Stránka 1 z 3

ISP odpojeno - generuji spam

Napsal: 18 úno 2011 09:43
od hu.go
Prosím o pomoc, kontrolu logu. PC funguje na pohled normálně, ale včera odpoledne jsem byl mým ISP odpojen s upozorněním, že z mého PC odchází čilý spamový provoz.

AVG ani v nouzovém režimu nenašel nic, MBAM taky nic.

Přikládám log s RSIT.

jo, Win 7 Ulti x64, AVG IS, ...


díky

Hu.Go

Logfile of random's system information tool 1.08 (written by random/random)
Run by Jara at 2011-02-18 09:32:06
Microsoft Windows 7 Ultimate
System drive C: has 120 GB (25%) free of 477 GB
Total RAM: 6143 MB (64% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 9:32:18, on 18.2.2011
Platform: Windows 7 (WinNT 6.00.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.16722)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\AVG\AVG PC Tuneup 2011\BoostSpeed.exe
C:\Windows\SysWOW64\HsMgr.exe
C:\Program Files\ASUS Xonar D1 Audio\Customapp\ASUSAUDIOCENTER.EXE
C:\Program Files (x86)\TomTom HOME 2\TomTomHOMERunner.exe
C:\Users\Jara\AppData\Local\Google\Update\GoogleUpdate.exe
C:\Users\Jara\Program Files (x86)\DNA\btdna.exe
C:\Users\Jara\AppData\Roaming\SanDisk\Sansa Updater\SansaDispatch.exe
C:\Program Files (x86)\Logitech\Vid HD\Vid.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\ICQ7.2\ICQ.exe
C:\Program Files (x86)\Synology Data Replicator 3\Backup.exe
C:\Program Files (x86)\Kodak\Kodak EasyShare software\bin\EasyShare.exe
C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE
C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe
C:\Program Files (x86)\Common Files\Nokia\MPlatform\NokiaMServer.exe
C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\acrotray.exe
C:\Program Files (x86)\VMware\VMware Workstation\vmware-tray.exe
C:\Program Files (x86)\AVG\AVG10\avgtray.exe
C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe
C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ArcCon.ac
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
C:\Program Files (x86)\Logitech\LWS\Webcam Software\CameraHelperShell.exe
C:\Program Files (x86)\AVG\AVG10\Identity Protection\agent\bin\avgidsmonitor.exe
C:\Program Files (x86)\Common Files\Logishrd\LQCVFX\COCIManager.exe
C:\Program Files (x86)\DisplayFusion\DisplayFusionHookx86.exe
C:\Program Files (x86)\AVG\AVG10\avgui.exe
C:\Program Files (x86)\AVG\AVG10\avgcfgex.exe
C:\Program Files (x86)\Internet Explorer\IELowutil.exe
C:\Program Files\trend micro\Jara.exe
C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.diit.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - - (no file)
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: ContributeBHO Class - {074C1DC5-9320-4A9A-947D-C042949C6216} - C:\Program Files (x86)\Adobe\Adobe Contribute CS5\Plugins\IEPlugin\contributeieplugin.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files (x86)\AVG\AVG10\avgssie.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL
O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
O2 - BHO: SmartSelect - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O3 - Toolbar: Spb Wallet - {2913D3DD-9363-4C21-B205-C19A584A0674} - C:\Program Files (x86)\Spb Wallet\SpbWalletToolbar.dll
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
O3 - Toolbar: Contribute Toolbar - {517BDDE4-E3A7-4570-B21E-2B52B6139FC7} - C:\Program Files (x86)\Adobe\Adobe Contribute CS5\Plugins\IEPlugin\contributeieplugin.dll
O4 - HKLM\..\Run: [RemoteControl10] "C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe"
O4 - HKLM\..\Run: [NokiaMServer] C:\Program Files (x86)\Common Files\Nokia\MPlatform\NokiaMServer /watchfiles startup
O4 - HKLM\..\Run: [Adobe Acrobat Speed Launcher] "C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\Acrobat_sl.exe"
O4 - HKLM\..\Run: [Acrobat Assistant 8.0] "C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\Acrotray.exe"
O4 - HKLM\..\Run: [vmware-tray] "C:\Program Files (x86)\VMware\VMware Workstation\vmware-tray.exe"
O4 - HKLM\..\Run: [AVG_TRAY] C:\Program Files (x86)\AVG\AVG10\avgtray.exe
O4 - HKLM\..\Run: [LWS] C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe -hide
O4 - HKLM\..\Run: [AdobeCS5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKLM\..\Run: [ArcSoft Connection Service] C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
O4 - HKLM\..\Run: [BCSSync] "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [TomTomHOME.exe] "C:\Program Files (x86)\TomTom HOME 2\TomTomHOMERunner.exe"
O4 - HKCU\..\Run: [Google Update] "C:\Users\Jara\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [DisplayFusion] "C:\Program Files (x86)\DisplayFusion\DisplayFusion.exe"
O4 - HKCU\..\Run: [BitTorrent DNA] "C:\Users\Jara\Program Files (x86)\DNA\btdna.exe"
O4 - HKCU\..\Run: [SansaDispatch] C:\Users\Jara\AppData\Roaming\SanDisk\Sansa Updater\SansaDispatch.exe
O4 - HKCU\..\Run: [SandboxieControl] "C:\Program Files\Sandboxie\SbieCtrl.exe"
O4 - HKCU\..\Run: [Logitech Vid] "C:\Program Files (x86)\Logitech\Vid HD\Vid.exe" -bootmode
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [ICQ] "C:\Program Files (x86)\ICQ7.2\ICQ.exe" silent loginmode=4
O4 - HKCU\..\Run: [Data Replicator 3] "C:\Program Files (x86)\Synology Data Replicator 3\Backup.exe" /MIN
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Startup: Výřezy obrazovky a spuštění aplikace OneNote 2010.lnk = C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE
O4 - Global Startup: Software Kodak EasyShare.lnk = C:\Program Files (x86)\Kodak\Kodak EasyShare software\bin\EasyShare.exe
O8 - Extra context menu item: &Download with BitKinex - C:\Program Files (x86)\BitKinex\ieext_cp.htm
O8 - Extra context menu item: &Register in BitKinex - C:\Program Files (x86)\BitKinex\ieext_reg.htm
O8 - Extra context menu item: Append to existing PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convert link target to Adobe PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
O8 - Extra context menu item: Convert link target to existing PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
O8 - Extra context menu item: Convert to Adobe PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~2\MICROS~1\Office14\ONBttnIE.dll/105
O8 - Extra context menu item: Připojit cíl vazby k existujícímu PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
O8 - Extra context menu item: Připojit k existujícímu PDF - res://C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppend.html
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: @C:\Windows\WindowsMobile\INetRepl.dll,-222 - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll
O9 - Extra 'Tools' menuitem: @C:\Windows\WindowsMobile\INetRepl.dll,-223 - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll
O9 - Extra button: ICQ7.2 - {72EFBFE4-C74F-4187-AEFD-73EA3BE968D6} - C:\Program Files (x86)\ICQ7.2\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ7.2 - {72EFBFE4-C74F-4187-AEFD-73EA3BE968D6} - C:\Program Files (x86)\ICQ7.2\ICQ.exe
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\vmware\vmware workstation\vsocklib.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\vmware\vmware workstation\vsocklib.dll
O15 - Trusted Zone: http://www.diit.cz
O15 - Trusted Zone: http://www.geocaching.com
O15 - Trusted Zone: http://xoomer.virgilio.it
O16 - DPF: Garmin Communicator Plug-In - https://static.garmincdn.com/gcp/ie/2.9 ... ontrol.CAB
O16 - DPF: {4871A87A-BFDD-4106-8153-FFDE2BAC2967} (DLM Control) - http://dlm.tools.akamai.com/dlmanager/v ... .2.5.7.cab
O16 - DPF: {D1E7CBDA-E60E-4970-A01C-37301EF7BF98} (Futuremark SystemInfo) - http://service.futuremark.com/gom/receiver/tc/FMSI.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O16 - DPF: {F680B28A-3AEE-4C88-93ED-45AE9215C128} (CryptSignX Control) - http://adisepo.mfcr.cz/adistc/adis/idpr ... x_1015.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{C0090DAC-FD5D-4493-B333-E59FAC525C9E}: NameServer = 192.168.111.1
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files (x86)\AVG\AVG10\avgpp.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O20 - AppInit_DLLs: acaptuser32.dll
O23 - Service: ArcSoft Connect Daemon (ACDaemon) - ArcSoft Inc. - C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
O23 - Service: Acronis OS Selector Reinstall Service (AcronisOSSReinstallSvc) - Unknown owner - C:\Program Files (x86)\Common Files\Acronis\Acronis Disk Director\oss_reinstall_svc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AVG Firewall (avgfws) - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG10\avgfws.exe
O23 - Service: AVGIDSAgent - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe
O23 - Service: AVG WatchDog (avgwd) - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG10\avgwdsvc.exe
O23 - Service: BitKinex File Transfer Service (BitKinex) - Unknown owner - C:\Program Files (x86)\BitKinex\bitkinexsvc.exe
O23 - Service: Bonjour Service - Apple Computer, Inc. - C:\Program Files (x86)\Bonjour\mDNSResponder.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Process Monitor (LVPrcS64) - Logitech Inc. - C:\Program Files\Common Files\Logishrd\LVMVFM\LVPrcSrv.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NMSAccessU - Unknown owner - C:\Program Files (x86)\CDBurnerXP\NMSAccessU.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: OpenVPN Service (OpenVPNService) - Unknown owner - C:\Program Files (x86)\OpenVPN\bin\openvpnserv.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - CACE Technologies, Inc. - C:\Program Files (x86)\WinPcap\rpcapd.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Sandboxie Service (SbieSvc) - SANDBOXIE L.T.D - C:\Program Files\Sandboxie\SbieSvc.exe
O23 - Service: ServiceLayer - Nokia - C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: SynoDrService - Unknown owner - C:\Program Files (x86)\Synology Data Replicator 3\SynoDrServicex64.exe
O23 - Service: TeamViewer 6 (TeamViewer6) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\Version6\TeamViewer_Service.exe
O23 - Service: TomTomHOMEService - TomTom - C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe
O23 - Service: VMware Agent Service (ufad-ws60) - VMware, Inc. - C:\Program Files (x86)\VMware\VMware Workstation\vmware-ufad.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: VMware Authorization Service (VMAuthdService) - VMware, Inc. - C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe
O23 - Service: VMware DHCP Service (VMnetDHCP) - VMware, Inc. - C:\Windows\system32\vmnetdhcp.exe
O23 - Service: VMware USB Arbitration Service (VMUSBArbService) - VMware, Inc. - C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator.exe
O23 - Service: VMware NAT Service - VMware, Inc. - C:\Windows\system32\vmnat.exe
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 18175 bytes

======Listing Processes======

\SystemRoot\System32\smss.exe
C:\PROGRA~2\AVG\AVG10\avgchsva.exe /boot
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\nvvsvc.exe
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
"C:\Program Files\Sandboxie\SbieSvc.exe"
C:\Windows\system32\nvvsvc.exe -session -first
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe"
"C:\Program Files (x86)\AVG\AVG10\avgfws.exe"
"C:\Program Files (x86)\AVG\AVG10\avgwdsvc.exe"
"C:\Program Files (x86)\BitKinex\bitkinexsvc.exe" DISPATCH
"C:\Program Files (x86)\Bonjour\mDNSResponder.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files\Common Files\Logishrd\LVMVFM\LVPrcSrv.exe"
"C:\Program Files (x86)\CDBurnerXP\NMSAccessU.exe"
"C:\Program Files (x86)\Common Files\Logishrd\LVMVFM\LVPrS64H.exe" -Embedding
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\TeamViewer\Version6\TeamViewer_Service.exe"
"C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe"
"C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator.exe"
C:\Windows\SysWOW64\vmnat.exe
C:\Windows\system32\vssvc.exe
"C:\Program Files (x86)\AVG\AVG10\avgam.exe"
"C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe"
"C:\Program Files (x86)\AVG\AVG10\avgnsa.exe"
C:\Windows\SysWOW64\vmnetdhcp.exe
"C:\Program Files (x86)\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe"
"C:\Program Files (x86)\Synology Data Replicator 3\SynoDrServicex64.exe"
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Windows\system32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-57973cc9-b368-4ba5-b9e0-966bc758a4fe -SystemEventPortName:HostProcess-5133fec9-34f7-4cf6-8a7e-75b8e25e5788 -IoCancelEventPortName:HostProcess-591d8b8c-79f1-4b79-94f6-c33626641f31 -NonStateChangingEventPortName:HostProcess-54c42f5b-d903-434d-a99e-5e2d4617228d -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:7f0413b6-c9d4-423e-89c2-df1da33b3db0
"taskhost.exe"
taskeng.exe {5BDD1978-145E-4291-B032-F86F84DE059A}
"C:\Program Files (x86)\AVG\AVG PC Tuneup 2011\BoostSpeed.exe" -UseTray
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Windows\SysWOW64\HsMgr.exe" Envoke
"C:\Windows\system\HsMgr64.exe" Envoke
"C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE" /logon
"C:\Windows\WindowsMobile\wmdc.exe"
"C:\Program Files (x86)\ASUS Bluetooth Suite\BtvStack.exe"
"C:\Program Files\ASUS Xonar D1 Audio\Customapp\ASUSAUDIOCENTER.EXE"
"C:\Program Files\Windows Sidebar\sidebar.exe" /autoRun
"C:\Program Files (x86)\TomTom HOME 2\TomTomHOMERunner.exe"
C:\Windows\system32\svchost.exe -k WindowsMobile
"C:\Users\Jara\AppData\Local\Google\Update\GoogleUpdate.exe" /c
"C:\Program Files (x86)\DisplayFusion\DisplayFusion.exe"
"C:\Users\Jara\Program Files (x86)\DNA\btdna.exe"
"C:\Users\Jara\AppData\Roaming\SanDisk\Sansa Updater\SansaDispatch.exe"
"C:\Program Files\Sandboxie\SbieCtrl.exe"
"C:\Program Files (x86)\Logitech\Vid HD\Vid.exe" -bootmode
"C:\Program Files (x86)\Skype\Phone\Skype.exe" /nosplash /minimized
"C:\Program Files (x86)\ICQ7.2\ICQ.exe" silent loginmode=4
"C:\Program Files (x86)\Synology Data Replicator 3\Backup.exe" /MIN
"C:\Program Files (x86)\Kodak\Kodak EasyShare software\bin\EasyShare.exe" -hx
"C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE" /tsr
"C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe"
"C:\Program Files (x86)\Common Files\Nokia\MPlatform\NokiaMServer.exe" /watchfiles startup
"C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\acrotray.exe"
"C:\Program Files (x86)\VMware\VMware Workstation\vmware-tray.exe"
"C:\Program Files (x86)\AVG\AVG10\avgtray.exe"
"C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe" -hide
"C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe"
ArcCon.ac 66346 0
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\Logitech\LWS\Webcam Software\CameraHelperShell.exe" /hide
"C:\Program Files (x86)\AVG\AVG10\Identity Protection\agent\bin\avgidsmonitor.exe"
\??\C:\Windows\system32\conhost.exe
"C:\Program Files (x86)\Common Files\Logishrd\LQCVFX\COCIManager.exe" -Embedding
"C:\Program Files (x86)\DisplayFusion\DisplayFusionHookx86.exe" 132732|C:\Users\Jara\AppData\Roaming\DisplayFusion\DisplayFusionHookx86_04aba6b4-7fe9-48ad-a94d-23b1a0f9c8a0.dll
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe2_ Global\UsGthrCtrlFltPipeMssGthrPipe2 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
C:\Program Files (x86)\AVG\AVG10\avgcsrva.exe /pipeName=5b8ba900-30ae-411b-a1eb-e10b60f81947 /coreSdkOptions=18 /logConfFile="C:\ProgramData\AVG10\temp\fda7e229-828e-4d6a-a074-360f10f6fd4c-b08-oopp.tmp" /loggerName=AVG.NS.Core /binaryPath="C:\Program Files (x86)\AVG\AVG10\" /registryPath="SYSTEM\CurrentControlSet\Services\Avg\Avg10" /tempPath="C:\ProgramData\AVG10\temp\"
"C:\Program Files (x86)\AVG\AVG10\avgui.exe"
"C:\Program Files (x86)\AVG\AVG10\avgcfgex.exe" /command_id=ee34db60-62e5-447d-932c-8f213aadf50a /client_id=8177d974-1d9c-4862-b2ee-6746dd28426a
C:\Program Files (x86)\AVG\AVG10\avgcsrva.exe /pipeName=79e3fc53-ee94-4207-8a06-555b4def4b49 /coreSdkOptions=30 /logConfFile="C:\ProgramData\AVG10\temp\8f1c2f13-095c-4250-8deb-ea5e3a8f9574-51c-oopp.tmp" /loggerName=AVG.RS.Core /binaryPath="C:\Program Files (x86)\AVG\AVG10\" /registryPath="SYSTEM\CurrentControlSet\Services\Avg\Avg10" /tempPath="C:\ProgramData\AVG10\temp\"
"C:\Windows\system32\SearchFilterHost.exe" 0 580 584 592 65536 588
"G:\antiviry\RSITx64.exe"
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files (x86)\Internet Explorer\IELowutil.exe" -embedding
taskeng.exe {7E3C384D-2657-4754-8A01-01C56231758E}
"C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe"

======Scheduled tasks folder======

C:\Windows\tasks\EasyShare Registration Task.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1464662876-954682725-1912904226-1001Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1464662876-954682725-1912904226-1001UA.job
C:\Windows\tasks\Synology Data Replicator 3-Jara-PC-Jara.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}]
AVG Safe Search - C:\Program Files (x86)\AVG\AVG10\avgssiea.dll [2011-01-07 3846496]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2010-03-25 6722448]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL [2010-02-28 688528]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2010-09-18 43520]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{074C1DC5-9320-4A9A-947D-C042949C6216}]
ContributeBHO Class - C:\Program Files (x86)\Adobe\Adobe Contribute CS5\Plugins\IEPlugin\contributeieplugin.dll [2010-03-27 164312]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-09-22 75200]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}]
AVG Safe Search - C:\Program Files (x86)\AVG\AVG10\avgssie.dll [2011-01-07 2731872]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2010-03-25 4222864]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE7CD045-E861-484f-8273-0445EE161910}]
Adobe PDF Conversion Toolbar Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2010-09-22 349640]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL [2010-02-28 561552]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll [2010-07-17 41760]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F4971EE7-DAA0-4053-9964-665D8EE6A077}]
SmartSelect Class - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2010-09-22 349640]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{2913D3DD-9363-4C21-B205-C19A584A0674} - Spb Wallet - C:\Program Files (x86)\Spb Wallet\SpbWalletToolbar.dll [2010-02-08 114688]
{47833539-D0C5-4125-9FA8-0819E2EAAC93} - Adobe PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2010-09-22 349640]
{517BDDE4-E3A7-4570-B21E-2B52B6139FC7} - Contribute Toolbar - C:\Program Files (x86)\Adobe\Adobe Contribute CS5\Plugins\IEPlugin\contributeieplugin.dll [2010-03-27 164312]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Cmaudio8788"=C:\Windows\syswow64\RunDll32.exe [2009-07-14 44544]
"Cmaudio8788GX"=C:\Windows\syswow64\HsMgr.exe [2008-07-11 200704]
"Cmaudio8788GX64"=C:\Windows\system\HsMgr64.exe [2008-07-11 282112]
"CanonMyPrinter"=C:\Program Files\Canon\MyPrinter\BJMyPrt.exe [2009-07-27 2184520]
"Windows Mobile Device Center"=C:\Windows\WindowsMobile\wmdc.exe [2007-05-31 660360]
"AtherosBtStack"=C:\Program Files (x86)\ASUS Bluetooth Suite\BtvStack.exe [2009-10-28 388608]
"AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2010-03-06 500208]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2009-07-14 1475072]
"TomTomHOME.exe"=C:\Program Files (x86)\TomTom HOME 2\TomTomHOMERunner.exe [2010-08-24 247144]
"Google Update"=C:\Users\Jara\AppData\Local\Google\Update\GoogleUpdate.exe [2010-01-28 135664]
"DisplayFusion"=C:\Program Files (x86)\DisplayFusion\DisplayFusion.exe [2010-09-14 1275624]
"BitTorrent DNA"=C:\Users\Jara\Program Files (x86)\DNA\btdna.exe [2010-07-07 323392]
"SansaDispatch"=C:\Users\Jara\AppData\Roaming\SanDisk\Sansa Updater\SansaDispatch.exe [2010-07-27 79872]
"SandboxieControl"=C:\Program Files\Sandboxie\SbieCtrl.exe [2010-10-17 590056]
"Logitech Vid"=C:\Program Files (x86)\Logitech\Vid HD\Vid.exe [2010-10-29 5915480]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2010-10-11 16856968]
"ICQ"=C:\Program Files (x86)\ICQ7.2\ICQ.exe [2011-01-05 133432]
"Data Replicator 3"=C:\Program Files (x86)\Synology Data Replicator 3\Backup.exe [2010-03-03 11571200]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeAAMUpdater-1.0]
C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2010-03-06 500208]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeCS4ServiceManager]
C:\Program Files (x86)\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe -launchedbylogin []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeCS5ServiceManager]
C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [2010-02-22 406992]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\FMCore.exe]
C:\Program Files (x86)\Extensis\Suitcase Fusion 2\FMCore.exe [2009-10-29 8520704]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GrooveMonitor]
C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Nikon Transfer Monitor]
C:\Program Files (x86)\Common Files\Nikon\Monitor\NkMonitor.exe [2009-05-29 479232]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RemoteControl9]
C:\Program Files (x86)\CyberLink\PowerDVD9\PDVD9Serv.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^HotSync Manager.lnk]
C:\PROGRA~2\Palm\Hotsync.exe [2008-01-03 1392640]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"RemoteControl10"=C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [2010-02-02 87336]
"NokiaMServer"=C:\Program Files (x86)\Common Files\Nokia\MPlatform\NokiaMServer /watchfiles startup []
"Adobe Acrobat Speed Launcher"=C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\Acrobat_sl.exe [2010-09-23 38840]
"Acrobat Assistant 8.0"=C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\Acrotray.exe [2010-09-22 640440]
"vmware-tray"=C:\Program Files (x86)\VMware\VMware Workstation\vmware-tray.exe [2010-09-21 129584]
"AVG_TRAY"=C:\Program Files (x86)\AVG\AVG10\avgtray.exe [2011-01-07 2747744]
"LWS"=C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe [2010-05-07 165208]
"AdobeCS5ServiceManager"=C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [2010-02-22 406992]
"SwitchBoard"=C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
"ArcSoft Connection Service"=C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe [2010-10-27 207424]
"BCSSync"=C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [2010-03-13 91520]
"Adobe Reader Speed Launcher"=C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe [2011-01-31 35760]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2010-09-20 932288]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Software Kodak EasyShare.lnk - C:\Program Files (x86)\Kodak\Kodak EasyShare software\bin\EasyShare.exe

C:\Users\Jara\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Výřezy obrazovky a spuštění aplikace OneNote 2010.lnk - C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="acaptuser64.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2010-03-25 6722448]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2010-03-25 4222864]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"LogonHoursAction"=2
"DontDisplayLogonHoursWarnings"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
"NoDriveTypeAutoRun"=255

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 months======

2011-02-18 09:32:06 ----D---- C:\rsit
2011-02-18 09:28:05 ----D---- C:\Program Files (x86)\trend micro
2011-02-18 09:18:24 ----D---- C:\rsit-nouze
2011-02-18 09:16:30 ----D---- C:\Program Files\trend micro
2011-02-18 09:09:55 ----D---- C:\Users\Jara\AppData\Roaming\Malwarebytes
2011-02-18 09:00:33 ----D---- C:\ProgramData\Malwarebytes
2011-02-18 09:00:33 ----A---- C:\Windows\SYSWOW64\drivers\mbamswissarmy.sys
2011-02-18 09:00:30 ----A---- C:\Windows\system32\drivers\mbam.sys
2011-02-18 09:00:29 ----D---- C:\Program Files (x86)\Malwarebytes' Anti-Malware
2011-02-17 23:53:03 ----A---- C:\Windows\ntbtlog.txt
2011-02-09 08:09:05 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2011-02-09 08:09:05 ----A---- C:\Windows\system32\mshtml.dll
2011-02-09 08:09:02 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2011-02-09 08:09:01 ----A---- C:\Windows\SYSWOW64\mstime.dll
2011-02-09 08:09:01 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2011-02-09 08:09:01 ----A---- C:\Windows\SYSWOW64\msfeedsbs.dll
2011-02-09 08:09:01 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2011-02-09 08:09:01 ----A---- C:\Windows\SYSWOW64\iepeers.dll
2011-02-09 08:09:01 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2011-02-09 08:09:01 ----A---- C:\Windows\system32\mstime.dll
2011-02-09 08:09:01 ----A---- C:\Windows\system32\mshtmled.dll
2011-02-09 08:09:01 ----A---- C:\Windows\system32\msfeedsbs.dll
2011-02-09 08:09:01 ----A---- C:\Windows\system32\msfeeds.dll
2011-02-09 08:09:01 ----A---- C:\Windows\system32\iertutil.dll
2011-02-09 08:09:01 ----A---- C:\Windows\system32\iepeers.dll
2011-02-09 08:09:01 ----A---- C:\Windows\system32\iedkcs32.dll
2011-02-09 08:09:00 ----A---- C:\Windows\SYSWOW64\msfeedssync.exe
2011-02-09 08:09:00 ----A---- C:\Windows\SYSWOW64\licmgr10.dll
2011-02-09 08:09:00 ----A---- C:\Windows\system32\msfeedssync.exe
2011-02-09 08:09:00 ----A---- C:\Windows\system32\licmgr10.dll
2011-02-09 08:08:57 ----A---- C:\Windows\system32\kerberos.dll
2011-02-09 08:08:56 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2011-02-09 08:08:45 ----A---- C:\Windows\system32\win32k.sys
2011-02-09 08:08:44 ----A---- C:\Windows\system32\winsrv.dll
2011-02-09 08:08:43 ----A---- C:\Windows\system32\msxml6.dll
2011-02-09 08:08:42 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2011-02-09 08:08:42 ----A---- C:\Windows\SYSWOW64\upnp.dll
2011-02-09 08:08:42 ----A---- C:\Windows\SYSWOW64\msxml6.dll
2011-02-09 08:08:42 ----A---- C:\Windows\system32\wininet.dll
2011-02-09 08:08:42 ----A---- C:\Windows\system32\winhttp.dll
2011-02-09 08:08:42 ----A---- C:\Windows\system32\urlmon.dll
2011-02-09 08:08:42 ----A---- C:\Windows\system32\upnp.dll
2011-02-09 08:08:42 ----A---- C:\Windows\system32\msxml3.dll
2011-02-09 08:08:41 ----A---- C:\Windows\SYSWOW64\wscapi.dll
2011-02-09 08:08:41 ----A---- C:\Windows\SYSWOW64\wininet.dll
2011-02-09 08:08:41 ----A---- C:\Windows\SYSWOW64\winhttp.dll
2011-02-09 08:08:41 ----A---- C:\Windows\SYSWOW64\WebClnt.dll
2011-02-09 08:08:41 ----A---- C:\Windows\SYSWOW64\slwga.dll
2011-02-09 08:08:41 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2011-02-09 08:08:41 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2011-02-09 08:08:41 ----A---- C:\Windows\SYSWOW64\davclnt.dll
2011-02-09 08:08:41 ----A---- C:\Windows\system32\wscsvc.dll
2011-02-09 08:08:41 ----A---- C:\Windows\system32\wscapi.dll
2011-02-09 08:08:41 ----A---- C:\Windows\system32\WebClnt.dll
2011-02-09 08:08:41 ----A---- C:\Windows\system32\slwga.dll
2011-02-09 08:08:41 ----A---- C:\Windows\system32\ieframe.dll
2011-02-09 08:08:41 ----A---- C:\Windows\system32\davclnt.dll
2011-02-09 08:08:37 ----A---- C:\Windows\system32\drivers\dxgmms1.sys
2011-02-09 08:08:37 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2011-02-09 08:08:37 ----A---- C:\Windows\system32\cdd.dll
2011-02-09 08:08:30 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2011-02-09 08:08:30 ----A---- C:\Windows\SYSWOW64\jscript.dll
2011-02-09 08:08:30 ----A---- C:\Windows\system32\vbscript.dll
2011-02-09 08:08:30 ----A---- C:\Windows\system32\jscript.dll
2011-02-09 08:08:28 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2011-02-09 08:08:28 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2011-02-09 08:08:28 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2011-02-09 08:08:28 ----A---- C:\Windows\system32\ntoskrnl.exe
2011-02-09 08:08:28 ----A---- C:\Windows\system32\ntdll.dll
2011-02-09 08:08:27 ----A---- C:\Windows\system32\atmfd.dll
2011-02-09 08:08:26 ----A---- C:\Windows\SYSWOW64\atmlib.dll
2011-02-09 08:08:26 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2011-02-09 08:08:26 ----A---- C:\Windows\system32\atmlib.dll
2011-02-05 13:01:53 ----D---- C:\Program Files (x86)\HDDGURU LLF Tool
2011-02-05 12:25:52 ----A---- C:\Windows\SYSWOW64\drivers\SBKUPNT.SYS
2011-02-05 12:25:52 ----A---- C:\Windows\SYSWOW64\DEVLOAD.EXE
2011-02-05 12:25:44 ----A---- C:\Windows\SKLANG.INI
2011-02-05 12:25:39 ----A---- C:\Windows\IsUninst.exe
2011-01-30 19:51:32 ----D---- C:\Users\Jara\AppData\Roaming\Stereoscopic Player
2011-01-30 19:50:32 ----D---- C:\Program Files (x86)\Stereoscopic Player
2011-01-26 01:38:57 ----A---- C:\autoexec.bat
2011-01-26 01:38:40 ----D---- C:\Program Files (x86)\Enigma Software Group
2011-01-26 01:38:24 ----D---- C:\Windows\41EBC322660F4D16A0DF53147210CBDB.TMP
2011-01-23 23:22:58 ----D---- C:\Program Files (x86)\Bethesda Softworks
2011-01-21 16:33:21 ----A---- C:\Windows\wms.ini
2011-01-21 16:33:18 ----D---- C:\ProgramData\Wild Media Server
2011-01-21 16:33:18 ----A---- C:\Windows\wmssetup.ini
2011-01-21 16:33:05 ----RD---- C:\Program Files (x86)\Wild Media Server
2011-01-20 22:33:56 ----D---- C:\Program Files (x86)\Jalbum
2011-01-20 19:49:07 ----A---- C:\Windows\BlendSettings.ini
2011-01-20 18:22:59 ----D---- C:\Windows\TiMoC
2011-01-20 17:35:50 ----D---- C:\Oblivion

======List of files/folders modified in the last 1 months======

2011-02-18 09:32:19 ----AD---- C:\ProgramData\Temp
2011-02-18 09:32:17 ----D---- C:\Windows\Temp
2011-02-18 09:32:11 ----D---- C:\Windows\Prefetch
2011-02-18 09:32:03 ----D---- C:\Users\Jara\AppData\Roaming\ICQ
2011-02-18 09:32:02 ----D---- C:\Users\Jara\AppData\Roaming\Skype
2011-02-18 09:28:05 ----RD---- C:\Program Files (x86)
2011-02-18 09:22:51 ----D---- C:\Users\Jara\AppData\Roaming\DNA
2011-02-18 09:22:24 ----D---- C:\ProgramData\VMware
2011-02-18 09:22:18 ----D---- C:\Windows\system32\logishrd
2011-02-18 09:22:18 ----D---- C:\ProgramData\NVIDIA
2011-02-18 09:22:17 ----D---- C:\Windows\SYSWOW64\logishrd
2011-02-18 09:16:30 ----RD---- C:\Program Files
2011-02-18 09:00:33 ----HD---- C:\ProgramData
2011-02-18 09:00:33 ----D---- C:\Windows\SYSWOW64\drivers
2011-02-18 09:00:30 ----D---- C:\Windows\system32\drivers
2011-02-17 23:53:03 ----D---- C:\Windows
2011-02-17 23:52:06 ----D---- C:\Windows\system32\config
2011-02-17 21:52:57 ----A---- C:\Windows\Sandboxie.ini
2011-02-17 17:37:35 ----SHD---- C:\System Volume Information
2011-02-17 14:00:45 ----D---- C:\Windows\system32\drivers\AVG
2011-02-17 12:04:35 ----D---- C:\Program Files (x86)\JDownloader
2011-02-15 07:45:26 ----D---- C:\Windows\System32
2011-02-15 07:45:26 ----A---- C:\Windows\system32\PerfStringBackup.INI
2011-02-15 07:45:25 ----D---- C:\Windows\inf
2011-02-14 20:18:21 ----SHD---- C:\Windows\Installer
2011-02-14 09:05:26 ----D---- C:\gsak
2011-02-14 08:41:46 ----D---- C:\MKV_xtr
2011-02-13 12:32:41 ----D---- C:\Users\Jara\AppData\Roaming\DisplayFusion
2011-02-10 08:50:06 ----D---- C:\Windows\winsxs
2011-02-10 08:46:25 ----D---- C:\Windows\SysWOW64
2011-02-10 08:46:25 ----D---- C:\Program Files\Internet Explorer
2011-02-10 08:46:25 ----D---- C:\Program Files (x86)\Internet Explorer
2011-02-10 08:30:05 ----D---- C:\ProgramData\Microsoft Help
2011-02-10 08:25:04 ----D---- C:\Windows\debug
2011-02-10 08:25:02 ----A---- C:\Windows\system32\MRT.exe
2011-02-09 08:08:15 ----D---- C:\Windows\system32\catroot2
2011-02-09 08:08:15 ----D---- C:\Windows\system32\catroot
2011-02-07 15:17:17 ----D---- C:\Windows\Minidump
2011-02-01 16:46:55 ----D---- C:\Windows\system32\Tasks
2011-01-26 08:04:24 ----D---- C:\Users\Jara\AppData\Roaming\uTorrent
2011-01-26 08:03:14 ----D---- C:\Program Files (x86)\Metin2
2011-01-26 08:01:50 ----D---- C:\Program Files (x86)\Trillian
2011-01-26 08:01:18 ----RSD---- C:\Windows\assembly
2011-01-26 01:53:47 ----D---- C:\Windows\Downloaded Program Files
2011-01-23 23:23:24 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2011-01-20 18:47:11 ----D---- C:\tmp
2011-01-19 14:14:27 ----D---- C:\ProgramData\AVG10

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 AVGIDSEH;AVGIDSEH; C:\Windows\system32\DRIVERS\AVGIDSEH.Sys [2010-09-13 27216]
R0 Avgrkx64;AVG Anti-Rootkit Driver; C:\Windows\system32\DRIVERS\avgrkx64.sys [2010-09-07 30288]
R0 pciide;pciide; C:\Windows\system32\DRIVERS\pciide.sys [2009-07-14 12352]
R0 PxHlpa64;PxHlpa64; C:\Windows\System32\Drivers\PxHlpa64.sys [2009-07-09 55280]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2009-07-14 214096]
R0 snapman;Acronis Snapshots Manager; C:\Windows\system32\DRIVERS\snapman.sys [2010-11-29 198944]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2010-02-20 834544]
R1 Avgfwfd;AVG network filter service; C:\Windows\system32\DRIVERS\avgfwd6a.sys [2010-07-12 57696]
R1 Avgldx64;AVG AVI Loader Driver; C:\Windows\system32\DRIVERS\avgldx64.sys [2010-12-08 308304]
R1 Avgmfx64;AVG Mini-Filter Resident Anti-Virus Shield; C:\Windows\system32\DRIVERS\avgmfx64.sys [2010-09-07 41040]
R1 Avgtdia;AVG TDI Driver; C:\Windows\system32\DRIVERS\avgtdia.sys [2010-11-12 382032]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2009-07-14 514048]
R1 ISODrive;ISO DVD/CD-ROM Device Driver; \??\C:\Program Files (x86)\UltraISO\drivers\ISODrv64.sys [2009-02-10 115600]
R1 truecrypt;truecrypt; C:\Windows\SysWOW64\drivers\truecrypt.sys [2010-03-18 222160]
R1 vpcnfltr;Virtual PC Network Filter Driver; C:\Windows\system32\DRIVERS\vpcnfltr.sys [2009-09-23 66304]
R1 vpcvmm;@%SystemRoot%\system32\drivers\vpcvmm.sys,-100; C:\Windows\system32\drivers\vpcvmm.sys [2009-09-23 359552]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 adfs;adfs; C:\Windows\system32\drivers\adfs.sys [2008-06-27 88632]
R2 hcmon;VMware hcmon; \??\C:\Windows\system32\drivers\hcmon.sys [2010-09-21 38448]
R2 NPF;NetGroup Packet Filter Driver; C:\Windows\system32\drivers\npf.sys [2009-10-20 47632]
R2 vmci;VMware vmci; \??\C:\Windows\system32\drivers\vmci.sys [2010-09-21 80944]
R2 VMnetBridge;VMware Bridge Protocol; C:\Windows\system32\DRIVERS\vmnetbridge.sys [2010-09-20 45104]
R2 VMnetuserif;VMware Network Application Interface; \??\C:\Windows\system32\drivers\vmnetuserif.sys [2010-09-21 30256]
R2 vmx86;VMware vmx86; \??\C:\Windows\system32\drivers\vmx86.sys [2010-09-21 68656]
R2 vstor2-ws60;Vstor2 WS60 Virtual Storage Driver; \??\C:\Program Files (x86)\VMware\VMware Workstation\vstor2-ws60.sys [2010-08-19 32816]
R3 Afc;PPdus ASPI Shell; C:\Windows\SysWOW64\drivers\Afc.sys [2006-11-14 22784]
R3 AVGIDSDriver;AVGIDSDriver; C:\Windows\system32\DRIVERS\AVGIDSDriver.Sys [2010-08-19 157264]
R3 AVGIDSFilter;AVGIDSFilter; C:\Windows\system32\DRIVERS\AVGIDSFilter.Sys [2010-08-19 35920]
R3 BTATH_BUS;Atheros Bluetooth Bus; C:\Windows\system32\DRIVERS\btath_bus.sys [2009-10-20 25088]
R3 cmudaxp;ASUS Xonar D1 Audio Interface; C:\Windows\system32\drivers\cmudaxp.sys [2010-04-07 1261568]
R3 CompFilter64;UVCCompositeFilter; C:\Windows\system32\DRIVERS\lvbflt64.sys [2010-05-14 24032]
R3 LVPr2M64;Logitech LVPr2M64 Driver; C:\Windows\system32\DRIVERS\LVPr2M64.sys [2010-05-07 30304]
R3 LVRS64;Logitech RightSound Filter Driver; C:\Windows\system32\DRIVERS\lvrs64.sys [2010-05-14 329952]
R3 LVUVC64;Logitech HD Webcam C510(UVC); C:\Windows\system32\DRIVERS\lvuvc64.sys [2010-05-14 6465760]
R3 MarvinBus;Pinnacle Marvin Bus 64; C:\Windows\system32\DRIVERS\MarvinBus64.sys [2005-09-23 261120]
R3 MTsensor;ATK0110 ACPI UTILITY; C:\Windows\system32\DRIVERS\ASACPI.sys [2005-03-29 8192]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda64v.sys [2010-06-21 131688]
R3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2009-07-14 165376]
R3 SbieDrv;SbieDrv; \??\C:\Program Files\Sandboxie\SbieDrv.sys [2010-10-17 145512]
R3 tap0901;TAP-Win32 Adapter V9; C:\Windows\system32\DRIVERS\tap0901.sys [2009-11-20 31232]
R3 usbscan;Ovladač skeneru USB; C:\Windows\system32\DRIVERS\usbscan.sys [2009-07-14 41984]
R3 vmkbd;VMware kbd; \??\C:\Windows\system32\drivers\VMkbd.sys [2010-09-21 31792]
R3 VMnetAdapter;VMware Virtual Ethernet Adapter Driver; C:\Windows\system32\DRIVERS\vmnetadapter.sys [2010-09-20 20016]
R3 vpcbus;Služba hostitelské sběrnice programu Virtual PC; C:\Windows\system32\DRIVERS\vpchbus.sys [2009-09-23 187904]
R3 vpcusb;Služba konektoru virtualizace rozhraní USB; C:\Windows\system32\DRIVERS\vpcusb.sys [2009-09-23 95232]
S3 AthBTPort;Atheros Virtual Bluetooth Class; C:\Windows\system32\DRIVERS\btath_flt.sys [2009-10-21 31744]
S3 AthDfu;Atheros Valkyrie USB BootROM; C:\Windows\System32\Drivers\AthDfu.sys [2009-07-25 47616]
S3 atikmdag;atikmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2009-07-13 5020672]
S3 BTATH_A2DP;Bluetooth A2DP Audio Driver; C:\Windows\system32\drivers\btath_a2dp.sys [2009-10-23 329728]
S3 BTATH_HCRP;Bluetooth HCRP Server driver; C:\Windows\system32\DRIVERS\btath_hcrp.sys [2009-10-22 240128]
S3 BTATH_RCP;Bluetooth AVRCP Device; C:\Windows\system32\DRIVERS\btath_rcp.sys [2009-10-21 126976]
S3 BtFilter;BtFilter; C:\Windows\system32\DRIVERS\btfilter.sys [2009-10-22 57344]
S3 BthEnum;Služba Bluetooth Enumerator; C:\Windows\system32\DRIVERS\BthEnum.sys [2009-07-14 41984]
S3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\DRIVERS\bthpan.sys [2009-07-14 118784]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2009-07-14 551936]
S3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2009-07-14 79360]
S3 FLASHSYS;FLASHSYS; \??\C:\Program Files (x86)\MSI\Live Update 4\LU4\FLASHSYS64.sys [2008-02-15 15192]
S3 FTDIBUS;USB Serial Converter Driver; C:\Windows\system32\drivers\ftdibus.sys [2009-10-22 69320]
S3 FTSER2K;USB Serial Port Driver; C:\Windows\system32\drivers\ftser2k.sys [2009-10-22 84808]
S3 GMSIPCI;GMSIPCI; \??\F:\INSTALL\GMSIPCI.SYS []
S3 grmnusb;Garmin USB Driver; C:\Windows\system32\drivers\grmnusb.sys [2009-05-08 20520]
S3 LVPr2Mon;LVPr2M64 Driver; C:\Windows\system32\DRIVERS\LVPr2M64.sys [2010-05-07 30304]
S3 nmwcdcx64;Nokia USB Generic; C:\Windows\system32\drivers\ccdcmbox64.sys [2010-02-26 25088]
S3 nmwcdnsux64;Nokia USB Flashing Phone Parent; C:\Windows\system32\drivers\nmwcdnsux64.sys [2010-02-26 173056]
S3 nmwcdx64;Nokia USB Phone Parent; C:\Windows\system32\drivers\ccdcmbx64.sys [2010-02-26 19456]
S3 pccsmcfd;PCCS Mode Change Filter Driver; C:\Windows\system32\DRIVERS\pccsmcfdx64.sys [2008-08-28 25600]
S3 pcouffin;VSO Software pcouffin; C:\Windows\System32\Drivers\pcouffin.sys [2010-01-04 82816]
S3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
S3 RTL8187;Realtek RTL8187 Wireless 802.11b/g 54Mbps USB 2.0 Network Adapter; C:\Windows\system32\DRIVERS\rtl8187.sys [2010-01-07 448512]
S3 s3cap;s3cap; C:\Windows\system32\DRIVERS\vms3cap.sys [2009-07-14 6656]
S3 StarOpen;StarOpen; C:\Windows\system32\drivers\StarOpen.sys [2009-11-12 5504]
S3 storvsc;storvsc; C:\Windows\system32\DRIVERS\storvsc.sys [2009-07-14 34896]
S3 upperdev;upperdev; C:\Windows\system32\DRIVERS\usbser_lowerfltx64.sys [2010-02-26 9216]
S3 usb_rndisx;Adaptér USB RNDIS; C:\Windows\system32\DRIVERS\usb8023x.sys [2009-07-14 19968]
S3 usbser;USB Modem Driver; C:\Windows\system32\drivers\usbser.sys [2009-07-14 32768]
S3 UsbserFilt;UsbserFilt; C:\Windows\system32\DRIVERS\usbser_lowerfltx64j.sys [2010-02-26 9216]
S3 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\DRIVERS\vmbus.sys [2009-07-14 200272]
S3 VMBusHID;VMBusHID; C:\Windows\system32\DRIVERS\VMBusHID.sys [2009-07-14 21760]
S3 vpcuxd;Služba zástupné procedury virtualizace rozhraní USB; C:\Windows\system32\DRIVERS\vpcuxd.sys [2009-09-23 16384]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 ACDaemon;ArcSoft Connect Daemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [2010-03-18 113152]
R2 avgfws;AVG Firewall; C:\Program Files (x86)\AVG\AVG10\avgfws.exe [2010-11-22 3226632]
R2 AVGIDSAgent;AVGIDSAgent; C:\Program Files (x86)\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe [2011-01-06 6128720]
R2 avgwd;AVG WatchDog; C:\Program Files (x86)\AVG\AVG10\avgwdsvc.exe [2010-10-22 265400]
R2 BitKinex;BitKinex File Transfer Service; C:\Program Files (x86)\BitKinex\bitkinexsvc.exe [2010-07-12 32944]
R2 Bonjour Service;Bonjour Service; C:\Program Files (x86)\Bonjour\mDNSResponder.exe [2006-02-28 229376]
R2 LVPrcS64;Process Monitor; C:\Program Files\Common Files\Logishrd\LVMVFM\LVPrcSrv.exe [2010-05-07 197976]
R2 NMSAccessU;NMSAccessU; C:\Program Files (x86)\CDBurnerXP\NMSAccessU.exe [2009-09-06 71096]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2010-07-31 159336]
R2 RapiMgr;@%windir%\WindowsMobile\rapimgr.dll,-104; C:\Windows\system32\svchost.exe [2009-07-14 27136]
R2 SbieSvc;Sandboxie Service; C:\Program Files\Sandboxie\SbieSvc.exe [2010-10-17 99048]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2010-07-31 235624]
R2 SynoDrService;SynoDrService; C:\Program Files (x86)\Synology Data Replicator 3\SynoDrServicex64.exe [2010-01-07 404480]
R2 TeamViewer6;TeamViewer 6; C:\Program Files (x86)\TeamViewer\Version6\TeamViewer_Service.exe [2010-11-30 2222376]
R2 TomTomHOMEService;TomTomHOMEService; C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe [2010-08-24 92008]
R2 VMAuthdService;VMware Authorization Service; C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe [2010-09-21 113200]
R2 VMnetDHCP;VMware DHCP Service; C:\Windows\syswow64\vmnetdhcp.exe [2010-09-21 334384]
R2 VMUSBArbService;VMware USB Arbitration Service; C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator.exe [2010-09-21 539184]
R2 VMware NAT Service;VMware NAT Service; C:\Windows\syswow64\vmnat.exe [2010-09-21 404016]
R3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S2 AcronisOSSReinstallSvc;Acronis OS Selector Reinstall Service; C:\Program Files (x86)\Common Files\Acronis\Acronis Disk Director\oss_reinstall_svc.exe [2007-02-22 2217416]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 gupdate;Google Update Service (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-02-07 135664]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2010-03-18 44376]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2010-11-08 651720]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files (x86)\Microsoft Office\Office14\GROOVE.EXE [2010-03-25 30969208]
S3 OpenVPNService;OpenVPN Service; C:\Program Files (x86)\OpenVPN\bin\openvpnserv.exe [2009-11-20 36352]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 rpcapd;Remote Packet Capture Protocol v.0 (experimental); C:\Program Files (x86)\WinPcap\rpcapd.exe [2009-10-20 117264]
S3 ServiceLayer;ServiceLayer; C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe [2010-09-29 616448]
S3 SwitchBoard;SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
S3 ufad-ws60;VMware Agent Service; C:\Program Files (x86)\VMware\VMware Workstation\vmware-ufad.exe [2010-08-19 191024]
S4 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]

-----------------EOF-----------------

Re: ISP odpojeno - generuji spam

Napsal: 18 úno 2011 11:37
od motji
Hezké poledne :)

:arrow: Stahněte OTL http://oldtimer.geekstogo.com/OTL.exe
-uložte ho na plochu a spustte soubor OTL.exe.
-do bílého okna dole skopírujte tento skript:

Kód: Vybrat vše

netsvcs
drivers32
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s
c:\windows\*.* /U
%SYSTEMDRIVE%\*.exe
%ALLUSERSPROFILE%\Application Data\*.
%ALLUSERSPROFILE%\Application Data\*.exe /s
%APPDATA%\*.
%APPDATA%\*.exe /s
/md5start
eventlog.dll
scecli.dll
netlogon.dll
cngaudit.dll
sceclt.dll
ntelogon.dll
logevent.dll
iaStor.sys
nvstor.sys
atapi.sys
IdeChnDr.sys
viasraid.sys
AGP440.sys
vaxscsi.sys
nvatabus.sys
viamraid.sys
nvata.sys
nvgts.sys
iastorv.sys
ViPrt.sys
eNetHook.dll
ahcix86.sys
KR10N.sys
nvstor32.sys
ahcix86s.sys
nvrd32.sys
symmpi.sys
adp3132.sys
mv61xx.sys
nvraid.sys
ndis.sys
winlogon.exe
explorer.exe
userinit.exe
lsass.exe
svchost.exe
smss.exe
hal.dll
ws2_32.dll
tcpip.sys
cryptsvc.dll
Changer.sys
JakNDis.sys
isapnp.sys
cdrom.sys
/md5stop
%systemroot%\*. /mp /s
%systemroot%\system32\*.dll /lockedfiles
%systemroot%\Tasks\*.job /lockedfiles
%systemroot%\system32\drivers\*.sys /lockedfiles
%systemroot%\System32\config\*.sav
%systemroot%\system32\*.dll /lockedfiles
reg query "HKLM\Software\Microsoft\Windows NT\CurrentVersion\winlogon" /v GinaDLL /c
reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wuauserv" /v ImagePath /c
reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BITS" /v ImagePath /c
%systemroot%\system32\drivers\*.sys /3
%systemroot%\system32\*.* /3
CREATERESTOREPOINT 
- zaškrtněte okénko Pro všechny uživatele.
-označte okénka Kontrola na havěť "LOP" a Kontrola na havěť "Purity"
- Klikněte na tlačítko Prohledat
-po dokončení skenu se objeví logy OTL.Txt a Extras.txt, vložte je zde :)





:arrow: Stahněte MBAM z mého podpisu
-Nainstalujte,dejte úplný sken

NIC NEMAZAT :!:
-MBAM má občas falešné detekce,proto budeme mazat až po kontrole logu.
-Log zkopírujte sem.

