Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

C:\WINDOWS\system32\cmd.exe maze subory

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
Uživatelský avatar
Dvori66
Návštěvník
Návštěvník
Příspěvky: 94
Registrován: 04 úno 2011 18:29
Kontaktovat uživatele:

Re: C:\WINDOWS\system32\cmd.exe maze subory

#16 Příspěvek od Dvori66 »

V nouzovém režimu sem našel C:\Program Files\trend micro\pc.exe ale místo pc.exe zde byl hijackthis a když jsem ho otevřel v poznámkovým bloku nenašel jsem řádku O4 - HKLM\..\Run: [ImagePath] C:\windows\system_32.bat tak jsem rovnou z disku smazal ten soubor system_32.bat a po restartování už mi nemizeli ikony :)
za chvilku sem dám ten OTL, teď se to skenuje.....

Uživatelský avatar
Dvori66
Návštěvník
Návštěvník
Příspěvky: 94
Registrován: 04 úno 2011 18:29
Kontaktovat uživatele:

Re: C:\WINDOWS\system32\cmd.exe maze subory

#17 Příspěvek od Dvori66 »

Nevešel se mi sel ten log tak ho chci dát jako přílohu, ale píše mi to, že přípona txt není povolena...a navíc když sem ho uložil, tak se mi objevili na ploše nové skryté soubory, mám je smazat??

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: C:\WINDOWS\system32\cmd.exe maze subory

#18 Příspěvek od motji »

Skryté soubory prosím nemazat :) . Pak je zase zakryjeme.
Log z OTL rozdělte do více příspěvků.
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

Uživatelský avatar
Dvori66
Návštěvník
Návštěvník
Příspěvky: 94
Registrován: 04 úno 2011 18:29
Kontaktovat uživatele:

Re: C:\WINDOWS\system32\cmd.exe maze subory

#19 Příspěvek od Dvori66 »

OTL logfile created on: 5.2.2011 13:27:11 - Run 1
OTL by OldTimer - Version 3.2.20.6 Folder = C:\Documents and Settings\pc\Plocha
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy

1 022,00 Mb Total Physical Memory | 203,00 Mb Available Physical Memory | 20,00% Memory free
2,00 Gb Paging File | 2,00 Gb Available in Paging File | 74,00% Paging File free
Paging file location(s): C:\pagefile.sys 0 0 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\windows | %ProgramFiles% = C:\Program Files
Drive C: | 298,08 Gb Total Space | 117,41 Gb Free Space | 39,39% Space Free | Partition Type: NTFS

Computer Name: COMPUTER | User Name: pc | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2011.02.05 13:25:11 | 000,602,624 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\pc\Plocha\OTL.exe
PRC - [2011.01.12 16:41:42 | 000,810,144 | ---- | M] (ESET) -- C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
PRC - [2011.01.12 16:41:24 | 002,219,184 | ---- | M] (ESET) -- C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
PRC - [2011.01.08 04:35:52 | 000,991,800 | ---- | M] (Google Inc.) -- C:\Documents and Settings\pc\Local Settings\Data aplikací\Google\Chrome\Application\chrome.exe
PRC - [2010.11.24 11:07:58 | 000,088,176 | ---- | M] (McAfee, Inc.) -- c:\Program Files\McAfee\SiteAdvisor\McSACore.exe
PRC - [2010.09.06 18:56:38 | 000,247,096 | ---- | M] () -- C:\Program Files\ICQ6Toolbar\ICQ Service.exe
PRC - [2010.08.23 08:01:40 | 001,825,408 | ---- | M] (NETGATE Technologies s.r.o.) -- C:\Program Files\NETGATE\Spy Emergency\SpyEmergencySrv.exe
PRC - [2010.08.19 05:58:13 | 002,953,112 | ---- | M] () -- C:\Program Files\Pando Networks\Media Booster\PMB.exe
PRC - [2010.04.30 15:58:02 | 000,176,128 | ---- | M] () -- C:\Documents and Settings\pc\Data aplikací\CoSoSys\HDDtoGO\HDDtoGOLaunch.exe
PRC - [2010.04.01 10:16:20 | 000,357,696 | ---- | M] (DT Soft Ltd) -- C:\Program Files\DAEMON Tools Lite\DTLite.exe
PRC - [2008.04.14 04:22:22 | 001,034,240 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2007.10.13 10:57:36 | 000,098,304 | ---- | M] () -- C:\Advanced Wheel Mouse\wh_exec.exe
PRC - [2004.11.02 19:24:46 | 000,032,768 | ---- | M] (Cyberlink Corp.) -- C:\Program Files\CyberLink DVD Solution\PowerDVD\PDVDServ.exe
PRC - [2003.05.08 11:00:58 | 000,049,152 | ---- | M] (ScanSoft, Inc.) -- C:\Program Files\ScanSoft\OmniPageSE2.0\opwareSE2.exe


========== Modules (SafeList) ==========

MOD - [2011.02.05 13:25:11 | 000,602,624 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\pc\Plocha\OTL.exe
MOD - [2011.01.04 17:38:44 | 000,018,176 | ---- | M] (McAfee, Inc.) -- c:\Program Files\McAfee\SiteAdvisor\sahook.dll
MOD - [2010.08.23 17:12:33 | 001,054,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.6028_x-ww_61e65202\comctl32.dll
MOD - [2007.10.13 10:57:36 | 000,036,864 | ---- | M] () -- C:\Advanced Wheel Mouse\wh_hook.dll
MOD - [2003.05.08 11:00:46 | 000,159,744 | ---- | M] (ScanSoft, Inc.) -- C:\Program Files\ScanSoft\OmniPageSE2.0\OpHookSE2.dll


========== Win32 Services (SafeList) ==========

SRV - [2011.01.12 16:44:02 | 000,033,584 | ---- | M] (ESET) [On_Demand | Stopped] -- C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe -- (EhttpSrv)
SRV - [2011.01.12 16:41:42 | 000,810,144 | ---- | M] (ESET) [Auto | Running] -- C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe -- (ekrn)
SRV - [2010.11.24 11:07:58 | 000,088,176 | ---- | M] (McAfee, Inc.) [Auto | Running] -- c:\Program Files\McAfee\SiteAdvisor\McSACore.exe -- (McAfee SiteAdvisor Service)
SRV - [2010.09.06 18:56:38 | 000,247,096 | ---- | M] () [Auto | Running] -- C:\Program Files\ICQ6Toolbar\ICQ Service.exe -- (ICQ Service)
SRV - [2010.08.23 08:01:40 | 001,825,408 | ---- | M] (NETGATE Technologies s.r.o.) [Auto | Running] -- C:\Program Files\NETGATE\Spy Emergency\SpyEmergencySrv.exe -- (SpyEmrgSrv)
SRV - [2010.01.15 13:49:20 | 000,227,232 | ---- | M] (McAfee, Inc.) [On_Demand | Stopped] -- C:\Program Files\McAfee Security Scan\2.0.181\McCHSvc.exe -- (McComponentHostService)
SRV - [2005.11.14 01:06:04 | 000,069,632 | ---- | M] (Macrovision Corporation) [On_Demand | Stopped] -- C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe -- (IDriverT)


========== Driver Services (SafeList) ==========

DRV - [2010.12.21 15:04:06 | 000,141,264 | ---- | M] (ESET) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\eamon.sys -- (eamon)
DRV - [2010.12.21 15:04:06 | 000,115,008 | ---- | M] (ESET) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\ehdrv.sys -- (ehdrv)
DRV - [2010.12.21 13:47:38 | 000,094,872 | ---- | M] (ESET) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\epfwtdir.sys -- (epfwtdir)
DRV - [2010.12.20 18:16:43 | 000,281,760 | ---- | M] () [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\atksgt.sys -- (atksgt)
DRV - [2010.12.20 18:16:42 | 000,025,888 | ---- | M] () [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\lirsgt.sys -- (lirsgt)
DRV - [2010.09.11 03:19:16 | 005,417,472 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ati2mtag.sys -- (ati2mtag)
DRV - [2010.02.03 14:56:56 | 000,026,176 | -H-- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\hamachi.sys -- (hamachi)
DRV - [2010.01.29 11:40:04 | 000,082,320 | ---- | M] (EZB Systems, Inc.) [File_System | System | Running] -- C:\Program Files\UltraISO\drivers\ISODrive.sys -- (ISODrive)
DRV - [2009.12.09 14:21:01 | 000,691,696 | ---- | M] () [Kernel | Boot | Running] -- C:\windows\System32\Drivers\sptd.sys -- (sptd)
DRV - [2009.09.17 07:58:44 | 000,018,232 | ---- | M] (NETGATE Technologies s.r.o.) [File_System | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\spyemrg_access.sys -- (SpyEmrgAccess)
DRV - [2009.09.17 07:58:34 | 000,014,392 | ---- | M] (NETGATE Technologies s.r.o.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\spyemrg_guard.sys -- (SpyEmrgGuard)
DRV - [2009.09.17 07:58:22 | 000,012,344 | ---- | M] (NETGATE Technologies s.r.o.) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\spyemrg.sys -- (SpyEmrg)
DRV - [2008.05.02 09:58:12 | 000,017,536 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ccdcmb.sys -- (nmwcd)
DRV - [2008.04.13 17:36:05 | 000,144,384 | ---- | M] (Windows (R) Server 2003 DDK provider) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\hdaudbus.sys -- (HDAudBus)
DRV - [2007.03.18 19:04:42 | 000,017,005 | ---- | M] (Adaptec) [Kernel | Auto | Running] -- C:\windows\System32\drivers\ASPI32.SYS -- (Aspi32)
DRV - [2007.01.30 11:57:50 | 004,474,368 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService) Service for Realtek HD Audio (WDM)
DRV - [2007.01.26 00:45:02 | 000,006,784 | ---- | M] () [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\whfltr2k.sys -- (whfltr2k)
DRV - [2006.12.28 17:44:44 | 000,084,992 | R--- | M] (ATI Research Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\AtiHdAud.sys -- (HdAudAddService)
DRV - [2006.11.22 07:01:00 | 000,250,496 | ---- | M] (Marvell) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\yk51x86.sys -- (yukonwxp)
DRV - [2005.11.03 15:40:07 | 000,063,488 | ---- | M] (Protection Technology) [Kernel | Boot | Running] -- C:\windows\System32\drivers\sfvfs02.sys -- (sfvfs02) StarForce Protection VFS Driver (version 2.x)
DRV - [2005.10.13 14:46:08 | 000,035,328 | ---- | M] (Protection Technology) [Kernel | Boot | Running] -- C:\windows\System32\drivers\sfsync03.sys -- (sfsync03) StarForce Protection Synchronization Driver (version 3.x)
DRV - [2005.08.10 15:06:28 | 000,019,968 | ---- | M] (Protection Technology) [Kernel | Boot | Running] -- C:\windows\System32\drivers\sfsync02.sys -- (sfsync02) StarForce Protection Synchronization Driver (version 2.x)
DRV - [2005.08.10 13:44:04 | 000,050,688 | ---- | M] (Protection Technology) [Kernel | Boot | Running] -- C:\windows\System32\drivers\sfdrv01.sys -- (sfdrv01) StarForce Protection Environment Driver (version 1.x)
DRV - [2005.05.16 14:20:39 | 000,006,656 | ---- | M] (Protection Technology) [Kernel | Boot | Running] -- C:\windows\System32\drivers\sfhlp02.sys -- (sfhlp02) StarForce Protection Helper Driver (version 2.x)
DRV - [2002.12.17 05:41:10 | 000,076,288 | ---- | M] (Rainbow Technologies, Inc.) [Kernel | Auto | Running] -- C:\windows\System32\Drivers\SENTINEL.SYS -- (Sentinel)
DRV - [2002.09.16 17:14:32 | 000,004,228 | ---- | M] (PowerQuest Corporation) [Kernel | System | Running] -- C:\windows\System32\drivers\PQNTDRV.sys -- (PQNTDrv)
DRV - [2001.08.17 20:49:10 | 000,026,624 | ---- | M] (SigmaTel, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\irstusb.sys -- (STIrUsb)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========



IE - HKU\.DEFAULT\..\URLSearchHook: - Reg Error: Key error. File not found
IE - HKU\.DEFAULT\..\URLSearchHook: {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll (ICQ)
IE - HKU\.DEFAULT\..\URLSearchHook: {A3BC75A2-1F87-4686-AA43-5347D756017C} - Reg Error: Key error. File not found
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\..\URLSearchHook: - Reg Error: Key error. File not found
IE - HKU\S-1-5-18\..\URLSearchHook: {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll (ICQ)
IE - HKU\S-1-5-18\..\URLSearchHook: {A3BC75A2-1F87-4686-AA43-5347D756017C} - Reg Error: Key error. File not found
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0



IE - HKU\S-1-5-21-117609710-1364589140-725345543-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://qip.ru
IE - HKU\S-1-5-21-117609710-1364589140-725345543-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://search.qip.ru
IE - HKU\S-1-5-21-117609710-1364589140-725345543-1003\SOFTWARE\Microsoft\Internet Explorer\Main,DefaultScope = {A3B1A68E-51A6-4355-BBD8-4F9F33248A0A}
IE - HKU\S-1-5-21-117609710-1364589140-725345543-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://search.qip.ru
IE - HKU\S-1-5-21-117609710-1364589140-725345543-1003\SOFTWARE\Microsoft\Internet Explorer\Main,SearchDefaultBranded = 1
IE - HKU\S-1-5-21-117609710-1364589140-725345543-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Secondary Start Pages = [binary data]
IE - HKU\S-1-5-21-117609710-1364589140-725345543-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://start.icq.com/xmas/
IE - HKU\S-1-5-21-117609710-1364589140-725345543-1003\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://search.qip.ru/ie
IE - HKU\S-1-5-21-117609710-1364589140-725345543-1003\..\URLSearchHook: - Reg Error: Key error. File not found
IE - HKU\S-1-5-21-117609710-1364589140-725345543-1003\..\URLSearchHook: {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
IE - HKU\S-1-5-21-117609710-1364589140-725345543-1003\..\URLSearchHook: {414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3} - C:\Program Files\Softonic-Eng7\tbSof2.dll (Conduit Ltd.)
IE - HKU\S-1-5-21-117609710-1364589140-725345543-1003\..\URLSearchHook: {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll (ICQ)
IE - HKU\S-1-5-21-117609710-1364589140-725345543-1003\..\URLSearchHook: {95289393-33EA-4F8D-B952-483415B9C955} - C:\Documents and Settings\pc\Data aplikací\Microsoft\Internet Explorer\qipsearchbar.dll (qip.ru)
IE - HKU\S-1-5-21-117609710-1364589140-725345543-1003\..\URLSearchHook: {EF99BD32-C1FB-11D2-892F-0090271D4F88} - Reg Error: Key error. File not found
IE - HKU\S-1-5-21-117609710-1364589140-725345543-1003\..\URLSearchHook: {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - C:\Program Files\BS_Player\tbBS_P.dll (Conduit Ltd.)
IE - HKU\S-1-5-21-117609710-1364589140-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-117609710-1364589140-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = 10.10.200.1:3128

========== FireFox ==========

FF - prefs.js..browser.search.defaultenginename: "WebHledani"
FF - prefs.js..browser.search.defaultthis.engineName: "BS Player Customized Web Search"
FF - prefs.js..browser.search.defaulturl: "http://search.conduit.com/ResultsExt.as ... earchTerms}"
FF - prefs.js..browser.search.order.1: "Ask"
FF - prefs.js..browser.search.selectedEngine: "WebHledani"
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: "http://www.seznam.cz/"
FF - prefs.js..extensions.enabledItems: cs@dictionaries.addons.mozilla.org:1.0.2
FF - prefs.js..extensions.enabledItems: {D4DD63FA-01E4-46a7-B6B1-EDAB7D6AD389}:0.9.7.2
FF - prefs.js..extensions.enabledItems: {800b5000-a755-47e1-992b-48a1c1357f07}:1.1.7
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20
FF - prefs.js..extensions.enabledItems: jqs@sun.com:1.0
FF - prefs.js..extensions.enabledItems: {414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3}:2.7.2.0
FF - prefs.js..extensions.enabledItems: extension@virtusdesigns.com:3.6.7
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}:6.0.21
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23
FF - prefs.js..extensions.enabledItems: {B7082FAA-CB62-4872-9106-E42DD88EDE45}:3.3
FF - prefs.js..extensions.enabledItems: {32a1fd71-835e-4b11-8e54-886fda0b4c89}:1.1
FF - prefs.js..extensions.enabledItems: {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}:3.2.5.2
FF - prefs.js..extensions.enabledItems: {5c8bfb7c-9a54-11dc-8314-0800200c9a66}:3.6.7
FF - prefs.js..extensions.enabledItems: {07b2a769-ed19-4483-87ce-c643914c9626}:1.6
FF - prefs.js..extensions.enabledItems: {e2c58150-9d72-11dd-ad8b-0800200c9a66}:1.3.1
FF - prefs.js..extensions.enabledItems: {239c61a8-e55f-11db-8314-0800200c9a66}:2.1.4
FF - prefs.js..extensions.enabledItems: {2458abc0-f443-11dd-87af-0800200c9a66}:3.6.3.1.03.04.10
FF - prefs.js..extensions.enabledItems: glowygold-ff3-30@glowplug.bitasylum.net:3.6.15
FF - prefs.js..extensions.enabledItems: info@djzig.com:1.2.5
FF - prefs.js..extensions.enabledItems: djziggy@gmail.com:1.2.5
FF - prefs.js..extensions.enabledItems: {5b35cb30-16b4-11de-8c30-0800200c9a66}:3.6.19.02.10
FF - prefs.js..extensions.enabledItems: {a02c0c70-605c-11da-8cd6-0800200c9a66}:4.22
FF - prefs.js..extensions.enabledItems: {c1dffba0-628e-11d9-9669-0800200c9a66}:3.6.3
FF - prefs.js..extensions.enabledItems: redshift_V2@shift-themes.com:3.6
FF - prefs.js..extensions.enabledItems: {586bd060-22d6-11de-8c30-0800200c9a66}:3.6.7
FF - prefs.js..extensions.enabledItems: {07b2a769-ed19-4483-87ce-c643914c81bb}:3.0.0.91
FF - prefs.js..extensions.enabledItems: {12bc3590-67a6-11de-8a39-0800200c9a66}:3.6.7
FF - prefs.js..extensions.enabledItems: {535531f0-c4f8-11df-851a-0800200c9a66}:0.921
FF - prefs.js..keyword.URL: "http://search.conduit.com/ResultsExt.as ... 1750559&q="
FF - prefs.js..network.proxy.backup.ftp: ""
FF - prefs.js..network.proxy.backup.ftp_port: 0
FF - prefs.js..network.proxy.backup.gopher: ""
FF - prefs.js..network.proxy.backup.gopher_port: 0
FF - prefs.js..network.proxy.backup.socks: ""
FF - prefs.js..network.proxy.backup.socks_port: 0
FF - prefs.js..network.proxy.backup.ssl: ""
FF - prefs.js..network.proxy.backup.ssl_port: 0
FF - prefs.js..network.proxy.ftp: "10.10.200.1"
FF - prefs.js..network.proxy.ftp_port: 3128
FF - prefs.js..network.proxy.gopher: "10.10.200.1"
FF - prefs.js..network.proxy.gopher_port: 3128
FF - prefs.js..network.proxy.http: "10.10.200.1"
FF - prefs.js..network.proxy.http_port: 3128
FF - prefs.js..network.proxy.share_proxy_settings: true
FF - prefs.js..network.proxy.socks: "10.10.200.1"
FF - prefs.js..network.proxy.socks_port: 3128
FF - prefs.js..network.proxy.ssl: "10.10.200.1"
FF - prefs.js..network.proxy.ssl_port: 3128

FF - HKLM\software\mozilla\Firefox\Extensions\\{B7082FAA-CB62-4872-9106-E42DD88EDE45}: C:\Program Files\McAfee\SiteAdvisor [2011.01.12 18:38:49 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.13\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2010.12.16 16:25:11 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.13\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2010.12.14 18:06:25 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Thunderbird\Extensions\\eplgTb@eset.com: C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird [2011.02.01 16:46:17 | 000,000,000 | ---D | M]

[2009.07.10 13:05:55 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\pc\Data aplikací\Mozilla\Extensions
[2009.07.10 12:52:57 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\pc\Data aplikací\Mozilla\Extensions\MediaCoder
[2009.07.10 13:05:55 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\pc\Data aplikací\Mozilla\Extensions\XulPlayer
[2011.02.03 18:29:01 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\pc\Data aplikací\Mozilla\Firefox\Profiles\033f1g61.default\extensions
[2009.10.10 09:07:51 | 000,000,000 | ---D | M] (Gold Steel) -- C:\Documents and Settings\pc\Data aplikací\Mozilla\Firefox\Profiles\033f1g61.default\extensions\{030869c0-68e7-11dd-ad8b-0800200c9a66}
[2010.07.08 18:15:57 | 000,000,000 | ---D | M] (Vista-aero) -- C:\Documents and Settings\pc\Data aplikací\Mozilla\Firefox\Profiles\033f1g61.default\extensions\{07b2a769-ed19-4483-87ce-c643914c81bb}
[2010.01.28 13:26:49 | 000,000,000 | ---D | M] (ANTHEM) -- C:\Documents and Settings\pc\Data aplikací\Mozilla\Firefox\Profiles\033f1g61.default\extensions\{07b2a769-ed19-4483-87ce-c643914c9626}
[2011.02.02 13:40:42 | 000,000,000 | ---D | M] (Eclipse) -- C:\Documents and Settings\pc\Data aplikací\Mozilla\Firefox\Profiles\033f1g61.default\extensions\{12bc3590-67a6-11de-8a39-0800200c9a66}
[2010.06.15 16:14:34 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Documents and Settings\pc\Data aplikací\Mozilla\Firefox\Profiles\033f1g61.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2010.07.28 17:40:08 | 000,000,000 | ---D | M] (BlackX) -- C:\Documents and Settings\pc\Data aplikací\Mozilla\Firefox\Profiles\033f1g61.default\extensions\{239c61a8-e55f-11db-8314-0800200c9a66}
[2010.04.10 07:36:10 | 000,000,000 | ---D | M] (Bloody Red) -- C:\Documents and Settings\pc\Data aplikací\Mozilla\Firefox\Profiles\033f1g61.default\extensions\{2458abc0-f443-11dd-87af-0800200c9a66}
[2010.12.26 18:13:04 | 000,000,000 | ---D | M] (QipAuthorizer) -- C:\Documents and Settings\pc\Data aplikací\Mozilla\Firefox\Profiles\033f1g61.default\extensions\{32a1fd71-835e-4b11-8e54-886fda0b4c89}
[2010.08.20 12:45:12 | 000,000,000 | ---D | M] (Softonic-Eng7 Toolbar) -- C:\Documents and Settings\pc\Data aplikací\Mozilla\Firefox\Profiles\033f1g61.default\extensions\{414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3}
[2009.05.23 09:06:55 | 000,000,000 | ---D | M] (Acid Burn) -- C:\Documents and Settings\pc\Data aplikací\Mozilla\Firefox\Profiles\033f1g61.default\extensions\{47d1d620-5e5b-11da-8cd6-0800200c9a66}
[2010.12.31 19:12:04 | 000,000,000 | ---D | M] (SmallringFX DARKOrange) -- C:\Documents and Settings\pc\Data aplikací\Mozilla\Firefox\Profiles\033f1g61.default\extensions\{535531f0-c4f8-11df-851a-0800200c9a66}
[2010.11.24 19:18:08 | 000,000,000 | ---D | M] (Revelation) -- C:\Documents and Settings\pc\Data aplikací\Mozilla\Firefox\Profiles\033f1g61.default\extensions\{586bd060-22d6-11de-8c30-0800200c9a66}
[2010.07.08 14:24:51 | 000,000,000 | ---D | M] (Orange Fox) -- C:\Documents and Settings\pc\Data aplikací\Mozilla\Firefox\Profiles\033f1g61.default\extensions\{5b35cb30-16b4-11de-8c30-0800200c9a66}
[2010.11.18 18:12:32 | 000,000,000 | ---D | M] (Aero Fox XL) -- C:\Documents and Settings\pc\Data aplikací\Mozilla\Firefox\Profiles\033f1g61.default\extensions\{5c8bfb7c-9a54-11dc-8314-0800200c9a66}
[2011.02.01 19:05:04 | 000,000,000 | ---D | M] ("ICQ Toolbar") -- C:\Documents and Settings\pc\Data aplikací\Mozilla\Firefox\Profiles\033f1g61.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}
[2010.01.28 13:27:04 | 000,000,000 | ---D | M] (PimpZilla) -- C:\Documents and Settings\pc\Data aplikací\Mozilla\Firefox\Profiles\033f1g61.default\extensions\{a02c0c70-605c-11da-8cd6-0800200c9a66}
[2010.11.14 11:56:31 | 000,000,000 | ---D | M] (PitchDark) -- C:\Documents and Settings\pc\Data aplikací\Mozilla\Firefox\Profiles\033f1g61.default\extensions\{c1dffba0-628e-11d9-9669-0800200c9a66}
[2010.10.10 07:34:36 | 000,000,000 | ---D | M] (Download Statusbar) -- C:\Documents and Settings\pc\Data aplikací\Mozilla\Firefox\Profiles\033f1g61.default\extensions\{D4DD63FA-01E4-46a7-B6B1-EDAB7D6AD389}
[2010.07.08 14:29:53 | 000,000,000 | ---D | M] (Black Steel) -- C:\Documents and Settings\pc\Data aplikací\Mozilla\Firefox\Profiles\033f1g61.default\extensions\{e2c58150-9d72-11dd-ad8b-0800200c9a66}
[2011.01.15 15:32:44 | 000,000,000 | ---D | M] (BS Player Community Toolbar) -- C:\Documents and Settings\pc\Data aplikací\Mozilla\Firefox\Profiles\033f1g61.default\extensions\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}
[2010.09.18 17:17:19 | 000,000,000 | ---D | M] (ÄŚeskĂ© slovnĂ­ky pro kontrolu pravopisu) -- C:\Documents and Settings\pc\Data aplikací\Mozilla\Firefox\Profiles\033f1g61.default\extensions\cs@dictionaries.addons.mozilla.org
[2011.02.02 13:40:45 | 000,000,000 | ---D | M] (LavaFox V1-Blue) -- C:\Documents and Settings\pc\Data aplikací\Mozilla\Firefox\Profiles\033f1g61.default\extensions\djziggy@gmail.com
[2011.02.02 13:40:48 | 000,000,000 | ---D | M] (Virtus Search Opt-in) -- C:\Documents and Settings\pc\Data aplikací\Mozilla\Firefox\Profiles\033f1g61.default\extensions\extension@virtusdesigns.com
[2011.02.02 13:40:44 | 000,000,000 | ---D | M] (glowygold) -- C:\Documents and Settings\pc\Data aplikací\Mozilla\Firefox\Profiles\033f1g61.default\extensions\glowygold-ff3-30@glowplug.bitasylum.net
[2011.02.02 13:40:45 | 000,000,000 | ---D | M] (LavaFox V1) -- C:\Documents and Settings\pc\Data aplikací\Mozilla\Firefox\Profiles\033f1g61.default\extensions\info@djzig.com
[2010.11.19 19:36:56 | 000,000,000 | ---D | M] (RedShift V3.6) -- C:\Documents and Settings\pc\Data aplikací\Mozilla\Firefox\Profiles\033f1g61.default\extensions\redshift_V2@shift-themes.com
[2011.02.02 13:40:48 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\pc\Data aplikací\Mozilla\Firefox\Profiles\033f1g61.default\extensions\extension@virtusdesigns.com\defaults
[2011.02.02 13:40:48 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\pc\Data aplikací\Mozilla\Firefox\Profiles\033f1g61.default\extensions\extension@virtusdesigns.com\chrome
[2010.07.08 18:15:57 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\pc\Data aplikací\Mozilla\Firefox\Profiles\033f1g61.default\extensions\{07b2a769-ed19-4483-87ce-c643914c81bb}\chrome\mozapps\extensions
[2011.02.02 13:40:42 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\pc\Data aplikací\Mozilla\Firefox\Profiles\033f1g61.default\extensions\{12bc3590-67a6-11de-8a39-0800200c9a66}\chrome\win\mozapps\extensions
[2010.12.31 19:12:04 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\pc\Data aplikací\Mozilla\Firefox\Profiles\033f1g61.default\extensions\{535531f0-c4f8-11df-851a-0800200c9a66}\chrome\mozapps\extensions
[2010.11.24 19:18:08 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\pc\Data aplikací\Mozilla\Firefox\Profiles\033f1g61.default\extensions\{586bd060-22d6-11de-8c30-0800200c9a66}\chrome\win\mozapps\extensions
[2010.11.18 18:12:32 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\pc\Data aplikací\Mozilla\Firefox\Profiles\033f1g61.default\extensions\{5c8bfb7c-9a54-11dc-8314-0800200c9a66}\chrome\win\mozapps\extensions
[2009.09.01 11:38:09 | 000,000,681 | ---- | M] () -- C:\Documents and Settings\pc\Data aplikací\Mozilla\Firefox\Profiles\033f1g61.default\searchplugins\ask.xml
[2010.12.15 15:48:16 | 000,000,921 | ---- | M] () -- C:\Documents and Settings\pc\Data aplikací\Mozilla\Firefox\Profiles\033f1g61.default\searchplugins\conduit.xml
[2010.04.25 08:54:28 | 000,002,059 | ---- | M] () -- C:\Documents and Settings\pc\Data aplikací\Mozilla\Firefox\Profiles\033f1g61.default\searchplugins\daemon-search.xml
[2011.02.01 18:08:43 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\pc\Data aplikací\Mozilla\Firefox\Profiles\033f1g61.default\searchplugins\icqplugin-1.xml
[2010.10.07 13:55:41 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\pc\Data aplikací\Mozilla\Firefox\Profiles\033f1g61.default\searchplugins\icqplugin-10.xml
[2010.10.27 10:26:26 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\pc\Data aplikací\Mozilla\Firefox\Profiles\033f1g61.default\searchplugins\icqplugin-11.xml
[2010.12.14 18:07:04 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\pc\Data aplikací\Mozilla\Firefox\Profiles\033f1g61.default\searchplugins\icqplugin-12.xml
[2010.12.26 15:46:30 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\pc\Data aplikací\Mozilla\Firefox\Profiles\033f1g61.default\searchplugins\icqplugin-13.xml
[2009.04.22 13:07:05 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\pc\Data aplikací\Mozilla\Firefox\Profiles\033f1g61.default\searchplugins\icqplugin-2.xml
[2009.04.29 15:33:54 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\pc\Data aplikací\Mozilla\Firefox\Profiles\033f1g61.default\searchplugins\icqplugin-3.xml
[2009.07.09 11:39:03 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\pc\Data aplikací\Mozilla\Firefox\Profiles\033f1g61.default\searchplugins\icqplugin-4.xml
[2009.10.10 12:04:01 | 000,000,961 | ---- | M] () -- C:\Documents and Settings\pc\Data aplikací\Mozilla\Firefox\Profiles\033f1g61.default\searchplugins\icqplugin-5.xml
[2010.07.08 14:44:38 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\pc\Data aplikací\Mozilla\Firefox\Profiles\033f1g61.default\searchplugins\icqplugin-6.xml
[2010.07.20 08:52:25 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\pc\Data aplikací\Mozilla\Firefox\Profiles\033f1g61.default\searchplugins\icqplugin-7.xml
[2010.08.20 06:29:31 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\pc\Data aplikací\Mozilla\Firefox\Profiles\033f1g61.default\searchplugins\icqplugin-8.xml
[2010.10.02 16:20:50 | 000,000,950 | ---- | M] () -- C:\Documents and Settings\pc\Data aplikací\Mozilla\Firefox\Profiles\033f1g61.default\searchplugins\icqplugin-9.xml
[2010.11.08 18:48:18 | 000,001,028 | ---- | M] () -- C:\Documents and Settings\pc\Data aplikací\Mozilla\Firefox\Profiles\033f1g61.default\searchplugins\icqplugin.xml
[2010.12.26 18:13:35 | 000,002,062 | ---- | M] () -- C:\Documents and Settings\pc\Data aplikací\Mozilla\Firefox\Profiles\033f1g61.default\searchplugins\qip-search.xml
[2011.02.03 18:29:01 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
[2009.10.10 12:03:45 | 000,000,000 | ---D | M] ("ICQ Toolbar") -- C:\Program Files\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}
[2010.06.23 19:13:03 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}
[2010.08.25 07:27:57 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}
[2010.10.24 12:49:50 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}
[2010.12.25 09:36:40 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}
File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\PC\DATA APLIKACĂ­\MOZILLA\FIREFOX\PROFILES\033F1G61.DEFAULT\EXTENSIONS\{20A82645-C095-46ED-80E3-08825760534B}
File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\PC\DATA APLIKACĂ­\MOZILLA\FIREFOX\PROFILES\033F1G61.DEFAULT\EXTENSIONS\{32A1FD71-835E-4B11-8E54-886FDA0B4C89}
File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\PC\DATA APLIKACĂ­\MOZILLA\FIREFOX\PROFILES\033F1G61.DEFAULT\EXTENSIONS\{414B6D9D-4A95-4E8D-B5B1-149DD2D93BB3}
File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\PC\DATA APLIKACĂ­\MOZILLA\FIREFOX\PROFILES\033F1G61.DEFAULT\EXTENSIONS\{800B5000-A755-47E1-992B-48A1C1357F07}
File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\PC\DATA APLIKACĂ­\MOZILLA\FIREFOX\PROFILES\033F1G61.DEFAULT\EXTENSIONS\{D4DD63FA-01E4-46A7-B6B1-EDAB7D6AD389}
File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\PC\DATA APLIKACĂ­\MOZILLA\FIREFOX\PROFILES\033F1G61.DEFAULT\EXTENSIONS\{FED66DC5-1B74-4A04-8F5C-15C5ACE2B9A5}
File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\PC\DATA APLIKACĂ­\MOZILLA\FIREFOX\PROFILES\033F1G61.DEFAULT\EXTENSIONS\CS@DICTIONARIES.ADDONS.MOZILLA.ORG
File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\PC\DATA APLIKACĂ­\MOZILLA\FIREFOX\PROFILES\033F1G61.DEFAULT\EXTENSIONS\EXTENSION@VIRTUSDESIGNS.COM
[2010.06.23 19:12:44 | 000,000,000 | ---D | M] (Java Quick Starter) -- C:\PROGRAM FILES\JAVA\JRE6\LIB\DEPLOY\JQS\FF
[2011.01.12 18:38:49 | 000,000,000 | ---D | M] (McAfee SiteAdvisor) -- C:\PROGRAM FILES\MCAFEE\SITEADVISOR
[2010.11.12 18:53:06 | 000,472,808 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npdeployJava1.dll
[2010.07.29 15:59:50 | 000,000,638 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\jyxo-cz.xml
[2010.07.29 15:59:50 | 000,001,687 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\mall-cz.xml
[2010.12.25 15:36:46 | 000,002,021 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\McSiteAdvisor.xml
[2010.07.29 15:59:50 | 000,001,367 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\seznam-cz.xml
[2010.07.29 15:59:50 | 000,000,654 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\slunecnice-cz.xml
[2010.07.29 15:59:50 | 000,001,179 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wikipedia-cz.xml

O1 HOSTS File: ([2009.05.14 13:51:00 | 000,306,641 | R--- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: 127.0.0.1 www.007guard.com
O1 - Hosts: 127.0.0.1 007guard.com
O1 - Hosts: 127.0.0.1 008i.com
O1 - Hosts: 127.0.0.1 www.008k.com
O1 - Hosts: 127.0.0.1 008k.com
O1 - Hosts: 127.0.0.1 www.00hq.com
O1 - Hosts: 127.0.0.1 00hq.com
O1 - Hosts: 127.0.0.1 010402.com
O1 - Hosts: 127.0.0.1 www.032439.com
O1 - Hosts: 127.0.0.1 032439.com
O1 - Hosts: 127.0.0.1 www.100888290cs.com
O1 - Hosts: 127.0.0.1 100888290cs.com
O1 - Hosts: 127.0.0.1 www.100sexlinks.com
O1 - Hosts: 127.0.0.1 100sexlinks.com
O1 - Hosts: 127.0.0.1 www.10sek.com
O1 - Hosts: 127.0.0.1 10sek.com
O1 - Hosts: 127.0.0.1 www.123topsearch.com
O1 - Hosts: 127.0.0.1 123topsearch.com
O1 - Hosts: 127.0.0.1 www.132.com
O1 - Hosts: 127.0.0.1 132.com
O1 - Hosts: 127.0.0.1 www.136136.net
O1 - Hosts: 127.0.0.1 136136.net
O1 - Hosts: 127.0.0.1 www.163ns.com
O1 - Hosts: 127.0.0.1 163ns.com
O1 - Hosts: 10558 more lines...
O2 - BHO: (Podpora odkazu pro Adobe PDF Reader) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
O2 - BHO: (Conduit Engine) - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\ConduitEngin0.dll (Conduit Ltd.)
O2 - BHO: (Softonic-Eng7 Toolbar) - {414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3} - C:\Program Files\Softonic-Eng7\tbSof2.dll (Conduit Ltd.)
O2 - BHO: (no name) - {7c5c0f58-e061-457d-9033-77307f5ed00c} - No CLSID value found.
O2 - BHO: (QIPBHO Class) - {95289393-33EA-4F8D-B952-483415B9C955} - C:\Documents and Settings\pc\Data aplikací\Microsoft\Internet Explorer\qipsearchbar.dll (qip.ru)
O2 - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.6.5805.1910\swg.dll (Google Inc.)
O2 - BHO: (McAfee SiteAdvisor BHO) - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
O2 - BHO: (Lištička) - {EA837F48-5AD1-443E-AE34-FFE03CBF3099} - C:\Program Files\Seznam.cz\listicka.dll ()
O2 - BHO: (BS Player Toolbar) - {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - C:\Program Files\BS_Player\tbBS_P.dll (Conduit Ltd.)
O3 - HKLM\..\Toolbar: (McAfee SiteAdvisor Toolbar) - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
O3 - HKLM\..\Toolbar: (Google Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
O3 - HKLM\..\Toolbar: (no name) - {3041d03e-fd4b-44e0-b742-2d9b88305f98} - No CLSID value found.
O3 - HKLM\..\Toolbar: (Easy-WebPrint) - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll ()
O3 - HKLM\..\Toolbar: (Softonic-Eng7 Toolbar) - {414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3} - C:\Program Files\Softonic-Eng7\tbSof2.dll (Conduit Ltd.)
O3 - HKLM\..\Toolbar: (ICQToolBar) - {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll (ICQ)
O3 - HKLM\..\Toolbar: (no name) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - No CLSID value found.
O3 - HKLM\..\Toolbar: (BS Player Toolbar) - {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - C:\Program Files\BS_Player\tbBS_P.dll (Conduit Ltd.)
O3 - HKU\S-1-5-21-117609710-1364589140-725345543-1003\..\Toolbar\WebBrowser: (Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
O3 - HKU\S-1-5-21-117609710-1364589140-725345543-1003\..\Toolbar\WebBrowser: (Softonic-Eng7 Toolbar) - {414B6D9D-4A95-4E8D-B5B1-149DD2D93BB3} - C:\Program Files\Softonic-Eng7\tbSof2.dll (Conduit Ltd.)
O3 - HKU\S-1-5-21-117609710-1364589140-725345543-1003\..\Toolbar\WebBrowser: (BS Player Toolbar) - {FED66DC5-1B74-4A04-8F5C-15C5ACE2B9A5} - C:\Program Files\BS_Player\tbBS_P.dll (Conduit Ltd.)
O4 - HKLM..\Run: [Adobe Reader Speed Launcher] C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [Alcmtr] C:\windows\Alcmtr.exe (Realtek Semiconductor Corp.)
O4 - HKLM..\Run: [ATICustomerCare] C:\Program Files\ATI\ATICustomerCare\ATICustomerCare.exe (Advanced Micro Devices, Inc.)
O4 - HKLM..\Run: [egui] C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe (ESET)
O4 - HKLM..\Run: [ImagePath] File not found
O4 - HKLM..\Run: [OpwareSE2] C:\Program Files\ScanSoft\OmniPageSE2.0\OpwareSE2.exe (ScanSoft, Inc.)
O4 - HKLM..\Run: [RemoteControl] C:\Program Files\CyberLink DVD Solution\PowerDVD\PDVDServ.exe (Cyberlink Corp.)
O4 - HKLM..\Run: [SkyTel] C:\windows\SkyTel.exe (Realtek Semiconductor Corp.)
O4 - HKLM..\Run: [WheelMouse] C:\Advanced Wheel Mouse\wh_exec.exe ()
O4 - HKU\S-1-5-21-117609710-1364589140-725345543-1003..\Run: [DAEMON Tools Lite] C:\Program Files\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd)
O4 - HKU\S-1-5-21-117609710-1364589140-725345543-1003..\Run: [HDDtoGOLaunch] C:\Documents and Settings\pc\Data aplikací\CoSoSys\HDDtoGO\HDDtoGOLaunch.exe ()
O4 - HKU\S-1-5-21-117609710-1364589140-725345543-1003..\Run: [Pando Media Booster] C:\Program Files\Pando Networks\Media Booster\PMB.exe ()
O4 - HKU\S-1-5-21-117609710-1364589140-725345543-1003..\Run: [PowerBar] File not found
O4 - HKU\S-1-5-21-117609710-1364589140-725345543-1003..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe (Google Inc.)
O4 - HKLM..\RunOnce: [AvgUninstallURL] C:\windows\System32\cmd.exe (Microsoft Corporation)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-117609710-1364589140-725345543-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O8 - Extra context menu item: Easy-WebPrint Add To Print List - C:\Program Files\Canon\Easy-WebPrint\Resource.dll ()
O8 - Extra context menu item: Easy-WebPrint High Speed Print - C:\Program Files\Canon\Easy-WebPrint\Resource.dll ()
O8 - Extra context menu item: Easy-WebPrint Preview - C:\Program Files\Canon\Easy-WebPrint\Resource.dll ()
O8 - Extra context menu item: Easy-WebPrint Print - C:\Program Files\Canon\Easy-WebPrint\Resource.dll ()
O8 - Extra context menu item: WikiKomentáře Google... - C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_950DF09FAB501E03.dll (Google Inc.)
O9 - Extra Button: Nastavení Lištičky ... - {0E46D7B6-887D-4F81-B4CA-FCC92AF73610} - C:\Program Files\Seznam.cz\listicka.dll ()
O9 - Extra 'Tools' menuitem : Nastavení Lištičky ... - {0E46D7B6-887D-4F81-B4CA-FCC92AF73610} - C:\Program Files\Seznam.cz\listicka.dll ()
O9 - Extra Button: Zvýrazňovač slov Lištičky - {4E6D6F90-31CA-4878-A7A3-1CD50F115A69} - C:\Program Files\Seznam.cz\listicka.dll ()
O9 - Extra 'Tools' menuitem : Zvýrazňovač slov Lištičky - {4E6D6F90-31CA-4878-A7A3-1CD50F115A69} - C:\Program Files\Seznam.cz\listicka.dll ()
O9 - Extra Button: ICQ7.4 - {73C6DCFB-B606-47F3-BDFA-9A4FBF931E37} - C:\Program Files\ICQ7.4\ICQ.exe (ICQ, LLC.)
O9 - Extra 'Tools' menuitem : ICQ7.4 - {73C6DCFB-B606-47F3-BDFA-9A4FBF931E37} - C:\Program Files\ICQ7.4\ICQ.exe (ICQ, LLC.)
O15 - HKU\S-1-5-21-117609710-1364589140-725345543-1003\..Trusted Domains: internet ([]about in Local intranet)
O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} http://security.symantec.com/sscv6/Shar ... vSniff.cab (Symantec AntiVirus scanner)
O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} http://security.symantec.com/sscv6/Shar ... /cabsa.cab (Symantec RuFSI Utility Class)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_23)
O16 - DPF: {CAFEEFAC-0015-0000-0004-ABCDEFFEDCBA} http://java.sun.com/update/1.5.0/jinsta ... s-i586.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_23)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_23)
O18 - Protocol\Handler\dssrequest {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
O18 - Protocol\Handler\sacore {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\windows\explorer.exe (Microsoft Corporation)
O20 - Winlogon\Notify\AtiExtEvent: DllName - Ati2evxx.dll - C:\windows\System32\ati2evxx.dll (ATI Technologies Inc.)
O24 - Desktop Components:0 () - file:///C:/DOCUME~1/pc/LOCALS~1/Temp/msohtml1/01/clip_image002.gif
O24 - Desktop Components:1 (Aktuální domovská stránka) - About:Home
O24 - Desktop WallPaper: C:\Documents and Settings\pc\Local Settings\Data aplikací\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\pc\Local Settings\Data aplikací\Microsoft\Wallpaper1.bmp
O28 - HKLM ShellExecuteHooks: {56F9679E-7826-4C84-81F3-532071A8BCC5} - C:\Program Files\Windows Desktop Search\MsnlNamespaceMgr.dll (Microsoft Corporation)
O32 - HKLM CDRom: AutoRun - 1
O33 - MountPoints2\{e15a68c6-54f1-11de-80ce-00508dbc4ec8}\Shell - "" = AutoRun
O33 - MountPoints2\{e15a68c6-54f1-11de-80ce-00508dbc4ec8}\Shell\AutoRun\command - "" = C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL wscript.exe MS32DLL.dll.vbs
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

NetSvcs: 6to4 - File not found
NetSvcs: Ias - File not found
NetSvcs: Iprip - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: WmdmPmSp - File not found

Drivers32: msacm.ac3filter - C:\windows\System32\ac3filter.acm ()
Drivers32: msacm.divxa32 - C:\windows\System32\divxa32.acm (Kristal StudioDFileDescription)
Drivers32: msacm.iac2 - C:\WINDOWS\system32\iac25_32.ax (Intel Corporation)
Drivers32: msacm.l3acm - C:\WINDOWS\system32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.lhacm - C:\windows\System32\lhacm.acm (Microsoft Corporation)
Drivers32: msacm.sl_anet - C:\windows\System32\sl_anet.acm (Sipro Lab Telecom Inc.)
Drivers32: msacm.trspch - C:\windows\System32\tssoft32.acm (DSP GROUP, INC.)
Drivers32: msacm.vorbis - C:\windows\System32\vorbis.acm (HMS http://hp.vector.co.jp/authors/VA012897/)
Drivers32: vidc.cvid - C:\windows\System32\iccvid.dll (Radius Inc.)
Drivers32: VIDC.FFDS - C:\windows\System32\ffdshow.ax ()
Drivers32: vidc.iv31 - C:\windows\System32\ir32_32.dll ()
Drivers32: vidc.iv32 - C:\windows\System32\ir32_32.dll ()
Drivers32: vidc.iv41 - C:\windows\System32\ir41_32.ax (Intel Corporation)
Drivers32: vidc.iv50 - C:\windows\System32\ir50_32.dll (Intel Corporation)
Drivers32: vidc.VP60 - C:\WINDOWS\system32\vp6vfw.dll (On2.com)
Drivers32: vidc.VP61 - C:\WINDOWS\system32\vp6vfw.dll (On2.com)
Drivers32: vidc.wmv3 - C:\windows\System32\WMV9VCM.dll (Microsoft Corporation)

CREATERESTOREPOINT
Restore point Set: OTL Restore Point (56308550258917376)

