Jump to content

Putinonbear

Honorary Members
  • Posts

    21
  • Joined

  • Last visited

Everything posted by Putinonbear

  1. yes, well I am not planning to reinstall W7. It would take about 5-6 months time to reinstall all the software I use. So I want to see if I can fix this problem, without reinstalling W7.
  2. The great man Gammo, said I should make a thread here. He did all he could for me. He believes, and I believe him, that I don't have a malware issue. Most recently this happend http://forums.malwarebytes.org/index.php?s...st&p=340179 Is there any program, that can scan my W7, and check if it's missing some kind of critical files? And then can I download those files onto my system?
  3. Ohh god. it's going to take me 6 months to reinstall all the programs I use on a weekly basis.
  4. Update. I kept restarting my computer, and after waiting for about 30-40 minutes one time, it started slowly booting windows. Then on a black screen spybot S&D started running, and searching for stuuff. It didn't find anything. And then black screen for another 10 minutes, and then it let me log in to windows. Now the computer is running... I still have the same windows errors when I try to right click on stuff, as before, plus it tells me my activex controls have been disabled or something... I dare not restart this desktop now.
  5. More good news. I restarted my computer. And it flashes my motherboard name and model. And then it goes to a black screen with a underscore flashing in the upper left hand corner. Am I basically done with? I know that the windows rescue cd will erase my hard drive, so I can't do that.
  6. I don't know if any of you have seen what I have been trying to do to clean my system from some bad stuff. Here it is http://forums.malwarebytes.org/index.php?showtopic=66006 Anyways, I restarted my computer. And it flashes my motherboard name and model. And then it goes to a black screen with a underscore flashing in the upper left hand corner. Am I censoreded? I know that the windows rescue cd will erase my hard drive, so I can't do that. I am running W7 64 Ultimate.
  7. I don't have that option. I must have different Windows 7. Also... in addition, I am getting redirected to random BS on my google searches.
  8. that fix it tool didn't work, it was stuck at about 20% for 40 minutes or so. So I shut it down. But no nothing has changed. I still can't right click on anything. Adobe flash keeps failing in browser.
  9. Gammo. You are the best helper I have ever had in my life. If I had a job I would donate $50 to you for all of your effort. Malwarebytes - Came up clean, no infections. Eset Online Scanner said "No threats Found" Here is the OTL Scan All processes killed ========== OTL ========== Registry value HKEY_USERS\S-1-5-21-1528578429-2518601074-3506737582-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\DisallowRun not found. C:\Windows\SysNative\SET1974.tmp deleted successfully. C:\Windows\SysNative\SET1A43.tmp deleted successfully. C:\Windows\SysNative\SETD0B1.tmp deleted successfully. C:\Windows\SysNative\SETD75D.tmp deleted successfully. File delete failed. C:\Windows\SysNative\SETE3A6.tmp scheduled to be deleted on reboot. C:\Windows\SysNative\SETEC8F.tmp deleted successfully. ========== SERVICES/DRIVERS ========== ========== REGISTRY ========== Registry key HKEY_USERS\S-1-5-21-1528578429-2518601074-3506737582-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\DisallowRun\ not found. HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows\\"AppInit_DLLs"|"" /E : value set successfully! ========== FILES ========== < ipconfig /flushdns /c > Windows IP Configuration Successfully flushed the DNS Resolver Cache. C:\Users\Igor\Desktop\cmd.bat deleted successfully. C:\Users\Igor\Desktop\cmd.txt deleted successfully. ========== COMMANDS ========== C:\Windows\System32\drivers\etc\Hosts moved successfully. HOSTS file reset successfully [EMPTYTEMP] User: Administrator ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes ->Java cache emptied: 0 bytes ->FireFox cache emptied: 0 bytes ->Flash cache emptied: 0 bytes User: All Users User: Default ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes ->Flash cache emptied: 0 bytes User: Default User ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes ->Flash cache emptied: 0 bytes User: Igor ->Temp folder emptied: 919519 bytes ->Temporary Internet Files folder emptied: 2719738 bytes ->Java cache emptied: 0 bytes ->FireFox cache emptied: 32891659 bytes ->Apple Safari cache emptied: 0 bytes ->Flash cache emptied: 2546 bytes User: Public %systemdrive% .tmp files removed: 0 bytes %systemroot% .tmp files removed: 0 bytes %systemroot%\System32 .tmp files removed: 7981056 bytes %systemroot%\System32 (64bit) .tmp files removed: 39424 bytes %systemroot%\System32\drivers .tmp files removed: 0 bytes Windows Temp folder emptied: 85540 bytes %systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 0 bytes RecycleBin emptied: 690683069 bytes Total Files Cleaned = 701.00 mb [EMPTYFLASH] User: Administrator ->Flash cache emptied: 0 bytes User: All Users User: Default ->Flash cache emptied: 0 bytes User: Default User ->Flash cache emptied: 0 bytes User: Igor ->Flash cache emptied: 0 bytes User: Public Total Flash Files Cleaned = 0.00 mb Restore point Set: OTL Restore Point OTL by OldTimer - Version 3.2.17.2 log created on 11022010_224215 Files\Folders moved on Reboot... File\Folder C:\Windows\SysNative\SETE3A6.tmp not found! C:\Users\Igor\AppData\Local\Temp\FXSAPIDebugLogFile.txt moved successfully. File\Folder C:\Users\Igor\AppData\Local\Temp\~DF7991211170B732E3.TMP not found! File\Folder C:\Users\Igor\AppData\Local\Temp\~DF79D232871A0EA48A.TMP not found! File\Folder C:\Users\Igor\AppData\Local\Temp\~DF8C341EAEC39EC0D7.TMP not found! File\Folder C:\Users\Igor\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRF{03A15FA7-C99F-488B-91F4-8A4EAD625F8D}.tmp not found! File\Folder C:\Users\Igor\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{16FF022C-D68E-441F-8CCF-98063B33401A}.tmp not found! File\Folder C:\Users\Igor\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{1E9A3DAF-8326-42CD-A790-0DFBC65C1FAB}.tmp not found! File\Folder C:\Users\Igor\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{1EFD9A36-CB85-4A46-BBFC-975BA59A1210}.tmp not found! File\Folder C:\Users\Igor\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{37A92A9E-D40B-424F-AD1D-BA533D52AB1A}.tmp not found! File\Folder C:\Users\Igor\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{5B061D85-4678-4020-9934-1BD1A2F323A5}.tmp not found! File\Folder C:\Users\Igor\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word\~WRS{E6C644A4-DAD5-4D8F-AE43-B1C68111F224}.tmp not found! File\Folder C:\Users\Igor\AppData\Local\Mozilla\Firefox\Profiles\wrk4z8pj.default\Cache\B137D3BDd01 not found! File\Folder C:\Users\Igor\AppData\Local\Mozilla\Firefox\Profiles\wrk4z8pj.default\Cache\B1B9D5BFd01 not found! File\Folder C:\Users\Igor\AppData\Local\Mozilla\Firefox\Profiles\wrk4z8pj.default\Cache\B2AC74CCd01 not found! File\Folder C:\Users\Igor\AppData\Local\Mozilla\Firefox\Profiles\wrk4z8pj.default\Cache\B2D59EF4d01 not found! File\Folder C:\Users\Igor\AppData\Local\Mozilla\Firefox\Profiles\wrk4z8pj.default\Cache\B30B271Dd01 not found! File\Folder C:\Users\Igor\AppData\Local\Mozilla\Firefox\Profiles\wrk4z8pj.default\Cache\B3170586d01 not found! File\Folder C:\Users\Igor\AppData\Local\Mozilla\Firefox\Profiles\wrk4z8pj.default\Cache\B5C4B5F4d01 not found! File\Folder C:\Users\Igor\AppData\Local\Mozilla\Firefox\Profiles\wrk4z8pj.default\Cache\B5C892A1d01 not found! File\Folder C:\Users\Igor\AppData\Local\Mozilla\Firefox\Profiles\wrk4z8pj.default\Cache\B61253C4d01 not found! File\Folder C:\Users\Igor\AppData\Local\Mozilla\Firefox\Profiles\wrk4z8pj.default\Cache\B62D6ED0d01 not found! File\Folder C:\Users\Igor\AppData\Local\Mozilla\Firefox\Profiles\wrk4z8pj.default\Cache\B6E8059Bd01 not found! File\Folder C:\Users\Igor\AppData\Local\Mozilla\Firefox\Profiles\wrk4z8pj.default\Cache\B7B569ABd01 not found! File\Folder C:\Users\Igor\AppData\Local\Mozilla\Firefox\Profiles\wrk4z8pj.default\Cache\B9A30149d01 not found! File\Folder C:\Users\Igor\AppData\Local\Mozilla\Firefox\Profiles\wrk4z8pj.default\Cache\B9F38762d01 not found! File\Folder C:\Users\Igor\AppData\Local\Mozilla\Firefox\Profiles\wrk4z8pj.default\Cache\BA6FDBBCd01 not found! File\Folder C:\Users\Igor\AppData\Local\Mozilla\Firefox\Profiles\wrk4z8pj.default\Cache\BB592878d01 not found! File\Folder C:\Users\Igor\AppData\Local\Mozilla\Firefox\Profiles\wrk4z8pj.default\Cache\BB6425D1d01 not found! File\Folder C:\Users\Igor\AppData\Local\Mozilla\Firefox\Profiles\wrk4z8pj.default\Cache\BD702B23d01 not found! File\Folder C:\Users\Igor\AppData\Local\Mozilla\Firefox\Profiles\wrk4z8pj.default\Cache\BD8156C9d01 not found! File\Folder C:\Users\Igor\AppData\Local\Mozilla\Firefox\Profiles\wrk4z8pj.default\Cache\C0163595d01 not found! File\Folder C:\Users\Igor\AppData\Local\Mozilla\Firefox\Profiles\wrk4z8pj.default\Cache\C088B187d01 not found! File\Folder C:\Users\Igor\AppData\Local\Mozilla\Firefox\Profiles\wrk4z8pj.default\Cache\C09684D5d01 not found! File\Folder C:\Users\Igor\AppData\Local\Mozilla\Firefox\Profiles\wrk4z8pj.default\Cache\C1A01E08d01 not found! File\Folder C:\Users\Igor\AppData\Local\Mozilla\Firefox\Profiles\wrk4z8pj.default\Cache\C1AE3DC1d01 not found! File\Folder C:\Users\Igor\AppData\Local\Mozilla\Firefox\Profiles\wrk4z8pj.default\Cache\C1BE02B7d01 not found! File\Folder C:\Users\Igor\AppData\Local\Mozilla\Firefox\Profiles\wrk4z8pj.default\Cache\C1F4FDBEd01 not found! File\Folder C:\Users\Igor\AppData\Local\Mozilla\Firefox\Profiles\wrk4z8pj.default\Cache\C232B7E6d01 not found! File\Folder C:\Users\Igor\AppData\Local\Mozilla\Firefox\Profiles\wrk4z8pj.default\Cache\C4CEDDA2d01 not found! File\Folder C:\Users\Igor\AppData\Local\Mozilla\Firefox\Profiles\wrk4z8pj.default\Cache\C63FAA1Bd01 not found! File\Folder C:\Users\Igor\AppData\Local\Mozilla\Firefox\Profiles\wrk4z8pj.default\Cache\C689495Bd01 not found! File\Folder C:\Users\Igor\AppData\Local\Mozilla\Firefox\Profiles\wrk4z8pj.default\Cache\C7876F9Cd01 not found! File\Folder C:\Users\Igor\AppData\Local\Mozilla\Firefox\Profiles\wrk4z8pj.default\Cache\C8F737F0d01 not found! File\Folder C:\Users\Igor\AppData\Local\Mozilla\Firefox\Profiles\wrk4z8pj.default\Cache\C975AC74d01 not found! File\Folder C:\Users\Igor\AppData\Local\Mozilla\Firefox\Profiles\wrk4z8pj.default\Cache\CB04E7D1d01 not found! File\Folder C:\Users\Igor\AppData\Local\Mozilla\Firefox\Profiles\wrk4z8pj.default\Cache\CB26B31Ed01 not found! File\Folder C:\Users\Igor\AppData\Local\Mozilla\Firefox\Profiles\wrk4z8pj.default\Cache\CB75D5E6d01 not found! File\Folder C:\Users\Igor\AppData\Local\Mozilla\Firefox\Profiles\wrk4z8pj.default\Cache\CBA17D07d01 not found! File\Folder C:\Users\Igor\AppData\Local\Mozilla\Firefox\Profiles\wrk4z8pj.default\Cache\CDAD70F0d01 not found! C:\Users\Igor\AppData\Local\Mozilla\Firefox\Profiles\wrk4z8pj.default\XPC.mfl moved successfully. C:\Users\Igor\AppData\Local\Mozilla\Firefox\Profiles\wrk4z8pj.default\XUL.mfl moved successfully. File move failed. C:\Windows\temp\_avast5_\Webshlock.txt scheduled to be moved on reboot. Registry entries deleted on Reboot...
  10. yes I have all my stuff updated. I emailed Garmin support yesterday. They have phone support, but usual wait time is 45 minutes
  11. I tried posting just the text, but no matter how many times I cut it, it told me it was too long. So here is the OTL.txt file http://www.easy-share.com/1912827777/OTL.Txt and there is no Extras.txt file
  12. Hello friends. I run Windows 7 64 Ultimate. And I am trying to install Garmin software on my PC. Here it is I tried doing what it says on these websites http://bit.ly/beT0A0. But no dice. I went into the registry and I changed the value, even though it was pointing to the right spot anyways. I want to kill a puppy just for all the crap that Windows 7 puts me through
  13. uPolicies-disallowrun: 1401 = gmt.exe uPolicies-disallowrun: 1402 = gogoaddisplay.exe uPolicies-disallowrun: 1403 = gogoaddressbar.exe uPolicies-disallowrun: 1404 = gogofileshare.exe uPolicies-disallowrun: 1405 = gogotoolbar.exe uPolicies-disallowrun: 1406 = gogotools.exe uPolicies-disallowrun: 1407 = gogotools0.exe uPolicies-disallowrun: 1408 = gogotoolsinstaller.exe uPolicies-disallowrun: 1409 = gsohy92a.exe uPolicies-disallowrun: 1410 = gstartup.exe uPolicies-disallowrun: 1411 = szace.exe uPolicies-disallowrun: 1412 = guninstaller.exe uPolicies-disallowrun: 1413 = h2g140n1.exe uPolicies-disallowrun: 1414 = hacker.exe uPolicies-disallowrun: 1415 = haiyang.exe uPolicies-disallowrun: 1416 = hbinst.exe uPolicies-disallowrun: 1417 = hbtv.exe uPolicies-disallowrun: 1418 = heat.exe uPolicies-disallowrun: 1419 = hellmsn.exe uPolicies-disallowrun: 1420 = helpexp.exe uPolicies-disallowrun: 1421 = hgfedcba.exe uPolicies-disallowrun: 1422 = hgqhp.exe uPolicies-disallowrun: 1423 = hhs32.pif uPolicies-disallowrun: 1424 = hidden32.exe uPolicies-disallowrun: 1425 = hidedown.exe uPolicies-disallowrun: 1426 = hidr.exe uPolicies-disallowrun: 1427 = hloader.exe uPolicies-disallowrun: 1428 = hnm_svc.exe uPolicies-disallowrun: 1429 = hookdump.exe uPolicies-disallowrun: 1430 = host.exe uPolicies-disallowrun: 1431 = hot.exe uPolicies-disallowrun: 1432 = hot_tarts_mc.exe uPolicies-disallowrun: 1433 = hprog.exe uPolicies-disallowrun: 1434 = hro.exe uPolicies-disallowrun: 1435 = htmdeng.exe uPolicies-disallowrun: 1436 = hwclock.exe uPolicies-disallowrun: 1437 = hxdef.exe uPolicies-disallowrun: 1438 = hxdl.exe uPolicies-disallowrun: 1439 = hxiul.exe uPolicies-disallowrun: 1440 = i3k0hgad.exe uPolicies-disallowrun: 1441 = ibm00001.exe uPolicies-disallowrun: 1442 = icon.exe uPolicies-disallowrun: 1443 = idemlog.exe uPolicies-disallowrun: 1444 = idleui.exe uPolicies-disallowrun: 1445 = iebtm.exe uPolicies-disallowrun: 1446 = iedll.exe uPolicies-disallowrun: 1447 = iedriver.exe uPolicies-disallowrun: 1448 = iegator.exe uPolicies-disallowrun: 1449 = iehost.exe uPolicies-disallowrun: 1450 = iep.exe uPolicies-disallowrun: 1451 = iesetup.exe uPolicies-disallowrun: 1452 = iexpiore.exe uPolicies-disallowrun: 1453 = iexplor32.exe uPolicies-disallowrun: 1454 = iexplore32.exe uPolicies-disallowrun: 1455 = iexplorer.exe uPolicies-disallowrun: 1456 = igetnet_3845_3645.exe uPolicies-disallowrun: 1457 = igps.exe uPolicies-disallowrun: 1458 = igpsdon6.exe uPolicies-disallowrun: 1459 = iinstall.exe uPolicies-disallowrun: 1460 = im_2.exe uPolicies-disallowrun: 1461 = imguninst.exe uPolicies-disallowrun: 1462 = infoctl.exe uPolicies-disallowrun: 1463 = infus.exe uPolicies-disallowrun: 1464 = infwin.exe uPolicies-disallowrun: 1465 = init32m.exe uPolicies-disallowrun: 1466 = ink.exe uPolicies-disallowrun: 1467 = inst.exe uPolicies-disallowrun: 1468 = install1.exe uPolicies-disallowrun: 1469 = installdatemanager.exe uPolicies-disallowrun: 1470 = installer1.exe uPolicies-disallowrun: 1471 = instant access.exe uPolicies-disallowrun: 1472 = intdel.exe uPolicies-disallowrun: 1473 = intel32.exe uPolicies-disallowrun: 1474 = intell321.exe uPolicies-disallowrun: 1475 = intenat.exe uPolicies-disallowrun: 1476 = internet.exe uPolicies-disallowrun: 1477 = internetfeatures.exe uPolicies-disallowrun: 1478 = ipfw.exe uPolicies-disallowrun: 1479 = ipu.exe uPolicies-disallowrun: 1480 = ipwins.exe uPolicies-disallowrun: 1481 = irasyncd.exe uPolicies-disallowrun: 1482 = iroffer.exe uPolicies-disallowrun: 1483 = isamini.exe uPolicies-disallowrun: 1484 = isamntr.exe uPolicies-disallowrun: 1485 = isamonitor.exe uPolicies-disallowrun: 1486 = isass.exe uPolicies-disallowrun: 1487 = ishost.exe uPolicies-disallowrun: 1488 = isinstalldonecrazy.exe uPolicies-disallowrun: 1489 = ismon.exe uPolicies-disallowrun: 1490 = isnotify.exe uPolicies-disallowrun: 1491 = ispsupport.exe uPolicies-disallowrun: 1492 = issearch.exe uPolicies-disallowrun: 1493 = istsvc.exe uPolicies-disallowrun: 1494 = itbill.exe uPolicies-disallowrun: 1495 = itphwd.exe uPolicies-disallowrun: 1496 = iwatch.exe uPolicies-disallowrun: 1497 = j4g8w5m8.exe uPolicies-disallowrun: 1498 = j7k8ug16.exe uPolicies-disallowrun: 1499 = j95i15ei.exe uPolicies-disallowrun: 1500 = jabber.exe uPolicies-disallowrun: 1501 = jammer2nd.exe uPolicies-disallowrun: 1502 = jawa32.exe uPolicies-disallowrun: 1503 = jdbgmrg.exe uPolicies-disallowrun: 1504 = jif.exe uPolicies-disallowrun: 1505 = jkill.exe uPolicies-disallowrun: 1506 = jmnmxr.exe uPolicies-disallowrun: 1507 = jnfdtdi.exe uPolicies-disallowrun: 1508 = jq34042x.exe uPolicies-disallowrun: 1509 = jre4i3q6.exe uPolicies-disallowrun: 1510 = jushed32.exe uPolicies-disallowrun: 1511 = jxcevib2.exe uPolicies-disallowrun: 1512 = k4eboy6.exe uPolicies-disallowrun: 1513 = kaboom.exe uPolicies-disallowrun: 1514 = kahlisetup_demo.exe uPolicies-disallowrun: 1515 = kane.exe uPolicies-disallowrun: 1516 = kazza.exe uPolicies-disallowrun: 1517 = kb021119.exe uPolicies-disallowrun: 1518 = keenvalue.exe uPolicies-disallowrun: 1519 = kernal32.exe uPolicies-disallowrun: 1520 = kerne1412.exe uPolicies-disallowrun: 1521 = kernel32.exe uPolicies-disallowrun: 1522 = kernels32.exe uPolicies-disallowrun: 1523 = kernels64.exe uPolicies-disallowrun: 1524 = keu2zfke.exe uPolicies-disallowrun: 1525 = keylogger plugin.exe uPolicies-disallowrun: 1526 = keyword.exe uPolicies-disallowrun: 1527 = kl.exe uPolicies-disallowrun: 1528 = kmwoa.exe uPolicies-disallowrun: 1529 = kmwol.exe uPolicies-disallowrun: 1530 = kmwop.exe uPolicies-disallowrun: 1531 = knuzql.exe uPolicies-disallowrun: 1532 = krxz.exe uPolicies-disallowrun: 1533 = l6y07fu5.exe uPolicies-disallowrun: 1534 = lass.exe uPolicies-disallowrun: 1535 = launchadware.exe uPolicies-disallowrun: 1536 = layer.exe uPolicies-disallowrun: 1537 = lcc.exe uPolicies-disallowrun: 1538 = lex.exe uPolicies-disallowrun: 1539 = lexplore.exe uPolicies-disallowrun: 1540 = license_manager.exe uPolicies-disallowrun: 1541 = bmonq.exe uPolicies-disallowrun: 1542 = live.exe uPolicies-disallowrun: 1543 = lmu.exe uPolicies-disallowrun: 1544 = load.exe uPolicies-disallowrun: 1545 = load32.exe uPolicies-disallowrun: 1546 = loader(1).exe uPolicies-disallowrun: 1547 = l26.exe uPolicies-disallowrun: 1548 = loader[1].exe uPolicies-disallowrun: 1549 = lockx.exe uPolicies-disallowrun: 1550 = lodctr32.exe uPolicies-disallowrun: 1551 = Duel_v2.exe uPolicies-disallowrun: 1552 = logon.exe uPolicies-disallowrun: 1553 = loud.exe uPolicies-disallowrun: 1554 = lp.exe uPolicies-disallowrun: 1555 = lsa.exe uPolicies-disallowrun: 1556 = lsas.exe uPolicies-disallowrun: 1557 = lsass32.exe uPolicies-disallowrun: 1558 = lsassa.exe uPolicies-disallowrun: 1559 = lssas.exe uPolicies-disallowrun: 1560 = lsserv.exe uPolicies-disallowrun: 1561 = ma.exe uPolicies-disallowrun: 1562 = mahtfi.exe uPolicies-disallowrun: 1563 = mapisvc32.exe uPolicies-disallowrun: 1564 = mario.exe uPolicies-disallowrun: 1565 = matcli.exe