Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prestala pracovať Panda Cloud Antivirus

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
Uživatelský avatar
kekesko
Návštěvník
Návštěvník
Příspěvky: 149
Registrován: 16 led 2008 07:49

Prestala pracovať Panda Cloud Antivirus

#1 Příspěvek od kekesko »

Zdravím, prestal mi pracovať antivirus Panda. Takisto sa mi inak zobrazuje Win prieskumník a celkovo je PC spomalený. Poprosil by som o pomoc dík.
Pripájam logy:

DDS (Ver_2012-11-20.01) - NTFS_x86
Internet Explorer: 8.0.6001.18702 BrowserJavaVersion: 10.10.2
Run by BOBO at 18:13:11 on 2013-04-28
Systém Microsoft Windows XP Professional 5.1.2600.3.1250.421.1033.18.1919.1110 [GMT 2:00]
.
AV: Panda Cloud Antivirus *Enabled/Updated* {5AD27692-540A-464E-B625-78275FA38393}
FW: Cloud Antivirus Firewall *Disabled*
.
============== Running Processes ================
.
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\cisvc.exe
C:\WINDOWS\system32\wdfmgr.exe
C:\Program Files\Panda Security\Panda Cloud Antivirus\PSANHost.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\system32\cidaemon.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Panda Security\Panda Cloud Antivirus\PSUAMain.exe
C:\Program Files\uTorrent\uTorrent.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Opera\Opera.exe
C:\Program Files\Your Uninstaller 2010\urmain.exe
C:\Program Files\Your Uninstaller 2010\urmain.exe
C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Program Files\Internet Download Manager\IDMan.exe
C:\Program Files\Internet Download Manager\IEMonitor.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k rpcss
C:\WINDOWS\System32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k NetworkService
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\svchost.exe -k bthsvcs
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\System32\svchost.exe -k HTTPFilter
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://www.google.sk/
uURLSearchHooks: {472734EA-242A-422b-ADF8-83D1E48CC825} - <orphaned>
BHO: IDM integration (IDMIEHlprObj Class): {0055C089-8582-441B-A0BF-17B458C2A3A8} - c:\program files\internet download manager\IDMIECC.dll
uRun: [uTorrent] "c:\program files\utorrent\uTorrent.exe"
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
mRun: [PSUAMain] "c:\program files\panda security\panda cloud antivirus\PSUAMain.exe" /LaunchSysTray
dRun: [CTFMON.EXE] c:\windows\system32\CTFMON.EXE
uPolicies-Explorer: NoDriveTypeAutoRun = dword:323
uPolicies-Explorer: NoDriveAutoRun = dword:67108863
uPolicies-Explorer: NoDrives = dword:0
mPolicies-Explorer: NoDriveAutoRun = dword:67108863
mPolicies-Explorer: NoDriveTypeAutoRun = dword:323
mPolicies-Explorer: NoDrives = dword:0
mPolicies-Explorer: NoDriveTypeAutoRun = dword:323
mPolicies-Explorer: NoDriveAutoRun = dword:67108863
IE: Stiahnuť s IDM - c:\program files\internet download manager\IEExt.htm
IE: Stiahnuť s IDM všetky prepojenia - c:\program files\internet download manager\IEGetAll.htm
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} - hxxp://www.update.microsoft.com/windowsupdate/ ... 6973103500
TCP: NameServer = 195.34.133.21 192.168.0.1
TCP: Interfaces\{95590E9A-F60B-4752-BBD9-3232AC14190D} : DHCPNameServer = 195.34.133.21 192.168.0.1
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\program files\common files\skype\Skype4COM.dll
SEH: DVDIdleShell Class - {93994DE8-8239-4655-B1D1-5F4E91300429} - c:\program files\dvdidle pro\DVDShell.dll
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\documents and settings\bobo\application data\mozilla\firefox\profiles\d3wvyde2.default\
FF - prefs.js: browser.search.selectedEngine - Search Results
FF - prefs.js: browser.startup.homepage - hxxps://www.facebook.com/
FF - prefs.js: network.proxy.type - 0
FF - plugin: c:\program files\java\jre7\bin\plugin2\npjp2.dll
FF - plugin: c:\windows\system32\adobe\director\np32dsw_1168638.dll
FF - plugin: c:\windows\system32\macromed\flash\NPSWF32_11_5_502_135.dll
FF - plugin: c:\windows\system32\npdeployJava1.dll
FF - plugin: c:\windows\system32\npptools.dll
.
============= SERVICES / DRIVERS ===============
.
R1 IDMTDI;IDMTDI;c:\windows\system32\drivers\idmtdi.sys [2011-12-29 101616]
R1 NNSALPC;NNSAlpc;c:\windows\system32\drivers\NNSAlpc.sys [2012-11-9 82728]
R1 NNSHTTP;NNSHttp;c:\windows\system32\drivers\NNSHttp.sys [2012-11-9 119080]
R1 NNSHTTPS;NNSHttps;c:\windows\system32\drivers\NNSHttps.sys [2013-1-9 95584]
R1 NNSIDS;NNSids;c:\windows\system32\drivers\NNSIds.sys [2012-11-9 123944]
R1 NNSPICC;NNSPicc;c:\windows\system32\drivers\NNSpicc.sys [2012-11-9 94632]
R1 NNSPIHS;NNSPihs;c:\windows\system32\drivers\NNSpihs.sys [2012-11-9 51496]
R1 NNSPOP3;NNSPop3;c:\windows\system32\drivers\NNSPop3.sys [2012-11-9 105640]
R1 NNSPROT;NNSProt;c:\windows\system32\drivers\NNSProt.sys [2012-11-9 286888]
R1 NNSPRV;NNSPrv;c:\windows\system32\drivers\NNSPrv.sys [2012-11-9 159528]
R1 NNSSMTP;NNSSmtp;c:\windows\system32\drivers\NNSSmtp.sys [2012-11-9 108200]
R1 NNSSTRM;NNSStrm;c:\windows\system32\drivers\NNSStrm.sys [2012-11-9 218024]
R1 NNSTLSC;NNSTlsc;c:\windows\system32\drivers\NNStlsc.sys [2012-11-9 93096]
R1 PSINKNC;PSINKNC;c:\windows\system32\drivers\PSINKNC.sys [2012-11-9 178728]
R1 sp_rsdrv2;Spyware Terminator 2012 Realtime Shield Driver;c:\windows\system32\drivers\sp_rsdrv2.sys [2013-1-16 32768]
R2 NanoServiceMain;Panda Cloud Antivirus Service;c:\program files\panda security\panda cloud antivirus\PSANHost.exe [2013-1-27 140512]
R2 PSINAflt;PSINAflt;c:\windows\system32\drivers\PSINAflt.sys [2012-11-9 149288]
R2 PSINFile;PSINFile;c:\windows\system32\drivers\PSINFile.sys [2012-11-9 102184]
R2 PSINProc;PSINProc;c:\windows\system32\drivers\PSINProc.sys [2012-11-9 114216]
R2 PSINProt;PSINProt;c:\windows\system32\drivers\PSINProt.sys [2012-11-9 123560]
R3 Cap713x;Cap713x Video Capture;c:\windows\system32\drivers\Cap713x.sys [2004-6-10 502784]
R3 PSched;QoS Packet Scheduler;c:\windows\system32\drivers\psched.sys [2008-4-14 69120]
R3 PSKMAD;PSKMAD;c:\windows\system32\drivers\PSKMAD.sys [2013-4-25 46672]
S0 TfFsMon;TfFsMon;c:\windows\system32\drivers\tffsmon.sys --> c:\windows\system32\drivers\TfFsMon.sys [?]
S0 TFSysMon;TfSysMon;c:\windows\system32\drivers\tfsysmon.sys --> c:\windows\system32\drivers\TfSysMon.sys [?]
S2 PSUAService;Panda Product Service;c:\program files\panda security\panda cloud antivirus\PSUAService.exe [2013-1-27 37088]
S2 SkypeUpdate;Skype Updater;c:\program files\skype\updater\Updater.exe [2013-2-28 161384]
S3 genmcmnUSB;USB Scroll Mouse Driver;c:\windows\system32\drivers\gflmouhid.sys [2003-8-7 6528]
S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [2013-1-1 21104]
S3 NNSNAHS;Network Activity Hook Server Service;c:\windows\system32\drivers\NNSNAHS.sys [2012-10-22 38824]
S3 TfNetMon;TfNetMon;\??\c:\windows\system32\drivers\tfnetmon.sys --> c:\windows\system32\drivers\TfNetMon.sys [?]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0;c:\windows\microsoft.net\framework\v4.0.30319\wpf\wpffontcache_v0400.exe --> c:\windows\microsoft.net\framework\v4.0.30319\wpf\WPFFontCache_v0400.exe [?]
S4 MBAMService;MBAMService;c:\program files\malwarebytes' anti-malware\mbamservice.exe [2013-1-1 682344]
S4 MBAMScheduler;MBAMScheduler;c:\program files\malwarebytes' anti-malware\mbamscheduler.exe [2013-1-1 398184]
S4 PCToolsSSDMonitorSvc;PC Tools Startup and Shutdown Monitor service;c:\program files\common files\pc tools\smonitor\StartManSvc.exe [2013-1-3 794272]
S4 PDF Architect Helper Service;PDF Architect Helper Service;c:\program files\pdf architect\HelperService.exe [2013-1-9 1324104]
S4 PDF Architect Service;PDF Architect Service;c:\program files\pdf architect\ConversionService.exe [2013-1-9 795208]
S4 ST2012_Svc;Spyware Terminator 2012 Realtime Shield Service;c:\program files\spyware terminator\st_rsser.exe [2013-1-16 587472]
.
=============== Created Last 30 ================
.
2013-04-28 15:44:24 32128 ----a-w- c:\windows\system32\drivers\usbccgp.sys
2013-04-28 14:58:27 -------- d-----w- c:\windows\system32\wbem\repository\FS
2013-04-28 14:58:27 -------- d-----w- c:\windows\system32\wbem\Repository
2013-04-28 14:58:00 -------- d-----w- c:\documents and settings\all users\application data\SaveByclick
2013-04-28 14:00:34 -------- d-----w- C:\RECYCLER(2)
2013-04-25 20:58:14 46672 ----a-w- c:\windows\system32\drivers\PSKMAD.sys
2013-04-24 10:15:09 -------- d-----w- c:\program files\CCleaner
2013-04-23 00:05:43 -------- d-----w- C:\Spear Britney
2013-04-23 00:01:11 -------- d-----w- C:\Obrenovac
2013-04-22 23:59:24 -------- d-----w- C:\Update
2013-04-22 23:58:36 -------- d-----w- C:\Amateur Self Shots1
2013-04-20 14:58:10 -------- d-----w- c:\documents and settings\bobo\local settings\application data\Pokki
2013-04-20 14:57:31 -------- d-----w- c:\documents and settings\all users\application data\Freemake
2013-04-20 14:57:19 -------- d-----w- c:\program files\Freemake
2013-04-20 14:57:19 -------- d-----w- c:\documents and settings\bobo\application data\OpenCandy
2013-04-18 09:06:57 -------- d-----w- c:\program files\OpenVideoConverter
2013-04-18 08:45:13 70656 ----a-w- c:\windows\system32\yv12vfw.dll
2013-04-18 08:45:13 70656 ----a-w- c:\windows\system32\i420vfw.dll
2013-04-18 08:45:13 27648 ----a-w- c:\windows\system32\AVSredirect.dll
2013-04-18 08:44:55 -------- d-----w- c:\program files\eRightSoft
2013-04-18 05:44:14 -------- d-----w- c:\documents and settings\bobo\application data\NVIDIA
2013-04-14 21:06:13 1072544 ----a-w- c:\windows\system32\nvdrsdb1.bin
2013-04-14 21:06:13 1072544 ----a-w- c:\windows\system32\nvdrsdb0.bin
2013-04-14 21:06:13 1 ----a-w- c:\windows\system32\nvdrssel.bin
2013-04-14 18:38:56 -------- d-----w- c:\program files\SomePDF
2013-04-14 10:37:32 -------- d-----w- c:\program files\Driver-Soft
2013-04-14 01:49:34 7520 ----a-w- c:\documents and settings\all users\application data\NanoRepository.bin
2013-04-10 10:14:44 -------- d-----w- c:\documents and settings\bobo\application data\avidemux
2013-04-10 10:14:26 -------- d-----w- c:\program files\Avidemux 2.5
2013-04-10 08:01:56 -------- d-----w- C:\Hailey Arthur-Hotel
2013-04-10 07:59:49 -------- d-----w- c:\documents and settings\all users\application data\blekko toolbars
2013-04-04 06:08:15 -------- d-----w- c:\documents and settings\bobo\application data\Ashampoo
2013-04-04 06:07:59 -------- d-----w- c:\documents and settings\bobo\local settings\application data\ashampoo
2013-04-04 06:07:26 -------- d-----w- c:\documents and settings\all users\application data\Ashampoo
2013-04-04 06:07:24 -------- d-----w- c:\program files\Ashampoo
2013-04-01 11:46:58 -------- d-----w- c:\program files\DVDFab 8 Qt
2013-04-01 11:38:38 -------- d-----w- c:\program files\CZ-SK-IPTV
2013-04-01 11:31:42 -------- d-----w- c:\program files\NeroPortable
2013-04-01 02:37:48 -------- d-----w- c:\documents and settings\bobo\application data\RipIt4Me
2013-03-31 20:34:06 -------- d-----w- c:\program files\MKVtoolnix
2013-03-31 20:17:35 -------- d-----w- c:\program files\AVG SafeGuard toolbar
.
==================== Find3M ====================
.
2013-03-08 08:36:22 293376 ----a-w- c:\windows\system32\winsrv.dll
2013-03-07 01:32:25 2149888 ----a-w- c:\windows\system32\ntoskrnl.exe
2013-03-07 00:50:30 2028544 ----a-w- c:\windows\system32\ntkrnlpa.exe
2013-03-02 02:06:31 916480 ----a-w- c:\windows\system32\wininet.dll
2013-03-02 02:06:30 43520 ------w- c:\windows\system32\licmgr10.dll
2013-03-02 02:06:30 1469440 ------w- c:\windows\system32\inetcpl.cpl
2013-03-02 01:25:02 1867264 ----a-w- c:\windows\system32\win32k.sys
2013-03-02 01:08:47 385024 ------w- c:\windows\system32\html.iec
2013-02-27 07:56:51 2067456 ----a-w- c:\windows\system32\mstscax.dll
2013-02-12 00:32:23 12928 ----a-w- c:\windows\system32\drivers\usb8023.sys
2013-02-11 00:18:47 720896 ----a-w- c:\windows\iun6002.exe
2013-02-08 03:03:02 19189760 ----a-w- c:\windows\system32\nvoglnt.dll
2013-02-08 03:03:02 1010464 ----a-w- c:\windows\system32\nvdispco32.dll
2013-02-08 03:03:00 4494336 ----a-w- c:\windows\system32\nv4_disp.dll
2013-02-08 03:02:58 7536640 ----a-w- c:\windows\system32\nvcuda.dll
2013-02-08 03:02:58 2581792 ----a-w- c:\windows\system32\nvcuvid.dll
2013-02-08 03:02:56 892704 ----a-w- c:\windows\system32\nvdispgenco32.dll
2013-02-08 03:02:56 2389504 ----a-w- c:\windows\system32\nvapi.dll
2013-02-08 03:02:56 17551360 ----a-w- c:\windows\system32\nvcompiler.dll
2013-02-08 03:02:44 12648960 ----a-w- c:\windows\system32\drivers\nv4_mini.sys
2013-02-08 03:02:42 5967872 ----a-w- c:\windows\system32\nvopencl.dll
2013-02-08 03:02:42 1869088 ----a-w- c:\windows\system32\nvcuvenc.dll
2013-01-19 07:44:40 2174976 ----a-w- c:\program files\common files\atimpenc.dll
2006-05-03 09:06:54 163328 --sha-r- c:\windows\system32\flvDX.dll
2007-02-21 10:47:16 31232 --sha-r- c:\windows\system32\msfDX.dll
2008-03-16 12:30:52 216064 --sha-r- c:\windows\system32\nbDX.dll
2010-01-06 22:00:00 107520 --sha-r- c:\windows\system32\TAKDSDecoder.dll
.
============= FINISH: 18:18:40,92 ===============

XXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXX


Logfile of random's system information tool 1.06 (written by random/random)
Run by BOBO at 2013-04-28 19:07:51
Systém Microsoft Windows XP Professional Service Pack 3
System drive C: has 4 GB (5%) free of 80 GB
Total RAM: 1919 MB (47% free)

HijackThis download failed

======Scheduled tasks folder======

C:\WINDOWS\tasks\Adobe Flash Player Updater.job
C:\WINDOWS\tasks\RegClean Pro_DEFAULT.job
C:\WINDOWS\tasks\RegClean Pro_UPDATES.job
C:\WINDOWS\tasks\RMAutoUpdate.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0055C089-8582-441B-A0BF-17B458C2A3A8}]
IDM integration (IDMIEHlprObj Class) - C:\Program Files\Internet Download Manager\IDMIECC.dll [2011-10-01 218544]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"PSUAMain"=C:\Program Files\Panda Security\Panda Cloud Antivirus\PSUAMain.exe [2013-01-27 32480]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"uTorrent"=C:\Program Files\uTorrent\uTorrent.exe [2013-01-01 399224]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AsusStartupHelp]
C:\Program Files\ASUS\AASP\1.00.17\AsRunHelp.exe [2006-11-14 363008]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BluetoothAuthenticationAgent]
bthprops.cpl,,BluetoothAuthenticationAgent []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvCplDaemon]
C:\WINDOWS\system32\NvCpl.dll [2010-03-16 13670504]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvMediaCenter]
C:\WINDOWS\system32\NvMcTray.dll [2010-03-16 110696]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Panda Security URL Filtering]
C:\Documents and Settings\All Users\Application Data\Panda Security URL Filtering\Panda_URL_Filtering.exe [2012-10-15 221832]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PWRISOVM.EXE]
C:\Program Files\PowerISO\PWRISOVM.EXE [2007-08-07 200704]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RTHDCPL]
C:\WINDOWS\RTHDCPL.EXE [2007-02-26 16125440]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SkyTel]
C:\WINDOWS\SkyTel.EXE [2006-05-16 2879488]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SpywareTerminatorShield]
C:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe [2012-09-07 2777296]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SpywareTerminatorUpdater]
C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe [2012-09-07 3673808]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^BlueSoleil.lnk]
[]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
"JavaQuickStarterService"=2
"NVSvc"=2
"AdobeFlashPlayerUpdateSvc"=3
"NBService"=3
"BlueSoleil Hid Service"=2
"nSvcIp"=2
"ForceWare Intelligent Application Manager (IAM)"=2
"MBAMService"=2
"MBAMScheduler"=2
"idsvc"=3
"ICQ Service"=2
"NGRegClnSrv"=2
"ST2012_Svc"=2
"PCToolsSSDMonitorSvc"=2
"PCSUService"=2
"PDF Architect Service"=2
"PDF Architect Helper Service"=2
"bgsvcgen"=2
"SkypeUpdate"=2
"NMIndexingService"=3

C:\Documents and Settings\BOBO\Start Menu\Programs\Startup
_uninst_70805343.lnk - C:\Documents and Settings\BOBO\Local Settings\Temp\_uninst_70805343.bat

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{93994DE8-8239-4655-B1D1-5F4E91300429}"=C:\PROGRA~1\DVDIDL~1\DVDShell.dll [2004-10-09 49152]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{1a3e09be-1e45-494b-9174-d7385b45bbf5}]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoDriveAutoRun"=67108863
"NoInstrumentation"=1
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveAutoRun"=
"NoDriveTypeAutoRun"=
"HonorAutoRunSetting"=
"NoDrives"=

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"C:\Program Files\uTorrent\uTorrent.exe"="C:\Program Files\uTorrent\uTorrent.exe:*:Enabled:µTorrent"
"C:\Program Files\ICQ7.7\ICQ.exe"="C:\Program Files\ICQ7.7\ICQ.exe:*:Enabled:ICQ"
"C:\Program Files\Java\jre7\launch4j-tmp\frd.exe"="C:\Program Files\Java\jre7\launch4j-tmp\frd.exe:*:Enabled:Java(TM) Platform SE binary"
"C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleil.exe"="C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleil.exe:*:Enabled:BlueSoleil"
"C:\WINDOWS\system32\sessmgr.exe"="C:\WINDOWS\system32\sessmgr.exe:*:Disabled:@xpsp2res.dll,-22019"
"C:\Program Files\Skype\Plugin Manager\skypePM.exe"="C:\Program Files\Skype\Plugin Manager\skypePM.exe:*:Enabled:Skype Extras Manager"
"C:\Program Files\Opera\opera.exe"="C:\Program Files\Opera\opera.exe:*:Enabled:Opera Internet Browser"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype "

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"

======List of files/folders created in the last 1 months======

2013-04-28 19:07:52 ----D---- C:\Program Files\trend micro
2013-04-28 17:19:59 ----D---- C:\WINDOWS\LastGood
2013-04-28 16:58:04 ----SHD---- C:\RECYCLER
2013-04-28 16:58:00 ----D---- C:\Documents and Settings\All Users\Application Data\SaveByclick
2013-04-28 16:58:00 ----AD---- C:\Documents and Settings\All Users\Application Data\TEMP
2013-04-28 16:54:24 ----D---- C:\rsit
2013-04-28 16:00:34 ----D---- C:\RECYCLER(2)
2013-04-28 15:45:56 ----D---- C:\WINDOWS\temp
2013-04-28 15:45:54 ----A---- C:\ComboFix.txt
2013-04-24 12:15:09 ----D---- C:\Program Files\CCleaner
2013-04-24 12:12:44 ----D---- C:\Program Files\Google
2013-04-24 08:21:18 ----D---- C:\Program Files\Mozilla Firefox
2013-04-23 02:05:43 ----D---- C:\Spear Britney
2013-04-23 02:01:11 ----D---- C:\Obrenovac
2013-04-23 01:59:24 ----D---- C:\Update
2013-04-23 01:58:36 ----D---- C:\Amateur Self Shots1
2013-04-20 16:57:31 ----D---- C:\Documents and Settings\All Users\Application Data\Freemake
2013-04-20 16:57:19 ----D---- C:\Program Files\Freemake
2013-04-20 16:57:19 ----D---- C:\Documents and Settings\BOBO\Application Data\OpenCandy
2013-04-18 11:13:16 ----RASH---- C:\WINDOWS\system32\TAKDSDecoder.dll
2013-04-18 11:13:16 ----RASH---- C:\WINDOWS\system32\nbDX.dll
2013-04-18 11:13:16 ----RASH---- C:\WINDOWS\system32\msfDX.dll
2013-04-18 11:13:16 ----RASH---- C:\WINDOWS\system32\flvDX.dll
2013-04-18 11:13:16 ----A---- C:\WINDOWS\system32\drvc.dll
2013-04-18 11:06:57 ----D---- C:\Program Files\OpenVideoConverter
2013-04-18 10:45:13 ----A---- C:\WINDOWS\system32\yv12vfw.dll
2013-04-18 10:45:13 ----A---- C:\WINDOWS\system32\i420vfw.dll
2013-04-18 10:45:13 ----A---- C:\WINDOWS\system32\AVSredirect.dll
2013-04-18 10:44:55 ----D---- C:\Program Files\eRightSoft
2013-04-18 07:44:14 ----D---- C:\Documents and Settings\BOBO\Application Data\NVIDIA
2013-04-16 03:43:26 ----A---- C:\DEBUG.TXT
2013-04-14 20:38:56 ----D---- C:\Program Files\SomePDF
2013-04-14 12:37:32 ----D---- C:\Program Files\Driver-Soft
2013-04-11 21:50:49 ----HDC---- C:\WINDOWS\$NtUninstallKB2808735$
2013-04-11 21:50:42 ----HDC---- C:\WINDOWS\$NtUninstallKB2820917$
2013-04-11 21:47:42 ----HDC---- C:\WINDOWS\$NtUninstallKB2813345$
2013-04-11 21:47:32 ----HDC---- C:\WINDOWS\$NtUninstallKB2813170$
2013-04-10 12:14:44 ----D---- C:\Documents and Settings\BOBO\Application Data\avidemux
2013-04-10 12:14:26 ----D---- C:\Program Files\Avidemux 2.5
2013-04-10 10:01:56 ----D---- C:\Hailey Arthur-Hotel
2013-04-10 10:00:20 ----D---- C:\Config.Msi
2013-04-10 09:59:49 ----D---- C:\Documents and Settings\All Users\Application Data\blekko toolbars
2013-04-04 10:16:50 ----SHD---- C:\WINDOWS\CSC
2013-04-04 08:08:15 ----D---- C:\Documents and Settings\BOBO\Application Data\Ashampoo
2013-04-04 08:07:26 ----D---- C:\Documents and Settings\All Users\Application Data\Ashampoo
2013-04-04 08:07:24 ----D---- C:\Program Files\Ashampoo
2013-04-01 13:46:58 ----D---- C:\Program Files\DVDFab 8 Qt
2013-04-01 13:38:38 ----D---- C:\Program Files\CZ-SK-IPTV
2013-04-01 13:31:42 ----D---- C:\Program Files\NeroPortable
2013-04-01 04:37:48 ----D---- C:\Documents and Settings\BOBO\Application Data\RipIt4Me
2013-03-31 22:34:06 ----D---- C:\Program Files\MKVtoolnix
2013-03-31 22:17:35 ----D---- C:\Program Files\AVG SafeGuard toolbar