Re: ISP odpojeno - generuji spam

Napsal: 18 úno 2011 12:07
od hu.go
Moc hezké, děkuji :)
Asi jsem si to zaviroval sám - mám chřipku :lol:

jdu na to.

Re: ISP odpojeno - generuji spam

Napsal: 18 úno 2011 12:37
od motji
Nestrašte, já mám taky chřipku a pc je zatím čisté, doufám :D .
Pak sem vložte logy :)

Re: ISP odpojeno - generuji spam

Napsal: 18 úno 2011 14:24
od hu.go
tak zatim logy, kompletni MBAM pojede dlouho

OTL:

OTL logfile created on: 18.2.2011 12:11:26 - Run 1
OTL by OldTimer - Version 3.2.20.6 Folder = C:\Users\Jara\Desktop
64bit- Ultimate Edition (Version = 6.1.7600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7600.16385)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy

6,00 Gb Total Physical Memory | 4,00 Gb Available Physical Memory | 70,00% Memory free
12,00 Gb Paging File | 9,00 Gb Available in Paging File | 76,00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 465,66 Gb Total Space | 116,95 Gb Free Space | 25,11% Space Free | Partition Type: NTFS
Drive D: | 698,63 Gb Total Space | 107,26 Gb Free Space | 15,35% Space Free | Partition Type: NTFS
Drive E: | 596,17 Gb Total Space | 435,18 Gb Free Space | 73,00% Space Free | Partition Type: NTFS
Drive G: | 14,92 Gb Total Space | 13,93 Gb Free Space | 93,33% Space Free | Partition Type: FAT32
Drive L: | 931,51 Gb Total Space | 681,86 Gb Free Space | 73,20% Space Free | Partition Type: NTFS

Computer Name: JARA-PC | User Name: Jara | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2011.02.18 12:09:26 | 000,602,624 | ---- | M] (OldTimer Tools) -- C:\Users\Jara\Desktop\OTL.exe
PRC - [2011.01.07 01:22:54 | 002,747,744 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files (x86)\AVG\AVG10\avgtray.exe
PRC - [2011.01.06 15:23:20 | 000,737,872 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files (x86)\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSMonitor.exe
PRC - [2011.01.06 15:23:18 | 006,128,720 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files (x86)\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe
PRC - [2011.01.05 09:18:50 | 000,133,432 | ---- | M] (ICQ, LLC.) -- C:\Program Files (x86)\ICQ7.2\ICQ.exe
PRC - [2010.11.30 18:08:30 | 002,222,376 | ---- | M] (TeamViewer GmbH) -- C:\Program Files (x86)\TeamViewer\Version6\TeamViewer_Service.exe
PRC - [2010.11.22 04:48:46 | 003,226,632 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files (x86)\AVG\AVG10\avgfws.exe
PRC - [2010.10.29 21:06:08 | 005,915,480 | ---- | M] (Logitech Inc.) -- C:\Program Files (x86)\Logitech\Vid HD\Vid.exe
PRC - [2010.10.27 19:17:52 | 000,207,424 | ---- | M] (ArcSoft Inc.) -- C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
PRC - [2010.10.22 04:58:18 | 000,265,400 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files (x86)\AVG\AVG10\avgwdsvc.exe
PRC - [2010.10.22 04:56:48 | 000,745,824 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files (x86)\AVG\AVG10\avgam.exe
PRC - [2010.10.17 04:50:06 | 000,751,432 | ---- | M] (AVG) -- C:\Program Files (x86)\AVG\AVG PC Tuneup 2011\BoostSpeed.exe
PRC - [2010.09.22 18:11:26 | 000,640,440 | ---- | M] (Adobe Systems Inc.) -- C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\acrotray.exe
PRC - [2010.09.21 02:58:52 | 000,113,200 | ---- | M] (VMware, Inc.) -- C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe
PRC - [2010.09.21 02:58:40 | 000,129,584 | ---- | M] (VMware, Inc.) -- C:\Program Files (x86)\VMware\VMware Workstation\vmware-tray.exe
PRC - [2010.09.21 02:58:22 | 000,334,384 | ---- | M] (VMware, Inc.) -- C:\Windows\SysWOW64\vmnetdhcp.exe
PRC - [2010.09.21 02:58:18 | 000,404,016 | ---- | M] (VMware, Inc.) -- C:\Windows\SysWOW64\vmnat.exe
PRC - [2010.09.21 01:42:44 | 000,539,184 | ---- | M] (VMware, Inc.) -- C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator.exe
PRC - [2010.09.09 17:39:26 | 000,093,432 | ---- | M] (Binary Fortress Software) -- C:\Program Files (x86)\DisplayFusion\DisplayFusionHookx86.exe
PRC - [2010.08.25 11:27:44 | 000,309,824 | ---- | M] (ArcSoft Inc.) -- C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ArcCon.ac
PRC - [2010.08.24 10:38:18 | 000,092,008 | ---- | M] (TomTom) -- C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe
PRC - [2010.08.24 10:38:16 | 000,247,144 | ---- | M] (TomTom) -- C:\Program Files (x86)\TomTom HOME 2\TomTomHOMERunner.exe
PRC - [2010.07.31 08:27:36 | 000,235,624 | ---- | M] (NVIDIA Corporation) -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
PRC - [2010.07.27 08:13:37 | 000,079,872 | ---- | M] (SanDisk Corporation) -- C:\Users\Jara\AppData\Roaming\SanDisk\Sansa Updater\SansaDispatch.exe
PRC - [2010.07.20 10:45:24 | 001,531,904 | ---- | M] (Nokia) -- C:\Program Files (x86)\Common Files\Nokia\MPlatform\NokiaMServer.exe
PRC - [2010.07.12 21:30:42 | 000,032,944 | ---- | M] () -- C:\Program Files (x86)\BitKinex\bitkinexsvc.exe
PRC - [2010.07.07 16:20:48 | 000,323,392 | ---- | M] (BitTorrent, Inc.) -- C:\Users\Jara\Program Files (x86)\DNA\btdna.exe
PRC - [2010.05.07 18:47:32 | 000,114,008 | ---- | M] (Logitech Inc.) -- C:\Program Files (x86)\Common Files\LogiShrd\LVMVFM\LVPrS64H.exe
PRC - [2010.05.07 18:43:52 | 000,651,096 | ---- | M] () -- C:\Program Files (x86)\Common Files\LogiShrd\LQCVFX\COCIManager.exe
PRC - [2010.05.07 18:35:22 | 000,165,208 | ---- | M] (Logitech Inc.) -- C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe
PRC - [2010.05.07 18:34:58 | 000,168,792 | ---- | M] () -- C:\Program Files (x86)\Logitech\LWS\Webcam Software\CameraHelperShell.exe
PRC - [2010.03.18 11:19:26 | 000,113,152 | ---- | M] (ArcSoft Inc.) -- C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
PRC - [2010.03.16 09:16:56 | 001,540,096 | ---- | M] (CMedia) -- C:\Program Files\ASUS Xonar D1 Audio\Customapp\AsusAudioCenter.exe
PRC - [2010.03.03 22:16:26 | 011,571,200 | ---- | M] (Synology Inc.) -- C:\Program Files (x86)\Synology Data Replicator 3\Backup.exe
PRC - [2010.02.02 23:08:56 | 000,087,336 | ---- | M] (CyberLink Corp.) -- C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe
PRC - [2010.01.27 09:40:58 | 000,323,584 | ---- | M] (Eastman Kodak Company) -- C:\Program Files (x86)\Kodak\Kodak EasyShare software\bin\EasyShare.exe
PRC - [2009.09.06 12:38:06 | 000,071,096 | ---- | M] () -- C:\Program Files (x86)\CDBurnerXP\NMSAccessU.exe
PRC - [2008.07.11 15:04:22 | 000,200,704 | ---- | M] () -- C:\Windows\SysWOW64\HsMgr.exe


========== Modules (SafeList) ==========

MOD - [2011.02.18 12:09:26 | 000,602,624 | ---- | M] (OldTimer Tools) -- C:\Users\Jara\Desktop\OTL.exe
MOD - [2010.09.17 22:13:23 | 000,047,864 | ---- | M] (Binary Fortress Software) -- C:\Users\Jara\AppData\Roaming\DisplayFusion\DisplayFusionHookx86_04aba6b4-7fe9-48ad-a94d-23b1a0f9c8a0.dll
MOD - [2010.08.21 06:21:32 | 001,680,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_420fe3fa2b8113bd\comctl32.dll


========== Win32 Services (SafeList) ==========

SRV:64bit: - [2010.10.17 23:43:02 | 000,099,048 | ---- | M] (SANDBOXIE L.T.D) [Auto | Running] -- C:\Program Files\Sandboxie\SbieSvc.exe -- (SbieSvc)
SRV:64bit: - [2010.05.07 18:45:16 | 000,197,976 | ---- | M] (Logitech Inc.) [Auto | Running] -- C:\Program Files\Common Files\Logishrd\LVMVFM\LVPrcSrv.exe -- (LVPrcS64)
SRV:64bit: - [2009.07.14 02:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:64bit: - [2009.07.14 02:40:01 | 000,193,536 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\appmgmts.dll -- (AppMgmt)
SRV - [2011.01.06 15:23:18 | 006,128,720 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files (x86)\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe -- (AVGIDSAgent)
SRV - [2010.11.30 18:08:30 | 002,222,376 | ---- | M] (TeamViewer GmbH) [Auto | Running] -- C:\Program Files (x86)\TeamViewer\Version6\TeamViewer_Service.exe -- (TeamViewer6)
SRV - [2010.11.22 04:48:46 | 003,226,632 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files (x86)\AVG\AVG10\avgfws.exe -- (avgfws)
SRV - [2010.11.08 09:38:07 | 000,651,720 | ---- | M] (Macrovision Europe Ltd.) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service)
SRV - [2010.10.22 04:58:18 | 000,265,400 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files (x86)\AVG\AVG10\avgwdsvc.exe -- (avgwd)
SRV - [2010.09.29 09:57:46 | 000,616,448 | ---- | M] (Nokia) [On_Demand | Stopped] -- C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer)
SRV - [2010.09.21 02:58:52 | 000,113,200 | ---- | M] (VMware, Inc.) [Auto | Running] -- C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe -- (VMAuthdService)
SRV - [2010.09.21 02:58:22 | 000,334,384 | ---- | M] (VMware, Inc.) [Auto | Running] -- C:\Windows\SysWOW64\vmnetdhcp.exe -- (VMnetDHCP)
SRV - [2010.09.21 02:58:18 | 000,404,016 | ---- | M] (VMware, Inc.) [Auto | Running] -- C:\Windows\SysWOW64\vmnat.exe -- (VMware NAT Service)
SRV - [2010.09.21 01:42:44 | 000,539,184 | ---- | M] (VMware, Inc.) [Auto | Running] -- C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator.exe -- (VMUSBArbService)
SRV - [2010.08.24 10:38:18 | 000,092,008 | ---- | M] (TomTom) [Auto | Running] -- C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe -- (TomTomHOMEService)
SRV - [2010.08.19 13:57:14 | 000,191,024 | ---- | M] (VMware, Inc.) [On_Demand | Stopped] -- C:\Program Files (x86)\VMware\VMware Workstation\vmware-ufad.exe -- (ufad-ws60)
SRV - [2010.07.31 08:27:36 | 000,235,624 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe -- (Stereo Service)
SRV - [2010.07.12 21:30:42 | 000,032,944 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\BitKinex\bitkinexsvc.exe -- (BitKinex)
SRV - [2010.03.18 13:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2010.03.18 11:19:26 | 000,113,152 | ---- | M] (ArcSoft Inc.) [Auto | Running] -- C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe -- (ACDaemon)
SRV - [2010.02.19 13:37:14 | 000,517,096 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe -- (SwitchBoard)
SRV - [2010.01.07 16:48:38 | 000,404,480 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\Synology Data Replicator 3\SynoDrServicex64.exe -- (SynoDrService)
SRV - [2009.11.20 14:26:26 | 000,036,352 | ---- | M] () [On_Demand | Stopped] -- C:\Program Files (x86)\OpenVPN\bin\openvpnserv.exe -- (OpenVPNService)
SRV - [2009.10.20 19:19:48 | 000,117,264 | ---- | M] (CACE Technologies, Inc.) [On_Demand | Stopped] -- C:\Program Files (x86)\WinPcap\rpcapd.exe -- (rpcapd) Remote Packet Capture Protocol v.0 (experimental)
SRV - [2009.09.06 12:38:06 | 000,071,096 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\CDBurnerXP\NMSAccessU.exe -- (NMSAccessU)
SRV - [2009.06.10 22:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
SRV - [2007.05.31 10:11:54 | 000,443,784 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\WindowsMobile\wcescomm.dll -- (WcesComm)
SRV - [2007.05.31 10:11:46 | 000,225,672 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\WindowsMobile\rapimgr.dll -- (RapiMgr)
SRV - [2007.02.22 19:53:16 | 002,217,416 | ---- | M] () [Auto | Stopped] -- C:\Program Files (x86)\Common Files\Acronis\Acronis Disk Director\oss_reinstall_svc.exe -- (AcronisOSSReinstallSvc)


========== Driver Services (SafeList) ==========

DRV:64bit: - [2010.12.08 04:12:36 | 000,308,304 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\avgldx64.sys -- (Avgldx64)
DRV:64bit: - [2010.11.29 00:58:16 | 000,198,944 | ---- | M] (Acronis) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\snapman.sys -- (snapman)
DRV:64bit: - [2010.11.12 13:19:38 | 000,382,032 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\avgtdia.sys -- (Avgtdia)
DRV:64bit: - [2010.10.17 23:42:58 | 000,145,512 | ---- | M] (SANDBOXIE L.T.D) [Kernel | On_Demand | Running] -- C:\Program Files\Sandboxie\SbieDrv.sys -- (SbieDrv)
DRV:64bit: - [2010.09.21 02:59:58 | 000,068,656 | ---- | M] (VMware, Inc.) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\vmx86.sys -- (vmx86)
DRV:64bit: - [2010.09.21 02:59:50 | 000,080,944 | ---- | M] (VMware, Inc.) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\vmci.sys -- (vmci)
DRV:64bit: - [2010.09.21 02:57:50 | 000,031,792 | ---- | M] (VMware, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\VMkbd.sys -- (vmkbd)
DRV:64bit: - [2010.09.21 02:57:40 | 000,030,256 | ---- | M] (VMware, Inc.) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\vmnetuserif.sys -- (VMnetuserif)
DRV:64bit: - [2010.09.21 01:42:38 | 000,038,448 | ---- | M] (VMware, Inc.) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\hcmon.sys -- (hcmon)
DRV:64bit: - [2010.09.20 23:18:14 | 000,045,104 | ---- | M] (VMware, Inc.) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\vmnetbridge.sys -- (VMnetBridge)
DRV:64bit: - [2010.09.20 23:18:14 | 000,020,016 | ---- | M] (VMware, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\vmnetadapter.sys -- (VMnetAdapter)
DRV:64bit: - [2010.09.13 16:28:00 | 000,027,216 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\AVGIDSEH.sys -- (AVGIDSEH)
DRV:64bit: - [2010.09.07 03:48:56 | 000,041,040 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | System | Running] -- C:\Windows\SysNative\drivers\avgmfx64.sys -- (Avgmfx64)
DRV:64bit: - [2010.09.07 03:48:50 | 000,030,288 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot | Running] -- C:\Windows\SysNative\drivers\avgrkx64.sys -- (Avgrkx64)
DRV:64bit: - [2010.08.19 21:42:38 | 000,157,264 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\AVGIDSDriver.sys -- (AVGIDSDriver)
DRV:64bit: - [2010.08.19 21:42:38 | 000,035,920 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\AVGIDSFilter.sys -- (AVGIDSFilter)
DRV:64bit: - [2010.07.12 04:34:00 | 000,057,696 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\avgfwd6a.sys -- (Avgfwfd)
DRV:64bit: - [2010.06.21 23:07:36 | 000,131,688 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\nvhda64v.sys -- (NVHDA)
DRV:64bit: - [2010.05.14 23:02:14 | 006,465,760 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\lvuvc64.sys -- (LVUVC64) Logitech HD Webcam C510(UVC)
DRV:64bit: - [2010.05.14 23:00:52 | 000,329,952 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\lvrs64.sys -- (LVRS64)
DRV:64bit: - [2010.05.14 22:58:00 | 000,024,032 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\lvbflt64.sys -- (CompFilter64)
DRV:64bit: - [2010.05.07 18:43:30 | 000,030,304 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\LVPr2M64.sys -- (LVPr2Mon)
DRV:64bit: - [2010.05.07 18:43:30 | 000,030,304 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\LVPr2M64.sys -- (LVPr2M64)
DRV:64bit: - [2010.04.07 14:08:43 | 001,261,568 | ---- | M] (C-Media Inc) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\cmudaxp.sys -- (cmudaxp)
DRV:64bit: - [2010.02.26 13:33:40 | 000,009,216 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbser_lowerfltx64j.sys -- (UsbserFilt)
DRV:64bit: - [2010.02.26 13:33:24 | 000,009,216 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbser_lowerfltx64.sys -- (upperdev)
DRV:64bit: - [2010.02.26 13:33:22 | 000,025,088 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ccdcmbox64.sys -- (nmwcdcx64)
DRV:64bit: - [2010.02.26 13:33:22 | 000,019,456 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ccdcmbx64.sys -- (nmwcdx64)
DRV:64bit: - [2010.02.26 13:21:22 | 000,173,056 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\nmwcdnsux64.sys -- (nmwcdnsux64)
DRV:64bit: - [2010.02.20 16:21:05 | 000,834,544 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\sptd.sys -- (sptd)
DRV:64bit: - [2010.01.07 03:20:22 | 000,448,512 | ---- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\RTL8187.sys -- (RTL8187)
DRV:64bit: - [2010.01.04 22:42:09 | 000,082,816 | ---- | M] (VSO Software) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\pcouffin.sys -- (pcouffin)
DRV:64bit: - [2009.11.20 14:26:50 | 000,031,232 | ---- | M] (The OpenVPN Project) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\tap0901.sys -- (tap0901)
DRV:64bit: - [2009.10.23 11:04:24 | 000,329,728 | ---- | M] (Atheros) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\btath_a2dp.sys -- (BTATH_A2DP)
DRV:64bit: - [2009.10.22 14:10:30 | 000,069,320 | ---- | M] (FTDI Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ftdibus.sys -- (FTDIBUS)
DRV:64bit: - [2009.10.22 14:09:12 | 000,084,808 | ---- | M] (FTDI Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ftser2k.sys -- (FTSER2K)
DRV:64bit: - [2009.10.22 08:49:28 | 000,057,344 | ---- | M] (Atheros) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\btfilter.sys -- (BtFilter)
DRV:64bit: - [2009.10.22 08:46:22 | 000,240,128 | ---- | M] (Atheros) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\btath_hcrp.sys -- (BTATH_HCRP)
DRV:64bit: - [2009.10.21 12:58:14 | 000,031,744 | ---- | M] (Atheros) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\btath_flt.sys -- (AthBTPort)
DRV:64bit: - [2009.10.21 08:42:38 | 000,126,976 | ---- | M] (Atheros) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\btath_rcp.sys -- (BTATH_RCP)
DRV:64bit: - [2009.10.20 19:19:54 | 000,047,632 | ---- | M] (CACE Technologies, Inc.) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\npf.sys -- (NPF)
DRV:64bit: - [2009.10.20 10:51:28 | 000,025,088 | ---- | M] (Atheros) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\btath_bus.sys -- (BTATH_BUS)
DRV:64bit: - [2009.09.28 08:22:00 | 000,395,264 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\yk62x64.sys -- (yukonw7)
DRV:64bit: - [2009.09.23 02:46:18 | 000,066,304 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\vpcnfltr.sys -- (vpcnfltr)
DRV:64bit: - [2009.09.23 02:46:17 | 000,359,552 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\vpcvmm.sys -- (vpcvmm)
DRV:64bit: - [2009.09.23 02:32:39 | 000,095,232 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\vpcusb.sys -- (vpcusb)
DRV:64bit: - [2009.09.23 02:32:35 | 000,016,384 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\vpcuxd.sys -- (vpcuxd)
DRV:64bit: - [2009.09.23 02:32:33 | 000,187,904 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\vpchbus.sys -- (vpcbus)
DRV:64bit: - [2009.07.25 15:23:56 | 000,047,616 | ---- | M] (Windows (R) Codename Longhorn DDK provider) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\AthDfu.sys -- (AthDfu)
DRV:64bit: - [2009.07.14 02:52:21 | 000,106,576 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2009.07.14 02:52:21 | 000,028,752 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2009.07.14 02:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009.07.14 02:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009.07.14 02:47:48 | 000,077,888 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2009.07.14 02:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2009.07.14 01:09:50 | 000,019,968 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usb8023x.sys -- (usb_rndisx)
DRV:64bit: - [2009.07.14 01:06:32 | 000,032,768 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbser.sys -- (usbser)
DRV:64bit: - [2009.07.13 22:59:33 | 005,020,672 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\atikmdag.sys -- (atikmdag)
DRV:64bit: - [2009.07.09 02:00:00 | 000,055,280 | ---- | M] (Sonic Solutions) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\PxHlpa64.sys -- (PxHlpa64)
DRV:64bit: - [2009.06.10 21:38:56 | 000,000,308 | ---- | M] () [File_System | On_Demand | Running] -- C:\Windows\SysNative\wbem\ntfs.mof -- (Ntfs)
DRV:64bit: - [2009.06.10 21:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009.06.10 21:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009.06.10 21:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009.06.10 21:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:64bit: - [2009.05.08 16:08:00 | 000,020,520 | ---- | M] (GARMIN Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\grmnusb.sys -- (grmnusb)
DRV:64bit: - [2008.08.28 12:44:42 | 000,025,600 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\pccsmcfdx64.sys -- (pccsmcfd)
DRV:64bit: - [2005.09.23 22:18:34 | 000,261,120 | ---- | M] (Pinnacle Systems GmbH) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\MarvinBus64.sys -- (MarvinBus)
DRV:64bit: - [2005.03.29 01:30:38 | 000,008,192 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\ASACPI.sys -- (MTsensor)
DRV - [2010.08.19 13:56:38 | 000,032,816 | ---- | M] (VMware, Inc.) [Kernel | Auto | Running] -- C:\Program Files (x86)\VMware\VMware Workstation\vstor2-ws60.sys -- (vstor2-ws60)
DRV - [2010.03.13 11:58:52 | 000,146,928 | ---- | M] (CyberLink Corp.) [2010/07/30 17:43:10] [Kernel | Auto | Running] -- C:\Program Files (x86)\CyberLink\PowerDVD10\NavFilter\000.fcl -- ({1BA31E5A-C098-42d8-8F88-3C9F78A2FDDC})
DRV - [2009.11.12 13:48:56 | 000,007,168 | ---- | M] () [File_System | On_Demand | Stopped] -- C:\Windows\SysWow64\drivers\StarOpen.sys -- (StarOpen)
DRV - [2009.02.10 17:23:10 | 000,115,600 | ---- | M] (EZB Systems, Inc.) [File_System | System | Running] -- C:\Program Files (x86)\UltraISO\drivers\ISODrv64.sys -- (ISODrive)
DRV - [2008.02.15 16:30:48 | 000,015,192 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Program Files (x86)\MSI\Live Update 4\LU4\Flashsys64.sys -- (FLASHSYS)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm


IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0


IE - HKU\S-1-5-21-1464662876-954682725-1912904226-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.diit.cz/
IE - HKU\S-1-5-21-1464662876-954682725-1912904226-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = C1 C7 7C 31 98 71 CA 01 [binary data]
IE - HKU\S-1-5-21-1464662876-954682725-1912904226-1001\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1
IE - HKU\S-1-5-21-1464662876-954682725-1912904226-1001\..\URLSearchHook: - Reg Error: Key error. File not found
IE - HKU\S-1-5-21-1464662876-954682725-1912904226-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-1464662876-954682725-1912904226-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local

========== FireFox ==========

FF - prefs.js..extensions.enabledItems: MapShare-status@tomtom.com:1.7
FF - prefs.js..extensions.enabledItems: baseTheme@tomtom.com:1.0.2

FF - HKLM\software\mozilla\Firefox\Extensions\\{A27F3FEF-1113-4cfb-A032-8E12D7D8EE70}: C:\Program Files (x86)\Nokia\Nokia Ovi Suite\Connectors\Bookmarks Connector\FirefoxExtension\ [2010.09.07 22:02:01 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Firefox\Extensions\\{3f963a5b-e555-4543-90e2-c3908898db71}: C:\Program Files (x86)\AVG\AVG10\Firefox\ [2010.12.28 20:01:30 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Firefox\Extensions\\{01A8CA0A-4C96-465b-A49B-65C46FAD54F9}: C:\Program Files (x86)\Adobe\Adobe Contribute CS5\Plugins\FirefoxPlugin\{01A8CA0A-4C96-465b-A49B-65C46FAD54F9} [2010.12.04 00:46:22 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Thunderbird\Extensions\\{CCB7D94B-CA92-4E3F-B79D-ADE0F07ADC74}: C:\Program Files (x86)\Nokia\Nokia Ovi Suite\Connectors\Thunderbird Connector\ThunderbirdExtension\ [2010.09.07 22:02:02 | 000,000,000 | ---D | M]

[2009.11.30 17:09:48 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Jara\AppData\Roaming\Mozilla\Extensions
[2009.11.30 17:09:48 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Jara\AppData\Roaming\Mozilla\Extensions\home2@tomtom.com
[2010.08.27 06:55:14 | 000,000,000 | ---D | M] (Map status indicator) -- C:\PROGRAM FILES (X86)\TOMTOM HOME 2\XUL\EXTENSIONS\MAPSHARE-STATUS@TOMTOM.COM

O1 HOSTS File: ([2010.09.28 13:54:16 | 000,001,381 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: 127.0.0.1 activate.adobe.com
O1 - Hosts: 127.0.0.1 practivate.adobe.com
O1 - Hosts: 127.0.0.1 ereg.adobe.com
O1 - Hosts: 127.0.0.1 activate.wip3.adobe.com
O1 - Hosts: 127.0.0.1 wip3.adobe.com
O1 - Hosts: 127.0.0.1 3dns-3.adobe.com
O1 - Hosts: 127.0.0.1 3dns-2.adobe.com
O1 - Hosts: 127.0.0.1 adobe-dns.adobe.com
O1 - Hosts: 127.0.0.1 adobe-dns-2.adobe.com
O1 - Hosts: 127.0.0.1 adobe-dns-3.adobe.com
O1 - Hosts: 127.0.0.1 ereg.wip3.adobe.com
O1 - Hosts: 127.0.0.1 activate-sea.adobe.com
O1 - Hosts: 127.0.0.1 wwis-dubc1-vip60.adobe.com
O1 - Hosts: 127.0.0.1 activate-sjc0.adobe.com
O1 - Hosts: 127.0.0.1 wwis-dubc1-vip60.adobe.com
O1 - Hosts: 127.0.0.1 sams.nikonimaging.com
O2:64bit: - BHO: (AVG Safe Search) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files (x86)\AVG\AVG10\avgssiea.dll (AVG Technologies CZ, s.r.o.)
O2 - BHO: (ContributeBHO Class) - {074C1DC5-9320-4A9A-947D-C042949C6216} - C:\Program Files (x86)\Adobe\Adobe Contribute CS5\Plugins\IEPlugin\contributeieplugin.dll (Adobe Systems, Inc.)
O2 - BHO: (AVG Safe Search) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files (x86)\AVG\AVG10\avgssie.dll (AVG Technologies CZ, s.r.o.)
O2 - BHO: (Adobe PDF Conversion Toolbar Helper) - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O2 - BHO: (SmartSelect Class) - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O3 - HKLM\..\Toolbar: (Spb Wallet) - {2913D3DD-9363-4C21-B205-C19A584A0674} - C:\Program Files (x86)\Spb Wallet\SpbWalletToolbar.dll ()
O3 - HKLM\..\Toolbar: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O3 - HKLM\..\Toolbar: (Contribute Toolbar) - {517BDDE4-E3A7-4570-B21E-2B52B6139FC7} - C:\Program Files (x86)\Adobe\Adobe Contribute CS5\Plugins\IEPlugin\contributeieplugin.dll (Adobe Systems, Inc.)
O3 - HKU\S-1-5-21-1464662876-954682725-1912904226-1001\..\Toolbar\WebBrowser: (Spb Wallet) - {2913D3DD-9363-4C21-B205-C19A584A0674} - C:\Program Files (x86)\Spb Wallet\SpbWalletToolbar.dll ()
O3 - HKU\S-1-5-21-1464662876-954682725-1912904226-1001\..\Toolbar\WebBrowser: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O4:64bit: - HKLM..\Run: [AdobeAAMUpdater-1.0] C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe (Adobe Systems Incorporated)
O4:64bit: - HKLM..\Run: [AtherosBtStack] C:\Program Files (x86)\ASUS Bluetooth Suite\BtvStack.exe ()
O4:64bit: - HKLM..\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe (CANON INC.)
O4:64bit: - HKLM..\Run: [Cmaudio8788] C:\Windows\Syswow64\cmicnfgp.dll (C-Media Corporation)
O4:64bit: - HKLM..\Run: [Cmaudio8788GX] C:\Windows\syswow64\HsMgr.exe ()
O4:64bit: - HKLM..\Run: [Cmaudio8788GX64] C:\Windows\system\HsMgr64.exe ()
O4:64bit: - HKLM..\Run: [Windows Mobile Device Center] C:\Windows\WindowsMobile\wmdc.exe (Microsoft Corporation)
O4 - HKLM..\Run: [Acrobat Assistant 8.0] C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\Acrotray.exe (Adobe Systems Inc.)
O4 - HKLM..\Run: [Adobe Acrobat Speed Launcher] C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\Acrobat_sl.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [AdobeCS5ServiceManager] C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [ArcSoft Connection Service] C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe (ArcSoft Inc.)
O4 - HKLM..\Run: [AVG_TRAY] C:\Program Files (x86)\AVG\AVG10\avgtray.exe (AVG Technologies CZ, s.r.o.)
O4 - HKLM..\Run: [LWS] C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe (Logitech Inc.)
O4 - HKLM..\Run: [NokiaMServer] C:\Program Files (x86)\Common Files\Nokia\MPlatform\NokiaMServer.exe (Nokia)
O4 - HKLM..\Run: [RemoteControl10] C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe (CyberLink Corp.)
O4 - HKLM..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [vmware-tray] C:\Program Files (x86)\VMware\VMware Workstation\vmware-tray.exe (VMware, Inc.)
O4 - HKU\S-1-5-19..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-20..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-1464662876-954682725-1912904226-1001..\Run: [BitTorrent DNA] C:\Users\Jara\Program Files (x86)\DNA\btdna.exe (BitTorrent, Inc.)
O4 - HKU\S-1-5-21-1464662876-954682725-1912904226-1001..\Run: [Data Replicator 3] C:\Program Files (x86)\Synology Data Replicator 3\Backup.exe (Synology Inc.)
O4 - HKU\S-1-5-21-1464662876-954682725-1912904226-1001..\Run: [DisplayFusion] C:\Program Files (x86)\DisplayFusion\DisplayFusion.exe (Binary Fortress Software)
O4 - HKU\S-1-5-21-1464662876-954682725-1912904226-1001..\Run: [ICQ] C:\Program Files (x86)\ICQ7.2\ICQ.exe (ICQ, LLC.)
O4 - HKU\S-1-5-21-1464662876-954682725-1912904226-1001..\Run: [Logitech Vid] C:\Program Files (x86)\Logitech\Vid HD\Vid.exe (Logitech Inc.)
O4 - HKU\S-1-5-21-1464662876-954682725-1912904226-1001..\Run: [SandboxieControl] C:\Program Files\Sandboxie\SbieCtrl.exe (SANDBOXIE L.T.D)
O4 - HKU\S-1-5-21-1464662876-954682725-1912904226-1001..\Run: [SansaDispatch] C:\Users\Jara\AppData\Roaming\SanDisk\Sansa Updater\SansaDispatch.exe (SanDisk Corporation)
O4 - HKU\S-1-5-21-1464662876-954682725-1912904226-1001..\Run: [TomTomHOME.exe] C:\Program Files (x86)\TomTom HOME 2\TomTomHOMERunner.exe (TomTom)
O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] File not found
O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] File not found
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 255
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = [binary data]
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = [binary data]
O7 - HKU\S-1-5-21-1464662876-954682725-1912904226-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-1464662876-954682725-1912904226-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: LogonHoursAction = 2
O7 - HKU\S-1-5-21-1464662876-954682725-1912904226-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DontDisplayLogonHoursWarnings = 1
O8:64bit: - Extra context menu item: &Download with BitKinex - C:\Program Files (x86)\BitKinex\ieext_cp.htm ()
O8:64bit: - Extra context menu item: &Register in BitKinex - C:\Program Files (x86)\BitKinex\ieext_reg.htm ()
O8:64bit: - Extra context menu item: Append to existing PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8:64bit: - Extra context menu item: Convert link target to Adobe PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8:64bit: - Extra context menu item: Convert link target to existing PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8:64bit: - Extra context menu item: Convert to Adobe PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8:64bit: - Extra context menu item: Připojit cíl vazby k existujícímu PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8:64bit: - Extra context menu item: Připojit k existujícímu PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: &Download with BitKinex - C:\Program Files (x86)\BitKinex\ieext_cp.htm ()
O8 - Extra context menu item: &Register in BitKinex - C:\Program Files (x86)\BitKinex\ieext_reg.htm ()
O8 - Extra context menu item: Append to existing PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Convert link target to Adobe PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Convert link target to existing PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Convert to Adobe PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Připojit cíl vazby k existujícímu PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Připojit k existujícímu PDF - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O9 - Extra Button: @C:\Windows\WindowsMobile\INetRepl.dll,-222 - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : @C:\Windows\WindowsMobile\INetRepl.dll,-223 - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll (Microsoft Corporation)
O9 - Extra Button: ICQ7.2 - {72EFBFE4-C74F-4187-AEFD-73EA3BE968D6} - C:\Program Files (x86)\ICQ7.2\ICQ.exe (ICQ, LLC.)
O9 - Extra 'Tools' menuitem : ICQ7.2 - {72EFBFE4-C74F-4187-AEFD-73EA3BE968D6} - C:\Program Files (x86)\ICQ7.2\ICQ.exe (ICQ, LLC.)
O10:64bit: - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Computer, Inc.)
O10:64bit: - Protocol_Catalog9\Catalog_Entries\000000000012 - C:\Program Files (x86)\VMware\VMware Workstation\vsocklib.dll (VMware, Inc.)
O10:64bit: - Protocol_Catalog9\Catalog_Entries\000000000013 - C:\Program Files (x86)\VMware\VMware Workstation\vsocklib.dll (VMware, Inc.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Computer, Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000012 - C:\Program Files (x86)\VMware\VMware Workstation\vsocklib.dll (VMware, Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000013 - C:\Program Files (x86)\VMware\VMware Workstation\vsocklib.dll (VMware, Inc.)
O13 - gopher Prefix: missing
O13 - gopher Prefix: missing
O15 - HKU\S-1-5-21-1464662876-954682725-1912904226-1001\..Trusted Domains: cacert.org ([www] https in Důvěryhodné servery)
O15 - HKU\S-1-5-21-1464662876-954682725-1912904226-1001\..Trusted Domains: diit.cz ([www] http in Důvěryhodné servery)
O15 - HKU\S-1-5-21-1464662876-954682725-1912904226-1001\..Trusted Domains: elvos.cz ([www] https in Důvěryhodné servery)
O15 - HKU\S-1-5-21-1464662876-954682725-1912904226-1001\..Trusted Domains: fio.cz ([www] https in Důvěryhodné servery)
O15 - HKU\S-1-5-21-1464662876-954682725-1912904226-1001\..Trusted Domains: geocaching.com ([www] http in Důvěryhodné servery)
O15 - HKU\S-1-5-21-1464662876-954682725-1912904226-1001\..Trusted Domains: mfcr.cz ([adisepo] https in Důvěryhodné servery)
O15 - HKU\S-1-5-21-1464662876-954682725-1912904226-1001\..Trusted Domains: no-ip.info ([kosatec] https in Důvěryhodné servery)
O15 - HKU\S-1-5-21-1464662876-954682725-1912904226-1001\..Trusted Domains: startssl.com ([www] https in Důvěryhodné servery)
O15 - HKU\S-1-5-21-1464662876-954682725-1912904226-1001\..Trusted Domains: virgilio.it ([xoomer] http in Důvěryhodné servery)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_21)
O16 - DPF: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_21)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Reg Error: Key error.)
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} http://download.microsoft.com/download/ ... ontrol.cab (Windows Genuine Advantage Validation Tool)
O16 - DPF: {4871A87A-BFDD-4106-8153-FFDE2BAC2967} http://dlm.tools.akamai.com/dlmanager/v ... .2.5.7.cab (DLM Control)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_21)
O16 - DPF: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_21)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab (Java Plug-in 1.6.0_21)
O16 - DPF: {D1E7CBDA-E60E-4970-A01C-37301EF7BF98} http://service.futuremark.com/gom/receiver/tc/FMSI.cab (Futuremark SystemInfo)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/s ... wflash.cab (Shockwave Flash Object)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.)
O16 - DPF: {F680B28A-3AEE-4C88-93ED-45AE9215C128} http://adisepo.mfcr.cz/adistc/adis/idpr ... x_1015.cab (CryptSignX Control)
O16 - DPF: Garmin Communicator Plug-In https://static.garmincdn.com/gcp/ie/2.9 ... ontrol.CAB (Reg Error: Key error.)
O18:64bit: - Protocol\Handler\http\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - Reg Error: Key error. File not found
O18:64bit: - Protocol\Handler\http\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - Reg Error: Key error. File not found
O18:64bit: - Protocol\Handler\https\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - Reg Error: Key error. File not found
O18:64bit: - Protocol\Handler\https\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - Reg Error: Key error. File not found
O18:64bit: - Protocol\Handler\linkscanner {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files (x86)\AVG\AVG10\avgppa.dll (AVG Technologies CZ, s.r.o.)
O18:64bit: - Protocol\Handler\msdaipp - No CLSID value found
O18:64bit: - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - Reg Error: Key error. File not found
O18:64bit: - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - Reg Error: Key error. File not found
O18:64bit: - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - Reg Error: Key error. File not found
O18 - Protocol\Handler\http\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\http\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\https\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\https\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\linkscanner {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files (x86)\AVG\AVG10\avgpp.dll (AVG Technologies CZ, s.r.o.)
O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O20:64bit: - AppInit_DLLs: (acaptuser64.dll) - C:\Windows\SysNative\acaptuser64.dll (Adobe Systems, Inc.)
O20 - AppInit_DLLs: (acaptuser32.dll) - C:\Windows\SysWow64\acaptuser32.dll (Adobe Systems Incorporated)
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2011.01.26 01:38:57 | 000,000,000 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O33 - MountPoints2\{6ace6024-08a8-11e0-bac2-005056c00008}\Shell - "" = AutoRun
O33 - MountPoints2\{6ace6024-08a8-11e0-bac2-005056c00008}\Shell\AutoRun\command - "" = G:\MI.exe
O33 - MountPoints2\{9d00f50c-e035-11de-830d-001e8c9a8c7f}\Shell - "" = AutoRun
O33 - MountPoints2\{9d00f50c-e035-11de-830d-001e8c9a8c7f}\Shell\AutoRun\command - "" = G:\LaunchU3.exe -a
O33 - MountPoints2\{cf5a231b-c14f-11df-9344-d6e84ac4abcb}\Shell - "" = AutoRun
O33 - MountPoints2\{cf5a231b-c14f-11df-9344-d6e84ac4abcb}\Shell\AutoRun\command - "" = I:\setup.exe
O33 - MountPoints2\{d23be16b-ddcc-11de-a31c-001e8c9a8c7f}\Shell - "" = AutoRun
O33 - MountPoints2\{d23be16b-ddcc-11de-a31c-001e8c9a8c7f}\Shell\AutoRun\command - "" = G:\NokiaPCIA_Autorun.exe
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O34 - HKLM BootExecute: (C:\PROGRA~2\AVG\AVG10\avgchsva.exe /sync) - C:\Program Files (x86)\AVG\AVG10\avgchsva.exe (AVG Technologies CZ, s.r.o.)
O34 - HKLM BootExecute: (C:\PROGRA~2\AVG\AVG10\avgrsa.exe /sync /restart) - C:\Program Files (x86)\AVG\AVG10\avgrsa.exe (AVG Technologies CZ, s.r.o.)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

NetSvcs:64bit: AppMgmt - C:\Windows\SysNative\appmgmts.dll (Microsoft Corporation)

Drivers32:64bit: msacm.ac3filter - ac3filter64.acm ()
Drivers32:64bit: msacm.l3acm - C:\Windows\System32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32:64bit: vidc.i420 - lvcod64.dll (Logitech Inc.)
Drivers32: msacm.ac3filter - C:\Windows\SysWow64\ac3filter.acm ()
Drivers32: msacm.l3acm - C:\Windows\SysWOW64\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: vidc.cvid - C:\Windows\SysWow64\iccvid.dll (Radius Inc.)
Drivers32: vidc.i420 - C:\Windows\SysWow64\lvcodec2.dll (Logitech Inc.)
Drivers32: VIDC.VMnc - C:\Windows\SysWow64\vmnc.dll (VMware, Inc.)