========== Files/Folders - Created Within 30 Days ==========

[2011.02.05 13:25:18 | 000,602,624 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\pc\Plocha\OTL.exe
[2011.02.05 12:15:14 | 000,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\windows\System32\drivers\mbamswissarmy.sys
[2011.02.05 12:15:08 | 000,020,952 | ---- | C] (Malwarebytes Corporation) -- C:\windows\System32\drivers\mbam.sys
[2011.02.05 12:15:08 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
[2011.02.05 11:37:43 | 000,000,000 | -H-D | C] -- C:\windows\ie8
[2011.02.05 11:36:52 | 000,000,000 | ---D | C] -- C:\Program Files\System Search Dispatcher
[2011.02.05 11:36:52 | 000,000,000 | ---D | C] -- C:\Program Files\DoubleD
[2011.02.05 08:55:58 | 000,000,000 | ---D | C] -- C:\Program Files\trend micro
[2011.02.05 08:55:56 | 000,000,000 | ---D | C] -- C:\rsit
[2011.02.04 17:53:09 | 000,000,000 | ---D | C] -- C:\Documents and Settings\pc\Data aplikací\Malwarebytes
[2011.02.04 17:53:02 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Data aplikací\Malwarebytes
[2011.02.04 16:19:35 | 000,000,000 | ---D | C] -- C:\windows\ie8(2)
[2011.02.01 19:05:10 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Nabídka Start\Programy\ICQ7.4
[2011.02.01 19:04:14 | 000,000,000 | ---D | C] -- C:\Program Files\ICQ7.4
[2011.02.01 17:17:40 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Data aplikací\Solidshield
[2011.02.01 16:52:11 | 000,000,000 | ---D | C] -- C:\Documents and Settings\pc\Local Settings\Data aplikací\ESET
[2011.02.01 16:46:16 | 000,000,000 | ---D | C] -- C:\Program Files\ESET
[2011.02.01 16:46:16 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Nabídka Start\Programy\ESET
[2011.01.29 19:21:18 | 000,000,000 | ---D | C] -- C:\Documents and Settings\pc\Dokumenty\Stažené soubory
[2011.01.28 18:51:00 | 000,000,000 | ---D | C] -- C:\Documents and Settings\pc\Data aplikací\PriceGong
[2011.01.26 16:14:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\pc\Data aplikací\BlackBean
[2011.01.26 16:07:22 | 000,000,000 | ---D | C] -- C:\Program Files\BlackBeanGames
[2011.01.26 16:07:22 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Nabídka Start\Programy\Black Bean Games
[2011.01.26 15:24:34 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Nabídka Start\Programy\Atari
[2011.01.26 15:16:48 | 000,000,000 | ---D | C] -- C:\Program Files\Atari
[2011.01.25 18:44:21 | 000,000,000 | ---D | C] -- C:\Documents and Settings\pc\Data aplikací\Local
[2011.01.25 18:43:48 | 000,000,000 | ---D | C] -- C:\Documents and Settings\pc\Data aplikací\DivX
[2011.01.25 18:37:46 | 000,000,000 | ---D | C] -- C:\Program Files\DivX
[2011.01.25 18:37:02 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Data aplikací\DivX
[2011.01.17 17:21:21 | 000,000,000 | ---D | C] -- C:\Documents and Settings\pc\Dokumenty\zpozdeni busu
[2011.01.16 19:24:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\pc\Dokumenty\NFS SHIFT
[2011.01.16 10:56:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Data aplikací\regid.1986-12.com.adobe
[2011.01.16 09:33:41 | 000,000,000 | ---D | C] -- C:\Program Files\Adobe Media Player
[2011.01.16 09:33:41 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Nabídka Start\Programy\Adobe
[2011.01.15 17:27:33 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Data aplikací\The Skins Factory
[2011.01.15 17:07:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\pc\Data aplikací\Skinux
[2011.01.15 16:27:23 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\pc\Recent
[2011.01.15 16:15:22 | 000,000,000 | ---D | C] -- C:\Documents and Settings\pc\Dokumenty\Záloha registrů
[2011.01.15 15:55:23 | 000,000,000 | ---D | C] -- C:\Program Files\AlienGUIse
[2011.01.15 15:34:15 | 000,000,000 | ---D | C] -- C:\Documents and Settings\pc\Nabídka Start\Programy\BS.Player
[2011.01.15 15:32:51 | 000,000,000 | ---D | C] -- C:\Program Files\Conduit
[2011.01.15 15:32:49 | 000,000,000 | ---D | C] -- C:\Documents and Settings\pc\Local Settings\Data aplikací\BS_Player
[2011.01.15 15:32:48 | 000,000,000 | ---D | C] -- C:\Program Files\BS_Player
[2011.01.15 15:32:39 | 000,000,000 | ---D | C] -- C:\Documents and Settings\pc\Data aplikací\BSplayer Pro
[2011.01.15 15:32:39 | 000,000,000 | ---D | C] -- C:\Documents and Settings\pc\Data aplikací\BSplayer
[2011.01.15 15:32:30 | 000,000,000 | ---D | C] -- C:\Program Files\Webteh
[2011.01.15 15:15:39 | 000,000,000 | ---D | C] -- C:\Documents and Settings\pc\Nabídka Start\Programy\The KMPlayer
[2011.01.15 15:15:11 | 000,000,000 | ---D | C] -- C:\Program Files\The KMPlayer
[2011.01.14 17:52:48 | 000,000,000 | ---D | C] -- C:\Documents and Settings\pc\Dokumenty\Adobe CS5
[2011.01.13 16:32:42 | 000,018,296 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\spmsg.dll
[2011.01.12 17:52:23 | 000,000,000 | ---D | C] -- C:\Documents and Settings\pc\Dokumenty\Rockstar Games
[2011.01.12 17:48:06 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\All Users\Data aplikací\SecuROM
[2011.01.08 19:57:28 | 000,000,000 | ---D | C] -- C:\TopCD
[2011.01.08 11:03:09 | 000,000,000 | ---D | C] -- C:\Documents and Settings\pc\Dokumenty\KONAMI
[2009.07.13 13:19:16 | 000,047,360 | ---- | C] (VSO Software) -- C:\Documents and Settings\pc\Data aplikací\pcouffin.sys
[2004.11.24 19:25:52 | 000,335,872 | ---- | C] ( ) -- C:\windows\System32\drvc.dll
[5 C:\windows\*.tmp files -> C:\windows\*.tmp -> ]
[4 C:\windows\System32\*.tmp files -> C:\windows\System32\*.tmp -> ]

========== Files - Modified Within 30 Days ==========

[2011.02.05 13:30:01 | 000,000,940 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachineUA.job
[2011.02.05 13:25:11 | 000,602,624 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\pc\Plocha\OTL.exe
[2011.02.05 13:24:39 | 000,000,460 | -H-- | M] () -- C:\windows\tasks\User_Feed_Synchronization-{BBFFBF23-4A39-4CD6-A448-7B0B4E9EEF8B}.job
[2011.02.05 13:19:01 | 000,000,936 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachineCore.job
[2011.02.05 13:18:55 | 000,002,048 | --S- | M] () -- C:\windows\bootstat.dat
[2011.02.05 12:53:47 | 000,002,523 | ---- | M] () -- C:\Documents and Settings\pc\Plocha\Microsoft Office Excel 2003 (2).lnk
[2011.02.05 12:53:47 | 000,002,487 | ---- | M] () -- C:\Documents and Settings\pc\Plocha\Microsoft Office PowerPoint 2003 (2).lnk
[2011.02.05 12:53:47 | 000,001,774 | ---- | M] () -- C:\Documents and Settings\pc\Plocha\LightScribe (2).lnk
[2011.02.05 12:53:47 | 000,000,733 | ---- | M] () -- C:\Documents and Settings\pc\Plocha\NOD32 antivirus (2).lnk
[2011.02.05 12:53:47 | 000,000,718 | ---- | M] () -- C:\Documents and Settings\pc\Plocha\KMPlayer (2).lnk
[2011.02.05 12:53:47 | 000,000,582 | ---- | M] () -- C:\Documents and Settings\pc\Plocha\hlsw (2).lnk
[2011.02.05 12:15:14 | 000,000,792 | ---- | M] () -- C:\Documents and Settings\All Users\Plocha\Malwarebytes' Anti-Malware.lnk
[2011.02.05 11:40:18 | 000,002,206 | ---- | M] () -- C:\windows\System32\wpa.dbl
[2011.02.05 11:36:00 | 000,001,014 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskUserS-1-5-21-117609710-1364589140-725345543-1003UA.job
[2011.02.05 08:55:29 | 000,339,991 | ---- | M] () -- C:\Documents and Settings\pc\Plocha\RSIT.exe
[2011.02.05 08:55:29 | 000,339,991 | ---- | M] () -- C:\Documents and Settings\pc\Dokumenty\RSIT.exe
[2011.02.04 19:45:29 | 000,271,200 | ---- | M] () -- C:\windows\System32\PnkBstrB.xtr
[2011.02.04 17:36:03 | 000,000,962 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskUserS-1-5-21-117609710-1364589140-725345543-1003Core.job
[2011.02.04 16:56:37 | 000,004,096 | ---- | M] () -- C:\windows\System32\crash
[2011.02.04 16:46:51 | 000,271,200 | ---- | M] () -- C:\windows\System32\PnkBstrB.ex0
[2011.02.04 16:22:42 | 000,001,355 | ---- | M] () -- C:\windows\imsins.BAK
[2011.02.03 19:45:29 | 000,103,424 | ---- | M] () -- C:\Documents and Settings\pc\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011.02.03 16:56:36 | 000,138,160 | ---- | M] () -- C:\windows\System32\drivers\PnkBstrK.sys
[2011.02.02 20:41:54 | 000,002,184 | ---- | M] () -- C:\windows\wincmd.ini
[2011.02.01 19:05:11 | 000,001,495 | ---- | M] () -- C:\Documents and Settings\All Users\Plocha\ICQ7.4.lnk
[2011.02.01 16:37:48 | 000,001,999 | ---- | M] () -- C:\Documents and Settings\All Users\Plocha\James Cameron's AVATAR.lnk
[2011.01.31 19:27:00 | 000,000,472 | ---- | M] () -- C:\windows\tasks\Ad-Aware Update (Weekly).job
[2011.01.30 13:20:28 | 000,001,531 | ---- | M] () -- C:\Documents and Settings\All Users\Plocha\Zaparit.lnk
[2011.01.28 19:02:03 | 000,000,708 | ---- | M] () -- C:\Documents and Settings\All Users\Plocha\Opera.lnk
[2011.01.28 19:01:13 | 000,001,667 | ---- | M] () -- C:\Documents and Settings\All Users\Plocha\Spy Emergency.lnk
[2011.01.28 19:00:31 | 000,000,818 | ---- | M] () -- C:\Documents and Settings\All Users\Plocha\Mozilla Firefox.lnk
[2011.01.28 18:55:45 | 000,002,560 | ---- | M] () -- C:\windows\_MSRSTRT.EXE
[2011.01.26 16:14:37 | 000,001,646 | ---- | M] () -- C:\Documents and Settings\All Users\Plocha\WRC FIA World Rally Championship.lnk
[2011.01.17 16:42:36 | 003,614,920 | ---- | M] () -- C:\windows\System32\FNTCACHE.DAT
[2011.01.16 19:22:17 | 000,001,843 | ---- | M] () -- C:\Documents and Settings\All Users\Plocha\Need for Speed™ SHIFT.lnk
[2011.01.15 16:02:37 | 003,932,214 | ---- | M] () -- C:\windows\AW_XenoMorph1280.bmp
[2011.01.12 17:25:46 | 000,001,845 | ---- | M] () -- C:\Documents and Settings\All Users\Plocha\Grand Theft Auto IV.lnk
[2011.01.08 16:22:44 | 000,001,027 | ---- | M] () -- C:\Documents and Settings\All Users\Plocha\Send Feedback.lnk
[2011.01.08 10:15:18 | 000,043,520 | ---- | M] () -- C:\windows\System32\CmdLineExt03.dll
[5 C:\windows\*.tmp files -> C:\windows\*.tmp -> ]
[4 C:\windows\System32\*.tmp files -> C:\windows\System32\*.tmp -> ]

========== Files Created - No Company Name ==========

Uživatelský avatar
Dvori66
Návštěvník
Návštěvník
Příspěvky: 94
Registrován: 04 úno 2011 18:29
Kontaktovat uživatele:

Re: C:\WINDOWS\system32\cmd.exe maze subory

#20 Příspěvek od Dvori66 »

[2011.02.05 12:53:47 | 000,002,523 | ---- | C] () -- C:\Documents and Settings\pc\Plocha\Microsoft Office Excel 2003 (2).lnk
[2011.02.05 12:53:47 | 000,002,487 | ---- | C] () -- C:\Documents and Settings\pc\Plocha\Microsoft Office PowerPoint 2003 (2).lnk
[2011.02.05 12:53:47 | 000,001,774 | ---- | C] () -- C:\Documents and Settings\pc\Plocha\LightScribe (2).lnk
[2011.02.05 12:53:47 | 000,000,733 | ---- | C] () -- C:\Documents and Settings\pc\Plocha\NOD32 antivirus (2).lnk
[2011.02.05 12:53:47 | 000,000,718 | ---- | C] () -- C:\Documents and Settings\pc\Plocha\KMPlayer (2).lnk
[2011.02.05 12:53:47 | 000,000,582 | ---- | C] () -- C:\Documents and Settings\pc\Plocha\hlsw (2).lnk
[2011.02.05 12:53:29 | 000,339,991 | ---- | C] () -- C:\Documents and Settings\pc\Plocha\RSIT.exe
[2011.02.05 12:15:14 | 000,000,792 | ---- | C] () -- C:\Documents and Settings\All Users\Plocha\Malwarebytes' Anti-Malware.lnk
[2011.02.05 08:55:31 | 000,339,991 | ---- | C] () -- C:\Documents and Settings\pc\Dokumenty\RSIT.exe
[2011.02.04 16:21:18 | 000,001,355 | ---- | C] () -- C:\windows\imsins.BAK
[2011.02.01 19:05:11 | 000,001,495 | ---- | C] () -- C:\Documents and Settings\All Users\Plocha\ICQ7.4.lnk
[2011.02.01 16:37:48 | 000,001,999 | ---- | C] () -- C:\Documents and Settings\All Users\Plocha\James Cameron's AVATAR.lnk
[2011.01.30 13:20:28 | 000,001,531 | ---- | C] () -- C:\Documents and Settings\All Users\Plocha\Zaparit.lnk
[2011.01.28 18:55:45 | 000,002,560 | ---- | C] () -- C:\windows\_MSRSTRT.EXE
[2011.01.26 16:14:37 | 000,001,646 | ---- | C] () -- C:\Documents and Settings\All Users\Plocha\WRC FIA World Rally Championship.lnk
[2011.01.16 19:22:17 | 000,001,843 | ---- | C] () -- C:\Documents and Settings\All Users\Plocha\Need for Speed™ SHIFT.lnk
[2011.01.14 17:45:38 | 000,000,736 | ---- | C] () -- C:\Documents and Settings\All Users\Nabídka Start\Programy\Adobe Help.lnk
[2011.01.12 17:25:45 | 000,001,845 | ---- | C] () -- C:\Documents and Settings\All Users\Plocha\Grand Theft Auto IV.lnk
[2010.12.20 18:16:43 | 000,281,760 | ---- | C] () -- C:\windows\System32\drivers\atksgt.sys
[2010.12.20 18:16:42 | 000,025,888 | ---- | C] () -- C:\windows\System32\drivers\lirsgt.sys
[2010.11.27 09:54:34 | 000,000,126 | -HS- | C] () -- C:\Documents and Settings\All Users\Data aplikací\.zreglib
[2010.10.05 17:17:15 | 000,043,520 | ---- | C] () -- C:\windows\System32\CmdLineExt03.dll
[2010.08.18 13:07:20 | 000,000,028 | ---- | C] () -- C:\windows\vypalovac.ini
[2010.03.09 19:09:18 | 000,000,208 | ---- | C] () -- C:\Documents and Settings\pc\Data aplikací\default.rss
[2010.01.11 16:36:11 | 000,000,532 | ---- | C] () -- C:\windows\MAXLINK.INI
[2010.01.07 17:00:25 | 000,000,319 | ---- | C] () -- C:\windows\game.ini
[2009.11.14 09:26:57 | 000,069,632 | R--- | C] () -- C:\windows\System32\xmltok.dll
[2009.11.14 09:26:57 | 000,036,864 | R--- | C] () -- C:\windows\System32\xmlparse.dll
[2009.08.07 19:51:34 | 000,178,430 | ---- | C] () -- C:\windows\System32\xlive.dll.cat
[2009.07.30 13:02:22 | 000,000,218 | ---- | C] () -- C:\Documents and Settings\pc\Data aplikací\varicad-work.ini
[2009.07.13 13:19:26 | 000,001,041 | ---- | C] () -- C:\Documents and Settings\pc\Data aplikací\vso_ts_preview.xml
[2009.07.13 13:19:16 | 000,087,608 | ---- | C] () -- C:\Documents and Settings\pc\Data aplikací\inst.exe
[2009.07.13 13:19:16 | 000,007,887 | ---- | C] () -- C:\Documents and Settings\pc\Data aplikací\pcouffin.cat
[2009.07.13 13:19:16 | 000,001,144 | ---- | C] () -- C:\Documents and Settings\pc\Data aplikací\pcouffin.inf
[2009.07.13 13:19:16 | 000,000,033 | ---- | C] () -- C:\Documents and Settings\pc\Data aplikací\pcouffin.log
[2009.07.13 11:35:27 | 000,691,696 | ---- | C] () -- C:\windows\System32\drivers\sptd.sys
[2009.07.13 09:18:30 | 000,000,155 | ---- | C] () -- C:\windows\jtmq_r16.ini
[2009.07.10 13:08:13 | 000,000,099 | ---- | C] () -- C:\Documents and Settings\pc\Data aplikací\MPUI.ini
[2009.07.01 17:11:59 | 000,000,358 | ---- | C] () -- C:\Documents and Settings\pc\Data aplikací\BurnLog.log
[2009.07.01 17:11:10 | 000,009,506 | ---- | C] () -- C:\Documents and Settings\pc\Data aplikací\ReplayConverterLog.log
[2009.05.21 05:24:48 | 000,001,683 | ---- | C] () -- C:\windows\System32\oeminfo.ini
[2009.05.05 14:31:40 | 000,000,230 | ---- | C] () -- C:\windows\wininit.ini
[2009.05.03 12:46:58 | 000,000,789 | ---- | C] () -- C:\windows\ARPR.INI
[2009.04.14 15:41:11 | 000,000,023 | ---- | C] () -- C:\windows\BlendSettings.ini
[2009.03.29 08:39:30 | 000,022,328 | ---- | C] () -- C:\Documents and Settings\pc\Data aplikací\PnkBstrK.sys
[2008.12.19 15:15:58 | 004,338,246 | ---- | C] () -- C:\windows\System32\libavcodec.dll
[2008.12.17 17:41:18 | 000,884,237 | ---- | C] () -- C:\windows\System32\ff_x264.dll
[2008.12.17 17:22:58 | 000,093,184 | ---- | C] () -- C:\windows\System32\ff_wmv9.dll
[2008.12.17 17:22:48 | 000,057,344 | ---- | C] () -- C:\windows\System32\ff_vfw.dll
[2008.12.17 17:17:34 | 000,239,247 | ---- | C] () -- C:\windows\System32\ff_theora.dll
[2008.12.17 16:59:54 | 000,560,802 | ---- | C] () -- C:\windows\System32\libmplayer.dll
[2008.10.13 12:09:07 | 000,000,063 | ---- | C] () -- C:\windows\SIERRA.INI
[2008.10.02 13:45:05 | 000,138,160 | ---- | C] () -- C:\windows\System32\drivers\PnkBstrK.sys
[2008.09.29 14:53:37 | 000,010,240 | ---- | C] () -- C:\windows\System32\vidx16.dll
[2008.08.13 06:50:29 | 000,000,056 | ---- | C] () -- C:\windows\wincheater.ini
[2008.08.12 08:19:40 | 000,354,816 | ---- | C] () -- C:\windows\System32\psisdecd.dll
[2008.08.04 09:49:46 | 000,103,424 | ---- | C] () -- C:\Documents and Settings\pc\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2008.08.04 09:15:01 | 000,000,116 | ---- | C] () -- C:\windows\NeroDigital.ini
[2008.07.29 08:27:39 | 000,040,960 | ---- | C] () -- C:\Program Files\Uninstall_CDS.exe
[2008.07.29 07:47:34 | 000,000,390 | ---- | C] () -- C:\windows\ODBC.INI
[2008.07.29 07:33:32 | 000,000,122 | ---- | C] () -- C:\Documents and Settings\pc\Local Settings\Data aplikací\fusioncache.dat
[2008.07.29 07:18:50 | 000,116,224 | ---- | C] () -- C:\windows\System32\pdfcmnnt.dll
[2008.07.29 07:15:43 | 000,002,184 | ---- | C] () -- C:\windows\wincmd.ini
[2008.07.28 12:59:10 | 000,004,249 | ---- | C] () -- C:\windows\ODBCINST.INI
[2008.05.26 21:22:14 | 000,015,552 | ---- | C] () -- C:\windows\System32\gthrctr.ini
[2008.05.26 21:22:10 | 000,021,464 | ---- | C] () -- C:\windows\System32\idxcntrs.ini
[2008.05.26 21:22:04 | 000,014,910 | ---- | C] () -- C:\windows\System32\gsrvctr.ini
[2007.03.10 12:51:48 | 000,282,624 | ---- | C] () -- C:\windows\System32\xvidvfw.dll
[2007.02.06 01:05:26 | 000,000,038 | ---- | C] () -- C:\windows\AviSplitter.INI
[2007.01.26 00:45:02 | 000,006,784 | ---- | C] () -- C:\windows\System32\drivers\whfltr2k.sys
[2006.02.25 19:09:38 | 000,774,144 | ---- | C] () -- C:\windows\System32\xvidcore.dll
[2004.10.03 17:50:54 | 000,129,024 | ---- | C] () -- C:\windows\System32\ff_mpeg2enc.dll
[2003.10.09 16:26:10 | 000,053,248 | ---- | C] () -- C:\windows\System32\pagesync.dll
[2003.04.09 14:38:04 | 000,005,664 | ---- | C] () -- C:\windows\System32\OUTLPERF.INI
[1997.06.14 01:56:08 | 000,056,832 | ---- | C] () -- C:\windows\System32\iyvu9_32.dll

========== LOP Check ==========

[2010.01.11 16:30:27 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Data aplikací\CanonBJ
[2009.01.11 10:17:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Codemasters
[2009.12.09 14:20:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\DAEMON Tools Lite
[2010.10.27 07:44:58 | 000,000,000 | -HSD | M] -- C:\Documents and Settings\All Users\Data aplikací\DSS
[2010.01.22 14:28:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Electronic Arts
[2009.05.06 13:06:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\ESET
[2010.06.15 16:09:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\ICQ
[2010.06.27 09:26:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\id Software
[2009.08.06 06:38:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\IMSIDesign
[2010.10.20 16:09:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\KONAMI
[2009.05.03 12:50:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\McNeel
[2010.08.25 15:59:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\NETGATE
[2010.08.19 05:59:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\PMB Files
[2011.01.16 10:56:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\regid.1986-12.com.adobe
[2011.02.01 17:17:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Solidshield
[2010.01.11 16:36:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\SSScanAppDataDir
[2010.01.11 16:36:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\SSScanWizard
[2010.12.20 18:18:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Tages
[2010.08.20 08:38:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\TEMP
[2011.01.15 17:27:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\The Skins Factory
[2010.10.28 17:48:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\TrackMania
[2011.01.08 10:34:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Ubisoft
[2010.03.09 16:08:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\vsosdk
[2010.12.20 17:52:40 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Data aplikací\{0151C9FC-719D-4459-B1E2-4685CC6E62A8}
[2010.12.20 17:51:05 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Data aplikací\{0691F710-1ECA-4B5A-9727-25554F1BFDC6}
[2010.12.26 17:59:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Data aplikací\Špidla Data Processing, s.r.o
[2011.01.12 16:43:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\AIMP
[2009.05.17 16:52:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\Allstar
[2009.07.08 13:48:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\Azureus
[2011.01.08 10:15:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\Black Sea Studios
[2011.01.26 16:14:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\BlackBean
[2009.07.10 13:14:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\Broad Intelligence
[2011.01.15 15:44:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\BSplayer
[2011.01.15 15:32:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\BSplayer Pro
[2011.01.17 17:26:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\Canon
[2011.01.05 16:20:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\CoSoSys
[2009.11.12 17:28:23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\DAEMON Tools Lite
[2009.11.11 18:43:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\DAEMON Tools Pro
[2009.12.29 18:22:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\Desktopicon
[2010.03.20 15:58:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\Facebook
[2010.03.12 16:58:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\Gearbox Software
[2011.01.31 18:57:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\HLSW
[2011.02.04 19:12:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\ICQ
[2010.06.27 09:29:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\id Software
[2010.11.27 10:22:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\ImgBurn
[2009.01.08 16:12:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\Leadertech
[2011.01.25 18:44:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\Local
[2011.01.01 19:28:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\Opera
[2010.03.08 19:00:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\PowerChallenge
[2011.02.04 14:48:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\PriceGong
[2009.04.11 12:26:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\QIP
[2010.01.11 16:36:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\ScanSoft
[2010.10.16 08:21:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\Silver Style Entertainment
[2011.01.15 17:07:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\Skinux
[2009.04.12 18:41:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\Soldat
[2010.08.26 06:37:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\Spy Emergency
[2010.12.20 18:21:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\Ubisoft
[2010.12.03 16:37:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\Unigraphics Solutions
[2010.07.11 19:01:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\uTorrent
[2009.07.30 13:02:23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\VariCAD
[2010.08.24 14:35:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\Vso
[2008.07.28 14:13:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\Windows Desktop Search
[2008.08.12 14:29:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\Windows Search
[2010.12.26 17:59:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\Špidla Data Processing, s.r.o
[2011.01.31 19:27:00 | 000,000,472 | ---- | M] () -- C:\windows\Tasks\Ad-Aware Update (Weekly).job
[2011.02.05 13:24:39 | 000,000,460 | -H-- | M] () -- C:\windows\Tasks\User_Feed_Synchronization-{BBFFBF23-4A39-4CD6-A448-7B0B4E9EEF8B}.job

========== Purity Check ==========



========== Custom Scans ==========


< HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s >
"swg" = "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" -- [2009.08.06 06:40:06 | 000,039,408 | ---- | M] (Google Inc.)
"ctfmon.exe" = C:\windows\system32\ctfmon.exe -- [2008.04.14 04:22:17 | 000,040,448 | ---- | M] (Microsoft Corporation)
"PowerBar" =
"DAEMON Tools Lite" = "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun -- [2010.04.01 10:16:20 | 000,357,696 | ---- | M] (DT Soft Ltd)
"Pando Media Booster" = "C:\Program Files\Pando Networks\Media Booster\PMB.exe" -- [2010.08.19 05:58:13 | 002,953,112 | ---- | M] ()
"Google Update" = "C:\Documents and Settings\pc\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe" /c -- [2009.05.12 13:59:57 | 000,133,104 | ---- | M] (Google Inc.)
"HDDtoGOLaunch" = C:\Documents and Settings\pc\Data aplikací\CoSoSys\HDDtoGO\HDDtoGOLaunch.exe -- [2010.04.30 15:58:02 | 000,176,128 | ---- | M] ()

< c:\windows\*.* /U >
[5 c:\windows\*.tmp files -> c:\windows\*.tmp -> ]

< %SYSTEMDRIVE%\*.exe >

< %ALLUSERSPROFILE%\Application Data\*. >

< %ALLUSERSPROFILE%\Application Data\*.exe /s >

< %APPDATA%\*. >
[2011.01.16 11:01:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\Adobe
[2009.03.11 13:12:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\Ahead
[2011.01.12 16:43:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\AIMP
[2009.05.17 16:52:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\Allstar
[2010.05.21 17:16:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\ArcSoft
[2008.07.28 11:32:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\ATI
[2009.07.08 13:48:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\Azureus
[2011.01.08 10:15:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\Black Sea Studios
[2011.01.26 16:14:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\BlackBean
[2009.07.10 13:14:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\Broad Intelligence
[2011.01.15 15:44:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\BSplayer
[2011.01.15 15:32:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\BSplayer Pro
[2011.01.17 17:26:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\Canon
[2011.01.05 16:20:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\CoSoSys
[2008.07.30 08:12:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\CyberLink
[2009.11.12 17:28:23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\DAEMON Tools Lite
[2009.11.11 18:43:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\DAEMON Tools Pro
[2009.12.29 18:22:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\Desktopicon
[2011.01.25 18:43:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\DivX
[2009.07.13 13:05:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\dvdcss
[2010.03.20 15:58:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\Facebook
[2010.03.12 16:58:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\Gearbox Software
[2010.12.02 16:22:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\Google
[2010.08.08 07:15:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\Hamachi
[2010.11.23 17:27:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\Help
[2011.01.31 18:57:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\HLSW
[2011.02.04 19:12:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\ICQ
[2010.06.27 09:29:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\id Software
[2008.07.28 11:13:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\Identities
[2010.11.27 10:22:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\ImgBurn
[2010.12.15 19:29:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\InstallShield
[2009.01.08 16:12:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\Leadertech
[2011.01.25 18:44:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\Local
[2009.06.13 12:50:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\Macromedia
[2011.02.04 17:53:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\Malwarebytes
[2010.07.12 14:27:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\Media Player Classic
[2010.11.21 13:46:41 | 000,000,000 | --SD | M] -- C:\Documents and Settings\pc\Data aplikací\Microsoft
[2009.08.01 10:47:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\Microsoft Games
[2008.07.29 07:27:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\Mozilla
[2009.07.02 09:31:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\NCH Software
[2010.08.17 07:51:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\Nero
[2011.02.03 16:00:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\OpenOffice.org2
[2011.01.01 19:28:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\Opera
[2010.03.08 19:00:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\PowerChallenge
[2011.02.04 14:48:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\PriceGong
[2009.04.11 12:26:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\QIP
[2009.07.08 13:51:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\Real
[2010.01.11 16:36:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\ScanSoft
[2009.04.02 14:17:29 | 000,000,000 | RH-D | M] -- C:\Documents and Settings\pc\Data aplikací\SecuROM
[2010.10.16 08:21:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\Silver Style Entertainment
[2011.01.15 17:07:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\Skinux
[2011.02.04 17:32:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\Skype
[2011.02.04 16:36:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\skypePM
[2009.04.12 18:41:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\Soldat
[2010.08.26 06:37:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\Spy Emergency
[2008.07.29 07:29:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\Sun
[2008.08.16 16:58:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\teamspeak2
[2010.12.20 18:21:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\Ubisoft
[2010.12.03 16:37:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\Unigraphics Solutions
[2010.07.11 19:01:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\uTorrent
[2009.07.30 13:02:23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\VariCAD
[2009.07.13 13:09:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\vlc
[2010.08.24 14:35:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\Vso
[2008.07.28 14:13:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\Windows Desktop Search
[2008.08.12 14:29:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\Windows Search
[2008.08.12 08:07:23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\WinRAR
[2010.12.26 17:59:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pc\Data aplikací\Špidla Data Processing, s.r.o

< %APPDATA%\*.exe /s >
[2010.03.11 16:05:01 | 000,087,608 | ---- | M] () -- C:\Documents and Settings\pc\Data aplikací\inst.exe
[2009.08.11 21:21:26 | 000,087,552 | ---- | M] () -- C:\Documents and Settings\pc\Data aplikací\BSplayer\AC3 Filter\ac3config.exe
[2009.08.11 21:21:30 | 000,090,112 | ---- | M] () -- C:\Documents and Settings\pc\Data aplikací\BSplayer\AC3 Filter\spdif_test.exe
[2010.03.22 14:52:04 | 000,697,690 | ---- | M] () -- C:\Documents and Settings\pc\Data aplikací\BSplayer\AC3 Filter\unins000.exe
[2010.02.23 17:01:52 | 001,185,871 | ---- | M] () -- C:\Documents and Settings\pc\Data aplikací\BSplayer\FFDShow\unins000.exe
[2010.08.14 10:42:54 | 000,113,152 | ---- | M] () -- C:\Documents and Settings\pc\Data aplikací\BSplayer\Haali media splitter\dsmux.exe
[2010.08.14 10:45:10 | 000,358,400 | ---- | M] () -- C:\Documents and Settings\pc\Data aplikací\BSplayer\Haali media splitter\gdsmux.exe
[2010.08.14 10:42:06 | 000,137,728 | ---- | M] () -- C:\Documents and Settings\pc\Data aplikací\BSplayer\Haali media splitter\mkv2vfr.exe
[2010.09.30 15:30:22 | 000,042,305 | ---- | M] () -- C:\Documents and Settings\pc\Data aplikací\BSplayer\Haali media splitter\uninstall.exe
[2010.04.30 15:58:02 | 000,176,128 | ---- | M] () -- C:\Documents and Settings\pc\Data aplikací\CoSoSys\HDDtoGO\HDDtoGOLaunch.exe
[2007.06.29 14:23:32 | 000,053,248 | ---- | M] (Prolific Technology Inc.) -- C:\Documents and Settings\pc\Data aplikací\CoSoSys\HDDtoGO\IoctlSvc.exe
[2010.04.30 15:56:34 | 000,053,416 | ---- | M] () -- C:\Documents and Settings\pc\Data aplikací\CoSoSys\HDDtoGO\PLIoctlInstaller.exe
[2010.03.20 15:58:56 | 000,050,354 | ---- | M] (Facebook, Inc.) -- C:\Documents and Settings\pc\Data aplikací\Facebook\uninstall.exe
[2010.09.08 16:55:07 | 000,053,632 | ---- | M] (Adobe Systems Inc.) -- C:\Documents and Settings\pc\Data aplikací\Macromedia\Flash Player\www.macromedia.com\bin\airappinstaller\airappinstaller.exe
[2008.07.28 11:28:39 | 000,009,158 | R--- | M] () -- C:\Documents and Settings\pc\Data aplikací\Microsoft\Installer\{89DE67AD-08B8-4699-A55D-CA5C0AF82BF3}\ARPPRODUCTICON.exe
[2009.08.21 06:30:18 | 000,204,062 | R--- | M] () -- C:\Documents and Settings\pc\Data aplikací\Microsoft\Installer\{CAE64474-AADA-41B0-B297-8B7C6BA1F800}\_06857C4220DD0D5A750911.exe
[2009.08.21 06:30:18 | 000,204,062 | R--- | M] () -- C:\Documents and Settings\pc\Data aplikací\Microsoft\Installer\{CAE64474-AADA-41B0-B297-8B7C6BA1F800}\_A8A4D133758370480E5B5F.exe
[2009.06.22 19:02:38 | 000,010,134 | R--- | M] () -- C:\Documents and Settings\pc\Data aplikací\Microsoft\Installer\{E3E71D07-CD27-46CB-8448-16D4FB29AA13}\ARPPRODUCTICON.exe
[2010.03.08 19:00:34 | 004,218,880 | ---- | M] () -- C:\Documents and Settings\pc\Data aplikací\PowerChallenge\PowerSoccer\PowerSoccer.exe


< MD5 for: AGP440.SYS >
[2004.08.17 16:57:28 | 018,786,869 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:AGP440.sys
[2008.07.28 11:40:38 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:AGP440.sys
[2008.07.28 11:40:38 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:AGP440.sys
[2008.04.13 19:36:38 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\ServicePackFiles\i386\agp440.sys
[2008.04.13 19:36:38 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\system32\drivers\agp440.sys

< MD5 for: ATAPI.SYS >
[2004.08.17 16:57:28 | 018,786,869 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:atapi.sys
[2008.07.28 11:40:38 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:atapi.sys
[2008.07.28 11:40:38 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:atapi.sys
[2008.04.13 19:40:30 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\ServicePackFiles\i386\atapi.sys
[2008.04.13 19:40:30 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\drivers\atapi.sys
[2004.08.03 21:59:44 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\$NtServicePackUninstall$\atapi.sys
[2004.08.03 23:59:44 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\system32\ReinstallBackups\0006\DriverFiles\i386\atapi.sys
[2004.08.03 21:59:44 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\system32\ReinstallBackups\0007\DriverFiles\i386\atapi.sys

< MD5 for: CDROM.SYS >
[2004.08.17 16:57:28 | 018,786,869 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:cdrom.sys
[2008.07.28 11:40:38 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:cdrom.sys
[2008.07.28 11:40:38 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:cdrom.sys
[2008.04.13 19:40:46 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS\ServicePackFiles\i386\cdrom.sys
[2008.04.13 19:40:46 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS\system32\drivers\cdrom.sys
[2004.08.03 23:59:54 | 000,049,536 | ---- | M] (Microsoft Corporation) MD5=AF9C19B3100FE010496B1A27181FBF72 -- C:\WINDOWS\$NtServicePackUninstall$\cdrom.sys

< MD5 for: CRYPTSVC.DLL >
[2004.08.17 16:49:04 | 000,060,416 | ---- | M] (Microsoft Corporation) MD5=70D2A1756F4B2067658A186C963FCABD -- C:\WINDOWS\$NtServicePackUninstall$\cryptsvc.dll
[2008.04.14 04:21:38 | 000,062,464 | ---- | M] (Microsoft Corporation) MD5=F3AB0933CBD166D271992F411C27CCAF -- C:\WINDOWS\ServicePackFiles\i386\cryptsvc.dll
[2008.04.14 04:21:38 | 000,062,464 | ---- | M] (Microsoft Corporation) MD5=F3AB0933CBD166D271992F411C27CCAF -- C:\WINDOWS\system32\cryptsvc.dll

< MD5 for: EVENTLOG.DLL >
[2008.04.14 04:21:41 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=2EE99F67C930931EB404DADCE57E976E -- C:\WINDOWS\ServicePackFiles\i386\eventlog.dll
[2008.04.14 04:21:41 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=2EE99F67C930931EB404DADCE57E976E -- C:\WINDOWS\system32\eventlog.dll
[2004.08.17 16:49:08 | 000,055,808 | ---- | M] (Microsoft Corporation) MD5=6EB66066D5C0175320CFEA0A4C74C88F -- C:\WINDOWS\$NtServicePackUninstall$\eventlog.dll

< MD5 for: EXPLORER.EXE >
[2008.04.14 04:22:22 | 000,976,384 | ---- | M] (Microsoft Corporation) MD5=13E794E5591776CBC71055A7B3CC1D5F -- C:\WINDOWS\ServicePackFiles\i386\explorer.exe
[2008.04.14 04:22:22 | 001,432,576 | ---- | M] (Microsoft Corporation) MD5=1946837F8AB4A7B2A0C326A10C30E322 -- C:\VTPFiles\explorer.exe
[2008.04.14 04:22:22 | 001,034,240 | ---- | M] (Microsoft Corporation) MD5=27AFD587C462E280EE046B8CCA3C2CD1 -- C:\WINDOWS\explorer.exe
[2008.04.14 04:22:22 | 001,034,240 | ---- | M] (Microsoft Corporation) MD5=27AFD587C462E280EE046B8CCA3C2CD1 -- C:\WINDOWS\NiwradSoft Shell Pack\Backup\explorer.exe
[2008.04.14 04:22:22 | 001,034,240 | ---- | M] (Microsoft Corporation) MD5=27AFD587C462E280EE046B8CCA3C2CD1 -- C:\WINDOWS\system32\VITrans\explorer.exe
[2004.08.17 16:49:24 | 001,032,704 | ---- | M] (Microsoft Corporation) MD5=53114D57AB73A406AC7F602227781A99 -- C:\WINDOWS\$NtServicePackUninstall$\explorer.exe

< MD5 for: HAL.DLL >
[2004.08.17 16:57:28 | 018,786,869 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:hal.dll
[2008.07.28 11:40:38 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:hal.dll
[2008.07.28 11:40:38 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:hal.dll
[2008.04.13 19:31:28 | 000,134,400 | ---- | M] (Microsoft Corporation) MD5=4329EE7D502C9113EBA0F9570392F5EE -- C:\WINDOWS\system32\HAL.DLL
[2008.04.13 19:31:32 | 000,105,344 | ---- | M] (Microsoft Corporation) MD5=6DB1E72AD3B372DFC451B7F54BA08AA7 -- C:\WINDOWS\ServicePackFiles\i386\hal.dll
[2004.08.03 23:59:14 | 000,134,400 | ---- | M] (Microsoft Corporation) MD5=DFCE51FD96909D1B97D4A1A72D060D77 -- C:\WINDOWS\$NtServicePackUninstall$\hal.dll

< MD5 for: CHANGER.SYS >
[2004.08.17 16:57:28 | 018,786,869 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:Changer.sys
[2008.07.28 11:40:38 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:Changer.sys
[2008.07.28 11:40:38 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:Changer.sys
[2008.04.13 19:40:58 | 000,008,192 | ---- | M] (Microsoft Corporation) MD5=2A5815CA6FFF24B688C01F828B96819C -- C:\WINDOWS\ServicePackFiles\i386\changer.sys

< MD5 for: ISAPNP.SYS >
[2008.07.28 11:40:38 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:isapnp.sys
[2008.07.28 11:40:38 | 023,890,583 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:isapnp.sys
[2003.04.16 14:00:00 | 000,035,840 | ---- | M] (Microsoft Corporation) MD5=1091528512E4DD7ED5FDDCC4DF1C53D7 -- C:\WINDOWS\$NtServicePackUninstall$\isapnp.sys
[2008.04.14 03:27:53 | 000,037,248 | ---- | M] (Microsoft Corporation) MD5=CC9F8A2D60AED1A51A3AC34C59B987AE -- C:\WINDOWS\ServicePackFiles\i386\isapnp.sys
[2008.04.14 03:27:53 | 000,037,248 | ---- | M] (Microsoft Corporation) MD5=CC9F8A2D60AED1A51A3AC34C59B987AE -- C:\WINDOWS\system32\drivers\isapnp.sys

< MD5 for: LSASS.EXE >
[2004.08.17 16:49:24 | 000,013,312 | ---- | M] (Microsoft Corporation) MD5=82A362FE1D4980B71B588D9C10748511 -- C:\WINDOWS\$NtServicePackUninstall$\lsass.exe
[2008.04.14 04:22:29 | 000,013,312 | ---- | M] (Microsoft Corporation) MD5=ED0A176354487CEED65B80A7148AB739 -- C:\WINDOWS\ServicePackFiles\i386\lsass.exe
[2008.04.14 04:22:29 | 000,013,312 | ---- | M] (Microsoft Corporation) MD5=ED0A176354487CEED65B80A7148AB739 -- C:\WINDOWS\system32\lsass.exe

< MD5 for: NDIS.SYS >
[2008.04.13 20:20:37 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\ServicePackFiles\i386\ndis.sys
[2008.04.13 20:20:37 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\system32\drivers\ndis.sys
[2004.08.04 00:14:30 | 000,182,912 | ---- | M] (Microsoft Corporation) MD5=558635D3AF1C7546D26067D5D9B6959E -- C:\WINDOWS\$NtServicePackUninstall$\ndis.sys

< MD5 for: NETLOGON.DLL >
[2004.08.17 16:49:14 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=2591CADAEF7D2242039255028E577688 -- C:\WINDOWS\$NtServicePackUninstall$\netlogon.dll
[2008.04.14 04:21:50 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=C2ED0E3408F50BBC149D4F0936E67832 -- C:\WINDOWS\ServicePackFiles\i386\netlogon.dll
[2008.04.14 04:21:50 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=C2ED0E3408F50BBC149D4F0936E67832 -- C:\WINDOWS\system32\netlogon.dll

< MD5 for: SCECLI.DLL >
[2004.08.17 16:49:18 | 000,184,832 | ---- | M] (Microsoft Corporation) MD5=07119058D451CB7EA4317BCFDA8599A6 -- C:\WINDOWS\$NtServicePackUninstall$\scecli.dll
[2008.04.14 04:21:54 | 000,185,856 | ---- | M] (Microsoft Corporation) MD5=830CE8951C71F361D7D2F38416CC8BC1 -- C:\WINDOWS\ServicePackFiles\i386\scecli.dll
[2008.04.14 04:21:54 | 000,185,856 | ---- | M] (Microsoft Corporation) MD5=830CE8951C71F361D7D2F38416CC8BC1 -- C:\WINDOWS\system32\scecli.dll

< MD5 for: SMSS.EXE >
[2004.08.17 16:49:28 | 000,050,688 | ---- | M] (Microsoft Corporation) MD5=04B69D49D7FC3358A372E97DB6D39447 -- C:\WINDOWS\$NtServicePackUninstall$\smss.exe
[2008.04.14 04:22:47 | 000,050,688 | ---- | M] (Microsoft Corporation) MD5=9B08A8C6331C2DA9C30377BCB4262721 -- C:\WINDOWS\ServicePackFiles\i386\smss.exe
[2008.04.14 04:22:47 | 000,050,688 | ---- | M] (Microsoft Corporation) MD5=9B08A8C6331C2DA9C30377BCB4262721 -- C:\WINDOWS\system32\smss.exe

< MD5 for: SVCHOST.EXE >
[2008.04.14 04:22:48 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=BE4A520E29B6391F49E79CCC52044D93 -- C:\WINDOWS\ServicePackFiles\i386\svchost.exe
[2008.04.14 04:22:48 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=BE4A520E29B6391F49E79CCC52044D93 -- C:\WINDOWS\system32\svchost.exe
[2004.08.17 16:49:28 | 000,014,336 | ---- | M] (Microsoft Corporation) MD5=DFBA2915B0BF58ABB288CD4C9318CB3F -- C:\WINDOWS\$NtServicePackUninstall$\svchost.exe

< MD5 for: TCPIP.SYS >
[2008.04.13 20:20:16 | 000,361,344 | ---- | M] (Microsoft Corporation) MD5=93EA8D04EC73A85DB02EB8805988F733 -- C:\WINDOWS\$NtUninstallKB951748$\tcpip.sys
[2008.04.13 20:20:16 | 000,361,344 | ---- | M] (Microsoft Corporation) MD5=93EA8D04EC73A85DB02EB8805988F733 -- C:\WINDOWS\ServicePackFiles\i386\tcpip.sys
[2008.06.20 12:51:12 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=9AEFA14BD6B182D61E3119FA5F436D3D -- C:\WINDOWS\system32\dllcache\tcpip.sys
[2008.06.20 12:51:12 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=9AEFA14BD6B182D61E3119FA5F436D3D -- C:\WINDOWS\system32\drivers\tcpip.sys
[2004.08.04 00:14:42 | 000,359,040 | ---- | M] (Microsoft Corporation) MD5=9F4B36614A0FC234525BA224957DE55C -- C:\WINDOWS\$NtServicePackUninstall$\tcpip.sys
[2008.06.20 12:59:02 | 000,361,600 | ---- | M] (Microsoft Corporation) MD5=AD978A1B783B5719720CFF204B666C8E -- C:\WINDOWS\$hf_mig$\KB951748\SP3QFE\tcpip.sys

< MD5 for: USERINIT.EXE >
[2008.04.14 04:22:50 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=7DC1830F22E7D275B438127B68030239 -- C:\WINDOWS\ServicePackFiles\i386\userinit.exe
[2008.04.14 04:22:50 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=7DC1830F22E7D275B438127B68030239 -- C:\WINDOWS\system32\userinit.exe
[2004.08.17 16:49:28 | 000,024,576 | ---- | M] (Microsoft Corporation) MD5=836F7960362FF95C5D49E40B891F2CFC -- C:\WINDOWS\$NtServicePackUninstall$\userinit.exe

< MD5 for: WINLOGON.EXE >
[2004.08.17 16:49:28 | 000,502,272 | ---- | M] (Microsoft Corporation) MD5=221C29AE1B4CC61D11D8B27DE78B2307 -- C:\WINDOWS\$NtServicePackUninstall$\winlogon.exe
[2008.04.14 04:22:53 | 000,547,328 | ---- | M] (Microsoft Corporation) MD5=471341D353962A35DA3C6324D59D09C4 -- C:\WINDOWS\ServicePackFiles\i386\winlogon.exe
[2008.04.14 04:22:53 | 000,547,328 | ---- | M] (Microsoft Corporation) MD5=471341D353962A35DA3C6324D59D09C4 -- C:\WINDOWS\system32\winlogon.exe
[2008.04.14 04:22:53 | 000,507,904 | ---- | M] (Microsoft Corporation) MD5=CDDB1F8E1AEA356F3AD106F2CF9B7FEA -- C:\WINDOWS\NiwradSoft Shell Pack\Backup\winlogon.exe

< MD5 for: WS2_32.DLL >
[2004.08.17 16:49:22 | 000,082,944 | ---- | M] (Microsoft Corporation) MD5=382E9B87F1282E697C67AF84E34E35E2 -- C:\WINDOWS\$NtServicePackUninstall$\ws2_32.dll
[2008.04.14 04:22:06 | 000,082,432 | ---- | M] (Microsoft Corporation) MD5=951D473917C51F21496D914CF6E5DDD1 -- C:\WINDOWS\ServicePackFiles\i386\ws2_32.dll
[2008.04.14 04:22:06 | 000,082,432 | ---- | M] (Microsoft Corporation) MD5=951D473917C51F21496D914CF6E5DDD1 -- C:\WINDOWS\system32\ws2_32.dll

< %systemroot%\*. /mp /s >

< %systemroot%\system32\*.dll /lockedfiles >
[4 C:\windows\system32\*.tmp files -> C:\windows\system32\*.tmp -> ]

< %systemroot%\Tasks\*.job /lockedfiles >

< %systemroot%\system32\drivers\*.sys /lockedfiles >
[2009.12.09 14:21:01 | 000,691,696 | ---- | M] () Unable to obtain MD5 -- C:\WINDOWS\system32\drivers\sptd.sys

< %systemroot%\System32\config\*.sav >
[2008.07.28 12:56:58 | 000,094,208 | ---- | M] () -- C:\WINDOWS\system32\config\default.sav
[2008.07.28 12:56:58 | 000,663,552 | ---- | M] () -- C:\WINDOWS\system32\config\software.sav
[2008.07.28 12:56:58 | 000,483,328 | ---- | M] () -- C:\WINDOWS\system32\config\system.sav

< %systemroot%\system32\*.dll /lockedfiles >
[4 C:\windows\system32\*.tmp files -> C:\windows\system32\*.tmp -> ]

< reg query "HKLM\Software\Microsoft\Windows NT\CurrentVersion\winlogon" /v GinaDLL /c >
! REG.EXE VERSION 3.0
HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON

< reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wuauserv" /v ImagePath /c >
! REG.EXE VERSION 3.0
HKEY_LOCAL_MACHINE\SYSTEM\CURRENTCONTROLSET\SERVICES\WUAUSERV
IMAGEPATH REG_EXPAND_SZ %systemroot%\system32\svchost.exe -k netsvcs

< reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BITS" /v ImagePath /c >
! REG.EXE VERSION 3.0
HKEY_LOCAL_MACHINE\SYSTEM\CURRENTCONTROLSET\SERVICES\BITS
IMAGEPATH REG_EXPAND_SZ %SystemRoot%\system32\svchost.exe -k netsvcs

< %systemroot%\system32\drivers\*.sys /3 >
[2011.02.03 16:56:36 | 000,138,160 | ---- | M] () -- C:\WINDOWS\system32\drivers\PnkBstrK.sys

< %systemroot%\system32\*.* /3 >
[2011.02.04 16:56:37 | 000,004,096 | ---- | M] () -- C:\WINDOWS\system32\crash
[2011.02.04 16:46:51 | 000,271,200 | ---- | M] () -- C:\WINDOWS\system32\PnkBstrB.ex0
[2011.02.03 16:56:25 | 000,271,200 | ---- | M] () -- C:\WINDOWS\system32\PnkBstrB.exe
[2011.02.04 19:45:29 | 000,271,200 | ---- | M] () -- C:\WINDOWS\system32\PnkBstrB.xtr
[2011.02.05 11:40:18 | 000,002,206 | ---- | M] () -- C:\WINDOWS\system32\wpa.dbl
[4 C:\windows\system32\*.tmp files -> C:\windows\system32\*.tmp -> ]

========== Alternate Data Streams ==========

@Alternate Data Stream - 134 bytes -> C:\Documents and Settings\All Users\Data aplikací\TEMP:671329E4
@Alternate Data Stream - 125 bytes -> C:\Documents and Settings\All Users\Data aplikací\TEMP:5C321E34

< End of report >

Uživatelský avatar
Dvori66
Návštěvník
Návštěvník
Příspěvky: 94
Registrován: 04 úno 2011 18:29
Kontaktovat uživatele:

Re: C:\WINDOWS\system32\cmd.exe maze subory

#21 Příspěvek od Dvori66 »

Extras.txt

OTL Extras logfile created on: 5.2.2011 13:27:12 - Run 1
OTL by OldTimer - Version 3.2.20.6 Folder = C:\Documents and Settings\pc\Plocha
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy

1 022,00 Mb Total Physical Memory | 203,00 Mb Available Physical Memory | 20,00% Memory free
2,00 Gb Paging File | 2,00 Gb Available in Paging File | 74,00% Paging File free
Paging file location(s): C:\pagefile.sys 0 0 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\windows | %ProgramFiles% = C:\Program Files
Drive C: | 298,08 Gb Total Space | 117,41 Gb Free Space | 39,39% Space Free | Partition Type: NTFS

Computer Name: COMPUTER | User Name: pc | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Extra Registry (SafeList) ==========


========== File Associations ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
.html [@ = Opera.HTML] -- C:\Program Files\Opera\Opera.exe (Opera Software)

[HKEY_USERS\S-1-5-21-117609710-1364589140-725345543-1003\SOFTWARE\Classes\<extension>]
.html [@ = ChromeHTML] -- Reg Error: Key error. File not found

========== Shell Spawning ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
exefile [open] -- "%1" %*
http [open] -- "C:\Program Files\Opera\Opera.exe" "%1" (Opera Software)
https [open] -- "C:\Program Files\Opera\Opera.exe" "%1" (Opera Software)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

========== Security Center Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"FirstRunDisabled" = 1
"AntiVirusDisableNotify" = 0
"FirewallDisableNotify" = 0
"UpdatesDisableNotify" = 0
"AntiVirusOverride" = 0
"FirewallOverride" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]

========== System Restore Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Sr]
"Start" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SrService]
"Start" = 2

========== Firewall Settings ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
"59128:TCP" = 59128:TCP:*:Enabled:Pando Media Booster
"59128:UDP" = 59128:UDP:*:Enabled:Pando Media Booster

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1
"DoNotAllowExceptions" = 0
"DisableNotifications" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
"1900:UDP" = 1900:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22007
"2869:TCP" = 2869:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22008
"139:TCP" = 139:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22004
"445:TCP" = 445:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22005
"137:UDP" = 137:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22001
"138:UDP" = 138:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22002
"3389:TCP" = 3389:TCP:*:Enabled:@xpsp2res.dll,-22009
"3724:TCP" = 3724:TCP:*:Enabled:Blizzard Downloader: 3724
"59128:TCP" = 59128:TCP:*:Enabled:Pando Media Booster
"59128:UDP" = 59128:UDP:*:Enabled:Pando Media Booster

========== Authorized Applications List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
"C:\Program Files\Pando Networks\Media Booster\PMB.exe" = C:\Program Files\Pando Networks\Media Booster\PMB.exe:*:Enabled:Pando Media Booster -- ()
"C:\Program Files\ICQ7.4\ICQ.exe" = C:\Program Files\ICQ7.4\ICQ.exe:*:Enabled:ICQ7.4 -- (ICQ, LLC.)