======List of files/folders modified in the last 1 months======

2013-04-28 19:07:52 ----D---- C:\Program Files
2013-04-28 19:05:32 ----D---- C:\Documents and Settings\BOBO\Application Data\uTorrent
2013-04-28 18:43:07 ----D---- C:\WINDOWS\Prefetch
2013-04-28 18:43:07 ----D---- C:\Program Files\JDownloader
2013-04-28 18:36:29 ----SHD---- C:\System Volume Information
2013-04-28 18:35:35 ----HD---- C:\WINDOWS\inf
2013-04-28 18:35:35 ----D---- C:\WINDOWS\system32\drivers
2013-04-28 17:45:53 ----D---- C:\Temp
2013-04-28 17:45:26 ----D---- C:\WINDOWS\system32
2013-04-28 17:19:59 ----D---- C:\WINDOWS
2013-04-28 17:18:06 ----D---- C:\Program Files\Registry Mechanic
2013-04-28 17:00:11 ----D---- C:\WINDOWS\system32\CatRoot2
2013-04-28 16:59:28 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2013-04-28 16:58:43 ----D---- C:\WINDOWS\system32\config
2013-04-28 16:58:28 ----D---- C:\WINDOWS\system32\wbem
2013-04-28 16:58:27 ----D---- C:\WINDOWS\Registration
2013-04-28 16:58:15 ----D---- C:\DVD
2013-04-28 16:57:57 ----D---- C:\Qoobox
2013-04-28 16:57:46 ----HD---- C:\Program Files\InstallShield Installation Information
2013-04-28 16:57:35 ----A---- C:\WINDOWS\SchedLgU.Txt
2013-04-28 16:45:23 ----D---- C:\Program Files\ASUS
2013-04-28 16:29:03 ----D---- C:\Documents and Settings\All Users\Application Data\Panda Security
2013-04-28 16:16:58 ----D---- C:\WINDOWS\security
2013-04-28 15:43:35 ----A---- C:\WINDOWS\system.ini
2013-04-28 15:40:56 ----D---- C:\WINDOWS\AppPatch
2013-04-28 15:40:53 ----D---- C:\Program Files\Common Files
2013-04-28 10:36:41 ----D---- C:\WINDOWS\Minidump
2013-04-27 09:33:42 ----D---- C:\Documents and Settings\BOBO\Application Data\DMCache
2013-04-27 02:35:52 ----D---- C:\Demux
2013-04-27 02:20:18 ----A---- C:\WINDOWS\NeroDigital.ini
2013-04-27 02:18:25 ----A---- C:\WINDOWS\DVDIdlePro.INI
2013-04-26 12:25:20 ----D---- C:\Documents and Settings\All Users\Application Data\DVD Shrink
2013-04-26 09:00:26 ----D---- C:\Documents and Settings\BOBO\Application Data\ICQ
2013-04-26 08:57:40 ----A---- C:\WINDOWS\IfoEdit.INI
2013-04-26 08:51:33 ----D---- C:\Documents and Settings\BOBO\Application Data\IDM
2013-04-25 23:55:47 ----D---- C:\WINDOWS\Microsoft.NET
2013-04-25 23:04:00 ----D---- C:\Documents and Settings\BOBO\Application Data\Media Player Classic
2013-04-25 08:51:47 ----SHD---- C:\WINDOWS\Installer
2013-04-25 08:51:44 ----D---- C:\Program Files\Microsoft Silverlight
2013-04-25 08:49:58 ----RSD---- C:\WINDOWS\assembly
2013-04-25 08:49:47 ----D---- C:\WINDOWS\system32\en-US
2013-04-25 08:49:17 ----D---- C:\WINDOWS\WinSxS
2013-04-24 13:17:12 ----SD---- C:\WINDOWS\Tasks
2013-04-24 12:17:59 ----D---- C:\Documents and Settings\BOBO\Application Data\Vso
2013-04-24 12:17:59 ----D---- C:\Documents and Settings\BOBO\Application Data\Skype
2013-04-24 12:17:59 ----D---- C:\Documents and Settings\All Users\Application Data\VSO
2013-04-24 10:12:13 ----D---- C:\VideoOutput
2013-04-22 10:01:36 ----D---- C:\Program Files\Windows Doctor
2013-04-22 09:59:45 ----D---- C:\Program Files\WinRAR
2013-04-22 09:59:42 ----D---- C:\Deep Purple.-.Discography(1968-2005). -SmoK
2013-04-22 09:57:48 ----D---- C:\WINDOWS\Debug
2013-04-21 09:28:52 ----A---- C:\WINDOWS\maketorrent.ini
2013-04-21 09:27:58 ----D---- C:\Torrent up
2013-04-21 09:19:14 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2013-04-20 16:36:12 ----D---- C:\Program Files\AutoGK
2013-04-19 06:31:49 ----D---- C:\AllokMP3toAMRFolder
2013-04-18 10:45:11 ----RSD---- C:\WINDOWS\Fonts
2013-04-15 03:54:49 ----D---- C:\WINDOWS\system32\CatRoot
2013-04-14 23:27:42 ----A---- C:\Documents and Settings\BOBO\Application Data\DVDSubEdit.ini
2013-04-14 23:06:11 ----D---- C:\WINDOWS\system32\ReinstallBackups
2013-04-14 23:06:08 ----RSHDC---- C:\WINDOWS\system32\dllcache
2013-04-14 23:06:01 ----D---- C:\Program Files\NVIDIA Corporation
2013-04-14 17:13:26 ----D---- C:\Documents and Settings\All Users\Application Data\Skype
2013-04-14 17:13:22 ----RD---- C:\Program Files\Skype
2013-04-14 17:13:22 ----D---- C:\Program Files\Common Files\Skype
2013-04-14 13:06:28 ----D---- C:\Documents and Settings\BOBO\Application Data\vlc
2013-04-11 21:51:19 ----D---- C:\Program Files\Internet Explorer
2013-04-11 21:51:00 ----D---- C:\WINDOWS\ie8updates
2013-04-11 21:50:55 ----HD---- C:\WINDOWS\$hf_mig$
2013-04-11 21:47:52 ----A---- C:\WINDOWS\system32\MRT.exe
2013-04-10 21:21:56 ----D---- C:\Program Files\Opera
2013-04-10 10:01:48 ----D---- C:\VobBlanker
2013-04-10 10:01:48 ----D---- C:\NeroPortable
2013-04-10 10:00:19 ----D---- C:\Program Files\Panda Security
2013-04-10 09:53:05 ----D---- C:\Program Files\XnView
2013-04-04 10:26:06 ----D---- C:\Documents and Settings
2013-04-04 10:04:46 ----A---- C:\WINDOWS\win.ini
2013-03-31 18:59:47 ----A---- C:\Documents and Settings\BOBO\Application Data\AutoGK.ini
2013-03-31 14:27:00 ----D---- C:\MyAudio

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R1 AsIO;AsIO; C:\WINDOWS\system32\drivers\AsIO.sys [2006-10-18 12664]
R1 ASPI32;ASPI32; C:\WINDOWS\system32\drivers\ASPI32.sys [2002-07-17 16877]
R1 cdrbsdrv;cdrbsdrv; C:\WINDOWS\system32\drivers\cdrbsdrv.sys [2013-01-27 33408]
R1 IDMTDI;IDMTDI; C:\WINDOWS\system32\DRIVERS\idmtdi.sys [2011-07-06 101616]
R1 NNSALPC;NNSAlpc; C:\WINDOWS\system32\DRIVERS\NNSAlpc.sys [2012-11-26 82728]
R1 NNSHTTP;NNSHttp; C:\WINDOWS\system32\DRIVERS\NNSHttp.sys [2012-11-26 119080]
R1 NNSHTTPS;NNSHttps; C:\WINDOWS\system32\DRIVERS\NNSHttps.sys [2013-01-09 95584]
R1 NNSIDS;NNSids; C:\WINDOWS\system32\DRIVERS\NNSIds.sys [2012-11-26 123944]
R1 NNSPICC;NNSPicc; C:\WINDOWS\system32\DRIVERS\NNSPicc.sys [2012-11-26 94632]
R1 NNSPIHS;NNSPihs; C:\WINDOWS\system32\DRIVERS\NNSPihs.sys [2012-11-26 51496]
R1 NNSPOP3;NNSPop3; C:\WINDOWS\system32\DRIVERS\NNSPop3.sys [2012-11-26 105640]
R1 NNSPROT;NNSProt; C:\WINDOWS\system32\DRIVERS\NNSProt.sys [2012-11-26 286888]
R1 NNSPRV;NNSPrv; C:\WINDOWS\system32\DRIVERS\NNSPrv.sys [2012-11-26 159528]
R1 NNSSMTP;NNSSmtp; C:\WINDOWS\system32\DRIVERS\NNSSmtp.sys [2012-11-26 108200]
R1 NNSSTRM;NNSStrm; C:\WINDOWS\system32\DRIVERS\NNSStrm.sys [2012-11-28 218024]
R1 NNSTLSC;NNSTlsc; C:\WINDOWS\system32\DRIVERS\NNSTlsc.sys [2012-11-26 93096]
R1 PSINKNC;PSINKNC; C:\WINDOWS\system32\DRIVERS\psinknc.sys [2012-11-09 178728]
R1 SCDEmu;SCDEmu; C:\WINDOWS\system32\drivers\SCDEmu.sys [2007-08-07 33052]
R1 sp_rsdrv2;Spyware Terminator 2012 Realtime Shield Driver; \??\C:\WINDOWS\system32\drivers\sp_rsdrv2.sys []
R1 WS2IFSL;Windows Socket 2.0 Non-IFS Service Provider Support Environment; C:\WINDOWS\System32\drivers\ws2ifsl.sys [2008-04-14 12032]
R2 PSINAflt;PSINAflt; C:\WINDOWS\system32\DRIVERS\PSINAflt.sys [2012-11-09 149288]
R2 PSINFile;PSINFile; C:\WINDOWS\system32\DRIVERS\PSINFile.sys [2012-11-09 102184]
R2 PSINProc;PSINProc; C:\WINDOWS\system32\DRIVERS\PSINProc.sys [2012-11-09 114216]
R2 PSINProt;PSINProt; C:\WINDOWS\system32\DRIVERS\PSINProt.sys [2012-11-09 123560]
R3 Cap713x;Cap713x Video Capture; C:\WINDOWS\system32\DRIVERS\Cap713x.sys [2004-06-10 502784]
R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-14 144384]
R3 HidUsb;Microsoft HID Class Driver; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-14 10368]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2007-03-01 4484608]
R3 mouhid;Mouse HID Driver; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-08-17 12160]
R3 MTsensor;ATK0110 ACPI UTILITY; C:\WINDOWS\system32\DRIVERS\ASACPI.sys [2004-08-13 5810]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2013-02-08 12648960]
R3 NVENETFD;NVIDIA nForce 10/100 Mbps Ethernet ; C:\WINDOWS\system32\DRIVERS\NVENETFD.sys [2010-03-04 70912]
R3 nvnetbus;NVIDIA Network Bus Enumerator; C:\WINDOWS\system32\DRIVERS\nvnetbus.sys [2010-03-04 13824]
R3 PSKMAD;PSKMAD; C:\WINDOWS\System32\DRIVERS\PSKMAD.sys [2012-11-07 46672]
R3 usbehci;Microsoft USB 2.0 Enhanced Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2008-04-14 30208]
R3 usbhub;USB2 Enabled Hub; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2008-04-14 59520]
R3 usbohci;Microsoft USB Open Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbohci.sys [2008-04-14 17152]
R3 usbstor;USB Mass Storage Driver; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
S3 BlueletAudio;Bluetooth Audio Service; C:\WINDOWS\system32\DRIVERS\blueletaudio.sys [2004-10-19 20096]
S3 BT;Bluetooth PAN Network Adapter; C:\WINDOWS\system32\DRIVERS\btnetdrv.sys [2004-09-21 10804]
S3 Btcsrusb;Bluetooth USB For Bluetooth Service; C:\WINDOWS\System32\Drivers\btcusb.sys [2004-12-01 22488]
S3 BthEnum;Bluetooth Request Block Driver; C:\WINDOWS\system32\DRIVERS\BthEnum.sys [2008-04-14 17024]
S3 BTHidEnum;Bluetooth HID Enumerator; C:\WINDOWS\system32\DRIVERS\vbtenum.sys [2004-09-21 11604]
S3 BthPan;Bluetooth Device (Personal Area Network); C:\WINDOWS\system32\DRIVERS\bthpan.sys [2008-04-14 101120]
S3 BTHPORT;Bluetooth Port Driver; C:\WINDOWS\System32\Drivers\BTHport.sys [2008-06-13 272128]
S3 BTHUSB;Bluetooth Radio USB Driver; C:\WINDOWS\System32\Drivers\BTHUSB.sys [2008-04-14 18944]
S3 BTNetFilter;Bluetooth Network Filter; \??\C:\WINDOWS\system32\drivers\BTNetFilter.sys []
S3 catchme;catchme; \??\C:\ComboFix_2\catchme.sys []
S3 CCDECODE;Closed Caption Decoder; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-14 17024]
S3 genmcmnUSB;USB Scroll Mouse Driver; C:\WINDOWS\system32\DRIVERS\gflmouhid.sys [2003-08-07 6528]
S3 MBAMProtector;MBAMProtector; \??\C:\WINDOWS\system32\drivers\mbam.sys []
S3 mbr;mbr; \??\C:\DOCUME~1\BOBO\LOCALS~1\Temp\mbr.sys []
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-14 5504]
S3 n558;N558 Bluetooth USB Filter Driver; C:\WINDOWS\System32\Drivers\n558.sys [2007-08-15 9600]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-14 85248]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-14 10880]
S3 NNSNAHS;Network Activity Hook Server Service; C:\WINDOWS\system32\DRIVERS\NNSNAHS.sys [2012-10-22 38824]
S3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\WINDOWS\system32\DRIVERS\rfcomm.sys [2008-04-14 59136]
S3 ROOTMODEM;Microsoft Legacy Modem Driver; C:\WINDOWS\System32\Drivers\RootMdm.sys [2008-04-14 5888]
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-14 11136]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-14 15232]
S3 TfNetMon;TfNetMon; \??\C:\WINDOWS\system32\drivers\TfNetMon.sys []
S3 usbccgp;Microsoft USB Generic Parent Driver; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-14 32128]
S3 VComm;Virtual Serial port driver; C:\WINDOWS\system32\DRIVERS\VComm.sys [2004-10-19 61312]
S3 VcommMgr;Bluetooth VComm Manager Service; C:\WINDOWS\System32\Drivers\VcommMgr.sys [2004-11-05 82148]
S3 WSTCODEC;World Standard Teletext Codec; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-14 19200]
S4 exFat;exFat; C:\WINDOWS\system32\drivers\exFat.sys [2008-09-29 133632]
S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys []

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 BthServ;Bluetooth Support Service; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
R2 NanoServiceMain;Panda Cloud Antivirus Service; C:\Program Files\Panda Security\Panda Cloud Antivirus\PSANHost.exe [2013-01-27 140512]
R2 UMWdf;Windows User Mode Driver Framework; C:\WINDOWS\system32\wdfmgr.exe [2004-08-11 38912]
S2 PSUAService;Panda Product Service; C:\Program Files\Panda Security\Panda Cloud Antivirus\PSUAService.exe [2013-01-27 37088]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2013-02-28 161384]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe []
S4 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-01-01 250808]
S4 bgsvcgen;B's Recorder GOLD Library General Service; C:\WINDOWS\system32\bgsvcgen.exe [2013-01-27 145504]
S4 ForceWare Intelligent Application Manager (IAM);ForceWare Intelligent Application Manager (IAM); C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe [2010-01-21 370792]
S4 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S4 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre7\bin\jqs.exe [2012-12-31 170408]
S4 MBAMService;MBAMService; C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe [2012-12-14 682344]
S4 MBAMScheduler;MBAMScheduler; C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe [2012-12-14 398184]
S4 NBService;NBService; C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe [2007-06-29 800040]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]
S4 NMIndexingService;NMIndexingService; C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe [2007-06-27 279848]
S4 nSvcIp;ForceWare IP service; C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe [2010-01-21 167528]
S4 NVSvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvsvc32.exe [2010-03-16 154216]
S4 PCToolsSSDMonitorSvc;PC Tools Startup and Shutdown Monitor service; C:\Program Files\Common Files\PC Tools\sMonitor\StartManSvc.exe [2012-08-21 794272]
S4 PDF Architect Helper Service;PDF Architect Helper Service; C:\Program Files\PDF Architect\HelperService.exe [2013-01-09 1324104]
S4 PDF Architect Service;PDF Architect Service; C:\Program Files\PDF Architect\ConversionService.exe [2013-01-09 795208]
S4 ST2012_Svc;Spyware Terminator 2012 Realtime Shield Service; C:\Program Files\Spyware Terminator\st_rsser.exe [2012-09-07 587472]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119526
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prestala pracovať Panda Cloud Antivirus

#2 Příspěvek od Rudy »

Zdravím!
Proč spouštíte ComboFix, utilitu určenou pouze odborníkům? Chcete si zbořit systém? CF mj. způsobí to, že setře všechny stopy po nákaze, čili oba logy, které jste sem postnul, jsou k ničemu. Dejte log ComboFix. Najdete ho v c:\combofix.txt.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Uživatelský avatar
kekesko
Návštěvník
Návštěvník
Příspěvky: 149
Registrován: 16 led 2008 07:49

Re: Prestala pracovať Panda Cloud Antivirus

#3 Příspěvek od kekesko »

Neviem myslel som že to pomôže. Tu je log:

ComboFix 13-04-27.04 - BOBO 28.04.2013 15:37:04.3.2 - x86
Systém Microsoft Windows XP Professional 5.1.2600.3.1250.421.1033.18.1919.1577 [GMT 2:00]
Running from: c:\documents and settings\BOBO\Desktop\ComboFix_2.exe
AV: Panda Cloud Antivirus *Enabled/Updated* {5AD27692-540A-464E-B625-78275FA38393}
FW: Cloud Antivirus Firewall *Disabled* {1337562C-110A-4AF8-B12B-750C0B30E802}
.
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\documents and settings\All Users\Application Data\SaveByclick
c:\documents and settings\All Users\Application Data\SaveByClick\50fde240692a8.dll
c:\documents and settings\All Users\Application Data\SaveByclick\50fde240692a8.tlb
c:\documents and settings\All Users\Application Data\SaveByclick\settings.ini
c:\documents and settings\All Users\Application Data\TEMP
c:\documents and settings\BOBO\Application Data\00000BA0_VTS_0.IFO
c:\documents and settings\BOBO\Application Data\00000BA0_VTS_1.IFO
c:\documents and settings\BOBO\Application Data\DVDSubEditLastFile0.txt
c:\documents and settings\BOBO\Application Data\DVDSubEditLastFile1.txt
c:\windows\system32\AVSredirect.dll
.
.
((((((((((((((((((((((((( Files Created from 2013-03-28 to 2013-04-28 )))))))))))))))))))))))))))))))
.
.
2013-04-28 13:28 . 2012-11-07 08:00 46672 ----a-w- c:\windows\system32\drivers\PSKMAD.sys
2013-04-24 10:15 . 2013-04-24 10:15 -------- d-----w- c:\program files\CCleaner
2013-04-24 10:12 . 2013-04-24 11:17 -------- d-----w- c:\program files\Google
2013-04-23 00:05 . 2009-01-07 15:55 -------- d-----w- C:\Spear Britney
2013-04-23 00:01 . 2008-12-27 21:50 -------- d-----w- C:\Obrenovac
2013-04-22 23:59 . 2012-10-27 08:14 -------- d-----w- C:\Update
2013-04-22 23:58 . 2013-04-23 00:22 -------- d-----w- C:\Amateur Self Shots1
2013-04-20 14:58 . 2013-04-21 06:48 -------- d-----w- c:\documents and settings\BOBO\Local Settings\Application Data\Pokki
2013-04-20 14:57 . 2013-04-25 06:46 -------- d-----w- c:\documents and settings\All Users\Application Data\Freemake
2013-04-20 14:57 . 2013-04-25 06:46 -------- d-----w- c:\program files\Freemake
2013-04-20 14:57 . 2013-04-20 14:57 -------- d-----w- c:\documents and settings\BOBO\Application Data\OpenCandy
2013-04-18 09:06 . 2013-04-18 09:08 -------- d-----w- c:\program files\OpenVideoConverter
2013-04-18 08:45 . 2004-01-24 22:00 70656 ----a-w- c:\windows\system32\yv12vfw.dll
2013-04-18 08:45 . 2004-01-24 22:00 70656 ----a-w- c:\windows\system32\i420vfw.dll
2013-04-18 08:44 . 2013-04-18 09:13 -------- d-----w- c:\program files\eRightSoft
2013-04-18 05:44 . 2013-04-18 05:44 -------- d-----w- c:\documents and settings\BOBO\Application Data\NVIDIA
2013-04-14 21:06 . 2013-04-14 21:06 1072544 ----a-w- c:\windows\system32\nvdrsdb0.bin
2013-04-14 21:06 . 2013-04-14 21:06 1 ----a-w- c:\windows\system32\nvdrssel.bin
2013-04-14 21:06 . 2013-04-14 21:06 1072544 ----a-w- c:\windows\system32\nvdrsdb1.bin
2013-04-14 18:38 . 2013-04-14 18:38 -------- d-----w- c:\program files\SomePDF
2013-04-14 10:37 . 2013-04-14 10:37 -------- d-----w- c:\program files\Driver-Soft
2013-04-14 01:49 . 2013-04-16 01:08 7520 ----a-w- c:\documents and settings\All Users\Application Data\NanoRepository.bin
2013-04-10 10:14 . 2013-04-10 10:15 -------- d-----w- c:\documents and settings\BOBO\Application Data\avidemux
2013-04-10 10:14 . 2013-04-18 06:49 -------- d-----w- c:\program files\Avidemux 2.5
2013-04-10 08:02 . 2013-04-10 08:02 -------- d-----w- c:\windows\system32\wbem\Repository
2013-03-31 20:34 . 2013-03-31 20:34 -------- d-----w- c:\program files\MKVtoolnix
2013-03-31 20:17 . 2013-04-10 09:05 -------- d-----w- c:\program files\AVG SafeGuard toolbar
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2013-04-04 12:50 . 2013-01-01 16:58 22856 ----a-w- c:\windows\system32\drivers\mbam.sys
2013-03-08 08:36 . 2008-04-14 12:00 293376 ----a-w- c:\windows\system32\winsrv.dll
2013-03-07 01:32 . 2008-04-14 12:00 2149888 ----a-w- c:\windows\system32\ntoskrnl.exe
2013-03-07 00:50 . 2008-04-14 00:01 2028544 ----a-w- c:\windows\system32\ntkrnlpa.exe
2013-03-02 02:06 . 2008-04-14 12:00 916480 ----a-w- c:\windows\system32\wininet.dll
2013-03-02 02:06 . 2008-04-14 12:00 43520 ------w- c:\windows\system32\licmgr10.dll
2013-03-02 02:06 . 2008-04-14 12:00 1469440 ------w- c:\windows\system32\inetcpl.cpl
2013-03-02 01:25 . 2008-04-14 12:00 1867264 ----a-w- c:\windows\system32\win32k.sys
2013-03-02 01:08 . 2008-04-14 12:00 385024 ------w- c:\windows\system32\html.iec
2013-02-27 07:56 . 2012-12-31 03:20 2067456 ----a-w- c:\windows\system32\mstscax.dll
2013-02-12 00:32 . 2008-04-14 12:00 12928 ----a-w- c:\windows\system32\drivers\usb8023.sys
2013-02-11 00:18 . 2013-02-11 00:18 720896 ----a-w- c:\windows\iun6002.exe
2013-02-08 03:03 . 2013-02-08 03:03 1010464 ----a-w- c:\windows\system32\nvdispco32.dll
2013-02-08 03:03 . 2010-03-15 22:52 19189760 ----a-w- c:\windows\system32\nvoglnt.dll
2013-02-08 03:03 . 2006-10-31 05:35 4494336 ----a-w- c:\windows\system32\nv4_disp.dll
2013-02-08 03:02 . 2010-03-15 22:52 7536640 ----a-w- c:\windows\system32\nvcuda.dll
2013-02-08 03:02 . 2010-03-15 22:52 2581792 ----a-w- c:\windows\system32\nvcuvid.dll
2013-02-08 03:02 . 2013-02-08 03:02 892704 ----a-w- c:\windows\system32\nvdispgenco32.dll
2013-02-08 03:02 . 2010-03-15 22:52 17551360 ----a-w- c:\windows\system32\nvcompiler.dll
2013-02-08 03:02 . 2006-10-31 05:35 2389504 ----a-w- c:\windows\system32\nvapi.dll
2013-02-08 03:02 . 2006-10-31 05:35 12648960 ----a-w- c:\windows\system32\drivers\nv4_mini.sys
2013-02-08 03:02 . 2013-02-08 03:02 5967872 ----a-w- c:\windows\system32\nvopencl.dll
2013-02-08 03:02 . 2010-03-15 22:52 1869088 ----a-w- c:\windows\system32\nvcuvenc.dll
2013-01-19 07:44 . 2013-01-19 07:44 2174976 ----a-w- c:\program files\Common Files\atimpenc.dll
2013-04-24 06:21 . 2013-04-24 06:21 263064 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll
2006-05-03 09:06 163328 --sha-r- c:\windows\system32\flvDX.dll
2007-02-21 10:47 31232 --sha-r- c:\windows\system32\msfDX.dll
2008-03-16 12:30 216064 --sha-r- c:\windows\system32\nbDX.dll
2010-01-06 22:00 107520 --sha-r- c:\windows\system32\TAKDSDecoder.dll
.
.
------- Sigcheck -------
Note: Unsigned files aren't necessarily malware.
.
[-] 2008-04-14 . 9F3A2F5AA6875C72BF062C712CFA2674 . 96512 . . [5.1.2600.5512] . . c:\windows\system32\drivers\atapi.sys
.
[-] 2008-04-14 . B153AFFAC761E7F5FCFA822B9C4E97BC . 14336 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\asyncmac.sys
[-] 2008-04-14 . B153AFFAC761E7F5FCFA822B9C4E97BC . 14336 . . [5.1.2600.5512] . . c:\windows\system32\drivers\asyncmac.sys
.
[-] 2008-04-14 . DA1F27D85E0D1525F6621372E7B685E9 . 4224 . . [5.1.2600.0] . . c:\windows\system32\dllcache\beep.sys
[-] 2008-04-14 . DA1F27D85E0D1525F6621372E7B685E9 . 4224 . . [5.1.2600.0] . . c:\windows\system32\drivers\beep.sys
.
[-] 2008-04-14 . 463C1EC80CD17420A542B7F36A36F128 . 24576 . . [5.1.2600.5512] . . c:\windows\system32\drivers\kbdclass.sys
.
[-] 2008-04-14 . 1DF7F42665C94B825322FAE71721130D . 182656 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ndis.sys
[-] 2008-04-14 . 1DF7F42665C94B825322FAE71721130D . 182656 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ndis.sys
.
[-] 2008-04-14 . 78A08DD6A8D65E697C18E1DB01C5CDCA . 574976 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ntfs.sys
[-] 2008-04-14 . 78A08DD6A8D65E697C18E1DB01C5CDCA . 574976 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ntfs.sys
.
[-] 2008-04-14 . 73C1E1F395918BC2C6DD67AF7591A3AD . 2944 . . [5.1.2600.0] . . c:\windows\system32\dllcache\null.sys
[-] 2008-04-14 . 73C1E1F395918BC2C6DD67AF7591A3AD . 2944 . . [5.1.2600.0] . . c:\windows\system32\drivers\null.sys
.
[-] 2008-04-14 . BF2466B3E18E970D8A976FB95FC1CA85 . 13312 . . [5.1.2600.5512] . . c:\windows\system32\lsass.exe
[-] 2008-04-14 . BF2466B3E18E970D8A976FB95FC1CA85 . 13312 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\lsass.exe
.
[-] 2008-04-14 . 13E67B55B3ABD7BF3FE7AAE5A0F9A9DE . 198144 . . [5.1.2600.5512] . . c:\windows\system32\netman.dll
[-] 2008-04-14 . 13E67B55B3ABD7BF3FE7AAE5A0F9A9DE . 198144 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\netman.dll
.
[-] 2008-04-14 12:00 . 1280A158C722FA95A80FB7AEBE78FA7D . 792064 . . [2001.12.4414.700] . . c:\windows\system32\comres.dll
[-] 2008-04-14 12:00 . 1280A158C722FA95A80FB7AEBE78FA7D . 792064 . . [2001.12.4414.700] . . c:\windows\system32\dllcache\comres.dll
.
[-] 2008-04-14 . 574738F61FCA2935F5265DC4E5691314 . 409088 . . [6.7.2600.5512] . . c:\windows\system32\qmgr.dll
[-] 2008-04-14 . 574738F61FCA2935F5265DC4E5691314 . 409088 . . [6.7.2600.5512] . . c:\windows\system32\dllcache\qmgr.dll
.
[-] 2009-02-09 . 6B27A5C03DFB94B4245739065431322C . 401408 . . [5.1.2600.5755] . . c:\windows\system32\rpcss.dll
[-] 2009-02-09 . 6B27A5C03DFB94B4245739065431322C . 401408 . . [5.1.2600.5755] . . c:\windows\system32\dllcache\rpcss.dll
[-] 2009-02-09 . 9222562D44021B988B9F9F62207FB6F2 . 401408 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3QFE\rpcss.dll
[-] 2008-04-14 . 2589FE6015A316C0F5D5112B4DA7B509 . 399360 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB956572$\rpcss.dll
.
[-] 2009-02-06 . 65DF52F5B8B6E9BBD183505225C37315 . 110592 . . [5.1.2600.5755] . . c:\windows\system32\services.exe
[-] 2009-02-06 . 65DF52F5B8B6E9BBD183505225C37315 . 110592 . . [5.1.2600.5755] . . c:\windows\system32\dllcache\services.exe
[-] 2009-02-06 . 020CEAAEDC8EB655B6506B8C70D53BB6 . 110592 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3QFE\services.exe
[-] 2008-04-14 . 0E776ED5F7CC9F94299E70461B7B8185 . 108544 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB956572$\services.exe
.
[-] 2008-04-14 . ED0EF0A136DEC83DF69F04118870003E . 507904 . . [5.1.2600.5512] . . c:\windows\system32\winlogon.exe
[-] 2008-04-14 . ED0EF0A136DEC83DF69F04118870003E . 507904 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\winlogon.exe
.
[-] 2008-04-14 . 23C74D75E36E7158768DD63D92789A91 . 75264 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ipsec.sys
[-] 2008-04-14 . 23C74D75E36E7158768DD63D92789A91 . 75264 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ipsec.sys
.
[-] 2008-04-14 . 3D4E199942E29207970E04315D02AD3B . 62464 . . [5.1.2600.5512] . . c:\windows\system32\cryptsvc.dll
[-] 2008-04-14 . 3D4E199942E29207970E04315D02AD3B . 62464 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\cryptsvc.dll
.
[-] 2008-07-07 20:26 . D4991D98F2DB73C60D042F1AEF79EFAE . 253952 . . [2001.12.4414.706] . . c:\windows\system32\es.dll
[-] 2008-07-07 20:26 . D4991D98F2DB73C60D042F1AEF79EFAE . 253952 . . [2001.12.4414.706] . . c:\windows\system32\dllcache\es.dll
[-] 2008-07-07 20:23 . F17F6226BDC0CD5F0BEF0DAF84D29BEC . 253952 . . [2001.12.4414.706] . . c:\windows\$hf_mig$\KB950974\SP3QFE\es.dll
[-] 2008-04-14 12:00 . 19A799805B24990867B00C120D300C3A . 246272 . . [2001.12.4414.701] . . c:\windows\$NtUninstallKB950974$\es.dll
.
[-] 2008-04-14 . 0DA85218E92526972A821587E6A8BF8F . 110080 . . [5.1.2600.5512] . . c:\windows\system32\imm32.dll
[-] 2008-04-14 . 0DA85218E92526972A821587E6A8BF8F . 110080 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\imm32.dll
.
[-] 2008-04-14 . 2DC5A8019E2387987905F77C664E4BE2 . 19968 . . [5.1.2600.5512] . . c:\windows\system32\linkinfo.dll
[-] 2008-04-14 . 2DC5A8019E2387987905F77C664E4BE2 . 19968 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\linkinfo.dll
.
[-] 2008-04-14 . 012DF358CEBAA23ACB26D82077820817 . 22016 . . [5.1.2600.5512] . . c:\windows\system32\lpk.dll
[-] 2008-04-14 . 012DF358CEBAA23ACB26D82077820817 . 22016 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\lpk.dll
.
[-] 2008-04-14 . 355EDBB4D412B01F1740C17E3F50FA00 . 343040 . . [7.0.2600.5512] . . c:\windows\system32\msvcrt.dll
[-] 2008-04-14 . 355EDBB4D412B01F1740C17E3F50FA00 . 343040 . . [7.0.2600.5512] . . c:\windows\system32\dllcache\msvcrt.dll
[-] 2008-04-14 . 4200BE3808F6406DBE45A7B88DAE5035 . 322560 . . [7.0.2600.0] . . c:\windows\WinSxS\x86_Microsoft.Windows.CPlusPlusRuntime_6595b64144ccf1df_7.0.0.0_x-ww_2726e76a\msvcrt.dll
[-] 2008-04-14 . D7075E95AA599EE77B7A89D39296BD3D . 343040 . . [7.0.2600.5512] . . c:\windows\WinSxS\x86_Microsoft.Windows.CPlusPlusRuntime_6595b64144ccf1df_7.0.2600.5512_x-ww_3fd60d63\msvcrt.dll
.
[-] 2008-04-14 . 50A166237A0FA771261275A405646CC0 . 17408 . . [6.00.2900.5512] . . c:\windows\system32\powrprof.dll
[-] 2008-04-14 . 50A166237A0FA771261275A405646CC0 . 17408 . . [6.00.2900.5512] . . c:\windows\system32\dllcache\powrprof.dll
.
[-] 2008-04-14 . A86BB5E61BF3E39B62AB4C7E7085A084 . 181248 . . [5.1.2600.5512] . . c:\windows\system32\scecli.dll
[-] 2008-04-14 . A86BB5E61BF3E39B62AB4C7E7085A084 . 181248 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\scecli.dll
.
[-] 2008-04-14 . 96E1C926F22EE1BFBAE82901A35F6BF3 . 5120 . . [5.1.2600.5512] . . c:\windows\system32\sfc.dll
[-] 2008-04-14 . 96E1C926F22EE1BFBAE82901A35F6BF3 . 5120 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\sfc.dll
.
[-] 2008-04-14 . 27C6D03BCDB8CFEB96B716F3D8BE3E18 . 14336 . . [5.1.2600.5512] . . c:\windows\system32\svchost.exe
[-] 2008-04-14 . 27C6D03BCDB8CFEB96B716F3D8BE3E18 . 14336 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\svchost.exe
.
[-] 2008-04-14 . 3CB78C17BB664637787C9A1C98F79C38 . 249856 . . [5.1.2600.5512] . . c:\windows\system32\tapisrv.dll
[-] 2008-04-14 . 3CB78C17BB664637787C9A1C98F79C38 . 249856 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\tapisrv.dll
.
[-] 2008-04-14 . B26B135FF1B9F60C9388B4A7D16F600B . 578560 . . [5.1.2600.5512] . . c:\windows\system32\user32.dll
[-] 2008-04-14 . B26B135FF1B9F60C9388B4A7D16F600B . 578560 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\user32.dll
.
[-] 2008-04-14 . A93AEE1928A9D7CE3E16D24EC7380F89 . 26112 . . [5.1.2600.5512] . . c:\windows\system32\userinit.exe
[-] 2008-04-14 . A93AEE1928A9D7CE3E16D24EC7380F89 . 26112 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\userinit.exe
.
[-] 2008-04-14 . 2CCC474EB85CEAA3E1FA1726580A3E5A . 82432 . . [5.1.2600.5512] . . c:\windows\system32\ws2_32.dll
[-] 2008-04-14 . 2CCC474EB85CEAA3E1FA1726580A3E5A . 82432 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ws2_32.dll
.
[-] 2008-04-14 . 9789E95E1D88EEB4B922BF3EA7779C28 . 19968 . . [5.1.2600.5512] . . c:\windows\system32\ws2help.dll
[-] 2008-04-14 . 9789E95E1D88EEB4B922BF3EA7779C28 . 19968 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ws2help.dll
.
[-] 2008-04-14 . 12896823FB95BFB3DC9B46BCAEDC9923 . 1033728 . . [6.00.2900.5512] . . c:\windows\explorer.exe
[-] 2008-04-14 . 12896823FB95BFB3DC9B46BCAEDC9923 . 1033728 . . [6.00.2900.5512] . . c:\windows\system32\dllcache\explorer.exe
.
[-] 2008-04-14 . 058710B720282CA82B909912D3EF28DB . 146432 . . [5.1.2600.5512] . . c:\windows\regedit.exe
[-] 2008-04-14 . 058710B720282CA82B909912D3EF28DB . 146432 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\regedit.exe
.
[-] 2008-04-14 . 9B9F1C38D559047B8AC0DBA2D5FEBDE9 . 4096 . . [5.3.2600.5512] . . c:\windows\system32\ksuser.dll
[-] 2008-04-14 . 9B9F1C38D559047B8AC0DBA2D5FEBDE9 . 4096 . . [5.3.2600.5512] . . c:\windows\system32\dllcache\ksuser.dll
.
[-] 2008-04-14 . 5F1D5F88303D4A4DBC8E5F97BA967CC3 . 15360 . . [5.1.2600.5512] . . c:\windows\system32\ctfmon.exe
[-] 2008-04-14 . 5F1D5F88303D4A4DBC8E5F97BA967CC3 . 15360 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ctfmon.exe
.
[-] 2008-04-14 . AFFC87E2501FCE8F09D4C10BA6421CCF . 4608 . . [5.1.2600.5512] . . c:\windows\system32\msimg32.dll
[-] 2008-04-14 . AFFC87E2501FCE8F09D4C10BA6421CCF . 4608 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\msimg32.dll
.
[-] 2008-04-14 . 3805DF0AC4296A34BA4BF93B346CC378 . 171008 . . [5.1.2600.5512] . . c:\windows\system32\srsvc.dll
[-] 2008-04-14 . 3805DF0AC4296A34BA4BF93B346CC378 . 171008 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\srsvc.dll
.
[-] 2008-04-14 . F92E1076C42FCD6DB3D72D8CFE9816D5 . 13824 . . [5.1.2600.5512] . . c:\windows\system32\wscntfy.exe
[-] 2008-04-14 . F92E1076C42FCD6DB3D72D8CFE9816D5 . 13824 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\wscntfy.exe
.
[-] 2008-04-14 . 295D21F14C335B53CB8154E5B1F892B9 . 129024 . . [5.1.2600.5512] . . c:\windows\system32\xmlprov.dll
[-] 2008-04-14 . 295D21F14C335B53CB8154E5B1F892B9 . 129024 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\xmlprov.dll
.
[-] 2008-04-14 . 5733177BCF16EE78B99543C9B0AB81EA . 177152 . . [5.1.2600.5512] . . c:\windows\system32\MSCTFIME.IME
[-] 2008-04-14 . 5733177BCF16EE78B99543C9B0AB81EA . 177152 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\msctfime.ime
.
[-] 2008-04-14 . 6D4FEB43EE538FC5428CC7F0565AA656 . 56320 . . [5.1.2600.5512] . . c:\windows\system32\eventlog.dll
[-] 2008-04-14 . 6D4FEB43EE538FC5428CC7F0565AA656 . 56320 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\eventlog.dll
.
[-] 2008-04-14 . 9DD07AF82244867CA36681EA2D29CE79 . 1614848 . . [5.1.2600.5512] . . c:\windows\system32\sfcfiles.dll
[-] 2008-04-14 . 9DD07AF82244867CA36681EA2D29CE79 . 1614848 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\sfcfiles.dll
.
[-] 2008-04-14 . 23C74D75E36E7158768DD63D92789A91 . 75264 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ipsec.sys
[-] 2008-04-14 . 23C74D75E36E7158768DD63D92789A91 . 75264 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ipsec.sys
.
[-] 2008-04-14 . 5B19B557B0C188210A56A6B699D90B8F . 59904 . . [5.1.2600.5512] . . c:\windows\system32\regsvc.dll
[-] 2008-04-14 . 5B19B557B0C188210A56A6B699D90B8F . 59904 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\regsvc.dll
.
[-] 2008-04-14 . 0A9A7365A1CA4319AA7C1D6CD8E4EAFA . 192512 . . [5.1.2600.5512] . . c:\windows\system32\schedsvc.dll
[-] 2008-04-14 . 0A9A7365A1CA4319AA7C1D6CD8E4EAFA . 192512 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\schedsvc.dll
.
[-] 2008-04-14 . 0A5679B3714EDAB99E357057EE88FCA6 . 71680 . . [5.1.2600.5512] . . c:\windows\system32\ssdpsrv.dll
[-] 2008-04-14 . 0A5679B3714EDAB99E357057EE88FCA6 . 71680 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ssdpsrv.dll
.
[-] 2008-04-14 . FF3477C03BE7201C294C35F684B3479F . 295424 . . [5.1.2600.5512] . . c:\windows\system32\termsrv.dll
[-] 2008-04-14 . FF3477C03BE7201C294C35F684B3479F . 295424 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\termsrv.dll
.
[-] 2008-04-14 . 3CB32D3B8CBE79899D63280BB7A83CD9 . 344064 . . [5.1.2600.5512] . . c:\windows\system32\hnetcfg.dll
[-] 2008-04-14 . 3CB32D3B8CBE79899D63280BB7A83CD9 . 344064 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\hnetcfg.dll
.
[-] 2008-04-14 . D8849F77C0B66226335A59D26CB4EDC6 . 167936 . . [5.1.2600.5512] . . c:\windows\system32\appmgmts.dll
[-] 2008-04-14 . D8849F77C0B66226335A59D26CB4EDC6 . 167936 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\appmgmts.dll
.
[-] 2008-04-14 . 9859C0F6936E723E4892D7141B1327D5 . 11648 . . [5.1.2600.0] . . c:\windows\system32\drivers\acpiec.sys
.
[-] 2008-04-13 21:09 . 8BED39E3C35D6A489438B8141717A557 . 142592 . . [5.1.2601.3142] . . c:\windows\system32\dllcache\aec.sys
[-] 2008-04-13 21:09 . 8BED39E3C35D6A489438B8141717A557 . 142592 . . [5.1.2601.3142] . . c:\windows\system32\drivers\aec.sys
.
[-] 2008-04-14 . 3BB22519A194418D5FEC05D800A19AD0 . 36608 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ip6fw.sys
[-] 2008-04-14 . 3BB22519A194418D5FEC05D800A19AD0 . 36608 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ip6fw.sys
.
[-] 2010-09-18 07:18 . 842900DEDBC8E3E8DBCCCB298FD88F65 . 953856 . . [4.1.6151] . . c:\windows\$hf_mig$\KB2387149\SP3QFE\mfc40u.dll
[-] 2010-09-18 06:53 . E76A5C202E68AF5A322D16B5A78F48B9 . 953856 . . [4.1.6151] . . c:\windows\system32\mfc40u.dll
[-] 2010-09-18 06:53 . E76A5C202E68AF5A322D16B5A78F48B9 . 953856 . . [4.1.6151] . . c:\windows\system32\dllcache\mfc40u.dll
[-] 2008-04-14 12:00 . CDDD4416B2B4C7295FE3FDB6DDE57E4E . 927504 . . [4.1.0.61] . . c:\windows\$NtUninstallKB2387149$\mfc40u.dll
.
[-] 2008-04-14 . 986B1FF5814366D71E0AC5755C88F2D3 . 33792 . . [5.1.2600.5512] . . c:\windows\system32\msgsvc.dll
[-] 2008-04-14 . 986B1FF5814366D71E0AC5755C88F2D3 . 33792 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\msgsvc.dll
.
[-] 2008-04-14 12:00 . 156F64A3345BD23C600655FB4D10BC08 . 435200 . . [5.1.2400.5512] . . c:\windows\system32\ntmssvc.dll
[-] 2008-04-14 12:00 . 156F64A3345BD23C600655FB4D10BC08 . 435200 . . [5.1.2400.5512] . . c:\windows\system32\dllcache\ntmssvc.dll
.
[-] 2008-04-14 . 1EBAFEB9A3FBDC41B8D9C7F0F687AD91 . 185856 . . [5.1.2600.5512] . . c:\windows\system32\upnphost.dll
[-] 2008-04-14 . 1EBAFEB9A3FBDC41B8D9C7F0F687AD91 . 185856 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\upnphost.dll
.
[-] 2008-04-14 . 4D83ED8BDDEC431FC8AD907B47CFB6E3 . 367616 . . [5.3.2600.5512] . . c:\windows\system32\dsound.dll
[-] 2008-04-14 . 4D83ED8BDDEC431FC8AD907B47CFB6E3 . 367616 . . [5.3.2600.5512] . . c:\windows\system32\dllcache\dsound.dll
.
[-] 2008-04-14 . 0607CBC6FA20114CB491EFE4B2F9EFAD . 1689088 . . [5.03.2600.5512] . . c:\windows\system32\d3d9.dll
[-] 2008-04-14 . 0607CBC6FA20114CB491EFE4B2F9EFAD . 1689088 . . [5.03.2600.5512] . . c:\windows\system32\dllcache\d3d9.dll
.
[-] 2008-04-14 . A340CD71EB535A3DD751B5F28723E50C . 279552 . . [5.03.2600.5512] . . c:\windows\system32\ddraw.dll
[-] 2008-04-14 . A340CD71EB535A3DD751B5F28723E50C . 279552 . . [5.03.2600.5512] . . c:\windows\system32\dllcache\ddraw.dll
.
[-] 2008-04-14 12:00 . 5652F6CE1D9E9D8068B9D29BC21B5409 . 84992 . . [5.1.2600.5512] . . c:\windows\system32\olepro32.dll
[-] 2008-04-14 12:00 . 5652F6CE1D9E9D8068B9D29BC21B5409 . 84992 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\olepro32.dll
.
[-] 2008-04-14 . DBE2B62353660ECCA0D75EA307A717E9 . 39936 . . [5.1.2600.5512] . . c:\windows\system32\perfctrs.dll
[-] 2008-04-14 . DBE2B62353660ECCA0D75EA307A717E9 . 39936 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\perfctrs.dll
.
[-] 2008-04-14 . C7CE131408739B0B3A318BE2D0032719 . 18944 . . [5.1.2600.5512] . . c:\windows\system32\version.dll
[-] 2008-04-14 . C7CE131408739B0B3A318BE2D0032719 . 18944 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\version.dll
.
[-] 2008-04-14 . 3805DF0AC4296A34BA4BF93B346CC378 . 171008 . . [5.1.2600.5512] . . c:\windows\system32\srsvc.dll
[-] 2008-04-14 . 3805DF0AC4296A34BA4BF93B346CC378 . 171008 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\srsvc.dll
.
[-] 2008-04-14 . 8BAD69CBAC032D4BBACFCE0306174C30 . 333824 . . [5.1.2600.5512] . . c:\windows\system32\wiaservc.dll
[-] 2008-04-14 . 8BAD69CBAC032D4BBACFCE0306174C30 . 333824 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\wiaservc.dll
.
[-] 2008-04-14 . 5C12660A97822F6E61576943B49AAAD6 . 18944 . . [5.1.2600.5512] . . c:\windows\system32\midimap.dll
[-] 2008-04-14 . 5C12660A97822F6E61576943B49AAAD6 . 18944 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\midimap.dll
.
[-] 2008-04-14 . 6F9BEF24C578D5D6740E080BEDD6A448 . 7680 . . [5.1.2600.5512] . . c:\windows\system32\rasadhlp.dll
[-] 2008-04-14 . 6F9BEF24C578D5D6740E080BEDD6A448 . 7680 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\rasadhlp.dll
.
[-] 2008-04-14 . 4E3D06D6E68EEDB52565080F55B460D3 . 19456 . . [5.1.2600.5512] . . c:\windows\system32\wshtcpip.dll
[-] 2008-04-14 . 4E3D06D6E68EEDB52565080F55B460D3 . 19456 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\wshtcpip.dll
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\IDM Shell Extension]
@="{CDC95B92-E27C-4745-A8C5-64A52A78855D}"
[HKEY_CLASSES_ROOT\CLSID\{CDC95B92-E27C-4745-A8C5-64A52A78855D}]
2011-05-30 16:50 21864 ----a-w- c:\program files\Internet Download Manager\IDMShellExt.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"uTorrent"="c:\program files\uTorrent\uTorrent.exe" [2013-01-01 399224]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"PSUAMain"="c:\program files\Panda Security\Panda Cloud Antivirus\PSUAMain.exe" [2013-01-27 32480]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
.
[hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
"{93994DE8-8239-4655-B1D1-5F4E91300429}"= "c:\progra~1\DVDIDL~1\DVDShell.dll" [2004-10-09 49152]
.
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^BlueSoleil.lnk]
backup=c:\windows\pss\BlueSoleil.lnkCommon Startup
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AsusStartupHelp]
2006-11-14 06:25 363008 ----a-r- c:\program files\ASUS\AASP\1.00.17\AsRunHelp.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BluetoothAuthenticationAgent]
2008-04-14 04:42 110592 ----a-w- c:\windows\system32\bthprops.cpl
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvCplDaemon]
2010-03-16 02:37 13670504 ----a-w- c:\windows\system32\nvcpl.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvMediaCenter]
2010-03-16 02:37 110696 ----a-w- c:\windows\system32\nvmctray.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Panda Security URL Filtering]
2012-10-15 12:52 221832 ----a-w- c:\documents and settings\All Users\Application Data\Panda Security URL Filtering\Panda_URL_Filtering.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PWRISOVM.EXE]
2007-08-07 00:05 200704 ----a-w- c:\program files\PowerISO\PWRISOVM.EXE
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RTHDCPL]
2007-02-26 14:03 16125440 ----a-w- c:\windows\RTHDCPL.EXE
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SkyTel]
2006-05-16 17:04 2879488 ----a-w- c:\windows\SkyTel.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SpywareTerminatorShield]
2012-09-07 00:46 2777296 ----a-w- c:\program files\Spyware Terminator\SpywareTerminatorShield.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SpywareTerminatorUpdater]
2012-09-07 00:47 3673808 ----a-w- c:\program files\Spyware Terminator\SpywareTerminatorUpdate.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
"JavaQuickStarterService"=2 (0x2)
"NVSvc"=2 (0x2)
"AdobeFlashPlayerUpdateSvc"=3 (0x3)
"NBService"=3 (0x3)
"BlueSoleil Hid Service"=2 (0x2)
"nSvcIp"=2 (0x2)
"ForceWare Intelligent Application Manager (IAM)"=2 (0x2)
"MBAMService"=2 (0x2)
"MBAMScheduler"=2 (0x2)
"idsvc"=3 (0x3)
"ICQ Service"=2 (0x2)
"NGRegClnSrv"=2 (0x2)
"ST2012_Svc"=2 (0x2)
"PCToolsSSDMonitorSvc"=2 (0x2)
"PCSUService"=2 (0x2)
"PDF Architect Service"=2 (0x2)
"PDF Architect Helper Service"=2 (0x2)
"bgsvcgen"=2 (0x2)
"SkypeUpdate"=2 (0x2)
"NMIndexingService"=3 (0x3)
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"c:\\Program Files\\uTorrent\\uTorrent.exe"=
"c:\\Program Files\\ICQ7.7\\ICQ.exe"=
"c:\\Program Files\\Java\\jre7\\launch4j-tmp\\frd.exe"=
"c:\\WINDOWS\\system32\\sessmgr.exe"=
"c:\\Program Files\\Opera\\opera.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
.
R1 IDMTDI;IDMTDI;c:\windows\system32\drivers\idmtdi.sys [29.12.2011 19:13 101616]
R1 NNSALPC;NNSAlpc;c:\windows\system32\drivers\NNSAlpc.sys [9.11.2012 11:23 82728]
R1 NNSHTTP;NNSHttp;c:\windows\system32\drivers\NNSHttp.sys [9.11.2012 11:23 119080]
R1 NNSHTTPS;NNSHttps;c:\windows\system32\drivers\NNSHttps.sys [9.1.2013 22:45 95584]
R1 NNSIDS;NNSids;c:\windows\system32\drivers\NNSIds.sys [9.11.2012 11:23 123944]
R1 NNSPICC;NNSPicc;c:\windows\system32\drivers\NNSpicc.sys [9.11.2012 11:23 94632]
R1 NNSPIHS;NNSPihs;c:\windows\system32\drivers\NNSpihs.sys [9.11.2012 11:23 51496]
R1 NNSPOP3;NNSPop3;c:\windows\system32\drivers\NNSPop3.sys [9.11.2012 11:23 105640]
R1 NNSPROT;NNSProt;c:\windows\system32\drivers\NNSProt.sys [9.11.2012 11:23 286888]
R1 NNSPRV;NNSPrv;c:\windows\system32\drivers\NNSPrv.sys [9.11.2012 11:23 159528]
R1 NNSSMTP;NNSSmtp;c:\windows\system32\drivers\NNSSmtp.sys [9.11.2012 11:23 108200]
R1 NNSSTRM;NNSStrm;c:\windows\system32\drivers\NNSStrm.sys [9.11.2012 11:23 218024]
R1 NNSTLSC;NNSTlsc;c:\windows\system32\drivers\NNStlsc.sys [9.11.2012 11:23 93096]
R1 PSINKNC;PSINKNC;c:\windows\system32\drivers\PSINKNC.sys [9.11.2012 19:01 178728]
R1 sp_rsdrv2;Spyware Terminator 2012 Realtime Shield Driver;c:\windows\system32\drivers\sp_rsdrv2.sys [16.1.2013 15:31 32768]
R2 NanoServiceMain;Panda Cloud Antivirus Service;c:\program files\Panda Security\Panda Cloud Antivirus\PSANHost.exe [27.1.2013 21:16 140512]
R2 PSINAflt;PSINAflt;c:\windows\system32\drivers\PSINAflt.sys [9.11.2012 19:01 149288]
R2 PSINFile;PSINFile;c:\windows\system32\drivers\PSINFile.sys [9.11.2012 19:01 102184]
R2 PSINProc;PSINProc;c:\windows\system32\drivers\PSINProc.sys [9.11.2012 19:01 114216]
R2 PSINProt;PSINProt;c:\windows\system32\drivers\PSINProt.sys [9.11.2012 19:01 123560]
R3 Cap713x;Cap713x Video Capture;c:\windows\system32\drivers\Cap713x.sys [10.6.2004 1:14 502784]
R3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [1.1.2013 18:58 22856]
S0 ppqnkxsf;ppqnkxsf;c:\windows\system32\drivers\jkku.sys --> c:\windows\system32\drivers\jkku.sys [?]
S0 TfFsMon;TfFsMon;c:\windows\system32\drivers\TfFsMon.sys --> c:\windows\system32\drivers\TfFsMon.sys [?]
S0 TFSysMon;TfSysMon;c:\windows\system32\drivers\TfSysMon.sys --> c:\windows\system32\drivers\TfSysMon.sys [?]
S2 MBAMService;MBAMService;c:\program files\Malwarebytes' Anti-Malware\mbamservice.exe [1.1.2013 18:58 701512]
S2 PSUAService;Panda Product Service;c:\program files\Panda Security\Panda Cloud Antivirus\PSUAService.exe [27.1.2013 23:38 37088]
S2 SkypeUpdate;Skype Updater;c:\program files\Skype\Updater\Updater.exe [28.2.2013 18:45 161384]
S3 genmcmnUSB;USB Scroll Mouse Driver;c:\windows\system32\drivers\gflmouhid.sys [7.8.2003 17:42 6528]
S3 NNSNAHS;Network Activity Hook Server Service;c:\windows\system32\drivers\NNSNAHS.sys [22.10.2012 13:08 38824]
S3 TfNetMon;TfNetMon;\??\c:\windows\system32\drivers\TfNetMon.sys --> c:\windows\system32\drivers\TfNetMon.sys [?]
S4 PCToolsSSDMonitorSvc;PC Tools Startup and Shutdown Monitor service;c:\program files\Common Files\PC Tools\sMonitor\StartManSvc.exe [3.1.2013 3:50 794272]
S4 PDF Architect Helper Service;PDF Architect Helper Service;c:\program files\PDF Architect\HelperService.exe [9.1.2013 18:34 1324104]
S4 PDF Architect Service;PDF Architect Service;c:\program files\PDF Architect\ConversionService.exe [9.1.2013 18:36 795208]
S4 ST2012_Svc;Spyware Terminator 2012 Realtime Shield Service;c:\program files\Spyware Terminator\st_rsser.exe [16.1.2013 15:31 587472]
.
--- Other Services/Drivers In Memory ---
.
*Deregistered* - PSKMAD
.
Contents of the 'Scheduled Tasks' folder
.
2013-04-28 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-12-31 22:50]
.
2013-04-28 c:\windows\Tasks\RegClean Pro_DEFAULT.job
- c:\program files\RegClean Pro\RegCleanPro.exe [2013-02-27 13:14]
.
2013-04-23 c:\windows\Tasks\RegClean Pro_UPDATES.job
- c:\program files\RegClean Pro\RegCleanPro.exe [2013-02-27 13:14]
.
2013-04-28 c:\windows\Tasks\RMAutoUpdate.job
- c:\program files\Registry Mechanic\SULauncher.exe [2013-01-13 13:44]
.
.
------- Supplementary Scan -------
.
uStart Page = hxxp://www.google.sk/
IE: Stiahnuť s IDM - c:\program files\Internet Download Manager\IEExt.htm
IE: Stiahnuť s IDM všetky prepojenia - c:\program files\Internet Download Manager\IEGetAll.htm
TCP: DhcpNameServer = 195.34.133.21 192.168.0.1
FF - ProfilePath - c:\documents and settings\BOBO\Application Data\Mozilla\Firefox\Profiles\d3wvyde2.default\
FF - prefs.js: browser.search.selectedEngine - Search Results
FF - prefs.js: browser.startup.homepage - hxxps://www.facebook.com/
FF - prefs.js: network.proxy.type - 0
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2013-04-28 15:43
Windows 5.1.2600 Service Pack 3 NTFS
.
scanning hidden processes ...
.
scanning hidden autostart entries ...
.
scanning hidden files ...
.
scan completed successfully
hidden files: 0
.
**************************************************************************
.
--------------------- LOCKED REGISTRY KEYS ---------------------
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{0e0cae64-ad31-4ca7-98da-7d16e7f337c8}]
@Denied: (Full) (Everyone)
"Model"=dword:00000043
"Therad"=dword:0000000b
"MData"=hex(0):73,d5,cf,b8,a4,07,89,80,31,e4,35,6b,2a,ca,fe,43,b6,1f,81,1f,5a,
1b,4d,36,46,8f,3c,f2,5c,68,ee,21,46,8f,3c,f2,5c,68,ee,21,46,8f,3c,f2,5c,68,\
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil32_11_5_502_135_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
@="c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil32_11_5_502_135_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{7B8E9164-324D-4A2E-A46D-0165FB2000EC}]
@Denied: (Full) (Everyone)
"scansk"=hex(0):61,46,8a,c0,2e,22,4b,3e,ce,04,3a,cc,4a,5b,db,12,40,cb,9a,d8,5e,
57,68,5d,5b,68,12,e3,01,d3,8e,4e,ac,7a,ff,89,56,db,15,a2,00,00,00,00,00,00,\
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="IFlashBroker5"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*1*]
@="?????????????????? v1"
.
[HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*1*\CLSID]
@="{E23FE9C6-778E-49D4-B537-38FCDE4887D8}"
.
[HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*2*]
@="?????????????????? v2"
.
[HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*2*\CLSID]
@="{9BE31822-FDAD-461B-AD51-BE1D1C159921}"
.
Completion time: 2013-04-28 15:45:54
ComboFix-quarantined-files.txt 2013-04-28 13:45
ComboFix2.txt 2013-02-10 12:40
.
Pre-Run: 5 072 916 480 bytes free
Post-Run: 5 104 726 016 voľných bajtov
.
- - End Of File - - 800196B04525ACF3B55D11975FCC4738

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119526
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prestala pracovať Panda Cloud Antivirus

#4 Příspěvek od Rudy »

kekesko píše:Neviem myslel som že to pomôže.
Asi jste nečetl pravidla, že:
3. Zvláště utilitu ComboFix nespouštějte i když Vám ji poradil kamarád či nějaký rádoby odborný web. Naše fórum je jediné z CZ\SK antivirových fór, které má právo luštit logy z ComboFixu a máme též plnou podporu autora této utility a přístup k nejaktuálnějším informacím a návodům.
Otevřte poznámkový blok a zkopírujte do něj:
KillAll::

Collect::
c:\windows\system32\drivers\jkku.sys

Driver::
ppqnkxsf

RegLock::
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{0e0cae64-ad31-4ca7-98da-7d16e7f337c8}]
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{7B8E9164-324D-4A2E-A46D-0165FB2000EC}]
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]

Reboot::
Uložte na plochu jako CFScript.txt. Pak jej myší přetáhněte nad ikonu CoimboFix a pusťte. CF se spustí a vykoná příkazy ze skriptu.