CREATERESTOREPOINT
Restore point Set: OTL Restore Point

========== Files/Folders - Created Within 30 Days ==========

[2011.02.18 12:10:11 | 000,602,624 | ---- | C] (OldTimer Tools) -- C:\Users\Jara\Desktop\OTL.exe
[2011.02.18 09:32:06 | 000,000,000 | ---D | C] -- C:\rsit
[2011.02.18 09:28:05 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\trend micro
[2011.02.18 09:18:24 | 000,000,000 | ---D | C] -- C:\rsit-nouze
[2011.02.18 09:16:30 | 000,000,000 | ---D | C] -- C:\Program Files\trend micro
[2011.02.18 09:09:55 | 000,000,000 | ---D | C] -- C:\Users\Jara\AppData\Roaming\Malwarebytes
[2011.02.18 09:00:33 | 000,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysWow64\drivers\mbamswissarmy.sys
[2011.02.18 09:00:33 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware
[2011.02.18 09:00:33 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2011.02.18 09:00:30 | 000,024,152 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\mbam.sys
[2011.02.18 09:00:29 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware
[2011.02.13 23:39:22 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
[2011.02.09 08:09:02 | 000,599,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msfeeds.dll
[2011.02.09 08:09:01 | 000,703,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msfeeds.dll
[2011.02.09 08:09:01 | 000,256,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iepeers.dll
[2011.02.09 08:09:01 | 000,185,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iepeers.dll
[2011.02.09 08:09:01 | 000,097,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmled.dll
[2011.02.09 08:09:01 | 000,067,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmled.dll
[2011.02.09 08:09:00 | 000,482,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\html.iec
[2011.02.09 08:09:00 | 000,386,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\html.iec
[2011.02.09 08:09:00 | 000,057,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\licmgr10.dll
[2011.02.09 08:09:00 | 000,044,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\licmgr10.dll
[2011.02.09 08:09:00 | 000,012,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msfeedssync.exe
[2011.02.09 08:09:00 | 000,012,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msfeedssync.exe
[2011.02.09 08:08:44 | 000,214,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winsrv.dll
[2011.02.09 08:08:42 | 000,264,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\upnp.dll
[2011.02.09 08:08:42 | 000,204,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\upnp.dll
[2011.02.09 08:08:41 | 000,100,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\davclnt.dll
[2011.02.09 08:08:41 | 000,080,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\davclnt.dll
[2011.02.09 08:08:41 | 000,062,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wscapi.dll
[2011.02.09 08:08:41 | 000,051,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wscapi.dll
[2011.02.09 08:08:41 | 000,015,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\slwga.dll
[2011.02.09 08:08:41 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\slwga.dll
[2011.02.09 08:08:37 | 000,265,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\dxgmms1.sys
[2011.02.09 08:08:37 | 000,144,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cdd.dll
[2011.02.09 08:08:30 | 000,852,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript.dll
[2011.02.09 08:08:30 | 000,716,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript.dll
[2011.02.09 08:08:30 | 000,612,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vbscript.dll
[2011.02.09 08:08:28 | 005,510,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntoskrnl.exe
[2011.02.09 08:08:28 | 003,957,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntkrnlpa.exe
[2011.02.09 08:08:28 | 003,901,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntoskrnl.exe
[2011.02.09 08:08:28 | 001,739,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntdll.dll
[2011.02.09 08:08:27 | 000,366,080 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\SysNative\atmfd.dll
[2011.02.09 08:08:26 | 000,294,400 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\atmfd.dll
[2011.02.09 08:08:26 | 000,046,080 | ---- | C] (Adobe Systems) -- C:\Windows\SysNative\atmlib.dll
[2011.02.09 08:08:26 | 000,034,304 | ---- | C] (Adobe Systems) -- C:\Windows\SysWow64\atmlib.dll
[2011.02.05 13:01:53 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\HDDGURU LLF Tool
[2011.02.05 13:01:53 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HDD Low Level Format Tool
[2011.02.05 12:25:39 | 000,306,688 | ---- | C] (InstallShield Software Corporation) -- C:\Windows\IsUninst.exe
[2011.01.30 19:51:32 | 000,000,000 | ---D | C] -- C:\Users\Jara\AppData\Roaming\Stereoscopic Player
[2011.01.30 19:50:32 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Stereoscopic Player
[2011.01.30 19:50:32 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Stereoscopic Player
[2011.01.28 23:48:41 | 000,000,000 | ---D | C] -- C:\Users\Jara\Desktop\FOTKY
[2011.01.26 01:38:40 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Enigma Software Group
[2011.01.26 01:38:24 | 000,000,000 | ---D | C] -- C:\Windows\41EBC322660F4D16A0DF53147210CBDB.TMP
[2011.01.23 23:23:25 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bethesda Softworks
[2011.01.23 23:22:58 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Bethesda Softworks
[2011.01.21 16:33:32 | 000,000,000 | ---D | C] -- C:\Users\Jara\AppData\Local\Wild Media Server
[2011.01.21 16:33:18 | 000,000,000 | ---D | C] -- C:\ProgramData\Wild Media Server
[2011.01.21 16:33:18 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wild Media Server
[2011.01.21 16:33:05 | 000,000,000 | R--D | C] -- C:\Program Files (x86)\Wild Media Server
[2011.01.20 23:29:11 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Jalbum
[2011.01.20 22:33:56 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Jalbum
[2011.01.20 19:13:35 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Oblivion Mod Manager
[2011.01.20 18:23:00 | 000,000,000 | ---D | C] -- C:\Users\Jara\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TiMoC
[2011.01.20 18:23:00 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TiMoC
[2011.01.20 18:22:59 | 000,000,000 | ---D | C] -- C:\Windows\TiMoC
[2011.01.20 18:15:05 | 000,000,000 | ---D | C] -- C:\Users\Jara\AppData\Local\Oblivion
[2011.01.20 18:14:54 | 000,000,000 | ---D | C] -- C:\Users\Jara\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
[2011.01.20 17:35:50 | 000,000,000 | ---D | C] -- C:\Oblivion
[2010.01.04 22:42:09 | 000,082,816 | ---- | C] (VSO Software) -- C:\Users\Jara\AppData\Roaming\pcouffin.sys
[2 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]

========== Files - Modified Within 30 Days ==========

[2011.02.18 12:16:16 | 000,000,958 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1464662876-954682725-1912904226-1001UA.job
[2011.02.18 12:16:16 | 000,000,948 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2011.02.18 12:09:26 | 000,602,624 | ---- | M] (OldTimer Tools) -- C:\Users\Jara\Desktop\OTL.exe
[2011.02.18 09:31:44 | 000,014,224 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2011.02.18 09:31:44 | 000,014,224 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2011.02.18 09:22:43 | 000,000,944 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2011.02.18 09:22:06 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2011.02.18 09:22:01 | 536,174,591 | -HS- | M] () -- C:\hiberfil.sys
[2011.02.18 09:00:33 | 000,001,116 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2011.02.17 22:16:01 | 000,000,906 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1464662876-954682725-1912904226-1001Core.job
[2011.02.17 21:52:57 | 000,003,052 | ---- | M] () -- C:\Windows\Sandboxie.ini
[2011.02.17 14:00:42 | 106,349,959 | ---- | M] () -- C:\Windows\SysNative\drivers\AVG\incavi.avm
[2011.02.17 11:08:48 | 000,645,916 | ---- | M] () -- C:\Windows\SysNative\drivers\AVG\iavifw.avm
[2011.02.16 12:02:42 | 000,000,296 | ---- | M] () -- C:\Windows\tasks\Synology Data Replicator 3-Jara-PC-Jara.job
[2011.02.15 07:45:26 | 001,593,856 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2011.02.15 07:45:26 | 000,674,090 | ---- | M] () -- C:\Windows\SysNative\perfh005.dat
[2011.02.15 07:45:26 | 000,658,250 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2011.02.15 07:45:26 | 000,143,200 | ---- | M] () -- C:\Windows\SysNative\perfc005.dat
[2011.02.15 07:45:26 | 000,123,648 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2011.02.13 23:39:22 | 000,001,073 | ---- | M] () -- C:\Users\Public\Desktop\VLC media player.lnk
[2011.02.12 07:14:35 | 000,002,399 | ---- | M] () -- C:\Users\Jara\Desktop\Google Chrome.lnk
[2011.02.11 22:18:00 | 000,000,398 | ---- | M] () -- C:\Windows\tasks\EasyShare Registration Task.job
[2011.02.10 23:07:32 | 000,000,132 | ---- | M] () -- C:\Users\Jara\AppData\Roaming\Adobe Formát PNG CS5 – předvolby
[2011.02.10 08:49:40 | 005,146,336 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2011.02.09 11:51:30 | 000,001,034 | ---- | M] () -- C:\Users\Public\Desktop\jAlbum.lnk
[2011.02.09 09:51:58 | 000,212,992 | ---- | M] () -- C:\Users\Jara\Documents\PhatNotes.wnt
[2011.02.09 09:37:53 | 000,001,307 | ---- | M] () -- C:\Users\Jara\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Výřezy obrazovky a spuštění aplikace OneNote 2010.lnk
[2011.02.09 08:50:52 | 000,002,021 | ---- | M] () -- C:\Users\Public\Desktop\Adobe Reader 9.lnk
[2011.02.07 15:16:53 | 799,069,701 | ---- | M] () -- C:\Windows\MEMORY.DMP
[2011.02.05 13:01:53 | 000,000,983 | ---- | M] () -- C:\Users\Jara\Desktop\Hard Disk Low Level Format Tool.lnk
[2011.02.04 19:33:28 | 000,000,663 | ---- | M] () -- C:\Users\Jara\Desktop\Oblivion Mod Manager.lnk
[2011.01.30 19:50:33 | 000,002,601 | ---- | M] () -- C:\Users\Public\Desktop\Stereoscopic Player.lnk
[2011.01.29 12:53:14 | 000,014,336 | ---- | M] () -- C:\Users\Jara\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011.01.28 00:18:20 | 000,000,553 | ---- | M] () -- C:\Users\Public\Desktop\GeoGet.lnk
[2011.01.27 23:51:31 | 000,002,056 | ---- | M] () -- C:\Users\Jara\Desktop\GeoKuk.lnk
[2011.01.27 23:36:50 | 000,000,557 | ---- | M] () -- C:\Users\Public\Desktop\GSAK.lnk
[2011.01.27 17:24:48 | 000,000,023 | ---- | M] () -- C:\Windows\BlendSettings.ini
[2011.01.27 08:24:38 | 000,000,972 | ---- | M] () -- C:\Users\Public\Desktop\AVG 2011.lnk
[2011.01.26 07:53:10 | 000,265,088 | ---- | M] (Microsoft Corporation) --

Re: ISP odpojeno - generuji spam

Napsal: 18 úno 2011 14:25
od hu.go
C:\Windows\SysNative\drivers\dxgmms1.sys
[2011.01.26 07:31:20 | 000,144,384 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\cdd.dll
[2011.01.26 01:38:57 | 000,000,000 | ---- | M] () -- C:\autoexec.bat
[2011.01.24 20:24:24 | 000,002,961 | ---- | M] () -- C:\Users\Jara\Documents\Phatnotes.config.xml
[2011.01.24 15:22:45 | 000,001,164 | ---- | M] () -- C:\Users\Jara\Desktop\Členství v klubu Windows Mobile.lnk
[2011.01.23 23:37:14 | 000,001,491 | ---- | M] () -- C:\Users\Public\Desktop\Oblivion.lnk
[2011.01.21 16:36:59 | 000,000,485 | ---- | M] () -- C:\Windows\wms.ini
[2011.01.21 16:33:18 | 000,001,411 | ---- | M] () -- C:\Users\Jara\Desktop\Wild Media Server (UPnP, DLNA, HTTP).lnk
[2011.01.21 16:33:18 | 000,000,146 | ---- | M] () -- C:\Windows\wmssetup.ini
[2011.01.21 14:44:28 | 000,219,648 | ---- | M] () -- C:\Users\Jara\Desktop\prohlidky_2011.xls
[2011.01.21 14:44:24 | 000,212,480 | ---- | M] () -- C:\Users\Jara\Desktop\prohlidky.xls
[2011.01.20 22:57:23 | 000,000,294 | ---- | M] () -- C:\Users\Jara\.jalbum-recent-projects.properties
[2011.01.20 22:35:45 | 000,000,461 | ---- | M] () -- C:\Users\Jara\.jalbum-ftp-accounts.xml
[2011.01.20 19:18:10 | 000,001,018 | ---- | M] () -- C:\Users\Jara\Desktop\OblivionModManager.exe – zástupce.lnk
[2 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]

========== Files Created - No Company Name ==========

[2011.02.18 09:00:33 | 000,001,116 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2011.02.13 23:39:22 | 000,001,073 | ---- | C] () -- C:\Users\Public\Desktop\VLC media player.lnk
[2011.02.07 15:16:53 | 799,069,701 | ---- | C] () -- C:\Windows\MEMORY.DMP
[2011.02.05 13:01:53 | 000,000,983 | ---- | C] () -- C:\Users\Jara\Desktop\Hard Disk Low Level Format Tool.lnk
[2011.02.05 12:25:52 | 000,014,976 | ---- | C] () -- C:\Windows\SysWow64\drivers\SBKUPNT.SYS
[2011.02.05 12:25:52 | 000,013,312 | ---- | C] () -- C:\Windows\SysWow64\DEVLOAD.EXE
[2011.02.05 12:25:44 | 000,002,799 | ---- | C] () -- C:\Windows\SKLANG.INI
[2011.01.30 19:50:32 | 000,002,601 | ---- | C] () -- C:\Users\Public\Desktop\Stereoscopic Player.lnk
[2011.01.26 01:38:57 | 000,000,000 | ---- | C] () -- C:\autoexec.bat
[2011.01.24 15:22:45 | 000,001,164 | ---- | C] () -- C:\Users\Jara\Desktop\Členství v klubu Windows Mobile.lnk
[2011.01.24 00:54:35 | 000,000,663 | ---- | C] () -- C:\Users\Jara\Desktop\Oblivion Mod Manager.lnk
[2011.01.23 23:37:14 | 000,001,491 | ---- | C] () -- C:\Users\Public\Desktop\Oblivion.lnk
[2011.01.21 16:33:21 | 000,000,485 | ---- | C] () -- C:\Windows\wms.ini
[2011.01.21 16:33:18 | 000,001,411 | ---- | C] () -- C:\Users\Jara\Desktop\Wild Media Server (UPnP, DLNA, HTTP).lnk
[2011.01.21 16:33:18 | 000,000,146 | ---- | C] () -- C:\Windows\wmssetup.ini
[2011.01.20 23:29:14 | 000,001,034 | ---- | C] () -- C:\Users\Public\Desktop\jAlbum.lnk
[2011.01.20 19:49:07 | 000,000,023 | ---- | C] () -- C:\Windows\BlendSettings.ini
[2011.01.20 19:18:10 | 000,001,018 | ---- | C] () -- C:\Users\Jara\Desktop\OblivionModManager.exe – zástupce.lnk
[2011.01.20 15:25:55 | 000,219,648 | ---- | C] () -- C:\Users\Jara\Desktop\prohlidky_2011.xls
[2011.01.16 17:13:49 | 000,000,600 | ---- | C] () -- C:\Users\Jara\AppData\Local\PUTTY.RND
[2010.12.12 23:11:04 | 000,014,336 | ---- | C] () -- C:\Users\Jara\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010.11.08 18:18:28 | 000,003,052 | ---- | C] () -- C:\Windows\Sandboxie.ini
[2010.10.11 21:51:42 | 000,000,132 | ---- | C] () -- C:\Users\Jara\AppData\Roaming\Adobe Formát BMP CS5 – předvolby
[2010.09.28 13:58:29 | 000,000,000 | ---- | C] () -- C:\ProgramData\Trance Pad
[2010.08.30 16:06:14 | 001,574,882 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2010.08.09 09:20:05 | 000,000,090 | ---- | C] () -- C:\Windows\Sansa Media Converter.INI
[2010.07.09 13:46:02 | 000,000,132 | ---- | C] () -- C:\Users\Jara\AppData\Roaming\Adobe Formát PNG CS5 – předvolby
[2010.07.07 16:01:19 | 000,007,458 | ---- | C] () -- C:\Windows\uedit32.INI
[2010.05.14 22:56:06 | 010,830,680 | ---- | C] () -- C:\Windows\SysWow64\LogiDPP.dll
[2010.05.14 22:55:58 | 000,290,648 | ---- | C] () -- C:\Windows\SysWow64\DevManagerCore.dll
[2010.05.07 16:46:05 | 000,038,453 | ---- | C] () -- C:\Users\Jara\AppData\Roaming\Hodnoty oddělené tabulátory (Windows).ADR
[2010.05.04 20:45:21 | 000,000,600 | ---- | C] () -- C:\Users\Jara\AppData\Roaming\winscp.rnd
[2010.04.07 06:50:38 | 000,000,019 | ---- | C] () -- C:\Users\Jara\AppData\Roaming\mdbu.bin
[2010.03.17 23:24:20 | 000,022,536 | ---- | C] () -- C:\Users\Jara\AppData\Roaming\Hodnoty oddělené čárkami (Windows).ADR
[2010.03.17 22:34:49 | 000,038,413 | ---- | C] () -- C:\Users\Jara\AppData\Roaming\Microsoft Excel 97-2003.ADR
[2010.02.03 09:03:59 | 017,593,366 | ---- | C] () -- C:\Program Files (x86)\DVBViewer.rar
[2010.01.26 17:23:01 | 000,000,917 | ---- | C] () -- C:\Users\Jara\AppData\Roaming\coreavc.ini
[2010.01.26 10:17:54 | 000,001,769 | ---- | C] () -- C:\Windows\Language_trs.ini
[2010.01.04 22:42:34 | 000,000,033 | ---- | C] () -- C:\Users\Jara\AppData\Roaming\pcouffin.log
[2010.01.04 22:42:09 | 000,099,384 | ---- | C] () -- C:\Users\Jara\AppData\Roaming\inst.exe
[2010.01.04 22:42:09 | 000,007,859 | ---- | C] () -- C:\Users\Jara\AppData\Roaming\pcouffin.cat
[2010.01.04 22:42:09 | 000,001,167 | ---- | C] () -- C:\Users\Jara\AppData\Roaming\pcouffin.inf
[2009.12.20 23:05:44 | 000,007,168 | ---- | C] () -- C:\Windows\SysWow64\drivers\StarOpen.sys
[2009.12.09 21:44:18 | 000,000,929 | ---- | C] () -- C:\Windows\wcx_ftp.ini
[2009.12.09 21:43:45 | 000,002,682 | ---- | C] () -- C:\Windows\WINCMD.INI
[2009.11.30 19:20:15 | 000,002,528 | ---- | C] () -- C:\Windows\FCIC.INI
[2009.11.30 18:05:09 | 000,000,437 | ---- | C] () -- C:\Windows\SysWow64\gmsblist.dll
[2009.11.30 16:45:34 | 000,000,268 | RH-- | C] () -- C:\ProgramData\Vocal Transformer
[2009.11.30 16:45:34 | 000,000,268 | RH-- | C] () -- C:\Users\Jara\AppData\Roaming\URLs
[2009.11.30 16:45:34 | 000,000,020 | -H-- | C] () -- C:\ProgramData\PKP_DLdu.DAT
[2009.11.30 16:45:34 | 000,000,012 | RH-- | C] () -- C:\ProgramData\Work - Home
[2009.11.30 16:25:35 | 000,000,268 | RH-- | C] () -- C:\ProgramData\Compressor
[2009.11.30 16:25:35 | 000,000,268 | RH-- | C] () -- C:\Users\Jara\AppData\Roaming\Command Line Utility
[2009.11.30 16:22:28 | 000,000,020 | -H-- | C] () -- C:\ProgramData\PKP_DLbx.DAT
[2009.11.30 10:19:56 | 000,000,053 | ---- | C] () -- C:\Windows\SysWow64\cmasiop.ini
[2009.11.30 10:19:55 | 000,143,360 | ---- | C] () -- C:\Windows\SysWow64\VmixP8.dll
[2009.11.30 10:19:51 | 000,083,777 | ---- | C] () -- C:\Windows\Cmicnfgp.ini.cfl
[2009.11.30 10:19:31 | 000,000,912 | ---- | C] () -- C:\Windows\Cmicnfgp.ini.imi
[2009.11.30 10:19:28 | 000,004,965 | ---- | C] () -- C:\Windows\Cmicnfgp.ini.cfg
[2009.11.30 10:19:28 | 000,000,558 | ---- | C] () -- C:\Windows\cmudaxp.ini
[2009.10.20 19:19:30 | 000,053,299 | ---- | C] () -- C:\Windows\SysWow64\pthreadVC.dll
[2009.07.14 00:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\SysWow64\BWContextHandler.dll
[2009.07.13 22:03:59 | 000,364,544 | ---- | C] () -- C:\Windows\SysWow64\msjetoledb40.dll
[1993.07.23 18:31:02 | 000,210,944 | ---- | C] () -- C:\Windows\SysWow64\Msvcrt10.dll

========== LOP Check ==========

[2009.11.30 14:18:25 | 000,000,000 | ---D | M] -- C:\Users\Administrator\AppData\Roaming\ASUS
[2010.03.11 22:32:33 | 000,000,000 | ---D | M] -- C:\Users\Administrator\AppData\Roaming\HotSync
[2010.04.16 16:42:57 | 000,000,000 | ---D | M] -- C:\Users\dítě\AppData\Roaming\ASUS
[2010.11.16 17:24:31 | 000,000,000 | ---D | M] -- C:\Users\dítě\AppData\Roaming\AVG10
[2010.12.21 19:48:41 | 000,000,000 | ---D | M] -- C:\Users\dítě\AppData\Roaming\DisplayFusion
[2010.04.16 16:43:09 | 000,000,000 | ---D | M] -- C:\Users\dítě\AppData\Roaming\HotSync
[2011.02.03 12:14:37 | 000,000,000 | ---D | M] -- C:\Users\dítě\AppData\Roaming\ICQ
[2010.06.30 21:10:28 | 000,000,000 | ---D | M] -- C:\Users\dítě\AppData\Roaming\PC Suite
[2010.12.21 19:48:25 | 000,000,000 | ---D | M] -- C:\Users\dítě\AppData\Roaming\Skinux
[2010.12.21 20:49:07 | 000,000,000 | ---D | M] -- C:\Users\dítě\AppData\Roaming\uTorrent
[2010.10.06 19:19:40 | 000,000,000 | ---D | M] -- C:\Users\dítě\AppData\Roaming\Zoner
[2010.12.23 00:38:40 | 000,000,000 | ---D | M] -- C:\Users\Hanka\AppData\Roaming\ACD Systems
[2010.03.11 22:10:42 | 000,000,000 | ---D | M] -- C:\Users\Hanka\AppData\Roaming\ASUS
[2010.11.16 17:27:57 | 000,000,000 | ---D | M] -- C:\Users\Hanka\AppData\Roaming\AVG10
[2010.12.22 23:54:06 | 000,000,000 | ---D | M] -- C:\Users\Hanka\AppData\Roaming\DisplayFusion
[2010.12.23 00:01:51 | 000,000,000 | ---D | M] -- C:\Users\Hanka\AppData\Roaming\GHISLER
[2010.03.11 22:10:56 | 000,000,000 | ---D | M] -- C:\Users\Hanka\AppData\Roaming\HotSync
[2011.01.22 19:45:24 | 000,000,000 | ---D | M] -- C:\Users\Hanka\AppData\Roaming\ICQ
[2010.10.21 21:32:25 | 000,000,000 | ---D | M] -- C:\Users\Hanka\AppData\Roaming\Nokia
[2010.10.21 21:30:57 | 000,000,000 | ---D | M] -- C:\Users\Hanka\AppData\Roaming\Nokia Ovi Suite
[2010.10.21 21:43:20 | 000,000,000 | ---D | M] -- C:\Users\Hanka\AppData\Roaming\PC Suite
[2010.12.22 23:53:52 | 000,000,000 | ---D | M] -- C:\Users\Hanka\AppData\Roaming\Skinux
[2010.08.26 18:04:27 | 000,000,000 | ---D | M] -- C:\Users\Hanka\AppData\Roaming\TeamViewer
[2011.01.24 13:38:27 | 000,000,000 | ---D | M] -- C:\Users\Hanka\AppData\Roaming\TomTom
[2010.12.23 04:10:20 | 000,000,000 | ---D | M] -- C:\Users\Hanka\AppData\Roaming\uTorrent
[2009.11.30 16:12:01 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\ACD Systems
[2010.10.23 21:05:59 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\AIMP
[2009.11.30 10:20:04 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\ASUS
[2011.01.12 12:35:26 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\Audacity
[2010.11.15 21:51:07 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\AVG
[2010.11.15 00:38:50 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\AVG10
[2010.09.22 12:54:06 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\BitKinex
[2010.03.19 19:05:26 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\CadSoft
[2010.02.01 11:51:48 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\Canneverbe Limited
[2009.12.20 23:05:55 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\Canneverbe_Limited
[2010.11.19 14:08:19 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\Canon
[2010.07.08 07:31:44 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
[2010.07.02 08:29:49 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\Ciclo
[2009.11.30 11:17:03 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\DAEMON Tools Pro
[2011.02.13 12:32:41 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\DisplayFusion
[2011.02.18 12:17:35 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\DNA
[2009.11.30 18:01:30 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\EurekaLog
[2009.11.30 16:16:39 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\Extensis
[2010.10.03 08:56:07 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\FileZilla
[2010.07.06 12:26:04 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\GARMIN
[2010.12.01 22:07:28 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\GHISLER
[2010.02.03 16:19:56 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\HotSync
[2010.02.03 16:28:38 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\iambic
[2011.02.18 09:32:03 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\ICQ
[2009.11.30 16:55:18 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\JAlbum
[2010.11.19 10:08:28 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\Leadertech
[2010.07.09 13:03:14 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\Mikrotik
[2010.03.18 00:28:27 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\Mobipocket
[2010.07.16 14:11:51 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\Mp3tag
[2010.03.24 09:50:44 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\Natara
[2010.03.07 15:38:44 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\Nikon
[2010.11.06 09:20:03 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\Nokia
[2010.01.07 16:47:24 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\Nokia Ovi Suite
[2010.02.26 14:16:28 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\Pathcz
[2010.10.23 21:43:08 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\PC Suite
[2010.03.22 18:47:58 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\PhatWare
[2010.07.27 08:13:26 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\SanDisk
[2010.12.17 22:24:30 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\Skinux
[2010.07.08 07:52:14 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\StageManager.BD092818F67280F4B42B04877600987F0111B594.1
[2011.01.30 19:51:32 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\Stereoscopic Player
[2010.07.28 23:09:53 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\TCXConverter
[2010.12.07 21:50:13 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\TeamViewer
[2009.11.30 17:09:47 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\TomTom
[2010.08.30 16:10:30 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\Trillian
[2010.03.18 21:36:58 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\TrueCrypt
[2011.01.26 08:04:24 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\uTorrent
[2010.11.09 09:49:59 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\Vso
[2010.09.29 21:35:13 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\Wireshark
[2009.12.10 18:58:06 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\Zoner
[2011.02.11 22:18:00 | 000,000,398 | ---- | M] () -- C:\Windows\Tasks\EasyShare Registration Task.job
[2010.08.22 18:20:53 | 000,032,568 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT
[2011.02.16 12:02:42 | 000,000,296 | ---- | M] () -- C:\Windows\Tasks\Synology Data Replicator 3-Jara-PC-Jara.job

========== Purity Check ==========



========== Custom Scans ==========


< HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s >
"Sidebar" = C:\Program Files\Windows Sidebar\sidebar.exe /autoRun -- [2009.07.14 02:39:41 | 001,475,072 | ---- | M] (Microsoft Corporation)
"TomTomHOME.exe" = "C:\Program Files (x86)\TomTom HOME 2\TomTomHOMERunner.exe" -- [2010.08.24 10:38:16 | 000,247,144 | ---- | M] (TomTom)
"Google Update" = "C:\Users\Jara\AppData\Local\Google\Update\GoogleUpdate.exe" /c -- [2010.01.28 23:53:19 | 000,135,664 | ---- | M] (Google Inc.)
"DisplayFusion" = "C:\Program Files (x86)\DisplayFusion\DisplayFusion.exe" -- [2010.09.14 09:27:26 | 001,275,624 | ---- | M] (Binary Fortress Software)
"BitTorrent DNA" = "C:\Users\Jara\Program Files (x86)\DNA\btdna.exe" -- [2010.07.07 16:20:48 | 000,323,392 | ---- | M] (BitTorrent, Inc.)
"SansaDispatch" = C:\Users\Jara\AppData\Roaming\SanDisk\Sansa Updater\SansaDispatch.exe -- [2010.07.27 08:13:37 | 000,079,872 | ---- | M] (SanDisk Corporation)
"SandboxieControl" = "C:\Program Files\Sandboxie\SbieCtrl.exe" -- [2010.10.17 23:43:04 | 000,590,056 | ---- | M] (SANDBOXIE L.T.D)
"Logitech Vid" = "C:\Program Files (x86)\Logitech\Vid HD\Vid.exe" -bootmode -- [2010.10.29 21:06:08 | 005,915,480 | ---- | M] (Logitech Inc.)
"Skype" = "C:\Program Files (x86)\Skype\Phone\Skype.exe" /nosplash /minimized -- [2010.10.11 16:49:48 | 016,856,968 | R--- | M] (Skype Technologies S.A.)
"ICQ" = "C:\Program Files (x86)\ICQ7.2\ICQ.exe" silent loginmode=4 -- [2011.01.05 09:18:50 | 000,133,432 | ---- | M] (ICQ, LLC.)
"Data Replicator 3" = "C:\Program Files (x86)\Synology Data Replicator 3\Backup.exe" /MIN -- [2010.03.03 22:16:26 | 011,571,200 | ---- | M] (Synology Inc.)
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\Disabled (Startup Manager)]
"" =

< c:\windows\*.* /U >
[2 c:\windows\*.tmp files -> c:\windows\*.tmp -> ]

< %SYSTEMDRIVE%\*.exe >

< %ALLUSERSPROFILE%\Application Data\*. >

< %ALLUSERSPROFILE%\Application Data\*.exe /s >

< %APPDATA%\*. >
[2010.02.03 16:05:31 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\AccurateRip
[2009.11.30 16:12:01 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\ACD Systems
[2010.12.04 00:58:32 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\Adobe
[2010.07.08 07:52:15 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\Adobe Mini Bridge CS5
[2010.10.23 21:05:59 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\AIMP
[2010.12.17 22:26:21 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\Arcsoft
[2009.11.30 10:20:04 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\ASUS
[2010.12.03 22:31:18 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\Atheros
[2011.01.12 12:35:26 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\Audacity
[2010.11.15 21:51:07 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\AVG
[2010.11.15 00:38:50 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\AVG10
[2010.09.22 12:54:06 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\BitKinex
[2010.03.19 19:05:26 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\CadSoft
[2010.02.01 11:51:48 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\Canneverbe Limited
[2009.12.20 23:05:55 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\Canneverbe_Limited
[2010.11.19 14:08:19 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\Canon
[2010.07.08 07:31:44 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
[2010.07.02 08:29:49 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\Ciclo
[2010.07.30 16:47:58 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\CyberLink
[2009.11.30 11:17:03 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\DAEMON Tools Pro
[2011.02.13 12:32:41 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\DisplayFusion
[2011.02.18 12:17:35 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\DNA
[2010.01.15 00:41:42 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\Download Manager
[2010.06.20 10:08:52 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\dvdcss
[2009.11.30 18:01:30 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\EurekaLog
[2009.11.30 16:16:39 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\Extensis
[2010.10.03 08:56:07 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\FileZilla
[2010.07.06 12:26:04 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\GARMIN
[2010.12.01 22:07:28 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\GHISLER
[2010.02.03 16:19:56 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\HotSync
[2009.11.30 15:31:01 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\HP
[2010.02.03 16:28:38 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\iambic
[2011.02.18 09:32:03 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\ICQ
[2009.11.30 09:35:45 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\Identities
[2009.11.30 19:19:58 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\InstallShield
[2009.11.30 16:55:18 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\JAlbum
[2010.11.19 10:08:28 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\Leadertech
[2009.11.30 10:17:35 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\Macromedia
[2011.02.18 09:09:55 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\Malwarebytes
[2009.07.14 16:36:38 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\Media Center Programs
[2010.11.08 16:46:37 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\Media Player Classic
[2010.12.19 00:15:29 | 000,000,000 | --SD | M] -- C:\Users\Jara\AppData\Roaming\Microsoft
[2010.07.09 13:03:14 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\Mikrotik
[2010.03.18 00:28:27 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\Mobipocket
[2010.11.18 11:05:56 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\Mozilla
[2010.07.16 14:11:51 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\Mp3tag
[2010.03.24 09:50:44 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\Natara
[2009.12.20 22:56:50 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\Nero
[2010.03.07 15:38:44 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\Nikon
[2010.11.06 09:20:03 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\Nokia
[2010.01.07 16:47:24 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\Nokia Ovi Suite
[2010.06.15 08:29:22 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\NVIDIA
[2010.02.26 14:16:28 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\Pathcz
[2010.10.23 21:43:08 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\PC Suite
[2010.03.22 18:47:58 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\PhatWare
[2010.07.27 08:13:26 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\SanDisk
[2010.12.17 22:24:30 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\Skinux
[2011.02.18 11:32:35 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\Skype
[2010.07.08 07:52:14 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\StageManager.BD092818F67280F4B42B04877600987F0111B594.1
[2011.01.30 19:51:32 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\Stereoscopic Player
[2010.11.22 09:30:42 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\Symantec
[2010.07.28 23:09:53 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\TCXConverter
[2010.12.07 21:50:13 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\TeamViewer
[2009.11.30 17:09:47 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\TomTom
[2010.08.30 16:10:30 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\Trillian
[2010.03.18 21:36:58 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\TrueCrypt
[2009.11.30 15:47:05 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\UltraVNC
[2011.01.26 08:04:24 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\uTorrent
[2011.01.17 14:40:30 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\vlc
[2010.11.08 19:39:52 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\VMware
[2010.11.09 09:49:59 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\Vso
[2009.11.30 10:52:59 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\WinRAR
[2010.09.29 21:35:13 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\Wireshark
[2009.12.10 18:58:06 | 000,000,000 | ---D | M] -- C:\Users\Jara\AppData\Roaming\Zoner

< %APPDATA%\*.exe /s >
[2010.11.09 09:49:59 | 000,099,384 | ---- | M] () -- C:\Users\Jara\AppData\Roaming\inst.exe
[2010.09.17 22:12:43 | 001,409,472 | ---- | M] (Binary Fortress Software ) -- C:\Users\Jara\AppData\Roaming\DisplayFusion\DisplayFusionSetup.exe
[2010.12.04 00:42:19 | 000,010,134 | R--- | M] () -- C:\Users\Jara\AppData\Roaming\Microsoft\Installer\{024521CF-C07E-4F8E-8481-0D75695E03AF}\ARPPRODUCTICON.exe
[2009.11.30 16:47:02 | 000,335,872 | R--- | M] (InstallShield Software Corp.) -- C:\Users\Jara\AppData\Roaming\Microsoft\Installer\{237CD223-1B9D-47E8-A76C-E478B83CCEA2}\ARPPRODUCTICON.exe
[2010.03.18 00:19:39 | 000,050,008 | R--- | M] () -- C:\Users\Jara\AppData\Roaming\Microsoft\Installer\{342126E1-173C-4585-BFBE-3EBDD20E3E9E}\_6FEFF9B68218417F98F549.exe
[2010.11.19 10:08:27 | 000,053,248 | R--- | M] (Acresso Software Inc.) -- C:\Users\Jara\AppData\Roaming\Microsoft\Installer\{3EE9BCAE-E9A9-45E5-9B1C-83A4D357E05C}\ARPPRODUCTICON.exe
[2010.03.18 00:33:34 | 000,010,134 | R--- | M] () -- C:\Users\Jara\AppData\Roaming\Microsoft\Installer\{65F79096-EB6C-47DE-9E1F-099861DC057F}\_3541C7F97B142C89BDCDB8.exe
[2010.03.18 00:33:34 | 000,003,310 | R--- | M] () -- C:\Users\Jara\AppData\Roaming\Microsoft\Installer\{65F79096-EB6C-47DE-9E1F-099861DC057F}\_400CBAD3BB63FD73E4A5AE.exe
[2010.03.18 00:33:34 | 000,003,310 | R--- | M] () -- C:\Users\Jara\AppData\Roaming\Microsoft\Installer\{65F79096-EB6C-47DE-9E1F-099861DC057F}\_6FEFF9B68218417F98F549.exe
[2010.11.01 11:44:26 | 000,029,926 | R--- | M] () -- C:\Users\Jara\AppData\Roaming\Microsoft\Installer\{6DE721A5-5E89-4D74-994C-652BB3C0672E}\ARPPRODUCTICON.exe
[2010.03.17 17:13:06 | 000,008,478 | R--- | M] () -- C:\Users\Jara\AppData\Roaming\Microsoft\Installer\{7132C6CF-C824-4C76-818D-14C78F96B885}\ARPPRODUCTICON.exe
[2010.09.28 13:59:49 | 000,057,344 | R--- | M] (InstallShield Software Corp.) -- C:\Users\Jara\AppData\Roaming\Microsoft\Installer\{87441A59-5E64-4096-A170-14EFE67200C3}\ARPPRODUCTICON.exe
[2009.11.30 11:38:01 | 000,004,846 | R--- | M] () -- C:\Users\Jara\AppData\Roaming\Microsoft\Installer\{B1E9B7ED-8187-433a-9EAE-20DF1A8968B1}\_5ef25dbe.exe
[2009.11.30 16:47:18 | 000,049,152 | R--- | M] (InstallShield Software Corp.) -- C:\Users\Jara\AppData\Roaming\Microsoft\Installer\{D2FCC1AE-6311-47C5-8130-C6C66D77DD71}\ARPPRODUCTICON.exe
[2010.09.27 19:24:13 | 097,927,710 | ---- | M] (InterVideo Inc. ) -- C:\Users\Jara\AppData\Roaming\SanDisk\Sansa Updater\Sansa Media Converter.EXE
[2010.07.27 08:13:37 | 000,079,872 | ---- | M] (SanDisk Corporation) -- C:\Users\Jara\AppData\Roaming\SanDisk\Sansa Updater\SansaDispatch.exe
[2010.09.27 19:23:52 | 000,574,344 | ---- | M] (SanDisk Corporation) -- C:\Users\Jara\AppData\Roaming\SanDisk\Sansa Updater\SansaUpdater.exe
[2010.07.27 08:13:37 | 000,354,744 | ---- | M] (SanDisk Corporation) -- C:\Users\Jara\AppData\Roaming\SanDisk\Sansa Updater\SansaUpdaterInstall.exe


< MD5 for: AGP440.SYS >
[2009.07.14 02:52:21 | 000,061,008 | ---- | M] (Microsoft Corporation) MD5=608C14DBA7299D8CB6ED035A68A15799 -- C:\Windows\SysNative\drivers\AGP440.sys
[2009.07.14 02:52:21 | 000,061,008 | ---- | M] (Microsoft Corporation) MD5=608C14DBA7299D8CB6ED035A68A15799 -- C:\Windows\SysNative\DriverStore\FileRepository\machine.inf_amd64_neutral_9e6bb86c3b39a3e9\AGP440.sys
[2009.07.14 02:52:21 | 000,061,008 | ---- | M] (Microsoft Corporation) MD5=608C14DBA7299D8CB6ED035A68A15799 -- C:\Windows\winsxs\amd64_machine.inf_31bf3856ad364e35_6.1.7600.16385_none_1607dee2d861e021\AGP440.sys

< MD5 for: ATAPI.SYS >
[2009.07.14 02:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\SysNative\drivers\atapi.sys
[2009.07.14 02:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\SysNative\DriverStore\FileRepository\mshdc.inf_amd64_neutral_a69a58a4286f0b22\atapi.sys
[2009.07.14 02:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7600.16385_none_392d19c13b3ad543\atapi.sys

< MD5 for: CDROM.SYS >
[2009.07.14 00:19:54 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=83D2D75E1EFB81B3450C18131443F7DB -- C:\Windows\SysNative\drivers\cdrom.sys
[2009.07.14 00:19:54 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=83D2D75E1EFB81B3450C18131443F7DB -- C:\Windows\SysNative\DriverStore\FileRepository\cdrom.inf_amd64_neutral_8363d00ecae4322d\cdrom.sys
[2009.07.14 00:19:54 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=83D2D75E1EFB81B3450C18131443F7DB -- C:\Windows\winsxs\amd64_cdrom.inf_31bf3856ad364e35_6.1.7600.16385_none_bb9e4d89bd7870f1\cdrom.sys

< MD5 for: CNGAUDIT.DLL >
[2009.07.14 02:15:06 | 000,012,288 | ---- | M] (Microsoft Corporation) MD5=50BA656134F78AF64E4DD3C8B6FEFD7E -- C:\Windows\SysWOW64\cngaudit.dll
[2009.07.14 02:15:06 | 000,012,288 | ---- | M] (Microsoft Corporation) MD5=50BA656134F78AF64E4DD3C8B6FEFD7E -- C:\Windows\winsxs\x86_microsoft-windows-cngaudit-dll_31bf3856ad364e35_6.1.7600.16385_none_e83a414890e8132b\cngaudit.dll
[2009.07.14 02:40:20 | 000,018,944 | ---- | M] (Microsoft Corporation) MD5=86FE1B1F8FD42CD0DB641AB1CDB13093 -- C:\Windows\SysNative\cngaudit.dll
[2009.07.14 02:40:20 | 000,018,944 | ---- | M] (Microsoft Corporation) MD5=86FE1B1F8FD42CD0DB641AB1CDB13093 -- C:\Windows\winsxs\amd64_microsoft-windows-cngaudit-dll_31bf3856ad364e35_6.1.7600.16385_none_4458dccc49458461\cngaudit.dll

< MD5 for: CRYPTSVC.DLL >
[2009.07.14 02:40:24 | 000,175,104 | ---- | M] (Microsoft Corporation) MD5=8C57411B66282C01533CB776F98AD384 -- C:\Windows\SysNative\cryptsvc.dll
[2009.07.14 02:40:24 | 000,175,104 | ---- | M] (Microsoft Corporation) MD5=8C57411B66282C01533CB776F98AD384 -- C:\Windows\winsxs\amd64_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7600.16385_none_d1f48b0bb4805490\cryptsvc.dll
[2009.07.14 02:15:07 | 000,135,680 | ---- | M] (Microsoft Corporation) MD5=9C231178CE4FB385F4B54B0A9080B8A4 -- C:\Windows\SysWOW64\cryptsvc.dll
[2009.07.14 02:15:07 | 000,135,680 | ---- | M] (Microsoft Corporation) MD5=9C231178CE4FB385F4B54B0A9080B8A4 -- C:\Windows\winsxs\x86_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7600.16385_none_75d5ef87fc22e35a\cryptsvc.dll