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"C:\Program Files\Activision\Call of Duty 2\CoD2MP_s.exe" = C:\Program Files\Activision\Call of Duty 2\CoD2MP_s.exe:*:Enabled:Call of Duty(R) 2 Multiplayer -- ()
"C:\Program Files\ICQ6.5\ICQ.exe" = C:\Program Files\ICQ6.5\ICQ.exe:*:Enabled:ICQ6.5
"C:\Program Files\EA GAMES\Medal of Honor Pacific Assault(tm)\mohpa.exe" = C:\Program Files\EA GAMES\Medal of Honor Pacific Assault(tm)\mohpa.exe:*:Enabled:Medal of Honor Pacific Assault(tm) -- (Electronic Arts Inc.)
"C:\Program Files\America's Army\System\ArmyOps.exe" = C:\Program Files\America's Army\System\ArmyOps.exe:*:Enabled:ArmyOps
"C:\Program Files\Outlook Express\msimn.exe" = C:\Program Files\Outlook Express\msimn.exe:*:Enabled:Outlook Express -- (Microsoft Corporation)
"C:\Program Files\SpywareBlaster\spywareblaster.exe" = C:\Program Files\SpywareBlaster\spywareblaster.exe:*:Enabled:SpywareBlaster -- ()
"C:\Program Files\ATI Technologies\ATI HYDRAVISION\HydraWizard.exe" = C:\Program Files\ATI Technologies\ATI HYDRAVISION\HydraWizard.exe:*:Disabled:Inteligentní instalátor HYDRAVISION -- (ATI Technologies Inc.)
"C:\Documents and Settings\pc\Plocha\Ubisoft\Far Cry 2\bin\farcry2.exe" = C:\Documents and Settings\pc\Plocha\Ubisoft\Far Cry 2\bin\farcry2.exe:*:Enabled:Far Cry® 2
"C:\Program Files\Electronic Arts\EADM\Core.exe" = C:\Program Files\Electronic Arts\EADM\Core.exe:*:Enabled:EA Download Manager
"C:\Program Files\QIP\qip.exe" = C:\Program Files\QIP\qip.exe:*:Disabled:Quiet Internet Pager
"C:\Program Files\Mozilla Firefox\firefox.exe" = C:\Program Files\Mozilla Firefox\firefox.exe:*:Enabled:Firefox -- (Mozilla Corporation)
"C:\Documents and Settings\pc\Plocha\Call of Duty 4 - Modern Warfare\iw3mp.exe" = C:\Documents and Settings\pc\Plocha\Call of Duty 4 - Modern Warfare\iw3mp.exe:*:Enabled:iw3mp
"C:\Program Files\HLSW\hlsw.exe" = C:\Program Files\HLSW\hlsw.exe:*:Enabled:hlsw -- (Stripf Software)
"C:\Program Files\Call of Duty\CoDMP.exe" = C:\Program Files\Call of Duty\CoDMP.exe:*:Enabled:CoDMP
"C:\Program Files\TrackMania Nations ESWC\TmNationsESWC.exe" = C:\Program Files\TrackMania Nations ESWC\TmNationsESWC.exe:*:Enabled:TmNationsESWC -- ()
"C:\Documents and Settings\pc\Dokumenty\Data ke hram\Quake 3\quake3.exe" = C:\Documents and Settings\pc\Dokumenty\Data ke hram\Quake 3\quake3.exe:*:Enabled:quake3 -- ()
"C:\Program Files\Metin2_CZ\metin2.bin" = C:\Program Files\Metin2_CZ\metin2.bin:*:Enabled:metin2
"C:\Games\Paintball2\paintball2.exe" = C:\Games\Paintball2\paintball2.exe:*:Enabled:paintball2
"C:\Program Files\Microsoft Games\Age of Empires II Trial\EMPIRES2.EXE" = C:\Program Files\Microsoft Games\Age of Empires II Trial\EMPIRES2.EXE:*:Disabled:Age of Empires II
"C:\Documents and Settings\pc\Plocha\WoW-BurningCrusade-enGB-Installer-downloader.exe" = C:\Documents and Settings\pc\Plocha\WoW-BurningCrusade-enGB-Installer-downloader.exe:*:Enabled:Blizzard Downloader
"C:\Program Files\World of Warcraft\Launcher.exe" = C:\Program Files\World of Warcraft\Launcher.exe:*:Enabled:Blizzard Launcher
"C:\Documents and Settings\pc\Local Settings\Temp\Blizzard Launcher Temporary - 244330f8\Launcher.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Blizzard Launcher Temporary - 244330f8\Launcher.exe:*:Enabled:Blizzard Launcher -- (Blizzard Entertainment)
"C:\Program Files\World of Warcraft\WoW-3.0.9.9551-to-3.1.0.9767-enGB-downloader.exe" = C:\Program Files\World of Warcraft\WoW-3.0.9.9551-to-3.1.0.9767-enGB-downloader.exe:*:Enabled:Blizzard Downloader
"C:\Program Files\World of Warcraft\WoW-3.1.3.9947-to-3.2.0.10192-enGB-downloader.exe" = C:\Program Files\World of Warcraft\WoW-3.1.3.9947-to-3.2.0.10192-enGB-downloader.exe:*:Enabled:Blizzard Downloader
"C:\SIMS\RACER\racer.exe" = C:\SIMS\RACER\racer.exe:*:Enabled:racer
"C:\Program Files\uTorrent\uTorrent.exe" = C:\Program Files\uTorrent\uTorrent.exe:*:Enabled:µTorrent -- (BitTorrent, Inc.)
"C:\Program Files\Codemasters\GRID\GRID.exe" = C:\Program Files\Codemasters\GRID\GRID.exe:*:Enabled:GRID Executable -- (Codemasters)
"C:\Program Files\Metin2_CZ\metin2client.bin" = C:\Program Files\Metin2_CZ\metin2client.bin:*:Enabled:metin2client
"C:\Program Files\Wolfenstein - Enemy Territory\ET.exe" = C:\Program Files\Wolfenstein - Enemy Territory\ET.exe:*:Enabled:ET
"C:\Program Files\EA GAMES\Need For Speed Underground\Speed.exe" = C:\Program Files\EA GAMES\Need For Speed Underground\Speed.exe:*:Enabled:Speed
"C:\Program Files\Activision\Call of Duty 4 - Modern Warfare\iw3mp.exe" = C:\Program Files\Activision\Call of Duty 4 - Modern Warfare\iw3mp.exe:*:Enabled:Call of Duty(R) 4 - Modern Warfare(TM) -- ()
"C:\Program Files\Electronic Arts\Crytek\Crysis Wars\Bin32\Crysis.exe" = C:\Program Files\Electronic Arts\Crytek\Crysis Wars\Bin32\Crysis.exe:*:Enabled:Crysis
"C:\Documents and Settings\pc\Plocha\FinaLongju2\FinaLongju2 Nightfall (Srv2) - CH2.exe" = C:\Documents and Settings\pc\Plocha\FinaLongju2\FinaLongju2 Nightfall (Srv2) - CH2.exe:*:Enabled:FinaLongju2 Nightfall (Srv2) - CH2
"C:\FinaLongju2\FinaLongju2 Nightfall (Srv2) - CH2.exe" = C:\FinaLongju2\FinaLongju2 Nightfall (Srv2) - CH2.exe:*:Enabled:FinaLongju2 Nightfall (Srv2) - CH2
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX07.485\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX07.485\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX04.875\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX04.875\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.516\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.516\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX02.906\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX02.906\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.781\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.781\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.047\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.047\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.922\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.922\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.016\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.016\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.922\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.922\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.797\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.797\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX03.547\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX03.547\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.031\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.031\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.453\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.453\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.641\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.641\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.063\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.063\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.703\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.703\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.515\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.515\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.906\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.906\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.281\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.281\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX02.750\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX02.750\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.297\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.297\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.859\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.859\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.046\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.046\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.891\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.891\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX14.1266\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX14.1266\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX12.87360\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX12.87360\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX06.062\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX06.062\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.969\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.969\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX02.672\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX02.672\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.766\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.766\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Program Files\ItalongjuMT2\Italongjumt2.exe" = C:\Program Files\ItalongjuMT2\Italongjumt2.exe:*:Enabled:Italongjumt2
"C:\Documents and Settings\pc\Data aplikací\PowerChallenge\PowerSoccer\PowerSoccer.exe" = C:\Documents and Settings\pc\Data aplikací\PowerChallenge\PowerSoccer\PowerSoccer.exe:*:Enabled:PowerSoccer -- ()
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX03.391\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX03.391\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.953\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.953\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.156\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.156\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.125\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.125\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.625\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.625\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.969\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.969\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.672\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.672\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.140\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.140\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.875\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.875\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX27.172\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX27.172\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.812\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.812\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.062\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.062\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.844\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.844\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX50.750\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX50.750\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.265\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.265\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX18.000\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX18.000\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.719\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.719\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.765\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.765\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.094\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.094\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.593\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.593\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.734\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.734\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.281\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.281\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.985\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.985\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.703\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.703\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.360\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.360\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.500\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.500\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.219\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.219\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.671\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.671\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX23.360\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX23.360\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.797\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.797\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.328\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.328\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX77.3141\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX77.3141\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX11.04812\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX11.04812\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.063\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.063\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.250\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.250\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.453\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.453\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.188\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.188\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX09.719\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX09.719\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.734\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.734\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.343\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.343\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.391\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.391\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX02.625\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX02.625\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX32.3359\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX32.3359\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.907\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.907\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.812\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.812\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.000\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.000\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX25.6781\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX25.6781\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.312\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.312\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX56.9031\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX56.9031\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.375\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.375\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX12.1312\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX12.1312\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX10.37984\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX10.37984\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.437\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.437\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.172\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.172\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.203\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.203\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.796\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.796\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.516\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.516\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Dokumenty\Client 4LifeLongju2 by RavenS\4LifeLongju.exe" = C:\Documents and Settings\pc\Dokumenty\Client 4LifeLongju2 by RavenS\4LifeLongju.exe:*:Enabled:4LifeLongju
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.843\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.843\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX05.062\PersonalMetin\PersonalMetin.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX05.062\PersonalMetin\PersonalMetin.exe:*:Enabled:PersonalMetin
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX07.094\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX07.094\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX13.7329\FinaLongju2\Server2Ch1.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX13.7329\FinaLongju2\Server2Ch1.exe:*:Enabled:Server2Ch1
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX15.5282\FinaLongju2\Server2Ch1.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX15.5282\FinaLongju2\Server2Ch1.exe:*:Enabled:Server2Ch1
"C:\Program Files\Sierra\Empire Earth\Empire Earth.exe" = C:\Program Files\Sierra\Empire Earth\Empire Earth.exe:*:Enabled:Empire Earth
"C:\Hry\TmNationsForever\TmForever.exe" = C:\Hry\TmNationsForever\TmForever.exe:*:Enabled:TmForever -- ()
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.796\Client\Gods Revolution.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.796\Client\Gods Revolution.exe:*:Enabled:Gods Revolution
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.125\Client\Gods Revolution.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.125\Client\Gods Revolution.exe:*:Enabled:Gods Revolution
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.219\Client\Gods Revolution.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.219\Client\Gods Revolution.exe:*:Enabled:Gods Revolution
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.016\Client\Gods Revolution.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.016\Client\Gods Revolution.exe:*:Enabled:Gods Revolution
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.563\Client\Gods Revolution.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.563\Client\Gods Revolution.exe:*:Enabled:Gods Revolution
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX03.891\Client\Gods Revolution.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX03.891\Client\Gods Revolution.exe:*:Enabled:Gods Revolution
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX02.344\Client\Gods Revolution.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX02.344\Client\Gods Revolution.exe:*:Enabled:Gods Revolution
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.922\Client\Gods Revolution.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.922\Client\Gods Revolution.exe:*:Enabled:Gods Revolution
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX04.516\Client\Gods Revolution.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX04.516\Client\Gods Revolution.exe:*:Enabled:Gods Revolution
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.437\Client\Gods Revolution.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.437\Client\Gods Revolution.exe:*:Enabled:Gods Revolution
"C:\Program Files\Steam\Steam.exe" = C:\Program Files\Steam\Steam.exe:*:Enabled:Steam
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX18.125\Client\Gods Revolution.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX18.125\Client\Gods Revolution.exe:*:Enabled:Gods Revolution
"C:\Program Files\Activision\Wolfenstein\MP\Wolf2MP.exe" = C:\Program Files\Activision\Wolfenstein\MP\Wolf2MP.exe:*:Enabled:Wolfenstein(TM) -- (Activision)
"C:\Program Files\Activision\Wolfenstein\MP\Wolf2MPLite.exe" = C:\Program Files\Activision\Wolfenstein\MP\Wolf2MPLite.exe:*:Enabled:Wolfenstein(TM) -- (Activision)
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX03.641\BurkayMT2\mc.exe" = C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX03.641\BurkayMT2\mc.exe:*:Enabled:mc
"C:\Hry\BurkayMT2\mc.exe" = C:\Hry\BurkayMT2\mc.exe:*:Enabled:mc
"C:\Program Files\City Interactive\Sniper Ghost Warrior\Sniper_x86.exe" = C:\Program Files\City Interactive\Sniper Ghost Warrior\Sniper_x86.exe:*:Enabled:Sniper: Ghost Warrior -- (City Interactive)
"C:\Program Files\Electronic Arts\Battlefield Bad Company 2\BFBC2Updater.exe" = C:\Program Files\Electronic Arts\Battlefield Bad Company 2\BFBC2Updater.exe:*:Enabled:Battlefield: Bad Company™ 2 -- (EA Digital Illusions CE AB)
"C:\Program Files\Pando Networks\Media Booster\PMB.exe" = C:\Program Files\Pando Networks\Media Booster\PMB.exe:*:Enabled:Pando Media Booster -- ()
"C:\Documents and Settings\pc\Dokumenty\PROGRAMY\Skype.exe" = C:\Documents and Settings\pc\Dokumenty\PROGRAMY\Skype.exe:*:Enabled:Skype
"C:\Documents and Settings\pc\Dokumenty\Godmt2\Gods Revolution.exe" = C:\Documents and Settings\pc\Dokumenty\Godmt2\Gods Revolution.exe:*:Enabled:Gods Revolution
"C:\Documents and Settings\pc\Dokumenty\Godmt2\StarLonjutMt2.exe" = C:\Documents and Settings\pc\Dokumenty\Godmt2\StarLonjutMt2.exe:*:Enabled:StarLonjutMt2
"C:\Documents and Settings\pc\Dokumenty\Starlonjutm2\StarLonjutMt2.exe" = C:\Documents and Settings\pc\Dokumenty\Starlonjutm2\StarLonjutMt2.exe:*:Enabled:StarLonjutMt2
"C:\Program Files\Microsoft Games\Age of Empires II\age2_x1.exe" = C:\Program Files\Microsoft Games\Age of Empires II\age2_x1.exe:*:Enabled:Age of Empires II Expansion
"C:\Program Files\Microsoft Games\Age of Empires II\empires2.exe" = C:\Program Files\Microsoft Games\Age of Empires II\empires2.exe:*:Enabled:Age of Empires II
"C:\Program Files\EA Sports\FIFA Online\NFE.exe" = C:\Program Files\EA Sports\FIFA Online\NFE.exe:*:Enabled:EA SPORTS™ FIFA Online
"C:\Documents and Settings\pc\Dokumenty\Starlonjutm2\metin2.bin" = C:\Documents and Settings\pc\Dokumenty\Starlonjutm2\metin2.bin:*:Enabled:metin2
"C:\Program Files\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe" = C:\Program Files\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe:*:Enabled:Ubisoft Game Launcher -- (Ubisoft)
"C:\Program Files\Ubisoft\Assassin's Creed II\AssassinsCreedIIGame.exe" = C:\Program Files\Ubisoft\Assassin's Creed II\AssassinsCreedIIGame.exe:*:Enabled:Assassin's Creed II -- ()
"C:\Program Files\Ubisoft\Assassin's Creed II\AssassinsCreedII.exe" = C:\Program Files\Ubisoft\Assassin's Creed II\AssassinsCreedII.exe:*:Enabled:Assassin's Creed II Update -- (Ubisoft)
"C:\Program Files\Ubisoft\Assassin's Creed II\UPlayBrowser.exe" = C:\Program Files\Ubisoft\Assassin's Creed II\UPlayBrowser.exe:*:Enabled:Assassin's Creed II Uplay -- (Ubisoft Entertainment)
"C:\Program Files\BitLord2\BitLord.exe" = C:\Program Files\BitLord2\BitLord.exe:*:Enabled:Bitlord2
"C:\Kraviny\MondialMt2\MondialMt2.exe" = C:\Kraviny\MondialMt2\MondialMt2.exe:*:Enabled:MondialMt2
"C:\Program Files\KONAMI\Pro Evolution Soccer 2011\PES2011.exe" = C:\Program Files\KONAMI\Pro Evolution Soccer 2011\PES2011.exe:*:Enabled:Pro Evolution Soccer 2011
"C:\Documents and Settings\pc\Dokumenty\Programy a jiny veci\QIP Infium PafoPack\inf.exe" = C:\Documents and Settings\pc\Dokumenty\Programy a jiny veci\QIP Infium PafoPack\inf.exe:*:Enabled:QIP Infium -- (QIP)
"C:\Program Files\TmUnitedForever\TmForever.exe" = C:\Program Files\TmUnitedForever\TmForever.exe:*:Enabled:TmForever -- ()
"C:\Program Files\Electronic Arts\Medal of Honor\Binaries\moh.exe" = C:\Program Files\Electronic Arts\Medal of Honor\Binaries\moh.exe:*:Enabled:Medal of Honor™ -- (Electronic Arts Inc.)
"C:\Program Files\Microsoft Games\Age of Empires II\age2_x1\age2_x1.exe" = C:\Program Files\Microsoft Games\Age of Empires II\age2_x1\age2_x1.exe:*:Enabled:Age of Empires II Expansion
"C:\Program Files\EA Sports\FIFA 11\Game\fifa.exe" = C:\Program Files\EA Sports\FIFA 11\Game\fifa.exe:*:Enabled:FIFA 11 -- (Electronic Arts)
"C:\Program Files\Google\Google Earth\client\googleearth.exe" = C:\Program Files\Google\Google Earth\client\googleearth.exe:*:Enabled:Google Earth -- (Google)
"C:\Program Files\Google\Google Earth\plugin\geplugin.exe" = C:\Program Files\Google\Google Earth\plugin\geplugin.exe:*:Enabled:Google Earth -- (Google)
"C:\Program Files\Activision\Call of Duty - Black Ops\BlackOps.exe" = C:\Program Files\Activision\Call of Duty - Black Ops\BlackOps.exe:*:Disabled:BlackOps -- ()
"C:\Documents and Settings\pc\Dokumenty\Programy a jiny veci\PROGRAMY\Skype.exe" = C:\Documents and Settings\pc\Dokumenty\Programy a jiny veci\PROGRAMY\Skype.exe:*:Enabled:Skype
"C:\Program Files\QIP 2010\qip.exe" = C:\Program Files\QIP 2010\qip.exe:*:Enabled:QIP 2010
"C:\Program Files\Ubisoft\Far Cry 2\bin\FarCry2.exe" = C:\Program Files\Ubisoft\Far Cry 2\bin\FarCry2.exe:*:Enabled:Far Cry 2 -- (Ubisoft Entertainment)
"C:\Program Files\Ubisoft\Far Cry 2\bin\FC2Launcher.exe" = C:\Program Files\Ubisoft\Far Cry 2\bin\FC2Launcher.exe:*:Enabled:Far Cry 2 Updater -- (Ubisoft)
"C:\Program Files\Ubisoft\Far Cry 2\bin\FC2Editor.exe" = C:\Program Files\Ubisoft\Far Cry 2\bin\FC2Editor.exe:*:Enabled:Editor -- (Ubisoft Entertainment)
"C:\Program Files\Opera\opera.exe" = C:\Program Files\Opera\opera.exe:*:Enabled:Opera Internet Browser -- (Opera Software)
"C:\Soldat\Soldat.exe" = C:\Soldat\Soldat.exe:*:Enabled:Soldat
"D:\Personal Data\Program Files\Pro Evolution Soccer 2011\PES2011.exe" = D:\Personal Data\Program Files\Pro Evolution Soccer 2011\PES2011.exe:*:Enabled:Pro Evolution Soccer 2011
"D:\Personal Data\Program Files\Age of Empires II\MYTH-Age2_x1.exe" = D:\Personal Data\Program Files\Age of Empires II\MYTH-Age2_x1.exe:*:Enabled:Age of Empires II Expansion
"C:\Program Files\Rockstar Games\Grand Theft Auto IV\LaunchGTAIV.exe" = C:\Program Files\Rockstar Games\Grand Theft Auto IV\LaunchGTAIV.exe:*:Enabled:Grand Theft Auto IV -- (Sony DADC Austria AG)
"C:\Program Files\Ubisoft\James Cameron's AVATAR - THE GAME\bin\Avatar.exe" = C:\Program Files\Ubisoft\James Cameron's AVATAR - THE GAME\bin\Avatar.exe:*:Enabled:James Cameron's AVATAR(tm): THE GAME -- (Ubisoft Entertainment)
"C:\Program Files\Ubisoft\James Cameron's AVATAR - THE GAME\bin\AvatarLauncher.exe" = C:\Program Files\Ubisoft\James Cameron's AVATAR - THE GAME\bin\AvatarLauncher.exe:*:Enabled:Updater -- (Ubisoft)
"C:\Program Files\ICQ7.4\ICQ.exe" = C:\Program Files\ICQ7.4\ICQ.exe:*:Enabled:ICQ7.4 -- (ICQ, LLC.)

Uživatelský avatar
Dvori66
Návštěvník
Návštěvník
Příspěvky: 94
Registrován: 04 úno 2011 18:29
Kontaktovat uživatele:

Re: C:\WINDOWS\system32\cmd.exe maze subory

#22 Příspěvek od Dvori66 »

========== HKEY_LOCAL_MACHINE Uninstall List ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}" = PDFCreator
"{0032D29F-7E8F-40E5-AD12-8857AAB0DBFF}" = Catalyst Control Center - Branding
"{033E378E-6AD3-4AD5-BDEB-CBD69B31046C}" = Microsoft_VC90_ATL_x86
"{055EE59D-217B-43A7-ABFF-507B966405D8}" = ATI Catalyst Control Center
"{08D2E121-7F6A-43EB-97FD-629B44903403}" = Microsoft_VC90_CRT_x86
"{0CB0B5BF-277A-4BC0-B7CD-A824443EAD19}" = OpenOffice.org 2.4
"{0D2DBE8A-43D0-7830-7AE7-CA6C99A832E7}" = Adobe Community Help
"{0EFFACE1-41CC-A3E5-C276-E53A0FB137CF}" = CCC Help Norwegian
"{0F3647F8-E51D-4FCC-8862-9A8D0C5ACF25}" = Microsoft_VC80_ATL_x86
"{11083C7A-D0D6-4DA4-8C3A-74B8389EC07B}" = ATI Catalyst Registration
"{11202615-E557-4ECF-9B86-F59C81E52909}" = FIFA 10
"{1148E85C-E1AF-48E0-A29C-68DACE07E054}" = Pro Evolution Soccer 2011
"{119BF790-B7A8-1E96-093F-2B5A5C5D5A0A}" = CCC Help English
"{1536D879-68D5-5494-DCFB-D1FE7878C3D8}" = CCC Help Russian
"{156C3E4C-4C12-4BD3-9CD4-F2F858A2458B}" = GRID
"{18455581-E099-4BA8-BC6B-F34B2F06600C}" = Google Toolbar for Internet Explorer
"{192E2132-E977-4D3E-90BA-9DBCE1B57F8C}" = Heroes of Might and Magic® IV
"{1940E2BF-478C-FD79-CBCF-3171B4A4DA12}" = CCC Help Dutch
"{1E2FDD18-E514-4631-AF4A-0CC58FD93DCB}" = Quake Live Mozilla Plugin
"{1E445925-273D-4186-88A0-B8D1B6B119E2}" = WRC FIA World Rally Championship
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}" = Multimedia Launcher
"{204BB4EF-68AC-454B-857E-431336B4188A}" = ESET NOD32 Antivirus
"{2318C2B1-4965-11d4-9B18-009027A5CD4F}" = Google Toolbar for Internet Explorer
"{259C0ABB-A3B2-4D70-008F-BF7EE491B70B}" = Need for Speed™ Carbon
"{25C63E16-5CB9-16E5-A931-8963E5DE8421}" = Catalyst Control Center HydraVision Full
"{26A24AE4-039D-4CA4-87B4-2F83216020FF}" = Java(TM) 6 Update 23
"{29E9096E-519C-00B0-0238-3E46292C855E}" = Catalyst Control Center Graphics Previews Common
"{2C288961-5ABA-3D23-490F-902F9F11D440}" = Catalyst Control Center Graphics Light
"{2E660A2A-A55F-43CD-9F73-CAD7382EEB78}" = Microsoft Games for Windows - LIVE Redistributable
"{3248F0A8-6813-11D6-A77B-00B0D0150040}" = J2SE Runtime Environment 5.0 Update 4
"{350C9405-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
"{35ED3F83-4BDC-4c44-8EC6-6A8301C7413A}" = McAfee SiteAdvisor
"{36CDA33B-909B-4719-97D1-C4B99309BDC7}" = ATI Parental Control & Encoder
"{376AB772-227C-FEB0-4DCE-8FD3A7C50B89}" = CCC Help Turkish
"{3921A67A-5AB1-4E48-9444-C71814CF3027}" = VCRedistSetup
"{3AC8457C-0385-4BEA-A959-E095F05D6D67}" = Battlefield: Bad Company™ 2
"{3BD633E0-4BF8-4499-9149-88F0767D449C}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.4 Patch
"{3E14C046-F86E-7392-51CB-6C36E12FC790}" = CCC Help Russian
"{3EA9D975-BFDC-4E8E-B88B-0446FBC8CA66}" = ATI HYDRAVISION
"{3F425F12-3A1B-4511-97B2-E2BB4701B745}" = Crysis Wars(R)
"{3FEA6CD1-EA13-4CE7-A74E-A74A4A0A7B5C}" = FIFA 11
"{410C50E7-C2CD-84E9-512A-A8794C68E3C6}" = Catalyst Control Center Localization All
"{415030B8-3E8B-462A-8C03-41D95AA3AB3B}" = Medal of Honor (TM)
"{4324BC93-C82F-ED16-BA86-5E34B9E05303}" = ccc-core-static
"{436811A5-21BF-7826-7792-FD69BABD20AB}" = ATI Catalyst Install Manager
"{465AB9C2-2EB6-C618-CA83-0F036898936D}" = Catalyst Control Center Graphics Previews Common
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4ED118EE-785C-CC18-5D2E-D5CA4BAA03F0}" = Catalyst Control Center Graphics Full New
"{4F177D60-4C31-5657-8FD3-3DD9C36207B8}" = Catalyst Control Center Localization All
"{4F73512F-90DF-4BF2-FCF9-0E5C83996136}" = ccc-core-preinstall
"{5081528F-5DD5-49BA-8213-9A6A13502497}" = Sentinel System Driver 5.41.1 (32-bit)
"{539475B7-44B7-8B0A-134C-F01B9C8B7569}" = ccc-core-preinstall
"{5454083B-1308-4485-BF17-1110000B8301}" = Grand Theft Auto IV
"{546C143E-68DC-314D-97BC-1E454E3BA429}" = Microsoft .NET Framework 3.0 Service Pack 2 Language Pack - CSY
"{56C049BE-79E9-4502-BEA7-9754A3E60F9B}" = neroxml
"{56CFA833-F44F-4199-8C58-7F8B38F2BC7B}" = Medal of Honor Pacific Assault(tm)
"{56D1E9E5-204A-E468-DAC1-644C9CB2DC65}" = Catalyst Control Center Core Implementation
"{579BA58C-F33D-4970-9953-B94B43768AC3}" = Grand Theft Auto IV
"{5AC7AE54-55DF-1126-076C-623F008D40B6}" = Catalyst Control Center Graphics Full Existing
"{5DA6F06A-B389-407B-BF8C-1548767914D8}" = ATI Problem Report Wizard
"{5E65E94D-69F2-4850-9E93-6459C53A0F50}" = Microsoft .NET Framework 1.1 Czech Language Pack
"{5F4C776F-8CBD-4C4F-892F-B568ABDD70C8}" = GameSpy Comrade
"{6351D217-3EE3-1967-29BE-6A77635FE485}" = Skins
"{635FED5B-2C6D-49BE-87E6-7A6FCD22BC5A}" = Microsoft_VC90_MFC_x86
"{63BF0B7D-DFB7-2A23-4212-E7C6D5196A46}" = ATI Stream SDK v2 Developer
"{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}" = PowerDVD
"{68620AD7-0252-7CF7-55EB-2FF226758973}" = CCC Help Swedish
"{688BB5A1-9CCD-1C7F-ECAB-3666F09389EF}" = CCC Help Czech
"{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}" = Windows Media Player Firefox Plugin
"{6AB9CD3A-F91F-233B-923B-6C59BA63524D}" = Catalyst Control Center HydraVision Full
"{6BE2A4A4-99FB-48ED-AE1E-4E850389F804}" = PartitionMagic
"{6DB7AD00-F781-11DF-9EEF-001279CD8240}" = Google Earth
"{717a935c-2e95-4d36-88ac-e8df6d8cb42b}" = Nero 9 Lite
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{7353BAE6-5E49-46C4-A9B5-8A269A313789}" = Crysis WARHEAD(R)
"{73C6DCFB-B606-47F3-BDFA-9A4FBF931E37}" = ICQ7.4
"{7600B3FE-F267-D350-3BA1-9E6874B8E536}" = ccc-utility
"{7748AC8C-18E3-43BB-959B-088FAEA16FB2}" = Nero StartSmart
"{7911C404-9AFA-4BB2-B9B7-E47423D87528}_is1" = Knights of Honor
"{79D5997E-BF79-48BB-8B41-9BE59C15C2D7}" = OmniPage SE 2.0
"{7B4A5C13-069F-4AFE-AE57-C497B4E33C7E}" = Call of Duty(R) 2 Patch 1.3
"{7B9CC60A-9B81-46A3-A953-76B6BF9EEC97}" = Age of Empires III
"{7E19B002-4CA3-4C9F-BA92-91D101B97219}" = James Cameron's AVATAR(tm): THE GAME
"{81D8048B-5900-526C-4443-8290C5D76759}" = CCC Help English
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{83EC2251-E655-5535-3117-0AF2F1F90957}" = CCC Help Swedish
"{85309D89-7BE9-4094-BB17-24999C6118FC}" = ArcSoft PhotoStudio 5.5
"{8570BEE8-0CA3-4977-9AB1-80ED93F0513C}" = Assassin's Creed II
"{85A91C22-C369-FCFB-5F1F-D59EB21AD0E1}" = CCC Help English
"{87323561-58BA-4D5B-BADA-A791B69D1705}" = Catalyst Control Center - Branding
"{888F1505-C2B3-4FDE-835D-36353EBD4754}" = Ubisoft Game Launcher
"{89DE67AD-08B8-4699-A55D-CA5C0AF82BF3}" = ATI AVIVO Codecs
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8A15B7D9-908A-4EF9-BA84-5AEDE61743EE}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.6 Patch
"{8ACC73AA-6511-7C55-B1A9-8E5D1DEAFAA3}" = The Lord of the Rings FREE Trial
"{8D13EC59-1F8D-4988-8523-D5E8C2724C1D}" = Beowulf TM
"{8F55DC91-FCE5-976C-B29B-C8963918E42A}" = CCC Help Danish
"{90110405-6000-11D3-8CFE-0150048383C9}" = Microsoft Office Professional Edition 2003
"{90120000-0020-0405-0000-0000000FF1CE}" = Sada Compatibility Pack pro systém Office 2007
"{92AA01A5-FEE3-746C-B378-EC67F6ECD6FD}" = CCC Help Finnish
"{92D58719-BBC1-4CC3-A08B-56C9E884CC2C}" = Microsoft_VC80_CRT_x86
"{931C37FC-594D-43A9-B10F-A2F2B1F03498}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch
"{980A182F-E0A2-4A40-94C1-AE0C1235902E}" = Pando Media Booster
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{A2C9CD1B-2551-3AED-B244-6698FB929FA6}" = Microsoft .NET Framework 2.0 Service Pack 2 Language Pack - CSY
"{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2
"{A6D0140F-E62F-9D1E-2408-9CFF91FF6FC8}" = ccc-utility
"{A8F2089B-1F79-4BF6-B385-A2C2B0B9A74D}" = ImagXpress
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{AC50CB60-7D5A-5953-6A38-496E08B9433C}" = Catalyst Control Center Graphics Full Existing
"{AC76BA86-7AD7-1029-7B44-A81200000003}" = Adobe Reader 8 - Czech
"{B194272D-1F92-46DF-99EB-8D5CE91CB4EC}" = Adobe AIR
"{B1C7EEFE-B42B-9943-5E31-B08A241E1D69}" = CCC Help Czech
"{B2EC4A38-B545-4A00-8214-13FE0E915E6D}" = Advertising Center
"{B4201BED-E517-803B-0579-91233DAE80BB}" = ccc-utility
"{B6E3F2A0-DDBB-4F0A-BA7C-09138605DDAC}" = WRC FIA World Rally Championship
"{B97CF5C3-0487-11D8-A36E-0050BAE317E1}" = DVD Solution
"{BBF0A67B-5DBA-452F-9D2E-6F168BC226E4}" = Need for Speed™ SHIFT
"{BC4AE628-81A4-4FC6-863A-7A9BA2E2531F}" = Nokia Connectivity Cable Driver
"{BD5CA0DA-71AD-43DA-B19E-6EEE0C9ADC9A}" = Nero ControlCenter
"{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2
"{C44A7422-E380-44BE-79FE-1C032D8A03A7}" = Catalyst Control Center Core Implementation
"{C4FFCD8D-3A06-E243-2747-2CE771A8B7D4}" = EA Download Manager UI
"{C56C4023-6B2E-7F8A-C72F-655089BFEA81}" = Catalyst Control Center Graphics Previews Common
"{C6B7E731-A9E1-4AEC-A1E7-2E63646647FE}" = Prince of Persia Warrior Within (Demo)
"{C713B78D-2B89-970C-5EAC-C4A21080FE81}" = ccc-core-static
"{C75C6783-CD7D-AF45-43B4-2885A3948318}" = Catalyst Control Center Graphics Full New
"{C81A2FE0-3574-00A9-CED4-BDAA334CBE8E}" = Nero Online Upgrade
"{C8E998E0-2629-A10F-C2E1-84B431969890}" = ccc-core-static
"{C950420B-4182-49EA-850A-A6A2ABF06C6B}" = Marvell Miniport Driver
"{CA9A3609-3ECC-4574-8824-A8161A71A603}" = Canon MP150
"{CAE64474-AADA-41B0-B297-8B7C6BA1F800}" = Setup
"{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}" = Microsoft .NET Framework 1.1
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{D0A05794-48C2-4424-A15A-9F20FCFDD374}" = Call of Duty(R) 2
"{D1A19B02-817E-4296-A45B-07853FD74D57}" = Microsoft_VC80_MFC_x86
"{D3B1C799-CB73-42DE-BA0F-2344793A095C}" = Catalyst Control Center - Branding
"{D417C96A-FCC7-4590-A1BB-FAF73F5BC98E}" = GTA San Andreas
"{D642E38E-0D24-486C-9A2D-E316DD696F4B}" = Microsoft XML Parser
"{D7BCF606-5821-4D1D-889E-76AE9D00E439}" = Solid Edge ST
"{D92BBB52-82FF-42ED-8A3C-4E062F944AB7}" = Microsoft_VC80_MFCLOC_x86
"{DA698BB0-B3B2-E0FE-D28A-BDCBCDF3391B}" = CCC Help Finnish
"{DB6AB705-C9BD-40E3-8929-2EA57F36A4FF}_is1" = ConvertXtoDVD 4.0.3.313
"{DD73CA82-EA82-38AA-863D-9A24A018DC96}" = Microsoft .NET Framework 3.5 Language Pack SP1 - csy
"{DDA34038-89BD-4804-B0B8-DC48D5DFB463}" = Catalyst Control Center - Branding
"{DE3A9DC5-9A5D-6485-9662-347162C7E4CA}" = Adobe Media Player
"{E08612D5-B4F9-6E99-0598-03888ABAEF98}" = ccc-core-static
"{E0F79D6B-CA2B-DF4B-252A-210148081821}" = CCC Help Norwegian
"{E1180142-3B31-4DCC-9D27-7AC2D37662BF}" = LightScribe 1.4.124.1
"{E2BD7259-82AF-B704-8CA8-A2BED47E60B9}" = CCC Help English
"{E3E71D07-CD27-46CB-8448-16D4FB29AA13}" = Microsoft WSE 3.0 Runtime
"{E48469CC-635E-4FD5-A122-1497C286D217}" = Call of Duty(R) 4 - Modern Warfare(TM)
"{E571E8B1-9771-465D-9DE0-3BA2D1BDAE99}" = The Matrix - Path of Neo
"{E5D24929-91A4-B0A1-DE00-AFC453921EF7}" = Catalyst Control Center Graphics Light
"{E633D396-5188-4E9D-8F6B-BFB8BF3467E8}" = Skype™ 5.0
"{E6C09BFB-BA75-15C7-5B18-A2CE31C4F42B}" = Catalyst Control Center Graphics Previews Common
"{E7964138-06A9-600C-2077-A152F87524BC}" = CCC Help Dutch
"{E8992E46-48E4-1FE3-800A-79308C9D0193}" = CCC Help Turkish
"{E8A80433-302B-4FF1-815D-FCC8EAC482FF}" = Nero Installer
"{EC5DC48E-F1B4-FF3F-2C18-7B79539B6E69}" = ccc-utility
"{F112F66E-25CA-42DD-983C-6118EB38F606}" = Microsoft Games for Windows - LIVE
"{F11DE228-1D4D-2FAC-15B2-6041A68ABE05}" = Catalyst Control Center InstallProxy
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{F2835483-37F2-4123-B4FE-0E77D58447F2}" = Far Cry 2
"{F333A33D-125C-32A2-8DCE-5C5D14231E27}" = Visual C++ 2008 x86 Runtime - (v9.0.30729)
"{F333A33D-125C-32A2-8DCE-5C5D14231E27}.vc_x86runtime_30729_01" = Visual C++ 2008 x86 Runtime - v9.0.30729.01
"{F41DAA86-6C41-E16C-3B1A-A483CCBEB669}" = CCC Help Danish
"{F9835182-794B-4F24-902A-E2CA9D43380F}" = NVIDIA PhysX
"{F9B37992-968C-4264-8449-489032FC28DE}" = Wolfenstein
"{F9FD80CE-0448-4D4F-8BCD-77FC514C3F99}" = Vista Codec Package
"{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
"82A44D22-9452-49FB-00FB-CEC7DCAF7E23" = EA SPORTS online 2007
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"Adobe Shockwave Player" = Adobe Shockwave Player
"Advanced RAR Password Recovery" = Advanced RAR Password Recovery (remove only)
"AIMP2" = AIMP2
"BS_Player Toolbar" = BS Player Toolbar
"BSPlayerf" = BS.Player FREE
"Call of Duty Modern Warfare 2_is1" = Call of Duty Modern Warfare 2
"Call of Duty: Black Ops_is1" = Call of Duty: Black Ops
"CCleaner" = CCleaner
"CDex" = CDex extraction audio
"com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Media Player
"com.ea.Vault.919CACB699904AC5D41B606703500DD39747C02D.1" = EA Download Manager UI
"Crysis WARHEAD(R)" = Crysis WARHEAD(R)
"Crysis Wars(R)" = Crysis Wars(R)
"EA Download Manager" = EA Download Manager
"Easy-PhotoPrint" = Canon Utilities Easy-PhotoPrint
"Easy-WebPrint" = Easy-WebPrint
"EAX Unified" = EAX Unified
"EVEREST Home Edition_is1" = EVEREST Home Edition v2.20
"GameParkClient_is1" = GamePark
"Gaming Mouse" = Gaming Mouse
"HLSW_is1" = HLSW v1.3.2.1
"chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Community Help
"ICQToolbar" = ICQ Toolbar
"IDNMitigationAPIs" = Microsoft Internationalized Domain Names Mitigation APIs
"ie8" = Windows Internet Explorer 8
"ImgBurn" = ImgBurn
"InstallShield_{192E2132-E977-4D3E-90BA-9DBCE1B57F8C}" = Heroes of Might and Magic® IV
"InstallShield_{3BD633E0-4BF8-4499-9149-88F0767D449C}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.4 Patch
"InstallShield_{7B9CC60A-9B81-46A3-A953-76B6BF9EEC97}" = Age of Empires III
"InstallShield_{8A15B7D9-908A-4EF9-BA84-5AEDE61743EE}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.6 Patch
"InstallShield_{931C37FC-594D-43A9-B10F-A2F2B1F03498}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch
"InstallShield_{D0A05794-48C2-4424-A15A-9F20FCFDD374}" = Call of Duty(R) 2
"InstallShield_{E48469CC-635E-4FD5-A122-1497C286D217}" = Call of Duty(R) 4 - Modern Warfare(TM)
"InstallShield_{F9B37992-968C-4264-8449-489032FC28DE}" = Wolfenstein
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware
"McAfee Security Scan" = McAfee Security Scan Plus
"Microsoft .NET Framework 1.1 (1033)" = Microsoft .NET Framework 1.1
"Microsoft .NET Framework 3.5 Language Pack SP1 - csy" = Microsoft .NET Framework 3.5 SP1 – jazyková sada – CSY
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"Mozilla Firefox (3.6.13)" = Mozilla Firefox (3.6.13)
"MP Navigator 2.0" = Canon MP Navigator 2.0
"MSCompPackV1" = Microsoft Compression Client Pack 1.0 for Windows XP
"NI Service Center" = NI Service Center
"NLSDownlevelMapping" = Microsoft National Language Support Downlevel APIs
"OpenAL" = OpenAL
"Opera 11.01.1190" = Opera 11.01
"PhotoFiltre" = PhotoFiltre
"PunkBusterSvc" = PunkBuster Services
"Scorpions WinCheater 2.07 (s databází 114)_is1" = Scorpions WinCheater
"Seven Remix XP" = Seven Remix XP 2.2
"Sniper Ghost Warrior_is1" = Sniper Ghost Warrior
"Softonic-Eng7 Toolbar" = Softonic-Eng7 Toolbar
"Spy Emergency_is1" = Spy Emergency
"SpywareBlaster_is1" = SpywareBlaster 4.2
"szn-software-listicka" = Seznam Lištička 2 (Všichni uživatelé tohoto počítače.)
"The KMPlayer" = The KMPlayer (remove only)
"TmNations_is1" = TrackMania Nations ESWC 1.7.9
"TmNationsForever_is1" = TmNationsForever Update 2010-03-15
"TmUnitedForever_is1" = TmUnitedForever Update 2010-03-15
"Totalcmd" = Total Commander (Remove or Repair)
"UltraISO_is1" = UltraISO Premium V9.36
"Wdf01005" = Microsoft Kernel-Mode Driver Framework Feature Pack 1.5
"WheelMouse" = Advanced Wheel Mouse 6.0.0.002
"Windows Media Format Runtime" = Windows Media Format 11 runtime
"Windows Media Player" = Windows Media Player 11
"Windows XP Service Pack" = Windows XP Service Pack 3
"WinRAR archiver" = WinRAR
"WMFDist11" = Windows Media Format 11 runtime
"wmp11" = Windows Media Player 11
"Wudf01000" = Microsoft User-Mode Driver Framework Feature Pack 1.0
"XP Codec Pack" = XP Codec Pack
"XPSEPSCLP" = XML Paper Specification Shared Components Language Pack 1.0

========== HKEY_USERS Uninstall List ==========

[HKEY_USERS\S-1-5-21-117609710-1364589140-725345543-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"Facebook Plug-In" = Facebook Plug-In
"Google Chrome" = Google Chrome
"Power Loader" = Power Challenge Game Plugin
"QIP Infium" = QIP Infium 2.0.9030 RC4
"uTorrent" = µTorrent

========== Last 10 Event Log Errors ==========

[ Application Events ]
Error - 4.2.2011 9:51:12 | Computer Name = COMPUTER | Source = Userenv | ID = 1041
Description = Systém Windows se nemůže dotazovat na položku registru DllName pro
{CF7639F3-ABA2-41DB-97F2-81E2C5DBFC5D} a nebude načtena. Příčinou je zřejmě chybná
registrace.