Obrázek
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Uživatelský avatar
kekesko
Návštěvník
Návštěvník
Příspěvky: 149
Registrován: 16 led 2008 07:49

Re: Prestala pracovať Panda Cloud Antivirus

#5 Příspěvek od kekesko »

Tak konečne som to urobil, hádzalo to všelijaké hlášky a hodilo to dva reštarty. Log má veľa znakov tak som ho rozdelil:

ComboFix 13-04-27.04 - BOBO 28.04.2013 20:33:31.3.2 - x86
Systém Microsoft Windows XP Professional 5.1.2600.3.1250.421.1033.18.1919.1591 [GMT 2:00]
Running from: c:\documents and settings\BOBO\Desktop\ComboFix.exe
Command switches used :: c:\documents and settings\BOBO\Desktop\CFScript.txt..txt
AV: Panda Cloud Antivirus *Enabled/Updated* {5AD27692-540A-464E-B625-78275FA38393}
FW: Cloud Antivirus Firewall *Disabled* {1337562C-110A-4AF8-B12B-750C0B30E802}
.
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\documents and settings\All Users\Application Data\SaveByClick
c:\documents and settings\All Users\Application Data\SaveByClick\50fde240692a8.dll
c:\documents and settings\All Users\Application Data\SaveByClick\50fde240692a8.tlb
c:\documents and settings\All Users\Application Data\SaveByClick\settings.ini
c:\documents and settings\All Users\Application Data\TEMP
C:\RECYCLER(2)
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc10.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc100.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1000.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1001.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1002.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1003.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1004.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1005.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1006.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1007.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1008.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1009.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc101.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1010.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1011.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1012.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1013.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1014.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1015.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1016.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1017.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1018.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1019.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc102.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1020.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1021.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1022.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1023.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1024.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1025.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1026.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1027.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1028.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1029.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc103.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1030.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1031.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1032.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1033.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1034.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1035.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1036.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1037.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1038.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1039.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc104.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1040.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1041.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1042.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1043.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1044.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1045.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1046.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1047.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1048.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1049.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc105.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1050.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1051.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1052.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1053.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1054.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1055.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1056.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1057.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1058.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1059.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc106.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1060.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1061.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1062.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1063.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1064.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1065.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1066.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1067.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1068.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1069.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc107.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1070.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1071.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1072.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1073.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1074.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1075.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1076.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1077.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1078.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1079.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc108.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1080.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1081.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1082.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1083.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1084.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1085.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1086.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1087.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1088.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1089.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc109.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1090.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1091.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1092.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1093.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1094.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1095.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1096.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1097.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1098.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1099.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc11.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc110.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1100.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1101.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1102.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1103.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1104.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1105.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1106.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1107.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1108.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1109.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc111.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1110.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1111.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1112.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1113.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1114.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1115.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1116.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1117.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1118.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1119.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc112.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1120.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1121.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1122.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1123.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1124.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1125.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1126.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1127.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1128.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1129.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc113.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1130.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1131.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1132.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1133.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1134.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1135.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1136.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1137.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1138.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1139.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc114.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1140.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1141.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1142.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1143.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1144.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1145.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1146.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1147.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1148.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1149.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc115.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1150.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1151.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1152.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1153.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1154.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1155.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1156.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1157.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1158.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1159.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc116.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1160.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1161.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1162.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1163.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1164.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1165.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1166.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1167.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1168.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1169.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc117.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1170.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1171.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1172.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1173.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1174.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1175.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1176.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1177.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1178.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1179.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc118.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1180.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1181.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1182.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1183.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1184.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1185.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1186.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1187.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1188.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1189.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc119.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1190.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1191.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1192.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1193.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1194.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1195.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1196.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1197.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1198.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1199.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc12.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc120.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1200.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1201.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1202.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1203.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1204.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1205.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1206.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1207.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1208.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1209.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc121.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1210.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1211.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1212.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1213.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1214.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1215.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1216.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1218.chk
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1219.bak
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc122.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1220.chk
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1223.txt
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1224.log
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc1225.log
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc123.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc124.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc125.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc126.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc127.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc128.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc129.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc13.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc130.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc131.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc132.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc133.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc134.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc135.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc136.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc137.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc138.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc139.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc14.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc140.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc141.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc142.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc143.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc144.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc145.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc146.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc147.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc148.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc149.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc15.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc150.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc151.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc152.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc153.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc154.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc155.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc156.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc157.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc158.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc159.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc16.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc160.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc161.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc162.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc163.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc164.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc165.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc166.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc167.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc168.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc169.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc17.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc170.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc171.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc172.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc173.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc174.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc175.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc176.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc177.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc178.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc179.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc18.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc180.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc181.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc182.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc183.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc184.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc185.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc186.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc187.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc188.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc189.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc19.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc190.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc191.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc192.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc193.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc194.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc195.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc196.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc197.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc198.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc199.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc2.zip
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc20.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc200.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc201.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc202.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc203.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc204.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc205.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc206.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc207.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc208.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc209.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc21.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc210.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc211.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc212.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc213.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc214.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc215.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc216.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc217.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc218.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc219.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc22.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc220.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc221.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc222.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc223.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc224.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc225.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc226.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc227.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc228.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc229.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc23.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc230.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc231.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc232.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc233.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc234.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc235.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc236.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc237.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc238.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc239.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc24.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc240.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc241.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc242.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc243.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc244.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc245.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc246.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc247.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc248.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc249.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc25.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc250.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc251.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc252.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc253.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc254.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc255.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc256.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc257.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc258.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc259.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc26.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc260.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc261.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc262.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc263.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc264.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc265.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc266.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc267.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc268.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc269.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc27.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc270.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc271.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc272.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc273.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc274.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc275.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc276.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc277.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc278.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc279.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc28.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc280.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc281.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc282.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc283.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc284.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc285.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc286.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc287.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc288.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc289.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc29.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc290.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc291.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc292.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc293.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc294.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc295.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc296.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc297.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc298.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc299.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc3.log
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc30.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc300.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc301.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc302.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc303.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc304.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc305.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc306.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc307.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc308.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc309.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc31.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc310.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc311.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc312.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc313.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc314.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc315.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc316.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc317.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc318.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc319.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc32.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc320.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc321.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc322.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc323.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc324.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc325.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc326.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc327.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc328.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc329.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc33.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc330.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc331.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc332.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc333.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc334.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc335.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc336.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc337.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc338.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc339.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc34.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc340.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc341.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc342.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc343.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc344.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc345.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc346.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc347.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc348.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc349.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc35.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc350.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc351.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc352.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc353.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc354.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc355.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc356.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc357.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc358.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc359.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc36.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc360.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc361.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc362.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc363.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc364.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc365.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc366.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc367.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc368.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc369.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc37.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc370.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc371.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc372.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc373.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc374.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc375.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc376.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc377.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc378.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc379.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc38.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc380.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc381.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc382.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc383.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc384.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc385.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc386.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc387.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc388.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc389.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc39.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc390.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc391.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc392.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc393.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc394.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc395.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc396.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc397.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc398.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc399.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc4.xml
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc40.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc400.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc401.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc402.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc403.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc404.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc405.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc406.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc407.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc408.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc409.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc41.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc410.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc411.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc412.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc413.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc414.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc415.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc416.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc417.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc418.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc419.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc42.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc420.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc421.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc422.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc423.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc424.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc425.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc426.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc427.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc428.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc429.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc43.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc430.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc431.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc432.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc433.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc434.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc435.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc436.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc437.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc438.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc439.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc44.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc440.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc441.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc442.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc443.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc444.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc445.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc446.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc447.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc448.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc449.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc45.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc450.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc451.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc452.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc453.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc454.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc455.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc456.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc457.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc458.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc459.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc46.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc460.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc461.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc462.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc463.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc464.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc465.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc466.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc467.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc468.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc469.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc47.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc470.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc471.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc472.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc473.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc474.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc475.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc476.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc477.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc478.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc479.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc48.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc480.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc481.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc482.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc483.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc484.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc485.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc486.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc487.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc488.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc489.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc49.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc490.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc491.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc492.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc493.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc494.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc495.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc496.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc497.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc498.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc499.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc5.chk
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc50.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc500.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc501.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc502.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc503.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc504.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc505.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc506.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc507.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc508.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc509.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc51.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc510.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc511.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc512.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc513.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc514.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc515.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc516.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc517.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc518.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc519.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc52.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc520.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc521.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc522.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc523.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc524.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc525.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc526.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc527.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc528.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc529.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc53.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc530.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc531.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc532.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc533.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc534.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc535.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc536.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc537.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc538.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc539.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc54.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc540.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc541.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc542.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc543.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc544.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc545.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc546.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc547.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc548.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc549.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc55.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc550.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc551.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc552.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc553.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc554.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc555.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc556.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc557.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc558.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc559.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc56.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc560.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc561.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc562.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc563.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc564.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc565.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc566.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc567.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc568.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc569.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc57.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc570.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc571.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc572.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc573.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc574.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc575.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc576.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc577.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc578.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc579.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc58.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc580.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc581.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc582.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc583.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc584.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc585.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc586.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc587.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc588.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc589.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc59.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc590.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc591.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc592.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc593.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc594.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc595.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc596.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc597.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc598.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc599.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc6.chk
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc60.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc600.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc601.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc602.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc603.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc604.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc605.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc606.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc607.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc608.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc609.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc61.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc610.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc611.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc612.bak
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc613.bak
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc614.bak
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc615.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc616.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc617.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc618.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc619.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc62.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc620.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc621.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc622.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc623.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc624.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc625.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc626.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc627.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc628.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc629.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc63.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc630.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc631.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc632.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc633.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc634.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc635.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc636.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc637.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc638.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc639.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc64.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc640.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc641.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc642.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc643.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc644.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc645.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc646.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc647.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc648.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc649.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc65.tmp

Uživatelský avatar
kekesko
Návštěvník
Návštěvník
Příspěvky: 149
Registrován: 16 led 2008 07:49

Re: Prestala pracovať Panda Cloud Antivirus

#6 Příspěvek od kekesko »