< MD5 for: EXPLORER.EXE >
[2009.07.14 02:14:20 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=15BC38A7492BEFE831966ADB477CF76F -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16385_none_b7fe430bc7ce3761\explorer.exe
[2009.10.31 06:45:39 | 002,614,272 | ---- | M] (Microsoft Corporation) MD5=2626FC9755BE22F805D3CFA0CE3EE727 -- C:\Windows\SysWOW64\explorer.exe
[2009.10.31 06:45:39 | 002,614,272 | ---- | M] (Microsoft Corporation) MD5=2626FC9755BE22F805D3CFA0CE3EE727 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16450_none_b819b343c7ba6202\explorer.exe
[2009.08.03 07:19:07 | 002,868,224 | ---- | M] (Microsoft Corporation) MD5=700073016DAC1C3D2E7E2CE4223334B6 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20500_none_ae84b558ac4eb41c\explorer.exe
[2009.10.31 07:34:59 | 002,870,272 | ---- | M] (Microsoft Corporation) MD5=9AAAEC8DAC27AA17B053E6352AD233AE -- C:\Windows\explorer.exe
[2009.10.31 07:34:59 | 002,870,272 | ---- | M] (Microsoft Corporation) MD5=9AAAEC8DAC27AA17B053E6352AD233AE -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16450_none_adc508f19359a007\explorer.exe
[2009.08.03 06:49:47 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=9FF6C4C91A3711C0A3B18F87B08B518D -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20500_none_b8d95faae0af7617\explorer.exe
[2009.10.31 07:38:38 | 002,870,272 | ---- | M] (Microsoft Corporation) MD5=B8EC4BD49CE8F6FC457721BFC210B67F -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20563_none_ae46d6aeac7ca7c7\explorer.exe
[2009.08.03 06:35:50 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=B95EEB0F4E5EFBF1038A35B3351CF047 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16404_none_b853c407c78e3ba9\explorer.exe
[2009.07.14 02:39:10 | 002,868,224 | ---- | M] (Microsoft Corporation) MD5=C235A51CB740E45FFA0EBFB9BAFCDA64 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16385_none_ada998b9936d7566\explorer.exe
[2009.10.31 07:00:51 | 002,614,272 | ---- | M] (Microsoft Corporation) MD5=C76153C7ECA00FA852BB0C193378F917 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20563_none_b89b8100e0dd69c2\explorer.exe
[2009.08.03 07:17:37 | 002,868,224 | ---- | M] (Microsoft Corporation) MD5=F170B4A061C9E026437B193B4D571799 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16404_none_adff19b5932d79ae\explorer.exe

< MD5 for: HAL.DLL >
[2009.07.14 02:47:48 | 000,263,232 | ---- | M] (Microsoft Corporation) MD5=C0A6F6E05E14FBCAEDE7796C8590B7AC -- C:\Windows\SysNative\hal.dll
[2009.07.14 02:47:48 | 000,263,232 | ---- | M] (Microsoft Corporation) MD5=C0A6F6E05E14FBCAEDE7796C8590B7AC -- C:\Windows\winsxs\amd64_microsoft-windows-hal_31bf3856ad364e35_6.1.7600.16385_none_071de44b735b3dfc\hal.dll

< MD5 for: IASTORV.SYS >
[2009.07.14 02:48:04 | 000,410,688 | ---- | M] (Intel Corporation) MD5=D83EFB6FD45DF9D55E9A1AFC63640D50 -- C:\Windows\SysNative\drivers\iaStorV.sys
[2009.07.14 02:48:04 | 000,410,688 | ---- | M] (Intel Corporation) MD5=D83EFB6FD45DF9D55E9A1AFC63640D50 -- C:\Windows\SysNative\DriverStore\FileRepository\iastorv.inf_amd64_neutral_18cccb83b34e1453\iaStorV.sys
[2009.07.14 02:48:04 | 000,410,688 | ---- | M] (Intel Corporation) MD5=D83EFB6FD45DF9D55E9A1AFC63640D50 -- C:\Windows\winsxs\amd64_iastorv.inf_31bf3856ad364e35_6.1.7600.16385_none_0b06441fa1790136\iaStorV.sys

< MD5 for: ISAPNP.SYS >
[2009.07.14 02:48:04 | 000,020,544 | ---- | M] (Microsoft Corporation) MD5=2F7B28DC3E1183E5EB418DF55C204F38 -- C:\Windows\SysNative\drivers\isapnp.sys
[2009.07.14 02:48:04 | 000,020,544 | ---- | M] (Microsoft Corporation) MD5=2F7B28DC3E1183E5EB418DF55C204F38 -- C:\Windows\SysNative\DriverStore\FileRepository\machine.inf_amd64_neutral_9e6bb86c3b39a3e9\isapnp.sys
[2009.07.14 02:48:04 | 000,020,544 | ---- | M] (Microsoft Corporation) MD5=2F7B28DC3E1183E5EB418DF55C204F38 -- C:\Windows\winsxs\amd64_machine.inf_31bf3856ad364e35_6.1.7600.16385_none_1607dee2d861e021\isapnp.sys

< MD5 for: LSASS.EXE >
[2009.07.14 02:39:16 | 000,031,232 | ---- | M] (Microsoft Corporation) MD5=0793F40B9B8A1BDD266296409DBD91EA -- C:\Windows\SysNative\lsass.exe
[2009.07.14 02:39:16 | 000,031,232 | ---- | M] (Microsoft Corporation) MD5=0793F40B9B8A1BDD266296409DBD91EA -- C:\Windows\winsxs\amd64_microsoft-windows-lsa_31bf3856ad364e35_6.1.7600.16385_none_023f7c69767c3edd\lsass.exe
[2009.07.14 02:39:16 | 000,031,232 | ---- | M] (Microsoft Corporation) MD5=0793F40B9B8A1BDD266296409DBD91EA -- C:\Windows\winsxs\amd64_microsoft-windows-lsa_31bf3856ad364e35_6.1.7600.16484_none_023e7e05767d22ad\lsass.exe
[2009.07.14 02:39:16 | 000,031,232 | ---- | M] (Microsoft Corporation) MD5=0793F40B9B8A1BDD266296409DBD91EA -- C:\Windows\winsxs\amd64_microsoft-windows-lsa_31bf3856ad364e35_6.1.7600.20594_none_02bd4ae48fa2de68\lsass.exe

< MD5 for: NDIS.SYS >
[2009.07.14 02:48:27 | 000,947,776 | ---- | M] (Microsoft Corporation) MD5=CAD515DBD07D082BB317D9928CE8962C -- C:\Windows\SysNative\drivers\ndis.sys
[2009.07.14 02:48:27 | 000,947,776 | ---- | M] (Microsoft Corporation) MD5=CAD515DBD07D082BB317D9928CE8962C -- C:\Windows\winsxs\amd64_microsoft-windows-ndis_31bf3856ad364e35_6.1.7600.16385_none_03bc1d6e35c013bf\ndis.sys

< MD5 for: NETLOGON.DLL >
[2009.07.14 02:41:52 | 000,692,736 | ---- | M] (Microsoft Corporation) MD5=956D030D375F207B22FB111E06EF9C35 -- C:\Windows\SysNative\netlogon.dll
[2009.07.14 02:41:52 | 000,692,736 | ---- | M] (Microsoft Corporation) MD5=956D030D375F207B22FB111E06EF9C35 -- C:\Windows\winsxs\amd64_microsoft-windows-security-netlogon_31bf3856ad364e35_6.1.7600.16385_none_59aca8ea51aaeefe\netlogon.dll
[2009.07.14 02:16:02 | 000,563,712 | ---- | M] (Microsoft Corporation) MD5=EAA75D9000B71F10EEC04D2AE6C60E81 -- C:\Windows\SysWOW64\netlogon.dll
[2009.07.14 02:16:02 | 000,563,712 | ---- | M] (Microsoft Corporation) MD5=EAA75D9000B71F10EEC04D2AE6C60E81 -- C:\Windows\winsxs\wow64_microsoft-windows-security-netlogon_31bf3856ad364e35_6.1.7600.16385_none_6401533c860bb0f9\netlogon.dll

< MD5 for: NVRAID.SYS >
[2009.07.14 02:48:27 | 000,149,056 | ---- | M] (NVIDIA Corporation) MD5=3E38712941E9BB4DDBEE00AFFE3FED3D -- C:\Windows\SysNative\drivers\nvraid.sys
[2009.07.14 02:48:27 | 000,149,056 | ---- | M] (NVIDIA Corporation) MD5=3E38712941E9BB4DDBEE00AFFE3FED3D -- C:\Windows\SysNative\DriverStore\FileRepository\nvraid.inf_amd64_neutral_5bde3fe2945bce9e\nvraid.sys
[2009.07.14 02:48:27 | 000,149,056 | ---- | M] (NVIDIA Corporation) MD5=3E38712941E9BB4DDBEE00AFFE3FED3D -- C:\Windows\winsxs\amd64_nvraid.inf_31bf3856ad364e35_6.1.7600.16385_none_95cfb4ced8afab0e\nvraid.sys

< MD5 for: NVSTOR.SYS >
[2009.07.14 02:45:45 | 000,167,488 | ---- | M] (NVIDIA Corporation) MD5=477DC4D6DEB99BE37084C9AC6D013DA1 -- C:\Windows\SysNative\drivers\nvstor.sys
[2009.07.14 02:45:45 | 000,167,488 | ---- | M] (NVIDIA Corporation) MD5=477DC4D6DEB99BE37084C9AC6D013DA1 -- C:\Windows\SysNative\DriverStore\FileRepository\nvraid.inf_amd64_neutral_5bde3fe2945bce9e\nvstor.sys
[2009.07.14 02:45:45 | 000,167,488 | ---- | M] (NVIDIA Corporation) MD5=477DC4D6DEB99BE37084C9AC6D013DA1 -- C:\Windows\winsxs\amd64_nvraid.inf_31bf3856ad364e35_6.1.7600.16385_none_95cfb4ced8afab0e\nvstor.sys

< MD5 for: SCECLI.DLL >
[2009.07.14 02:16:13 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=26073302DAEA83CC5B944C546D6B47D2 -- C:\Windows\SysWOW64\scecli.dll
[2009.07.14 02:16:13 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=26073302DAEA83CC5B944C546D6B47D2 -- C:\Windows\winsxs\wow64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7600.16385_none_9e577e55272d37b4\scecli.dll
[2009.07.14 02:41:53 | 000,232,448 | ---- | M] (Microsoft Corporation) MD5=398712DDDAEFB85EDF61DF6A07B65C79 -- C:\Windows\SysNative\scecli.dll
[2009.07.14 02:41:53 | 000,232,448 | ---- | M] (Microsoft Corporation) MD5=398712DDDAEFB85EDF61DF6A07B65C79 -- C:\Windows\winsxs\amd64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7600.16385_none_9402d402f2cc75b9\scecli.dll

< MD5 for: SMSS.EXE >
[2009.07.14 02:39:41 | 000,112,640 | ---- | M] (Microsoft Corporation) MD5=1911A3356FA3F77CCC825CCBAC038C2A -- C:\Windows\SysNative\smss.exe
[2009.07.14 02:39:41 | 000,112,640 | ---- | M] (Microsoft Corporation) MD5=1911A3356FA3F77CCC825CCBAC038C2A -- C:\Windows\winsxs\amd64_microsoft-windows-smss_31bf3856ad364e35_6.1.7600.16385_none_082f99a432e2a661\smss.exe

< MD5 for: SVCHOST.EXE >
[2009.07.14 02:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows\SysWOW64\svchost.exe
[2009.07.14 02:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows\winsxs\x86_microsoft-windows-services-svchost_31bf3856ad364e35_6.1.7600.16385_none_b591afc466a15356\svchost.exe
[2009.07.14 02:39:46 | 000,027,136 | ---- | M] (Microsoft Corporation) MD5=C78655BC80301D76ED4FEF1C1EA40A7D -- C:\Windows\SysNative\svchost.exe
[2009.07.14 02:39:46 | 000,027,136 | ---- | M] (Microsoft Corporation) MD5=C78655BC80301D76ED4FEF1C1EA40A7D -- C:\Windows\winsxs\amd64_microsoft-windows-services-svchost_31bf3856ad364e35_6.1.7600.16385_none_11b04b481efec48c\svchost.exe

< MD5 for: TCPIP.SYS >
[2010.06.14 07:39:16 | 001,889,152 | ---- | M] (Microsoft Corporation) MD5=542C6767C68C9D6AAACA59436B0D15C2 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.20733_none_0fd0b57e990e2079\tcpip.sys
[2010.06.14 07:37:36 | 001,896,832 | ---- | M] (Microsoft Corporation) MD5=90A2D722CF64D911879D6C4A4F802A4D -- C:\Windows\SysNative\drivers\tcpip.sys
[2010.06.14 07:37:36 | 001,896,832 | ---- | M] (Microsoft Corporation) MD5=90A2D722CF64D911879D6C4A4F802A4D -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.16610_none_0f59b7ad7fe2fcc8\tcpip.sys
[2009.07.14 02:45:55 | 001,898,576 | ---- | M] (Microsoft Corporation) MD5=912107716BAB424C7870E8E6AF5E07E1 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.16385_none_0f1303f98017479d\tcpip.sys

< MD5 for: USERINIT.EXE >
[2009.07.14 02:14:43 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=6DE80F60D7DE9CE6B8C2DDFDF79EF175 -- C:\Windows\SysWOW64\userinit.exe
[2009.07.14 02:14:43 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=6DE80F60D7DE9CE6B8C2DDFDF79EF175 -- C:\Windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.1.7600.16385_none_dbff103933038d7c\userinit.exe
[2009.07.14 02:39:48 | 000,030,208 | ---- | M] (Microsoft Corporation) MD5=6F8F1376A13114CC10C0E69274F5A4DE -- C:\Windows\SysNative\userinit.exe
[2009.07.14 02:39:48 | 000,030,208 | ---- | M] (Microsoft Corporation) MD5=6F8F1376A13114CC10C0E69274F5A4DE -- C:\Windows\winsxs\amd64_microsoft-windows-userinit_31bf3856ad364e35_6.1.7600.16385_none_381dabbceb60feb2\userinit.exe

< MD5 for: WINLOGON.EXE >
[2009.07.14 02:39:52 | 000,389,120 | ---- | M] (Microsoft Corporation) MD5=132328DF455B0028F13BF0ABEE51A63A -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16385_none_cbb7f2bdeea2829c\winlogon.exe
[2009.10.28 08:01:57 | 000,389,632 | ---- | M] (Microsoft Corporation) MD5=A93D41A4D4B0D91C072D11DD8AF266DE -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.20560_none_cc522fd507b468f8\winlogon.exe
[2009.10.28 07:24:40 | 000,389,632 | ---- | M] (Microsoft Corporation) MD5=DA3E2A6FA9660CC75B471530CE88453A -- C:\Windows\SysNative\winlogon.exe
[2009.10.28 07:24:40 | 000,389,632 | ---- | M] (Microsoft Corporation) MD5=DA3E2A6FA9660CC75B471530CE88453A -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16447_none_cbe534e7ee8042ad\winlogon.exe

< MD5 for: WS2_32.DLL >
[2009.07.14 02:41:58 | 000,296,448 | ---- | M] (Microsoft Corporation) MD5=7083F463788CB34FCC42F565D56F89E8 -- C:\Windows\SysNative\ws2_32.dll
[2009.07.14 02:41:58 | 000,296,448 | ---- | M] (Microsoft Corporation) MD5=7083F463788CB34FCC42F565D56F89E8 -- C:\Windows\winsxs\amd64_microsoft-windows-w..nfrastructure-ws232_31bf3856ad364e35_6.1.7600.16385_none_4eaca269e8070c6b\ws2_32.dll
[2009.07.14 02:16:20 | 000,206,336 | ---- | M] (Microsoft Corporation) MD5=DAAE8A9B8C0ACC7F858454132553C30D -- C:\Windows\SysWOW64\ws2_32.dll
[2009.07.14 02:16:20 | 000,206,336 | ---- | M] (Microsoft Corporation) MD5=DAAE8A9B8C0ACC7F858454132553C30D -- C:\Windows\winsxs\x86_microsoft-windows-w..nfrastructure-ws232_31bf3856ad364e35_6.1.7600.16385_none_f28e06e62fa99b35\ws2_32.dll

< %systemroot%\*. /mp /s >

< %systemroot%\system32\*.dll /lockedfiles >
[2009.07.14 02:15:13 | 000,346,112 | ---- | M] (Microsoft Corporation) Unable to obtain MD5 -- C:\Windows\SysWOW64\dxtmsft.dll
[2009.07.14 02:15:13 | 000,215,552 | ---- | M] (Microsoft Corporation) Unable to obtain MD5 -- C:\Windows\SysWOW64\dxtrans.dll
[2010.12.18 06:29:18 | 000,185,856 | ---- | M] (Microsoft Corporation) Unable to obtain MD5 -- C:\Windows\SysWOW64\iepeers.dll

< %systemroot%\Tasks\*.job /lockedfiles >

< %systemroot%\system32\drivers\*.sys /lockedfiles >

< %systemroot%\System32\config\*.sav >

< %systemroot%\system32\*.dll /lockedfiles >
[2009.07.14 02:15:13 | 000,346,112 | ---- | M] (Microsoft Corporation) Unable to obtain MD5 -- C:\Windows\SysWOW64\dxtmsft.dll
[2009.07.14 02:15:13 | 000,215,552 | ---- | M] (Microsoft Corporation) Unable to obtain MD5 -- C:\Windows\SysWOW64\dxtrans.dll
[2010.12.18 06:29:18 | 000,185,856 | ---- | M] (Microsoft Corporation) Unable to obtain MD5 -- C:\Windows\SysWOW64\iepeers.dll

< reg query "HKLM\Software\Microsoft\Windows NT\CurrentVersion\winlogon" /v GinaDLL /c >

< reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wuauserv" /v ImagePath /c >
HKEY_LOCAL_MACHINE\SYSTEM\CURRENTCONTROLSET\SERVICES\WUAUSERV
IMAGEPATH REG_EXPAND_SZ %systemroot%\system32\svchost.exe -k netsvcs

< reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BITS" /v ImagePath /c >
HKEY_LOCAL_MACHINE\SYSTEM\CURRENTCONTROLSET\SERVICES\BITS
IMAGEPATH REG_EXPAND_SZ %SystemRoot%\System32\svchost.exe -k netsvcs

< %systemroot%\system32\drivers\*.sys /3 >

< %systemroot%\system32\*.* /3 >

========== Alternate Data Streams ==========

@Alternate Data Stream - 124 bytes -> C:\ProgramData\Temp:0B4227B4

< End of report >

Re: ISP odpojeno - generuji spam

Napsal: 18 úno 2011 14:26
od hu.go
a ještě ten extras.txt

OTL Extras logfile created on: 18.2.2011 12:11:26 - Run 1
OTL by OldTimer - Version 3.2.20.6 Folder = C:\Users\Jara\Desktop
64bit- Ultimate Edition (Version = 6.1.7600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7600.16385)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy

6,00 Gb Total Physical Memory | 4,00 Gb Available Physical Memory | 70,00% Memory free
12,00 Gb Paging File | 9,00 Gb Available in Paging File | 76,00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 465,66 Gb Total Space | 116,95 Gb Free Space | 25,11% Space Free | Partition Type: NTFS
Drive D: | 698,63 Gb Total Space | 107,26 Gb Free Space | 15,35% Space Free | Partition Type: NTFS
Drive E: | 596,17 Gb Total Space | 435,18 Gb Free Space | 73,00% Space Free | Partition Type: NTFS
Drive G: | 14,92 Gb Total Space | 13,93 Gb Free Space | 93,33% Space Free | Partition Type: FAT32
Drive L: | 931,51 Gb Total Space | 681,86 Gb Free Space | 73,20% Space Free | Partition Type: NTFS

Computer Name: JARA-PC | User Name: Jara | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Extra Registry (SafeList) ==========


========== File Associations ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)

[HKEY_USERS\S-1-5-21-1464662876-954682725-1912904226-1001\SOFTWARE\Classes\<extension>]
.html [@ = ChromeHTML] -- C:\Users\Jara\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.)

========== Shell Spawning ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %* File not found
cmdfile [open] -- "%1" %* File not found
comfile [open] -- "%1" %* File not found
exefile [open] -- "%1" %* File not found
helpfile [open] -- Reg Error: Key error.
htafile [open] -- "%1" %* File not found
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %* File not found
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1" File not found
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l File not found
scrfile [open] -- "%1" /S File not found
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 File not found
Directory [ACDSee Pro 3.Manage] -- "C:\Program Files (x86)\ACD Systems\ACDSee Pro\3.0\ACDSeeQVPro3.exe" "%1" (ACD Systems International Inc.)
Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" ()
Directory [Bridge] -- C:\Program Files (x86)\Adobe\Adobe Bridge CS5\Bridge.exe "%L" (Adobe Systems, Inc.)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" ()
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htafile [open] -- "%1" %*
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [ACDSee Pro 3.Manage] -- "C:\Program Files (x86)\ACD Systems\ACDSee Pro\3.0\ACDSeeQVPro3.exe" "%1" (ACD Systems International Inc.)
Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" ()
Directory [Bridge] -- C:\Program Files (x86)\Adobe\Adobe Bridge CS5\Bridge.exe "%L" (Adobe Systems, Inc.)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" ()
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

========== Security Center Settings ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]

========== Firewall Settings ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 0

========== Authorized Applications List ==========


========== HKEY_LOCAL_MACHINE Uninstall List ==========

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{071c9b48-7c32-4621-a0ac-3f809523288f}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_iP4700_series" = Canon iP4700 series Printer Driver
"{1374CC63-B520-4f3f-98E8-E9020BF01CFF}" = Prostředí Windows XP Mode
"{138A4072-9E64-46BD-B5F9-DB2BB395391F}" = LWS VideoEffects
"{1E9FC118-651D-4934-97BE-E53CAE5C7D45}" = Microsoft_VC80_MFCLOC_x86_x64
"{230D1595-57DA-4933-8C4E-375797EBB7E1}" = Bluetooth Suite (64)
"{23170F69-40C1-2702-0917-000001000000}" = 7-Zip 9.17 (x64 edition)
"{26A24AE4-039D-4CA4-87B4-2F86416021FF}" = Java(TM) 6 Update 21 (64-bit)
"{2ACBF1FA-F5C3-4B19-A774-B22A31F231B9}_is1" = Media Player Classic - Home Cinema v1.4.2616.0 x64
"{350AA351-21FA-3270-8B7A-835434E766AD}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022
"{4569AD91-47F4-4D9E-8FC9-717EC32D7AE1}" = Microsoft_VC80_CRT_x86_x64
"{4D668D4F-FAA2-4726-834C-31F4614F312E}" = MSVC80_x64_v2
"{5DDF6B75-2369-4D52-9867-10EFD8878185}" = AVG 2011
"{626672CD-BFCF-49A9-AEFE-AB0FED3BFC5B}" = Centrum zařízení Windows Mobile
"{68660049-8D48-427C-9FF7-139D8340CDC0}" = MSVC80_x64
"{6DE721A5-5E89-4D74-994C-652BB3C0672E}" = Ovladače videa společnosti Pinnacle
"{6E8E85E8-CE4B-4FF5-91F7-04999C9FAE6A}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{790E02A1-145A-3843-8C13-A4F41C9B48B7}" = Microsoft .NET Framework 4 Client Profile CSY Language Pack
"{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
"{8557397C-A42D-486F-97B3-A2CBC2372593}" = Microsoft_VC90_ATL_x86_x64
"{8E34682C-8118-31F1-BC4C-98CD9675E1C2}" = Microsoft .NET Framework 4 Extended
"{90140000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2010
"{90140000-002A-0405-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (Czech) 2010
"{925D058B-564A-443A-B4B2-7E90C6432E55}" = Microsoft_VC80_ATL_x86_x64
"{92A3CA0D-55CD-4C5D-BA95-5C2600C20F26}" = Microsoft_VC90_CRT_x86_x64
"{92DBCA36-9B41-4DD1-941A-AED149DD37F0}" = Windows Mobile Device Center Driver Update
"{A324DC11-FF02-3CE8-9D6F-67EBC006D970}" = Microsoft .NET Framework 4 Extended CSY Language Pack
"{A472B9E4-0AFF-4F7B-B25D-F64F8E928AAB}" = Microsoft_VC90_MFC_x86_x64
"{AB071C8B-873C-459F-ACA9-9EBE03C3E89B}" = MSVC90_x64
"{AC76BA86-1033-0000-0064-0003D0000004}" = Adobe Acrobat 9 Pro Extended 64-bit Add-On
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision" = NVIDIA Ovladač 3D Vision 260.99
"{B2FE1952-0186-46c3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = Ovládací panel NVIDIA 260.99
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Ovladače grafiky 260.99
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX" = NVIDIA Systémový software PhysX 9.10.0514
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver" = NVIDIA Ovladač HD audia 1.1.9.0
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application
"{B6E3757B-5E77-3915-866A-CCFC4B8D194C}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053
"{C8C1BAD5-54E6-4146-AD07-3A8AD36569C3}" = Microsoft_VC80_MFC_x86_x64
"{E92F43E9-D190-474E-8EAC-769E804D36C7}" = AVG 2011
"{EE936C7A-EA40-31D5-9B65-8E3E089C3828}" = Microsoft Visual C++ 2008 ATL Update kb973924 - x64 9.0.30729.4148
"{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile
"24DA573F901348FFDFF7717497830D45BE0C362E" = Windows Driver Package - Dynastream Innovations (libusb0) LibUsbDevices (07/07/2009 1.12.2)
"34EA302E7F4CBD17A19E33BBCB72363234956D7E" = Balíček ovladače systému Windows - Nokia Modem (06/09/2010 4.5)
"49CF605F02C7954F4E139D18828DE298CD59217C" = Windows Driver Package - Garmin (grmnusb) GARMIN Devices (06/03/2009 2.3.0.0)
"AVG" = AVG 2011
"CANONIJINBOXADDON200" = Canon Inkjet Printer Driver Add-On Module V2.00
"CCleaner" = CCleaner
"C-Media Oxygen HD Audio Driver" = ASUS Xonar D1 Audio Driver
"EEEE705096F837B7907659F100C9FE6DA001970F" = Balíček ovladače systému Windows - Nokia Modem (06/09/2010 7.01.0.7)
"FCEC33AD40CEA5E0FC4CEE6E42041A0DA189652D" = Balíček ovladače systému Windows - Nokia pccsmcfd (08/22/2008 7.0.0.0)
"GTSecureFTP_2_6_is1" = Secure FTP 2.6.0
"MediaInfo" = MediaInfo 0.7.38
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Microsoft .NET Framework 4 Client Profile CSY Language Pack" = Microsoft .NET Framework 4 Client Profile CSY Language Pack
"Microsoft .NET Framework 4 Extended" = Microsoft .NET Framework 4 Extended
"Microsoft .NET Framework 4 Extended CSY Language Pack" = Microsoft .NET Framework 4 Extended CSY Language Pack
"NVIDIA Display Control Panel" = NVIDIA Display Control Panel
"NVIDIA Drivers" = NVIDIA Drivers
"Recuva" = Recuva
"Sandboxie" = Sandboxie 3.50 (64-bit)
"Ultravnc2_is1" = UltraVNC 1.0.8.0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{003BFBBD-6C67-419E-A24D-0DCAFC3A5249}" = tools-freebsd
"{007B37D9-0C45-4202-834B-DD5FAAE99D63}" = ArcSoft Print Creations - Slimline Card
"{00A1349A-E926-4419-94FD-8D82244BDC35}_is1" = AIMP2 PlugIns Pack
"{024521CF-C07E-4F8E-8481-0D75695E03AF}" = PxMergeModule
"{033E378E-6AD3-4AD5-BDEB-CBD69B31046C}" = Microsoft_VC90_ATL_x86
"{07A8ED9E-B98E-437F-B750-241B412BE924}" = Garmin USB Drivers
"{08610298-29AE-445B-B37D-EFBE05802967}" = LWS Pictures And Video
"{08D2E121-7F6A-43EB-97FD-629B44903403}" = Microsoft_VC90_CRT_x86
"{0B7C79A5-5CB2-4ABD-A9C1-92A6213CE8DD}_is1" = MSI Kombustor 1.1.3
"{0BF6A16F-9556-4F6E-B139-5090D94B7FAC}" = FloorPlan 3D v10
"{0F3647F8-E51D-4FCC-8862-9A8D0C5ACF25}" = Microsoft_VC80_ATL_x86
"{14D4ED84-6A9A-45A0-96F6-1753768C3CB5}" = ESSPCD
"{15634701-BACE-4449-8B25-1567DA8C9FD3}" = CameraHelperMsi
"{1651216E-E7AD-4250-92A1-FB8ED61391C9}" = LWS Help_main
"{16E6D2C1-7C90-4309-8EC4-D2212690AAA4}" = AdobeColorCommonSetRGB
"{174A3B31-4C43-43DD-866F-73C9DB887B48}" = LWS Twitter
"{197597A7-AD33-4898-9D8E-73066818B464}" = tools-netware
"{1B280FAF-AE10-4E31-A41A-DB3917D651DC}" = ACDSee Pro 3
"{1BBD8D70-721A-41AD-AC8F-7308A0C8FA92}" = Adobe Creative Suite 5 Master Collection
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{212748BB-0DA5-46DE-82A1-403736DC9F27}" = MSVC80_x86
"{21DF0294-6B9D-4741-AB6F-B2ABFBD2387E}" = LWS YouTube Plugin
"{225DB4AA-3CFF-47E8-B3C8-6DAD713E986E}" = Nokia PC Suite
"{2300EE96-0A41-4FAB-BD03-989EC44577A0}" = Acronis Disk Director Suite
"{237CD223-1B9D-47E8-A76C-E478B83CCEA2}" = File Uploader
"{26A24AE4-039D-4CA4-87B4-2F83216020FF}" = Java(TM) 6 Update 21
"{2D03B6F8-DF36-4980-B7B6-5B93D5BA3A8F}" = essvatgt
"{2FDBBCEA-62DB-45F4-B6E5-0E1FB2A1F29D}" = Visual C++ 8.0 Runtime Setup Package (x64)
"{342126E1-173C-4585-BFBE-3EBDD20E3E9E}" = Mobipocket Reader 6.2
"{35CB6715-41F8-4F99-8881-6FC75BF054B0}" = Oblivion
"{37852811-BC7D-411C-8122-E69CCA892582}_is1" = MyTourbook 10.3.0
"{39F6E2B4-CFE8-C30A-66E8-489651F0F34C}" = Adobe Media Player
"{3C19E918-13AF-4C57-B50D-8C3738EFCABF}" = TOPO Czech 2010
"{3D6878FF-FAF4-4C27-903C-0D07FBBB92F9}" = Garmin Training Center
"{3DE5D6A5-47FD-4CB6-B775-068AAB8FC813}" = Jalbum
"{3EE9BCAE-E9A9-45E5-9B1C-83A4D357E05C}" = erLT
"{42938595-0D83-404D-9F73-F8177FDD531A}" = ESScore
"{4537EA4B-F603-4181-89FB-2953FC695AB1}" = netbrdg
"{46C045BF-2B3F-4BC4-8E4C-00E0CF8BD9DB}" = Adobe AIR
"{46E7E808-5AD2-44B6-B52C-68EB15182D8A}" = TrekMap v2
"{48E9E92C-CCBA-43D9-9B7C-FB26DD0C6709}" = TOPO Czech PRO 2010
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4CEB1936-947E-4534-83AB-3F75A4017B7D}_is1" = Bonsai for Windows Mobile
"{4F50C25D-9236-42EE-86A4-F0BC39A543AE}" = TOPO Czech 3.1 PRO
"{4F62B1AE-E778-49E2-9C57-C1C65A122098}" = Zoner Callisto 5
"{50316C0A-CC2A-460A-9EA5-F486E54AC17D}_is1" = AVG PC Tuneup 2011
"{510D2239-6C2E-457B-9590-485EC552D94D}" = Garmin USB Drivers
"{5316DFC9-CE99-4458-9AB3-E8726EDE0210}" = skin0001
"{53F7328C-6687-4AC9-9F68-2E28D8273033}_is1" = Südtirol (Topo)
"{56589DFE-0C29-4DFE-8E42-887B771ECD23}" = ArcSoft Print Creations - Photo Book
"{56C049BE-79E9-4502-BEA7-9754A3E60F9B}" = neroxml
"{58FA5D40-E35A-47ED-8AFA-68CCC758559E}" = Garmin MapSource
"{5B35C417-2649-11D6-83D1-0050FC01225C}" = FirstClass® Client
"{5E299E6E-78B6-4D4D-9A44-907240E92CFD}" = Stereoscopic Player
"{605A4E39-613C-4A12-B56F-DEFBE6757237}" = SHASTA
"{625386A4-B6B6-4911-A6E8-23189C3F2D15}" = Microsoft .NET Compact Framework 2.0
"{635FED5B-2C6D-49BE-87E6-7A6FCD22BC5A}" = Microsoft_VC90_MFC_x86
"{63C24A08-70F3-4C8E-B9FB-9F21A903801D}" = Adobe Color Video Profiles CS CS4
"{643EAE81-920C-4931-9F0B-4B343B225CA6}" = ESSBrwr
"{650E2ABD-270A-499C-BA9F-09180DDDDA16}" = Nokia Software Updater
"{65F79096-EB6C-47DE-9E1F-099861DC057F}" = eReader
"{66C7814A-DBE1-4DE5-85A5-29D5F1D26EC4}" = NVIDIA Design Garage
"{66D6418E-466C-4567-B4E8-2CB29F5566DE}" = Adresy CR v1
"{6D3245B1-8DB8-4A23-9CD2-2C90F40ABAF6}" = MSVC80_x86_v2
"{6F76EC3C-34B1-436E-97FB-48C58D7BEDCD}" = LWS Gallery
"{7132C6CF-C824-4C76-818D-14C78F96B885}" = SiRFDemoPPC
"{7166C6FE-020E-4E2A-992C-0A216B5E89BE}" = jAlbum
"{71E66D3F-A009-44AB-8784-75E2819BA4BA}" = LWS Motion Detection
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{72EFBFE4-C74F-4187-AEFD-73EA3BE968D6}" = ICQ7.2
"{749A1EDD-16C2-4C63-B013-D38F0F953973}" = OviMPlatform
"{7A5319F3-4CC7-433D-A5BD-B22AD36F99DE}" = GPMapa TOPO 2008 add
"{7AA38575-25A1-4C2F-B40B-2188EB73FF0E}" = Garmin TOPO Österreich v2
"{7E265513-8CDA-4631-B696-F40D983F3B07}_is1" = CDBurnerXP
"{8112C6B3-91E1-4560-8AB9-876DADFA37C5}" = Ovi Desktop Sync Engine
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{83C8FA3C-F4EA-46C4-8392-D3CE353738D6}" = LWS Launcher
"{87441A59-5E64-4096-A170-14EFE67200C3}" = Picture Control Utility
"{8937D274-C281-42E4-8CDB-A0B2DF979189}" = LWS Webcam Software
"{8943CE61-53BD-475E-90E1-A580869E98A2}" = staticcr
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8A502E38-29C9-49FA-BCFA-D727CA062589}" = ESSTOOLS
"{8AC5EBE3-DAD6-4968-AE53-98E6E9CAAFE9}" = ATLAS Czech 2010 NT
"{8D0E26CF-AA2F-48FF-A533-6207DE50B1C4}_is1" = Agendus for Windows Palm Desktop Edition
"{8E310838-457C-4269-B177-3EFB300CBDDC}" = Synology Data Replicator 3
"{8E92D746-CD9F-4B90-9668-42B74C14F765}" = ESSini
"{8F3C31C5-9C3A-4AA8-8EFA-71290A7AD533}" = TomTom HOME Visual Studio Merge Modules
"{90120000-0010-0409-0000-0000000FF1CE}" = Microsoft Software Update for Web Folders (English) 12
"{90120000-008A-0409-0000-0000000FF1CE}" = Microsoft Office 2007 Recent Documents Gadget
"{90140000-0011-0000-0000-0000000FF1CE}" = Microsoft Office Professional Plus 2010
"{90140000-0015-0405-0000-0000000FF1CE}" = Microsoft Office Access MUI (Czech) 2010
"{90140000-0016-0405-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Czech) 2010
"{90140000-0018-0405-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Czech) 2010
"{90140000-0019-0405-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Czech) 2010
"{90140000-001A-0405-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Czech) 2010
"{90140000-001B-0405-0000-0000000FF1CE}" = Microsoft Office Word MUI (Czech) 2010
"{90140000-001F-0405-0000-0000000FF1CE}" = Microsoft Office Proof (Czech) 2010
"{90140000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2010
"{90140000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2010
"{90140000-001F-041B-0000-0000000FF1CE}" = Microsoft Office Proof (Slovak) 2010
"{90140000-002C-0405-0000-0000000FF1CE}" = Microsoft Office Proofing (Czech) 2010
"{90140000-0044-0405-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Czech) 2010
"{90140000-006E-0405-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Czech) 2010
"{90140000-00A1-0405-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Czech) 2010
"{90140000-00BA-0405-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Czech) 2010
"{91517631-A9F3-4B7C-B482-43E0068FD55A}" = ESSgui
"{92D58719-BBC1-4CC3-A08B-56C9E884CC2C}" = Microsoft_VC80_CRT_x86
"{9591C049-5CAE-4E89-A8D9-191F1899628B}" = ArcSoft Print Creations - Funhouse
"{97F81AF1-0E47-DC99-FF1F-C8B3B9A1E18E}" = Visual C++ 8.0 ATL (x86) WinSXS MSM
"{98CB24AD-52FB-DB5F-FF1F-C8B3B9A1E18E}" = Visual C++ 8.0 CRT (x86) WinSXS MSM
"{999D43F4-9709-4887-9B1A-83EBB15A8370}" = VPRINTOL
"{9C538746-C2DC-40FC-B1FB-D4EA7966ABEB}" = Skype™ 5.0
"{9D4491FE-DBA0-4B08-80D9-C6A9F9A63E18}" = Jalbum
"{9DAEA76B-E50F-4272-A595-0124E826553D}" = LWS WLM Plugin
"{9EDE7573-F2B0-4FAC-8928-A7E9381BCB91}" = ArcSoft MediaImpression for Kodak
"{9F74B6DE-B89C-4532-AFED-5AB0CCAAC1DF}_is1" = TCX Converter 2.0.17
"{A3FF5CB2-FB35-4658-8751-9EDE1D65B3AA}" = VMware Workstation
"{A49F249F-0C91-497F-86DF-B2585E8E76B7}" = Microsoft Visual C++ 2005 Redistributable
"{A78FE97A-C0C8-49CE-89D0-EDD524A17392}" = PDF Settings CS5
"{A7CE3C9E-78B4-4855-8D24-5CDF498E31F9}" = BitKinex
"{A8F2089B-1F79-4BF6-B385-A2C2B0B9A74D}" = ImagXpress
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{AADD1C8F-D59F-4D55-A726-768C71A205A8}" = Pinnacle Studio 14
"{AB1C87CB-1807-4CF0-B4C2-CEE14C18CDB4}" = tools-solaris
"{AC76BA86-1033-F400-7761-000000000004}" = Adobe Acrobat 9 Pro Extended - English, Français, Deutsch
"{AC76BA86-1033-F400-7761-000000000004}_941" = Adobe Acrobat 9.4.1 - CPSID_83708
"{AC76BA86-1033-F400-7761-000000000004}{AC76BA86-1033-F400-7761-000000000004}" = Adobe Acrobat 9 Pro Extended - English, Français, Deutsch
"{AC76BA86-7AD7-1029-7B44-A94000000001}" = Adobe Reader 9.4.2 - Czech
"{AC76BA86-7AD7-2448-0000-900000000003}" = Chinese Traditional Fonts Support For Adobe Reader 9
"{AC76BA86-7AD7-5670-0000-900000000003}" = Korean Fonts Support For Adobe Reader 9
"{AE0F62A7-A1A2-407F-9F4C-48939BD9AD8D}" = tools-winPre2k
"{AE1FA02D-E6A4-4EA0-8E58-6483CAC016DD}" = ESSCDBK
"{AF111648-99A1-453E-81DD-80DBBF6DAD0D}" = MSVC90_x86
"{AF3B21E2-FDAC-11D1-B881-00A0C95A2DAF}" = Pocket dbExplorer
"{B0D83FCD-9D42-43ED-8315-250326AADA02}" = ArcSoft Print Creations - Scrapbook
"{B162D0A6-9A1D-4B7C-91A5-88FB48113C45}" = OfotoXMI
"{B1E9B7ED-8187-433a-9EAE-20DF1A8968B1}" = Synology Download Redirector
"{B4B44FE7-41FF-4DAD-8C0A-E406DDA72992}" = CCScore
"{B8B4446F-87E1-4423-A47A-16832C24A199}" = Nokia Ovi Suite
"{B9DB4C76-01A4-46D5-8910-F7AA6376DBAF}" = NVIDIA PhysX
"{BC41C09D-FAA9-4346-9FE6-1E0017BC551A}" = Adobe Flash Player 10 Plugin
"{BEE64C14-BEF1-4610-8A68-A16EAA47B882}" = Futuremark SystemInfo
"{BFABD0B9-44E3-418B-A453-FD17ADEA2628}" = PhatNotes
"{C4FE00AF-E29D-4220-B118-0B453F3539E0}" = Garmin TOPO Great Britain v2
"{C768790F-04FB-11E0-9B2C-001AA037B01E}" = Google Earth
"{C86E7C99-E4AD-79C7-375B-1AEF9A91EC2B}" = Acrobat.com
"{CA9BCD4D-B782-4637-8F1F-F9A328D3C244}" = CanoScan Toolbox Ver4.9
"{CA9ED5E4-1548-485B-A293-417840060158}" = ArcSoft Print Creations - Photo Calendar
"{CAE8A0F1-B498-4C23-95FA-55047E730C8F}" = ArcSoft Print Creations
"{D0E00354-A8C2-40D6-8ED8-26B3A4B1AF85}" = BT PhoneManager LiveUpdate
"{D102611A-6466-4101-A51D-51069303AC65}" = tools-linux
"{D1A19B02-817E-4296-A45B-07853FD74D57}" = Microsoft_VC80_MFC_x86
"{D22F5242-773E-4270-AB1F-492021BCABBE}" = Garmin City Navigator Europe NT 2010.31 Update
"{D2FCC1AE-6311-47C5-8130-C6C66D77DD71}" = Nikon Message Center
"{D32470A1-B10C-4059-BA53-CF0486F68EBC}" = Software Kodak EasyShare
"{D40EB009-0499-459c-A8AF-C9C110766215}" = Logitech Webcam Software
"{D92BBB52-82FF-42ED-8A3C-4E062F944AB7}" = Microsoft_VC80_MFCLOC_x86
"{DB02F716-6275-42E9-B8D2-83BA2BF5100B}" = SFR
"{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}" = CyberLink PowerDVD 10
"{E0783143-EAE2-4047-A8D6-E155523C594C}" = Garmin WebUpdater
"{E3DBED25-09EE-45FE-BE53-4B07B0CBA0FC}" = PC Connectivity Solution
"{E5C8C4ED-A76A-49F3-BDB8-56DEEE92F19B}" = 602XML Filler
"{E6B4117F-AC59-4B13-9274-EB136E8897EE}" = ArcSoft Print Creations - Album Page
"{E9757890-7EC5-46C8-99AB-B00F07B6525C}" = Nikon Transfer
"{EE531675-A09C-51DD-F356-ECA9D6857039}" = Adobe Community Help
"{EE5B5B24-EEFC-4C8B-BF8B-256D705BAD89}" = Nokia Ovi Suite Software Updater
"{EED027B7-0DB6-404B-8F45-6DFEE34A0441}" = LWS Video Mask Maker
"{F04F9557-81A9-4293-BC49-2C216FA325A7}" = ArcSoft Print Creations - Greeting Card
"{F1FDAA01-988C-423F-AC12-0D8F333943FD}" = Nokia Connectivity Cable Driver
"{F4A2E7CC-60CA-4AFA-B67F-AD5E58173C3F}" = SKINXSDK
"{F5C372A1-40F3-49DA-A049-F75CDE9177DC}" = Pinnacle Studio Ultimate Collection Plugins
"{F9593CFB-D836-49BC-BFF1-0E669A411D9F}" = WIRELESS
"{FB8BD91F-DC90-4770-AE33-8AA6AA2E691B}" = Extensis Suitcase Fusion 2
"{FC053571-8507-44E4-8B6D-AACEAB8CA57C}" = Sansa Media Converter
"{FCDB1C92-03C6-4C76-8625-371224256091}" = ESSPDock
"{FCDBEA60-79F0-4FAE-BBA8-55A26C609A49}" = Visual Studio 2008 x64 Redistributables
"{FD6034A3-655C-49F0-B496-D4CBFD74D7A7}" = Palm Desktop by ACCESS
"{FF167195-9EE4-46C0-8CD7-FBA3457E88AB}" = LWS Facebook
"{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
"{FFD9383C-01D5-4897-A954-43AF599AED30}" = tools-windows
"AC3Filter_is1" = AC3Filter 1.63b
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"Afterburner" = MSI Afterburner 2.0.0
"AgendusWMPPC_PRO_is1" = Agendus for Windows Mobile Pocket PC Professional Edition
"AIMP2at" = AIMP2: Audio Tools
"Audacity 1.3 Beta (Unicode)_is1" = Audacity 1.3.11 (Unicode)
"AviSynth" = AviSynth 2.5
"B076073A-5527-4f4f-B46B-B10692277DA2_is1" = DisplayFusion 3.2.0
"Badaboom" = Badaboom 1.2.1.367
"CanonMyPrinter" = Canon Utilities My Printer
"Capture NX 2" = Capture NX 2
"CeRegEditor_is1" = CeRegEditor PreRelease 0.0.3.1
"Clear FTP 2006_is1" = Clear FTP 2006 verze 1.01
"com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Media Player
"com.adobe.mauby.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Acrobat.com
"CoreAVC Professional Edition" = CoreAVC Professional Edition (remove only)
"Dude" = The Dude
"DVBViewer Pro_is1" = DVBViewer Pro
"DVD Decrypter" = DVD Decrypter (Remove Only)
"DVDFab 8_is1" = DVDFab 8.0.3.2 (30/10/2010)
"EAGLE 5.4.0" = EAGLE 5.4.0
"Exact Audio Copy" = Exact Audio Copy 0.99pb5
"ExposurePlot_is1" = ExposurePlot 1.13
"GeoGet_is1" = GeoGet 2.5.6.611
"GSAK_is1" = GSAK 7.7.3.53 (Final)
"HaaliMkx" = Haali Media Splitter
"Hactronic_is1" = Hactronic 2.3
"Hard Disk Low Level Format Tool_is1" = Hard Disk Low Level Format Tool 2.36 build 1181
"HF Designer_is1" = HF Designer
"chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Community Help
"InstallShield_{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}" = CyberLink PowerDVD 10
"JDownloader" = JDownloader
"Knoll Light Factory EZ Studio" = Knoll Light Factory EZ Studio
"LAME for Audacity_is1" = LAME v3.98.2 for Audacity
"Liveupdate4_is1" = Liveupdate4
"Logitech Vid" = Logitech Vid HD
"Magic Bullet Looks Studio" = Magic Bullet Looks Studio
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware
"MKVtoolnix" = MKVtoolnix 3.1.0
"Mp3tag" = Mp3tag v2.46a
"Nokia Ovi Suite" = Nokia Ovi Suite
"Nokia PC Suite" = Nokia PC Suite
"NVIDIAStereo" = NVIDIA Stereoscopic 3D Driver
"Oblivion mod manager_is1" = Oblivion mod manager 1.1.12
"ODIR_is1" = ODIR
"Office14.PROPLUS" = Microsoft Office Professional Plus 2010
"OpenAL" = OpenAL
"OpenSSL Light (32-bit)_is1" = OpenSSL 1.0.0c Light (32-bit)
"OpenVPN" = OpenVPN 2.1_rc22
"Puzzle Collection Trial" = Microsoft Puzzle Collection Trial
"RealVNC_is1" = VNC Free Edition 4.1.3
"Red Giant ToonIt Studio" = Red Giant ToonIt Studio
"Resco Media Suite" = Resco Media Suite
"Resco Utility Package" = Resco Utility Package
"SPB Wallet" = SPB Wallet
"Spb Wallet_is1" = Spb Wallet 2.1.2
"StarCraft II" = StarCraft II
"stax-Pinnacle_is1" = SureThing Express Labeler
"StrongDC++" = StrongDC++ 2.41
"Synology Assistant" = Synology Assistant (remove only)
"TeamViewer 6" = TeamViewer 6
"TiMoC1.1" = TiMoC
"TomTom HOME" = TomTom HOME 2.7.6.2056
"Totalcmd" = Total Commander (Remove or Repair)
"Trapcode 3DStroke Studio" = Trapcode 3DStroke Studio
"Trapcode Particular Studio" = Trapcode Particular Studio
"Trapcode Shine Studio" = Trapcode Shine Studio
"TrueCrypt" = TrueCrypt
"UltraISO_is1" = UltraISO Premium V9.35
"uTorrent" = µTorrent
"VLC media player" = VLC media player 1.1.7
"VMware_Workstation" = VMware Workstation
"Windows Mobile Device Handbook" = Příručka k zařízení Windows Mobile®
"WinPcapInst" = WinPcap 4.1.1
"WinRAR" = WinRAR
"winscp3_is1" = WinSCP 4.2.9
"Wireshark" = Wireshark 1.2.5
"WMS" = Wild Media Server (UPnP, DLNA, HTTP)
"ZonerPhotoStudio12_CZ_is1" = Zoner Photo Studio 12

========== HKEY_USERS Uninstall List ==========

[HKEY_USERS\S-1-5-21-1464662876-954682725-1912904226-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"5f48e2ab41c5d005" = RapidShare Manager
"BitTorrent DNA" = DNA
"d4423cb94153c6fc" = Urwigo
"Fio podpis 3.4" = Fio podpis 3.4
"GeoKuk" = GeoKuk
"Google Chrome" = Google Chrome
"JCE Strong Enviroment" = JCE Strong Enviroment
"Sansa Updater" = Sansa Updater
"SpeedMeter" = SpeedMeter

========== Last 10 Event Log Errors ==========

[ Application Events ]
Error - 14.2.2011 7:32:17 | Computer Name = Jara-PC | Source = SideBySide | ID = 16842832
Description = Generování kontextu aktivace pro C:\Program Files (x86)\Adobe\Acrobat
9.0\Designer 8.2\FormDesigner.exe se nezdařilo. Chyba v souboru manifestu nebo
zásad na řádku . Verze součásti požadovaná aplikací je v konfliktu s jinou verzí
součásti, která je již aktivní. Konfliktní součásti: Součást 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_fa62ad231704eab7.manifest.
Součást
2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_420fe3fa2b8113bd.manifest.

