddRemove-TVAnts 1.0 - g:\programy\TVAnts\UNWISE.EXE
AddRemove-UnityWebPlayer - c:\program files\Unity\WebPlayer\Uninstall.exe
AddRemove-VLC media player - g:\programy\VLC\uninstall.exe
AddRemove-Winamp - g:\programy\Winamp\UninstWA.exe
AddRemove-WinLiveSuite_Wave3 - c:\program files\Windows Live\Installer\wlarp.exe
AddRemove-WinRAR archiver - g:\programy\WinRAR\uninstall.exe
AddRemove-WinZip - g:\programy\WinZip\WINZIP32.EXE
AddRemove-World of Warcraft - c:\program files\Common Files\Blizzard Entertainment\World of Warcraft (2)\Uninstall.exe
AddRemove-Xfire - g:\programy\Xfire\uninst.exe
AddRemove-{1C338B34-1BFB-4BAD-B4A3-7B71A2E221F6} - c:\program files\InstallShield Installation Information\{1C338B34-1BFB-4BAD-B4A3-7B71A2E221F6}\setup.exe
AddRemove-{2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\Google\Google Toolbar\Component\GoogleToolbarManager_9DE96A29E721D90A.exe
AddRemove-{290B83AA-093A-45BF-A917-D1C4A1E8D917} - c:\program files\InstallShield Installation Information\{290B83AA-093A-45BF-A917-D1C4A1E8D917}\setup.exe
AddRemove-{2ADE2157-7A5E-122C-B51D-EB8A01B15943} - g:\programy\DeepBurner\Uninstall.exe
AddRemove-{34D2AB40-150D-475D-AE32-BD23FB5EE355} - c:\program files\InstallShield Installation Information\{34D2AB40-150D-475D-AE32-BD23FB5EE355}\Setup.exe
AddRemove-{980A182F-E0A2-4A40-94C1-AE0C1235902E} - c:\program files\Pando Networks\Media Booster\uninst.exe
AddRemove-{C05D8CDB-417D-4335-A38C-A0659EDFD6B8} - c:\program files\InstallShield Installation Information\{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}\Sims3Setup.exe
AddRemove-{C916D86C-AB76-49c7-B0E4-A946E0FD9BC2} - c:\program files\HP\Digital Imaging\{C916D86C-AB76-49c7-B0E4-A946E0FD9BC2}\setup\hpzscr01.exe
AddRemove-{ECEE0279-785F-4CB3-9F28-E69813234BF8} - c:\program files\InstallShield Installation Information\{ECEE0279-785F-4CB3-9F28-E69813234BF8}\setup.exe
AddRemove-BankBrowser - c:\users\Michał\AppData\Local\Opera\Opera\temporary_downloads\bankbrowser_3_6.exe



**************************************************************************

catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-08-01 10:36
Windows 6.0.6002 Service Pack 2 NTFS

skanowanie ukrytych procesów ...

skanowanie ukrytych wpisów autostartu ...

skanowanie ukrytych plików ...


c:\users\Michał\AppData\Roaming\Microsoft\Windows\Cookies\michał@guide.opendns[1].txt 81 bytes

skanowanie pomyślnie ukończone
ukryte pliki: 1

**************************************************************************
.
--------------------- ZABLOKOWANE KLUCZE REJESTRU ---------------------

[HKEY_USERS\S-1-5-21-3022643457-1393697231-3139819596-1000\Software\SecuROM\!CAUTION! NEVER A OR CHANGE ANY KEY*]
"??"=hex:10,d5,77,4b,ae,44,8c,91,0f,2c,44,24,83,0a,0f,b4,47,a4,e7,10,6b,7a,99,
03,17,a1,cd,4a,90,9f,89,d5,dd,d3,85,79,77,cf,72,bf,9c,b3,f0,d9,33,7f,ea,f5,\
"??"=hex:9c,6f,33,5f,e5,e4,22,eb,74,dc,85,17,2a,45,e9,4f

[HKEY_USERS\S-1-5-21-3022643457-1393697231-3139819596-1000\Software\SecuROM\License information*]
"datasecu"=hex:48,28,74,33,ac,de,53,aa,22,d6,9f,b5,6d,75,81,1b,17,2b,cc,c1,62,
d7,ff,69,bf,e6,83,6a,22,5d,c3,57,82,57,fd,52,72,4d,59,d8,e4,ed,1b,91,67,64,\
"rkeysecu"=hex:96,dd,10,95,1d,ea,41,33,ec,c6,19,a9,ca,a9,3d,1a

[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000

[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000

[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0002\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000

[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0003\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000

[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0005\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000

[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0006\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
"MSCurrentCountry"=dword:00000000

[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0008\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
--------------------- Pliki DLL ładowane pod uruchomionymi procesami ---------------------

- - - - - - - > 'Explorer.exe'(6080)
c:\windows\system32\btncopy.dll
c:\program files\Nokia\Nokia PC Suite 7\PhoneBrowser.dll
c:\program files\Nokia\Nokia PC Suite 7\NGSCM.DLL
c:\program files\Nokia\Nokia PC Suite 7\Lang\PhoneBrowser_pol.nlr
c:\program files\Nokia\Nokia PC Suite 7\Resource\PhoneBrowser_Nokia.ngr
.
------------------------ Pozostałe uruchomione procesy ------------------------
.
c:\windows\system32\nvvsvc.exe
c:\windows\system32\nvvsvc.exe
c:\windows\system32\WLANExt.exe
c:\windows\system32\conime.exe
c:\program files\HP\QuickPlay\Kernel\TV\CLCapSvc.exe
c:\program files\Common Files\LightScribe\LSSrvc.exe
g:\programy\defragmentator dysku\PDAgent.exe
c:\windows\system32\PnkBstrA.exe
c:\program files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
g:\programy\Alcohol 120\StarWind\StarWindServiceAE.exe
c:\program files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
c:\windows\system32\DRIVERS\xaudio.exe
c:\windows\ehome\ehmsas.exe
c:\windows\system32\wbem\unsecapp.exe
c:\program files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
c:\program files\Synaptics\SynTP\SynTPHelper.exe
c:\program files\Hewlett-Packard\Shared\hpqwmiex.exe
c:\users\MICHA~1\AppData\Local\Temp\winjikrhg.exe
c:\program files\Hewlett-Packard\Shared\HpqToaster.exe
c:\windows\system32\msiexec.exe
c:\users\MICHA~1\AppData\Local\Temp\w7ea1f.exe
.
**************************************************************************
.
Czas ukończenia: 2010-08-01 10:49:50 - komputer został uruchomiony ponownie
ComboFix-quarantined-files.txt 2010-08-01 08:49

Przed: 43 275 653 120 bajtów wolnych
Po: 49 944 129 536 bajtów wolnych

- - End Of File - - D30F54395C266C7D834D9CB415BB1736
[/log]

Sohei
komentarz
komentarz

Daj mi jeszcze loga z OTL i powiedz czy rejestr i menadżer zadań działają?

logic88
komentarz
komentarz (edytowane)

OTL

[log]
OTL logfile created on: 2010-08-01 15:20:18 - Run 2
OTL by OldTimer - Version 3.2.9.1 Folder = C:\Users\Michał\Desktop
Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18928)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd

2,00 Gb Total Physical Memory | 1,00 Gb Available Physical Memory | 59,00% Memory free
5,00 Gb Paging File | 4,00 Gb Available in Paging File | 73,00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 81,46 Gb Total Space | 46,46 Gb Free Space | 57,03% Space Free | Partition Type: NTFS
Drive D: | 6,93 Gb Total Space | 2,39 Gb Free Space | 34,49% Space Free | Partition Type: NTFS
E: Drive not present or media not loaded
F: Drive not present or media not loaded
Drive G: | 60,66 Gb Total Space | 4,94 Gb Free Space | 8,15% Space Free | Partition Type: NTFS
H: Drive not present or media not loaded
I: Drive not present or media not loaded

Computer Name: MICHAŁ-PC
Current User Name: Michał
Logged in as Administrator.

Current Boot Mode: Normal
Scan Mode: All users
Company Name Whitelist: On
Skip Microsoft Files: On
File Age = 60 Days
Output = Standard

[color=#E56717]========== Processes (All) ==========[/color]

PRC - [2010-08-01 15:13:26 | 000,011,776 | ---- | M] () -- C:\Users\MICHA~1\AppData\Local\Temp\windjspjc.exe
PRC - [2010-08-01 15:11:25 | 000,011,776 | ---- | M] () -- C:\Windows\temp\winlopb.exe
PRC - [2010-08-01 11:07:18 | 000,035,840 | ---- | M] () -- C:\Windows\temp\w86ca7.exe
PRC - [2010-08-01 11:06:37 | 000,035,840 | ---- | M] () -- C:\Users\MICHA~1\AppData\Local\Temp\w7c522.exe
PRC - [2010-07-31 13:36:43 | 000,645,120 | ---- | M] (OldTimer Tools) -- C:\Users\Michał\Desktop\OTL.exe
PRC - [2009-11-20 21:33:00 | 000,122,984 | ---- | M] (NVIDIA Corporation) -- C:\Windows\System32\nvvsvc.exe
PRC - [2009-09-10 16:58:25 | 000,168,960 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Windows Media Player\wmplayer.exe
PRC - [2009-08-18 11:29:22 | 001,529,728 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVC.EXE
PRC - [2009-08-18 11:29:22 | 000,183,152 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVCM.EXE
PRC - [2009-07-23 12:04:42 | 000,498,744 | ---- | M] (Hewlett-Packard) -- C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
PRC - [2009-06-15 14:48:49 | 000,009,728 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\lsass.exe
PRC - [2009-05-19 12:36:18 | 000,240,512 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
PRC - [2009-04-11 08:28:15 | 000,247,296 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\wbem\WmiPrvSE.exe
PRC - [2009-04-11 08:28:13 | 000,314,368 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\winlogon.exe
PRC - [2009-04-11 08:28:08 | 000,037,888 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\wbem\unsecapp.exe
PRC - [2009-04-11 08:28:07 | 000,169,984 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\taskeng.exe
PRC - [2009-04-11 08:28:05 | 000,127,488 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\spoolsv.exe
PRC - [2009-04-11 08:28:04 | 000,064,000 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\smss.exe
PRC - [2009-04-11 08:27:59 | 000,441,344 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\SearchIndexer.exe
PRC - [2009-04-11 08:27:59 | 000,279,552 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\services.exe
PRC - [2009-04-11 08:27:59 | 000,185,344 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\SearchProtocolHost.exe
PRC - [2009-04-11 08:27:58 | 000,087,552 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\SearchFilterHost.exe
PRC - [2009-04-11 08:27:49 | 003,408,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\SLsvc.exe
PRC - [2009-04-11 08:27:36 | 002,926,592 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe
PRC - [2009-04-11 08:27:33 | 000,081,920 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\dwm.exe
PRC - [2009-02-23 15:58:52 | 000,996,616 | ---- | M] (Raxco Software, Inc.) -- G:\Programy\defragmentator dysku\PDAgent.exe
PRC - [2009-02-23 15:58:52 | 000,140,552 | ---- | M] (Raxco Software, Inc.) -- G:\Programy\defragmentator dysku\PDAgentS1.exe
PRC - [2008-06-20 17:37:44 | 000,103,720 | ---- | M] (Synaptics, Inc.) -- C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
PRC - [2008-06-20 17:37:34 | 001,385,768 | ---- | M] (Synaptics, Inc.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
PRC - [2008-06-09 11:21:58 | 000,151,552 | ---- | M] (Hewlett-Packard Company) -- C:\Program Files\Common Files\LightScribe\LSSrvc.exe
PRC - [2008-05-01 17:25:56 | 000,165,192 | ---- | M] (Hewlett-Packard Development Company, L.P.) -- C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
PRC - [2008-04-11 10:04:54 | 000,685,360 | ---- | M] () -- C:\Program Files\Hewlett-Packard\Shared\HpqToaster.exe
PRC - [2008-03-09 17:34:41 | 000,066,872 | ---- | M] () -- C:\Windows\System32\PnkBstrA.exe
PRC - [2008-01-19 09:33:39 | 000,074,240 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\wlanext.exe
PRC - [2008-01-19 09:33:37 | 000,096,768 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\wininit.exe
PRC - [2008-01-19 09:33:32 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch]
PRC - [2008-01-19 09:33:32 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch]
PRC - [2008-01-19 09:33:32 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch]
PRC - [2008-01-19 09:33:32 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch]
PRC - [2008-01-19 09:33:32 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch]
PRC - [2008-01-19 09:33:32 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch]
PRC - [2008-01-19 09:33:32 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch]
PRC - [2008-01-19 09:33:32 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch]
PRC - [2008-01-19 09:33:32 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch]
PRC - [2008-01-19 09:33:32 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch]
PRC - [2008-01-19 09:33:32 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch]
PRC - [2008-01-19 09:33:32 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch]
PRC - [2008-01-19 09:33:32 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch]
PRC - [2008-01-19 09:33:32 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch]
PRC - [2008-01-19 09:33:32 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch]
PRC - [2008-01-19 09:33:32 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch]
PRC - [2008-01-19 09:33:32 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch]
PRC - [2008-01-19 09:33:32 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch]
PRC - [2008-01-19 09:33:15 | 000,095,744 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\mobsync.exe
PRC - [2008-01-19 09:33:14 | 000,229,888 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\lsm.exe
PRC - [2008-01-19 09:33:09 | 000,125,952 | ---- | M] (Microsoft Corporation) -- C:\Windows\ehome\ehtray.exe
PRC - [2008-01-19 09:33:09 | 000,037,376 | ---- | M] (Microsoft Corporation) -- C:\Windows\ehome\ehmsas.exe
PRC - [2008-01-19 09:33:05 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\csrss.exe
PRC - [2007-07-10 07:28:08 | 000,386,560 | ---- | M] (Conexant Systems, Inc.) -- C:\Windows\System32\drivers\XAudio.exe
PRC - [2007-05-28 18:57:54 | 000,357,888 | ---- | M] (Rocket Division Software) -- G:\Programy\Alcohol 120\StarWind\StarWindServiceAE.exe
PRC - [2007-04-23 18:11:42 | 000,262,243 | ---- | M] () -- C:\Program Files\HP\QuickPlay\Kernel\TV\CLCapSvc.exe


