bober41 utworzono 18 lutego 2014 utworzono 18 lutego 2014 Witam, tak jak w temacie. Próbowałem sobie poradzić z tym, instalując np Adblockera, czy jakieś antywirusy, nic jednak nie pomaga... Jest to cholernie denerwujące, ale na szczęście nie występuje na wszystkich stronach, ale na niektórych (np Allegro). Proszę o pomoc.
ktosik99 komentarz 18 lutego 2014 komentarz 18 lutego 2014 Jaka przeglądarka? Na innych też się to dzieje?
Roberto1998 komentarz 18 lutego 2014 komentarz 18 lutego 2014 Uzyj programu Adwcleaner.Najpierw.szukaj potem usun.
Natsuki Kuga komentarz 18 lutego 2014 komentarz 18 lutego 2014 Zapoznaj się z tematem: http://www.forumpc.pl/topic/277786-nieingerencyjne-narz%C4%99dzia-do-tworzenia-log%C3%B3w-systemowych/ i pokaż zestaw logów z OTL i Gmer.
bober41 komentarz 20 lutego 2014 Autor komentarz 20 lutego 2014 (edytowane) No więc: [log] OTL logfile created on: 2014-02-20 22:24:27 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Bober\Downloads Professional (Version = 6.1.7600) - Type = NTWorkstation Internet Explorer (Version = 8.0.7600.16385) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 3,00 Gb Total Physical Memory | 1,81 Gb Available Physical Memory | 60,43% Memory free 6,00 Gb Paging File | 4,76 Gb Available in Paging File | 79,38% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 17,58 Gb Total Space | 0,51 Gb Free Space | 2,90% Space Free | Partition Type: NTFS Drive D: | 19,53 Gb Total Space | 3,71 Gb Free Space | 18,99% Space Free | Partition Type: NTFS Drive E: | 195,76 Gb Total Space | 12,64 Gb Free Space | 6,46% Space Free | Partition Type: NTFS Drive G: | 6,62 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: UDF Computer Name: BOBROWNIK | User Name: Bober | Logged in as Administrator. Boot Mode: Normal | Scan Mode: Current user Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days ========== Processes (SafeList) ========== PRC - [2014-02-20 22:23:43 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Bober\Downloads\OTL.exe PRC - [2014-02-15 12:08:53 | 000,275,568 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe PRC - [2014-02-05 19:41:35 | 001,863,048 | ---- | M] (Adobe Systems, Inc.) -- C:\Windows\System32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe PRC - [2012-09-23 20:43:34 | 000,065,192 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe PRC - [2009-07-14 02:14:42 | 000,049,152 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\taskhost.exe PRC - [2009-07-14 02:14:20 | 002,613,248 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe PRC - [2008-08-04 00:02:20 | 000,036,352 | ---- | M] () -- C:\Program Files\Winamp\winampa.exe ========== Modules (No Company Name) ========== MOD - [2014-02-15 12:08:53 | 003,578,992 | ---- | M] () -- C:\Program Files\Mozilla Firefox\mozjs.dll MOD - [2014-02-05 19:41:35 | 016,287,624 | ---- | M] () -- C:\Windows\System32\Macromed\Flash\NPSWF32_12_0_0_44.dll MOD - [2008-08-04 00:02:20 | 000,036,352 | ---- | M] () -- C:\Program Files\Winamp\winampa.exe ========== Services (SafeList) ========== SRV - File not found [Auto | Stopped] -- C:\Program Files\iSafe\iSafeSvc.exe -- (iSafeService) SRV - [2014-02-05 19:41:36 | 000,257,928 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc) SRV - [2012-09-23 20:43:34 | 000,065,192 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice) SRV - [2009-07-14 02:16:15 | 000,016,384 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\StorSvc.dll -- (StorSvc) SRV - [2009-07-14 02:16:13 | 000,025,088 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\sensrsvc.dll -- (SensrSvc) SRV - [2009-07-14 02:16:12 | 001,004,544 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\PeerDistSvc.dll -- (PeerDistSvc) SRV - [2009-07-14 02:15:41 | 000,680,960 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend) ========== Driver Services (SafeList) ========== DRV - File not found [Kernel | System | Running] -- C:\Program Files\iSafe\iSafeNetFilter.sys -- (iSafeNetFilter) DRV - File not found [File_System | On_Demand | Stopped] -- C:\Program Files\iSafe\iSafeKrnl.sys -- (iSafeKrnl) DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys -- (esgiguard) DRV - [2012-06-04 18:28:34 | 000,242,240 | ---- | M] (DT Soft Ltd) [Kernel | System | Running] -- C:\Windows\System32\drivers\dtsoftbus01.sys -- (dtsoftbus01) DRV - [2009-07-14 02:19:10 | 000,175,824 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\vmbus.sys -- (vmbus) DRV - [2009-07-14 02:19:10 | 000,040,896 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\vmstorfl.sys -- (storflt) DRV - [2009-07-14 02:19:10 | 000,028,224 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\storvsc.sys -- (storvsc) DRV - [2009-07-14 00:51:11 | 000,034,944 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\winusb.sys -- (WinUsb) DRV - [2009-07-14 00:28:47 | 000,005,632 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\vms3cap.sys -- (s3cap) DRV - [2009-07-14 00:28:45 | 000,017,920 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\VMBusHID.sys -- (VMBusHID) DRV - [2009-07-13 23:02:52 | 000,347,264 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\nvm62x32.sys -- (NVENETFD) DRV - [2009-06-10 22:19:48 | 009,853,248 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\nvlddmkm.sys -- (nvlddmkm) ========== Standard Registry (SafeList) ========== ========== Internet Explorer ========== IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank IE - HKLM\..\SearchScopes,DefaultScope = {0191A6B0-1154-4C22-9182-23A95BBE92D9} IE - HKLM\..\SearchScopes\{0191A6B0-1154-4C22-9182-23A95BBE92D9}: "URL" = http://www.google.com/search?q={searchTerms} IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank IE - HKCU\..\SearchScopes,DefaultScope = {0191A6B0-1154-4C22-9182-23A95BBE92D9} IE - HKCU\..\SearchScopes\{0191A6B0-1154-4C22-9182-23A95BBE92D9}: "URL" = http://www.google.com/search?q={searchTerms} IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC IE - HKCU\..\SearchScopes\{FFEBBF0A-C22C-4172-89FF-45215A135AC7}: "URL" = http://go.mail.ru/search?utf8in=1&fr=ietb&q={SearchTerms} IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 ========== FireFox ========== FF - prefs.js..browser.search.order.1: "Google" FF - prefs.js..browser.search.selectedEngine: "Google" FF - prefs.js..browser.search.useDBForOrder: true FF - prefs.js..browser.startup.homepage: "https://www.google.pl/" FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:27.0.1 FF - user.js - File not found FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF32_12_0_0_44.dll () FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google) FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.10.2: C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.) FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.) FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 27.0.1\extensions\\Components: C:\Program Files\Mozilla Firefox\components FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 27.0.1\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2014-02-15 12:08:48 | 000,000,000 | ---D | M] [2011-10-19 21:51:19 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Bober\AppData\Roaming\mozilla\Extensions [2014-02-20 22:21:44 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Bober\AppData\Roaming\mozilla\Firefox\Profiles\5hh8nnev.default-1390692355684\extensions [2014-01-26 22:12:32 | 000,123,385 | ---- | M] () (No name found) -- C:\Users\Bober\AppData\Roaming\mozilla\firefox\profiles\5hh8nnev.default-1390692355684\extensions\elemhidehelper@adblockplus.org.xpi [2014-02-20 22:21:44 | 000,940,775 | ---- | M] () (No name found) -- C:\Users\Bober\AppData\Roaming\mozilla\firefox\profiles\5hh8nnev.default-1390692355684\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-02-20 09:09:00 | 000,000,609 | ---- | M] () -- C:\Users\Bober\AppData\Roaming\mozilla\firefox\profiles\5hh8nnev.default-1390692355684\searchplugins\Google.xml [2014-02-15 12:08:46 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\browser\extensions [2014-02-15 12:08:53 | 000,000,000 | ---D | M] (Default) -- C:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} ========== Chrome ========== CHR - default_search_provider: () CHR - default_search_provider: search_url = CHR - default_search_provider: suggest_url = CHR - homepage: about:blank O1 HOSTS File: ([2009-06-10 22:39:37 | 000,000,824 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts O2 - BHO: (Skype add-on (mastermind)) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Skype Technologies S.A.) O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) O2 - BHO: (no name) - {8984B388-A5BB-4DF7-B274-77B879E179DB} - No CLSID value found. O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) O4 - HKLM..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe () O4 - HKCU..\Run: [ChomikBox] C:\Program Files\ChomikBox\chomikbox.exe ( ) O4 - HKCU..\Run: [DAEMON Tools Lite] C:\Program Files\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd) O4 - HKCU..\Run: [Gadu-Gadu 10] C:\Program Files\Gadu-Gadu 10\gg.exe (GG Network S.A.) O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Infodelivery present O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoLowDiskSpaceChecks = 1 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 221 O9 - Extra Button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Skype Technologies S.A.) O13 - gopher Prefix: missing O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 10.10.10.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{70F97CA7-E7D2-4D49-BFC4-BA5DA3B40071}: DhcpNameServer = 10.10.10.1 O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies) O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\System32\userinit.exe (Microsoft Corporation) O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\System32\SystemPropertiesPerformance.exe (Microsoft Corporation) O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found. O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2009-06-10 22:42:20 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ] O32 - AutoRun File - [2011-10-17 21:59:53 | 000,000,063 | RHS- | M] () - D:\autorun.inf -- [ NTFS ] O32 - AutoRun File - [2011-10-17 21:59:53 | 000,000,063 | RHS- | M] () - E:\autorun.inf -- [ NTFS ] O32 - AutoRun File - [2008-10-10 15:56:20 | 000,447,752 | R--- | M] (Electronic Arts, Inc.) - G:\AutoRun.exe -- [ UDF ] O32 - AutoRun File - [2008-10-10 15:56:17 | 000,000,000 | R--D | M] - G:\Autorun -- [ UDF ] O32 - AutoRun File - [2008-10-10 15:56:22 | 004,108,288 | R--- | M] () - G:\autorun.dat -- [ UDF ] O32 - AutoRun File - [2008-10-10 15:56:15 | 000,000,137 | R--- | M] () - G:\autorun.inf -- [ UDF ] O33 - MountPoints2\{26f2ee56-94ef-11e1-bcdb-0024211016e2}\Shell - "" = AutoRun O33 - MountPoints2\{26f2ee56-94ef-11e1-bcdb-0024211016e2}\Shell\AutoRun\command - "" = G:\Launcher.exe O33 - MountPoints2\{789dd9e0-ae09-11e1-b44b-0024211016e2}\Shell - "" = AutoRun O33 - MountPoints2\{789dd9e0-ae09-11e1-b44b-0024211016e2}\Shell\AutoRun\command - "" = G:\AutoRun.exe -- [2008-10-10 15:56:20 | 000,447,752 | R--- | M] (Electronic Arts, Inc.) O33 - MountPoints2\G\Shell - "" = AutoRun O33 - MountPoints2\G\Shell\AutoRun\command - "" = G:\Launcher.exe O34 - HKLM BootExecute: (autocheck autochk *) O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3) O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2) O38 - SubSystems\\Windows: (ServerDll=sxssrv,4) ========== Files/Folders - Created Within 30 Days ========== [2014-02-20 22:15:58 | 000,000,000 | ---D | C] -- C:\Users\Bober\AppData\Roaming\iSafe [2014-02-20 22:14:35 | 000,000,000 | ---D | C] -- C:\AdwCleaner [2014-02-15 12:08:46 | 000,000,000 | ---D | C] -- C:\Program Files\Mozilla Firefox [2014-01-30 21:19:48 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Chomikuj.pl [2014-01-30 21:19:48 | 000,000,000 | ---D | C] -- C:\Program Files\ChomikBox [2014-01-28 22:12:52 | 000,000,000 | ---D | C] -- C:\Users\Bober\Desktop\Nowy folder [2014-01-26 00:25:58 | 000,000,000 | ---D | C] -- C:\Users\Bober\Desktop\Stare dane programu Firefox [2014-01-26 00:19:49 | 000,000,000 | ---D | C] -- C:\Users\Bober\AppData\Roaming\eCyber [2014-01-26 00:19:41 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\YAC [2014-01-25 22:03:26 | 000,000,000 | ---D | C] -- C:\Program Files\Enigma Software Group [2014-01-25 22:03:03 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Wise Installation Wizard [1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ] ========== Files - Modified Within 30 Days ========== [2014-02-20 22:24:13 | 000,014,032 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 [2014-02-20 22:24:13 | 000,014,032 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 [2014-02-20 22:17:11 | 000,001,030 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job [2014-02-20 22:17:02 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat [2014-02-20 22:16:59 | 2415,419,392 | -HS- | M] () -- C:\hiberfil.sys [2014-02-20 21:41:00 | 000,000,930 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job [2014-02-20 21:34:00 | 000,001,034 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job [2014-02-17 12:09:25 | 000,296,790 | ---- | M] () -- C:\Users\Bober\Desktop\mestia.jpg [2014-02-16 14:13:03 | 000,001,495 | ---- | M] () -- C:\Windows\System32\Vot-i-konchilos_-leto-201333-IMPERIA-SSC-amp--L39One-Nyusha-Natali-B_yanka-Serebro-%D0%98van-Dorn-Ani-Lorak-Maks-Korzh-Diskotek-ETO-100-H%D0%98T33-Pis_mo-9835983498359834-Glavnyy-Saundtreki-OST-k-fil_.lnk [2014-02-05 19:41:35 | 000,692,616 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\System32\FlashPlayerApp.exe [2014-02-05 19:41:35 | 000,071,048 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\System32\FlashPlayerCPLApp.cpl [2014-02-04 19:15:59 | 000,690,938 | ---- | M] () -- C:\Windows\System32\perfh015.dat [2014-02-04 19:15:59 | 000,609,896 | ---- | M] () -- C:\Windows\System32\perfh009.dat [2014-02-04 19:15:59 | 000,132,432 | ---- | M] () -- C:\Windows\System32\perfc015.dat [2014-02-04 19:15:59 | 000,104,214 | ---- | M] () -- C:\Windows\System32\perfc009.dat [2014-01-30 21:19:54 | 000,000,632 | ---- | M] () -- C:\Users\Public\Desktop\ChomikBox.lnk [2014-01-26 23:15:09 | 000,008,784 | ---- | M] () -- C:\Users\Bober\Desktop\twarz [].jpg [2014-01-26 00:19:41 | 000,001,738 | ---- | M] () -- C:\Users\Public\Desktop\YAC.lnk [2014-01-25 02:58:49 | 000,000,058 | ---- | M] () -- C:\Windows\FinalAlert2.ini [1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ] ========== Files Created - No Company Name ========== [2014-02-17 12:09:25 | 000,296,790 | ---- | C] () -- C:\Users\Bober\Desktop\mestia.jpg [2014-02-14 17:22:50 | 000,001,495 | ---- | C] () -- C:\Windows\System32\Vot-i-konchilos_-leto-201333-IMPERIA-SSC-amp--L39One-Nyusha-Natali-B_yanka-Serebro-%D0%98van-Dorn-Ani-Lorak-Maks-Korzh-Diskotek-ETO-100-H%D0%98T33-Pis_mo-9835983498359834-Glavnyy-Saundtreki-OST-k-fil_.lnk [2014-01-30 21:19:54 | 000,000,632 | ---- | C] () -- C:\Users\Public\Desktop\ChomikBox.lnk [2014-01-26 23:15:09 | 000,008,784 | ---- | C] () -- C:\Users\Bober\Desktop\twarz [].jpg [2014-01-26 00:19:41 | 000,001,738 | ---- | C] () -- C:\Users\Public\Desktop\YAC.lnk [2013-03-30 10:12:13 | 000,036,864 | ---- | C] () -- C:\Windows\StmClean.exe [2012-06-05 22:01:24 | 000,000,571 | ---- | C] () -- C:\Windows\eReg.dat [2012-06-05 17:35:37 | 000,139,264 | ---- | C] () -- C:\Windows\System32\fsgscom.dll [2012-04-24 20:07:06 | 000,000,058 | ---- | C] () -- C:\Windows\FinalAlert2.ini [2012-01-05 15:58:04 | 000,000,272 | ---- | C] () -- C:\Users\Bober\AppData\Roaming\burnaware.ini ========== ZeroAccess Check ========== [2009-07-14 05:42:31 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini [HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] [HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] "" = %SystemRoot%\system32\shell32.dll -- [2009-07-14 02:16:14 | 012,866,560 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Apartment [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] "" = %systemroot%\system32\wbem\fastprox.dll -- [2009-07-14 02:15:20 | 000,605,696 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Free [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] "" = %systemroot%\system32\wbem\wbemess.dll -- [2009-07-14 02:16:17 | 000,342,528 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Both ========== LOP Check ========== [2012-05-03 13:06:13 | 000,000,000 | ---D | M] -- C:\Users\Bober\AppData\Roaming\DAEMON Tools Lite [2014-01-26 00:19:49 | 000,000,000 | ---D | M] -- C:\Users\Bober\AppData\Roaming\eCyber [2013-04-30 20:20:24 | 000,000,000 | ---D | M] -- C:\Users\Bober\AppData\Roaming\fltk.org [2013-11-25 16:28:26 | 000,000,000 | ---D | M] -- C:\Users\Bober\AppData\Roaming\Gadu-Gadu 10 [2014-02-20 22:15:58 | 000,000,000 | ---D | M] -- C:\Users\Bober\AppData\Roaming\iSafe [2011-11-27 23:12:52 | 000,000,000 | ---D | M] -- C:\Users\Bober\AppData\Roaming\OpenFM [2011-10-18 21:33:35 | 000,000,000 | ---D | M] -- C:\Users\Bober\AppData\Roaming\Opera [2014-01-21 00:44:39 | 000,000,000 | ---D | M] -- C:\Users\Bober\AppData\Roaming\Red Alert 3 [2014-01-26 23:15:10 | 000,000,000 | ---D | M] -- C:\Users\Bober\AppData\Roaming\VSO ========== Purity Check ========== < End of report > [/log] [log] OTL Extras logfile created on: 2014-02-20 22:24:27 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Bober\Downloads Professional (Version = 6.1.7600) - Type = NTWorkstation Internet Explorer (Version = 8.0.7600.16385) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 3,00 Gb Total Physical Memory | 1,81 Gb Available Physical Memory | 60,43% Memory free 6,00 Gb Paging File | 4,76 Gb Available in Paging File | 79,38% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 17,58 Gb Total Space | 0,51 Gb Free Space | 2,90% Space Free | Partition Type: NTFS Drive D: | 19,53 Gb Total Space | 3,71 Gb Free Space | 18,99% Space Free | Partition Type: NTFS Drive E: | 195,76 Gb Total Space | 12,64 Gb Free Space | 6,46% Space Free | Partition Type: NTFS Drive G: | 6,62 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: UDF Computer Name: BOBROWNIK | User Name: Bober | Logged in as Administrator. Boot Mode: Normal | Scan Mode: Current user Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days ========== Extra Registry (SafeList) ========== ========== File Associations ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>] .cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation) .hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation) .html [@ = ChromeHTML] -- C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) [HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>] .html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) ========== Shell Spawning ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation) htafile [open] -- "%1" %* htmlfile [edit] -- Reg Error: Key error. htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1" http [open] -- "C:\Program Files\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.) https [open] -- "C:\Program Files\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [ChomikBox.Upload] -- "C:\Program Files\ChomikBox\\ChomikBox.exe" -u"%1" ( ) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [Winamp.Bookmark] -- "C:\Program Files\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft) Directory [Winamp.Enqueue] -- "C:\Program Files\Winamp\winamp.exe" /ADD "%1" (Nullsoft) Directory [Winamp.Play] -- "C:\Program Files\Winamp\winamp.exe" "%1" (Nullsoft) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) ========== Security Center Settings ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = Reg Error: Unknown registry data type -- File not found "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] ========== Firewall Settings ========== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 ========== Authorized Applications List ========== ========== Vista Active Open Ports Exception List ========== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{005AE873-272E-4C92-813A-83DE7E42563E}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{00C4561E-6EF0-43E6-87FA-3D37E19FA9E5}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{00C6F48B-7244-491D-B32E-BBB760F5CC75}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{02305B75-53D9-46CD-BE23-10ACCB972E82}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{02888CCB-1500-4C2D-90DF-D6BB589BDF1A}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{028A8660-F83B-4976-9011-39BC17033F2D}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{02F93A85-9EB9-4944-9220-C6312DCFEDA3}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{03C4AD8B-CE3E-4515-B91F-6165BECF344B}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{041B26D6-4E67-4F69-8EB9-C2233A6096BE}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{0425FF32-3688-4127-9584-4DE29BF6C676}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{042EB7AD-0FE3-44BD-B020-18609FC7978A}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{054753B7-1280-4F03-A55B-3AADE9A1300F}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{05500F1F-B46D-4197-8B88-8FCDC3CAFE11}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{05A6A485-4FA4-4E5C-AB5C-0417C47E287B}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{0643373C-EE50-4D01-9AC6-4D7B76338837}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{06486FF6-9AED-4A06-B850-3253BF4A57B7}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{06B01FE1-F17E-4B7F-9B62-597E7494D702}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{072172AD-CE0D-4F9A-AAA0-6F0A9308ABBB}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{074B79C4-392B-4168-ADB2-399AABDDA853}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{07D42E1B-3EF1-4510-82CE-1B50BAB806F9}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{07E22BDD-067C-41A9-AED2-7282539BF40E}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{07F4A1D0-F861-4BCE-BB3F-7F09CBF9CE93}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{082FB501-74D3-4740-B1AE-AF703B1B9FDB}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{083EBBBD-DEE9-4AF6-8CA1-BD69E9F87471}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{08B1535B-0A64-49B5-9DBB-CAAB7EC298EF}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{08B674E2-C79D-44FB-BE5F-BDEDB7CD9947}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{08D8760B-D246-4400-91F9-DE8B293C08FE}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{08E457DC-220F-48C0-9EEA-FF2A5DDBFF1A}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{08F02448-A725-4195-A708-6E4DC4A1F522}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{0927E038-AB56-46B4-8783-0FA90C21D37E}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{09BB6892-08C2-4670-B990-9900970ABAA1}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{09C813A4-1ABB-4BB9-BE4E-B27761FB0FB2}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{0A2D0543-CC0A-437B-A995-7F936CB2E4FC}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{0A7CD093-16DF-49B7-8CB6-1A44373F1728}" = rport=138 | protocol=17 | dir=out | app=system | "{0AA3B5A8-EAE3-4DF2-BE1C-FB0D3069ED3D}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{0AB70DC4-342D-4CEA-9C4A-1CF70166B291}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{0ACDF1C2-7AE3-4DE7-9BBF-813BD18ECBE2}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{0AF1ECC3-7D50-4E61-91AE-178CCBF90AF3}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{0B019815-2E9D-43B3-88CF-7A16AE222FC2}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{0BF3741A-E48A-42C0-97EC-4AE4D5965DEB}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{0C4A7FA4-2D62-4469-84F3-F385166CAC0C}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{0D2C3EEA-007E-46BF-BE59-82874D8D24D8}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{0D3AA3C2-AA4A-4CCF-883F-53EC624548CD}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{0D7C95DC-6690-4CA4-88DE-3F486D3F3CB3}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{0DADDDB0-9F0B-430A-B826-3D0FDEDB521A}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{0DC0B4AE-671B-49AA-A508-B041C54DEDFC}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{0DC4DAE7-27D8-49D2-BC02-DAED7CCCE3DD}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{0DDB690E-46A9-41DC-AA90-528E02070754}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{0DEFFBCF-E4C3-44E0-BC6F-D5713D717423}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{0E19CDDB-3611-44BF-B0AF-BB733B6F1A97}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{0E5D6408-5F05-4C21-91D4-9B9DE5A250CB}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{0E737086-5620-4F0E-B059-0BBCED0F4235}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{0EA60666-747C-4D34-B7E7-E8A5F0C68342}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{0ED6FB70-3B3E-451C-AA9F-419E7EE0539F}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{0F246816-956E-4561-A80F-9E5CDC8AE00B}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{0F77DB7A-6BEA-4743-970D-D465ADDAE79C}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{0FB73A48-BF39-41DA-B712-E1D8AC397130}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{0FE9046C-2D15-42F9-A6CC-5B2AFB81A684}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{10031BB8-A482-41FA-9A21-C9358EB0C32A}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{107FFCF1-DDA9-4EBA-A430-68DABBAA95FC}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{10B71180-CB2E-4CD7-9B56-2A479644DB69}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{10FA694D-F155-4905-BFAE-F09DC4A8B49F}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{111B7EE6-6A1B-4C73-900C-133F3FEE0061}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{116A5BDE-8B67-4252-B0B5-08FCEAE3F334}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{118D5124-A214-4E21-AD84-187920191927}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{11ACF786-C308-4049-B0D8-C32D45EA869F}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{123C806D-5D22-45BF-BBC0-FF6EB49244D1}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{129A2D4F-79D3-4B52-8F05-288F942E98EB}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{12BB4DEE-9253-46B3-B4AD-B64F2D9B389D}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{14504C59-359A-4F69-9303-B5E919A825B6}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{145CE41A-BDFB-4AA4-955F-213AAC80073D}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{14F269EB-A1A1-4E73-9EC5-37332338B253}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{15A7AA65-041E-44A8-9B81-0CF120892DAC}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{16019A43-6BD0-49D6-B04C-2C658EE65F9B}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{164C418C-DF4F-47EC-B1EF-CB593BECB786}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{17010A20-02CA-4F78-B689-CCC66B23EDC3}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{172B5D42-5366-47A2-A576-7DABF76E847D}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{173A6EE8-B8A7-4E5B-9E3A-6178C040D350}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{176E23A3-72CA-4EE1-B021-B8AA1BB526DA}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{187145FB-8C27-4AE6-A6CA-62A934EE8C55}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{18D0A191-5FBB-4F41-B39E-3EB1861C7F21}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{194EE054-7513-40F2-904B-585027F3B14E}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{19703BFF-5DF2-4723-BAF3-992694CCDBDC}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{197D88EA-CB6F-4DCA-9EA6-39664070DD0F}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{1A1FF5D8-3BAE-4374-9A4C-3FCC80DF1A84}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{1A3C7494-479F-430F-9436-C043A63A3F32}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{1A70CBFC-85E8-4C68-85CA-7B31144E7DB3}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{1AC5BD0C-2750-4B43-8C1B-C754EA091EBA}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{1AD9B1E4-4C49-4610-8BF9-FF27D2B45559}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{1B231CA4-EBB5-49E4-9DCF-A95958A5B13A}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{1BAB15A7-E5E1-4ACD-8B2D-07537228B31D}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{1BAF82E2-5932-472C-896E-17A1FE83E5E3}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{1BCB8B7D-82BE-41E3-8CFD-37A8A9DD4C1C}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{1BDF2FA4-ABF3-4097-8C69-74EDE5FDBC9D}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{1C2FC696-E949-4E35-8EDC-98B55B40A104}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{1CAE533D-8C16-4B4B-8813-306557F5073E}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{1D4C0C12-708E-495A-8C43-83E339FD98FA}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{1D82131B-3FDE-4FCC-A110-5B4935730E89}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{1E0D775A-082A-4D20-97E0-F2FFBFF9601A}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{1F0E6348-EA3C-4D3C-909E-32B81E0C3636}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{1F4DE1E5-D694-4F34-A1DE-4FF9A480D046}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{1F58CB85-FB6A-4E0E-B2FF-8D59F16D0351}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{202279AF-A64B-4AAB-9BEF-5FB6A8859A24}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{209AF042-50F0-4B2F-B8FC-B79BAB475FC6}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{209DB4DA-09D9-493E-9D91-BD972B7D8479}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{20CACF07-A8DF-48FE-830C-3DDCFAC3CF04}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{20E329C0-45A3-43F7-9678-E87CB94D4DEE}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{21211577-17DC-4C32-B435-FEC68FA81526}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{21513BA5-27B9-4500-AFFC-DD6953869E70}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{217BA96A-5E55-41FA-897F-F2644C8C2E76}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{21A522E3-EBE2-4CB5-8B69-BCEA122DC257}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{21FFC529-399B-4BC7-A927-8970C85D6AE3}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{22620B06-4D44-45F1-8CF9-1F7F567D71BC}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{227FC1FB-1D92-49D1-BDF6-C06D7BDADD39}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{237DF531-9594-46D0-B508-28896CBFD60C}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{23910451-0C39-46C2-AE3C-2B0DDDCC306A}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{23DA2782-5831-4E8C-8340-5DE6EA22F35B}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{23EB3A36-64E9-41B4-93E3-6CA3B637AC81}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{24059458-4838-44FD-B54B-274A8E2EF826}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{242F6A63-A928-4CFA-8509-29F84673FD08}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{243E433B-0738-4015-89D9-4AE44D4A081E}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{2544DDC3-E35E-4088-A0EB-ED366702AD4A}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{257EC3B3-371D-4DB3-B50E-73A311218978}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{25A88FA6-C41D-4E89-A381-A134A1D82031}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{25AE8C06-8E0F-4EF7-B823-601392D87659}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{25E3F10E-5E85-4BD1-BC75-7F5886E80B3F}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{26493A7A-89A4-45D2-9852-B551E1AFF3CE}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{2707A5D3-9A7F-48B0-B500-3C30D021C68A}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{270A00D1-37E4-47BB-829C-9145A550D5B4}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{2746A576-D393-4ACC-804D-F5A3983190B5}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{2805D219-4B69-4826-9D70-F84D64173219}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{2879047F-2DB3-4537-99DD-B4F9D5518AF5}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{28DC43E9-5AF4-420D-8494-02B1052CED5F}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{28FDA75D-E672-451D-BB7F-5BC80CD7357E}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{29DE6587-E381-456B-9E40-7F6565DED579}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{2B35555D-E49C-4FD8-A0F5-8669AA7D017C}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{2B7D781F-14C0-4692-A2A4-8CD9BDF84B39}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{2BD89F96-D474-4A3D-ACB8-B06062375072}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{2C6C3081-AE73-40F2-B81B-D72194F39C7A}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{2CC666C1-1FF7-47CD-A745-854BD82A6F0D}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{2CE5326C-9807-4678-977E-F55407F58E71}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{2CEB7B8C-8232-42B9-8B41-30E22004FC79}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{2D08C218-3B05-49AE-9DC6-710E1893FCE4}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{2D093B23-E8AD-473B-927D-C8FF68CD59A1}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{2D1FB05D-6230-41F7-A93C-615307FDE191}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{2D3E63D8-D153-469C-9EE2-B387B1E12CF5}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{2D9C81CD-8692-4518-B490-BA52681CBDBC}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{2DD29410-7C21-4656-98D6-CDC77E05A9CB}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{2DDB8F77-7914-495E-BFB3-80803B660C3C}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{2E1B2868-FB6E-494F-B4FB-C2868201D7DD}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{2E651505-B7C1-4993-A814-83E160244342}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{2EEFEE1A-F644-43A9-A771-FC245B4CC810}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{2F16B2EA-D5A9-4324-8E96-B7A24CFB7B06}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{2F290823-1813-4503-8685-01135449E4A2}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{2FD198E9-0547-44BD-A2BF-7652C36B36CD}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{30509C45-9C76-4478-ADD2-0F3EA7D43061}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{3104F859-4AD6-44AE-A387-F448ED0A643E}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{3179797A-871B-4F49-B083-B399BBB68002}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{31AA1F1C-22BA-4696-BB0B-67F879AC4572}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{31D29B0B-B0E2-4BB3-AA61-F2879A3A28C8}" = lport=138 | protocol=17 | dir=in | app=system | "{32F73013-45E4-40F4-8C57-FF8C8056FA24}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{32F7A8C7-54D0-44FB-ACA0-5361EA2AAB3A}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{335233ED-E98F-409E-9FC2-028ED50E4B82}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{33656DF0-404D-434D-98C8-49940F0DDC2D}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{33C14BCB-3F47-4EC2-9494-02CFAC87846B}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{33D44F90-5F48-490A-A7ED-EC5B55184D16}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{33D97AB1-905E-4B51-B7FF-DE8302AD1EDC}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{34853F9E-5429-4F3E-AD88-557DC521BAD7}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{34EF35A4-1BD6-49D3-9A9C-F9A74D35B71C}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{3502D1C5-8D4E-48F1-BA4A-8D00FCEA2ABF}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{351865C4-84C7-42C2-9833-0BA180D43744}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{353ACBBA-CE2A-4BA0-B363-67526CA2AAA5}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{353C9D35-3032-4F1E-9819-1F28F6E85CA3}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{3554219E-D85A-4029-BC84-17D7121982CC}" = lport=445 | protocol=6 | dir=in | app=system | "{355883D9-595A-4497-8A96-CB83DAB0ECBC}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{3574980B-A9C6-4157-B962-D540D9C6EE14}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{3695B67B-ED1F-42B4-9A14-81FC6C452D52}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{3728714D-CA3C-41AF-AA64-8A6CDB6D754D}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{3749EA37-CCDC-482B-85F0-738DF25C3CCC}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{37745229-58E3-4316-AD53-404CAC1CBCAD}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{37A05783-6764-4D4B-9CB4-A35746F98A13}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{38CE8508-2925-479B-B05B-01F0EFDA4B14}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{38F5D872-BF30-4D04-95D8-F82311EA9BF3}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{396D1AB5-8FAC-48D8-B45D-A31147BF0C36}" = rport=445 | protocol=6 | dir=out | app=system | "{39F5C2ED-B929-4734-8E35-208769FB20C7}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{3A8D4CF7-F4FC-4D40-8709-5C3C4A2BE32C}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{3A9DDE2F-02DD-45A8-AC74-C609861B18A4}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{3BF92B10-4DA8-42BC-BF40-AAC997A902F1}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{3C2C7D28-A664-4567-930E-09E1B3CC6F82}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{3C534140-DB16-4540-B2CE-5747CECA3E55}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{3C8D635B-844D-466C-9F6D-3CFE19F4F817}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{3C8DC9FD-9C20-498D-A522-AE12332D7362}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{3CF317FE-B70E-4949-A7E9-DE7AFF6A867B}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{3DDF1365-3AB3-47BA-971A-ECCCA3C104F3}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{3DDFDA2C-74AC-4CB4-8860-F1E6C52381FF}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{3DEB833F-6E69-4E12-803F-B52AD9B289AF}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{3E0CA975-450C-4449-829A-6A5C5496BC34}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{3E1E2E84-8268-4BE9-A2E6-2DBAC2F61EE1}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{3E6FED47-9E27-4B23-BF0C-D662AD2E09EE}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{3E9BD3BC-1CEF-45E2-8B4A-DC4BA5FC7188}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{3FDEBD43-3173-4143-A043-D3C51053A523}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{4053F017-94B4-4FE7-9B21-B042B7F1439F}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{409DC988-4190-49A4-86E0-B47CC7146168}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{40A7F819-8891-4945-BDAB-C90854CF143E}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{40B69268-C3A4-43B9-B6E3-6689DC145E44}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{412B00B8-D2CF-4808-9F79-30D59FA68F67}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{42097D47-BEAE-427A-A738-BB110A4B5AC9}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{420F6B57-ED84-47FA-B989-C14D912DB950}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{4246DE9D-5DF9-4AE4-A3F4-C769AAAC4D33}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{426B96BC-C033-45AA-8806-5A0BED4AB216}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{43485A49-B6AA-42D8-843A-6CEA1577ED6E}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{439A2B7E-B844-495E-831D-E6E723614350}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{43B54B52-F758-48B2-8DEA-7AB83920DEC1}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{43CCDFC6-B486-49F8-89AD-86FCABBDC774}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{44680B8A-7149-400E-95FB-94220C6BEB79}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{44B6BFA6-D1A2-4F8C-AB93-D53AEEC2EAFB}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{450533FF-73A1-4D8D-9D86-225695FF8201}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{4580EBB6-B4C1-4DBD-AB94-D7C67E30F86A}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{46043E50-EB1A-4DEB-8BB7-80F5F135360B}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{4689FC82-3EF6-44D7-A273-3381B411116D}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{470D6187-B9FD-4E8F-8AB6-17E76B310BD5}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{476EA4A7-38A1-4B53-A2BA-8FF3568BE280}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{47C1C60F-F284-4801-AC03-F79ABACAAFDF}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{481E5E36-4748-4DA1-9FAA-069900840CF7}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{48691B16-D60B-4560-ABD0-257E5B8274B7}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{48F1A0A7-AC0C-4DCC-869C-5956481F0E22}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{491D4C06-8480-4D49-8A2F-6DB5666C55DB}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{497018C4-DC66-4F91-A3EA-59927EE627D7}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{49A22FF1-4EEA-49DB-BEEB-4871D95E98BD}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{4A07C845-2105-437D-A83E-E41DC509B0C9}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{4A3A74EC-8D1F-4CB4-B55E-FFB8A76E9197}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{4A950DFA-9204-452A-B596-4341C95E55FB}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{4AA79114-C9CB-422F-9515-CA0CBE4B6978}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{4AC128E9-9C43-4693-91DE-2101ECD21710}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{4AD1D266-866B-4493-9A23-167258A120A5}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{4C0A1958-7234-465D-9AD4-24CC065768A0}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{4C186552-1D14-4641-859F-4D3FD818AF03}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{4CA86C46-90E2-41DB-9AED-D4D75E08661D}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{4CAE2A36-6305-41C8-AC22-646B782AF63F}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{4CBB2A98-29C3-4EDF-9CB9-FB080B1B8E17}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{4CD10A35-3603-4900-A265-6867E640EB47}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{4D008138-3E6C-4190-8064-97D310D87DD2}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{4D119A14-B0F2-44EA-976F-7474AE1C6EAF}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{4D13612B-803A-4527-8043-209EB3AA8471}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{4D29B0EA-AAB8-4BD2-BE15-0FEFC551995F}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{4D85138D-070D-4203-886C-69E8E2DD2C24}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{4F22BB14-7678-460C-A9C8-EDEAF2F77747}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{4F38A281-BBD2-4A57-A9E7-A9D3B6DB5FC9}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{4F604A1C-A1ED-4E2B-9D4F-858AF7341D62}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{4FF4426E-0B46-4AE0-B470-3503FE04FF69}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{5003BE34-FCA9-4F25-8A65-EDE562EFA330}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{5014D8B3-D50D-4DAB-B42C-3CFD97CF5FAB}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{5033F62A-626D-46AE-A6F4-9061DF1A44A5}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{504AB430-0340-4C18-8974-2AEFFA29AEDC}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{50545EA0-37B7-436B-A218-CBB1038EDACA}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{5122A620-38A7-43AB-9AA9-B4C982EC4C47}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{513A9B7E-8B66-4C47-BDE4-1153B5177B75}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{513D3CD9-1401-4C4B-B6D3-D1B43A14698C}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{51A87D0B-508B-4AFF-AC85-EF8C4149B2E0}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{520323BD-B2D9-48BC-BE7B-9AEC8F190FC1}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{52A32484-237B-46BC-B19F-645074632433}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{52C926FA-CE62-4342-8171-26F2450C4C2C}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{52FCDE24-0103-4C52-8097-81BD1127AB69}" = rport=139 | protocol=6 | dir=out | app=system | "{5339AC28-B215-4040-9C04-8E4D7B351D9C}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{535E2A4F-360D-4453-9F90-3DC4F4F0F7E8}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{53C388D9-65E1-4C49-A5FA-3DAA39551188}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{53C4E88A-1955-4B60-9186-2FA98C9F23C8}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{5487911A-B5D9-4814-A0A4-7E624BD47610}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{55517BC1-9A42-49CA-AC75-77380DB135ED}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{5569F57E-9C32-4850-AC31-645DB195086B}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{55BC8085-E0F3-4165-A439-A17323840A5C}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{56587363-BF53-4516-B177-6CC2801B6933}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{5710E7FA-ACA2-49C9-9298-13C7D9222456}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{57D6F2DC-2EF7-49A7-8988-D5382A903C0B}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{5812A8C2-EBEB-4832-8D56-AC1B299413B7}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{58ADE4E5-EB11-4E33-8376-36E04FD0FC6F}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{58AE4E84-1227-4330-B01B-2BF082B16C40}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{58E96838-D2C2-4648-AEAE-EF284DB390C5}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{590F650B-F520-4853-8AA8-9A2405550A78}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{59BD9296-0BA9-4BA2-AB61-C7B21036D603}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{59D74FF3-0DBC-45FB-9D63-D4414EBF4169}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{5A037DA4-6E5A-413C-A3FC-6AF7159620C0}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{5AD65698-38BF-4164-87F9-9E313D3C51AE}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{5AE3AB7D-EB03-45B9-B203-3E868756071D}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{5AF4B529-CAF1-46CC-BBB4-1DE8AD057BFD}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{5B0C59EC-0B5B-429D-BEC3-A335D2FAC96F}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{5CEE4619-66C0-4ABA-B268-57B9B861746D}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{5D007342-3FC6-4CD2-97CE-C7E02C45D124}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{5E1D0B43-C6EA-45A7-A544-E646196281A6}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{5E60B1F9-D55A-4669-B8A9-0CF6CD41C403}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{5EC26B22-14F7-45C8-BB0C-45420D9025B8}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{5EC86BE7-7107-43F5-BA3B-760EEB6B5B1F}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{5FC61DC2-BFCC-4129-BAF6-DA621D81FFB8}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{5FCBBC58-651C-44D5-ABE9-88A33B668BE5}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{612DAE67-60C8-4592-894D-9EB4521C9234}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{61339483-88A5-483B-BD6C-33AC77EB778B}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{613F1B38-3A81-42C1-8C51-91A8050B2446}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{61D9A6BF-53EE-48E6-BCFA-1DF5FA8B54CD}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{6241AFFA-B4F5-45ED-8A25-826FE9045690}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{62497133-6437-414F-AF89-BFB4A1FB7BED}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{62C041F9-FE0A-4C64-BF74-8404AC60A78B}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{62ED2EEB-B2A5-40FD-94B0-36CA29F822BD}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{62F3E35A-EB45-4207-B9A2-1ADDE0ECF27B}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{62FC179F-C338-4B1A-9156-BB3EF8CC0729}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{630C7F41-88C6-4A3E-AED5-277363911A1C}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{64145612-1A92-4345-96DA-50945AAF0B8A}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{649E86F0-5D0C-4CA2-B023-3244BD470147}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{64AA066B-CB5A-4345-97F4-C6AFDCC0E4C8}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{64EB1B27-FE0F-40C1-882C-44080C888981}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{64FBC5E8-3D33-4FBC-BB31-DCC5D09F471A}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{651C0EC6-E76A-4595-AC0C-56D3E883A086}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{653975ED-0F2F-4CDA-92D2-64A6EF126A55}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{653989AC-2A6A-4B7B-802F-3427C216A16E}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{6581F59B-BB11-4B77-B842-46A83EADA629}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{658D1BCB-12F3-4FE7-96F9-19435C18AEC6}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{65973B43-9E14-4A40-98C2-79468B63B7BB}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{6646E9EF-D152-4B29-B7F0-B7AA05713002}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{66513445-B25F-4E59-809C-B058BE85DDAA}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{66E34C23-2CCC-46D1-BC8F-B9DDC270F239}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{66FFD970-FAA3-4AEA-896B-540CED03DE1B}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{6757ECDD-F9B3-4F8D-8F63-20DC1F5DD389}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{688AB327-768E-4B19-85DA-81EE11FA9096}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{68B4FB25-CD28-42BE-BF07-8745B25292E1}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{68FAA1AB-0C08-49B4-A6D8-72FE3E58636A}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{690306D4-5F4B-42AA-B654-C3E5B46A464D}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{69A7D1EB-872B-48AE-B4D2-99F9AC04C534}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{69B6ED3A-EC4C-44BD-AAF4-4E63161FF898}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{69F8078F-2329-4D36-860F-838FE5A2D0FB}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{6A0B3BCA-1D49-4F6A-A634-874381FEFD9D}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{6A1B2DCC-EF58-4853-95A9-48A7536B721C}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{6A87B494-58C7-46BD-B854-C4086CDD1664}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{6ADA9910-486C-449E-BB45-8F47543B5B23}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{6AF48F0C-B5EF-48DA-A7F4-D8A1C279994A}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{6BCE6933-6E0E-48EA-8D86-7467EE53F9AC}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{6BF50452-0ACD-479C-94DE-13AD7782C1E7}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{6C47BA7C-A12A-47BB-9560-E27B90A346A2}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{6CD365AE-F1BA-4499-BB46-77ED5EEE3B39}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{6CE53854-40BC-413D-9135-51C554B4CD34}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{6D0BBCF9-71E5-428A-A09A-86791D527DD2}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{6D9C0CFB-E9EC-40CA-A90F-371D262722F5}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{6DD6E977-2C54-48F9-B1E0-E2CE142515ED}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{6EE66CF3-463D-4D3C-9635-78B3C7280871}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{6F0005DB-379F-4874-B700-AE241FEE0C9F}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{70A0E875-7025-4231-96CC-1AA74C2E4E44}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{70F2068F-999A-4F97-9518-C99CFFDFEB2B}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{712A37F0-A876-4FC0-9A6E-2B5D2EDF7C96}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{71632B2A-A2AB-44F5-A3BB-21B530DA1BCD}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{718C9AC1-9C30-4886-8F6F-887705883386}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{724F7532-8E5F-415B-9C75-D1D2AA46D308}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{72EECF1D-060A-4FD9-B00B-964860D4F63C}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{72FAF5E2-55DB-46A6-94E3-C049238BCB6A}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{7372CC04-068D-43E3-A83C-1E267CA43368}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{73DD5A2E-2CC6-4256-A505-D94D44E63F2A}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{748540D6-2D66-46B5-8A80-4BB65FDBE5A3}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{74957918-8888-492E-B403-DE121D2B9CAD}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{74F103E1-B889-4E55-A4EB-28D837B0D3CD}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{756253A1-B522-455C-80C4-FC93C36FCBE2}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{758D24AF-440F-496E-98F9-F6C3EA580576}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{75D382CD-1DD7-4DEC-9803-C49A3CBED8B5}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{75F0C1F7-EB67-403D-8140-59BEFED7A386}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{7620DD03-2008-4851-A18E-F13FCCBFBFD2}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{76A4FC5F-A9A5-4CBD-A7B2-7AAA40993D0E}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{76B96964-A73C-45D9-9C41-32CCE81180CD}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{77244B86-F549-4F41-A248-4E52E110D40A}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{77C5DB15-246B-4978-9535-E2871BADC9BA}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{78EE1D0D-E302-4547-ABB5-976D6516FAB5}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{7A00D7D2-E2F5-4F16-80BA-52301C0F66D8}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{7A0BDE08-55AD-428B-A2D9-DF310E402328}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{7A5AF58A-C71F-43BB-9BEA-4BEAD938C3B3}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{7A826FEB-B264-4C10-88E3-C21FD2703FEF}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{7AE21660-E2D8-4D03-B3A5-1503785EB671}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{7AE3678F-BDF4-48C6-B4E0-AA1F306A8317}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{7B1ED146-BEEB-4DFB-9220-0B5148478722}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{7CAC5A9A-AE33-4ED0-954A-11A81F64F182}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{7CC8E845-FFAD-466C-9DB5-510EEEEAF367}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{7D2F3C6B-0E7F-498B-A8AE-86D2CD4D9AD7}