Error - 14.2.2011 7:32:17 | Computer Name = Jara-PC | Source = SideBySide | ID = 16842832
Description = Generování kontextu aktivace pro C:\Program Files (x86)\Adobe\Acrobat
9.0\Designer 8.2\FormDesigner.exe se nezdařilo. Chyba v souboru manifestu nebo
zásad na řádku . Verze součásti požadovaná aplikací je v konfliktu s jinou verzí
součásti, která je již aktivní. Konfliktní součásti: Součást 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_fa62ad231704eab7.manifest.
Součást
2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_420fe3fa2b8113bd.manifest.

Error - 15.2.2011 4:02:37 | Computer Name = Jara-PC | Source = SideBySide | ID = 16842785
Description = Generování kontextu aktivace pro C:\Program Files (x86)\Nokia\Nokia
PC Suite 7\TIS_Windows7PIM.dll se nezdařilo. Závislé sestavení Microsoft.VC80.DebugCRT,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"
nelze najít. Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.

Error - 17.2.2011 11:49:03 | Computer Name = Jara-PC | Source = SideBySide | ID = 16842785
Description = Generování kontextu aktivace pro C:\Program Files (x86)\Nokia\Nokia
PC Suite 7\TIS_Windows7PIM.dll se nezdařilo. Závislé sestavení Microsoft.VC80.DebugCRT,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"
nelze najít. Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.

Error - 17.2.2011 15:08:15 | Computer Name = Jara-PC | Source = SideBySide | ID = 16842832
Description = Generování kontextu aktivace pro C:\Program Files (x86)\Adobe\Acrobat
9.0\Designer 8.2\FormDesigner.exe se nezdařilo. Chyba v souboru manifestu nebo
zásad na řádku . Verze součásti požadovaná aplikací je v konfliktu s jinou verzí
součásti, která je již aktivní. Konfliktní součásti: Součást 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_fa62ad231704eab7.manifest.
Součást
2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_420fe3fa2b8113bd.manifest.

Error - 17.2.2011 15:08:15 | Computer Name = Jara-PC | Source = SideBySide | ID = 16842832
Description = Generování kontextu aktivace pro C:\Program Files (x86)\Adobe\Acrobat
9.0\Designer 8.2\FormDesigner.exe se nezdařilo. Chyba v souboru manifestu nebo
zásad na řádku . Verze součásti požadovaná aplikací je v konfliktu s jinou verzí
součásti, která je již aktivní. Konfliktní součásti: Součást 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_fa62ad231704eab7.manifest.
Součást
2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_420fe3fa2b8113bd.manifest.

Error - 18.2.2011 4:06:44 | Computer Name = Jara-PC | Source = Microsoft-Windows-CAPI2 | ID = 512
Description = Služba Šifrování neinicializovala záložní objekt System Writer systému
VSS. Details: Could not query the status of the EventSystem service. System Error:
Probíhá
vypnutí systému. .

Error - 18.2.2011 6:35:41 | Computer Name = Jara-PC | Source = SideBySide | ID = 16842832
Description = Generování kontextu aktivace pro C:\Program Files (x86)\Adobe\Acrobat
9.0\Designer 8.2\FormDesigner.exe se nezdařilo. Chyba v souboru manifestu nebo
zásad na řádku . Verze součásti požadovaná aplikací je v konfliktu s jinou verzí
součásti, která je již aktivní. Konfliktní součásti: Součást 1: C:\Windows\WinSxS\manifMD5=1911A3356FA3F77CCC825CCBAC038C2A -- C:\Windows\winsxs\amd64_microsoft-windows-smss_31bf3856ad364e35_6.1.7600.16385_none_082f99a432e2a661\smss.exe

< MD5 for: SVCHOST.EXE >
[2009.07.14 02:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows\SysWOW64\svchost.exe
[2009.07.14 02:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows\winsxs\x86_microsoft-windows-services-svchost_31bf3856ad364e35_6.1.7600.16385_none_b591afc466a15356\svchost.exe
[2009.07.14 02:39:46 | 000,027,136 | ---- | M] (Microsoft Corporation) MD5=C78655BC80301D76ED4FEF1C1EA40A7D -- C:\Windows\SysNative\svchost.exe
[2009.07.14 02:39:46 | 000,027,136 | ---- | M] (Microsoft Corporation) MD5=C78655BC80301D76ED4FEF1C1EA40A7D -- C:\Windows\winsxs\amd64_microsoft-windows-services-svchost_31bf3856ad364e35_6.1.7600.16385_none_11b04b481efec48c\svchost.exe

< MD5 for: TCPIP.SYS >
[2010.06.14 07:39:16 | 001,889,152 | ---- | M] (Microsoft Corporation) MD5=542C6767C68C9D6AAACA59436B0D15C2 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.20733_none_0fd0b57e990e2079\tcpip.sys
[2010.06.14 07:37:36 | 001,896,832 | ---- | M] (Microsoft Corporation) MD5=90A2D722CF64D911879D6C4A4F802A4D -- C:\Windows\SysNative\drivers\tcpip.sys
[2010.06.14 07:37:36 | 001,896,832 | ---- | M] (Microsoft Corporation) MD5=90A2D722CF64D911879D6C4A4F802A4D -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.16610_none_0f59b7ad7fe2fcc8\tcpip.sys
[2009.07.14 02:45:55 | 001,898,576 | ---- | M] (Microsoft Corporation) MD5=912107716BAB424C7870E8E6AF5E07E1 -- C:\Windows\winsxs\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.1.7600.16385_none_0f1303f98017479d\tcpip.sys

< MD5 for: USERINIT.EXE >
[2009.07.14 02:14:43 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=6DE80F60D7DE9CE6B8C2DDFDF79EF175 -- C:\Windows\SysWOW64\userinit.exe
[2009.07.14 02:14:43 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=6DE80F60D7DE9CE6B8C2DDFDF79EF175 -- C:\Windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.1.7600.16385_none_dbff103933038d7c\userinit.exe
[2009.07.14 02:39:48 | 000,030,208 | ---- | M] (Microsoft Corporation) MD5=6F8F1376A13114CC10C0E69274F5A4DE -- C:\Windows\SysNative\userinit.exe
[2009.07.14 02:39:48 | 000,030,208 | ---- | M] (Microsoft Corporation) MD5=6F8F1376A13114CC10C0E69274F5A4DE -- C:\Windows\winsxs\amd64_microsoft-windows-userinit_31bf3856ad364e35_6.1.7600.16385_none_381dabbceb60feb2\userinit.exe

< MD5 for: WINLOGON.EXE >
[2009.07.14 02:39:52 | 000,389,120 | ---- | M] (Microsoft Corporation) MD5=132328DF455B0028F13BF0ABEE51A63A -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16385_none_cbb7f2bdeea2829c\winlogon.exe
[2009.10.28 08:01:57 | 000,389,632 | ---- | M] (Microsoft Corporation) MD5=A93D41A4D4B0D91C072D11DD8AF266DE -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.20560_none_cc522fd507b468f8\winlogon.exe
[2009.10.28 07:24:40 | 000,389,632 | ---- | M] (Microsoft Corporation) MD5=DA3E2A6FA9660CC75B471530CE88453A -- C:\Windows\SysNative\winlogon.exe
[2009.10.28 07:24:40 | 000,389,632 | ---- | M] (Microsoft Corporation) MD5=DA3E2A6FA9660CC75B471530CE88453A -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16447_none_cbe534e7ee8042ad\winlogon.exe

< MD5 for: WS2_32.DLL >
[2009.07.14 02:41:58 | 000,29

Re: ISP odpojeno - generuji spam

Napsal: 18 úno 2011 14:52
od hu.go
ja ještě je tu MBAM


Malwarebytes' Anti-Malware 1.50.1.1100
www.malwarebytes.org

Database version: 5793

Windows 6.1.7600
Internet Explorer 8.0.7600.16385

18.2.2011 14:50:26
mbam-log-2011-02-18 (14-50-06).txt

Scan type: Full scan (C:\|D:\|L:\|)
Objects scanned: 526358
Time elapsed: 1 hour(s), 55 minute(s), 20 second(s)

Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 1

Memory Processes Infected:
(No malicious items detected)

Memory Modules Infected:
(No malicious items detected)

Registry Keys Infected:
(No malicious items detected)

Registry Values Infected:
(No malicious items detected)

Registry Data Items Infected:
(No malicious items detected)

Folders Infected:
(No malicious items detected)

Files Infected:
c:\wa\net\cryptload\ocr\netload.in\asmcaptcha\test.exe (Malware.Packer) -> No action taken.


dík za Váš čas

Re: ISP odpojeno - generuji spam

Napsal: 18 úno 2011 15:41
od motji
Otestujte na www.virustotal.com
c:\wa\net\cryptload\ocr\netload.in\asmcaptcha\test.exe

Re: ISP odpojeno - generuji spam

Napsal: 18 úno 2011 16:07
od hu.go
5/43 pozitvni - cryptload nepoužívám, není problém zrušit...

Re: ISP odpojeno - generuji spam

Napsal: 18 úno 2011 16:14
od motji
Tak ho zrušte :D .
za chvilku tu bude skript pro OTL :)

Re: ISP odpojeno - generuji spam

Napsal: 18 úno 2011 16:21
od hu.go
smazáno.

Re: ISP odpojeno - generuji spam

Napsal: 18 úno 2011 16:29
od motji
:arrow: Spustte OTL
-do bílého okna dole skopírujte tento skript:

Kód: Vybrat vše

:OTL
PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)
@Alternate Data Stream - 124 bytes -> C:\ProgramData\Temp:0B4227B4
O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] File not found
O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] File not found
O33 - MountPoints2\{6ace6024-08a8-11e0-bac2-005056c00008}\Shell\AutoRun\command - "" = G:\MI.exe

:files
C:\WINDOWS\system32\*.tmp.dll /s
C:\WINDOWS\system32\SET*.tmp /s
C:\WINDOWS\*.tmp /s
C:\Users\Jara\AppData\Roaming\inst.exe

:commands
[resethosts]
[emptytemp]
[EMPTYFLASH]
[Reboot]

-klikněte na tlačítko opravit.
-Následně se pc restartuje.
- Log vložte zde :)



:arrow: tohle znáte?
G:\MI.exe

Re: ISP odpojeno - generuji spam

Napsal: 18 úno 2011 16:49
od hu.go
MI.exe neznám, a ani jsem jej už na flešce nenašel...

zde log :