[color=#E56717]========== Modules (All) ==========[/color]

MOD - [2010-07-31 13:36:43 | 000,645,120 | ---- | M] (OldTimer Tools) -- C:\Users\Michał\Desktop\OTL.exe
MOD - [2009-09-25 00:54:55 | 000,258,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\winspool.drv
MOD - [2009-07-17 15:54:43 | 000,071,680 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\atl.dll
MOD - [2009-06-15 16:53:43 | 000,072,704 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\secur32.dll
MOD - [2009-06-15 16:52:42 | 000,023,552 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\lpk.dll
MOD - [2009-04-23 14:15:07 | 000,784,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\rpcrt4.dll
MOD - [2009-04-11 08:28:25 | 001,077,248 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\vssapi.dll
MOD - [2009-04-11 08:28:25 | 000,627,712 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\user32.dll
MOD - [2009-04-11 08:28:25 | 000,502,272 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\usp10.dll
MOD - [2009-04-11 08:28:25 | 000,287,744 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\Wldap32.dll
MOD - [2009-04-11 08:28:25 | 000,108,544 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\userenv.dll
MOD - [2009-04-11 08:28:25 | 000,020,480 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\version.dll
MOD - [2009-04-11 08:28:24 | 011,584,000 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\shell32.dll
MOD - [2009-04-11 08:28:24 | 001,591,296 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\setupapi.dll
MOD - [2009-04-11 08:28:24 | 001,068,032 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\shdocvw.dll
MOD - [2009-04-11 08:28:24 | 000,353,280 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\shlwapi.dll
MOD - [2009-04-11 08:28:24 | 000,142,336 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\spp.dll
MOD - [2009-04-11 08:28:24 | 000,057,344 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\samlib.dll
MOD - [2009-04-11 08:28:23 | 001,316,864 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\ole32.dll
MOD - [2009-04-11 08:28:23 | 000,754,688 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\propsys.dll
MOD - [2009-04-11 08:28:23 | 000,563,712 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\oleaut32.dll
MOD - [2009-04-11 08:28:23 | 000,467,456 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\netapi32.dll
MOD - [2009-04-11 08:28:23 | 000,121,344 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\ntmarta.dll
MOD - [2009-04-11 08:28:23 | 000,088,576 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\olepro32.dll
MOD - [2009-04-11 08:28:22 | 000,679,936 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\msvcrt.dll
MOD - [2009-04-11 08:28:20 | 000,891,392 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\kernel32.dll
MOD - [2009-04-11 08:28:20 | 000,807,424 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\msctf.dll
MOD - [2009-04-11 08:28:20 | 000,114,688 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\imm32.dll
MOD - [2009-04-11 08:28:20 | 000,068,608 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\mpr.dll
MOD - [2009-04-11 08:28:19 | 000,297,472 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\gdi32.dll
MOD - [2009-04-11 08:28:18 | 000,450,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\comdlg32.dll
MOD - [2009-04-11 08:28:18 | 000,079,872 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\authz.dll
MOD - [2009-04-11 08:28:17 | 000,800,768 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\advapi32.dll
MOD - [2009-04-11 08:28:17 | 000,171,008 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\apphelp.dll
MOD - [2009-04-11 08:27:49 | 001,202,168 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\ntdll.dll
MOD - [2009-04-11 08:21:38 | 001,686,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6002.18005_none_5cb72f96088b0de0\comctl32.dll
MOD - [2008-01-19 09:37:12 | 000,183,296 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\xmllite.dll
MOD - [2008-01-19 09:37:09 | 000,179,200 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\ws2_32.dll
MOD - [2008-01-19 09:36:48 | 000,069,120 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\vsstrace.dll
MOD - [2008-01-19 09:36:47 | 000,240,128 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\uxtheme.dll
MOD - [2008-01-19 09:36:35 | 000,040,960 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\srclient.dll
MOD - [2008-01-19 09:35:57 | 000,008,192 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\nsi.dll
MOD - [2008-01-19 09:33:52 | 000,523,776 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\clbcatq.dll
MOD - [2008-01-19 09:33:00 | 000,110,592 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\msscript.ocx
MOD - [2006-11-02 11:46:12 | 000,012,288 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\psapi.dll


[color=#E56717]========== Win32 Services (SafeList) ==========[/color]

SRV - File not found [Disabled | Stopped] -- C:\Program Files\Common Files\SureThing Shared\stllssvr.exe -- (stllssvr)
SRV - File not found [Disabled | Stopped] -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer)
SRV - File not found [Auto | Stopped] -- C:\Windows\System32\PGPsdkServ.exe -- (PGPsdkServ)
SRV - File not found [On_Demand | Stopped] -- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE -- (ose)
SRV - File not found [On_Demand | Stopped] -- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE -- (odserv)
SRV - File not found [Auto | Stopped] -- C:\Program Files\HP\QuickPlay\Kernel\TV\CLSched.exe -- (CLSched) CyberLink Task Scheduler (CTS)
SRV - [2010-04-15 08:25:20 | 001,872,320 | ---- | M] (Emsi Software GmbH) [Auto | Stopped] -- C:\Program Files\a-squared Free\a2service.exe -- (a2free)
SRV - [2009-09-25 03:27:04 | 000,793,088 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\FntCache.dll -- (FontCache)
SRV - [2009-08-18 11:29:22 | 001,529,728 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE -- (wlidsvc)
SRV - [2009-08-05 23:48:42 | 000,860,512 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Live\Family Safety\fsssvc.exe -- (fsssvc)
SRV - [2009-05-19 12:36:18 | 000,240,512 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe -- (SeaPort)
SRV - [2009-02-23 15:58:54 | 001,107,208 | ---- | M] (Raxco Software, Inc.) [On_Demand | Stopped] -- G:\Programy\defragmentator dysku\PDEngine.exe -- (PDEngine)
SRV - [2009-02-23 15:58:52 | 000,996,616 | ---- | M] (Raxco Software, Inc.) [Auto | Running] -- G:\Programy\defragmentator dysku\PDAgent.exe -- (PDAgent)
SRV - [2008-01-19 09:38:24 | 000,272,952 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV - [2007-05-28 18:57:54 | 000,357,888 | ---- | M] (Rocket Division Software) [Auto | Running] -- G:\Programy\Alcohol 120\StarWind\StarWindServiceAE.exe -- (StarWindServiceAE)
SRV - [2007-04-23 18:11:42 | 000,262,243 | ---- | M] () [Auto | Running] -- C:\Program Files\HP\QuickPlay\Kernel\TV\CLCapSvc.exe -- (CLCapSvc) CyberLink Background Capture Service (CBCS)
SRV - [2007-02-07 16:30:00 | 000,074,240 | R--- | M] (Cognizance Corporation) [Auto | Running] -- c:\Program Files\Bioscrypt\VeriSoft\Bin\ASWLNPkg.dll -- (ASBroker)
SRV - [2006-06-22 09:14:00 | 000,131,584 | R--- | M] (Cognizance Corporation) [Auto | Running] -- c:\Program Files\Bioscrypt\VeriSoft\Bin\ASChnl.dll -- (ASChannel)


[color=#E56717]========== Driver Services (SafeList) ==========[/color]

DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\System32\DRIVERS\VNUSB.sys -- (VNUSB)
DRV - File not found [Kernel | Auto | Stopped] -- C:\Windows\System32\Drivers\PGPsdk.sys -- (PGPsdkDriver)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\System32\DRIVERS\nwlnkfwd.sys -- (NwlnkFwd)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\System32\DRIVERS\nwlnkflt.sys -- (NwlnkFlt)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\System32\DRIVERS\ipinip.sys -- (IpInIp)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\h648103.sys -- (h648103)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\h648101.sys -- (h648101)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\h647906.sys -- (h647906)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\EagleNT.sys -- (EagleNT)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\ComboFix\catchme.sys -- (catchme)
DRV - File not found [Kernel | Disabled | Stopped] -- C:\Windows\System32\drivers\blbdrive.sys -- (blbdrive)
DRV - [2010-04-21 22:41:19 | 000,691,696 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\System32\Drivers\sptd.sys -- (sptd)
DRV - [2010-02-24 09:30:20 | 001,331,192 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\BCMWL6.SYS -- (BCM43XX)
DRV - [2010-02-24 09:30:20 | 001,331,192 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\BCMWL6.SYS -- (BCM43XV)
DRV - [2010-02-03 15:56:56 | 000,026,176 | -H-- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\hamachi.sys -- (hamachi)
DRV - [2009-11-21 04:34:54 | 011,515,752 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\nvlddmkm.sys -- (nvlddmkm)
DRV - [2009-09-16 17:55:00 | 000,008,456 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\System32\EuGdiDrv.sys -- (EuGdiDrv)
DRV - [2009-08-26 13:45:10 | 000,014,216 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\System32\epmntdrv.sys -- (epmntdrv)
DRV - [2009-08-05 23:48:42 | 000,054,632 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\fssfltr.sys -- (fssfltr)
DRV - [2009-07-05 08:15:53 | 000,281,760 | ---- | M] () [Kernel | Auto | Running] -- C:\Windows\System32\drivers\atksgt.sys -- (atksgt)
DRV - [2009-07-05 08:15:52 | 000,025,888 | ---- | M] () [Kernel | Auto | Running] -- C:\Windows\System32\drivers\lirsgt.sys -- (lirsgt)
DRV - [2009-04-11 06:42:54 | 000,073,216 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\USBAUDIO.sys -- (usbaudio) Sterownik audio USB (WDM)
DRV - [2009-02-24 19:42:14 | 000,116,736 | ---- | M] (MagicISO, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\mcdbus.sys -- (mcdbus)
DRV - [2009-02-09 08:37:56 | 000,007,808 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\usbser_lowerfltj.sys -- (UsbserFilt)
DRV - [2009-02-09 08:37:48 | 000,007,808 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\usbser_lowerflt.sys -- (upperdev)
DRV - [2009-01-09 10:49:06 | 000,071,184 | ---- | M] (Raxco Software, Inc.) [File_System | Auto | Running] -- C:\Windows\System32\drivers\DefragFs.sys -- (DefragFS)
DRV - [2008-08-26 10:26:12 | 000,018,816 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\pccsmcfd.sys -- (pccsmcfd)
DRV - [2008-08-08 15:31:18 | 000,043,192 | ---- | M] (Your Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\hid8101.sys -- (hid8101)
DRV - [2008-08-08 15:31:18 | 000,040,856 | ---- | M] (Your Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\hid8103.sys -- (hid8103)
DRV - [2008-08-08 15:31:16 | 000,041,272 | ---- | M] (Your Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\hid7906.sys -- (hid7906)
DRV - [2008-06-20 17:37:38 | 000,200,112 | ---- | M] (Synaptics, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\SynTP.sys -- (SynTP)
DRV - [2008-04-14 15:39:06 | 000,009,344 | ---- | M] (Hewlett-Packard Development Company, L.P.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\CPQBttn.sys -- (HBtnKey)
DRV - [2008-03-04 02:32:00 | 000,188,416 | ---- | M] (Conexant Systems Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\CHDRT32.sys -- (CnxtHdAudService)
DRV - [2007-07-10 07:27:56 | 000,008,704 | ---- | M] (Conexant Systems, Inc.) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\XAudio.sys -- (XAudio)
DRV - [2007-06-29 15:47:34 | 000,034,304 | ---- | M] (AMD, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\AmdLLD.sys -- (AmdLLD)
DRV - [2007-06-26 09:38:14 | 000,163,328 | ---- | M] (Conexant Systems Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\CHDART.sys -- (HdAudAddService)
DRV - [2007-06-20 04:29:56 | 000,984,064 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\HSX_DPV.sys -- (HSF_DPV)
DRV - [2007-06-20 04:28:34 | 000,208,896 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\HSXHWAZL.sys -- (HSXHWAZL)
DRV - [2007-06-20 04:28:22 | 000,660,480 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\HSX_CNXT.sys -- (winachsf)
DRV - [2007-06-18 18:12:04 | 000,016,768 | ---- | M] (Hewlett-Packard Development Company, L.P.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\HpqKbFiltr.sys -- (HpqKbFiltr)
DRV - [2007-04-18 10:51:14 | 000,081,200 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\btwavdt.sys -- (btwavdt)
DRV - [2007-04-18 10:51:14 | 000,016,432 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\btwrchid.sys -- (btwrchid)
DRV - [2007-04-18 10:51:12 | 000,079,664 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\btwaudio.sys -- (btwaudio)
DRV - [2007-03-28 18:44:22 | 000,140,424 | ---- | M] (AuthenTec, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\atswpdrv.sys -- (ATSWPDRV) AuthenTec TruePrint USB Driver (SwipeSensor)
DRV - [2007-03-07 06:15:58 | 001,059,112 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\nvmfdx32.sys -- (NVENETFD)
DRV - [2007-02-24 16:42:22 | 000,039,936 | ---- | M] (REDC) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\rimmptsk.sys -- (rimmptsk)
DRV - [2007-02-17 01:50:32 | 000,012,032 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\nvsmu.sys -- (nvsmu)
DRV - [2007-01-23 19:03:28 | 000,037,376 | ---- | M] (REDC) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\rixdptsk.sys -- (rismxdp)
DRV - [2007-01-23 18:40:20 | 000,042,496 | ---- | M] (REDC) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\rimsptsk.sys -- (rimsptsk)
DRV - [2006-11-02 11:51:45 | 000,900,712 | ---- | M] (QLogic Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\ql2300.sys -- (ql2300)
DRV - [2006-11-02 11:51:38 | 000,420,968 | ---- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\adp94xx.sys -- (adp94xx)
DRV - [2006-11-02 11:51:34 | 000,316,520 | ---- | M] (Emulex) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\elxstor.sys -- (elxstor)
DRV - [2006-11-02 11:51:32 | 000,297,576 | ---- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\adpahci.sys -- (adpahci)
DRV - [2006-11-02 11:51:25 | 000,235,112 | ---- | M] (ULi Electronics Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\uliahci.sys -- (uliahci)
DRV - [2006-11-02 11:51:25 | 000,232,040 | ---- | M] (Intel Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\iastorv.sys -- (iaStorV)
DRV - [2006-11-02 11:51:00 | 000,147,048 | ---- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\adpu320.sys -- (adpu320)
DRV - [2006-11-02 11:50:45 | 000,115,816 | ---- | M] (Promise Technology, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\ulsata2.sys -- (ulsata2)
DRV - [2006-11-02 11:50:41 | 000,112,232 | ---- | M] (VIA Technologies Inc.,Ltd) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\vsmraid.sys -- (vsmraid)
DRV - [2006-11-02 11:50:35 | 000,106,088 | ---- | M] (QLogic Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\ql40xx.sys -- (ql40xx)
DRV - [2006-11-02 11:50:35 | 000,098,408 | ---- | M] (Promise Technology, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\ulsata.sys -- (UlSata)
DRV - [2006-11-02 11:50:35 | 000,098,408 | ---- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\adpu160m.sys -- (adpu160m)
DRV - [2006-11-02 11:50:24 | 000,088,680 | ---- | M] (NVIDIA Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\nvraid.sys -- (nvraid)
DRV - [2006-11-02 11:50:19 | 000,045,160 | ---- | M] (IBM Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\nfrd960.sys -- (nfrd960)
DRV - [2006-11-02 11:50:17 | 000,041,576 | ---- | M] (Intel Corp./ICP vortex GmbH) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\iirsp.sys -- (iirsp)
DRV - [2006-11-02 11:50:16 | 000,071,784 | ---- | M] (Silicon Integrated Systems) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\sisraid4.sys -- (SiSRaid4)
DRV - [2006-11-02 11:50:13 | 000,040,040 | ---- | M] (NVIDIA Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\nvstor.sys -- (nvstor)
DRV - [2006-11-02 11:50:11 | 000,071,272 | ---- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\djsvs.sys -- (aic78xx)
DRV - [2006-11-02 11:50:10 | 000,067,688 | ---- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\arcsas.sys -- (arcsas)
DRV - [2006-11-02 11:50:10 | 000,065,640 | ---- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\lsi_scsi.sys -- (LSI_SCSI)
DRV - [2006-11-02 11:50:10 | 000,038,504 | ---- | M] (Silicon Integrated Systems Corp.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\sisraid2.sys -- (SiSRaid2)
DRV - [2006-11-02 11:50:10 | 000,037,480 | ---- | M] (Hewlett-Packard Company) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\hpcisss.sys -- (HpCISSs)
DRV - [2006-11-02 11:50:09 | 000,067,688 | ---- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\arc.sys -- (arc)
DRV - [2006-11-02 11:50:09 | 000,035,944 | ---- | M] (Integrated Technology Express, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\iteraid.sys -- (iteraid)
DRV - [2006-11-02 11:50:07 | 000,035,944 | ---- | M] (Integrated Technology Express, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\iteatapi.sys -- (iteatapi)
DRV - [2006-11-02 11:50:05 | 000,065,640 | ---- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\lsi_sas.sys -- (LSI_SAS)
DRV - [2006-11-02 11:50:05 | 000,035,944 | ---- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\symc8xx.sys -- (Symc8xx)
DRV - [2006-11-02 11:50:04 | 000,065,640 | ---- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\lsi_fc.sys -- (LSI_FC)
DRV - [2006-11-02 11:50:03 | 000,034,920 | ---- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\sym_u3.sys -- (Sym_u3)
DRV - [2006-11-02 11:49:59 | 000,033,384 | ---- | M] (LSI Logic Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\mraid35x.sys -- (Mraid35x)
DRV - [2006-11-02 11:49:56 | 000,031,848 | ---- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\sym_hi.sys -- (Sym_hi)
DRV - [2006-11-02 11:49:53 | 000,028,776 | ---- | M] (LSI Logic Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\megasas.sys -- (megasas)
DRV - [2006-11-02 11:49:30 | 000,017,512 | ---- | M] (VIA Technologies, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\viaide.sys -- (viaide)
DRV - [2006-11-02 11:49:28 | 000,016,488 | ---- | M] (CMD Technology, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\cmdide.sys -- (cmdide)
DRV - [2006-11-02 11:49:20 | 000,014,952 | ---- | M] (Acer Laboratories Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\aliide.sys -- (aliide)
DRV - [2006-11-02 10:25:24 | 000,071,808 | ---- | M] (Brother Industries Ltd.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\brserid.sys -- (Brserid) Brother MFC Serial Port Interface Driver (WDM)
DRV - [2006-11-02 10:24:47 | 000,011,904 | ---- | M] (Brother Industries Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\drivers\brusbser.sys -- (BrUsbSer)
DRV - [2006-11-02 10:24:46 | 000,005,248 | ---- | M] (Brother Industries, Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\drivers\brfiltup.sys -- (BrFiltUp)
DRV - [2006-11-02 10:24:45 | 000,013,568 | ---- | M] (Brother Industries, Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\drivers\brfiltlo.sys -- (BrFiltLo)
DRV - [2006-11-02 10:24:44 | 000,062,336 | ---- | M] (Brother Industries Ltd.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\brserwdm.sys -- (BrSerWdm)
DRV - [2006-11-02 10:24:44 | 000,012,160 | ---- | M] (Brother Industries Ltd.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\brusbmdm.sys -- (BrUsbMdm)
DRV - [2006-11-02 09:41:49 | 000,200,704 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\VSTAZL3.SYS -- (HSFHWAZL)
DRV - [2006-11-02 09:36:50 | 000,020,608 | ---- | M] (N-trig Innovative Technologies) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\ntrigdigi.sys -- (ntrigdigi)
DRV - [2006-11-02 09:30:54 | 000,117,760 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\E1G60I32.sys -- (E1G60) Intel(R)
DRV - [2006-10-19 04:10:57 | 001,380,864 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\igdkmd32.sys -- (ialm)
DRV - [2004-08-09 13:33:26 | 000,114,016 | ---- | M] (Protection Technology) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\prohlp02.sys -- (prohlp02)
DRV - [2004-08-09 13:29:28 | 000,053,920 | ---- | M] (Protection Technology) [Kernel | System | Running] -- C:\Windows\System32\drivers\prodrv06.sys -- (prodrv06)
DRV - [2004-07-19 16:49:54 | 000,007,040 | ---- | M] (Protection Technology) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\prosync1.sys -- (prosync1)
DRV - [2003-12-01 17:20:52 | 000,004,832 | ---- | M] (Protection Technology) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\sfhlp01.sys -- (sfhlp01)
DRV - [2002-05-06 11:01:08 | 000,017,005 | ---- | M] (Adaptec) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\ASPI32.SYS -- (ASPI32)