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{7D6D803B-E846-445E-8156-3169EF527325}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{7D83FA31-7F8B-4BB1-BC06-14336BB7E743}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{7DA6BBB5-68D8-44B9-A855-70DC60B9D7C9}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{7DA8833C-A995-4E1E-A100-A7300AD9D056}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{7DA9139D-C8CF-4DB2-93B4-C4C0E01BE8D3}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{7DC83E4F-617C-4E42-A8CD-7FCED4B20FD1}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{7E28C58D-5753-4245-8A2A-6693DD9D88CE}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{7E36D793-02AA-4183-8AAA-AA5D9C16DD0C}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{7E632F0D-CDE2-43DE-8B6D-8EFB0CD59FEC}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{7ED46371-9A6B-4BB3-85D8-941535EC7E38}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{7F775A00-281E-4C74-8F2B-972185E23AB4}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{7F9357AB-2335-4B33-9DB2-271F3CF0480D}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{7FE7C1F4-6414-4345-8273-1DE87CAB7C74}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{8074CD6C-C419-4112-839D-EE3D789654D1}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{815AC4EB-B8A8-46BF-98AE-529A4C40690C}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{8212D91E-799A-46C7-BADC-F2B811F7C25D}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{83E1020D-D907-49CB-90E0-920FE468E02D}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{8408A022-104C-4598-A27C-F1A6B67673B5}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{841E06C5-1AA1-4988-8486-3DADC97F2231}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{8442D798-3C79-4BA3-8560-BF49928A7756}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{84673766-713C-448F-B581-E8F65866DB3A}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{84F99761-6925-4FFE-BA28-98A358301009}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{857E2F05-A76B-4665-95DA-66E1B52A6151}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{861041A1-9DF5-4B14-8BFE-FB28ACA61E6D}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{8619A646-0E6F-4878-802A-B98E392CA93D}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{8620D8EF-6AE0-42AA-9A8E-7348EE825CE7}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{865AC08D-CD36-4EC6-86A1-5762977A44D5}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{872D2B06-32DE-4815-A94F-76E7BD282F71}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{87F5B80C-55A4-4E5E-B1CB-69579877E678}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{89634B2E-0ACF-498F-9E17-DF289F818032}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{8970BFD7-065C-4CAD-86F9-535C6A9A37D8}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{89AD88F0-C720-4BBA-8D77-98ADA5BC5E33}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{89DBE95A-E00A-4C0A-938A-E0584FDD1E91}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{89FF2D23-5BA1-45A5-961C-552E8EF1DA37}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{8A325B76-28AC-42A9-819E-91FBE0F96B40}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{8AB0E8EE-9AA2-43D3-89D3-76C7B844BB5F}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{8ABE277C-7DBF-498C-9F20-C7A9676A9CAA}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{8AF7D9A0-0DBF-42B9-B449-31AB976C3A97}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{8B255656-75B5-40F3-A4E4-4813B7CF7359}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{8B3A6B9F-29FB-4EF8-BE6D-4FE2199C5579}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{8B585CDF-98BA-4BA6-BD3F-4E2FCDFD9AD3}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{8B5FF18B-1250-43A5-BFF2-212EE3F94D40}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{8BCF8553-402A-43E6-9DFC-8E5ABBA87DD2}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{8E2052AE-5315-4877-9A5A-50290BEE8906}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{8E78EA4F-A599-4EB7-A575-BE6EA82998E1}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{8F036CA5-5907-4E66-962E-47CF5274329E}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{8FBD70AE-9853-4C9B-855E-4D3ED90E26E5}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{902CC5F0-89B8-49FF-8CDA-71448CFE48AD}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{9075DC04-B31C-4004-A025-7BD73ABB0EC7}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{90ECB70A-70D6-4F65-B7F8-768FE07A7EFB}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{91010DE1-B1CB-4E25-95FD-20EE81D6BEA0}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{9114C4CF-40B1-40E3-B652-D53E748B2082}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{91623429-B5DE-46D1-94B6-BCBB369ACC62}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{91A1300A-3AE2-4F5E-B1FF-31459271CAC5}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{91C9DAE8-78EB-4FC9-B6AA-C03C039ADA6E}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{9262D9F5-011D-48BD-8E11-9B1C51AE990D}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{92E48AC0-ACE5-4BD9-8818-209B396D45A5}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{92FF13B4-54B5-443D-BB70-64944F1CC1AC}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{930B5D86-F2E7-4661-98A3-509F8DC5273F}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{937AFA6B-A3AD-40F1-B034-79EFF0F4F025}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{951F0AE8-3999-414F-B07B-AF07FF2A7D4A}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{9534D0D0-F7F5-4831-A540-561CDCEEC9D8}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{966DA095-F132-4621-96DE-87B43D1CF78F}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{96DBEE2D-30A6-40EB-86B8-21113489D25D}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{96F73752-1B74-43A7-B255-A7E1B0D7C311}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{9735B281-EB20-4ACB-9DA2-1FA468F5025E}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{97742B77-D15A-494D-9C8B-0413CA397042}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{978B2FEA-3761-4F0B-86E6-E6ADD51A45E5}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{979667B8-42A8-4D96-8CD9-8A14C5C56AE6}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{97969A60-976F-4787-BB1C-253A4306C626}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{97E5D428-4124-45BE-B914-4EC70EE55272}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{980920E2-623C-4F55-B238-DC6EAB5E8419}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{9835F325-48FC-4AA4-8125-925F643371B5}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{98642198-80D8-430D-8ED2-6C5A0F0987EE}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{9868DDEB-D03A-4598-ABCA-EF8EE3F1C1E0}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{98E37D0D-9DD6-407C-9025-1D7D4427FE77}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{98ED4099-C0B5-494A-BA9C-B42F007E5ABA}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{9918285A-7576-415E-ADED-990C29358AD5}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{9950888B-8C4C-4B5D-AF7A-A6E577174660}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{99591AE5-E770-4A27-8762-28EF7682EBC7}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{995BCCE4-8C80-4C2A-8900-108C708AD7AF}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{99CA5B83-7AC2-4D38-81A3-D3C75CCDDA16}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{9A46D86A-2376-4949-990C-DA923CD2A284}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{9A53D9ED-2A77-44D0-B5C2-C715B0C642D2}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{9A8D6092-1C21-45E6-9B8D-17FFC3797C06}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{9A96CCEB-537D-413A-A368-6CF6D6EE74B1}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{9B05401E-A6B6-4334-8067-A2EDB9E92855}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{9B3B38AC-545E-4D7F-A4E8-123A03EFCAD0}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{9B58E0E0-ED98-453F-93A4-C8E915F23300}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{9B8CD4D9-53E8-42F6-BBFE-3F7C22B3E371}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{9BDC1228-7897-4301-B51E-B70CAB8E2743}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{9C0C1170-6A5F-4060-A971-B0EE7B3946E0}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{9C6FE1F1-EA13-4F85-A835-24DC0FE3BC76}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{9C82859C-95D1-450A-A43D-FFA843029344}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{9CC59168-C5C6-408D-8806-C1E9D2197F30}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{9D160F8B-B08A-4FD7-9F2E-354552AB25A4}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{9D2B4D9B-8A63-40B0-BE30-046F69FF507B}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{9D9BDDBC-47BB-4AB2-86D6-2D6DF315BB40}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{9E2853A1-8337-4BA5-9E2C-E9FDDA94F8CA}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{9E7B3D0D-8073-4017-9D0A-805C4D20E876}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{9EA7164E-A152-48C7-B6DD-667386A183AA}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{9EF88EF6-7837-4E59-8F28-16E5AA787472}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{9F23A77C-2BB8-467C-8704-28779B9DDB84}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{9F675812-E4B1-4A9A-A331-D97D53F00B35}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{9F985EEB-184E-47CC-848D-F2E4CAD77DA1}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{9FF9BE6C-FAB2-45D4-9585-832D942618BB}" = lport=2869 | protocol=6 | dir=in | app=system | "{A039F40E-22AC-4F55-AB89-C68EC558C05E}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{A1052F45-EF2C-4114-8405-FB5AA06979C9}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{A158ACAC-A6EA-4E9A-A8F4-0808F1BA5261}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{A191E7E1-3A9A-4D61-9468-9099D09BE00F}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{A20B2E5A-9C9A-4367-983A-8D30B1A24E64}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{A23ED105-9B36-47EC-9EF3-7B9F5926E6DB}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{A28DE1E1-D562-45F2-8F80-18674656355E}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{A2F7F288-850D-486F-AAB5-A81023628CB2}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{A387699D-26FE-41FD-965B-4723128552B8}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{A3EBEF0E-A2A6-4062-8769-52D8E3A9CDFF}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{A46962FC-A25C-48D1-BFE3-937730976855}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{A4F5C28B-070D-440D-8B97-3D341BF7BBC1}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{A5005CAE-EBAC-4478-8561-FD3F32E78227}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{A564B56D-ED59-446D-A9CE-2528CC0871C9}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{A5B7FD7C-62FE-4472-8A50-9F040364C32E}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{A60CF9DF-32BA-457B-8A04-DD7CE651CDA0}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{A6A4FAE3-A1BE-4A11-95A3-C9C3E918A51F}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{A6BECA1C-CD82-459E-A65F-ECF305847CF6}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{A6D8645A-343F-4D06-8C99-D61593A0A21B}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{A6E9F512-FFF2-490E-BD81-E874EB7A31D8}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{A73089B8-818E-4B3D-86EA-FBB9008BB9E0}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{A755B4E6-506E-4A07-BA34-C5A49CF44D69}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{A79B7B44-6BCB-422D-9F88-A13C03DB79C9}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{A7E09142-9C30-471B-9F10-2DE8E281EF88}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{A820F4DC-E687-4D9B-859D-9EEAB138D147}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{A823C4FE-E02A-4FFE-8062-7828857A6B09}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{A88DD2A1-D60B-484B-B884-2FE6355B7BEB}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{A8DEA2B1-37CA-468C-A048-A27EEE1E141A}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{AAA45710-DFC3-47B1-9E1B-70758AD2C2B3}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{AAC2EB51-4320-46D8-942E-86D94D709ECE}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{AB11D4ED-AF45-4CD5-8388-C9B51D755612}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{ABBB5319-FF60-4EC1-B357-1BE08BE2B83B}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{ABF46D8B-BD6F-4C06-927F-080A3DDF5808}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{AC309D84-2B24-4F66-813E-1611DB41B983}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{AC60A930-2782-401B-806F-0616B2F8A78F}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{ACEB663C-1E06-44CC-B7D5-77A63FF026A4}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{AD9FE413-D1FF-4F29-A487-55567B3A9B93}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{ADF266E9-B87E-4BF0-8CF7-54589F299962}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{AE1D2F7E-F4EB-4FC9-BCD9-208BC43C2DBC}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{AE6C15B6-6410-4E60-81C9-368982F6D57E}" = lport=10243 | protocol=6 | dir=in | app=system | "{AEA6B50A-1DEA-4DA8-8EA0-19BF05BDAA26}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{AEF9DF37-1FD3-474D-B23C-A8C33F2021DB}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{AF079BD2-012B-4161-86F3-CB4E27AA411A}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{AF0CCF25-4968-464C-ACF8-D22D99018BED}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{AFB89F31-04E1-4A82-B28C-C8E41D901ED4}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{AFC44835-F71F-452C-9B60-A8139699CA0F}" = lport=6004 | protocol=17 | dir=in | app=c:\program files\microsoft office\office12\outlook.exe | "{B012EE56-612B-44C2-B3B7-96A155471928}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{B049EFB3-D63A-4799-965D-0CF0C28C2E61}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{B06305AC-8B36-4040-A102-0CDB394FF011}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{B0C9050D-A734-4DE7-BB4B-A7BF46C2F1BA}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{B12EEAF0-BCD2-46E1-9DA7-F0D5C6154AEB}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{B1D567E0-6720-48A7-8BD5-385B7EFBEFBE}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{B225ECC1-AF12-46A2-803F-5C62630A1561}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{B24AF26D-735C-4BF7-AF87-8BADFB2525FE}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{B27A7F31-B580-4A6E-92FC-5A5C7B301546}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{B3308C22-4E80-4C9A-BD3C-A2B600CAF26C}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{B453F63E-26B7-49F7-9CD8-B24A03904D1D}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{B4A4AFDC-CC64-45F7-A634-AB1AFD8CC1D6}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{B52035E6-0F72-45F7-9A4A-77C55CC7147F}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{B5562552-4AE1-4E06-A5FC-DB7B1DD44D4E}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{B5641C50-6CCB-4E6D-AD01-1DC005DB02CD}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{B57B6F4D-E940-4A3B-89B1-F139FE71EB74}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{B58AF452-400C-4E99-9C9A-6863DA6B6D5D}" = lport=139 | protocol=6 | dir=in | app=system | "{B59688CA-0E6D-49A0-B793-235D5A646153}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{B5D6BD6D-2C46-413C-85A5-7DB6AC086023}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{B60B9E81-5BC7-49B3-97D1-A5D4DECEA62C}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{B6833D21-423B-4556-8472-DA0C2D1B7BCC}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{B69A90AA-51A6-4816-BDF5-4936881FA39B}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{B6F779DC-8608-4228-9A6F-412B771F6A73}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{B736EAFA-175B-49D2-95CA-2309CF4B65F9}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{B7E7D0C6-E93C-4E51-83D8-E1297BBB161B}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{B8671FAB-69E6-4F2E-BDF8-3E0ED8A78914}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{B93357E2-398E-4A9F-AEC8-B27F7D3D9046}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{B9C141F8-7689-4A61-875C-A11F2042655A}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{B9D2664D-FEF4-44A2-A100-A26B20484D20}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{BA09918A-5D2E-431F-915F-021C3BEFF4C3}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{BA09B228-8F5A-458D-AD84-FB24D7CBEC64}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{BA393F64-4CA2-45AE-9BFF-DC535F8EF466}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{BABA29F5-2F36-42D7-BF90-0E75050A7766}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{BADA1332-6E60-4DC0-AFF5-ECD58A5BFAAF}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{BB16B192-C3AB-4318-A109-F897F9F6756C}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{BB5B0B2C-EB73-4D4C-A34D-CAD3E9862607}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{BBDE5617-1E23-42CF-843D-0A1C2A4D6FB6}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{BC0F0F1C-427E-4697-836E-B78F4D12A1B0}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{BC6D90E3-8B5C-4E07-B9A0-A2442EFC3C4B}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{BD274A6B-4E49-4D9D-BCB3-9E6ACC72CEA2}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{BD3B07C5-E9DD-43C2-915E-7132962AA7A0}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{BDA07677-C6BE-424E-91B4-9C15EC9112AA}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{BE213495-7A68-4EC4-AC6A-9D3791A9A6BB}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{BE33844D-1527-4F45-BE0D-E00B2078C265}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{BEB788B0-4E38-4286-8C54-15EAC0A0BA72}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{BEC6A832-C942-41D6-BF81-BF0F6FD97E55}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{BF426AF9-27A3-4D73-9E3D-D6DBA28884C9}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{BF9AC1F9-6C3B-4486-A076-38C9E03003E4}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{BFEC0313-1F3D-48E0-B51E-6D0C9C046085}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{C00C691A-8337-4F10-8B51-744E1EF53F7B}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{C0C675C7-FAA0-4774-9551-1EF17F19CEA3}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{C0EEE01D-B532-4463-89AE-F61E77B72836}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{C119435F-36D6-4436-A109-0FB032AF9A85}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{C18D8D7B-A03F-44FB-89CA-BD3F5BE42E3E}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{C273FB29-BAC5-428C-854F-837B2B019C9F}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{C338A908-F655-4759-B2CE-041ADA1DAA01}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{C3444F51-0888-4A4C-9219-55875CBEB88A}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{C39C6202-D518-4E4F-A369-396101A3C517}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{C42EFD00-D3AB-4C16-9054-567C25936143}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{C5410E48-AF18-4655-9D62-750A7AE37826}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{C618A464-F230-4187-BBAC-FD0F12205EE0}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{C804C4A6-284C-4E99-84DF-56DBA73023DD}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{C864C2A8-D93A-4A60-AD79-8BAD0A440EE7}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{CA2569D6-6295-40B4-8400-CB4828030A75}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{CA9BE4AB-9681-4C2E-9391-5F624F3721DC}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{CAE0DD31-75CD-4957-8F87-5F2828F64F7A}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{CB1B3883-102F-4DDC-8594-73BDD6432563}" = rport=137 | protocol=17 | dir=out | app=system | "{CB9F1FC1-1BCB-479E-8A0D-6835E97DC7BB}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{CC958E5E-CEB5-4707-ABC1-4DE743A10F6C}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{CCA35118-4974-4223-84E9-49A740C5C7D9}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{CD00D27E-9D11-46E0-98EC-B06910DF134A}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{CDF2D7C3-08A8-431A-8DD9-01E6E723CBD9}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{CDFAC740-0CF9-46A0-9AEE-9486538D2C02}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{CE4447F5-1A90-44F0-B143-0790106C6DD3}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{CE558D1B-BCA7-47F9-8971-0000D4E58533}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{CEB8582E-07A3-413C-85A6-7F3FE77E05E6}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{CEBD02C3-B68A-4B18-B99C-4CF3C377623C}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{CEBFB420-72DC-48AE-BD6C-E6D06C40090F}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{CF12F7DA-CF6E-487D-BAD4-3149AAA42B7A}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{CF68DCA5-BC25-47F1-8190-6875BDFC7213}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{CF8FF475-FEB0-487A-AA21-5662C96C099E}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{CFD93883-13E5-4B4E-AE3F-98DB32B60370}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{CFEB5892-81E9-4CCA-826C-737771A274B0}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{D027F68A-33B4-4B1D-B470-9AFEA6D44799}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{D0CD8A3E-672A-40CA-BD96-A30D73861071}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{D1B7B606-0802-425D-B4D0-631775919408}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{D1D4CE12-0AAC-4527-8414-B56563888583}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{D1DC8E31-DFF2-487D-B048-6D6923F45E0D}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{D1F5821F-E0EA-494C-ACC8-B5205C70120C}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{D255846E-AF02-476B-A190-062CCA123DF6}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{D3740032-2AC2-43DA-883C-911B8448C460}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{D4A451C3-C9FC-4A49-BB13-BAAB19B5383A}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{D4CFC5B8-DDF6-4F70-B258-AFCEF0126C26}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{D4FC075C-5CAA-47F0-9C01-18AB9F1F65EB}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{D506A5A5-F3B1-43D4-94EE-DD4AC99D428F}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{D51F87C7-8479-4D05-AB90-EBDD5D82DF66}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{D59E9815-E06C-42B7-897A-93B78FF97AAB}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{D5AC7ACB-BED5-499A-AC59-6E7AC73140F1}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{D5B2B151-5E43-404D-8C4B-D9CFFFDD858B}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{D5B5418F-A581-4F4B-AC50-AC6F8E3EB0C7}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{D5C450CF-E2E3-4D48-B158-6A75AD8AEE8C}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{D5E2288B-DD8D-4111-82DD-C67DD89D8781}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{D699371B-FCA0-459B-968D-61AA55146855}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{D74DE2BD-5B9E-4D1C-B039-67B8141409D5}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{D850B453-59CC-4D87-B77A-E7D89E045FB0}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{D86F476B-F934-41BA-B3E9-F05AAF5339EF}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{D8949067-472F-44CB-A435-BC8E82DE6E38}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{D8A3BAC1-3412-4F47-8975-90721AC42175}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{D8EC4BBF-F7BF-4AC8-BA71-6FF073312F90}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{D9922A90-6153-47E3-999F-B12BB8E0C9C9}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{D9B5790F-F8A5-400A-B703-CA43FCDBF90B}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{DA088B78-4CED-45E6-AB01-60DC94861613}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{DA58BD2F-B26E-408A-B62D-180FB6A53F85}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{DA62E5D0-DE69-426A-A8D6-8CFCF6A7E555}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{DAC33830-52D4-4DAA-A689-4345F7432182}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{DAC480F9-5A45-4D97-9624-BCFCF09133FE}" = lport=137 | protocol=17 | dir=in | app=system | "{DB2C421D-4AD8-4064-BEB7-BF33511FC376}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{DB326379-5BDA-4AD9-B94C-E3813E7EAAE8}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{DB45ECBB-EB47-45B4-90A0-32F337979266}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{DB7D6901-E5A7-400C-B98A-D58ED27E9D12}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{DBC92907-3789-4CB3-8AB7-4EC17173AF2B}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{DC2FFEEC-A2BB-4477-A8EA-654A4FB9E1E9}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{DD503188-E67A-4502-BEBA-813B9AE39D77}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{DD8D9BDB-3CB1-4C05-BDBA-97A84323852B}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{DDFDEDD4-D1DB-45E8-A265-FD9F3E8D0BA9}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{DF12DB92-404E-41BA-85B4-B95C140F328A}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{DF1F2C7A-8629-4BC5-9B03-9BE684454BEF}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{DF653B82-98C2-48AF-8130-B7D68AC88551}" = rport=10243 | protocol=6 | dir=out | app=system | "{DFACD4B7-304A-402E-BE71-0C4F42BBDB73}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{DFCEB817-2C11-4C2F-95AE-EA1973B0761E}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{E09FD8DC-D911-4E88-8209-0E92C417F62F}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{E0B3290A-B60F-420B-817A-52C0FFD613FD}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{E0E0800F-44DA-40FE-8888-55CC599A9F60}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{E164F76F-A563-40B2-BBB0-DEB3CB772314}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{E1986287-E14F-4E0F-A30E-78D21BF3FF1D}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{E1FEE26F-AD9C-4A0E-A6BD-422F9754E043}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{E20F4AF1-8A37-441F-B7C4-49A9B1B1BDE0}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{E22F812E-5953-47D4-B76F-41F62A1DE8E2}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{E240AA5D-82A3-40F1-A725-630AF0DEA3EF}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{E2467AD5-CE3A-44E9-B392-D6975C4ADFE5}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{E2D9F944-4229-47BD-8B67-87352B74A3BE}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{E2E5C1E7-16CC-4A43-B489-1EC527C4150E}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{E31DE805-8B2E-48C7-BE31-B77E75C22958}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{E333EF81-E477-4484-9E6C-BEFF91A9B208}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{E44FEBB4-A6AC-404D-B452-5AB55268AACA}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{E4D04D5C-A982-4432-B4CE-FF8759BE0AA8}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{E525E90F-4CB3-4246-B8C7-52B263B76E5A}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{E53E2E1A-F677-4C7C-BFF7-D6D5CAEEF656}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{E56502A7-A3F9-4723-A393-D579ADD9FB27}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{E588666F-21AF-43AA-A722-F22B1650F2BF}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{E58BCC17-D7C3-4284-8936-93B469EDFA6A}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{E60F3431-09D2-4070-80C0-1D32E676F494}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{E6BFCCF9-9DB7-4149-8765-E796037E1D92}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{E6E37DAD-899B-4ABB-B2F2-12AE0F2FA83A}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{E79B6CA2-0191-4D1F-9178-0F7231D394C4}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{E85386C8-1B51-455E-AD32-7DD1A3474F81}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{E8BDA533-920A-4A87-8A8F-B93FAD405D2F}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{E8D5EC32-EDC5-46B7-98DF-FD96FFF77590}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{E8F53FF1-E0A4-45C0-B340-6E3F713DC57F}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{E919352C-05C2-4AA7-8965-A3B5FB7FAAA0}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{E92807F8-5E47-493F-A114-35F6B1F3344A}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{E93DDBFA-A6C1-4ED4-A136-B55A8399ACDF}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{E96F8A0D-7DC8-4F78-9D66-FD7E2AE22121}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{E98C17F1-52D4-4A85-9886-F06159C157B9}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{E9DC5711-C326-4F6B-88F1-C2F8DB1063A2}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{EA2E6640-BA43-409F-AC04-398D8F31D061}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{EAAFA162-E0E4-4E79-BBEB-128747B91128}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{EBCBEA0E-039B-4145-A4EB-15B03CF6DD2B}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{EC4A4DC7-E56C-40D1-AA27-E1DBCEEC1AF0}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{EC8F8C38-7D3D-40EF-9F31-0FFE0F9FF5FF}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{ECA930D8-9142-4159-B143-4262CEC79CEB}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{ECD5B1EE-F9A7-488C-BE9B-09C14494FD6B}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{ECDA1ECD-053C-4ECC-AD18-B5590AF40853}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{ED026321-EFB1-4630-83C8-B3F3E8DC1DBC}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{ED28C23E-5AD0-4545-A40B-864C5517F385}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{EDA29A68-A43B-4510-B5EE-9061ED207DFD}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{EDD3DF5E-82DD-4663-97B7-F0E968CA733E}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{EE34650F-6F95-4253-8567-FAA3C4D48781}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{EE867B19-0495-4D7D-B454-5FC2B027DB71}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{EEAD6977-D647-4F24-A8C2-A089CB657938}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{EEAF16F1-E27E-42F2-BAEF-4D5A6D1CF53E}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{EF31105A-3FF5-48F5-BF39-DD39DF919D44}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{EFDA371E-9EB8-407A-9519-ECA968F891B1}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{F02EA6C7-23C8-4CA5-9CF6-2C0053AB7F7C}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{F0BD5EF8-6560-4DF7-AAA7-7A0A900467F2}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{F285CA1C-500B-4002-AD2B-031628CC166D}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{F2BA7109-9EAC-4B13-B951-2748EE57F268}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{F3634E13-F6EF-426A-A2DD-19E3C197D3E9}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{F3D2EFA7-6B24-4897-A514-D74299B96BB1}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{F464B18F-7C84-4704-A0D0-D3703E0778C0}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{F5A04E2A-5588-4243-A478-D99F37C3A0F8}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{F5EB9368-119F-44AE-99F8-3BBFDA4DA18B}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{F6346720-5CAD-4D08-ACDB-8FB1891A2D62}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{F6BB47C4-AA39-4B3C-A6E6-A975FA59207A}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{F843D41A-3D49-44D5-B4BB-FC855A8B9680}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{F85A6FB8-EA43-4F41-8DDF-A2791CC1D1A6}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{F89D45A9-8D46-4C54-A60A-2B9E0C964C92}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{F8AA1E53-439C-42C5-8FB0-0F9E0E4432F6}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{F94EC590-6E3F-42CF-8831-8909DFF44313}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{F96E1C5C-44C3-43B2-BFAE-263828AB274F}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{F9E44521-1EFF-40AC-B9A8-915D56533A90}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{F9E78291-6EC8-410A-8667-1579EC03C3FC}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{F9FADCC6-1DCC-431D-AC1C-7EB5438F4AD9}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{FAE21D17-3BFE-4B88-835D-9C828AC3C7F0}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{FAFEE53D-069E-4462-AC63-67D901972A51}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{FB48B5B0-B71E-4229-AFBB-6DD9E0CCD61B}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{FB5B2E7C-5DC3-4288-B23D-450B03D279CC}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{FB636D33-3D98-4A15-93EF-88505942BBDF}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{FB9EE341-26D1-47C8-822C-34E9C9A42CE5}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{FC0BD604-AE01-4B88-88D7-7EE068400849}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{FC429362-E093-4865-90DC-EC9FF277906F}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{FC47373E-EE3B-401C-900F-467784A70A4A}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{FCAF0496-FFF0-4AF2-8E03-9102710726EF}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{FCCE0F9A-2968-4F49-9D15-6E9FCD62215B}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{FCD1D731-DF7B-4CF7-AA4D-FC4ED858487F}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{FCE6D6AC-6153-4A99-ACA9-C1B09633DD1F}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{FD1AD29F-CA5B-4217-8730-243A1C8B0A37}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{FDB372E3-E0A8-457C-8B23-F10C5B39F28E}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{FDB8EC31-B2F4-4597-B805-0983CD82FF47}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{FE2BDEC7-4C22-41B6-B4FF-E8CA03136F60}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{FE409A45-DC84-4305-8F60-FFAB4F66F63A}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{FEBCD795-3745-4087-BCA2-EF7ABBF408A4}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | "{FFD2BE21-A921-45BE-AD48-50C226BFBEC9}" = lport=4000 | protocol=6 | dir=out | app=c:\program files\dll-files.com fixer\dllfixer.exe | ========== Vista Active Application Exception List ========== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{1480BFE9-530C-402E-8336-F7C15201DE85}" = protocol=6 | dir=in | app=e:\pes11\rsc patch.exe | "{1A732AA5-D482-46B9-9666-D960ED749B22}" = protocol=17 | dir=in | app=c:\program files\opera\opera.exe | "{1B361DFE-3B24-408D-9D7E-FD32DC1DCCCC}" = protocol=6 | dir=out | app=system | "{1FB5FC97-8019-442A-BDDB-E7F716184B31}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office12\groove.exe | "{2A06A5A1-6EB3-4980-A07C-41AE96B3D7F7}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{2AE9E209-89FE-4DE5-84B7-03758E33A288}" = protocol=17 | dir=in | app=e:\pes11\ekstraklasa patch 2011.exe | "{334D8023-3EC3-41F4-ADC2-E276619E67DA}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{39BEADAE-5E4F-4277-9FB6-D8BF812E14F2}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{3A321D81-9131-4AFD-8ADF-E0F6F71C589B}" = protocol=6 | dir=in | app=c:\program files\opera\opera.exe | "{3D7C946E-A356-438F-B7A4-412DBBC96DF6}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe | "{40EECAD1-ECFA-4F9F-A0A4-81F09B52B87A}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office12\groove.exe | "{57C05604-2FFF-4094-ADD3-D13AD9CE8CCB}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.1544\agent.exe | "{59F31AF3-9E7A-4B6A-8457-80B08571E97A}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.1544\agent.exe | "{5E7BD811-23D2-4EF5-A986-AFF53F6CB566}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{6052FA56-48DA-406E-A6A7-0B232420B4E9}" = protocol=17 | dir=in | app=e:\pes11\rsc patch.exe | "{62DC2F50-C1D3-491B-98F3-9654EF304B47}" = protocol=6 | dir=in | app=e:\pes11\pes2011.exe | "{66DD9FCF-2E70-4048-B94B-8AA3A6558850}" = protocol=17 | dir=in | app=e:\pes\crack\pes2011.exe | "{6974389D-9A36-4088-B868-221535E5AA38}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{6C0E9E97-C284-45D1-8698-19E66EA71D7E}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{774C63F9-338B-4284-9BE6-8EF433DA36E8}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{7BBFB053-12D7-4F6C-A932-FE8D1313990E}" = dir=in | app=c:\program files\skype\phone\skype.exe | "{7E8F6E11-B41F-4892-AA58-71589516CAF7}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{8098DE36-E655-4BAF-8EC5-C8A21A3F6F00}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{8967BE49-A1B3-4410-B70B-C3AF53F1EE71}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.2045\agent.exe | "{9DBF85E8-ADFE-4085-9842-94ED6F04AB0E}" = protocol=17 | dir=in | app=e:\pes11\pes2011.exe | "{AFABF8B2-8FF6-46CE-A633-DEB778FAF5CC}" = protocol=6 | dir=in | app=e:\pes11\ekstraklasa patch 2011.exe | "{B26EBBBA-B735-4F6E-8B3F-50C501985F96}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{B78D4749-6E34-44AF-9D04-681DF9C46A9A}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{B7E95648-F5B4-4152-BCA6-7E97B76F7E65}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe | "{BD36846E-04A9-4B87-BB34-9B4B211DF148}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{D18D25C7-044A-4B31-A9E7-2A4875C490DB}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{D8A8CBDF-D7C7-443B-AD56-DF8740F9638D}" = protocol=6 | dir=in | app=e:\pes11\ekstraklasa patch 2011.exe | "{DE740218-A1E0-4AE7-8D86-A3FD3CB4751C}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{DFA8BBA2-7661-4B4D-8753-B8CA01B19B75}" = protocol=17 | dir=in | app=e:\pes11\ekstraklasa patch 2011.exe | "{E5083DAF-29C9-4946-881E-879206C2B0D9}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.2045\agent.exe | "{E84FE805-77B8-4040-B78F-E4CB3CE1B577}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{FD47CA3A-7AC6-4E29-A39F-67A5299EE8EC}" = protocol=6 | dir=in | app=e:\pes\crack\pes2011.exe | "TCP Query User{063B74D9-A27C-4F1B-B601-A2738C03533C}E:\heroes2\heroes2w.exe" = protocol=6 | dir=in | app=e:\heroes2\heroes2w.exe | "TCP Query User{0A60D9A1-C838-4655-B2A6-4E8B1B4A13C3}C:\program files\mozilla firefox\plugin-container.exe" = protocol=6 | dir=in | app=c:\program files\mozilla firefox\plugin-container.exe | "TCP Query User{0C19C2D2-6988-4196-8943-D77387FB215E}C:\program files\gadu-gadu 10\gg.exe" = protocol=6 | dir=in | app=c:\program files\gadu-gadu 10\gg.exe | "TCP Query User{12E0FA41-CAC1-40DC-B3C4-CCBCEE51BF85}C:\program files\mozilla firefox\plugin-container.exe" = protocol=6 | dir=in | app=c:\program files\mozilla firefox\plugin-container.exe | "TCP Query User{17D56440-9F3F-432D-882B-8BF439FEED21}C:\program files\winamp\winamp.exe" = protocol=6 | dir=in | app=c:\program files\winamp\winamp.exe | "TCP Query User{17EAB316-1EBA-45AB-BD16-8674F9BCFD41}C:\program files\sopcast\sopcast.exe" = protocol=6 | dir=in | app=c:\program files\sopcast\sopcast.exe | "TCP Query User{5F5960DF-7D70-4BB3-AC38-EDFEAFE50917}E:\ra2\gamemd.exe" = protocol=6 | dir=in | app=e:\ra2\gamemd.exe | "TCP Query User{992160E9-6A1B-46C1-98F5-3811C8740AAB}C:\program files\opera\opera.exe" = protocol=6 | dir=in | app=c:\program files\opera\opera.exe | "TCP Query User{B698CB9F-18E2-4119-951B-C12C8F70B3D6}C:\program files\gadu-gadu 10\gg.exe" = protocol=6 | dir=in | app=c:\program files\gadu-gadu 10\gg.exe | "TCP Query User{DB508B0D-9463-41F6-9441-57C7552DF913}C:\program files\sopcast\sopcast.exe" = protocol=6 | dir=in | app=c:\program files\sopcast\sopcast.exe | "TCP Query User{FE4DFBDE-B911-478B-B7AC-9F79A3E7D518}C:\program files\winamp\winamp.exe" = protocol=6 | dir=in | app=c:\program files\winamp\winamp.exe | "UDP Query User{016B8E5C-9944-48B8-A58B-8E927E41A453}C:\program files\gadu-gadu 10\gg.exe" = protocol=17 | dir=in | app=c:\program files\gadu-gadu 10\gg.exe | "UDP Query User{04EF8A0F-8C52-4610-A6D4-F4D212C4B59F}C:\program files\sopcast\sopcast.exe" = protocol=17 | dir=in | app=c:\program files\sopcast\sopcast.exe | "UDP Query User{3511B054-28C4-497F-909C-0C6AAD3F1DDB}C:\program files\winamp\winamp.exe" = protocol=17 | dir=in | app=c:\program files\winamp\winamp.exe | "UDP Query User{521220CC-A079-47A9-BC1A-B14B3AD948DB}C:\program files\mozilla firefox\plugin-container.exe" = protocol=17 | dir=in | app=c:\program files\mozilla firefox\plugin-container.exe | "UDP Query User{6332D1BD-FEE9-476C-A313-28EE4C7FD140}C:\program files\gadu-gadu 10\gg.exe" = protocol=17 | dir=in | app=c:\program files\gadu-gadu 10\gg.exe | "UDP Query User{6D4C98EC-BB80-4A56-9740-DF7467F1E0AF}C:\program files\sopcast\sopcast.exe" = protocol=17 | dir=in | app=c:\program files\sopcast\sopcast.exe | "UDP Query User{70C395EE-CBCB-415B-B298-7C772B0237C8}E:\heroes2\heroes2w.exe" = protocol=17 | dir=in | app=e:\heroes2\heroes2w.exe | "UDP Query User{95E12AFC-7794-4055-83C5-605DC0CEED86}E:\ra2\gamemd.exe" = protocol=17 | dir=in | app=e:\ra2\gamemd.exe | "UDP Query User{C5A051E8-6717-4532-953D-31B124D62F38}C:\program files\mozilla firefox\plugin-container.exe" = protocol=17 | dir=in | app=c:\program files\mozilla firefox\plugin-container.exe | "UDP Query User{F1B7860F-09F0-4AB6-970D-8DA1CF20D573}C:\program files\winamp\winamp.exe" = protocol=17 | dir=in | app=c:\program files\winamp\winamp.exe | "UDP Query User{F42B3412-1926-415F-898E-0BC8384743B1}C:\program files\opera\opera.exe" = protocol=17 | dir=in | app=c:\program files\opera\opera.exe | ========== HKEY_LOCAL_MACHINE Uninstall List ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{17DB3734-EAB4-4717-954B-C860EE162FBA}" = Video Power "{26050F54-3928-4D9C-849A-C48A9E831E6F}" = ChomikBox "{26A24AE4-039D-4CA4-87B4-2F83217009FF}" = Java 7 Update 10 "{296D8550-CB06-48E4-9A8B-E5034FB64715}" = Command & Conquer™ Red Alert™ 3 "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E}" = Google Earth "{5C82DAE5-6EB0-4374-9254-BE3319BA4E82}" = Skype™ 3.8 "{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}" = Windows Media Player Firefox Plugin "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable "{8527C3D5-BA1D-46E9-88D2-AF25544311A3}" = USB Video Camera "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{90120000-0015-0415-0000-0000000FF1CE}" = Microsoft Office Access MUI (Polish) 2007 "{90120000-0016-0415-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Polish) 2007 "{90120000-0018-0415-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Polish) 2007 "{90120000-0019-0415-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Polish) 2007 "{90120000-001A-0415-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Polish) 2007 "{90120000-001B-0415-0000-0000000FF1CE}" = Microsoft Office Word MUI (Polish) 2007 "{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007 "{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007 "{90120000-001F-0415-0000-0000000FF1CE}" = Microsoft Office Proof (Polish) 2007 "{90120000-002C-0415-0000-0000000FF1CE}" = Microsoft Office Proofing (Polish) 2007 "{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007 "{90120000-0044-0415-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Polish) 2007 "{90120000-006E-0415-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Polish) 2007 "{90120000-00A1-0415-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Polish) 2007 "{90120000-00BA-0415-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Polish) 2007 "{9773450C-E2F3-46C3-9464-1D7EDE5EFB63}" = Pro Evolution Soccer 2011 "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{AC76BA86-7AD7-1033-7B44-AB0000000001}" = Adobe Reader XI "{FBB850CF-999E-44B3-BC11-C96661873BFF}_is1" = Testy na Prawo Jazdy 2012 - kat. C - ver. 5.0 "Adobe Flash Player ActiveX" = Adobe Flash Player 12 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 12 Plugin "BurnAware Free_is1" = BurnAware Free 4.4 "CWK" = CWK (Czasowy Wyłącznik Komputera) "ENTERPRISE" = Microsoft Office Enterprise 2007 "Gadu-Gadu 10" = Gadu-Gadu 10 "Google Chrome" = Google Chrome "Heroes of Might and Magic II" = Heroes of Might and Magic II "iSafe" = YAC "KLiteCodecPack_is1" = K-Lite Codec Pack 7.8.0 (Full) "Mozilla Firefox 27.0.1 (x86 pl)" = Mozilla Firefox 27.0.1 (x86 pl) "Pizza Syndicate" = Pizza Syndicate "SopCast" = SopCast 3.8.2 "SubEdit-Player_is1" = SubEdit-Player "Total Video Converter 3.02_is1" = Total Video Converter 3.02 "VSO Image Resizer_is1" = VSO Image Resizer 1.3.4d "Winamp" = Winamp "WinRAR archiver" = Archiwizator WinRAR ========== HKEY_CURRENT_USER Uninstall List ========== [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] ========== Last 20 Event Log Errors ========== [ Application Events ] Error - 2013-03-29 17:40:21 | Computer Name = Bobrownik | Source = System Restore | ID = 8211 Description = Error - 2013-03-30 05:12:37 | Computer Name = Bobrownik | Source = VSS | ID = 8194 Description = Error - 2013-03-31 12:17:23 | Computer Name = Bobrownik | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: winamp.exe, wersja: 5.5.4.2165, sygnatura czasowa: 0x4896392e Nazwa modułu powodującego błąd: gen_ff.dll, wersja: 0.0.0.0, sygnatura czasowa: 0x489638e6 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x00048347 Identyfikator procesu powodującego błąd: 0xc28 Godzina uruchomienia aplikacji powodującej błąd: 0x01ce2de88b77effa Ścieżka aplikacji powodującej błąd: C:\Program Files\Winamp\winamp.exe Ścieżka modułu powodującego błąd: C:\Program Files\Winamp\Plugins\gen_ff.dll Identyfikator raportu: 77c313c3-9a1e-11e2-9e8c-8221f16b65b7 Error - 2013-04-01 16:10:57 | Computer Name = Bobrownik | Source = VSS | ID = 8194 Description = Error - 2013-04-05 14:30:51 | Computer Name = Bobrownik | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: googleearth.exe, wersja: 7.0.3.8542, sygnatura czasowa: 0x512d6474 Nazwa modułu powodującego błąd: ntdll.dll, wersja: 6.1.7600.16385, sygnatura czasowa: 0x4a5bdadb Kod wyjątku: 0xc0000374 Przesunięcie błędu: 0x000c283b Identyfikator procesu powodującego błąd: 0x1a7c Godzina uruchomienia aplikacji powodującej błąd: 0x01ce322baf3a8f9a Ścieżka aplikacji powodującej błąd: C:\Program Files\Google\Google Earth\client\googleearth.exe Ścieżka modułu powodującego błąd: C:\Windows\SYSTEM32\ntdll.dll Identyfikator raportu: f11efe90-9e1e-11e2-947f-fb31f9d5f180 Error - 2013-04-07 17:28:57 | Computer Name = Bobrownik | Source = Application Hang | ID = 1002 Description = Program winamp.exe w wersji 5.5.4.2165 zatrzymał interakcję z systemem Windows i został zamknięty. Aby zobaczyć, czy jest dostępnych więcej informacji dotyczących tego problemu, sprawdź historię problemu w panelu sterowania Centrum akcji. Identyfikator procesu: e40 Godzina rozpoczęcia: 01ce33662fff4a37 Godzina zakończenia: 23 Ścieżka aplikacji: C:\Program Files\Winamp\winamp.exe Identyfikator raportu: 26731764-9fca-11e2-97fe-a5cda3e7fbba Error - 2013-04-13 15:42:12 | Computer Name = Bobrownik | Source = Google Update | ID = 20 Description = Error - 2013-04-13 15:48:37 | Computer Name = Bobrownik | Source = VSS | ID = 8194 Description = Error - 2013-04-20 10:28:21 | Computer Name = Bobrownik | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: firefox.exe, wersja: 20.0.1.4847, sygnatura czasowa: 0x51650aee Nazwa modułu powodującego błąd: xul.dll, wersja: 20.0.1.4847, sygnatura czasowa: 0x51650a09 Kod wyjątku: 0xc0000005 Przesunięcie błędu: 0x000b10e8 Identyfikator procesu powodującego błąd: 0x8ac Godzina uruchomienia aplikacji powodującej błąd: 0x01ce3dd05dd45606 Ścieżka aplikacji powodującej błąd: C:\Program Files\Mozilla Firefox\firefox.exe Ścieżka modułu powodującego błąd: C:\Program Files\Mozilla Firefox\xul.dll Identyfikator raportu: 8cd3b5e3-a9c6-11e2-ab5a-836cee5131bc Error - 2013-04-21 15:43:44 | Computer Name = Bobrownik | Source = Application Hang | ID = 1002 Description = Program firefox.exe w wersji 20.0.1.4847 zatrzymał interakcję z systemem Windows i został zamknięty. Aby zobaczyć, czy jest dostępnych więcej informacji dotyczących tego problemu, sprawdź historię problemu w panelu sterowania Centrum akcji. Identyfikator procesu: f8c Godzina rozpoczęcia: 01ce3e688af9746f Godzina zakończenia: 693 Ścieżka aplikacji: c:\program files\mozilla firefox\firefox.exe Identyfikator raportu: c34c35fd-aabb-11e2-9f98-bfe55c7f1dbb [ System Events ] Error - 2014-02-18 07:14:02 | Computer Name = Bobrownik | Source = Disk | ID = 262151 Description = W urządzeniu \Device\Harddisk0\DR0 wystąpił zły blok. Error - 2014-02-18 07:14:05 | Computer Name = Bobrownik | Source = Disk | ID = 262151 Description = W urządzeniu \Device\Harddisk0\DR0 wystąpił zły blok. Error - 2014-02-18 13:00:15 | Computer Name = Bobrownik | Source = volsnap | ID = 393252 Description = Wykonywanie kopii w tle woluminu C: zostało przerwane, ponieważ nie można powiększyć magazynu kopii w tle z powodu limitu wprowadzonego przez użytkownika. Error - 2014-02-19 07:55:10 | Computer Name = Bobrownik | Source = Disk | ID = 262151 Description = W urządzeniu \Device\Harddisk0\DR0 wystąpił zły blok. Error - 2014-02-19 07:55:14 | Computer Name = Bobrownik | Source = Disk | ID = 262151 Description = W urządzeniu \Device\Harddisk0\DR0 wystąpił zły blok. Error - 2014-02-20 08:29:03 | Computer Name = Bobrownik | Source = volsnap | ID = 393252 Description = Wykonywanie kopii w tle woluminu C: zostało przerwane, ponieważ nie można powiększyć magazynu kopii w tle z powodu limitu wprowadzonego przez użytkownika. Error - 2014-02-20 14:38:52 | Computer Name = Bobrownik | Source = Disk | ID = 262151 Description = W urządzeniu \Device\Harddisk0\DR0 wystąpił zły blok. Error - 2014-02-20 14:38:55 | Computer Name = Bobrownik | Source = Disk | ID = 262151 Description = W urządzeniu \Device\Harddisk0\DR0 wystąpił zły blok. Error - 2014-02-20 17:17:02 | Computer Name = Bobrownik | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi iSafeService z powodu następującego błędu: %%2 Error - 2014-02-20 17:30:11 | Computer Name = Bobrownik | Source = volsnap | ID = 393252 Description = Wykonywanie kopii w tle woluminu C: zostało przerwane, ponieważ nie można powiększyć magazynu kopii w tle z powodu limitu wprowadzonego przez użytkownika. < End of report > [/log] [log] GMER 2.1.19357 - http://www.gmer.net Rootkit scan 2014-02-20 22:39:13 Windows 6.1.7600 \Device\Harddisk0\DR0 -> \Device\00000107 MAXTOR_S rev.4.AA 232,89GB Running: 9qzu4jb0.exe; Driver: C:\Users\Bober\AppData\Local\Temp\uwdiqpob.sys ---- Kernel code sections - GMER 2.1 ---- .text ntkrnlpa.exe!ZwSaveKeyEx + 13AD 83062579 1 Byte [06] .text ntkrnlpa.exe!KiDispatchInterrupt + 5A2 83086F52 19 Bytes [E0, 0F, BA, F0, 07, 73, 09, ...] {LOOPNZ 0x11; MOV EDX, 0x97307f0; MOV CR4, EAX; OR AL, 0x80; MOV CR4, EAX; RET ; MOV ECX, CR3} ? C:\Program Files\iSafe\iSafeNetFilter.sys System nie może odnaleźć określonej ścieżki. ! ---- User code sections - GMER 2.1 ---- .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] ntdll.dll!NtCreateFile + 6 77C64A16 4 Bytes [28, 80, 07, 00] .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] ntdll.dll!NtCreateFile + B 77C64A1B 1 Byte [E2] .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] ntdll.dll!NtCreateKey + 6 77C64A56 4 Bytes [68, 81, 07, 00] .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] ntdll.dll!NtCreateKey + B 77C64A5B 1 Byte [E2] .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] ntdll.dll!NtCreateMutant + 6 77C64A96 4 Bytes [68, 82, 07, 00] .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] ntdll.dll!NtCreateMutant + B 77C64A9B 1 Byte [E2] .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] ntdll.dll!NtCreateSection + 6 77C64B36 4 Bytes [A8, 82, 07, 00] .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] ntdll.dll!NtCreateSection + B 77C64B3B 1 Byte [E2] .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] ntdll.dll!NtMapViewOfSection + B 77C6507B 1 Byte [E2] .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] ntdll.dll!NtOpenFile + 6 77C65126 4 Bytes [68, 80, 07, 00] .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] ntdll.dll!NtOpenFile + B 77C6512B 1 Byte [E2] .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] ntdll.dll!NtOpenKey + 6 77C65156 4 Bytes [A8, 81, 07, 00] .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] ntdll.dll!NtOpenKey + B 77C6515B 1 Byte [E2] .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] ntdll.dll!NtOpenKeyEx + B 77C6516B 1 Byte [E2] .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] ntdll.dll!NtOpenMutant + 6 77C651A6 4 Bytes [28, 82, 07, 00] .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] ntdll.dll!NtOpenMutant + B 77C651AB 1 Byte [E2] .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] ntdll.dll!NtOpenProcess + 6 77C651D6 4 Bytes [68, 83, 07, 00] .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] ntdll.dll!NtOpenProcess + B 77C651DB 1 Byte [E2] .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] ntdll.dll!NtOpenProcessToken + 6 77C651E6 4 Bytes [A8, 83, 07, 00] .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] ntdll.dll!NtOpenProcessToken + B 77C651EB 1 Byte [E2] .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] ntdll.dll!NtOpenProcessTokenEx + 6 77C651F6 4 Bytes [68, 84, 07, 00] .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] ntdll.dll!NtOpenProcessTokenEx + B 77C651FB 1 Byte [E2] .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] ntdll.dll!NtOpenSection + B 77C6521B 1 Byte [E2] .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] ntdll.dll!NtOpenThread + 6 77C65256 4 Bytes [28, 83, 07, 00] .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] ntdll.dll!NtOpenThread + B 77C6525B 1 Byte [E2] .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] ntdll.dll!NtOpenThreadToken + 6 77C65266 4 Bytes [28, 84, 07, 00] .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] ntdll.dll!NtOpenThreadToken + B 77C6526B 1 Byte [E2] .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] ntdll.dll!NtOpenThreadTokenEx + 6 77C65276 4 Bytes [A8, 84, 07, 00] .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] ntdll.dll!NtOpenThreadTokenEx + B 77C6527B 1 Byte [E2] .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] ntdll.dll!NtQueryAttributesFile + 6 77C65386 4 Bytes [A8, 80, 07, 00] .