All processes killed
========== OTL ==========
No active process named explorer.exe was found!
ADS C:\ProgramData\Temp:0B4227B4 deleted successfully.
Registry value HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\RunOnce\\mctadmin deleted successfully.
Registry value HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\RunOnce\\mctadmin deleted successfully.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{6ace6024-08a8-11e0-bac2-005056c00008}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6ace6024-08a8-11e0-bac2-005056c00008}\ not found.
File G:\MI.exe not found.
========== FILES ==========
File\Folder C:\WINDOWS\system32\*.tmp.dll not found.
File\Folder C:\WINDOWS\system32\SET*.tmp not found.
C:\WINDOWS\41EBC322660F4D16A0DF53147210CBDB.TMP folder moved successfully.
C:\WINDOWS\8A809006C25A4A3A9DAB94659BCDB107.TMP folder moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP9E41.tmp folder moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAPD4EA.tmp folder moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_64\Temp\ZAP2EEC.tmp folder moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_64\Temp\ZAP9F5C.tmp folder moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_64\Temp\ZAPC0EE.tmp folder moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_64\Temp\ZAPE291.tmp folder moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_64\Temp\ZAPE56E.tmp folder moved successfully.
C:\WINDOWS\Installer\MSI1EF6.tmp moved successfully.
C:\WINDOWS\Installer\MSI35E8.tmp moved successfully.
C:\WINDOWS\Installer\MSI6405.tmp moved successfully.
C:\WINDOWS\Installer\MSI94B0.tmp moved successfully.
C:\WINDOWS\Installer\MSIBBAC.tmp moved successfully.
C:\WINDOWS\SoftwareDistribution\Download\4519a4a27270ad91446fe02bf0b286e5\$dpx$.tmp folder moved successfully.
C:\WINDOWS\SoftwareDistribution\Download\87d9089bcf15ca4625c9ed0da4cd4ab4\BIT51A7.tmp moved successfully.
C:\WINDOWS\SoftwareDistribution\Download\ed6f47b6e3d44d71fb9f7b7a21f68c0e\BIT388.tmp moved successfully.
C:\WINDOWS\Temp\avg-00011558-e80b-4433-acb7-237a4b0d6e74.tmp moved successfully.
C:\WINDOWS\Temp\avg-0010810c-2dd4-4e50-9d40-b535f051c737.tmp moved successfully.
C:\WINDOWS\Temp\avg-001cb553-2de1-4502-ba7e-f05f9e3e1403.tmp moved successfully.
C:\WINDOWS\Temp\avg-005fd031-9fa1-4806-a1e5-ef2f3de0c942.tmp moved successfully.
C:\WINDOWS\Temp\avg-006b2325-9765-481c-a72c-945172caa83e.tmp moved successfully.
C:\WINDOWS\Temp\avg-00710310-a17e-4801-8d34-52459c8e1c3d.tmp moved successfully.
C:\WINDOWS\Temp\avg-0079b706-0bd4-4a01-82c2-b3235db2a94d.tmp moved successfully.
C:\WINDOWS\Temp\avg-0084a717-7ee1-4354-9b03-3460509ca27e.tmp moved successfully.
C:\WINDOWS\Temp\avg-0089f33d-dd9e-4c20-927d-67429a7b497b.tmp moved successfully.
C:\WINDOWS\Temp\avg-0092ec42-9440-4f65-9690-d74cc3dc3a66.tmp moved successfully.
C:\WINDOWS\Temp\avg-00b80839-e993-4c0a-ae04-c01c1a8e5d7d.tmp moved successfully.
C:\WINDOWS\Temp\avg-00de8149-8626-420c-843b-da7be2610f63.tmp moved successfully.
C:\WINDOWS\Temp\avg-00e77177-1cc1-4202-90fd-f7607d08ae32.tmp moved successfully.
C:\WINDOWS\Temp\avg-00f73451-bb29-4632-9a24-217f8365e813.tmp moved successfully.
C:\WINDOWS\Temp\avg-00fa0f27-62cc-4129-a987-296701b12335.tmp moved successfully.
C:\WINDOWS\Temp\avg-0114f960-5f93-4241-b691-1e672f5b4560.tmp moved successfully.
C:\WINDOWS\Temp\avg-013f0966-9f7c-434f-926e-107621fac94f.tmp moved successfully.
C:\WINDOWS\Temp\avg-01681c61-ba0d-4a00-aae5-d53bb4ff2079.tmp moved successfully.
C:\WINDOWS\Temp\avg-0174cf72-47a2-4179-b76f-d1682572e756.tmp moved successfully.
C:\WINDOWS\Temp\avg-0184f303-3b93-4922-8c99-52544c3a7615.tmp moved successfully.
C:\WINDOWS\Temp\avg-018f4361-07ba-424b-93a1-7e2d2438346f.tmp moved successfully.
C:\WINDOWS\Temp\avg-0191d04c-3bff-476c-8cb3-4c55d5dd5f36.tmp moved successfully.
C:\WINDOWS\Temp\avg-0194802f-399d-492e-a267-b65bfb868326.tmp moved successfully.
C:\WINDOWS\Temp\avg-01988b3c-c693-4d0c-ad95-715a61bb782c.tmp moved successfully.
C:\WINDOWS\Temp\avg-01999e61-665c-4d0c-8457-8d298739cf2b.tmp moved successfully.
C:\WINDOWS\Temp\avg-019c1524-e444-4121-82bb-0370774fce38.tmp moved successfully.
C:\WINDOWS\Temp\avg-01ba905a-66eb-4905-a56e-2b1ff77b7c27.tmp moved successfully.
C:\WINDOWS\Temp\avg-01dd8b45-b19e-4a1a-82dc-3032d490786c.tmp moved successfully.
C:\WINDOWS\Temp\avg-01ed0748-6634-4164-8a23-db09ca6d935f.tmp moved successfully.
C:\WINDOWS\Temp\avg-01f0056e-a088-4040-82da-ae4c78c7ba20.tmp moved successfully.
C:\WINDOWS\Temp\avg-021d8c23-2b39-4958-9cbb-6803ddba547d.tmp moved successfully.
C:\WINDOWS\Temp\avg-022fea61-970c-452c-9a5d-5865be514e21.tmp moved successfully.
C:\WINDOWS\Temp\avg-02455116-8c79-4a3c-8d20-c31da00ec836.tmp moved successfully.
C:\WINDOWS\Temp\avg-02585822-a7e6-4808-8122-ef3f636d2734.tmp moved successfully.
C:\WINDOWS\Temp\avg-0259ea1c-18cd-4002-84cc-753ac6df9d4e.tmp moved successfully.
C:\WINDOWS\Temp\avg-02640353-de7f-4f54-9d5a-963ec82a923b.tmp moved successfully.
C:\WINDOWS\Temp\avg-0293a044-71f1-493f-a203-107eda7e2741.tmp moved successfully.
C:\WINDOWS\Temp\avg-02995e1f-7f08-4451-b9fc-612c46e6922e.tmp moved successfully.
C:\WINDOWS\Temp\avg-02b4c343-e44a-484b-8e69-7b4d497c4a0f.tmp moved successfully.
C:\WINDOWS\Temp\avg-02bf5f07-1c78-416c-9854-dd6bda7b0f1a.tmp moved successfully.
C:\WINDOWS\Temp\avg-02e6923b-49e0-4f3d-a709-7e6493e66a3f.tmp moved successfully.
C:\WINDOWS\Temp\avg-02f3e378-0be9-477d-8d4f-c57c87fb4c4d.tmp moved successfully.
C:\WINDOWS\Temp\avg-02f9b00e-a5b6-4d37-a394-ed2fb6b0640d.tmp moved successfully.
C:\WINDOWS\Temp\avg-030dd869-f0b9-4305-9238-3f244b03170a.tmp moved successfully.
C:\WINDOWS\Temp\avg-0312ec6f-25cd-4d11-863c-6518f785327a.tmp moved successfully.
C:\WINDOWS\Temp\avg-0317a513-167d-4836-8317-184e43299016.tmp moved successfully.
C:\WINDOWS\Temp\avg-0323bb54-c038-470e-901d-ee151e80cb7d.tmp moved successfully.
C:\WINDOWS\Temp\avg-03310c16-c764-4156-905a-d90085ce472f.tmp moved successfully.
C:\WINDOWS\Temp\avg-0336ec0e-69d3-465c-97ef-e63af79e647b.tmp moved successfully.
C:\WINDOWS\Temp\avg-033bfa49-b462-4527-8364-0c1b20804372.tmp moved successfully.
C:\WINDOWS\Temp\avg-03451e04-dd98-4d41-8304-2464e40a2f29.tmp moved successfully.
C:\WINDOWS\Temp\avg-0364c778-4c8d-4218-a981-1865f37db81d.tmp moved successfully.
C:\WINDOWS\Temp\avg-036bb826-e578-4c57-95e6-77777bd69966.tmp moved successfully.
C:\WINDOWS\Temp\avg-0378f50e-4e8b-471e-8bfa-630fe7e7a614.tmp moved successfully.
C:\WINDOWS\Temp\avg-0397d54e-613c-4e0f-bb54-7a06f551b33e.tmp moved successfully.
C:\WINDOWS\Temp\avg-03ac6576-c36a-4050-b343-694822490f7f.tmp moved successfully.
C:\WINDOWS\Temp\avg-03c8d605-dbc4-4c10-b1bb-3b1aaa86bb79.tmp moved successfully.
C:\WINDOWS\Temp\avg-03d4ee68-4dbd-444b-ad35-5057404b874e.tmp moved successfully.
C:\WINDOWS\Temp\avg-03d5d825-eded-4643-b888-9b60ca46945f.tmp moved successfully.
C:\WINDOWS\Temp\avg-03f11275-46f0-4923-875e-2c6829ac7424.tmp moved successfully.
C:\WINDOWS\Temp\avg-03f4014d-b9ef-4830-ba3b-d55b13918b43.tmp moved successfully.
C:\WINDOWS\Temp\avg-03fd3764-b79d-4a1a-91f4-a5253d508821.tmp moved successfully.
C:\WINDOWS\Temp\avg-0414a54b-48a0-4b5b-908b-6d7891b13d73.tmp moved successfully.
C:\WINDOWS\Temp\avg-04215d0d-5565-4a05-a298-f54013c7e83d.tmp moved successfully.
C:\WINDOWS\Temp\avg-043e6344-f998-4a5c-902b-bb00841f8f1d.tmp moved successfully.
C:\WINDOWS\Temp\avg-044f2c19-9328-431e-8c27-233f1aae101e.tmp moved successfully.
C:\WINDOWS\Temp\avg-04731362-a83f-416c-b372-c630f63a4868.tmp moved successfully.
C:\WINDOWS\Temp\avg-047f9064-9e82-4d0b-9cad-f15434e7f716.tmp moved successfully.
C:\WINDOWS\Temp\avg-04969d20-5e04-4908-87fe-a94f031e2766.tmp moved successfully.
C:\WINDOWS\Temp\avg-04974d0c-fa61-407b-8563-7123ff1ef758.tmp moved successfully.
C:\WINDOWS\Temp\avg-04ba3a06-a237-460a-aecc-f53bdca6e40c.tmp moved successfully.
C:\WINDOWS\Temp\avg-04cdb367-0fb9-4525-ae81-bb7cf143110b.tmp moved successfully.
C:\WINDOWS\Temp\avg-04de8619-0bdd-471e-85bd-d345a5619152.tmp moved successfully.
C:\WINDOWS\Temp\avg-04f61041-afe8-493a-b841-e94d285c7771.tmp moved successfully.
C:\WINDOWS\Temp\avg-04fa777f-0b69-4910-a9de-b84cc8e2626d.tmp moved successfully.
C:\WINDOWS\Temp\avg-04fc2b2a-9a82-4554-abce-c040bc133254.tmp moved successfully.
C:\WINDOWS\Temp\avg-04fe006b-9d79-430f-9803-566f60cf6925.tmp moved successfully.
C:\WINDOWS\Temp\avg-050f433c-de55-4338-ad41-f5187b6e741a.tmp moved successfully.
C:\WINDOWS\Temp\avg-0516ae5c-f749-495a-b0dc-7b3651de6d28.tmp moved successfully.
C:\WINDOWS\Temp\avg-051ddc30-8c27-4d2a-a95c-d20f20c73907.tmp moved successfully.
C:\WINDOWS\Temp\avg-0525e45e-d29c-4214-a57e-a21d8b69d04d.tmp moved successfully.
C:\WINDOWS\Temp\avg-053cb21b-2cb5-420b-a5f5-a330c841cc21.tmp moved successfully.
C:\WINDOWS\Temp\avg-053d0d15-2c7d-4175-8e2f-da7f853ec124.tmp moved successfully.
C:\WINDOWS\Temp\avg-054e9d29-0c4c-4320-afd5-6535d0afbd28.tmp moved successfully.
C:\WINDOWS\Temp\avg-05593163-9f56-4d7a-958a-5330e08dcd15.tmp moved successfully.
C:\WINDOWS\Temp\avg-05605d38-ddb6-4628-968c-5617897da200.tmp moved successfully.
C:\WINDOWS\Temp\avg-0569416a-87f9-491f-b090-d351a27d0f5c.tmp moved successfully.
C:\WINDOWS\Temp\avg-05973157-ef23-4d3c-b863-bc7b4a77ac6d.tmp moved successfully.
C:\WINDOWS\Temp\avg-059e2c12-661b-4979-b085-e501107d006d.tmp moved successfully.
C:\WINDOWS\Temp\avg-05ae8f53-b3fa-4e0e-ab5a-56004513ca1a.tmp moved successfully.
C:\WINDOWS\Temp\avg-05b3560e-d19f-4e08-8cd2-52226e97ab09.tmp moved successfully.
C:\WINDOWS\Temp\avg-05c4356d-dd04-4f47-96d6-cf6bfbbc717e.tmp moved successfully.
C:\WINDOWS\Temp\avg-05db2c58-a876-4f3c-9f93-1e659b225f74.tmp moved successfully.
C:\WINDOWS\Temp\avg-061cc14e-6fa6-432f-af7d-084555e58c7b.tmp moved successfully.
C:\WINDOWS\Temp\avg-062b221b-7bdd-4b2f-acf0-97785b202e4b.tmp moved successfully.
C:\WINDOWS\Temp\avg-062b253d-e421-4a51-9b0f-1a4705495b19.tmp moved successfully.
C:\WINDOWS\Temp\avg-0649f543-5d47-4105-99e3-7528f2d1134f.tmp moved successfully.
C:\WINDOWS\Temp\avg-06552543-6c5e-4701-bb14-fe36e2756576.tmp moved successfully.
C:\WINDOWS\Temp\avg-0677d346-931e-4431-a0b6-772e6dcedd4c.tmp moved successfully.
C:\WINDOWS\Temp\avg-069a0854-9fed-433b-9a46-510c31370b57.tmp moved successfully.
C:\WINDOWS\Temp\avg-069ad316-a212-4f65-a5a4-9b01b493ed76.tmp moved successfully.
C:\WINDOWS\Temp\avg-06a1504f-41c9-4d52-9654-a90e7cb4e65b.tmp moved successfully.
C:\WINDOWS\Temp\avg-06a2c011-d743-4f12-8711-9e3684daa666.tmp moved successfully.
C:\WINDOWS\Temp\avg-06b5480c-5de1-4f3e-864e-c16a2212fb34.tmp moved successfully.
C:\WINDOWS\Temp\avg-06b8f17b-600f-4a62-bfcf-314e5359a468.tmp moved successfully.
C:\WINDOWS\Temp\avg-06defb0f-80be-4861-a6b0-fa262a685d1d.tmp moved successfully.
C:\WINDOWS\Temp\avg-07700571-64ad-4819-8848-75345fbf0c1e.tmp moved successfully.
C:\WINDOWS\Temp\avg-078d0705-326b-4f2f-8b16-c81552db366f.tmp moved successfully.
C:\WINDOWS\Temp\avg-07b51375-fe18-482a-a55c-db714937c27f.tmp moved successfully.
C:\WINDOWS\Temp\avg-07db1e4f-1dae-483f-9e2c-6b7892ea942c.tmp moved successfully.
C:\WINDOWS\Temp\avg-07e72c64-b493-4503-9a37-b72a6c430e45.tmp moved successfully.
C:\WINDOWS\Temp\avg-0800f207-5a4e-412e-952f-1d2e841d5f66.tmp moved successfully.
C:\WINDOWS\Temp\avg-0802d77f-b326-4813-9856-eb234a4f6f24.tmp moved successfully.
C:\WINDOWS\Temp\avg-08072555-9f50-4c5e-a143-6b7056373058.tmp moved successfully.
C:\WINDOWS\Temp\avg-081ac04e-ccd0-4779-91f1-ac512b468066.tmp moved successfully.
C:\WINDOWS\Temp\avg-0822230d-cb7e-4d5b-adfd-0b43c12d0e17.tmp moved successfully.
C:\WINDOWS\Temp\avg-0829e831-c1d2-446e-9af5-082f642aa52e.tmp moved successfully.
C:\WINDOWS\Temp\avg-082c091a-362c-4977-a42c-866ed34a6727.tmp moved successfully.
C:\WINDOWS\Temp\avg-083a574b-1d6c-481e-8e9e-616d0f942c6b.tmp moved successfully.
C:\WINDOWS\Temp\avg-084a3d06-3a32-4477-be57-865ceb53eb12.tmp moved successfully.
C:\WINDOWS\Temp\avg-08515c4a-3e84-4f48-8d3a-9d6320af2075.tmp moved successfully.
C:\WINDOWS\Temp\avg-08adaf7b-8092-4871-82b6-ba00b8bdf239.tmp moved successfully.
C:\WINDOWS\Temp\avg-08bc0f28-72b8-4c08-a63f-a31090b56d47.tmp moved successfully.
C:\WINDOWS\Temp\avg-08bd2814-1f1d-4460-b094-5b18ac2eba03.tmp moved successfully.
C:\WINDOWS\Temp\avg-08bf8304-0040-492c-9a2d-1d029f8e9c31.tmp moved successfully.
C:\WINDOWS\Temp\avg-08d0a502-a5f7-4844-9ebc-0d72a6c61862.tmp moved successfully.
C:\WINDOWS\Temp\avg-08d5ba13-911e-413f-b857-024dd423025e.tmp moved successfully.
C:\WINDOWS\Temp\avg-08e0d33f-87ab-4c57-b20e-a922a51fd816.tmp moved successfully.
C:\WINDOWS\Temp\avg-0906c250-7562-4922-a6a5-d87d769bc25d.tmp moved successfully.
C:\WINDOWS\Temp\avg-0931b056-8e02-4b35-8301-be27726e875d.tmp moved successfully.
C:\WINDOWS\Temp\avg-09595069-dac6-4b08-8b2a-eb609b6fee39.tmp moved successfully.
C:\WINDOWS\Temp\avg-095fa106-2320-4f4d-9d2b-673b1646bc1e.tmp moved successfully.
C:\WINDOWS\Temp\avg-09690801-b4e1-4e0c-b102-235767396f54.tmp moved successfully.
C:\WINDOWS\Temp\avg-0969190a-da74-4908-b6b7-de526b9eca78.tmp moved successfully.
C:\WINDOWS\Temp\avg-096dc67b-595c-4d2e-a439-0379087caf10.tmp moved successfully.
C:\WINDOWS\Temp\avg-0975eb71-a9e6-4808-b192-1f57999e8b01.tmp moved successfully.
C:\WINDOWS\Temp\avg-0987ec72-368f-4679-9154-0f198534c119.tmp moved successfully.
C:\WINDOWS\Temp\avg-098e0267-fe36-4f1e-bed2-c40b25e01b5c.tmp moved successfully.
C:\WINDOWS\Temp\avg-09a0a962-28ed-4336-98b8-d31cb33fb444.tmp moved successfully.
C:\WINDOWS\Temp\avg-09aac80e-db21-4473-a416-334b87d4a66e.tmp moved successfully.
C:\WINDOWS\Temp\avg-09b1d171-33cf-481e-b34a-a0754724991b.tmp moved successfully.
C:\WINDOWS\Temp\avg-09d2374b-028d-4e65-a245-b5376a71a01d.tmp moved successfully.
C:\WINDOWS\Temp\avg-09fee407-e548-464a-b19d-667444182f2f.tmp moved successfully.
C:\WINDOWS\Temp\avg-0a1b8553-1ccf-4565-b03e-da069290b77d.tmp moved successfully.
C:\WINDOWS\Temp\avg-0a3a2a67-6d02-4507-8347-3b61c2098723.tmp moved successfully.
C:\WINDOWS\Temp\avg-0a520b27-01b2-493f-bec8-1d7bcb73b351.tmp moved successfully.
C:\WINDOWS\Temp\avg-0a59615e-d2c4-400f-b8a4-5b730d65907b.tmp moved successfully.
C:\WINDOWS\Temp\avg-0a727545-dd2d-447f-a1de-672a5de30d29.tmp moved successfully.
C:\WINDOWS\Temp\avg-0a7d2462-d8d8-4f5f-9cf2-293d0deb876e.tmp moved successfully.
C:\WINDOWS\Temp\avg-0a91ad65-bf19-4c20-8230-ea0d70ea496b.tmp moved successfully.
C:\WINDOWS\Temp\avg-0aad1d29-0042-4018-98f8-5b51792d625f.tmp moved successfully.
C:\WINDOWS\Temp\avg-0abdf035-2f5a-4455-9ed1-d66987bd9839.tmp moved successfully.
C:\WINDOWS\Temp\avg-0ac3a03d-4430-4604-b0be-957fd5f3f716.tmp moved successfully.
C:\WINDOWS\Temp\avg-0ac6e046-86f6-4f46-b071-7a2f2b048d1f.tmp moved successfully.
C:\WINDOWS\Temp\avg-0ae1235c-0753-433e-8c40-555604bec868.tmp moved successfully.
C:\WINDOWS\Temp\avg-0ae56815-0b32-4b75-89da-a6293372ab4a.tmp moved successfully.
C:\WINDOWS\Temp\avg-0af7eb0d-60a1-4921-9760-6005cc798334.tmp moved successfully.
C:\WINDOWS\Temp\avg-0b034629-0972-4b17-b96a-5611ac15d024.tmp moved successfully.
C:\WINDOWS\Temp\avg-0b1ab077-e3f6-402b-9c49-d36d57ec0850.tmp moved successfully.
C:\WINDOWS\Temp\avg-0b470a78-222f-414b-88fb-fc452a0a9363.tmp moved successfully.
C:\WINDOWS\Temp\avg-0b61c936-b1ad-4123-bb07-7171629cc340.tmp moved successfully.
C:\WINDOWS\Temp\avg-0b68a90b-e6fe-4d43-8c3a-a064e5c67954.tmp moved successfully.
C:\WINDOWS\Temp\avg-0b70ce6d-2b55-442a-b640-1a62620d5f7c.tmp moved successfully.
C:\WINDOWS\Temp\avg-0b816539-52fc-4c1d-bd69-97118ac37337.tmp moved successfully.
C:\WINDOWS\Temp\avg-0ba62a70-f809-4845-b378-5235794e8648.tmp moved successfully.
C:\WINDOWS\Temp\avg-0bd3752b-1d4c-4c23-917c-074404d04a1d.tmp moved successfully.
C:\WINDOWS\Temp\avg-0bd42c32-b6a3-4a4e-8550-900c161de215.tmp moved successfully.
C:\WINDOWS\Temp\avg-0bff255f-7f9f-4e6d-833d-414624130e60.tmp moved successfully.
C:\WINDOWS\Temp\avg-0c007a49-cf8d-4a02-b00e-aa55b127db10.tmp moved successfully.
C:\WINDOWS\Temp\avg-0c05b731-2391-441e-908a-9c7f3e5d2101.tmp moved successfully.
C:\WINDOWS\Temp\avg-0c144b31-3bdf-4d3b-9405-014c66406815.tmp moved successfully.
C:\WINDOWS\Temp\avg-0c14c91e-5030-4056-aefe-cf2c196c4022.tmp moved successfully.
C:\WINDOWS\Temp\avg-0c242e65-8d6a-4a4e-92cd-755df9ba7e05.tmp moved successfully.
C:\WINDOWS\Temp\avg-0c2bfe26-4d3a-403c-8509-171ba341c971.tmp moved successfully.
C:\WINDOWS\Temp\avg-0c35d77c-6762-4c00-84d6-1e3ed21e7f1f.tmp moved successfully.
C:\WINDOWS\Temp\avg-0c396a6f-2cd4-4248-89b7-942107946364.tmp moved successfully.
C:\WINDOWS\Temp\avg-0c698310-5668-4138-82c4-e54ee2c14b6e.tmp moved successfully.
C:\WINDOWS\Temp\avg-0c8a000e-825a-4d3a-8562-8076afe8de58.tmp moved successfully.
C:\WINDOWS\Temp\avg-0c8cd46c-045c-436e-a13b-ad5387644754.tmp moved successfully.
C:\WINDOWS\Temp\avg-0c9e1446-6e3f-4558-b0f2-cf199db52965.tmp moved successfully.
C:\WINDOWS\Temp\avg-0ca78525-6078-443d-9d6f-5b37ffdaf071.tmp moved successfully.
C:\WINDOWS\Temp\avg-0cc2b00c-1685-4e46-bd33-085ee4f12437.tmp moved successfully.
C:\WINDOWS\Temp\avg-0cdde510-7bc5-4712-a86f-fa40337d024c.tmp moved successfully.
C:\WINDOWS\Temp\avg-0ce3751f-e5a7-4e44-a964-537190569866.tmp moved successfully.
C:\WINDOWS\Temp\avg-0ce91142-aece-4779-b467-fe0dfa7d2032.tmp moved successfully.
C:\WINDOWS\Temp\avg-0cfe9d13-db3b-477c-8656-9d795a710513.tmp moved successfully.
C:\WINDOWS\Temp\avg-0d15d70f-7230-4669-b6e9-d82e9013ec4d.tmp moved successfully.
C:\WINDOWS\Temp\avg-0d20881d-1751-4657-b041-d327356eb21b.tmp moved successfully.
C:\WINDOWS\Temp\avg-0d2e886c-9dd5-4774-a0a6-1f5b2ae4483a.tmp moved successfully.
C:\WINDOWS\Temp\avg-0d3f8346-cd50-4c1b-81c6-4c2a22cf4532.tmp moved successfully.
C:\WINDOWS\Temp\avg-0d45b540-5809-4e77-a60a-e903ea35376e.tmp moved successfully.
C:\WINDOWS\Temp\avg-0d5c0b6f-61ca-4338-9b95-881891db3760.tmp moved successfully.
C:\WINDOWS\Temp\avg-0d799751-e498-460b-a486-b276e04c7e7b.tmp moved successfully.
C:\WINDOWS\Temp\avg-0d7e6f22-3a22-433b-9b7f-690b9f90997f.tmp moved successfully.
C:\WINDOWS\Temp\avg-0db9022f-df5c-4f1a-b517-15113807ce24.tmp moved successfully.
C:\WINDOWS\Temp\avg-0dcd0636-539c-4b6a-adf4-041dace56b1b.tmp moved successfully.
C:\WINDOWS\Temp\avg-0de9151b-6e3f-403d-b0ae-735700534e10.tmp moved successfully.
C:\WINDOWS\Temp\avg-0deee524-064b-494a-9251-316022d11a45.tmp moved successfully.
C:\WINDOWS\Temp\avg-0df32f46-7032-4c58-a2e3-8a731094c22e.tmp moved successfully.
C:\WINDOWS\Temp\avg-0e064220-a431-464f-bf0a-ab633b14c847.tmp moved successfully.
C:\WINDOWS\Temp\avg-0e08276f-493f-403b-9c91-af1646387002.tmp moved successfully.
C:\WINDOWS\Temp\avg-0e0d2437-8743-4b71-931b-d816413b8369.tmp moved successfully.
C:\WINDOWS\Temp\avg-0e125e6b-898d-4655-911e-6e3848949b5e.tmp moved successfully.
C:\WINDOWS\Temp\avg-0e2e917c-9068-4569-b344-bc787f68ae17.tmp moved successfully.
C:\WINDOWS\Temp\avg-0e378e6e-0238-485e-b650-8537a3c9412c.tmp moved successfully.
C:\WINDOWS\Temp\avg-0e454427-2e93-4b17-bc38-e572fc857d7a.tmp moved successfully.
C:\WINDOWS\Temp\avg-0e51f850-a53e-4137-980e-6f08ff61b145.tmp moved successfully.
C:\WINDOWS\Temp\avg-0e71b203-2bd9-4d4b-96ef-af5c9de29779.tmp moved successfully.
C:\WINDOWS\Temp\avg-0e76845a-aa3e-490b-9971-b74da5e3cc6b.tmp moved successfully.
C:\WINDOWS\Temp\avg-0e9ee828-2fae-464d-9d41-3c781b2e7116.tmp moved successfully.
C:\WINDOWS\Temp\avg-0e9ffb15-2332-4250-8f1f-c24704b81d1a.tmp moved successfully.
C:\WINDOWS\Temp\avg-0ed1b871-269f-4e12-914d-8368f9901075.tmp moved successfully.
C:\WINDOWS\Temp\avg-0ee1e652-af2c-4b0f-82d5-5a263a919251.tmp moved successfully.
C:\WINDOWS\Temp\avg-0ef06269-c284-4f78-833f-2e48163d6733.tmp moved successfully.
C:\WINDOWS\Temp\avg-0ef5fe6e-6ec4-4a00-903a-3259efd1fd58.tmp moved successfully.
C:\WINDOWS\Temp\avg-0f00f972-b90a-4a72-9a65-667a99ca682e.tmp moved successfully.
C:\WINDOWS\Temp\avg-0f093754-2a46-4c7f-ba28-22151b64363a.tmp moved successfully.
C:\WINDOWS\Temp\avg-0f09a01f-cee1-4122-a673-db4db6574344.tmp moved successfully.
C:\WINDOWS\Temp\avg-0f33b97b-cf72-4663-bd10-370af352e961.tmp moved successfully.
C:\WINDOWS\Temp\avg-0f374634-3deb-4d35-b661-fb6c532b7067.tmp moved successfully.
C:\WINDOWS\Temp\avg-0f4e1b25-c66c-4478-9e91-aa771256b478.tmp moved successfully.
C:\WINDOWS\Temp\avg-0f53c058-328d-4a16-9c5b-366d0b21765d.tmp moved successfully.
C:\WINDOWS\Temp\avg-0f7f996e-ed12-4643-a671-2c4b27d18650.tmp moved successfully.
C:\WINDOWS\Temp\avg-0faf6d0c-7df7-4636-b99c-5b69ec8cda79.tmp moved successfully.
C:\WINDOWS\Temp\avg-0fb9df18-79b0-4a13-a04a-b83c56f8f127.tmp moved successfully.
C:\WINDOWS\Temp\avg-0fbfc16f-1946-403f-b009-7412da754d0e.tmp moved successfully.
C:\WINDOWS\Temp\avg-0fc0f07c-fb9b-4506-be76-710de4e4c07f.tmp moved successfully.
C:\WINDOWS\Temp\avg-0feaa57b-dea4-4348-a116-bf4d77561f46.tmp moved successfully.
C:\WINDOWS\Temp\avg-10051c61-0764-4734-9916-a66f375fa868.tmp moved successfully.
C:\WINDOWS\Temp\avg-10120170-16fe-472c-9262-917acc2dfe22.tmp moved successfully.
C:\WINDOWS\Temp\avg-1014326e-669b-4871-a917-972f4705d24a.tmp moved successfully.
C:\WINDOWS\Temp\avg-104fe372-b03d-410f-98e3-fa0872ca646c.tmp moved successfully.
C:\WINDOWS\Temp\avg-108cdb32-b55e-487f-b4c6-0444a063c129.tmp moved successfully.
C:\WINDOWS\Temp\avg-1096be16-4b2f-4e55-aca9-4b32e19cf051.tmp moved successfully.
C:\WINDOWS\Temp\avg-109abf13-6fa5-4b26-b67f-5a3f2f1a4009.tmp moved successfully.
C:\WINDOWS\Temp\avg-10a1321f-b6cc-404c-ada2-a83fa2f7112e.tmp moved successfully.
C:\WINDOWS\Temp\avg-10b1f959-0515-4665-9ba5-190aa9616077.tmp moved successfully.
C:\WINDOWS\Temp\avg-10b5bf7e-eb33-4917-849d-c30039b49e5a.tmp moved successfully.
C:\WINDOWS\Temp\avg-10c4f81b-1ca8-446e-bbd5-812cf2232c0e.tmp moved successfully.
C:\WINDOWS\Temp\avg-10cbd105-7d9f-4c3d-8fa6-900b0c621d58.tmp moved successfully.
C:\WINDOWS\Temp\avg-10f84c4a-00bc-4d7a-99f1-5466b97ef952.tmp moved successfully.
C:\WINDOWS\Temp\avg-11223221-a7fb-4451-9daf-ed2c341c0d7b.tmp moved successfully.
C:\WINDOWS\Temp\avg-11233f01-74b5-453b-8e19-ea531d165f76.tmp moved successfully.
C:\WINDOWS\Temp\avg-113e3a72-88c7-4458-97a6-497d2f58d709.tmp moved successfully.
C:\WINDOWS\Temp\avg-1147cd6d-95f6-4d77-8a07-1e3426130b33.tmp moved successfully.
C:\WINDOWS\Temp\avg-114b8178-08b5-432c-b518-d35735aa1042.tmp moved successfully.
C:\WINDOWS\Temp\avg-114ee121-5f67-4c6c-a060-322214c73601.tmp moved successfully.
C:\WINDOWS\Temp\avg-1153ad29-cad2-422b-8a21-45221a273a71.tmp moved successfully.
C:\WINDOWS\Temp\avg-11542108-6ee6-4407-b846-9040efa1fa35.tmp moved successfully.
C:\WINDOWS\Temp\avg-1186c711-e4bb-4b79-93ba-e47a4a03d129.tmp moved successfully.
C:\WINDOWS\Temp\avg-11af4633-5631-4c61-9367-c06713e0475a.tmp moved successfully.
C:\WINDOWS\Temp\avg-11ea120a-e254-4945-a2d8-8e0196ac4c7e.tmp moved successfully.
C:\WINDOWS\Temp\avg-11ef0363-a429-490a-9d4f-ed6376cd947e.tmp moved successfully.
C:\WINDOWS\Temp\avg-11f12b20-c515-4172-9de5-29410183207f.tmp moved successfully.
C:\WINDOWS\Temp\avg-11f2f632-81e9-4a46-9ce9-763def3dba5c.tmp moved successfully.
C:\WINDOWS\Temp\avg-11fa9d09-0f8e-4e10-aa1e-a42d7ac3e45d.tmp moved successfully.
C:\WINDOWS\Temp\avg-11fed30d-31d6-4c39-834c-407aa8f4080e.tmp moved successfully.
C:\WINDOWS\Temp\avg-121b252e-62e8-4a25-a88b-f944c3244d6b.tmp moved successfully.
C:\WINDOWS\Temp\avg-124d575a-50f0-4223-af94-121607774f09.tmp moved successfully.
C:\WINDOWS\Temp\avg-1258e86d-ba51-465b-854f-6e07c1635c09.tmp moved successfully.
C:\WINDOWS\Temp\avg-125f1615-93b3-4150-b42d-603260f6fa68.tmp moved successfully.
C:\WINDOWS\Temp\avg-1272de22-22bd-4454-80e4-6779a6f7f27b.tmp moved successfully.
C:\WINDOWS\Temp\avg-1291ff20-0fb9-4a32-b0fc-b53b79719d04.tmp moved successfully.
C:\WINDOWS\Temp\avg-1297834a-3947-4935-98ff-ad1906ab1431.tmp moved successfully.
C:\WINDOWS\Temp\avg-12c45f44-0a7b-4d07-89bc-7b535282974a.tmp moved successfully.
C:\WINDOWS\Temp\avg-12cc9211-3e40-473e-8867-520eb4f49a19.tmp moved successfully.
C:\WINDOWS\Temp\avg-12df8c62-cbec-4012-a665-3e375bdc9c3b.tmp moved successfully.
C:\WINDOWS\Temp\avg-130e1111-199a-491f-8000-7e3d393d921c.tmp moved successfully.
C:\WINDOWS\Temp\avg-131fac7b-6d6c-4449-8e8f-5b5eece1b611.tmp moved successfully.
C:\WINDOWS\Temp\avg-132d6b33-42e1-4933-9129-6935d0785665.tmp moved successfully.
C:\WINDOWS\Temp\avg-1348d36a-5945-424a-8e46-0d294a935e39.tmp moved successfully.
C:\WINDOWS\Temp\avg-13564641-9de8-4b7e-8dd8-f26a2159cc3c.tmp moved successfully.
C:\WINDOWS\Temp\avg-135dd854-ec93-4a6b-a1ab-b95be1b6eb4d.tmp moved successfully.
C:\WINDOWS\Temp\avg-135e4818-eb97-486c-87cd-273c802ef27f.tmp moved successfully.
C:\WINDOWS\Temp\avg-13602731-482a-4f19-93aa-3b6e06c4161e.tmp moved successfully.
C:\WINDOWS\Temp\avg-13665476-0b89-4d3b-a0bd-d2707d30f626.tmp moved successfully.
C:\WINDOWS\Temp\avg-13669e7f-2f37-4518-b841-17359b347d6d.tmp moved successfully.
C:\WINDOWS\Temp\avg-13696b65-42a5-4b65-9c2e-2d44f3e3a922.tmp moved successfully.
C:\WINDOWS\Temp\avg-13697c57-4d97-447a-aac8-106c58538e5e.tmp moved successfully.
C:\WINDOWS\Temp\avg-13716a6f-8dbd-480d-95c4-7865c7176602.tmp moved successfully.
C:\WINDOWS\Temp\avg-138beb68-7197-4164-bdaf-432682739370.tmp moved successfully.
C:\WINDOWS\Temp\avg-1393e829-de4c-4940-954a-fd1a282e2928.tmp moved successfully.
C:\WINDOWS\Temp\avg-13996317-1401-4b2d-a5c0-62081532587d.tmp moved successfully.
C:\WINDOWS\Temp\avg-13c98211-f79b-4e41-b4c6-793a4e846f11.tmp moved successfully.
C:\WINDOWS\Temp\avg-13f44e32-cd7c-4b75-ab4a-3a4bc31eb840.tmp moved successfully.
C:\WINDOWS\Temp\avg-14105a36-0af3-456f-ac04-3c384d76e22b.tmp moved successfully.
C:\WINDOWS\Temp\avg-1422953d-a6a1-4300-888c-462fc0c66b35.tmp moved successfully.
C:\WINDOWS\Temp\avg-1422e311-27ef-4d09-8ec4-b9686e6d0f3f.tmp moved successfully.
C:\WINDOWS\Temp\avg-143da814-1566-4d34-8db2-a34014ae424f.tmp moved successfully.
C:\WINDOWS\Temp\avg-1450ea7a-1dad-4154-a8f1-6a417804137f.tmp moved successfully.
C:\WINDOWS\Temp\avg-1451471f-ed8c-437b-88ef-3835da365752.tmp moved successfully.
C:\WINDOWS\Temp\avg-1460043e-7a40-480b-b655-a02b9e08ca1e.tmp moved successfully.
C:\WINDOWS\Temp\avg-1483b35c-eb2d-4e42-ab8f-e648680e331e.tmp moved successfully.
C:\WINDOWS\Temp\avg-148a8779-161c-415c-a067-0023c867a72c.tmp moved successfully.
C:\WINDOWS\Temp\avg-14afc244-d212-407d-8a7e-7c65b7abee6b.tmp moved successfully.
C:\WINDOWS\Temp\avg-14d3d226-8a97-401a-a2d9-7006f8b4dd6f.tmp moved successfully.
C:\WINDOWS\Temp\avg-14d4f834-aaff-4e13-9497-3b33ee15137c.tmp moved successfully.
C:\WINDOWS\Temp\avg-154ad721-92cd-4a39-a4d2-bd0e852a8c71.tmp moved successfully.
C:\WINDOWS\Temp\avg-155df207-6210-4d74-909c-516aad249304.tmp moved successfully.
C:\WINDOWS\Temp\avg-15706c0c-6420-4b53-8bf4-232f822a2c59.tmp moved successfully.
C:\WINDOWS\Temp\avg-1573bb55-b8e0-4106-9936-053069ab3d01.tmp moved successfully.
C:\WINDOWS\Temp\avg-157b2775-bce6-4b64-8997-c81cb245730e.tmp moved successfully.
C:\WINDOWS\Temp\avg-158f7430-a317-424b-9099-9a2cbfb3b565.tmp moved successfully.
C:\WINDOWS\Temp\avg-1591be3e-9f2b-4521-9ef6-ad4fb6f99b04.tmp moved successfully.
C:\WINDOWS\Temp\avg-15942851-6457-4f67-b077-e40a87b3b166.tmp moved successfully.
C:\WINDOWS\Temp\avg-15b0df12-6faf-432f-b4ac-6e31a4c42630.tmp moved successfully.
C:\WINDOWS\Temp\avg-15bef60d-77dc-461e-ab5a-2b1fd25b4f36.tmp moved successfully.
C:\WINDOWS\Temp\avg-15bf7502-e364-4163-bdd1-f804e61ea726.tmp moved successfully.
C:\WINDOWS\Temp\avg-15bfdc56-b871-4b1a-9087-7c2f47b13836.tmp moved successfully.
C:\WINDOWS\Temp\avg-15d93272-0386-471e-82ef-e12bae0eae1c.tmp moved successfully.
C:\WINDOWS\Temp\avg-15de6a7d-31f7-4d63-89f8-0524756dea7c.tmp moved successfully.
C:\WINDOWS\Temp\avg-15e01c79-6773-435b-b43d-fe137b5a0111.tmp moved successfully.
C:\WINDOWS\Temp\avg-15e26d47-557c-454e-a52f-cb555551e576.tmp moved successfully.
C:\WINDOWS\Temp\avg-15e2c060-d0dd-4b43-b12e-b31f08ce097e.tmp moved successfully.
C:\WINDOWS\Temp\avg-15fb9532-652d-4c0c-9f83-0620199c3c0b.tmp moved successfully.
C:\WINDOWS\Temp\avg-15fbb07e-7b04-4a65-bba7-101bb1cd8d36.tmp moved successfully.
C:\WINDOWS\Temp\avg-160db07c-5348-4613-bd68-657a2550b517.tmp moved successfully.
C:\WINDOWS\Temp\avg-160e2651-cc3f-425d-98c3-d858eff67c36.tmp moved successfully.
C:\WINDOWS\Temp\avg-1631a06e-25d3-4622-a12c-cd2f7d2be203.tmp moved successfully.
C:\WINDOWS\Temp\avg-16491528-d14f-4617-ad7b-6946c387c725.tmp moved successfully.
C:\WINDOWS\Temp\avg-165b1e38-ff18-4a7f-9e70-9f44cbc5f72e.tmp moved successfully.
C:\WINDOWS\Temp\avg-165ea839-4ac8-477c-9f2f-4601a8cc9700.tmp moved successfully.
C:\WINDOWS\Temp\avg-16724b7e-db66-4863-aff2-7f3a4946fc60.tmp moved successfully.
C:\WINDOWS\Temp\avg-1676263d-432a-4163-8aaf-33156b22dd2e.tmp moved successfully.
C:\WINDOWS\Temp\avg-168bb500-ca75-4e4c-8f60-6110b3067303.tmp moved successfully.
C:\WINDOWS\Temp\avg-168da46b-3299-4c68-ac59-5f20792dd746.tmp moved successfully.
C:\WINDOWS\Temp\avg-16920a5a-bc63-4a4d-b7fe-8534325cd17f.tmp moved successfully.
C:\WINDOWS\Temp\avg-16a7d57d-17bf-4d23-b0dd-a571679b6d43.tmp moved successfully.
C:\WINDOWS\Temp\avg-16d73070-8d4f-473d-8249-465d321ef329.tmp moved successfully.
C:\WINDOWS\Temp\avg-16db2f4a-73e8-4146-90d7-a77008cca230.tmp moved successfully.
C:\WINDOWS\Temp\avg-16e4ce17-fcaa-4a16-bd17-1d201fe73b14.tmp moved successfully.
C:\WINDOWS\Temp\avg-17142500-d63c-4e7e-bca6-147184918570.tmp moved successfully.
C:\WINDOWS\Temp\avg-1718e645-e3ff-4d29-80cf-6a474336c211.tmp moved successfully.
C:\WINDOWS\Temp\avg-172afe49-034c-4618-b320-bd1cc270e87f.tmp moved successfully.
C:\WINDOWS\Temp\avg-17332a47-96df-4269-8aa0-b67d1d5f7538.tmp moved successfully.
C:\WINDOWS\Temp\avg-17412850-8227-4b3f-9ec7-7f2198d98d39.tmp moved successfully.
C:\WINDOWS\Temp\avg-1756d727-757a-4d0d-883d-741f0e8f553e.tmp moved successfully.
C:\WINDOWS\Temp\avg-175eca6e-b402-4818-814e-19243cad2c40.tmp moved successfully.
C:\WINDOWS\Temp\avg-175f097f-5088-4f70-a7d6-044debcab14b.tmp moved successfully.
C:\WINDOWS\Temp\avg-1773bf14-36ee-4c16-9bd0-ec51e7e78e39.tmp moved successfully.
C:\WINDOWS\Temp\avg-17949121-9383-4041-88f6-d52c55dbc02c.tmp moved successfully.
C:\WINDOWS\Temp\avg-17b3f966-2cfe-4b6f-a54f-9f107033233d.tmp moved successfully.
C:\WINDOWS\Temp\avg-17c74a06-b9fb-4313-8873-091b7419ea10.tmp moved successfully.
C:\WINDOWS\Temp\avg-17cf1671-f450-443a-8e55-42731752cf61.tmp moved successfully.
C:\WINDOWS\Temp\avg-17d9ec29-101f-4a6e-a990-0f2582c5c20f.tmp moved successfully.
C:\WINDOWS\Temp\avg-17eba00c-f552-4e72-bdbd-630dfb73c27a.tmp moved successfully.
C:\WINDOWS\Temp\avg-17ef016d-7a71-4b08-8de6-9b3503618c2a.tmp moved successfully.
C:\WINDOWS\Temp\avg-17f55602-7c9a-4778-a1db-db42d06fc659.tmp moved successfully.
C:\WINDOWS\Temp\avg-17ff0626-6eae-4965-8cab-6e2dd2f19145.tmp moved successfully.
C:\WINDOWS\Temp\avg-1807c704-1513-4375-88d8-4d017b8f6a03.tmp moved successfully.
C:\WINDOWS\Temp\avg-181a5456-fe5b-4579-8275-e61948066c43.tmp moved successfully.
C:\WINDOWS\Temp\avg-18330538-10be-4203-b2db-ef675ab6cb3d.tmp moved successfully.
C:\WINDOWS\Temp\avg-18379421-81df-4d54-8d5e-4e2a4594584f.tmp moved successfully.
C:\WINDOWS\Temp\avg-1871ed2e-3ef0-4b0e-b2ac-a95062f78f0d.tmp moved successfully.
C:\WINDOWS\Temp\avg-18ed4669-b712-4a05-89fc-f8499e1a4973.tmp moved successfully.
C:\WINDOWS\Temp\avg-191e9946-d664-4c27-996e-e2214f284256.tmp moved successfully.
C:\WINDOWS\Temp\avg-194a5f79-c1d0-4207-aaa0-ee796c1db54c.tmp moved successfully.
C:\WINDOWS\Temp\avg-194beb3f-5b6a-4703-b8f2-771ec0a4243d.tmp moved successfully.
C:\WINDOWS\Temp\avg-194cf544-e56d-4171-b49c-bd76762ad57f.tmp moved successfully.
C:\WINDOWS\Temp\avg-195a8579-cc47-4d10-a145-b07dc2e59937.tmp moved successfully.
C:\WINDOWS\Temp\avg-19840e30-a86f-4c27-84d5-bf282be6936d.tmp moved successfully.
C:\WINDOWS\Temp\avg-19853037-7b0f-4641-a91b-846c9e33af6e.tmp moved successfully.
C:\WINDOWS\Temp\avg-1989a839-9112-4432-ba01-612e9826622b.tmp moved successfully.
C:\WINDOWS\Temp\avg-19979509-5d1a-4269-9994-555678d0c409.tmp moved successfully.
C:\WINDOWS\Temp\avg-199da849-8dd9-4d0d-aafb-513c2e780a63.tmp moved successfully.
C:\WINDOWS\Temp\avg-19ada81e-32c9-4d23-b95d-b53f9f51365e.tmp moved successfully.
C:\WINDOWS\Temp\avg-19b9ec0a-4ffb-4d2e-91d4-d54af2346e2e.tmp moved successfully.
C:\WINDOWS\Temp\avg-19de4d0f-cb61-4763-afa8-92488d1d2845.tmp moved successfully.
C:\WINDOWS\Temp\avg-19ef6243-b0aa-402d-ba4b-4b09438f9557.tmp moved successfully.
C:\WINDOWS\Temp\avg-1a01a60e-f602-4e4f-b48c-14395c811d68.tmp moved successfully.
C:\WINDOWS\Temp\avg-1a10022e-49c2-4b29-b99d-555c00799d1c.tmp moved successfully.
C:\WINDOWS\Temp\avg-1a107973-a9b6-4426-8b93-35098956be47.tmp moved successfully.
C:\WINDOWS\Temp\avg-1a1feb65-3f3a-493b-bc6b-fe335a1c8a27.tmp moved successfully.
C:\WINDOWS\Temp\avg-1a225a0a-9984-4060-aa11-0a6344e86b65.tmp moved successfully.
C:\WINDOWS\Temp\avg-1a241c73-f547-4859-bf1d-821e14a08501.tmp moved successfully.
C:\WINDOWS\Temp\avg-1a2c937c-dc4d-415c-9d38-b45d261c352a.tmp moved successfully.
C:\WINDOWS\Temp\avg-1a3c8910-de98-410a-bfd8-422d44a64f08.tmp moved successfully.
C:\WINDOWS\Temp\avg-1a54ee69-a81b-4c51-9c92-d22a70beac1a.tmp moved successfully.
C:\WINDOWS\Temp\avg-1a597d1c-173f-457b-94d0-46472c59092d.tmp moved successfully.
C:\WINDOWS\Temp\avg-1a7a2c62-611a-456f-84f1-b361da673561.tmp moved successfully.
C:\WINDOWS\Temp\avg-1aa26f3f-848c-4f25-9efa-a76c2277d469.tmp moved successfully.
C:\WINDOWS\Temp\avg-1aa7c127-dc94-471b-bb21-c521d0a1de7c.tmp moved successfully.
C:\WINDOWS\Temp\avg-1ab8d235-4215-480e-bcc2-ca19bfe1c84d.tmp moved successfully.
C:\WINDOWS\Temp\avg-1abad70d-5ab1-4547-bd0f-1b77ee25be04.tmp moved successfully.
C:\WINDOWS\Temp\avg-1ad51a11-4b63-4c2e-8f69-e541b91de769.tmp moved successfully.
C:\WINDOWS\Temp\avg-1b01a322-68a9-484d-a084-9e6a3b1ea247.tmp moved successfully.
C:\WINDOWS\Temp\avg-1b0a0c4e-7e52-4a64-bc8d-04091ba6fb32.tmp moved successfully.
C:\WINDOWS\Temp\avg-1b2d564c-b567-426b-b120-3725aa3e6257.tmp moved successfully.
C:\WINDOWS\Temp\avg-1b356440-2e49-4040-988f-405d78d30723.tmp moved successfully.
C:\WINDOWS\Temp\avg-1b511f1f-cfa6-457b-acd5-1b0f202b9b71.tmp moved successfully.
C:\WINDOWS\Temp\avg-1b55041c-2c73-4e50-98f9-c6119f49bc3e.tmp moved successfully.
C:\WINDOWS\Temp\avg-1b69676a-69e7-4638-a1ba-5a0edae96835.tmp moved successfully.
C:\WINDOWS\Temp\avg-1b8bee28-58ee-4822-b8c8-c612cee8676d.tmp moved successfully.
C:\WINDOWS\Temp\avg-1b96744a-2839-4b7b-8f2c-412e4afd3d2f.tmp moved successfully.
C:\WINDOWS\Temp\avg-1ba32f00-b617-451a-b2ab-c07ae9b3360f.tmp moved successfully.
C:\WINDOWS\Temp\avg-1c01da01-b4ad-4008-b06b-e957e5469922.tmp moved successfully.
C:\WINDOWS\Temp\avg-1c198e1b-e2aa-4c0f-b8b8-3f5da37d657e.tmp moved successfully.
C:\WINDOWS\Temp\avg-1c901043-aabd-4376-944e-4e771795d418.tmp moved successfully.
C:\WINDOWS\Temp\avg-1cc12f1c-de5a-4443-bb1a-865fd668626b.tmp moved successfully.
C:\WINDOWS\Temp\avg-1cf4cf0c-aae9-4561-b8fa-bd2a33e72d1b.tmp moved successfully.
C:\WINDOWS\Temp\avg-1d1a886d-a14f-4f40-abfa-fc1355dfc30b.tmp moved successfully.
C:\WINDOWS\Temp\avg-1d22d01b-a336-4438-b360-09766a49454d.tmp moved successfully.
C:\WINDOWS\Temp\avg-1d241862-31ad-4126-8242-3268c29fe62d.tmp moved successfully.
C:\WINDOWS\Temp\avg-1d554976-e41d-4d64-a00e-ac4e80d15870.tmp moved successfully.
C:\WINDOWS\Temp\avg-1d5e9821-8281-452b-86f8-b50e0521d704.tmp moved successfully.
C:\WINDOWS\Temp\avg-1d654026-f7fc-4f6d-8103-45513f3f4b52.tmp moved successfully.
C:\WINDOWS\Temp\avg-1d895742-6e0c-4875-95fd-946ecc2e891a.tmp moved successfully.
C:\WINDOWS\Temp\avg-1d938f40-77b4-4e07-9335-b6350e5a0511.tmp moved successfully.
C:\WINDOWS\Temp\avg-1d9aff31-a6b3-4867-a9db-890e18855254.tmp moved successfully.
C:\WINDOWS\Temp\avg-1db46e07-018e-4c31-9ea2-8455e252ae6c.tmp moved successfully.
C:\WINDOWS\Temp\avg-1db5c35c-2eda-481f-be7e-ef03fb59d528.tmp moved successfully.
C:\WINDOWS\Temp\avg-1ddbc356-596e-476c-a3b3-ad20ce076e72.tmp moved successfully.
C:\WINDOWS\Temp\avg-1deed16d-136e-4f13-ac71-3f7c2921cd5c.tmp moved successfully.
C:\WINDOWS\Temp\avg-1e06ff40-5609-4757-bda3-1a675755d476.tmp moved successfully.
C:\WINDOWS\Temp\avg-1e2b5927-64a2-452d-9504-9b38a87f9e49.tmp moved successfully.
C:\WINDOWS\Temp\avg-1e5e5149-4035-4036-9baf-c70ee3476f0a.tmp moved successfully.
C:\WINDOWS\Temp\avg-1e60cc5c-3501-4760-954f-1f1fc6ef836b.tmp moved successfully.
C:\WINDOWS\Temp\avg-1e6f4529-ac7a-4768-95f8-346ead897508.tmp moved successfully.
C:\WINDOWS\Temp\avg-1e7ef878-f6ff-4b7b-b1a0-827ccd333b1b.tmp moved successfully.
C:\WINDOWS\Temp\avg-1e7ff36c-baf9-4018-a07c-6365e4856072.tmp moved successfully.
C:\WINDOWS\Temp\avg-1ea48017-fb85-4d31-b51d-ef5fa888ee02.tmp moved successfully.
C:\WINDOWS\Temp\avg-1ea55948-dfba-4971-94e7-a63f0f9edd04.tmp moved successfully.
C:\WINDOWS\Temp\avg-1eb21b47-fa94-4d1c-a2b0-f31d74f1934a.tmp moved successfully.
C:\WINDOWS\Temp\avg-1eee367f-16b7-4a14-a30f-7549c31f2634.tmp moved successfully.
C:\WINDOWS\Temp\avg-1f19e446-30e1-4e44-929b-523037fd8d75.tmp moved successfully.
C:\WINDOWS\Temp\avg-1f2e6b39-e84b-4735-b206-836bc6dc5c6e.tmp moved successfully.
C:\WINDOWS\Temp\avg-1f6bc506-af53-4874-bcb5-0241cbddf10b.tmp moved successfully.
C:\WINDOWS\Temp\avg-1f72bd23-65a9-4c4e-b993-1e70a4c0b144.tmp moved successfully.
C:\WINDOWS\Temp\avg-1f733e54-9464-4b01-b206-6e28ee868907.tmp moved successfully.
C:\WINDOWS\Temp\avg-1f88251f-b61b-4a11-9ed1-32394530745a.tmp moved successfully.
C:\WINDOWS\Temp\avg-1faa041c-ff53-417c-b969-06182db5a609.tmp moved successfully.
C:\WINDOWS\Temp\avg-1fd0b816-a9d1-4742-a61c-a07eb2614825.tmp moved successfully.
C:\WINDOWS\Temp\avg-1fd6a758-255c-483a-b652-775c49418e1f.tmp moved successfully.
C:\WINDOWS\Temp\avg-1fd8d772-f117-495f-8223-86165c218838.tmp moved successfully.
C:\WINDOWS\Temp\avg-1fe2843c-d260-412b-8003-4e254cccde7e.tmp moved successfully.
C:\WINDOWS\Temp\avg-1ffe1156-1bbe-4a64-807b-e762f2f74f72.tmp moved successfully.
C:\WINDOWS\Temp\avg-201f7342-6233-4967-b48f-8a556240be13.tmp moved successfully.
C:\WINDOWS\Temp\avg-201fbe5a-e4f8-4f78-8496-601827e2a57a.tmp moved successfully.
C:\WINDOWS\Temp\avg-203a725e-adfd-4854-b447-9c64114f726f.tmp moved successfully.
C:\WINDOWS\Temp\avg-20402a57-1306-435c-ae05-581c1eca717c.tmp moved successfully.
C:\WINDOWS\Temp\avg-204b416d-864b-4e3d-abd5-0f5064874a5b.tmp moved successfully.
C:\WINDOWS\Temp\avg-20548404-75c3-4912-8339-62502929b058.tmp moved successfully.
C:\WINDOWS\Temp\avg-208b4f4b-125b-433a-bd9d-ab2211d6367a.tmp moved successfully.
C:\WINDOWS\Temp\avg-2094d55e-6d14-4243-9215-3647dc16d010.tmp moved successfully.
C:\WINDOWS\Temp\avg-20b46a5f-b77a-4a17-b95d-b57a4d9d902b.tmp moved successfully.
C:\WINDOWS\Temp\avg-20bd3a2b-0cb2-4e6d-a059-3153020fd943.tmp moved successfully.
C:\WINDOWS\Temp\avg-20c7c75b-a02e-4f64-9962-695759a0f766.tmp moved successfully.
C:\WINDOWS\Temp\avg-20d60a39-a5d6-413f-adb1-3a7ca9429607.tmp moved successfully.
C:\WINDOWS\Temp\avg-20f32e38-a9e6-4072-9949-9b730bebf559.tmp moved successfully.
C:\WINDOWS\Temp\avg-20f78039-b231-402f-b8f4-8c17150a5610.tmp moved successfully.
C:\WINDOWS\Temp\avg-2102c26e-b615-4f72-acdf-1535594a4b48.tmp moved successfully.
C:\WINDOWS\Temp\avg-211f5a4d-20f1-4b26-96a6-6c5912f82720.tmp moved successfully.
C:\WINDOWS\Temp\avg-211f8e01-eea3-421c-8e29-9a5e4a85f117.tmp moved successfully.
C:\WINDOWS\Temp\avg-212b891c-45ac-4938-8856-270ae7b4bd57.tmp moved successfully.
C:\WINDOWS\Temp\avg-212be876-0c48-4209-8a3f-a82aa4cdc129.tmp moved successfully.
C:\WINDOWS\Temp\avg-21393b10-e038-4e67-b3eb-42042ef0b546.tmp moved successfully.
C:\WINDOWS\Temp\avg-216ac851-4159-4705-b304-e764490a0f13.tmp moved successfully.
C:\WINDOWS\Temp\avg-2172112c-5ff3-407b-8979-6c61f075a211.tmp moved successfully.
C:\WINDOWS\Temp\avg-21842b3e-68e5-4031-a9e0-ef27197e4008.tmp moved successfully.
C:\WINDOWS\Temp\avg-21973d3b-e0da-4103-a4af-700e7dd45127.tmp moved successfully.
C:\WINDOWS\Temp\avg-21a1af54-4df8-4433-99be-330a78248a7c.tmp moved successfully.
C:\WINDOWS\Temp\avg-21c42c21-935c-4340-88a8-a3233f44013d.tmp moved successfully.
C:\WINDOWS\Temp\avg-21da3f70-85a7-470f-997a-d7694ef6c12f.tmp moved successfully.
C:\WINDOWS\Temp\avg-21dbd24c-db9f-4f7c-b2ff-ed62d383864f.tmp moved successfully.
C:\WINDOWS\Temp\avg-21e9f847-06c1-4669-ad46-8108224edb59.tmp moved successfully.
C:\WINDOWS\Temp\avg-21fcda33-45fd-473e-832b-972ab1a6094e.tmp moved successfully.
C:\WINDOWS\Temp\avg-22012b6d-b669-497e-9173-3b460c6f2a20.tmp moved successfully.
C:\WINDOWS\Temp\avg-221e3c31-24f2-4550-8cb7-435801828927.tmp moved successfully.
C:\WINDOWS\Temp\avg-2221b702-c0df-4230-8b80-ed5bf7b97f36.tmp moved successfully.
C:\WINDOWS\Temp\avg-2229ec4f-4d4a-4737-bda8-436ac8cc745e.tmp moved successfully.
C:\WINDOWS\Temp\avg-2266090c-9f54-4e75-a4c3-7f54c72a9006.tmp moved successfully.
C:\WINDOWS\Temp\avg-227a566f-eb0e-4656-9cf6-004700b86166.tmp moved successfully.
C:\WINDOWS\Temp\avg-2280277b-5a07-4d2e-ac6d-4737dce77c62.tmp moved successfully.
C:\WINDOWS\Temp\avg-22a88532-8791-4c20-ba65-ac6b69835962.tmp moved successfully.
C:\WINDOWS\Temp\avg-22b8d813-1a63-4f3a-b60f-491e6497f606.tmp moved successfully.
C:\WINDOWS\Temp\avg-22d11b3e-5a28-4f5e-82ff-71017f14561a.tmp moved successfully.
C:\WINDOWS\Temp\avg-22eeef67-0e1b-434f-a598-1c10decfcb19.tmp moved successfully.
C:\WINDOWS\Temp\avg-2327a023-592d-4e7d-96d0-d70eff945d57.tmp moved successfully.
C:\WINDOWS\Temp\avg-2340ac0c-214b-4733-9573-650d691bb044.tmp moved successfully.
C:\WINDOWS\Temp\avg-2355a872-ed04-451b-8fc5-97328ce4082f.tmp moved successfully.
C:\WINDOWS\Temp\avg-23828801-e7d1-454e-be88-863a2605a05c.tmp moved successfully.
C:\WINDOWS\Temp\avg-23896846-73b1-427f-9efd-256a045e8875.tmp moved successfully.
C:\WINDOWS\Temp\avg-23930307-909f-4b74-949c-c85e1bb77931.tmp moved successfully.
C:\WINDOWS\Temp\avg-23a34c39-e661-4453-a4f8-15687223a147.tmp moved successfully.
C:\WINDOWS\Temp\avg-23a9175e-6a75-4a7c-9e3f-2532f230d966.tmp moved successfully.
C:\WINDOWS\Temp\avg-23ad6c26-bf61-426e-93e9-851aec654a39.tmp moved successfully.
C:\WINDOWS\Temp\avg-23b55637-6c30-4d31-be5f-183210d98464.tmp moved successfully.
C:\WINDOWS\Temp\avg-23b6332c-a665-4539-bb45-576725aae830.tmp moved successfully.
C:\WINDOWS\Temp\avg-23c3b803-801a-4131-a5f8-ef08d7b51453.tmp moved successfully.
C:\WINDOWS\Temp\avg-23d2322e-fde4-4b24-9e02-6b2ecd91483b.tmp moved successfully.
C:\WINDOWS\Temp\avg-23df374b-a345-4107-91f8-424ff6b11644.tmp moved successfully.
C:\WINDOWS\Temp\avg-240b5864-8ec6-4a58-8a30-f15e7fbccf45.tmp moved successfully.
C:\WINDOWS\Temp\avg-2416bc38-8522-4651-bdbf-e92e8f56a601.tmp moved successfully.
C:\WINDOWS\Temp\avg-24196e78-4ba6-4734-8d51-83016d7bae4c.tmp moved successfully.
C:\WINDOWS\Temp\avg-2463b42f-b1c3-4a08-b08b-b0206310ad63.tmp moved successfully.
C:\WINDOWS\Temp\avg-246b000e-f218-4e1c-afd4-c53d32d8847c.tmp moved successfully.
C:\WINDOWS\Temp\avg-247cd647-726c-4b4f-bf84-ac2c7b85e667.tmp moved successfully.
C:\WINDOWS\Temp\avg-2485364b-e97c-4d5f-bd82-0c1c48b37018.tmp moved successfully.
C:\WINDOWS\Temp\avg-2494197b-6328-4e4c-8c0a-1b2c378e7127.tmp moved successfully.
C:\WINDOWS\Temp\avg-24a86a7a-4e76-4e06-babd-2238401c7f1f.tmp moved successfully.
C:\WINDOWS\Temp\avg-24ace416-78dd-4828-a1e6-380bbbde5f6d.tmp moved successfully.
C:\WINDOWS\Temp\avg-24cb1642-957e-451e-9fd9-282a331ed924.tmp moved successfully.
C:\WINDOWS\Temp\avg-25033561-88db-4f2a-bc54-3a5a0834cc14.tmp moved successfully.
C:\WINDOWS\Temp\avg-250a2466-ff62-4357-b1fb-5831c4374954.tmp moved successfully.
C:\WINDOWS\Temp\avg-25102123-c51c-4101-a13b-7e440b7ed04e.tmp moved successfully.
C:\WINDOWS\Temp\avg-251d764d-4d12-4103-9c76-67086b0c706e.tmp moved successfully.
C:\WINDOWS\Temp\avg-2558f265-bf5e-451b-a141-712530e43970.tmp moved successfully.
C:\WINDOWS\Temp\avg-259d3606-e453-4015-9aa7-0c78f536dc66.tmp moved successfully.
C:\WINDOWS\Temp\avg-25bb9d73-99e8-410c-a684-4e7d6bfcc718.tmp moved successfully.
C:\WINDOWS\Temp\avg-25c2333f-cb33-4c10-9412-6a46a64df524.tmp moved successfully.
C:\WINDOWS\Temp\avg-25c58707-38a5-4467-8982-893c02b21732.tmp moved successfully.
C:\WINDOWS\Temp\avg-26099667-9c21-4072-9729-092df512674a.tmp moved successfully.
C:\WINDOWS\Temp\avg-260b481c-a6f0-4c67-9bd1-bf476442ed3c.tmp moved successfully.
C:\WINDOWS\Temp\avg-2616bf5e-9a40-492e-916b-875566c9983c.tmp moved successfully.
C:\WINDOWS\Temp\avg-2619571c-181e-4b23-a6f6-aa772d62fc0a.tmp moved successfully.
C:\WINDOWS\Temp\avg-2620393b-5e9f-4c25-893f-1728ecf4be2a.tmp moved successfully.
C:\WINDOWS\Temp\avg-262f2656-78a2-4320-9095-a7344880f728.tmp moved successfully.
C:\WINDOWS\Temp\avg-26360535-4596-450e-94f7-6d52e01a7a1b.tmp moved successfully.
C:\WINDOWS\Temp\avg-26383d44-c53e-485e-a2cd-5257118dff7a.tmp moved successfully.
C:\WINDOWS\Temp\avg-26394f29-bea7-4a34-923b-ba0cfcf17455.tmp moved successfully.
C:\WINDOWS\Temp\avg-26565d37-50ef-442f-9119-a93a519cef25.tmp moved successfully.
C:\WINDOWS\Temp\avg-26685171-5e03-473f-9b71-536217b84e78.tmp moved successfully.
C:\WINDOWS\Temp\avg-266b486f-2294-4650-94fc-4c235533d366.tmp moved successfully.
C:\WINDOWS\Temp\avg-268ea60c-812a-4061-9097-79069fd0fc27.tmp moved successfully.
C:\WINDOWS\Temp\avg-26a0e50e-f10e-4c02-9388-7f44f3784665.tmp moved successfully.
C:\WINDOWS\Temp\avg-26ef8320-613f-4f7c-ab78-6859ce4bd05c.tmp moved successfully.
C:\WINDOWS\Temp\avg-2715543c-ac4e-451b-a932-9e1dcd9bdf17.tmp moved successfully.
C:\WINDOWS\Temp\avg-27185e39-ba9d-495b-9f94-1905ec2b245b.tmp moved successfully.
C:\WINDOWS\Temp\avg-272b3c6f-7594-454c-9889-397412a16248.tmp moved successfully.
C:\WINDOWS\Temp\avg-27329d33-fa9c-4f17-848c-44110b35df57.tmp moved successfully.
C:\WINDOWS\Temp\avg-274fe905-071e-4c05-ade3-0672cb5f8e32.tmp moved successfully.
C:\WINDOWS\Temp\avg-27571f78-f069-4d61-bc6e-88285ea7bb2e.tmp moved successfully.
C:\WINDOWS\Temp\avg-278e1f50-b6ab-445f-81f0-8b4cb0fe9d46.tmp moved successfully.
C:\WINDOWS\Temp\avg-2792916e-a549-435e-9247-9e77df20635d.tmp moved successfully.
C:\WINDOWS\Temp\avg-2796940d-05ab-4106-a7b7-2d0c4a672269.tmp moved successfully.
C:\WINDOWS\Temp\avg-27971c65-3537-4959-b65a-af1b0cb43a47.tmp moved successfully.
C:\WINDOWS\Temp\avg-279a9642-fe71-441c-96f9-661fbe31aa72.tmp moved successfully.
C:\WINDOWS\Temp\avg-27b6f27f-aab9-4d10-8d60-88144ff74a2c.tmp moved successfully.
C:\WINDOWS\Temp\avg-27c80571-dbb4-4828-86bc-266d555f3840.tmp moved successfully.
C:\WINDOWS\Temp\avg-27f7f461-2091-4412-92b5-3473242bf85c.tmp moved successfully.
C:\WINDOWS\Temp\avg-27fda376-aac1-4f1b-804f-ec580db8091f.tmp moved successfully.
C:\WINDOWS\Temp\avg-28232818-e563-493f-9c2d-02159e50df08.tmp moved successfully.
C:\WINDOWS\Temp\avg-28258568-fa29-4603-b1c5-a32ea4f89b5a.tmp moved successfully.
C:\WINDOWS\Temp\avg-28367576-71d8-4222-b670-7e1c2b643427.tmp moved successfully.
C:\WINDOWS\Temp\avg-284e5c6d-3072-4a13-9591-4a667a642d75.tmp moved successfully.
C:\WINDOWS\Temp\avg-287e8153-6d12-4c3f-b159-1918a8f4715d.tmp moved successfully.
C:\WINDOWS\Temp\avg-289f6824-f023-4f77-acce-646fe6914b40.tmp moved successfully.
C:\WINDOWS\Temp\avg-28bc4c65-3495-4067-9508-1b458737ee44.tmp moved successfully.
C:\WINDOWS\Temp\avg-28dd4011-57f6-483a-a71c-a121ba34074c.tmp moved successfully.
C:\WINDOWS\Temp\avg-2906580a-fb5c-434b-bbba-3537375f8624.tmp moved successfully.
C:\WINDOWS\Temp\avg-290b6f3c-7070-434c-aa9e-46234b357904.tmp moved successfully.
C:\WINDOWS\Temp\avg-292bd71d-0624-4330-92e5-257373c39c21.tmp moved successfully.
C:\WINDOWS\Temp\avg-29379000-9ad3-4105-a01a-8b7b33200456.tmp moved successfully.
C:\WINDOWS\Temp\avg-294c7176-4ad4-4624-97c5-dc5eadd42461.tmp moved successfully.
C:\WINDOWS\Temp\avg-29540c58-e2c4-405f-aa92-da6c3d0cd73e.tmp moved successfully.
C:\WINDOWS\Temp\avg-2954f26e-351d-483b-bd24-8c1af7cf5d50.tmp moved successfully.
C:\WINDOWS\Temp\avg-29666711-2123-4f45-a339-bb3652093146.tmp moved successfully.
C:\WINDOWS\Temp\avg-296f7971-6d54-4201-8d46-90394eb5e355.tmp moved successfully.
C:\WINDOWS\Temp\avg-29868d78-baba-436c-acbd-6f3e2132943d.tmp moved successfully.
C:\WINDOWS\Temp\avg-2986cf0f-df63-4066-9bca-cc739cb4aa29.tmp moved successfully.
C:\WINDOWS\Temp\avg-29910e29-c804-4c5a-8cc1-d962c2125730.tmp moved successfully.
C:\WINDOWS\Temp\avg-299d3d79-9b77-471e-ba19-8d064b47820f.tmp moved successfully.
C:\WINDOWS\Temp\avg-29a00b2e-22fd-4772-a3c3-1f37da9f9c55.tmp moved successfully.
C:\WINDOWS\Temp\avg-29ae6412-ac41-4429-852a-14521e49ae56.tmp moved successfully.
C:\WINDOWS\Temp\avg-29b8464b-d316-4f55-90f7-f03e15e85b6b.tmp moved successfully.
C:\WINDOWS\Temp\avg-29bad12e-15b7-4716-9ce8-851d7ac5ac79.tmp moved successfully.
C:\WINDOWS\Temp\avg-29bced2d-6a7d-485d-8ae7-ae4360e06059.tmp moved successfully.
C:\WINDOWS\Temp\avg-29d61723-cf19-471f-8d74-06468232cf6e.tmp moved successfully.
C:\WINDOWS\Temp\avg-29d85f1b-9131-4f72-ad8b-50526beb6423.tmp moved successfully.
C:\WINDOWS\Temp\avg-29ebf064-89ca-416a-933e-8403f47c8e70.tmp moved successfully.
C:\WINDOWS\Temp\avg-2a13f870-795f-4a23-92ec-f63d530fa47a.tmp moved successfully.
C:\WINDOWS\Temp\avg-2a1cc21b-582d-4951-b2c4-9023e9dc3527.tmp moved successfully.
C:\WINDOWS\Temp\avg-2a7cc95a-2882-4a38-abd9-214565103d6f.tmp moved successfully.
C:\WINDOWS\Temp\avg-2a901944-c29c-4611-b1e4-415e595a3d34.tmp moved successfully.
C:\WINDOWS\Temp\avg-2a94c97d-e786-4232-9f24-c92780f70040.tmp moved successfully.
C:\WINDOWS\Temp\avg-2aa38f42-ea6a-450b-aa10-101680928760.tmp moved successfully.
C:\WINDOWS\Temp\avg-2aadab2d-d2ed-4c3a-9bec-2f73b7d9d478.tmp moved successfully.
C:\WINDOWS\Temp\avg-2ad38638-eb1f-4815-b59e-bb093bdbfd57.tmp moved successfully.
C:\WINDOWS\Temp\avg-2af44005-b0ca-4354-aa39-ca715fc26c52.tmp moved successfully.
C:\WINDOWS\Temp\avg-2b06d40c-7380-433d-bc7a-cb2c7a031e0e.tmp moved successfully.
C:\WINDOWS\Temp\avg-2b0f6e6d-8c9d-4b61-8fe9-c062ce374e06.tmp moved successfully.
C:\WINDOWS\Temp\avg-2b42b361-2872-4a3c-8840-9918abb0c740.tmp moved successfully.
C:\WINDOWS\Temp\avg-2b509d0c-8b30-4c12-8cd1-7c343d526f50.tmp moved successfully.
C:\WINDOWS\Temp\avg-2b51f879-fed5-4654-8768-226578237673.tmp moved successfully.
C:\WINDOWS\Temp\avg-2b762337-fb03-432a-a6f9-821af653943f.tmp moved successfully.
C:\WINDOWS\Temp\avg-2b7c0476-f70d-453e-ae41-c21030972c15.tmp moved successfully.
C:\WINDOWS\Temp\avg-2b80763d-37f6-4c3c-84a5-7241cc3c8804.tmp moved successfully.
C:\WINDOWS\Temp\avg-2b85872f-27a5-4a78-acca-977a3de0305f.tmp moved successfully.
C:\WINDOWS\Temp\avg-2b8a7667-a182-4a71-b5d0-0f566812887a.tmp moved successfully.
C:\WINDOWS\Temp\avg-2b9a473b-bb8e-4d72-a024-6c589f273637.tmp moved successfully.
C:\WINDOWS\Temp\avg-2ba6b17f-7a2d-482c-8b46-0967499fe267.tmp moved successfully.
C:\WINDOWS\Temp\avg-2ba7e802-24fb-4152-96c2-8a2ce1d7dc5e.tmp moved successfully.
C:\WINDOWS\Temp\avg-2bb69165-487c-4227-8d4a-7860451d4f11.tmp moved successfully.
C:\WINDOWS\Temp\avg-2bc43831-26d8-4b25-a057-38039731dd02.tmp moved successfully.
C:\WINDOWS\Temp\avg-2bd5766b-b302-4330-b3e9-fc546eb30f7c.tmp moved successfully.
C:\WINDOWS\Temp\avg-2be64828-3f76-4618-b7c9-304534014433.tmp moved successfully.
C:\WINDOWS\Temp\avg-2beb2e4f-62b2-4a05-9091-bd12a9de6734.tmp moved successfully.
C:\WINDOWS\Temp\avg-2bebe740-f2be-431b-bd88-263b40c26107.tmp moved successfully.
C:\WINDOWS\Temp\avg-2bee336e-dc52-4b0d-9cdd-0e3f688d0d64.tmp moved successfully.
C:\WINDOWS\Temp\avg-2bf9245b-7803-4978-bd30-dc192b47734c.tmp moved successfully.
C:\WINDOWS\Temp\avg-2c0ed863-f4c0-405a-ab4a-c86ad3ab0c6d.tmp moved successfully.
C:\WINDOWS\Temp\avg-2c115f27-442d-4703-84a7-8e586b70e559.tmp moved successfully.
C:\WINDOWS\Temp\avg-2c3e3850-fced-4755-90aa-0634a2a99b2f.tmp moved successfully.
C:\WINDOWS\Temp\avg-2cc68825-74ef-4b11-801a-f67848406b2b.tmp moved successfully.
C:\WINDOWS\Temp\avg-2cd14f57-3b6b-4f3d-8818-52230a8c002e.tmp moved successfully.
C:\WINDOWS\Temp\avg-2cd34302-5c87-4b00-a750-f549fb547c34.tmp moved successfully.
C:\WINDOWS\Temp\avg-2cff9965-f47c-4245-b5f7-a7145eb00d3f.tmp moved successfully.
C:\WINDOWS\Temp\avg-2d184177-556f-4b1d-b4bf-1101c3aac575.tmp moved successfully.
C:\WINDOWS\Temp\avg-2d384f70-2c7d-4717-9e89-ab19f1d0131e.tmp moved successfully.
C:\WINDOWS\Temp\avg-2d4a432b-3715-4d61-8f49-1e78be506f53.tmp moved successfully.
C:\WINDOWS\Temp\avg-2d617b3f-41ed-4548-81f6-386732838956.tmp moved successfully.
C:\WINDOWS\Temp\avg-2d7e080d-fd74-407a-88d2-9e509c3bd75e.tmp moved successfully.
C:\WINDOWS\Temp\avg-2d8d1f14-ad9a-4d43-807a-8727dcf22d09.tmp moved successfully.
C:\WINDOWS\Temp\avg-2dabc45c-59d7-4d76-858d-c73002b3b856.tmp moved successfully.
C:\WINDOWS\Temp\avg-2dc38802-73b4-4702-ba95-b81b88f01c43.tmp moved successfully.
C:\WINDOWS\Temp\avg-2dcddd69-9950-4476-8e2a-2951e3467d58.tmp moved successfully.
C:\WINDOWS\Temp\avg-2dcfb96f-c7e4-406b-a858-301c55716e3b.tmp moved successfully.
C:\WINDOWS\Temp\avg-2dfa575e-aabd-4176-9ccd-ab560e698a01.tmp moved successfully.
C:\WINDOWS\Temp\avg-2e165426-f682-424e-9e1e-f3662dbcf444.tmp moved successfully.
C:\WINDOWS\Temp\avg-2e19ee1b-ea52-464d-811c-436cd0ece149.tmp moved successfully.
C:\WINDOWS\Temp\avg-2e3d7a7b-73f3-4b1a-8f6d-8f2358469c5f.tmp moved successfully.
C:\WINDOWS\Temp\avg-2e435546-15cc-4165-945d-35629f3c631f.tmp moved successfully.
C:\WINDOWS\Temp\avg-2e6b2f43-4954-4d04-920b-ab7ba1279073.tmp moved successfully.
C:\WINDOWS\Temp\avg-2e8b8939-713a-4c0d-ab65-550afd2a8844.tmp moved successfully.
C:\WINDOWS\Temp\avg-2e9c4634-7423-4a56-8b94-d852999c7842.tmp moved successfully.