2. časť

c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc650.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc651.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc652.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc653.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc654.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc655.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc656.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc657.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc658.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc659.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc66.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc660.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc661.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc662.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc663.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc664.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc665.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc666.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc667.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc668.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc669.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc67.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc670.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc671.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc672.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc673.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc674.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc675.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc676.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc677.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc678.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc679.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc68.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc680.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc681.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc682.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc683.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc684.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc685.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc686.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc687.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc688.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc689.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc69.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc690.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc691.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc692.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc693.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc694.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc695.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc696.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc697.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc698.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc699.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc7.chk
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc70.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc700.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc701.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc702.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc703.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc704.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc705.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc706.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc707.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc708.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc709.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc71.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc710.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc711.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc712.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc713.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc714.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc715.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc716.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc717.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc718.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc719.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc72.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc720.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc721.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc722.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc723.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc724.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc725.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc726.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc727.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc728.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc729.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc73.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc730.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc731.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc732.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc733.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc734.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc735.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc736.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc737.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc738.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc739.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc74.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc740.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc741.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc742.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc743.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc744.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc745.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc746.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc747.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc748.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc749.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc75.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc750.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc751.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc752.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc753.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc754.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc755.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc756.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc757.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc758.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc759.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc76.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc760.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc761.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc762.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc763.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc764.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc765.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc766.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc767.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc768.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc769.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc77.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc770.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc771.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc772.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc773.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc774.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc775.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc776.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc777.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc778.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc779.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc78.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc780.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc781.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc782.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc783.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc784.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc785.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc786.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc787.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc788.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc789.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc79.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc790.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc791.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc792.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc793.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc794.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc795.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc796.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc797.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc798.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc799.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc8.chk
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc80.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc800.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc801.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc802.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc803.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc804.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc805.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc806.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc807.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc808.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc809.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc81.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc810.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc811.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc812.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc813.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc814.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc815.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc816.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc817.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc818.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc819.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc82.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc820.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc821.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc822.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc823.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc824.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc825.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc826.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc827.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc828.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc829.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc83.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc830.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc831.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc832.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc833.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc834.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc835.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc836.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc837.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc838.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc839.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc84.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc840.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc841.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc842.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc843.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc844.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc845.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc846.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc847.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc848.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc849.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc85.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc850.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc851.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc852.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc853.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc854.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc855.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc856.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc857.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc858.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc859.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc86.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc860.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc861.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc862.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc863.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc864.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc865.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc866.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc867.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc868.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc869.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc87.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc870.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc871.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc872.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc873.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc874.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc875.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc876.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc877.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc878.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc879.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc88.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc880.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc881.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc882.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc883.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc884.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc885.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc886.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc887.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc888.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc889.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc89.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc890.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc891.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc892.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc893.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc894.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc895.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc896.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc897.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc898.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc899.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc9.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc90.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc900.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc901.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc902.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc903.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc904.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc905.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc906.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc907.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc908.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc909.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc91.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc910.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc911.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc912.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc913.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc914.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc915.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc916.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc917.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc918.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc919.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc92.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc920.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc921.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc922.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc923.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc924.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc925.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc926.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc927.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc928.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc929.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc93.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc930.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc931.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc932.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc933.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc934.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc935.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc936.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc937.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc938.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc939.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc94.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc940.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc941.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc942.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc943.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc944.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc945.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc946.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc947.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc948.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc949.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc95.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc950.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc951.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc952.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc953.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc954.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc955.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc956.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc957.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc958.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc959.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc96.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc960.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc961.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc962.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc963.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc964.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc965.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc966.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc967.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc968.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc969.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc97.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc970.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc971.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc972.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc973.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc974.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc975.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc976.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc977.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc978.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc979.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc98.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc980.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc981.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc982.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc983.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc984.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc985.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc986.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc987.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc988.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc989.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc99.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc990.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc991.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc992.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc993.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc994.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc995.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc996.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc997.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc998.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\Dc999.tmp
c:\recycler(2)\S-1-5-21-1078081533-796845957-1801674531-1003(2)\INFO2
c:\windows\system32\AVSredirect.dll
.
.
((((((((((((((((((((((((( Files Created from 2013-03-28 to 2013-04-28 )))))))))))))))))))))))))))))))
.
.
2013-04-28 18:44 . 2013-04-28 18:44 -------- d---a-w- c:\documents and settings\All Users\Application Data\TEMP
2013-04-28 17:07 . 2013-04-28 17:07 -------- d-----w- c:\program files\trend micro
2013-04-28 15:44 . 2008-04-13 22:15 32128 ----a-w- c:\windows\system32\drivers\usbccgp.sys
2013-04-28 14:58 . 2013-04-28 14:58 -------- d-----w- c:\windows\system32\wbem\Repository
2013-04-28 14:54 . 2013-04-28 14:54 -------- d-----w- C:\rsit
2013-04-24 10:15 . 2013-04-24 10:15 -------- d-----w- c:\program files\CCleaner
2013-04-24 10:12 . 2013-04-24 11:17 -------- d-----w- c:\program files\Google
2013-04-23 00:05 . 2009-01-07 15:55 -------- d-----w- C:\Spear Britney
2013-04-23 00:01 . 2008-12-27 21:50 -------- d-----w- C:\Obrenovac
2013-04-22 23:59 . 2012-10-27 08:14 -------- d-----w- C:\Update
2013-04-22 23:58 . 2013-04-23 00:22 -------- d-----w- C:\Amateur Self Shots1
2013-04-20 14:58 . 2013-04-21 06:48 -------- d-----w- c:\documents and settings\BOBO\Local Settings\Application Data\Pokki
2013-04-20 14:57 . 2013-04-25 06:46 -------- d-----w- c:\documents and settings\All Users\Application Data\Freemake
2013-04-20 14:57 . 2013-04-25 06:46 -------- d-----w- c:\program files\Freemake
2013-04-20 14:57 . 2013-04-20 14:57 -------- d-----w- c:\documents and settings\BOBO\Application Data\OpenCandy
2013-04-18 09:06 . 2013-04-18 09:08 -------- d-----w- c:\program files\OpenVideoConverter
2013-04-18 08:45 . 2004-01-24 22:00 70656 ----a-w- c:\windows\system32\yv12vfw.dll
2013-04-18 08:45 . 2004-01-24 22:00 70656 ----a-w- c:\windows\system32\i420vfw.dll
2013-04-18 08:44 . 2013-04-18 09:13 -------- d-----w- c:\program files\eRightSoft
2013-04-18 05:44 . 2013-04-18 05:44 -------- d-----w- c:\documents and settings\BOBO\Application Data\NVIDIA
2013-04-14 21:06 . 2013-04-14 21:06 1072544 ----a-w- c:\windows\system32\nvdrsdb0.bin
2013-04-14 21:06 . 2013-04-14 21:06 1 ----a-w- c:\windows\system32\nvdrssel.bin
2013-04-14 21:06 . 2013-04-14 21:06 1072544 ----a-w- c:\windows\system32\nvdrsdb1.bin
2013-04-14 18:38 . 2013-04-14 18:38 -------- d-----w- c:\program files\SomePDF
2013-04-14 10:37 . 2013-04-14 10:37 -------- d-----w- c:\program files\Driver-Soft
2013-04-14 01:49 . 2013-04-16 01:08 7520 ----a-w- c:\documents and settings\All Users\Application Data\NanoRepository.bin
2013-04-10 10:14 . 2013-04-10 10:15 -------- d-----w- c:\documents and settings\BOBO\Application Data\avidemux
2013-04-10 10:14 . 2013-04-18 06:49 -------- d-----w- c:\program files\Avidemux 2.5
2013-03-31 20:34 . 2013-03-31 20:34 -------- d-----w- c:\program files\MKVtoolnix
2013-03-31 20:17 . 2013-04-10 09:05 -------- d-----w- c:\program files\AVG SafeGuard toolbar
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2013-03-08 08:36 . 2008-04-14 12:00 293376 ----a-w- c:\windows\system32\winsrv.dll
2013-03-07 01:32 . 2008-04-14 12:00 2149888 ----a-w- c:\windows\system32\ntoskrnl.exe
2013-03-07 00:50 . 2008-04-14 00:01 2028544 ----a-w- c:\windows\system32\ntkrnlpa.exe
2013-03-02 02:06 . 2008-04-14 12:00 916480 ----a-w- c:\windows\system32\wininet.dll
2013-03-02 02:06 . 2008-04-14 12:00 43520 ------w- c:\windows\system32\licmgr10.dll
2013-03-02 02:06 . 2008-04-14 12:00 1469440 ------w- c:\windows\system32\inetcpl.cpl
2013-03-02 01:25 . 2008-04-14 12:00 1867264 ----a-w- c:\windows\system32\win32k.sys
2013-03-02 01:08 . 2008-04-14 12:00 385024 ------w- c:\windows\system32\html.iec
2013-02-27 07:56 . 2012-12-31 03:20 2067456 ----a-w- c:\windows\system32\mstscax.dll
2013-02-12 00:32 . 2008-04-14 12:00 12928 ----a-w- c:\windows\system32\drivers\usb8023.sys
2013-02-11 00:18 . 2013-02-11 00:18 720896 ----a-w- c:\windows\iun6002.exe
2013-02-08 03:03 . 2013-02-08 03:03 1010464 ----a-w- c:\windows\system32\nvdispco32.dll
2013-02-08 03:03 . 2010-03-15 22:52 19189760 ----a-w- c:\windows\system32\nvoglnt.dll
2013-02-08 03:03 . 2006-10-31 05:35 4494336 ----a-w- c:\windows\system32\nv4_disp.dll
2013-02-08 03:02 . 2010-03-15 22:52 7536640 ----a-w- c:\windows\system32\nvcuda.dll
2013-02-08 03:02 . 2010-03-15 22:52 2581792 ----a-w- c:\windows\system32\nvcuvid.dll
2013-02-08 03:02 . 2013-02-08 03:02 892704 ----a-w- c:\windows\system32\nvdispgenco32.dll
2013-02-08 03:02 . 2010-03-15 22:52 17551360 ----a-w- c:\windows\system32\nvcompiler.dll
2013-02-08 03:02 . 2006-10-31 05:35 2389504 ----a-w- c:\windows\system32\nvapi.dll
2013-02-08 03:02 . 2006-10-31 05:35 12648960 ----a-w- c:\windows\system32\drivers\nv4_mini.sys
2013-02-08 03:02 . 2013-02-08 03:02 5967872 ----a-w- c:\windows\system32\nvopencl.dll
2013-02-08 03:02 . 2010-03-15 22:52 1869088 ----a-w- c:\windows\system32\nvcuvenc.dll
2013-01-19 07:44 . 2013-01-19 07:44 2174976 ----a-w- c:\program files\Common Files\atimpenc.dll
2013-04-24 06:21 . 2013-04-24 06:21 263064 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll
2006-05-03 09:06 163328 --sha-r- c:\windows\system32\flvDX.dll
2007-02-21 10:47 31232 --sha-r- c:\windows\system32\msfDX.dll
2008-03-16 12:30 216064 --sha-r- c:\windows\system32\nbDX.dll
2010-01-06 22:00 107520 --sha-r- c:\windows\system32\TAKDSDecoder.dll
.
.
------- Sigcheck -------
Note: Unsigned files aren't necessarily malware.
.
[-] 2008-04-14 . 9F3A2F5AA6875C72BF062C712CFA2674 . 96512 . . [5.1.2600.5512] . . c:\windows\system32\drivers\atapi.sys
.
[-] 2008-04-14 . B153AFFAC761E7F5FCFA822B9C4E97BC . 14336 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\asyncmac.sys
[-] 2008-04-14 . B153AFFAC761E7F5FCFA822B9C4E97BC . 14336 . . [5.1.2600.5512] . . c:\windows\system32\drivers\asyncmac.sys
.
[-] 2008-04-14 . DA1F27D85E0D1525F6621372E7B685E9 . 4224 . . [5.1.2600.0] . . c:\windows\system32\dllcache\beep.sys
[-] 2008-04-14 . DA1F27D85E0D1525F6621372E7B685E9 . 4224 . . [5.1.2600.0] . . c:\windows\system32\drivers\beep.sys
.
[-] 2008-04-14 . 463C1EC80CD17420A542B7F36A36F128 . 24576 . . [5.1.2600.5512] . . c:\windows\system32\drivers\kbdclass.sys
.
[-] 2008-04-14 . 1DF7F42665C94B825322FAE71721130D . 182656 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ndis.sys
[-] 2008-04-14 . 1DF7F42665C94B825322FAE71721130D . 182656 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ndis.sys
.
[-] 2008-04-14 . 78A08DD6A8D65E697C18E1DB01C5CDCA . 574976 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ntfs.sys
[-] 2008-04-14 . 78A08DD6A8D65E697C18E1DB01C5CDCA . 574976 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ntfs.sys
.
[-] 2008-04-14 . 73C1E1F395918BC2C6DD67AF7591A3AD . 2944 . . [5.1.2600.0] . . c:\windows\system32\dllcache\null.sys
[-] 2008-04-14 . 73C1E1F395918BC2C6DD67AF7591A3AD . 2944 . . [5.1.2600.0] . . c:\windows\system32\drivers\null.sys
.
[-] 2008-04-14 . BF2466B3E18E970D8A976FB95FC1CA85 . 13312 . . [5.1.2600.5512] . . c:\windows\system32\lsass.exe
[-] 2008-04-14 . BF2466B3E18E970D8A976FB95FC1CA85 . 13312 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\lsass.exe
.
[-] 2008-04-14 . 13E67B55B3ABD7BF3FE7AAE5A0F9A9DE . 198144 . . [5.1.2600.5512] . . c:\windows\system32\netman.dll
[-] 2008-04-14 . 13E67B55B3ABD7BF3FE7AAE5A0F9A9DE . 198144 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\netman.dll
.
[-] 2008-04-14 12:00 . 1280A158C722FA95A80FB7AEBE78FA7D . 792064 . . [2001.12.4414.700] . . c:\windows\system32\comres.dll
[-] 2008-04-14 12:00 . 1280A158C722FA95A80FB7AEBE78FA7D . 792064 . . [2001.12.4414.700] . . c:\windows\system32\dllcache\comres.dll
.
[-] 2008-04-14 . 574738F61FCA2935F5265DC4E5691314 . 409088 . . [6.7.2600.5512] . . c:\windows\system32\qmgr.dll
[-] 2008-04-14 . 574738F61FCA2935F5265DC4E5691314 . 409088 . . [6.7.2600.5512] . . c:\windows\system32\dllcache\qmgr.dll
.
[-] 2009-02-09 . 6B27A5C03DFB94B4245739065431322C . 401408 . . [5.1.2600.5755] . . c:\windows\system32\rpcss.dll
[-] 2009-02-09 . 6B27A5C03DFB94B4245739065431322C . 401408 . . [5.1.2600.5755] . . c:\windows\system32\dllcache\rpcss.dll
[-] 2009-02-09 . 9222562D44021B988B9F9F62207FB6F2 . 401408 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3QFE\rpcss.dll
[-] 2008-04-14 . 2589FE6015A316C0F5D5112B4DA7B509 . 399360 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB956572$\rpcss.dll
.
[-] 2009-02-06 . 65DF52F5B8B6E9BBD183505225C37315 . 110592 . . [5.1.2600.5755] . . c:\windows\system32\services.exe
[-] 2009-02-06 . 65DF52F5B8B6E9BBD183505225C37315 . 110592 . . [5.1.2600.5755] . . c:\windows\system32\dllcache\services.exe
[-] 2009-02-06 . 020CEAAEDC8EB655B6506B8C70D53BB6 . 110592 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3QFE\services.exe
[-] 2008-04-14 . 0E776ED5F7CC9F94299E70461B7B8185 . 108544 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB956572$\services.exe
.
[-] 2008-04-14 . ED0EF0A136DEC83DF69F04118870003E . 507904 . . [5.1.2600.5512] . . c:\windows\system32\winlogon.exe
[-] 2008-04-14 . ED0EF0A136DEC83DF69F04118870003E . 507904 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\winlogon.exe
.
[-] 2008-04-14 . 23C74D75E36E7158768DD63D92789A91 . 75264 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ipsec.sys
[-] 2008-04-14 . 23C74D75E36E7158768DD63D92789A91 . 75264 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ipsec.sys
.
[-] 2008-04-14 . 3D4E199942E29207970E04315D02AD3B . 62464 . . [5.1.2600.5512] . . c:\windows\system32\cryptsvc.dll
[-] 2008-04-14 . 3D4E199942E29207970E04315D02AD3B . 62464 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\cryptsvc.dll
.
[-] 2008-07-07 20:26 . D4991D98F2DB73C60D042F1AEF79EFAE . 253952 . . [2001.12.4414.706] . . c:\windows\system32\es.dll
[-] 2008-07-07 20:26 . D4991D98F2DB73C60D042F1AEF79EFAE . 253952 . . [2001.12.4414.706] . . c:\windows\system32\dllcache\es.dll
[-] 2008-07-07 20:23 . F17F6226BDC0CD5F0BEF0DAF84D29BEC . 253952 . . [2001.12.4414.706] . . c:\windows\$hf_mig$\KB950974\SP3QFE\es.dll
[-] 2008-04-14 12:00 . 19A799805B24990867B00C120D300C3A . 246272 . . [2001.12.4414.701] . . c:\windows\$NtUninstallKB950974$\es.dll
.
[-] 2008-04-14 . 0DA85218E92526972A821587E6A8BF8F . 110080 . . [5.1.2600.5512] . . c:\windows\system32\imm32.dll
[-] 2008-04-14 . 0DA85218E92526972A821587E6A8BF8F . 110080 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\imm32.dll
.
[-] 2008-04-14 . 2DC5A8019E2387987905F77C664E4BE2 . 19968 . . [5.1.2600.5512] . . c:\windows\system32\linkinfo.dll
[-] 2008-04-14 . 2DC5A8019E2387987905F77C664E4BE2 . 19968 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\linkinfo.dll
.
[-] 2008-04-14 . 012DF358CEBAA23ACB26D82077820817 . 22016 . . [5.1.2600.5512] . . c:\windows\system32\lpk.dll
[-] 2008-04-14 . 012DF358CEBAA23ACB26D82077820817 . 22016 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\lpk.dll
.
[-] 2008-04-14 . 355EDBB4D412B01F1740C17E3F50FA00 . 343040 . . [7.0.2600.5512] . . c:\windows\system32\msvcrt.dll
[-] 2008-04-14 . 355EDBB4D412B01F1740C17E3F50FA00 . 343040 . . [7.0.2600.5512] . . c:\windows\system32\dllcache\msvcrt.dll
[-] 2008-04-14 . 4200BE3808F6406DBE45A7B88DAE5035 . 322560 . . [7.0.2600.0] . . c:\windows\WinSxS\x86_Microsoft.Windows.CPlusPlusRuntime_6595b64144ccf1df_7.0.0.0_x-ww_2726e76a\msvcrt.dll
[-] 2008-04-14 . D7075E95AA599EE77B7A89D39296BD3D . 343040 . . [7.0.2600.5512] . . c:\windows\WinSxS\x86_Microsoft.Windows.CPlusPlusRuntime_6595b64144ccf1df_7.0.2600.5512_x-ww_3fd60d63\msvcrt.dll
.
[-] 2008-04-14 . 50A166237A0FA771261275A405646CC0 . 17408 . . [6.00.2900.5512] . . c:\windows\system32\powrprof.dll
[-] 2008-04-14 . 50A166237A0FA771261275A405646CC0 . 17408 . . [6.00.2900.5512] . . c:\windows\system32\dllcache\powrprof.dll
.
[-] 2008-04-14 . A86BB5E61BF3E39B62AB4C7E7085A084 . 181248 . . [5.1.2600.5512] . . c:\windows\system32\scecli.dll
[-] 2008-04-14 . A86BB5E61BF3E39B62AB4C7E7085A084 . 181248 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\scecli.dll
.
[-] 2008-04-14 . 96E1C926F22EE1BFBAE82901A35F6BF3 . 5120 . . [5.1.2600.5512] . . c:\windows\system32\sfc.dll
[-] 2008-04-14 . 96E1C926F22EE1BFBAE82901A35F6BF3 . 5120 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\sfc.dll
.
[-] 2008-04-14 . 27C6D03BCDB8CFEB96B716F3D8BE3E18 . 14336 . . [5.1.2600.5512] . . c:\windows\system32\svchost.exe
[-] 2008-04-14 . 27C6D03BCDB8CFEB96B716F3D8BE3E18 . 14336 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\svchost.exe
.
[-] 2008-04-14 . 3CB78C17BB664637787C9A1C98F79C38 . 249856 . . [5.1.2600.5512] . . c:\windows\system32\tapisrv.dll
[-] 2008-04-14 . 3CB78C17BB664637787C9A1C98F79C38 . 249856 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\tapisrv.dll
.
[-] 2008-04-14 . B26B135FF1B9F60C9388B4A7D16F600B . 578560 . . [5.1.2600.5512] . . c:\windows\system32\user32.dll
[-] 2008-04-14 . B26B135FF1B9F60C9388B4A7D16F600B . 578560 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\user32.dll
.
[-] 2008-04-14 . A93AEE1928A9D7CE3E16D24EC7380F89 . 26112 . . [5.1.2600.5512] . . c:\windows\system32\userinit.exe
[-] 2008-04-14 . A93AEE1928A9D7CE3E16D24EC7380F89 . 26112 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\userinit.exe
.
[-] 2008-04-14 . 2CCC474EB85CEAA3E1FA1726580A3E5A . 82432 . . [5.1.2600.5512] . . c:\windows\system32\ws2_32.dll
[-] 2008-04-14 . 2CCC474EB85CEAA3E1FA1726580A3E5A . 82432 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ws2_32.dll
.
[-] 2008-04-14 . 9789E95E1D88EEB4B922BF3EA7779C28 . 19968 . . [5.1.2600.5512] . . c:\windows\system32\ws2help.dll
[-] 2008-04-14 . 9789E95E1D88EEB4B922BF3EA7779C28 . 19968 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ws2help.dll
.
[-] 2008-04-14 . 12896823FB95BFB3DC9B46BCAEDC9923 . 1033728 . . [6.00.2900.5512] . . c:\windows\explorer.exe
[-] 2008-04-14 . 12896823FB95BFB3DC9B46BCAEDC9923 . 1033728 . . [6.00.2900.5512] . . c:\windows\system32\dllcache\explorer.exe
.
[-] 2008-04-14 . 058710B720282CA82B909912D3EF28DB . 146432 . . [5.1.2600.5512] . . c:\windows\regedit.exe
[-] 2008-04-14 . 058710B720282CA82B909912D3EF28DB . 146432 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\regedit.exe
.
[-] 2008-04-14 . 9B9F1C38D559047B8AC0DBA2D5FEBDE9 . 4096 . . [5.3.2600.5512] . . c:\windows\system32\ksuser.dll
[-] 2008-04-14 . 9B9F1C38D559047B8AC0DBA2D5FEBDE9 . 4096 . . [5.3.2600.5512] . . c:\windows\system32\dllcache\ksuser.dll
.
[-] 2008-04-14 . 5F1D5F88303D4A4DBC8E5F97BA967CC3 . 15360 . . [5.1.2600.5512] . . c:\windows\system32\ctfmon.exe
[-] 2008-04-14 . 5F1D5F88303D4A4DBC8E5F97BA967CC3 . 15360 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ctfmon.exe
.
[-] 2008-04-14 . AFFC87E2501FCE8F09D4C10BA6421CCF . 4608 . . [5.1.2600.5512] . . c:\windows\system32\msimg32.dll
[-] 2008-04-14 . AFFC87E2501FCE8F09D4C10BA6421CCF . 4608 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\msimg32.dll
.
[-] 2008-04-14 . 3805DF0AC4296A34BA4BF93B346CC378 . 171008 . . [5.1.2600.5512] . . c:\windows\system32\srsvc.dll
[-] 2008-04-14 . 3805DF0AC4296A34BA4BF93B346CC378 . 171008 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\srsvc.dll
.
[-] 2008-04-14 . F92E1076C42FCD6DB3D72D8CFE9816D5 . 13824 . . [5.1.2600.5512] . . c:\windows\system32\wscntfy.exe
[-] 2008-04-14 . F92E1076C42FCD6DB3D72D8CFE9816D5 . 13824 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\wscntfy.exe
.
[-] 2008-04-14 . 295D21F14C335B53CB8154E5B1F892B9 . 129024 . . [5.1.2600.5512] . . c:\windows\system32\xmlprov.dll
[-] 2008-04-14 . 295D21F14C335B53CB8154E5B1F892B9 . 129024 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\xmlprov.dll
.
[-] 2008-04-14 . 5733177BCF16EE78B99543C9B0AB81EA . 177152 . . [5.1.2600.5512] . . c:\windows\system32\MSCTFIME.IME
[-] 2008-04-14 . 5733177BCF16EE78B99543C9B0AB81EA . 177152 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\msctfime.ime
.
[-] 2008-04-14 . 6D4FEB43EE538FC5428CC7F0565AA656 . 56320 . . [5.1.2600.5512] . . c:\windows\system32\eventlog.dll
[-] 2008-04-14 . 6D4FEB43EE538FC5428CC7F0565AA656 . 56320 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\eventlog.dll
.
[-] 2008-04-14 . 9DD07AF82244867CA36681EA2D29CE79 . 1614848 . . [5.1.2600.5512] . . c:\windows\system32\sfcfiles.dll
[-] 2008-04-14 . 9DD07AF82244867CA36681EA2D29CE79 . 1614848 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\sfcfiles.dll
.
[-] 2008-04-14 . 23C74D75E36E7158768DD63D92789A91 . 75264 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ipsec.sys
[-] 2008-04-14 . 23C74D75E36E7158768DD63D92789A91 . 75264 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ipsec.sys
.
[-] 2008-04-14 . 5B19B557B0C188210A56A6B699D90B8F . 59904 . . [5.1.2600.5512] . . c:\windows\system32\regsvc.dll
[-] 2008-04-14 . 5B19B557B0C188210A56A6B699D90B8F . 59904 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\regsvc.dll
.
[-] 2008-04-14 . 0A9A7365A1CA4319AA7C1D6CD8E4EAFA . 192512 . . [5.1.2600.5512] . . c:\windows\system32\schedsvc.dll
[-] 2008-04-14 . 0A9A7365A1CA4319AA7C1D6CD8E4EAFA . 192512 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\schedsvc.dll
.
[-] 2008-04-14 . 0A5679B3714EDAB99E357057EE88FCA6 . 71680 . . [5.1.2600.5512] . . c:\windows\system32\ssdpsrv.dll
[-] 2008-04-14 . 0A5679B3714EDAB99E357057EE88FCA6 . 71680 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ssdpsrv.dll
.
[-] 2008-04-14 . FF3477C03BE7201C294C35F684B3479F . 295424 . . [5.1.2600.5512] . . c:\windows\system32\termsrv.dll
[-] 2008-04-14 . FF3477C03BE7201C294C35F684B3479F . 295424 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\termsrv.dll
.
[-] 2008-04-14 . 3CB32D3B8CBE79899D63280BB7A83CD9 . 344064 . . [5.1.2600.5512] . . c:\windows\system32\hnetcfg.dll
[-] 2008-04-14 . 3CB32D3B8CBE79899D63280BB7A83CD9 . 344064 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\hnetcfg.dll
.
[-] 2008-04-14 . D8849F77C0B66226335A59D26CB4EDC6 . 167936 . . [5.1.2600.5512] . . c:\windows\system32\appmgmts.dll
[-] 2008-04-14 . D8849F77C0B66226335A59D26CB4EDC6 . 167936 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\appmgmts.dll
.
[-] 2008-04-14 . 9859C0F6936E723E4892D7141B1327D5 . 11648 . . [5.1.2600.0] . . c:\windows\system32\drivers\acpiec.sys
.
[-] 2008-04-13 21:09 . 8BED39E3C35D6A489438B8141717A557 . 142592 . . [5.1.2601.3142] . . c:\windows\system32\dllcache\aec.sys
[-] 2008-04-13 21:09 . 8BED39E3C35D6A489438B8141717A557 . 142592 . . [5.1.2601.3142] . . c:\windows\system32\drivers\aec.sys
.
[-] 2008-04-14 . 3BB22519A194418D5FEC05D800A19AD0 . 36608 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ip6fw.sys
[-] 2008-04-14 . 3BB22519A194418D5FEC05D800A19AD0 . 36608 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ip6fw.sys
.
[-] 2010-09-18 07:18 . 842900DEDBC8E3E8DBCCCB298FD88F65 . 953856 . . [4.1.6151] . . c:\windows\$hf_mig$\KB2387149\SP3QFE\mfc40u.dll
[-] 2010-09-18 06:53 . E76A5C202E68AF5A322D16B5A78F48B9 . 953856 . . [4.1.6151] . . c:\windows\system32\mfc40u.dll
[-] 2010-09-18 06:53 . E76A5C202E68AF5A322D16B5A78F48B9 . 953856 . . [4.1.6151] . . c:\windows\system32\dllcache\mfc40u.dll
[-] 2008-04-14 12:00 . CDDD4416B2B4C7295FE3FDB6DDE57E4E . 927504 . . [4.1.0.61] . . c:\windows\$NtUninstallKB2387149$\mfc40u.dll
.
[-] 2008-04-14 . 986B1FF5814366D71E0AC5755C88F2D3 . 33792 . . [5.1.2600.5512] . . c:\windows\system32\msgsvc.dll
[-] 2008-04-14 . 986B1FF5814366D71E0AC5755C88F2D3 . 33792 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\msgsvc.dll
.
[-] 2008-04-14 12:00 . 156F64A3345BD23C600655FB4D10BC08 . 435200 . . [5.1.2400.5512] . . c:\windows\system32\ntmssvc.dll
[-] 2008-04-14 12:00 . 156F64A3345BD23C600655FB4D10BC08 . 435200 . . [5.1.2400.5512] . . c:\windows\system32\dllcache\ntmssvc.dll
.
[-] 2008-04-14 . 1EBAFEB9A3FBDC41B8D9C7F0F687AD91 . 185856 . . [5.1.2600.5512] . . c:\windows\system32\upnphost.dll
[-] 2008-04-14 . 1EBAFEB9A3FBDC41B8D9C7F0F687AD91 . 185856 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\upnphost.dll
.
[-] 2008-04-14 . 4D83ED8BDDEC431FC8AD907B47CFB6E3 . 367616 . . [5.3.2600.5512] . . c:\windows\system32\dsound.dll
[-] 2008-04-14 . 4D83ED8BDDEC431FC8AD907B47CFB6E3 . 367616 . . [5.3.2600.5512] . . c:\windows\system32\dllcache\dsound.dll
.
[-] 2008-04-14 . 0607CBC6FA20114CB491EFE4B2F9EFAD . 1689088 . . [5.03.2600.5512] . . c:\windows\system32\d3d9.dll
[-] 2008-04-14 . 0607CBC6FA20114CB491EFE4B2F9EFAD . 1689088 . . [5.03.2600.5512] . . c:\windows\system32\dllcache\d3d9.dll
.
[-] 2008-04-14 . A340CD71EB535A3DD751B5F28723E50C . 279552 . . [5.03.2600.5512] . . c:\windows\system32\ddraw.dll
[-] 2008-04-14 . A340CD71EB535A3DD751B5F28723E50C . 279552 . . [5.03.2600.5512] . . c:\windows\system32\dllcache\ddraw.dll
.
[-] 2008-04-14 12:00 . 5652F6CE1D9E9D8068B9D29BC21B5409 . 84992 . . [5.1.2600.5512] . . c:\windows\system32\olepro32.dll
[-] 2008-04-14 12:00 . 5652F6CE1D9E9D8068B9D29BC21B5409 . 84992 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\olepro32.dll
.
[-] 2008-04-14 . DBE2B62353660ECCA0D75EA307A717E9 . 39936 . . [5.1.2600.5512] . . c:\windows\system32\perfctrs.dll
[-] 2008-04-14 . DBE2B62353660ECCA0D75EA307A717E9 . 39936 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\perfctrs.dll
.
[-] 2008-04-14 . C7CE131408739B0B3A318BE2D0032719 . 18944 . . [5.1.2600.5512] . . c:\windows\system32\version.dll
[-] 2008-04-14 . C7CE131408739B0B3A318BE2D0032719 . 18944 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\version.dll
.
[-] 2008-04-14 . 3805DF0AC4296A34BA4BF93B346CC378 . 171008 . . [5.1.2600.5512] . . c:\windows\system32\srsvc.dll
[-] 2008-04-14 . 3805DF0AC4296A34BA4BF93B346CC378 . 171008 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\srsvc.dll
.
[-] 2008-04-14 . 8BAD69CBAC032D4BBACFCE0306174C30 . 333824 . . [5.1.2600.5512] . . c:\windows\system32\wiaservc.dll
[-] 2008-04-14 . 8BAD69CBAC032D4BBACFCE0306174C30 . 333824 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\wiaservc.dll
.
[-] 2008-04-14 . 5C12660A97822F6E61576943B49AAAD6 . 18944 . . [5.1.2600.5512] . . c:\windows\system32\midimap.dll
[-] 2008-04-14 . 5C12660A97822F6E61576943B49AAAD6 . 18944 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\midimap.dll
.
[-] 2008-04-14 . 6F9BEF24C578D5D6740E080BEDD6A448 . 7680 . . [5.1.2600.5512] . . c:\windows\system32\rasadhlp.dll
[-] 2008-04-14 . 6F9BEF24C578D5D6740E080BEDD6A448 . 7680 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\rasadhlp.dll
.
[-] 2008-04-14 . 4E3D06D6E68EEDB52565080F55B460D3 . 19456 . . [5.1.2600.5512] . . c:\windows\system32\wshtcpip.dll
[-] 2008-04-14 . 4E3D06D6E68EEDB52565080F55B460D3 . 19456 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\wshtcpip.dll
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\IDM Shell Extension]
@="{CDC95B92-E27C-4745-A8C5-64A52A78855D}"
[HKEY_CLASSES_ROOT\CLSID\{CDC95B92-E27C-4745-A8C5-64A52A78855D}]
2011-05-30 16:50 21864 ----a-w- c:\program files\Internet Download Manager\IDMShellExt.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"uTorrent"="c:\program files\uTorrent\uTorrent.exe" [2013-01-01 399224]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"PSUAMain"="c:\program files\Panda Security\Panda Cloud Antivirus\PSUAMain.exe" [2013-01-27 32480]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
.
[hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
"{93994DE8-8239-4655-B1D1-5F4E91300429}"= "c:\progra~1\DVDIDL~1\DVDShell.dll" [2004-10-09 49152]
.
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^BlueSoleil.lnk]
backup=c:\windows\pss\BlueSoleil.lnkCommon Startup
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AsusStartupHelp]
2006-11-14 06:25 363008 ----a-r- c:\program files\ASUS\AASP\1.00.17\AsRunHelp.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BluetoothAuthenticationAgent]
2008-04-14 04:42 110592 ----a-w- c:\windows\system32\bthprops.cpl
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvCplDaemon]
2010-03-16 02:37 13670504 ----a-w- c:\windows\system32\nvcpl.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvMediaCenter]
2010-03-16 02:37 110696 ----a-w- c:\windows\system32\nvmctray.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Panda Security URL Filtering]
2012-10-15 12:52 221832 ----a-w- c:\documents and settings\All Users\Application Data\Panda Security URL Filtering\Panda_URL_Filtering.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PWRISOVM.EXE]
2007-08-07 00:05 200704 ----a-w- c:\program files\PowerISO\PWRISOVM.EXE
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RTHDCPL]
2007-02-26 14:03 16125440 ----a-w- c:\windows\RTHDCPL.EXE
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SkyTel]
2006-05-16 17:04 2879488 ----a-w- c:\windows\SkyTel.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SpywareTerminatorShield]
2012-09-07 00:46 2777296 ----a-w- c:\program files\Spyware Terminator\SpywareTerminatorShield.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SpywareTerminatorUpdater]
2012-09-07 00:47 3673808 ----a-w- c:\program files\Spyware Terminator\SpywareTerminatorUpdate.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
"JavaQuickStarterService"=2 (0x2)
"NVSvc"=2 (0x2)
"AdobeFlashPlayerUpdateSvc"=3 (0x3)
"NBService"=3 (0x3)
"BlueSoleil Hid Service"=2 (0x2)
"nSvcIp"=2 (0x2)
"ForceWare Intelligent Application Manager (IAM)"=2 (0x2)
"MBAMService"=2 (0x2)
"MBAMScheduler"=2 (0x2)
"idsvc"=3 (0x3)
"ICQ Service"=2 (0x2)
"NGRegClnSrv"=2 (0x2)
"ST2012_Svc"=2 (0x2)
"PCToolsSSDMonitorSvc"=2 (0x2)
"PCSUService"=2 (0x2)
"PDF Architect Service"=2 (0x2)
"PDF Architect Helper Service"=2 (0x2)
"bgsvcgen"=2 (0x2)
"SkypeUpdate"=2 (0x2)
"NMIndexingService"=3 (0x3)
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"c:\\Program Files\\uTorrent\\uTorrent.exe"=
"c:\\Program Files\\ICQ7.7\\ICQ.exe"=
"c:\\Program Files\\Java\\jre7\\launch4j-tmp\\frd.exe"=
"c:\\WINDOWS\\system32\\sessmgr.exe"=
"c:\\Program Files\\Opera\\opera.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
.
R1 IDMTDI;IDMTDI;c:\windows\system32\drivers\idmtdi.sys [29.12.2011 19:13 101616]
R1 NNSALPC;NNSAlpc;c:\windows\system32\drivers\NNSAlpc.sys [9.11.2012 11:23 82728]
R1 NNSHTTP;NNSHttp;c:\windows\system32\drivers\NNSHttp.sys [9.11.2012 11:23 119080]
R1 NNSHTTPS;NNSHttps;c:\windows\system32\drivers\NNSHttps.sys [9.1.2013 22:45 95584]
R1 NNSIDS;NNSids;c:\windows\system32\drivers\NNSIds.sys [9.11.2012 11:23 123944]
R1 NNSPICC;NNSPicc;c:\windows\system32\drivers\NNSpicc.sys [9.11.2012 11:23 94632]
R1 NNSPIHS;NNSPihs;c:\windows\system32\drivers\NNSpihs.sys [9.11.2012 11:23 51496]
R1 NNSPOP3;NNSPop3;c:\windows\system32\drivers\NNSPop3.sys [9.11.2012 11:23 105640]
R1 NNSPROT;NNSProt;c:\windows\system32\drivers\NNSProt.sys [9.11.2012 11:23 286888]
R1 NNSPRV;NNSPrv;c:\windows\system32\drivers\NNSPrv.sys [9.11.2012 11:23 159528]
R1 NNSSMTP;NNSSmtp;c:\windows\system32\drivers\NNSSmtp.sys [9.11.2012 11:23 108200]
R1 NNSSTRM;NNSStrm;c:\windows\system32\drivers\NNSStrm.sys [9.11.2012 11:23 218024]
R1 NNSTLSC;NNSTlsc;c:\windows\system32\drivers\NNStlsc.sys [9.11.2012 11:23 93096]
R1 PSINKNC;PSINKNC;c:\windows\system32\drivers\PSINKNC.sys [9.11.2012 19:01 178728]
R1 sp_rsdrv2;Spyware Terminator 2012 Realtime Shield Driver;c:\windows\system32\drivers\sp_rsdrv2.sys [16.1.2013 15:31 32768]
R2 NanoServiceMain;Panda Cloud Antivirus Service;c:\program files\Panda Security\Panda Cloud Antivirus\PSANHost.exe [27.1.2013 21:16 140512]
R2 PSINAflt;PSINAflt;c:\windows\system32\drivers\PSINAflt.sys [9.11.2012 19:01 149288]
R2 PSINFile;PSINFile;c:\windows\system32\drivers\PSINFile.sys [9.11.2012 19:01 102184]
R2 PSINProc;PSINProc;c:\windows\system32\drivers\PSINProc.sys [9.11.2012 19:01 114216]
R2 PSINProt;PSINProt;c:\windows\system32\drivers\PSINProt.sys [9.11.2012 19:01 123560]
R3 Cap713x;Cap713x Video Capture;c:\windows\system32\drivers\Cap713x.sys [10.6.2004 1:14 502784]
S0 TfFsMon;TfFsMon;c:\windows\system32\drivers\TfFsMon.sys --> c:\windows\system32\drivers\TfFsMon.sys [?]
S0 TFSysMon;TfSysMon;c:\windows\system32\drivers\TfSysMon.sys --> c:\windows\system32\drivers\TfSysMon.sys [?]
S2 PSUAService;Panda Product Service;c:\program files\Panda Security\Panda Cloud Antivirus\PSUAService.exe [27.1.2013 23:38 37088]
S2 SkypeUpdate;Skype Updater;c:\program files\Skype\Updater\Updater.exe [28.2.2013 18:45 161384]
S3 genmcmnUSB;USB Scroll Mouse Driver;c:\windows\system32\drivers\gflmouhid.sys [7.8.2003 17:42 6528]
S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [1.1.2013 18:58 21104]
S3 NNSNAHS;Network Activity Hook Server Service;c:\windows\system32\drivers\NNSNAHS.sys [22.10.2012 13:08 38824]
S3 TfNetMon;TfNetMon;\??\c:\windows\system32\drivers\TfNetMon.sys --> c:\windows\system32\drivers\TfNetMon.sys [?]
S4 MBAMService;MBAMService;c:\program files\Malwarebytes' Anti-Malware\mbamservice.exe [1.1.2013 18:58 682344]
S4 PCToolsSSDMonitorSvc;PC Tools Startup and Shutdown Monitor service;c:\program files\Common Files\PC Tools\sMonitor\StartManSvc.exe [3.1.2013 3:50 794272]
S4 PDF Architect Helper Service;PDF Architect Helper Service;c:\program files\PDF Architect\HelperService.exe [9.1.2013 18:34 1324104]
S4 PDF Architect Service;PDF Architect Service;c:\program files\PDF Architect\ConversionService.exe [9.1.2013 18:36 795208]
S4 ST2012_Svc;Spyware Terminator 2012 Realtime Shield Service;c:\program files\Spyware Terminator\st_rsser.exe [16.1.2013 15:31 587472]
.
Contents of the 'Scheduled Tasks' folder
.
2013-04-28 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-12-31 22:50]
.
2013-04-28 c:\windows\Tasks\RegClean Pro_DEFAULT.job
- c:\program files\RegClean Pro\RegCleanPro.exe [2013-02-27 13:14]
.
2013-04-23 c:\windows\Tasks\RegClean Pro_UPDATES.job
- c:\program files\RegClean Pro\RegCleanPro.exe [2013-02-27 13:14]
.
2013-04-28 c:\windows\Tasks\RMAutoUpdate.job
- c:\program files\Registry Mechanic\SULauncher.exe [2013-01-13 13:44]
.
.
------- Supplementary Scan -------
.
uStart Page = hxxp://www.google.sk/
IE: Stiahnuť s IDM - c:\program files\Internet Download Manager\IEExt.htm
IE: Stiahnuť s IDM všetky prepojenia - c:\program files\Internet Download Manager\IEGetAll.htm
TCP: DhcpNameServer = 195.34.133.21 192.168.0.1
FF - ProfilePath - c:\documents and settings\BOBO\Application Data\Mozilla\Firefox\Profiles\d3wvyde2.default\
FF - prefs.js: browser.search.selectedEngine - Search Results
FF - prefs.js: browser.startup.homepage - hxxps://www.facebook.com/
FF - prefs.js: network.proxy.type - 0
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2013-04-28 20:44
Windows 5.1.2600 Service Pack 3 NTFS
.
scanning hidden processes ...
.
scanning hidden autostart entries ...
.
scanning hidden files ...
.
scan completed successfully
hidden files: 0
.
**************************************************************************
.
--------------------- LOCKED REGISTRY KEYS ---------------------
.
[HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*1*]
@="?????????????????? v1"
.
[HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*1*\CLSID]
@="{E23FE9C6-778E-49D4-B537-38FCDE4887D8}"
.
[HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*2*]
@="?????????????????? v2"
.
[HKEY_LOCAL_MACHINE\software\Classes\VideoLAN.VLCPlugin.*2*\CLSID]
@="{9BE31822-FDAD-461B-AD51-BE1D1C159921}"
.
--------------------- DLLs Loaded Under Running Processes ---------------------
.
- - - - - - - > 'explorer.exe'(2996)
c:\windows\system32\WININET.dll
c:\program files\Internet Download Manager\IDMShellExt.dll
c:\program files\Internet Download Manager\IDMNetMon.DLL
c:\windows\system32\ieframe.dll
c:\program files\Common Files\Ahead\Lib\NeroDigitalExt.dll
c:\windows\system32\webcheck.dll
c:\program files\WinRAR\rarext.dll
.
------------------------ Other Running Processes ------------------------
.
c:\windows\system32\wdfmgr.exe
.
**************************************************************************
.
Completion time: 2013-04-28 20:48:56 - machine was rebooted
ComboFix-quarantined-files.txt 2013-04-28 18:48
ComboFix2.txt 2013-04-28 13:45
ComboFix3.txt 2013-02-10 12:40
.
Pre-Run: 4 424 073 216 bytes free
Post-Run: 4 438 372 352 voľných bajtov
.
- - End Of File - - D9D2ADF13A0B454B90BF16A921697111

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119526
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prestala pracovať Panda Cloud Antivirus

#7 Příspěvek od Rudy »

Log již vypadá OK. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Uživatelský avatar
kekesko
Návštěvník
Návštěvník
Příspěvky: 149
Registrován: 16 led 2008 07:49

Re: Prestala pracovať Panda Cloud Antivirus

#8 Příspěvek od kekesko »

Bohužiaľ nie, otvorenie prieskumníka vypadá takto http://imgupload.sk/viewer.php?file=tlf ... zazze0.jpg

a Panda mi po spustení hodí túto hlašku http://imgupload.sk/viewer.php?file=plq ... 6grwkc.jpg

nedá sa ani znovuinštalovať. :(

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119526
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prestala pracovať Panda Cloud Antivirus

#9 Příspěvek od Rudy »

Stáhněte Malwarebytes Anti-Rootkit http://www.malwarebytes.org/products/mbar/

Uložte nejlépe na Plochu a rozbalte
Spusťte kliknutím na mbar
Nyní postupně klikněte na Next a Update
Po dokončení update (aktualizace) databáze klikněte opět na Next
Nechte zaškrtnute všechny tři možnosti a kliněte na Scan čímž spustíte prohledavani PC
Po dokončeni skenu (cca 5 minutek) zkontrolujte, zda-li je u všech nalezů (samozrejme pokud budou) zatržítko
Tež zkontrolujte, jestli je zatržitko u Create Restore point
Nyní klikněte na CleanUp čímž nalezenou infekci odstraníme
PC bude restartován
Složka mbar by měla obsahovat log (a zřejmě se i sám otevře) mbar-log-rok-měsíc-den (hodina-minuta-sekunda).txt, ten mi sem dejte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Uživatelský avatar
kekesko
Návštěvník
Návštěvník
Příspěvky: 149
Registrován: 16 led 2008 07:49

Re: Prestala pracovať Panda Cloud Antivirus

#10 Příspěvek od kekesko »

Všetko som urobil, ale reštart nebol.