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] ntdll.dll!NtQueryAttributesFile + B 77C6538B 1 Byte [E2] .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] ntdll.dll!NtQueryFullAttributesFile + B 77C6543B 1 Byte [E2] .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] ntdll.dll!NtSetInformationFile + 6 77C65A86 4 Bytes [28, 81, 07, 00] .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] ntdll.dll!NtSetInformationFile + B 77C65A8B 1 Byte [E2] .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] ntdll.dll!NtSetInformationThread + B 77C65AEB 1 Byte [E2] .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] ntdll.dll!NtUnmapViewOfSection + 6 77C65E06 4 Bytes [28, 85, 07, 00] .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] ntdll.dll!NtUnmapViewOfSection + B 77C65E0B 1 Byte [E2] .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] kernel32.dll!CreateProcessW 77B4202D 5 Bytes JMP 00080030 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] kernel32.dll!CreateProcessA 77B42062 5 Bytes JMP 00080070 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] GDI32.dll!SelectObject 76D661D0 5 Bytes JMP 000C05F0 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] GDI32.dll!SetTextColor 76D66622 5 Bytes JMP 000C0A30 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] GDI32.dll!SetBkMode 76D666CD 5 Bytes JMP 000C08F0 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] GDI32.dll!DeleteObject 76D668B4 5 Bytes JMP 000C01B0 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] GDI32.dll!DeleteDC 76D66A2C 5 Bytes JMP 000C0170 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] GDI32.dll!ExtSelectClipRgn 76D66C72 5 Bytes JMP 000C02F0 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] GDI32.dll!SelectClipRgn 76D66D84 5 Bytes JMP 000C05B0 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] GDI32.dll!GetDeviceCaps 76D66E03 5 Bytes JMP 000C03B0 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] GDI32.dll!SetStretchBltMode 76D673CE 5 Bytes JMP 000C06B0 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] GDI32.dll!GetCurrentObject 76D6777C 5 Bytes JMP 000C0370 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] GDI32.dll!GetTextMetricsW 76D6798F 5 Bytes JMP 000C0E30 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] GDI32.dll!IntersectClipRect 76D67CCA 5 Bytes JMP 000C03F0 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] GDI32.dll!GetTextAlign 76D67D15 5 Bytes JMP 000C0D70 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] GDI32.dll!SetTextAlign 76D67F92 5 Bytes JMP 000C09F0 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] GDI32.dll!ExtTextOutW 76D68053 5 Bytes JMP 000C0970 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] GDI32.dll!GetClipBox 76D681F2 5 Bytes JMP 000C0330 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] GDI32.dll!MoveToEx 76D68A16 5 Bytes JMP 000C0470 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] GDI32.dll!CreateDCA 76D69975 5 Bytes JMP 000C00B0 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] GDI32.dll!RestoreDC 76D69A10 5 Bytes JMP 000C0530 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] GDI32.dll!SaveDC 76D69AD2 5 Bytes JMP 000C0570 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] GDI32.dll!StretchDIBits 76D6AC38 5 Bytes JMP 000C0770 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] GDI32.dll!GetTextFaceW 76D6B4CC 5 Bytes JMP 000C0D30 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] GDI32.dll!GetTextExtentPoint32W 76D6B535 5 Bytes JMP 000C0670 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] GDI32.dll!GetFontData 76D6B8E8 5 Bytes JMP 000C0C70 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] GDI32.dll!CreateDCW 76D6BD21 5 Bytes JMP 000C00F0 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] GDI32.dll!CreateICW 76D6C660 5 Bytes JMP 000C0130 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] GDI32.dll!LineTo 76D6CA20 5 Bytes JMP 000C0430 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] GDI32.dll!SetWorldTransform 76D6CB42 5 Bytes JMP 000C06F0 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] GDI32.dll!GetTextMetricsA 76D6CE46 5 Bytes JMP 000C0DF0 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] GDI32.dll!Rectangle 76D6F5BE 5 Bytes JMP 000C09B0 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] GDI32.dll!SetICMMode 76D6F8D4 5 Bytes JMP 000C0DB0 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] GDI32.dll!ExtTextOutA 76D70158 5 Bytes JMP 000C0930 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] GDI32.dll!GetTextExtentPoint32A 76D708BB 5 Bytes JMP 000C0630 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] GDI32.dll!Escape 76D70B0D 5 Bytes JMP 000C0270 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] GDI32.dll!ExtEscape 76D73472 5 Bytes JMP 000C02B0 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] GDI32.dll!GetTextFaceA 76D73E49 5 Bytes JMP 000C0CF0 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] GDI32.dll!SetPolyFillMode 76D76CE1 5 Bytes JMP 000C0B30 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] GDI32.dll!SetMiterLimit 76D76E54 5 Bytes JMP 000C0B70 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] GDI32.dll!ResetDCW 76D8031C 5 Bytes JMP 000C0AB0 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] GDI32.dll!EndPage 76D807CD 5 Bytes JMP 000C0230 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] GDI32.dll!GetGlyphOutlineW 76D8C292 5 Bytes JMP 000C0CB0 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] GDI32.dll!CreateScalableFontResourceW 76D8E8EF 5 Bytes JMP 000C0BB0 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] GDI32.dll!AddFontResourceW 76D8ECEB 5 Bytes JMP 000C0BF0 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] GDI32.dll!RemoveFontResourceW 76D8F1E1 5 Bytes JMP 000C0C30 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] GDI32.dll!AbortDoc 76D94D37 5 Bytes JMP 000C0030 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] GDI32.dll!EndDoc 76D9517E 5 Bytes JMP 000C01F0 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] GDI32.dll!StartPage 76D95269 5 Bytes JMP 000C0730 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] GDI32.dll!StartDocW 76D95BB6 5 Bytes JMP 000C07F0 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] GDI32.dll!BeginPath 76D9635D 5 Bytes JMP 000C0830 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] GDI32.dll!SelectClipPath 76D963B4 5 Bytes JMP 000C0AF0 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] GDI32.dll!CloseFigure 76D9640F 5 Bytes JMP 000C0070 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] GDI32.dll!EndPath 76D96466 5 Bytes JMP 000C0A70 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] GDI32.dll!StrokePath 76D96699 5 Bytes JMP 000C07B0 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] GDI32.dll!FillPath 76D96726 5 Bytes JMP 000C0870 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] GDI32.dll!PolylineTo 76D96B94 5 Bytes JMP 000C04F0 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] GDI32.dll!PolyBezierTo 76D96C25 5 Bytes JMP 000C04B0 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] GDI32.dll!PolyDraw 76D96CD7 5 Bytes JMP 000C08B0 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] USER32.dll!ActivateKeyboardLayout 772C817D 5 Bytes JMP 000D04F0 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] USER32.dll!ScreenToClient 772CC1F2 7 Bytes JMP 000D0670 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] USER32.dll!RegisterClipboardFormatA 772CE6B1 5 Bytes JMP 000D02F0 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] USER32.dll!RegisterClipboardFormatW 772CEDFD 5 Bytes JMP 000D02B0 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] USER32.dll!SetCursor 772D52EA 5 Bytes JMP 000D0530 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] USER32.dll!MonitorFromWindow 772D590A 7 Bytes JMP 000D0630 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] USER32.dll!PostMessageW 772D6225 5 Bytes JMP 000D05F0 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] USER32.dll!IsWindowVisible 772D6939 7 Bytes JMP 000D06B0 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] USER32.dll!GetClientRect 772D74B1 7 Bytes JMP 000D05B0 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] USER32.dll!MapWindowPoints 772D7915 5 Bytes JMP 000D0570 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] USER32.dll!GetParent 772D7AB3 7 Bytes JMP 000D06F0 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] USER32.dll!SetClipboardData 772E4979 5 Bytes JMP 000D0170 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] USER32.dll!EmptyClipboard 772E4A28 5 Bytes JMP 000D0130 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] USER32.dll!GetClipboardData 772E4B47 5 Bytes JMP 000D0030 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] USER32.dll!EnumClipboardFormats 772E4D98 5 Bytes JMP 000D01B0 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] USER32.dll!GetClipboardFormatNameW 772E7EB2 5 Bytes JMP 000D0230 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] USER32.dll!SetClipboardViewer 772E8F4D 5 Bytes JMP 000D04B0 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] USER32.dll!GetClipboardFormatNameA 772E8F61 5 Bytes JMP 000D0270 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] USER32.dll!GetOpenClipboardWindow 772E902F 1 Byte [E9] .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] USER32.dll!GetOpenClipboardWindow 772E902F 5 Bytes JMP 000D03F0 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] USER32.dll!ChangeClipboardChain 772F3425 5 Bytes JMP 000D0430 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] USER32.dll!GetTopWindow 772F3A5D 7 Bytes JMP 000D0730 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] USER32.dll!CloseClipboard 772F5BA7 5 Bytes JMP 000D00B0 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] USER32.dll!OpenClipboard 772F5BB9 5 Bytes JMP 000D0070 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] USER32.dll!IsClipboardFormatAvailable 772F5C3A 5 Bytes JMP 000D00F0 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] USER32.dll!GetClipboardSequenceNumber 772F5C4E 5 Bytes JMP 000D0330 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] USER32.dll!GetClipboardOwner 772F5C60 5 Bytes JMP 000D0370 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] USER32.dll!CountClipboardFormats 772F5DC9 5 Bytes JMP 000D01F0 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] USER32.dll!SetCursorPos 7730C1D8 5 Bytes JMP 000D0770 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] USER32.dll!GetClipboardViewer 77324B57 5 Bytes JMP 000D0470 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] USER32.dll!GetPriorityClipboardFormat 77324C59 5 Bytes JMP 000D03B0 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] ole32.dll!OleSetClipboard 778FF1F6 5 Bytes JMP 00190030 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] ole32.dll!OleIsCurrentClipboard 77902370 5 Bytes JMP 00190070 .text C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe[2140] ole32.dll!OleGetClipboard 7792F71D 5 Bytes JMP 001900B0 .text C:\Program Files\Mozilla Firefox\firefox.exe[3444] ntdll.dll!wcsncmp + 33B 77C7F580 7 Bytes JMP 744B1FFD C:\Program Files\Mozilla Firefox\mozglue.dll .text C:\Program Files\Mozilla Firefox\firefox.exe[3444] kernel32.dll!K32GetDeviceDriverBaseNameW + 16F 77B8C0CF 7 Bytes JMP 6A48049D C:\Program Files\Mozilla Firefox\xul.dll .text C:\Program Files\Mozilla Firefox\firefox.exe[3444] kernel32.dll!CloseHandle + 38 77B905EF 7 Bytes JMP 6A480455 C:\Program Files\Mozilla Firefox\xul.dll .text C:\Program Files\Mozilla Firefox\firefox.exe[3444] kernel32.dll!GetExitCodeProcess + 2C 77B9313D 7 Bytes JMP 6A095A06 C:\Program Files\Mozilla Firefox\xul.dll .text C:\Program Files\Mozilla Firefox\firefox.exe[3444] GDI32.dll!GetViewportOrgEx + 21C 76D685EB 7 Bytes JMP 6A4804C4 C:\Program Files\Mozilla Firefox\xul.dll .text C:\Program Files\Mozilla Firefox\plugin-container.exe[3696] USER32.dll!MenuItemFromPoint + F 772F4B36 7 Bytes JMP 6A3D4E6D C:\Program Files\Mozilla Firefox\xul.dll .text C:\Program Files\Mozilla Firefox\plugin-container.exe[4068] USER32.dll!CharToOemA + 3A 772CB1DE 7 Bytes JMP 6A3D76A0 C:\Program Files\Mozilla Firefox\xul.dll .text C:\Program Files\Mozilla Firefox\plugin-container.exe[4068] USER32.dll!AdjustWindowRectEx + 117 772D660F 7 Bytes JMP 6A3D7711 C:\Program Files\Mozilla Firefox\xul.dll .text C:\Program Files\Mozilla Firefox\plugin-container.exe[4068] USER32.dll!GetWindowInfo 772D6A82 5 Bytes JMP 6A3DB2EA C:\Program Files\Mozilla Firefox\xul.dll .text C:\Program Files\Mozilla Firefox\plugin-container.exe[4068] USER32.dll!MenuItemFromPoint + F 772F4B36 7 Bytes JMP 6A3D4E6D C:\Program Files\Mozilla Firefox\xul.dll ---- Registry - GMER 2.1 ---- Reg HKLM\SYSTEM\CurrentControlSet\Control\Network\{4d36e975-e325-11ce-bfc1-08002be10318}\{6B683E0E-1505-488C-8053-3C1301924246}\Linkage@Bind ??????????????????????????*??????????????????????????????????????????????????t???????d????N??????c???????????????????????????????????F??es??WUDFRd??????????????????????????????????GT-I9070??????????????????>?????????????????text??????:????????g?????????????????????????????????7??????9-???????????A???t??*6to4mp?????6to4mp.ndi??????????????????????????????????????????.NT??????????????p??{7??????????int?????nettun.inf:Microsoft.NTx86:6to4mp.ndi:6.1.7600.16385:*6to4mp?0??{00000000-0000-0000-FFFF-FFFFFFFFFFFF}??????{00000000-0000-0000-FFFF-FFFFFFFFFFFF}?03-???????????w????????N???????????D?????? ??????????????????????????nettun.inf:Microsoft.NTx86:6to4mp.ndi:6.1.7600.16385:*6to4mp?I??? ??????????????x???????????????????? ?????????????????????1??L????????? ??????FFF??Typ?????? ????????????????????????????????????????????s dy??? ??????????????????????????????????????????? ?????????????????????1??L????????? ??????57?????????????????D022??? ?????????????????????1????????????&????????????????????8??? ????????????????? Reg HKLM\SYSTEM\CurrentControlSet\Control\Network\{4d36e975-e325-11ce-bfc1-08002be10318}\{6B683E0E-1505-488C-8053-3C1301924246}\Linkage@Export ????\S??????ip??? ???????:????????????????"?????l???????De??????????????????????????????Security Driver???????????????????????????X??????y????????N??????0????D840??{4d36e972-e325-11ce-bfc1-08002be10318}?6-4???????????????????B??s\??Net?\S??? ???????2?????3E-??*6to4mp??E??*6to4mp?????? ????????????????????????????$?N???????????{4d36e972-e325-11ce-bfc1-08002be10318}\0144?1-????????????????????????N?????????????????{40313A1B-8DCA-4C9B-A5E9-63628D74E1B5}?1?????????????????e???????????9???????s??????????????? ???????}??????????????????????????????te???????;:?????????? ?????????????????????1??????????+?&???????????????????????? ?????????????????????1??????*?0??? ???????in??????????????????????du????????????????????????0??????w??k ??Po??czenie lokalne* 143???????????????????????????.Po??czenie lokalne* 143????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????? Reg HKLM\SYSTEM\CurrentControlSet\services\LanmanServer\Linkage@Bind ?????????????????????????????e????*??????????????????????0??? ??????? ????????H??????????????.???????????/??? ???????U?????????????,????????$? ?<?????????????????????????????????????:????????g????3D??????$???4????? ??????? ??????????????????????????????????????????????????????? ??????????? ??????????? ??????????????????S?S???S?S?S???????S?S?S?S???S???S?????S?S???????H?H(4?????S?S??)/?????S???H???? ??S????H????????S?S?S?S???:???????? ????S???S?S???S?S??(????H???????S?????S(??H?????????????3?????s3D???????????_??????????????????? ???????????????????j???????????????????????=???????????A???e??????#???? ???????????????? ??????????? ?B???????-3???????|???E??????94???????|???D???????-???????@???????h??? ???|???7?????C-4??? ???????2??????n0??6.1.7600.16385?6C2???????????&????????????B?????????????????tunnel??????USB\Class_08&SubClass_06&Prot_50?USB\Class_08&SubClass_06?USB\Class_08??6F??{3032dd1f-de82-5edd-9bf6-d83f7b34ff62}?7BF??? ?????????????????????1??L????????? ??????06E??? ?????????????????????1????????????&?? Reg HKLM\SYSTEM\CurrentControlSet\services\LanmanServer\Linkage@Route ?????????????????7???????-??????????????????????????????? ?????????????????????1????????????????????????????? ??????Microsoft?????????????????????????????????????????????????????????????????????*??????????????????????????????????5??????????4???? ??????????? ?????????????????????1?????????????????????????????f??IS????????????.??????????????????/??nettun.inf:Microsoft.NTx86:6to4mp.ndi:6.1.7600.16385:*6to4mp????? ?????????????????????1????????????&???????????????????????? ?????????????????????1????????????????????? ?????????????????????1????????????????????? ?????????????????????1????????????????????????? ?????????????????????1??????*?.??? ???????????Po??czenie lokalne* 48?? ???????????? ??????????????/????d??????6_????$?????????????????ROOT\*6TO4MP\0040??????????????????d?????????????6??????????? ??????????????????????????????>??????i0-??? ???????????????????????????????????????8??? ???????????????????????????????????????????i???????????D????c-41??Adres sieciowy?3E5???? ??????e??T_??text?{??? ????????????????? Reg HKLM\SYSTEM\CurrentControlSet\services\LanmanServer\Linkage@Export ?????|??s????????????????p?p?p?????????????g?????????????????p??????????????????????????t???????????????????????????@%systemroot%\system32\drivers\discache.sys,-102????????????????????????????????s????????n???????????????????????????????????????e??? ???????o???????????p??????????T?B?????????????????????t????????????????????p?p?p????????????????????????T??p????????h???????(??p??????p????p?p?p?p?p?ps???RpcSs???????\SystemRoot\system32\DRIVERS\compbatt.sys???System Bus Extender??????v?v?v??Microsoft .NET Framework NGEN v2.0.50727_X86????%systemroot%\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe??????<??p?????????n????? ???p???????????????????2???????p??????????SeCreateGlobalPrivilege?SeChangeNotifyPrivilege?SeIncreaseBasePriorityPrivilege?SeIncreaseQuotaPrivilege?????????p??????????? ???????p???????????p??????????????????????????????4?? ?????????? ????\???????????????????? ??????????????????????????? ??????? ????????p?????o???o???p????????? ???????o??????????????????????T?-??????????????????????????p??Microso Reg HKLM\SYSTEM\CurrentControlSet\services\LanmanWorkstation\Linkage@Bind ????????????????? ???????1?????????????,????????$???<???????????????????????????????8-??Root\*6TO4MP\0013?????z??????4??????05??\\?\Root#*6TO4MP#0013#{cac88484-7515-4c03-82e6-71a87abac361}?2??? ???????1?????????????,??N?????$???<???????????????????????????????71??????? ?????????????????????1????????????????????? ???????????????????s?1????????????????????*6to4mp?NN??? ?????????????????????1????????????????????? ?????????????????????1?????????????????????????????4???-??????????????????? ?????????????????????1????????????&???????????????????????? ?????????????????????1????????????????????????????? ?????????????????????1????????z????????????????????????????S??D ????z??????e??ce??nettun.inf:Microsoft.NTx86:6to4mp.ndi:6.1.7600.16385:*6to4mp? ???????????????e??tunnel??????? *?????????????????Karta Microsoft 6to4????????????????????????????????????????????????? ?????????????????????1??????????????????????????????????????????????????????\NetBT_Tcpip??? ?????????????????????1????????*???????????????????? l?????? ????? Reg HKLM\SYSTEM\CurrentControlSet\services\LanmanWorkstation\Linkage@Route ????MS??????????? ?????????????????????1??????????????????????N??????0?????D-E??? ???????z??? ?????????????????????1????????????????????????????????????????*6to4mp?????????????? ?????????????????????1????????????????????? ?????????????????????1????????????????????????????????????????????????????????????? ?????????????????????1????????????????????? ?????????????????????1???????????????????????????????????s????????????????????????? ?????????????????????1??????????????????????????????????????????????????????D06A66C861D}??? ?????????????????????1????????????????????????????{4d36e972-e325-11ce-bfc1-08002be10318}???&??? ????????????????????????????$?N?I?????????{4d36e972-e325-11ce-bfc1-08002be10318}\0074??&????N?????? ??????????{59025D92-7D19-4460-A1B7-739EC14E9585}??? ???????????????????s??? ??????????????????????????11??????Typ???????>?????????????Sterownik karty Microsoft 6to4??????? ??????????????????????????????"??? ???????????? ??????????????????tunnel??rt??? "?????????????????ndis5_ip6_tunnel??????????????? Reg HKLM\SYSTEM\CurrentControlSet\services\LanmanWorkstation\Linkage@Export ????ic??????????? ?????????????????????1????????????????????????????????????????????? ?????????????????????1????????????????????? ?????????????????????1????????????????????? l?????????????????????4m??AP??????????? ?????????????????????1????????????????????? ?????????????????????1??????????????????????N?????????????????????os??t???{4d36e972-e325-11ce-bfc1-08002be10318}\0009?St??? ???????t?????ros??nettun.inf??????? ???????????????????s?1?????????????????????????????????????????????i??????????????????????C7??????text????????????disk.inf??????N??????e??????et???????????????????????????????????????????????????????e?k??????????????????????????????????????????*?????????????????????????????? ??<?????????????????????????????????:?????? ??????????4m??AP??*6to4mp??????????????????t??? ???????C?????1????{4d36e972-e325-11ce-bfc1-08002be10318}?003??????????t???11???????????????????????????6???????????????????????????D?????sD1????:??????D?gFi??????????????????????????????????????????? ????????????????????????????????????? Reg HKLM\SYSTEM\CurrentControlSet\services\NetBIOS\Linkage@Bind ????????Po??czenie lokalne* 139?et??ROOT\*6TO4MP\0131??????????????????d?????????????E??????????????? ???????}???????????x????????"?????????????????? ????????????????????????????$?N??????????????????????????????678??? ????????????????????????????"?????????????A-????`??????????????????????????????h??????????nettun.inf???????????????????????e???????l??????????????????????????os??? ???????)??????????6to4mp.ndi??????? ??????????????????????????????? ???????@????????????????????$?N???????????v2.10|Action=Allow|Active=TRUE|Dir=Out|Protocol=6|Profile=Private|LPort=4000|App=C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe|Name=DLL-Files.com FIXER|Desc=Allow outbound network traffic from DLL-Files.com FIXER|EmbedCtxt=DLL-Files.com FIXER|?vi??v2.10|Action=Allow|Active=TRUE|Dir=Out|Protocol=6|Profile=Public|LPort=4000|App=C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe|Name=DLL-Files.com FIXER|Desc=Allow outbound network traffic from DLL-Files.com FIXER|EmbedCtxt=DLL-Files.com FIXER|???????&????????????????????????? Reg HKLM\SYSTEM\CurrentControlSet\services\NetBIOS\Linkage@Route ????s?????0??????????????????????????????????t???????????????u???e???????????????????|??-0??????????????oo??? ????????????0?????????????????0F??????????????????0F??????????? ???????????????b??Ad??Microsoft????????????????????u??????????????????????????????????????????????????????????????s???????,K??? ???????????????????????????|????????m??????????????????t???????u???&???????i???????????????????D???????7??Karta Microsoft 6to4????????40??????????????????????8F???????????z????????m?DA???????????????????????????????????????e??????????Typ??????????7???????d????0??????????????&??????????????????????????????MSAFD NetBIOS [\Device\NetBT_Tcpip6_{C5753594-61CA-4B08-AEA2-75A249CCFAD4}] SEQPACKET 96?5??????????????????????????????????????????????v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|LPort=2869|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-30814|Desc=@FirewallAPI.dll,-30815|EmbedCtxt=@FirewallAPI.dll,-30752|????v2.10|Action=Allow|Active=FALSE|Dir=Out|Protocol=6|RA4=LocalSubnet|RA6=LocalSub Reg HKLM\SYSTEM\CurrentControlSet\services\NetBIOS\Linkage@Export ????T ??????? ???????}???????????t????????"?????????????????????????????????l???????????????????????????????????????????????????????????????????????????MSAFD NetBIOS [\Device\NetBT_Tcpip6_{6??????????????????????????????????????????????????????????MSAFD NetBIOS [\Device\NetBT_Tcpip6_{F7E1AD17-8121-4A78-86F7-C3BC37AE04BB}] DATAGRAM 58?????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????? ??? ???????}???????????u????????"?????????????3????????????5????????m??.??????????????????????? ???????:????????????????"?????l?n??????|??????? ????????????????????????????"??????????????.??????? ???????:????????????????"?????l?m?????4F????N??????3????DF3-??{4d36e972-e325-11ce-bfc1-08002be10318}?114??? ?????????????D8B??*6to4mp??A??? ????????????????????????????$?N?x?????????{4d36e972-e325-11ce-bfc1-08002be10318}\0121?20??????????? ????????????N?????????????????{DADF0144-354F-47B0-9740-60FB1F857658}???z????????? Reg HKLM\SYSTEM\CurrentControlSet\services\NetBT\Linkage@Bind ?????????????z????????????N???????????D???????X??????z???t????N??????5?????DD0????X??????????t??????????????????? ??Karta Microsoft 6to4????????_6??382390?ft????????????????????A??? ? ?)1?00????????????????????X??????z???t??????????Net?t???????}????????????|???????????????????|??????????????ti?????????????????????-??????????????????????m??????????????????????????????????????z??Microsoft???????????????????*6to4mp??????????????9??71??????Typ??????????????????????????????-??????2D???????????????????????y???}??s????????????3????????????????X???????????????????????????????X??????z???t??????????? l??????????????????????z???n???e??????????????na???????????????????????????B????????????N??????}?????D{4??????????????<???????os??t????????t??????????????????????????????????????????????????????????????????ti??????????????????????????????????????????? ???? ??B???????????????e???????????u???e???????????8???????????????d??????-E??????????????? ??????? ??????????????ti???????????9???e???????????????????6??64????X??????????t? Reg HKLM\SYSTEM\CurrentControlSet\services\NetBT\Linkage@Route ????????????????? ?????????????????????1????????????????????Karta Microsoft 6to4 #94????????? ?????????????????????1????????????????????????????????????????6-21-2006???????????? ?????????????????????1????????????????????? ?????????????????????1????????????????????????????????????6to4mp.ndi??????????????? ?????????????????????1????????????????????? ?????????????????????1????????????????????? ??????????????????*6to4mp?14??????????????????????????????????????? ?????????????????????1????????????????????????????????????????????????????????????????????? ?????????????????????1????????????????????? ?????????????????????,????????????'????????????????????}???????????????????-??\\?\Root#*6TO4MP#0089#{ad498944-762f-11d0-8dcb-00c04fc3358c}\{5F752C04-35B5-4649-9C6A-5CBEAF2CE759}?????? ???????:?????????????:??????????:?&???????????????????????? ?????????????????????????????????e????????????????????????????????????????&????????????????????????????????????????????????1????c8 5???????????l???????????????????|????????m?s?????? Reg HKLM\SYSTEM\CurrentControlSet\services\NetBT\Linkage@Export ????CD???????????????????y????????????????????.?????????????????tB???? ??????????????????????????????????????B??????????????????????????????????????????????????????????A5??? ???????????????????h??????????