Error - 4.2.2011 11:14:44 | Computer Name = COMPUTER | Source = Userenv | ID = 1041
Description = Systém Windows se nemůže dotazovat na položku registru DllName pro
{7B849a69-220F-451E-B3FE-2CB811AF94AE} a nebude načtena. Příčinou je zřejmě chybná
registrace.

Error - 4.2.2011 11:14:44 | Computer Name = COMPUTER | Source = Userenv | ID = 1041
Description = Systém Windows se nemůže dotazovat na položku registru DllName pro
{CF7639F3-ABA2-41DB-97F2-81E2C5DBFC5D} a nebude načtena. Příčinou je zřejmě chybná
registrace.

Error - 4.2.2011 11:14:44 | Computer Name = COMPUTER | Source = Userenv | ID = 1041
Description = Systém Windows se nemůže dotazovat na položku registru DllName pro
{7B849a69-220F-451E-B3FE-2CB811AF94AE} a nebude načtena. Příčinou je zřejmě chybná
registrace.

Error - 4.2.2011 11:14:44 | Computer Name = COMPUTER | Source = Userenv | ID = 1041
Description = Systém Windows se nemůže dotazovat na položku registru DllName pro
{CF7639F3-ABA2-41DB-97F2-81E2C5DBFC5D} a nebude načtena. Příčinou je zřejmě chybná
registrace.

Error - 5.2.2011 6:40:34 | Computer Name = COMPUTER | Source = Windows Search Service | ID = 7040
Description = Vyhledávací služby zjistila, že index obsahuje poškozené datové soubory.
Služba se pokusí tyto potíže automaticky odstranit vytvořením nového indexu. Kontext:
aplikace Windows, katalog SystemIndex Podrobnosti: 0xc0041801 (0xc0041801)

Error - 5.2.2011 6:40:39 | Computer Name = COMPUTER | Source = Windows Search Service | ID = 3029
Description = Modul plug-in v <Search.TripoliIndexer> nebyl inicializován. Kontext:
aplikace Windows, katalog SystemIndex Podrobnosti: Index obsahu nelze číst. (0xc0041800)


Error - 5.2.2011 6:40:39 | Computer Name = COMPUTER | Source = Windows Search Service | ID = 3028
Description = Objekt sběrače nebyl inicializován. Kontext: aplikace Windows, katalog
SystemIndex Podrobnosti: Index obsahu nelze číst. (0xc0041800)

Error - 5.2.2011 6:40:39 | Computer Name = COMPUTER | Source = Windows Search Service | ID = 3058
Description = Aplikace nebyla inicializována. Kontext: aplikace Windows Podrobnosti:
Index
obsahu nelze číst. (0xc0041800)

Error - 5.2.2011 7:37:10 | Computer Name = COMPUTER | Source = Windows Search Service | ID = 3024
Description = Aktualizaci nelze spustit, protože zdroje obsahu jsou nepřístupné.
Opravte chyby a spusťte aktualizaci znovu. Kontext: aplikace , katalog SystemIndex


[ System Events ]
Error - 5.2.2011 8:16:02 | Computer Name = COMPUTER | Source = DCOM | ID = 10005
Description = Služba DCOM zjistila chybu %1084 při pokusu o spuštění služby EventSystem
s argumenty za účelem spuštění serveru: {1BE1F766-5536-11D1-B726-00C04FB926AF}

Error - 5.2.2011 8:16:13 | Computer Name = COMPUTER | Source = Service Control Manager | ID = 7001
Description = Služba Klient DHCP závisí na službě Rozhraní NetBios nad protokolem
TCP/IP, která neuspěla při spuštění v důsledku následující chyby: %%31

Error - 5.2.2011 8:16:13 | Computer Name = COMPUTER | Source = Service Control Manager | ID = 7001
Description = Služba Klient DNS závisí na službě Ovladač protokolu TCP/IP, která
neuspěla při spuštění v důsledku následující chyby: %%31

Error - 5.2.2011 8:16:13 | Computer Name = COMPUTER | Source = Service Control Manager | ID = 7001
Description = Služba Podpora rozhraní NetBIOS nad protokolem TCP/IP závisí na službě
AFD, která neuspěla při spuštění v důsledku následující chyby: %%31

Error - 5.2.2011 8:16:13 | Computer Name = COMPUTER | Source = Service Control Manager | ID = 7001
Description = Služba Služby IPSEC závisí na službě Ovladač IPSEC, která neuspěla
při spuštění v důsledku následující chyby: %%31

Error - 5.2.2011 8:16:13 | Computer Name = COMPUTER | Source = Service Control Manager | ID = 7026
Description = Zavedení následujícího ovladače pro spouštění počítače nebo systému
se nezdařilo: AFD ehdrv epfwtdir Fips intelppm IPSec MRxSmb NetBIOS NetBT RasAcd Rdbss Tcpip

Error - 5.2.2011 8:16:42 | Computer Name = COMPUTER | Source = DCOM | ID = 10005
Description = Služba DCOM zjistila chybu %1084 při pokusu o spuštění služby StiSvc
s argumenty za účelem spuštění serveru: {A1F4E726-8CF1-11D1-BF92-0060081ED811}

Error - 5.2.2011 8:16:46 | Computer Name = COMPUTER | Source = DCOM | ID = 10005
Description = Služba DCOM zjistila chybu %1084 při pokusu o spuštění služby EventSystem
s argumenty za účelem spuštění serveru: {1BE1F766-5536-11D1-B726-00C04FB926AF}

Error - 5.2.2011 8:17:13 | Computer Name = COMPUTER | Source = DCOM | ID = 10005
Description = Služba DCOM zjistila chybu %1084 při pokusu o spuštění služby StiSvc
s argumenty za účelem spuštění serveru: {A1F4E726-8CF1-11D1-BF92-0060081ED811}

Error - 5.2.2011 8:17:57 | Computer Name = COMPUTER | Source = DCOM | ID = 10005
Description = Služba DCOM zjistila chybu %1084 při pokusu o spuštění služby EventSystem
s argumenty za účelem spuštění serveru: {1BE1F766-5536-11D1-B726-00C04FB926AF}


< End of report >

A ty skryté soubory mi najednou zmizeli :(

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: C:\WINDOWS\system32\cmd.exe maze subory

#23 Příspěvek od motji »

:arrow: Spustte OTL
-do bílého okna dole skopírujte tento skript:

Kód: Vybrat vše

:OTL
PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)
@Alternate Data Stream - 134 bytes -> C:\Documents and Settings\All Users\Data aplikací\TEMP:671329E4
@Alternate Data Stream - 125 bytes -> C:\Documents and Settings\All Users\Data aplikací\TEMP:5C321E34
O4 - HKU\S-1-5-21-117609710-1364589140-725345543-1003..\Run: [PowerBar] File not found
O4 - HKLM..\Run: [ImagePath] File not found
O2 - BHO: (no name) - {7c5c0f58-e061-457d-9033-77307f5ed00c} - No CLSID value found.
IE - HKU\S-1-5-21-117609710-1364589140-725345543-1003\..\URLSearchHook: {95289393-33EA-4F8D-B952-483415B9C955} - C:\Documents and Settings\pc\Data aplikací\Microsoft\Internet Explorer\qipsearchbar.dll (qip.ru)
IE - HKU\S-1-5-21-117609710-1364589140-725345543-1003\..\URLSearchHook: {EF99BD32-C1FB-11D2-892F-0090271D4F88} - Reg Error: Key error. File not found
E - HKU\S-1-5-21-117609710-1364589140-725345543-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://start.icq.com/xmas/
IE - HKU\S-1-5-21-117609710-1364589140-725345543-1003\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://search.qip.ru/ie
IE - HKU\S-1-5-21-117609710-1364589140-725345543-1003\..\URLSearchHook: - Reg Error: Key error. File not found
IE - HKU\S-1-5-21-117609710-1364589140-725345543-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://qip.ru
IE - HKU\S-1-5-21-117609710-1364589140-725345543-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://search.qip.ru
IE - HKU\.DEFAULT\..\URLSearchHook: - Reg Error: Key error. File not found
IE - HKU\.DEFAULT\..\URLSearchHook: {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll (ICQ)
IE - HKU\.DEFAULT\..\URLSearchHook: {A3BC75A2-1F87-4686-AA43-5347D756017C} - Reg Error: Key error. File not found
IE - HKU\S-1-5-18\..\URLSearchHook: - Reg Error: Key error. File not found
IE - HKU\S-1-5-18\..\URLSearchHook: {855F3B16-6D32-4fe6-8A56-BBB695989046} - C:\Program Files\ICQ6Toolbar\ICQToolBar.dll (ICQ)
IE - HKU\S-1-5-18\..\URLSearchHook: {A3BC75A2-1F87-4686-AA43-5347D756017C} - Reg Error: Key error. File not found

:files
C:\WINDOWS\system32\*.tmp.dll /s
C:\WINDOWS\system32\SET*.tmp /s
C:\WINDOWS\*.tmp /s
C:\Documents and Settings\pc\Data aplikací\inst.exe

:commands
[resethosts]
[emptytemp]
[EMPTYFLASH]
[Reboot]

-klikněte na tlačítko opravit.
-Následně se pc restartuje.
- Log vložte zde :)
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

Uživatelský avatar
Dvori66
Návštěvník
Návštěvník
Příspěvky: 94
Registrován: 04 úno 2011 18:29
Kontaktovat uživatele:

Re: C:\WINDOWS\system32\cmd.exe maze subory

#24 Příspěvek od Dvori66 »

All processes killed
========== OTL ==========
No active process named explorer.exe was found!
ADS C:\Documents and Settings\All Users\Data aplikací\TEMP:671329E4 deleted successfully.
ADS C:\Documents and Settings\All Users\Data aplikací\TEMP:5C321E34 deleted successfully.
Registry value HKEY_USERS\S-1-5-21-117609710-1364589140-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Run\\PowerBar deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\ImagePath deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7c5c0f58-e061-457d-9033-77307f5ed00c}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7c5c0f58-e061-457d-9033-77307f5ed00c}\ not found.
Registry value HKEY_USERS\S-1-5-21-117609710-1364589140-725345543-1003\Software\Microsoft\Internet Explorer\URLSearchHooks\\{95289393-33EA-4F8D-B952-483415B9C955} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{95289393-33EA-4F8D-B952-483415B9C955}\ deleted successfully.
C:\Documents and Settings\pc\Data aplikací\Microsoft\Internet Explorer\qipsearchbar.dll moved successfully.
Registry value HKEY_USERS\S-1-5-21-117609710-1364589140-725345543-1003\Software\Microsoft\Internet Explorer\URLSearchHooks\\{EF99BD32-C1FB-11D2-892F-0090271D4F88} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{EF99BD32-C1FB-11D2-892F-0090271D4F88}\ deleted successfully.
HKU\S-1-5-21-117609710-1364589140-725345543-1003\SOFTWARE\Microsoft\Internet Explorer\Search\\SearchAssistant| /E : value set successfully!
Registry key HKEY_USERS\S-1-5-21-117609710-1364589140-725345543-1003\Software\Microsoft\Internet Explorer\URLSearchHooks\ deleted successfully.
HKU\S-1-5-21-117609710-1364589140-725345543-1003\SOFTWARE\Microsoft\Internet Explorer\Main\\Default_Page_URL| /E : value set successfully!
HKU\S-1-5-21-117609710-1364589140-725345543-1003\SOFTWARE\Microsoft\Internet Explorer\Main\\Default_Search_URL| /E : value set successfully!
Registry key HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\URLSearchHooks\ deleted successfully.
Registry key HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\URLSearchHooks not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{855F3B16-6D32-4fe6-8A56-BBB695989046}\ deleted successfully.
C:\Program Files\ICQ6Toolbar\ICQToolBar.dll moved successfully.
Registry key HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\URLSearchHooks not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A3BC75A2-1F87-4686-AA43-5347D756017C}\ not found.
Registry key HKEY_USERS\S-1-5-18\Software\Microsoft\Internet Explorer\URLSearchHooks\ not found.
Registry key HKEY_USERS\S-1-5-18\Software\Microsoft\Internet Explorer\URLSearchHooks not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{855F3B16-6D32-4fe6-8A56-BBB695989046}\ not found.
File C:\Program Files\ICQ6Toolbar\ICQToolBar.dll not found.
Registry key HKEY_USERS\S-1-5-18\Software\Microsoft\Internet Explorer\URLSearchHooks not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{A3BC75A2-1F87-4686-AA43-5347D756017C}\ not found.
========== FILES ==========
File\Folder C:\WINDOWS\system32\*.tmp.dll not found.
File\Folder C:\WINDOWS\system32\SET*.tmp not found.
C:\WINDOWS\002690_.tmp moved successfully.
C:\WINDOWS\msdownld.tmp folder moved successfully.
C:\WINDOWS\SET3.tmp moved successfully.
C:\WINDOWS\SET4.tmp moved successfully.
C:\WINDOWS\SET8.tmp moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP104.tmp folder moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP15B.tmp folder moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP177.tmp folder moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP1D4.tmp folder moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP1E6.tmp folder moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP242.tmp folder moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP25B.tmp folder moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP271.tmp folder moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP9C.tmp folder moved successfully.
C:\WINDOWS\Installer\MSI1CD.tmp moved successfully.
C:\WINDOWS\Installer\MSI1D5.tmp moved successfully.
C:\WINDOWS\Installer\MSI8.tmp moved successfully.
C:\WINDOWS\Installer\MSIA.tmp moved successfully.
C:\WINDOWS\system32\ConduitEngine.tmp moved successfully.
C:\WINDOWS\system32\CONFIG.TMP moved successfully.
C:\WINDOWS\system32\tmp74.tmp moved successfully.
C:\WINDOWS\system32\tmp75.tmp moved successfully.
C:\WINDOWS\system32\DirectX\DX222.tmp folder moved successfully.
C:\WINDOWS\system32\DirectX\DX242.tmp folder moved successfully.
C:\WINDOWS\system32\DirectX\DX27.tmp folder moved successfully.
C:\WINDOWS\system32\DirectX\DX29.tmp folder moved successfully.
C:\WINDOWS\Temp\00857eeb-cd17-457c-99f8-266d50f1e37f.tmp moved successfully.
C:\WINDOWS\Temp\008c1d7b-211e-4c7d-ab10-04eae61e6474.tmp moved successfully.
C:\WINDOWS\Temp\00afacc9-ac03-4b99-8c2e-06b6709421bd.tmp moved successfully.
C:\WINDOWS\Temp\00d6614e-ccae-45da-a108-0efa28f8ee8c.tmp moved successfully.
C:\WINDOWS\Temp\00f97d9a-7c98-493b-aa99-844f7bbb6032.tmp moved successfully.
C:\WINDOWS\Temp\01320f5b-41dc-4579-9227-ba388cdcf1ce.tmp moved successfully.
C:\WINDOWS\Temp\0141d8c0-f0d4-4161-bab2-3036993e4ed0.tmp moved successfully.
C:\WINDOWS\Temp\0146afba-f59f-416c-a6fc-dbc894ea675e.tmp moved successfully.
C:\WINDOWS\Temp\0150ee65-3b7c-42e5-a8a4-9604182ea600.tmp moved successfully.
C:\WINDOWS\Temp\01669b00-3420-4132-81d3-0b069fe9c142.tmp moved successfully.
C:\WINDOWS\Temp\0169b8a4-0563-42bd-a6fa-034a031c3149.tmp moved successfully.
C:\WINDOWS\Temp\019a0f63-004f-4a02-a22d-fa3c2645855c.tmp moved successfully.
C:\WINDOWS\Temp\01daf1b5-8046-43a4-990e-a338af172516.tmp moved successfully.
C:\WINDOWS\Temp\01df9572-14f3-463c-a71e-05208e78c993.tmp moved successfully.
C:\WINDOWS\Temp\0238d4ba-8989-4558-a9fc-1e993432fac9.tmp moved successfully.
C:\WINDOWS\Temp\0267202a-9821-411f-b68b-b5e8680f4fe2.tmp moved successfully.
C:\WINDOWS\Temp\02b43075-2a6b-4910-b47f-67884c7aac52.tmp moved successfully.
C:\WINDOWS\Temp\02dd6146-37b7-4a29-97be-66c884daa976.tmp moved successfully.
C:\WINDOWS\Temp\02e20602-c58a-4080-8653-fdbb43954bd7.tmp moved successfully.
C:\WINDOWS\Temp\02f08327-d3f6-498a-88fe-b6f3bfc3aa8f.tmp moved successfully.
C:\WINDOWS\Temp\034a23fe-e8a4-42b1-ad81-99c8894a289e.tmp moved successfully.
C:\WINDOWS\Temp\03597a5b-dc19-443d-a43b-c23a99511c97.tmp moved successfully.
C:\WINDOWS\Temp\03b9fdae-14a3-4ee6-9855-54a5b89ff96c.tmp moved successfully.
C:\WINDOWS\Temp\03c54d7b-0db3-4e74-9cd6-022247fb61de.tmp moved successfully.
C:\WINDOWS\Temp\03e04ea6-a5c6-46de-a8f8-f46daa287fb5.tmp moved successfully.
C:\WINDOWS\Temp\03e4162b-5e1f-4d76-80ec-7c0533fc9326.tmp moved successfully.
C:\WINDOWS\Temp\03fd7354-960a-4fad-9d00-f1c11aa57132.tmp moved successfully.
C:\WINDOWS\Temp\04261ece-e947-4f3d-91a9-96e0c111b5c0.tmp moved successfully.
C:\WINDOWS\Temp\044e8bb5-0364-437f-beaa-9d91b9e469f9.tmp moved successfully.
C:\WINDOWS\Temp\048b7234-be26-4a77-9308-ff036c452a20.tmp moved successfully.
C:\WINDOWS\Temp\04f8bef7-5fdd-4f07-82bc-bc9f049f9da3.tmp moved successfully.
C:\WINDOWS\Temp\04faf5e2-2d07-4799-8f87-40a47bde3131.tmp moved successfully.
C:\WINDOWS\Temp\04fe0119-9e16-47d5-b991-6aec722fbdb6.tmp moved successfully.
C:\WINDOWS\Temp\0559d4f4-0dc4-4e92-8fe7-670307e24919.tmp moved successfully.
C:\WINDOWS\Temp\055a507f-f10c-43e7-a3f9-4d7c9ca5fd8f.tmp moved successfully.
C:\WINDOWS\Temp\0576e548-3e6c-42f3-95a1-d7985976b040.tmp moved successfully.
C:\WINDOWS\Temp\0579f278-c33e-480c-a772-abe14dd21b2a.tmp moved successfully.
C:\WINDOWS\Temp\059d7fcc-3a5f-414a-a0c9-02acdb3df90e.tmp moved successfully.
C:\WINDOWS\Temp\05c7e4d4-de1c-4e77-a677-567788e550fb.tmp moved successfully.
C:\WINDOWS\Temp\05cfa534-3d32-4459-bb33-e5adadd36164.tmp moved successfully.
C:\WINDOWS\Temp\05fb0224-4d97-4c52-8ead-8a359f8df22c.tmp moved successfully.
C:\WINDOWS\Temp\0608e2dd-c43a-4704-905a-a1098897b3b2.tmp moved successfully.
C:\WINDOWS\Temp\060a2550-8ffd-4ead-9ab6-e9261e9aacdb.tmp moved successfully.
C:\WINDOWS\Temp\063329c3-b31a-422d-a47b-b381e3cc988c.tmp moved successfully.
C:\WINDOWS\Temp\06e5e481-9296-446a-a532-feb3fdd16bc7.tmp moved successfully.
C:\WINDOWS\Temp\06fbd0e6-d59e-419f-91f9-7696649c7bfe.tmp moved successfully.
C:\WINDOWS\Temp\073cf3be-bb16-4f8b-bf8c-dcf6b5c369f2.tmp moved successfully.
C:\WINDOWS\Temp\075d8dd8-17e7-4c9a-9cb3-87761bc52941.tmp moved successfully.
C:\WINDOWS\Temp\077e3660-dea3-457b-b4eb-94db2cf7d149.tmp moved successfully.
C:\WINDOWS\Temp\080ad8e3-9188-4cf3-9b7d-b32ba8f28181.tmp moved successfully.
C:\WINDOWS\Temp\083475d6-f7bc-452f-b003-f5128e8d68c5.tmp moved successfully.
C:\WINDOWS\Temp\0848409e-6072-477d-8ecf-609bd3652ec7.tmp moved successfully.
C:\WINDOWS\Temp\086c99b5-6675-4249-a9eb-6ebb45859899.tmp moved successfully.
C:\WINDOWS\Temp\08771526-26be-4acf-8553-cca44324b41e.tmp moved successfully.
C:\WINDOWS\Temp\087722ad-19a2-4e64-83f1-fbd1249b1383.tmp moved successfully.
C:\WINDOWS\Temp\08a7141d-8286-411e-9e13-43b9b555a74c.tmp moved successfully.
C:\WINDOWS\Temp\0901b107-4381-41a9-8d59-fbb60e2282bd.tmp moved successfully.
C:\WINDOWS\Temp\091e9017-1ea8-4cb5-bd1a-9797601c5453.tmp moved successfully.
C:\WINDOWS\Temp\09259628-2e99-4ffb-8372-fd88d3e0dbb4.tmp moved successfully.
C:\WINDOWS\Temp\09599f57-0625-4008-8630-34cf7bae5f9d.tmp moved successfully.
C:\WINDOWS\Temp\0990156e-1a9e-4e1a-af53-b35f61f464ce.tmp moved successfully.
C:\WINDOWS\Temp\0995aab0-7b76-4b5e-b14e-6743ea2fe3ae.tmp moved successfully.
C:\WINDOWS\Temp\09cb4297-9afe-4752-9d14-968d60367852.tmp moved successfully.
C:\WINDOWS\Temp\0a363792-97b7-4dac-8bdc-085627f288d5.tmp moved successfully.
C:\WINDOWS\Temp\0a4ed967-a1f5-4da5-8147-95b997c9bd75.tmp moved successfully.
C:\WINDOWS\Temp\0a6bcad8-211c-4902-9916-4863ebfc3ae1.tmp moved successfully.
C:\WINDOWS\Temp\0a7fe3e0-20a9-42ac-9dcf-dac783bcf9f6.tmp moved successfully.
C:\WINDOWS\Temp\0a97d2ed-e510-49a2-805b-98e69f780d61.tmp moved successfully.
C:\WINDOWS\Temp\0aedad27-bb6b-436e-885c-27ddabe3fe54.tmp moved successfully.
C:\WINDOWS\Temp\0af6b6da-720e-4e15-8aaf-deea2e986e9f.tmp moved successfully.
C:\WINDOWS\Temp\0b10e954-1dd6-4fd2-bfda-581dfc085ab4.tmp moved successfully.
C:\WINDOWS\Temp\0b1f9785-707e-4095-8a8f-81964757ea5b.tmp moved successfully.
C:\WINDOWS\Temp\0b912e3d-0c99-4509-855b-eb312cc1a291.tmp moved successfully.
C:\WINDOWS\Temp\0bb2b4fc-aea8-4beb-92ae-d3e79480d9a4.tmp moved successfully.
C:\WINDOWS\Temp\0be834d4-d7d8-47f1-a4cb-45f8eaa6a82e.tmp moved successfully.
C:\WINDOWS\Temp\0c2f808d-d950-4604-9a59-c3023d54adf7.tmp moved successfully.
C:\WINDOWS\Temp\0c6b661d-34a9-49dd-ba86-65b140adc649.tmp moved successfully.
C:\WINDOWS\Temp\0c6e5471-e2a8-4851-9936-732ddcaa62c1.tmp moved successfully.
C:\WINDOWS\Temp\0c825183-7d8c-4353-86c7-a889c71ed89d.tmp moved successfully.
C:\WINDOWS\Temp\0cf03018-1202-4e02-8f9f-384063392a6e.tmp moved successfully.
C:\WINDOWS\Temp\0d3dd215-fa31-4a75-80e9-c2eef14274e3.tmp moved successfully.
C:\WINDOWS\Temp\0d4c8ef9-97cc-4068-831b-c9d4e3d58fe4.tmp moved successfully.
C:\WINDOWS\Temp\0d79d0e7-7d9e-4037-ae68-c635804b998f.tmp moved successfully.
C:\WINDOWS\Temp\0d8a1b7e-8688-40b1-a1d7-d1fe9915a903.tmp moved successfully.
C:\WINDOWS\Temp\0d99c113-2a70-4db7-86bf-954317b57791.tmp moved successfully.
C:\WINDOWS\Temp\0d9aa9c5-424d-4c8e-86e2-b38101b52f6f.tmp moved successfully.
C:\WINDOWS\Temp\0da47961-e06a-488a-807f-cc3485a9e46e.tmp moved successfully.
C:\WINDOWS\Temp\0dab312e-81d7-4314-a520-172a00845674.tmp moved successfully.
C:\WINDOWS\Temp\0db46a37-3192-43f1-893b-e229d3cab27d.tmp moved successfully.
C:\WINDOWS\Temp\0dc2c587-5368-4f78-b0fd-2a93fb8e655c.tmp moved successfully.
C:\WINDOWS\Temp\0e489ebe-6aed-4c75-8a7e-bba95d7969fc.tmp moved successfully.
C:\WINDOWS\Temp\0e603ca5-2079-44d2-8aab-1e335c95fcff.tmp moved successfully.
C:\WINDOWS\Temp\0e8c9f6f-d744-4d04-89a0-176c31c4d302.tmp moved successfully.
C:\WINDOWS\Temp\0eb6d526-52e2-4bd8-a95e-b57bf6905444.tmp moved successfully.
C:\WINDOWS\Temp\0ec76ef6-17f4-414f-89ee-f100bc3f4282.tmp moved successfully.
C:\WINDOWS\Temp\0ec7a134-8812-4ec1-a629-3babd88ab794.tmp moved successfully.
C:\WINDOWS\Temp\0ed4a0cf-b811-4fb7-b53b-d95fde9c65f1.tmp moved successfully.
C:\WINDOWS\Temp\0f76e61a-a870-4e64-a1bb-6efe01d10bcb.tmp moved successfully.
C:\WINDOWS\Temp\0ff6e98a-ece7-4e51-839b-f8e1d5e03d1a.tmp moved successfully.
C:\WINDOWS\Temp\1068994b-98f7-47d1-9f52-94adf4dc9bec.tmp moved successfully.
C:\WINDOWS\Temp\10eda9b2-4ffb-4c3c-8715-8e658aced383.tmp moved successfully.
C:\WINDOWS\Temp\11234c20-6641-4906-90f3-b8d100f2caa8.tmp moved successfully.
C:\WINDOWS\Temp\11f64417-5c82-4a66-bcbd-1e81b82030d4.tmp moved successfully.
C:\WINDOWS\Temp\12697de9-dfbe-4dd0-a924-cef24d55a180.tmp moved successfully.
C:\WINDOWS\Temp\12ae5424-dceb-4902-8b3f-2989792b8268.tmp moved successfully.
C:\WINDOWS\Temp\12dfd93a-e07e-4f3f-87a6-954d4ad9ca8a.tmp moved successfully.
C:\WINDOWS\Temp\134e5fd5-a313-45fe-b963-00c7c92d7438.tmp moved successfully.
C:\WINDOWS\Temp\13c91557-d38a-42e8-89eb-68b4347a8154.tmp moved successfully.
C:\WINDOWS\Temp\13f7a097-0c0e-4939-8255-c3f81010e8c7.tmp moved successfully.
C:\WINDOWS\Temp\14035f80-72c7-48c8-a2e4-5e1d4ab317be.tmp moved successfully.
C:\WINDOWS\Temp\1447a6d0-f161-49d8-87d4-515e1ddb9e90.tmp moved successfully.
C:\WINDOWS\Temp\1493b467-3c62-4d86-beff-72a4a25dbae9.tmp moved successfully.
C:\WINDOWS\Temp\14aaa667-3505-4bb9-af0e-19aff57c8e56.tmp moved successfully.
C:\WINDOWS\Temp\14b8a210-36a2-43b3-8e18-986ce4d17dcd.tmp moved successfully.
C:\WINDOWS\Temp\14d9ca28-b19f-47c6-b439-eb80f37bef5c.tmp moved successfully.
C:\WINDOWS\Temp\15011dda-64b8-4560-8670-11c1eaefd204.tmp moved successfully.
C:\WINDOWS\Temp\152a5878-4ca7-4fef-a3ad-4e9f3c27d664.tmp moved successfully.
C:\WINDOWS\Temp\1533057d-f7d4-4ce6-860f-e501817761ad.tmp moved successfully.
C:\WINDOWS\Temp\161b8b32-0a0c-48ac-b86e-2ff2485b118d.tmp moved successfully.
C:\WINDOWS\Temp\162de824-d96d-4ad6-baa5-926e9eb5af73.tmp moved successfully.
C:\WINDOWS\Temp\16767e1d-8824-4649-9408-6229c0e3b5bd.tmp moved successfully.
C:\WINDOWS\Temp\167de2d6-c502-499f-a10c-27b2ab6203bd.tmp moved successfully.
C:\WINDOWS\Temp\168011e2-16f3-4bda-a80b-2dddb9d038e3.tmp moved successfully.
C:\WINDOWS\Temp\16e42e62-fe2f-4d22-b5e3-d20eb26e361a.tmp moved successfully.
C:\WINDOWS\Temp\16f1a7a0-9395-4fef-bc1b-568d63e30e7c.tmp moved successfully.
C:\WINDOWS\Temp\1716b632-1904-4e7f-b4eb-2e6149bad764.tmp moved successfully.
C:\WINDOWS\Temp\1718bad3-badb-499f-916c-b3893904bd33.tmp moved successfully.
C:\WINDOWS\Temp\171a6f42-8011-4c63-9a10-c7084211e49c.tmp moved successfully.
C:\WINDOWS\Temp\17335c57-31b6-4c7b-95d5-db2662c219a2.tmp moved successfully.
C:\WINDOWS\Temp\17376a47-bee1-4418-a1fa-c0f24057ff6b.tmp moved successfully.
C:\WINDOWS\Temp\173ba8c2-8770-4da7-a1fd-beee37412081.tmp moved successfully.
C:\WINDOWS\Temp\175112b7-7dba-460e-9cad-7c7e9c83fa40.tmp moved successfully.
C:\WINDOWS\Temp\1769b098-5997-4c0c-a20f-e9e9f49d71fb.tmp moved successfully.
C:\WINDOWS\Temp\17cff390-c867-49b5-89d8-b91b134800be.tmp moved successfully.
C:\WINDOWS\Temp\180744a0-c366-438c-82e2-ee7358fa14f4.tmp moved successfully.
C:\WINDOWS\Temp\1811b782-9ad9-42d8-887f-324633e1aa44.tmp moved successfully.
C:\WINDOWS\Temp\182b1e33-d638-4167-819f-360f58f3ee07.tmp moved successfully.
C:\WINDOWS\Temp\18b77464-4dd5-4761-96fc-245112684be4.tmp moved successfully.
C:\WINDOWS\Temp\18ca81e5-54a3-4e35-bd9e-bc93a90aa879.tmp moved successfully.
C:\WINDOWS\Temp\19127984-1303-4772-824b-f51ca7b56bd9.tmp moved successfully.
C:\WINDOWS\Temp\192e7d56-2d75-489c-8432-2ba3bfd38ee4.tmp moved successfully.
C:\WINDOWS\Temp\1947723e-9f1d-4e0c-b1b3-0868deabeaa5.tmp moved successfully.
C:\WINDOWS\Temp\195d57ca-419a-474a-9179-f68f81a7b5bd.tmp moved successfully.
C:\WINDOWS\Temp\198029c3-a986-4eaa-8ae2-a5ecd397ced2.tmp moved successfully.
C:\WINDOWS\Temp\1980cd0f-bc89-4259-91ac-c62bd18bcc6b.tmp moved successfully.
C:\WINDOWS\Temp\19a5186c-9812-4955-9c07-36cad7bf8e7f.tmp moved successfully.
C:\WINDOWS\Temp\1a392729-b19a-4d1b-b1de-b490d6a1d725.tmp moved successfully.
C:\WINDOWS\Temp\1ab5916b-4086-4727-9b85-60b7b0bae6f7.tmp moved successfully.
C:\WINDOWS\Temp\1ab6e639-cbe6-433f-9530-369364a76977.tmp moved successfully.
C:\WINDOWS\Temp\1acdb6a3-d099-416c-b104-5c4e7a22142d.tmp moved successfully.
C:\WINDOWS\Temp\1ad0ee49-c595-4ce2-9fdd-30c215f30735.tmp moved successfully.
C:\WINDOWS\Temp\1b74b20b-f4ca-47c1-b426-a1a85e4b073e.tmp moved successfully.
C:\WINDOWS\Temp\1bdd3931-562e-4ef6-8659-0b663789eda4.tmp moved successfully.
C:\WINDOWS\Temp\1bf044be-23e7-404c-bffe-eec57923881d.tmp moved successfully.
C:\WINDOWS\Temp\1bf12f63-6ffe-4660-8ea4-f6f1998601fd.tmp moved successfully.
C:\WINDOWS\Temp\1bfc3ad1-4998-47a9-928b-32782125cea8.tmp moved successfully.
C:\WINDOWS\Temp\1c262dd7-0c80-4bd9-a133-2ed87875d7d6.tmp moved successfully.
C:\WINDOWS\Temp\1c6a1f14-2e65-41f5-8d00-67a0dae83bbe.tmp moved successfully.
C:\WINDOWS\Temp\1c750e8c-a456-4595-babf-461fb63bbe30.tmp moved successfully.
C:\WINDOWS\Temp\1ca12223-865b-45ac-8451-99a5c4d2d7e7.tmp moved successfully.
C:\WINDOWS\Temp\1cabb9c8-a2f2-4757-bc8e-44138483c0c8.tmp moved successfully.
C:\WINDOWS\Temp\1d17d934-2f4d-446c-ae19-f5f42e0c3b04.tmp moved successfully.
C:\WINDOWS\Temp\1d399acb-ec60-4d3b-9ffb-c1935f1ea827.tmp moved successfully.
C:\WINDOWS\Temp\1d48fcb5-bef5-4d7f-ab8b-6e3254911d20.tmp moved successfully.
C:\WINDOWS\Temp\1d85b3e9-35f9-4000-92b8-a6f00363281b.tmp moved successfully.
C:\WINDOWS\Temp\1db56d35-bf6e-4a8d-9321-055fec67c3b5.tmp moved successfully.
C:\WINDOWS\Temp\1dfe9bf9-6fcd-44bb-90f5-8741f0bb8597.tmp moved successfully.
C:\WINDOWS\Temp\1e1559c2-d7d9-441b-be0e-a5b7ed380255.tmp moved successfully.
C:\WINDOWS\Temp\1e44ed91-f933-44a7-8c43-1911eb86eefe.tmp moved successfully.
C:\WINDOWS\Temp\1e51a5ce-156f-41d9-99b0-dbbb282705cc.tmp moved successfully.
C:\WINDOWS\Temp\1e65bbe8-c049-41e7-a72b-42464e2c2143.tmp moved successfully.
C:\WINDOWS\Temp\1ea145c5-2ea5-4770-8f22-05344f7a382f.tmp moved successfully.
C:\WINDOWS\Temp\1ea89710-0674-4b34-8190-32ccad70a091.tmp moved successfully.
C:\WINDOWS\Temp\1f583d8a-a098-4542-9892-249ba0875de9.tmp moved successfully.
C:\WINDOWS\Temp\1fcfb8be-59b3-4ef7-827b-73d6ba1273c9.tmp moved successfully.
C:\WINDOWS\Temp\1fdb25ba-ce8a-4b0a-8a8d-adc447d88a32.tmp moved successfully.
C:\WINDOWS\Temp\2050e858-4fc3-4a41-aab2-c24a77d86d32.tmp moved successfully.
C:\WINDOWS\Temp\206036e8-6796-4258-a66e-ad1f6d0759f0.tmp moved successfully.
C:\WINDOWS\Temp\2067f0a7-3c3e-441f-9a91-e2011e448cf7.tmp moved successfully.
C:\WINDOWS\Temp\20a9efaa-42d4-4f0c-aa2f-6d7f594ed24a.tmp moved successfully.
C:\WINDOWS\Temp\20c0965f-d9dc-4d1f-84d4-d99c91e96ea5.tmp moved successfully.
C:\WINDOWS\Temp\210d5c2a-c265-4df2-bacd-7e1970674357.tmp moved successfully.
C:\WINDOWS\Temp\2159c868-3478-436e-982b-34024cfe2433.tmp moved successfully.
C:\WINDOWS\Temp\21605c6b-a95e-4db8-936d-8e53febf2429.tmp moved successfully.
C:\WINDOWS\Temp\2186ee60-b6a2-4694-ab50-d55b3d27e5a5.tmp moved successfully.
C:\WINDOWS\Temp\21b0e160-9fdd-4865-802d-dc9bed75d38b.tmp moved successfully.
C:\WINDOWS\Temp\21b2a356-57f7-40be-876f-1e48d7f85958.tmp moved successfully.
C:\WINDOWS\Temp\21d71182-3e8e-469b-946e-3fa06ceeaae0.tmp moved successfully.
C:\WINDOWS\Temp\21f7d54c-2783-4523-9a7f-e4a9ea295b26.tmp moved successfully.
C:\WINDOWS\Temp\222bf3a1-7685-429f-9bfa-d87cc6791aba.tmp moved successfully.
C:\WINDOWS\Temp\223b973e-05aa-48c9-981a-f2bf480e09e3.tmp moved successfully.
C:\WINDOWS\Temp\224d88cf-847e-4453-a25e-2318da663987.tmp moved successfully.
C:\WINDOWS\Temp\22522b91-fd8d-43cd-a92c-10099d16fd83.tmp moved successfully.
C:\WINDOWS\Temp\22aa9677-59d4-4b3f-a8ab-19daec69c469.tmp moved successfully.
C:\WINDOWS\Temp\22c834c8-b081-44e5-96d9-fdf8064ae0ec.tmp moved successfully.
C:\WINDOWS\Temp\22fa0bfe-e369-4b1a-9b5b-043c30f08c12.tmp moved successfully.
C:\WINDOWS\Temp\22fa9edc-905d-4038-878f-8c8aa05ba40d.tmp moved successfully.
C:\WINDOWS\Temp\2331556c-4e20-4295-9453-134ce34bbfcb.tmp moved successfully.
C:\WINDOWS\Temp\23737a2c-b478-45ff-9dd2-7a5b1dd1382f.tmp moved successfully.
C:\WINDOWS\Temp\23935ddd-2f76-4b2c-a914-9a645f15f194.tmp moved successfully.