uPolicies-disallowrun: 1566 = mcafee.update.exe.exe uPolicies-disallowrun: 1567 = mcf.exe uPolicies-disallowrun: 1568 = md.exe uPolicies-disallowrun: 1569 = mdms.exe uPolicies-disallowrun: 1570 = me.exe uPolicies-disallowrun: 1571 = medgs1.exe uPolicies-disallowrun: 1572 = mediaaccess.exe uPolicies-disallowrun: 1573 = mediaaccessinstpack.exe uPolicies-disallowrun: 1574 = mediaacck.exe uPolicies-disallowrun: 1575 = mediagateway.exe uPolicies-disallowrun: 1576 = mediaman.exe uPolicies-disallowrun: 1577 = mediapass.exe uPolicies-disallowrun: 1578 = mediapassk.exe uPolicies-disallowrun: 1579 = members-area.exe uPolicies-disallowrun: 1580 = memorymeter.exe uPolicies-disallowrun: 1581 = menu.exe uPolicies-disallowrun: 1582 = mfc71.exe uPolicies-disallowrun: 1583 = mfin32.exe uPolicies-disallowrun: 1584 = mfx8k065.exe uPolicies-disallowrun: 1585 = microsystem.exe uPolicies-disallowrun: 1586 = minibug.exe uPolicies-disallowrun: 1587 = mirc32.exe uPolicies-disallowrun: 1588 = mirindaa1i.exe uPolicies-disallowrun: 1589 = mirror_plugin.exe uPolicies-disallowrun: 1590 = mksc.exe uPolicies-disallowrun: 1591 = mm.exe uPolicies-disallowrun: 1592 = mm15201518.stub.exe uPolicies-disallowrun: 1593 = mmbun.exe uPolicies-disallowrun: 1594 = mmm.exe uPolicies-disallowrun: 1595 = mmod.exe uPolicies-disallowrun: 1596 = mmsg.exe uPolicies-disallowrun: 1597 = mmups.exe uPolicies-disallowrun: 1598 = mnss.exe uPolicies-disallowrun: 1599 = mostat.exe uPolicies-disallowrun: 1600 = mousedrv.exe uPolicies-disallowrun: 1601 = mp3serch.exe uPolicies-disallowrun: 1602 = mp7eq7hx.exe uPolicies-disallowrun: 1603 = mrjj.exe uPolicies-disallowrun: 1604 = mrtstub.exe uPolicies-disallowrun: 1605 = msaa.exe uPolicies-disallowrun: 1606 = msapp.exe uPolicies-disallowrun: 1607 = msbb.exe uPolicies-disallowrun: 1608 = msbb[1].exe uPolicies-disallowrun: 1609 = msblast.exe uPolicies-disallowrun: 1610 = msc32.exe uPolicies-disallowrun: 1611 = mscache.exe uPolicies-disallowrun: 1612 = msccn32.exe uPolicies-disallowrun: 1613 = msckin.exe uPolicies-disallowrun: 1614 = mscman.exe uPolicies-disallowrun: 1615 = mscnsz.exe uPolicies-disallowrun: 1616 = mscommand.exe uPolicies-disallowrun: 1617 = msconfgh.exe uPolicies-disallowrun: 1618 = msconfig32.exe uPolicies-disallowrun: 1619 = mscornet.exe uPolicies-disallowrun: 1620 = mscvb32.exe uPolicies-disallowrun: 1621 = msdm.exe uPolicies-disallowrun: 1622 = msexreg.exe uPolicies-disallowrun: 1623 = msgdmf.exe uPolicies-disallowrun: 1624 = msgfix.exe uPolicies-disallowrun: 1625 = msgrsv32.exe uPolicies-disallowrun: 1626 = msiexec16.exe uPolicies-disallowrun: 1627 = msinfo.exe uPolicies-disallowrun: 1628 = mslagent.exe uPolicies-disallowrun: 1629 = mslaugh.exe uPolicies-disallowrun: 1630 = msmc.exe uPolicies-disallowrun: 1631 = msmgs.exe uPolicies-disallowrun: 1632 = msmgt.exe uPolicies-disallowrun: 1633 = msmm.exe uPolicies-disallowrun: 1634 = msmsg.exe uPolicies-disallowrun: 1635 = msnlive.exe uPolicies-disallowrun: 1636 = msnst32.exe uPolicies-disallowrun: 1637 = msole32.exe uPolicies-disallowrun: 1638 = mspath.exe uPolicies-disallowrun: 1639 = mspmspv.exe uPolicies-disallowrun: 1640 = msrexe.exe uPolicies-disallowrun: 1641 = mssearchnet.exe uPolicies-disallowrun: 1642 = mssecure.exe uPolicies-disallowrun: 1643 = msshed32.exe uPolicies-disallowrun: 1644 = mssvc32.exe uPolicies-disallowrun: 1645 = mssvr.exe uPolicies-disallowrun: 1646 = mssys.exe uPolicies-disallowrun: 1647 = mstasks.exe uPolicies-disallowrun: 1648 = mstc.exe uPolicies-disallowrun: 1649 = mstcs.exe uPolicies-disallowrun: 1650 = msupdate.exe uPolicies-disallowrun: 1651 = msvc32.exe uPolicies-disallowrun: 1652 = msvcrl.exe uPolicies-disallowrun: 1653 = msvgr.exe uPolicies-disallowrun: 1654 = msvxd.exe uPolicies-disallowrun: 1655 = msw.exe uPolicies-disallowrun: 1656 = mswin32.exe uPolicies-disallowrun: 1657 = mswinb32.exe uPolicies-disallowrun: 1658 = msxct.exe uPolicies-disallowrun: 1659 = mt.exe uPolicies-disallowrun: 1660 = mtask.exe uPolicies-disallowrun: 1661 = mtjuhp.exe uPolicies-disallowrun: 1662 = mudsc.exe uPolicies-disallowrun: 1663 = murphy.exe uPolicies-disallowrun: 1664 = mwd.exe uPolicies-disallowrun: 1665 = mwfirewall.exe uPolicies-disallowrun: 1666 = mwsoemon.exe uPolicies-disallowrun: 1667 = mwsvm.exe uPolicies-disallowrun: 1668 = mypcsearch.exe uPolicies-disallowrun: 1669 = mysearch2.0.exe uPolicies-disallowrun: 1670 = mysetp.exe uPolicies-disallowrun: 1671 = myurlff.exe uPolicies-disallowrun: 1672 = myurlsagain.exe uPolicies-disallowrun: 1673 = n.exe uPolicies-disallowrun: 1674 = n1hvjmy9.exe uPolicies-disallowrun: 1675 = n20050308.exe uPolicies-disallowrun: 1676 = nail(1).exe uPolicies-disallowrun: 1677 = nail.exe uPolicies-disallowrun: 1678 = namedpipe.exe uPolicies-disallowrun: 1679 = nav32sp.exe uPolicies-disallowrun: 1680 = navapp.exe uPolicies-disallowrun: 1681 = nbthlp.exe uPolicies-disallowrun: 1682 = ncaselib.exe uPolicies-disallowrun: 1683 = ndcx3xyq.exe uPolicies-disallowrun: 1684 = netclient.exe uPolicies-disallowrun: 1685 = netddeclnt.exe uPolicies-disallowrun: 1686 = netinfo.exe uPolicies-disallowrun: 1687 = netlib.exe uPolicies-disallowrun: 1688 = netmail.exe uPolicies-disallowrun: 1689 = netmeeting.exe uPolicies-disallowrun: 1690 = netmon.exe uPolicies-disallowrun: 1691 = netserver.exe uPolicies-disallowrun: 1692 = netsurf.exe uPolicies-disallowrun: 1693 = netsvc.exe uPolicies-disallowrun: 1694 = network.exe uPolicies-disallowrun: 1695 = newdevin.exe uPolicies-disallowrun: 1696 = newdot.exe uPolicies-disallowrun: 1697 = newpop447.exe uPolicies-disallowrun: 1698 = nfomon.exe uPolicies-disallowrun: 1699 = nl.exe uPolicies-disallowrun: 1700 = nlnp49.exe uPolicies-disallowrun: 1701 = nls.exe uPolicies-disallowrun: 1702 = noat.exe uPolicies-disallowrun: 1703 = nomoreporn.exe uPolicies-disallowrun: 1704 = nopat.exe uPolicies-disallowrun: 1705 = norton update.exe uPolicies-disallowrun: 1706 = note.exe uPolicies-disallowrun: 1707 = notesweb.exe uPolicies-disallowrun: 1708 = npkcsvc.exe uPolicies-disallowrun: 1709 = nrcs.exe uPolicies-disallowrun: 1710 = nrpc.exe uPolicies-disallowrun: 1711 = nscheck.exe uPolicies-disallowrun: 1712 = nssys32.exe uPolicies-disallowrun: 1713 = nstask32.exe uPolicies-disallowrun: 1714 = nsupdate.exe uPolicies-disallowrun: 1715 = nsvsvc.exe uPolicies-disallowrun: 1716 = ntdetect.exe uPolicies-disallowrun: 1717 = ntfs64.exe uPolicies-disallowrun: 1718 = ntosa32.exe uPolicies-disallowrun: 1719 = ntsys.exe uPolicies-disallowrun: 1720 = nvctrl.exe uPolicies-disallowrun: 1721 = nvsc32.exe uPolicies-disallowrun: 1722 = o84u7fwq.exe uPolicies-disallowrun: 1723 = obllak.exe uPolicies-disallowrun: 1724 = ocxdll.exe uPolicies-disallowrun: 1725 = odcfg.exe uPolicies-disallowrun: 1726 = oeet.exe uPolicies-disallowrun: 1727 = oeloader.exe uPolicies-disallowrun: 1728 = offers.exe uPolicies-disallowrun: 1729 = The sky.exe uPolicies-disallowrun: 1730 = nt.com uPolicies-disallowrun: 1731 = office.exe uPolicies-disallowrun: 1732 = offun.exe uPolicies-disallowrun: 1733 = okpelq4p.exe uPolicies-disallowrun: 1734 = olehelp.exe uPolicies-disallowrun: 1735 = optimize.exe uPolicies-disallowrun: 1736 = optimize313.exe uPolicies-disallowrun: 1737 = osalogbe.exe uPolicies-disallowrun: 1738 = othb.exe uPolicies-disallowrun: 1739 = p23oorr3.exe uPolicies-disallowrun: 1740 = p2p networking.exe uPolicies-disallowrun: 1741 = p2p networking2.exe uPolicies-disallowrun: 1742 = p2p networking3.exe uPolicies-disallowrun: 1743 = p2pnetworking.exe uPolicies-disallowrun: 1744 = p2pnetworking3.exe uPolicies-disallowrun: 1745 = pagerevisor.exe uPolicies-disallowrun: 1746 = paytime.exe uPolicies-disallowrun: 1747 = pbl8ey0e.exe uPolicies-disallowrun: 1748 = pchealth.exe uPolicies-disallowrun: 1749 = pcsvc.exe uPolicies-disallowrun: 1750 = pec.exe uPolicies-disallowrun: 1751 = pgmonitr.exe uPolicies-disallowrun: 1752 = phantom.exe uPolicies-disallowrun: 1753 = phqghum.exe uPolicies-disallowrun: 1754 = phqghume.exe uPolicies-disallowrun: 1755 = pi1_??.exe uPolicies-disallowrun: 1756 = picsvr.exe uPolicies-disallowrun: 1757 = pictureshare.exe uPolicies-disallowrun: 1758 = recycle.exe uPolicies-disallowrun: 1759 = picx.exe uPolicies-disallowrun: 1760 = pisf.exe uPolicies-disallowrun: 1761 = piuw.exe uPolicies-disallowrun: 1762 = 1ogf.exe uPolicies-disallowrun: 1763 = gwr0lyd.bat uPolicies-disallowrun: 1764 = play[2].exe uPolicies-disallowrun: 1765 = play[3].exe uPolicies-disallowrun: 1766 = play[4].exe uPolicies-disallowrun: 1767 = play_mp3(2).exe uPolicies-disallowrun: 1768 = play_mp3.exe uPolicies-disallowrun: 1769 = play_mp3[1].exe uPolicies-disallowrun: 1770 = play_mp3[2].exe uPolicies-disallowrun: 1771 = play_mp3[3].exe uPolicies-disallowrun: 1772 = play_mp3[4].exe uPolicies-disallowrun: 1773 = WantsU.exe uPolicies-disallowrun: 1774 = My heart.exe uPolicies-disallowrun: 1775 = A smile.exe uPolicies-disallowrun: 1776 = Forever.exe uPolicies-disallowrun: 1777 = My love.exe uPolicies-disallowrun: 1778 = CritProc.exe uPolicies-disallowrun: 1779 = play_mp3[5].exe uPolicies-disallowrun: 1780 = play_mp3[6].exe uPolicies-disallowrun: 1781 = play_mp3-3.exe uPolicies-disallowrun: 1782 = plscd.exe uPolicies-disallowrun: 1783 = plugin compressor.exe uPolicies-disallowrun: 1784 = pmmnt.exe uPolicies-disallowrun: 1785 = pmmon.exe uPolicies-disallowrun: 1786 = pmr.exe uPolicies-disallowrun: 1787 = pmsngr.exe uPolicies-disallowrun: 1788 = pmsnrr.exe uPolicies-disallowrun: 1789 = pmt.exe uPolicies-disallowrun: 1790 = points manager.exe uPolicies-disallowrun: 1791 = pokapoka uPolicies-disallowrun: 1792 = pokapoka66.exe uPolicies-disallowrun: 1793 = pokapoka67.exe uPolicies-disallowrun: 1794 = pokapoka70.exe uPolicies-disallowrun: 1795 = pokapoka72.exe uPolicies-disallowrun: 1796 = pokapoka73.exe uPolicies-disallowrun: 1797 = pokapoka76.exe uPolicies-disallowrun: 1798 = pokapoka79.exe uPolicies-disallowrun: 1799 = poker.exe uPolicies-disallowrun: 1800 = popuper.exe uPolicies-disallowrun: 1801 = powerreg uPolicies-disallowrun: 1802 = powerreg scheduler.exe uPolicies-disallowrun: 1803 = powerscan.exe uPolicies-disallowrun: 1804 = precisiontime.exe uPolicies-disallowrun: 1805 = precisiontimesetup.exe uPolicies-disallowrun: 1806 = prevadcomm.exe uPolicies-disallowrun: 1807 = prizesurfer.exe uPolicies-disallowrun: 1808 = prmt.exe uPolicies-disallowrun: 1809 = prositefinder.exe uPolicies-disallowrun: 1810 = prositefinder1.exe uPolicies-disallowrun: 1811 = prositefinderh.exe uPolicies-disallowrun: 1812 = prot.exe uPolicies-disallowrun: 1813 = protector.exe uPolicies-disallowrun: 1814 = pruttct.exe uPolicies-disallowrun: 1815 = ps_install-grokster.exe uPolicies-disallowrun: 1816 = ps_uninstaller.exe uPolicies-disallowrun: 1817 = ps1.exe uPolicies-disallowrun: 1818 = pscanw.exe uPolicies-disallowrun: 1819 = psof1.exe uPolicies-disallowrun: 1820 = psoft1.exe uPolicies-disallowrun: 1821 = My desire.exe uPolicies-disallowrun: 1822 = My hope.exe uPolicies-disallowrun: 1823 = My wish.exe uPolicies-disallowrun: 1824 = psqeelsr.exe uPolicies-disallowrun: 1825 = ptop.exe uPolicies-disallowrun: 1826 = ptuninstaller.exe uPolicies-disallowrun: 1827 = purityscan install.exe uPolicies-disallowrun: 1828 = purityscan.exe uPolicies-disallowrun: 1829 = purityscan2.exe uPolicies-disallowrun: 1830 = purityscanuninstall.exe uPolicies-disallowrun: 1831 = puszinyuszi.exe uPolicies-disallowrun: 1832 = pvxusmtu.exe uPolicies-disallowrun: 1833 = pyr0.exe uPolicies-disallowrun: 1834 = q17i9a4j.exe uPolicies-disallowrun: 1835 = q7moyha2.exe uPolicies-disallowrun: 1836 = qerbi.exe uPolicies-disallowrun: 1837 = qerbif.exe uPolicies-disallowrun: 1838 = qhutst.exe uPolicies-disallowrun: 1839 = qi8lu5s9.exe uPolicies-disallowrun: 1840 = qoologic.exe uPolicies-disallowrun: 1841 = qqpr8h33.exe uPolicies-disallowrun: 1842 = randreco.exe uPolicies-disallowrun: 1843 = ravmond.exe uPolicies-disallowrun: 1844 = ray.exe uPolicies-disallowrun: 1845 = rb32.exe uPolicies-disallowrun: 1846 = rcsync.exe uPolicies-disallowrun: 1847 = realtray.exe uPolicies-disallowrun: 1848 = realupd32.exe uPolicies-disallowrun: 1849 = register.exe uPolicies-disallowrun: 1850 = registration.exe uPolicies-disallowrun: 1851 = regloadr.exe uPolicies-disallowrun: 1852 = regmaping.exe uPolicies-disallowrun: 1853 = regperf.exe uPolicies-disallowrun: 1854 = regscan.exe uPolicies-disallowrun: 1855 = regsrv.exe uPolicies-disallowrun: 1856 = regsvc32.exe uPolicies-disallowrun: 1857 = regsync.exe uPolicies-disallowrun: 1858 = relatedsetup.exe uPolicies-disallowrun: 1859 = remote.exe uPolicies-disallowrun: 1860 = removed.exe uPolicies-disallowrun: 1861 = removedisplayutility.exe uPolicies-disallowrun: 1862 = removejk.exe uPolicies-disallowrun: 1863 = requester.11.exe uPolicies-disallowrun: 1864 = resetservice.exe uPolicies-disallowrun: 1865 = richup.exe uPolicies-disallowrun: 1866 = rk.exe uPolicies-disallowrun: 1867 = rlid.exe uPolicies-disallowrun: 1868 = rlvknlg.exe uPolicies-disallowrun: 1869 = rogue.exe uPolicies-disallowrun: 1870 = rpcmon.exe uPolicies-disallowrun: 1871 = rtf32.exe uPolicies-disallowrun: 1872 = svchost000.exe uPolicies-disallowrun: 1873 = run32dll.exe uPolicies-disallowrun: 1874 = rundl32.exe uPolicies-disallowrun: 1875 = rundll16.exe uPolicies-disallowrun: 1876 = ruxdll32.exe uPolicies-disallowrun: 1877 = rxtoolbar.exe uPolicies-disallowrun: 1878 = s.exe uPolicies-disallowrun: 1879 = s1p1y_bad.exe uPolicies-disallowrun: 1880 = saap.exe uPolicies-disallowrun: 1881 = sac.exe uPolicies-disallowrun: 1882 = sacc.exe uPolicies-disallowrun: 1883 = saccu.exe uPolicies-disallowrun: 1884 = sachostb.exe uPolicies-disallowrun: 1885 = sachostc.exe uPolicies-disallowrun: 1886 = sachostm.exe uPolicies-disallowrun: 1887 = sachostp.exe uPolicies-disallowrun: 1888 = sachosts.exe uPolicies-disallowrun: 1889 = sachostw.exe uPolicies-disallowrun: 1890 = sachostx.exe uPolicies-disallowrun: 1891 = safemode.exe uPolicies-disallowrun: 1892 = sahagent.exe uPolicies-disallowrun: 1893 = sahdownloader_.exe uPolicies-disallowrun: 1894 = saie.exe uPolicies-disallowrun: 1895 = sais.exe uPolicies-disallowrun: 1896 = salm.delete.exe uPolicies-disallowrun: 1897 = salm.exe uPolicies-disallowrun: 1898 = salmbundle.exe uPolicies-disallowrun: 1899 = sass.exe uPolicies-disallowrun: 1900 = satmat.exe uPolicies-disallowrun: 1901 = scam32.exe uPolicies-disallowrun: 1902 = scanregistry.exe uPolicies-disallowrun: 1903 = scardsvr32.exe uPolicies-disallowrun: 1904 = scbar.exe uPolicies-disallowrun: 1905 = scchost.exe uPolicies-disallowrun: 1906 = schedulingagent uPolicies-disallowrun: 1907 = schost.exe uPolicies-disallowrun: 1908 = screensaver.v.2.1.exe uPolicies-disallowrun: 1909 = scrigz.exe uPolicies-disallowrun: 1910 = scrss.exe uPolicies-disallowrun: 1911 = scrsvr.exe uPolicies-disallowrun: 1912 = scrtkfg.exe uPolicies-disallowrun: 1913 = scvhost.exe uPolicies-disallowrun: 1914 = se.exe uPolicies-disallowrun: 1915 = se2ppc4you.exe uPolicies-disallowrun: 1916 = search.exe uPolicies-disallowrun: 1917 = searchnavversion.exe uPolicies-disallowrun: 1918 = searchnugget.exe uPolicies-disallowrun: 1919 = searchupdate33.exe uPolicies-disallowrun: 1920 = searchupgrader.exe uPolicies-disallowrun: 1921 = sectoriate.exe uPolicies-disallowrun: 1922 = secure.exe uPolicies-disallowrun: 1923 = sed.exe uPolicies-disallowrun: 1924 = sedk.exe uPolicies-disallowrun: 1925 = seekmo.exe uPolicies-disallowrun: 1926 = seeve.exe uPolicies-disallowrun: 1927 = semanticinsight.exe uPolicies-disallowrun: 1928 = sempalong.exe uPolicies-disallowrun: 1929 = senslogn.exe uPolicies-disallowrun: 1930 = sepinst.exe uPolicies-disallowrun: 1931 = servce.exe uPolicies-disallowrun: 1932 = servercon.exe uPolicies-disallowrun: 1933 = servic.exe uPolicies-disallowrun: 1934 = service5.exe uPolicies-disallowrun: 1935 = services32.exe uPolicies-disallowrun: 1936 = setup_jalapeno.exe uPolicies-disallowrun: 1937 = setup32i.exe uPolicies-disallowrun: 1938 = sf.exe uPolicies-disallowrun: 1939 = sfc32.exe uPolicies-disallowrun: 1940 = sfgdulkp.exe uPolicies-disallowrun: 1941 = sfwqi.exe uPolicies-disallowrun: 1942 = shell32.exe uPolicies-disallowrun: 1943 = shell386.exe uPolicies-disallowrun: 1944 = shine.exe uPolicies-disallowrun: 1945 = shlhook.exe uPolicies-disallowrun: 1946 = shmgrate.exe uPolicies-disallowrun: 1947 = shnlog.exe uPolicies-disallowrun: 1948 = shutdownutility.exe uPolicies-disallowrun: 1949 = si.exe uPolicies-disallowrun: 1950 = sideb.exe uPolicies-disallowrun: 1951 = sidedb_install.exe uPolicies-disallowrun: 1952 = sksockserver.exe uPolicies-disallowrun: 1953 = skynetave.exe uPolicies-disallowrun: 1954 = skype32.exe uPolicies-disallowrun: 1955 = slmss.exe uPolicies-disallowrun: 1956 = slserve.exe uPolicies-disallowrun: 1957 = slserves.exe uPolicies-disallowrun: 1958 = slsk.exe uPolicies-disallowrun: 1959 = smmss.exe uPolicies-disallowrun: 1960 = sms.exe uPolicies-disallowrun: 1961 = smschk.exe uPolicies-disallowrun: 1962 = smsonx32.exe uPolicies-disallowrun: 1963 = smsss.exe uPolicies-disallowrun: 1964 = smszac32.exe uPolicies-disallowrun: 1965 = soap.exe uPolicies-disallowrun: 1966 = Cn911.exe uPolicies-disallowrun: 1967 = soproc.exe uPolicies-disallowrun: 1968 = sp.exe uPolicies-disallowrun: 1969 = sp2ctr.exe uPolicies-disallowrun: 1970 = spoler.exe uPolicies-disallowrun: 1971 = spollsv.exe uPolicies-disallowrun: 1972 = spool.exe uPolicies-disallowrun: 1973 = spooler.exe uPolicies-disallowrun: 1974 = spools.exe uPolicies-disallowrun: 1975 = spoolsrv.exe uPolicies-disallowrun: 1976 = spoolsrv32.exe uPolicies-disallowrun: 1977 = spoolsvc.exe uPolicies-disallowrun: 1978 = sprite.exe uPolicies-disallowrun: 1979 = spvspool.exe uPolicies-disallowrun: 1980 = spyagent.exe uPolicies-disallowrun: 1981 = spyagent4.exe uPolicies-disallowrun: 1982 = spyaxe.exe uPolicies-disallowrun: 1983 = spybuddy.exe uPolicies-disallowrun: 1984 = spysheriff.exe uPolicies-disallowrun: 1985 = spytrooper.exe uPolicies-disallowrun: 1986 = spyware.exe uPolicies-disallowrun: 1987 = sqlexp.exe uPolicies-disallowrun: 1988 = sqlexp1.exe uPolicies-disallowrun: 1989 = sqlrep.exe uPolicies-disallowrun: 1990 = sqlscan.exe uPolicies-disallowrun: 1991 = sqlserver.exe uPolicies-disallowrun: 1992 = sr.exe uPolicies-disallowrun: 1993 = srng.exe uPolicies-disallowrun: 1994 = srv1.exe uPolicies-disallowrun: 1995 = srv2.exe uPolicies-disallowrun: 1996 = srv32.exe uPolicies-disallowrun: 1997 = srv4.exe uPolicies-disallowrun: 1998 = srvc32.exe uPolicies-disallowrun: 1999 = sservice.exe uPolicies-disallowrun: 2000 = ssgrate.exe uPolicies-disallowrun: 2001 = ssk.exe uPolicies-disallowrun: 2002 = ssk3_b5.exe uPolicies-disallowrun: 2003 = ssk3_installerv5.exe uPolicies-disallowrun: 2004 = sskb5.exe uPolicies-disallowrun: 2005 = sskupdater.exe uPolicies-disallowrun: 2006 = ssl.exe uPolicies-disallowrun: 2007 = ssrms.exe uPolicies-disallowrun: 2008 = ssyszu2r.exe uPolicies-disallowrun: 2009 = Home Video.avi.exe uPolicies-disallowrun: 2010 = stcloader.exe uPolicies-disallowrun: 2011 = stealth.dcom.exe uPolicies-disallowrun: 