`????????e??{CC33B704-C093-4B43-BFCD-A29D3ECF6BFC}??D1??\Device\{CC33B704-C093-4B43-BFCD-A29D3ECF6BFC}??59????N??????c??????????????? ??????????????????????????????>??????i????Sterownik karty Microsoft 6to4???O??? ??????????????????????????????"??? ??????yst??? ???????-?????-?.??? "??????.?????.?.??ndis5_ip6_tunnel?.??? ??????????????????????????????????????????? ???????????????????????????????????????????O???????????.?????.?.??Adres sieciowy???W???????????????t???? ??????4???e??? ???????????????????????????????????????????????????????????????????????????????????????????????????????u???????s??????? ???????U???????????7?,??N?????$???<???????????????????????????????0A???????????5?????sic??? ???????????????????7?,????????????'????????????????????}??{4d36e972-e325-11ce-bfc1-08002be10318}??????? ???{???5?????{D0? Reg HKLM\SYSTEM\CurrentControlSet\services\Smb\Linkage@Bind ???z?|??????????tunnel??"{??Net???????????????????.??????a??????????????v2.10|Action=Allow|Active=TRUE|Dir=Out|Protocol=17|Profile=Private|RPort=3702|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\svchost.exe|Svc=fdrespub|Name=@FirewallAPI.dll,-32811|Desc=@FirewallAPI.dll,-32812|EmbedCtxt=@FirewallAPI.dll,-32752|???v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=6|Profile=Domain|App=%SystemRoot%\system32\msdtc.exe|Name=@FirewallAPI.dll,-33503|Desc=@FirewallAPI.dll,-33506|EmbedCtxt=@FirewallAPI.dll,-33502|????????_??????s?????N??????1????D953????X??????z???t?????????????????????????????e?????????????s??????????v2.10|Action=Allow|Active=TRUE|Dir=Out|Protocol=6|Profile=Private|RPort=5358|RA4=LocalSubnet|RA6=LocalSubnet|App=System|Name=@FirewallAPI.dll,-32815|Desc=@FirewallAPI.dll,-32816|EmbedCtxt=@FirewallAPI.dll,-32752|??????????????????????P?????????41??? ???u???B?????9A0??????????*6to4mp???????X??????z???t????????????????????m?????P??????{???{?????z??????????????v2.10|Action=Allow|Active=TRUE|Dir= Reg HKLM\SYSTEM\CurrentControlSet\services\Smb\Linkage@Route ????5????????????????????2??12????*?????????????????????????s7??? ??????????????x???????????@nettun.inf,%6to4mp.displayname%;Karta Microsoft 6to4????????????A??9C???????????????????????????????e??????????????????nettun.inf??????? ???????i????????????????"?????l?[??????????????????t?????s????.NTx86??????????????{00000000-0000-0000-FFFF-FFFFFFFFFFFF}??????????????6.1.7600.16385??????? ????????????????????????????????????????????s?????? l??????*?????p????????3F??? ???????????????????????????????????????f??? ?????????????????????1??L????????? ???????????????????????????????? ?????????????????????1????????????&???????????????????????? ?????????????????????1????????????????????????????? ?????????????????????1????????z?????????????N??????C?????D13??tunnel????????,Po??czenie lokalne* 96?????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????? Reg HKLM\SYSTEM\CurrentControlSet\services\Smb\Linkage@Export ????????????????????????????????????????????????????????????????????????? ???z??????????????*6to4mp?????????}"??????????????????????????????????????????Net?????????????????? V??????????????4???????????????B???????????????????????????B???????????z???l??s???Microsoft???????????????????????????????*6to4mp?????Karta Microsoft 6to4????6to4mp.ndi?400??????????????dl??{4d36e972-e325-11ce-bfc1-08002be10318}? 54???????????????z???_??pi????:??????8?gEC????N???????????D?????11????????????????????????X??????????t??{4d36e972-e325-11ce-bfc1-08002be10318}\0033?9-??Karta Microsoft 6to4 #26?1????N??????E????DET ??? ???????????????????????????b??36???????????????4???????????i????????????????????????N??????5???????4??????????????nettun.inf?o4???cdrom.inf:cdrom_device.NTx86:cdrom_install:6.1.7600.16385:gencdrom??????????????????7????????z???"???e??*6to4mp???????? ??,?????????????@nettun.inf,%msft%;Microsoft?-??C4??????????? ?????????????D????????*6to4mp???????N??????F?????DDA???????????0??06??nettun.inf???????????k??????s?????? Reg HKLM\SYSTEM\CurrentControlSet\services\Tcpip\Parameters\Interfaces\{70F97CA7-E7D2-4D49-BFC4-BA5DA3B40071}@LeaseObtainedTime 1392931602 Reg HKLM\SYSTEM\CurrentControlSet\services\Tcpip\Parameters\Interfaces\{70F97CA7-E7D2-4D49-BFC4-BA5DA3B40071}@T1 1392931879 Reg HKLM\SYSTEM\CurrentControlSet\services\Tcpip\Parameters\Interfaces\{70F97CA7-E7D2-4D49-BFC4-BA5DA3B40071}@T2 1392932104 Reg HKLM\SYSTEM\CurrentControlSet\services\Tcpip\Parameters\Interfaces\{70F97CA7-E7D2-4D49-BFC4-BA5DA3B40071}@LeaseTerminatesTime 1392932202 Reg HKLM\SYSTEM\CurrentControlSet\services\TCPIP6\Linkage@Bind ??????????*?????????????????????Karta Microsoft 6to4 #153???????????? ???e????.Po??czenie lokalne* 111??????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????2Karta Microsoft 6to4 #104????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????? Reg HKLM\SYSTEM\CurrentControlSet\services\TCPIP6\Linkage@Export ????ce??????????????s???????????{4d36e972-e325-11ce-bfc1-08002be10318}?f?????????????u???????s???????????????e??????????????????l???????????????????????????????????????????????????????????????????????????MSAFD NetBIOS [\Device\NetBT_Tcpip6_{6??????????????????????????????????????????????????????????MSAFD NetBIOS [\Device\NetBT_Tcpip6_{A8B32D17-10DD-4556-930B-639192A4AC15}] DATAGRAM 169????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????l???????????????????????????????????????????????????????????????????????????MSAFD NetBIOS [\Device\NetBT_Tcpip6_{6??????????????????????????????????????????????????????????MSAFD NetBIOS [\Device\NetBT_Tcpip6_{54D9A410-2E48-4DF8-A34C-6E337AB6FF75}] SEQPACKET 170??????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????? 8??o4????? Reg HKLM\SYSTEM\ControlSet002\Control\Network\{4d36e975-e325-11ce-bfc1-08002be10318}\{6B683E0E-1505-488C-8053-3C1301924246}\Linkage@Bind ???2?7??????????????????????s????/?/?/??_????3?3?&?????.???.???.???.???.???.???.???.???.???.???.???.???.???.??P??8?8?4@?????? ???????.?????????????1?????????? ?????????? ???????-?????.????????????????????(???????????????????????? ???9??????????????????????{4d36e97d-e325-11ce-bfc1-08002be10318}???f???0?0????????????????????????????? ???????????????????????????????????????????????????????????????????????????e?????.?????.??????????????? ???????.????????????????????????????????????s__1??PCI\VEN_10DE&DEV_03E0&SUBSYS_CB8410DE&REV_A2?PCI\VEN_10DE&DEV_03E0&SUBSYS_CB8410DE?PCI\VEN_10DE&DEV_03E0&CC_060100?PCI\VEN_10DE&DEV_03E0&CC_0601????PCI\VEN_10DE&DEV_03E0&REV_A2?PCI\VEN_10DE&DEV_03E0?PCI\VEN_10DE&CC_060100?PCI\VEN_10DE&CC_0601?PCI\VEN_10DE?PCI\CC_060100?PCI\CC_0601??002????N??.???????????????????????????.???????.???.???e???????.??????????scecli??????????????????????????s???? ??????????????????? ???????.?????6?????9????"???&??????????????0??? ???????.?????9???????1????????????????????????? ???????.????????????????? Reg HKLM\SYSTEM\ControlSet002\Control\Network\{4d36e975-e325-11ce-bfc1-08002be10318}\{6B683E0E-1505-488C-8053-3C1301924246}\Linkage@Export ???4?7??????????Net?pr?????2??????f?????????????????????????????????????\\?\ACPI#AuthenticAMD_-_x86_Family_15_Model_107_-_AMD_Athlon(tm)_64_X2_Dual_Core_Processor_5200+#_2#{97fadb10-4e33-40ae-359c-8bef029dbdd0}??? ??\\?\Root#*6TO4MP#0002#{ad498944-762f-11d0-8dcb-00c04fc3358c}\{E62FB474-1CFC-452D-B13D-D4B982219318}??????7???7???7????z?????? ???????????7??? ???????2?????7???????,??L?????????????????????? ???????7???????????7?,????????????&??????????????????????????7?????7?7?7?7?7?7?7?.?.?7????? ???????7?????7???????1????????????????????MBRES???? ???????7???????????6?1????????>??????????????7??????>??7??????????IO:HAL,MBRES,*;MEM:HAL,MBRES,*???????????7??????????????????MBRES??????7????? ???????7?????7???????1???????????????????????7?????7??? ???????7???????????7?1?????????????????????????????????????????7???????????7?7?????????7??????????machine.inf?????? ???????7?????7???????1?????????????????????????????????????7???????????????????7?7?????7?????6?&?~?&???&??????? ???????7???????????7?1??????????????????????? Reg HKLM\SYSTEM\ControlSet002\services\LanmanServer\Linkage@Bind ???i?????????????????????????????????v????<??i????????h????????i?i????<??p?????????e?????t?}?}???i???t?t?t???????g??????????*6to4mp??&????(??i??????p?????8??i????????h?????system32\DRIVERS\mrxsmb.sys???????P??i?????????n??????T??z??????es??????????System Bus Extender?????@%SystemRoot%\system32\FirewallAPI.dll,-23092????????i??????p????q?}?|??File system?????????????????????????????????????????????system32\DRIVERS\mrxsmb20.sys?????X??r?????????e????System32\drivers\mpsdrv.sys?????? ??????????????????@%systemroot%\system32\wkssvc.dll,-1002???????P??i?????????n??????P??i?????????n????@%systemroot%\system32\wkssvc.dll,-1004????????????????g???????????????g??????????????????????????8??j??????????????????????????????????????????????????????????????????g????????????d?????????V2A???????????????????????????????????????????e???????????o??????????????????????????????????????????????????t????????u????????????????????<??i????????h?????????????????t???NDIS Proxy??????%SystemRoot%\system32\srvsvc.dll?????????g????????????? Reg HKLM\SYSTEM\ControlSet002\services\LanmanServer\Linkage@Route ???j?n???W?W?W??? ???????????????????????V???????????????W??????????msisadrv?.??Net?TH???i?m?????W???W???7?7?7?T?.?U?8?U?U?V?7?T?V?V?W?W?W?Wkg??????????f7405ba052???????????d????????????sX?????????????j???????????????Z???W???????8???????????W????N??i???_????D8C4???f?fS????????????W???????????e??????????????? ???????h?????7?????W???????.?????????????)?????????.???????????????????W?W?W????N??d????????D??????????W??????????????ntmarta.dll?????pci??????????[??????????????????????Procesor AMD K8??????`?`????? ???????W?????W?????W?,??4?????8????????????s??? 8??W??????????r???Windows NT Access Provider?????????W????? ???????W???????????W?,????????D?????????????????????????D??W??????????????%SystemRoot%\system32\ntmarta.dll??????W????? ???????W?????W???????0????????????????t??????W?????W??? ???????W???????????W?0???????????????????y????? ???W??????????D???????????????????????????AuditPolicySD????? ??????????????????????? ?????????????????p?????????????????????????????????????????????????????????@???????????????????? Reg HKLM\SYSTEM\ControlSet002\services\LanmanServer\Linkage@Export ?????????$???????????????????????????????????????????????????????4??D-??? ???????:????????????????"?????l???????04??{4d36e972-e325-11ce-bfc1-08002be10318}?396??? ???????i????????????????"?????l???????04??? b??????e?????;Ge??*6to4mp??k???f?g?j?j????????Karta Microsoft 6to4 #18?i??? ???????????????????????????n???l???????????????p????X??????????t??@msmouse.inf,%*pnp0f03.devicedesc%;Mysz Microsoft PS/2??????{4d36e965-e325-11ce-bfc1-08002be10318}??????*6to4mp??E????:??????D?gB4???????A???i???e??????????? ???{???o?????yst??????????????????nettun.inf?yst????X??????u???t???????????6??47???U?;?t?h?????i??????????@nettun.inf,%msft%;Microsoft??????*???????????????z??????????????????y???c???e???????????_??pi??????????????ce???????????????e??????????????????DTSOFT Virtual CdRom Device??????????????F??????-0????z?????????? ???????????.???7???????????w??um??6.1.7600.16385??????6to4mp.ndi?rea???????z???7??7}???????????F???????????????}???E??????????????????tunnel???????????????F??????-9???????????i??ox??? ???y?????????a27? Reg HKLM\SYSTEM\ControlSet002\services\LanmanWorkstation\Linkage@Bind ???i??????????????????\??i?????????e?????}?}??????N??i????????h??????????????0???????????????????????????????s?s????\SystemRoot\system32\drivers\luafv.sys??????@%systemroot%\system32\drivers\luafv.sys,-101????????????????????i?j????Sterownik klasy myszy???FSFilter Virtualization???????P??i?????????e??????\??i?????????n????????????????t????????????????????????????????z?|?z???????????6????????P??i?????????e??????X??j?????????e????@%systemroot%\system32\drivers\luafv.sys,-100???system32\DRIVERS\mouclass.sys?ouclass.sys?????,??i?????????e??????b??i?????????e????@%SystemRoot%\system32\drivers\mountmgr.sys,-100????????????????t?????<??i????????????????<??i????????h??????r?r??????`??z??????_r???}?}?}???????????????????????g???????????????i?????????e??????V??u?????????e?????i?i?i?????????????????????????????g ????k?k?k???????????????h????????????s??????z?z?y???s?s??????8??i????????h??????????????t?t.0??6?????`??i???/???????????????????????????j???????????}?}?}???????????3?g?3???????h??????p???p???\Device\{70F97CA7-E Reg HKLM\SYSTEM\ControlSet002\services\LanmanWorkstation\Linkage@Route ?????j???????j???j??umbus.inf????j????8??k????????h??????????t???j???k???y???j??Microsoft????????????0?????s?????????????4??s????????????????????????????????????????????????????????j???e??sa?????????????????????????????????????s??????????????????????????(??k???o?? (???k?k?1??????????????????????LegacyDriver???????d?o???j???????????t???????j???j???k?k????????57???????????4?????????????????????????????????s?????j???????t???????j???????2???????j???????????????????j???k?k?1??? ???n?????????0?????????????,???????/???????????????3???j?j?k????X??????0????????N??j???i????Dume???????????????1???????????????????k?k?k??STORAGE\Volume???????????j???e??ce???t???????????????o??ct??? ^??????v?????.de???j??Net??j????N??j????????D????????????????????s?????????z????X??????????????????t??tunnel?400?????????????????????? ??????????s?????j?k?k???????????4?????s?4???????y???????????????????????????????????3??????Root\*6TO4MP\0039????????t??????????????? ???j???????k???|???j?k?k??????????????????{7???i?j?j?j?????4????????????????? Reg HKLM\SYSTEM\ControlSet002\services\LanmanWorkstation\Linkage@Export ?????e??????????????????????? ???????????e???????????????????????7?????e19??????*6to4mp?????? "??????i?????drv??ndis5_ip6_tunnel?e??? ??????????????????????? ????????????????????????????????????????????s?B0???????????|??????????????????? ???????d?????olu???????????2???h?????????????????s?????????0??????????????????????????????? ?????????????????????1????????????????????? ???????????????????h?1????????????????????????????????????????????????????? ???????????????????h?1????????????????????Microsoft????????? ?b}??? ?????????????????????1????????????????????????????????????????? ???????????????????j?1?????????????????????????????r??we???????????,???????%????????????????????*?????????????????? ???????f?????1? ??ROOT\*6TO4MP\0011?????>??????4??????Microsoft????$??????????????????????????????????$???4????? ??????? ??????????????????????????????????????????????????????? ??????????? ??????????? ?????????????????????????????????????????????????????????????????????(4??????????)/?????????????? ???????H?????????????????? Reg HKLM\SYSTEM\ControlSet002\services\NetBIOS\Linkage@Bind ???d?o???j???????????t???????j???j???k?k????????57???????????4?????????????????????????????????s?????j???????t???????j???????2???????j???????????????????j???k?k?1??? ???n?????????0?????????????,???????/???????????????3???j?j?k????X??????0????????N??j???i????Dume???????????????1???????????????????k?k?k??STORAGE\Volume???????????j???e??ce???t???????????????o??ct??? ^??????v?????.de???j??Net??j????N??j????????D????????????????????s?????????z????X??????????????????t??tunnel?400?????????????????????? ??????????s?????j?k?k???????????4?????s?4???????y???????????????????????????????????3??????Root\*6TO4MP\0039????????t??????????????? ???j???????k???|???j?k?k??????????????????{7???i?j?j?j?????4?????????????????s????ms_sstpminiport?????????40???????????????j???C??BA??????????? ???????4???????j??????????nettun.inf???????????j??? ??????USB??????????t???l?m?l???????????????4???????y???h?u??????????????`??????F???0???????????2???????j?s????LegacyDriver???????????????????s?????????t?????????????????s?????????t???????\????? Reg HKLM\SYSTEM\ControlSet002\services\NetBIOS\Linkage@Route ????????{00000000-0000-0000-FFFF-FFFFFFFFFFFF}???????j?j??????????????????????????????????????????????????????????????h????????????e????Nokia C2-01?????USBSTOR_BULK?????????????????????????? ??????p??OO??????????{00000000-0000-0000-FFFF-FFFFFFFFFFFF}??????Port_#0003.Hub_#0001?1???????????v???v???????????????????????????\??11???p?p?????????t??Microsoft???????t????????????z??????????????????????@netrasa.inf,%mp-pptp-dispname%;WAN Miniport (PPTP)??????k?k?k?k?k?k?g?k?k???k???????????6???????t???????????p?gt ????*??????l?????????n?o???????????????????????????????????????i?j????????????????????6t???????????e?e?h?i?h?i?h?i?h?i?i?i?i??????????????????*6to4mp??????????????????????????????????????????????????????p?p??????????????X??????i??????? ???????{????????????????????????R????????????e????????????????????tunnel???????????????=???????????????????????t???????????????????????????????????????????????????????f??????????? *??????2?????1-9??????????????????????????????? ???????i????????????????"?????l?k?????? ??? ????? Reg HKLM\SYSTEM\ControlSet002\services\NetBIOS\Linkage@Export ????????????????????????l???????????????????????????????????????????????????????????????????????????MSAFD NetBIOS [\Device\NetBT_Tcpip6_{6??????????????????????????????????????????????????????????MSAFD NetBIOS [\Device\NetBT_Tcpip6_{964F52DA-73FB-4373-8AF3-5B709622B8D9}] DATAGRAM 75?????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????l???????????????????????????????????????????????????????????????????????????MSAFD NetBIOS [\Device\NetBT_Tcpip6_{6??????????????????????????????????????????????????????????MSAFD NetBIOS [\Device\NetBT_Tcpip6_{9CAD426F-3F7D-492C-867E-11493C533835}] SEQPACKET 74????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????? ?????????????????????1?????????????????????????????????????4????????????????????*?????????????????? ????? Reg HKLM\SYSTEM\ControlSet002\services\NetBT\Linkage@Bind ???h?j??????????????????Microsoft????e??????????????????$???4????? ??????? ??????????????? ????????????????????????????????????????? ??????????? ??????????? ???IS\0000?????????$???4????? ??????? ??????????????? ????????????????????????????????????????? ??????????? ??????????? ???IS\0000?????????$???4????? ??????? ??????????????? ????????????????????????????????????????? ??????????? ??????????? ???IS\0000?????????$???4????? ??????? ??????????????? ????????????????????????????????????????? ??????????? ??????????? ???IS\0000?????ACPI\PNP0C02?*PNP0C02????????e?fS???????????? ??????????????????????????????$???4????? ??????? ??????????????? ????????????????????????????????????????? ??????????? ??????????? ???IS\0000?????????$???4????? ??????? ??????????????? ????????????????????????????????????????? ??????????? ??????????? ???IS\0000?????????$???4????? ??????? ??????????????? ????????????????????????????????????????? ??????????? ??????????? ???IS\0000?????????$???4????? ??????? ??????????????? ???????????????????? Reg HKLM\SYSTEM\ControlSet002\services\NetBT\Linkage@Route ????????????????MS??{4d36e972-e325-11ce-bfc1-08002be10318}\0170?St????z??????3??63???????????????????i??????????os??{00000000-0000-0000-FFFF-FFFFFFFFFFFF}???????????????????s??{00000000-0000-0000-FFFF-FFFFFFFFFFFF}?479????>??????{??FD???????????y???????y??{00000000-0000-0000-FFFF-FFFFFFFFFFFF}??????6.1.7600.16385??????????????{00000000-0000-0000-FFFF-FFFFFFFFFFFF}??????@nettun.inf,%6to4mp.displayname%;Karta Microsoft 6to4???6.1.7600.16385??????????.i???}???????????????????s???q??????{00000000-0000-0000-FFFF-FFFFFFFFFFFF}????????????????????????????????????????:???????????h??????????????f??????storage\volume?out???????????v???]??os??{00000000-0000-0000-FFFF-FFFFFFFFFFFF}?707????????????????????????????????????*??????????????????????????????????????t??????????????????OO??????????????????Microsoft???nettun.inf?P\0???_?`?e?_?k?k?j?k?j???????????????}???{???{????z??????????d??@nettun.inf,%6to4mp.displayname%;Karta Microsoft 6to4????????????????????????v??{00000000-0000-0000-FFFF-FFFFFFFFFFFF}???{??????????? ????? Reg HKLM\SYSTEM\ControlSet002\services\NetBT\Linkage@Export ????????????7b???????????????????1???z???????????????? ??????}???t???????????c???????????????s???????i???????????????e???&???????????????????????????????&???????????????????????????????????<???????????????????????????e????L??????????????????????B??????????????????? "??????????????????????????????????????????t???????????????????d??????????? ???????1??????????text?8???????????i???????s???????????????????????????????????????????????????????i??rt??????????????????? ????????????????????????????????????????????s?????????????????????????? ???????????????????????????????????????f??? ?????????????????????1??L????????? ?????????????????????????678C??? ?????????????????????1????????????&???????????????????????????????? ?????????????????????1????????????????????????????????????? ?????????????????????1????????????&???????????????????????? ?????????????????????1??????*?0??? ??????art??????????? ??????????Nokia Nokia 6300 USB Device??????l?n?o?o?????????????n??sti.dll??&??? ???????Z?????????????1????????????&?????????????? Reg HKLM\SYSTEM\ControlSet002\services\Smb\Linkage@Bind ???i?i????<??p?????????e?????t?}?}???i???t?t?t???????g??????????*6to4mp??&????(??i??????p?????8??i????????h?????system32\DRIVERS\mrxsmb.sys???????P??i?????????n??????T??z??????es??????????System Bus Extender?????@%SystemRoot%\system32\FirewallAPI.dll,-23092????????i??????p????q?}?|??File system?????????????????????????????????????????????system32\DRIVERS\mrxsmb20.sys?????X??r?????????e????System32\drivers\mpsdrv.sys?????? ??????????????????@%systemroot%\system32\wkssvc.dll,-1002???????P??i?????????n??????P??i?????????n????@%systemroot%\system32\wkssvc.dll,-1004????????????????g???????????????g??????????????????????????8??j??????????????????????????????????????????????????????????????????g????????????d?????????V2A???????????????????????????????????????????e???????????o??????????????????????????????????????????????????t????????u????????????????????<??i????????h?????????????????t???NDIS Proxy??????%SystemRoot%\system32\srvsvc.dll?????????g???????????????????????????i?j?????i??????t?????$??i??????p???@%systemroo Reg HKLM\SYSTEM\ControlSet002\services\Smb\Linkage@Route ???j?????????????4???4??usbhub?4?????e?e?e???????_???0???e???e?f?????????????????????????????????????e?e?e??????????????????????fltmgr????????BTeredo Tunneling Pseudo-Interface????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????BTeredo Tunneling Pseudo-Interface????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????? Reg HKLM\SYSTEM\ControlSet002\services\Smb\Linkage@Export ???w?w???w???????????????????????????w?w?w???y?y?????????????????????????w???????:?????? ?????????????6??w???????????e??Netman?WinMgmt?RasMan?BFE?????????,??????????????????????????????????????????w??????????????????SeChangeNotifyPrivilege?SeCreateGlobalPrivilege?SeImpersonatePrivilege?SeLoadDriverPrivilege?SeTakeOwnershipPrivilege????????????????{?{?z??? ???????w?????w????????????????????????????? ???????w?????y?????w????????&????????????????????????????????t???????????????????????????????????????????????P????? ???????0??????????? ???????w?????w?????w????????(????? ???????e???????????????????????????????????????????????? ???????w???????????w??????????l????????g?????????????????e??????l??w?????????h????%systemroot%\system32\LogFiles\Firewall\pfirewall.log????w?w???????w????? ???????w???????????i????????`????? ???????s???v2.10|Action=Allow|Active=FALSE|Dir=In|Protocol=17|Profile=Private|Profile=Public|LPort=162|RA4=LocalSubnet|RA6=LocalSubnet|App=%SystemRoot%\system32\snmptrap.exe|Svc=SNMPTRAP|Name=@snmptrap. Reg HKLM\SYSTEM\ControlSet002\services\TCPIP6\Linkage@Bind ???t????????e????t???????????????????????????t????????*??????t??s????????t?t?t??Net??????????z?????????n?????????a????????????????<???????????h?????? ???????o?????s?????t????????$?????????????????? ???????o??????????????????????:????????g??@%SystemRoot%\ehome\ehres.dll,-15502?.????N??t???????????e??SSDPSRV?IPBusEnum?TermService?fdphost??EV_??? 4??t???8?????EV_??NT Authority\LocalService?????,??t???-???????.??????????????t???? ???????o?????t?????t????????@?????????m?????$??t?????????e????@comres.dll,-2946????????t????????h?????%SystemRoot%\System32\svchost.exe -k NetworkServiceAndNoImpersonation?????$??t?????????n????@comres.dll,-2947???? 8??t??????????????NT AUTHORITY\NetworkService??????????????????????????????????????????????t?????????????? ????????????????t???????????e??RPCSS?SamSS???????,??t????????????????????????????????????2??t??????????????????SeChangeNotifyPrivilege?????? F??t???????????????t??? ???????????????????????????????????????????????????t?t?t?t?t?t?t?t?t?t?t?t????? ???????t???????????t????? Reg HKLM\SYSTEM\ControlSet002\services\TCPIP6\Linkage@Export ???s?|??????????????????? ???????m?????m???????1????????????&?????????????????????????,?????????????????? ???????m???????????l?1????????r????????????l?l?m?m?m?m?m?m?m?m?m???????m???????????????????????????????k??Microsoft???? ???????m?????m???????1????????????????????? ???????m???????????l?1????????????????????RAS Async Adapter????????????????????????????\??i.??S.?????m????? ???????m?????m???????1????????????????????????????????????????????????????? ???????m???????????l?1????????????????????@netrasa.inf,%msft%;Microsoft??????m??????$??m??????????WinUsb???????m??????????????system32\drivers\drmkaud.sys?????p?p?p?p?m????V??m?????????e????Zaufane sterowniki d?wi?ku firmy Microsoft????????0??m?????????e????Event Log???LDDM Graphics Subsystem??????????????????m?n?????q?q?q??\SystemRoot\System32\drivers\dxgkrnl.sys???????????????????n??????????????????????????R??m????????h??????????????????????B???n?nnm??????????Microsoft??????????????????????sme??????RPCSS??-?-???????z???????z???????h???i??.i???????????????-???-? Reg HKLM\SOFTWARE\Microsoft\Windows Search\UsnNotifier\Windows\Catalogs\SystemIndex@{4A7851FC-F9C6-11E0-88B8-806E6F6E6963} 3735791936 Reg HKLM\SOFTWARE\Microsoft\Windows Search\UsnNotifier\Windows\Catalogs\SystemIndex@{4A7851FE-F9C6-11E0-88B8-806E6F6E6963} 14103952 ---- Disk sectors - GMER 2.1 ---- Disk \Device\Harddisk0\DR0 malicious Win32:MBRoot code @ sector 488376003 ! Disk \Device\Harddisk0\DR0 PE file @ sector 488376025 ! ---- EOF - GMER 2.1 ---- [/log]
Natsuki Kuga komentarz 23 lutego 2014 komentarz 23 lutego 2014 1. Odinstaluj poprzez Dodaj/usuń programy:YAC, Java 7 Update 10, Java Auto Updater2. Wykonaj ten skrypt w OTL (instrukcja: http://www.forumpc.pl/topic/277786-nieingerencyjne-narz%C4%99dzia-do-tworzenia-log%C3%B3w-systemowych/#entry1683607 ): :OTL O2 - BHO: (no name) - {8984B388-A5BB-4DF7-B274-77B879E179DB} - No CLSID value found. :Files C:\Program Files\iSafe C:\Users\Bober\AppData\Roaming\iSafe C:\Users\Public\Desktop\YAC.lnk :Services iSafeService iSafeNetFilter iSafeKrnl Pokaż raport.3. Pokaż log z AswMBR: http://www.forumpc.pl/topic/277786-nieingerencyjne-narz%C4%99dzia-do-tworzenia-log%C3%B3w-systemowych/4. Error - 2014-02-19 07:55:14 | Computer Name = Bobrownik | Source = Disk | ID = 262151 Description = W urządzeniu \Device\Harddisk0\DR0 wystąpił zły blok. Pokaż screen z CrystalDiskInfo: http://crystalmark.info/software/CrystalDiskInfo/index-e.html5. Zainstaluj Java 7 Update 51: http://download.oracle.com/otn-pub/java/jdk/7u51-b13/jre-7u51-windows-i586.exe6. AdwCleaner był użyty. Pokaż wszystkie raporty, jakie znajdziesz. Pokaż też nowe logi z OTL.