[color=#E56717]========== Standard Registry (SafeList) ==========[/color]


[color=#E56717]========== Internet Explorer ==========[/color]



IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0



IE - HKU\S-1-5-21-3022643457-1393697231-3139819596-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.pl/
IE - HKU\S-1-5-21-3022643457-1393697231-3139819596-1000\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1
IE - HKU\S-1-5-21-3022643457-1393697231-3139819596-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

[color=#E56717]========== FireFox ==========[/color]

FF - prefs.js..browser.search.defaultenginename: "Bing"
FF - prefs.js..browser.search.defaulturl: "http://www.bing.com/search?FORM=IEFM1&q="
FF - prefs.js..browser.search.selectedEngine: "Google"
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: "http://home.speedbit.com/?aff=105"
FF - prefs.js..extensions.enabledItems: {F17C1572-C9EC-4e5c-A542-D05CBB5C5A08}:9.4.0.5
FF - prefs.js..extensions.enabledItems: zrzuta.eu@gmail.com:1.2
FF - prefs.js..keyword.URL: "http://home.speedbit.com/search.aspx?aff=106&q="

FF - HKLM\software\mozilla\Firefox\Extensions\\bkmrksync@nokia.com: C:\Program Files\Nokia\Nokia PC Suite 7\bkmrksync\ [2009-06-23 15:50:23 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.8\extensions\\Components: G:\Programy\mozilla firefox\components [2010-07-31 18:48:10 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.8\extensions\\Plugins: G:\Programy\mozilla firefox\plugins [2010-07-31 18:48:08 | 000,000,000 | ---D | M]

[2010-07-30 10:46:41 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\mozilla\Extensions
[2010-08-01 09:44:37 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\mozilla\Firefox\Profiles\4m19v5y3.default\extensions
[2010-08-01 09:44:37 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Users\Michał\AppData\Roaming\mozilla\Firefox\Profiles\4m19v5y3.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2010-07-30 10:47:25 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\mozilla\Firefox\Profiles\4m19v5y3.default\extensions\zrzuta.eu@gmail.com
[2009-12-18 16:55:17 | 000,002,163 | ---- | M] () -- C:\Users\Michał\AppData\Roaming\Mozilla\FireFox\Profiles\4m19v5y3.default\searchplugins\bing.xml

O1 HOSTS File: ([2010-08-01 10:33:21 | 000,000,027 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (Adobe PDF Reader Link Helper) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
O2 - BHO: (Skype add-on (mastermind)) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Skype Technologies S.A.)
O2 - BHO: (Search Helper) - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll (Microsoft Corporation)
O2 - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll (Google Inc.)
O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.4.4525.1752\swg.dll (Google Inc.)
O2 - BHO: (PDF-XChange Viewer IE-Plugin) - {C5D07EB6-BBCE-4DAE-ACBB-D13A8D28CB1F} - G:\Programy\Tracker Software\PDF Viewer\PDFXCviewIEPlugin.dll (Tracker Software Products Ltd.)
O2 - BHO: (Google Dictionary Compression sdch) - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll (Google Inc.)
O2 - BHO: (VeriSoft Access Manager) - {DF21F1DB-80C6-11D3-9483-B03D0EC10000} - c:\Program Files\Bioscrypt\VeriSoft\Bin\ItIEAddIn.dll (Bioscrypt Inc.)
O2 - BHO: (Windows Live Toolbar Helper) - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll (Microsoft Corporation)
O2 - BHO: (DAPIELoader Class) - {FF6C3CF0-4B15-11D1-ABED-709549C10000} - G:\Programy\DAP\dapieloader.dll (SpeedBit Ltd.)
O3 - HKLM\..\Toolbar: (no name) - - No CLSID value found.
O3 - HKLM\..\Toolbar: (&Windows Live Toolbar) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll (Microsoft Corporation)
O3 - HKLM\..\Toolbar: (Google Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll (Google Inc.)
O3 - HKU\S-1-5-21-3022643457-1393697231-3139819596-1000\..\Toolbar\WebBrowser: (&Windows Live Toolbar) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll (Microsoft Corporation)
O3 - HKU\S-1-5-21-3022643457-1393697231-3139819596-1000\..\Toolbar\WebBrowser: (Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll (Google Inc.)
O4 - HKLM..\Run: [CognizanceTS] c:\Program Files\Bioscrypt\VeriSoft\Bin\ASTSVCC.dll (Cognizance Corporation)
O4 - HKLM..\Run: [Malwarebytes Anti-Malware (reboot)] G:\Programy\Malwarebytes' Anti-Malware\mbam.exe (Malwarebytes Corporation)
O4 - HKLM..\Run: [Windows Defender] C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableTaskMgr = 1
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableRegistryTools = 1
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableTaskMgr = 1
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableRegistryTools = 1
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-3022643457-1393697231-3139819596-1000\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-3022643457-1393697231-3139819596-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKU\S-1-5-21-3022643457-1393697231-3139819596-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableTaskMgr = 1
O7 - HKU\S-1-5-21-3022643457-1393697231-3139819596-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableRegistryTools = 1
O8 - Extra context menu item: &Clean Traces - G:\Programy\DAP\Privacy Package\dapcleanerie.htm ()
O8 - Extra context menu item: &Download with &DAP - G:\Programy\DAP\dapextie.htm ()
O8 - Extra context menu item: Download &all with DAP - G:\Programy\DAP\dapextie2.htm ()
O8 - Extra context menu item: Wyślij obraz do urządzenia &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm ()
O8 - Extra context menu item: Wyślij stronę do urządzenia &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9 - Extra Button: Wpis w blogu - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : &Wpis w blogu w Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Skype add-on for Internet Explorer - {5067A26B-1337-4436-8AFE-EE169C2DA79F} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Skype Technologies S.A.)
O9 - Extra Button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Skype Technologies S.A.)
O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Program Files\Microsoft Office\Office12\REFIEBAR.DLL (Microsoft Corporation)
O9 - Extra Button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9 - Extra 'Tools' menuitem : @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O16 - DPF: {1E54D648-B804-468d-BC78-4AFFED8E262F} http://www.nvidia.com/content/DriverDownload/srl/3.0.0.4/srl_bin/sysreqlab_nvd.cab (System Requirements Lab Class)
O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} http://download.eset.com/special/eos/OnlineScanner.cab (Reg Error: Key error.)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab (Java Plug-in 1.6.0_17)
O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} http://fpdownload.macromedia.com/get/flashplayer/current/polarbear/ultrashim.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab (Java Plug-in 1.6.0_17)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab (Java Plug-in 1.6.0_17)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 172.20.1.100 94.230.20.34 94.230.20.3
O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Program Files\Common Files\microsoft shared\Help\hxds.dll (Microsoft Corporation)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\vnd.ms.radio {3DA2AA3B-3D96-11D2-9BD2-204C4F4F5020} - C:\Windows\System32\Msdxm6.ocx (Microsoft Corporation)
O18 - Protocol\Handler\wlmailhtml {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Program Files\Windows Live\Mail\mailcomm.dll (Microsoft Corporation)
O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
O18 - Protocol\Filter\x-sdch {B1759355-3EEC-4C1E-B0F1-B719FE26E377} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll (Google Inc.)
O20 - AppInit_DLLs: (C:\Windows\System32\APSHook.dll) - C:\Windows\System32\APSHook.dll (Cognizance Corporation)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O24 - Desktop WallPaper: C:\Users\Michał\AppData\Roaming\Microsoft\Windows Photo Gallery\Tapeta z Galerii fotografii systemu Windows.jpg
O24 - Desktop BackupWallPaper: C:\Users\Michał\AppData\Roaming\Microsoft\Windows Photo Gallery\Tapeta z Galerii fotografii systemu Windows.jpg
O28 - HKLM ShellExecuteHooks: {AEB6717E-7E19-11d0-97EE-00C04FD91972} - Reg Error: Key error. File not found
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2010-08-01 10:34:08 | 000,000,341 | ---- | M] () - C:\autorun.inf -- [ NTFS ]
O32 - AutoRun File - [2005-09-11 17:18:54 | 000,000,340 | -HS- | M] () - D:\AUTOMODE -- [ NTFS ]
O32 - AutoRun File - [2010-08-01 10:34:08 | 000,000,272 | RHS- | M] () - D:\autorun.inf -- [ NTFS ]
O32 - AutoRun File - [2006-09-18 23:43:36 | 000,000,024 | ---- | M] () - G:\autoexec.bat -- [ NTFS ]
O32 - AutoRun File - [2010-08-01 10:34:08 | 000,000,191 | RHS- | M] () - G:\autorun.inf -- [ NTFS ]
O34 - HKLM BootExecute: (PDBoot.exe) - C:\Windows\System32\PDBoot.exe (Raxco Software, Inc.)
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

NetSvcs: FastUserSwitchingCompatibility - File not found
NetSvcs: Ias - File not found
NetSvcs: Nla - File not found
NetSvcs: Ntmssvc - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: SRService - File not found
NetSvcs: Wmi - C:\Windows\System32\wmi.dll (Microsoft Corporation)
NetSvcs: WmdmPmSp - File not found
NetSvcs: LogonHours - File not found
NetSvcs: PCAudit - File not found
NetSvcs: helpsvc - File not found
NetSvcs: uploadmgr - File not found

MsConfig - StartUpFolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Adobe Reader Speed Launch.lnk - C:\PROGRA~1\Adobe\READER~1.0\Reader\READER~1.EXE - File not found
MsConfig - StartUpFolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Adobe Reader Synchronizer.lnk - C:\Program Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe - (Adobe Systems Incorporated)
MsConfig - StartUpFolder: C:^Users^Michał^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Tworzenie wycinków ekranu i uruchamianie programu OneNote 2007.lnk - G:\Programy\OFFICE~1\Office12\ONENOTEM.EXE - File not found
MsConfig - StartUpReg: [b]AlcoholAutomount[/b] - hkey= - key= - G:\Programy\Alcohol 120\axcmd.exe ()
MsConfig - StartUpReg: [b]Malwarebytes Anti-Malware (reboot)[/b] - hkey= - key= - G:\Programy\Malwarebytes' Anti-Malware\mbam.exe (Malwarebytes Corporation)
MsConfig - StartUpReg: [b]swg[/b] - hkey= - key= - C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe (Google Inc.)
MsConfig - State: "bootini" - 2
MsConfig - State: "startup" - 2