Re: ISP odpojeno - generuji spam

Napsal: 18 úno 2011 16:49
od hu.go
MI.exe neznám, a ani jsem jej už na flešce nenašel...

zde log :


All processes killed
========== OTL ==========
No active process named explorer.exe was found!
ADS C:\ProgramData\Temp:0B4227B4 deleted successfully.
Registry value HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\RunOnce\\mctadmin deleted successfully.
Registry value HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\RunOnce\\mctadmin deleted successfully.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{6ace6024-08a8-11e0-bac2-005056c00008}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6ace6024-08a8-11e0-bac2-005056c00008}\ not found.
File G:\MI.exe not found.
========== FILES ==========
File\Folder C:\WINDOWS\system32\*.tmp.dll not found.
File\Folder C:\WINDOWS\system32\SET*.tmp not found.
C:\WINDOWS\41EBC322660F4D16A0DF53147210CBDB.TMP folder moved successfully.
C:\WINDOWS\8A809006C25A4A3A9DAB94659BCDB107.TMP folder moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAP9E41.tmp folder moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Temp\ZAPD4EA.tmp folder moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_64\Temp\ZAP2EEC.tmp folder moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_64\Temp\ZAP9F5C.tmp folder moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_64\Temp\ZAPC0EE.tmp folder moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_64\Temp\ZAPE291.tmp folder moved successfully.
C:\WINDOWS\assembly\NativeImages_v2.0.50727_64\Temp\ZAPE56E.tmp folder moved successfully.
C:\WINDOWS\Installer\MSI1EF6.tmp moved successfully.
C:\WINDOWS\Installer\MSI35E8.tmp moved successfully.
C:\WINDOWS\Installer\MSI6405.tmp moved successfully.
C:\WINDOWS\Installer\MSI94B0.tmp moved successfully.
C:\WINDOWS\Installer\MSIBBAC.tmp moved successfully.
C:\WINDOWS\SoftwareDistribution\Download\4519a4a27270ad91446fe02bf0b286e5\$dpx$.tmp folder moved successfully.
C:\WINDOWS\SoftwareDistribution\Download\87d9089bcf15ca4625c9ed0da4cd4ab4\BIT51A7.tmp moved successfully.
C:\WINDOWS\SoftwareDistribution\Download\ed6f47b6e3d44d71fb9f7b7a21f68c0e\BIT388.tmp moved successfully.
C:\WINDOWS\Temp\avg-00011558-e80b-4433-acb7-237a4b0d6e74.tmp moved successfully.
C:\WINDOWS\Temp\avg-0010810c-2dd4-4e50-9d40-b535f051c737.tmp moved successfully.
C:\WINDOWS\Temp\avg-001cb553-2de1-4502-ba7e-f05f9e3e1403.tmp moved successfully.
C:\WINDOWS\Temp\avg-005fd031-9fa1-4806-a1e5-ef2f3de0c942.tmp moved successfully.
C:\WINDOWS\Temp\avg-006b2325-9765-481c-a72c-945172caa83e.tmp moved successfully.
C:\WINDOWS\Temp\avg-00710310-a17e-4801-8d34-52459c8e1c3d.tmp moved successfully.
C:\WINDOWS\Temp\avg-0079b706-0bd4-4a01-82c2-b3235db2a94d.tmp moved successfully.
C:\WINDOWS\Temp\avg-0084a717-7ee1-4354-9b03-3460509ca27e.tmp moved successfully.
C:\WINDOWS\Temp\avg-0089f33d-dd9e-4c20-927d-67429a7b497b.tmp moved successfully.
C:\WINDOWS\Temp\avg-0092ec42-9440-4f65-9690-d74cc3dc3a66.tmp moved successfully.
C:\WINDOWS\Temp\avg-00b80839-e993-4c0a-ae04-c01c1a8e5d7d.tmp moved successfully.
C:\WINDOWS\Temp\avg-00de8149-8626-420c-843b-da7be2610f63.tmp moved successfully.
C:\WINDOWS\Temp\avg-00e77177-1cc1-4202-90fd-f7607d08ae32.tmp moved successfully.
C:\WINDOWS\Temp\avg-00f73451-bb29-4632-9a24-217f8365e813.tmp moved successfully.
C:\WINDOWS\Temp\avg-00fa0f27-62cc-4129-a987-296701b12335.tmp moved successfully.
C:\WINDOWS\Temp\avg-0114f960-5f93-4241-b691-1e672f5b4560.tmp moved successfully.
C:\WINDOWS\Temp\avg-013f0966-9f7c-434f-926e-107621fac94f.tmp moved successfully.
C:\WINDOWS\Temp\avg-01681c61-ba0d-4a00-aae5-d53bb4ff2079.tmp moved successfully.
C:\WINDOWS\Temp\avg-0174cf72-47a2-4179-b76f-d1682572e756.tmp moved successfully.
C:\WINDOWS\Temp\avg-0184f303-3b93-4922-8c99-52544c3a7615.tmp moved successfully.
C:\WINDOWS\Temp\avg-018f4361-07ba-424b-93a1-7e2d2438346f.tmp moved successfully.
C:\WINDOWS\Temp\avg-0191d04c-3bff-476c-8cb3-4c55d5dd5f36.tmp moved successfully.
C:\WINDOWS\Temp\avg-0194802f-399d-492e-a267-b65bfb868326.tmp moved successfully.
C:\WINDOWS\Temp\avg-01988b3c-c693-4d0c-ad95-715a61bb782c.tmp moved successfully.
C:\WINDOWS\Temp\avg-01999e61-665c-4d0c-8457-8d298739cf2b.tmp moved successfully.
C:\WINDOWS\Temp\avg-019c1524-e444-4121-82bb-0370774fce38.tmp moved successfully.
C:\WINDOWS\Temp\avg-01ba905a-66eb-4905-a56e-2b1ff77b7c27.tmp moved successfully.
C:\WINDOWS\Temp\avg-01dd8b45-b19e-4a1a-82dc-3032d490786c.tmp moved successfully.
C:\WINDOWS\Temp\avg-01ed0748-6634-4164-8a23-db09ca6d935f.tmp moved successfully.
C:\WINDOWS\Temp\avg-01f0056e-a088-4040-82da-ae4c78c7ba20.tmp moved successfully.
C:\WINDOWS\Temp\avg-021d8c23-2b39-4958-9cbb-6803ddba547d.tmp moved successfully.
C:\WINDOWS\Temp\avg-022fea61-970c-452c-9a5d-5865be514e21.tmp moved successfully.
C:\WINDOWS\Temp\avg-02455116-8c79-4a3c-8d20-c31da00ec836.tmp moved successfully.
C:\WINDOWS\Temp\avg-02585822-a7e6-4808-8122-ef3f636d2734.tmp moved successfully.
C:\WINDOWS\Temp\avg-0259ea1c-18cd-4002-84cc-753ac6df9d4e.tmp moved successfully.
C:\WINDOWS\Temp\avg-02640353-de7f-4f54-9d5a-963ec82a923b.tmp moved successfully.
C:\WINDOWS\Temp\avg-0293a044-71f1-493f-a203-107eda7e2741.tmp moved successfully.
C:\WINDOWS\Temp\avg-02995e1f-7f08-4451-b9fc-612c46e6922e.tmp moved successfully.
C:\WINDOWS\Temp\avg-02b4c343-e44a-484b-8e69-7b4d497c4a0f.tmp moved successfully.
C:\WINDOWS\Temp\avg-02bf5f07-1c78-416c-9854-dd6bda7b0f1a.tmp moved successfully.
C:\WINDOWS\Temp\avg-02e6923b-49e0-4f3d-a709-7e6493e66a3f.tmp moved successfully.
C:\WINDOWS\Temp\avg-02f3e378-0be9-477d-8d4f-c57c87fb4c4d.tmp moved successfully.
C:\WINDOWS\Temp\avg-02f9b00e-a5b6-4d37-a394-ed2fb6b0640d.tmp moved successfully.
C:\WINDOWS\Temp\avg-030dd869-f0b9-4305-9238-3f244b03170a.tmp moved successfully.
C:\WINDOWS\Temp\avg-0312ec6f-25cd-4d11-863c-6518f785327a.tmp moved successfully.
C:\WINDOWS\Temp\avg-0317a513-167d-4836-8317-184e43299016.tmp moved successfully.
C:\WINDOWS\Temp\avg-0323bb54-c038-470e-901d-ee151e80cb7d.tmp moved successfully.
C:\WINDOWS\Temp\avg-03310c16-c764-4156-905a-d90085ce472f.tmp moved successfully.
C:\WINDOWS\Temp\avg-0336ec0e-69d3-465c-97ef-e63af79e647b.tmp moved successfully.
C:\WINDOWS\Temp\avg-033bfa49-b462-4527-8364-0c1b20804372.tmp moved successfully.
C:\WINDOWS\Temp\avg-03451e04-dd98-4d41-8304-2464e40a2f29.tmp moved successfully.
C:\WINDOWS\Temp\avg-0364c778-4c8d-4218-a981-1865f37db81d.tmp moved successfully.
C:\WINDOWS\Temp\avg-036bb826-e578-4c57-95e6-77777bd69966.tmp moved successfully.
C:\WINDOWS\Temp\avg-0378f50e-4e8b-471e-8bfa-630fe7e7a614.tmp moved successfully.
C:\WINDOWS\Temp\avg-0397d54e-613c-4e0f-bb54-7a06f551b33e.tmp moved successfully.
C:\WINDOWS\Temp\avg-03ac6576-c36a-4050-b343-694822490f7f.tmp moved successfully.
C:\WINDOWS\Temp\avg-03c8d605-dbc4-4c10-b1bb-3b1aaa86bb79.tmp moved successfully.
C:\WINDOWS\Temp\avg-03d4ee68-4dbd-444b-ad35-5057404b874e.tmp moved successfully.
C:\WINDOWS\Temp\avg-03d5d825-eded-4643-b888-9b60ca46945f.tmp moved successfully.
C:\WINDOWS\Temp\avg-03f11275-46f0-4923-875e-2c6829ac7424.tmp moved successfully.
C:\WINDOWS\Temp\avg-03f4014d-b9ef-4830-ba3b-d55b13918b43.tmp moved successfully.
C:\WINDOWS\Temp\avg-03fd3764-b79d-4a1a-91f4-a5253d508821.tmp moved successfully.
C:\WINDOWS\Temp\avg-0414a54b-48a0-4b5b-908b-6d7891b13d73.tmp moved successfully.
C:\WINDOWS\Temp\avg-04215d0d-5565-4a05-a298-f54013c7e83d.tmp moved successfully.
C:\WINDOWS\Temp\avg-043e6344-f998-4a5c-902b-bb00841f8f1d.tmp moved successfully.
C:\WINDOWS\Temp\avg-044f2c19-9328-431e-8c27-233f1aae101e.tmp moved successfully.
C:\WINDOWS\Temp\avg-04731362-a83f-416c-b372-c630f63a4868.tmp moved successfully.
C:\WINDOWS\Temp\avg-047f9064-9e82-4d0b-9cad-f15434e7f716.tmp moved successfully.
C:\WINDOWS\Temp\avg-04969d20-5e04-4908-87fe-a94f031e2766.tmp moved successfully.
C:\WINDOWS\Temp\avg-04974d0c-fa61-407b-8563-7123ff1ef758.tmp moved successfully.
C:\WINDOWS\Temp\avg-04ba3a06-a237-460a-aecc-f53bdca6e40c.tmp moved successfully.
C:\WINDOWS\Temp\avg-04cdb367-0fb9-4525-ae81-bb7cf143110b.tmp moved successfully.
C:\WINDOWS\Temp\avg-04de8619-0bdd-471e-85bd-d345a5619152.tmp moved successfully.
C:\WINDOWS\Temp\avg-04f61041-afe8-493a-b841-e94d285c7771.tmp moved successfully.
C:\WINDOWS\Temp\avg-04fa777f-0b69-4910-a9de-b84cc8e2626d.tmp moved successfully.
C:\WINDOWS\Temp\avg-04fc2b2a-9a82-4554-abce-c040bc133254.tmp moved successfully.
C:\WINDOWS\Temp\avg-04fe006b-9d79-430f-9803-566f60cf6925.tmp moved successfully.
C:\WINDOWS\Temp\avg-050f433c-de55-4338-ad41-f5187b6e741a.tmp moved successfully.
C:\WINDOWS\Temp\avg-0516ae5c-f749-495a-b0dc-7b3651de6d28.tmp moved successfully.
C:\WINDOWS\Temp\avg-051ddc30-8c27-4d2a-a95c-d20f20c73907.tmp moved successfully.
C:\WINDOWS\Temp\avg-0525e45e-d29c-4214-a57e-a21d8b69d04d.tmp moved successfully.
C:\WINDOWS\Temp\avg-053cb21b-2cb5-420b-a5f5-a330c841cc21.tmp moved successfully.
C:\WINDOWS\Temp\avg-053d0d15-2c7d-4175-8e2f-da7f853ec124.tmp moved successfully.
C:\WINDOWS\Temp\avg-054e9d29-0c4c-4320-afd5-6535d0afbd28.tmp moved successfully.
C:\WINDOWS\Temp\avg-05593163-9f56-4d7a-958a-5330e08dcd15.tmp moved successfully.
C:\WINDOWS\Temp\avg-05605d38-ddb6-4628-968c-5617897da200.tmp moved successfully.
C:\WINDOWS\Temp\avg-0569416a-87f9-491f-b090-d351a27d0f5c.tmp moved successfully.
C:\WINDOWS\Temp\avg-05973157-ef23-4d3c-b863-bc7b4a77ac6d.tmp moved successfully.
C:\WINDOWS\Temp\avg-059e2c12-661b-4979-b085-e501107d006d.tmp moved successfully.
C:\WINDOWS\Temp\avg-05ae8f53-b3fa-4e0e-ab5a-56004513ca1a.tmp moved successfully.
C:\WINDOWS\Temp\avg-05b3560e-d19f-4e08-8cd2-52226e97ab09.tmp moved successfully.
C:\WINDOWS\Temp\avg-05c4356d-dd04-4f47-96d6-cf6bfbbc717e.tmp moved successfully.
C:\WINDOWS\Temp\avg-05db2c58-a876-4f3c-9f93-1e659b225f74.tmp moved successfully.
C:\WINDOWS\Temp\avg-061cc14e-6fa6-432f-af7d-084555e58c7b.tmp moved successfully.
C:\WINDOWS\Temp\avg-062b221b-7bdd-4b2f-acf0-97785b202e4b.tmp moved successfully.
C:\WINDOWS\Temp\avg-062b253d-e421-4a51-9b0f-1a4705495b19.tmp moved successfully.
C:\WINDOWS\Temp\avg-0649f543-5d47-4105-99e3-7528f2d1134f.tmp moved successfully.
C:\WINDOWS\Temp\avg-06552543-6c5e-4701-bb14-fe36e2756576.tmp moved successfully.
C:\WINDOWS\Temp\avg-0677d346-931e-4431-a0b6-772e6dcedd4c.tmp moved successfully.
C:\WINDOWS\Temp\avg-069a0854-9fed-433b-9a46-510c31370b57.tmp moved successfully.
C:\WINDOWS\Temp\avg-069ad316-a212-4f65-a5a4-9b01b493ed76.tmp moved successfully.
C:\WINDOWS\Temp\avg-06a1504f-41c9-4d52-9654-a90e7cb4e65b.tmp moved successfully.
C:\WINDOWS\Temp\avg-06a2c011-d743-4f12-8711-9e3684daa666.tmp moved successfully.
C:\WINDOWS\Temp\avg-06b5480c-5de1-4f3e-864e-c16a2212fb34.tmp moved successfully.
C:\WINDOWS\Temp\avg-06b8f17b-600f-4a62-bfcf-314e5359a468.tmp moved successfully.
C:\WINDOWS\Temp\avg-06defb0f-80be-4861-a6b0-fa262a685d1d.tmp moved successfully.
C:\WINDOWS\Temp\avg-07700571-64ad-4819-8848-75345fbf0c1e.tmp moved successfully.
C:\WINDOWS\Temp\avg-078d0705-326b-4f2f-8b16-c81552db366f.tmp moved successfully.
C:\WINDOWS\Temp\avg-07b51375-fe18-482a-a55c-db714937c27f.tmp moved successfully.
C:\WINDOWS\Temp\avg-07db1e4f-1dae-483f-9e2c-6b7892ea942c.tmp moved successfully.
C:\WINDOWS\Temp\avg-07e72c64-b493-4503-9a37-b72a6c430e45.tmp moved successfully.
C:\WINDOWS\Temp\avg-0800f207-5a4e-412e-952f-1d2e841d5f66.tmp moved successfully.
C:\WINDOWS\Temp\avg-0802d77f-b326-4813-9856-eb234a4f6f24.tmp moved successfully.
C:\WINDOWS\Temp\avg-08072555-9f50-4c5e-a143-6b7056373058.tmp moved successfully.
C:\WINDOWS\Temp\avg-081ac04e-ccd0-4779-91f1-ac512b468066.tmp moved successfully.
C:\WINDOWS\Temp\avg-0822230d-cb7e-4d5b-adfd-0b43c12d0e17.tmp moved successfully.
C:\WINDOWS\Temp\avg-0829e831-c1d2-446e-9af5-082f642aa52e.tmp moved successfully.
C:\WINDOWS\Temp\avg-082c091a-362c-4977-a42c-866ed34a6727.tmp moved successfully.
C:\WINDOWS\Temp\avg-083a574b-1d6c-481e-8e9e-616d0f942c6b.tmp moved successfully.
C:\WINDOWS\Temp\avg-084a3d06-3a32-4477-be57-865ceb53eb12.tmp moved successfully.
C:\WINDOWS\Temp\avg-08515c4a-3e84-4f48-8d3a-9d6320af2075.tmp moved successfully.
C:\WINDOWS\Temp\avg-08adaf7b-8092-4871-82b6-ba00b8bdf239.tmp moved successfully.
C:\WINDOWS\Temp\avg-08bc0f28-72b8-4c08-a63f-a31090b56d47.tmp moved successfully.
C:\WINDOWS\Temp\avg-08bd2814-1f1d-4460-b094-5b18ac2eba03.tmp moved successfully.
C:\WINDOWS\Temp\avg-08bf8304-0040-492c-9a2d-1d029f8e9c31.tmp moved successfully.
C:\WINDOWS\Temp\avg-08d0a502-a5f7-4844-9ebc-0d72a6c61862.tmp moved successfully.
C:\WINDOWS\Temp\avg-08d5ba13-911e-413f-b857-024dd423025e.tmp moved successfully.
C:\WINDOWS\Temp\avg-08e0d33f-87ab-4c57-b20e-a922a51fd816.tmp moved successfully.
C:\WINDOWS\Temp\avg-0906c250-7562-4922-a6a5-d87d769bc25d.tmp moved successfully.
C:\WINDOWS\Temp\avg-0931b056-8e02-4b35-8301-be27726e875d.tmp moved successfully.
C:\WINDOWS\Temp\avg-09595069-dac6-4b08-8b2a-eb609b6fee39.tmp moved successfully.
C:\WINDOWS\Temp\avg-095fa106-2320-4f4d-9d2b-673b1646bc1e.tmp moved successfully.
C:\WINDOWS\Temp\avg-09690801-b4e1-4e0c-b102-235767396f54.tmp moved successfully.
C:\WINDOWS\Temp\avg-0969190a-da74-4908-b6b7-de526b9eca78.tmp moved successfully.
C:\WINDOWS\Temp\avg-096dc67b-595c-4d2e-a439-0379087caf10.tmp moved successfully.
C:\WINDOWS\Temp\avg-0975eb71-a9e6-4808-b192-1f57999e8b01.tmp moved successfully.
C:\WINDOWS\Temp\avg-0987ec72-368f-4679-9154-0f198534c119.tmp moved successfully.
C:\WINDOWS\Temp\avg-098e0267-fe36-4f1e-bed2-c40b25e01b5c.tmp moved successfully.
C:\WINDOWS\Temp\avg-09a0a962-28ed-4336-98b8-d31cb33fb444.tmp moved successfully.
C:\WINDOWS\Temp\avg-09aac80e-db21-4473-a416-334b87d4a66e.tmp moved successfully.
C:\WINDOWS\Temp\avg-09b1d171-33cf-481e-b34a-a0754724991b.tmp moved successfully.
C:\WINDOWS\Temp\avg-09d2374b-028d-4e65-a245-b5376a71a01d.tmp moved successfully.
C:\WINDOWS\Temp\avg-09fee407-e548-464a-b19d-667444182f2f.tmp moved successfully.
C:\WINDOWS\Temp\avg-0a1b8553-1ccf-4565-b03e-da069290b77d.tmp moved successfully.
C:\WINDOWS\Temp\avg-0a3a2a67-6d02-4507-8347-3b61c2098723.tmp moved successfully.
C:\WINDOWS\Temp\avg-0a520b27-01b2-493f-bec8-1d7bcb73b351.tmp moved successfully.
C:\WINDOWS\Temp\avg-0a59615e-d2c4-400f-b8a4-5b730d65907b.tmp moved successfully.
C:\WINDOWS\Temp\avg-0a727545-dd2d-447f-a1de-672a5de30d29.tmp moved successfully.
C:\WINDOWS\Temp\avg-0a7d2462-d8d8-4f5f-9cf2-293d0deb876e.tmp moved successfully.
C:\WINDOWS\Temp\avg-0a91ad65-bf19-4c20-8230-ea0d70ea496b.tmp moved successfully.
C:\WINDOWS\Temp\avg-0aad1d29-0042-4018-98f8-5b51792d625f.tmp moved successfully.
C:\WINDOWS\Temp\avg-0abdf035-2f5a-4455-9ed1-d66987bd9839.tmp moved successfully.
C:\WINDOWS\Temp\avg-0ac3a03d-4430-4604-b0be-957fd5f3f716.tmp moved successfully.
C:\WINDOWS\Temp\avg-0ac6e046-86f6-4f46-b071-7a2f2b048d1f.tmp moved successfully.
C:\WINDOWS\Temp\avg-0ae1235c-0753-433e-8c40-555604bec868.tmp moved successfully.
C:\WINDOWS\Temp\avg-0ae56815-0b32-4b75-89da-a6293372ab4a.tmp moved successfully.
C:\WINDOWS\Temp\avg-0af7eb0d-60a1-4921-9760-6005cc798334.tmp moved successfully.
C:\WINDOWS\Temp\avg-0b034629-0972-4b17-b96a-5611ac15d024.tmp moved successfully.
C:\WINDOWS\Temp\avg-0b1ab077-e3f6-402b-9c49-d36d57ec0850.tmp moved successfully.
C:\WINDOWS\Temp\avg-0b470a78-222f-414b-88fb-fc452a0a9363.tmp moved successfully.
C:\WINDOWS\Temp\avg-0b61c936-b1ad-4123-bb07-7171629cc340.tmp moved successfully.
C:\WINDOWS\Temp\avg-0b68a90b-e6fe-4d43-8c3a-a064e5c67954.tmp moved successfully.
C:\WINDOWS\Temp\avg-0b70ce6d-2b55-442a-b640-1a62620d5f7c.tmp moved successfully.
C:\WINDOWS\Temp\avg-0b816539-52fc-4c1d-bd69-97118ac37337.tmp moved successfully.
C:\WINDOWS\Temp\avg-0ba62a70-f809-4845-b378-5235794e8648.tmp moved successfully.
C:\WINDOWS\Temp\avg-0bd3752b-1d4c-4c23-917c-074404d04a1d.tmp moved successfully.
C:\WINDOWS\Temp\avg-0bd42c32-b6a3-4a4e-8550-900c161de215.tmp moved successfully.
C:\WINDOWS\Temp\avg-0bff255f-7f9f-4e6d-833d-414624130e60.tmp moved successfully.
C:\WINDOWS\Temp\avg-0c007a49-cf8d-4a02-b00e-aa55b127db10.tmp moved successfully.
C:\WINDOWS\Temp\avg-0c05b731-2391-441e-908a-9c7f3e5d2101.tmp moved successfully.
C:\WINDOWS\Temp\avg-0c144b31-3bdf-4d3b-9405-014c66406815.tmp moved successfully.
C:\WINDOWS\Temp\avg-0c14c91e-5030-4056-aefe-cf2c196c4022.tmp moved successfully.
C:\WINDOWS\Temp\avg-0c242e65-8d6a-4a4e-92cd-755df9ba7e05.tmp moved successfully.
C:\WINDOWS\Temp\avg-0c2bfe26-4d3a-403c-8509-171ba341c971.tmp moved successfully.
C:\WINDOWS\Temp\avg-0c35d77c-6762-4c00-84d6-1e3ed21e7f1f.tmp moved successfully.
C:\WINDOWS\Temp\avg-0c396a6f-2cd4-4248-89b7-942107946364.tmp moved successfully.
C:\WINDOWS\Temp\avg-0c698310-5668-4138-82c4-e54ee2c14b6e.tmp moved successfully.
C:\WINDOWS\Temp\avg-0c8a000e-825a-4d3a-8562-8076afe8de58.tmp moved successfully.
C:\WINDOWS\Temp\avg-0c8cd46c-045c-436e-a13b-ad5387644754.tmp moved successfully.
C:\WINDOWS\Temp\avg-0c9e1446-6e3f-4558-b0f2-cf199db52965.tmp moved successfully.
C:\WINDOWS\Temp\avg-0ca78525-6078-443d-9d6f-5b37ffdaf071.tmp moved successfully.
C:\WINDOWS\Temp\avg-0cc2b00c-1685-4e46-bd33-085ee4f12437.tmp moved successfully.
C:\WINDOWS\Temp\avg-0cdde510-7bc5-4712-a86f-fa40337d024c.tmp moved successfully.
C:\WINDOWS\Temp\avg-0ce3751f-e5a7-4e44-a964-537190569866.tmp moved successfully.
C:\WINDOWS\Temp\avg-0ce91142-aece-4779-b467-fe0dfa7d2032.tmp moved successfully.
C:\WINDOWS\Temp\avg-0cfe9d13-db3b-477c-8656-9d795a710513.tmp moved successfully.
C:\WINDOWS\Temp\avg-0d15d70f-7230-4669-b6e9-d82e9013ec4d.tmp moved successfully.
C:\WINDOWS\Temp\avg-0d20881d-1751-4657-b041-d327356eb21b.tmp moved successfully.
C:\WINDOWS\Temp\avg-0d2e886c-9dd5-4774-a0a6-1f5b2ae4483a.tmp moved successfully.
C:\WINDOWS\Temp\avg-0d3f8346-cd50-4c1b-81c6-4c2a22cf4532.tmp moved successfully.
C:\WINDOWS\Temp\avg-0d45b540-5809-4e77-a60a-e903ea35376e.tmp moved successfully.
C:\WINDOWS\Temp\avg-0d5c0b6f-61ca-4338-9b95-881891db3760.tmp moved successfully.
C:\WINDOWS\Temp\avg-0d799751-e498-460b-a486-b276e04c7e7b.tmp moved successfully.
C:\WINDOWS\Temp\avg-0d7e6f22-3a22-433b-9b7f-690b9f90997f.tmp moved successfully.
C:\WINDOWS\Temp\avg-0db9022f-df5c-4f1a-b517-15113807ce24.tmp moved successfully.
C:\WINDOWS\Temp\avg-0dcd0636-539c-4b6a-adf4-041dace56b1b.tmp moved successfully.
C:\WINDOWS\Temp\avg-0de9151b-6e3f-403d-b0ae-735700534e10.tmp moved successfully.
C:\WINDOWS\Temp\avg-0deee524-064b-494a-9251-316022d11a45.tmp moved successfully.
C:\WINDOWS\Temp\avg-0df32f46-7032-4c58-a2e3-8a731094c22e.tmp moved successfully.
C:\WINDOWS\Temp\avg-0e064220-a431-464f-bf0a-ab633b14c847.tmp moved successfully.
C:\WINDOWS\Temp\avg-0e08276f-493f-403b-9c91-af1646387002.tmp moved successfully.
C:\WINDOWS\Temp\avg-0e0d2437-8743-4b71-931b-d816413b8369.tmp moved successfully.
C:\WINDOWS\Temp\avg-0e125e6b-898d-4655-911e-6e3848949b5e.tmp moved successfully.
C:\WINDOWS\Temp\avg-0e2e917c-9068-4569-b344-bc787f68ae17.tmp moved successfully.
C:\WINDOWS\Temp\avg-0e378e6e-0238-485e-b650-8537a3c9412c.tmp moved successfully.
C:\WINDOWS\Temp\avg-0e454427-2e93-4b17-bc38-e572fc857d7a.tmp moved successfully.
C:\WINDOWS\Temp\avg-0e51f850-a53e-4137-980e-6f08ff61b145.tmp moved successfully.
C:\WINDOWS\Temp\avg-0e71b203-2bd9-4d4b-96ef-af5c9de29779.tmp moved successfully.
C:\WINDOWS\Temp\avg-0e76845a-aa3e-490b-9971-b74da5e3cc6b.tmp moved successfully.
C:\WINDOWS\Temp\avg-0e9ee828-2fae-464d-9d41-3c781b2e7116.tmp moved successfully.
C:\WINDOWS\Temp\avg-0e9ffb15-2332-4250-8f1f-c24704b81d1a.tmp moved successfully.
C:\WINDOWS\Temp\avg-0ed1b871-269f-4e12-914d-8368f9901075.tmp moved successfully.
C:\WINDOWS\Temp\avg-0ee1e652-af2c-4b0f-82d5-5a263a919251.tmp moved successfully.
C:\WINDOWS\Temp\avg-0ef06269-c284-4f78-833f-2e48163d6733.tmp moved successfully.
C:\WINDOWS\Temp\avg-0ef5fe6e-6ec4-4a00-903a-3259efd1fd58.tmp moved successfully.
C:\WINDOWS\Temp\avg-0f00f972-b90a-4a72-9a65-667a99ca682e.tmp moved successfully.
C:\WINDOWS\Temp\avg-0f093754-2a46-4c7f-ba28-22151b64363a.tmp moved successfully.
C:\WINDOWS\Temp\avg-0f09a01f-cee1-4122-a673-db4db6574344.tmp moved successfully.
C:\WINDOWS\Temp\avg-0f33b97b-cf72-4663-bd10-370af352e961.tmp moved successfully.
C:\WINDOWS\Temp\avg-0f374634-3deb-4d35-b661-fb6c532b7067.tmp moved successfully.
C:\WINDOWS\Temp\avg-0f4e1b25-c66c-4478-9e91-aa771256b478.tmp moved successfully.
C:\WINDOWS\Temp\avg-0f53c058-328d-4a16-9c5b-366d0b21765d.tmp moved successfully.
C:\WINDOWS\Temp\avg-0f7f996e-ed12-4643-a671-2c4b27d18650.tmp moved successfully.
C:\WINDOWS\Temp\avg-0faf6d0c-7df7-4636-b99c-5b69ec8cda79.tmp moved successfully.
C:\WINDOWS\Temp\avg-0fb9df18-79b0-4a13-a04a-b83c56f8f127.tmp moved successfully.
C:\WINDOWS\Temp\avg-0fbfc16f-1946-403f-b009-7412da754d0e.tmp moved successfully.
C:\WINDOWS\Temp\avg-0fc0f07c-fb9b-4506-be76-710de4e4c07f.tmp moved successfully.
C:\WINDOWS\Temp\avg-0feaa57b-dea4-4348-a116-bf4d77561f46.tmp moved successfully.
C:\WINDOWS\Temp\avg-10051c61-0764-4734-9916-a66f375fa868.tmp moved successfully.
C:\WINDOWS\Temp\avg-10120170-16fe-472c-9262-917acc2dfe22.tmp moved successfully.
C:\WINDOWS\Temp\avg-1014326e-669b-4871-a917-972f4705d24a.tmp moved successfully.
C:\WINDOWS\Temp\avg-104fe372-b03d-410f-98e3-fa0872ca646c.tmp moved successfully.
C:\WINDOWS\Temp\avg-108cdb32-b55e-487f-b4c6-0444a063c129.tmp moved successfully.
C:\WINDOWS\Temp\avg-1096be16-4b2f-4e55-aca9-4b32e19cf051.tmp moved successfully.
C:\WINDOWS\Temp\avg-109abf13-6fa5-4b26-b67f-5a3f2f1a4009.tmp moved successfully.
C:\WINDOWS\Temp\avg-10a1321f-b6cc-404c-ada2-a83fa2f7112e.tmp moved successfully.
C:\WINDOWS\Temp\avg-10b1f959-0515-4665-9ba5-190aa9616077.tmp moved successfully.
C:\WINDOWS\Temp\avg-10b5bf7e-eb33-4917-849d-c30039b49e5a.tmp moved successfully.
C:\WINDOWS\Temp\avg-10c4f81b-1ca8-446e-bbd5-812cf2232c0e.tmp moved successfully.
C:\WINDOWS\Temp\avg-10cbd105-7d9f-4c3d-8fa6-900b0c621d58.tmp moved successfully.
C:\WINDOWS\Temp\avg-10f84c4a-00bc-4d7a-99f1-5466b97ef952.tmp moved successfully.
C:\WINDOWS\Temp\avg-11223221-a7fb-4451-9daf-ed2c341c0d7b.tmp moved successfully.
C:\WINDOWS\Temp\avg-11233f01-74b5-453b-8e19-ea531d165f76.tmp moved successfully.
C:\WINDOWS\Temp\avg-113e3a72-88c7-4458-97a6-497d2f58d709.tmp moved successfully.
C:\WINDOWS\Temp\avg-1147cd6d-95f6-4d77-8a07-1e3426130b33.tmp moved successfully.
C:\WINDOWS\Temp\avg-114b8178-08b5-432c-b518-d35735aa1042.tmp moved successfully.
C:\WINDOWS\Temp\avg-114ee121-5f67-4c6c-a060-322214c73601.tmp moved successfully.
C:\WINDOWS\Temp\avg-1153ad29-cad2-422b-8a21-45221a273a71.tmp moved successfully.
C:\WINDOWS\Temp\avg-11542108-6ee6-4407-b846-9040efa1fa35.tmp moved successfully.
C:\WINDOWS\Temp\avg-1186c711-e4bb-4b79-93ba-e47a4a03d129.tmp moved successfully.
C:\WINDOWS\Temp\avg-11af4633-5631-4c61-9367-c06713e0475a.tmp moved successfully.
C:\WINDOWS\Temp\avg-11ea120a-e254-4945-a2d8-8e0196ac4c7e.tmp moved successfully.
C:\WINDOWS\Temp\avg-11ef0363-a429-490a-9d4f-ed6376cd947e.tmp moved successfully.
C:\WINDOWS\Temp\avg-11f12b20-c515-4172-9de5-29410183207f.tmp moved successfully.
C:\WINDOWS\Temp\avg-11f2f632-81e9-4a46-9ce9-763def3dba5c.tmp moved successfully.
C:\WINDOWS\Temp\avg-11fa9d09-0f8e-4e10-aa1e-a42d7ac3e45d.tmp moved successfully.
C:\WINDOWS\Temp\avg-11fed30d-31d6-4c39-834c-407aa8f4080e.tmp moved successfully.
C:\WINDOWS\Temp\avg-121b252e-62e8-4a25-a88b-f944c3244d6b.tmp moved successfully.
C:\WINDOWS\Temp\avg-124d575a-50f0-4223-af94-121607774f09.tmp moved successfully.
C:\WINDOWS\Temp\avg-1258e86d-ba51-465b-854f-6e07c1635c09.tmp moved successfully.
C:\WINDOWS\Temp\avg-125f1615-93b3-4150-b42d-603260f6fa68.tmp moved successfully.
C:\WINDOWS\Temp\avg-1272de22-22bd-4454-80e4-6779a6f7f27b.tmp moved successfully.
C:\WINDOWS\Temp\avg-1291ff20-0fb9-4a32-b0fc-b53b79719d04.tmp moved successfully.
C:\WINDOWS\Temp\avg-1297834a-3947-4935-98ff-ad1906ab1431.tmp moved successfully.
C:\WINDOWS\Temp\avg-12c45f44-0a7b-4d07-89bc-7b535282974a.tmp moved successfully.
C:\WINDOWS\Temp\avg-12cc9211-3e40-473e-8867-520eb4f49a19.tmp moved successfully.
C:\WINDOWS\Temp\avg-12df8c62-cbec-4012-a665-3e375bdc9c3b.tmp moved successfully.
C:\WINDOWS\Temp\avg-130e1111-199a-491f-8000-7e3d393d921c.tmp moved successfully.
C:\WINDOWS\Temp\avg-131fac7b-6d6c-4449-8e8f-5b5eece1b611.tmp moved successfully.
C:\WINDOWS\Temp\avg-132d6b33-42e1-4933-9129-6935d0785665.tmp moved successfully.
C:\WINDOWS\Temp\avg-1348d36a-5945-424a-8e46-0d294a935e39.tmp moved successfully.
C:\WINDOWS\Temp\avg-13564641-9de8-4b7e-8dd8-f26a2159cc3c.tmp moved successfully.
C:\WINDOWS\Temp\avg-135dd854-ec93-4a6b-a1ab-b95be1b6eb4d.tmp moved successfully.
C:\WINDOWS\Temp\avg-135e4818-eb97-486c-87cd-273c802ef27f.tmp moved successfully.
C:\WINDOWS\Temp\avg-13602731-482a-4f19-93aa-3b6e06c4161e.tmp moved successfully.
C:\WINDOWS\Temp\avg-13665476-0b89-4d3b-a0bd-d2707d30f626.tmp moved successfully.
C:\WINDOWS\Temp\avg-13669e7f-2f37-4518-b841-17359b347d6d.tmp moved successfully.
C:\WINDOWS\Temp\avg-13696b65-42a5-4b65-9c2e-2d44f3e3a922.tmp moved successfully.
C:\WINDOWS\Temp\avg-13697c57-4d97-447a-aac8-106c58538e5e.tmp moved successfully.
C:\WINDOWS\Temp\avg-13716a6f-8dbd-480d-95c4-7865c7176602.tmp moved successfully.
C:\WINDOWS\Temp\avg-138beb68-7197-4164-bdaf-432682739370.tmp moved successfully.
C:\WINDOWS\Temp\avg-1393e829-de4c-4940-954a-fd1a282e2928.tmp moved successfully.
C:\WINDOWS\Temp\avg-13996317-1401-4b2d-a5c0-62081532587d.tmp moved successfully.
C:\WINDOWS\Temp\avg-13c98211-f79b-4e41-b4c6-793a4e846f11.tmp moved successfully.
C:\WINDOWS\Temp\avg-13f44e32-cd7c-4b75-ab4a-3a4bc31eb840.tmp moved successfully.
C:\WINDOWS\Temp\avg-14105a36-0af3-456f-ac04-3c384d76e22b.tmp moved successfully.
C:\WINDOWS\Temp\avg-1422953d-a6a1-4300-888c-462fc0c66b35.tmp moved successfully.
C:\WINDOWS\Temp\avg-1422e311-27ef-4d09-8ec4-b9686e6d0f3f.tmp moved successfully.
C:\WINDOWS\Temp\avg-143da814-1566-4d34-8db2-a34014ae424f.tmp moved successfully.
C:\WINDOWS\Temp\avg-1450ea7a-1dad-4154-a8f1-6a417804137f.tmp moved successfully.
C:\WINDOWS\Temp\avg-1451471f-ed8c-437b-88ef-3835da365752.tmp moved successfully.
C:\WINDOWS\Temp\avg-1460043e-7a40-480b-b655-a02b9e08ca1e.tmp moved successfully.
C:\WINDOWS\Temp\avg-1483b35c-eb2d-4e42-ab8f-e648680e331e.tmp moved successfully.
C:\WINDOWS\Temp\avg-148a8779-161c-415c-a067-0023c867a72c.tmp moved successfully.
C:\WINDOWS\Temp\avg-14afc244-d212-407d-8a7e-7c65b7abee6b.tmp moved successfully.
C:\WINDOWS\Temp\avg-14d3d226-8a97-401a-a2d9-7006f8b4dd6f.tmp moved successfully.
C:\WINDOWS\Temp\avg-14d4f834-aaff-4e13-9497-3b33ee15137c.tmp moved successfully.
C:\WINDOWS\Temp\avg-154ad721-92cd-4a39-a4d2-bd0e852a8c71.tmp moved successfully.
C:\WINDOWS\Temp\avg-155df207-6210-4d74-909c-516aad249304.tmp moved successfully.