C:\WINDOWS\Temp\2396d73b-c864-4a68-813b-67886d577e4b.tmp moved successfully.
C:\WINDOWS\Temp\23d0aba3-95dd-4bcd-a6c4-20d7bf965285.tmp moved successfully.
C:\WINDOWS\Temp\23ef11cb-326d-4ae6-be6d-265c8abe5a90.tmp moved successfully.
C:\WINDOWS\Temp\24599f91-1e3e-4536-b139-e96dd6ad1f58.tmp moved successfully.
C:\WINDOWS\Temp\24adf2b2-370b-4a37-afcc-d9b48891ddf1.tmp moved successfully.
C:\WINDOWS\Temp\24c14c78-ba12-4549-b618-23dc566a5319.tmp moved successfully.
C:\WINDOWS\Temp\24cc8537-bdcb-45e9-a0f0-141fc7e6f56f.tmp moved successfully.
C:\WINDOWS\Temp\2503c611-64ff-43cb-8b52-15fab18788a9.tmp moved successfully.
C:\WINDOWS\Temp\2575ac03-b668-41fa-94c5-e45d23311b8e.tmp moved successfully.
C:\WINDOWS\Temp\25feb927-b282-4c8e-b9f8-254e79f4bd29.tmp moved successfully.
C:\WINDOWS\Temp\265f8c6c-c151-4493-bd4e-a3f92a6cd20c.tmp moved successfully.
C:\WINDOWS\Temp\26711d62-e4d7-4613-90dd-55c22c4d7c2b.tmp moved successfully.
C:\WINDOWS\Temp\26deb4a5-259b-4a3f-8a99-88968a487235.tmp moved successfully.
C:\WINDOWS\Temp\2701a073-5a30-4aed-92d5-64e44d08e455.tmp moved successfully.
C:\WINDOWS\Temp\2703c2fd-94ea-49f2-9601-30011f01d55f.tmp moved successfully.
C:\WINDOWS\Temp\27585cb8-de72-40d4-a11c-f7b20a199361.tmp moved successfully.
C:\WINDOWS\Temp\27d7413f-842c-4e9a-bed7-70aadcd3b95a.tmp moved successfully.
C:\WINDOWS\Temp\27e345d3-bc39-4aeb-b6bd-2276a0a341e6.tmp moved successfully.
C:\WINDOWS\Temp\287fe79a-300a-45dd-8095-85963595aa01.tmp moved successfully.
C:\WINDOWS\Temp\28937e25-29a3-49b9-8028-a7745e22fbf1.tmp moved successfully.
C:\WINDOWS\Temp\289fb5f7-d2ce-437c-9648-a4ea3e3ef88e.tmp moved successfully.
C:\WINDOWS\Temp\28a1cdf4-2d67-45ca-839d-ecdb2ccb6799.tmp moved successfully.
C:\WINDOWS\Temp\2908c43a-cb6d-40dc-acb4-a27618062c97.tmp moved successfully.
C:\WINDOWS\Temp\290c6be9-9355-4cb1-8946-ee4a2eca9115.tmp moved successfully.
C:\WINDOWS\Temp\291a5c04-b6d2-45f4-927a-e8db37b3ff8d.tmp moved successfully.
C:\WINDOWS\Temp\292c10cf-bf15-47b3-a378-417d6f585468.tmp moved successfully.
C:\WINDOWS\Temp\2975c991-9953-4468-a739-01dd5b9fcdc2.tmp moved successfully.
C:\WINDOWS\Temp\297dec8c-53b6-4456-b1aa-0fa30f0564b0.tmp moved successfully.
C:\WINDOWS\Temp\299c8d92-ebd2-44fd-8827-b8266929bf2e.tmp moved successfully.
C:\WINDOWS\Temp\299feaf5-466a-4431-8e5b-3322251ce763.tmp moved successfully.
C:\WINDOWS\Temp\29a08374-83a6-4cac-baa2-e0b827dedfdc.tmp moved successfully.
C:\WINDOWS\Temp\29dfcf3a-f4c2-46cf-b545-fb15c5ab4504.tmp moved successfully.
C:\WINDOWS\Temp\2a1cf937-2fa2-462f-8896-90e25b1235e5.tmp moved successfully.
C:\WINDOWS\Temp\2a50dbb5-687b-4eff-84fd-6cc08db5c185.tmp moved successfully.
C:\WINDOWS\Temp\2a56f90e-8008-43cd-b1ed-f45e51d171a3.tmp moved successfully.
C:\WINDOWS\Temp\2a606163-7f35-41a2-812d-7ffa67f2880f.tmp moved successfully.
C:\WINDOWS\Temp\2a7bb767-5dde-4424-9a09-fb55e9b66312.tmp moved successfully.
C:\WINDOWS\Temp\2a7f5682-5a68-481f-898c-6dff161925f6.tmp moved successfully.
C:\WINDOWS\Temp\2ac63fd9-2566-4885-b5c2-32cd69b90e2e.tmp moved successfully.
C:\WINDOWS\Temp\2af3ea02-f0f3-467a-b55d-081208587dc0.tmp moved successfully.
C:\WINDOWS\Temp\2b19a375-5e77-4b16-a1fb-6f3a13d0eb12.tmp moved successfully.
C:\WINDOWS\Temp\2b6c10de-7905-455f-a7ab-b739f666d14c.tmp moved successfully.
C:\WINDOWS\Temp\2b81caff-60b3-4bff-9eff-8f723df149d8.tmp moved successfully.
C:\WINDOWS\Temp\2b87cb69-00d4-4c47-8c00-110659b6d257.tmp moved successfully.
C:\WINDOWS\Temp\2bab8034-f3d4-4564-a051-fee7cee23e90.tmp moved successfully.
C:\WINDOWS\Temp\2bc348be-7673-41fa-96df-dbd25ae687c3.tmp moved successfully.
C:\WINDOWS\Temp\2bdf96e9-b769-4dc5-8134-9866378120c3.tmp moved successfully.
C:\WINDOWS\Temp\2becea9e-2a7f-4591-8228-7c9d92960f89.tmp moved successfully.
C:\WINDOWS\Temp\2c17051a-6946-499f-abcb-0e12cfa6a60c.tmp moved successfully.
C:\WINDOWS\Temp\2c203c31-e4c5-423e-8163-ee246c8a4114.tmp moved successfully.
C:\WINDOWS\Temp\2c2f3100-43d6-4541-936c-e4259610ec6c.tmp moved successfully.
C:\WINDOWS\Temp\2c390a5d-0360-4bb3-b4f8-8642c8326ffb.tmp moved successfully.
C:\WINDOWS\Temp\2cb5ee35-3c7e-4695-83b4-63ffe1056f26.tmp moved successfully.
C:\WINDOWS\Temp\2ce3f8f9-6833-4bd8-997e-82c82fc26559.tmp moved successfully.
C:\WINDOWS\Temp\2cebacd9-b5ed-4cc6-88e2-a3e638e134c1.tmp moved successfully.
C:\WINDOWS\Temp\2cf495b6-7544-4f69-b058-533c28dff2fe.tmp moved successfully.
C:\WINDOWS\Temp\2d02c275-7653-4d1c-ab7d-f76c51004b11.tmp moved successfully.
C:\WINDOWS\Temp\2d48449d-16cb-4f5a-9475-988c0d220a0e.tmp moved successfully.
C:\WINDOWS\Temp\2d6c5df0-b8cc-4a1f-94b9-2ed482809f6a.tmp moved successfully.
C:\WINDOWS\Temp\2d89a921-df25-43cc-b8cd-7672446957e9.tmp moved successfully.
C:\WINDOWS\Temp\2d9c6482-bd79-47e9-b4cd-3e29a2bb5395.tmp moved successfully.
C:\WINDOWS\Temp\2dec300f-ded9-4636-8f9c-98e5acffff45.tmp moved successfully.
C:\WINDOWS\Temp\2df28366-6a02-4cb8-b5a0-b0bb57fa9f38.tmp moved successfully.
C:\WINDOWS\Temp\2e7a774e-13db-4882-a7d1-b93da9694da7.tmp moved successfully.
C:\WINDOWS\Temp\2ebdcb64-82db-48e5-af85-941d9274b91b.tmp moved successfully.
C:\WINDOWS\Temp\2ec8898c-e03b-46f0-94c1-1fbfe3dd6d33.tmp moved successfully.
C:\WINDOWS\Temp\2f6c6463-e550-4f5e-9bf9-0df310be50bb.tmp moved successfully.
C:\WINDOWS\Temp\2faf7c9b-58c3-4e33-a5db-45d56bcd69bb.tmp moved successfully.
C:\WINDOWS\Temp\2fd41a18-5cc5-48e6-9ad6-86ffaa538cb7.tmp moved successfully.
C:\WINDOWS\Temp\2fd74343-25c7-4a48-9d15-77650fa35c3f.tmp moved successfully.
C:\WINDOWS\Temp\3019226a-5a64-4cd1-980c-060b11f5d63a.tmp moved successfully.
C:\WINDOWS\Temp\301adbd2-2e83-4831-abfd-fa97f666d8ed.tmp moved successfully.
C:\WINDOWS\Temp\305e7248-c2d3-451b-92c6-136106d5e243.tmp moved successfully.
C:\WINDOWS\Temp\30a43cc9-9585-4d7d-a320-d077c6be1a6c.tmp moved successfully.
C:\WINDOWS\Temp\30ae94b0-22ee-423f-9ad5-2d38110a4803.tmp moved successfully.
C:\WINDOWS\Temp\30d8b413-cf05-4208-81f8-5e7ddb8662a4.tmp moved successfully.
C:\WINDOWS\Temp\30dff04f-aba3-489e-ba42-03e5fbf603d0.tmp moved successfully.
C:\WINDOWS\Temp\30e81dd8-4801-4485-b903-60ccb26e1dd8.tmp moved successfully.
C:\WINDOWS\Temp\317c686d-72d9-40b6-b575-2c903d579757.tmp moved successfully.
C:\WINDOWS\Temp\319b3f9d-d5a1-43ad-bde4-138c44270ca0.tmp moved successfully.
C:\WINDOWS\Temp\31aeeb89-5ccf-42d4-a99c-225df254fff9.tmp moved successfully.
C:\WINDOWS\Temp\31c18de1-2a2f-42e5-84b2-b8e415135609.tmp moved successfully.
C:\WINDOWS\Temp\31cd1a80-59e0-4a7f-b403-bf418a74d30b.tmp moved successfully.
C:\WINDOWS\Temp\324de7cc-b233-45bd-bd36-cbc0778009f4.tmp moved successfully.
C:\WINDOWS\Temp\325f152e-65a8-4753-b349-55f8eddd4e29.tmp moved successfully.
C:\WINDOWS\Temp\328b9139-4587-446d-8092-b0ca4ebc3284.tmp moved successfully.
C:\WINDOWS\Temp\329f591b-3538-4e7f-a1eb-e799c7db7031.tmp moved successfully.
C:\WINDOWS\Temp\3355add9-677b-497e-a309-ca5cd8bc37bd.tmp moved successfully.
C:\WINDOWS\Temp\335a11d7-77ae-4aaf-af85-74817f042427.tmp moved successfully.
C:\WINDOWS\Temp\335b5830-aae8-40d3-97e7-917883cc9e53.tmp moved successfully.
C:\WINDOWS\Temp\3366a457-2d4d-4223-a496-8fa39c8306c8.tmp moved successfully.
C:\WINDOWS\Temp\336abf02-eace-4cd1-a1f6-dde505ab976a.tmp moved successfully.
C:\WINDOWS\Temp\336fd4c6-3ed8-4706-8051-564e000da609.tmp moved successfully.
C:\WINDOWS\Temp\33f96901-f1a6-4b24-8f78-6bf892b278e3.tmp moved successfully.
C:\WINDOWS\Temp\3424eacc-bb9a-467c-bab2-e183418bcd94.tmp moved successfully.
C:\WINDOWS\Temp\34ad15d2-6f0f-4854-ac4b-a854b5555b06.tmp moved successfully.
C:\WINDOWS\Temp\34e539b7-be50-430f-bf78-e21131f6a93e.tmp moved successfully.
C:\WINDOWS\Temp\351d4074-6d78-44a5-87e0-847c572e62c8.tmp moved successfully.
C:\WINDOWS\Temp\354157d3-d464-4aec-9928-65e376843507.tmp moved successfully.
C:\WINDOWS\Temp\35712774-3239-4ec4-b2a6-fc12797d395c.tmp moved successfully.
C:\WINDOWS\Temp\358bda65-0f23-4032-90a6-bda12fc47a68.tmp moved successfully.
C:\WINDOWS\Temp\35c78230-f5eb-4940-b78d-8799d869b8f3.tmp moved successfully.
C:\WINDOWS\Temp\35ce28a1-d0e1-411b-8e66-79db16b49e86.tmp moved successfully.
C:\WINDOWS\Temp\35e8d898-9907-4dab-839f-8f68d0ef002d.tmp moved successfully.
C:\WINDOWS\Temp\36110e5c-d4b5-47c0-96e6-ada01f0cbc37.tmp moved successfully.
C:\WINDOWS\Temp\36a53561-f5d9-4e0e-9356-4d136f462f9a.tmp moved successfully.
C:\WINDOWS\Temp\36dfd97f-7f95-4dfd-89ac-ddafbcf74da9.tmp moved successfully.
C:\WINDOWS\Temp\36f5f529-26d3-4e08-8a60-bf3063a7f5a8.tmp moved successfully.
C:\WINDOWS\Temp\377ff0b1-5ff4-4b2e-bba4-edfa476e8495.tmp moved successfully.
C:\WINDOWS\Temp\378dcd71-c8ae-4e43-b403-24c2531369d2.tmp moved successfully.
C:\WINDOWS\Temp\37d73027-3174-4a26-96da-80a9d29be2dc.tmp moved successfully.
C:\WINDOWS\Temp\37ddad27-6b39-4482-8b83-d2f4d0265563.tmp moved successfully.
C:\WINDOWS\Temp\38099c01-e7a1-4eda-beba-7ff3be9b3aed.tmp moved successfully.
C:\WINDOWS\Temp\38136203-e2b4-429c-907d-c95cb32d2f0a.tmp moved successfully.
C:\WINDOWS\Temp\3838fe86-d2f2-4671-9db1-5f85f6a774a1.tmp moved successfully.
C:\WINDOWS\Temp\38af53fd-2c4c-46a8-8eb9-d22e10b65670.tmp moved successfully.
C:\WINDOWS\Temp\38c0157c-7e81-4e98-9733-083dee9e36a6.tmp moved successfully.
C:\WINDOWS\Temp\38ffd8f2-21ca-4255-bb79-2077006c05d2.tmp moved successfully.
C:\WINDOWS\Temp\3948b550-c4cb-412c-b0c7-8c52b1b3c00f.tmp moved successfully.
C:\WINDOWS\Temp\39522b20-f5cc-4656-8c1b-c5f21dfafc18.tmp moved successfully.
C:\WINDOWS\Temp\39dfa034-23c4-4294-afdf-3a15f47545cc.tmp moved successfully.
C:\WINDOWS\Temp\3a0e5992-48f7-4ac0-9c9d-0fcc0ecc3775.tmp moved successfully.
C:\WINDOWS\Temp\3a20de07-5346-490a-ac59-8887d5389c78.tmp moved successfully.
C:\WINDOWS\Temp\3a915ac4-a556-45f4-973e-0a112907ebf5.tmp moved successfully.
C:\WINDOWS\Temp\3a94461e-3e91-4d8b-8d27-6d8cc8f9a808.tmp moved successfully.
C:\WINDOWS\Temp\3a960bfb-70b1-4c21-90db-e5f27d34b62a.tmp moved successfully.
C:\WINDOWS\Temp\3b311ce9-0788-48d2-a857-1ff909711e5c.tmp moved successfully.
C:\WINDOWS\Temp\3b6f3e39-fdc5-4316-88ff-a53fc17df62e.tmp moved successfully.
C:\WINDOWS\Temp\3bb33ef7-3006-4f27-9826-4c203fbe9d18.tmp moved successfully.
C:\WINDOWS\Temp\3bc8637a-6d1c-49a8-a7e7-21736af18500.tmp moved successfully.
C:\WINDOWS\Temp\3be4b1de-c731-4550-bfa4-0e6f98a984bd.tmp moved successfully.
C:\WINDOWS\Temp\3be8b92e-c415-4b8f-8cb5-cef3e4e78a08.tmp moved successfully.
C:\WINDOWS\Temp\3c3d6bbd-e6fa-4442-a598-597f7e1ca54c.tmp moved successfully.
C:\WINDOWS\Temp\3c6ffd4e-1c62-41d3-ac13-7347a4f0120b.tmp moved successfully.
C:\WINDOWS\Temp\3c84619c-a3dc-483d-8f6c-4b7ab133efe9.tmp moved successfully.
C:\WINDOWS\Temp\3c9a1eab-e9f1-43fc-baf1-e477a9c40f48.tmp moved successfully.
C:\WINDOWS\Temp\3cd68b92-f881-491d-aa39-15521d6cde16.tmp moved successfully.
C:\WINDOWS\Temp\3d037486-0d72-44fb-be6c-ee779d1b419e.tmp moved successfully.
C:\WINDOWS\Temp\3d0e2adb-aace-4caf-b0eb-b072ef5ecefc.tmp moved successfully.
C:\WINDOWS\Temp\3d4c7994-4f26-4e0f-ba11-b6bbc48df425.tmp moved successfully.
C:\WINDOWS\Temp\3d7fdec2-c1b0-4da8-ae48-a57ed1323528.tmp moved successfully.
C:\WINDOWS\Temp\3dcffa49-9adc-4af2-b298-ab90334a3749.tmp moved successfully.
C:\WINDOWS\Temp\3e50ea1f-260f-47f4-9f7c-b837d3a85a21.tmp moved successfully.
C:\WINDOWS\Temp\3eaea5a1-f83e-4ac9-815f-e94e065769d2.tmp moved successfully.
C:\WINDOWS\Temp\3eb39890-61b1-487d-84d1-f1e9ac50cb99.tmp moved successfully.
C:\WINDOWS\Temp\3ee5909c-802f-4c34-a53c-69fa2a5f2497.tmp moved successfully.
C:\WINDOWS\Temp\3efc002c-2c13-4698-a534-56b47af7c38b.tmp moved successfully.
C:\WINDOWS\Temp\3f18d0d3-75fe-4731-95af-83cec6c4c9b0.tmp moved successfully.
C:\WINDOWS\Temp\3fc1186f-855f-4ca6-891c-9ab0f01c837a.tmp moved successfully.
C:\WINDOWS\Temp\3ff28289-40e8-4958-b59d-1e612f2f62e3.tmp moved successfully.
C:\WINDOWS\Temp\40054b64-4a36-4688-9e38-ca27c4008111.tmp moved successfully.
C:\WINDOWS\Temp\40c24a74-e539-477d-9a68-7fe7daef94e9.tmp moved successfully.
C:\WINDOWS\Temp\412d218d-24bc-4a50-9b50-9fda65feb57a.tmp moved successfully.
C:\WINDOWS\Temp\41628482-8adc-458f-a213-f51f5fd193f6.tmp moved successfully.
C:\WINDOWS\Temp\4187fb7b-53ef-4223-8989-1f0b2e45eed5.tmp moved successfully.
C:\WINDOWS\Temp\41afd292-8cdd-4909-bbd3-b4817e4bc913.tmp moved successfully.
C:\WINDOWS\Temp\41d7e4bf-d975-425a-9659-1c5dae6a5d81.tmp moved successfully.
C:\WINDOWS\Temp\41e42612-a68b-4ad6-ae40-e7cb0746a272.tmp moved successfully.
C:\WINDOWS\Temp\41f84e8f-f28a-4df3-864f-9c2a10de67a4.tmp moved successfully.
C:\WINDOWS\Temp\4225fab1-d7b5-4f06-8e2c-e765ca2eb6b7.tmp moved successfully.
C:\WINDOWS\Temp\424aea4e-0b0b-49b1-8c41-c31062ac3cb7.tmp moved successfully.
C:\WINDOWS\Temp\4267367f-3263-425e-b054-0bad2495f436.tmp moved successfully.
C:\WINDOWS\Temp\42721777-9cd3-4e4b-9834-470904bf37c3.tmp moved successfully.
C:\WINDOWS\Temp\4275a911-8227-4f10-84e4-80a5f7aeb48b.tmp moved successfully.
C:\WINDOWS\Temp\42874a7b-eb44-4dc1-8b4e-8b744bc161ac.tmp moved successfully.
C:\WINDOWS\Temp\4298f1c5-dc50-4c4b-9879-ab0848f0726b.tmp moved successfully.
C:\WINDOWS\Temp\42a2a759-7053-427b-8fa6-5c80b0f982ea.tmp moved successfully.
C:\WINDOWS\Temp\4312024c-8b28-43a2-9238-577afc635b20.tmp moved successfully.
C:\WINDOWS\Temp\43456b27-59be-4d5b-b7ff-819964fcbb9f.tmp moved successfully.
C:\WINDOWS\Temp\43724f6e-1e58-489c-9a95-b54dc80302e2.tmp moved successfully.
C:\WINDOWS\Temp\439386f4-0a19-46c2-9940-373ca2825e46.tmp moved successfully.
C:\WINDOWS\Temp\439fe08f-dfcb-4fc6-98bf-24574bb6cdf4.tmp moved successfully.
C:\WINDOWS\Temp\43b43082-ac82-4003-aa43-3ac15ab52196.tmp moved successfully.
C:\WINDOWS\Temp\43bdf1dc-36c5-43c7-a4af-9fcdf74718d2.tmp moved successfully.
C:\WINDOWS\Temp\43dd3335-d2fb-4d81-b8a9-898372fa959f.tmp moved successfully.
C:\WINDOWS\Temp\43eaee2b-047a-45d3-89b5-3abc763a0495.tmp moved successfully.
C:\WINDOWS\Temp\44283030-5529-4681-9c6b-ccae66da9b2e.tmp moved successfully.
C:\WINDOWS\Temp\443141b7-ced0-477f-927a-4c63e6b53235.tmp moved successfully.
C:\WINDOWS\Temp\443a05d2-4fdd-4303-a8cb-6113108e9ffc.tmp moved successfully.
C:\WINDOWS\Temp\443d2950-c887-45c8-b96d-ad075837553f.tmp moved successfully.
C:\WINDOWS\Temp\444ffef2-c23b-424b-85cd-426c03eb590e.tmp moved successfully.
C:\WINDOWS\Temp\44accec8-68ca-406c-bec5-aa434f8fd07b.tmp moved successfully.
C:\WINDOWS\Temp\44cfbbc3-f56f-42b6-81df-35d1d81d6e90.tmp moved successfully.
C:\WINDOWS\Temp\44ebcb1d-079e-45b7-a0de-657af059f21b.tmp moved successfully.
C:\WINDOWS\Temp\4505f01c-7f93-4020-88f5-31a969a3ba93.tmp moved successfully.
C:\WINDOWS\Temp\4513873d-d709-42b4-9b86-d2f3756b8204.tmp moved successfully.
C:\WINDOWS\Temp\45623c8f-a428-4236-8253-f4417b5c3b87.tmp moved successfully.
C:\WINDOWS\Temp\459bf8fa-1607-414e-b986-669edf0ea1b6.tmp moved successfully.
C:\WINDOWS\Temp\45c1a3ec-780a-4e37-9e45-2aa3ed5dcf22.tmp moved successfully.
C:\WINDOWS\Temp\4650bdc7-ea30-428a-a434-20f7d198f1c9.tmp moved successfully.
C:\WINDOWS\Temp\4686db11-7efd-4007-919f-5f95423d78b0.tmp moved successfully.
C:\WINDOWS\Temp\469ab741-6d3b-4046-b0be-a3fb4ef606ec.tmp moved successfully.
C:\WINDOWS\Temp\46a79ce1-532f-48b2-afe9-599dc36d4b91.tmp moved successfully.
C:\WINDOWS\Temp\4719e721-369f-4b6c-986c-d80ac6859fbf.tmp moved successfully.
C:\WINDOWS\Temp\476bb811-fa54-4a1b-aa95-fd7c8ba7ac01.tmp moved successfully.
C:\WINDOWS\Temp\4771f166-5ceb-4874-a76d-6c2ce05ec5d8.tmp moved successfully.
C:\WINDOWS\Temp\4774ff9b-bc6a-40ec-b309-369479bc4b0b.tmp moved successfully.
C:\WINDOWS\Temp\47aafdfd-c409-4306-b9bd-c42846ffcbef.tmp moved successfully.
C:\WINDOWS\Temp\47efbbfd-73cf-4daf-8850-b3468d27bbc5.tmp moved successfully.
C:\WINDOWS\Temp\4870afc0-54b6-434d-aa73-eac59f40823a.tmp moved successfully.
C:\WINDOWS\Temp\4873ddd2-8b09-426a-aa30-7afa91fdd6df.tmp moved successfully.
C:\WINDOWS\Temp\48ad736e-0843-49a5-9ba7-6672e285b508.tmp moved successfully.
C:\WINDOWS\Temp\48b1ebcd-a70c-4522-9349-fd8b0f6d44db.tmp moved successfully.
C:\WINDOWS\Temp\48c88f9a-c50e-4bf8-b07b-34ef7b4f58e1.tmp moved successfully.
C:\WINDOWS\Temp\48de9ec9-349d-486e-86a0-9d77ac33d929.tmp moved successfully.
C:\WINDOWS\Temp\48f4b3a0-13fc-46e2-b51e-eb5b35165851.tmp moved successfully.
C:\WINDOWS\Temp\4927a0ea-1cc3-4ca5-ad8e-6fed4344e7f6.tmp moved successfully.
C:\WINDOWS\Temp\497c9cff-bd3d-4393-aabd-30c668c2a325.tmp moved successfully.
C:\WINDOWS\Temp\49a98fc0-aed0-47e7-b9ed-478902490de9.tmp moved successfully.
C:\WINDOWS\Temp\4a0f25a5-0f82-460c-b732-79f2cfd0b53b.tmp moved successfully.
C:\WINDOWS\Temp\4a23f615-e32e-4b16-8edc-fee24c017702.tmp moved successfully.
C:\WINDOWS\Temp\4a3f4578-3c43-47be-a699-ebdf7aba75c0.tmp moved successfully.
C:\WINDOWS\Temp\4a959c42-d095-483e-bb78-566dc1e93671.tmp moved successfully.
C:\WINDOWS\Temp\4acae62f-2c9a-4cb2-bfc9-4578a0d1706c.tmp moved successfully.
C:\WINDOWS\Temp\4aebc8a7-9554-4043-bf1d-010db09dc52f.tmp moved successfully.
C:\WINDOWS\Temp\4af6fcb9-42db-4306-99de-82ebe5cb4a25.tmp moved successfully.
C:\WINDOWS\Temp\4b220888-1d10-4dc5-83c4-c1fd60e675cd.tmp moved successfully.
C:\WINDOWS\Temp\4b3043ef-addd-42a9-a355-8d67c4a1208e.tmp moved successfully.
C:\WINDOWS\Temp\4b4802b3-3561-4369-b72a-ecc9fb767fe9.tmp moved successfully.
C:\WINDOWS\Temp\4b4b9253-0118-400f-9b98-b06fd3b31c30.tmp moved successfully.
C:\WINDOWS\Temp\4b551a90-8c74-4848-9390-ec168d37399f.tmp moved successfully.
C:\WINDOWS\Temp\4b67ea4b-1eb1-4651-81eb-aca1ca26bc6c.tmp moved successfully.
C:\WINDOWS\Temp\4b86931e-9849-4dae-b1df-5eb75dc82041.tmp moved successfully.
C:\WINDOWS\Temp\4bc70b09-e14f-42cf-b80f-4a853d4a333b.tmp moved successfully.
C:\WINDOWS\Temp\4bd2e914-f131-48de-8a37-91138c14d00f.tmp moved successfully.
C:\WINDOWS\Temp\4be09390-0845-4fe1-8c17-bf1cb6c723d5.tmp moved successfully.
C:\WINDOWS\Temp\4c0b3824-f8e5-4d38-8135-5b561013e87c.tmp moved successfully.
C:\WINDOWS\Temp\4c341221-abd9-4c5c-aff2-25852cd14b0e.tmp moved successfully.
C:\WINDOWS\Temp\4c5ec75c-1f82-4662-8a89-530f816a5e2a.tmp moved successfully.
C:\WINDOWS\Temp\4c68f793-18ed-4b69-badb-eb5195d698af.tmp moved successfully.
C:\WINDOWS\Temp\4cdad2f1-b188-4a81-b2ae-41697c128e4c.tmp moved successfully.
C:\WINDOWS\Temp\4d43e427-df63-401e-989c-29e28d3d8456.tmp moved successfully.
C:\WINDOWS\Temp\4d5a0484-bc5b-4da8-83ac-3bdd35e4671a.tmp moved successfully.
C:\WINDOWS\Temp\4de3d3dc-625c-40d1-9554-e3036c4a1088.tmp moved successfully.
C:\WINDOWS\Temp\4de5c616-78d1-4ebf-9109-c559750d2d03.tmp moved successfully.
C:\WINDOWS\Temp\4df796d1-0a0e-4cc8-bf64-85e4b2fcafcf.tmp moved successfully.
C:\WINDOWS\Temp\4e095624-0534-411d-8eff-0cb2ca17640f.tmp moved successfully.
C:\WINDOWS\Temp\4e61a31b-e910-4509-8e8f-0e7970130457.tmp moved successfully.
C:\WINDOWS\Temp\4ea82dd7-59bf-4c64-8311-54b8343b680a.tmp moved successfully.
C:\WINDOWS\Temp\4eb2913f-0439-429c-9e14-b57cd8a1dcd8.tmp moved successfully.
C:\WINDOWS\Temp\4ec29f0a-b22f-4c6a-9f7e-5c84b268f104.tmp moved successfully.
C:\WINDOWS\Temp\4ec995ae-5d11-401f-8b3f-2a8399a393c7.tmp moved successfully.
C:\WINDOWS\Temp\4eea8d75-baa3-415c-8963-5ec5fdbd33e2.tmp moved successfully.
C:\WINDOWS\Temp\4f20d722-1d01-4753-8808-5d52c6deeabc.tmp moved successfully.
C:\WINDOWS\Temp\4f480ce6-58af-4168-9b4f-7b8a16faa6c6.tmp moved successfully.
C:\WINDOWS\Temp\4f5c46c4-49ad-45d5-9a6b-49b121ca15ce.tmp moved successfully.
C:\WINDOWS\Temp\4fc4d7bc-6260-47df-a166-e62cbae31eb9.tmp moved successfully.
C:\WINDOWS\Temp\500daa8c-2740-49ff-81dd-cedb86be58f7.tmp moved successfully.
C:\WINDOWS\Temp\5038133c-4682-41aa-9ed7-9ceecab3b1fc.tmp moved successfully.
C:\WINDOWS\Temp\5076c0a3-e7bf-49f7-aa80-60047e53b6d7.tmp moved successfully.
C:\WINDOWS\Temp\5089943f-07c5-451a-bc15-004982069e5d.tmp moved successfully.
C:\WINDOWS\Temp\509d1a69-5a5e-49a6-939b-095fa95b4577.tmp moved successfully.
C:\WINDOWS\Temp\50b1d0dc-eada-4268-bad8-7232b597a0a2.tmp moved successfully.
C:\WINDOWS\Temp\50db6922-fadb-4ec5-be47-44b35fe46a85.tmp moved successfully.
C:\WINDOWS\Temp\50f9028d-e811-48f1-8d6f-53f70bff0405.tmp moved successfully.
C:\WINDOWS\Temp\50fafda1-a012-4ad7-9626-bf09d891659f.tmp moved successfully.
C:\WINDOWS\Temp\51210bed-542d-4a8b-8f7e-b24103a08f1d.tmp moved successfully.
C:\WINDOWS\Temp\512321f6-75b1-475a-8ed6-45509b253b0b.tmp moved successfully.
C:\WINDOWS\Temp\51488c3c-e81c-423b-bfdc-fce584080759.tmp moved successfully.
C:\WINDOWS\Temp\51606048-89cc-4f48-98b7-dcd36a2796c3.tmp moved successfully.
C:\WINDOWS\Temp\51b3ba4f-0434-4581-95d4-d6ff692bd444.tmp moved successfully.
C:\WINDOWS\Temp\51f0d8c4-4756-430b-8a0d-72aaff7561a5.tmp moved successfully.
C:\WINDOWS\Temp\5246a48f-abed-45c3-b984-d3c5400a69c3.tmp moved successfully.
C:\WINDOWS\Temp\525ed162-df0c-4743-b5dc-9ea698d555db.tmp moved successfully.
C:\WINDOWS\Temp\52928970-8369-4b16-8f06-6e78c80574a5.tmp moved successfully.
C:\WINDOWS\Temp\52ba96b7-688a-45ee-8c87-027a8a5e8611.tmp moved successfully.
C:\WINDOWS\Temp\52cbb3f7-68cc-476f-bfc1-9872f5a3a376.tmp moved successfully.
C:\WINDOWS\Temp\539c6687-5935-4ba7-b332-0023c1c64e5c.tmp moved successfully.
C:\WINDOWS\Temp\53df7011-623d-43ed-9fdc-1bad3939fa66.tmp moved successfully.
C:\WINDOWS\Temp\54114073-c86c-4948-b2ad-c35f266c7b9a.tmp moved successfully.
C:\WINDOWS\Temp\54975f43-10ad-4826-9ab6-2bdec28c7fa2.tmp moved successfully.
C:\WINDOWS\Temp\54b43c59-d610-4d55-a1b0-1cbe177b73d2.tmp moved successfully.
C:\WINDOWS\Temp\54f1674f-2b8e-41d4-bb42-2682c9944334.tmp moved successfully.
C:\WINDOWS\Temp\54f5a6c3-0dbb-4d82-8387-9974dc2f44cb.tmp moved successfully.
C:\WINDOWS\Temp\55183ac4-c97f-4bdc-af86-00c549f53abd.tmp moved successfully.
C:\WINDOWS\Temp\55457da5-ee42-4d69-a74a-7dfe5a1b09a1.tmp moved successfully.
C:\WINDOWS\Temp\554d0bd4-9c49-441b-9056-43b2ee0fe0bf.tmp moved successfully.
C:\WINDOWS\Temp\5577813e-e506-4297-bf11-af469df0e182.tmp moved successfully.
C:\WINDOWS\Temp\55accee5-5d28-4e6c-a67d-58d5631c77c2.tmp moved successfully.
C:\WINDOWS\Temp\55d1be88-6c2c-4a76-9e5d-299fa19c180b.tmp moved successfully.
C:\WINDOWS\Temp\5610a1e0-c0f5-4636-b08f-fcc4b1cad1f3.tmp moved successfully.
C:\WINDOWS\Temp\56327cb2-bfb9-460c-b605-9ef3893d2bf0.tmp moved successfully.
C:\WINDOWS\Temp\56ab40f3-f358-4926-9119-997f0679fb12.tmp moved successfully.
C:\WINDOWS\Temp\570c2d3b-3294-4798-9d14-8a462cdb992d.tmp moved successfully.
C:\WINDOWS\Temp\5720fdea-04c1-4760-98e6-caa8de79e132.tmp moved successfully.
C:\WINDOWS\Temp\572c12e0-e8a8-4242-9853-6031c42815af.tmp moved successfully.
C:\WINDOWS\Temp\575be287-202b-477a-ab9c-ec7f6c23354c.tmp moved successfully.
C:\WINDOWS\Temp\5770c845-ed89-4671-9f91-b5105d484487.tmp moved successfully.
C:\WINDOWS\Temp\5811be9c-01ca-4880-9c5c-937aceacb037.tmp moved successfully.
C:\WINDOWS\Temp\583b0a69-5dfb-4065-aefc-45c1b54d182f.tmp moved successfully.
C:\WINDOWS\Temp\583d8f87-06c6-4f53-8fa3-3a6f14ca6d24.tmp moved successfully.
C:\WINDOWS\Temp\58464074-2420-4645-8ffe-3b95052d7da6.tmp moved successfully.
C:\WINDOWS\Temp\5852efe8-3e67-4b61-9b38-b3bfcef8a880.tmp moved successfully.
C:\WINDOWS\Temp\585b7d05-51b2-4473-98ef-042c3199298e.tmp moved successfully.
C:\WINDOWS\Temp\5899d93a-29dd-4d27-ae29-b8795bef7454.tmp moved successfully.
C:\WINDOWS\Temp\58cbc1dd-bcf9-44ac-aec8-8cb9f27803fc.tmp moved successfully.
C:\WINDOWS\Temp\58d12c76-7611-4b58-8198-d01d47c9b164.tmp moved successfully.
C:\WINDOWS\Temp\58d5f401-0ff2-4091-b3d1-19c99645e339.tmp moved successfully.
C:\WINDOWS\Temp\58efaf92-706f-49d9-92f0-68b5a097008c.tmp moved successfully.
C:\WINDOWS\Temp\58fcb314-0dbf-478a-9d82-a53933153108.tmp moved successfully.
C:\WINDOWS\Temp\591b865e-fd5b-4084-89f8-23708ed22017.tmp moved successfully.
C:\WINDOWS\Temp\59333f41-fdf1-416b-990c-6c0c1d891bd3.tmp moved successfully.
C:\WINDOWS\Temp\59438436-6bde-4407-8e74-bda266af4793.tmp moved successfully.
C:\WINDOWS\Temp\59610d2d-137d-4101-aac2-73e1c099de11.tmp moved successfully.
C:\WINDOWS\Temp\597aab09-0ed3-485e-96e0-2038540b3868.tmp moved successfully.
C:\WINDOWS\Temp\59a0d58a-1e3c-4338-ac0d-5ff5402c2f41.tmp moved successfully.
C:\WINDOWS\Temp\59c30917-fb14-48c2-a26b-01d73d46ae5b.tmp moved successfully.
C:\WINDOWS\Temp\59ff2e6c-c04a-49e4-bdea-e7535c079e3f.tmp moved successfully.
C:\WINDOWS\Temp\5a066a75-5f76-41fc-8397-5172d25bf4f6.tmp moved successfully.
C:\WINDOWS\Temp\5a51563c-9e68-47c9-b71e-c1fec71c80db.tmp moved successfully.
C:\WINDOWS\Temp\5a5fe0dc-dea8-4727-85dd-293b9970042f.tmp moved successfully.
C:\WINDOWS\Temp\5a75ed1d-f3aa-4dbf-864b-9df53af3e0be.tmp moved successfully.
C:\WINDOWS\Temp\5a7958fb-8016-4447-9894-c5f54b0c2d90.tmp moved successfully.
C:\WINDOWS\Temp\5b11bf35-800c-4e45-98a7-54f25ace1932.tmp moved successfully.
C:\WINDOWS\Temp\5bef0a1f-e10a-45ed-8a12-8d5583d8f247.tmp moved successfully.
C:\WINDOWS\Temp\5c051d08-6001-4f42-845e-1b775cb4ca9b.tmp moved successfully.
C:\WINDOWS\Temp\5c208b54-4b20-428d-a34c-84744d75d078.tmp moved successfully.
C:\WINDOWS\Temp\5c232d62-780b-4084-83d7-161692965141.tmp moved successfully.
C:\WINDOWS\Temp\5c63d890-12b8-41b8-bf86-0ba3530bf6b0.tmp moved successfully.
C:\WINDOWS\Temp\5c75ce08-fedd-49fd-8748-dcca72d0a973.tmp moved successfully.
C:\WINDOWS\Temp\5c7936ec-7686-49a8-b1c9-5ac987dd18df.tmp moved successfully.
C:\WINDOWS\Temp\5c86044a-2e8c-40eb-8327-e4de52fe4f0f.tmp moved successfully.
C:\WINDOWS\Temp\5c97e2be-df8f-4842-8350-ac00bd8d7563.tmp moved successfully.
C:\WINDOWS\Temp\5caf364d-7370-4240-b88a-527215d4948d.tmp moved successfully.
C:\WINDOWS\Temp\5cbd8db6-211a-44cb-8253-30199185c133.tmp moved successfully.
C:\WINDOWS\Temp\5ce9ebd8-633b-4fbf-8a77-7a00f00e9839.tmp moved successfully.
C:\WINDOWS\Temp\5cf04f8b-bab6-4433-9ebc-b57ff63fc7ba.tmp moved successfully.
C:\WINDOWS\Temp\5d80f084-cecd-4a34-a5d9-d58b19503b39.tmp moved successfully.
C:\WINDOWS\Temp\5d946739-cf1a-460c-8b8f-f0b1af27db1a.tmp moved successfully.
C:\WINDOWS\Temp\5dec4cf5-ce3b-4cd1-b4d1-1a9553f9177b.tmp moved successfully.
C:\WINDOWS\Temp\5e09f5da-e290-41cf-911a-41f317eed161.tmp moved successfully.
C:\WINDOWS\Temp\5e89c313-9b4b-412b-8e7f-0d35b401ae1e.tmp moved successfully.
C:\WINDOWS\Temp\5f0aa56e-f5ab-48d8-b04f-6cd8ff39ad59.tmp moved successfully.
C:\WINDOWS\Temp\5f4f7baf-d83a-40ec-8b29-52790f5eadbf.tmp moved successfully.
C:\WINDOWS\Temp\5f60cfe0-8054-4b60-86f8-619698e47afb.tmp moved successfully.
C:\WINDOWS\Temp\5f63ee72-ab26-42c9-80d7-4ea78e788ebb.tmp moved successfully.
C:\WINDOWS\Temp\5fa4e5e6-c7e6-447b-bcaa-c00ea5ca4ed8.tmp moved successfully.
C:\WINDOWS\Temp\5fdf88fe-7dce-4f4c-98af-25806c1f54b9.tmp moved successfully.
C:\WINDOWS\Temp\5ff96952-1e95-4fb2-89f5-0f133b95c181.tmp moved successfully.
C:\WINDOWS\Temp\601f6730-66c6-4394-873c-9e65ba750446.tmp moved successfully.
C:\WINDOWS\Temp\60332584-7855-4fed-93bf-51084e29c1f3.tmp moved successfully.
C:\WINDOWS\Temp\607ebf1e-c8e4-4680-8ba3-a6eb61a1ae0c.tmp moved successfully.
C:\WINDOWS\Temp\60a57598-287f-4381-adf3-2e078eb44014.tmp moved successfully.
C:\WINDOWS\Temp\60d2d95c-00c2-4d12-93a3-682b9e3afab2.tmp moved successfully.
C:\WINDOWS\Temp\60e75d8c-3e98-4bc1-8361-c740c984c267.tmp moved successfully.
C:\WINDOWS\Temp\60f842a1-7fe3-4475-829d-b4aac66ac938.tmp moved successfully.
C:\WINDOWS\Temp\610f398f-c084-40c2-abf6-f0a44cf73c0b.tmp moved successfully.
C:\WINDOWS\Temp\61631e95-6ca7-47c2-8f7b-f3445394331e.tmp moved successfully.
C:\WINDOWS\Temp\61759f1d-2343-4d6f-a9f9-4227a946f584.tmp moved successfully.
C:\WINDOWS\Temp\61886257-9d4a-4843-9281-c9a4abc03434.tmp moved successfully.
C:\WINDOWS\Temp\61b4f284-1ecc-4cae-8335-b8d6bac4390e.tmp moved successfully.
C:\WINDOWS\Temp\61b677a2-c798-4c9c-a5dd-ad8418408e02.tmp moved successfully.
C:\WINDOWS\Temp\61ef0b91-dd11-4d35-a7d0-c8b7d0884979.tmp moved successfully.
C:\WINDOWS\Temp\62024d1b-13b1-45bd-9a94-a565b9b4ce8f.tmp moved successfully.
C:\WINDOWS\Temp\62060245-0793-49a5-a4c0-d54906f8568e.tmp moved successfully.
C:\WINDOWS\Temp\6224ac18-7b51-43c2-b53b-bd6a7af4b849.tmp moved successfully.
C:\WINDOWS\Temp\624fab99-7bc2-48c8-8deb-fdb865b6e94a.tmp moved successfully.
C:\WINDOWS\Temp\6275c993-936d-42cb-8501-435251bb7ea2.tmp moved successfully.
C:\WINDOWS\Temp\63415ae3-f71d-4739-af89-b9a2acaef331.tmp moved successfully.
C:\WINDOWS\Temp\6348b021-fd4c-45f9-91ff-053122621b7a.tmp moved successfully.