bober41 komentarz 28 lutego 2014 Autor komentarz 28 lutego 2014 (edytowane) ========== OTL ========== Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8984B388-A5BB-4DF7-B274-77B879E179DB}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8984B388-A5BB-4DF7-B274-77B879E179DB}\ not found. ========== FILES ========== File\Folder C:\Program Files\iSafe not found. File\Folder C:\Users\Bober\AppData\Roaming\iSafe not found. C:\Users\Public\Desktop\YAC.lnk moved successfully. ========== SERVICES/DRIVERS ========== Service iSafeService stopped successfully! Service iSafeService deleted successfully! Service iSafeNetFilter stopped successfully! Service iSafeNetFilter deleted successfully! Service iSafeKrnl stopped successfully! Service iSafeKrnl deleted successfully! OTL by OldTimer - Version 3.2.69.0 log created on 02282014_181910 aswMBR version 0.9.9.1771 Copyright(c) 2011 AVAST Software Run date: 2014-02-28 18:21:31 ----------------------------- 18:21:31.583 OS Version: Windows 6.1.7600 18:21:31.584 Number of processors: 2 586 0x6B02 18:21:31.586 ComputerName: BOBROWNIK UserName: Bober 18:21:31.926 Initialize success 18:22:10.956 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\00000106 18:22:10.958 Disk 0 Vendor: MAXTOR_S 4.AA Size: 238475MB BusType: 3 18:22:11.058 Disk 0 MBR read successfully 18:22:11.061 Disk 0 MBR scan 18:22:11.063 Disk 0 Windows 7 default MBR code 18:22:11.067 Disk 0 Partition 1 80 (A) 07 HPFS/NTFS NTFS 18002 MB offset 63 18:22:11.070 Disk 0 Partition - 00 0F Extended LBA 220462 MB offset 36869175 18:22:11.098 Disk 0 Partition 2 00 07 HPFS/NTFS NTFS 20002 MB offset 36869238 18:22:11.101 Disk 0 Partition - 00 05 Extended 200459 MB offset 77834925 18:22:11.118 Disk 0 Partition 3 00 07 HPFS/NTFS NTFS 200459 MB offset 77834988 18:22:11.123 Disk 0 scanning sectors +488376000 18:22:11.157 Disk 0 malicious Win32:MBRoot code @ sector 488376003 ! 18:22:11.162 Disk 0 PE file @ sector 488376025 ! 18:22:11.258 Disk 0 scanning C:\Windows\system32\drivers 18:22:14.687 Service scanning 18:22:23.518 Modules scanning 18:22:26.326 Disk 0 trace - called modules: 18:22:26.342 ntkrnlpa.exe CLASSPNP.SYS disk.sys ACPI.sys halmacpi.dll storport.sys nvstor.sys 18:22:26.348 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x867fc7c8] 18:22:26.354 3 CLASSPNP.SYS[8b77d59e] -> nt!IofCallDriver -> [0x860e95f8] 18:22:26.360 5 ACPI.sys[837c13b2] -> nt!IofCallDriver -> \Device\00000106[0x860e9030] 18:22:26.366 Scan finished successfully 18:22:40.749 Disk 0 MBR has been saved successfully to "C:\Users\Bober\Desktop\MBR.dat" 18:22:40.757 The log file has been saved successfully to "C:\Users\Bober\Desktop\aswMBR.txt" AdwCleaner v3.019 - Log utworzony 28/02/2014 o 18:45:21 # Aktualizacja 17/02/2014 przez Xplode # System operacyjny : Windows 7 Professional (32 bits) # Użytkownik : Bober - BOBROWNIK # Ścieżka : C:\Users\Bober\Downloads\adwcleaner_www.INSTALKI.pl.exe # Opcja : Szukaj ***** [ Usługi ] ***** ***** [ Pliki / Foldery ] ***** Plik Znaleziono : C:\Users\Bober\AppData\Roaming\Mozilla\Firefox\Profiles\svt81gnt.default-1393542232274\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi ***** [ Skróty ] ***** ***** [ Rejestr ] ***** ***** [ Przeglądarki internetowe ] ***** -\\ Internet Explorer v8.0.7600.16385 -\\ Mozilla Firefox v27.0.1 (pl) [ Plik : C:\Users\Bober\AppData\Roaming\Mozilla\Firefox\Profiles\svt81gnt.default-1393542232274\prefs.js ] -\\ Google Chrome v [ Plik : C:\Users\Bober\AppData\Local\Google\Chrome\User Data\Default\preferences ] ************************* AdwCleaner[R0].txt - [2398 octets] - [20/02/2014 22:14:37] AdwCleaner[R1].txt - [1470 octets] - [28/02/2014 00:06:38] AdwCleaner[R2].txt - [1057 octets] - [28/02/2014 18:45:21] AdwCleaner[S0].txt - [2424 octets] - [20/02/2014 22:15:50] AdwCleaner[S1].txt - [1518 octets] - [28/02/2014 00:08:03] ########## EOF - C:\AdwCleaner\AdwCleaner[R2].txt - [1237 octets] ########## OTL logfile created on: 2014-02-28 18:46:52 - Run 2 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Bober\Downloads Professional (Version = 6.1.7600) - Type = NTWorkstation Internet Explorer (Version = 8.0.7600.16385) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 3,00 Gb Total Physical Memory | 1,57 Gb Available Physical Memory | 52,18% Memory free 6,00 Gb Paging File | 4,50 Gb Available in Paging File | 75,09% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 17,58 Gb Total Space | 2,22 Gb Free Space | 12,63% Space Free | Partition Type: NTFS Drive D: | 19,53 Gb Total Space | 3,69 Gb Free Space | 18,91% Space Free | Partition Type: NTFS Drive E: | 195,76 Gb Total Space | 15,85 Gb Free Space | 8,09% Space Free | Partition Type: NTFS Drive F: | 700,79 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: CDFS Computer Name: BOBROWNIK | User Name: Bober | Logged in as Administrator. Boot Mode: Normal | Scan Mode: Current user Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - [2014-02-24 10:31:30 | 000,223,112 | ---- | M] (Google Inc.) -- C:\Program Files\Google\Update\1.3.22.5\GoogleCrashHandler.exe PRC - [2014-02-21 21:42:01 | 001,863,560 | ---- | M] (Adobe Systems, Inc.) -- C:\Windows\System32\Macromed\Flash\FlashPlayerPlugin_12_0_0_70.exe PRC - [2014-02-20 22:23:43 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Bober\Downloads\OTL.exe PRC - [2014-02-13 01:36:25 | 000,275,568 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe PRC - [2012-09-23 20:43:34 | 000,065,192 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe PRC - [2009-07-14 02:14:42 | 000,049,152 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\taskhost.exe PRC - [2009-07-14 02:14:20 | 002,613,248 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe PRC - [2008-08-04 00:04:00 | 001,345,376 | ---- | M] (Nullsoft) -- C:\Program Files\Winamp\winamp.exe PRC - [2008-08-04 00:02:20 | 000,036,352 | ---- | M] () -- C:\Program Files\Winamp\winampa.exe [color=#E56717]========== Modules (No Company Name) ==========[/color] MOD - [2014-02-28 18:14:42 | 000,159,232 | ---- | M] () -- C:\Users\Bober\AppData\Local\Temp\WLZD8F7.tmp\vis_milk2.lng MOD - [2014-02-28 18:14:42 | 000,155,136 | ---- | M] () -- C:\Users\Bober\AppData\Local\Temp\WLZD8F7.tmp\winamp.lng MOD - [2014-02-28 18:14:42 | 000,087,040 | ---- | M] () -- C:\Users\Bober\AppData\Local\Temp\WLZD8F7.tmp\vis_avs.lng MOD - [2014-02-28 18:14:42 | 000,039,424 | ---- | M] () -- C:\Users\Bober\AppData\Local\Temp\WLZD8F7.tmp\ml_pmp.lng MOD - [2014-02-28 18:14:42 | 000,016,896 | ---- | M] () -- C:\Users\Bober\AppData\Local\Temp\WLZD8F7.tmp\out_ds.lng MOD - [2014-02-28 18:14:42 | 000,013,312 | ---- | M] () -- C:\Users\Bober\AppData\Local\Temp\WLZD8F7.tmp\ml_wire.lng MOD - [2014-02-28 18:14:42 | 000,009,728 | ---- | M] () -- C:\Users\Bober\AppData\Local\Temp\WLZD8F7.tmp\pmp_usb.lng MOD - [2014-02-28 18:14:42 | 000,007,680 | ---- | M] () -- C:\Users\Bober\AppData\Local\Temp\WLZD8F7.tmp\vis_nsfs.lng MOD - [2014-02-28 18:14:42 | 000,007,680 | ---- | M] () -- C:\Users\Bober\AppData\Local\Temp\WLZD8F7.tmp\ml_transcode.lng MOD - [2014-02-28 18:14:42 | 000,007,168 | ---- | M] () -- C:\Users\Bober\AppData\Local\Temp\WLZD8F7.tmp\out_wave.lng MOD - [2014-02-28 18:14:42 | 000,006,144 | ---- | M] () -- C:\Users\Bober\AppData\Local\Temp\WLZD8F7.tmp\tagz.lng MOD - [2014-02-28 18:14:42 | 000,006,144 | ---- | M] () -- C:\Users\Bober\AppData\Local\Temp\WLZD8F7.tmp\pmp_ipod.lng MOD - [2014-02-28 18:14:42 | 000,006,144 | ---- | M] () -- C:\Users\Bober\AppData\Local\Temp\WLZD8F7.tmp\out_disk.lng MOD - [2014-02-28 18:14:42 | 000,006,144 | ---- | M] () -- C:\Users\Bober\AppData\Local\Temp\WLZD8F7.tmp\ml_rg.lng MOD - [2014-02-28 18:14:42 | 000,004,608 | ---- | M] () -- C:\Users\Bober\AppData\Local\Temp\WLZD8F7.tmp\pmp_activesync.lng MOD - [2014-02-28 18:14:42 | 000,004,096 | ---- | M] () -- C:\Users\Bober\AppData\Local\Temp\WLZD8F7.tmp\pmp_p4s.lng MOD - [2014-02-28 18:14:42 | 000,003,584 | ---- | M] () -- C:\Users\Bober\AppData\Local\Temp\WLZD8F7.tmp\pmp_njb.lng MOD - [2014-02-28 18:14:42 | 000,003,072 | ---- | M] () -- C:\Users\Bober\AppData\Local\Temp\WLZD8F7.tmp\playlist.lng MOD - [2014-02-28 18:14:41 | 000,066,560 | ---- | M] () -- C:\Users\Bober\AppData\Local\Temp\WLZD8F7.tmp\burnlib.lng MOD - [2014-02-28 18:14:41 | 000,050,176 | ---- | M] () -- C:\Users\Bober\AppData\Local\Temp\WLZD8F7.tmp\ml_local.lng MOD - [2014-02-28 18:14:41 | 000,046,592 | ---- | M] () -- C:\Users\Bober\AppData\Local\Temp\WLZD8F7.tmp\ml_disc.lng MOD - [2014-02-28 18:14:41 | 000,022,528 | ---- | M] () -- C:\Users\Bober\AppData\Local\Temp\WLZD8F7.tmp\in_mp3.lng MOD - [2014-02-28 18:14:41 | 000,022,016 | ---- | M] () -- C:\Users\Bober\AppData\Local\Temp\WLZD8F7.tmp\gen_ff.lng MOD - [2014-02-28 18:14:41 | 000,019,968 | ---- | M] () -- C:\Users\Bober\AppData\Local\Temp\WLZD8F7.tmp\in_midi.lng MOD - [2014-02-28 18:14:41 | 000,019,968 | ---- | M] () -- C:\Users\Bober\AppData\Local\Temp\WLZD8F7.tmp\gen_ml.lng MOD - [2014-02-28 18:14:41 | 000,018,432 | ---- | M] () -- C:\Users\Bober\AppData\Local\Temp\WLZD8F7.tmp\in_mod.lng MOD - [2014-02-28 18:14:41 | 000,014,848 | ---- | M] () -- C:\Users\Bober\AppData\Local\Temp\WLZD8F7.tmp\in_wm.lng MOD - [2014-02-28 18:14:41 | 000,013,312 | ---- | M] () -- C:\Users\Bober\AppData\Local\Temp\WLZD8F7.tmp\ml_playlists.lng MOD - [2014-02-28 18:14:41 | 000,013,312 | ---- | M] () -- C:\Users\Bober\AppData\Local\Temp\WLZD8F7.tmp\in_cdda.lng MOD - [2014-02-28 18:14:41 | 000,012,800 | ---- | M] () -- C:\Users\Bober\AppData\Local\Temp\WLZD8F7.tmp\dsp_sps.lng MOD - [2014-02-28 18:14:41 | 000,011,264 | ---- | M] () -- C:\Users\Bober\AppData\Local\Temp\WLZD8F7.tmp\in_vorbis.lng MOD - [2014-02-28 18:14:41 | 000,011,264 | ---- | M] () -- C:\Users\Bober\AppData\Local\Temp\WLZD8F7.tmp\in_nsv.lng MOD - [2014-02-28 18:14:41 | 000,011,264 | ---- | M] () -- C:\Users\Bober\AppData\Local\Temp\WLZD8F7.tmp\gen_hotkeys.lng MOD - [2014-02-28 18:14:41 | 000,010,240 | ---- | M] () -- C:\Users\Bober\AppData\Local\Temp\WLZD8F7.tmp\enc_aacplus.lng MOD - [2014-02-28 18:14:41 | 000,008,192 | ---- | M] () -- C:\Users\Bober\AppData\Local\Temp\WLZD8F7.tmp\ml_plg.lng MOD - [2014-02-28 18:14:41 | 000,007,680 | ---- | M] () -- C:\Users\Bober\AppData\Local\Temp\WLZD8F7.tmp\ml_history.lng MOD - [2014-02-28 18:14:41 | 000,007,680 | ---- | M] () -- C:\Users\Bober\AppData\Local\Temp\WLZD8F7.tmp\gen_tray.lng MOD - [2014-02-28 18:14:41 | 000,007,680 | ---- | M] () -- C:\Users\Bober\AppData\Local\Temp\WLZD8F7.tmp\gen_dropbox.lng MOD - [2014-02-28 18:14:41 | 000,007,168 | ---- | M] () -- C:\Users\Bober\AppData\Local\Temp\WLZD8F7.tmp\gen_crasher.lng MOD - [2014-02-28 18:14:41 | 000,006,656 | ---- | M] () -- C:\Users\Bober\AppData\Local\Temp\WLZD8F7.tmp\ml_autotag.lng MOD - [2014-02-28 18:14:41 | 000,006,144 | ---- | M] () -- C:\Users\Bober\AppData\Local\Temp\WLZD8F7.tmp\in_dshow.lng MOD - [2014-02-28 18:14:41 | 000,006,144 | ---- | M] () -- C:\Users\Bober\AppData\Local\Temp\WLZD8F7.tmp\enc_wma.lng MOD - [2014-02-28 18:14:41 | 000,005,632 | ---- | M] () -- C:\Users\Bober\AppData\Local\Temp\WLZD8F7.tmp\in_flac.lng MOD - [2014-02-28 18:14:41 | 000,005,632 | ---- | M] () -- C:\Users\Bober\AppData\Local\Temp\WLZD8F7.tmp\enc_lame.lng MOD - [2014-02-28 18:14:41 | 000,005,120 | ---- | M] () -- C:\Users\Bober\AppData\Local\Temp\WLZD8F7.tmp\ml_online.lng MOD - [2014-02-28 18:14:41 | 000,005,120 | ---- | M] () -- C:\Users\Bober\AppData\Local\Temp\WLZD8F7.tmp\ml_impex.lng MOD - [2014-02-28 18:14:41 | 000,005,120 | ---- | M] () -- C:\Users\Bober\AppData\Local\Temp\WLZD8F7.tmp\ml_bookmarks.lng MOD - [2014-02-28 18:14:41 | 000,004,608 | ---- | M] () -- C:\Users\Bober\AppData\Local\Temp\WLZD8F7.tmp\ml_dash.lng MOD - [2014-02-28 18:14:41 | 000,004,096 | ---- | M] () -- C:\Users\Bober\AppData\Local\Temp\WLZD8F7.tmp\ml_orb.lng MOD - [2014-02-28 18:14:41 | 000,004,096 | ---- | M] () -- C:\Users\Bober\AppData\Local\Temp\WLZD8F7.tmp\ml_nowplaying.lng MOD - [2014-02-28 18:14:41 | 000,004,096 | ---- | M] () -- C:\Users\Bober\AppData\Local\Temp\WLZD8F7.tmp\in_wave.lng MOD - [2014-02-28 18:14:41 | 000,004,096 | ---- | M] () -- C:\Users\Bober\AppData\Local\Temp\WLZD8F7.tmp\in_mp4.lng MOD - [2014-02-28 18:14:41 | 000,004,096 | ---- | M] () -- C:\Users\Bober\AppData\Local\Temp\WLZD8F7.tmp\enc_wav.lng MOD - [2014-02-28 18:14:41 | 000,004,096 | ---- | M] () -- C:\Users\Bober\AppData\Local\Temp\WLZD8F7.tmp\enc_vorbis.lng MOD - [2014-02-28 18:14:41 | 000,004,096 | ---- | M] () -- C:\Users\Bober\AppData\Local\Temp\WLZD8F7.tmp\enc_flake.lng MOD - [2014-02-28 18:14:41 | 000,004,096 | ---- | M] () -- C:\Users\Bober\AppData\Local\Temp\WLZD8F7.tmp\enc_flac.lng MOD - [2014-02-28 18:14:41 | 000,003,584 | ---- | M] () -- C:\Users\Bober\AppData\Local\Temp\WLZD8F7.tmp\in_swf.lng MOD - [2014-02-28 18:14:41 | 000,003,584 | ---- | M] () -- C:\Users\Bober\AppData\Local\Temp\WLZD8F7.tmp\in_linein.lng MOD - [2014-02-28 18:14:41 | 000,003,584 | ---- | M] () -- C:\Users\Bober\AppData\Local\Temp\WLZD8F7.tmp\in_flv.lng MOD - [2014-02-21 21:42:00 | 016,265,096 | ---- | M] () -- C:\Windows\System32\Macromed\Flash\NPSWF32_12_0_0_70.dll MOD - [2014-02-13 01:36:39 | 003,578,992 | ---- | M] () -- C:\Program Files\Mozilla Firefox\mozjs.dll MOD - [2008-08-04 00:02:20 | 000,036,352 | ---- | M] () -- C:\Program Files\Winamp\winampa.exe MOD - [2008-08-04 00:01:58 | 001,543,168 | ---- | M] () -- C:\Program Files\Winamp\Plugins\gen_ff.dll MOD - [2008-08-04 00:00:26 | 000,025,600 | ---- | M] () -- C:\Program Files\Winamp\Plugins\gen_hotkeys.dll MOD - [2008-08-04 00:00:22 | 000,272,384 | ---- | M] () -- C:\Program Files\Winamp\Plugins\gen_ml.dll MOD - [2008-08-03 23:59:58 | 000,025,088 | ---- | M] () -- C:\Program Files\Winamp\Plugins\gen_tray.dll MOD - [2008-08-03 23:59:56 | 000,107,520 | ---- | M] () -- C:\Program Files\Winamp\Plugins\in_cdda.dll MOD - [2008-08-03 23:59:34 | 000,006,656 | ---- | M] () -- C:\Program Files\Winamp\Plugins\in_linein.dll MOD - [2008-08-03 23:59:30 | 000,098,304 | ---- | M] () -- C:\Program Files\Winamp\Plugins\in_midi.dll MOD - [2008-08-03 23:59:22 | 000,160,768 | ---- | M] () -- C:\Program Files\Winamp\Plugins\in_mod.dll MOD - [2008-08-03 23:59:14 | 000,174,592 | ---- | M] () -- C:\Program Files\Winamp\Plugins\gen_dropbox.dll MOD - [2008-08-03 23:58:20 | 000,383,488 | ---- | M] () -- C:\Program Files\Winamp\Plugins\in_mp3.dll MOD - [2008-08-03 23:58:08 | 000,036,352 | ---- | M] () -- C:\Program Files\Winamp\Plugins\in_mp4.dll MOD - [2008-08-03 23:57:56 | 000,169,984 | ---- | M] () -- C:\Program Files\Winamp\Plugins\in_nsv.dll MOD - [2008-08-03 23:57:50 | 000,231,936 | ---- | M] () -- C:\Program Files\Winamp\Plugins\in_vorbis.dll MOD - [2008-08-03 23:57:40 | 000,009,728 | ---- | M] () -- C:\Program Files\Winamp\System\primo.w5s MOD - [2008-08-03 23:57:30 | 000,186,880 | ---- | M] () -- C:\Program Files\Winamp\Plugins\ml_wire.dll MOD - [2008-08-03 23:57:12 | 000,047,104 | ---- | M] () -- C:\Program Files\Winamp\Plugins\out_ds.dll MOD - [2008-08-03 23:57:08 | 000,018,432 | ---- | M] () -- C:\Program Files\Winamp\Plugins\out_wave.dll MOD - [2008-08-03 23:56:58 | 000,071,680 | ---- | M] () -- C:\Program Files\Winamp\Plugins\in_dshow.dll MOD - [2008-08-03 23:56:50 | 000,027,136 | ---- | M] () -- C:\Program Files\Winamp\System\jnetlib.w5s MOD - [2008-08-03 23:56:38 | 000,365,056 | ---- | M] () -- C:\Program Files\Winamp\System\aacPlusDecoder.w5s MOD - [2008-08-03 23:56:30 | 000,296,448 | ---- | M] () -- C:\Program Files\Winamp\Plugins\in_wm.dll MOD - [2008-08-03 23:55:58 | 000,019,456 | ---- | M] () -- C:\Program Files\Winamp\Plugins\out_disk.dll MOD - [2008-08-03 23:55:56 | 000,036,864 | ---- | M] () -- C:\Program Files\Winamp\Plugins\in_swf.dll MOD - [2008-08-03 23:55:50 | 000,014,848 | ---- | M] () -- C:\Program Files\Winamp\Plugins\in_wave.dll MOD - [2008-08-03 23:55:46 | 000,018,944 | ---- | M] () -- C:\Program Files\Winamp\System\tagz.w5s MOD - [2008-08-03 23:55:40 | 000,200,192 | ---- | M] () -- C:\Program Files\Winamp\Plugins\ml_pmp.dll MOD - [2008-08-03 23:55:20 | 000,212,992 | ---- | M] () -- C:\Program Files\Winamp\Plugins\pmp_ipod.dll MOD - [2008-08-03 23:55:08 | 000,017,920 | ---- | M] () -- C:\Program Files\Winamp\Plugins\pmp_njb.dll MOD - [2008-08-03 23:55:02 | 000,114,176 | ---- | M] () -- C:\Program Files\Winamp\Plugins\pmp_p4s.dll MOD - [2008-08-03 23:54:56 | 000,101,888 | ---- | M] () -- C:\Program Files\Winamp\Plugins\ml_online.dll MOD - [2008-08-03 23:54:40 | 000,087,552 | ---- | M] () -- C:\Program Files\Winamp\System\xml.w5s MOD - [2008-08-03 23:54:36 | 000,094,720 | ---- | M] () -- C:\Program Files\Winamp\System\png.w5s MOD - [2008-08-03 23:54:30 | 000,019,968 | ---- | M] () -- C:\Program Files\Winamp\Plugins\ml_bookmarks.dll MOD - [2008-08-03 23:54:24 | 000,193,536 | ---- | M] () -- C:\Program Files\Winamp\Plugins\ml_disc.dll MOD - [2008-08-03 23:54:10 | 000,037,376 | ---- | M] () -- C:\Program Files\Winamp\Plugins\ml_history.dll MOD - [2008-08-03 23:54:02 | 000,020,480 | ---- | M] () -- C:\Program Files\Winamp\Plugins\ml_nowplaying.dll MOD - [2008-08-03 23:53:54 | 000,273,920 | ---- | M] () -- C:\Program Files\Winamp\Plugins\ml_local.dll MOD - [2008-08-03 23:53:46 | 000,034,816 | ---- | M] () -- C:\Program Files\Winamp\Plugins\in_flv.dll MOD - [2008-08-03 23:53:34 | 000,076,288 | ---- | M] () -- C:\Program Files\Winamp\Plugins\ml_playlists.dll MOD - [2008-08-03 23:53:28 | 000,039,424 | ---- | M] () -- C:\Program Files\Winamp\System\playlist.w5s MOD - [2008-08-03 23:52:52 | 000,024,576 | ---- | M] () -- C:\Program Files\Winamp\System\dlmgr.w5s MOD - [2008-08-03 23:52:48 | 000,011,264 | ---- | M] () -- C:\Program Files\Winamp\System\filereader.w5s MOD - [2008-08-03 23:52:44 | 000,042,496 | ---- | M] () -- C:\Program Files\Winamp\Plugins\pmp_usb.dll MOD - [2008-08-03 23:52:36 | 000,025,088 | ---- | M] () -- C:\Program Files\Winamp\Plugins\ml_rg.dll MOD - [2008-08-03 23:52:32 | 000,040,960 | ---- | M] () -- C:\Program Files\Winamp\Plugins\ml_dash.dll MOD - [2008-08-03 23:52:20 | 000,100,864 | ---- | M] () -- C:\Program Files\Winamp\System\jpeg.w5s MOD - [2008-08-03 23:52:14 | 000,026,624 | ---- | M] () -- C:\Program Files\Winamp\Plugins\ml_autotag.dll MOD - [2008-08-03 23:52:04 | 000,028,160 | ---- | M] () -- C:\Program Files\Winamp\Plugins\ml_transcode.dll MOD - [2008-08-03 23:51:56 | 000,057,856 | ---- | M] () -- C:\Program Files\Winamp\Plugins\ml_plg.dll MOD - [2008-08-03 23:51:44 | 000,039,424 | ---- | M] () -- C:\Program Files\Winamp\Plugins\in_flac.dll MOD - [2008-08-03 23:51:38 | 000,013,824 | ---- | M] () -- C:\Program Files\Winamp\System\gracenote.w5s MOD - [2008-08-03 23:51:32 | 000,007,168 | ---- | M] () -- C:\Program Files\Winamp\System\bmp.w5s MOD - [2008-08-03 23:51:30 | 000,017,408 | ---- | M] () -- C:\Program Files\Winamp\System\gif.w5s MOD - [2008-08-03 23:51:26 | 000,073,216 | ---- | M] () -- C:\Program Files\Winamp\Plugins\ml_orb.dll MOD - [2008-08-03 23:51:18 | 000,376,832 | ---- | M] () -- C:\Program Files\Winamp\Plugins\freeform\wacs\freetype\freetype.wac MOD - [2008-08-03 23:50:48 | 000,064,000 | ---- | M] () -- C:\Program Files\Winamp\tataki.dll MOD - [2008-08-03 23:50:12 | 000,088,064 | ---- | M] () -- C:\Program Files\Winamp\nde.dll MOD - [2008-08-03 23:50:06 | 000,046,592 | ---- | M] () -- C:\Program Files\Winamp\zlib.dll MOD - [2008-08-03 23:49:48 | 000,201,728 | ---- | M] () -- C:\Program Files\Winamp\libsndfile.dll MOD - [2007-10-09 23:50:22 | 000,189,440 | ---- | M] () -- C:\Program Files\Winamp\Plugins\gen_jumpex.dll MOD - [2006-09-14 00:20:24 | 000,126,464 | ---- | M] () -- C:\Program Files\WinRAR\RarExt.dll [color=#E56717]========== Services (SafeList) ==========[/color] SRV - [2014-02-21 21:42:02 | 000,257,928 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc) SRV - [2014-02-13 01:36:33 | 000,118,896 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance) SRV - [2012-09-23 20:43:34 | 000,065,192 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice) SRV - [2009-07-14 02:16:15 | 000,016,384 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\StorSvc.dll -- (StorSvc) SRV - [2009-07-14 02:16:13 | 000,025,088 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\sensrsvc.dll -- (SensrSvc) SRV - [2009-07-14 02:16:12 | 001,004,544 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\PeerDistSvc.dll -- (PeerDistSvc) SRV - [2009-07-14 02:15:41 | 000,680,960 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys -- (esgiguard) DRV - File not found [Kernel | On_Demand | Unknown] -- C:\Users\Bober\AppData\Local\Temp\aswMBR.sys -- (aswMBR) DRV - [2009-07-14 02:19:10 | 000,175,824 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\vmbus.sys -- (vmbus) DRV - [2009-07-14 02:19:10 | 000,040,896 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\vmstorfl.sys -- (storflt) DRV - [2009-07-14 02:19:10 | 000,028,224 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\storvsc.sys -- (storvsc) DRV - [2009-07-14 00:51:11 | 000,034,944 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\winusb.sys -- (WinUsb) DRV - [2009-07-14 00:28:47 | 000,005,632 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\vms3cap.sys -- (s3cap) DRV - [2009-07-14 00:28:45 | 000,017,920 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\VMBusHID.sys -- (VMBusHID) DRV - [2009-07-13 23:02:52 | 000,347,264 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\nvm62x32.sys -- (NVENETFD) DRV - [2009-06-10 22:19:48 | 009,853,248 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\nvlddmkm.sys -- (nvlddmkm) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank IE - HKLM\..