C:\WINDOWS\Temp\avg-15706c0c-6420-4b53-8bf4-232f822a2c59.tmp moved successfully.
C:\WINDOWS\Temp\avg-1573bb55-b8e0-4106-9936-053069ab3d01.tmp moved successfully.
C:\WINDOWS\Temp\avg-157b2775-bce6-4b64-8997-c81cb245730e.tmp moved successfully.
C:\WINDOWS\Temp\avg-158f7430-a317-424b-9099-9a2cbfb3b565.tmp moved successfully.
C:\WINDOWS\Temp\avg-1591be3e-9f2b-4521-9ef6-ad4fb6f99b04.tmp moved successfully.
C:\WINDOWS\Temp\avg-15942851-6457-4f67-b077-e40a87b3b166.tmp moved successfully.
C:\WINDOWS\Temp\avg-15b0df12-6faf-432f-b4ac-6e31a4c42630.tmp moved successfully.
C:\WINDOWS\Temp\avg-15bef60d-77dc-461e-ab5a-2b1fd25b4f36.tmp moved successfully.
C:\WINDOWS\Temp\avg-15bf7502-e364-4163-bdd1-f804e61ea726.tmp moved successfully.
C:\WINDOWS\Temp\avg-15bfdc56-b871-4b1a-9087-7c2f47b13836.tmp moved successfully.
C:\WINDOWS\Temp\avg-15d93272-0386-471e-82ef-e12bae0eae1c.tmp moved successfully.
C:\WINDOWS\Temp\avg-15de6a7d-31f7-4d63-89f8-0524756dea7c.tmp moved successfully.
C:\WINDOWS\Temp\avg-15e01c79-6773-435b-b43d-fe137b5a0111.tmp moved successfully.
C:\WINDOWS\Temp\avg-15e26d47-557c-454e-a52f-cb555551e576.tmp moved successfully.
C:\WINDOWS\Temp\avg-15e2c060-d0dd-4b43-b12e-b31f08ce097e.tmp moved successfully.
C:\WINDOWS\Temp\avg-15fb9532-652d-4c0c-9f83-0620199c3c0b.tmp moved successfully.
C:\WINDOWS\Temp\avg-15fbb07e-7b04-4a65-bba7-101bb1cd8d36.tmp moved successfully.
C:\WINDOWS\Temp\avg-160db07c-5348-4613-bd68-657a2550b517.tmp moved successfully.
C:\WINDOWS\Temp\avg-160e2651-cc3f-425d-98c3-d858eff67c36.tmp moved successfully.
C:\WINDOWS\Temp\avg-1631a06e-25d3-4622-a12c-cd2f7d2be203.tmp moved successfully.
C:\WINDOWS\Temp\avg-16491528-d14f-4617-ad7b-6946c387c725.tmp moved successfully.
C:\WINDOWS\Temp\avg-165b1e38-ff18-4a7f-9e70-9f44cbc5f72e.tmp moved successfully.
C:\WINDOWS\Temp\avg-165ea839-4ac8-477c-9f2f-4601a8cc9700.tmp moved successfully.
C:\WINDOWS\Temp\avg-16724b7e-db66-4863-aff2-7f3a4946fc60.tmp moved successfully.
C:\WINDOWS\Temp\avg-1676263d-432a-4163-8aaf-33156b22dd2e.tmp moved successfully.
C:\WINDOWS\Temp\avg-168bb500-ca75-4e4c-8f60-6110b3067303.tmp moved successfully.
C:\WINDOWS\Temp\avg-168da46b-3299-4c68-ac59-5f20792dd746.tmp moved successfully.
C:\WINDOWS\Temp\avg-16920a5a-bc63-4a4d-b7fe-8534325cd17f.tmp moved successfully.
C:\WINDOWS\Temp\avg-16a7d57d-17bf-4d23-b0dd-a571679b6d43.tmp moved successfully.
C:\WINDOWS\Temp\avg-16d73070-8d4f-473d-8249-465d321ef329.tmp moved successfully.
C:\WINDOWS\Temp\avg-16db2f4a-73e8-4146-90d7-a77008cca230.tmp moved successfully.
C:\WINDOWS\Temp\avg-16e4ce17-fcaa-4a16-bd17-1d201fe73b14.tmp moved successfully.
C:\WINDOWS\Temp\avg-17142500-d63c-4e7e-bca6-147184918570.tmp moved successfully.
C:\WINDOWS\Temp\avg-1718e645-e3ff-4d29-80cf-6a474336c211.tmp moved successfully.
C:\WINDOWS\Temp\avg-172afe49-034c-4618-b320-bd1cc270e87f.tmp moved successfully.
C:\WINDOWS\Temp\avg-17332a47-96df-4269-8aa0-b67d1d5f7538.tmp moved successfully.
C:\WINDOWS\Temp\avg-17412850-8227-4b3f-9ec7-7f2198d98d39.tmp moved successfully.
C:\WINDOWS\Temp\avg-1756d727-757a-4d0d-883d-741f0e8f553e.tmp moved successfully.
C:\WINDOWS\Temp\avg-175eca6e-b402-4818-814e-19243cad2c40.tmp moved successfully.
C:\WINDOWS\Temp\avg-175f097f-5088-4f70-a7d6-044debcab14b.tmp moved successfully.
C:\WINDOWS\Temp\avg-1773bf14-36ee-4c16-9bd0-ec51e7e78e39.tmp moved successfully.
C:\WINDOWS\Temp\avg-17949121-9383-4041-88f6-d52c55dbc02c.tmp moved successfully.
C:\WINDOWS\Temp\avg-17b3f966-2cfe-4b6f-a54f-9f107033233d.tmp moved successfully.
C:\WINDOWS\Temp\avg-17c74a06-b9fb-4313-8873-091b7419ea10.tmp moved successfully.
C:\WINDOWS\Temp\avg-17cf1671-f450-443a-8e55-42731752cf61.tmp moved successfully.
C:\WINDOWS\Temp\avg-17d9ec29-101f-4a6e-a990-0f2582c5c20f.tmp moved successfully.
C:\WINDOWS\Temp\avg-17eba00c-f552-4e72-bdbd-630dfb73c27a.tmp moved successfully.
C:\WINDOWS\Temp\avg-17ef016d-7a71-4b08-8de6-9b3503618c2a.tmp moved successfully.
C:\WINDOWS\Temp\avg-17f55602-7c9a-4778-a1db-db42d06fc659.tmp moved successfully.
C:\WINDOWS\Temp\avg-17ff0626-6eae-4965-8cab-6e2dd2f19145.tmp moved successfully.
C:\WINDOWS\Temp\avg-1807c704-1513-4375-88d8-4d017b8f6a03.tmp moved successfully.
C:\WINDOWS\Temp\avg-181a5456-fe5b-4579-8275-e61948066c43.tmp moved successfully.
C:\WINDOWS\Temp\avg-18330538-10be-4203-b2db-ef675ab6cb3d.tmp moved successfully.
C:\WINDOWS\Temp\avg-18379421-81df-4d54-8d5e-4e2a4594584f.tmp moved successfully.
C:\WINDOWS\Temp\avg-1871ed2e-3ef0-4b0e-b2ac-a95062f78f0d.tmp moved successfully.
C:\WINDOWS\Temp\avg-18ed4669-b712-4a05-89fc-f8499e1a4973.tmp moved successfully.
C:\WINDOWS\Temp\avg-191e9946-d664-4c27-996e-e2214f284256.tmp moved successfully.
C:\WINDOWS\Temp\avg-194a5f79-c1d0-4207-aaa0-ee796c1db54c.tmp moved successfully.
C:\WINDOWS\Temp\avg-194beb3f-5b6a-4703-b8f2-771ec0a4243d.tmp moved successfully.
C:\WINDOWS\Temp\avg-194cf544-e56d-4171-b49c-bd76762ad57f.tmp moved successfully.
C:\WINDOWS\Temp\avg-195a8579-cc47-4d10-a145-b07dc2e59937.tmp moved successfully.
C:\WINDOWS\Temp\avg-19840e30-a86f-4c27-84d5-bf282be6936d.tmp moved successfully.
C:\WINDOWS\Temp\avg-19853037-7b0f-4641-a91b-846c9e33af6e.tmp moved successfully.
C:\WINDOWS\Temp\avg-1989a839-9112-4432-ba01-612e9826622b.tmp moved successfully.
C:\WINDOWS\Temp\avg-19979509-5d1a-4269-9994-555678d0c409.tmp moved successfully.
C:\WINDOWS\Temp\avg-199da849-8dd9-4d0d-aafb-513c2e780a63.tmp moved successfully.
C:\WINDOWS\Temp\avg-19ada81e-32c9-4d23-b95d-b53f9f51365e.tmp moved successfully.
C:\WINDOWS\Temp\avg-19b9ec0a-4ffb-4d2e-91d4-d54af2346e2e.tmp moved successfully.
C:\WINDOWS\Temp\avg-19de4d0f-cb61-4763-afa8-92488d1d2845.tmp moved successfully.
C:\WINDOWS\Temp\avg-19ef6243-b0aa-402d-ba4b-4b09438f9557.tmp moved successfully.
C:\WINDOWS\Temp\avg-1a01a60e-f602-4e4f-b48c-14395c811d68.tmp moved successfully.
C:\WINDOWS\Temp\avg-1a10022e-49c2-4b29-b99d-555c00799d1c.tmp moved successfully.
C:\WINDOWS\Temp\avg-1a107973-a9b6-4426-8b93-35098956be47.tmp moved successfully.
C:\WINDOWS\Temp\avg-1a1feb65-3f3a-493b-bc6b-fe335a1c8a27.tmp moved successfully.
C:\WINDOWS\Temp\avg-1a225a0a-9984-4060-aa11-0a6344e86b65.tmp moved successfully.
C:\WINDOWS\Temp\avg-1a241c73-f547-4859-bf1d-821e14a08501.tmp moved successfully.
C:\WINDOWS\Temp\avg-1a2c937c-dc4d-415c-9d38-b45d261c352a.tmp moved successfully.
C:\WINDOWS\Temp\avg-1a3c8910-de98-410a-bfd8-422d44a64f08.tmp moved successfully.
C:\WINDOWS\Temp\avg-1a54ee69-a81b-4c51-9c92-d22a70beac1a.tmp moved successfully.
C:\WINDOWS\Temp\avg-1a597d1c-173f-457b-94d0-46472c59092d.tmp moved successfully.
C:\WINDOWS\Temp\avg-1a7a2c62-611a-456f-84f1-b361da673561.tmp moved successfully.
C:\WINDOWS\Temp\avg-1aa26f3f-848c-4f25-9efa-a76c2277d469.tmp moved successfully.
C:\WINDOWS\Temp\avg-1aa7c127-dc94-471b-bb21-c521d0a1de7c.tmp moved successfully.
C:\WINDOWS\Temp\avg-1ab8d235-4215-480e-bcc2-ca19bfe1c84d.tmp moved successfully.
C:\WINDOWS\Temp\avg-1abad70d-5ab1-4547-bd0f-1b77ee25be04.tmp moved successfully.
C:\WINDOWS\Temp\avg-1ad51a11-4b63-4c2e-8f69-e541b91de769.tmp moved successfully.
C:\WINDOWS\Temp\avg-1b01a322-68a9-484d-a084-9e6a3b1ea247.tmp moved successfully.
C:\WINDOWS\Temp\avg-1b0a0c4e-7e52-4a64-bc8d-04091ba6fb32.tmp moved successfully.
C:\WINDOWS\Temp\avg-1b2d564c-b567-426b-b120-3725aa3e6257.tmp moved successfully.
C:\WINDOWS\Temp\avg-1b356440-2e49-4040-988f-405d78d30723.tmp moved successfully.
C:\WINDOWS\Temp\avg-1b511f1f-cfa6-457b-acd5-1b0f202b9b71.tmp moved successfully.
C:\WINDOWS\Temp\avg-1b55041c-2c73-4e50-98f9-c6119f49bc3e.tmp moved successfully.
C:\WINDOWS\Temp\avg-1b69676a-69e7-4638-a1ba-5a0edae96835.tmp moved successfully.
C:\WINDOWS\Temp\avg-1b8bee28-58ee-4822-b8c8-c612cee8676d.tmp moved successfully.
C:\WINDOWS\Temp\avg-1b96744a-2839-4b7b-8f2c-412e4afd3d2f.tmp moved successfully.
C:\WINDOWS\Temp\avg-1ba32f00-b617-451a-b2ab-c07ae9b3360f.tmp moved successfully.
C:\WINDOWS\Temp\avg-1c01da01-b4ad-4008-b06b-e957e5469922.tmp moved successfully.
C:\WINDOWS\Temp\avg-1c198e1b-e2aa-4c0f-b8b8-3f5da37d657e.tmp moved successfully.
C:\WINDOWS\Temp\avg-1c901043-aabd-4376-944e-4e771795d418.tmp moved successfully.
C:\WINDOWS\Temp\avg-1cc12f1c-de5a-4443-bb1a-865fd668626b.tmp moved successfully.
C:\WINDOWS\Temp\avg-1cf4cf0c-aae9-4561-b8fa-bd2a33e72d1b.tmp moved successfully.
C:\WINDOWS\Temp\avg-1d1a886d-a14f-4f40-abfa-fc1355dfc30b.tmp moved successfully.
C:\WINDOWS\Temp\avg-1d22d01b-a336-4438-b360-09766a49454d.tmp moved successfully.
C:\WINDOWS\Temp\avg-1d241862-31ad-4126-8242-3268c29fe62d.tmp moved successfully.
C:\WINDOWS\Temp\avg-1d554976-e41d-4d64-a00e-ac4e80d15870.tmp moved successfully.
C:\WINDOWS\Temp\avg-1d5e9821-8281-452b-86f8-b50e0521d704.tmp moved successfully.
C:\WINDOWS\Temp\avg-1d654026-f7fc-4f6d-8103-45513f3f4b52.tmp moved successfully.
C:\WINDOWS\Temp\avg-1d895742-6e0c-4875-95fd-946ecc2e891a.tmp moved successfully.
C:\WINDOWS\Temp\avg-1d938f40-77b4-4e07-9335-b6350e5a0511.tmp moved successfully.
C:\WINDOWS\Temp\avg-1d9aff31-a6b3-4867-a9db-890e18855254.tmp moved successfully.
C:\WINDOWS\Temp\avg-1db46e07-018e-4c31-9ea2-8455e252ae6c.tmp moved successfully.
C:\WINDOWS\Temp\avg-1db5c35c-2eda-481f-be7e-ef03fb59d528.tmp moved successfully.
C:\WINDOWS\Temp\avg-1ddbc356-596e-476c-a3b3-ad20ce076e72.tmp moved successfully.
C:\WINDOWS\Temp\avg-1deed16d-136e-4f13-ac71-3f7c2921cd5c.tmp moved successfully.
C:\WINDOWS\Temp\avg-1e06ff40-5609-4757-bda3-1a675755d476.tmp moved successfully.
C:\WINDOWS\Temp\avg-1e2b5927-64a2-452d-9504-9b38a87f9e49.tmp moved successfully.
C:\WINDOWS\Temp\avg-1e5e5149-4035-4036-9baf-c70ee3476f0a.tmp moved successfully.
C:\WINDOWS\Temp\avg-1e60cc5c-3501-4760-954f-1f1fc6ef836b.tmp moved successfully.
C:\WINDOWS\Temp\avg-1e6f4529-ac7a-4768-95f8-346ead897508.tmp moved successfully.
C:\WINDOWS\Temp\avg-1e7ef878-f6ff-4b7b-b1a0-827ccd333b1b.tmp moved successfully.
C:\WINDOWS\Temp\avg-1e7ff36c-baf9-4018-a07c-6365e4856072.tmp moved successfully.
C:\WINDOWS\Temp\avg-1ea48017-fb85-4d31-b51d-ef5fa888ee02.tmp moved successfully.
C:\WINDOWS\Temp\avg-1ea55948-dfba-4971-94e7-a63f0f9edd04.tmp moved successfully.
C:\WINDOWS\Temp\avg-1eb21b47-fa94-4d1c-a2b0-f31d74f1934a.tmp moved successfully.
C:\WINDOWS\Temp\avg-1eee367f-16b7-4a14-a30f-7549c31f2634.tmp moved successfully.
C:\WINDOWS\Temp\avg-1f19e446-30e1-4e44-929b-523037fd8d75.tmp moved successfully.
C:\WINDOWS\Temp\avg-1f2e6b39-e84b-4735-b206-836bc6dc5c6e.tmp moved successfully.
C:\WINDOWS\Temp\avg-1f6bc506-af53-4874-bcb5-0241cbddf10b.tmp moved successfully.
C:\WINDOWS\Temp\avg-1f72bd23-65a9-4c4e-b993-1e70a4c0b144.tmp moved successfully.
C:\WINDOWS\Temp\avg-1f733e54-9464-4b01-b206-6e28ee868907.tmp moved successfully.
C:\WINDOWS\Temp\avg-1f88251f-b61b-4a11-9ed1-32394530745a.tmp moved successfully.
C:\WINDOWS\Temp\avg-1faa041c-ff53-417c-b969-06182db5a609.tmp moved successfully.
C:\WINDOWS\Temp\avg-1fd0b816-a9d1-4742-a61c-a07eb2614825.tmp moved successfully.
C:\WINDOWS\Temp\avg-1fd6a758-255c-483a-b652-775c49418e1f.tmp moved successfully.
C:\WINDOWS\Temp\avg-1fd8d772-f117-495f-8223-86165c218838.tmp moved successfully.
C:\WINDOWS\Temp\avg-1fe2843c-d260-412b-8003-4e254cccde7e.tmp moved successfully.
C:\WINDOWS\Temp\avg-1ffe1156-1bbe-4a64-807b-e762f2f74f72.tmp moved successfully.
C:\WINDOWS\Temp\avg-201f7342-6233-4967-b48f-8a556240be13.tmp moved successfully.
C:\WINDOWS\Temp\avg-201fbe5a-e4f8-4f78-8496-601827e2a57a.tmp moved successfully.
C:\WINDOWS\Temp\avg-203a725e-adfd-4854-b447-9c64114f726f.tmp moved successfully.
C:\WINDOWS\Temp\avg-20402a57-1306-435c-ae05-581c1eca717c.tmp moved successfully.
C:\WINDOWS\Temp\avg-204b416d-864b-4e3d-abd5-0f5064874a5b.tmp moved successfully.
C:\WINDOWS\Temp\avg-20548404-75c3-4912-8339-62502929b058.tmp moved successfully.
C:\WINDOWS\Temp\avg-208b4f4b-125b-433a-bd9d-ab2211d6367a.tmp moved successfully.
C:\WINDOWS\Temp\avg-2094d55e-6d14-4243-9215-3647dc16d010.tmp moved successfully.
C:\WINDOWS\Temp\avg-20b46a5f-b77a-4a17-b95d-b57a4d9d902b.tmp moved successfully.
C:\WINDOWS\Temp\avg-20bd3a2b-0cb2-4e6d-a059-3153020fd943.tmp moved successfully.
C:\WINDOWS\Temp\avg-20c7c75b-a02e-4f64-9962-695759a0f766.tmp moved successfully.
C:\WINDOWS\Temp\avg-20d60a39-a5d6-413f-adb1-3a7ca9429607.tmp moved successfully.
C:\WINDOWS\Temp\avg-20f32e38-a9e6-4072-9949-9b730bebf559.tmp moved successfully.
C:\WINDOWS\Temp\avg-20f78039-b231-402f-b8f4-8c17150a5610.tmp moved successfully.
C:\WINDOWS\Temp\avg-2102c26e-b615-4f72-acdf-1535594a4b48.tmp moved successfully.
C:\WINDOWS\Temp\avg-211f5a4d-20f1-4b26-96a6-6c5912f82720.tmp moved successfully.
C:\WINDOWS\Temp\avg-211f8e01-eea3-421c-8e29-9a5e4a85f117.tmp moved successfully.
C:\WINDOWS\Temp\avg-212b891c-45ac-4938-8856-270ae7b4bd57.tmp moved successfully.
C:\WINDOWS\Temp\avg-212be876-0c48-4209-8a3f-a82aa4cdc129.tmp moved successfully.
C:\WINDOWS\Temp\avg-21393b10-e038-4e67-b3eb-42042ef0b546.tmp moved successfully.
C:\WINDOWS\Temp\avg-216ac851-4159-4705-b304-e764490a0f13.tmp moved successfully.
C:\WINDOWS\Temp\avg-2172112c-5ff3-407b-8979-6c61f075a211.tmp moved successfully.
C:\WINDOWS\Temp\avg-21842b3e-68e5-4031-a9e0-ef27197e4008.tmp moved successfully.
C:\WINDOWS\Temp\avg-21973d3b-e0da-4103-a4af-700e7dd45127.tmp moved successfully.
C:\WINDOWS\Temp\avg-21a1af54-4df8-4433-99be-330a78248a7c.tmp moved successfully.
C:\WINDOWS\Temp\avg-21c42c21-935c-4340-88a8-a3233f44013d.tmp moved successfully.
C:\WINDOWS\Temp\avg-21da3f70-85a7-470f-997a-d7694ef6c12f.tmp moved successfully.
C:\WINDOWS\Temp\avg-21dbd24c-db9f-4f7c-b2ff-ed62d383864f.tmp moved successfully.
C:\WINDOWS\Temp\avg-21e9f847-06c1-4669-ad46-8108224edb59.tmp moved successfully.
C:\WINDOWS\Temp\avg-21fcda33-45fd-473e-832b-972ab1a6094e.tmp moved successfully.
C:\WINDOWS\Temp\avg-22012b6d-b669-497e-9173-3b460c6f2a20.tmp moved successfully.
C:\WINDOWS\Temp\avg-221e3c31-24f2-4550-8cb7-435801828927.tmp moved successfully.
C:\WINDOWS\Temp\avg-2221b702-c0df-4230-8b80-ed5bf7b97f36.tmp moved successfully.
C:\WINDOWS\Temp\avg-2229ec4f-4d4a-4737-bda8-436ac8cc745e.tmp moved successfully.
C:\WINDOWS\Temp\avg-2266090c-9f54-4e75-a4c3-7f54c72a9006.tmp moved successfully.
C:\WINDOWS\Temp\avg-227a566f-eb0e-4656-9cf6-004700b86166.tmp moved successfully.
C:\WINDOWS\Temp\avg-2280277b-5a07-4d2e-ac6d-4737dce77c62.tmp moved successfully.
C:\WINDOWS\Temp\avg-22a88532-8791-4c20-ba65-ac6b69835962.tmp moved successfully.
C:\WINDOWS\Temp\avg-22b8d813-1a63-4f3a-b60f-491e6497f606.tmp moved successfully.
C:\WINDOWS\Temp\avg-22d11b3e-5a28-4f5e-82ff-71017f14561a.tmp moved successfully.
C:\WINDOWS\Temp\avg-22eeef67-0e1b-434f-a598-1c10decfcb19.tmp moved successfully.
C:\WINDOWS\Temp\avg-2327a023-592d-4e7d-96d0-d70eff945d57.tmp moved successfully.
C:\WINDOWS\Temp\avg-2340ac0c-214b-4733-9573-650d691bb044.tmp moved successfully.
C:\WINDOWS\Temp\avg-2355a872-ed04-451b-8fc5-97328ce4082f.tmp moved successfully.
C:\WINDOWS\Temp\avg-23828801-e7d1-454e-be88-863a2605a05c.tmp moved successfully.
C:\WINDOWS\Temp\avg-23896846-73b1-427f-9efd-256a045e8875.tmp moved successfully.
C:\WINDOWS\Temp\avg-23930307-909f-4b74-949c-c85e1bb77931.tmp moved successfully.
C:\WINDOWS\Temp\avg-23a34c39-e661-4453-a4f8-15687223a147.tmp moved successfully.
C:\WINDOWS\Temp\avg-23a9175e-6a75-4a7c-9e3f-2532f230d966.tmp moved successfully.
C:\WINDOWS\Temp\avg-23ad6c26-bf61-426e-93e9-851aec654a39.tmp moved successfully.
C:\WINDOWS\Temp\avg-23b55637-6c30-4d31-be5f-183210d98464.tmp moved successfully.
C:\WINDOWS\Temp\avg-23b6332c-a665-4539-bb45-576725aae830.tmp moved successfully.
C:\WINDOWS\Temp\avg-23c3b803-801a-4131-a5f8-ef08d7b51453.tmp moved successfully.
C:\WINDOWS\Temp\avg-23d2322e-fde4-4b24-9e02-6b2ecd91483b.tmp moved successfully.
C:\WINDOWS\Temp\avg-23df374b-a345-4107-91f8-424ff6b11644.tmp moved successfully.
C:\WINDOWS\Temp\avg-240b5864-8ec6-4a58-8a30-f15e7fbccf45.tmp moved successfully.
C:\WINDOWS\Temp\avg-2416bc38-8522-4651-bdbf-e92e8f56a601.tmp moved successfully.
C:\WINDOWS\Temp\avg-24196e78-4ba6-4734-8d51-83016d7bae4c.tmp moved successfully.
C:\WINDOWS\Temp\avg-2463b42f-b1c3-4a08-b08b-b0206310ad63.tmp moved successfully.
C:\WINDOWS\Temp\avg-246b000e-f218-4e1c-afd4-c53d32d8847c.tmp moved successfully.
C:\WINDOWS\Temp\avg-247cd647-726c-4b4f-bf84-ac2c7b85e667.tmp moved successfully.
C:\WINDOWS\Temp\avg-2485364b-e97c-4d5f-bd82-0c1c48b37018.tmp moved successfully.
C:\WINDOWS\Temp\avg-2494197b-6328-4e4c-8c0a-1b2c378e7127.tmp moved successfully.
C:\WINDOWS\Temp\avg-24a86a7a-4e76-4e06-babd-2238401c7f1f.tmp moved successfully.
C:\WINDOWS\Temp\avg-24ace416-78dd-4828-a1e6-380bbbde5f6d.tmp moved successfully.
C:\WINDOWS\Temp\avg-24cb1642-957e-451e-9fd9-282a331ed924.tmp moved successfully.
C:\WINDOWS\Temp\avg-25033561-88db-4f2a-bc54-3a5a0834cc14.tmp moved successfully.
C:\WINDOWS\Temp\avg-250a2466-ff62-4357-b1fb-5831c4374954.tmp moved successfully.
C:\WINDOWS\Temp\avg-25102123-c51c-4101-a13b-7e440b7ed04e.tmp moved successfully.
C:\WINDOWS\Temp\avg-251d764d-4d12-4103-9c76-67086b0c706e.tmp moved successfully.
C:\WINDOWS\Temp\avg-2558f265-bf5e-451b-a141-712530e43970.tmp moved successfully.
C:\WINDOWS\Temp\avg-259d3606-e453-4015-9aa7-0c78f536dc66.tmp moved successfully.
C:\WINDOWS\Temp\avg-25bb9d73-99e8-410c-a684-4e7d6bfcc718.tmp moved successfully.
C:\WINDOWS\Temp\avg-25c2333f-cb33-4c10-9412-6a46a64df524.tmp moved successfully.
C:\WINDOWS\Temp\avg-25c58707-38a5-4467-8982-893c02b21732.tmp moved successfully.
C:\WINDOWS\Temp\avg-26099667-9c21-4072-9729-092df512674a.tmp moved successfully.
C:\WINDOWS\Temp\avg-260b481c-a6f0-4c67-9bd1-bf476442ed3c.tmp moved successfully.
C:\WINDOWS\Temp\avg-2616bf5e-9a40-492e-916b-875566c9983c.tmp moved successfully.
C:\WINDOWS\Temp\avg-2619571c-181e-4b23-a6f6-aa772d62fc0a.tmp moved successfully.
C:\WINDOWS\Temp\avg-2620393b-5e9f-4c25-893f-1728ecf4be2a.tmp moved successfully.
C:\WINDOWS\Temp\avg-262f2656-78a2-4320-9095-a7344880f728.tmp moved successfully.
C:\WINDOWS\Temp\avg-26360535-4596-450e-94f7-6d52e01a7a1b.tmp moved successfully.
C:\WINDOWS\Temp\avg-26383d44-c53e-485e-a2cd-5257118dff7a.tmp moved successfully.
C:\WINDOWS\Temp\avg-26394f29-bea7-4a34-923b-ba0cfcf17455.tmp moved successfully.
C:\WINDOWS\Temp\avg-26565d37-50ef-442f-9119-a93a519cef25.tmp moved successfully.
C:\WINDOWS\Temp\avg-26685171-5e03-473f-9b71-536217b84e78.tmp moved successfully.
C:\WINDOWS\Temp\avg-266b486f-2294-4650-94fc-4c235533d366.tmp moved successfully.
C:\WINDOWS\Temp\avg-268ea60c-812a-4061-9097-79069fd0fc27.tmp moved successfully.
C:\WINDOWS\Temp\avg-26a0e50e-f10e-4c02-9388-7f44f3784665.tmp moved successfully.
C:\WINDOWS\Temp\avg-26ef8320-613f-4f7c-ab78-6859ce4bd05c.tmp moved successfully.
C:\WINDOWS\Temp\avg-2715543c-ac4e-451b-a932-9e1dcd9bdf17.tmp moved successfully.
C:\WINDOWS\Temp\avg-27185e39-ba9d-495b-9f94-1905ec2b245b.tmp moved successfully.
C:\WINDOWS\Temp\avg-272b3c6f-7594-454c-9889-397412a16248.tmp moved successfully.
C:\WINDOWS\Temp\avg-27329d33-fa9c-4f17-848c-44110b35df57.tmp moved successfully.
C:\WINDOWS\Temp\avg-274fe905-071e-4c05-ade3-0672cb5f8e32.tmp moved successfully.
C:\WINDOWS\Temp\avg-27571f78-f069-4d61-bc6e-88285ea7bb2e.tmp moved successfully.
C:\WINDOWS\Temp\avg-278e1f50-b6ab-445f-81f0-8b4cb0fe9d46.tmp moved successfully.
C:\WINDOWS\Temp\avg-2792916e-a549-435e-9247-9e77df20635d.tmp moved successfully.
C:\WINDOWS\Temp\avg-2796940d-05ab-4106-a7b7-2d0c4a672269.tmp moved successfully.
C:\WINDOWS\Temp\avg-27971c65-3537-4959-b65a-af1b0cb43a47.tmp moved successfully.
C:\WINDOWS\Temp\avg-279a9642-fe71-441c-96f9-661fbe31aa72.tmp moved successfully.
C:\WINDOWS\Temp\avg-27b6f27f-aab9-4d10-8d60-88144ff74a2c.tmp moved successfully.
C:\WINDOWS\Temp\avg-27c80571-dbb4-4828-86bc-266d555f3840.tmp moved successfully.
C:\WINDOWS\Temp\avg-27f7f461-2091-4412-92b5-3473242bf85c.tmp moved successfully.
C:\WINDOWS\Temp\avg-27fda376-aac1-4f1b-804f-ec580db8091f.tmp moved successfully.
C:\WINDOWS\Temp\avg-28232818-e563-493f-9c2d-02159e50df08.tmp moved successfully.
C:\WINDOWS\Temp\avg-28258568-fa29-4603-b1c5-a32ea4f89b5a.tmp moved successfully.
C:\WINDOWS\Temp\avg-28367576-71d8-4222-b670-7e1c2b643427.tmp moved successfully.
C:\WINDOWS\Temp\avg-284e5c6d-3072-4a13-9591-4a667a642d75.tmp moved successfully.
C:\WINDOWS\Temp\avg-287e8153-6d12-4c3f-b159-1918a8f4715d.tmp moved successfully.
C:\WINDOWS\Temp\avg-289f6824-f023-4f77-acce-646fe6914b40.tmp moved successfully.
C:\WINDOWS\Temp\avg-28bc4c65-3495-4067-9508-1b458737ee44.tmp moved successfully.
C:\WINDOWS\Temp\avg-28dd4011-57f6-483a-a71c-a121ba34074c.tmp moved successfully.
C:\WINDOWS\Temp\avg-2906580a-fb5c-434b-bbba-3537375f8624.tmp moved successfully.
C:\WINDOWS\Temp\avg-290b6f3c-7070-434c-aa9e-46234b357904.tmp moved successfully.
C:\WINDOWS\Temp\avg-292bd71d-0624-4330-92e5-257373c39c21.tmp moved successfully.
C:\WINDOWS\Temp\avg-29379000-9ad3-4105-a01a-8b7b33200456.tmp moved successfully.
C:\WINDOWS\Temp\avg-294c7176-4ad4-4624-97c5-dc5eadd42461.tmp moved successfully.
C:\WINDOWS\Temp\avg-29540c58-e2c4-405f-aa92-da6c3d0cd73e.tmp moved successfully.
C:\WINDOWS\Temp\avg-2954f26e-351d-483b-bd24-8c1af7cf5d50.tmp moved successfully.
C:\WINDOWS\Temp\avg-29666711-2123-4f45-a339-bb3652093146.tmp moved successfully.
C:\WINDOWS\Temp\avg-296f7971-6d54-4201-8d46-90394eb5e355.tmp moved successfully.
C:\WINDOWS\Temp\avg-29868d78-baba-436c-acbd-6f3e2132943d.tmp moved successfully.
C:\WINDOWS\Temp\avg-2986cf0f-df63-4066-9bca-cc739cb4aa29.tmp moved successfully.
C:\WINDOWS\Temp\avg-29910e29-c804-4c5a-8cc1-d962c2125730.tmp moved successfully.
C:\WINDOWS\Temp\avg-299d3d79-9b77-471e-ba19-8d064b47820f.tmp moved successfully.
C:\WINDOWS\Temp\avg-29a00b2e-22fd-4772-a3c3-1f37da9f9c55.tmp moved successfully.
C:\WINDOWS\Temp\avg-29ae6412-ac41-4429-852a-14521e49ae56.tmp moved successfully.
C:\WINDOWS\Temp\avg-29b8464b-d316-4f55-90f7-f03e15e85b6b.tmp moved successfully.
C:\WINDOWS\Temp\avg-29bad12e-15b7-4716-9ce8-851d7ac5ac79.tmp moved successfully.
C:\WINDOWS\Temp\avg-29bced2d-6a7d-485d-8ae7-ae4360e06059.tmp moved successfully.
C:\WINDOWS\Temp\avg-29d61723-cf19-471f-8d74-06468232cf6e.tmp moved successfully.
C:\WINDOWS\Temp\avg-29d85f1b-9131-4f72-ad8b-50526beb6423.tmp moved successfully.
C:\WINDOWS\Temp\avg-29ebf064-89ca-416a-933e-8403f47c8e70.tmp moved successfully.
C:\WINDOWS\Temp\avg-2a13f870-795f-4a23-92ec-f63d530fa47a.tmp moved successfully.
C:\WINDOWS\Temp\avg-2a1cc21b-582d-4951-b2c4-9023e9dc3527.tmp moved successfully.
C:\WINDOWS\Temp\avg-2a7cc95a-2882-4a38-abd9-214565103d6f.tmp moved successfully.
C:\WINDOWS\Temp\avg-2a901944-c29c-4611-b1e4-415e595a3d34.tmp moved successfully.
C:\WINDOWS\Temp\avg-2a94c97d-e786-4232-9f24-c92780f70040.tmp moved successfully.
C:\WINDOWS\Temp\avg-2aa38f42-ea6a-450b-aa10-101680928760.tmp moved successfully.
C:\WINDOWS\Temp\avg-2aadab2d-d2ed-4c3a-9bec-2f73b7d9d478.tmp moved successfully.
C:\WINDOWS\Temp\avg-2ad38638-eb1f-4815-b59e-bb093bdbfd57.tmp moved successfully.
C:\WINDOWS\Temp\avg-2af44005-b0ca-4354-aa39-ca715fc26c52.tmp moved successfully.
C:\WINDOWS\Temp\avg-2b06d40c-7380-433d-bc7a-cb2c7a031e0e.tmp moved successfully.
C:\WINDOWS\Temp\avg-2b0f6e6d-8c9d-4b61-8fe9-c062ce374e06.tmp moved successfully.
C:\WINDOWS\Temp\avg-2b42b361-2872-4a3c-8840-9918abb0c740.tmp moved successfully.
C:\WINDOWS\Temp\avg-2b509d0c-8b30-4c12-8cd1-7c343d526f50.tmp moved successfully.
C:\WINDOWS\Temp\avg-2b51f879-fed5-4654-8768-226578237673.tmp moved successfully.
C:\WINDOWS\Temp\avg-2b762337-fb03-432a-a6f9-821af653943f.tmp moved successfully.
C:\WINDOWS\Temp\avg-2b7c0476-f70d-453e-ae41-c21030972c15.tmp moved successfully.
C:\WINDOWS\Temp\avg-2b80763d-37f6-4c3c-84a5-7241cc3c8804.tmp moved successfully.
C:\WINDOWS\Temp\avg-2b85872f-27a5-4a78-acca-977a3de0305f.tmp moved successfully.
C:\WINDOWS\Temp\avg-2b8a7667-a182-4a71-b5d0-0f566812887a.tmp moved successfully.
C:\WINDOWS\Temp\avg-2b9a473b-bb8e-4d72-a024-6c589f273637.tmp moved successfully.
C:\WINDOWS\Temp\avg-2ba6b17f-7a2d-482c-8b46-0967499fe267.tmp moved successfully.
C:\WINDOWS\Temp\avg-2ba7e802-24fb-4152-96c2-8a2ce1d7dc5e.tmp moved successfully.
C:\WINDOWS\Temp\avg-2bb69165-487c-4227-8d4a-7860451d4f11.tmp moved successfully.
C:\WINDOWS\Temp\avg-2bc43831-26d8-4b25-a057-38039731dd02.tmp moved successfully.
C:\WINDOWS\Temp\avg-2bd5766b-b302-4330-b3e9-fc546eb30f7c.tmp moved successfully.
C:\WINDOWS\Temp\avg-2be64828-3f76-4618-b7c9-304534014433.tmp moved successfully.
C:\WINDOWS\Temp\avg-2beb2e4f-62b2-4a05-9091-bd12a9de6734.tmp moved successfully.
C:\WINDOWS\Temp\avg-2bebe740-f2be-431b-bd88-263b40c26107.tmp moved successfully.
C:\WINDOWS\Temp\avg-2bee336e-dc52-4b0d-9cdd-0e3f688d0d64.tmp moved successfully.
C:\WINDOWS\Temp\avg-2bf9245b-7803-4978-bd30-dc192b47734c.tmp moved successfully.
C:\WINDOWS\Temp\avg-2c0ed863-f4c0-405a-ab4a-c86ad3ab0c6d.tmp moved successfully.
C:\WINDOWS\Temp\avg-2c115f27-442d-4703-84a7-8e586b70e559.tmp moved successfully.
C:\WINDOWS\Temp\avg-2c3e3850-fced-4755-90aa-0634a2a99b2f.tmp moved successfully.
C:\WINDOWS\Temp\avg-2cc68825-74ef-4b11-801a-f67848406b2b.tmp moved successfully.
C:\WINDOWS\Temp\avg-2cd14f57-3b6b-4f3d-8818-52230a8c002e.tmp moved successfully.
C:\WINDOWS\Temp\avg-2cd34302-5c87-4b00-a750-f549fb547c34.tmp moved successfully.
C:\WINDOWS\Temp\avg-2cff9965-f47c-4245-b5f7-a7145eb00d3f.tmp moved successfully.
C:\WINDOWS\Temp\avg-2d184177-556f-4b1d-b4bf-1101c3aac575.tmp moved successfully.
C:\WINDOWS\Temp\avg-2d384f70-2c7d-4717-9e89-ab19f1d0131e.tmp moved successfully.
C:\WINDOWS\Temp\avg-2d4a432b-3715-4d61-8f49-1e78be506f53.tmp moved successfully.
C:\WINDOWS\Temp\avg-2d617b3f-41ed-4548-81f6-386732838956.tmp moved successfully.
C:\WINDOWS\Temp\avg-2d7e080d-fd74-407a-88d2-9e509c3bd75e.tmp moved successfully.
C:\WINDOWS\Temp\avg-2d8d1f14-ad9a-4d43-807a-8727dcf22d09.tmp moved successfully.
C:\WINDOWS\Temp\avg-2dabc45c-59d7-4d76-858d-c73002b3b856.tmp moved successfully.
C:\WINDOWS\Temp\avg-2dc38802-73b4-4702-ba95-b81b88f01c43.tmp moved successfully.
C:\WINDOWS\Temp\avg-2dcddd69-9950-4476-8e2a-2951e3467d58.tmp moved successfully.
C:\WINDOWS\Temp\avg-2dcfb96f-c7e4-406b-a858-301c55716e3b.tmp moved successfully.
C:\WINDOWS\Temp\avg-2dfa575e-aabd-4176-9ccd-ab560e698a01.tmp moved successfully.
C:\WINDOWS\Temp\avg-2e165426-f682-424e-9e1e-f3662dbcf444.tmp moved successfully.
C:\WINDOWS\Temp\avg-2e19ee1b-ea52-464d-811c-436cd0ece149.tmp moved successfully.
C:\WINDOWS\Temp\avg-2e3d7a7b-73f3-4b1a-8f6d-8f2358469c5f.tmp moved successfully.
C:\WINDOWS\Temp\avg-2e435546-15cc-4165-945d-35629f3c631f.tmp moved successfully.
C:\WINDOWS\Temp\avg-2e6b2f43-4954-4d04-920b-ab7ba1279073.tmp moved successfully.
C:\WINDOWS\Temp\avg-2e8b8939-713a-4c0d-ab65-550afd2a8844.tmp moved successfully.
C:\WINDOWS\Temp\avg-2e9c4634-7423-4a56-8b94-d852999c7842.tmp moved successfully.