Uživatelský avatar
Dvori66
Návštěvník
Návštěvník
Příspěvky: 94
Registrován: 04 úno 2011 18:29
Kontaktovat uživatele:

Re: C:\WINDOWS\system32\cmd.exe maze subory

#25 Příspěvek od Dvori66 »

C:\WINDOWS\Temp\63520034-ce8b-42a5-b472-633f8d2d2470.tmp moved successfully.
C:\WINDOWS\Temp\63703ee5-ea62-439e-93a7-08ba53ed9c0a.tmp moved successfully.
C:\WINDOWS\Temp\63c1a6a6-896c-4167-810c-d572a0377f2d.tmp moved successfully.
C:\WINDOWS\Temp\63e0ca16-88e4-49fb-91e1-ae3e1994f0a5.tmp moved successfully.
C:\WINDOWS\Temp\642245bb-ed07-477d-b92a-5490df5b5de2.tmp moved successfully.
C:\WINDOWS\Temp\64b40872-774a-4b00-b710-7b037f810de0.tmp moved successfully.
C:\WINDOWS\Temp\65041f18-bcd2-4cef-b7ac-d765fa2fa62c.tmp moved successfully.
C:\WINDOWS\Temp\650ff29c-d4f5-4028-acbc-25d149dce280.tmp moved successfully.
C:\WINDOWS\Temp\656a8d7a-e196-4ef4-a76c-f38f55a48661.tmp moved successfully.
C:\WINDOWS\Temp\65b74e98-79c7-4d29-abc8-f39b177a40ce.tmp moved successfully.
C:\WINDOWS\Temp\65bc7f52-3179-4606-a14b-c90cbe2999a7.tmp moved successfully.
C:\WINDOWS\Temp\6609cb75-d412-4661-86da-c8ab2d9b27ef.tmp moved successfully.
C:\WINDOWS\Temp\665f88bf-3202-4ea8-8eec-519890aef144.tmp moved successfully.
C:\WINDOWS\Temp\6688df53-7e98-45df-8351-eb7f8e333edd.tmp moved successfully.
C:\WINDOWS\Temp\66945fb0-9395-4501-94f6-7340fd8cfdff.tmp moved successfully.
C:\WINDOWS\Temp\669815d4-a6ee-4a49-84dd-e30f8427679b.tmp moved successfully.
C:\WINDOWS\Temp\66a3a2b2-c76c-421f-9b61-0ef4f0a966a3.tmp moved successfully.
C:\WINDOWS\Temp\66f1ad11-11b7-4df5-a20c-2ba5a0a624ac.tmp moved successfully.
C:\WINDOWS\Temp\66fab3dd-5054-415f-a9ec-adfa57a20ca3.tmp moved successfully.
C:\WINDOWS\Temp\66fdb19f-693c-4ba6-81ad-1e5d9fce8ed3.tmp moved successfully.
C:\WINDOWS\Temp\67126cc0-4a10-4405-9987-2ca1c7b30543.tmp moved successfully.
C:\WINDOWS\Temp\6716eaf9-9bf3-4d3d-ba98-ad55165cde87.tmp moved successfully.
C:\WINDOWS\Temp\676303de-cd6e-4026-81ec-63496983f8be.tmp moved successfully.
C:\WINDOWS\Temp\67871b36-4ff7-4a8b-9b75-b9a6a48aaa7d.tmp moved successfully.
C:\WINDOWS\Temp\67ba3ea6-43e2-44fe-ac92-bc9c98bc3689.tmp moved successfully.
C:\WINDOWS\Temp\67bf9fb6-f986-4f52-a357-71f3afa37e3a.tmp moved successfully.
C:\WINDOWS\Temp\67da2af2-62eb-4364-a0af-acef6862aed1.tmp moved successfully.
C:\WINDOWS\Temp\67fa9f82-9691-4a31-9818-ea30595e8367.tmp moved successfully.
C:\WINDOWS\Temp\682ce59f-edfc-4668-8716-0ee944e2a867.tmp moved successfully.
C:\WINDOWS\Temp\685e30cb-35f4-4dd6-9321-5686fb43624d.tmp moved successfully.
C:\WINDOWS\Temp\6897971d-6a97-4359-b7ed-4d562998882f.tmp moved successfully.
C:\WINDOWS\Temp\68a63eb2-0e7f-405f-9cd4-119ba73855bd.tmp moved successfully.
C:\WINDOWS\Temp\68d814e8-4167-4695-a156-19dfd0de01e3.tmp moved successfully.
C:\WINDOWS\Temp\6918dfc0-709b-43af-800e-d0fa20f02934.tmp moved successfully.
C:\WINDOWS\Temp\693e73a9-bccf-4f4a-a668-97d9d508afe9.tmp moved successfully.
C:\WINDOWS\Temp\69e80978-a8d1-4c1b-aeb2-1e63e59e2919.tmp moved successfully.
C:\WINDOWS\Temp\69f19e35-4588-4947-8b02-c923bbf08789.tmp moved successfully.
C:\WINDOWS\Temp\69f48008-db50-4586-a5df-9d911b78dfe5.tmp moved successfully.
C:\WINDOWS\Temp\6a6e1b99-7bf2-48e6-b88f-d39f61d5bbf4.tmp moved successfully.
C:\WINDOWS\Temp\6a9c787d-d021-40df-b9f9-c3f4e8e41310.tmp moved successfully.
C:\WINDOWS\Temp\6adca422-9815-4582-8003-33e7728a0b5b.tmp moved successfully.
C:\WINDOWS\Temp\6ae309d4-eab6-4db5-b5cf-a371591537c1.tmp moved successfully.
C:\WINDOWS\Temp\6b485766-f7b6-4556-a4f7-78f7e77c834a.tmp moved successfully.
C:\WINDOWS\Temp\6b50b82c-fb7e-422e-82ff-889e7cf20e2e.tmp moved successfully.
C:\WINDOWS\Temp\6b53d5d0-ccc2-43b9-a726-80e1e1267d35.tmp moved successfully.
C:\WINDOWS\Temp\6b620c50-e863-4da1-aabf-e28799cea2bc.tmp moved successfully.
C:\WINDOWS\Temp\6b9c8c9f-72c4-4831-9d65-5655960a358e.tmp moved successfully.
C:\WINDOWS\Temp\6be13f17-2acd-4004-8ee0-4b50dd15c3e4.tmp moved successfully.
C:\WINDOWS\Temp\6bef986d-3205-486e-ad61-1fc4e9289543.tmp moved successfully.
C:\WINDOWS\Temp\6befc9bd-4a95-4f02-b5e4-73a17511659d.tmp moved successfully.
C:\WINDOWS\Temp\6c2819cd-4b6f-461b-8d68-72efd96a7bee.tmp moved successfully.
C:\WINDOWS\Temp\6c2c8f2c-f5ec-4d1a-82fe-9ff2449e0ef7.tmp moved successfully.
C:\WINDOWS\Temp\6c3c907c-720e-4194-b853-98f6c93fff87.tmp moved successfully.
C:\WINDOWS\Temp\6c738411-9e0a-4b38-840a-e8ec7ba9792f.tmp moved successfully.
C:\WINDOWS\Temp\6c8085a6-e7a6-404c-9a5e-fb979d6c070d.tmp moved successfully.
C:\WINDOWS\Temp\6c82327a-09d2-4bd7-bb28-40cd17166f93.tmp moved successfully.
C:\WINDOWS\Temp\6cd96f09-5c71-4550-bb72-d4cdb8e5436a.tmp moved successfully.
C:\WINDOWS\Temp\6ce7631d-93b1-4570-ad6d-795fbed98f48.tmp moved successfully.
C:\WINDOWS\Temp\6cfc5269-4ae5-4ca1-b52d-5b06d2b624b9.tmp moved successfully.
C:\WINDOWS\Temp\6d0c2ff6-7c08-4e7a-9b68-237952e6c19c.tmp moved successfully.
C:\WINDOWS\Temp\6d190035-c7b1-4018-b07b-573e047160a1.tmp moved successfully.
C:\WINDOWS\Temp\6d290b13-22f4-424a-bca7-d46e6d7dd330.tmp moved successfully.
C:\WINDOWS\Temp\6d372c84-4263-4e03-851c-aee5e79f3081.tmp moved successfully.
C:\WINDOWS\Temp\6d7233f0-69dc-4dfe-9b76-8276040b130f.tmp moved successfully.
C:\WINDOWS\Temp\6d8ed27b-d2cd-483f-9592-ca0850649334.tmp moved successfully.
C:\WINDOWS\Temp\6d9e0fa3-6418-4165-90fd-dc007fb2b8b8.tmp moved successfully.
C:\WINDOWS\Temp\6da9998e-5635-4f3f-b778-e8edd377f8da.tmp moved successfully.
C:\WINDOWS\Temp\6db21449-c95a-4441-ab9c-eb865286d12e.tmp moved successfully.
C:\WINDOWS\Temp\6dbe4d0e-ad9b-4382-afb9-9cde88aa91e8.tmp moved successfully.
C:\WINDOWS\Temp\6e38a5ee-9687-4d3e-b153-303c608bf5e4.tmp moved successfully.
C:\WINDOWS\Temp\6e4e17ab-949f-4bfd-8bb0-02405749bdb2.tmp moved successfully.
C:\WINDOWS\Temp\6ee9e70e-e46d-42c3-9436-becd5788b946.tmp moved successfully.
C:\WINDOWS\Temp\6eeee1a4-b7d6-4332-9086-e1cf36da17d4.tmp moved successfully.
C:\WINDOWS\Temp\6efd7cac-8378-40c1-bf11-ebdeefb5657e.tmp moved successfully.
C:\WINDOWS\Temp\6f045dfb-541f-4ce9-b443-b7289c559b69.tmp moved successfully.
C:\WINDOWS\Temp\6fa6edc5-e965-4773-8944-8df5a5d1c7e5.tmp moved successfully.
C:\WINDOWS\Temp\6fcc1646-ffa9-4f8d-beeb-97a7b099c0d9.tmp moved successfully.
C:\WINDOWS\Temp\6fdd82b9-d4b1-4b2a-a688-d352e3759b89.tmp moved successfully.
C:\WINDOWS\Temp\7028a76a-d03f-40c5-8a6c-6704f382b5a9.tmp moved successfully.
C:\WINDOWS\Temp\707c9250-0450-469f-b2b1-7e69a23c0f5b.tmp moved successfully.
C:\WINDOWS\Temp\70a4e249-a027-4a1a-8148-b31cd2129adb.tmp moved successfully.
C:\WINDOWS\Temp\70ceb379-7779-40c9-b307-3fadd4f7f631.tmp moved successfully.
C:\WINDOWS\Temp\70e19496-afb5-4f22-8970-1701131f23d3.tmp moved successfully.
C:\WINDOWS\Temp\70ebb558-57d4-4d75-86f2-c053960d561f.tmp moved successfully.
C:\WINDOWS\Temp\713f58b2-2015-4df0-b3b2-4c6cb58aee4c.tmp moved successfully.
C:\WINDOWS\Temp\7188cdd5-e335-4ce2-b22d-aa5a834e47bd.tmp moved successfully.
C:\WINDOWS\Temp\71b4b216-c747-4982-bc7e-1ef921ad719c.tmp moved successfully.
C:\WINDOWS\Temp\71ec4ce4-60d5-4db3-a3b6-83fd626c8e96.tmp moved successfully.
C:\WINDOWS\Temp\726e6ec5-3244-416d-99a6-00e4d1ece25c.tmp moved successfully.
C:\WINDOWS\Temp\72a248a2-e1b0-4422-b574-816f90de909a.tmp moved successfully.
C:\WINDOWS\Temp\72c7cf10-ef5a-4ee7-91c5-0460b183ed7c.tmp moved successfully.
C:\WINDOWS\Temp\72cfec2a-1cf5-40bb-b7fc-336b9d261eaf.tmp moved successfully.
C:\WINDOWS\Temp\72d27fbe-1ce7-459e-aaed-e1feabc67cf8.tmp moved successfully.
C:\WINDOWS\Temp\72e94174-d7a7-4d9b-8d44-294c1afe9c53.tmp moved successfully.
C:\WINDOWS\Temp\732c7475-57b3-477e-b56f-0ff75a8cd397.tmp moved successfully.
C:\WINDOWS\Temp\73468bf4-c326-4a33-98a6-3802d6ae5a2a.tmp moved successfully.
C:\WINDOWS\Temp\73ab1a37-9390-47fb-97d8-442310de22ff.tmp moved successfully.
C:\WINDOWS\Temp\741b6f4a-2776-4749-95aa-2b58b42a9796.tmp moved successfully.
C:\WINDOWS\Temp\742ca0de-01f3-4158-8073-c405580a1fd2.tmp moved successfully.
C:\WINDOWS\Temp\743a8a1f-81e3-47a2-bda5-35da9f25482b.tmp moved successfully.
C:\WINDOWS\Temp\7446fdc3-668a-45b3-9d0f-542583eb5d74.tmp moved successfully.
C:\WINDOWS\Temp\746072e9-f335-4cf6-88fe-47de387ca870.tmp moved successfully.
C:\WINDOWS\Temp\74940e01-33ea-4321-8a00-bba7bc5f7d01.tmp moved successfully.
C:\WINDOWS\Temp\749af23d-5844-48e5-b570-b0cadbba578a.tmp moved successfully.
C:\WINDOWS\Temp\75255ae1-09c3-4f8d-bfb5-6127a913b232.tmp moved successfully.
C:\WINDOWS\Temp\75965715-881a-4ee6-b5f6-5d17c613538c.tmp moved successfully.
C:\WINDOWS\Temp\75f9d729-e067-4017-a04a-2bd94b33b5ad.tmp moved successfully.
C:\WINDOWS\Temp\76321bb8-c90b-45fa-b4fb-f11a741787e2.tmp moved successfully.
C:\WINDOWS\Temp\764d16fc-f9a7-4eea-a118-0e8b697d24b7.tmp moved successfully.
C:\WINDOWS\Temp\765a081c-f6d1-498c-a417-fe3b1969ad78.tmp moved successfully.
C:\WINDOWS\Temp\7667a524-b0e4-4d58-b533-a86a7551f5cf.tmp moved successfully.
C:\WINDOWS\Temp\770ba7bd-e98e-4261-8f9e-9b592a0a2495.tmp moved successfully.
C:\WINDOWS\Temp\772a9bdc-ca9b-461f-b776-5553f8d7c298.tmp moved successfully.
C:\WINDOWS\Temp\773971bc-b141-469c-8a8f-434b7b064652.tmp moved successfully.
C:\WINDOWS\Temp\77a47378-bed7-4da8-81d8-de9f93fd1d11.tmp moved successfully.
C:\WINDOWS\Temp\77c36b7e-0d36-4e21-a62f-3668ee363f32.tmp moved successfully.
C:\WINDOWS\Temp\77cf20d4-b547-4157-96a3-8d4d7fc5d0c6.tmp moved successfully.
C:\WINDOWS\Temp\77f43633-230c-44df-8864-39a9bec1a521.tmp moved successfully.
C:\WINDOWS\Temp\780739f2-096e-423d-8718-4881a7363426.tmp moved successfully.
C:\WINDOWS\Temp\780f6581-8755-4cc5-a01e-657c24576c92.tmp moved successfully.
C:\WINDOWS\Temp\7823ba5a-bc83-4b7b-90a7-4fbfa01c4138.tmp moved successfully.
C:\WINDOWS\Temp\78322225-1607-4b98-a1f7-11233dac1acf.tmp moved successfully.
C:\WINDOWS\Temp\784254bf-ca31-4706-868b-9ef0878ebe54.tmp moved successfully.
C:\WINDOWS\Temp\7859770a-fbdc-4d2d-a7d8-dbc4a1ef44b6.tmp moved successfully.
C:\WINDOWS\Temp\785f5892-e4a2-4831-8872-d5779fade05f.tmp moved successfully.
C:\WINDOWS\Temp\78617442-75f6-46fd-a022-4de38f318b2e.tmp moved successfully.
C:\WINDOWS\Temp\79b67ede-0954-4181-9bef-3ce99525a6c1.tmp moved successfully.
C:\WINDOWS\Temp\79e04674-3c9a-4ef5-a6d4-f83109a94335.tmp moved successfully.
C:\WINDOWS\Temp\79e81749-e722-4f4b-8de6-aa629f6f59ba.tmp moved successfully.
C:\WINDOWS\Temp\79e8ac1a-cd2c-49e7-a816-e89266e335d2.tmp moved successfully.
C:\WINDOWS\Temp\79f40e50-4cc3-4966-aee9-6fecbd20647e.tmp moved successfully.
C:\WINDOWS\Temp\7a40ce74-c47c-483b-8c8b-2f0c449e3c4f.tmp moved successfully.
C:\WINDOWS\Temp\7a8eb9f6-321a-4e2c-809a-bbfd7d9728c9.tmp moved successfully.
C:\WINDOWS\Temp\7aa53ae8-89d7-4622-8819-8b74ef0d74af.tmp moved successfully.
C:\WINDOWS\Temp\7ac1f281-e246-440f-bd65-c6493b9fb7d4.tmp moved successfully.
C:\WINDOWS\Temp\7adf8064-d2e3-4f23-90fc-1177c9f7edb9.tmp moved successfully.
C:\WINDOWS\Temp\7ae514a6-4071-47ea-91eb-5a45907f71cf.tmp moved successfully.
C:\WINDOWS\Temp\7b0b26df-4264-42f9-a007-ac5f0ca23ccf.tmp moved successfully.
C:\WINDOWS\Temp\7b14516e-c525-49c2-9887-944fa9697657.tmp moved successfully.
C:\WINDOWS\Temp\7b234344-1073-46e7-82c9-df4fd7e34349.tmp moved successfully.
C:\WINDOWS\Temp\7b3c639c-12bd-4213-b30d-fb2cd9880ac5.tmp moved successfully.
C:\WINDOWS\Temp\7b9e8fa3-e128-4d6d-8090-39a0744f6329.tmp moved successfully.
C:\WINDOWS\Temp\7bf4093c-8188-4dcf-9812-55e84b40b34f.tmp moved successfully.
C:\WINDOWS\Temp\7c185e6b-1360-4f9f-9735-f944114f98e7.tmp moved successfully.
C:\WINDOWS\Temp\7c367b40-6218-4477-803c-6ddcbdfd4545.tmp moved successfully.
C:\WINDOWS\Temp\7cf36cdb-abcf-4db7-899d-33ac426e51e5.tmp moved successfully.
C:\WINDOWS\Temp\7d9ee096-b393-4e89-b052-5aebe8d49a1c.tmp moved successfully.
C:\WINDOWS\Temp\7da297b9-c012-4690-82bf-ffc550c9019c.tmp moved successfully.
C:\WINDOWS\Temp\7da4dc19-e563-4317-a1d3-3cb0772c9f7e.tmp moved successfully.
C:\WINDOWS\Temp\7df03e90-5682-417d-befe-a81ae0ed9467.tmp moved successfully.
C:\WINDOWS\Temp\7e14b49c-ba53-4db1-92c8-484ddfb44557.tmp moved successfully.
C:\WINDOWS\Temp\7eba9edb-567e-4ed3-b8c0-6f3d3268f66b.tmp moved successfully.
C:\WINDOWS\Temp\7f38fa1e-e89a-4532-912e-9946e3ccbe15.tmp moved successfully.
C:\WINDOWS\Temp\7f6e4d99-2d75-41e0-aa4a-a167e56c7e47.tmp moved successfully.
C:\WINDOWS\Temp\7fef7499-79a0-47af-8b2d-579bf42ab8b2.tmp moved successfully.
C:\WINDOWS\Temp\80215dfd-1515-40b8-861e-3c5e75ecc339.tmp moved successfully.
C:\WINDOWS\Temp\802af6a8-0580-4681-99ac-11f6bcf9c546.tmp moved successfully.
C:\WINDOWS\Temp\80587b41-ce34-4cd5-babf-86de408f2ed8.tmp moved successfully.
C:\WINDOWS\Temp\8082478b-3835-46c9-af00-72a0b5090610.tmp moved successfully.
C:\WINDOWS\Temp\80e4c1f8-19d8-49bb-a382-9010c3846835.tmp moved successfully.
C:\WINDOWS\Temp\80f41b0f-2969-43a8-bc56-7407b9d0b672.tmp moved successfully.
C:\WINDOWS\Temp\80fee8eb-cbe2-49a3-ba95-122191d7f2ca.tmp moved successfully.
C:\WINDOWS\Temp\8102214c-e8af-47fb-8a7c-37045239454d.tmp moved successfully.
C:\WINDOWS\Temp\8114f4fa-a94c-4fff-a8df-1687a6e486ff.tmp moved successfully.
C:\WINDOWS\Temp\813608b0-8fd9-4b86-8361-b2b11148540b.tmp moved successfully.
C:\WINDOWS\Temp\820bb516-4b50-4fa9-b9d0-2ce2d182e1a0.tmp moved successfully.
C:\WINDOWS\Temp\82580525-3cc2-4b60-b322-8b649209106b.tmp moved successfully.
C:\WINDOWS\Temp\828fe94c-02af-4773-a443-4169b8eaa475.tmp moved successfully.
C:\WINDOWS\Temp\82cf4c15-a912-4543-8606-9ad6ea4795f0.tmp moved successfully.
C:\WINDOWS\Temp\82ecfcd4-60f4-4f38-af50-4bf0720a93f6.tmp moved successfully.
C:\WINDOWS\Temp\82edb91c-c8b7-46f4-85f6-e92c3fe6fe7e.tmp moved successfully.
C:\WINDOWS\Temp\82ee9ee2-8ce0-4d2f-8fdb-dd92b72b14bf.tmp moved successfully.
C:\WINDOWS\Temp\8350ab00-c367-43a4-b5b3-d410704363e9.tmp moved successfully.
C:\WINDOWS\Temp\8362dd55-a53d-4f36-9bcf-7d41fe5d6704.tmp moved successfully.
C:\WINDOWS\Temp\83709845-fc0e-4529-b111-395a5c9bbbb1.tmp moved successfully.
C:\WINDOWS\Temp\83870323-7eed-4e90-86a1-8c83e9892318.tmp moved successfully.
C:\WINDOWS\Temp\83888c34-5519-477a-9751-a1285fc236f2.tmp moved successfully.
C:\WINDOWS\Temp\8398bfc2-4359-4866-aae1-e3d7ffad9d93.tmp moved successfully.
C:\WINDOWS\Temp\83ea7c63-0880-4fe8-bf45-fbb331365a46.tmp moved successfully.
C:\WINDOWS\Temp\83eca5d4-a9b1-4e67-a176-9caa72f5cc53.tmp moved successfully.
C:\WINDOWS\Temp\84208ef2-6cf8-4a52-bd76-d1db17493655.tmp moved successfully.
C:\WINDOWS\Temp\843a3369-170e-466c-8f62-e366776952c5.tmp moved successfully.
C:\WINDOWS\Temp\845ec1b0-c845-4328-b7b4-f0135bdef4c6.tmp moved successfully.
C:\WINDOWS\Temp\849205c3-7609-4822-b011-bf7738aae66b.tmp moved successfully.
C:\WINDOWS\Temp\849e19bf-3a78-42a5-89c2-1514e301384c.tmp moved successfully.
C:\WINDOWS\Temp\84cd53cd-a9eb-4a5e-8dbe-5f90344ce5ab.tmp moved successfully.
C:\WINDOWS\Temp\84e3dc9f-7de2-47aa-9b09-aee2109490f8.tmp moved successfully.
C:\WINDOWS\Temp\853e7984-6430-46d6-9084-71bfc25e4f22.tmp moved successfully.
C:\WINDOWS\Temp\8569770b-4529-4a7d-8279-712272c89e87.tmp moved successfully.
C:\WINDOWS\Temp\857f1adf-43b3-4ff4-b9f0-689aa453cff1.tmp moved successfully.
C:\WINDOWS\Temp\85a1d2e2-3c42-4f29-9c3c-24040caa9b95.tmp moved successfully.
C:\WINDOWS\Temp\8619e94e-4eb6-46b9-9586-da5b0f3c0431.tmp moved successfully.
C:\WINDOWS\Temp\865bee31-e115-40c0-895e-4492110ab03e.tmp moved successfully.
C:\WINDOWS\Temp\86a966ab-990a-4997-ab16-4eec6d4e35cd.tmp moved successfully.
C:\WINDOWS\Temp\86b10c16-9478-43d1-a8aa-811ae5effdfc.tmp moved successfully.
C:\WINDOWS\Temp\873bd848-cfa6-4e81-99ac-cffe5a7d9d10.tmp moved successfully.
C:\WINDOWS\Temp\879bb748-14a5-45da-acb7-8115b52f5fe8.tmp moved successfully.
C:\WINDOWS\Temp\87a60275-7793-46cb-92ab-4054948ee4c1.tmp moved successfully.
C:\WINDOWS\Temp\87b4325b-ea4e-4a37-8ef0-08bb9e2e484a.tmp moved successfully.
C:\WINDOWS\Temp\880b92b8-4223-4551-b263-817fae17aa7a.tmp moved successfully.
C:\WINDOWS\Temp\88264e3d-e96a-4f99-be73-1b394dbf8e21.tmp moved successfully.
C:\WINDOWS\Temp\890ef5ce-c7c0-4682-a4ff-960b2db4093d.tmp moved successfully.
C:\WINDOWS\Temp\897da8c7-7a5f-461a-8fb0-016040dbc67a.tmp moved successfully.
C:\WINDOWS\Temp\898394d0-8036-4295-9398-001698b4a95a.tmp moved successfully.
C:\WINDOWS\Temp\8995ece2-c2ce-46a5-b195-84d8264ae086.tmp moved successfully.
C:\WINDOWS\Temp\89967306-3f6c-49b1-ad8d-a3b00c234ea8.tmp moved successfully.
C:\WINDOWS\Temp\89ada6bf-db01-4baa-88ea-436bd1b3bcc2.tmp moved successfully.
C:\WINDOWS\Temp\89b17fb1-f490-4192-9cfb-98fec86ab3b6.tmp moved successfully.
C:\WINDOWS\Temp\8a2a400b-b503-4ab1-9a16-29c79994fe9f.tmp moved successfully.
C:\WINDOWS\Temp\8a62a79c-dc72-416f-a415-451fbe09a687.tmp moved successfully.
C:\WINDOWS\Temp\8a77edc9-b3ea-4418-b45a-a7f5977e126d.tmp moved successfully.
C:\WINDOWS\Temp\8a8f9e0b-2812-40e3-a4d5-973eb3842fc7.tmp moved successfully.
C:\WINDOWS\Temp\8aa63552-5430-4325-836a-9f753fefe368.tmp moved successfully.
C:\WINDOWS\Temp\8ab8b033-9bfd-48d5-8590-0afb3da1a8ed.tmp moved successfully.
C:\WINDOWS\Temp\8afc7606-0dc8-47d6-86e0-c2c183f0bf7f.tmp moved successfully.
C:\WINDOWS\Temp\8b136dba-364a-4446-83d0-ce52b960cb94.tmp moved successfully.
C:\WINDOWS\Temp\8b5f1e9d-9a29-49e4-a03f-dbcd5a7ce7a2.tmp moved successfully.
C:\WINDOWS\Temp\8b639115-d07b-45e8-b9dc-9e0b199ef471.tmp moved successfully.
C:\WINDOWS\Temp\8bbb873e-35ab-493e-beb5-60e04afa1570.tmp moved successfully.
C:\WINDOWS\Temp\8bf72189-0ff1-4b99-9fbc-86b5f7771415.tmp moved successfully.
C:\WINDOWS\Temp\8c084b10-0396-45f2-ac6d-90670dc60aa2.tmp moved successfully.
C:\WINDOWS\Temp\8c34f37f-b207-4b87-8aee-ab27c6201ef0.tmp moved successfully.
C:\WINDOWS\Temp\8c525e93-9796-47ba-9ae1-459bc5b6c561.tmp moved successfully.
C:\WINDOWS\Temp\8c587065-bd3e-48f3-8934-9f0ca85c151b.tmp moved successfully.
C:\WINDOWS\Temp\8c69557a-fe89-42a7-896f-8c76a5421cec.tmp moved successfully.
C:\WINDOWS\Temp\8c9cd791-13ac-41a8-a245-5919d3e26b60.tmp moved successfully.
C:\WINDOWS\Temp\8cb29d3a-f8f2-465f-962a-f66a3a304886.tmp moved successfully.
C:\WINDOWS\Temp\8cd99085-8d2f-496b-a44a-d6654d48ef1e.tmp moved successfully.
C:\WINDOWS\Temp\8d3c0bb8-51d8-4f40-8ceb-fa78ebffe96a.tmp moved successfully.
C:\WINDOWS\Temp\8d4723a1-6220-441f-bb60-b0f8e86bdccd.tmp moved successfully.
C:\WINDOWS\Temp\8d6f0a65-ff9e-4654-ac68-97d2fb6622e5.tmp moved successfully.
C:\WINDOWS\Temp\8da3f1ca-a6c9-4adf-a64e-127fba7532a2.tmp moved successfully.
C:\WINDOWS\Temp\8da718f6-7b80-47c3-a780-99cf5d120761.tmp moved successfully.
C:\WINDOWS\Temp\8dab0063-c107-46be-a72c-d2718b4921d5.tmp moved successfully.
C:\WINDOWS\Temp\8de7478e-77af-43a3-bd0d-f3b01e1ac0ad.tmp moved successfully.
C:\WINDOWS\Temp\8dfb06d6-c354-447b-b78d-5b3508d73f78.tmp moved successfully.
C:\WINDOWS\Temp\8e61a454-c811-4bd9-9dac-5be863c1a6ac.tmp moved successfully.
C:\WINDOWS\Temp\8e676013-9105-421e-93db-fbe0d6b2d57c.tmp moved successfully.
C:\WINDOWS\Temp\8e81967a-8f81-4c78-bd43-a0eb16dd642e.tmp moved successfully.
C:\WINDOWS\Temp\8eb20b28-08b2-4583-98df-68dd0003e2fb.tmp moved successfully.
C:\WINDOWS\Temp\8edb3745-e420-475e-af3d-02985513a775.tmp moved successfully.
C:\WINDOWS\Temp\8f104041-7e3a-4bee-bf5e-ff9653c5e0ea.tmp moved successfully.
C:\WINDOWS\Temp\8f252f9f-d02b-41bf-b472-568497f5cb6b.tmp moved successfully.
C:\WINDOWS\Temp\8f9fc96a-94a0-4e7e-b27e-51e66cbc126f.tmp moved successfully.
C:\WINDOWS\Temp\8fd68ac2-4f7e-4caf-a0fa-573103dc1705.tmp moved successfully.
C:\WINDOWS\Temp\8feb3862-23d0-4d5b-b3f5-c1522f984d90.tmp moved successfully.
C:\WINDOWS\Temp\9004d25d-8b82-495d-9c5f-c4f9dca03f11.tmp moved successfully.
C:\WINDOWS\Temp\908ba0c1-f193-49c6-a191-ec479e572348.tmp moved successfully.
C:\WINDOWS\Temp\9098c719-749f-48b7-a991-d0a36699ff80.tmp moved successfully.
C:\WINDOWS\Temp\90abb3bd-aa74-4528-bc8a-6d0ec48390bd.tmp moved successfully.
C:\WINDOWS\Temp\90b9ad72-71fb-47a4-ac98-36e85dcfbc18.tmp moved successfully.
C:\WINDOWS\Temp\911b1d2b-f71c-4ca3-8a31-160c66138d90.tmp moved successfully.
C:\WINDOWS\Temp\912bcd48-a452-4343-ab9e-345342c3c3f0.tmp moved successfully.
C:\WINDOWS\Temp\9130a155-566a-4bb1-a1aa-b60ccbb438e1.tmp moved successfully.
C:\WINDOWS\Temp\916116fc-e839-48db-8387-f3f4d18c972e.tmp moved successfully.
C:\WINDOWS\Temp\91ed96d0-2ce9-420c-8e45-5b9718e9aa3b.tmp moved successfully.
C:\WINDOWS\Temp\920ca204-defb-4817-8992-c7eaac9929a1.tmp moved successfully.
C:\WINDOWS\Temp\926169e2-f4b9-4e74-a245-c9229a1a903e.tmp moved successfully.
C:\WINDOWS\Temp\9263df93-319b-4190-89dc-5be94c67fd79.tmp moved successfully.
C:\WINDOWS\Temp\9283e02d-4a56-4ae3-9c43-8ddd9001c333.tmp moved successfully.
C:\WINDOWS\Temp\93413124-f6b3-4eb3-95ab-e3c08f23d037.tmp moved successfully.
C:\WINDOWS\Temp\93850c52-2141-44e1-a7cf-5e4fd2b67005.tmp moved successfully.
C:\WINDOWS\Temp\939e551a-bfe2-414b-9aca-502df573a772.tmp moved successfully.
C:\WINDOWS\Temp\93bcd676-b8c1-4b89-9049-a23883ae7bd7.tmp moved successfully.
C:\WINDOWS\Temp\93ffa042-3875-4326-9ae6-3a0aa5626eb3.tmp moved successfully.
C:\WINDOWS\Temp\941dc99e-7fec-49d4-a105-a7c4512d7d90.tmp moved successfully.
C:\WINDOWS\Temp\94e4389d-bc26-41d7-9450-b66a0ba066b8.tmp moved successfully.
C:\WINDOWS\Temp\94e6610e-5e57-4056-b580-56604b5fd8c4.tmp moved successfully.
C:\WINDOWS\Temp\95000b31-59c5-4b0d-ba09-0d5cc8270f79.tmp moved successfully.
C:\WINDOWS\Temp\9506a521-16aa-4271-ad94-fb9bad57aed5.tmp moved successfully.
C:\WINDOWS\Temp\955fa6d2-7973-45df-aeff-8188fd763370.tmp moved successfully.
C:\WINDOWS\Temp\95a5201a-9db1-42c7-902b-a4cc4ec69205.tmp moved successfully.
C:\WINDOWS\Temp\964704d0-124a-4609-9f3b-7bf0a72bd0be.tmp moved successfully.
C:\WINDOWS\Temp\96563a51-34c6-4e32-814e-a88b7f7af760.tmp moved successfully.
C:\WINDOWS\Temp\965be100-fcae-4907-9fe0-f460943e5cde.tmp moved successfully.
C:\WINDOWS\Temp\967e80b6-13f4-4555-a1c9-99fe053be37d.tmp moved successfully.
C:\WINDOWS\Temp\9689e9cb-14a0-486c-8ce3-6928e6f075ac.tmp moved successfully.
C:\WINDOWS\Temp\96b2840a-3864-4aa6-b919-e5aa8c481cf5.tmp moved successfully.
C:\WINDOWS\Temp\96ebbefe-83d7-4490-846a-a79646703163.tmp moved successfully.
C:\WINDOWS\Temp\96f2d37e-058d-4fe9-a44c-3c628509a299.tmp moved successfully.
C:\WINDOWS\Temp\970376e8-62f5-4318-adc3-b1469bcf4a83.tmp moved successfully.
C:\WINDOWS\Temp\9743d3dd-4279-4e4f-bd50-7517b05f1228.tmp moved successfully.
C:\WINDOWS\Temp\9746d298-75ff-4cb5-9c52-5c6f133d75d9.tmp moved successfully.
C:\WINDOWS\Temp\97644287-0da9-45a3-97b5-e07f339466bc.tmp moved successfully.
C:\WINDOWS\Temp\976c20d6-f0e0-4a8e-a955-0ba93e27a3fa.tmp moved successfully.
C:\WINDOWS\Temp\978683a1-b813-4f22-857c-a5adb7276183.tmp moved successfully.
C:\WINDOWS\Temp\979093ef-1f75-4e85-ad9d-c1ef068a93e8.tmp moved successfully.
C:\WINDOWS\Temp\97e4fc6b-ec2a-4c72-9d8a-a90b960cd8a1.tmp moved successfully.
C:\WINDOWS\Temp\97fcaaba-2e17-4101-bd83-ae677caf34fa.tmp moved successfully.
C:\WINDOWS\Temp\9824c67c-3958-46aa-8724-5a8456e267cb.tmp moved successfully.
C:\WINDOWS\Temp\982aadaa-92ee-43aa-8117-3a94ac9f0256.tmp moved successfully.
C:\WINDOWS\Temp\984cc741-0069-400a-a158-e984bf203400.tmp moved successfully.
C:\WINDOWS\Temp\985a624f-a6b9-4ef9-8aae-e9b11efd9df2.tmp moved successfully.
C:\WINDOWS\Temp\9878415f-86ba-4646-99e9-50878f9e72a3.tmp moved successfully.
C:\WINDOWS\Temp\987cbbab-7e10-49a1-a542-dc6d4ce6a62e.tmp moved successfully.
C:\WINDOWS\Temp\9886bf78-ce3c-45ce-8a90-bea161d49477.tmp moved successfully.
C:\WINDOWS\Temp\98d0ff58-4b6b-432f-907f-a9ba8cf25faa.tmp moved successfully.
C:\WINDOWS\Temp\98fc5c87-5277-49a5-a9a6-3dbf95717493.tmp moved successfully.
C:\WINDOWS\Temp\993255d5-8900-43e6-ba09-e75ad02e422d.tmp moved successfully.
C:\WINDOWS\Temp\994d4a78-2a54-4a7a-a813-df83323eff84.tmp moved successfully.
C:\WINDOWS\Temp\9981ad6d-8f74-44b8-aed6-35c82d11dd00.tmp moved successfully.
C:\WINDOWS\Temp\99aaac3a-42c2-483b-a043-1ac79944cbd0.tmp moved successfully.
C:\WINDOWS\Temp\99eb11be-11f6-49ee-a314-c3a2f0321bc6.tmp moved successfully.
C:\WINDOWS\Temp\99f6efc2-4150-405d-9df7-4a1c7a549b36.tmp moved successfully.
C:\WINDOWS\Temp\99fbd923-c6c8-4217-ab19-03961d3a7ae3.tmp moved successfully.
C:\WINDOWS\Temp\9a1e76b2-6687-4b6a-8c69-b8088d12f3f0.tmp moved successfully.
C:\WINDOWS\Temp\9a32da06-cd89-4174-8805-51505ffded32.tmp moved successfully.
C:\WINDOWS\Temp\9a391741-a34b-49c8-a1d6-2bc360c78c42.tmp moved successfully.
C:\WINDOWS\Temp\9a491a79-9973-457f-939e-5981b0200526.tmp moved successfully.
C:\WINDOWS\Temp\9a4d1bee-eef0-4986-b534-c55318e9c537.tmp moved successfully.
C:\WINDOWS\Temp\9a9cb43f-9856-4d20-924f-0b70e73dfab9.tmp moved successfully.
C:\WINDOWS\Temp\9abad6fa-5560-4fb2-b8d5-1ed720572b35.tmp moved successfully.
C:\WINDOWS\Temp\9b008646-c10e-406c-ae65-fa7ddfe292cd.tmp moved successfully.
C:\WINDOWS\Temp\9b047a35-24a6-40de-925e-37236734f279.tmp moved successfully.
C:\WINDOWS\Temp\9b30428c-5f46-40d6-9796-04eec4f10bcb.tmp moved successfully.
C:\WINDOWS\Temp\9b318adf-b2f8-4759-a6b2-60d003116893.tmp moved successfully.
C:\WINDOWS\Temp\9b52ca38-5ae3-4c95-b9a0-e071bc10e897.tmp moved successfully.
C:\WINDOWS\Temp\9b533ef5-5daf-4b33-b33b-bd57195492b5.tmp moved successfully.
C:\WINDOWS\Temp\9b6c5d47-854b-46ff-aab4-e41574f63fe9.tmp moved successfully.
C:\WINDOWS\Temp\9b75b446-93d4-4642-867d-4127d4e3e20f.tmp moved successfully.
C:\WINDOWS\Temp\9b7bf275-a987-4156-adc4-9b724a5c4658.tmp moved successfully.
C:\WINDOWS\Temp\9b817df0-1420-4106-ae80-9bc19e0dde7b.tmp moved successfully.
C:\WINDOWS\Temp\9bb7776b-a993-4a24-973c-bf91be3ed925.tmp moved successfully.
C:\WINDOWS\Temp\9bc641c9-7228-4a2a-8708-a985e75117a8.tmp moved successfully.
C:\WINDOWS\Temp\9bf035c3-7400-4019-a327-25bcb250e40e.tmp moved successfully.
C:\WINDOWS\Temp\9bf08015-b623-4ed8-94d5-21bf937d3a83.tmp moved successfully.
C:\WINDOWS\Temp\9c24b2cc-9f70-4122-bf6a-986f34b9a0b7.tmp moved successfully.
C:\WINDOWS\Temp\9c53352d-5cba-431d-b208-74d8a57ea7c2.tmp moved successfully.
C:\WINDOWS\Temp\9c766cae-6dcd-4fe4-b7e9-00a8d9fbe7de.tmp moved successfully.
C:\WINDOWS\Temp\9cc8aac5-5f3c-4ad4-97a9-92ebd3b4f76d.tmp moved successfully.
C:\WINDOWS\Temp\9cedb2aa-9b2d-4708-bd56-9043bc89a72b.tmp moved successfully.
C:\WINDOWS\Temp\9cee33e7-b055-4b9a-9b4a-db41339c934a.tmp moved successfully.
C:\WINDOWS\Temp\9cf839a8-34bc-4e04-8f1a-a7627fed4294.tmp moved successfully.
C:\WINDOWS\Temp\9d2691b1-dbaa-4784-848f-781004e1515a.tmp moved successfully.
C:\WINDOWS\Temp\9d69cb86-2296-44fe-bef1-f157623cb174.tmp moved successfully.
C:\WINDOWS\Temp\9d839f4d-f0f0-412f-9854-eda98b93a274.tmp moved successfully.
C:\WINDOWS\Temp\9d9c6a8c-b5fe-43c6-b630-8ff957da2aa2.tmp moved successfully.
C:\WINDOWS\Temp\9dddf3e5-6414-4778-97f6-14b8c4e62239.tmp moved successfully.
C:\WINDOWS\Temp\9e008acc-9404-4fce-a0ee-e4ceddbe9d65.tmp moved successfully.
C:\WINDOWS\Temp\9e851e97-d1dd-4d85-a7c5-4ebacc42cd92.tmp moved successfully.
C:\WINDOWS\Temp\9e8f0c16-2856-4fc5-adc8-ed4e6d3e6e67.tmp moved successfully.
C:\WINDOWS\Temp\9ee58a9b-168f-4b82-9c0e-687996435f0e.tmp moved successfully.
C:\WINDOWS\Temp\9eedd9ff-7a32-444a-b183-2b4c48284237.tmp moved successfully.
C:\WINDOWS\Temp\9f4449cb-44ca-4977-ae81-d3ec24e78d3c.tmp moved successfully.
C:\WINDOWS\Temp\9f4fb9c1-c78a-4e27-bfe0-ede68d1380ee.tmp moved successfully.
C:\WINDOWS\Temp\9f8f14bc-8c71-4540-872c-3dc086f16812.tmp moved successfully.
C:\WINDOWS\Temp\9fa3b128-0cf8-4af5-8c7e-7363579c1da0.tmp moved successfully.
C:\WINDOWS\Temp\9fac0b0e-9486-4276-a4ba-052f8341481c.tmp moved successfully.
C:\WINDOWS\Temp\9fc4abe2-a39f-40b0-b99f-5c8712be80d8.tmp moved successfully.
C:\WINDOWS\Temp\9fc88b7c-2dfd-4795-a508-9777617575ad.tmp moved successfully.
C:\WINDOWS\Temp\9fdb0077-0c53-4dcc-892a-2d24f161b82f.tmp moved successfully.
C:\WINDOWS\Temp\a0158965-146d-42f4-9d75-65592301252b.tmp moved successfully.
C:\WINDOWS\Temp\a06e2f1d-b10b-4bf5-86b8-5cf495a607d9.tmp moved successfully.
C:\WINDOWS\Temp\a07ee41b-ec0a-40af-8b60-59f5381aa2f2.tmp moved successfully.
C:\WINDOWS\Temp\a083b734-5e31-455e-b3f5-5bd74c5c53ab.tmp moved successfully.
C:\WINDOWS\Temp\a08c831c-c695-46db-8338-430fce5acce6.tmp moved successfully.
C:\WINDOWS\Temp\a0f66109-c71c-4e05-b7dc-2daa58901432.tmp moved successfully.
C:\WINDOWS\Temp\a0fea2ec-1963-43d9-a8f8-8165efa5b55a.tmp moved successfully.
C:\WINDOWS\Temp\a103c245-2c16-4a66-b66e-3f0d941b635c.tmp moved successfully.
C:\WINDOWS\Temp\a104862e-1e46-473d-abad-379cd3a8ac47.tmp moved successfully.
C:\WINDOWS\Temp\a136b824-f95f-4ac3-bc74-d2d46a049380.tmp moved successfully.
C:\WINDOWS\Temp\a1768b02-270a-4ab2-8086-8de063592c02.tmp moved successfully.
C:\WINDOWS\Temp\a184b7fb-4612-4682-878d-2b6ffc3eedee.tmp moved successfully.
C:\WINDOWS\Temp\a1b7c51c-414a-4708-ba60-ebc37d7c2b86.tmp moved successfully.
C:\WINDOWS\Temp\a1d8ff9b-41ce-4b0c-a2d3-17b353066550.tmp moved successfully.
C:\WINDOWS\Temp\a1e23f3a-c69b-4d45-b2f1-52c74dfa6929.tmp moved successfully.
C:\WINDOWS\Temp\a21299f1-d070-4e25-b770-28c64c889a86.tmp moved successfully.
C:\WINDOWS\Temp\a22b110a-9156-4da5-b1e2-056b397ba583.tmp moved successfully.
C:\WINDOWS\Temp\a2508611-2053-45bb-aa5b-7a75b1e63d45.tmp moved successfully.
C:\WINDOWS\Temp\a2adba7b-2f19-4584-a355-40e86a671682.tmp moved successfully.
C:\WINDOWS\Temp\a30eec62-8099-4377-951e-c72c8ea6d169.tmp moved successfully.
C:\WINDOWS\Temp\a31a3b36-5f0b-40e7-925e-01b20351595a.tmp moved successfully.
C:\WINDOWS\Temp\a333db0b-74ff-4b63-86bd-2300b1749332.tmp moved successfully.
C:\WINDOWS\Temp\a334b15b-e6db-49e9-9ed4-2876993ba13a.tmp moved successfully.
C:\WINDOWS\Temp\a3679af3-bfc2-406f-8b63-4882c41af736.tmp moved successfully.
C:\WINDOWS\Temp\a3a9d1da-ac20-470c-b00d-ccfc9114b298.tmp moved successfully.
C:\WINDOWS\Temp\a3f43297-fb48-4fd0-8ba3-b3ecf5ea4a22.tmp moved successfully.
C:\WINDOWS\Temp\a4ac3dbe-133a-4ff3-bc20-ea1b492f1ab2.tmp moved successfully.
C:\WINDOWS\Temp\a4c6f1ae-ea49-4320-bba6-e0b4e0d059a4.tmp moved successfully.
C:\WINDOWS\Temp\a4e37310-bdd6-4ebd-abf0-27df140d4951.tmp moved successfully.
C:\WINDOWS\Temp\a4ed78d1-4618-4f68-be3b-bef57f04fab7.tmp moved successfully.
C:\WINDOWS\Temp\a50ac11b-fa45-4e19-8555-9cce95db2cfd.tmp moved successfully.
C:\WINDOWS\Temp\a57cf153-d975-474a-8be2-7df69baedec6.tmp moved successfully.
C:\WINDOWS\Temp\a59adfd1-2461-4c69-932e-47b3b87d9a30.tmp moved successfully.
C:\WINDOWS\Temp\a6019c33-e753-474e-a52d-993b5014ef56.tmp moved successfully.
C:\WINDOWS\Temp\a603f3fb-8c52-4684-a719-e40d1fb25357.tmp moved successfully.
C:\WINDOWS\Temp\a64b6277-dfa2-4479-8d3b-5e9e9676afe7.tmp moved successfully.
C:\WINDOWS\Temp\a6e42b45-5a5e-49e2-aabe-ab166e0903ab.tmp moved successfully.
C:\WINDOWS\Temp\a708bb4d-0739-4e9f-8d70-325cfe6a1c53.tmp moved successfully.
C:\WINDOWS\Temp\a73be469-4c7b-48b0-902a-dac21044c3a4.tmp moved successfully.
C:\WINDOWS\Temp\a7703ade-a040-4efa-b293-c2efef486020.tmp moved successfully.
C:\WINDOWS\Temp\a79a6aaf-b267-4c54-b44c-8c24464e5f5f.tmp moved successfully.
C:\WINDOWS\Temp\a79f9d62-85b6-4850-b111-d68c08ae98b8.tmp moved successfully.
C:\WINDOWS\Temp\a7a4933e-41dd-4e9f-aac0-09ff20619d1d.tmp moved successfully.
C:\WINDOWS\Temp\a7b59936-34a9-4057-98e8-b2551ca88ea9.tmp moved successfully.
C:\WINDOWS\Temp\a7bdc4c5-b28f-4adf-b0ee-ce4f99c8c615.tmp moved successfully.
C:\WINDOWS\Temp\a7dea47e-1fa5-486f-b4e3-104cfda7a330.tmp moved successfully.
C:\WINDOWS\Temp\a822c22a-ca51-4706-84f9-bd37244172b8.tmp moved successfully.
C:\WINDOWS\Temp\a8468b50-7713-4750-a91f-6de297b1662c.tmp moved successfully.
C:\WINDOWS\Temp\a867b461-1188-4dc3-b6fb-00e0e0b2bb58.tmp moved successfully.
C:\WINDOWS\Temp\a87b4cec-0446-435e-9713-58c9ea990a2c.tmp moved successfully.
C:\WINDOWS\Temp\a8e32090-f901-4dad-b55a-a2d54b2c6fe3.tmp moved successfully.
C:\WINDOWS\Temp\a90d8d39-2152-41b3-bc27-84fe4cdfa216.tmp moved successfully.
C:\WINDOWS\Temp\a93b7620-7c0e-4c92-bd4a-a8f061e3ccf2.tmp moved successfully.
C:\WINDOWS\Temp\a996275a-3c96-444a-a954-6e834c49f6f2.tmp moved successfully.
C:\WINDOWS\Temp\a9f6b340-38a3-478c-ab03-0f2233517446.tmp moved successfully.
C:\WINDOWS\Temp\aa83dbdb-b3cc-4f51-9bf8-630b48215b0e.tmp moved successfully.
C:\WINDOWS\Temp\aa96fac3-3b48-48d5-a471-093588fe7fc2.tmp moved successfully.
C:\WINDOWS\Temp\aa996b87-2a50-4096-b544-3c19e8374b7b.tmp moved successfully.
C:\WINDOWS\Temp\aaa8ded9-816d-4fca-8327-c194a48a88ae.tmp moved successfully.
C:\WINDOWS\Temp\aacabe53-f6db-4ede-826e-1314f2a3e1a8.tmp moved successfully.
C:\WINDOWS\Temp\ab1e9b91-9b2f-4f87-8547-024066c4eaac.tmp moved successfully.
C:\WINDOWS\Temp\ab3f9939-858a-4ddf-a8a5-153c92a1f081.tmp moved successfully.
C:\WINDOWS\Temp\ab518cc9-f8a9-4de7-b3f5-b1aae5ad1cee.tmp moved successfully.
C:\WINDOWS\Temp\ababd1e0-5f4b-4c7d-adb8-349622d75ccf.tmp moved successfully.
C:\WINDOWS\Temp\ac6ca01b-12e7-4c43-bcc7-f56bbba77aa7.tmp moved successfully.
C:\WINDOWS\Temp\aca38a1c-803b-4a8f-9862-0021c3fe55ec.tmp moved successfully.
C:\WINDOWS\Temp\ad152395-1ed4-4345-ae07-af4a73fc87e5.tmp moved successfully.
C:\WINDOWS\Temp\ad3f5753-85ae-4a3c-a5fe-a3583bbc29c1.tmp moved successfully.
C:\WINDOWS\Temp\ad9b2289-951b-48bf-8169-1bf2d663be96.tmp moved successfully.
C:\WINDOWS\Temp\adacf830-64a2-4960-a71a-da810873dc92.tmp moved successfully.
C:\WINDOWS\Temp\adb425b2-1c9f-4866-ae1d-ac5ddb9dd71b.tmp moved successfully.
C:\WINDOWS\Temp\adc55647-f51b-4275-99e6-450b7f7d5f57.tmp moved successfully.
C:\WINDOWS\Temp\add36263-422b-44e2-8b45-e7c2dfaa53ec.tmp moved successfully.
C:\WINDOWS\Temp\ae7c91ca-e5ad-456e-856f-513fe9fd3909.tmp moved successfully.
C:\WINDOWS\Temp\af16bedb-373b-4061-aff2-978ee7531569.tmp moved successfully.
C:\WINDOWS\Temp\af1aa068-f5d4-4f83-aadd-bc6b6c6dcb3f.tmp moved successfully.
C:\WINDOWS\Temp\af2a87b0-67dc-4c32-9ec2-4d34d522194e.tmp moved successfully.
C:\WINDOWS\Temp\af2b9431-7f12-4f68-a295-874210975d6a.tmp moved successfully.
C:\WINDOWS\Temp\af5f4a46-0eac-4d5e-93f8-ad1244bc9dcf.tmp moved successfully.
C:\WINDOWS\Temp\af62e093-25e0-4c61-8a89-4b3419fb5340.tmp moved successfully.
C:\WINDOWS\Temp\af9fb5af-3aa2-4208-b6da-95ddca246991.tmp moved successfully.
C:\WINDOWS\Temp\b014d04e-721e-4211-a4d9-5aa9fb381434.tmp moved successfully.
C:\WINDOWS\Temp\b01e9750-6c30-46d2-b69d-a311f0ca0951.tmp moved successfully.
C:\WINDOWS\Temp\b021a38c-b8ed-476d-9a72-c3788d1db11e.tmp moved successfully.
C:\WINDOWS\Temp\b0399f21-6f38-41f8-bb9c-afc48b5024ee.tmp moved successfully.
C:\WINDOWS\Temp\b05296bd-234f-4e69-916d-51efea6bbfaa.tmp moved successfully.
C:\WINDOWS\Temp\b0958c26-8bb4-4e5d-99ab-d817b5b94836.tmp moved successfully.
C:\WINDOWS\Temp\b0d7ebc3-f172-4097-be77-ad199ee1162a.tmp moved successfully.
C:\WINDOWS\Temp\b0dc9ff3-cbb6-4160-8062-6707cf74bda8.tmp moved successfully.
C:\WINDOWS\Temp\b0e53d7f-4aea-4544-b72a-1b59dd44256f.tmp moved successfully.
C:\WINDOWS\Temp\b0ffcda0-219f-4511-b201-f5242370d924.tmp moved successfully.
C:\WINDOWS\Temp\b12a80af-4314-4abd-b233-3f62d3e2c266.tmp moved successfully.
C:\WINDOWS\Temp\b13d2e8e-0357-4e63-8ce7-0316d71878db.tmp moved successfully.
C:\WINDOWS\Temp\b1a369b2-b6fd-43f5-9f6d-d5961643e3fe.tmp moved successfully.
C:\WINDOWS\Temp\b1c54678-efd7-4949-94df-2da644bfff18.tmp moved successfully.
C:\WINDOWS\Temp\b1ff8707-ea09-46ef-85fe-53c5cb95d7a0.tmp moved successfully.
C:\WINDOWS\Temp\b226dfa6-ebfb-40e5-aef9-d8ea151e5bca.tmp moved successfully.
C:\WINDOWS\Temp\b23cba9e-c9f4-4e89-bf29-b7dcef5f8564.tmp moved successfully.
C:\WINDOWS\Temp\b26a0a07-e675-42ed-9505-2e3701a1b6c7.tmp moved successfully.
C:\WINDOWS\Temp\b2ee3890-5357-485a-ae55-6942ea076172.tmp moved successfully.
C:\WINDOWS\Temp\b3256ea4-044c-49a8-9778-b6899f1f0cef.tmp moved successfully.
C:\WINDOWS\Temp\b329e508-8976-4106-87d9-d8abb055ba41.tmp moved successfully.
C:\WINDOWS\Temp\b33a5ff0-b0cb-4557-a144-024574af9c2a.tmp moved successfully.
C:\WINDOWS\Temp\b34db11b-89ec-4aed-a13c-b22e957f5253.tmp moved successfully.
C:\WINDOWS\Temp\b3891828-ec3a-4194-8690-c462060bd9cb.tmp moved successfully.
C:\WINDOWS\Temp\b3b68779-a19e-4add-8217-81b3fbfd1469.tmp moved successfully.
C:\WINDOWS\Temp\b3c0fd48-ccc5-41c5-bef1-f05e489e4e55.tmp moved successfully.
C:\WINDOWS\Temp\b3d0ea3e-8e24-4e12-a473-2698cefbb6a9.tmp moved successfully.
C:\WINDOWS\Temp\b4367d35-9548-4658-8d00-63330922b942.tmp moved successfully.
C:\WINDOWS\Temp\b4968b8c-d83a-4128-a14c-f430d40b6af3.tmp moved successfully.
C:\WINDOWS\Temp\b49a5ceb-2e45-4e76-a7c8-3b8e0208c168.tmp moved successfully.
C:\WINDOWS\Temp\b49d9584-6231-4baa-a317-8fda138879a9.tmp moved successfully.
C:\WINDOWS\Temp\b4c8b7db-495e-41f2-b936-7501330e5666.tmp moved successfully.
C:\WINDOWS\Temp\b4daae4c-4f21-4c55-873a-bb1f6d84e9a9.tmp moved successfully.
C:\WINDOWS\Temp\b4f7b3e5-5173-4fa4-9db9-c23e3485a6f7.tmp moved successfully.
C:\WINDOWS\Temp\b5072057-1bc7-40be-8661-68fe29157d70.tmp moved successfully.
C:\WINDOWS\Temp\b514ff1d-5854-46f1-9a11-caf0bb167bda.tmp moved successfully.
C:\WINDOWS\Temp\b56075e8-a988-4a26-8d45-04047d19ddb6.tmp moved successfully.
C:\WINDOWS\Temp\b59095b6-f6c1-4c37-a267-b7dc635b80d6.tmp moved successfully.
C:\WINDOWS\Temp\b5b32309-6708-4735-bc44-43b2d1205d9f.tmp moved successfully.
C:\WINDOWS\Temp\b5db5ced-2e00-4b22-97ec-fb161e6c049f.tmp moved successfully.
C:\WINDOWS\Temp\b60cadd1-7bab-44ec-8829-d3633e7a115c.tmp moved successfully.
C:\WINDOWS\Temp\b62fac2d-ad4f-4786-b351-76b9c9405848.tmp moved successfully.
C:\WINDOWS\Temp\b6694d5e-e357-4dd8-b46a-db7da536d4b9.tmp moved successfully.
C:\WINDOWS\Temp\b687eca3-79f4-493c-af0e-3f7235c7b474.tmp moved successfully.
C:\WINDOWS\Temp\b68d012f-b6df-4495-a100-8972df0b5d56.tmp moved successfully.
C:\WINDOWS\Temp\b6a3a242-b8c5-430b-9d18-045265a81718.tmp moved successfully.
C:\WINDOWS\Temp\b6d1a81f-7629-4b92-b563-854c26f98a2d.tmp moved successfully.
C:\WINDOWS\Temp\b7032174-6405-43dc-88d1-fd8f87c608f6.tmp moved successfully.
C:\WINDOWS\Temp\b75721b5-4cff-43a2-a170-0cc8151ee9c8.tmp moved successfully.
C:\WINDOWS\Temp\b7d34359-d55b-48af-a33e-b75c2ea6df04.tmp moved successfully.
C:\WINDOWS\Temp\b8018701-e2ff-4b60-af9a-052cf0ae482a.tmp moved successfully.
C:\WINDOWS\Temp\b842a52c-781e-49af-ab90-c71c232d1cd9.tmp moved successfully.
C:\WINDOWS\Temp\b8865a97-6462-49bf-ab8e-a704a19c6a31.tmp moved successfully.
C:\WINDOWS\Temp\b8880d0c-16d5-46a6-8b6b-1183ad9db235.tmp moved successfully.
C:\WINDOWS\Temp\b8e30f72-c6c1-4b98-b418-f2bf7c4b7b01.tmp moved successfully.
C:\WINDOWS\Temp\b91bc6fc-a4fd-4f54-a797-b96df993795b.tmp moved successfully.
C:\WINDOWS\Temp\b921f5c3-2974-40f5-8e98-a5f069df1032.tmp moved successfully.
C:\WINDOWS\Temp\b92e4685-6174-4342-a190-d3456eea3ddc.tmp moved successfully.
C:\WINDOWS\Temp\b9f5d75f-6bcd-4768-8908-13cc416ff03f.tmp moved successfully.
C:\WINDOWS\Temp\ba10aafa-e8f3-4f3e-8806-2ad3c49fb765.tmp moved successfully.
C:\WINDOWS\Temp\ba20bdab-fe60-4886-a875-a7b50d2c4f93.tmp moved successfully.
C:\WINDOWS\Temp\ba47157d-3dc3-40f9-820d-652401d01e32.tmp moved successfully.
C:\WINDOWS\Temp\ba7afedb-f8b1-4b61-a4ba-8ad2bcea0b56.tmp moved successfully.
C:\WINDOWS\Temp\ba8a2e76-b2b6-4310-a8c7-e3942673b1f6.tmp moved successfully.
C:\WINDOWS\Temp\bab2a42b-ae4f-4f09-af3f-f3d857c56e87.tmp moved successfully.
C:\WINDOWS\Temp\bacb09ef-9020-48bb-93a8-03d3eb770c91.tmp moved successfully.
C:\WINDOWS\Temp\bace6b38-532f-4768-b7e1-52a9142fb6c9.tmp moved successfully.
C:\WINDOWS\Temp\bb27585b-bec3-452c-b6da-db82bbef68b3.tmp moved successfully.
C:\WINDOWS\Temp\bb3d8a59-3862-4183-8ea3-f4c37b94796e.tmp moved successfully.
C:\WINDOWS\Temp\bb3f9e6f-20d0-48d5-9fff-d2f1bd0f6240.tmp moved successfully.
C:\WINDOWS\Temp\bb476a5d-5d07-4c70-8992-e653c769f5a7.tmp moved successfully.
C:\WINDOWS\Temp\bb510f83-8bfb-440f-a628-fed9a2e92088.tmp moved successfully.
C:\WINDOWS\Temp\bb5493a8-1f03-4d20-a008-4986045a9617.tmp moved successfully.
C:\WINDOWS\Temp\bb87d4cd-743a-4b3d-84ad-231c50c5e304.tmp moved successfully.
C:\WINDOWS\Temp\bb940c8d-82a7-4760-ad79-aa4aff8e8a91.tmp moved successfully.
C:\WINDOWS\Temp\bb96c6e2-b72e-47df-b49c-5e9995063418.tmp moved successfully.
C:\WINDOWS\Temp\bba02563-f357-4f5d-9120-1f8eac0124c9.tmp moved successfully.
C:\WINDOWS\Temp\bbb21cda-daa1-4a61-b968-25c0ab1fd56f.tmp moved successfully.
C:\WINDOWS\Temp\bbdc9ce4-a217-4176-89c9-55bd9065b05e.tmp moved successfully.
C:\WINDOWS\Temp\bc06079a-9051-40ff-a19a-82053b0f2074.tmp moved successfully.
C:\WINDOWS\Temp\bc0a11d7-e7c2-4c1c-8463-375616aecb79.tmp moved successfully.
C:\WINDOWS\Temp\bc4a71b9-1afa-40f0-892d-26ff9df836bb.tmp moved successfully.
C:\WINDOWS\Temp\bc86dab9-b65e-4c16-9c7d-ed15648d804f.tmp moved successfully.
C:\WINDOWS\Temp\bcffbedc-9c7e-4734-a47d-a48ee02a3b2d.tmp moved successfully.
C:\WINDOWS\Temp\bd0af7a1-80be-4675-a899-55e6164efae7.tmp moved successfully.
C:\WINDOWS\Temp\bd2fc95b-f6de-4d9a-bbcf-dfbb711f92f6.tmp moved successfully.
C:\WINDOWS\Temp\bd3f54b6-5df0-40db-aa9c-9766680475c5.tmp moved successfully.
C:\WINDOWS\Temp\bd44bc9b-db73-4ec7-b397-e0599db8e64d.tmp moved successfully.
C:\WINDOWS\Temp\bd4b422f-df96-4ffd-964e-0ccf82a4fc6d.tmp moved successfully.
C:\WINDOWS\Temp\bdc17bb0-d547-428b-b12d-2270f0669503.tmp moved successfully.
C:\WINDOWS\Temp\bdeb2fec-4ecb-49d2-ab3e-1cef65a5aa3b.tmp moved successfully.
C:\WINDOWS\Temp\bdeee261-003e-46b9-8c1b-866d71a7f23f.tmp moved successfully.
C:\WINDOWS\Temp\be19e983-8542-429a-a6ea-5519b0740086.tmp moved successfully.
C:\WINDOWS\Temp\be4dcfe8-3146-4466-be4a-9bbc8e291260.tmp moved successfully.
C:\WINDOWS\Temp\be69d4ba-45dd-4850-a1b7-074e87a1324f.tmp moved successfully.
C:\WINDOWS\Temp\be85fb6e-051b-47fc-9197-64d75ed43bde.tmp moved successfully.
C:\WINDOWS\Temp\be9436d5-95e7-4cdf-b128-3041c38fe69f.tmp moved successfully.
C:\WINDOWS\Temp\beb25f25-1c4e-454c-85bd-1dd2e40abab5.tmp moved successfully.
C:\WINDOWS\Temp\bebe050c-539b-4e6f-9ca6-46dca9c36174.tmp moved successfully.
C:\WINDOWS\Temp\bed1b7d2-870a-4c11-9253-7454590c9d23.tmp moved successfully.
C:\WINDOWS\Temp\bef858fd-edf3-4f24-9658-bacf132ce1b7.tmp moved successfully.
C:\WINDOWS\Temp\befcb273-f4d8-46bc-a74f-0af25d64664e.tmp moved successfully.
C:\WINDOWS\Temp\bf20b57d-8288-4476-8207-e9a4441ecdb6.tmp moved successfully.
C:\WINDOWS\Temp\bf379328-9c16-4cda-9d0d-c3053ffc3430.tmp moved successfully.
C:\WINDOWS\Temp\bf5c69c3-a5d9-4f5a-b3f6-f78a81363414.tmp moved successfully.
C:\WINDOWS\Temp\bf63ba21-1e40-4f00-b132-645e3026f6a2.tmp moved successfully.
C:\WINDOWS\Temp\bf70ff61-3e09-4f18-bf57-59a5fabdde30.tmp moved successfully.
C:\WINDOWS\Temp\bf817d2f-d989-4d64-b6bb-ed046a294651.tmp moved successfully.
C:\WINDOWS\Temp\bfb20ecc-d001-4736-b0c1-87f41b4eeed8.tmp moved successfully.
C:\WINDOWS\Temp\bfb365d3-6da6-44ea-b65a-c24401b2d5fa.tmp moved successfully.
C:\WINDOWS\Temp\bfd51208-906e-48eb-be22-0a056ed79c7e.tmp moved successfully.
C:\WINDOWS\Temp\bfd9770c-7473-4d3a-a5ef-df549d7ba215.tmp moved successfully.
C:\WINDOWS\Temp\bfe63ec2-bca9-4380-9ef6-840c109cdb64.tmp moved successfully.
C:\WINDOWS\Temp\c09cac83-187f-46a9-8840-0ef576c1290c.tmp moved successfully.
C:\WINDOWS\Temp\c0abd876-5cda-401b-957b-b76569a4ceaf.tmp moved successfully.
C:\WINDOWS\Temp\c0d45d66-8cc6-47aa-83e1-bc3bbbaf2ba0.tmp moved successfully.
C:\WINDOWS\Temp\c129075b-04c6-4ae1-956f-ac89a7db85e6.tmp moved successfully.
C:\WINDOWS\Temp\c1668e3f-5e60-4a8c-959f-c576ac1dbe6c.tmp moved successfully.
C:\WINDOWS\Temp\c17fd12d-549a-45bc-9c1f-63a3ec65af9f.tmp moved successfully.
C:\WINDOWS\Temp\c18b7af5-1e8a-4a3b-b7bc-365d9889be34.tmp moved successfully.
C:\WINDOWS\Temp\c1a2171b-d297-4d56-9b10-5259cc11d774.tmp moved successfully.
C:\WINDOWS\Temp\c1d69af9-cac0-4f39-a903-259e8aeebd0f.tmp moved successfully.
C:\WINDOWS\Temp\c21782f3-ba87-49d8-b83d-b3f66bc05bab.tmp moved successfully.
C:\WINDOWS\Temp\c24f1c88-3af5-4d2d-b40d-e8915b6111e7.tmp moved successfully.
C:\WINDOWS\Temp\c2670f7c-7388-4e1f-b392-10742330aa8b.tmp moved successfully.
C:\WINDOWS\Temp\c27c8cd3-0af6-4995-b7d5-1bd76b042d05.tmp moved successfully.
C:\WINDOWS\Temp\c2ac4912-c8a7-4a5e-87c1-65338a6b89a0.tmp moved successfully.
C:\WINDOWS\Temp\c2f53bf8-8254-413f-a63c-0e0d1f69fa29.tmp moved successfully.
C:\WINDOWS\Temp\c31e8abe-ec6e-41c0-8029-9e60e36f3e6b.tmp moved successfully.
C:\WINDOWS\Temp\c33b3883-89b3-4797-a232-db8450815cf0.tmp moved successfully.
C:\WINDOWS\Temp\c3624029-d2d8-438f-a1ac-b35442378ba7.tmp moved successfully.
C:\WINDOWS\Temp\c37e4adc-7a12-43d4-87ce-c9962119146c.tmp moved successfully.
C:\WINDOWS\Temp\c3914501-b68e-4bb7-802d-3e2f5d86e274.tmp moved successfully.
C:\WINDOWS\Temp\c3e2ee80-d912-4ae7-b125-c3aae1e97da9.tmp moved successfully.
C:\WINDOWS\Temp\c3e7251a-19b3-439d-ac68-ade030b53a20.tmp moved successfully.
C:\WINDOWS\Temp\c435d29e-007a-4e28-9a43-fba6de81e831.tmp moved successfully.
C:\WINDOWS\Temp\c43db6ce-707a-412d-901d-068bb0d78a29.tmp moved successfully.
C:\WINDOWS\Temp\c46fba67-673e-455b-a8e4-38d3f3ac620a.tmp moved successfully.
C:\WINDOWS\Temp\c4a20559-913d-4fac-a80d-85123a49b418.tmp moved successfully.
C:\WINDOWS\Temp\c5099651-aaf0-40b6-af08-238dd362bd03.tmp moved successfully.
C:\WINDOWS\Temp\c51d0726-234e-4cb5-8ffe-2aedc11cf945.tmp moved successfully.
C:\WINDOWS\Temp\c520bd89-2e4e-4f7a-8593-893a5e7ee702.tmp moved successfully.
C:\WINDOWS\Temp\c5440fc6-8ceb-490d-b534-42a9ed290a99.tmp moved successfully.
C:\WINDOWS\Temp\c553b755-4a71-4a32-a25c-7ce4877bb8a7.tmp moved successfully.
C:\WINDOWS\Temp\c567bfef-e9c9-428c-abf8-404cb158943a.tmp moved successfully.
C:\WINDOWS\Temp\c5a31688-ffa5-4fc1-bdf6-2e86b10c1694.tmp moved successfully.
C:\WINDOWS\Temp\c6101318-cc96-4a36-b748-456f80cfcbcc.tmp moved successfully.
C:\WINDOWS\Temp\c6266e87-dcb0-4a8a-b34e-6abd42e7495d.tmp moved successfully.
C:\WINDOWS\Temp\c631bba7-79b4-40f9-873f-dede764f9253.tmp moved successfully.
C:\WINDOWS\Temp\c65bec78-8cdb-4e53-89f8-a714cd559192.tmp moved successfully.
C:\WINDOWS\Temp\c6648cfc-1fd2-4814-a887-0568d831d7bf.tmp moved successfully.
C:\WINDOWS\Temp\c688a168-5282-471e-ab4c-fce2c124e9fd.tmp moved successfully.
C:\WINDOWS\Temp\c6b0ce91-e34a-4bb7-b73f-80db6238e408.tmp moved successfully.
C:\WINDOWS\Temp\c6b67cd5-7b6a-4ba8-a15b-71cf7f03ee3b.tmp moved successfully.
C:\WINDOWS\Temp\c6dbefee-b0da-4de0-851d-f20b670ce045.tmp moved successfully.
C:\WINDOWS\Temp\c791c523-098a-4d0d-b11c-84402078f892.tmp moved successfully.
C:\WINDOWS\Temp\c7991d15-5028-42ce-bce1-9634d66e5fd5.tmp moved successfully.
C:\WINDOWS\Temp\c856b99d-3c2a-411b-8b20-a28ceb2a488c.tmp moved successfully.
C:\WINDOWS\Temp\c86f5778-377f-4978-b83d-4fe37e9ca2e2.tmp moved successfully.
C:\WINDOWS\Temp\c8b25482-2952-4e88-a014-305fbc9b09d0.tmp moved successfully.
C:\WINDOWS\Temp\c8d766ee-68b6-4714-a1cd-bdc3e3da1f45.tmp moved successfully.
C:\WINDOWS\Temp\c8e6e8c1-cc55-4efc-b58f-e6619c559c5d.tmp moved successfully.
C:\WINDOWS\Temp\c930144c-6a6e-468f-a574-03d06f31fa9d.tmp moved successfully.
C:\WINDOWS\Temp\c96e81f4-8257-4f33-8f10-452dcd134649.tmp moved successfully.
C:\WINDOWS\Temp\c980e58d-bbad-441a-8a25-c2125bc6dff5.tmp moved successfully.
C:\WINDOWS\Temp\c98f5bcd-677d-4ceb-8e44-726589d4bfc6.tmp moved successfully.
C:\WINDOWS\Temp\c9a44d12-3274-49f9-bfcb-fe0d99bc339c.tmp moved successfully.
C:\WINDOWS\Temp\c9b2e826-b84c-4689-8166-be4fbd41b9f2.tmp moved successfully.
C:\WINDOWS\Temp\c9baf7c0-d865-40a9-a1be-4937adbcaa41.tmp moved successfully.
C:\WINDOWS\Temp\c9daebe0-b973-4467-8996-02317c894944.tmp moved successfully.
C:\WINDOWS\Temp\c9ed8177-721b-4684-bbb2-a5382f67d5fb.tmp moved successfully.
C:\WINDOWS\Temp\ca2d3092-5ba1-4313-8f24-faa843f11ced.tmp moved successfully.
C:\WINDOWS\Temp\ca400dcf-ff3a-4611-a1d8-284b9baee0b9.tmp moved successfully.
C:\WINDOWS\Temp\ca61759e-2303-4b2b-90c2-3e023b6eee13.tmp moved successfully.
C:\WINDOWS\Temp\ca7cf939-02fa-4a23-ad80-1fab817d4047.tmp moved successfully.
C:\WINDOWS\Temp\caa810c3-183a-4177-8795-5c1ec6771a00.tmp moved successfully.
C:\WINDOWS\Temp\cb1f9a32-05a8-44c2-986b-9eec01bbce3f.tmp moved successfully.
C:\WINDOWS\Temp\cb459368-d82f-4a65-9fe1-7eeb08f51007.tmp moved successfully.
C:\WINDOWS\Temp\cb4d140a-b3cb-4ee1-b10a-555ef5ca6a5d.tmp moved successfully.
C:\WINDOWS\Temp\cbbfbd24-f4e5-44a5-93e3-d7c2dc6dcc69.tmp moved successfully.
C:\WINDOWS\Temp\cc91aa93-e7b3-48ac-a4a1-ae665631cddf.tmp moved successfully.