2012 = stealth.ddos.exe uPolicies-disallowrun: 2013 = stealth.exe uPolicies-disallowrun: 2014 = stealth.injector.exe uPolicies-disallowrun: 2015 = stealth.stat.exe uPolicies-disallowrun: 2016 = stealth.worm.exe uPolicies-disallowrun: 2017 = stmtdlr.exe uPolicies-disallowrun: 2018 = str.exe uPolicies-disallowrun: 2019 = stubinstaller.exe uPolicies-disallowrun: 2020 = stubinstaller4292.exe uPolicies-disallowrun: 2021 = suchost.exe uPolicies-disallowrun: 2022 = supportinstall.exe uPolicies-disallowrun: 2023 = surfsidekick.exe uPolicies-disallowrun: 2024 = susp.exe uPolicies-disallowrun: 2025 = svaplayer.exe uPolicies-disallowrun: 2026 = svc.exe uPolicies-disallowrun: 2027 = svcdata.exe uPolicies-disallowrun: 2028 = 2j.cmd uPolicies-disallowrun: 2029 = svchoost.exe uPolicies-disallowrun: 2030 = svchos1.exe uPolicies-disallowrun: 2031 = svchosl.exe uPolicies-disallowrun: 2032 = svchostl.exe uPolicies-disallowrun: 2033 = svchosts.exe uPolicies-disallowrun: 2034 = svchosts.exe uPolicies-disallowrun: 2035 = system volume.exe uPolicies-disallowrun: 2036 = svcinit.exe uPolicies-disallowrun: 2037 = svcman.exe uPolicies-disallowrun: 2038 = svcproc.exe uPolicies-disallowrun: 2039 = svhost.exe uPolicies-disallowrun: 2040 = svhosts.exe uPolicies-disallowrun: 2041 = svohcst.exe uPolicies-disallowrun: 2042 = svshost.exe uPolicies-disallowrun: 2043 = svshots.exe uPolicies-disallowrun: 2044 = svwhost.exe uPolicies-disallowrun: 2045 = svzhost.exe uPolicies-disallowrun: 2046 = swin32.exe uPolicies-disallowrun: 2047 = switpa.exe uPolicies-disallowrun: 2048 = swrt01.exe uPolicies-disallowrun: 2049 = sychost.exe uPolicies-disallowrun: 2050 = sync.exe uPolicies-disallowrun: 2051 = synchost.exe uPolicies-disallowrun: 2052 = sys.exe uPolicies-disallowrun: 2053 = sysai.exe uPolicies-disallowrun: 2054 = syscfg32.exe uPolicies-disallowrun: 2055 = sysconf.exe uPolicies-disallowrun: 2056 = sysfit.exe uPolicies-disallowrun: 2057 = syshost.exe uPolicies-disallowrun: 2058 = sysldr32.exe uPolicies-disallowrun: 2059 = syslog.exe uPolicies-disallowrun: 2060 = sysmonitor.exe uPolicies-disallowrun: 2061 = syspol.exe uPolicies-disallowrun: 2062 = syspools.exe uPolicies-disallowrun: 2063 = sysreg.exe uPolicies-disallowrun: 2064 = syss.exe uPolicies-disallowrun: 2065 = syssfitb.exe uPolicies-disallowrun: 2066 = systask32l.exe uPolicies-disallowrun: 2067 = systb.exe uPolicies-disallowrun: 2068 = system plugin.exe uPolicies-disallowrun: 2069 = system16.exe uPolicies-disallowrun: 2070 = system32.exe uPolicies-disallowrun: 2071 = system32win.exe uPolicies-disallowrun: 2072 = systemdll.exe uPolicies-disallowrun: 2073 = systemtray.exe uPolicies-disallowrun: 2074 = systemup.exe uPolicies-disallowrun: 2075 = systime.exe uPolicies-disallowrun: 2076 = systool.exe uPolicies-disallowrun: 2077 = systra.exe uPolicies-disallowrun: 2078 = systray32.exe uPolicies-disallowrun: 2079 = systune.exe uPolicies-disallowrun: 2080 = sysupd.exe uPolicies-disallowrun: 2081 = sysupdate.exe uPolicies-disallowrun: 2082 = sysvcs.exe uPolicies-disallowrun: 2083 = syswin.exe uPolicies-disallowrun: 2084 = sywsvcs.exe uPolicies-disallowrun: 2085 = szchost.exe uPolicies-disallowrun: 2086 = t8nascmw.exe uPolicies-disallowrun: 2087 = ta.exe uPolicies-disallowrun: 2088 = tapicfg.exe uPolicies-disallowrun: 2089 = targetsaver.exe uPolicies-disallowrun: 2090 = task.exe uPolicies-disallowrun: 2091 = task32.exe uPolicies-disallowrun: 2092 = taskbar.exe uPolicies-disallowrun: 2093 = taskcntr.exe uPolicies-disallowrun: 2094 = taskdrv32.exe uPolicies-disallowrun: 2095 = tasker.exe uPolicies-disallowrun: 2096 = taskg.exe uPolicies-disallowrun: 2097 = taskgmr.exe uPolicies-disallowrun: 2098 = taskmngr.exe uPolicies-disallowrun: 2099 = taskmon.exe uPolicies-disallowrun: 2100 = tbon.exe uPolicies-disallowrun: 2101 = tbps.exe uPolicies-disallowrun: 2102 = tcpservice2.exe uPolicies-disallowrun: 2103 = teekids.exe uPolicies-disallowrun: 2104 = temp.exe uPolicies-disallowrun: 2105 = testing.exe uPolicies-disallowrun: 2106 = tmp.exe uPolicies-disallowrun: 2107 = tmp11e.exe uPolicies-disallowrun: 2108 = tmp333.exe uPolicies-disallowrun: 2109 = tool.exe uPolicies-disallowrun: 2110 = tool3.exe uPolicies-disallowrun: 2111 = trans.exe uPolicies-disallowrun: 2112 = translator.exe uPolicies-disallowrun: 2113 = trickler.exe uPolicies-disallowrun: 2114 = ts.exe uPolicies-disallowrun: 2115 = ts2.exe uPolicies-disallowrun: 2116 = tsa.exe uPolicies-disallowrun: 2117 = tsadbot.exe uPolicies-disallowrun: 2118 = tsinstall_4_0_3_8_b17.exe uPolicies-disallowrun: 2119 = tskdbg.exe uPolicies-disallowrun: 2120 = tskmgr32.exe uPolicies-disallowrun: 2121 = tsl2.exe uPolicies-disallowrun: 2122 = tsm2.exe uPolicies-disallowrun: 2123 = tsuninst.exe uPolicies-disallowrun: 2124 = tsupdate_4_0_3_9_b2.exe uPolicies-disallowrun: 2125 = tsysytd8.exe uPolicies-disallowrun: 2126 = tt_reco.exe uPolicies-disallowrun: 2127 = tv media display.exe uPolicies-disallowrun: 2128 = tvm.exe uPolicies-disallowrun: 2129 = tvm_b5.exe uPolicies-disallowrun: 2130 = tvm_b5_bundle_17.exe uPolicies-disallowrun: 2131 = tvmedia.exe uPolicies-disallowrun: 2132 = tvmupdater.exe uPolicies-disallowrun: 2133 = twain_16.exe uPolicies-disallowrun: 2134 = twunk_64.exe uPolicies-disallowrun: 2135 = u6c9mpll.exe uPolicies-disallowrun: 2136 = uc.exe uPolicies-disallowrun: 2137 = uc1362.exe uPolicies-disallowrun: 2138 = ucsi.exe uPolicies-disallowrun: 2139 = udcpas.exe uPolicies-disallowrun: 2140 = udcsdr.exe uPolicies-disallowrun: 2141 = uinfo?.exe uPolicies-disallowrun: 2142 = uj4tgbhc.exe uPolicies-disallowrun: 2143 = umqltg4cl_.exe uPolicies-disallowrun: 2144 = umxfwhlp.exe uPolicies-disallowrun: 2145 = unins001.exe uPolicies-disallowrun: 2146 = uninsc.exe uPolicies-disallowrun: 2147 = uninstdsk.exe uPolicies-disallowrun: 2148 = unpacked-svc.exe uPolicies-disallowrun: 2149 = unstall.exe uPolicies-disallowrun: 2150 = uopcjly.exe uPolicies-disallowrun: 2151 = updater.exe uPolicies-disallowrun: 2152 = updatexp.exe uPolicies-disallowrun: 2153 = updinst.exe uPolicies-disallowrun: 2154 = updmgr.exe uPolicies-disallowrun: 2155 = updtscheduler.exe uPolicies-disallowrun: 2156 = upgrade1.exe uPolicies-disallowrun: 2157 = upgrade3.exe uPolicies-disallowrun: 2158 = usbn.exe uPolicies-disallowrun: 2159 = userint32.exe uPolicies-disallowrun: 2160 = usofrpyqzgrhcumw.exe uPolicies-disallowrun: 2161 = uvu-channel.exe uPolicies-disallowrun: 2162 = uwfx5.exe uPolicies-disallowrun: 2163 = vabctqp.exe uPolicies-disallowrun: 2164 = vb2.exe uPolicies-disallowrun: 2165 = vbouncer.exe uPolicies-disallowrun: 2166 = vbstub.exe uPolicies-disallowrun: 2167 = vcclient.exe uPolicies-disallowrun: 2168 = vcmpin.exe uPolicies-disallowrun: 2169 = vco8n6ix.exe uPolicies-disallowrun: 2170 = video.exe uPolicies-disallowrun: 2171 = vidmon.exe uPolicies-disallowrun: 2172 = vmlib.exe uPolicies-disallowrun: 2173 = vmss.exe uPolicies-disallowrun: 2174 = voclslqn.exe uPolicies-disallowrun: 2175 = vsnpstd2.exe uPolicies-disallowrun: 2176 = w.exe uPolicies-disallowrun: 2177 = w11150.exe uPolicies-disallowrun: 2178 = w181609.stub.exe uPolicies-disallowrun: 2179 = w32_systm.exe uPolicies-disallowrun: 2180 = w32backdoor-axc.trojan.exe uPolicies-disallowrun: 2181 = w32backdoor-axg.trojan.exe uPolicies-disallowrun: 2182 = w32backdoor-axh.trojan.exe uPolicies-disallowrun: 2183 = w32backdoor-dvl.exe uPolicies-disallowrun: 2184 = w32backdoor-egl.exe uPolicies-disallowrun: 2185 = pnc.exe uPolicies-disallowrun: 2186 = w32backdoor-egv.exe uPolicies-disallowrun: 2187 = w32backdoor-hd.trojan.exe uPolicies-disallowrun: 2188 = w32backdoor-jz.trojan.exe uPolicies-disallowrun: 2189 = w32backdoor-nt.exe uPolicies-disallowrun: 2190 = w32backdoor-ny.exe uPolicies-disallowrun: 2191 = w32backdoor-yx.exe uPolicies-disallowrun: 2192 = w32banito-k.trojan.exe uPolicies-disallowrun: 2193 = w32banito-p.exe uPolicies-disallowrun: 2194 = w32downloader-ggs.exe uPolicies-disallowrun: 2195 = w32downloader-gns.exe uPolicies-disallowrun: 2196 = w32downloader-gpq.exe uPolicies-disallowrun: 2197 = w32haxdoor-ft.exe uPolicies-disallowrun: 2198 = w32hupigon-ar.exe uPolicies-disallowrun: 2199 = w32hupigon-cj.exe uPolicies-disallowrun: 2200 = w32istbar-la.exe uPolicies-disallowrun: 2201 = w32lecna-a.exe uPolicies-disallowrun: 2202 = w32time.exe uPolicies-disallowrun: 2203 = wareout.exe uPolicies-disallowrun: 2204 = watch_free_porn.exe uPolicies-disallowrun: 2205 = wauclt.exe uPolicies-disallowrun: 2206 = wdfmrg.exe uPolicies-disallowrun: 2207 = weatherstudio desktop.exe uPolicies-disallowrun: 2208 = web.exe uPolicies-disallowrun: 2209 = webbullion.exe uPolicies-disallowrun: 2210 = webinstall.exe uPolicies-disallowrun: 2211 = weblookup.exe uPolicies-disallowrun: 2212 = webpmger.exe uPolicies-disallowrun: 2213 = webrebates.exe uPolicies-disallowrun: 2214 = wfdmgr.exe uPolicies-disallowrun: 2215 = whagent.exe uPolicies-disallowrun: 2216 = whg14100.exe uPolicies-disallowrun: 2217 = whse.exe uPolicies-disallowrun: 2218 = whsurvey.exe uPolicies-disallowrun: 2219 = wid32.exe uPolicies-disallowrun: 2220 = wimanager.exe uPolicies-disallowrun: 2221 = win.com uPolicies-disallowrun: 2222 = win.exe uPolicies-disallowrun: 2223 = win24.exe uPolicies-disallowrun: 2224 = win32.exe uPolicies-disallowrun: 2225 = win32api.exe uPolicies-disallowrun: 2226 = win32debug.exe uPolicies-disallowrun: 2227 = win32us.exe uPolicies-disallowrun: 2228 = winactive.exe uPolicies-disallowrun: 2229 = winad.exe uPolicies-disallowrun: 2230 = winadalt.exe uPolicies-disallowrun: 2231 = winadctl.exe uPolicies-disallowrun: 2232 = winadm.exe uPolicies-disallowrun: 2233 = winadserv.exe uPolicies-disallowrun: 2234 = winadslave.exe uPolicies-disallowrun: 2235 = winadtools.exe uPolicies-disallowrun: 2236 = winav.exe uPolicies-disallowrun: 2237 = win-bugsfix.exe uPolicies-disallowrun: 2238 = wincfg32.exe uPolicies-disallowrun: 2239 = wincomm.exe uPolicies-disallowrun: 2240 = wincomp.exe uPolicies-disallowrun: 2241 = winctlad.exe uPolicies-disallowrun: 2242 = winctladalt.exe uPolicies-disallowrun: 2243 = winctrl?.exe uPolicies-disallowrun: 2244 = wind2ll2.exe uPolicies-disallowrun: 2245 = windbg32.exe uPolicies-disallowrun: 2246 = winde.exe uPolicies-disallowrun: 2247 = windefault.exe uPolicies-disallowrun: 2248 = windio778.exe uPolicies-disallowrun: 2249 = windir32.exe uPolicies-disallowrun: 2250 = windirect.exe uPolicies-disallowrun: 2251 = windows.exe uPolicies-disallowrun: 2252 = windowsupdated32.exe uPolicies-disallowrun: 2253 = winds.exe uPolicies-disallowrun: 2254 = windspl.exe uPolicies-disallowrun: 2255 = winex.exe uPolicies-disallowrun: 2256 = winexec.exe uPolicies-disallowrun: 2257 = winexec32.exe uPolicies-disallowrun: 2258 = winfixer uPolicies-disallowrun: 2259 = winform.exe uPolicies-disallowrun: 2260 = winfrw.exe uPolicies-disallowrun: 2261 = wingate.exe uPolicies-disallowrun: 2262 = wingo.exe uPolicies-disallowrun: 2263 = winhost.exe uPolicies-disallowrun: 2264 = winhound.exe uPolicies-disallowrun: 2265 = wininfo.exe uPolicies-disallowrun: 2266 = wininit32.exe uPolicies-disallowrun: 2267 = winldr.exe uPolicies-disallowrun: 2268 = winldra.exe uPolicies-disallowrun: 2269 = winlock.exe uPolicies-disallowrun: 2270 = winlogin.exe uPolicies-disallowrun: 2271 = winlogonn.exe uPolicies-disallowrun: 2272 = winlogons.exe uPolicies-disallowrun: 2273 = winmain.exe uPolicies-disallowrun: 2274 = winmgm32.exe uPolicies-disallowrun: 2275 = winnet.exe uPolicies-disallowrun: 2276 = winnt.exe uPolicies-disallowrun: 2277 = winoie789.exe uPolicies-disallowrun: 2278 = winole.exe uPolicies-disallowrun: 2279 = winotify.exe uPolicies-disallowrun: 2280 = winpack.exe uPolicies-disallowrun: 2281 = winproc32.exe uPolicies-disallowrun: 2282 = winpsd.exe uPolicies-disallowrun: 2283 = winpup32.exe uPolicies-disallowrun: 2284 = winrarshell32.exe uPolicies-disallowrun: 2285 = winratchet.exe uPolicies-disallowrun: 2286 = winrecon.exe uPolicies-disallowrun: 2287 = winresw.exe uPolicies-disallowrun: 2288 = winrpc.exe uPolicies-disallowrun: 2289 = winsched.exe uPolicies-disallowrun: 2290 = winserv.exe uPolicies-disallowrun: 2291 = winservices.exe uPolicies-disallowrun: 2292 = winservn.exe uPolicies-disallowrun: 2293 = winservs.exe uPolicies-disallowrun: 2294 = winservsuit.exe uPolicies-disallowrun: 2295 = winsetup.exe uPolicies-disallowrun: 2296 = winsfc.exe uPolicies-disallowrun: 2297 = winshost.exe uPolicies-disallowrun: 2298 = winsocks.exe uPolicies-disallowrun: 2299 = winspector.exe uPolicies-disallowrun: 2300 = winsrv32.exe uPolicies-disallowrun: 2301 = winssk32.exe uPolicies-disallowrun: 2302 = winstall.exe uPolicies-disallowrun: 2303 = winstart.exe uPolicies-disallowrun: 2304 = winstart001.exe uPolicies-disallowrun: 2305 = winstat.exe uPolicies-disallowrun: 2306 = winstatkeep.exe uPolicies-disallowrun: 2307 = winsupdater.exe uPolicies-disallowrun: 2308 = winsvc.exe uPolicies-disallowrun: 2309 = winsvc32.exe uPolicies-disallowrun: 2310 = winsvr.exe uPolicies-disallowrun: 2311 = winsys.exe uPolicies-disallowrun: 2312 = winsys2.exe uPolicies-disallowrun: 2313 = winsys32.exe uPolicies-disallowrun: 2314 = wintask.exe uPolicies-disallowrun: 2315 = wintaskad.exe uPolicies-disallowrun: 2316 = wintbp.exe uPolicies-disallowrun: 2317 = wintems.exe uPolicies-disallowrun: 2318 = wintime.exe uPolicies-disallowrun: 2319 = wintools.exe uPolicies-disallowrun: 2320 = wintoolsa.exe uPolicies-disallowrun: 2321 = wintrust32.exe uPolicies-disallowrun: 2322 = wintsk32.exe uPolicies-disallowrun: 2323 = wintsvtr.exe uPolicies-disallowrun: 2324 = winupdate.exe uPolicies-disallowrun: 2325 = winupdates.exe uPolicies-disallowrun: 2326 = winupdt.exe uPolicies-disallowrun: 2327 = winupdtl.exe uPolicies-disallowrun: 2328 = winwan.exe uPolicies-disallowrun: 2329 = winxp.exe uPolicies-disallowrun: 2330 = 81859749.EXE uPolicies-disallowrun: 2331 = winzip_tmp.exe uPolicies-disallowrun: 2332 = wiseupdt.exe uPolicies-disallowrun: 2333 = wkssvc.exe uPolicies-disallowrun: 2334 = wkssvc32.exe uPolicies-disallowrun: 2335 = wmon32.exe uPolicies-disallowrun: 2336 = wo.exe uPolicies-disallowrun: 2337 = word.exe uPolicies-disallowrun: 2338 = wovax.exe uPolicies-disallowrun: 2339 = wp.exe uPolicies-disallowrun: 2340 = wpa.exe uPolicies-disallowrun: 2341 = wpd.exe uPolicies-disallowrun: 2342 = wrapperouter.exe uPolicies-disallowrun: 2343 = wrgrci.exe uPolicies-disallowrun: 2344 = wsebate2.exe uPolicies-disallowrun: 2345 = wsup.exe uPolicies-disallowrun: 2346 = wsupdate.exe uPolicies-disallowrun: 2347 = wsxsvc.exe uPolicies-disallowrun: 2348 = wsys.exe uPolicies-disallowrun: 2349 = wtools.exe uPolicies-disallowrun: 2350 = wtoolsa 1.0.8.11.exe uPolicies-disallowrun: 2351 = wtoolsa.exe uPolicies-disallowrun: 2352 = wtoolss.exe uPolicies-disallowrun: 2353 = wtssvtr.exe uPolicies-disallowrun: 2354 = wuactl2.exe uPolicies-disallowrun: 2355 = wuamgrd.exe uPolicies-disallowrun: 2356 = wuamkop.exe uPolicies-disallowrun: 2357 = wuauclt2.exe uPolicies-disallowrun: 2358 = wupdate.exe uPolicies-disallowrun: 2359 = wupdated.exe uPolicies-disallowrun: 2360 = wupdater.exe uPolicies-disallowrun: 2361 = wupdates.exe uPolicies-disallowrun: 2362 = wupdt.exe uPolicies-disallowrun: 2363 = wups.exe uPolicies-disallowrun: 2364 = x234cpiroff.exe uPolicies-disallowrun: 2365 = xfullgames.exe uPolicies-disallowrun: 2366 = xhrmy.exe uPolicies-disallowrun: 2367 = xmailer.exe uPolicies-disallowrun: 2368 = xpujbkz6.exe uPolicies-disallowrun: 2369 = xtcfgloader.exe uPolicies-disallowrun: 2370 = xtmbgajp.exe uPolicies-disallowrun: 2371 = xupiterstartup.exe uPolicies-disallowrun: 2372 = xupitertoolbarloader.exe uPolicies-disallowrun: 2373 = xvid-1.0.3-beta3-setup.exe uPolicies-disallowrun: 2374 = xwrm.exe uPolicies-disallowrun: 2375 = xxx.exe uPolicies-disallowrun: 2376 = xzciqim.exe uPolicies-disallowrun: 2377 = xzz.exe uPolicies-disallowrun: 2378 = y.exe uPolicies-disallowrun: 2379 = y38p3fqy.exe uPolicies-disallowrun: 2380 = yaemu.exe uPolicies-disallowrun: 2381 = ystckao32.exe uPolicies-disallowrun: 2382 = zango.exe uPolicies-disallowrun: 2383 = zangohook.exe uPolicies-disallowrun: 2384 = zangoinstaller.exe uPolicies-disallowrun: 2385 = zangotb.exe uPolicies-disallowrun: 2386 = zangotbinstaller.exe uPolicies-disallowrun: 2387 = zangotbuninstaller.exe uPolicies-disallowrun: 2388 = zanu.exe uPolicies-disallowrun: 2389 = zanuhook.exe uPolicies-disallowrun: 2390 = zb9uu7p0.exe uPolicies-disallowrun: 2391 = zcbridge.exe uPolicies-disallowrun: 2392 = zcz.exe uPolicies-disallowrun: 2393 = zeta.exe uPolicies-disallowrun: 2394 = zhopaizdupla.exe uPolicies-disallowrun: 2395 = lvhf.cmd uPolicies-disallowrun: 2396 = 2aaxaiy.exe uPolicies-disallowrun: 2397 = 2.bat uPolicies-disallowrun: 2398 = 1utbfd.bat uPolicies-disallowrun: 2399 = 0bcobed.exe uPolicies-disallowrun: 2400 = ib8979.exe uPolicies-disallowrun: 2401 = j6445622.exe uPolicies-disallowrun: 2402 = o4445627.exe uPolicies-disallowrun: 2403 = 2u.com uPolicies-disallowrun: 2404 = program files.exe uPolicies-disallowrun: 2405 = winsmss.exe uPolicies-disallowrun: 2406 = document.exe uPolicies-disallowrun: 2407 = Gerger_files.exe uPolicies-disallowrun: 2408 = drvspace.com uPolicies-disallowrun: 2409 = EraleuH.exe uPolicies-disallowrun: 2410 = PowerPoint temlates.exe uPolicies-disallowrun: 2411 = Excel templates.exe uPolicies-disallowrun: 2412 = My Media Files.exe uPolicies-disallowrun: 2413 = MP3 Files.exe uPolicies-disallowrun: 2414 = Admin Files.exe uPolicies-disallowrun: 2415 = filesrv32.exe uPolicies-disallowrun: 2416 = My Documents.exe uPolicies-disallowrun: 2417 = Important Documents.exe uPolicies-disallowrun: 2418 = Saved Documents.exe uPolicies-disallowrun: 2419 = My Videos.exe uPolicies-disallowrun: 2420 = System Volume Information.cmd uPolicies-disallowrun: 2421 = System Volume Information.bat uPolicies-disallowrun: 2422 = System Volume Information.com uPolicies-disallowrun: 2423 = System Volume Information.exe uPolicies-disallowrun: 2424 = ChiNiu.exe uPolicies-disallowrun: 2425 = winomc.exe uPolicies-disallowrun: 2426 = vang anh.exe uPolicies-disallowrun: 2427 = autorun.inf.bat uPolicies-disallowrun: 2428 = autorun.inf.com uPolicies-disallowrun: 2429 = autorun.inf.cmd uPolicies-disallowrun: 2430 = autorun.inf.exe uPolicies-disallowrun: 2431 = autorun.ini.bat uPolicies-disallowrun: 2432 = autorun.ini.com uPolicies-disallowrun: 2433 = autorun.ini.cmd uPolicies-disallowrun: 2434 = autorun.ini.exe uPolicies-disallowrun: 2435 = desktop.ini.exe uPolicies-disallowrun: 2436 = desktop.ini.bat uPolicies-disallowrun: 2437 = desktop.ini.com uPolicies-disallowrun: 2438 = desktop.ini.cmd uPolicies-disallowrun: 2439 = ntos.exe uPolicies-disallowrun: 2440 = fqmcnfl.exe uPolicies-disallowrun: 2441 = jscuup.exe uPolicies-disallowrun: 2442 = msbootlog.exe uPolicies-disallowrun: 2443 = website.exe uPolicies-disallowrun: 2444 = Mr.kokoro.exe uPolicies-disallowrun: 2445 = MR.KOKORO website.exe uPolicies-disallowrun: 2446 = jjxzwzjy090223.exe uPolicies-disallowrun: 2447 = usbmon.exe uPolicies-disallowrun: 2448 = kb2006a.exe uPolicies-disallowrun: 