SafeBootMin: AppMgmt - C:\Windows\System32\appmgmts.dll File not found
SafeBootMin: Base - Driver Group
SafeBootMin: Boot Bus Extender - Driver Group
SafeBootMin: Boot file system - Driver Group
SafeBootMin: File system - Driver Group
SafeBootMin: Filter - Driver Group
SafeBootMin: HelpSvc - Service
SafeBootMin: NTDS - File not found
SafeBootMin: PCI Configuration - Driver Group
SafeBootMin: PNP Filter - Driver Group
SafeBootMin: Primary disk - Driver Group
SafeBootMin: sacsvr - Service
SafeBootMin: SCSI Class - Driver Group
SafeBootMin: System Bus Extender - Driver Group
SafeBootMin: WinDefend - C:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation)
SafeBootMin: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
SafeBootMin: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
SafeBootMin: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
SafeBootMin: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
SafeBootMin: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
SafeBootMin: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
SafeBootMin: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
SafeBootMin: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
SafeBootMin: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
SafeBootMin: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
SafeBootMin: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
SafeBootMin: {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy
SafeBootMin: {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers
SafeBootMin: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
SafeBootMin: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices
SafeBootMin: {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices
SafeBootMin: {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices

SafeBootNet: AppMgmt - C:\Windows\System32\appmgmts.dll File not found
SafeBootNet: Base - Driver Group
SafeBootNet: Boot Bus Extender - Driver Group
SafeBootNet: Boot file system - Driver Group
SafeBootNet: File system - Driver Group
SafeBootNet: Filter - Driver Group
SafeBootNet: HelpSvc - Service
SafeBootNet: Messenger - Service
SafeBootNet: NDIS Wrapper - Driver Group
SafeBootNet: NetBIOSGroup - Driver Group
SafeBootNet: NetDDEGroup - Driver Group
SafeBootNet: Network - Driver Group
SafeBootNet: NetworkProvider - Driver Group
SafeBootNet: NTDS - File not found
SafeBootNet: PCI Configuration - Driver Group
SafeBootNet: PNP Filter - Driver Group
SafeBootNet: PNP_TDI - Driver Group
SafeBootNet: Primary disk - Driver Group
SafeBootNet: rdsessmgr - Service
SafeBootNet: sacsvr - Service
SafeBootNet: SCSI Class - Driver Group
SafeBootNet: Streams Drivers - Driver Group
SafeBootNet: System Bus Extender - Driver Group
SafeBootNet: TDI - Driver Group
SafeBootNet: WinDefend - C:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation)
SafeBootNet: WudfPf - Driver
SafeBootNet: WudfUsbccidDriver - Driver
SafeBootNet: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
SafeBootNet: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
SafeBootNet: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
SafeBootNet: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
SafeBootNet: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
SafeBootNet: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
SafeBootNet: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
SafeBootNet: {4D36E972-E325-11CE-BFC1-08002BE10318} - Net
SafeBootNet: {4D36E973-E325-11CE-BFC1-08002BE10318} - NetClient
SafeBootNet: {4D36E974-E325-11CE-BFC1-08002BE10318} - NetService
SafeBootNet: {4D36E975-E325-11CE-BFC1-08002BE10318} - NetTrans
SafeBootNet: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
SafeBootNet: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
SafeBootNet: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
SafeBootNet: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
SafeBootNet: {50DD5230-BA8A-11D1-BF5D-0000F805F530} - Smart card readers
SafeBootNet: {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy
SafeBootNet: {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers
SafeBootNet: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
SafeBootNet: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices
SafeBootNet: {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices
SafeBootNet: {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices

[color=#E56717]========== Files/Folders - Created Within 60 Days ==========[/color]

[2010-08-01 15:18:42 | 010,491,128 | ---- | C] (Simply Super Software ) -- C:\Users\Michał\Desktop\trjsetup682.exe
[2010-08-01 10:49:56 | 000,000,000 | ---D | C] -- C:\Windows\temp
[2010-08-01 10:47:39 | 000,000,000 | -HSD | C] -- C:\$RECYCLE.BIN
[2010-08-01 10:30:43 | 000,000,000 | ---D | C] -- C:\Users\Michał\AppData\Local\temp
[2010-08-01 09:52:56 | 000,161,792 | ---- | C] (SteelWerX) -- C:\Windows\SWREG.exe
[2010-08-01 09:52:56 | 000,136,704 | ---- | C] (SteelWerX) -- C:\Windows\SWSC.exe
[2010-08-01 09:52:56 | 000,031,232 | ---- | C] (NirSoft) -- C:\Windows\NIRCMD.exe
[2010-08-01 09:52:28 | 000,000,000 | ---D | C] -- C:\Windows\ERDNT
[2010-08-01 09:49:29 | 000,000,000 | ---D | C] -- C:\Qoobox
[2010-08-01 09:47:37 | 000,212,480 | ---- | C] (SteelWerX) -- C:\Windows\SWXCACLS.exe
[2010-07-31 17:40:04 | 000,000,000 | ---D | C] -- C:\Program Files\trend micro
[2010-07-31 17:40:02 | 000,000,000 | ---D | C] -- C:\rsit
[2010-07-31 13:36:43 | 000,645,120 | ---- | C] (OldTimer Tools) -- C:\Users\Michał\Desktop\OTL.exe
[2010-07-31 00:20:44 | 000,484,152 | ---- | C] (Trend Micro Inc.) -- C:\Users\Michał\Desktop\HiJackThis.exe
[2010-07-30 17:26:40 | 000,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbamswissarmy.sys
[2010-07-30 17:26:36 | 000,020,952 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys
[2010-07-30 17:22:37 | 006,227,080 | ---- | C] (Malwarebytes Corporation ) -- C:\Users\Michał\Desktop\mbam-setup-1.46(dobreprogramy.pl).exe
[2010-07-29 19:40:58 | 000,000,000 | ---D | C] -- C:\Users\Michał\Desktop\backups
[2010-07-29 10:16:38 | 000,000,000 | ---D | C] -- C:\Program Files\PROnetworks
[2010-07-29 10:13:49 | 000,191,488 | ---- | C] (PROnetworks) -- C:\Users\Michał\Desktop\VistaBootPRO_3.3.0.exe
[2010-07-28 14:02:31 | 000,000,000 | ---D | C] -- C:\Program Files\a-squared Free
[2010-07-24 18:57:53 | 000,000,000 | ---D | C] -- C:\Users\Michał\Documents\a-squared Free
[4 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
[1 C:\Users\Michał\*.tmp files -> C:\Users\Michał\*.tmp -> ]

[color=#E56717]========== Files - Modified Within 60 Days ==========[/color]

[2010-08-01 15:21:15 | 006,291,456 | -HS- | M] () -- C:\Users\Michał\ntuser.dat
[2010-08-01 15:21:00 | 000,000,456 | -H-- | M] () -- C:\Windows\tasks\User_Feed_Synchronization-{94C9E3AC-2D7B-448B-9D50-923637CB0158}.job
[2010-08-01 15:18:43 | 010,491,128 | ---- | M] (Simply Super Software ) -- C:\Users\Michał\Desktop\trjsetup682.exe
[2010-08-01 15:09:54 | 000,054,016 | ---- | M] () -- C:\Windows\System32\drivers\wbsv.sys
[2010-08-01 15:09:53 | 000,103,140 | ---- | M] () -- C:\loew.pif
[2010-08-01 14:58:38 | 000,003,296 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
[2010-08-01 14:58:38 | 000,003,296 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
[2010-08-01 10:59:12 | 000,198,114 | ---- | M] () -- C:\ProgramData\nvModes.dat
[2010-08-01 10:59:12 | 000,198,114 | ---- | M] () -- C:\ProgramData\nvModes.001
[2010-08-01 10:58:43 | 000,000,006 | -H-- | M] () -- C:\Windows\tasks\SA.DAT
[2010-08-01 10:58:33 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2010-08-01 10:57:35 | 000,524,288 | -HS- | M] () -- C:\Users\Michał\ntuser.dat{4b254e09-061c-11dd-b1a8-001a6bf6d8ad}.TMContainer00000000000000000002.regtrans-ms
[2010-08-01 10:57:35 | 000,065,536 | -HS- | M] () -- C:\Users\Michał\ntuser.dat{4b254e09-061c-11dd-b1a8-001a6bf6d8ad}.TM.blf
[2010-08-01 10:57:30 | 000,000,012 | ---- | M] () -- C:\Windows\bthservsdp.dat
[2010-08-01 10:57:23 | 002,167,789 | -H-- | M] () -- C:\Users\Michał\AppData\Local\IconCache.db
[2010-08-01 10:34:08 | 000,000,341 | ---- | M] () -- C:\autorun.inf
[2010-08-01 10:34:03 | 000,000,251 | ---- | M] () -- C:\Windows\system.ini
[2010-08-01 10:33:21 | 000,000,027 | ---- | M] () -- C:\Windows\System32\drivers\etc\hosts
[2010-08-01 09:47:01 | 003,748,898 | R--- | M] () -- C:\Users\Michał\Desktop\ComboFix.exe
[2010-08-01 02:18:02 | 000,000,204 | ---- | M] () -- C:\Users\Michał\AppData\Local\user.config.lnk
[2010-08-01 02:17:28 | 000,000,204 | ---- | M] () -- C:\Users\Michał\AppData\Local\Download.lnk
[2010-08-01 02:17:25 | 000,000,204 | ---- | M] () -- C:\Users\Michał\Blizzard.lnk
[2010-08-01 02:16:48 | 000,000,420 | -H-- | M] () -- C:\Windows\tasks\User_Feed_Synchronization-{33A78335-0818-4987-8D74-5A2DA5C573C0}.job
[2010-08-01 02:15:20 | 000,000,204 | ---- | M] () -- C:\Users\Public\Desktop\AdobeESDGlobalApps.xml.lnk
[2010-08-01 02:07:38 | 000,000,204 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\data.lnk
[2010-08-01 02:02:45 | 000,000,204 | ---- | M] () -- C:\Users\Public\Documents\ashampoo.lnk
[2010-08-01 02:02:44 | 000,000,204 | ---- | M] () -- C:\ProgramData\Download.lnk
[2010-08-01 02:02:16 | 000,000,204 | ---- | M] () -- C:\ProgramData\Mandy.lnk
[2010-07-31 18:48:13 | 000,000,715 | ---- | M] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk
[2010-07-31 13:39:55 | 000,420,887 | ---- | M] () -- C:\Users\Michał\Desktop\RSIT.exe
[2010-07-31 13:36:43 | 000,645,120 | ---- | M] (OldTimer Tools) -- C:\Users\Michał\Desktop\OTL.exe
[2010-07-31 11:25:56 | 000,216,565 | ---- | M] () -- C:\Users\Michał\Desktop\Flash_Disinfector.exe
[2010-07-31 01:40:33 | 000,000,202 | ---- | M] () -- C:\Users\Michał\AppData\Local\QuickPlay.lnk
[2010-07-31 01:39:55 | 000,000,202 | ---- | M] () -- C:\Users\Michał\AppData\Local\GameLocalInfo.xml.lnk
[2010-07-31 01:22:34 | 000,000,202 | ---- | M] () -- C:\Users\Public\Documents\ScanChInfo.lnk
[2010-07-31 01:22:33 | 000,000,202 | ---- | M] () -- C:\ProgramData\VirtualDevice.lnk
[2010-07-31 01:21:05 | 000,000,202 | ---- | M] () -- C:\ProgramData\Photoalbum.lnk
[2010-07-31 01:15:38 | 036,829,376 | ---- | M] () -- C:\Users\Michał\Desktop\Nokia_PC_Suite_pol_web.exe
[2010-07-31 00:20:57 | 000,484,152 | ---- | M] (Trend Micro Inc.) -- C:\Users\Michał\Desktop\HiJackThis.exe
[2010-07-30 21:55:45 | 000,045,568 | ---- | M] () -- C:\Users\Michał\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010-07-30 17:58:04 | 000,681,360 | ---- | M] () -- C:\Windows\System32\PerfStringBackup.INI
[2010-07-30 17:58:04 | 000,341,478 | ---- | M] () -- C:\Windows\System32\perfh009.dat
[2010-07-30 17:58:04 | 000,240,676 | ---- | M] () -- C:\Windows\System32\perfh015.dat
[2010-07-30 17:58:04 | 000,070,286 | ---- | M] () -- C:\Windows\System32\perfc015.dat
[2010-07-30 17:58:04 | 000,045,456 | ---- | M] () -- C:\Windows\System32\perfc009.dat
[2010-07-30 17:26:44 | 000,000,601 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2010-07-30 17:23:10 | 006,227,080 | ---- | M] (Malwarebytes Corporation ) -- C:\Users\Michał\Desktop\mbam-setup-1.46(dobreprogramy.pl).exe
[2010-07-30 13:41:36 | 048,006,456 | ---- | M] () -- C:\Users\Michał\Desktop\launch.exe
[2010-07-30 04:30:48 | 000,000,202 | ---- | M] () -- C:\Users\Michał\AppData\Local\groom.avi.lnk
[2010-07-30 02:44:36 | 000,000,202 | ---- | M] () -- C:\Users\Michał\AppData\Local\kleopatra.avi.lnk
[2010-07-30 02:25:07 | 000,000,202 | ---- | M] () -- C:\ProgramData\Shortcut.lnk
[2010-07-30 02:24:23 | 000,000,202 | ---- | M] () -- C:\ProgramData\XXX archive.lnk
[2010-07-29 20:42:14 | 002,672,312 | ---- | M] () -- C:\Users\Michał\Desktop\esetsmartinstaller_plk.exe
[2010-07-29 10:19:09 | 000,032,768 | ---- | M] () -- C:\backup.bcd
[2010-07-29 10:16:41 | 000,001,976 | ---- | M] () -- C:\Users\Public\Desktop\VistaBootPRO 3.3.lnk
[2010-07-29 10:15:02 | 000,191,488 | ---- | M] (PROnetworks) -- C:\Users\Michał\Desktop\VistaBootPRO_3.3.0.exe
[2010-07-29 06:46:47 | 000,008,192 | R-S- | M] () -- C:\BOOTSECT.BAK
[2010-07-28 20:30:59 | 000,001,887 | ---- | M] () -- C:\Windows\diagwrn.xml
[2010-07-28 20:30:59 | 000,001,887 | ---- | M] () -- C:\Windows\diagerr.xml
[2010-07-28 19:04:04 | 000,000,266 | RHS- | M] () -- C:\ProgramData\ntuser.pol
[2010-07-24 19:05:17 | 000,008,484 | ---- | M] () -- C:\Users\Michał\AppData\Local\d3d9caps.dat
[2010-07-24 17:27:56 | 000,004,096 | ---- | M] () -- C:\Windows\d3dx.dat
[2010-07-13 14:52:53 | 000,001,223 | ---- | M] () -- C:\Windows\bestplayer.ini
[2010-07-13 14:52:53 | 000,000,121 | ---- | M] () -- C:\Windows\bestplayer.bpp
[2010-07-13 14:52:53 | 000,000,000 | ---- | M] () -- C:\Windows\bestplayer.bbt
[2010-07-07 11:11:43 | 000,000,445 | ---- | M] () -- C:\Windows\win.ini
[2010-06-10 14:57:15 | 000,435,336 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT
[4 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
[1 C:\Users\Michał\*.tmp files -> C:\Users\Michał\*.tmp -> ]