Uživatelský avatar
Dvori66
Návštěvník
Návštěvník
Příspěvky: 94
Registrován: 04 úno 2011 18:29
Kontaktovat uživatele:

Re: C:\WINDOWS\system32\cmd.exe maze subory

#26 Příspěvek od Dvori66 »

C:\WINDOWS\Temp\cca33c83-2ab1-4b8b-9eec-a11b926a599a.tmp moved successfully.
C:\WINDOWS\Temp\ccebfa38-2d76-45fa-b33c-b57d77c88ebe.tmp moved successfully.
C:\WINDOWS\Temp\ccf4d2a7-8d97-474d-a096-98d7f9e36978.tmp moved successfully.
C:\WINDOWS\Temp\ccf6a30c-b776-47b9-8062-095fad3cd91b.tmp moved successfully.
C:\WINDOWS\Temp\cd40bc3b-95f2-4bde-81fa-980f632dac04.tmp moved successfully.
C:\WINDOWS\Temp\cd4b112f-f4fa-46a4-88a7-d5d896bc1bb5.tmp moved successfully.
C:\WINDOWS\Temp\cd6b0edd-bfdd-439b-844a-a9e887413fee.tmp moved successfully.
C:\WINDOWS\Temp\cd898f3f-9744-4c7a-930e-ba08da2531b7.tmp moved successfully.
C:\WINDOWS\Temp\cdae6e7a-20c0-4894-8a9d-b3f551c30bc6.tmp moved successfully.
C:\WINDOWS\Temp\ce2b299d-eb33-425d-972b-d5148cb4fc96.tmp moved successfully.
C:\WINDOWS\Temp\ce409e52-f735-49b7-bbd5-862561d8a0ae.tmp moved successfully.
C:\WINDOWS\Temp\ce8848b2-21be-4a99-9995-99d20c9a6bfb.tmp moved successfully.
C:\WINDOWS\Temp\ce959a6e-7937-4e46-9248-07124cfe7a40.tmp moved successfully.
C:\WINDOWS\Temp\ceb1ba75-eff7-4b96-b005-8a1f262f69a6.tmp moved successfully.
C:\WINDOWS\Temp\cec43229-ea69-492d-b641-da509c60076b.tmp moved successfully.
C:\WINDOWS\Temp\cedd014f-22a2-46bf-b117-e76415ba15d3.tmp moved successfully.
C:\WINDOWS\Temp\cef619cd-893a-4c34-b5d4-457a72359a4b.tmp moved successfully.
C:\WINDOWS\Temp\cf11ef5b-34c1-4e06-a4da-7c790c222057.tmp moved successfully.
C:\WINDOWS\Temp\cf595be3-4dfc-477d-9b00-40272cddb9ca.tmp moved successfully.
C:\WINDOWS\Temp\cf9b9ba4-dce6-4212-8dab-4e5dbda7b84b.tmp moved successfully.
C:\WINDOWS\Temp\d01fbd6d-3310-4a8b-bd02-96e8362c989d.tmp moved successfully.
C:\WINDOWS\Temp\d0423e40-8c21-4253-930b-e9af6b7c314a.tmp moved successfully.
C:\WINDOWS\Temp\d068c56e-a325-4e9b-a9af-7c23755b0a0a.tmp moved successfully.
C:\WINDOWS\Temp\d0a7cd89-3d13-4ebb-ab82-b6e46a541682.tmp moved successfully.
C:\WINDOWS\Temp\d0c434f0-c695-4fce-8be5-15fd0df69d77.tmp moved successfully.
C:\WINDOWS\Temp\d0d7d802-b111-473f-8915-660817fa4ecc.tmp moved successfully.
C:\WINDOWS\Temp\d10a7fb4-891c-4c22-b4fd-1330ebf4dd08.tmp moved successfully.
C:\WINDOWS\Temp\d1300135-50c9-47cd-9805-0133d82b9b83.tmp moved successfully.
C:\WINDOWS\Temp\d164642a-b5e9-420c-9fc7-5878d3fe7aff.tmp moved successfully.
C:\WINDOWS\Temp\d18f99dc-5bb3-4cc1-a434-cb5d106ee114.tmp moved successfully.
C:\WINDOWS\Temp\d1b09491-0cf9-459b-9896-2a77e64225cc.tmp moved successfully.
C:\WINDOWS\Temp\d1bd903f-ed1e-4b36-90e5-68489a3f32a7.tmp moved successfully.
C:\WINDOWS\Temp\d25247f7-70dc-4089-be9e-77b4d3639647.tmp moved successfully.
C:\WINDOWS\Temp\d2916914-2e82-4a93-8a22-8da6fff926c0.tmp moved successfully.
C:\WINDOWS\Temp\d291df03-5d31-4fea-98ec-44f5a8671501.tmp moved successfully.
C:\WINDOWS\Temp\d2b14231-ebd8-4467-a849-6a6f972a40c2.tmp moved successfully.
C:\WINDOWS\Temp\d2d43026-98f5-4810-911e-35e85b0fc074.tmp moved successfully.
C:\WINDOWS\Temp\d30b1bed-e274-4bfd-835e-7b4bd4fb30c4.tmp moved successfully.
C:\WINDOWS\Temp\d33a4f22-a980-417d-9bde-701643d197e8.tmp moved successfully.
C:\WINDOWS\Temp\d3424f47-784d-44ea-8967-0d0ea3cd81fe.tmp moved successfully.
C:\WINDOWS\Temp\d37f73a2-22e6-41ed-9ca4-7d92a6dd9062.tmp moved successfully.
C:\WINDOWS\Temp\d3863ae9-e972-474a-8f66-e0a2399122cd.tmp moved successfully.
C:\WINDOWS\Temp\d3a59290-7981-4daf-a231-42040891eaf2.tmp moved successfully.
C:\WINDOWS\Temp\d3aca035-54cf-48d0-9698-831f64b614ed.tmp moved successfully.
C:\WINDOWS\Temp\d4270596-55f2-44c1-9c05-508b760bbd05.tmp moved successfully.
C:\WINDOWS\Temp\d43170e4-6207-4b33-b593-ba346991b0bb.tmp moved successfully.
C:\WINDOWS\Temp\d45f6454-ba5c-4529-b347-a23d9d593e32.tmp moved successfully.
C:\WINDOWS\Temp\d49038db-8b5d-44fd-a8bf-a3304b64c8c0.tmp moved successfully.
C:\WINDOWS\Temp\d495c83d-6547-4068-a6fa-434e2c82e401.tmp moved successfully.
C:\WINDOWS\Temp\d4ec1b19-abbf-468d-a515-4efa219d0330.tmp moved successfully.
C:\WINDOWS\Temp\d5050be8-787f-4e06-82f4-1c9c2793937a.tmp moved successfully.
C:\WINDOWS\Temp\d5b74ccf-b521-42ef-99e8-46b9ec19f23a.tmp moved successfully.
C:\WINDOWS\Temp\d5d21f9c-6404-4ec0-8b90-021fdb18009e.tmp moved successfully.
C:\WINDOWS\Temp\d5d7a91d-b5ff-4a52-850b-8d781318b741.tmp moved successfully.
C:\WINDOWS\Temp\d5dc2ff1-abee-4bc4-8df6-dd76f0244f67.tmp moved successfully.
C:\WINDOWS\Temp\d63856da-a37e-4857-821d-6adb6e30e588.tmp moved successfully.
C:\WINDOWS\Temp\d65caef7-8ee3-4105-96f8-0205c59f6ed9.tmp moved successfully.
C:\WINDOWS\Temp\d6719675-5ec1-433e-a6c6-10238057f8d7.tmp moved successfully.
C:\WINDOWS\Temp\d69054a4-921b-41c9-a78f-8603123de4e8.tmp moved successfully.
C:\WINDOWS\Temp\d6952f51-cda0-4e53-bc34-61100ee0383b.tmp moved successfully.
C:\WINDOWS\Temp\d696a247-ee66-490e-81b0-3854dbe84b32.tmp moved successfully.
C:\WINDOWS\Temp\d75519c1-e266-467f-8792-395f8969258a.tmp moved successfully.
C:\WINDOWS\Temp\d75ce5ee-1644-4897-b7d2-3c3ea8893b13.tmp moved successfully.
C:\WINDOWS\Temp\d799d600-8fae-4be7-ba4c-e2f005fd9b9e.tmp moved successfully.
C:\WINDOWS\Temp\d7b6e273-338d-422d-9ccc-73ca90cd9c0a.tmp moved successfully.
C:\WINDOWS\Temp\d7cb5922-592c-4ca6-88b7-99d17fa220a3.tmp moved successfully.
C:\WINDOWS\Temp\d7cce134-3632-43d1-b8e1-786c15813699.tmp moved successfully.
C:\WINDOWS\Temp\d7e6be9b-8920-47db-9262-041c92e302df.tmp moved successfully.
C:\WINDOWS\Temp\d81cf9d4-9b33-451f-9f38-14b9ca87b281.tmp moved successfully.
C:\WINDOWS\Temp\d82a02fe-b407-4f4f-8215-cc84f450e514.tmp moved successfully.
C:\WINDOWS\Temp\d83ecfc6-1208-461b-a0ed-a222fadca7df.tmp moved successfully.
C:\WINDOWS\Temp\d8409e31-2823-40ab-99f3-69a9b22a391c.tmp moved successfully.
C:\WINDOWS\Temp\d87002a9-4c8a-4dc0-a6e6-fd1d413f36ed.tmp moved successfully.
C:\WINDOWS\Temp\d88daf7b-afb9-4e19-99f3-855e57489155.tmp moved successfully.
C:\WINDOWS\Temp\d890fc6a-bddf-43da-8cd2-dc5fa164b46d.tmp moved successfully.
C:\WINDOWS\Temp\d8aa0474-d806-4edc-bd3a-167b8d0735c7.tmp moved successfully.
C:\WINDOWS\Temp\d8da558b-6222-4623-a114-281158318cf9.tmp moved successfully.
C:\WINDOWS\Temp\d90ed675-2035-4288-800b-4574c004af77.tmp moved successfully.
C:\WINDOWS\Temp\d93f57a4-b19d-4ec9-9f7a-4773e4a07260.tmp moved successfully.
C:\WINDOWS\Temp\d98b8904-224b-4577-a08a-8e691395fdad.tmp moved successfully.
C:\WINDOWS\Temp\d9cfec49-048d-4330-9ca2-deb29209cdb9.tmp moved successfully.
C:\WINDOWS\Temp\d9db63cd-7cd7-4d9b-80c0-a7ac5d394ad8.tmp moved successfully.
C:\WINDOWS\Temp\da01562a-a7f7-4106-9bba-32fb82fe4765.tmp moved successfully.
C:\WINDOWS\Temp\da407e21-13de-4a89-b234-6893b0af1f35.tmp moved successfully.
C:\WINDOWS\Temp\da9e786e-2e72-4b48-a8ae-9b8bc36e22db.tmp moved successfully.
C:\WINDOWS\Temp\dadfdfe5-31e1-4338-bb02-2e5451bf32d3.tmp moved successfully.
C:\WINDOWS\Temp\dafb0a7a-85c2-4e3f-af95-358c0f5ca337.tmp moved successfully.
C:\WINDOWS\Temp\db621cef-a46a-4417-bab7-428d17a81a48.tmp moved successfully.
C:\WINDOWS\Temp\db8e1f23-db95-459d-bdc2-b2560360860d.tmp moved successfully.
C:\WINDOWS\Temp\db90d77a-1bd1-409e-82d9-fb8fd72535cb.tmp moved successfully.
C:\WINDOWS\Temp\db95d9e3-b618-44a6-9160-b22ed444bb2f.tmp moved successfully.
C:\WINDOWS\Temp\db9d10ff-0c45-4ea4-a0c3-885f172a7380.tmp moved successfully.
C:\WINDOWS\Temp\dba61bac-d8ab-4f28-8bdd-e96e95e9c131.tmp moved successfully.
C:\WINDOWS\Temp\dbef0f86-cc6e-4b87-9854-472a80f0f5d7.tmp moved successfully.
C:\WINDOWS\Temp\dc0d4e03-a9d4-4e04-84eb-b15a9b9522fc.tmp moved successfully.
C:\WINDOWS\Temp\dc6e073b-d4db-4ee0-8b05-d3ac8b207816.tmp moved successfully.
C:\WINDOWS\Temp\dc90fc0f-030c-4421-9a21-e7f5d77d5a4b.tmp moved successfully.
C:\WINDOWS\Temp\dc93795a-ead3-4eb8-890c-13fc37d28884.tmp moved successfully.
C:\WINDOWS\Temp\dcaaf1b8-7d0e-4c14-82f5-d43de08e32eb.tmp moved successfully.
C:\WINDOWS\Temp\dcb7852b-739e-4647-857d-703772bcd9c4.tmp moved successfully.
C:\WINDOWS\Temp\dcc953f3-ccc5-4fd2-84dc-7be059a29973.tmp moved successfully.
C:\WINDOWS\Temp\dd137a9e-dc16-4a4a-9087-b99465ba91f9.tmp moved successfully.
C:\WINDOWS\Temp\dd16049d-1884-4594-b5e3-58f1aaa04ec3.tmp moved successfully.
C:\WINDOWS\Temp\dd6cf9d8-1872-478b-a610-8f0e0c4fc5d2.tmp moved successfully.
C:\WINDOWS\Temp\dd9b019d-4fdc-474f-bbce-44c29858c03c.tmp moved successfully.
C:\WINDOWS\Temp\dda48ad9-d45d-4246-934b-b5743336db90.tmp moved successfully.
C:\WINDOWS\Temp\ddd8524f-09f7-408d-adbb-f40c6993c5cb.tmp moved successfully.
C:\WINDOWS\Temp\ddfe139c-1907-4920-a45a-e5f037db773b.tmp moved successfully.
C:\WINDOWS\Temp\de183c48-e82e-4168-9e86-2185ec735c14.tmp moved successfully.
C:\WINDOWS\Temp\de28ea73-5b4e-438b-90f7-8ae9721acf57.tmp moved successfully.
C:\WINDOWS\Temp\de66353f-adf2-4c4e-a4df-665ad58f52e3.tmp moved successfully.
C:\WINDOWS\Temp\de874fe2-d5a2-49ad-9831-cb7e53babd3a.tmp moved successfully.
C:\WINDOWS\Temp\de9f9d97-bc42-4430-8276-524aa9e6940d.tmp moved successfully.
C:\WINDOWS\Temp\dea23f9f-08a5-4386-89bc-24d8295ef773.tmp moved successfully.
C:\WINDOWS\Temp\deeafe47-4a5a-4fb4-ab82-b812826bf1cf.tmp moved successfully.
C:\WINDOWS\Temp\df014721-7dde-4d7c-ab58-5543b7d57d31.tmp moved successfully.
C:\WINDOWS\Temp\df1c890a-9f45-458e-9886-c94670c15537.tmp moved successfully.
C:\WINDOWS\Temp\df45e57e-79a5-4ae0-b025-43e73509088a.tmp moved successfully.
C:\WINDOWS\Temp\dfa57458-a9ee-455f-8257-ce74537447de.tmp moved successfully.
C:\WINDOWS\Temp\dfb296c3-e4fb-4536-930d-1de2e84784b0.tmp moved successfully.
C:\WINDOWS\Temp\dfb7c876-b64a-4132-91d2-6849aba7bd09.tmp moved successfully.
C:\WINDOWS\Temp\dfd6eaf9-5b35-43e8-8bef-4c4793a488c8.tmp moved successfully.
C:\WINDOWS\Temp\dfe979e9-aae8-4149-842e-d4e70e2819ba.tmp moved successfully.
C:\WINDOWS\Temp\dfe9eafe-2b55-4627-8702-6b90b57abfa5.tmp moved successfully.
C:\WINDOWS\Temp\e01a5ac5-305b-4536-85a6-c9bdf38eb838.tmp moved successfully.
C:\WINDOWS\Temp\e07b5a9b-6ca6-4693-b38d-828ce1f62b1e.tmp moved successfully.
C:\WINDOWS\Temp\e0926897-a49e-42cd-b68f-7bc08764630d.tmp moved successfully.
C:\WINDOWS\Temp\e0a6e13a-0453-42c4-8f76-56a8cc42abc2.tmp moved successfully.
C:\WINDOWS\Temp\e1132c04-8692-46f5-9870-d35929453ba9.tmp moved successfully.
C:\WINDOWS\Temp\e136890d-baf6-4cbc-a394-0071b3226461.tmp moved successfully.
C:\WINDOWS\Temp\e141be1e-677d-4e7f-bd55-814ee750e857.tmp moved successfully.
C:\WINDOWS\Temp\e1b6d6c9-65e2-4909-bd58-9137c25cd0dd.tmp moved successfully.
C:\WINDOWS\Temp\e1e66a93-ad8f-4835-91c2-10721aa8a13e.tmp moved successfully.
C:\WINDOWS\Temp\e1f90324-7afa-4030-aca6-5c7aca910b5b.tmp moved successfully.
C:\WINDOWS\Temp\e233cec4-40a4-4c3d-b081-02558954f286.tmp moved successfully.
C:\WINDOWS\Temp\e234eda0-1e52-4023-831c-93170059c314.tmp moved successfully.
C:\WINDOWS\Temp\e266f620-8368-410b-9862-642ed09a1f14.tmp moved successfully.
C:\WINDOWS\Temp\e2a86432-3597-4eb7-9084-5c2b2a9af225.tmp moved successfully.
C:\WINDOWS\Temp\e2bbc7cb-74c8-41df-ab13-a404d8f38dec.tmp moved successfully.
C:\WINDOWS\Temp\e311b439-9239-4c1f-82c9-d28e0123fba4.tmp moved successfully.
C:\WINDOWS\Temp\e33dbc48-77a5-4d1e-90c9-61fdeff8b1c0.tmp moved successfully.
C:\WINDOWS\Temp\e3afb595-8e85-4dfd-a705-89149e31d117.tmp moved successfully.
C:\WINDOWS\Temp\e3f270e7-dc65-4e46-a68d-72e16abf9f56.tmp moved successfully.
C:\WINDOWS\Temp\e3f2d181-37b3-4752-9c42-f171fa3725db.tmp moved successfully.
C:\WINDOWS\Temp\e4161cea-d34b-4c8e-9926-e1388bbc21b7.tmp moved successfully.
C:\WINDOWS\Temp\e43a7307-beb0-443b-ad01-7a62e12bab08.tmp moved successfully.
C:\WINDOWS\Temp\e4808034-6f6a-44e2-95a6-e409698e3ffd.tmp moved successfully.
C:\WINDOWS\Temp\e49f0c18-6bbd-4a79-a731-c52135327a19.tmp moved successfully.
C:\WINDOWS\Temp\e4d6a3ff-901e-44ae-b271-c060cadf11d9.tmp moved successfully.
C:\WINDOWS\Temp\e4d7470d-b055-4721-9308-bc17d1b38d6c.tmp moved successfully.
C:\WINDOWS\Temp\e553b8ef-c9ae-4649-9d48-c2911e7e7aa0.tmp moved successfully.
C:\WINDOWS\Temp\e575c7bf-41e9-4514-bb4b-beecfb75c58e.tmp moved successfully.
C:\WINDOWS\Temp\e589d246-2f1a-49ca-9bab-e238776642a2.tmp moved successfully.
C:\WINDOWS\Temp\e59d4de8-831a-4d3f-b69f-27367ef88520.tmp moved successfully.
C:\WINDOWS\Temp\e5c50bfc-8d9b-40ba-9f43-4a915a14d826.tmp moved successfully.
C:\WINDOWS\Temp\e5d588dc-c9b2-4ae7-a276-1e2d1a799873.tmp moved successfully.
C:\WINDOWS\Temp\e5e6b197-01a3-40ff-813d-2d1efa8bdc90.tmp moved successfully.
C:\WINDOWS\Temp\e600e218-97a8-4bdf-8da0-fe50ccf0ea40.tmp moved successfully.
C:\WINDOWS\Temp\e614f098-989c-4472-95c8-cc9c44ec45b9.tmp moved successfully.
C:\WINDOWS\Temp\e6197c0c-1ed3-4840-9dc5-41e2b34fbd5d.tmp moved successfully.
C:\WINDOWS\Temp\e65703b1-86a0-47b0-b6c2-3547c17274de.tmp moved successfully.
C:\WINDOWS\Temp\e65b5686-0217-4a2c-a720-2b1798f91b14.tmp moved successfully.
C:\WINDOWS\Temp\e6632dfb-3de7-4dde-8e44-0390c0161217.tmp moved successfully.
C:\WINDOWS\Temp\e6e9773b-15c9-4278-b810-ab273f0281da.tmp moved successfully.
C:\WINDOWS\Temp\e7049367-d76e-420c-ad5e-4498f77226cd.tmp moved successfully.
C:\WINDOWS\Temp\e7156cef-3f73-4b4a-b63c-77cc2f93aeba.tmp moved successfully.
C:\WINDOWS\Temp\e75bd9bd-2b02-449c-adda-21160c17e698.tmp moved successfully.
C:\WINDOWS\Temp\e85a13a7-e2c3-452a-bebd-794806bd72b8.tmp moved successfully.
C:\WINDOWS\Temp\e87668b1-a5ce-458d-8f58-80ac6dcf6c3b.tmp moved successfully.
C:\WINDOWS\Temp\e87c37d1-0ee7-4ee1-8e1b-6d78c35243c6.tmp moved successfully.
C:\WINDOWS\Temp\e8c0ae72-b0c6-4109-ba81-4a7f5fb09e28.tmp moved successfully.
C:\WINDOWS\Temp\e8d37d2d-4203-4f12-a7dc-0a0a9d9e20f4.tmp moved successfully.
C:\WINDOWS\Temp\e8f736e4-83dc-438a-92f2-57cf64df2daf.tmp moved successfully.
C:\WINDOWS\Temp\e9193fdb-54b1-411c-857a-ff795e613262.tmp moved successfully.
C:\WINDOWS\Temp\e9344d86-fe1f-4e7b-b5f4-5edddc5c923a.tmp moved successfully.
C:\WINDOWS\Temp\e9897444-4d34-4842-82c8-592b546a22fc.tmp moved successfully.
C:\WINDOWS\Temp\e99f1df2-f325-4ff2-a4ba-a454696a9aa1.tmp moved successfully.
C:\WINDOWS\Temp\e9b04b9a-7fc9-4ea6-b9bf-dd1ebb36815b.tmp moved successfully.
C:\WINDOWS\Temp\e9cde40a-47ad-4931-82b3-e2820e533624.tmp moved successfully.
C:\WINDOWS\Temp\e9f1f2cf-0b8d-463e-ad20-f39f9f464a80.tmp moved successfully.
C:\WINDOWS\Temp\ea00dbe3-2f94-4cac-90fa-ea3f00ed47c8.tmp moved successfully.
C:\WINDOWS\Temp\ea7859cb-2a1e-4c62-a332-fee05abb9ba3.tmp moved successfully.
C:\WINDOWS\Temp\eaaebfa1-29bc-4f3e-8c23-c9ca5a9ee410.tmp moved successfully.
C:\WINDOWS\Temp\eabc9786-e435-43d9-ba8d-e2eb642981f7.tmp moved successfully.
C:\WINDOWS\Temp\eae62bdf-ac38-411c-87b2-1f7edb07ab74.tmp moved successfully.
C:\WINDOWS\Temp\eaebfb05-e924-4e8e-a0c5-3674b8e69b2b.tmp moved successfully.
C:\WINDOWS\Temp\eafcf46f-03aa-40d0-9790-2693ee680dd4.tmp moved successfully.
C:\WINDOWS\Temp\eb3ebd4e-24f5-444e-adfb-fea2601558db.tmp moved successfully.
C:\WINDOWS\Temp\eb6a593b-b555-4a6c-a82f-155fbf5426f2.tmp moved successfully.
C:\WINDOWS\Temp\eb79320e-d036-4126-8acb-ee4379e56aad.tmp moved successfully.
C:\WINDOWS\Temp\eba10f05-9113-4ae6-80d5-977f7208a989.tmp moved successfully.
C:\WINDOWS\Temp\eba2e45c-ea52-444e-90aa-27ff3e1dd711.tmp moved successfully.
C:\WINDOWS\Temp\ec01a57f-52a3-47c1-911a-475422cac85b.tmp moved successfully.
C:\WINDOWS\Temp\ec093982-c78a-410b-8c5c-a1a5d38bc850.tmp moved successfully.
C:\WINDOWS\Temp\ec9d21c3-7fd2-4911-8e7a-fe4a075e6422.tmp moved successfully.
C:\WINDOWS\Temp\ecc81e4b-65a5-4bf9-9fe9-c9a2d76eb6a3.tmp moved successfully.
C:\WINDOWS\Temp\ecdef943-439e-4a9d-b119-a994b1b0e03d.tmp moved successfully.
C:\WINDOWS\Temp\ece74f3c-7679-4881-9317-10876b9a681b.tmp moved successfully.
C:\WINDOWS\Temp\ecf7ad3a-fa36-4d6a-89e4-5e420df93c92.tmp moved successfully.
C:\WINDOWS\Temp\ed4d3459-8c79-4061-9f03-a8b7c461ec1b.tmp moved successfully.
C:\WINDOWS\Temp\ed773cb4-23c2-4fdd-86c1-dcd635a55d05.tmp moved successfully.
C:\WINDOWS\Temp\ed81f9e8-4232-4929-9d86-e7a1105f4ce6.tmp moved successfully.
C:\WINDOWS\Temp\edcd34dc-7c3d-48b1-8ca6-08c127b57acd.tmp moved successfully.
C:\WINDOWS\Temp\edd1fc67-1044-4fa8-9f65-8678568baa87.tmp moved successfully.
C:\WINDOWS\Temp\ee4daa15-7eb6-463b-bb30-24bdc3b290e8.tmp moved successfully.
C:\WINDOWS\Temp\ee6f35b5-ad8e-4b37-acbd-eb2df2342db5.tmp moved successfully.
C:\WINDOWS\Temp\ee9ea6b4-c4d9-4be1-b74f-aece61c08aea.tmp moved successfully.
C:\WINDOWS\Temp\eecb4743-f136-4ede-b08a-80be91a33cb5.tmp moved successfully.
C:\WINDOWS\Temp\ef131f06-de9c-4db8-a08f-bd70569533be.tmp moved successfully.
C:\WINDOWS\Temp\ef636dcb-2ec1-44b6-a093-d721f39dab0d.tmp moved successfully.
C:\WINDOWS\Temp\ef938aab-2747-4d2b-bf78-60216824ab90.tmp moved successfully.
C:\WINDOWS\Temp\efac6b3e-c0b5-4a0e-b56a-39314d619c7a.tmp moved successfully.
C:\WINDOWS\Temp\efd91954-dff5-41a0-ac43-3a4e5ebaaeaa.tmp moved successfully.
C:\WINDOWS\Temp\f0018fd0-bd95-407b-a7d9-50341f480362.tmp moved successfully.
C:\WINDOWS\Temp\f00e4619-9fbc-482f-8649-5cfb06e05713.tmp moved successfully.
C:\WINDOWS\Temp\f03844a6-603d-4a77-9183-1c727bf3c3dc.tmp moved successfully.
C:\WINDOWS\Temp\f03a4d2f-698a-4411-8c09-7674d9022bae.tmp moved successfully.
C:\WINDOWS\Temp\f03cf03c-909b-45c6-8c1a-3d20fe7daa5c.tmp moved successfully.
C:\WINDOWS\Temp\f0af3976-9e39-4461-9a4c-91637b39e55d.tmp moved successfully.
C:\WINDOWS\Temp\f0b1cd10-79d8-4aa4-8708-34162fdb5eee.tmp moved successfully.
C:\WINDOWS\Temp\f0c6f392-b013-47e3-b74f-3f733b6844bb.tmp moved successfully.
C:\WINDOWS\Temp\f108171f-ddd4-4912-acab-362eeb7874c6.tmp moved successfully.
C:\WINDOWS\Temp\f12d42d9-055c-43c7-ae41-a55328b8d15c.tmp moved successfully.
C:\WINDOWS\Temp\f137875e-f2a0-457a-9c64-b4418f715738.tmp moved successfully.
C:\WINDOWS\Temp\f15e7ca2-a27a-4ca4-b2c5-0a33be3adf51.tmp moved successfully.
C:\WINDOWS\Temp\f18bc91e-656d-492b-b2e9-8bc03f1c6bfb.tmp moved successfully.
C:\WINDOWS\Temp\f191e96a-beea-41b8-ad50-943578e8e051.tmp moved successfully.
C:\WINDOWS\Temp\f1a093e7-d5fe-48ba-af30-c23ea29a3318.tmp moved successfully.
C:\WINDOWS\Temp\f1dd34cc-5e04-4dd1-b606-4d461cc6f4d7.tmp moved successfully.
C:\WINDOWS\Temp\f1df64d7-aa1a-42cb-9e8a-887c0a8e26e1.tmp moved successfully.
C:\WINDOWS\Temp\f2070ba3-a04b-473b-a2a3-f23f57054bf3.tmp moved successfully.
C:\WINDOWS\Temp\f211df26-acb9-40f2-99bf-aac167668310.tmp moved successfully.
C:\WINDOWS\Temp\f21a7ac4-d73a-4b39-9a4a-343b047c483a.tmp moved successfully.
C:\WINDOWS\Temp\f21d9a5b-dcb9-4302-8ef3-166ba0127843.tmp moved successfully.
C:\WINDOWS\Temp\f2781177-a335-4d6f-9802-7e8ec710c993.tmp moved successfully.
C:\WINDOWS\Temp\f28aab3a-a25d-4863-a78f-6ff5e3c97aee.tmp moved successfully.
C:\WINDOWS\Temp\f28f3c96-9cbf-462e-8b86-4efffe3e78cb.tmp moved successfully.
C:\WINDOWS\Temp\f2ccbf92-822d-4cdd-aebd-fd28566e2b18.tmp moved successfully.
C:\WINDOWS\Temp\f2d74c76-880d-4095-bd00-b316a63e4aa0.tmp moved successfully.
C:\WINDOWS\Temp\f2efc0e2-eee7-44f5-87e1-5660373d3620.tmp moved successfully.
C:\WINDOWS\Temp\f33d0dbf-b851-4833-8c7e-a56dcb4122e4.tmp moved successfully.
C:\WINDOWS\Temp\f3bfc3aa-8fc3-44a7-a97f-5ae371f9ba9b.tmp moved successfully.
C:\WINDOWS\Temp\f3fdf08e-43a9-4b44-b743-2369d21931d1.tmp moved successfully.
C:\WINDOWS\Temp\f40cb9c0-b42f-49af-ad30-5e1e355f445d.tmp moved successfully.
C:\WINDOWS\Temp\f43b072f-beec-4636-9a45-2b774a96965b.tmp moved successfully.
C:\WINDOWS\Temp\f44aba40-9f5d-4513-8a35-33ab5da98cbc.tmp moved successfully.
C:\WINDOWS\Temp\f461dc9d-70a0-471b-b650-afbcc7036b4a.tmp moved successfully.
C:\WINDOWS\Temp\f4933637-2482-4a5b-bc6b-5b3f29940dea.tmp moved successfully.
C:\WINDOWS\Temp\f4b28cf1-5a03-4ae3-ba7f-c8d468332f56.tmp moved successfully.
C:\WINDOWS\Temp\f5775e8f-bca9-448e-bfdb-ea49fa2cb2f9.tmp moved successfully.
C:\WINDOWS\Temp\f57ddd88-100c-4108-bcc5-b18a13690600.tmp moved successfully.
C:\WINDOWS\Temp\f5f3b85c-04fd-4169-b6a7-3e6a8214bfc9.tmp moved successfully.
C:\WINDOWS\Temp\f661ccf6-e7bd-4f2b-b15d-5178ab0f1cb8.tmp moved successfully.
C:\WINDOWS\Temp\f6a1e82d-42c7-47fc-be57-5e8588862c4a.tmp moved successfully.
C:\WINDOWS\Temp\f6afdc3b-997f-497b-960d-4304c9d25bc3.tmp moved successfully.
C:\WINDOWS\Temp\f6b2e490-7110-401a-9de9-f8a6ba127c57.tmp moved successfully.
C:\WINDOWS\Temp\f6e50da7-d5ca-4b8a-875e-e0f807440644.tmp moved successfully.
C:\WINDOWS\Temp\f6febfde-90bd-4756-a4ca-1a0eb79feaf2.tmp moved successfully.
C:\WINDOWS\Temp\f70ec2ee-03a9-4490-b605-c4b5c887510e.tmp moved successfully.
C:\WINDOWS\Temp\f70fbe01-b5d0-4835-9f41-64d27673b08c.tmp moved successfully.
C:\WINDOWS\Temp\f742b7c7-fc1f-40cf-a2ba-2d5218146804.tmp moved successfully.
C:\WINDOWS\Temp\f7735718-3c8a-40d1-933c-a5af707d9ae5.tmp moved successfully.
C:\WINDOWS\Temp\f7809865-2ff2-46ed-b158-7bfe2357c48c.tmp moved successfully.
C:\WINDOWS\Temp\f7aab6d5-a1f4-4138-aa7e-f76196cb1b11.tmp moved successfully.
C:\WINDOWS\Temp\f7fb19ef-d02e-4e04-818b-dfbc8c150153.tmp moved successfully.
C:\WINDOWS\Temp\f8084d94-2eff-40af-9bc1-c1dce4afd731.tmp moved successfully.
C:\WINDOWS\Temp\f811b9db-55b2-4b3e-bc8f-a07bf2e7ab68.tmp moved successfully.
C:\WINDOWS\Temp\f845428d-1a95-4efb-bb33-d252ed36bcf5.tmp moved successfully.
C:\WINDOWS\Temp\f8472652-e498-4177-a493-90ad8521d452.tmp moved successfully.
C:\WINDOWS\Temp\f8746266-2203-4f0c-a365-395e3e2298c2.tmp moved successfully.
C:\WINDOWS\Temp\f8cbfed5-aefa-4def-97d0-c674697d95c0.tmp moved successfully.
C:\WINDOWS\Temp\f9557dbb-8d68-45c1-8fe2-a35ee12dffdd.tmp moved successfully.
C:\WINDOWS\Temp\f95beefb-b74f-4e6b-ba0a-cc1f8e7daa26.tmp moved successfully.
C:\WINDOWS\Temp\f97bd2a6-52c5-45f7-ae08-2d140a194627.tmp moved successfully.
C:\WINDOWS\Temp\f97c3434-e729-4480-92b8-6185f09a8fc9.tmp moved successfully.
C:\WINDOWS\Temp\f982196f-06a9-4c03-9dae-8bb3f04e6637.tmp moved successfully.
C:\WINDOWS\Temp\f9bdf959-f133-4ddf-a583-49059ba881a8.tmp moved successfully.
C:\WINDOWS\Temp\f9cced2e-30cc-4f82-90d1-fe1a8cd64a64.tmp moved successfully.
C:\WINDOWS\Temp\f9f4a0b4-5c2c-4446-a49f-9c4982861b6a.tmp moved successfully.
C:\WINDOWS\Temp\fa219a10-fc7f-4c56-999d-1840e9bd4848.tmp moved successfully.
C:\WINDOWS\Temp\fa33801f-5d42-476a-8094-469621fa31b4.tmp moved successfully.
C:\WINDOWS\Temp\fa3def1a-c08a-4bb9-aa38-20a550ce42cb.tmp moved successfully.
C:\WINDOWS\Temp\fa80fe85-575c-4119-ba1c-19e99006548e.tmp moved successfully.
C:\WINDOWS\Temp\fa922641-9b01-42b2-97d7-bec5af639ce2.tmp moved successfully.
C:\WINDOWS\Temp\fabd7401-3148-4f15-9774-24eeec0ec7f6.tmp moved successfully.
C:\WINDOWS\Temp\fadf2524-a2e9-4e71-b500-cc93ac482efc.tmp moved successfully.
C:\WINDOWS\Temp\faefa10a-be89-473f-9177-604331550cae.tmp moved successfully.
C:\WINDOWS\Temp\faf498e6-7aaf-4d8f-8a27-93b649081213.tmp moved successfully.
C:\WINDOWS\Temp\fb04cc41-2b7e-4ffe-ab1a-9b1b3fd82d3f.tmp moved successfully.
C:\WINDOWS\Temp\fb6de251-0c75-4156-ba78-6e2f71c56ebb.tmp moved successfully.
C:\WINDOWS\Temp\fb858326-1b8e-4f90-8f5d-c5870142a577.tmp moved successfully.
C:\WINDOWS\Temp\fb98799e-07b3-47d6-961f-95af1f065939.tmp moved successfully.
C:\WINDOWS\Temp\fc66f93b-33ff-4fd7-a699-8e7131a949c0.tmp moved successfully.
C:\WINDOWS\Temp\fd0f8c29-8683-430a-8cb5-a1563c2e5900.tmp moved successfully.
C:\WINDOWS\Temp\fd198d0f-5ca9-48fa-b490-4ed18564bff4.tmp moved successfully.
C:\WINDOWS\Temp\fd1fe540-9614-4df7-a589-854d327aa73d.tmp moved successfully.
C:\WINDOWS\Temp\fd28eb06-fa03-4002-b29e-1182437474ec.tmp moved successfully.
C:\WINDOWS\Temp\fd843d99-9f2e-406e-b66a-d85c1411dd9f.tmp moved successfully.
C:\WINDOWS\Temp\fdb8365f-e67d-4708-b8e3-a1ddb6b29418.tmp moved successfully.
C:\WINDOWS\Temp\fdd53065-2927-4dfe-9e46-64bbd39fb202.tmp moved successfully.
C:\WINDOWS\Temp\fdd9d173-5bec-4835-9d4b-c053376635e7.tmp moved successfully.
C:\WINDOWS\Temp\fde0449a-04b4-465d-a360-e9c1ce156aa0.tmp moved successfully.
C:\WINDOWS\Temp\fde42a1a-f0ae-4f7a-8f54-2d966bebde5c.tmp moved successfully.
C:\WINDOWS\Temp\fe38399c-ec83-4977-a825-f176e0a57cf2.tmp moved successfully.
C:\WINDOWS\Temp\fe71443a-3903-40eb-b335-d37b2a94a188.tmp moved successfully.
C:\WINDOWS\Temp\fea0fbd8-6291-4117-a494-2d9a98fe1b8a.tmp moved successfully.
C:\WINDOWS\Temp\feaea848-ade0-4056-b5f6-458ffa132f52.tmp moved successfully.
C:\WINDOWS\Temp\feea6dfc-3741-49cc-817c-ec67c4b47b4e.tmp moved successfully.
C:\WINDOWS\Temp\fef71c6b-76db-4d88-93ea-6f72e77d8bdf.tmp moved successfully.
C:\WINDOWS\Temp\ff35a415-b27b-4f16-8738-8d017bfc5b8d.tmp moved successfully.
C:\WINDOWS\Temp\ff5794fd-93d3-4bfc-bf90-436776449c40.tmp moved successfully.
C:\WINDOWS\Temp\ff5cf9ee-dd1b-41ac-b909-a26e73954bc7.tmp moved successfully.
C:\WINDOWS\Temp\ffea8317-eda8-47fa-8daf-29c96ee57c31.tmp moved successfully.
C:\WINDOWS\Temp\fff5b442-2603-4fc0-8a77-41e2f6017bed.tmp moved successfully.
C:\WINDOWS\Temp\GUR1.tmp moved successfully.
C:\WINDOWS\Temp\GUR2.tmp moved successfully.
C:\WINDOWS\Temp\GUR6.tmp moved successfully.
C:\Documents and Settings\pc\Data aplikací\inst.exe moved successfully.
========== COMMANDS ==========
C:\windows\System32\drivers\etc\Hosts moved successfully.
HOSTS file reset successfully

[EMPTYTEMP]

User: Administrator
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
->Flash cache emptied: 56504 bytes

User: All Users

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
->Flash cache emptied: 56504 bytes

User: FoX18

User: LocalService
->Temp folder emptied: 66016 bytes
->Temporary Internet Files folder emptied: 2947087 bytes

User: NetworkService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33237 bytes

User: pc
->Temp folder emptied: 5713906969 bytes
->Temporary Internet Files folder emptied: 884826 bytes
->Java cache emptied: 0 bytes
->FireFox cache emptied: 65927460 bytes
->Google Chrome cache emptied: 444229054 bytes
->Opera cache emptied: 14057371 bytes
->Flash cache emptied: 79126 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\dllcache .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 10162045 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 54545644 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 33170 bytes
RecycleBin emptied: 152633 bytes

Total Files Cleaned = 6 015,00 mb


[EMPTYFLASH]

User: Administrator
->Flash cache emptied: 0 bytes

User: All Users

User: Default User
->Flash cache emptied: 0 bytes

User: FoX18

User: LocalService

User: NetworkService

User: pc
->Flash cache emptied: 0 bytes

Total Flash Files Cleaned = 0,00 mb


OTL by OldTimer - Version 3.2.20.6 log created on 02062011_074714

Files\Folders moved on Reboot...