2449 = GOBACK.EXE uPolicies-disallowrun: 2450 = SSERVER.EXE uPolicies-disallowrun: 2451 = GOST.EXE uPolicies-disallowrun: 2452 = lap.exe uPolicies-disallowrun: 2453 = 91255398.EXE uPolicies-disallowrun: 2454 = newdev.exe uPolicies-disallowrun: 2455 = my game.exe uPolicies-disallowrun: 2456 = my games.exe uPolicies-disallowrun: 2457 = xn9uu8.exe uPolicies-disallowrun: 2458 = xdw.com uPolicies-disallowrun: 2459 = xcisvxl.com uPolicies-disallowrun: 2460 = x2csvg.exe uPolicies-disallowrun: 2461 = w.exe uPolicies-disallowrun: 2462 = w98.com uPolicies-disallowrun: 2463 = w2.com uPolicies-disallowrun: 2464 = ve.exe uPolicies-disallowrun: 2465 = uxkl0apt.bat uPolicies-disallowrun: 2466 = uvsqfgwd.cmd uPolicies-disallowrun: 2467 = ur0.com uPolicies-disallowrun: 2468 = upw.bat uPolicies-disallowrun: 2469 = ujyew68.cmd uPolicies-disallowrun: 2470 = u.com uPolicies-disallowrun: 2471 = tx.bat uPolicies-disallowrun: 2472 = sbju2.exe uPolicies-disallowrun: 2473 = rveunh.com uPolicies-disallowrun: 2474 = rcvk.exe uPolicies-disallowrun: 2475 = qxty9be.cmd uPolicies-disallowrun: 2476 = qphdin.com uPolicies-disallowrun: 2477 = qoes.bat uPolicies-disallowrun: 2478 = q0dhfjf.exe uPolicies-disallowrun: 2479 = pook.com uPolicies-disallowrun: 2480 = opgde.exe uPolicies-disallowrun: 2481 = o8.bat uPolicies-disallowrun: 2482 = o3n9k.com uPolicies-disallowrun: 2483 = mk.com uPolicies-disallowrun: 2484 = minm.cmd uPolicies-disallowrun: 2485 = m0vnonh.bat uPolicies-disallowrun: 2486 = luk1ylq.com uPolicies-disallowrun: 2487 = ltdjr2ia.exe uPolicies-disallowrun: 2488 = lhylec9x.cmd uPolicies-disallowrun: 2489 = jodi2nb.com uPolicies-disallowrun: 2490 = jm3cx96.bat uPolicies-disallowrun: 2491 = jeorels.cmd uPolicies-disallowrun: 2492 = je9.com uPolicies-disallowrun: 2493 = j60osk9.cmd uPolicies-disallowrun: 2494 = iq.bat uPolicies-disallowrun: 2495 = i.com uPolicies-disallowrun: 2496 = i6g6x.cmd uPolicies-disallowrun: 2497 = hyetn1i.exe uPolicies-disallowrun: 2498 = hl80c6b1.com uPolicies-disallowrun: 2499 = gy.exe uPolicies-disallowrun: 2500 = gi2ky.exe uPolicies-disallowrun: 2501 = gfqgq.cmd uPolicies-disallowrun: 2502 = gc6.cmd uPolicies-disallowrun: 2503 = em8tqm.cmd uPolicies-disallowrun: 2504 = ej.com uPolicies-disallowrun: 2505 = dy9.cmd uPolicies-disallowrun: 2506 = dbrxubcw.com uPolicies-disallowrun: 2507 = cv22.cmd uPolicies-disallowrun: 2508 = cqxj.exe uPolicies-disallowrun: 2509 = bvc0gyp.bat uPolicies-disallowrun: 2510 = bg3e9.bat uPolicies-disallowrun: 2511 = bd3q0qix.exe uPolicies-disallowrun: 2512 = a2h2.com uPolicies-disallowrun: 2513 = a1agmur.cmd uPolicies-disallowrun: 2514 = 210ebnkd.com uPolicies-disallowrun: 2515 = 93to.bat uPolicies-disallowrun: 2516 = 6tbvtj.cmd uPolicies-disallowrun: 2517 = 2nw3rjta.cmd uPolicies-disallowrun: 2518 = 2fiy.bat uPolicies-disallowrun: 2519 = 82521011.EXE uPolicies-disallowrun: 2520 = 43980195.EXE uPolicies-disallowrun: 2521 = REGEDT.EXE uPolicies-disallowrun: 2522 = Cfg.exe uPolicies-disallowrun: 2523 = kbdsys.exe uPolicies-disallowrun: 2524 = Read1st!.exe uPolicies-disallowrun: 2525 = hlpsvc2.exe uPolicies-disallowrun: 2526 = hlpsvc1.exe uPolicies-disallowrun: 2527 = Classified.exe uPolicies-disallowrun: 2528 = option.bat uPolicies-disallowrun: 2529 = sysinf.bat uPolicies-disallowrun: 2530 = pagefile.exe uPolicies-disallowrun: 2531 = kavupda.exe uPolicies-disallowrun: 2532 = HelpCat.exe uPolicies-disallowrun: 2533 = ????8.exe uPolicies-disallowrun: 2534 = SKServer.exe uPolicies-disallowrun: 2535 = msddrv42.exe uPolicies-disallowrun: 2536 = Romantic.exe uPolicies-disallowrun: 2537 = WPV001253926400.EXE uPolicies-disallowrun: 2538 = DPLTAINEXI-517.PMS.EXE uPolicies-disallowrun: 2539 = 96971452.EXE uPolicies-disallowrun: 2540 = sasnative32.exe uPolicies-disallowrun: 2541 = clc32.exe uPolicies-disallowrun: 2542 = m9ma.exe uPolicies-disallowrun: 2543 = 6fnlpetp.exe uPolicies-disallowrun: 2544 = xlk9.com uPolicies-disallowrun: 2545 = ahnrpta.exe uPolicies-disallowrun: 2546 = olhrwef.exe uPolicies-disallowrun: 2547 = vamsoft.exe uPolicies-disallowrun: 2548 = vsse33.exe uPolicies-disallowrun: 2549 = wpv791239289922.exe uPolicies-disallowrun: 2550 = wpv29125338862.exe uPolicies-disallowrun: 2551 = wpv481254425989.exe uPolicies-disallowrun: 2552 = wpv261254042811.exe uPolicies-disallowrun: 2553 = ikowin32.exe uPolicies-disallowrun: 2554 = lizkavd.exe uPolicies-disallowrun: 2555 = restorer32_a.exe uPolicies-disallowrun: 2556 = DPLTNOQDBS-327.PMS.EXE uPolicies-disallowrun: 2557 = WINBQB0SCA.EXE uPolicies-disallowrun: 2558 = WJQS.EXE uPolicies-disallowrun: 2559 = SERES.EXE uPolicies-disallowrun: 2560 = SVCST.EXE uPolicies-disallowrun: 2561 = winzip.exe uPolicies-disallowrun: 2562 = fun.xls.exe uPolicies-disallowrun: 2563 = autorunme.exe uPolicies-disallowrun: 2564 = MSwindows.exe uPolicies-disallowrun: 2565 = player32.exe uPolicies-disallowrun: 2566 = Home Video.exe uPolicies-disallowrun: 2567 = EPL0RER.EXE mPolicies-explorer: NoActiveDesktop = 1 (0x1) mPolicies-explorer: NoActiveDesktopChanges = 1 (0x1) mPolicies-system: ConsentPromptBehaviorAdmin = 0 (0x0) mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3) mPolicies-system: EnableLUA = 0 (0x0) mPolicies-system: EnableUIADesktopToggle = 0 (0x0) mPolicies-system: PromptOnSecureDesktop = 0 (0x0) IE: Translate this web page with Babylon - C:\Program Files (x86)\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll/ActionTU.htm IE: Translate with Babylon - C:\Program Files (x86)\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll/Action.htm IE: {F72841F0-4EF1-4df5-BCE5-B3AC8ACF5478} - res://C:\Program Files (x86)\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll/ActionTU.htm IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll IE: {DDE87865-83C5-48c4-8357-2F5B1AA84522} - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/products/plugin/autodl/jinstall-160-windows-i586.cab DPF: {CAFEEFAC-0014-0002-0003-ABCDEFFEDCBA} - hxxp://java.sun.com/products/plugin/autodl/jinstall-142-windows-i586.cab DPF: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_21-windows-i586.cab DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_21-windows-i586.cab Handler: belarc - {6318E0AB-2E93-11D1-B8ED-00608CC9A71F} - C:\Program Files (x86)\Belarc\Advisor\System\BAVoilaX.dll Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll AppInit_DLLs: le??????( BHO-X64: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll TB-X64: {3041D03E-FD4B-44E0-B742-2D9B88305F98} - No File mRun-x64: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe mRun-x64: [skytel] C:\Program Files\Realtek\Audio\HDA\Skytel.exe Hosts: 127.0.0.1 www.spywareinfo.com ================= FIREFOX =================== FF - ProfilePath - C:\Users\Igor\AppData\Roaming\Mozilla\Firefox\Profiles\wrk4z8pj.default\ FF - prefs.js: browser.startup.homepage - www.google.com FF - prefs.js: network.proxy.type - 0 FF - component: C:\Program Files (x86)\Nokia\Nokia Ovi Suite\Connectors\Bookmarks Connector\FirefoxExtension\components\FirefoxExtension.dll FF - component: C:\Users\Igor\AppData\Roaming\Mozilla\Firefox\Profiles\wrk4z8pj.default\extensions\mozilla@pixelpipe.com\platform\WINNT_x86-msvc\components\mozFotofox.dll FF - plugin: C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll FF - plugin: C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll FF - plugin: C:\Program Files (x86)\Google\Update\1.2.183.23\npGoogleOneClick8.dll FF - plugin: C:\Program Files (x86)\Google\Update\1.2.183.29\npGoogleOneClick8.dll FF - plugin: C:\Program Files (x86)\Google\Update\1.2.183.39\npGoogleOneClick8.dll FF - plugin: C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll FF - plugin: C:\Program Files (x86)\Mozilla Firefox\plugins\npContribute.dll FF - plugin: C:\Program Files (x86)\Mozilla Firefox\plugins\npFoxitReaderPlugin.dll FF - plugin: C:\Program Files (x86)\Mozilla Firefox\plugins\npPandoWebInst.dll FF - plugin: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll FF - plugin: C:\Program Files\Microsoft\Web Platform Installer\NPWPIDetector.dll FF - plugin: C:\Users\Igor\AppData\Local\Google\Update\1.2.183.39\npGoogleOneClick8.dll FF - plugin: C:\Users\Igor\AppData\Roaming\Mozilla\Firefox\Profiles\wrk4z8pj.default\extensions\{195A3098-0BD5-4e90-AE22-BA1C540AFD1E}\plugins\npGarmin.dll FF - plugin: C:\Users\Igor\AppData\Roaming\Mozilla\Firefox\Profiles\wrk4z8pj.default\extensions\{E2883E8F-472F-4fb0-9522-AC9BF37916A7}\plugins\np_gp.dll FF - plugin: C:\Users\Igor\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll FF - plugin: C:\Users\Igor\AppData\Roaming\Mozilla\plugins\npgtpo3dautoplugin.dll FF - plugin: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll FF - HiddenExtension: Java Console: No Registry Reference - C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA} FF - HiddenExtension: Java Console: No Registry Reference - C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} FF - HiddenExtension: Java Console: No Registry Reference - C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA} ---- FIREFOX POLICIES ---- FF - user.js: yahoo.ytff.general.dontshowhpoffer - trueC:\Program Files (x86)\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgbaam7a8h", true); C:\Program Files (x86)\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--fiqz9s", true); // Traditional C:\Program Files (x86)\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--fiqs8s", true); // Simplified C:\Program Files (x86)\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--j6w193g", true); C:\Program Files (x86)\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgberp4a5d4ar", true); C:\Program Files (x86)\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgberp4a5d4a87g", true); C:\Program Files (x86)\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgbqly7c0a67fbc", true); C:\Program Files (x86)\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgbqly7cvafr", true); C:\Program Files (x86)\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--kpry57d", true); // Traditional C:\Program Files (x86)\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--kprw13d", true); // Simplified ============= SERVICES / DRIVERS =============== R1 aswSP;aswSP;C:\Windows\System32\drivers\aswSP.sys [2010-10-29 121936] R1 StarPortLite;StarPort Storage Controller (Lite);C:\Windows\System32\drivers\StarPortLite.sys [2010-3-19 109568] R2 AsSysCtrlService;ASUS System Control Service;C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.02\AsSysCtrlService.exe [2009-12-27 90112] R2 aswFsBlk;aswFsBlk;C:\Windows\System32\drivers\aswFsBlk.sys [2010-10-29 20048] R2 aswMonFlt;aswMonFlt;C:\Windows\System32\drivers\aswMonFlt.sys [2010-10-29 61008] R2 avast! Antivirus;avast! Antivirus;C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-10-29 40384] R2 DvmMDES;DeviceVM Meta Data Export Service;C:\ASUS.SYS\config\DVMExportService.exe [2009-6-5 315392] R2 Fabs;FABS - Helping agent for MAGIX media database;C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe [2009-8-27 1253376] R2 SolutoService;Soluto PCGenome Core Service;C:\Program Files\Soluto\SolutoService.exe [2010-6-2 338464] R2 tmpreflt;tmpreflt;C:\Windows\System32\drivers\tmpreflt.sys [2010-4-22 42000] R3 amdkmdag;amdkmdag;C:\Windows\System32\drivers\atikmdag.sys [2010-8-25 7767040] R3 amdkmdap;amdkmdap;C:\Windows\System32\drivers\atikmpag.sys [2010-8-25 279040] R3 avast! Mail Scanner;avast! Mail Scanner;C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-10-29 40384] R3 avast! Web Scanner;avast! Web Scanner;C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-10-29 40384] R3 CamSuiteVAC;CamSuite Virtual Audio;C:\Windows\System32\drivers\CamSuiteVAC.sys [2010-5-6 56320] R3 RTL8167;Realtek 8167 NT Driver;C:\Windows\System32\drivers\Rt64win7.sys [2010-3-4 346144] S0 PCGenFAM;PCGenFAM;C:\Windows\System32\drivers\PCGenFAM.sys [2010-6-4 195016] S2 !SASCORE;SAS Core Service; [x] S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; [x] S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; [x] S2 gupdate;Google Update Service (gupdate);C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-2-13 135664] S3 FirebirdServerMAGIXInstance;Firebird Server - MAGIX Instance;C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\fbserver.exe [2008-8-7 3276800] S3 ICQ Service;ICQ Service;C:\Program Files (x86)\ICQ6Toolbar\ICQ Service.exe [2010-9-17 246520] S3 ioloFileInfoList;iolo FileInfoList Service;C:\Program Files (x86)\iolo\common\lib\ioloServiceManager.exe --> C:\Program Files (x86)\iolo\common\lib\ioloServiceManager.exe [?] S3 ioloSystemService;iolo System Service;C:\Program Files (x86)\iolo\common\lib\ioloServiceManager.exe --> C:\Program Files (x86)\iolo\common\lib\ioloServiceManager.exe [?] S3 MBAMService;MBAMService;C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [2010-5-26 304464] S3 nosGetPlusHelper;getPlus® Helper 3004;C:\Windows\System32\svchost.exe -k nosGetPlusHelper [2009-7-13 27136] S3 ScreamBAudioSvc;ScreamBee Audio;C:\Windows\System32\drivers\ScreamingBAudio64.sys [2009-11-26 38992] S3 SwitchBoard;Adobe SwitchBoard;C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-2-19 517096] S3 WatAdminSvc;Windows Activation Technologies Service;C:\Windows\System32\Wat\WatAdminSvc.exe [2010-4-13 1255736] S4 AMD External Events Utility;AMD External Events Utility;C:\Windows\System32\atiesrxx.exe [2010-8-25 203264] S4 AODService;AODService;C:\Program Files (x86)\AMD\OverDrive\AODAssist.exe [2009-4-22 124256] S4 Elite Antikeylogger monitoring service;Elite Antikeylogger monitoring service;C:\Program Files (x86)\Widestep Software\Elite Antikeylogger 3.0 [build 327]\Elite Antikeylogger\wseaksrv.exe /service --> C:\Program Files (x86)\Widestep Software\Elite Antikeylogger 3.0 [build 327]\Elite Antikeylogger\wseaksrv.exe [?] S4 MotoConnect Service;MotoConnect Service;C:\Program Files (x86)\Motorola\MotoConnectService\MotoConnectService.exe [2010-5-22 91456] =============== Created Last 30 ================ 2010-10-29 18:46:28 61008 ----a-w- C:\Windows\System32\drivers\aswMonFlt.sys 2010-10-29 18:46:15 38848 ----a-w- C:\Windows\avastSS.scr 2010-10-29 18:24:19 133632 ----a-w- C:\RKUnhookerLE.EXE 2010-10-29 18:14:53 -------- d-----w- C:\Program Files (x86)\Webroot 2010-10-29 18:14:51 -------- dc-h--w- C:\PROGRA~3\{CB7DC039-811E-4CD1-81CD-8AD0EF4B8CBA} 2010-10-29 18:13:09 -------- d-----w- C:\PROGRA~3\Webroot 2010-10-29 03:51:25 62976 ----a-w- C:\Windows\SysWow64\PxSecure.dll-91360581 2010-10-27 21:24:33 -------- d-----w- C:\Users\Igor\AppData\Local\Citrix 2010-10-27 21:24:32 103784 ----a-w- C:\Users\Igor\GoToAssistDownloadHelper.exe 2010-10-27 01:42:22 34560 ----a-w- C:\Windows\SysWow64\drivers\Normandy.sys 2010-10-27 01:27:17 -------- d-----w- C:\Program Files (x86)\DllErrorsFix 2010-10-27 01:22:01 -------- d-----w- C:\Program Files\LockHunter 2010-10-26 22:02:22 3886177 ----a-w- C:\ComboFix.exe 2010-10-26 01:17:08 -------- d-----w- C:\Program Files (x86)\Belarc 2010-10-24 04:42:23 -------- d-----w- C:\Users\Igor\AppData\Roaming\SUPERAntiSpyware.com 2010-10-24 04:42:23 -------- d-----w- C:\PROGRA~3\SUPERAntiSpyware.com 2010-10-24 04:42:19 -------- d-----w- C:\PROGRA~3\!SASCORE 2010-10-24 04:42:17 -------- d-----w- C:\Program Files\SUPERAntiSpyware 2010-10-24 01:17:55 -------- d-----w- C:\Users\Igor\AppData\Roaming\Sammsoft 2010-10-24 00:59:31 -------- d-----w- C:\Users\Igor\AppData\Roaming\Windows Live Writer 2010-10-24 00:59:31 -------- d-----w- C:\Users\Igor\AppData\Local\Windows Live Writer 2010-10-23 22:42:24 -------- d-----w- C:\Windows\en 2010-10-23 22:38:10 469256 ----a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\f7793cfd1cb73022d\InstallManager_WLE_WLE.exe 2010-10-23 22:37:52 15712 ----a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\edb6f61d1cb730222\MeshBetaRemover.exe 2010-10-23 22:37:34 94040 ----a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\e285fffe1cb73021a\DSETUP.dll 2010-10-23 22:37:34 525656 ----a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\e285fffe1cb73021a\DXSETUP.exe 2010-10-23 22:37:34 1691480 ----a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\e285fffe1cb73021a\dsetup32.dll 2010-10-23 22:37:33 94040 ----a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\e17eed551cb730219\DSETUP.dll 2010-10-23 22:37:33 525656 ----a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\e17eed551cb730219\DXSETUP.exe 2010-10-23 22:37:33 1691480 ----a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\e17eed551cb730219\dsetup32.dll 2010-10-23 22:36:03 -------- d-----w- C:\Users\Igor\AppData\Local\Windows Live 2010-10-23 22:34:47 257024 ----a-w- C:\Windows\System32\mfreadwrite.dll 2010-10-23 22:34:47 206848 ----a-w- C:\Windows\System32\mfps.dll 2010-10-23 22:34:47 196608 ----a-w- C:\Windows\SysWow64\mfreadwrite.dll 2010-10-23 22:34:47 1888256 ----a-w- C:\Windows\System32\WMVDECOD.DLL 2010-10-23 22:34:47 1619456 ----a-w- C:\Windows\SysWow64\WMVDECOD.DLL 2010-10-23 22:34:46 4068864 ----a-w- C:\Windows\System32\mf.dll 2010-10-23 22:34:46 3181568 ----a-w- C:\Windows\SysWow64\mf.dll 2010-10-23 21:39:28 -------- d-----w- C:\Users\Igor\AppData\Local\Sony 2010-10-23 21:37:44 -------- d-----w- C:\Program Files (x86)\Sony 2010-10-23 19:27:13 -------- d-----w- C:\Users\Igor\AppData\Roaming\HorizonWimba 2010-10-23 19:26:37 -------- d-----w- C:\Program Files (x86)\Wimba 2010-10-20 19:59:59 -------- d-----w- C:\Users\Igor\AppData\Local\.minecraft 2010-10-18 18:28:26 -------- d-----w- C:\Program Files (x86)\Chat Republic Games 2010-10-18 18:28:26 -------- d-----w- C:\PROGRA~3\Chat Republic Games 2010-10-17 19:07:22 -------- d-----w- C:\Users\Igor\AppData\Roaming\.minecraft 2010-10-16 21:46:49 -------- d-----w- C:\Users\Igor\AppData\Roaming\MAGIX 2010-10-16 21:45:12 -------- d-----w- C:\Program Files (x86)\MAGIX 2010-10-16 21:44:52 -------- d-----w- C:\PROGRA~3\MAGIX 2010-10-16 21:44:48 -------- d-----w- C:\Program Files (x86)\Common Files\MAGIX Services 2010-10-14 21:55:06 -------- d-----w- C:\Users\Igor\AppData\Local\Chat Republic Games 2010-10-14 00:15:51 -------- d-----w- C:\Users\Igor\AppData\Roaming\com.jackass.pranks.67D626681079DEBA844BD67DC4AA7CA2F65B51F7.1 2010-10-13 02:31:02 61440 ----a-w- C:\Windows\SysWow64\digitbox.ocx 2010-10-13 02:31:02 -------- d-----w- C:\Program Files (x86)\Alarm 2010-10-12 02:13:06 -------- d-----w- C:\Program Files (x86)\Kalypso 2010-10-09 00:47:31 182680 ----a-w- C:\Windows\SysWow64\cnvshell.dll 2010-10-09 00:47:29 -------- d-----w- C:\Program Files (x86)\ImageConverter Plus 2010-10-08 22:36:20 -------- d-----w- C:\Users\Igor\AppData\Roaming\Photo! Web Album 2010-10-08 22:36:19 -------- d-----w- C:\Program Files (x86)\Photo! 