---------------------------------------
Malwarebytes Anti-Rootkit BETA 1.05.0.1001

(c) Malwarebytes Corporation 2011-2012

OS version: 5.1.2600 Windows XP Service Pack 3 x86

Account is Administrative

Internet Explorer version: 8.0.6001.18702

File system is: NTFS
Disk drives: C:\ DRIVE_FIXED, D:\ DRIVE_FIXED, E:\ DRIVE_FIXED, F:\ DRIVE_FIXED, I:\ DRIVE_FIXED, J:\ DRIVE_FIXED
CPU speed: 2.109000 GHz
Memory total: 2012524544, free: 1112711168

------------ Kernel report ------------
04/28/2013 22:38:42
------------ Loaded modules -----------
\WINDOWS\system32\ntkrnlpa.exe
\WINDOWS\system32\hal.dll
\WINDOWS\system32\KDCOM.DLL
\WINDOWS\system32\BOOTVID.dll
ACPI.sys
\WINDOWS\system32\DRIVERS\WMILIB.SYS
pci.sys
isapnp.sys
pciide.sys
\WINDOWS\system32\DRIVERS\PCIIDEX.SYS
MountMgr.sys
ftdisk.sys
dmload.sys
dmio.sys
PartMgr.sys
VolSnap.sys
atapi.sys
nvata.sys
viamraid.sys
\WINDOWS\system32\DRIVERS\SCSIPORT.SYS
nvgts.sys
disk.sys
\WINDOWS\system32\DRIVERS\CLASSPNP.SYS
fltMgr.sys
sr.sys
KSecDD.sys
Ntfs.sys
NDIS.sys
Combo-Fix.sys
Mup.sys
BTHidMgr.sys
\SystemRoot\system32\DRIVERS\processr.sys
\SystemRoot\system32\DRIVERS\parport.sys
\SystemRoot\system32\DRIVERS\ASACPI.sys
\SystemRoot\system32\DRIVERS\i8042prt.sys
\SystemRoot\system32\DRIVERS\kbdclass.sys
\SystemRoot\system32\DRIVERS\serial.sys
\SystemRoot\system32\DRIVERS\serenum.sys
\SystemRoot\system32\DRIVERS\usbohci.sys
\SystemRoot\system32\DRIVERS\USBPORT.SYS
\SystemRoot\system32\DRIVERS\usbehci.sys
\SystemRoot\system32\DRIVERS\Cap713x.sys
\SystemRoot\system32\DRIVERS\STREAM.SYS
\SystemRoot\system32\DRIVERS\ks.sys
\SystemRoot\system32\DRIVERS\imapi.sys
\SystemRoot\System32\Drivers\cdrbsdrv.SYS
\SystemRoot\system32\DRIVERS\cdrom.sys
\SystemRoot\system32\DRIVERS\redbook.sys
\SystemRoot\system32\DRIVERS\HDAudBus.sys
\SystemRoot\system32\DRIVERS\nvnetbus.sys
\SystemRoot\system32\DRIVERS\nv4_mini.sys
\SystemRoot\system32\DRIVERS\VIDEOPRT.SYS
\SystemRoot\system32\DRIVERS\audstub.sys
\SystemRoot\system32\DRIVERS\rasl2tp.sys
\SystemRoot\system32\DRIVERS\ndistapi.sys
\SystemRoot\system32\DRIVERS\ndiswan.sys
\SystemRoot\system32\DRIVERS\raspppoe.sys
\SystemRoot\system32\DRIVERS\raspptp.sys
\SystemRoot\system32\DRIVERS\TDI.SYS
\SystemRoot\system32\DRIVERS\psched.sys
\SystemRoot\system32\DRIVERS\msgpc.sys
\SystemRoot\system32\DRIVERS\ptilink.sys
\SystemRoot\system32\DRIVERS\raspti.sys
\SystemRoot\system32\DRIVERS\rdpdr.sys
\SystemRoot\system32\DRIVERS\termdd.sys
\SystemRoot\system32\DRIVERS\mouclass.sys
\SystemRoot\system32\DRIVERS\swenum.sys
\SystemRoot\system32\DRIVERS\update.sys
\SystemRoot\system32\DRIVERS\mssmbios.sys
\SystemRoot\System32\Drivers\NDProxy.SYS
\SystemRoot\system32\DRIVERS\usbhub.sys
\SystemRoot\system32\DRIVERS\USBD.SYS
\SystemRoot\system32\DRIVERS\NVENETFD.sys
\SystemRoot\system32\DRIVERS\NVNRM.SYS
\SystemRoot\system32\drivers\RtkHDAud.sys
\SystemRoot\system32\drivers\portcls.sys
\SystemRoot\system32\drivers\drmk.sys
\SystemRoot\System32\Drivers\Fs_Rec.SYS
\SystemRoot\System32\Drivers\Null.SYS
\SystemRoot\System32\Drivers\Beep.SYS
\SystemRoot\System32\drivers\vga.sys
\SystemRoot\System32\Drivers\mnmdd.SYS
\SystemRoot\System32\DRIVERS\RDPCDD.sys
\SystemRoot\System32\Drivers\Msfs.SYS
\SystemRoot\System32\Drivers\Npfs.SYS
\SystemRoot\system32\DRIVERS\rasacd.sys
\SystemRoot\system32\DRIVERS\ipsec.sys
\SystemRoot\system32\DRIVERS\tcpip.sys
\SystemRoot\system32\DRIVERS\netbt.sys
\SystemRoot\system32\DRIVERS\ipnat.sys
\SystemRoot\system32\DRIVERS\wanarp.sys
\SystemRoot\System32\drivers\ws2ifsl.sys
\SystemRoot\System32\drivers\afd.sys
\SystemRoot\system32\DRIVERS\hidusb.sys
\SystemRoot\system32\DRIVERS\HIDCLASS.SYS
\SystemRoot\system32\DRIVERS\HIDPARSE.SYS
\SystemRoot\system32\DRIVERS\netbios.sys
\??\C:\WINDOWS\system32\drivers\sp_rsdrv2.sys
\SystemRoot\System32\Drivers\SCDEmu.SYS
\SystemRoot\system32\DRIVERS\rdbss.sys
\SystemRoot\system32\DRIVERS\psinknc.sys
\SystemRoot\system32\DRIVERS\NNSTlsc.sys
\SystemRoot\system32\DRIVERS\NNSStrm.sys
\SystemRoot\system32\DRIVERS\NNSSmtp.sys
\SystemRoot\system32\DRIVERS\NNSPrv.sys
\SystemRoot\system32\DRIVERS\NNSProt.sys
\SystemRoot\system32\DRIVERS\NNSPop3.sys
\SystemRoot\system32\DRIVERS\NNSPihs.sys
\SystemRoot\system32\DRIVERS\NNSPicc.sys
\SystemRoot\system32\DRIVERS\NNSIds.sys
\SystemRoot\system32\DRIVERS\NNSHttps.sys
\SystemRoot\system32\DRIVERS\NNSHttp.sys
\SystemRoot\system32\DRIVERS\NNSAlpc.sys
\SystemRoot\system32\DRIVERS\mrxsmb.sys
\SystemRoot\system32\DRIVERS\idmtdi.sys
\SystemRoot\System32\Drivers\Fips.SYS
\SystemRoot\System32\Drivers\ASPI32.SYS
\SystemRoot\system32\drivers\AsIO.sys
\SystemRoot\system32\DRIVERS\USBSTOR.SYS
\SystemRoot\system32\DRIVERS\mouhid.sys
\SystemRoot\System32\Drivers\Udfs.SYS
\SystemRoot\System32\Drivers\Cdfs.SYS
\SystemRoot\System32\Drivers\dump_diskdump.sys
\SystemRoot\System32\Drivers\dump_nvgts.sys
\SystemRoot\System32\win32k.sys
\SystemRoot\System32\drivers\Dxapi.sys
\SystemRoot\System32\watchdog.sys
\SystemRoot\System32\drivers\dxg.sys
\SystemRoot\System32\drivers\dxgthk.sys
\SystemRoot\System32\nv4_disp.dll
\SystemRoot\System32\ATMFD.DLL
\SystemRoot\system32\DRIVERS\PSINAflt.sys
\SystemRoot\system32\DRIVERS\PSINProt.sys
\SystemRoot\system32\DRIVERS\PSINFile.sys
\SystemRoot\system32\DRIVERS\PSINProc.sys
\SystemRoot\system32\DRIVERS\ndisuio.sys
\SystemRoot\System32\Drivers\Fastfat.SYS
\SystemRoot\system32\DRIVERS\mrxdav.sys
\SystemRoot\System32\Drivers\ParVdm.SYS
\SystemRoot\system32\DRIVERS\srv.sys
\SystemRoot\system32\drivers\wdmaud.sys
\SystemRoot\system32\drivers\sysaudio.sys
\SystemRoot\System32\Drivers\HTTP.sys
\??\C:\ComboFix\catchme.sys
\??\C:\WINDOWS\system32\Drivers\PROCEXP113.SYS
\SystemRoot\system32\drivers\kmixer.sys
\??\C:\WINDOWS\system32\drivers\mbamchameleon.sys
\??\C:\WINDOWS\system32\drivers\mbamswissarmy.sys
\WINDOWS\system32\ntdll.dll
----------- End -----------
<<<1>>>
Upper Device Name: \Device\Harddisk5\DR8
Upper Device Object: 0xffffffff88745ab8
Upper Device Driver Name: \Driver\Disk\
Lower Device Name: \Device\00000083\
Lower Device Object: 0xffffffff8883a030
Lower Device Driver Name: \Driver\usbstor\
Driver name found: usbstor
Initialization returned 0x0
Load Function returned 0x0
<<<1>>>
Upper Device Name: \Device\Harddisk4\DR7
Upper Device Object: 0xffffffff887368a0
Upper Device Driver Name: \Driver\Disk\
Lower Device Name: \Device\00000082\
Lower Device Object: 0xffffffff8877bb60
Lower Device Driver Name: \Driver\usbstor\
Driver name found: usbstor
<<<1>>>
Upper Device Name: \Device\Harddisk3\DR6
Upper Device Object: 0xffffffff88736030
Upper Device Driver Name: \Driver\Disk\
Lower Device Name: \Device\00000081\
Lower Device Object: 0xffffffff88754768
Lower Device Driver Name: \Driver\usbstor\
Driver name found: usbstor
<<<1>>>
Upper Device Name: \Device\Harddisk2\DR5
Upper Device Object: 0xffffffff88744030
Upper Device Driver Name: \Driver\Disk\
Lower Device Name: \Device\00000080\
Lower Device Object: 0xffffffff8874d9a0
Lower Device Driver Name: \Driver\usbstor\
Driver name found: usbstor
<<<1>>>
Upper Device Name: \Device\Harddisk1\DR1
Upper Device Object: 0xffffffff89c7e030
Upper Device Driver Name: \Driver\Disk\
Lower Device Name: \Device\Scsi\nvgts1Port3Path0Target0Lun0\
Lower Device Object: 0xffffffff89c91a38
Lower Device Driver Name: \Driver\nvgts\
Driver name found: nvgts
Initialization returned 0x0
Port sub-driver loaded: \??\C:\WINDOWS\system32\drivers\scsiport.sys (0x0)
Load Function returned 0x0
<<<1>>>
Upper Device Name: \Device\Harddisk0\DR0
Upper Device Object: 0xffffffff89c90030
Upper Device Driver Name: \Driver\Disk\
Lower Device Name: \Device\Scsi\viamraid1Port2Path0Target2Lun0\
Lower Device Object: 0xffffffff89c7d030
Lower Device Driver Name: \Driver\viamraid\
Driver name found: viamraid
Initialization returned 0x0
Port sub-driver loaded: \??\C:\WINDOWS\system32\drivers\scsiport.sys (0x0)
Load Function returned 0x0
Downloaded database version: v2013.04.28.04
Downloaded database version: v2013.04.25.01
Initializing...
Done!
<<<2>>>
Device number: 1, partition: 1
Physical Sector Size: 512
Drive: 1, DevicePointer: 0xffffffff89c7e030, DeviceName: \Device\Harddisk1\DR1\, DriverName: \Driver\Disk\
--------- Disk Stack ------
DevicePointer: 0xffffffff89c4e238, DeviceName: Unknown, DriverName: \Driver\PartMgr\
DevicePointer: 0xffffffff89c7e030, DeviceName: \Device\Harddisk1\DR1\, DriverName: \Driver\Disk\
DevicePointer: 0xffffffff89cf53d0, DeviceName: \Device\00000074\, DriverName: \Driver\ACPI\
DevicePointer: 0xffffffff89c91a38, DeviceName: \Device\Scsi\nvgts1Port3Path0Target0Lun0\, DriverName: \Driver\nvgts\
------------ End ----------
Alternate DeviceName: \Device\Harddisk1\DR1\, DriverName: \Driver\Disk\
Upper DeviceData: 0xffffffffe427e438, 0xffffffff89c7e030, 0xffffffff87de1040
Lower DeviceData: 0xffffffffe4204350, 0xffffffff89c91a38, 0xffffffff87c983f0
<<<3>>>
Volume: C:
File system type: NTFS
SectorSize = 512, ClusterSize = 4096, MFTRecordSize = 1024, MFTIndexSize = 4096 bytes
Scanning directory: C:\WINDOWS\system32\drivers...
<<<2>>>
Device number: 1, partition: 1
<<<3>>>
Volume: C:
File system type: NTFS
SectorSize = 512, ClusterSize = 4096, MFTRecordSize = 1024, MFTIndexSize = 4096 bytes
Done!
Physical Sector Size: 512
Drive: 0, DevicePointer: 0xffffffff89c90030, DeviceName: \Device\Harddisk0\DR0\, DriverName: \Driver\Disk\
--------- Disk Stack ------
DevicePointer: 0xffffffff89c8d6b8, DeviceName: Unknown, DriverName: \Driver\PartMgr\
DevicePointer: 0xffffffff89c90030, DeviceName: \Device\Harddisk0\DR0\, DriverName: \Driver\Disk\
DevicePointer: 0xffffffff89c7d030, DeviceName: \Device\Scsi\viamraid1Port2Path0Target2Lun0\, DriverName: \Driver\viamraid\
------------ End ----------
Alternate DeviceName: \Device\Harddisk0\DR0\, DriverName: \Driver\Disk\
Upper DeviceData: 0xffffffffe42c1608, 0xffffffff89c90030, 0xffffffff87c9cab8
Lower DeviceData: 0xffffffffe45fef78, 0xffffffff89c7d030, 0xffffffff87ccd9d8
Drive 0
Scanning MBR on drive 0...
Inspecting partition table:
MBR Signature: 55AA
Disk Signature: 5025AB65

Partition information:

Partition 0 type is Primary (0x7)
Partition is ACTIVE.
Partition starts at LBA: 2048 Numsec = 625137656
Partition file system is NTFS
Partition is not bootable

Partition 1 type is Empty (0x0)
Partition is NOT ACTIVE.
Partition starts at LBA: 0 Numsec = 0

Partition 2 type is Empty (0x0)
Partition is NOT ACTIVE.
Partition starts at LBA: 0 Numsec = 0

Partition 3 type is Empty (0x0)
Partition is NOT ACTIVE.
Partition starts at LBA: 0 Numsec = 0

Disk Size: 320071851520 bytes
Sector size: 512 bytes

Scanning physical sectors of unpartitioned space on drive 0 (1-2047-625120335-625140335)...
Drive 1
Scanning MBR on drive 1...
Inspecting partition table:
MBR Signature: 55AA
Disk Signature: F360F35

Partition information:

Partition 0 type is Primary (0x7)
Partition is ACTIVE.
Partition starts at LBA: 63 Numsec = 163846872
Partition file system is NTFS
Partition is bootable

Partition 1 type is Extended with LBA (0xf)
Partition is NOT ACTIVE.
Partition starts at LBA: 163846935 Numsec = 812905065

Partition 2 type is Empty (0x0)
Partition is NOT ACTIVE.
Partition starts at LBA: 0 Numsec = 0

Partition 3 type is Empty (0x0)
Partition is NOT ACTIVE.
Partition starts at LBA: 0 Numsec = 0

Disk Size: 500107862016 bytes
Sector size: 512 bytes

Physical Sector Size: 512
Drive: 2, DevicePointer: 0xffffffff88744030, DeviceName: \Device\Harddisk2\DR5\, DriverName: \Driver\Disk\
--------- Disk Stack ------
DevicePointer: 0xffffffff88737c48, DeviceName: Unknown, DriverName: \Driver\PartMgr\
DevicePointer: 0xffffffff88744030, DeviceName: \Device\Harddisk2\DR5\, DriverName: \Driver\Disk\
DevicePointer: 0xffffffff8874d9a0, DeviceName: \Device\00000080\, DriverName: \Driver\usbstor\
------------ End ----------
Alternate DeviceName: \Device\Harddisk2\DR5\, DriverName: \Driver\Disk\
Upper DeviceData: 0xffffffffe46a81d0, 0xffffffff88744030, 0xffffffff87c5a710
Lower DeviceData: 0xffffffffe3eff248, 0xffffffff8874d9a0, 0xffffffff87c8bb98
Drive 2
Scanning MBR on drive 2...
Inspecting partition table:
MBR Signature: 55AA
Disk Signature: 44FDFE06

Partition information:

Partition 0 type is Primary (0x7)
Partition is ACTIVE.
Partition starts at LBA: 32 Numsec = 1250274658
Partition file system is NTFS
Partition is not bootable

Partition 1 type is Empty (0x0)
Partition is NOT ACTIVE.
Partition starts at LBA: 0 Numsec = 0

Partition 2 type is Empty (0x0)
Partition is NOT ACTIVE.
Partition starts at LBA: 0 Numsec = 0

Partition 3 type is Empty (0x0)
Partition is NOT ACTIVE.
Partition starts at LBA: 0 Numsec = 0

Disk Size: 640135028736 bytes
Sector size: 512 bytes

Physical Sector Size: 512
Drive: 3, DevicePointer: 0xffffffff88736030, DeviceName: \Device\Harddisk3\DR6\, DriverName: \Driver\Disk\
--------- Disk Stack ------
DevicePointer: 0xffffffff88736e08, DeviceName: Unknown, DriverName: \Driver\PartMgr\
DevicePointer: 0xffffffff88736030, DeviceName: \Device\Harddisk3\DR6\, DriverName: \Driver\Disk\
DevicePointer: 0xffffffff88754768, DeviceName: \Device\00000081\, DriverName: \Driver\usbstor\
------------ End ----------
Alternate DeviceName: \Device\Harddisk3\DR6\, DriverName: \Driver\Disk\
Upper DeviceData: 0xffffffffe3e77b88, 0xffffffff88736030, 0xffffffff87c8e7c8
Lower DeviceData: 0xffffffffe3d49d50, 0xffffffff88754768, 0xffffffff87c51318
Drive 3
Scanning MBR on drive 3...
Inspecting partition table:
MBR Signature: 55AA
Disk Signature: 30E230E1

Partition information:

Partition 0 type is Primary (0x7)
Partition is NOT ACTIVE.
Partition starts at LBA: 2048 Numsec = 625137664

Partition 1 type is Empty (0x0)
Partition is NOT ACTIVE.
Partition starts at LBA: 0 Numsec = 0

Partition 2 type is Empty (0x0)
Partition is NOT ACTIVE.
Partition starts at LBA: 0 Numsec = 0

Partition 3 type is Empty (0x0)
Partition is NOT ACTIVE.
Partition starts at LBA: 0 Numsec = 0

Disk Size: 320071851520 bytes
Sector size: 512 bytes

Physical Sector Size: 512
Drive: 4, DevicePointer: 0xffffffff887368a0, DeviceName: \Device\Harddisk4\DR7\, DriverName: \Driver\Disk\
--------- Disk Stack ------
DevicePointer: 0xffffffff88736678, DeviceName: Unknown, DriverName: \Driver\PartMgr\
DevicePointer: 0xffffffff887368a0, DeviceName: \Device\Harddisk4\DR7\, DriverName: \Driver\Disk\
DevicePointer: 0xffffffff8877bb60, DeviceName: \Device\00000082\, DriverName: \Driver\usbstor\
------------ End ----------
Alternate DeviceName: \Device\Harddisk4\DR7\, DriverName: \Driver\Disk\
Upper DeviceData: 0xffffffffe3802868, 0xffffffff887368a0, 0xffffffff87c66ab8
Lower DeviceData: 0xffffffffe2724d80, 0xffffffff8877bb60, 0xffffffff87ca5b50
Drive 4
Scanning MBR on drive 4...
Inspecting partition table:
MBR Signature: 55AA
Disk Signature: 94E494E4

Partition information:

Partition 0 type is Primary (0x7)
Partition is ACTIVE.
Partition starts at LBA: 63 Numsec = 117210177
Partition file system is NTFS
Partition is not bootable

Partition 1 type is Empty (0x0)
Partition is NOT ACTIVE.
Partition starts at LBA: 0 Numsec = 0

Partition 2 type is Empty (0x0)
Partition is NOT ACTIVE.
Partition starts at LBA: 0 Numsec = 0

Partition 3 type is Empty (0x0)
Partition is NOT ACTIVE.
Partition starts at LBA: 0 Numsec = 0

Disk Size: 60011642880 bytes
Sector size: 512 bytes

Physical Sector Size: 512
Drive: 5, DevicePointer: 0xffffffff88745ab8, DeviceName: \Device\Harddisk5\DR8\, DriverName: \Driver\Disk\
--------- Disk Stack ------
DevicePointer: 0xffffffff88737a30, DeviceName: Unknown, DriverName: \Driver\PartMgr\
DevicePointer: 0xffffffff88745ab8, DeviceName: \Device\Harddisk5\DR8\, DriverName: \Driver\Disk\
DevicePointer: 0xffffffff8883a030, DeviceName: \Device\00000083\, DriverName: \Driver\usbstor\
------------ End ----------
Alternate DeviceName: \Device\Harddisk5\DR8\, DriverName: \Driver\Disk\
Upper DeviceData: 0xffffffffe10cdd80, 0xffffffff88745ab8, 0xffffffff87df66f8
Lower DeviceData: 0xffffffffe27a3938, 0xffffffff8883a030, 0xffffffff87ca9f18
Drive 5
Scanning MBR on drive 5...
Inspecting partition table:
MBR Signature: 55AA
Disk Signature: 56701CE0

Partition information:

Partition 0 type is Other (0xc)
Partition is NOT ACTIVE.
Partition starts at LBA: 8192 Numsec = 30670848

Partition 1 type is Empty (0x0)
Partition is NOT ACTIVE.
Partition starts at LBA: 0 Numsec = 0

Partition 2 type is Empty (0x0)
Partition is NOT ACTIVE.
Partition starts at LBA: 0 Numsec = 0

Partition 3 type is Empty (0x0)
Partition is NOT ACTIVE.
Partition starts at LBA: 0 Numsec = 0

Disk Size: 15707668480 bytes
Sector size: 512 bytes

Done!
Performing system, memory and registry scan...
Read File: File "c:\WINDOWS\$NtUninstallKB982316$\SavedACLs" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$NtUninstallKB982665$\update.ver" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$NtUninstallKB982665$\updatebr.inf" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$NtUninstallKB2393802$\updatebr.inf" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$NtUninstallKB2423089$\update.ver" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$NtUninstallKB2423089$\updatebr.inf" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$NtUninstallKB975467$\update.ver" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$NtUninstallKB2509553$\updatebr.inf" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$NtUninstallKB2566454$\update.ver" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$NtUninstallKB2566454$\updatebr.inf" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$NtUninstallKB2584146$\update.ver" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$NtUninstallKB2584146$\updatebr.inf" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$NtUninstallKB2618451$\update.ver" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$NtUninstallKB2618451$\updatebr.inf" is compressed (flags = 1)
Read File: File "c:\WINDOWS\$NtUninstallKB956802$\update.ver" is compressed (flags = 1)
Infected: c:\WINDOWS\$ntuninstallkb65281$\317189606 --> [Backdoor.0Access]
Done!
Scan finished
Creating System Restore point...
Scheduling clean up...
<<<2>>>
Device number: 1, partition: 1
<<<3>>>
Volume: C:
File system type: NTFS
SectorSize = 512, ClusterSize = 4096, MFTRecordSize = 1024, MFTIndexSize = 4096 bytes
Executing an action fixdamage.exe...
Success!
Removal successful. No system shutdown is required.
=======================================


---------------------------------------
Malwarebytes Anti-Rootkit BETA 1.05.0.1001

(c) Malwarebytes Corporation 2011-2012

OS version: 5.1.2600 Windows XP Service Pack 3 x86

Account is Administrative

Internet Explorer version: 8.0.6001.18702

File system is: NTFS
Disk drives: C:\ DRIVE_FIXED, D:\ DRIVE_FIXED, E:\ DRIVE_FIXED, F:\ DRIVE_FIXED, I:\ DRIVE_FIXED, J:\ DRIVE_FIXED
CPU speed: 2.109000 GHz
Memory total: 2012524544, free: 1317851136