\SearchScopes,DefaultScope = IE - HKLM\..\SearchScopes\{0191A6B0-1154-4C22-9182-23A95BBE92D9}: "URL" = http://www.google.com/search?q={searchTerms} IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank IE - HKCU\..\SearchScopes,DefaultScope = {0191A6B0-1154-4C22-9182-23A95BBE92D9} IE - HKCU\..\SearchScopes\{0191A6B0-1154-4C22-9182-23A95BBE92D9}: "URL" = http://www.google.com/search?q={searchTerms} IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 [color=#E56717]========== FireFox ==========[/color] FF - prefs.js..browser.search.order.1: "Google" FF - prefs.js..browser.search.selectedEngine: "Google" FF - prefs.js..browser.search.useDBForOrder: true FF - prefs.js..browser.startup.homepage: "about:home" FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:27.0.1 FF - user.js - File not found FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF32_12_0_0_70.dll () FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google) FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.51.2: C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.51.2: C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.) FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.) FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 27.0.1\extensions\\Components: C:\Program Files\Mozilla Firefox\components FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 27.0.1\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2014-02-15 12:08:48 | 000,000,000 | ---D | M] [2011-10-19 21:51:19 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Bober\AppData\Roaming\mozilla\Extensions [2014-02-28 09:17:26 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Bober\AppData\Roaming\mozilla\Firefox\Profiles\svt81gnt.default-1393542232274\extensions [2014-02-28 09:17:26 | 000,957,290 | ---- | M] () (No name found) -- C:\Users\Bober\AppData\Roaming\mozilla\firefox\profiles\svt81gnt.default-1393542232274\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-02-15 12:08:46 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\browser\extensions [2014-02-28 00:00:47 | 000,000,000 | ---D | M] (Default) -- C:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} [color=#E56717]========== Chrome ==========[/color] CHR - plugin: Error reading preferences file CHR - Extension: Google Wallet = C:\Users\Bober\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\ O1 HOSTS File: ([2009-06-10 22:39:37 | 000,000,824 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts O2 - BHO: (Skype add-on (mastermind)) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Skype Technologies S.A.) O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) O4 - HKLM..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe () O4 - HKCU..\Run: [ChomikBox] C:\Program Files\ChomikBox\chomikbox.exe ( ) O4 - HKCU..\Run: [Gadu-Gadu 10] C:\Program Files\Gadu-Gadu 10\gg.exe (GG Network S.A.) O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Infodelivery present O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoLowDiskSpaceChecks = 1 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 221 O9 - Extra Button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Skype Technologies S.A.) O13 - gopher Prefix: missing O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 10.10.10.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{70F97CA7-E7D2-4D49-BFC4-BA5DA3B40071}: DhcpNameServer = 10.10.10.1 O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies) O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\System32\userinit.exe (Microsoft Corporation) O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\System32\SystemPropertiesPerformance.exe (Microsoft Corporation) O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found. O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2009-06-10 22:42:20 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ] O32 - AutoRun File - [2011-10-17 21:59:53 | 000,000,063 | RHS- | M] () - D:\autorun.inf -- [ NTFS ] O32 - AutoRun File - [2011-10-17 21:59:53 | 000,000,063 | RHS- | M] () - E:\autorun.inf -- [ NTFS ] O32 - AutoRun File - [2004-10-26 09:19:26 | 000,003,456 | R--- | M] () - F:\autorun.apm -- [ CDFS ] O32 - AutoRun File - [2002-09-23 11:00:20 | 001,081,344 | R--- | M] (Indigo Rose Corporation) - F:\autorun.exe -- [ CDFS ] O32 - AutoRun File - [2002-06-24 13:48:58 | 000,002,238 | R--- | M] () - F:\autorun.ico -- [ CDFS ] O32 - AutoRun File - [2004-10-26 09:19:32 | 000,000,047 | R--- | M] () - F:\autorun.inf -- [ CDFS ] O33 - MountPoints2\{26f2ee56-94ef-11e1-bcdb-0024211016e2}\Shell - "" = AutoRun O33 - MountPoints2\{26f2ee56-94ef-11e1-bcdb-0024211016e2}\Shell\AutoRun\command - "" = G:\Launcher.exe O33 - MountPoints2\{4a785201-f9c6-11e0-88b8-806e6f6e6963}\Shell - "" = AutoRun O33 - MountPoints2\{4a785201-f9c6-11e0-88b8-806e6f6e6963}\Shell\AutoRun\command - "" = F:\autorun.exe -- [2002-09-23 11:00:20 | 001,081,344 | R--- | M] (Indigo Rose Corporation) O33 - MountPoints2\{789dd9e0-ae09-11e1-b44b-0024211016e2}\Shell - "" = AutoRun O33 - MountPoints2\{789dd9e0-ae09-11e1-b44b-0024211016e2}\Shell\AutoRun\command - "" = G:\Autorun.exe O33 - MountPoints2\G\Shell - "" = AutoRun O33 - MountPoints2\G\Shell\AutoRun\command - "" = G:\Launcher.exe O34 - HKLM BootExecute: (autocheck autochk *) O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3) O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2) O38 - SubSystems\\Windows: (ServerDll=sxssrv,4) [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2014-02-28 18:35:06 | 000,000,000 | ---D | C] -- C:\ProgramData\Oracle [2014-02-28 18:34:50 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Java [2014-02-28 18:34:46 | 000,264,616 | ---- | C] (Oracle Corporation) -- C:\Windows\System32\javaws.exe [2014-02-28 18:34:43 | 000,175,016 | ---- | C] (Oracle Corporation) -- C:\Windows\System32\javaw.exe [2014-02-28 18:34:43 | 000,174,504 | ---- | C] (Oracle Corporation) -- C:\Windows\System32\java.exe [2014-02-28 18:34:43 | 000,094,632 | ---- | C] (Oracle Corporation) -- C:\Windows\System32\WindowsAccessBridge.dll [2014-02-28 18:34:43 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java [2014-02-28 18:28:46 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CrystalDiskInfo [2014-02-28 18:28:37 | 000,000,000 | ---D | C] -- C:\Program Files\CrystalDiskInfo [2014-02-28 18:28:23 | 000,000,000 | ---D | C] -- C:\Users\Bober\AppData\Local\Programs [2014-02-28 18:19:10 | 000,000,000 | ---D | C] -- C:\_OTL [2014-02-28 00:00:47 | 000,000,000 | ---D | C] -- C:\Program Files\Mozilla Maintenance Service [2014-02-25 16:55:28 | 000,000,000 | ---D | C] -- C:\Users\Bober\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Postal 2 - Share the Pain [2014-02-25 16:55:28 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Postal 2 - Share the Pain [2014-02-24 10:34:06 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth [2014-02-20 22:14:35 | 000,000,000 | ---D | C] -- C:\AdwCleaner [2014-02-15 12:08:46 | 000,000,000 | ---D | C] -- C:\Program Files\Mozilla Firefox [2014-01-30 21:19:48 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Chomikuj.pl [2014-01-30 21:19:48 | 000,000,000 | ---D | C] -- C:\Program Files\ChomikBox [1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ] [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2014-02-28 18:41:00 | 000,000,930 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job [2014-02-28 18:39:08 | 000,014,032 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 [2014-02-28 18:39:08 | 000,014,032 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 [2014-02-28 18:36:21 | 000,001,034 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job [2014-02-28 18:34:35 | 000,094,632 | ---- | M] (Oracle Corporation) -- C:\Windows\System32\WindowsAccessBridge.dll [2014-02-28 18:34:34 | 000,264,616 | ---- | M] (Oracle Corporation) -- C:\Windows\System32\javaws.exe [2014-02-28 18:34:34 | 000,175,016 | ---- | M] (Oracle Corporation) -- C:\Windows\System32\javaw.exe [2014-02-28 18:34:34 | 000,174,504 | ---- | M] (Oracle Corporation) -- C:\Windows\System32\java.exe [2014-02-28 18:22:40 | 000,000,512 | ---- | M] () -- C:\Users\Bober\Desktop\MBR.dat [2014-02-28 17:44:37 | 000,001,030 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job [2014-02-28 17:44:26 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat [2014-02-28 17:44:24 | 2415,419,392 | -HS- | M] () -- C:\hiberfil.sys [2014-02-28 09:20:46 | 000,069,993 | ---- | M] () -- C:\Users\Bober\Desktop\twarz [].jpg [2014-02-28 00:00:51 | 000,001,105 | ---- | M] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk [2014-02-25 16:55:28 | 000,000,733 | ---- | M] () -- C:\Users\Bober\Desktop\Postal 2 - Share the Pain.lnk [2014-02-24 10:34:07 | 000,002,170 | ---- | M] () -- C:\Users\Public\Desktop\Google Earth.lnk [2014-02-21 21:42:01 | 000,692,616 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\System32\FlashPlayerApp.exe [2014-02-21 21:42:01 | 000,071,048 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\System32\FlashPlayerCPLApp.cpl [2014-02-17 12:09:25 | 000,296,790 | ---- | M] () -- C:\Users\Bober\Desktop\mestia.jpg [2014-02-16 14:13:03 | 000,001,495 | ---- | M] () -- C:\Windows\System32\Vot-i-konchilos_-leto-201333-IMPERIA-SSC-amp--L39One-Nyusha-Natali-B_yanka-Serebro-%D0%98van-Dorn-Ani-Lorak-Maks-Korzh-Diskotek-ETO-100-H%D0%98T33-Pis_mo-9835983498359834-Glavnyy-Saundtreki-OST-k-fil_.lnk [2014-02-04 19:15:59 | 000,690,938 | ---- | M] () -- C:\Windows\System32\perfh015.dat [2014-02-04 19:15:59 | 000,609,896 | ---- | M] () -- C:\Windows\System32\perfh009.dat [2014-02-04 19:15:59 | 000,132,432 | ---- | M] () -- C:\Windows\System32\perfc015.dat [2014-02-04 19:15:59 | 000,104,214 | ---- | M] () -- C:\Windows\System32\perfc009.dat [2014-01-30 21:19:54 | 000,000,632 | ---- | M] () -- C:\Users\Public\Desktop\ChomikBox.lnk [1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ] [color=#E56717]========== Files Created - No Company Name ==========[/color] [2014-02-28 18:22:40 | 000,000,512 | ---- | C] () -- C:\Users\Bober\Desktop\MBR.dat [2014-02-28 00:00:51 | 000,001,117 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk [2014-02-28 00:00:51 | 000,001,105 | ---- | C] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk [2014-02-25 16:55:28 | 000,000,733 | ---- | C] () -- C:\Users\Bober\Desktop\Postal 2 - Share the Pain.lnk [2014-02-24 10:34:07 | 000,002,170 | ---- | C] () -- C:\Users\Public\Desktop\Google Earth.lnk [2014-02-24 10:31:39 | 000,001,034 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job [2014-02-24 10:31:37 | 000,001,030 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job [2014-02-17 12:09:25 | 000,296,790 | ---- | C] () -- C:\Users\Bober\Desktop\mestia.jpg [2014-02-14 17:22:50 | 000,001,495 | ---- | C] () -- C:\Windows\System32\Vot-i-konchilos_-leto-201333-IMPERIA-SSC-amp--L39One-Nyusha-Natali-B_yanka-Serebro-%D0%98van-Dorn-Ani-Lorak-Maks-Korzh-Diskotek-ETO-100-H%D0%98T33-Pis_mo-9835983498359834-Glavnyy-Saundtreki-OST-k-fil_.lnk [2014-01-30 21:19:54 | 000,000,632 | ---- | C] () -- C:\Users\Public\Desktop\ChomikBox.lnk [2013-03-30 10:12:13 | 000,036,864 | ---- | C] () -- C:\Windows\StmClean.exe [2012-06-05 22:01:24 | 000,000,571 | ---- | C] () -- C:\Windows\eReg.dat [2012-06-05 17:35:37 | 000,139,264 | ---- | C] () -- C:\Windows\System32\fsgscom.dll [2012-04-24 20:07:06 | 000,000,058 | ---- | C] () -- C:\Windows\FinalAlert2.ini [2012-01-05 15:58:04 | 000,000,272 | ---- | C] () -- C:\Users\Bober\AppData\Roaming\burnaware.ini [color=#E56717]========== ZeroAccess Check ==========[/color] [2009-07-14 05:42:31 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini [HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] [HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] "" = %SystemRoot%\system32\shell32.dll -- [2009-07-14 02:16:14 | 012,866,560 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Apartment [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] "" = %systemroot%\system32\wbem\fastprox.dll -- [2009-07-14 02:15:20 | 000,605,696 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Free [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] "" = %systemroot%\system32\wbem\wbemess.dll -- [2009-07-14 02:16:17 | 000,342,528 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Both < End of report > CrystalDisk - wyskakuje mi że nie znaleziono dysku, po wejściu w menedżera dysków pokazuje tylko że wszystkie są zdrowe... Próbowałem raporty ukryć w logach ale coś mi nie wyszło...
Natsuki Kuga komentarz 1 marca 2014 komentarz 1 marca 2014 Uruchom aswMBR, przeskanuj nim, a następnie kliknij [b]Fix.[/b] Pokaż raport.
bober41 komentarz 1 marca 2014 Autor komentarz 1 marca 2014 aswMBR version 0.9.9.1771 Copyright(c) 2011 AVAST Software Run date: 2014-02-28 18:21:31 ----------------------------- 18:21:31.583 OS Version: Windows 6.1.7600 18:21:31.584 Number of processors: 2 586 0x6B02 18:21:31.586 ComputerName: BOBROWNIK UserName: Bober 18:21:31.926 Initialize success 18:22:10.956 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\00000106 18:22:10.958 Disk 0 Vendor: MAXTOR_S 4.AA Size: 238475MB BusType: 3 18:22:11.058 Disk 0 MBR read successfully 18:22:11.061 Disk 0 MBR scan 18:22:11.063 Disk 0 Windows 7 default MBR code 18:22:11.067 Disk 0 Partition 1 80 (A) 07 HPFS/NTFS NTFS 18002 MB offset 63 18:22:11.070 Disk 0 Partition - 00 0F Extended LBA 220462 MB offset 36869175 18:22:11.098 Disk 0 Partition 2 00 07 HPFS/NTFS NTFS 20002 MB offset 36869238 18:22:11.101 Disk 0 Partition - 00 05 Extended 200459 MB offset 77834925 18:22:11.118 Disk 0 Partition 3 00 07 HPFS/NTFS NTFS 200459 MB offset 77834988 18:22:11.123 Disk 0 scanning sectors +488376000 18:22:11.157 Disk 0 malicious Win32:MBRoot code @ sector 488376003 ! 18:22:11.162 Disk 0 PE file @ sector 488376025 ! 18:22:11.258 Disk 0 scanning C:\Windows\system32\drivers 18:22:14.687 Service scanning 18:22:23.518 Modules scanning 18:22:26.326 Disk 0 trace - called modules: 18:22:26.342 ntkrnlpa.exe CLASSPNP.SYS disk.sys ACPI.sys halmacpi.dll storport.sys nvstor.sys 18:22:26.348 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x867fc7c8] 18:22:26.354 3 CLASSPNP.SYS[8b77d59e] -> nt!IofCallDriver -> [0x860e95f8] 18:22:26.360 5 ACPI.sys[837c13b2] -> nt!IofCallDriver -> \Device\00000106[0x860e9030] 18:22:26.366 Scan finished successfully 18:22:40.749 Disk 0 MBR has been saved successfully to "C:\Users\Bober\Desktop\MBR.dat" 18:22:40.757 The log file has been saved successfully to "C:\Users\Bober\Desktop\aswMBR.txt" aswMBR version 0.9.9.1771 Copyright(c) 2011 AVAST Software Run date: 2014-03-01 12:15:08 ----------------------------- 12:15:08.240 OS Version: Windows 6.1.7600 12:15:08.240 Number of processors: 2 586 0x6B02 12:15:08.242 ComputerName: BOBROWNIK UserName: Bober 12:15:08.654 Initialize success 12:15:14.647 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\00000105 12:15:14.649 Disk 0 Vendor: MAXTOR_S 4.AA Size: 238475MB BusType: 3 12:15:14.757 Disk 0 MBR read successfully 12:15:14.760 Disk 0 MBR scan 12:15:14.762 Disk 0 Windows 7 default MBR code 12:15:14.775 Disk 0 Partition 1 80 (A) 07 HPFS/NTFS NTFS 18002 MB offset 63 12:15:14.778 Disk 0 Partition - 00 0F Extended LBA 220462 MB offset 36869175 12:15:14.805 Disk 0 Partition 2 00 07 HPFS/NTFS NTFS 20002 MB offset 36869238 12:15:14.809 Disk 0 Partition - 00 05 Extended 200459 MB offset 77834925 12:15:14.841 Disk 0 Partition 3 00 07 HPFS/NTFS NTFS 200459 MB offset 77834988 12:15:14.937 Disk 0 scanning sectors +488376000 12:15:14.980 Disk 0 malicious Win32:MBRoot code @ sector 488376003 ! 12:15:14.986 Disk 0 PE file @ sector 488376025 ! 12:15:15.066 Disk 0 scanning C:\Windows\system32\drivers 12:15:18.836 Service scanning 12:15:28.317 Modules scanning 12:15:34.681 Disk 0 trace - called modules: 12:15:34.698 ntkrnlpa.exe CLASSPNP.SYS disk.sys ACPI.sys halmacpi.dll storport.sys nvstor.sys HDAudBus.sys dxgkrnl.sys nvlddmkm.sys dxgmms1.sys tcpip.sys NETIO.SYS 12:15:34.704 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x867fe648] 12:15:34.709 3 CLASSPNP.SYS[8b78959e] -> nt!IofCallDriver -> [0x860e7b08] 12:15:34.715 5 ACPI.sys[837a33b2] -> nt!IofCallDriver -> \Device\00000105[0x860dc748] 12:15:34.721 Scan finished successfully 12:15:45.335 Disk 0 MBR read successfully 12:15:45.341 Disk 0 scanning sectors +488376000 12:15:45.375 Disk 0 malicious Win32:MBRoot code @ sector 488376003 ! 12:15:45.381 Disk 0 PE file @ sector 488376025 ! 12:15:45.388 Disk 0 sector 488376003 cleaned 12:15:45.394 Disk 0 sector 488376025 cleaned 12:15:45.400 Verifying disinfection 12:15:55.538 Infection fixed successfully - please reboot ASAP 12:16:03.949 Disk 0 MBR has been saved successfully to "C:\Users\Bober\Desktop\MBR.dat" 12:16:03.982 The log file has been saved successfully to "C:\Users\Bober\Desktop\aswMBR.txt"
Natsuki Kuga komentarz 3 marca 2014 komentarz 3 marca 2014 Czy ten nowy raport został wykonany po ponownym uruchomieniu, czy przed?
bober41 komentarz 3 marca 2014 Autor komentarz 3 marca 2014 Hmm, teraz nie wiem, zamieściłem to w sobotę... Pomóż mi bo normalnie nie da się nic zrobić... A na laptopie ni z tego ni z owego wszystko zrobiło się identyko!!!
Wciąż szukasz rozwiązania problemu? Napisz teraz na forum!
Możesz zadać pytanie bez konieczności rejestracji - wystarczy, że wypełnisz formularz.