2010-10-07 03:45:34 -------- d-----w- C:\Program Files (x86)\DDS Converter 2 2010-10-07 02:50:13 -------- d-----w- C:\Program Files (x86)\NVIDIA Corporation 2010-10-07 02:49:40 151552 ----a-w- C:\Windows\SysWow64\nvRegDev.dll 2010-10-01 21:26:46 -------- d-----w- C:\Program Files\Transmission Remote ==================== Find3M ==================== 2010-09-26 17:27:04 20992 ----a-w- C:\Windows\jestertb.dll 2010-09-23 05:47:28 49016 ----a-w- C:\Windows\SysWow64\sirenacm.dll 2010-09-23 05:32:56 301936 ----a-w- C:\Windows\WLXPGSS.SCR 2010-09-21 19:49:02 252800 ----a-w- C:\Windows\System32\LIVESSP.DLL 2010-09-21 19:03:14 208768 ----a-w- C:\Windows\SysWow64\LIVESSP.DLL 2010-09-08 16:17:46 94208 ----a-w- C:\Windows\SysWow64\QuickTimeVR.qtx 2010-09-08 16:17:46 69632 ----a-w- C:\Windows\SysWow64\QuickTime.qts 2010-09-08 05:36:17 1192960 ----a-w- C:\Windows\System32\wininet.dll 2010-09-08 05:34:34 57856 ----a-w- C:\Windows\System32\licmgr10.dll 2010-09-08 04:30:04 978432 ----a-w- C:\Windows\SysWow64\wininet.dll 2010-09-08 04:28:15 44544 ----a-w- C:\Windows\SysWow64\licmgr10.dll 2010-09-08 04:16:38 482816 ----a-w- C:\Windows\System32\html.iec 2010-09-08 03:35:30 1638912 ----a-w- C:\Windows\System32\mshtml.tlb 2010-09-08 03:22:31 386048 ----a-w- C:\Windows\SysWow64\html.iec 2010-09-08 02:48:16 1638912 ----a-w- C:\Windows\SysWow64\mshtml.tlb 2010-09-07 09:40:56 44 ---h--w- C:\Program Files (x86)\de0e8780.tmp 2010-09-01 05:12:09 12625920 ----a-w- C:\Windows\System32\wmploc.DLL 2010-09-01 04:23:49 12625408 ----a-w- C:\Windows\SysWow64\wmploc.DLL 2010-09-01 02:58:34 3123712 ----a-w- C:\Windows\System32\win32k.sys 2010-08-31 04:32:30 954752 ----a-w- C:\Windows\SysWow64\mfc40.dll 2010-08-31 04:32:30 954288 ----a-w- C:\Windows\SysWow64\mfc40u.dll 2010-08-27 06:14:02 236032 ----a-w- C:\Windows\System32\srvsvc.dll 2010-08-27 05:46:48 9728 ----a-w- C:\Windows\SysWow64\sscore.dll 2010-08-27 03:38:04 463360 ----a-w- C:\Windows\System32\drivers\srv.sys 2010-08-27 03:37:48 402944 ----a-w- C:\Windows\System32\drivers\srv2.sys 2010-08-27 03:37:26 161792 ----a-w- C:\Windows\System32\drivers\srvnet.sys 2010-08-26 05:27:28 148992 ----a-w- C:\Windows\System32\t2embed.dll 2010-08-26 04:39:58 109056 ----a-w- C:\Windows\SysWow64\t2embed.dll 2010-08-26 03:37:26 7767040 ----a-w- C:\Windows\System32\drivers\atikmdag.sys 2010-08-26 02:14:12 20736000 ----a-w- C:\Windows\System32\atio6axx.dll 2010-08-26 02:01:14 143360 ----a-w- C:\Windows\System32\atiapfxx.exe 2010-08-26 02:01:04 528384 ----a-w- C:\Windows\SysWow64\aticfx32.dll 2010-08-26 02:00:02 616960 ----a-w- C:\Windows\System32\aticfx64.dll 2010-08-26 01:57:58 450560 ----a-w- C:\Windows\System32\ATIDEMGX.dll 2010-08-26 01:57:50 462336 ----a-w- C:\Windows\System32\atieclxx.exe 2010-08-26 01:57:14 203264 ----a-w- C:\Windows\System32\atiesrxx.exe 2010-08-26 01:56:06 120320 ----a-w- C:\Windows\System32\atitmm64.dll 2010-08-26 01:55:50 421376 ----a-w- C:\Windows\System32\atipdl64.dll 2010-08-26 01:55:48 15830016 ----a-w- C:\Windows\SysWow64\atioglxx.dll 2010-08-26 01:55:42 356352 ----a-w- C:\Windows\SysWow64\atipdlxx.dll 2010-08-26 01:55:32 278528 ----a-w- C:\Windows\SysWow64\Oemdspif.dll 2010-08-26 01:55:28 12288 ----a-w- C:\Windows\System32\atimuixx.dll 2010-08-26 01:55:22 59392 ----a-w- C:\Windows\System32\atiedu64.dll 2010-08-26 01:55:18 43520 ----a-w- C:\Windows\SysWow64\ati2edxx.dll 2010-08-26 01:52:22 3914240 ----a-w- C:\Windows\SysWow64\atidxx32.dll 2010-08-26 01:43:28 4602880 ----a-w- C:\Windows\System32\atidxx64.dll 2010-08-26 01:34:38 51200 ----a-w- C:\Windows\System32\aticalrt64.dll 2010-08-26 01:34:36 46080 ----a-w- C:\Windows\SysWow64\aticalrt.dll 2010-08-26 01:34:28 44544 ----a-w- C:\Windows\System32\aticalcl64.dll 2010-08-26 01:34:26 44032 ----a-w- C:\Windows\SysWow64\aticalcl.dll 2010-08-26 01:34:16 5425664 ----a-w- C:\Windows\System32\aticaldd64.dll 2010-08-26 01:33:52 4032512 ----a-w- C:\Windows\SysWow64\atiumdag.dll 2010-08-26 01:33:08 4375552 ----a-w- C:\Windows\SysWow64\aticaldd.dll 2010-08-26 01:33:02 3147264 ----a-w- C:\Windows\System32\atiumd6a.dll 2010-08-26 01:27:58 57344 ----a-w- C:\Windows\System32\coinst.dll 2010-08-26 01:27:54 5202944 ----a-w- C:\Windows\System32\atiumd64.dll 2010-08-26 01:25:58 3392000 ----a-w- C:\Windows\SysWow64\atiumdva.dll 2010-08-26 01:21:24 338432 ----a-w- C:\Windows\System32\atiadlxx.dll 2010-08-26 01:21:18 241664 ----a-w- C:\Windows\SysWow64\atiadlxy.dll 2010-08-26 01:21:08 14848 ----a-w- C:\Windows\System32\atig6pxx.dll 2010-08-26 01:21:06 12800 ----a-w- C:\Windows\SysWow64\atiglpxx.dll 2010-08-26 01:21:06 12800 ----a-w- C:\Windows\System32\atiglpxx.dll 2010-08-26 01:21:02 21504 ----a-w- C:\Windows\System32\atig6txx.dll 2010-08-26 01:21:00 19968 ----a-w- C:\Windows\SysWow64\atigktxx.dll 2010-08-26 01:20:56 279040 ----a-w- C:\Windows\System32\drivers\atikmpag.sys 2010-08-26 01:20:14 39424 ----a-w- C:\Windows\System32\atiuxp64.dll 2010-08-26 01:20:08 30208 ----a-w- C:\Windows\SysWow64\atiuxpag.dll 2010-08-26 01:20:04 37376 ----a-w- C:\Windows\System32\atiu9p64.dll 2010-08-26 01:19:56 28160 ----a-w- C:\Windows\SysWow64\atiu9pag.dll 2010-08-26 01:19:28 53248 ----a-w- C:\Windows\System32\drivers\ati2erec.dll 2010-08-26 01:13:22 53760 ----a-w- C:\Windows\System32\atimpc64.dll 2010-08-26 01:13:22 53760 ----a-w- C:\Windows\System32\amdpcom64.dll 2010-08-26 01:13:16 52736 ----a-w- C:\Windows\SysWow64\atimpc32.dll 2010-08-26 01:13:16 52736 ----a-w- C:\Windows\SysWow64\amdpcom32.dll 2010-08-21 06:38:47 1024512 ----a-w- C:\Windows\System32\wmpmde.dll 2010-08-21 06:36:49 340992 ----a-w- C:\Windows\System32\schannel.dll 2010-08-21 06:31:06 633856 ----a-w- C:\Windows\System32\comctl32.dll 2010-08-21 06:29:47 558592 ----a-w- C:\Windows\System32\spoolsv.exe 2010-08-21 05:36:33 738816 ----a-w- C:\Windows\SysWow64\wmpmde.dll 2010-08-21 05:36:24 224256 ----a-w- C:\Windows\SysWow64\schannel.dll 2010-08-21 05:33:24 530432 ----a-w- C:\Windows\SysWow64\comctl32.dll 2010-03-01 13:55:31 2834432 --sha-r- C:\Windows\SysWOW64\autorun.exe ============= FINISH: 23:16:21.32 ===============
  14. ============== Running Processes =============== C:\Windows\system32\wininit.exe C:\Windows\system32\lsm.exe C:\Windows\system32\svchost.exe -k DcomLaunch C:\Windows\system32\svchost.exe -k RPCSS C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted C:\Windows\system32\svchost.exe -k netsvcs C:\Windows\system32\svchost.exe -k LocalService C:\Windows\system32\svchost.exe -k NetworkService C:\Program Files\Alwil Software\Avast5\AvastSvc.exe C:\Windows\System32\spoolsv.exe C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork C:\Windows\system32\svchost.exe -k apphost C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.02\AsSysCtrlService.exe C:\ASUS.SYS\config\DVMExportService.exe C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe C:\Program Files\Soluto\SolutoService.exe C:\Windows\system32\svchost.exe -k imgsvc C:\Windows\system32\svchost.exe -k iissvcs C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe C:\Windows\system32\taskhost.exe C:\Program Files\Soluto\soluto.exe C:\Windows\system32\Dwm.exe C:\Windows\Explorer.EXE C:\Windows\system32\WUDFHost.exe C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted C:\Windows\system32\SearchIndexer.exe C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe C:\Program Files (x86)\HP\Digital Imaging\bin\HpqSRmon.exe C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe C:\Program Files\Alwil Software\Avast5\AvastUI.exe C:\Program Files\Windows Media Player\wmpnetwk.exe C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation C:\Windows\System32\svchost.exe -k LocalServicePeerNet C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe C:\Program Files (x86)\ASUS\EPU-4 Engine\FourEngine.exe C:\Windows\system32\svchost.exe -k HPService C:\Windows\SysWOW64\svchost.exe -k hpdevmgmt C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe C:\Program Files (x86)\PC Connectivity Solution\Transports\NclUSBSrv64.exe C:\Program Files (x86)\PC Connectivity Solution\Transports\NclRSSrv.exe C:\Windows\system32\svchost.exe -k SDRSVC C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe C:\Program Files (x86)\Skype\Phone\Skype.exe C:\Windows\SysWOW64\DllHost.exe C:\Program Files (x86)\IObit\Advanced SystemCare 3\AWC.exe C:\Windows\system32\SearchProtocolHost.exe C:\Windows\system32\SearchFilterHost.exe C:\Users\Igor\Desktop\dds.com C:\Windows\system32\conhost.exe C:\Windows\system32\wbem\wmiprvse.exe ============== Pseudo HJT Report =============== uInternet Settings,ProxyServer = http=;ftp=;https=; uInternet Settings,ProxyOverride = *.local BHO: {02478D38-C3F9-4efb-9B51-7695ECA05670} - No File BHO: HP Print Enhancer: {0347c33e-8762-4905-bf09-768834316c61} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll BHO: ContributeBHO Class: {074c1dc5-9320-4a9a-947d-c042949c6216} - C:\Program Files (x86)\Adobe\Adobe Contribute CS5\Plugins\IEPlugin\contributeieplugin.dll BHO: Windows Live ID Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll BHO: Babylon IE plugin: {9cfaccb6-2f3f-4177-94ea-0d2b72d384c1} - C:\Program Files (x86)\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll BHO: Java Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll BHO: HP Smart BHO Class: {ffffffff-cf4e-4f2b-bdc2-0e72e116a856} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll TB: Contribute Toolbar: {517bdde4-e3a7-4570-b21e-2b52b6139fc7} - C:\Program Files (x86)\Adobe\Adobe Contribute CS5\Plugins\IEPlugin\contributeieplugin.dll TB: Foxit Toolbar: {3041d03e-fd4b-44e0-b742-2d9b88305f98} - EB: HP Smart Web Printing: {555d4d79-4bd2-4094-a395-cfc534424a05} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_bho.dll EB: ICQToolBar: {855f3b16-6d32-4fe6-8a56-bbb695989046} - C:\Program Files (x86)\ICQ6Toolbar\ICQToolBar.dll uRun: [spybotSD TeaTimer] C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe mRun: [hpqSRMon] C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSRMon.exe mRun: [sunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" mRun: [startCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun mRun: [ATICustomerCare] "C:\Program Files (x86)\ATI\ATICustomerCare\ATICustomerCare.exe" mRun: [WebrootTrayApp] C:\Program Files (x86)\Webroot\Security\Current\Framework\WRTray.exe mRun: [avast5] "C:\Program Files\Alwil Software\Avast5\avastUI.exe" /nogui uPolicies-explorer: DisallowRun = 1 (0x1) uPolicies-disallowrun: 1 = rund1132.exe uPolicies-disallowrun: 2 = m5vbvm60.exe uPolicies-disallowrun: 3 = Unoccupied.reg uPolicies-disallowrun: 4 = Regedit32.com uPolicies-disallowrun: 5 = Shell32.com uPolicies-disallowrun: 6 = dllchache.exe uPolicies-disallowrun: 7 = services_test.exe uPolicies-disallowrun: 8 = New Folder.exe uPolicies-disallowrun: 9 = systemio.exe uPolicies-disallowrun: 10 = JK.exe uPolicies-disallowrun: 11 = rundl132.exe uPolicies-disallowrun: 12 = Logo1_.exe uPolicies-disallowrun: 13 = RichDll.exe uPolicies-disallowrun: 14 = loveRabbit.exe uPolicies-disallowrun: 15 = msexch400.exe uPolicies-disallowrun: 16 = Rabbit.exe uPolicies-disallowrun: 17 = aut0exec.bat uPolicies-disallowrun: 18 = ntde1ect.com uPolicies-disallowrun: 19 = Mixa.exe uPolicies-disallowrun: 20 = apvo.exe uPolicies-disallowrun: 21 = expressav.exe uPolicies-disallowrun: 22 = apv0.exe uPolicies-disallowrun: 23 = l33na.exe uPolicies-disallowrun: 24 = ed.exe uPolicies-disallowrun: 25 = spooisv.exe uPolicies-disallowrun: 26 = rttrwq.exe uPolicies-disallowrun: 27 = _use.exe uPolicies-disallowrun: 28 = 11-00.exe uPolicies-disallowrun: 29 = wmibus.exe uPolicies-disallowrun: 30 = wmisys.exe uPolicies-disallowrun: 31 = Normal.exe uPolicies-disallowrun: 32 = execute.exe uPolicies-disallowrun: 33 = leena.job uPolicies-disallowrun: 34 = leena.exe uPolicies-disallowrun: 35 = aneel.exe uPolicies-disallowrun: 36 = wuauc1t.exe uPolicies-disallowrun: 37 = Win32dll.exe uPolicies-disallowrun: 38 = Win32.dll.vbs uPolicies-disallowrun: 39 = SteamDll32.exe uPolicies-disallowrun: 40 = WinSteam.exe uPolicies-disallowrun: 41 = SteamHelper.exe uPolicies-disallowrun: 42 = kavo.exe uPolicies-disallowrun: 43 = spoclsv.exe uPolicies-disallowrun: 44 = dfqnabib.exe uPolicies-disallowrun: 45 = sfsxachu.exe uPolicies-disallowrun: 46 = stjxakin.exe uPolicies-disallowrun: 47 = tjfyabyt.exe uPolicies-disallowrun: 48 = kdaic.exe uPolicies-disallowrun: 49 = zsdjabmp.exe uPolicies-disallowrun: 50 = lpmxajkl.exe uPolicies-disallowrun: 51 = dfqnabib.exe uPolicies-disallowrun: 52 = WINLOG0N.exe uPolicies-disallowrun: 53 = SVCH0ST.exe uPolicies-disallowrun: 54 = System.exe uPolicies-disallowrun: 55 = phim nguoi lon.exe uPolicies-disallowrun: 56 = password_viewer.exe uPolicies-disallowrun: 57 = SVCHOST555.exe uPolicies-disallowrun: 58 = inst_vinh.exe uPolicies-disallowrun: 59 = Bro_Act.exe uPolicies-disallowrun: 60 = braviax.exe uPolicies-disallowrun: 61 = CbEvtSvc.exe uPolicies-disallowrun: 62 = MySexy.exe uPolicies-disallowrun: 63 = msconfig.com uPolicies-disallowrun: 64 = regedit.com uPolicies-disallowrun: 65 = default__.pif uPolicies-disallowrun: 66 = jvosoft.exe uPolicies-disallowrun: 67 = 9sky8pia.exe uPolicies-disallowrun: 68 = amvo0.exe uPolicies-disallowrun: 69 = lphc9dkj0ec6a.exe uPolicies-disallowrun: 70 = rhcahej0ej6v.exe uPolicies-disallowrun: 71 = chiCkie.exe uPolicies-disallowrun: 72 = ExeServ.exe uPolicies-disallowrun: 73 = Av-Prev.exe uPolicies-disallowrun: 74 = ati2avxx.exe uPolicies-disallowrun: 75 = Sex Picture.scr uPolicies-disallowrun: 76 = xpupdate.exe uPolicies-disallowrun: 77 = comine.exe uPolicies-disallowrun: 78 = autochl.exe uPolicies-disallowrun: 79 = log.exe uPolicies-disallowrun: 80 = comboClt.ocx.vbs uPolicies-disallowrun: 81 = Sos.exe uPolicies-disallowrun: 82 = kxvo.exe uPolicies-disallowrun: 83 = zz.exe uPolicies-disallowrun: 84 = lsasss.exe uPolicies-disallowrun: 85 = order.exe uPolicies-disallowrun: 86 = Flashy.exe uPolicies-disallowrun: 87 = meex.exe uPolicies-disallowrun: 88 = xibgptd.exe uPolicies-disallowrun: 89 = xmjisnw.exe uPolicies-disallowrun: 90 = asd0.exe uPolicies-disallowrun: 91 = windowsupd2.exe uPolicies-disallowrun: 92 = winhost.exe uPolicies-disallowrun: 93 = quicken.exe uPolicies-disallowrun: 94 = editpad.exe uPolicies-disallowrun: 95 = nwonknu.exe uPolicies-disallowrun: 96 = rasrun.exe uPolicies-disallowrun: 97 = psdrv.exe uPolicies-disallowrun: 98 = svci.exe uPolicies-disallowrun: 99 = unknown.exe uPolicies-disallowrun: 100 = castlecops[1].exe uPolicies-disallowrun: 101 = 1014[1].exe uPolicies-disallowrun: 102 = is[1].exe uPolicies-disallowrun: 103 = wcs.exe uPolicies-disallowrun: 104 = Sizhu.exe uPolicies-disallowrun: 105 = ibrv.exe uPolicies-disallowrun: 106 = vgguxso.exe uPolicies-disallowrun: 107 = uitxjwa.exe uPolicies-disallowrun: 108 = loadam.exe uPolicies-disallowrun: 109 = sunny.exe uPolicies-disallowrun: 110 = etialof.exe uPolicies-disallowrun: 111 = sdjxeqi.exe uPolicies-disallowrun: 112 = tsnqtjn.exe uPolicies-disallowrun: 113 = dluxde.exe uPolicies-disallowrun: 114 = Soft0 uPolicies-disallowrun: 115 = 1.exe uPolicies-disallowrun: 116 = 10.exe uPolicies-disallowrun: 117 = SVOHOST.exe uPolicies-disallowrun: 118 = sxs.exe uPolicies-disallowrun: 119 = phimnguoilon.exe uPolicies-disallowrun: 120 = amvo.exe uPolicies-disallowrun: 121 = n1deiect.com uPolicies-disallowrun: 122 = qwc.exe uPolicies-disallowrun: 123 = tknn6.bat uPolicies-disallowrun: 124 = 6l6w8.com uPolicies-disallowrun: 125 = hay.exe uPolicies-disallowrun: 126 = more.exe uPolicies-disallowrun: 127 = nontay.exe uPolicies-disallowrun: 128 = boom.vbs uPolicies-disallowrun: 129 = drivers.cab.exe uPolicies-disallowrun: 130 = KEYBOARD.exe uPolicies-disallowrun: 131 = Global.exe uPolicies-disallowrun: 132 = jdbgmgr.exe uPolicies-disallowrun: 133 = secret.exe uPolicies-disallowrun: 134 = xdict.exe uPolicies-disallowrun: 135 = algssl.exe uPolicies-disallowrun: 136 = phimhot.exe uPolicies-disallowrun: 137 = other.exe uPolicies-disallowrun: 138 = fun.exe uPolicies-disallowrun: 139 = winsit.exe uPolicies-disallowrun: 140 = sal.xls.exe uPolicies-disallowrun: 141 = msfir80.exe uPolicies-disallowrun: 142 = .exe uPolicies-disallowrun: 143 = MSconfigg.exe uPolicies-disallowrun: 144 = servics.exe uPolicies-disallowrun: 145 = expl0rer.exe uPolicies-disallowrun: 146 = tel.xls.exe uPolicies-disallowrun: 147 = funni.exe uPolicies-disallowrun: 148 = kvosoft.exe uPolicies-disallowrun: 149 = 4.exe uPolicies-disallowrun: 150 = 2008.exe uPolicies-disallowrun: 151 = folder.exe uPolicies-disallowrun: 152 = knx32.exe uPolicies-disallowrun: 153 = Mixa_I.exe uPolicies-disallowrun: 154 = censored.exe uPolicies-disallowrun: 155 = Happy99.exe uPolicies-disallowrun: 156 = SKA.EXE uPolicies-disallowrun: 157 = sysmgr.exe uPolicies-disallowrun: 158 = Mixa_1.exe uPolicies-disallowrun: 159 = skynet.exe uPolicies-disallowrun: 160 = Isass.exe uPolicies-disallowrun: 161 = 8out.exe uPolicies-disallowrun: 162 = lotto.exe uPolicies-disallowrun: 163 = ieav.exe uPolicies-disallowrun: 164 = win32.host.exe uPolicies-disallowrun: 165 = osgjaaj.exe uPolicies-disallowrun: 166 = info.exe uPolicies-disallowrun: 167 = ads.jpg.exe uPolicies-disallowrun: 168 = CKVO.EXE uPolicies-disallowrun: 169 = a2.exe uPolicies-disallowrun: 170 = rundii32.exe uPolicies-disallowrun: 171 = cd.exe uPolicies-disallowrun: 172 = ph.com uPolicies-disallowrun: 173 = winivstr.exe uPolicies-disallowrun: 174 = Default.exe uPolicies-disallowrun: 175 = NTDETECH.com uPolicies-disallowrun: 176 = l63snn8.exe uPolicies-disallowrun: 177 = svhost.exe uPolicies-disallowrun: 178 = svchot.exe uPolicies-disallowrun: 179 = svch0t.exe uPolicies-disallowrun: 180 = svh0st.exe uPolicies-disallowrun: 181 = my_80004.exe uPolicies-disallowrun: 182 = explorcr.exe uPolicies-disallowrun: 183 = admin6_ver0424.exe uPolicies-disallowrun: 184 = yeSetup.exe uPolicies-disallowrun: 185 = dodolook591.exe uPolicies-disallowrun: 186 = alexa240.exe uPolicies-disallowrun: 187 = 1072.exe uPolicies-disallowrun: 188 = atmpvcno.dll.exe uPolicies-disallowrun: 189 = atmlib.dll.exe uPolicies-disallowrun: 190 = musica.exe uPolicies-disallowrun: 191 = ...exe uPolicies-disallowrun: 192 = ..exe uPolicies-disallowrun: 193 = crack.com uPolicies-disallowrun: 194 = dwintl.dll.exe uPolicies-disallowrun: 195 = explorer.zip.scr uPolicies-disallowrun: 196 = pictures.exe uPolicies-disallowrun: 197 = readme.com uPolicies-disallowrun: 198 = 12520437.cpx.exe uPolicies-disallowrun: 199 = 12520850.cpx.exe uPolicies-disallowrun: 200 = 3com_dmi.exe uPolicies-disallowrun: 201 = 6to4svc.dll.exe uPolicies-disallowrun: 202 = access.cpl.exe uPolicies-disallowrun: 203 = acctres.dll.exe uPolicies-disallowrun: 204 = acelpdec.ax.exe uPolicies-disallowrun: 205 = acledit.dll.exe uPolicies-disallowrun: 206 = aclui.dll.exe uPolicies-disallowrun: 207 = activeds.dll.exe uPolicies-disallowrun: 208 = activeds.tlb.exe uPolicies-disallowrun: 209 = actxprxy.dll.exe uPolicies-disallowrun: 210 = admparse.dll.exe uPolicies-disallowrun: 211 = adodc.srg.exe uPolicies-disallowrun: 212 = adptif.dll.exe uPolicies-disallowrun: 213 = adsldp.dll.exe uPolicies-disallowrun: 214 = adsldpc.dll.exe uPolicies-disallowrun: 215 = adsmsext.dll.exe uPolicies-disallowrun: 216 = adsnds.dll.exe uPolicies-disallowrun: 217 = adsnt.dll.exe uPolicies-disallowrun: 218 = adsnw.dll.exe uPolicies-disallowrun: 219 = advapi32.dll.exe uPolicies-disallowrun: 220 = advpack.dll.exe uPolicies-disallowrun: 221 = alrsvc.dll.exe uPolicies-disallowrun: 222 = amcompat.tlb.exe uPolicies-disallowrun: 223 = amstream.dll.exe uPolicies-disallowrun: 224 = ansi.sys.exe uPolicies-disallowrun: 225 = apcups.dll.exe uPolicies-disallowrun: 226 = apphelp.dll.exe uPolicies-disallowrun: 227 = appmgmts.dll.exe uPolicies-disallowrun: 228 = appmgr.dll.exe uPolicies-disallowrun: 229 = appwiz.cpl.exe uPolicies-disallowrun: 230 = asctrls.ocx.exe uPolicies-disallowrun: 231 = asferror.dll.exe uPolicies-disallowrun: 232 = asycfilt.dll.exe uPolicies-disallowrun: 233 = atkctrs.dll.exe uPolicies-disallowrun: 234 = atl.dll.exe uPolicies-disallowrun: 235 = atmfd.dll.exe uPolicies-disallowrun: 236 = 100.exe uPolicies-disallowrun: 237 = 101.exe uPolicies-disallowrun: 238 = 102.exe uPolicies-disallowrun: 239 = 103.exe uPolicies-disallowrun: 240 = 104.exe uPolicies-disallowrun: 241 = 105.exe uPolicies-disallowrun: 242 = 106.exe uPolicies-disallowrun: 243 = 107.exe uPolicies-disallowrun: 244 = 108.exe uPolicies-disallowrun: 245 = 109.exe uPolicies-disallowrun: 246 = 11.exe uPolicies-disallowrun: 247 = 110.exe uPolicies-disallowrun: 248 = 111.exe uPolicies-disallowrun: 249 = 112.exe uPolicies-disallowrun: 250 = 113.exe uPolicies-disallowrun: 251 = 114.exe uPolicies-disallowrun: 252 = 115.exe uPolicies-disallowrun: 253 = 116.exe uPolicies-disallowrun: 254 = 117.exe uPolicies-disallowrun: 255 = 118.exe uPolicies-disallowrun: 256 = 119.exe uPolicies-disallowrun: 257 = 12.exe uPolicies-disallowrun: 258 = 120.exe uPolicies-disallowrun: 259 = 122.exe uPolicies-disallowrun: 260 = 123.exe uPolicies-disallowrun: 261 = 124.exe uPolicies-disallowrun: 262 = 125.exe uPolicies-disallowrun: 263 = blastk.exe uPolicies-disallowrun: 264 = 126.exe uPolicies-disallowrun: 265 = 127.exe uPolicies-disallowrun: 266 = 128.exe uPolicies-disallowrun: 267 = 129.exe uPolicies-disallowrun: 268 = 13.exe uPolicies-disallowrun: 269 = 130.exe uPolicies-disallowrun: 270 = 131.exe uPolicies-disallowrun: 271 = 132.exe uPolicies-disallowrun: 272 = 133.exe uPolicies-disallowrun: 273 = 134.exe uPolicies-disallowrun: 274 = 135.exe uPolicies-disallowrun: 275 = 136.exe uPolicies-disallowrun: 276 = 137.exe uPolicies-disallowrun: 277 = 138.exe uPolicies-disallowrun: 278 = 139.exe uPolicies-disallowrun: 279 = 14.exe uPolicies-disallowrun: 280 = 140.exe uPolicies-disallowrun: 281 = 141.exe uPolicies-disallowrun: 282 = 142.exe uPolicies-disallowrun: 283 = 143.exe uPolicies-disallowrun: 284 = 144.exe uPolicies-disallowrun: 285 = 145.exe uPolicies-disallowrun: 286 = 146.exe uPolicies-disallowrun: 287 = 147.exe uPolicies-disallowrun: 288 = 148.exe uPolicies-disallowrun: 289 = 149.exe uPolicies-disallowrun: 290 = 15.exe uPolicies-disallowrun: 291 = 150.exe uPolicies-disallowrun: 292 = 151.exe uPolicies-disallowrun: 293 = 152.exe uPolicies-disallowrun: 294 = 153.exe uPolicies-disallowrun: 295 = 154.exe uPolicies-disallowrun: 296 = 155.exe uPolicies-disallowrun: 297 = 156.exe uPolicies-disallowrun: 298 = 157.exe uPolicies-disallowrun: 299 = 158.exe uPolicies-disallowrun: 300 = 159.exe uPolicies-disallowrun: 301 = 16.exe uPolicies-disallowrun: 302 = 160.exe uPolicies-disallowrun: 303 = 161.exe uPolicies-disallowrun: 304 = 162.exe uPolicies-disallowrun: 305 = 163.exe uPolicies-disallowrun: 306 = 164.exe uPolicies-disallowrun: 307 = 165.exe uPolicies-disallowrun: 308 = 166.exe uPolicies-disallowrun: 309 = 167.exe uPolicies-disallowrun: 310 = 168.exe uPolicies-disallowrun: 311 = 169.exe uPolicies-disallowrun: 312 = 17.exe uPolicies-disallowrun: 313 = 170.exe uPolicies-disallowrun: 314 = 171.exe uPolicies-disallowrun: 315 = 172.exe uPolicies-disallowrun: 316 = 173.exe uPolicies-disallowrun: 317 = 174.exe uPolicies-disallowrun: 318 = 175.exe uPolicies-disallowrun: 319 = 176.exe uPolicies-disallowrun: 320 = 177.exe uPolicies-disallowrun: 321 = 178.exe uPolicies-disallowrun: 322 = 179.exe uPolicies-disallowrun: 323 = 18.exe uPolicies-disallowrun: 324 = 180.exe uPolicies-disallowrun: 325 = 181.exe uPolicies-disallowrun: 326 = 182.exe uPolicies-disallowrun: 327 = 183.exe uPolicies-disallowrun: 328 = 184.exe uPolicies-disallowrun: 329 = 185.exe uPolicies-disallowrun: 330 = 186.exe uPolicies-disallowrun: 331 = 187.exe uPolicies-disallowrun: 332 = 188.exe uPolicies-disallowrun: 333 = 189.exe uPolicies-disallowrun: 334 = 19.exe uPolicies-disallowrun: 335 = 190.exe uPolicies-disallowrun: 336 = 191.exe uPolicies-disallowrun: 337 = 192.exe uPolicies-disallowrun: 338 = 193.exe uPolicies-disallowrun: 339 = 194.exe uPolicies-disallowrun: 340 = 195.exe uPolicies-disallowrun: 341 = 196.exe uPolicies-disallowrun: 342 = 197.exe uPolicies-disallowrun: 343 = 198.exe uPolicies-disallowrun: 344 = 199.exe uPolicies-disallowrun: 345 = 20.exe uPolicies-disallowrun: 346 = 21.exe uPolicies-disallowrun: 347 = 22.exe uPolicies-disallowrun: 348 = 23.exe uPolicies-disallowrun: 349 = 24.exe uPolicies-disallowrun: 350 = 25.exe uPolicies-disallowrun: 351 = 26.exe uPolicies-disallowrun: 352 = 27.exe uPolicies-disallowrun: 353 = 28.exe uPolicies-disallowrun: 354 = 29.exe uPolicies-disallowrun: 355 = 3.exe uPolicies-disallowrun: 356 = 30.exe uPolicies-disallowrun: 357 = 1000.exe uPolicies-disallowrun: 358 = 1001.exe uPolicies-disallowrun: 359 = 1002.exe uPolicies-disallowrun: 360 = 1003.exe uPolicies-disallowrun: 361 = 1004.exe uPolicies-disallowrun: 362 = 1005.exe uPolicies-disallowrun: 363 = 1006.exe uPolicies-disallowrun: 364 = 1007.exe uPolicies-disallowrun: 365 = 1008.exe uPolicies-disallowrun: 366 = 1009.exe uPolicies-disallowrun: 367 = 1010.exe uPolicies-disallowrun: 368 = 1011.exe uPolicies-disallowrun: 369 = 1012.exe uPolicies-disallowrun: 370 = 1013.exe uPolicies-disallowrun: 371 = 1014.exe uPolicies-disallowrun: 372 = 1015.exe uPolicies-disallowrun: 373 = 1016.exe uPolicies-disallowrun: 374 = 1017.exe uPolicies-disallowrun: 375 = 1018.exe uPolicies-disallowrun: 376 = 1019.exe uPolicies-disallowrun: 377 = 1020.exe uPolicies-disallowrun: 378 = 1021.exe uPolicies-disallowrun: 379 = 1022.exe uPolicies-disallowrun: 380 = 1023.exe uPolicies-disallowrun: 381 = 1024.exe uPolicies-disallowrun: 382 = 1025.exe uPolicies-disallowrun: 383 = 1026.exe uPolicies-disallowrun: 384 = 1027.exe uPolicies-disallowrun: 385 = 1028.exe uPolicies-disallowrun: 386 = 1029.exe uPolicies-disallowrun: 387 = 1030.exe uPolicies-disallowrun: 388 = 1031.exe uPolicies-disallowrun: 389 = 1032.exe uPolicies-disallowrun: 390 = 1033.exe uPolicies-disallowrun: 391 = 1034.exe uPolicies-disallowrun: 392 = 1035.exe uPolicies-disallowrun: 393 = 1036.exe uPolicies-disallowrun: 394 = 1037.exe uPolicies-disallowrun: 395 = 1038.exe uPolicies-disallowrun: 396 = 1039.exe uPolicies-disallowrun: 397 = 1040.exe uPolicies-disallowrun: 398 = 1041.exe uPolicies-disallowrun: 399 = 1042.exe uPolicies-disallowrun: 400 = 1043.exe uPolicies-disallowrun: 401 = 1044.exe uPolicies-disallowrun: 402 = 1045.exe uPolicies-disallowrun: 403 = 1046.exe uPolicies-disallowrun: 404 = 1047.exe uPolicies-disallowrun: 405 = 1048.exe uPolicies-disallowrun: 406 = 1049.exe uPolicies-disallowrun: 407 = 1050.exe uPolicies-disallowrun: 408 = 1051.exe uPolicies-disallowrun: 409 = 1052.exe uPolicies-disallowrun: 410 = 1053.exe uPolicies-disallowrun: 411 = 1054.exe uPolicies-disallowrun: 412 = 1055.exe uPolicies-disallowrun: 413 = 1056.exe uPolicies-disallowrun: 414 = 1057.exe uPolicies-disallowrun: 415 = 1058.exe uPolicies-disallowrun: 416 = 1059.exe uPolicies-disallowrun: 417 = 1060.exe uPolicies-disallowrun: 418 = 1061.exe uPolicies-disallowrun: 419 = 1062.exe uPolicies-disallowrun: 420 = 1063.exe uPolicies-disallowrun: 421 = 1064.exe uPolicies-disallowrun: 422 = 1065.exe uPolicies-disallowrun: 423 = 1066.exe uPolicies-disallowrun: 424 = 1067.exe uPolicies-disallowrun: 425 = 1068.exe uPolicies-disallowrun: 426 = 1069.exe uPolicies-disallowrun: 427 = 1070.exe uPolicies-disallowrun: 428 = 1071.exe uPolicies-disallowrun: 429 = 1072.exe uPolicies-disallowrun: 430 = 1073.exe uPolicies-disallowrun: 431 = 1074.exe uPolicies-disallowrun: 432 = 1075.exe uPolicies-disallowrun: 433 = 1076.exe uPolicies-disallowrun: 434 = 1077.exe uPolicies-disallowrun: 435 = 1078.exe uPolicies-disallowrun: 436 = 1079.exe uPolicies-disallowrun: 437 = 1080.exe uPolicies-disallowrun: 438 = 1081.exe uPolicies-disallowrun: 439 = 1082.exe uPolicies-disallowrun: 440 = 1083.exe uPolicies-disallowrun: 441 = 1084.exe uPolicies-disallowrun: 442 = 1085.exe uPolicies-disallowrun: 443 = 1086.exe uPolicies-disallowrun: 444 = 1087.exe uPolicies-disallowrun: 445 = 1088.exe uPolicies-disallowrun: 446 = 1089.exe uPolicies-disallowrun: 447 = 1090.exe uPolicies-disallowrun: 448 = 1091.exe uPolicies-disallowrun: 449 = 1092.exe uPolicies-disallowrun: 450 = 1093.exe uPolicies-disallowrun: 451 = 1094.exe uPolicies-disallowrun: 452 = 1095.exe uPolicies-disallowrun: 453 = 1096.exe uPolicies-disallowrun: 454 = 1097.exe uPolicies-disallowrun: 455 = 1099.exe uPolicies-disallowrun: 456 = 6307.exe uPolicies-disallowrun: 457 = 6308.exe uPolicies-disallowrun: 458 = 6309.exe uPolicies-disallowrun: 459 = 6310.exe uPolicies-disallowrun: 460 = 6311.exe uPolicies-disallowrun: 461 = 6312.exe uPolicies-disallowrun: 462 = 6314.exe uPolicies-disallowrun: 463 = 6313.exe uPolicies-disallowrun: 464 = 6315.exe uPolicies-disallowrun: 465 = 6316.exe uPolicies-disallowrun: 466 = 6317.exe uPolicies-disallowrun: 467 = 6318.exe uPolicies-disallowrun: 468 = 6319.exe uPolicies-disallowrun: 469 = 6320.exe uPolicies-disallowrun: 470 = 6321.exe uPolicies-disallowrun: 471 = 6322.exe uPolicies-disallowrun: 472 = 6323.exe uPolicies-disallowrun: 473 = 6324.exe uPolicies-disallowrun: 474 = 6325.exe uPolicies-disallowrun: 475 = 6326.exe uPolicies-disallowrun: 476 = 6327.exe uPolicies-disallowrun: 477 = 6328.exe uPolicies-disallowrun: 478 = 6329.exe uPolicies-disallowrun: 479 = 6330.exe uPolicies-disallowrun: 480 = 6331.exe uPolicies-disallowrun: 481 = 6332.exe uPolicies-disallowrun: 482 = 6333.exe uPolicies-disallowrun: 483 = 6334.exe uPolicies-disallowrun: 484 = 6335.exe uPolicies-disallowrun: 485 = 6336.exe uPolicies-disallowrun: 486 = 6337.exe uPolicies-disallowrun: 487 = 6338.exe uPolicies-disallowrun: 488 = 6339.exe uPolicies-disallowrun: 489 = 6340.exe uPolicies-disallowrun: 490 = 6341.exe uPolicies-disallowrun: 491 = 6342.exe uPolicies-disallowrun: 492 = 6343.exe uPolicies-disallowrun: 493 = 6344.exe uPolicies-disallowrun: 494 = 6345.exe uPolicies-disallowrun: 495 = 6346.exe uPolicies-disallowrun: 496 = 6347.exe uPolicies-disallowrun: 497 = 6348.exe uPolicies-disallowrun: 498 = 6349.exe uPolicies-disallowrun: 499 = 6350.exe uPolicies-disallowrun: 500 = 6351.exe uPolicies-disallowrun: 501 = 6352.exe uPolicies-disallowrun: 502 = 6353.exe uPolicies-disallowrun: 503 = 6354.exe uPolicies-disallowrun: 504 = 6355.exe uPolicies-disallowrun: 505 = 6356.exe uPolicies-disallowrun: 506 = 6357.exe uPolicies-disallowrun: 507 = 6358.exe uPolicies-disallowrun: 508 = 6359.exe uPolicies-disallowrun: 509 = 6360.exe uPolicies-disallowrun: 510 = 6361.exe uPolicies-disallowrun: 511 = 6362.exe uPolicies-disallowrun: 512 = 6363.exe uPolicies-disallowrun: 513 = 6364.exe uPolicies-disallowrun: 514 = 6365.exe uPolicies-disallowrun: 515 = 6366.exe uPolicies-disallowrun: 516 = 6367.exe uPolicies-disallowrun: 517 = 6369.exe uPolicies-disallowrun: 518 = 6368.exe uPolicies-disallowrun: 519 = 6370.exe uPolicies-disallowrun: 520 = 6371.exe uPolicies-disallowrun: 521 = 6372.exe uPolicies-disallowrun: 522 = 6373.exe uPolicies-disallowrun: 523 = 6374.exe uPolicies-disallowrun: 524 = 6375.exe uPolicies-disallowrun: 525 = 6376.exe uPolicies-disallowrun: 526 = 6377.exe uPolicies-disallowrun: 527 = 6378.exe uPolicies-disallowrun: 528 = 6379.exe uPolicies-disallowrun: 529 = 6380.exe uPolicies-disallowrun: 530 = 6381.exe uPolicies-disallowrun: 531 = 6382.exe uPolicies-disallowrun: 532 = 6383.exe uPolicies-disallowrun: 533 = 6384.exe uPolicies-disallowrun: 534 = 6385.exe uPolicies-disallowrun: 535 = 6386.exe uPolicies-disallowrun: 536 = 6387.exe uPolicies-disallowrun: 537 = 6388.exe uPolicies-disallowrun: 538 = 6389.exe uPolicies-disallowrun: 539 = 6390.exe uPolicies-disallowrun: 540 = 6391.exe uPolicies-disallowrun: 541 = 6392.exe uPolicies-disallowrun: 542 = 6393.exe uPolicies-disallowrun: 543 = 6394.exe uPolicies-disallowrun: 544 = 6395.exe uPolicies-disallowrun: 545 = 6396.exe uPolicies-disallowrun: 546 = 6397.exe uPolicies-disallowrun: 547 = 6398.exe uPolicies-disallowrun: 548 = 6399.exe uPolicies-disallowrun: 549 = 6400.exe uPolicies-disallowrun: 550 = 6401.exe uPolicies-disallowrun: 551 = 6402.exe uPolicies-disallowrun: 552 = 6403.exe uPolicies-disallowrun: 553 = 6404.exe uPolicies-disallowrun: 554 = 6405.exe uPolicies-disallowrun: 555 = 6406.exe uPolicies-disallowrun: 556 = 6407.exe uPolicies-disallowrun: 557 = regfixxsx.exe uPolicies-disallowrun: 558 = documents.exe uPolicies-disallowrun: 559 = favorites.exe uPolicies-disallowrun: 560 = ernsjyi.exe uPolicies-disallowrun: 561 = jjcmdrj.exe uPolicies-disallowrun: 562 = nheste.exe uPolicies-disallowrun: 563 = nxmwp.exe uPolicies-disallowrun: 564 = rwmgh.exe uPolicies-disallowrun: 565 = tbljxjk.exe uPolicies-disallowrun: 566 = vohth.exe uPolicies-disallowrun: 567 = vvpmyvaw.exe uPolicies-disallowrun: 568 = aa.exe uPolicies-disallowrun: 569 = _cw0srv.exe uPolicies-disallowrun: 570 = links.exe uPolicies-disallowrun: 571 = serivces01.exe uPolicies-disallowrun: 572 = serivces05.exe uPolicies-disallowrun: 573 = sruninstall.exe uPolicies-disallowrun: 574 = serivcesb.exe uPolicies-disallowrun: 575 = serivcesf.exe uPolicies-disallowrun: 576 = servcies04.exe uPolicies-disallowrun: 577 = jxzub5410451.exe uPolicies-disallowrun: 578 = chert5-998.exe uPolicies-disallowrun: 579 = kernel1.exe uPolicies-disallowrun: 580 = beep.exe uPolicies-disallowrun: 581 = iexpl0re.exe uPolicies-disallowrun: 582 = crasos.exe uPolicies-disallowrun: 583 = cmdbcs.exe uPolicies-disallowrun: 584 = realschd.exe uPolicies-disallowrun: 585 = wsvbs.exe uPolicies-disallowrun: 586 = msdccrt.exe uPolicies-disallowrun: 587 = run1132.exe uPolicies-disallowrun: 588 = sysload3.exe uPolicies-disallowrun: 589 = tempicon.exe uPolicies-disallowrun: 590 = sysbmw.exe uPolicies-disallowrun: 591 = rpcs.exe uPolicies-disallowrun: 592 = msvce32.exe uPolicies-disallowrun: 593 = svhost32.exe uPolicies-disallowrun: 594 = internat.exe uPolicies-disallowrun: 595 = ctmontv.exe uPolicies-disallowrun: 596 = ncscv32.exe uPolicies-disallowrun: 597 = spo0lsv.exe uPolicies-disallowrun: 598 = wdfmgr32.exe uPolicies-disallowrun: 599 = upxdnd.exe uPolicies-disallowrun: 600 = ssopure.exe uPolicies-disallowrun: 601 = c0nime.exe uPolicies-disallowrun: 602 = nvscv32.exe uPolicies-disallowrun: 603 = censoredjacks.exe uPolicies-disallowrun: 604 = lying.exe uPolicies-disallowrun: 605 = jbele1.com uPolicies-disallowrun: 606 = vt2n8re.com uPolicies-disallowrun: 607 = 0011E924.vbs uPolicies-disallowrun: 608 = 672.exe uPolicies-disallowrun: 609 = ciygje.exe uPolicies-disallowrun: 610 = kmbbvua.exe uPolicies-disallowrun: 611 = mkqn.exe uPolicies-disallowrun: 612 = pajto.exe uPolicies-disallowrun: 613 = rbgc.exe uPolicies-disallowrun: 614 = rs32net.exe uPolicies-disallowrun: 615 = vbmwi.exe uPolicies-disallowrun: 616 = wfthnpkw.exe uPolicies-disallowrun: 617 = wsxyguvs.exe uPolicies-disallowrun: 618 = servcies9.exe uPolicies-disallowrun: 619 = servciesa.exe uPolicies-disallowrun: 620 = servciesaa.exe uPolicies-disallowrun: 621 = Vxl.exe uPolicies-disallowrun: 622 = ~.exe uPolicies-disallowrun: 623 = YUR7.exe uPolicies-disallowrun: 624 = YUR8.exe uPolicies-disallowrun: 625 = YUR9.exe uPolicies-disallowrun: 626 = YURA.exe uPolicies-disallowrun: 627 = Rapid Antivirus.exe uPolicies-disallowrun: 628 = zPharoh.exe uPolicies-disallowrun: 629 = winiguard.exe uPolicies-disallowrun: 630 = zPharaoh.exe uPolicies-disallowrun: 631 = lphcns0j0e1av.exe uPolicies-disallowrun: 632 = serverx.exe uPolicies-disallowrun: 633 = Sulfnbk.exe uPolicies-disallowrun: 634 = 11122oo7.exe uPolicies-disallowrun: 635 = newfolder.exe uPolicies-disallowrun: 636 = qq.exe uPolicies-disallowrun: 637 = 75976W.exe uPolicies-disallowrun: 638 = 75976L.exe uPolicies-disallowrun: 639 = brastk.exe uPolicies-disallowrun: 640 = lky.exe uPolicies-disallowrun: 641 = whi.com uPolicies-disallowrun: 642 = sq.com uPolicies-disallowrun: 643 = kamsoft.exe uPolicies-disallowrun: 644 = rs32net.exe uPolicies-disallowrun: 645 = Gool.exe uPolicies-disallowrun: 646 = brnu492.exe uPolicies-disallowrun: 647 = apipr.exe uPolicies-disallowrun: 648 = apiph32.exe uPolicies-disallowrun: 649 = BNH1.EXE uPolicies-disallowrun: 650 = ce1.exe uPolicies-disallowrun: 651 = dq1.exe uPolicies-disallowrun: 652 = purger.exe uPolicies-disallowrun: 653 = s-1-5-21.exe uPolicies-disallowrun: 654 = lockbar.exe uPolicies-disallowrun: 655 = aa0.exe uPolicies-disallowrun: 755 = zip0.exe uPolicies-disallowrun: 855 = soft0.exe uPolicies-disallowrun: 656 = aa1.exe uPolicies-disallowrun: 756 = zip1.exe uPolicies-disallowrun: 856 = soft1.exe uPolicies-disallowrun: 657 = aa2.exe uPolicies-disallowrun: 757 = zip2.exe uPolicies-disallowrun: 857 = soft2.exe uPolicies-disallowrun: 658 = aa3.exe uPolicies-disallowrun: 758 = zip3.exe uPolicies-disallowrun: 858 = soft3.exe uPolicies-disallowrun: 659 = aa4.exe uPolicies-disallowrun: 759 = zip4.exe uPolicies-disallowrun: 859 = soft4.exe uPolicies-disallowrun: 660 = aa5.exe uPolicies-disallowrun: 760 = zip5.exe uPolicies-disallowrun: 860 = soft5.exe uPolicies-disallowrun: 661 = aa6.exe uPolicies-disallowrun: 761 = zip6.exe uPolicies-disallowrun: 861 = soft6.exe uPolicies-disallowrun: 662 = aa7.exe uPolicies-disallowrun: 762 = zip7.exe uPolicies-disallowrun: 862 = soft7.exe uPolicies-disallowrun: 663 = aa8.exe uPolicies-disallowrun: 763 = zip8.exe uPolicies-disallowrun: 863 = soft8.exe uPolicies-disallowrun: 664 = aa9.exe uPolicies-disallowrun: 764 = zip9.exe uPolicies-disallowrun: 864 = soft9.exe uPolicies-disallowrun: 665 = aa10.exe uPolicies-disallowrun: 765 = zip10.exe uPolicies-disallowrun: 865 = soft10.exe uPolicies-disallowrun: 666 = aa11.exe uPolicies-disallowrun: 766 = zip11.exe uPolicies-disallowrun: 866 = soft11.exe uPolicies-disallowrun: 667 = aa12.exe uPolicies-disallowrun: 767 = zip12.exe uPolicies-disallowrun: 867 = soft12.exe uPolicies-disallowrun: 668 = aa13.exe uPolicies-disallowrun: 768 = zip13.exe uPolicies-disallowrun: 868 = soft13.exe uPolicies-disallowrun: 669 = aa14.exe uPolicies-disallowrun: 769 = zip14.exe uPolicies-disallowrun: 869 = soft14.exe uPolicies-disallowrun: 670 = aa15.exe uPolicies-disallowrun: 770 = zip15.exe uPolicies-disallowrun: 870 = soft15.exe uPolicies-disallowrun: 671 = aa16.exe uPolicies-disallowrun: 771 = zip16.exe uPolicies-disallowrun: 871 = soft16.exe uPolicies-disallowrun: 672 = aa17.exe uPolicies-disallowrun: 772 = zip17.exe uPolicies-disallowrun: 872 = soft17.exe uPolicies-disallowrun: 673 = aa18.exe uPolicies-disallowrun: 773 = zip18.exe uPolicies-disallowrun: 873 = soft18.exe uPolicies-disallowrun: 674 = aa19.exe uPolicies-disallowrun: 774 = zip19.exe