------------ Kernel report ------------
04/28/2013 22:51:11
------------ Loaded modules -----------
\WINDOWS\system32\ntkrnlpa.exe
\WINDOWS\system32\hal.dll
\WINDOWS\system32\KDCOM.DLL
\WINDOWS\system32\BOOTVID.dll
ACPI.sys
\WINDOWS\system32\DRIVERS\WMILIB.SYS
pci.sys
isapnp.sys
pciide.sys
\WINDOWS\system32\DRIVERS\PCIIDEX.SYS
MountMgr.sys
ftdisk.sys
dmload.sys
dmio.sys
PartMgr.sys
VolSnap.sys
atapi.sys
nvata.sys
viamraid.sys
\WINDOWS\system32\DRIVERS\SCSIPORT.SYS
nvgts.sys
disk.sys
\WINDOWS\system32\DRIVERS\CLASSPNP.SYS
fltMgr.sys
sr.sys
KSecDD.sys
Ntfs.sys
NDIS.sys
Combo-Fix.sys
Mup.sys
BTHidMgr.sys
\SystemRoot\system32\DRIVERS\processr.sys
\SystemRoot\system32\DRIVERS\parport.sys
\SystemRoot\system32\DRIVERS\ASACPI.sys
\SystemRoot\system32\DRIVERS\i8042prt.sys
\SystemRoot\system32\DRIVERS\kbdclass.sys
\SystemRoot\system32\DRIVERS\serial.sys
\SystemRoot\system32\DRIVERS\serenum.sys
\SystemRoot\system32\DRIVERS\usbohci.sys
\SystemRoot\system32\DRIVERS\USBPORT.SYS
\SystemRoot\system32\DRIVERS\usbehci.sys
\SystemRoot\system32\DRIVERS\Cap713x.sys
\SystemRoot\system32\DRIVERS\STREAM.SYS
\SystemRoot\system32\DRIVERS\ks.sys
\SystemRoot\system32\DRIVERS\imapi.sys
\SystemRoot\System32\Drivers\cdrbsdrv.SYS
\SystemRoot\system32\DRIVERS\cdrom.sys
\SystemRoot\system32\DRIVERS\redbook.sys
\SystemRoot\system32\DRIVERS\HDAudBus.sys
\SystemRoot\system32\DRIVERS\nvnetbus.sys
\SystemRoot\system32\DRIVERS\nv4_mini.sys
\SystemRoot\system32\DRIVERS\VIDEOPRT.SYS
\SystemRoot\system32\DRIVERS\audstub.sys
\SystemRoot\system32\DRIVERS\rasl2tp.sys
\SystemRoot\system32\DRIVERS\ndistapi.sys
\SystemRoot\system32\DRIVERS\ndiswan.sys
\SystemRoot\system32\DRIVERS\raspppoe.sys
\SystemRoot\system32\DRIVERS\raspptp.sys
\SystemRoot\system32\DRIVERS\TDI.SYS
\SystemRoot\system32\DRIVERS\psched.sys
\SystemRoot\system32\DRIVERS\msgpc.sys
\SystemRoot\system32\DRIVERS\ptilink.sys
\SystemRoot\system32\DRIVERS\raspti.sys
\SystemRoot\system32\DRIVERS\rdpdr.sys
\SystemRoot\system32\DRIVERS\termdd.sys
\SystemRoot\system32\DRIVERS\mouclass.sys
\SystemRoot\system32\DRIVERS\swenum.sys
\SystemRoot\system32\DRIVERS\update.sys
\SystemRoot\system32\DRIVERS\mssmbios.sys
\SystemRoot\System32\Drivers\NDProxy.SYS
\SystemRoot\system32\DRIVERS\usbhub.sys
\SystemRoot\system32\DRIVERS\USBD.SYS
\SystemRoot\system32\DRIVERS\NVENETFD.sys
\SystemRoot\system32\DRIVERS\NVNRM.SYS
\SystemRoot\system32\drivers\RtkHDAud.sys
\SystemRoot\system32\drivers\portcls.sys
\SystemRoot\system32\drivers\drmk.sys
\SystemRoot\System32\Drivers\Fs_Rec.SYS
\SystemRoot\System32\Drivers\Null.SYS
\SystemRoot\System32\Drivers\Beep.SYS
\SystemRoot\System32\drivers\vga.sys
\SystemRoot\System32\Drivers\mnmdd.SYS
\SystemRoot\System32\DRIVERS\RDPCDD.sys
\SystemRoot\System32\Drivers\Msfs.SYS
\SystemRoot\System32\Drivers\Npfs.SYS
\SystemRoot\system32\DRIVERS\rasacd.sys
\SystemRoot\system32\DRIVERS\ipsec.sys
\SystemRoot\system32\DRIVERS\tcpip.sys
\SystemRoot\system32\DRIVERS\netbt.sys
\SystemRoot\system32\DRIVERS\ipnat.sys
\SystemRoot\system32\DRIVERS\wanarp.sys
\SystemRoot\System32\drivers\ws2ifsl.sys
\SystemRoot\System32\drivers\afd.sys
\SystemRoot\system32\DRIVERS\hidusb.sys
\SystemRoot\system32\DRIVERS\HIDCLASS.SYS
\SystemRoot\system32\DRIVERS\HIDPARSE.SYS
\SystemRoot\system32\DRIVERS\netbios.sys
\??\C:\WINDOWS\system32\drivers\sp_rsdrv2.sys
\SystemRoot\System32\Drivers\SCDEmu.SYS
\SystemRoot\system32\DRIVERS\rdbss.sys
\SystemRoot\system32\DRIVERS\psinknc.sys
\SystemRoot\system32\DRIVERS\NNSTlsc.sys
\SystemRoot\system32\DRIVERS\NNSStrm.sys
\SystemRoot\system32\DRIVERS\NNSSmtp.sys
\SystemRoot\system32\DRIVERS\NNSPrv.sys
\SystemRoot\system32\DRIVERS\NNSProt.sys
\SystemRoot\system32\DRIVERS\NNSPop3.sys
\SystemRoot\system32\DRIVERS\NNSPihs.sys
\SystemRoot\system32\DRIVERS\NNSPicc.sys
\SystemRoot\system32\DRIVERS\NNSIds.sys
\SystemRoot\system32\DRIVERS\NNSHttps.sys
\SystemRoot\system32\DRIVERS\NNSHttp.sys
\SystemRoot\system32\DRIVERS\NNSAlpc.sys
\SystemRoot\system32\DRIVERS\mrxsmb.sys
\SystemRoot\system32\DRIVERS\idmtdi.sys
\SystemRoot\System32\Drivers\Fips.SYS
\SystemRoot\System32\Drivers\ASPI32.SYS
\SystemRoot\system32\drivers\AsIO.sys
\SystemRoot\system32\DRIVERS\USBSTOR.SYS
\SystemRoot\system32\DRIVERS\mouhid.sys
\SystemRoot\System32\Drivers\Udfs.SYS
\SystemRoot\System32\Drivers\Cdfs.SYS
\SystemRoot\System32\Drivers\dump_diskdump.sys
\SystemRoot\System32\Drivers\dump_nvgts.sys
\SystemRoot\System32\win32k.sys
\SystemRoot\System32\drivers\Dxapi.sys
\SystemRoot\System32\watchdog.sys
\SystemRoot\System32\drivers\dxg.sys
\SystemRoot\System32\drivers\dxgthk.sys
\SystemRoot\System32\nv4_disp.dll
\SystemRoot\System32\ATMFD.DLL
\SystemRoot\system32\DRIVERS\PSINAflt.sys
\SystemRoot\system32\DRIVERS\PSINProt.sys
\SystemRoot\system32\DRIVERS\PSINFile.sys
\SystemRoot\system32\DRIVERS\PSINProc.sys
\SystemRoot\system32\DRIVERS\ndisuio.sys
\SystemRoot\System32\Drivers\Fastfat.SYS
\SystemRoot\system32\DRIVERS\mrxdav.sys
\SystemRoot\System32\Drivers\ParVdm.SYS
\SystemRoot\system32\DRIVERS\srv.sys
\SystemRoot\system32\drivers\wdmaud.sys
\SystemRoot\system32\drivers\sysaudio.sys
\SystemRoot\System32\Drivers\HTTP.sys
\??\C:\ComboFix\catchme.sys
\??\C:\WINDOWS\system32\Drivers\PROCEXP113.SYS
\??\C:\WINDOWS\system32\drivers\mbamchameleon.sys
\SystemRoot\system32\drivers\kmixer.sys
\??\C:\WINDOWS\system32\drivers\mbamswissarmy.sys
\WINDOWS\system32\ntdll.dll
----------- End -----------
<<<1>>>
Upper Device Name: \Device\Harddisk5\DR8
Upper Device Object: 0xffffffff88745ab8
Upper Device Driver Name: \Driver\Disk\
Lower Device Name: \Device\00000083\
Lower Device Object: 0xffffffff8883a030
Lower Device Driver Name: \Driver\usbstor\
Device already Exists: 0xffffffff87ca9f18
<<<1>>>
Upper Device Name: \Device\Harddisk4\DR7
Upper Device Object: 0xffffffff887368a0
Upper Device Driver Name: \Driver\Disk\
Lower Device Name: \Device\00000082\
Lower Device Object: 0xffffffff8877bb60
Lower Device Driver Name: \Driver\usbstor\
Device already Exists: 0xffffffff87ca5b50
<<<1>>>
Upper Device Name: \Device\Harddisk3\DR6
Upper Device Object: 0xffffffff88736030
Upper Device Driver Name: \Driver\Disk\
Lower Device Name: \Device\00000081\
Lower Device Object: 0xffffffff88754768
Lower Device Driver Name: \Driver\usbstor\
Device already Exists: 0xffffffff87c51318
<<<1>>>
Upper Device Name: \Device\Harddisk2\DR5
Upper Device Object: 0xffffffff88744030
Upper Device Driver Name: \Driver\Disk\
Lower Device Name: \Device\00000080\
Lower Device Object: 0xffffffff8874d9a0
Lower Device Driver Name: \Driver\usbstor\
Device already Exists: 0xffffffff87c8bb98
<<<1>>>
Upper Device Name: \Device\Harddisk1\DR1
Upper Device Object: 0xffffffff89c7e030
Upper Device Driver Name: \Driver\Disk\
Lower Device Name: \Device\Scsi\nvgts1Port3Path0Target0Lun0\
Lower Device Object: 0xffffffff89c91a38
Lower Device Driver Name: \Driver\nvgts\
Device already Exists: 0xffffffff87c983f0
<<<1>>>
Upper Device Name: \Device\Harddisk0\DR0
Upper Device Object: 0xffffffff89c90030
Upper Device Driver Name: \Driver\Disk\
Lower Device Name: \Device\Scsi\viamraid1Port2Path0Target2Lun0\
Lower Device Object: 0xffffffff89c7d030
Lower Device Driver Name: \Driver\viamraid\
Device already Exists: 0xffffffff87ccd9d8
=======================================

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119526
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prestala pracovať Panda Cloud Antivirus

#11 Příspěvek od Rudy »

Něšco MBAR vyčistil. Nastala nyní nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Uživatelský avatar
kekesko
Návštěvník
Návštěvník
Příspěvky: 149
Registrován: 16 led 2008 07:49

Re: Prestala pracovať Panda Cloud Antivirus

#12 Příspěvek od kekesko »

Vôbec nie práve naopak po čistení SuperAntiSpyware som dal reštart a zmizol mi naištalovaný jazyk slovenčina.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119526
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prestala pracovať Panda Cloud Antivirus

#13 Příspěvek od Rudy »

Slovenštinu musíte přeinstalovat. Dosud jsem nezkoušel MBAR na WinXP ENG se slovenským jazykovým balíčkem. I pro mne nová zkušenost. Na české verzi se toto nestává. Zkuste ještě tuto utilitu: http://www.stahuj.centrum.cz/utility_a_ ... dsskiller/ . Stáhněte, spusťte a nechte pracovat. Po skončení akce dejte log.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Uživatelský avatar
kekesko
Návštěvník
Návštěvník
Příspěvky: 149
Registrován: 16 led 2008 07:49

Re: Prestala pracovať Panda Cloud Antivirus

#14 Příspěvek od kekesko »

Nj keby preinštalovať išla, vypisuje toto http://imgupload.sk/viewer.php?file=rdb ... xa9e6b.jpg a neviem kde by som ju našiel. V Pridať a odobrať programy nie je. Tu je log:

19:32:56.0890 1180 TDSS rootkit removing tool 2.7.11.0 Feb 9 2012 10:12:57
19:32:57.0453 1180 ============================================================
19:32:57.0453 1180 Current date / time: 2013/04/29 19:32:57.0453
19:32:57.0453 1180 SystemInfo:
19:32:57.0453 1180
19:32:57.0453 1180 OS Version: 5.1.2600 ServicePack: 3.0
19:32:57.0453 1180 Product type: Workstation
19:32:57.0453 1180 ComputerName: BOBO-7608D0869C
19:32:57.0453 1180 UserName: BOBO
19:32:57.0453 1180 Windows directory: C:\WINDOWS
19:32:57.0453 1180 System windows directory: C:\WINDOWS
19:32:57.0453 1180 Processor architecture: Intel x86
19:32:57.0453 1180 Number of processors: 2
19:32:57.0453 1180 Page size: 0x1000
19:32:57.0453 1180 Boot type: Normal boot
19:32:57.0453 1180 ============================================================
19:32:59.0593 1180 Drive \Device\Harddisk0\DR0 - Size: 0x4A85C4DE00 (298.09 Gb), SectorSize: 0x200, Cylinders: 0x9801, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000058
19:32:59.0718 1180 Drive \Device\Harddisk1\DR1 - Size: 0x7470C06000 (465.76 Gb), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000058
19:32:59.0718 1180 Drive \Device\Harddisk2\DR5 - Size: 0x950B056000 (596.17 Gb), SectorSize: 0x200, Cylinders: 0x13001, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W'
19:33:00.0296 1180 Drive \Device\Harddisk3\DR6 - Size: 0x4A85C4DE00 (298.09 Gb), SectorSize: 0x200, Cylinders: 0x9801, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W'
19:33:00.0312 1180 Drive \Device\Harddisk4\DR7 - Size: 0xDF8F90000 (55.89 Gb), SectorSize: 0x200, Cylinders: 0x1C80, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W'
19:33:00.0578 1180 Drive \Device\Harddisk5\DR8 - Size: 0x3A8400000 (14.63 Gb), SectorSize: 0x200, Cylinders: 0x775, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W'
19:33:00.0578 1180 \Device\Harddisk0\DR0:
19:33:00.0578 1180 MBR used
19:33:00.0578 1180 \Device\Harddisk0\DR0\Partition0: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x2542D7F8
19:33:00.0578 1180 \Device\Harddisk1\DR1:
19:33:00.0578 1180 MBR used
19:33:00.0578 1180 \Device\Harddisk1\DR1\Partition0: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x9C41AD8
19:33:00.0593 1180 \Device\Harddisk1\DR1\Partition1: MBR, Type 0x7, StartLBA 0x9C41B56, BlocksNum 0x3073F22A
19:33:00.0593 1180 \Device\Harddisk2\DR5:
19:33:00.0593 1180 MBR used
19:33:00.0593 1180 \Device\Harddisk2\DR5\Partition0: MBR, Type 0x7, StartLBA 0x20, BlocksNum 0x4A85AD62
19:33:00.0593 1180 \Device\Harddisk3\DR6:
19:33:00.0593 1180 MBR used
19:33:00.0593 1180 \Device\Harddisk3\DR6\Partition0: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x2542D800
19:33:00.0593 1180 \Device\Harddisk4\DR7:
19:33:00.0593 1180 MBR used
19:33:00.0593 1180 \Device\Harddisk4\DR7\Partition0: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x6FC7C41
19:33:00.0593 1180 \Device\Harddisk5\DR8:
19:33:00.0593 1180 MBR used
19:33:00.0593 1180 \Device\Harddisk5\DR8\Partition0: MBR, Type 0xC, StartLBA 0x2000, BlocksNum 0x1D40000
19:33:01.0203 1180 Initialize success
19:33:01.0203 1180 ============================================================
19:33:05.0187 2488 ============================================================
19:33:05.0187 2488 Scan started
19:33:05.0187 2488 Mode: Manual;
19:33:05.0187 2488 ============================================================
19:33:05.0593 2488 Abiosdsk - ok
19:33:05.0593 2488 abp480n5 - ok
19:33:05.0640 2488 ACPI (8fd99680a539792a30e97944fdaecf17) C:\WINDOWS\system32\DRIVERS\ACPI.sys
19:33:05.0640 2488 ACPI - ok
19:33:05.0671 2488 ACPIEC (9859c0f6936e723e4892d7141b1327d5) C:\WINDOWS\system32\drivers\ACPIEC.sys
19:33:05.0671 2488 ACPIEC - ok
19:33:05.0687 2488 adpu160m - ok
19:33:05.0734 2488 aec (8bed39e3c35d6a489438b8141717a557) C:\WINDOWS\system32\drivers\aec.sys
19:33:05.0734 2488 aec - ok
19:33:05.0765 2488 AFD (1e44bc1e83d8fd2305f8d452db109cf9) C:\WINDOWS\System32\drivers\afd.sys
19:33:05.0765 2488 AFD - ok
19:33:05.0781 2488 Aha154x - ok
19:33:05.0781 2488 aic78u2 - ok
19:33:05.0796 2488 aic78xx - ok
19:33:05.0812 2488 AliIde - ok
19:33:05.0828 2488 amsint - ok
19:33:05.0828 2488 asc - ok
19:33:05.0843 2488 asc3350p - ok
19:33:05.0859 2488 asc3550 - ok
19:33:05.0875 2488 AsIO (663f2fb92608073824ee3106886120f3) C:\WINDOWS\system32\drivers\AsIO.sys
19:33:05.0875 2488 AsIO - ok
19:33:05.0906 2488 ASPI32 (5b01af89d16d562825c4db4530f20cbb) C:\WINDOWS\system32\drivers\ASPI32.sys
19:33:05.0906 2488 ASPI32 - ok
19:33:05.0937 2488 AsyncMac (b153affac761e7f5fcfa822b9c4e97bc) C:\WINDOWS\system32\DRIVERS\asyncmac.sys
19:33:05.0937 2488 AsyncMac - ok
19:33:05.0953 2488 atapi (9f3a2f5aa6875c72bf062c712cfa2674) C:\WINDOWS\system32\DRIVERS\atapi.sys
19:33:05.0953 2488 atapi - ok
19:33:05.0968 2488 Atdisk - ok
19:33:05.0968 2488 Atmarpc (9916c1225104ba14794209cfa8012159) C:\WINDOWS\system32\DRIVERS\atmarpc.sys
19:33:05.0968 2488 Atmarpc - ok
19:33:06.0015 2488 audstub (d9f724aa26c010a217c97606b160ed68) C:\WINDOWS\system32\DRIVERS\audstub.sys
19:33:06.0015 2488 audstub - ok
19:33:06.0046 2488 Beep (da1f27d85e0d1525f6621372e7b685e9) C:\WINDOWS\system32\drivers\Beep.sys
19:33:06.0046 2488 Beep - ok
19:33:06.0093 2488 BlueletAudio (31ff5b87c1dd907613cc613224b8e303) C:\WINDOWS\system32\DRIVERS\blueletaudio.sys
19:33:06.0093 2488 BlueletAudio - ok
19:33:06.0125 2488 BT (9da8abc4885aff4793d4aa420e40bb12) C:\WINDOWS\system32\DRIVERS\btnetdrv.sys
19:33:06.0125 2488 BT - ok
19:33:06.0125 2488 Btcsrusb (bdf2c32c14ef7ab75ddcc3394d6f80d4) C:\WINDOWS\system32\Drivers\btcusb.sys
19:33:06.0140 2488 Btcsrusb - ok
19:33:06.0156 2488 BthEnum (b279426e3c0c344893ed78a613a73bde) C:\WINDOWS\system32\DRIVERS\BthEnum.sys
19:33:06.0156 2488 BthEnum - ok
19:33:06.0187 2488 BTHidEnum (083ad7f6ff500d0a93c0bea2cf298c93) C:\WINDOWS\system32\DRIVERS\vbtenum.sys
19:33:06.0187 2488 BTHidEnum - ok
19:33:06.0218 2488 BTHidMgr (f408264f6ad1dc7e7bdd4837440f115d) C:\WINDOWS\system32\Drivers\BTHidMgr.sys
19:33:06.0218 2488 BTHidMgr - ok
19:33:06.0250 2488 BthPan (80602b8746d3738f5886ce3d67ef06b6) C:\WINDOWS\system32\DRIVERS\bthpan.sys
19:33:06.0250 2488 BthPan - ok
19:33:06.0296 2488 BTHPORT (662bfd909447dd9cc15b1a1c366583b4) C:\WINDOWS\system32\Drivers\BTHport.sys
19:33:06.0296 2488 BTHPORT - ok
19:33:06.0328 2488 BTHUSB (61364cd71ef63b0f038b7e9df00f1efa) C:\WINDOWS\system32\Drivers\BTHUSB.sys
19:33:06.0328 2488 BTHUSB - ok
19:33:06.0375 2488 BTNetFilter (6b05fdc0cfc3753b520d2d4176cc32d0) C:\WINDOWS\system32\drivers\BTNetFilter.sys
19:33:06.0375 2488 BTNetFilter - ok
19:33:06.0390 2488 Cap713x (50d14df39f17418f11d32e287380f5f7) C:\WINDOWS\system32\DRIVERS\Cap713x.sys
19:33:06.0406 2488 Cap713x - ok
19:33:06.0437 2488 cbidf2k (90a673fc8e12a79afbed2576f6a7aaf9) C:\WINDOWS\system32\drivers\cbidf2k.sys
19:33:06.0437 2488 cbidf2k - ok
19:33:06.0453 2488 CCDECODE (0be5aef125be881c4f854c554f2b025c) C:\WINDOWS\system32\DRIVERS\CCDECODE.sys
19:33:06.0453 2488 CCDECODE - ok
19:33:06.0468 2488 cd20xrnt - ok
19:33:06.0500 2488 Cdaudio (c1b486a7658353d33a10cc15211a873b) C:\WINDOWS\system32\drivers\Cdaudio.sys
19:33:06.0500 2488 Cdaudio - ok
19:33:06.0531 2488 Cdfs (c885b02847f5d2fd45a24e219ed93b32) C:\WINDOWS\system32\drivers\Cdfs.sys
19:33:06.0531 2488 Cdfs - ok
19:33:06.0546 2488 cdrbsdrv (e0042bd5bef17a6a3ef1df576bde24d1) C:\WINDOWS\system32\drivers\cdrbsdrv.sys
19:33:06.0546 2488 cdrbsdrv - ok
19:33:06.0593 2488 Cdrom (4b0a100eaf5c49ef3cca8c641431eacc) C:\WINDOWS\system32\DRIVERS\cdrom.sys
19:33:06.0593 2488 Cdrom - ok
19:33:06.0593 2488 Changer - ok
19:33:06.0609 2488 CmdIde - ok
19:33:06.0640 2488 Cpqarray - ok
19:33:06.0640 2488 dac2w2k - ok
19:33:06.0656 2488 dac960nt - ok
19:33:06.0671 2488 Disk (044452051f3e02e7963599fc8f4f3e25) C:\WINDOWS\system32\DRIVERS\disk.sys
19:33:06.0671 2488 Disk - ok
19:33:06.0703 2488 dmboot (d992fe1274bde0f84ad826acae022a41) C:\WINDOWS\system32\drivers\dmboot.sys
19:33:06.0718 2488 dmboot - ok
19:33:06.0734 2488 dmio (7c824cf7bbde77d95c08005717a95f6f) C:\WINDOWS\system32\drivers\dmio.sys
19:33:06.0734 2488 dmio - ok
19:33:06.0765 2488 dmload (e9317282a63ca4d188c0df5e09c6ac5f) C:\WINDOWS\system32\drivers\dmload.sys
19:33:06.0765 2488 dmload - ok
19:33:06.0781 2488 DMusic (8a208dfcf89792a484e76c40e5f50b45) C:\WINDOWS\system32\drivers\DMusic.sys
19:33:06.0781 2488 DMusic - ok
19:33:06.0796 2488 dpti2o - ok
19:33:06.0812 2488 drmkaud (8f5fcff8e8848afac920905fbd9d33c8) C:\WINDOWS\system32\drivers\drmkaud.sys
19:33:06.0812 2488 drmkaud - ok
19:33:06.0859 2488 exFat (3ef58f2eae3aecab45d682152db2f67d) C:\WINDOWS\system32\drivers\exFat.sys
19:33:06.0859 2488 exFat - ok
19:33:06.0890 2488 Fastfat (38d332a6d56af32635675f132548343e) C:\WINDOWS\system32\drivers\Fastfat.sys
19:33:06.0890 2488 Fastfat - ok
19:33:06.0906 2488 Fdc (92cdd60b6730b9f50f6a1a0c1f8cdc81) C:\WINDOWS\system32\DRIVERS\fdc.sys
19:33:06.0921 2488 Fdc - ok
19:33:06.0921 2488 Fips (d45926117eb9fa946a6af572fbe1caa3) C:\WINDOWS\system32\drivers\Fips.sys
19:33:06.0921 2488 Fips - ok
19:33:06.0937 2488 Flpydisk (9d27e7b80bfcdf1cdd9b555862d5e7f0) C:\WINDOWS\system32\DRIVERS\flpydisk.sys
19:33:06.0937 2488 Flpydisk - ok
19:33:06.0953 2488 FltMgr (b2cf4b0786f8212cb92ed2b50c6db6b0) C:\WINDOWS\system32\DRIVERS\fltMgr.sys
19:33:06.0953 2488 FltMgr - ok
19:33:07.0000 2488 Fs_Rec (c865b83411d7347627a4beec22543fb1) C:\WINDOWS\system32\drivers\Fs_Rec.sys
19:33:07.0000 2488 Fs_Rec - ok
19:33:07.0000 2488 Ftdisk (6ac26732762483366c3969c9e4d2259d) C:\WINDOWS\system32\DRIVERS\ftdisk.sys
19:33:07.0000 2488 Ftdisk - ok
19:33:07.0031 2488 genmcmnUSB (c791d0c9178baf98a5886175ffcda1bf) C:\WINDOWS\system32\DRIVERS\gflmouhid.sys
19:33:07.0031 2488 genmcmnUSB - ok
19:33:07.0046 2488 Gpc (0a02c63c8b144bd8c86b103dee7c86a2) C:\WINDOWS\system32\DRIVERS\msgpc.sys
19:33:07.0046 2488 Gpc - ok
19:33:07.0078 2488 HDAudBus (573c7d0a32852b48f3058cfd8026f511) C:\WINDOWS\system32\DRIVERS\HDAudBus.sys
19:33:07.0078 2488 HDAudBus - ok
19:33:07.0125 2488 HidUsb (ccf82c5ec8a7326c3066de870c06daf1) C:\WINDOWS\system32\DRIVERS\hidusb.sys
19:33:07.0125 2488 HidUsb - ok
19:33:07.0140 2488 hpn - ok
19:33:07.0156 2488 HTTP (f6aacf5bce2893e0c1754afeb672e5c9) C:\WINDOWS\system32\Drivers\HTTP.sys
19:33:07.0171 2488 HTTP - ok
19:33:07.0171 2488 i2omgmt - ok
19:33:07.0187 2488 i2omp - ok
19:33:07.0203 2488 i8042prt (4a0b06aa8943c1e332520f7440c0aa30) C:\WINDOWS\system32\DRIVERS\i8042prt.sys
19:33:07.0218 2488 i8042prt - ok
19:33:07.0234 2488 IDMTDI (330a6a0baf4fd945bde14c7b1d88d9b9) C:\WINDOWS\system32\DRIVERS\idmtdi.sys
19:33:07.0234 2488 IDMTDI - ok
19:33:07.0265 2488 Imapi (083a052659f5310dd8b6a6cb05edcf8e) C:\WINDOWS\system32\DRIVERS\imapi.sys
19:33:07.0281 2488 Imapi - ok
19:33:07.0281 2488 ini910u - ok
19:33:07.0406 2488 IntcAzAudAddService (41ef008d7b089ce6f5f2e4a61d5638e6) C:\WINDOWS\system32\drivers\RtkHDAud.sys
19:33:07.0500 2488 IntcAzAudAddService - ok
19:33:07.0515 2488 IntelIde - ok
19:33:07.0531 2488 Ip6Fw (3bb22519a194418d5fec05d800a19ad0) C:\WINDOWS\system32\DRIVERS\Ip6Fw.sys
19:33:07.0531 2488 Ip6Fw - ok
19:33:07.0546 2488 IpFilterDriver (731f22ba402ee4b62748adaf6363c182) C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
19:33:07.0546 2488 IpFilterDriver - ok
19:33:07.0562 2488 IpInIp (b87ab476dcf76e72010632b5550955f5) C:\WINDOWS\system32\DRIVERS\ipinip.sys
19:33:07.0562 2488 IpInIp - ok
19:33:07.0578 2488 IpNat (cc748ea12c6effde940ee98098bf96bb) C:\WINDOWS\system32\DRIVERS\ipnat.sys
19:33:07.0578 2488 IpNat - ok
19:33:07.0578 2488 IPSec (23c74d75e36e7158768dd63d92789a91) C:\WINDOWS\system32\DRIVERS\ipsec.sys
19:33:07.0578 2488 IPSec - ok
19:33:07.0593 2488 IRENUM (c93c9ff7b04d772627a3646d89f7bf89) C:\WINDOWS\system32\DRIVERS\irenum.sys
19:33:07.0593 2488 IRENUM - ok
19:33:07.0625 2488 isapnp (05a299ec56e52649b1cf2fc52d20f2d7) C:\WINDOWS\system32\DRIVERS\isapnp.sys
19:33:07.0625 2488 isapnp - ok
19:33:07.0625 2488 Kbdclass (463c1ec80cd17420a542b7f36a36f128) C:\WINDOWS\system32\DRIVERS\kbdclass.sys
19:33:07.0625 2488 Kbdclass - ok
19:33:07.0656 2488 kmixer (692bcf44383d056aed41b045a323d378) C:\WINDOWS\system32\drivers\kmixer.sys
19:33:07.0656 2488 kmixer - ok
19:33:07.0671 2488 KSecDD (b467646c54cc746128904e1654c750c1) C:\WINDOWS\system32\drivers\KSecDD.sys
19:33:07.0671 2488 KSecDD - ok
19:33:07.0687 2488 lbrtfdc - ok
19:33:07.0718 2488 MBAMProtector (629cabb0421668c9d3d402a3c3d77e14) C:\WINDOWS\system32\drivers\mbam.sys
19:33:07.0718 2488 MBAMProtector - ok
19:33:07.0750 2488 mnmdd (4ae068242760a1fb6e1a44bf4e16afa6) C:\WINDOWS\system32\drivers\mnmdd.sys
19:33:07.0750 2488 mnmdd - ok
19:33:07.0765 2488 Modem (dfcbad3cec1c5f964962ae10e0bcc8e1) C:\WINDOWS\system32\drivers\Modem.sys
19:33:07.0765 2488 Modem - ok
19:33:07.0796 2488 Mouclass (35c9e97194c8cfb8430125f8dbc34d04) C:\WINDOWS\system32\DRIVERS\mouclass.sys
19:33:07.0796 2488 Mouclass - ok
19:33:07.0812 2488 mouhid (b1c303e17fb9d46e87a98e4ba6769685) C:\WINDOWS\system32\DRIVERS\mouhid.sys
19:33:07.0812 2488 mouhid - ok
19:33:07.0812 2488 MountMgr (a80b9a0bad1b73637dbcbba7df72d3fd) C:\WINDOWS\system32\drivers\MountMgr.sys
19:33:07.0812 2488 MountMgr - ok
19:33:07.0828 2488 mraid35x - ok
19:33:07.0859 2488 MRxDAV (e3f17e1ea5256709d4e97ef0da04b3c9) C:\WINDOWS\system32\DRIVERS\mrxdav.sys
19:33:07.0859 2488 MRxDAV - ok
19:33:07.0875 2488 MRxSmb (7d304a5eb4344ebeeab53a2fe3ffb9f0) C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
19:33:07.0890 2488 MRxSmb - ok
19:33:07.0906 2488 Msfs (c941ea2454ba8350021d774daf0f1027) C:\WINDOWS\system32\drivers\Msfs.sys
19:33:07.0906 2488 Msfs - ok
19:33:07.0937 2488 MSKSSRV (d1575e71568f4d9e14ca56b7b0453bf1) C:\WINDOWS\system32\drivers\MSKSSRV.sys
19:33:07.0937 2488 MSKSSRV - ok
19:33:07.0968 2488 MSPCLOCK (325bb26842fc7ccc1fcce2c457317f3e) C:\WINDOWS\system32\drivers\MSPCLOCK.sys
19:33:07.0968 2488 MSPCLOCK - ok
19:33:07.0968 2488 MSPQM (bad59648ba099da4a17680b39730cb3d) C:\WINDOWS\system32\drivers\MSPQM.sys
19:33:07.0968 2488 MSPQM - ok
19:33:08.0000 2488 mssmbios (af5f4f3f14a8ea2c26de30f7a1e17136) C:\WINDOWS\system32\DRIVERS\mssmbios.sys
19:33:08.0000 2488 mssmbios - ok
19:33:08.0031 2488 MSTEE (e53736a9e30c45fa9e7b5eac55056d1d) C:\WINDOWS\system32\drivers\MSTEE.sys
19:33:08.0031 2488 MSTEE - ok
19:33:08.0046 2488 MTsensor (d48659bb24c48345d926ecb45c1ebdf5) C:\WINDOWS\system32\DRIVERS\ASACPI.sys
19:33:08.0046 2488 MTsensor - ok
19:33:08.0046 2488 Mup (de6a75f5c270e756c5508d94b6cf68f5) C:\WINDOWS\system32\drivers\Mup.sys
19:33:08.0062 2488 Mup - ok
19:33:08.0093 2488 n558 (88705dc61b9275b82e48904d53031f5b) C:\WINDOWS\system32\Drivers\n558.sys
19:33:08.0093 2488 n558 - ok
19:33:08.0140 2488 NABTSFEC (5b50f1b2a2ed47d560577b221da734db) C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys
19:33:08.0140 2488 NABTSFEC - ok
19:33:08.0156 2488 NDIS (1df7f42665c94b825322fae71721130d) C:\WINDOWS\system32\drivers\NDIS.sys
19:33:08.0156 2488 NDIS - ok
19:33:08.0171 2488 NdisIP (7ff1f1fd8609c149aa432f95a8163d97) C:\WINDOWS\system32\DRIVERS\NdisIP.sys
19:33:08.0171 2488 NdisIP - ok
19:33:08.0203 2488 NdisTapi (0109c4f3850dfbab279542515386ae22) C:\WINDOWS\system32\DRIVERS\ndistapi.sys
19:33:08.0203 2488 NdisTapi - ok
19:33:08.0218 2488 Ndisuio (f927a4434c5028758a842943ef1a3849) C:\WINDOWS\system32\DRIVERS\ndisuio.sys
19:33:08.0218 2488 Ndisuio - ok
19:33:08.0234 2488 NdisWan (edc1531a49c80614b2cfda43ca8659ab) C:\WINDOWS\system32\DRIVERS\ndiswan.sys
19:33:08.0234 2488 NdisWan - ok
19:33:08.0265 2488 NDProxy (9282bd12dfb069d3889eb3fcc1000a9b) C:\WINDOWS\system32\drivers\NDProxy.sys
19:33:08.0265 2488 NDProxy - ok
19:33:08.0281 2488 NetBIOS (5d81cf9a2f1a3a756b66cf684911cdf0) C:\WINDOWS\system32\DRIVERS\netbios.sys
19:33:08.0281 2488 NetBIOS - ok
19:33:08.0296 2488 NetBT (74b2b2f5bea5e9a3dc021d685551bd3d) C:\WINDOWS\system32\DRIVERS\netbt.sys
19:33:08.0296 2488 NetBT - ok
19:33:08.0359 2488 NNSALPC (dd834264c3a3c3b12333ce27ae2f4be5) C:\WINDOWS\system32\DRIVERS\NNSAlpc.sys
19:33:08.0359 2488 NNSALPC - ok
19:33:08.0390 2488 NNSHTTP (15d5a84dcf62e51201de338c2e057fbe) C:\WINDOWS\system32\DRIVERS\NNSHttp.sys
19:33:08.0390 2488 NNSHTTP - ok
19:33:08.0421 2488 NNSHTTPS (b8ef512752407fb3a2b0e57e1db33ed8) C:\WINDOWS\system32\DRIVERS\NNSHttps.sys
19:33:08.0437 2488 NNSHTTPS - ok
19:33:08.0453 2488 NNSIDS (7725ebe34afc990015255768beb2fa3e) C:\WINDOWS\system32\DRIVERS\NNSIds.sys
19:33:08.0453 2488 NNSIDS - ok
19:33:08.0468 2488 NNSNAHS (c5f8185285cb8a059074d823359a8604) C:\WINDOWS\system32\DRIVERS\NNSNAHS.sys
19:33:08.0468 2488 NNSNAHS - ok
19:33:08.0500 2488 NNSPICC (59c95c55ecd98aa167038de29cd5d994) C:\WINDOWS\system32\DRIVERS\NNSPicc.sys
19:33:08.0500 2488 NNSPICC - ok
19:33:08.0531 2488 NNSPIHS (45a708ae5613fd7eade35c003622da3c) C:\WINDOWS\system32\DRIVERS\NNSPihs.sys
19:33:08.0531 2488 NNSPIHS - ok
19:33:08.0562 2488 NNSPOP3 (81955b1424b4355ddfe2ebaf98f188c7) C:\WINDOWS\system32\DRIVERS\NNSPop3.sys
19:33:08.0562 2488 NNSPOP3 - ok
19:33:08.0578 2488 NNSPROT (7f7584b99174061b3964146ebd212ca9) C:\WINDOWS\system32\DRIVERS\NNSProt.sys
19:33:08.0593 2488 NNSPROT - ok
19:33:08.0609 2488 NNSPRV (82a1e37f372085518ed4322d99a4faef) C:\WINDOWS\system32\DRIVERS\NNSPrv.sys
19:33:08.0609 2488 NNSPRV - ok
19:33:08.0640 2488 NNSSMTP (a8266deaf8643a8e060e08b73ffd6114) C:\WINDOWS\system32\DRIVERS\NNSSmtp.sys
19:33:08.0640 2488 NNSSMTP - ok
19:33:08.0656 2488 NNSSTRM (82eff92a4ccb8288d993f5b4a0c53f2e) C:\WINDOWS\system32\DRIVERS\NNSStrm.sys
19:33:08.0671 2488 NNSSTRM - ok
19:33:08.0687 2488 NNSTLSC (418402fe2c590b92942cc98ed254ff6c) C:\WINDOWS\system32\DRIVERS\NNSTlsc.sys
19:33:08.0687 2488 NNSTLSC - ok
19:33:08.0718 2488 Npfs (3182d64ae053d6fb034f44b6def8034a) C:\WINDOWS\system32\drivers\Npfs.sys
19:33:08.0718 2488 Npfs - ok
19:33:08.0750 2488 Ntfs (78a08dd6a8d65e697c18e1db01c5cdca) C:\WINDOWS\system32\drivers\Ntfs.sys
19:33:08.0750 2488 Ntfs - ok
19:33:08.0781 2488 Null (73c1e1f395918bc2c6dd67af7591a3ad) C:\WINDOWS\system32\drivers\Null.sys
19:33:08.0781 2488 Null - ok
19:33:09.0078 2488 nv (7c56f3fd65b2bdb315ca3605a5392d7b) C:\WINDOWS\system32\DRIVERS\nv4_mini.sys
19:33:09.0296 2488 nv - ok
19:33:09.0328 2488 nvata (ef9941593b2e9b436f64a87ddb570d1a) C:\WINDOWS\system32\DRIVERS\nvata.sys
19:33:09.0328 2488 nvata - ok
19:33:09.0359 2488 NVENETFD (c61927d27b75ed56723f2508f1a6b1be) C:\WINDOWS\system32\DRIVERS\NVENETFD.sys
19:33:09.0359 2488 NVENETFD - ok
19:33:09.0359 2488 nvgts (52dce3b30c9d61c8e20fe3c6da4bdfb7) C:\WINDOWS\system32\DRIVERS\nvgts.sys
19:33:09.0359 2488 nvgts - ok
19:33:09.0390 2488 nvnetbus (c529b614ef88be0f62b886c67b516550) C:\WINDOWS\system32\DRIVERS\nvnetbus.sys
19:33:09.0390 2488 nvnetbus - ok
19:33:09.0406 2488 NwlnkFlt (b305f3fad35083837ef46a0bbce2fc57) C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
19:33:09.0406 2488 NwlnkFlt - ok
19:33:09.0421 2488 NwlnkFwd (c99b3415198d1aab7227f2c88fd664b9) C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
19:33:09.0421 2488 NwlnkFwd - ok
19:33:09.0453 2488 Parport (5575faf8f97ce5e713d108c2a58d7c7c) C:\WINDOWS\system32\DRIVERS\parport.sys
19:33:09.0453 2488 Parport - ok
19:33:09.0468 2488 PartMgr (beb3ba25197665d82ec7065b724171c6) C:\WINDOWS\system32\drivers\PartMgr.sys
19:33:09.0468 2488 PartMgr - ok
19:33:09.0500 2488 ParVdm (70e98b3fd8e963a6a46a2e6247e0bea1) C:\WINDOWS\system32\drivers\ParVdm.sys
19:33:09.0500 2488 ParVdm - ok
19:33:09.0531 2488 PCI (a219903ccf74233761d92bef471a07b1) C:\WINDOWS\system32\DRIVERS\pci.sys
19:33:09.0531 2488 PCI - ok
19:33:09.0531 2488 PCIDump - ok
19:33:09.0562 2488 PCIIde (ccf5f451bb1a5a2a522a76e670000ff0) C:\WINDOWS\system32\DRIVERS\pciide.sys
19:33:09.0562 2488 PCIIde - ok
19:33:09.0593 2488 Pcmcia (9e89ef60e9ee05e3f2eef2da7397f1c1) C:\WINDOWS\system32\drivers\Pcmcia.sys
19:33:09.0593 2488 Pcmcia - ok
19:33:09.0609 2488 PDCOMP - ok
19:33:09.0625 2488 PDFRAME - ok
19:33:09.0625 2488 PDRELI - ok
19:33:09.0640 2488 PDRFRAME - ok
19:33:09.0656 2488 perc2 - ok
19:33:09.0656 2488 perc2hib - ok
19:33:09.0703 2488 PptpMiniport (efeec01b1d3cf84f16ddd24d9d9d8f99) C:\WINDOWS\system32\DRIVERS\raspptp.sys
19:33:09.0703 2488 PptpMiniport - ok
19:33:09.0734 2488 Processor (a32bebaf723557681bfc6bd93e98bd26) C:\WINDOWS\system32\DRIVERS\processr.sys
19:33:09.0734 2488 Processor - ok
19:33:09.0765 2488 PSched (09298ec810b07e5d582cb3a3f9255424) C:\WINDOWS\system32\DRIVERS\psched.sys
19:33:09.0765 2488 PSched - ok
19:33:09.0812 2488 PSINAflt (a5d075a80698d2417313edee15119e2a) C:\WINDOWS\system32\DRIVERS\PSINAflt.sys
19:33:09.0812 2488 PSINAflt - ok
19:33:09.0859 2488 PSINFile (aafaae75370c5e245549cf66bd901961) C:\WINDOWS\system32\DRIVERS\PSINFile.sys
19:33:09.0859 2488 PSINFile - ok
19:33:09.0875 2488 PSINKNC (d8875b6eb9ab0f5fb6fe2acb656ba6e2) C:\WINDOWS\system32\DRIVERS\psinknc.sys
19:33:09.0875 2488 PSINKNC - ok
19:33:09.0906 2488 PSINProc (183dc8cfdef01b4622fcd2bdf31ca4ae) C:\WINDOWS\system32\DRIVERS\PSINProc.sys
19:33:09.0906 2488 PSINProc - ok
19:33:09.0937 2488 PSINProt (7049ba253b729c68a9814bf454b09690) C:\WINDOWS\system32\DRIVERS\PSINProt.sys
19:33:09.0937 2488 PSINProt - ok
19:33:09.0968 2488 Ptilink (80d317bd1c3dbc5d4fe7b1678c60cadd) C:\WINDOWS\system32\DRIVERS\ptilink.sys
19:33:09.0968 2488 Ptilink - ok
19:33:09.0984 2488 ql1080 - ok
19:33:09.0984 2488 Ql10wnt - ok
19:33:10.0000 2488 ql12160 - ok
19:33:10.0015 2488 ql1240 - ok
19:33:10.0015 2488 ql1280 - ok
19:33:10.0031 2488 RasAcd (fe0d99d6f31e4fad8159f690d68ded9c) C:\WINDOWS\system32\DRIVERS\rasacd.sys
19:33:10.0031 2488 RasAcd - ok
19:33:10.0078 2488 Rasl2tp (11b4a627bc9614b885c4969bfa5ff8a6) C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
19:33:10.0078 2488 Rasl2tp - ok
19:33:10.0078 2488 RasPppoe (5bc962f2654137c9909c3d4603587dee) C:\WINDOWS\system32\DRIVERS\raspppoe.sys
19:33:10.0093 2488 RasPppoe - ok
19:33:10.0093 2488 Raspti (fdbb1d60066fcfbb7452fd8f9829b242) C:\WINDOWS\system32\DRIVERS\raspti.sys
19:33:10.0093 2488 Raspti - ok
19:33:10.0140 2488 Rdbss (7ad224ad1a1437fe28d89cf22b17780a) C:\WINDOWS\system32\DRIVERS\rdbss.sys
19:33:10.0140 2488 Rdbss - ok
19:33:10.0156 2488 RDPCDD (4912d5b403614ce99c28420f75353332) C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
19:33:10.0156 2488 RDPCDD - ok
19:33:10.0187 2488 rdpdr (15cabd0f7c00c47c70124907916af3f1) C:\WINDOWS\system32\DRIVERS\rdpdr.sys
19:33:10.0187 2488 rdpdr - ok
19:33:10.0218 2488 RDPWD (43af5212bd8fb5ba6eed9754358bd8f7) C:\WINDOWS\system32\drivers\RDPWD.sys
19:33:10.0234 2488 RDPWD - ok
19:33:10.0265 2488 redbook (f828dd7e1419b6653894a8f97a0094c5) C:\WINDOWS\system32\DRIVERS\redbook.sys
19:33:10.0265 2488 redbook - ok
19:33:10.0312 2488 RFCOMM (851c30df2807fcfa21e4c681a7d6440e) C:\WINDOWS\system32\DRIVERS\rfcomm.sys
19:33:10.0312 2488 RFCOMM - ok
19:33:10.0328 2488 ROOTMODEM (d8b0b4ade32574b2d9c5cc34dc0dbbe7) C:\WINDOWS\system32\Drivers\RootMdm.sys
19:33:10.0328 2488 ROOTMODEM - ok
19:33:10.0421 2488 SASDIFSV (39763504067962108505bff25f024345) C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS
19:33:10.0421 2488 SASDIFSV - ok
19:33:10.0453 2488 SASKUTIL (77b9fc20084b48408ad3e87570eb4a85) C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS
19:33:10.0453 2488 SASKUTIL - ok
19:33:10.0468 2488 SCDEmu (612a3d69e603dbbe5c3c1079186a0393) C:\WINDOWS\system32\drivers\SCDEmu.sys
19:33:10.0468 2488 SCDEmu - ok
19:33:10.0500 2488 Secdrv (90a3935d05b494a5a39d37e71f09a677) C:\WINDOWS\system32\DRIVERS\secdrv.sys
19:33:10.0500 2488 Secdrv - ok
19:33:10.0531 2488 serenum (0f29512ccd6bead730039fb4bd2c85ce) C:\WINDOWS\system32\DRIVERS\serenum.sys
19:33:10.0531 2488 serenum - ok
19:33:10.0546 2488 Serial (cca207a8896d4c6a0c9ce29a4ae411a7) C:\WINDOWS\system32\DRIVERS\serial.sys
19:33:10.0546 2488 Serial - ok
19:33:10.0562 2488 Sfloppy (8e6b8c671615d126fdc553d1e2de5562) C:\WINDOWS\system32\drivers\Sfloppy.sys
19:33:10.0562 2488 Sfloppy - ok
19:33:10.0578 2488 Simbad - ok
19:33:10.0625 2488 SLIP (866d538ebe33709a5c9f5c62b73b7d14) C:\WINDOWS\system32\DRIVERS\SLIP.sys
19:33:10.0625 2488 SLIP - ok
19:33:10.0625 2488 Sparrow - ok
19:33:10.0671 2488 splitter (ab8b92451ecb048a4d1de7c3ffcb4a9f) C:\WINDOWS\system32\drivers\splitter.sys
19:33:10.0671 2488 splitter - ok
19:33:10.0687 2488 sp_rsdrv2 (7b426b8e809edf081d771ef429345528) C:\WINDOWS\system32\drivers\sp_rsdrv2.sys
19:33:10.0703 2488 sp_rsdrv2 - ok
19:33:10.0718 2488 sr (76bb022c2fb6902fd5bdd4f78fc13a5d) C:\WINDOWS\system32\DRIVERS\sr.sys
19:33:10.0718 2488 sr - ok
19:33:10.0750 2488 Srv (47ddfc2f003f7f9f0592c6874962a2e7) C:\WINDOWS\system32\DRIVERS\srv.sys
19:33:10.0765 2488 Srv - ok
19:33:10.0781 2488 streamip (77813007ba6265c4b6098187e6ed79d2) C:\WINDOWS\system32\DRIVERS\StreamIP.sys
19:33:10.0781 2488 streamip - ok
19:33:10.0796 2488 swenum (3941d127aef12e93addf6fe6ee027e0f) C:\WINDOWS\system32\DRIVERS\swenum.sys
19:33:10.0796 2488 swenum - ok
19:33:10.0828 2488 swmidi (8ce882bcc6cf8a62f2b2323d95cb3d01) C:\WINDOWS\system32\drivers\swmidi.sys
19:33:10.0828 2488 swmidi - ok
19:33:10.0828 2488 symc810 - ok
19:33:10.0843 2488 symc8xx - ok
19:33:10.0859 2488 sym_hi - ok
19:33:10.0859 2488 sym_u3 - ok
19:33:10.0906 2488 sysaudio (8b83f3ed0f1688b4958f77cd6d2bf290) C:\WINDOWS\system32\drivers\sysaudio.sys
19:33:10.0906 2488 sysaudio - ok
19:33:10.0937 2488 Tcpip (9aefa14bd6b182d61e3119fa5f436d3d) C:\WINDOWS\system32\DRIVERS\tcpip.sys
19:33:10.0937 2488 Tcpip - ok
19:33:10.0968 2488 TDPIPE (6471a66807f5e104e4885f5b67349397) C:\WINDOWS\system32\drivers\TDPIPE.sys
19:33:10.0968 2488 TDPIPE - ok
19:33:10.0984 2488 TDTCP (c56b6d0402371cf3700eb322ef3aaf61) C:\WINDOWS\system32\drivers\TDTCP.sys
19:33:10.0984 2488 TDTCP - ok
19:33:11.0000 2488 TermDD (88155247177638048422893737429d9e) C:\WINDOWS\system32\DRIVERS\termdd.sys
19:33:11.0000 2488 TermDD - ok
19:33:11.0015 2488 TosIde - ok
19:33:11.0046 2488 Udfs (5787b80c2e3c5e2f56c2a233d91fa2c9) C:\WINDOWS\system32\drivers\Udfs.sys
19:33:11.0046 2488 Udfs - ok
19:33:11.0046 2488 ultra - ok
19:33:11.0078 2488 Update (402ddc88356b1bac0ee3dd1580c76a31) C:\WINDOWS\system32\DRIVERS\update.sys
19:33:11.0078 2488 Update - ok
19:33:11.0125 2488 usbccgp (173f317ce0db8e21322e71b7e60a27e8) C:\WINDOWS\system32\DRIVERS\usbccgp.sys
19:33:11.0125 2488 usbccgp - ok
19:33:11.0140 2488 usbehci (65dcf09d0e37d4c6b11b5b0b76d470a7) C:\WINDOWS\system32\DRIVERS\usbehci.sys
19:33:11.0140 2488 usbehci - ok
19:33:11.0140 2488 usbhub (1ab3cdde553b6e064d2e754efe20285c) C:\WINDOWS\system32\DRIVERS\usbhub.sys
19:33:11.0156 2488 usbhub - ok
19:33:11.0156 2488 usbohci (0daecce65366ea32b162f85f07c6753b) C:\WINDOWS\system32\DRIVERS\usbohci.sys
19:33:11.0156 2488 usbohci - ok
19:33:11.0171 2488 usbstor (a32426d9b14a089eaa1d922e0c5801a9) C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
19:33:11.0171 2488 usbstor - ok
19:33:11.0203 2488 VComm (9ebee4a060c5364a31aeaa04eac2af1e) C:\WINDOWS\system32\DRIVERS\VComm.sys
19:33:11.0203 2488 VComm - ok
19:33:11.0250 2488 VcommMgr (ef0d45ed806b0c9ae9756bfeecb077ed) C:\WINDOWS\system32\Drivers\VcommMgr.sys
19:33:11.0250 2488 VcommMgr - ok
19:33:11.0265 2488 VgaSave (0d3a8fafceacd8b7625cd549757a7df1) C:\WINDOWS\System32\drivers\vga.sys
19:33:11.0265 2488 VgaSave - ok
19:33:11.0281 2488 ViaIde - ok
19:33:11.0328 2488 viamraid (85e9421c8a99d1291b43b9b59a669ac3) C:\WINDOWS\system32\DRIVERS\viamraid.sys
19:33:11.0328 2488 viamraid - ok
19:33:11.0343 2488 VolSnap (4c8fcb5cc53aab716d810740fe59d025) C:\WINDOWS\system32\drivers\VolSnap.sys
19:33:11.0343 2488 VolSnap - ok
19:33:11.0359 2488 Wanarp (e20b95baedb550f32dd489265c1da1f6) C:\WINDOWS\system32\DRIVERS\wanarp.sys
19:33:11.0359 2488 Wanarp - ok
19:33:11.0375 2488 WDICA - ok
19:33:11.0406 2488 wdmaud (6768acf64b18196494413695f0c3a00f) C:\WINDOWS\system32\drivers\wdmaud.sys
19:33:11.0406 2488 wdmaud - ok
19:33:11.0453 2488 WS2IFSL (6abe6e225adb5a751622a9cc3bc19ce8) C:\WINDOWS\System32\drivers\ws2ifsl.sys
19:33:11.0453 2488 WS2IFSL - ok
19:33:11.0484 2488 WSTCODEC (c98b39829c2bbd34e454150633c62c78) C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS
19:33:11.0484 2488 WSTCODEC - ok
19:33:11.0500 2488 MBR (0x1B8) (5c616939100b85e558da92b899a0fc36) \Device\Harddisk0\DR0
19:33:11.0578 2488 \Device\Harddisk0\DR0 - ok
19:33:11.0593 2488 MBR (0x1B8) (8f558eb6672622401da993e1e865c861) \Device\Harddisk1\DR1
19:33:11.0750 2488 \Device\Harddisk1\DR1 - ok
19:33:11.0781 2488 MBR (0x1B8) (8f558eb6672622401da993e1e865c861) \Device\Harddisk2\DR5
19:33:12.0187 2488 \Device\Harddisk2\DR5 - ok
19:33:12.0187 2488 MBR (0x1B8) (8f558eb6672622401da993e1e865c861) \Device\Harddisk3\DR6
19:33:12.0203 2488 \Device\Harddisk3\DR6 - ok
19:33:12.0203 2488 MBR (0x1B8) (8f558eb6672622401da993e1e865c861) \Device\Harddisk4\DR7
19:33:12.0546 2488 \Device\Harddisk4\DR7 - ok
19:33:12.0546 2488 MBR (0x1B8) (5fb38429d5d77768867c76dcbdb35194) \Device\Harddisk5\DR8
19:33:12.0593 2488 \Device\Harddisk5\DR8 - ok
19:33:12.0593 2488 Boot (0x1200) (9d3f577d9a7b55a4bd930efac37285f0) \Device\Harddisk0\DR0\Partition0
19:33:12.0593 2488 \Device\Harddisk0\DR0\Partition0 - ok
19:33:12.0609 2488 Boot (0x1200) (195fc0156c7fd8f8c5583efb156504c8) \Device\Harddisk1\DR1\Partition0
19:33:12.0609 2488 \Device\Harddisk1\DR1\Partition0 - ok
19:33:12.0625 2488 Boot (0x1200) (32741d4c165334fa156c5392518c5c59) \Device\Harddisk1\DR1\Partition1
19:33:12.0625 2488 \Device\Harddisk1\DR1\Partition1 - ok
19:33:12.0640 2488 Boot (0x1200) (d4a877d365a6bfe46ceb6d81db4600b3) \Device\Harddisk2\DR5\Partition0
19:33:12.0640 2488 \Device\Harddisk2\DR5\Partition0 - ok
19:33:12.0640 2488 Boot (0x1200) (ff26f15ceb51c70d81b9f959a199a270) \Device\Harddisk3\DR6\Partition0
19:33:12.0640 2488 \Device\Harddisk3\DR6\Partition0 - ok
19:33:12.0656 2488 Boot (0x1200) (551890d3cd7fe2166e325a222d9df100) \Device\Harddisk4\DR7\Partition0
19:33:12.0656 2488 \Device\Harddisk4\DR7\Partition0 - ok
19:33:12.0656 2488 Boot (0x1200) (8696c03819657a5233608eef3fed5215) \Device\Harddisk5\DR8\Partition0
19:33:12.0656 2488 \Device\Harddisk5\DR8\Partition0 - ok
19:33:12.0656 2488 ============================================================
19:33:12.0656 2488 Scan finished
19:33:12.0656 2488 ============================================================
19:33:12.0671 3344 Detected object count: 0
19:33:12.0671 3344 Actual detected object count: 0

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119526
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prestala pracovať Panda Cloud Antivirus

#15 Příspěvek od Rudy »

Já také přesně nevím, jak to je. Myslím, že musíte stáhnout slovenský jazykový balíček a spustit instalaci. V českém prostoru jsem to nikdy neinstaloval. Log je v pořádku, PC je čistý. Došlo pravděpodobně k poškození systému. Zkuste jeho opravu z instal. média.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Odpovědět