Registry entries deleted on Reboot...

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: C:\WINDOWS\system32\cmd.exe maze subory

#27 Příspěvek od motji »

:arrow: Ještě znovu spustte OTL, klikněte na tlačítko vyčisti, uklidí po sobě :)

Poprosím o nový log ze Rsitu.
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

Uživatelský avatar
Dvori66
Návštěvník
Návštěvník
Příspěvky: 94
Registrován: 04 úno 2011 18:29
Kontaktovat uživatele:

Re: C:\WINDOWS\system32\cmd.exe maze subory

#28 Příspěvek od Dvori66 »

Logfile of random's system information tool 1.08 (written by random/random)
Run by pc at 2011-02-06 10:26:18
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 126 GB (41%) free of 305 GB
Total RAM: 1022 MB (25% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 10:26:37, on 6.2.2011
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\windows\System32\smss.exe
C:\windows\system32\winlogon.exe
C:\windows\system32\services.exe
C:\windows\system32\lsass.exe
C:\windows\system32\Ati2evxx.exe
C:\windows\system32\svchost.exe
C:\windows\System32\svchost.exe
C:\windows\system32\svchost.exe
C:\windows\system32\Ati2evxx.exe
C:\windows\system32\spoolsv.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
C:\Program Files\ICQ6Toolbar\ICQ Service.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Common Files\LightScribe\LSSrvc.exe
c:\PROGRA~1\mcafee\SITEAD~1\mcsacore.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\windows\system32\PnkBstrA.exe
C:\Program Files\NETGATE\Spy Emergency\SpyEmergencySrv.exe
C:\windows\Explorer.EXE
C:\windows\system32\rundll32.exe
C:\windows\RTHDCPL.EXE
C:\Program Files\CyberLink DVD Solution\PowerDVD\PDVDServ.exe
C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe
C:\Program Files\ScanSoft\OmniPageSE2.0\OpwareSE2.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\ADVANC~1\wh_exec.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
C:\windows\system32\ctfmon.exe
C:\Program Files\DAEMON Tools Lite\DTLite.exe
C:\Program Files\Pando Networks\Media Booster\PMB.exe
C:\Documents and Settings\pc\Data aplikací\CoSoSys\HDDtoGO\HDDtoGOLaunch.exe
C:\windows\system32\svchost.exe
C:\windows\system32\SearchIndexer.exe
C:\Program Files\Windows Desktop Search\WindowsSearch.exe
C:\windows\system32\wuauclt.exe
C:\windows\system32\SearchProtocolHost.exe
C:\Documents and Settings\pc\Plocha\RSIT.exe
C:\Program Files\trend micro\pc.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://search.qip.ru/ie
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://search.qip.ru
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://start.icq.com/xmas/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://windowsupdate.microsoft.com/
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = 10.10.200.1:3128
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Odkazy
R3 - Default URLSearchHook is missing
O1 - Hosts: ˙ţ127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: Podpora odkazu pro Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Conduit Engine - {30F9B915-B755-4826-820B-08FBA6BD249D} - C:\Program Files\ConduitEngine\ConduitEngin0.dll
O2 - BHO: Softonic-Eng7 Toolbar - {414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3} - C:\Program Files\Softonic-Eng7\tbSof2.dll
O2 - BHO: QIPBHO - {95289393-33EA-4F8D-B952-483415B9C955} - (no file)
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.6.5805.1910\swg.dll
O2 - BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O2 - BHO: Ukazatel S-Rank - {EA837F48-5AD1-443E-AE34-FFE03CBF3099} - C:\Program Files\Seznam.cz\listicka.dll
O2 - BHO: BS Player Toolbar - {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - C:\Program Files\BS_Player\tbBS_P.dll
O3 - Toolbar: (no name) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - (no file)
O3 - Toolbar: (no name) - {3041d03e-fd4b-44e0-b742-2d9b88305f98} - (no file)
O3 - Toolbar: (no name) - {855F3B16-6D32-4fe6-8A56-BBB695989046} - (no file)
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O3 - Toolbar: Softonic-Eng7 Toolbar - {414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3} - C:\Program Files\Softonic-Eng7\tbSof2.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O3 - Toolbar: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll
O3 - Toolbar: BS Player Toolbar - {fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - C:\Program Files\BS_Player\tbBS_P.dll
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink DVD Solution\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [OpwareSE2] "C:\Program Files\ScanSoft\OmniPageSE2.0\OpwareSE2.exe"
O4 - HKLM\..\Run: [ATICustomerCare] "C:\Program Files\ATI\ATICustomerCare\ATICustomerCare.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [WheelMouse] C:\ADVANC~1\wh_exec.exe
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
O4 - HKLM\..\RunOnce: [AvgUninstallURL] cmd.exe /c start http://www.avg.com/ww.special-uninstall ... er=9.0.872
O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\windows\system32\ctfmon.exe
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Pando Media Booster] "C:\Program Files\Pando Networks\Media Booster\PMB.exe"
O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\pc\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [HDDtoGOLaunch] C:\Documents and Settings\pc\Data aplikací\CoSoSys\HDDtoGO\HDDtoGOLaunch.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Windows Search.lnk = C:\Program Files\Windows Desktop Search\WindowsSearch.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Office Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Easy-WebPrint Add To Print List - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_AddToList.html
O8 - Extra context menu item: Easy-WebPrint High Speed Print - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_HSPrint.html
O8 - Extra context menu item: Easy-WebPrint Preview - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Preview.html
O8 - Extra context menu item: Easy-WebPrint Print - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Print.html
O8 - Extra context menu item: WikiKomentáře Google... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_950DF09FAB501E03.dll/cmsidewiki.html
O9 - Extra button: Nastavení Lištičky ... - {0E46D7B6-887D-4F81-B4CA-FCC92AF73610} - C:\Program Files\Seznam.cz\listicka.dll
O9 - Extra 'Tools' menuitem: Nastavení Lištičky ... - {0E46D7B6-887D-4F81-B4CA-FCC92AF73610} - C:\Program Files\Seznam.cz\listicka.dll
O9 - Extra button: Zvýrazňovač slov Lištičky - {4E6D6F90-31CA-4878-A7A3-1CD50F115A69} - C:\Program Files\Seznam.cz\listicka.dll
O9 - Extra 'Tools' menuitem: Zvýrazňovač slov Lištičky - {4E6D6F90-31CA-4878-A7A3-1CD50F115A69} - C:\Program Files\Seznam.cz\listicka.dll
O9 - Extra button: ICQ7.4 - {73C6DCFB-B606-47F3-BDFA-9A4FBF931E37} - C:\Program Files\ICQ7.4\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7.4 - {73C6DCFB-B606-47F3-BDFA-9A4FBF931E37} - C:\Program Files\ICQ7.4\ICQ.exe
O9 - Extra button: Zdroje informací - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\windows\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\windows\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra button: QIP Infium - {1EF681F7-A04B-4D6D-9012-A307CCA55610} - C:\Program Files\QIP Infium\infium.exe (HKCU)
O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/Shar ... vSniff.cab
O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/Shar ... /cabsa.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{56796FCA-42B0-4555-8042-98AC92E129EE}: NameServer = 10.10.200.1
O17 - HKLM\System\CS1\Services\Tcpip\..\{56796FCA-42B0-4555-8042-98AC92E129EE}: NameServer = 10.10.200.1
O18 - Protocol: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll
O18 - Protocol: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\windows\system32\browseui.dll
O22 - SharedTaskScheduler: Proces mezipaměti kategorií součástí - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\windows\system32\browseui.dll
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\windows\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: ICQ Service - Unknown owner - C:\Program Files\ICQ6Toolbar\ICQ Service.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: McAfee SiteAdvisor Service - McAfee, Inc. - c:\PROGRA~1\mcafee\SITEAD~1\mcsacore.exe
O23 - Service: McAfee Security Scan Component Host Service (McComponentHostService) - McAfee, Inc. - C:\Program Files\McAfee Security Scan\2.0.181\McCHSvc.exe
O23 - Service: PnkBstrA - Unknown owner - C:\windows\system32\PnkBstrA.exe
O23 - Service: Spy Emergency Engine Service (SpyEmrgSrv) - NETGATE Technologies s.r.o. - C:\Program Files\NETGATE\Spy Emergency\SpyEmergencySrv.exe
O24 - Desktop Component 0: (no name) - file:///C:/DOCUME~1/pc/LOCALS~1/Temp/msohtml1/01/clip_image002.gif

--
End of file - 12521 bytes

======Scheduled tasks folder======

C:\windows\tasks\Ad-Aware Update (Weekly).job
C:\windows\tasks\GoogleUpdateTaskMachineCore.job
C:\windows\tasks\GoogleUpdateTaskMachineUA.job
C:\windows\tasks\GoogleUpdateTaskUserS-1-5-21-117609710-1364589140-725345543-1003Core.job
C:\windows\tasks\GoogleUpdateTaskUserS-1-5-21-117609710-1364589140-725345543-1003UA.job
C:\windows\tasks\User_Feed_Synchronization-{BBFFBF23-4A39-4CD6-A448-7B0B4E9EEF8B}.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Podpora odkazu pro Adobe PDF Reader - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-22 62080]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{30F9B915-B755-4826-820B-08FBA6BD249D}]
Conduit Engine - C:\Program Files\ConduitEngine\ConduitEngin0.dll [2010-10-18 3908192]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3}]
Softonic-Eng7 Toolbar - C:\Program Files\Softonic-Eng7\tbSof2.dll [2010-10-18 3908192]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95289393-33EA-4F8D-B952-483415B9C955}]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2010-10-24 297648]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.6.5805.1910\swg.dll [2010-10-24 843832]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B164E929-A1B6-4A06-B104-2CD0E90A88FF}]
McAfee SiteAdvisor BHO - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll [2011-01-04 251416]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2010-11-24 41760]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2010-11-24 79648]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EA837F48-5AD1-443E-AE34-FFE03CBF3099}]
Lištička - C:\Program Files\Seznam.cz\listicka.dll [2009-05-18 992408]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}]
BS Player Toolbar - C:\Program Files\BS_Player\tbBS_P.dll [2010-11-29 3908192]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{CCC7A320-B3CA-4199-B1A6-9F516DD69829}
{3041d03e-fd4b-44e0-b742-2d9b88305f98}
{855F3B16-6D32-4fe6-8A56-BBB695989046}
{327C2873-E90D-4c37-AA9D-10AC9BABA46C} - Easy-WebPrint - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll [2004-08-26 405504]
{414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3} - Softonic-Eng7 Toolbar - C:\Program Files\Softonic-Eng7\tbSof2.dll [2010-10-18 3908192]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2010-10-24 297648]
{0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - McAfee SiteAdvisor Toolbar - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll [2011-01-04 251416]
{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5} - BS Player Toolbar - C:\Program Files\BS_Player\tbBS_P.dll [2010-11-29 3908192]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RTHDCPL"=C:\windows\RTHDCPL.EXE [2007-01-30 16116224]
"SkyTel"=C:\windows\SkyTel.EXE [2006-05-16 2879488]
"Alcmtr"=C:\windows\ALCMTR.EXE [2005-05-03 69632]
"RemoteControl"=C:\Program Files\CyberLink DVD Solution\PowerDVD\PDVDServ.exe [2004-11-02 32768]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe [2008-01-11 39792]
"OpwareSE2"=C:\Program Files\ScanSoft\OmniPageSE2.0\OpwareSE2.exe [2003-05-08 49152]
"ATICustomerCare"=C:\Program Files\ATI\ATICustomerCare\ATICustomerCare.exe [2010-03-04 311296]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2010-05-14 248552]
"WheelMouse"=C:\ADVANC~1\wh_exec.exe [2007-10-13 98304]
"egui"=C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2011-01-12 2219184]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"AvgUninstallURL"=cmd.exe /c start http://www.avg.com/ww.special-uninstall ... er=9.0.872 []

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"swg"=C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2009-08-06 39408]
"ctfmon.exe"=C:\windows\system32\ctfmon.exe [2008-04-14 40448]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\DTLite.exe [2010-04-01 357696]
"Pando Media Booster"=C:\Program Files\Pando Networks\Media Booster\PMB.exe [2010-08-19 2953112]
"Google Update"=C:\Documents and Settings\pc\Local Settings\Data aplikací\Google\Update\GoogleUpdate.exe [2009-05-12 133104]
"HDDtoGOLaunch"=C:\Documents and Settings\pc\Data aplikací\CoSoSys\HDDtoGO\HDDtoGOLaunch.exe [2010-04-30 176128]
"PowerBar"= []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\StartCCC]
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2009-02-25 61440]

C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění
Windows Search.lnk - C:\Program Files\Windows Desktop Search\WindowsSearch.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
C:\windows\system32\Ati2evxx.dll [2010-09-11 159744]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\windows\system32\WPDShServiceObj.dll [2006-10-18 133632]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{56F9679E-7826-4C84-81F3-532071A8BCC5}"=C:\Program Files\Windows Desktop Search\MSNLNamespaceMgr.dll [2009-05-24 304128]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DisableTaskMgr"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Activision\Call of Duty 2\CoD2MP_s.exe"="C:\Program Files\Activision\Call of Duty 2\CoD2MP_s.exe:*:Enabled:Call of Duty(R) 2 Multiplayer"
"C:\Program Files\ICQ6.5\ICQ.exe"="C:\Program Files\ICQ6.5\ICQ.exe:*:Enabled:ICQ6.5"
"C:\Program Files\EA GAMES\Medal of Honor Pacific Assault(tm)\mohpa.exe"="C:\Program Files\EA GAMES\Medal of Honor Pacific Assault(tm)\mohpa.exe:*:Enabled:Medal of Honor Pacific Assault(tm)"
"C:\Program Files\America's Army\System\ArmyOps.exe"="C:\Program Files\America's Army\System\ArmyOps.exe:*:Enabled:ArmyOps"
"C:\Program Files\Outlook Express\msimn.exe"="C:\Program Files\Outlook Express\msimn.exe:*:Enabled:Outlook Express"
"C:\Program Files\SpywareBlaster\spywareblaster.exe"="C:\Program Files\SpywareBlaster\spywareblaster.exe:*:Enabled:SpywareBlaster"
"C:\Program Files\ATI Technologies\ATI HYDRAVISION\HydraWizard.exe"="C:\Program Files\ATI Technologies\ATI HYDRAVISION\HydraWizard.exe:*:Disabled:Inteligentní instalátor HYDRAVISION"
"C:\Documents and Settings\pc\Plocha\Ubisoft\Far Cry 2\bin\farcry2.exe"="C:\Documents and Settings\pc\Plocha\Ubisoft\Far Cry 2\bin\farcry2.exe:*:Enabled:Far Cry® 2"
"C:\Program Files\Electronic Arts\EADM\Core.exe"="C:\Program Files\Electronic Arts\EADM\Core.exe:*:Enabled:EA Download Manager"
"C:\Program Files\QIP\qip.exe"="C:\Program Files\QIP\qip.exe:*:Disabled:Quiet Internet Pager"
"C:\WINDOWS\system32\PnkBstrA.exe"="C:\WINDOWS\system32\PnkBstrA.exe:*:Enabled:PnkBstrA"
"C:\WINDOWS\system32\PnkBstrB.exe"="C:\WINDOWS\system32\PnkBstrB.exe:*:Enabled:PnkBstrB"
"C:\Program Files\Mozilla Firefox\firefox.exe"="C:\Program Files\Mozilla Firefox\firefox.exe:*:Enabled:Firefox"
"C:\Documents and Settings\pc\Plocha\Call of Duty 4 - Modern Warfare\iw3mp.exe"="C:\Documents and Settings\pc\Plocha\Call of Duty 4 - Modern Warfare\iw3mp.exe:*:Enabled:iw3mp"
"C:\Program Files\HLSW\hlsw.exe"="C:\Program Files\HLSW\hlsw.exe:*:Enabled:hlsw"
"C:\Program Files\Call of Duty\CoDMP.exe"="C:\Program Files\Call of Duty\CoDMP.exe:*:Enabled:CoDMP"
"C:\Program Files\TrackMania Nations ESWC\TmNationsESWC.exe"="C:\Program Files\TrackMania Nations ESWC\TmNationsESWC.exe:*:Enabled:TmNationsESWC"
"C:\Documents and Settings\pc\Dokumenty\Data ke hram\Quake 3\quake3.exe"="C:\Documents and Settings\pc\Dokumenty\Data ke hram\Quake 3\quake3.exe:*:Enabled:quake3"
"C:\Program Files\Metin2_CZ\metin2.bin"="C:\Program Files\Metin2_CZ\metin2.bin:*:Enabled:metin2"
"C:\Games\Paintball2\paintball2.exe"="C:\Games\Paintball2\paintball2.exe:*:Enabled:paintball2"
"C:\Program Files\Microsoft Games\Age of Empires II Trial\EMPIRES2.EXE"="C:\Program Files\Microsoft Games\Age of Empires II Trial\EMPIRES2.EXE:*:Disabled:Age of Empires II"
"C:\Documents and Settings\pc\Plocha\WoW-BurningCrusade-enGB-Installer-downloader.exe"="C:\Documents and Settings\pc\Plocha\WoW-BurningCrusade-enGB-Installer-downloader.exe:*:Enabled:Blizzard Downloader"
"C:\Program Files\World of Warcraft\Launcher.exe"="C:\Program Files\World of Warcraft\Launcher.exe:*:Enabled:Blizzard Launcher"
"C:\Documents and Settings\pc\Local Settings\Temp\Blizzard Launcher Temporary - 244330f8\Launcher.exe"="C:\Documents and Settings\pc\Local Settings\Temp\Blizzard Launcher Temporary - 244330f8\Launcher.exe:*:Enabled:Blizzard Launcher"
"C:\Program Files\World of Warcraft\WoW-3.0.9.9551-to-3.1.0.9767-enGB-downloader.exe"="C:\Program Files\World of Warcraft\WoW-3.0.9.9551-to-3.1.0.9767-enGB-downloader.exe:*:Enabled:Blizzard Downloader"
"C:\Program Files\World of Warcraft\WoW-3.1.3.9947-to-3.2.0.10192-enGB-downloader.exe"="C:\Program Files\World of Warcraft\WoW-3.1.3.9947-to-3.2.0.10192-enGB-downloader.exe:*:Enabled:Blizzard Downloader"
"C:\SIMS\RACER\racer.exe"="C:\SIMS\RACER\racer.exe:*:Enabled:racer"
"C:\Program Files\uTorrent\uTorrent.exe"="C:\Program Files\uTorrent\uTorrent.exe:*:Enabled:µTorrent"
"C:\Program Files\Codemasters\GRID\GRID.exe"="C:\Program Files\Codemasters\GRID\GRID.exe:*:Enabled:GRID Executable"
"C:\Program Files\Metin2_CZ\metin2client.bin"="C:\Program Files\Metin2_CZ\metin2client.bin:*:Enabled:metin2client"
"C:\Program Files\Skype\Plugin Manager\skypePM.exe"="C:\Program Files\Skype\Plugin Manager\skypePM.exe:*:Enabled:Skype Extras Manager"
"C:\Program Files\Wolfenstein - Enemy Territory\ET.exe"="C:\Program Files\Wolfenstein - Enemy Territory\ET.exe:*:Enabled:ET"
"C:\Program Files\EA GAMES\Need For Speed Underground\Speed.exe"="C:\Program Files\EA GAMES\Need For Speed Underground\Speed.exe:*:Enabled:Speed"
"C:\Program Files\Activision\Call of Duty 4 - Modern Warfare\iw3mp.exe"="C:\Program Files\Activision\Call of Duty 4 - Modern Warfare\iw3mp.exe:*:Enabled:Call of Duty(R) 4 - Modern Warfare(TM) "
"C:\Program Files\Electronic Arts\Crytek\Crysis Wars\Bin32\Crysis.exe"="C:\Program Files\Electronic Arts\Crytek\Crysis Wars\Bin32\Crysis.exe:*:Enabled:Crysis"
"C:\Documents and Settings\pc\Plocha\FinaLongju2\FinaLongju2 Nightfall (Srv2) - CH2.exe"="C:\Documents and Settings\pc\Plocha\FinaLongju2\FinaLongju2 Nightfall (Srv2) - CH2.exe:*:Enabled:FinaLongju2 Nightfall (Srv2) - CH2"
"C:\FinaLongju2\FinaLongju2 Nightfall (Srv2) - CH2.exe"="C:\FinaLongju2\FinaLongju2 Nightfall (Srv2) - CH2.exe:*:Enabled:FinaLongju2 Nightfall (Srv2) - CH2"
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX07.485\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe"="C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX07.485\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded"
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX04.875\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe"="C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX04.875\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded"
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.516\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe"="C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.516\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded"
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX02.906\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe"="C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX02.906\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded"
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.781\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe"="C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.781\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded"
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.047\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe"="C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.047\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded"
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.922\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe"="C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.922\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded"
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.016\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe"="C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.016\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded"
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.922\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe"="C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.922\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded"
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.797\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe"="C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.797\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded"
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX03.547\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe"="C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX03.547\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded"
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.031\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe"="C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.031\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded"
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.453\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe"="C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.453\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded"
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.641\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe"="C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.641\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded"
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.063\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe"="C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.063\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded"
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.703\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe"="C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.703\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded"
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.515\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe"="C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.515\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded"
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.906\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe"="C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.906\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded"
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.281\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe"="C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.281\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded"
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX02.750\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe"="C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX02.750\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded"
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.297\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe"="C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.297\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded"
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.859\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe"="C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.859\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded"
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.046\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe"="C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.046\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded"
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.891\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe"="C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.891\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded"
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX14.1266\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe"="C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX14.1266\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded"
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX12.87360\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe"="C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX12.87360\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded"
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX06.062\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe"="C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX06.062\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded"
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.969\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe"="C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.969\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded"
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX02.672\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe"="C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX02.672\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded"
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.766\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe"="C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.766\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded"
"C:\Program Files\ItalongjuMT2\Italongjumt2.exe"="C:\Program Files\ItalongjuMT2\Italongjumt2.exe:*:Enabled:Italongjumt2"
"C:\Documents and Settings\pc\Data aplikací\PowerChallenge\PowerSoccer\PowerSoccer.exe"="C:\Documents and Settings\pc\Data aplikací\PowerChallenge\PowerSoccer\PowerSoccer.exe:*:Enabled:PowerSoccer"
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX03.391\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe"="C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX03.391\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded"
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.953\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe"="C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.953\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded"
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.156\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe"="C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.156\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded"
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.125\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe"="C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.125\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded"
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.625\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe"="C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.625\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded"
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.969\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe"="C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.969\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded"
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.672\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe"="C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.672\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded"
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.140\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe"="C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.140\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded"
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.875\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe"="C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.875\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded"
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX27.172\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe"="C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX27.172\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded"
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.812\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe"="C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.812\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded"
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.062\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe"="C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.062\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded"
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.844\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe"="C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.844\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded"
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX50.750\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe"="C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX50.750\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded"
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.265\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe"="C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.265\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded"
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX18.000\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe"="C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX18.000\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded"
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.719\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe"="C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.719\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded"
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.765\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe"="C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.765\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded"
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.094\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe"="C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.094\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded"
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.593\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe"="C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.593\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded"
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.734\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe"="C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.734\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded"
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.281\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe"="C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.281\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded"
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.985\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe"="C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.985\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded"
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.703\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe"="C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.703\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded"
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.360\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe"="C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.360\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded"
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.500\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe"="C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.500\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded"
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.219\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe"="C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.219\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded"
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.671\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe"="C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX01.671\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded"
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX23.360\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe"="C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX23.360\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded"
"C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.797\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe"="C:\Documents and Settings\pc\Local Settings\Temp\Rar$EX00.797\GodMt2-Reloaded\Client\GodMt2-Reloaded.exe:*:Enabled:GodMt2-Reloaded"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Pando Networks\Media Booster\PMB.exe"="C:\Program Files\Pando Networks\Media Booster\PMB.exe:*:Enabled:Pando Media Booster"
"C:\Program Files\ICQ7.4\ICQ.exe"="C:\Program Files\ICQ7.4\ICQ.exe:*:Enabled:ICQ7.4"

======List of files/folders created in the last 1 months======

2011-02-06 10:26:18 ----D---- C:\rsit
2011-02-06 09:09:38 ----D---- C:\Program Files\GamePark
2011-02-05 13:06:37 ----A---- C:\windows\ntbtlog.txt
2011-02-05 12:15:14 ----A---- C:\windows\system32\drivers\mbamswissarmy.sys
2011-02-05 12:15:08 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2011-02-05 12:15:08 ----A---- C:\windows\system32\drivers\mbam.sys
2011-02-05 11:37:43 ----HD---- C:\windows\ie8
2011-02-05 11:36:52 ----D---- C:\Program Files\System Search Dispatcher
2011-02-05 11:36:52 ----D---- C:\Program Files\DoubleD
2011-02-05 08:55:58 ----D---- C:\Program Files\trend micro
2011-02-04 17:53:09 ----D---- C:\Documents and Settings\pc\Data aplikací\Malwarebytes
2011-02-04 17:53:02 ----D---- C:\Documents and Settings\All Users\Data aplikací\Malwarebytes
2011-02-04 16:21:18 ----A---- C:\windows\imsins.BAK
2011-02-04 16:19:35 ----DC---- C:\windows\ie8(2)
2011-02-01 19:04:14 ----D---- C:\Program Files\ICQ7.4
2011-02-01 17:17:40 ----D---- C:\Documents and Settings\All Users\Data aplikací\Solidshield
2011-02-01 16:46:16 ----D---- C:\Program Files\ESET
2011-01-28 18:55:45 ----A---- C:\windows\_MSRSTRT.EXE
2011-01-28 18:51:00 ----D---- C:\Documents and Settings\pc\Data aplikací\PriceGong
2011-01-26 16:14:50 ----D---- C:\Documents and Settings\pc\Data aplikací\BlackBean
2011-01-26 16:07:22 ----D---- C:\Program Files\BlackBeanGames
2011-01-26 15:16:48 ----D---- C:\Program Files\Atari
2011-01-25 18:44:21 ----D---- C:\Documents and Settings\pc\Data aplikací\Local
2011-01-25 18:43:48 ----D---- C:\Documents and Settings\pc\Data aplikací\DivX
2011-01-25 18:37:46 ----D---- C:\Program Files\DivX
2011-01-25 18:37:02 ----D---- C:\Documents and Settings\All Users\Data aplikací\DivX
2011-01-16 10:56:13 ----D---- C:\Documents and Settings\All Users\Data aplikací\regid.1986-12.com.adobe
2011-01-16 09:33:41 ----D---- C:\Program Files\Adobe Media Player
2011-01-15 17:27:33 ----D---- C:\Documents and Settings\All Users\Data aplikací\The Skins Factory
2011-01-15 17:08:56 ----A---- C:\desktop.ini
2011-01-15 17:07:50 ----D---- C:\Documents and Settings\pc\Data aplikací\Skinux
2011-01-15 15:55:23 ----D---- C:\Program Files\AlienGUIse
2011-01-15 15:32:51 ----D---- C:\Program Files\Conduit
2011-01-15 15:32:48 ----D---- C:\Program Files\BS_Player
2011-01-15 15:32:39 ----D---- C:\Documents and Settings\pc\Data aplikací\BSplayer Pro
2011-01-15 15:32:39 ----D---- C:\Documents and Settings\pc\Data aplikací\BSplayer
2011-01-15 15:32:30 ----D---- C:\Program Files\Webteh
2011-01-15 15:15:11 ----D---- C:\Program Files\The KMPlayer
2011-01-13 16:32:42 ----A---- C:\windows\system32\spmsg.dll
2011-01-13 16:32:04 ----HDC---- C:\windows\$NtUninstallKB2419632$
2011-01-12 17:48:06 ----SHD---- C:\Documents and Settings\All Users\Data aplikací\SecuROM
2011-01-08 19:57:28 ----D---- C:\TopCD

======List of files/folders modified in the last 1 months======

2011-02-06 10:26:27 ----D---- C:\windows\Prefetch
2011-02-06 10:26:20 ----D---- C:\windows\Temp
2011-02-06 10:21:04 ----A---- C:\windows\SchedLgU.Txt
2011-02-06 10:14:47 ----D---- C:\windows\system32
2011-02-06 09:30:38 ----D---- C:\Documents and Settings\pc\Data aplikací\OpenOffice.org2
2011-02-06 09:11:29 ----D---- C:\Program Files\Windows Media Player
2011-02-06 09:09:38 ----D---- C:\Program Files
2011-02-06 08:09:15 ----AD---- C:\Documents and Settings\All Users\Data aplikací\TEMP
2011-02-06 07:48:41 ----D---- C:\windows\system32\drivers\etc
2011-02-06 07:48:09 ----D---- C:\windows\system32\DirectX
2011-02-06 07:48:01 ----SHD---- C:\windows\Installer
2011-02-06 07:47:25 ----D---- C:\WINDOWS
2011-02-06 07:47:22 ----D---- C:\Program Files\ICQ6Toolbar
2011-02-05 19:03:09 ----A---- C:\windows\system32\PnkBstrB.exe
2011-02-05 17:58:49 ----D---- C:\Documents and Settings\pc\Data aplikací\ICQ
2011-02-05 13:15:03 ----D---- C:\Documents and Settings
2011-02-05 12:15:14 ----D---- C:\windows\system32\drivers
2011-02-05 11:39:17 ----D---- C:\windows\system32\config
2011-02-05 11:38:51 ----D---- C:\windows\system32\wbem
2011-02-05 11:38:50 ----D---- C:\windows\Registration
2011-02-05 11:38:17 ----RSHDC---- C:\windows\system32\dllcache
2011-02-05 11:38:17 ----D---- C:\Program Files\Internet Explorer
2011-02-05 11:37:59 ----D---- C:\Program Files\Seznam.cz
2011-02-05 11:37:42 ----HD---- C:\windows\inf
2011-02-05 11:37:38 ----D---- C:\windows\ie8updates
2011-02-05 11:37:24 ----D---- C:\Hry
2011-02-05 11:36:17 ----D---- C:\windows\system32\Restore
2011-02-04 18:08:43 ----RD---- C:\windows\Web
2011-02-04 17:36:52 ----D---- C:\windows\system32\CatRoot
2011-02-04 17:36:46 ----D---- C:\windows\system32\CatRoot2
2011-02-04 17:32:37 ----D---- C:\Documents and Settings\pc\Data aplikací\Skype
2011-02-04 16:36:45 ----D---- C:\Documents and Settings\pc\Data aplikací\skypePM
2011-02-04 16:23:48 ----D---- C:\windows\Media
2011-02-04 16:23:48 ----D---- C:\windows\Help
2011-02-04 16:21:08 ----D---- C:\windows\system32\en-US
2011-02-04 16:14:28 ----D---- C:\windows\system32\cs-cz
2011-02-02 20:41:54 ----A---- C:\windows\wincmd.ini
2011-02-02 14:33:07 ----D---- C:\Program Files\Ubisoft
2011-02-01 19:05:04 ----HD---- C:\Program Files\InstallShield Installation Information
2011-02-01 16:37:10 ----RSD---- C:\windows\assembly
2011-01-31 18:57:49 ----D---- C:\Documents and Settings\pc\Data aplikací\HLSW
2011-01-31 18:39:52 ----D---- C:\Program Files\Zaparit
2011-01-31 18:00:44 ----SD---- C:\Program Files\HLSW
2011-01-27 17:40:59 ----D---- C:\Program Files\Opera
2011-01-25 20:11:37 ----D---- C:\Program Files\Common Files
2011-01-17 17:26:29 ----D---- C:\Documents and Settings\pc\Data aplikací\Canon
2011-01-16 19:16:28 ----D---- C:\Program Files\Electronic Arts
2011-01-16 19:03:53 ----SD---- C:\windows\Tasks
2011-01-16 19:03:48 ----D---- C:\Documents and Settings\All Users\Data aplikací\Adobe
2011-01-16 19:03:08 ----D---- C:\Program Files\Adobe
2011-01-16 11:01:05 ----D---- C:\Documents and Settings\pc\Data aplikací\Adobe
2011-01-16 10:55:44 ----D---- C:\Program Files\Common Files\Adobe
2011-01-16 09:34:34 ----RSD---- C:\windows\Fonts
2011-01-15 16:25:14 ----D---- C:\windows\Debug
2011-01-15 16:25:13 ----D---- C:\windows\Minidump
2011-01-14 17:44:05 ----D---- C:\windows\WinSxS
2011-01-12 18:39:26 ----D---- C:\Program Files\McAfee
2011-01-12 17:32:24 ----D---- C:\Program Files\Rockstar Games
2011-01-12 16:43:25 ----D---- C:\Documents and Settings\pc\Data aplikací\AIMP
2011-01-12 16:11:35 ----HD---- C:\windows\$hf_mig$
2011-01-09 15:10:07 ----D---- C:\windows\system32\ReinstallBackups
2011-01-08 11:21:19 ----D---- C:\Program Files\City Interactive
2011-01-08 11:20:17 ----D---- C:\Program Files\EA Sports
2011-01-08 11:08:35 ----D---- C:\Program Files\Microsoft Games
2011-01-08 10:34:03 ----D---- C:\Documents and Settings\All Users\Data aplikací\Ubisoft
2011-01-08 10:15:20 ----D---- C:\Documents and Settings\pc\Data aplikací\Black Sea Studios
2011-01-08 10:15:18 ----A---- C:\windows\system32\CmdLineExt03.dll
2011-01-07 16:05:00 ----D---- C:\Program Files\Microsoft Silverlight

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 ohci1394;Hostitelský řadič IEEE 1394 dle standardu OHCI Texas Instruments; C:\windows\system32\DRIVERS\ohci1394.sys [2008-04-13 61696]
R0 sfdrv01;StarForce Protection Environment Driver (version 1.x); C:\windows\System32\drivers\sfdrv01.sys [2005-08-10 50688]
R0 sfhlp02;StarForce Protection Helper Driver (version 2.x); C:\windows\System32\drivers\sfhlp02.sys [2005-05-16 6656]
R0 sfsync02;StarForce Protection Synchronization Driver (version 2.x); C:\windows\System32\drivers\sfsync02.sys [2005-08-10 19968]
R0 sfsync03;StarForce Protection Synchronization Driver (version 3.x); C:\windows\System32\drivers\sfsync03.sys [2005-10-13 35328]
R0 sfvfs02;StarForce Protection VFS Driver (version 2.x); C:\windows\System32\drivers\sfvfs02.sys [2005-11-03 63488]
R0 sptd;sptd; C:\windows\System32\Drivers\sptd.sys [2009-12-09 691696]
R0 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\windows\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
R1 ehdrv;ehdrv; C:\windows\system32\DRIVERS\ehdrv.sys [2010-12-21 115008]
R1 epfwtdir;epfwtdir; C:\windows\system32\DRIVERS\epfwtdir.sys [2010-12-21 94872]
R1 intelppm;Řadič procesoru Intel; C:\windows\system32\DRIVERS\intelppm.sys [2008-04-14 40192]
R1 ISODrive;ISO DVD/CD-ROM Device Driver; \??\C:\Program Files\UltraISO\drivers\ISODrive.sys []
R1 kbdhid;Ovladač klávesnice standardu HID; C:\windows\system32\DRIVERS\kbdhid.sys [2008-04-14 14592]
R1 PQNTDrv;PQNTDrv; C:\windows\system32\drivers\PQNTDrv.sys [2002-09-16 4228]
R1 SpyEmrg;Spy Emergency Driver; C:\windows\System32\Drivers\spyemrg.sys [2009-09-17 12344]
R2 Aspi32;Aspi32; C:\windows\system32\drivers\Aspi32.sys [2007-03-18 17005]
R2 atksgt;atksgt; C:\windows\system32\DRIVERS\atksgt.sys [2010-12-20 281760]
R2 eamon;eamon; C:\windows\system32\DRIVERS\eamon.sys [2010-12-21 141264]
R2 irda;Protokol IrDA; C:\windows\system32\DRIVERS\irda.sys [2008-04-13 88192]
R2 lirsgt;lirsgt; C:\windows\system32\DRIVERS\lirsgt.sys [2010-12-20 25888]
R2 Sentinel;Sentinel; C:\windows\System32\Drivers\SENTINEL.SYS [2002-12-17 76288]
R3 Arp1394;Protokol 1394 ARP Client; C:\windows\system32\DRIVERS\arp1394.sys [2008-04-13 60800]
R3 ati2mtag;ati2mtag; C:\windows\system32\DRIVERS\ati2mtag.sys [2010-09-11 5417472]
R3 HdAudAddService;ATI Function Driver for High Definition Audio Service; C:\windows\system32\drivers\AtiHdAud.sys [2006-12-28 84992]
R3 HDAudBus;Ovladač Microsoft UAA pro sběrnici High Definition Audio; C:\windows\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 HidUsb;Ovladač třídy standardu HID; C:\windows\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\windows\system32\drivers\RtkHDAud.sys [2007-01-30 4474368]
R3 mouhid;Ovladač myši standardu HID; C:\windows\system32\DRIVERS\mouhid.sys [2001-10-24 12160]
R3 NIC1394;1394 Net Driver; C:\windows\system32\DRIVERS\nic1394.sys [2008-04-13 61824]
R3 Rasirda;WAN Miniport (IrDA); C:\windows\system32\DRIVERS\rasirda.sys [2001-08-17 19584]
R3 SpyEmrgGuard;Spy Emergency Real-Time Shield Driver; C:\windows\System32\Drivers\spyemrg_guard.sys [2009-09-17 14392]
R3 usbccgp;Obecný nadřazený ovladač Microsoft USB; C:\windows\system32\DRIVERS\usbccgp.sys [2008-04-13 32128]
R3 USBSTOR;Ovladač velkokapacitního paměťového zařízení USB; C:\windows\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
R3 usbuhci;Ovladač Microsoft univerzálního hostitelského řadiče USB od společnosti Microsoft; C:\windows\system32\DRIVERS\usbuhci.sys [2008-04-13 20608]
R3 whfltr2k;WheelMouse USB Lower Filter Driver; C:\windows\system32\DRIVERS\whfltr2k.sys [2007-01-26 6784]
R3 yukonwxp;NDIS5.1 Miniport Driver for Marvell Yukon Ethernet Controller; C:\windows\system32\DRIVERS\yk51x86.sys [2006-11-22 250496]
S3 ahg6xwgi;ahg6xwgi; C:\windows\system32\drivers\ahg6xwgi.sys []
S3 CrystalSysInfo;CrystalSysInfo; \??\C:\Program Files\MediaCoder\SysInfo.sys []
S3 hamachi;Hamachi Network Interface; C:\windows\system32\DRIVERS\hamachi.sys [2010-02-03 26176]
S3 MSIRCOMM;Microsoft IR Communications Driver; C:\windows\system32\DRIVERS\MSIRCOMM.sys [2008-04-13 22016]
S3 nmwcd;Nokia USB Phone Parent; C:\windows\system32\drivers\ccdcmb.sys [2008-05-02 17536]
S3 NTProcDrv;Process creation detector for NT.; \??\C:\windows\TEMP\drv1.tmp []
S3 Pcouffin;VSO Software pcouffin; C:\windows\System32\Drivers\Pcouffin.sys [2009-07-13 47360]
S3 SpyEmrgAccess;Spy Emergency OnAccess Driver; C:\windows\System32\Drivers\spyemrg_access.sys [2009-09-17 18232]
S3 STIrUsb;SigmaTel USB-IrDA Dongle; C:\windows\system32\DRIVERS\irstusb.sys [2001-08-17 26624]
S3 usbprint;Třída USB Printer; C:\windows\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
S3 usbscan;Ovladač skeneru USB; C:\windows\system32\DRIVERS\usbscan.sys [2008-04-13 15104]
S3 Wdf01000;Wdf01000; C:\windows\system32\DRIVERS\Wdf01000.sys [2006-11-02 492000]
S3 WpdUsb;WpdUsb; C:\windows\system32\DRIVERS\wpdusb.sys [2006-10-18 38528]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\windows\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 Ati HotKey Poller;Ati HotKey Poller; C:\windows\system32\Ati2evxx.exe [2010-09-11 606208]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe [2011-01-12 810144]
R2 ICQ Service;ICQ Service; C:\Program Files\ICQ6Toolbar\ICQ Service.exe [2010-09-06 247096]
R2 Irmon;Sledování infračerveného přenosu; C:\windows\system32\svchost.exe [2008-04-14 14336]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2010-11-12 153376]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2006-10-19 61440]
R2 McAfee SiteAdvisor Service;McAfee SiteAdvisor Service; c:\PROGRA~1\mcafee\SITEAD~1\mcsacore.exe [2010-11-24 88176]
R2 MDM;Machine Debug Manager; C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE [2003-06-19 322120]
R2 PnkBstrA;PnkBstrA; C:\windows\system32\PnkBstrA.exe [2010-11-20 75136]
R2 SpyEmrgSrv;Spy Emergency Engine Service; C:\Program Files\NETGATE\Spy Emergency\SpyEmergencySrv.exe [2010-08-23 1825408]
R2 WSearch;Windows Search; C:\windows\system32\SearchIndexer.exe [2008-05-26 439808]
R2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\windows\system32\svchost.exe [2008-04-14 14336]
S2 ATI Smart;ATI Smart; C:\WINDOWS\system32\ati2sgag.exe [2007-12-20 593920]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2010-03-09 135664]
S3 aspnet_state;Stavová služba ASP.NET; C:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 EhttpSrv;ESET HTTP Server; C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe [2011-01-12 33584]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-08-06 182768]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe [2005-11-14 69632]
S3 idsvc;Služba Windows CardSpace; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 McComponentHostService;McAfee Security Scan Component Host Service; C:\Program Files\McAfee Security Scan\2.0.181\McCHSvc.exe [2010-01-15 227232]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S3 WMPNetworkSvc;Služba Windows Media Player Network Sharing; C:\Program Files\Windows Media Player\WMPNetwk.exe [2007-01-05 913920]
S4 NetTcpPortSharing;Služba sdílení portů Net.Tcp; c:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]

-----------------EOF-----------------

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: C:\WINDOWS\system32\cmd.exe maze subory

#29 Příspěvek od motji »

:arrow: spusťte přejmenované HJT C:\Program Files\trend micro\pc.exe , má tuto ikonku Obrázek

- Klikněte na "Do a system scan only"
- U řádku
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://search.qip.ru/ie
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://search.qip.ru
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://start.icq.com/xmas/
O2 - BHO: QIPBHO - {95289393-33EA-4F8D-B952-483415B9C955} - (no file)
O3 - Toolbar: (no name) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - (no file)
O3 - Toolbar: (no name) - {3041d03e-fd4b-44e0-b742-2d9b88305f98} - (no file)
O3 - Toolbar: (no name) - {855F3B16-6D32-4fe6-8A56-BBB695989046} - (no file)
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"


- Dejte fajfku do čtverečku a zmáčkněte Fix checked
- restartujte pc



Pokud nejsou problémy, je to vše :)
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

Uživatelský avatar
Dvori66
Návštěvník
Návštěvník
Příspěvky: 94
Registrován: 04 úno 2011 18:29
Kontaktovat uživatele:

Re: C:\WINDOWS\system32\cmd.exe maze subory

#30 Příspěvek od Dvori66 »

Děkuju, chtěl bych se ještě zeptat jestli při čištění CCleaner mám zaškrtnout i okénko dočasné soubory?? A také jsem se chtěl zeptat jaký free antivir byste mi mohla doporučit?? děkuji :)

Odpovědět