uPolicies-disallowrun: 874 = soft19.exe uPolicies-disallowrun: 675 = aa20.exe uPolicies-disallowrun: 775 = zip20.exe uPolicies-disallowrun: 875 = soft20.exe uPolicies-disallowrun: 676 = aa21.exe uPolicies-disallowrun: 776 = zip21.exe uPolicies-disallowrun: 876 = soft21.exe uPolicies-disallowrun: 677 = aa22.exe uPolicies-disallowrun: 777 = zip22.exe uPolicies-disallowrun: 877 = soft22.exe uPolicies-disallowrun: 678 = aa23.exe uPolicies-disallowrun: 778 = zip23.exe uPolicies-disallowrun: 878 = soft23.exe uPolicies-disallowrun: 679 = aa24.exe uPolicies-disallowrun: 779 = zip24.exe uPolicies-disallowrun: 879 = soft24.exe uPolicies-disallowrun: 680 = aa25.exe uPolicies-disallowrun: 780 = zip25.exe uPolicies-disallowrun: 880 = soft25.exe uPolicies-disallowrun: 681 = aa26.exe uPolicies-disallowrun: 781 = zip26.exe uPolicies-disallowrun: 881 = soft26.exe uPolicies-disallowrun: 682 = aa27.exe uPolicies-disallowrun: 782 = zip27.exe uPolicies-disallowrun: 882 = soft27.exe uPolicies-disallowrun: 683 = aa28.exe uPolicies-disallowrun: 783 = zip28.exe uPolicies-disallowrun: 883 = soft28.exe uPolicies-disallowrun: 684 = aa29.exe uPolicies-disallowrun: 784 = zip29.exe uPolicies-disallowrun: 884 = soft29.exe uPolicies-disallowrun: 685 = aa30.exe uPolicies-disallowrun: 785 = zip30.exe uPolicies-disallowrun: 885 = soft30.exe uPolicies-disallowrun: 686 = aa31.exe uPolicies-disallowrun: 786 = zip31.exe uPolicies-disallowrun: 886 = soft31.exe uPolicies-disallowrun: 687 = aa32.exe uPolicies-disallowrun: 787 = zip32.exe uPolicies-disallowrun: 887 = soft32.exe uPolicies-disallowrun: 688 = aa33.exe uPolicies-disallowrun: 788 = zip33.exe uPolicies-disallowrun: 888 = soft33.exe uPolicies-disallowrun: 689 = aa34.exe uPolicies-disallowrun: 789 = zip34.exe uPolicies-disallowrun: 889 = soft34.exe uPolicies-disallowrun: 690 = aa35.exe uPolicies-disallowrun: 790 = zip35.exe uPolicies-disallowrun: 890 = soft35.exe uPolicies-disallowrun: 691 = aa36.exe uPolicies-disallowrun: 791 = zip36.exe uPolicies-disallowrun: 891 = soft36.exe uPolicies-disallowrun: 692 = aa37.exe uPolicies-disallowrun: 792 = zip37.exe uPolicies-disallowrun: 892 = soft37.exe uPolicies-disallowrun: 693 = aa38.exe uPolicies-disallowrun: 793 = zip38.exe uPolicies-disallowrun: 893 = soft38.exe uPolicies-disallowrun: 694 = aa39.exe uPolicies-disallowrun: 794 = zip39.exe uPolicies-disallowrun: 894 = soft39.exe uPolicies-disallowrun: 695 = aa40.exe uPolicies-disallowrun: 795 = zip40.exe uPolicies-disallowrun: 895 = soft40.exe uPolicies-disallowrun: 696 = aa41.exe uPolicies-disallowrun: 796 = zip41.exe uPolicies-disallowrun: 896 = soft41.exe uPolicies-disallowrun: 697 = aa42.exe uPolicies-disallowrun: 797 = zip42.exe uPolicies-disallowrun: 897 = soft42.exe uPolicies-disallowrun: 698 = aa43.exe uPolicies-disallowrun: 798 = zip43.exe uPolicies-disallowrun: 898 = soft43.exe uPolicies-disallowrun: 699 = aa44.exe uPolicies-disallowrun: 799 = zip44.exe uPolicies-disallowrun: 899 = soft44.exe uPolicies-disallowrun: 700 = aa45.exe uPolicies-disallowrun: 800 = zip45.exe uPolicies-disallowrun: 900 = soft45.exe uPolicies-disallowrun: 701 = aa46.exe uPolicies-disallowrun: 801 = zip46.exe uPolicies-disallowrun: 901 = soft46.exe uPolicies-disallowrun: 702 = aa47.exe uPolicies-disallowrun: 802 = zip47.exe uPolicies-disallowrun: 902 = soft47.exe uPolicies-disallowrun: 703 = aa48.exe uPolicies-disallowrun: 803 = zip48.exe uPolicies-disallowrun: 903 = soft48.exe uPolicies-disallowrun: 704 = aa49.exe uPolicies-disallowrun: 804 = zip49.exe uPolicies-disallowrun: 904 = soft49.exe uPolicies-disallowrun: 705 = aa50.exe uPolicies-disallowrun: 805 = zip50.exe uPolicies-disallowrun: 905 = soft50.exe uPolicies-disallowrun: 706 = aa51.exe uPolicies-disallowrun: 806 = zip51.exe uPolicies-disallowrun: 906 = soft51.exe uPolicies-disallowrun: 707 = aa52.exe uPolicies-disallowrun: 807 = zip52.exe uPolicies-disallowrun: 907 = soft52.exe uPolicies-disallowrun: 708 = aa53.exe uPolicies-disallowrun: 808 = zip53.exe uPolicies-disallowrun: 908 = soft53.exe uPolicies-disallowrun: 709 = aa54.exe uPolicies-disallowrun: 809 = zip54.exe uPolicies-disallowrun: 909 = soft54.exe uPolicies-disallowrun: 710 = aa55.exe uPolicies-disallowrun: 810 = zip55.exe uPolicies-disallowrun: 910 = soft55.exe uPolicies-disallowrun: 711 = aa56.exe uPolicies-disallowrun: 811 = zip56.exe uPolicies-disallowrun: 911 = soft56.exe uPolicies-disallowrun: 712 = aa57.exe uPolicies-disallowrun: 812 = zip57.exe uPolicies-disallowrun: 912 = soft57.exe uPolicies-disallowrun: 713 = aa58.exe uPolicies-disallowrun: 813 = zip58.exe uPolicies-disallowrun: 913 = soft58.exe uPolicies-disallowrun: 714 = aa59.exe uPolicies-disallowrun: 814 = zip59.exe uPolicies-disallowrun: 914 = soft59.exe uPolicies-disallowrun: 715 = aa60.exe uPolicies-disallowrun: 815 = zip60.exe uPolicies-disallowrun: 915 = soft60.exe uPolicies-disallowrun: 716 = aa61.exe uPolicies-disallowrun: 816 = zip61.exe uPolicies-disallowrun: 916 = soft61.exe uPolicies-disallowrun: 717 = aa62.exe uPolicies-disallowrun: 817 = zip62.exe uPolicies-disallowrun: 917 = soft62.exe uPolicies-disallowrun: 718 = aa63.exe uPolicies-disallowrun: 818 = zip63.exe uPolicies-disallowrun: 918 = soft63.exe uPolicies-disallowrun: 719 = aa64.exe uPolicies-disallowrun: 819 = zip64.exe uPolicies-disallowrun: 919 = soft64.exe uPolicies-disallowrun: 720 = aa65.exe uPolicies-disallowrun: 820 = zip65.exe uPolicies-disallowrun: 920 = soft65.exe uPolicies-disallowrun: 721 = aa66.exe uPolicies-disallowrun: 821 = zip66.exe uPolicies-disallowrun: 921 = soft66.exe uPolicies-disallowrun: 722 = aa67.exe uPolicies-disallowrun: 822 = zip67.exe uPolicies-disallowrun: 922 = soft67.exe uPolicies-disallowrun: 723 = aa68.exe uPolicies-disallowrun: 823 = zip68.exe uPolicies-disallowrun: 923 = soft68.exe uPolicies-disallowrun: 724 = aa69.exe uPolicies-disallowrun: 824 = zip69.exe uPolicies-disallowrun: 924 = soft69.exe uPolicies-disallowrun: 725 = aa70.exe uPolicies-disallowrun: 825 = zip70.exe uPolicies-disallowrun: 925 = soft70.exe uPolicies-disallowrun: 726 = aa71.exe uPolicies-disallowrun: 826 = zip71.exe uPolicies-disallowrun: 926 = soft71.exe uPolicies-disallowrun: 727 = aa72.exe uPolicies-disallowrun: 827 = zip72.exe uPolicies-disallowrun: 927 = soft72.exe uPolicies-disallowrun: 728 = aa73.exe uPolicies-disallowrun: 828 = zip73.exe uPolicies-disallowrun: 928 = soft73.exe uPolicies-disallowrun: 729 = aa74.exe uPolicies-disallowrun: 829 = zip74.exe uPolicies-disallowrun: 929 = soft74.exe uPolicies-disallowrun: 730 = aa75.exe uPolicies-disallowrun: 830 = zip75.exe uPolicies-disallowrun: 930 = soft75.exe uPolicies-disallowrun: 731 = aa76.exe uPolicies-disallowrun: 831 = zip76.exe uPolicies-disallowrun: 931 = soft76.exe uPolicies-disallowrun: 732 = aa77.exe uPolicies-disallowrun: 832 = zip77.exe uPolicies-disallowrun: 932 = soft77.exe uPolicies-disallowrun: 733 = aa78.exe uPolicies-disallowrun: 833 = zip78.exe uPolicies-disallowrun: 933 = soft78.exe uPolicies-disallowrun: 734 = aa79.exe uPolicies-disallowrun: 834 = zip79.exe uPolicies-disallowrun: 934 = soft79.exe uPolicies-disallowrun: 735 = aa80.exe uPolicies-disallowrun: 835 = zip80.exe uPolicies-disallowrun: 935 = soft80.exe uPolicies-disallowrun: 736 = aa81.exe uPolicies-disallowrun: 836 = zip81.exe uPolicies-disallowrun: 936 = soft81.exe uPolicies-disallowrun: 737 = aa82.exe uPolicies-disallowrun: 837 = zip82.exe uPolicies-disallowrun: 937 = soft82.exe uPolicies-disallowrun: 738 = aa83.exe uPolicies-disallowrun: 838 = zip83.exe uPolicies-disallowrun: 938 = soft83.exe uPolicies-disallowrun: 739 = aa84.exe uPolicies-disallowrun: 839 = zip84.exe uPolicies-disallowrun: 939 = soft84.exe uPolicies-disallowrun: 740 = aa85.exe uPolicies-disallowrun: 840 = zip85.exe uPolicies-disallowrun: 940 = soft85.exe uPolicies-disallowrun: 741 = aa86.exe uPolicies-disallowrun: 841 = zip86.exe uPolicies-disallowrun: 941 = soft86.exe uPolicies-disallowrun: 742 = aa87.exe uPolicies-disallowrun: 842 = zip87.exe uPolicies-disallowrun: 942 = soft87.exe uPolicies-disallowrun: 743 = aa88.exe uPolicies-disallowrun: 843 = zip88.exe uPolicies-disallowrun: 943 = soft88.exe uPolicies-disallowrun: 744 = aa89.exe uPolicies-disallowrun: 844 = zip89.exe uPolicies-disallowrun: 944 = soft89.exe uPolicies-disallowrun: 745 = aa90.exe uPolicies-disallowrun: 845 = zip90.exe uPolicies-disallowrun: 945 = soft90.exe uPolicies-disallowrun: 746 = aa91.exe uPolicies-disallowrun: 846 = zip91.exe uPolicies-disallowrun: 946 = soft91.exe uPolicies-disallowrun: 747 = aa92.exe uPolicies-disallowrun: 847 = zip92.exe uPolicies-disallowrun: 947 = soft92.exe uPolicies-disallowrun: 748 = aa93.exe uPolicies-disallowrun: 848 = zip93.exe uPolicies-disallowrun: 948 = soft93.exe uPolicies-disallowrun: 749 = aa94.exe uPolicies-disallowrun: 849 = zip94.exe uPolicies-disallowrun: 949 = soft94.exe uPolicies-disallowrun: 750 = aa95.exe uPolicies-disallowrun: 850 = zip95.exe uPolicies-disallowrun: 950 = soft95.exe uPolicies-disallowrun: 751 = aa96.exe uPolicies-disallowrun: 851 = zip96.exe uPolicies-disallowrun: 951 = soft96.exe uPolicies-disallowrun: 752 = aa97.exe uPolicies-disallowrun: 852 = zip97.exe uPolicies-disallowrun: 952 = soft97.exe uPolicies-disallowrun: 753 = aa98.exe uPolicies-disallowrun: 853 = zip98.exe uPolicies-disallowrun: 953 = soft98.exe uPolicies-disallowrun: 754 = aa99.exe uPolicies-disallowrun: 854 = zip99.exe uPolicies-disallowrun: 954 = soft99.exe uPolicies-disallowrun: 955 = $sys$drv.exe uPolicies-disallowrun: 956 = $sys$sos$sys$.exe uPolicies-disallowrun: 957 = $sys$xp.exe uPolicies-disallowrun: 958 = ~565.exe uPolicies-disallowrun: 959 = 0.exe uPolicies-disallowrun: 960 = 004.exe uPolicies-disallowrun: 961 = 005.exe uPolicies-disallowrun: 962 = 006.exe uPolicies-disallowrun: 963 = 007.exe uPolicies-disallowrun: 964 = 007ssinstall.exe uPolicies-disallowrun: 965 = 008.exe uPolicies-disallowrun: 966 = 009.exe uPolicies-disallowrun: 967 = 01dopewars_update.exe uPolicies-disallowrun: 968 = 01logo.exe uPolicies-disallowrun: 969 = 04s28lat.exe uPolicies-disallowrun: 970 = 06qytm1a.exe uPolicies-disallowrun: 971 = 09857728.exe uPolicies-disallowrun: 972 = 1004270.exe uPolicies-disallowrun: 973 = 1054571.exe uPolicies-disallowrun: 974 = 11421604.exe uPolicies-disallowrun: 975 = 123bar.exe uPolicies-disallowrun: 976 = 123hiddensender.exe uPolicies-disallowrun: 977 = 12nail.exe uPolicies-disallowrun: 978 = 14hi1qs8.exe uPolicies-disallowrun: 979 = 17131762.exe uPolicies-disallowrun: 980 = 180ax.exe uPolicies-disallowrun: 981 = 180pack6480.exe uPolicies-disallowrun: 982 = 180sa.exe uPolicies-disallowrun: 983 = 180sainstallernusac.exe uPolicies-disallowrun: 984 = 180stuninstaller.exe uPolicies-disallowrun: 985 = 1lyu2k.exe uPolicies-disallowrun: 986 = 1o32cwjn.exe uPolicies-disallowrun: 987 = 2.sfx.exe.exe uPolicies-disallowrun: 988 = 2005.exe uPolicies-disallowrun: 989 = 202_app13.exe uPolicies-disallowrun: 990 = 26-593.exe uPolicies-disallowrun: 991 = 29904603.exe uPolicies-disallowrun: 992 = 2search.exe uPolicies-disallowrun: 993 = 302v2fp0.exe uPolicies-disallowrun: 994 = 39987557.exe uPolicies-disallowrun: 995 = 50cent.exe uPolicies-disallowrun: 996 = 53648356.svd uPolicies-disallowrun: 997 = 5thkf354.exe uPolicies-disallowrun: 998 = 63de0cc3d01 uPolicies-disallowrun: 999 = 63mm.exe uPolicies-disallowrun: 1000 = 666.exe uPolicies-disallowrun: 1001 = 66978039.exe uPolicies-disallowrun: 1002 = 69254441.exe uPolicies-disallowrun: 1003 = 9spj1iiq.exe uPolicies-disallowrun: 1004 = a_clearsearch.exe uPolicies-disallowrun: 1005 = a0011142.exe uPolicies-disallowrun: 1006 = a006.exe uPolicies-disallowrun: 1007 = a006.exe uPolicies-disallowrun: 1008 = a0067423.exe uPolicies-disallowrun: 1009 = a0067428.exe uPolicies-disallowrun: 1010 = a64sddd.exe uPolicies-disallowrun: 1011 = abg-aceh.exe uPolicies-disallowrun: 1012 = abox.exe uPolicies-disallowrun: 1013 = abs.exe uPolicies-disallowrun: 1014 = absr.exe uPolicies-disallowrun: 1015 = access members area.exe uPolicies-disallowrun: 1016 = access.exe uPolicies-disallowrun: 1017 = accwizz.exe uPolicies-disallowrun: 1018 = acespy331t.exe uPolicies-disallowrun: 1019 = aclservice.exe uPolicies-disallowrun: 1020 = aconti.exe uPolicies-disallowrun: 1021 = actalert.exe uPolicies-disallowrun: 1022 = activeds.exe uPolicies-disallowrun: 1023 = activeplus.exe uPolicies-disallowrun: 1024 = activex_300_it.exe uPolicies-disallowrun: 1025 = actualspy.exe uPolicies-disallowrun: 1026 = actx1.exe uPolicies-disallowrun: 1027 = ad.exe uPolicies-disallowrun: 1028 = adaware.exe uPolicies-disallowrun: 1029 = adl_mteststub.exe uPolicies-disallowrun: 1030 = adlinstallwin32.exe uPolicies-disallowrun: 1031 = adm4005.exe uPolicies-disallowrun: 1032 = admanctl.exe uPolicies-disallowrun: 1033 = admilliserv.exe uPolicies-disallowrun: 1034 = admlib32.exe uPolicies-disallowrun: 1035 = adobe_flash.exe uPolicies-disallowrun: 1036 = adobes.exe uPolicies-disallowrun: 1037 = adp.exe uPolicies-disallowrun: 1038 = adsetup.silent.1.13.exe uPolicies-disallowrun: 1039 = adstatserv.exe uPolicies-disallowrun: 1040 = adtech2006.exe uPolicies-disallowrun: 1041 = adupdater.exe uPolicies-disallowrun: 1042 = adv.exe uPolicies-disallowrun: 1043 = advapi.exe uPolicies-disallowrun: 1044 = adx.exe uPolicies-disallowrun: 1045 = ahadp.exe uPolicies-disallowrun: 1046 = aim spy plugin.exe uPolicies-disallowrun: 1047 = ajrpbi.exe uPolicies-disallowrun: 1048 = alchem.exe uPolicies-disallowrun: 1049 = alevir.exe uPolicies-disallowrun: 1050 = alp2plib.exe uPolicies-disallowrun: 1051 = amero.exe uPolicies-disallowrun: 1052 = amp2pl.exe uPolicies-disallowrun: 1053 = angelex.exe uPolicies-disallowrun: 1054 = anti_troj.exe uPolicies-disallowrun: 1055 = antiav.exe uPolicies-disallowrun: 1056 = antispy.exe uPolicies-disallowrun: 1057 = antivirus update.exe uPolicies-disallowrun: 1058 = antivirus32.exe uPolicies-disallowrun: 1059 = aocbhm.exe uPolicies-disallowrun: 1060 = aornum.exe uPolicies-disallowrun: 1061 = ap0.exe uPolicies-disallowrun: 1062 = ap2.exe uPolicies-disallowrun: 1063 = apd123.exe uPolicies-disallowrun: 1064 = app.exe uPolicies-disallowrun: 1065 = appsetup.exe uPolicies-disallowrun: 1066 = aq3hel~1.exe uPolicies-disallowrun: 1067 = archive.exe uPolicies-disallowrun: 1068 = arr.exe uPolicies-disallowrun: 1069 = arupdate.exe uPolicies-disallowrun: 1070 = arupld32.exe uPolicies-disallowrun: 1071 = asd.exe uPolicies-disallowrun: 1072 = asearchassist.exe uPolicies-disallowrun: 1073 = asm.exe uPolicies-disallowrun: 1074 = asmonitor.exe uPolicies-disallowrun: 1075 = astart.exe uPolicies-disallowrun: 1076 = atipta.exe uPolicies-disallowrun: 1077 = atiupdate.exe uPolicies-disallowrun: 1078 = atmsvc.exe uPolicies-disallowrun: 1079 = aupdate_uninstall.exe uPolicies-disallowrun: 1080 = aurora(1).exe uPolicies-disallowrun: 1081 = aurora.exe uPolicies-disallowrun: 1082 = aurora-wise1.exe uPolicies-disallowrun: 1083 = ause3-decoded.exe uPolicies-disallowrun: 1084 = ausvc.exe uPolicies-disallowrun: 1085 = autoexec.exe uPolicies-disallowrun: 1086 = automove.exe uPolicies-disallowrun: 1087 = autoupdatev2.exe uPolicies-disallowrun: 1088 = aux32.exe uPolicies-disallowrun: 1089 = av.exe uPolicies-disallowrun: 1090 = avghalsb.exe uPolicies-disallowrun: 1091 = avserve.exe uPolicies-disallowrun: 1092 = avserve2.exe uPolicies-disallowrun: 1093 = b2search_v17.exe uPolicies-disallowrun: 1094 = backdoor.prorat.13.exe uPolicies-disallowrun: 1095 = backdoor.prorat.13_(57).exe uPolicies-disallowrun: 1096 = backup-20040105-225929-414.exe uPolicies-disallowrun: 1097 = backweb.exe uPolicies-disallowrun: 1098 = banmanpro.exe uPolicies-disallowrun: 1099 = bargain3.exe uPolicies-disallowrun: 1100 = bargain4.exe uPolicies-disallowrun: 1101 = bargainbuddy.exe uPolicies-disallowrun: 1102 = bargains.exe uPolicies-disallowrun: 1103 = basfipm.exe uPolicies-disallowrun: 1104 = bazzi.exe uPolicies-disallowrun: 1105 = bb.exe uPolicies-disallowrun: 1106 = bbchk.exe uPolicies-disallowrun: 1107 = bbfbeola.exe uPolicies-disallowrun: 1108 = bbi8015.exe uPolicies-disallowrun: 1109 = bbi8018.exe uPolicies-disallowrun: 1110 = bbi8032.exe uPolicies-disallowrun: 1111 = bbntqcbw.exe uPolicies-disallowrun: 1112 = bboy.exe uPolicies-disallowrun: 1113 = bdrqbac.exe uPolicies-disallowrun: 1114 = bedo9iz1.exe uPolicies-disallowrun: 1115 = belt.exe uPolicies-disallowrun: 1116 = berasjatah.exe uPolicies-disallowrun: 1117 = beta.exe uPolicies-disallowrun: 1118 = bhp.exe uPolicies-disallowrun: 1119 = bhsv.exe uPolicies-disallowrun: 1120 = bi5.exe uPolicies-disallowrun: 1121 = bifrost.exe uPolicies-disallowrun: 1122 = bil.exe uPolicies-disallowrun: 1123 = bindshell.exe uPolicies-disallowrun: 1124 = bionet.exe uPolicies-disallowrun: 1125 = bk.exe uPolicies-disallowrun: 1126 = block-checker.exe uPolicies-disallowrun: 1127 = blondes.exe uPolicies-disallowrun: 1128 = bloodhound.exe uPolicies-disallowrun: 1129 = blss.exe uPolicies-disallowrun: 1130 = bman.exe uPolicies-disallowrun: 1131 = bml8pjp7.exe uPolicies-disallowrun: 1132 = bmupdate.exe uPolicies-disallowrun: 1133 = bokja.exe uPolicies-disallowrun: 1134 = bookedspace.exe uPolicies-disallowrun: 1135 = boot.exe uPolicies-disallowrun: 1136 = bootconf.exe uPolicies-disallowrun: 1137 = bot.exe uPolicies-disallowrun: 1138 = bp.exe uPolicies-disallowrun: 1139 = bpc.exe uPolicies-disallowrun: 1140 = safesys.exe uPolicies-disallowrun: 1141 = bpsinstall.exe uPolicies-disallowrun: 1142 = brasil.exe uPolicies-disallowrun: 1143 = brengkolang.com uPolicies-disallowrun: 1144 = bronstab.exe uPolicies-disallowrun: 1145 = bsoft.exe uPolicies-disallowrun: 1146 = buddy.exe uPolicies-disallowrun: 1147 = bugsfix.exe uPolicies-disallowrun: 1148 = bundle.exe uPolicies-disallowrun: 1149 = bundle~1.exe uPolicies-disallowrun: 1150 = bundleouter.exe uPolicies-disallowrun: 1151 = bundleouter2501031120.exe uPolicies-disallowrun: 1152 = bundleouter2601031121.exe uPolicies-disallowrun: 1153 = bundles.exe uPolicies-disallowrun: 1154 = bundles118.exe uPolicies-disallowrun: 1155 = bxproxy.exe uPolicies-disallowrun: 1156 = camviewer.exe uPolicies-disallowrun: 1157 = card.exe uPolicies-disallowrun: 1158 = cartao.exe uPolicies-disallowrun: 1159 = cas2stub.exe uPolicies-disallowrun: 1160 = casclient.exe uPolicies-disallowrun: 1161 = cashsaverupdate.exe uPolicies-disallowrun: 1162 = cb.exe uPolicies-disallowrun: 1163 = cc.exe uPolicies-disallowrun: 1164 = cd_install.exe uPolicies-disallowrun: 1165 = cd_install_291.exe uPolicies-disallowrun: 1166 = cd_load.exe uPolicies-disallowrun: 1167 = cd5a8b2bd01 uPolicies-disallowrun: 1168 = cdaengine uPolicies-disallowrun: 1169 = cdaengine0500 uPolicies-disallowrun: 1170 = cdf.exe uPolicies-disallowrun: 1171 = cds.exe uPolicies-disallowrun: 1172 = cdsm32.exe uPolicies-disallowrun: 1173 = cfgmgr52.exe uPolicies-disallowrun: 1174 = cfmon.exe uPolicies-disallowrun: 1175 = cg.exe uPolicies-disallowrun: 1176 = cgtask.exe uPolicies-disallowrun: 1177 = check.exe uPolicies-disallowrun: 1178 = checkreg.exe uPolicies-disallowrun: 1179 = checkup.exe uPolicies-disallowrun: 