[color=#E56717]========== Files Created - No Company Name ==========[/color]

[2010-08-01 15:09:54 | 000,054,016 | ---- | C] () -- C:\Windows\System32\drivers\wbsv.sys
[2010-08-01 10:34:15 | 000,000,341 | ---- | C] () -- C:\autorun.inf
[2010-08-01 10:34:08 | 000,103,140 | ---- | C] () -- C:\loew.pif
[2010-08-01 09:52:56 | 000,256,512 | ---- | C] () -- C:\Windows\PEV.exe
[2010-08-01 09:52:56 | 000,098,816 | ---- | C] () -- C:\Windows\sed.exe
[2010-08-01 09:52:56 | 000,080,412 | ---- | C] () -- C:\Windows\grep.exe
[2010-08-01 09:52:56 | 000,077,312 | ---- | C] () -- C:\Windows\MBR.exe
[2010-08-01 09:52:56 | 000,068,096 | ---- | C] () -- C:\Windows\zip.exe
[2010-08-01 09:46:01 | 003,748,898 | R--- | C] () -- C:\Users\Michał\Desktop\ComboFix.exe
[2010-08-01 02:18:02 | 000,000,204 | ---- | C] () -- C:\Users\Michał\AppData\Local\user.config.lnk
[2010-08-01 02:17:28 | 000,000,204 | ---- | C] () -- C:\Users\Michał\AppData\Local\Download.lnk
[2010-08-01 02:17:24 | 000,000,204 | ---- | C] () -- C:\Users\Michał\Blizzard.lnk
[2010-08-01 02:15:20 | 000,000,204 | ---- | C] () -- C:\Users\Public\Desktop\AdobeESDGlobalApps.xml.lnk
[2010-08-01 02:07:38 | 000,000,204 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\data.lnk
[2010-08-01 02:02:45 | 000,000,204 | ---- | C] () -- C:\Users\Public\Documents\ashampoo.lnk
[2010-08-01 02:02:44 | 000,000,204 | ---- | C] () -- C:\ProgramData\Download.lnk
[2010-08-01 02:02:16 | 000,000,204 | ---- | C] () -- C:\ProgramData\Mandy.lnk
[2010-07-31 18:48:13 | 000,000,715 | ---- | C] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk
[2010-07-31 13:39:55 | 000,420,887 | ---- | C] () -- C:\Users\Michał\Desktop\RSIT.exe
[2010-07-31 11:25:55 | 000,216,565 | ---- | C] () -- C:\Users\Michał\Desktop\Flash_Disinfector.exe
[2010-07-31 02:20:33 | 000,000,202 | ---- | C] () -- C:\Users\Michał\AppData\Roaming\privacy_policy.txt.lnk
[2010-07-31 01:40:33 | 000,000,202 | ---- | C] () -- C:\Users\Michał\AppData\Local\QuickPlay.lnk
[2010-07-31 01:39:55 | 000,000,202 | ---- | C] () -- C:\Users\Michał\AppData\Local\GameLocalInfo.xml.lnk
[2010-07-31 01:22:34 | 000,000,202 | ---- | C] () -- C:\Users\Public\Documents\ScanChInfo.lnk
[2010-07-31 01:22:33 | 000,000,202 | ---- | C] () -- C:\ProgramData\VirtualDevice.lnk
[2010-07-31 01:21:05 | 000,000,202 | ---- | C] () -- C:\ProgramData\Photoalbum.lnk
[2010-07-31 01:15:30 | 036,829,376 | ---- | C] () -- C:\Users\Michał\Desktop\Nokia_PC_Suite_pol_web.exe
[2010-07-30 17:26:44 | 000,000,601 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2010-07-30 13:18:36 | 048,006,456 | ---- | C] () -- C:\Users\Michał\Desktop\launch.exe
[2010-07-30 02:44:36 | 000,000,202 | ---- | C] () -- C:\Users\Michał\AppData\Local\kleopatra.avi.lnk
[2010-07-30 02:43:39 | 000,000,202 | ---- | C] () -- C:\Users\Michał\AppData\Local\groom.avi.lnk
[2010-07-30 02:25:07 | 000,000,202 | ---- | C] () -- C:\ProgramData\Shortcut.lnk
[2010-07-30 02:24:23 | 000,000,202 | ---- | C] () -- C:\ProgramData\XXX archive.lnk
[2010-07-29 20:40:49 | 002,672,312 | ---- | C] () -- C:\Users\Michał\Desktop\esetsmartinstaller_plk.exe
[2010-07-29 10:19:04 | 000,032,768 | ---- | C] () -- C:\backup.bcd
[2010-07-29 10:16:41 | 000,001,976 | ---- | C] () -- C:\Users\Public\Desktop\VistaBootPRO 3.3.lnk
[2010-07-28 12:47:00 | 000,008,192 | R-S- | C] () -- C:\BOOTSECT.BAK
[2010-07-24 17:27:56 | 000,004,096 | ---- | C] () -- C:\Windows\d3dx.dat
[2010-07-13 14:52:53 | 000,001,223 | ---- | C] () -- C:\Windows\bestplayer.ini
[2010-07-13 14:52:53 | 000,000,121 | ---- | C] () -- C:\Windows\bestplayer.bpp
[2010-07-13 14:52:53 | 000,000,000 | ---- | C] () -- C:\Windows\bestplayer.bbt
[2010-04-02 17:17:34 | 000,179,091 | ---- | C] () -- C:\Windows\System32\xlive.dll.cat
[2010-02-24 09:30:28 | 000,006,656 | ---- | C] () -- C:\Windows\System32\bcmwlrc.dll
[2010-01-27 01:45:05 | 000,000,038 | ---- | C] () -- C:\Windows\avisplitter.INI
[2010-01-08 10:34:30 | 000,014,848 | ---- | C] () -- C:\Windows\System32\EuEpmGdi.dll
[2010-01-08 10:34:22 | 000,014,216 | ---- | C] () -- C:\Windows\System32\epmntdrv.sys
[2010-01-08 10:34:22 | 000,008,456 | ---- | C] () -- C:\Windows\System32\EuGdiDrv.sys
[2009-09-24 09:37:52 | 000,117,248 | ---- | C] () -- C:\Windows\System32\EhStorAuthn.dll
[2009-07-05 08:15:53 | 000,281,760 | ---- | C] () -- C:\Windows\System32\drivers\atksgt.sys
[2009-07-05 08:15:52 | 000,025,888 | ---- | C] () -- C:\Windows\System32\drivers\lirsgt.sys
[2009-01-06 21:46:50 | 000,062,032 | ---- | C] () -- C:\Windows\lsw2_gameexplorerhelper.dll
[2008-10-07 09:13:30 | 000,197,912 | ---- | C] () -- C:\Windows\System32\physxcudart_20.dll
[2008-10-07 09:13:22 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelTraditionalChinese.dll
[2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelSwedish.dll
[2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelSpanish.dll
[2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelSimplifiedChinese.dll
[2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelPortugese.dll
[2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelKorean.dll
[2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelJapanese.dll
[2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelGerman.dll
[2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelFrench.dll
[2008-07-29 06:41:12 | 000,000,048 | ---- | C] () -- C:\Windows\winfile.ini
[2008-04-06 13:47:31 | 000,000,035 | ---- | C] () -- C:\Windows\powerplayer.ini
[2008-04-06 13:47:14 | 000,000,374 | ---- | C] () -- C:\Windows\psnetwork.ini
[2008-04-02 16:14:15 | 000,164,352 | ---- | C] () -- C:\Windows\System32\unrar.dll
[2008-04-02 16:14:13 | 003,596,288 | ---- | C] () -- C:\Windows\System32\qt-dx331.dll
[2008-04-02 16:14:13 | 000,755,027 | ---- | C] () -- C:\Windows\System32\xvidcore.dll
[2008-04-02 16:14:13 | 000,159,839 | ---- | C] () -- C:\Windows\System32\xvidvfw.dll
[2008-04-02 16:14:12 | 000,007,680 | ---- | C] () -- C:\Windows\System32\ff_vfw.dll
[2008-04-02 16:14:12 | 000,000,547 | ---- | C] () -- C:\Windows\System32\ff_vfw.dll.manifest
[2008-03-24 20:59:02 | 000,000,000 | ---- | C] () -- C:\Windows\Irremote.ini
[2008-03-09 17:35:00 | 000,022,328 | ---- | C] () -- C:\Windows\System32\drivers\PnkBstrK.sys
[2008-03-04 19:52:34 | 000,286,720 | ---- | C] () -- C:\Windows\System32\libcurl.dll
[2008-01-01 19:14:22 | 000,000,069 | ---- | C] () -- C:\Windows\NeroDigital.ini
[2007-12-12 13:20:51 | 000,000,271 | ---- | C] () -- C:\Windows\game.ini
[2007-11-13 22:21:48 | 000,000,412 | ---- | C] () -- C:\Windows\ODBC.INI
[2007-11-13 16:12:28 | 000,069,632 | ---- | C] () -- C:\Windows\System32\xmltok.dll
[2007-11-13 16:12:28 | 000,036,864 | ---- | C] () -- C:\Windows\System32\xmlparse.dll
[2007-11-08 23:50:43 | 000,691,696 | ---- | C] () -- C:\Windows\System32\drivers\sptd.sys
[2007-10-28 17:35:12 | 000,014,848 | ---- | C] () -- C:\Windows\System32\BASSMOD.dll
[2007-05-17 14:58:10 | 000,143,360 | ---- | C] () -- C:\Windows\System32\libexpatw.dll
[2007-03-29 12:42:38 | 000,389,120 | ---- | C] () -- C:\Windows\System32\btwhidcs.dll
[2007-02-27 22:43:02 | 000,000,000 | ---- | C] () -- C:\Windows\System32\px.ini
[2006-12-13 23:01:36 | 000,520,192 | ---- | C] () -- C:\Windows\System32\CddbPlaylist2Roxio.dll
[2006-12-13 23:01:36 | 000,204,800 | ---- | C] () -- C:\Windows\System32\CddbFileTaggerRoxio.dll
[2006-11-02 14:35:32 | 000,005,632 | ---- | C] () -- C:\Windows\System32\sysprepMCE.dll
[2006-11-02 12:25:21 | 000,061,440 | ---- | C] () -- C:\Windows\System32\igfxTMM.dll
[2006-11-02 09:40:29 | 000,013,750 | ---- | C] () -- C:\Windows\System32\pacerprf.ini
[2006-05-03 00:38:24 | 000,000,748 | ---- | C] () -- C:\Windows\SetBrowser.ini
[2006-03-10 02:58:00 | 001,060,424 | ---- | C] () -- C:\Windows\System32\WdfCoInstaller01000.dll
[2005-05-07 14:06:00 | 000,016,480 | ---- | C] () -- C:\Windows\System32\rixdicon.dll
[2005-04-03 22:30:00 | 000,110,592 | R--- | C] () -- C:\Windows\System32\scardsyn.dll
[2001-11-14 13:56:00 | 001,802,240 | ---- | C] () -- C:\Windows\System32\lcppn21.dll
[1998-06-13 23:53:26 | 000,044,544 | ---- | C] () -- C:\Windows\System32\Gif89.dll
[1998-05-07 03:10:00 | 000,069,632 | R--- | C] () -- C:\Windows\System32\ODMA32.dll

[color=#E56717]========== LOP Check ==========[/color]

[2010-07-31 02:21:03 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\Alawar
[2010-07-31 02:21:04 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\Ashampoo
[2010-07-31 02:21:12 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\AutoUpdate
[2010-07-31 02:21:13 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\BESTplayer
[2010-07-31 02:21:15 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\Braid
[2010-07-31 02:21:15 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\Canneverbe_Limited
[2010-07-31 02:21:19 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\Codeton
[2010-07-31 02:21:21 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\Crayon Physics Deluxe
[2010-07-31 02:21:33 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\DAEMON Tools
[2010-07-31 02:21:35 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\DAEMON Tools Lite
[2010-07-31 02:21:37 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\DeepBurner
[2010-07-31 02:21:39 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\Flock
[2010-07-31 02:22:05 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\foobar2000
[2010-07-31 02:22:06 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\Gadu-Gadu
[2010-07-31 02:22:25 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\GanymedeNet
[2010-07-31 02:26:14 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\Image Zone Express
[2010-07-31 02:26:15 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\InfraRecorder
[2010-07-31 02:26:22 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\Kamerzysta
[2010-07-31 02:26:35 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\Leadertech
[2010-07-31 02:26:43 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\Ludia
[2010-07-30 10:48:17 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\My Games
[2010-07-30 10:49:50 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\Nokia
[2010-07-30 10:50:43 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\Opera
[2010-07-30 10:54:22 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\PC Suite
[2010-07-30 10:54:38 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\PeerNetworking
[2010-07-30 10:54:42 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\PGP Corporation
[2010-07-30 10:54:52 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\PPMate
[2010-07-30 10:55:03 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\ppStream
[2010-07-30 10:55:08 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\Printer Info Cache
[2010-07-30 10:59:40 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\SPORE Creature Creator
[2010-07-30 10:59:59 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\Sudeki
[2010-07-30 11:11:28 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\The Path
[2010-07-30 11:11:50 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\Tropico 3
[2010-07-30 11:12:22 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\Ubisoft
[2010-07-30 11:12:38 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\Unity
[2010-08-01 15:10:01 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\uTorrent
[2010-07-30 11:13:19 | 000,000,000 | ---D | M] -- C:\Users\Michał\AppData\Roaming\Vso
[2010-08-01 10:57:31 | 000,032,560 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT
[2010-08-01 02:16:48 | 000,000,420 | -H-- | M] () -- C:\Windows\Tasks\User_Feed_Synchronization-{33A78335-0818-4987-8D74-5A2DA5C573C0}.job
[2010-08-01 15:21:00 | 000,000,456 | -H-- | M] () -- C:\Windows\Tasks\User_Feed_Synchronization-{94C9E3AC-2D7B-448B-9D50-923637CB0158}.job

[color=#E56717]========== Purity Check ==========[/color]



[color=#E56717]========== Custom Scans ==========[/color]


[color=#A23BEC]< %systemdrive%\*.* >[/color]
[2010-08-01 10:34:08 | 000,000,341 | ---- | M] () -- C:\autorun.inf
[2010-07-29 10:19:09 | 000,032,768 | ---- | M] () -- C:\backup.bcd
[2010-07-29 10:19:09 | 000,029,696 | -H-- | M] () -- C:\backup.bcd.LOG
[2010-07-29 10:19:09 | 000,000,000 | -H-- | M] () -- C:\backup.bcd.LOG1
[2010-07-29 10:19:09 | 000,000,000 | -H-- | M] () -- C:\backup.bcd.LOG2
[2010-04-18 22:34:05 | 000,000,086 | ---- | M] () -- C:\bcmwl6.log
[2009-07-14 03:38:58 | 000,383,562 | RHS- | M] () -- C:\bootmgr
[2010-07-29 06:46:47 | 000,008,192 | R-S- | M] () -- C:\BOOTSECT.BAK
[2010-08-01 10:49:53 | 000,028,904 | ---- | M] () -- C:\ComboFix.txt
[2006-09-18 23:43:37 | 000,000,010 | ---- | M] () -- C:\config.sys
[2007-11-13 20:37:44 | 000,000,000 | RHS- | M] () -- C:\IO.SYS
[2008-05-16 00:04:00 | 000,000,177 | ---- | M] () -- C:\ioSpecial.ini
[2010-08-01 15:09:53 | 000,103,140 | ---- | M] () -- C:\loew.pif
[2010-07-29 19:10:35 | 000,106,190 | ---- | M] () -- C:\mksbasel.cpp.log
[2007-11-13 20:37:44 | 000,000,000 | RHS- | M] () -- C:\MSDOS.SYS
[2010-08-01 10:58:27 | 2997,080,064 | -HS- | M] () -- C:\pagefile.sys


[color=#A23BEC]< MD5 for: AGP440.SYS >[/color]
[2008-01-19 09:42:25 | 000,056,376 | ---- | M] (Microsoft Corporation) MD5=13F9E33747E6B41A3FF305C37DB0D360 -- C:\Windows\System32\DriverStore\FileRepository\machine.inf_51b95d75\AGP440.sys
[2008-01-19 09:42:25 | 000,056,376 | ---- | M] (Microsoft Corporation) MD5=13F9E33747E6B41A3FF305C37DB0D360 -- C:\Windows\System32\DriverStore\FileRepository\machine.inf_f750e484\AGP440.sys
[2008-01-19 09:42:25 | 000,056,376 | ---- | M] (Microsoft Corporation) MD5=13F9E33747E6B41A3FF305C37DB0D360 -- C:\Windows\winsxs\x86_machine.inf_31bf3856ad364e35_6.0.6001.18000_none_ba12ed3bbeb0d97a\AGP440.sys
[2008-01-19 09:42:25 | 000,056,376 | ---- | M] (Microsoft Corporation) MD5=13F9E33747E6B41A3FF305C37DB0D360 -- C:\Windows\winsxs\x86_machine.inf_31bf3856ad364e35_6.0.6002.18005_none_bbfe6647bbd2a4c6\AGP440.sys
[2007-08-22 04:44:27 | 000,053,864 | ---- | M] (Microsoft Corporation) MD5=313FF294978EA6AF715722D708FB249F -- C:\Windows\winsxs\x86_machine.inf_31bf3856ad364e35_6.0.6000.20494_none_b858f78adaed51b3\AGP440.sys
[2007-08-22 04:44:28 | 000,053,864 | ---- | M] (Microsoft Corporation) MD5=CE71AFD6738AA025D742CDBCFBDC8B9C -- C:\Windows\System32\DriverStore\FileRepository\machine.inf_f2490cb0\AGP440.sys
[2007-08-22 04:44:28 | 000,053,864 | ---- | M] (Microsoft Corporation) MD5=CE71AFD6738AA025D742CDBCFBDC8B9C -- C:\Windows\winsxs\x86_machine.inf_31bf3856ad364e35_6.0.6000.16399_none_b7d45c31c1cb309c\AGP440.sys
[2006-11-02 11:49:52 | 000,053,864 | ---- | M] (Microsoft Corporation) MD5=EF23439CDD587F64C2C1B8825CEAD7D8 -- C:\Windows\ERDNT\cache\AGP440.sys
[2006-11-02 11:49:52 | 000,053,864 | ---- | M] (Microsoft Corporation) MD5=EF23439CDD587F64C2C1B8825CEAD7D8 -- C:\Windows\System32\drivers\AGP440.sys
[2006-11-02 11:49:52 | 000,053,864 | ---- | M] (Microsoft Corporation) MD5=EF23439CDD587F64C2C1B8825CEAD7D8 -- C:\Windows\System32\DriverStore\FileRepository\machine.inf_920a2c1f\AGP440.sys

[color=#A23BEC]< MD5 for: ATAPI.SYS >[/color]
[2009-04-11 08:32:26 | 000,019,944 | ---- | M] (Microsoft Corporation) MD5=1F05B78AB91C9075565A9D8A4B880BC4 -- C:\Windows\ERDNT\cache\atapi.sys
[2009-04-11 08:32:26 | 000,019,944 | ---- | M] (Microsoft Corporation) MD5=1F05B78AB91C9075565A9D8A4B880BC4 -- C:\Windows\System32\drivers\atapi.sys
[2009-04-11 08:32:26 | 000,019,944 | ---- | M] (Microsoft Corporation) MD5=1F05B78AB91C9075565A9D8A4B880BC4 -- C:\Windows\System32\DriverStore\FileRepository\mshdc.inf_b12d8e84\atapi.sys
[2009-04-11 08:32:26 | 000,019,944 | ---- | M] (Microsoft Corporation) MD5=1F05B78AB91C9075565A9D8A4B880BC4 -- C:\Windows\winsxs\x86_mshdc.inf_31bf3856ad364e35_6.0.6002.18005_none_df23a1261eab99e8\atapi.sys
[2008-01-19 09:41:30 | 000,021,560 | ---- | M] (Microsoft Corporation) MD5=2D9C903DC76A66813D350A562DE40ED9 -- C:\Windows\System32\DriverStore\FileRepository\mshdc.inf_cc18792d\atapi.sys
[2008-01-19 09:41:30 | 000,021,560 | ---- | M] (Microsoft Corporation) MD5=2D9C903DC76A66813D350A562DE40ED9 -- C:\Windows\winsxs\x86_mshdc.inf_31bf3856ad364e35_6.0.6001.18000_none_dd38281a2189ce9c\atapi.sys
[2006-11-02 11:49:36 | 000,019,048 | ---- | M] (Microsoft Corporation) MD5=4F4FCB8B6EA06784FB6D475B7EC7300F -- C:\Windows\System32\DriverStore\FileRepository\mshdc.inf_c6c2e699\atapi.sys
[2008-02-13 12:58:34 | 000,021,560 | ---- | M] (Microsoft Corporation) MD5=B35CFCEF838382AB6490B321C87EDF17 -- C:\Windows\System32\DriverStore\FileRepository\mshdc.inf_7de13c21\atapi.sys
[2008-02-13 12:58:34 | 000,021,560 | ---- | M] (Microsoft Corporation) MD5=B35CFCEF838382AB6490B321C87EDF17 -- C:\Windows\winsxs\x86_mshdc.inf_31bf3856ad364e35_6.0.6000.16632_none_db337a442479c42c\atapi.sys
[2008-02-13 12:58:33 | 000,021,560 | ---- | M] (Microsoft Corporation) MD5=E03E8C99D15D0381E02743C36AFC7C6F -- C:\Windows\winsxs\x86_mshdc.inf_31bf3856ad364e35_6.0.6000.20757_none_dbac78a93da31a8b\atapi.sys

[color=#A23BEC]< MD5 for: BEEP.SYS >[/color]
[2008-01-19 07:49:10 | 000,006,144 | ---- | M] (Microsoft Corporation) MD5=67E506B75BD5326A3EC7B70BD014DFB6 -- C:\Windows\ERDNT\cache\beep.sys
[2008-01-19 07:49:10 | 000,006,144 | ---- | M] (Microsoft Corporation) MD5=67E506B75BD5326A3EC7B70BD014DFB6 -- C:\Windows\System32\drivers\beep.sys
[2008-01-19 07:49:10 | 000,006,144 | ---- | M] (Microsoft Corporation) MD5=67E506B75BD5326A3EC7B70BD014DFB6 -- C:\Windows\winsxs\x86_microsoft-windows-beepsys_31bf3856ad364e35_6.0.6001.18000_none_c420a153079d485b\beep.sys
[2006-11-02 10:51:03 | 000,006,144 | ---- | M] (Microsoft Corporation) MD5=AC3DD1708B22761EBD7CBE14DCC3B5D7 -- C:\Windows\winsxs\x86_microsoft-windows-beepsys_31bf3856ad364e35_6.0.6000.16386_none_c1e9df570ab23787\beep.sys

[color=#A23BEC]< MD5 for: CDROM.SYS >[/color]
[2008-01-19 07:49:51 | 000,067,072 | ---- | M] (Microsoft Corporation) MD5=1EC25CEA0DE6AC4718BF89F9E1778B57 -- C:\Windows\System32\DriverStore\FileRepository\cdrom.inf_a29e71c6\cdrom.sys
[2008-01-19 07:49:51 | 000,067,072 | ---- | M] (Microsoft Corporation) MD5=1EC25CEA0DE6AC4718BF89F9E1778B57 -- C:\Windows\winsxs\x86_cdrom.inf_31bf3856ad364e35_6.0.6001.18000_none_5fa95be2a3c76a4a\cdrom.sys
[2009-04-11 06:39:17 | 000,067,072 | ---- | M] (Microsoft Corporation) MD5=6B4BFFB9BECD728097024276430DB314 -- C:\Windows\System32\drivers\cdrom.sys
[2009-04-11 06:39:17 | 000,067,072 | ---- | M] (Microsoft Corporation) MD5=6B4BFFB9BECD728097024276430DB314 -- C:\Windows\System32\DriverStore\FileRepository\cdrom.inf_c949a5b6\cdrom.sys
[2009-04-11 06:39:17 | 000,067,072 | ---- | M] (Microsoft Corporation) MD5=6B4BFFB9BECD728097024276430DB314 -- C:\Windows\winsxs\x86_cdrom.inf_31bf3856ad364e35_6.0.6002.18005_none_6194d4eea0e93596\cdrom.sys
[2006-11-02 10:51:44 | 000,067,072 | ---- | M] (Microsoft Corporation) MD5=8D1866E61AF096AE8B582454F5E4D303 -- C:\Windows\System32\DriverStore\FileRepository\cdrom.inf_e487f727\cdrom.sys

[color=#A23BEC]< MD5 for: NDIS.SYS >[/color]
[2009-04-11 08:32:49 | 000,527,848 | ---- | M] (Microsoft Corporation) MD5=1357274D1883F68300AEADD15D7BBB42 -- C:\Windows\ERDNT\cache\ndis.sys
[2009-04-11 08:32:49 | 000,527,848 | ---- | M] (Microsoft Corporation) MD5=1357274D1883F68300AEADD15D7BBB42 -- C:\Windows\System32\drivers\ndis.sys
[2009-04-11 08:32:49 | 000,527,848 | ---- | M] (Microsoft Corporation) MD5=1357274D1883F68300AEADD15D7BBB42 -- C:\Windows\winsxs\x86_microsoft-windows-ndis_31bf3856ad364e35_6.0.6002.18005_none_a9b2a4d31930d864\ndis.sys
[2006-11-02 11:51:42 | 000,500,840 | ---- | M] (Microsoft Corporation) MD5=227C11E1E7CF6EF8AFB2A238D209760C -- C:\Windows\winsxs\x86_microsoft-windows-ndis_31bf3856ad364e35_6.0.6000.16386_none_a59069cb1f23fc44\ndis.sys
[2008-01-19 09:43:31 | 000,529,464 | ---- | M] (Microsoft Corporation) MD5=9BDC71790FA08F0A0B5F10462B1BD0B1 -- C:\Windows\winsxs\x86_microsoft-windows-ndis_31bf3856ad364e35_6.0.6001.18000_none_a7c72bc71c0f0d18\ndis.sys

[color=#A23BEC]< MD5 for: WINLOGON.EXE >[/color]
[2009-04-11 08:28:13 | 000,314,368 | ---- | M] (Microsoft Corporation) MD5=898E7C06A350D4A1A64A9EA264D55452 -- C:\Windows\ERDNT\cache\winlogon.exe
[2009-04-11 08:28:13 | 000,314,368 | ---- | M] (Microsoft Corporation) MD5=898E7C06A350D4A1A64A9EA264D55452 -- C:\Windows\System32\winlogon.exe
[2009-04-11 08:28:13 | 000,314,368 | ---- | M] (Microsoft Corporation) MD5=898E7C06A350D4A1A64A9EA264D55452 -- C:\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.0.6002.18005_none_71ae7a22d2134741\winlogon.exe
[2006-11-02 11:45:57 | 000,308,224 | ---- | M] (Microsoft Corporation) MD5=9F75392B9128A91ABAFB044EA350BAAD -- C:\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.0.6000.16386_none_6d8c3f1ad8066b21\winlogon.exe
[2008-01-19 09:33:37 | 000,314,880 | ---- | M] (Microsoft Corporation) MD5=C2610B6BDBEFC053BBDAB4F1B965CB24 -- C:\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.0.6001.18000_none_6fc30116d4f17bf5\winlogon.exe

[color=#E56717]========== Alternate Data Streams ==========[/color]

@Alternate Data Stream - 119 bytes -> C:\ProgramData\TEMP:0F8F5844
@Alternate Data Stream - 109 bytes -> C:\ProgramData\TEMP:010ADD2C
< End of report >

[/log]


I rejestr i menadżer są nadal zablokowane.

Sohei
komentarz
komentarz

[code]:Processes
Explorer.exe



:OTL
PRC - [2010-08-01 15:13:26 | 000,011,776 | ---- | M] () -- C:\Users\MICHA~1\AppData\Local\Temp\windjspjc.exe
PRC - [2010-08-01 15:11:25 | 000,011,776 | ---- | M] () -- C:\Windows\temp\winlopb.exe
PRC - [2010-08-01 11:07:18 | 000,035,840 | ---- | M] () -- C:\Windows\temp\w86ca7.exe
PRC - [2010-08-01 11:06:37 | 000,035,840 | ---- | M] () -- C:\Users\MICHA~1\AppData\Local\Temp\w7c522.exe

:files

D:\autorun.inf
G:\autorun.inf
C:\Users\Michał\Desktop\trjsetup682.exe
C:\loew.pif
C:\Users\MICHA~1\AppData\Local\Temp\w7c522.exe
C:\Windows\temp\w86ca7.exe
C:\Windows\temp\winlopb.exe
C:\Users\MICHA~1\AppData\Local\Temp\windjspjc.exe


:Commands
[emptytemp]
[start explorer]
[Reboot][/code]

Do OTL i run fix.
Wykonaj pełny skan [url=http://dobreprogramy.pl/index.php?dz=2&id=1998][b]DR WEB CureIt[/b][/url]
Wykonaj pełny skan[url=http://www.dobreprogramy.pl/Malwarebytes-AntiMalware,Program,Windows,13117.html][b]MBAM[/b][/url]
Co znajda usun po czym daj logi z usuwania + nowy log OTL


@@ Po wykonaniu skanów a zwłaszcza MBAM powiedz mi czy rejestr i menadżer się odblokował jeśli nie to napisze skrypt który temu zaradzi: )

Wciąż szukasz rozwiązania problemu? Napisz teraz na forum!

Możesz zadać pytanie bez konieczności rejestracji - wystarczy, że wypełnisz formularz.

×
×
  • Dodaj nową pozycję...

Powiadomienie o plikach cookie

Strona wykorzystuje pliki cookies w celu prawidłowego świadczenia usług i wygody użytkowników. Warunki przechowywania i dostępu do plików cookies możesz zmienić w ustawieniach przeglądarki.