1180 = chkntsv.exe uPolicies-disallowrun: 1181 = chkras.exe uPolicies-disallowrun: 1182 = choke.exe uPolicies-disallowrun: 1183 = chq7gv5g.exe uPolicies-disallowrun: 1184 = cisvvc.exe uPolicies-disallowrun: 1185 = cjqxe.exe uPolicies-disallowrun: 1186 = ckusdll.exe uPolicies-disallowrun: 1187 = clbcatex.exe uPolicies-disallowrun: 1188 = client.exe uPolicies-disallowrun: 1189 = clientax.exe uPolicies-disallowrun: 1190 = cm.exe uPolicies-disallowrun: 1191 = cmappsetup.exe uPolicies-disallowrun: 1192 = cmappupdate.exe uPolicies-disallowrun: 1193 = cmd32.exe uPolicies-disallowrun: 1194 = cmdinst.exe uPolicies-disallowrun: 1195 = cmesys.exe uPolicies-disallowrun: 1196 = cmeupd.exe uPolicies-disallowrun: 1197 = cmman.exe uPolicies-disallowrun: 1198 = cmqcemmpm.exe uPolicies-disallowrun: 1199 = cmrsr.exe uPolicies-disallowrun: 1200 = cmrss.exe uPolicies-disallowrun: 1201 = cmsystem.exe uPolicies-disallowrun: 1202 = cnqmax.exe uPolicies-disallowrun: 1203 = codecsetup.exe uPolicies-disallowrun: 1204 = comctl_32.exe uPolicies-disallowrun: 1205 = commando.exe uPolicies-disallowrun: 1206 = conscorr.exe uPolicies-disallowrun: 1207 = consol32.exe uPolicies-disallowrun: 1208 = cool.exe uPolicies-disallowrun: 1209 = copy of optimize.exe uPolicies-disallowrun: 1210 = corpstats.exe uPolicies-disallowrun: 1211 = cp.exe uPolicies-disallowrun: 1212 = cpanel.exe uPolicies-disallowrun: 1213 = cpr.exe uPolicies-disallowrun: 1214 = crackserver-service.exe uPolicies-disallowrun: 1215 = crmss.exe uPolicies-disallowrun: 1216 = crss.exe uPolicies-disallowrun: 1217 = crsss.exe uPolicies-disallowrun: 1218 = cryptfg.exe uPolicies-disallowrun: 1219 = csaolinst.exe uPolicies-disallowrun: 1220 = csaolldr.exe uPolicies-disallowrun: 1221 = csbiinst.exe uPolicies-disallowrun: 1222 = csieinst.exe uPolicies-disallowrun: 1223 = csmsv.exe uPolicies-disallowrun: 1224 = csrcs.exe uPolicies-disallowrun: 1225 = csrdeu32.exe uPolicies-disallowrun: 1226 = csrrs.exe uPolicies-disallowrun: 1227 = csrs.exe uPolicies-disallowrun: 1228 = csrsc.exe uPolicies-disallowrun: 1229 = csrse.exe uPolicies-disallowrun: 1230 = csrss32.exe uPolicies-disallowrun: 1231 = ctfmon32.exe uPolicies-disallowrun: 1232 = cucu.exe uPolicies-disallowrun: 1233 = cxq8ojka.exe uPolicies-disallowrun: 1234 = cxtpls.exe uPolicies-disallowrun: 1235 = cydoor.exe uPolicies-disallowrun: 1236 = cydoor_uninstall.exe uPolicies-disallowrun: 1237 = cz.exe uPolicies-disallowrun: 1238 = czncin.exe uPolicies-disallowrun: 1239 = d.exe uPolicies-disallowrun: 1240 = d6.exe uPolicies-disallowrun: 1241 = data2.exe uPolicies-disallowrun: 1242 = data3.exe uPolicies-disallowrun: 1243 = datemanager.exe uPolicies-disallowrun: 1244 = dbaccess.exe uPolicies-disallowrun: 1245 = dc1.exe uPolicies-disallowrun: 1246 = dc37.exe uPolicies-disallowrun: 1247 = dc38.exe uPolicies-disallowrun: 1248 = dc39.exe uPolicies-disallowrun: 1249 = dc42.exe uPolicies-disallowrun: 1250 = dc43.exe uPolicies-disallowrun: 1251 = dc44.exe uPolicies-disallowrun: 1252 = dc82.exe uPolicies-disallowrun: 1253 = dc83.exe uPolicies-disallowrun: 1254 = dc84.exe uPolicies-disallowrun: 1255 = dc85.exe uPolicies-disallowrun: 1256 = dc86.exe uPolicies-disallowrun: 1257 = dcomcfg.exe uPolicies-disallowrun: 1258 = dcomx.exe uPolicies-disallowrun: 1259 = ddcman.exe uPolicies-disallowrun: 1260 = dealhelper.exe uPolicies-disallowrun: 1261 = delmsbb.exe uPolicies-disallowrun: 1262 = deskadkeep.exe uPolicies-disallowrun: 1263 = deskadserv.exe uPolicies-disallowrun: 1264 = desktop.exe uPolicies-disallowrun: 1265 = dfe.exe uPolicies-disallowrun: 1266 = dfrgsrv.exe uPolicies-disallowrun: 1267 = dgwojz0h.exe uPolicies-disallowrun: 1268 = dhbrwsr.exe uPolicies-disallowrun: 1269 = dho.exe uPolicies-disallowrun: 1270 = dhupdt.exe uPolicies-disallowrun: 1271 = dial.exe uPolicies-disallowrun: 1272 = dinst.exe uPolicies-disallowrun: 1273 = dioxin.exe uPolicies-disallowrun: 1274 = directs.exe uPolicies-disallowrun: 1275 = directx.exe uPolicies-disallowrun: 1276 = directxset.exe uPolicies-disallowrun: 1277 = disp1150.exe uPolicies-disallowrun: 1278 = display.exe uPolicies-disallowrun: 1279 = divx.exe uPolicies-disallowrun: 1280 = dlgli.exe uPolicies-disallowrun: 1281 = dlhost.exe uPolicies-disallowrun: 1282 = dll32.exe uPolicies-disallowrun: 1283 = dllreg.exe uPolicies-disallowrun: 1284 = dmserver.exe uPolicies-disallowrun: 1285 = dodrrr.exe uPolicies-disallowrun: 1286 = down.exe uPolicies-disallowrun: 1287 = download.exe uPolicies-disallowrun: 1288 = downloadplus.exe uPolicies-disallowrun: 1289 = dp-b23011805.exe uPolicies-disallowrun: 1290 = dpul6zoa.exe uPolicies-disallowrun: 1291 = dr.exe uPolicies-disallowrun: 1292 = dr_s.exe uPolicies-disallowrun: 1293 = drpmon(1).exe uPolicies-disallowrun: 1294 = drpmon.exe uPolicies-disallowrun: 1295 = drv.exe uPolicies-disallowrun: 1296 = drvddll.exe uPolicies-disallowrun: 1297 = drwtsn16.exe uPolicies-disallowrun: 1298 = ds.exe uPolicies-disallowrun: 1299 = dscbtshl.exe uPolicies-disallowrun: 1300 = dssagent.exe uPolicies-disallowrun: 1301 = dtloader.exe uPolicies-disallowrun: 1302 = duel.exe uPolicies-disallowrun: 1303 = dun.exe uPolicies-disallowrun: 1304 = dvbern.exe uPolicies-disallowrun: 1305 = dvchost.exe uPolicies-disallowrun: 1306 = dvdkeyauth.exe uPolicies-disallowrun: 1307 = dvldr32.exe uPolicies-disallowrun: 1308 = dvwnhd.exe uPolicies-disallowrun: 1309 = dw.exe uPolicies-disallowrun: 1310 = dwcg.exe uPolicies-disallowrun: 1311 = dwe.exe uPolicies-disallowrun: 1312 = dwnupdt.exe uPolicies-disallowrun: 1313 = usbautotuner.exe uPolicies-disallowrun: 1314 = dxnf.exe uPolicies-disallowrun: 1315 = e85b8fb2d01.exe uPolicies-disallowrun: 1316 = easy.windows.monitoring.exe uPolicies-disallowrun: 1317 = easyav.exe uPolicies-disallowrun: 1318 = ecodec.exe uPolicies-disallowrun: 1319 = edit server.exe uPolicies-disallowrun: 1320 = ee.exe uPolicies-disallowrun: 1321 = ee1a8f91d01.exe uPolicies-disallowrun: 1322 = ee248fa7d01.exe uPolicies-disallowrun: 1323 = eeea8fa3d01.exe uPolicies-disallowrun: 1324 = eeef8fa2d01.exe uPolicies-disallowrun: 1325 = eetu.exe uPolicies-disallowrun: 1326 = eksplorasi.exe uPolicies-disallowrun: 1327 = elos.exe uPolicies-disallowrun: 1328 = eml.exe uPolicies-disallowrun: 1329 = emsw.exe uPolicies-disallowrun: 1330 = enbiei.exe uPolicies-disallowrun: 1331 = enuubwafo.exe uPolicies-disallowrun: 1332 = epswad4.exe uPolicies-disallowrun: 1333 = errorguard.exe uPolicies-disallowrun: 1334 = ers.exe uPolicies-disallowrun: 1335 = ersvc.exe uPolicies-disallowrun: 1336 = escan.exe uPolicies-disallowrun: 1337 = esyndicateinst.exe uPolicies-disallowrun: 1338 = evr8gkxb.exe uPolicies-disallowrun: 1339 = exchng32.exe uPolicies-disallowrun: 1340 = exclean.exe uPolicies-disallowrun: 1341 = exdl.exe uPolicies-disallowrun: 1342 = exec.exe uPolicies-disallowrun: 1343 = exp.exe uPolicies-disallowrun: 1344 = expl32.exe uPolicies-disallowrun: 1345 = explore.exe uPolicies-disallowrun: 1346 = explored.exe uPolicies-disallowrun: 1347 = exploreff.exe uPolicies-disallowrun: 1348 = explorer32.exe uPolicies-disallowrun: 1349 = explorere.exe uPolicies-disallowrun: 1350 = exul.exe uPolicies-disallowrun: 1351 = ezinstall.exe uPolicies-disallowrun: 1352 = ezpopstub.exe uPolicies-disallowrun: 1353 = ezstub.exe uPolicies-disallowrun: 1354 = ezstub22.exe uPolicies-disallowrun: 1355 = ezulumain.exe uPolicies-disallowrun: 1356 = f3403484.exe uPolicies-disallowrun: 1357 = f4bbfeaed01 uPolicies-disallowrun: 1358 = farmmext.exe uPolicies-disallowrun: 1359 = fash.exe uPolicies-disallowrun: 1360 = fasterxp.exe uPolicies-disallowrun: 1361 = fbi_facebook.exe uPolicies-disallowrun: 1362 = fc.exe uPolicies-disallowrun: 1363 = fixtitle.exe uPolicies-disallowrun: 1364 = fjdbfvk.exe uPolicies-disallowrun: 1365 = flashtalk-wise1000.exe uPolicies-disallowrun: 1366 = fntldr.exe uPolicies-disallowrun: 1367 = fontloader.exe uPolicies-disallowrun: 1368 = fontview.exe uPolicies-disallowrun: 1369 = formulario.exe uPolicies-disallowrun: 1370 = fph.exe uPolicies-disallowrun: 1371 = fqc.exe uPolicies-disallowrun: 1372 = freexxx.exe uPolicies-disallowrun: 1373 = frsk.exe uPolicies-disallowrun: 1374 = fservice.exe uPolicies-disallowrun: 1375 = fsg.exe uPolicies-disallowrun: 1376 = fsg_4104.exe uPolicies-disallowrun: 1377 = fsjyhc5r.exe uPolicies-disallowrun: 1378 = fsw.exe uPolicies-disallowrun: 1379 = fullgames.exe uPolicies-disallowrun: 1380 = fuwxenc.exe uPolicies-disallowrun: 1381 = fvprotect.exe uPolicies-disallowrun: 1382 = g181511.a.stub.exe uPolicies-disallowrun: 1383 = g4eyp3kf.exe uPolicies-disallowrun: 1384 = gaedzsxe.exe uPolicies-disallowrun: 1385 = gah95on6.exe uPolicies-disallowrun: 1386 = gain_trickler_3102.exe uPolicies-disallowrun: 1387 = gain_trickler_3202.exe uPolicies-disallowrun: 1388 = my music.exe uPolicies-disallowrun: 1389 = gateway.exe uPolicies-disallowrun: 1390 = gator.exe uPolicies-disallowrun: 1391 = gatorstubsetup.exe uPolicies-disallowrun: 1392 = get.exe uPolicies-disallowrun: 1393 = get_flash_update.exe uPolicies-disallowrun: 1394 = getbuys.exe uPolicies-disallowrun: 1395 = gfjgj.exe uPolicies-disallowrun: 1396 = ghost.bat uPolicies-disallowrun: 1397 = ginst_001_1234_4201.exe uPolicies-disallowrun: 1398 = gld.exe uPolicies-disallowrun: 1399 = glf2fglf2f.exe uPolicies-disallowrun: 1400 = gm.exe
  15. Also the log of TDSSKiller 2010/10/26 20:33:21.0788 TDSS rootkit removing tool 2.4.5.1 Oct 26 2010 11:28:49 2010/10/26 20:33:21.0788 ================================================================================ 2010/10/26 20:33:21.0788 SystemInfo: 2010/10/26 20:33:21.0788 2010/10/26 20:33:21.0788 Windows directory: C:\Windows 2010/10/26 20:33:21.0788 System windows directory: C:\Windows 2010/10/26 20:33:21.0788 Running under WOW64 2010/10/26 20:33:21.0788 Processor architecture: Intel x64 2010/10/26 20:33:21.0788 Number of processors: 4 2010/10/26 20:33:21.0788 Page size: 0x1000 2010/10/26 20:33:21.0788 Boot type: Normal boot 2010/10/26 20:33:21.0788 ================================================================================ 2010/10/26 20:33:21.0788 Utility is running under WOW64 2010/10/26 20:33:28.0848 Initialize success 2010/10/26 20:33:34.0668 ================================================================================ 2010/10/26 20:33:34.0668 Scan started 2010/10/26 20:33:34.0668 Mode: Manual; 2010/10/26 20:33:34.0668 ================================================================================ 2010/10/26 20:33:36.0308 1394ohci (1b00662092f9f9568b995902f0cc40d5) C:\Windows\system32\DRIVERS\1394ohci.sys 2010/10/26 20:33:36.0358 ACPI (6f11e88748cdefd2f76aa215f97ddfe5) C:\Windows\system32\DRIVERS\ACPI.sys 2010/10/26 20:33:36.0398 AcpiPmi (63b05a0420ce4bf0e4af6dcc7cada254) C:\Windows\system32\DRIVERS\acpipmi.sys 2010/10/26 20:33:36.0438 adp94xx (2f6b34b83843f0c5118b63ac634f5bf4) C:\Windows\system32\DRIVERS\adp94xx.sys 2010/10/26 20:33:36.0468 adpahci (597f78224ee9224ea1a13d6350ced962) C:\Windows\system32\DRIVERS\adpahci.sys 2010/10/26 20:33:36.0488 adpu320 (e109549c90f62fb570b9540c4b148e54) C:\Windows\system32\DRIVERS\adpu320.sys 2010/10/26 20:33:36.0548 AFD (b9384e03479d2506bc924c16a3db87bc) C:\Windows\system32\drivers\afd.sys 2010/10/26 20:33:36.0578 agp440 (608c14dba7299d8cb6ed035a68a15799) C:\Windows\system32\DRIVERS\agp440.sys 2010/10/26 20:33:36.0598 aliide (5812713a477a3ad7363c7438ca2ee038) C:\Windows\system32\DRIVERS\aliide.sys 2010/10/26 20:33:36.0638 amdide (1ff8b4431c353ce385c875f194924c0c) C:\Windows\system32\DRIVERS\amdide.sys 2010/10/26 20:33:36.0668 AmdK8 (7024f087cff1833a806193ef9d22cda9) C:\Windows\system32\DRIVERS\amdk8.sys 2010/10/26 20:33:36.0860 amdkmdag (538b0a6e89aca1929668f9eb95d3c0bc) C:\Windows\system32\DRIVERS\atikmdag.sys 2010/10/26 20:33:36.0960 amdkmdap (977286b382fe0920f379a69c351a7af4) C:\Windows\system32\DRIVERS\atikmpag.sys 2010/10/26 20:33:36.0980 AmdPPM (1e56388b3fe0d031c44144eb8c4d6217) C:\Windows\system32\DRIVERS\amdppm.sys 2010/10/26 20:33:37.0000 amdsata (7a4b413614c055935567cf88a9734d38) C:\Windows\system32\DRIVERS\amdsata.sys 2010/10/26 20:33:37.0030 amdsbs (f67f933e79241ed32ff46a4f29b5120b) C:\Windows\system32\DRIVERS\amdsbs.sys 2010/10/26 20:33:37.0050 amdxata (b4ad0cacbab298671dd6f6ef7e20679d) C:\Windows\system32\DRIVERS\amdxata.sys 2010/10/26 20:33:37.0070 AppID (42fd751b27fa0e9c69bb39f39e409594) C:\Windows\system32\drivers\appid.sys 2010/10/26 20:33:37.0110 arc (c484f8ceb1717c540242531db7845c4e) C:\Windows\system32\DRIVERS\arc.sys 2010/10/26 20:33:37.0130 arcsas (019af6924aefe7839f61c830227fe79c) C:\Windows\system32\DRIVERS\arcsas.sys 2010/10/26 20:33:37.0230 AsyncMac (769765ce2cc62867468cea93969b2242) C:\Windows\system32\DRIVERS\asyncmac.sys 2010/10/26 20:33:37.0250 atapi (02062c0b390b7729edc9e69c680a6f3c) C:\Windows\system32\DRIVERS\atapi.sys 2010/10/26 20:33:37.0480 atikmdag (538b0a6e89aca1929668f9eb95d3c0bc) C:\Windows\system32\DRIVERS\atikmdag.sys 2010/10/26 20:33:37.0560 AtiPcie (7c5d273e29dcc5505469b299c6f29163) C:\Windows\system32\DRIVERS\AtiPcie.sys 2010/10/26 20:33:37.0660 b06bdrv (3e5b191307609f7514148c6832bb0842) C:\Windows\system32\DRIVERS\bxvbda.sys 2010/10/26 20:33:37.0710 b57nd60a (b5ace6968304a3900eeb1ebfd9622df2) C:\Windows\system32\DRIVERS\b57nd60a.sys 2010/10/26 20:33:37.0750 blbdrive (61583ee3c3a17003c4acd0475646b4d3) C:\Windows\system32\DRIVERS\blbdrive.sys 2010/10/26 20:33:37.0790 bowser (91ce0d3dc57dd377e690a2d324022b08) C:\Windows\system32\DRIVERS\bowser.sys 2010/10/26 20:33:37.0810 BrFiltLo (f09eee9edc320b5e1501f749fde686c8) C:\Windows\system32\DRIVERS\BrFiltLo.sys 2010/10/26 20:33:37.0830 BrFiltUp (b114d3098e9bdb8bea8b053685831be6) C:\Windows\system32\DRIVERS\BrFiltUp.sys 2010/10/26 20:33:37.0850 Brserid (43bea8d483bf1870f018e2d02e06a5bd) C:\Windows\System32\Drivers\Brserid.sys 2010/10/26 20:33:37.0870 BrSerWdm (a6eca2151b08a09caceca35c07f05b42) C:\Windows\System32\Drivers\BrSerWdm.sys 2010/10/26 20:33:37.0890 BrUsbMdm (b79968002c277e869cf38bd22cd61524) C:\Windows\System32\Drivers\BrUsbMdm.sys 2010/10/26 20:33:37.0920 BrUsbSer (a87528880231c54e75ea7a44943b38bf) C:\Windows\System32\Drivers\BrUsbSer.sys 2010/10/26 20:33:37.0940 BTHMODEM (9da669f11d1f894ab4eb69bf546a42e8) C:\Windows\system32\DRIVERS\bthmodem.sys 2010/10/26 20:33:38.0000 CamSuiteVAC (bcdb579f30335f20aaddc873aba669e8) C:\Windows\system32\DRIVERS\CamSuiteVAC.sys 2010/10/26 20:33:38.0020 cdfs (b8bd2bb284668c84865658c77574381a) C:\Windows\system32\DRIVERS\cdfs.sys 2010/10/26 20:33:38.0050 cdrom (83d2d75e1efb81b3450c18131443f7db) C:\Windows\system32\DRIVERS\cdrom.sys 2010/10/26 20:33:38.0070 circlass (d7cd5c4e1b71fa62050515314cfb52cf) C:\Windows\system32\DRIVERS\circlass.sys 2010/10/26 20:33:38.0110 CLFS (fe1ec06f2253f691fe36217c592a0206) C:\Windows\system32\CLFS.sys 2010/10/26 20:33:38.0160 CmBatt (0840155d0bddf1190f84a663c284bd33) C:\Windows\system32\DRIVERS\CmBatt.sys 2010/10/26 20:33:38.0190 cmdide (e19d3f095812725d88f9001985b94edd) C:\Windows\system32\DRIVERS\cmdide.sys 2010/10/26 20:33:38.0220 CNG (f95fd4cb7da00ba2a63ce9f6b5c053e1) C:\Windows\system32\Drivers\cng.sys 2010/10/26 20:33:38.0230 Compbatt (102de219c3f61415f964c88e9085ad14) C:\Windows\system32\DRIVERS\compbatt.sys 2010/10/26 20:33:38.0250 CompositeBus (f26b3a86f6fa87ca360b879581ab4123) C:\Windows\system32\DRIVERS\CompositeBus.sys 2010/10/26 20:33:38.0360 crcdisk (1c827878a998c18847245fe1f34ee597) C:\Windows\system32\DRIVERS\crcdisk.sys 2010/10/26 20:33:38.0400 CSC (4a6173c2279b498cd8f57cae504564cb) C:\Windows\system32\drivers\csc.sys 2010/10/26 20:33:38.0440 DfsC (3f1dc527070acb87e40afe46ef6da749) C:\Windows\system32\Drivers\dfsc.sys 2010/10/26 20:33:38.0470 discache (13096b05847ec78f0977f2c0f79e9ab3) C:\Windows\system32\drivers\discache.sys 2010/10/26 20:33:38.0500 Disk (9819eee8b5ea3784ec4af3b137a5244c) C:\Windows\system32\DRIVERS\disk.sys 2010/10/26 20:33:38.0570 Dot4 (b42ed0320c6e41102fde0005154849bb) C:\Windows\system32\DRIVERS\Dot4.sys 2010/10/26 20:33:38.0590 Dot4Print (85135ad27e79b689335c08167d917cde) C:\Windows\system32\DRIVERS\Dot4Prt.sys 2010/10/26 20:33:38.0610 dot4usb (fd05a02b0370bc3000f402e543ca5814) C:\Windows\system32\DRIVERS\dot4usb.sys 2010/10/26 20:33:38.0650 drmkaud (9b19f34400d24df84c858a421c205754) C:\Windows\system32\drivers\drmkaud.sys 2010/10/26 20:33:38.0700 DXGKrnl (ebce0b0924835f635f620d19f0529dce) C:\Windows\System32\drivers\dxgkrnl.sys 2010/10/26 20:33:38.0790 ebdrv (dc5d737f51be844d8c82c695eb17372f) C:\Windows\system32\DRIVERS\evbda.sys 2010/10/26 20:33:38.0910 elxstor (0e5da5369a0fcaea12456dd852545184) C:\Windows\system32\DRIVERS\elxstor.sys 2010/10/26 20:33:38.0940 ErrDev (34a3c54752046e79a126e15c51db409b) C:\Windows\system32\DRIVERS\errdev.sys 2010/10/26 20:33:38.0980 exfat (a510c654ec00c1e9bdd91eeb3a59823b) C:\Windows\system32\drivers\exfat.sys 2010/10/26 20:33:39.0010 fastfat (0adc83218b66a6db380c330836f3e36d) C:\Windows\system32\drivers\fastfat.sys 2010/10/26 20:33:39.0030 fdc (d765d19cd8ef61f650c384f62fac00ab) C:\Windows\system32\DRIVERS\fdc.sys 2010/10/26 20:33:39.0070 FileInfo (655661be46b5f5f3fd454e2c3095b930) C:\Windows\system32\drivers\fileinfo.sys 2010/10/26 20:33:39.0090 Filetrace (5f671ab5bc87eea04ec38a6cd5962a47) C:\Windows\system32\drivers\filetrace.sys 2010/10/26 20:33:39.0140 flpydisk (c172a0f53008eaeb8ea33fe10e177af5) C:\Windows\system32\DRIVERS\flpydisk.sys 2010/10/26 20:33:39.0180 FltMgr (f7866af72abbaf84b1fa5aa195378c59) C:\Windows\system32\drivers\fltmgr.sys 2010/10/26 20:33:39.0220 FsDepends (d43703496149971890703b4b1b723eac) C:\Windows\system32\drivers\FsDepends.sys 2010/10/26 20:33:39.0240 Fs_Rec (e95ef8547de20cf0603557c0cf7a9462) C:\Windows\system32\drivers\Fs_Rec.sys 2010/10/26 20:33:39.0280 fvevol (ae87ba80d0ec3b57126ed2cdc15b24ed) C:\Windows\system32\DRIVERS\fvevol.sys 2010/10/26 20:33:39.0300 gagp30kx (8c778d335c9d272cfd3298ab02abe3b6) C:\Windows\system32\DRIVERS\gagp30kx.sys 2010/10/26 20:33:39.0340 GEARAspiWDM (e403aacf8c7bb11375122d2464560311) C:\Windows\system32\DRIVERS\GEARAspiWDM.sys 2010/10/26 20:33:39.0370 hcw85cir (f2523ef6460fc42405b12248338ab2f0) C:\Windows\system32\drivers\hcw85cir.sys 2010/10/26 20:33:39.0410 HdAudAddService (6410f6f415b2a5a9037224c41da8bf12) C:\Windows\system32\drivers\HdAudio.sys 2010/10/26 20:33:39.0450 HDAudBus (0a49913402747a0b67de940fb42cbdbb) C:\Windows\system32\DRIVERS\HDAudBus.sys 2010/10/26 20:33:39.0470 HidBatt (78e86380454a7b10a5eb255dc44a355f) C:\Windows\system32\DRIVERS\HidBatt.sys 2010/10/26 20:33:39.0490 HidBth (7fd2a313f7afe5c4dab14798c48dd104) C:\Windows\system32\DRIVERS\hidbth.sys 2010/10/26 20:33:39.0510 HidIr (0a77d29f311b88cfae3b13f9c1a73825) C:\Windows\system32\DRIVERS\hidir.sys 2010/10/26 20:33:39.0550 HidUsb (b3bf6b5b50006def50b66306d99fcf6f) C:\Windows\system32\DRIVERS\hidusb.sys 2010/10/26 20:33:39.0590 HpSAMD (0886d440058f203eba0e1825e4355914) C:\Windows\system32\DRIVERS\HpSAMD.sys 2010/10/26 20:33:39.0630 HTTP (cee049cac4efa7f4e1e4ad014414a5d4) C:\Windows\system32\drivers\HTTP.sys 2010/10/26 20:33:39.0650 hwpolicy (f17766a19145f111856378df337a5d79) C:\Windows\system32\drivers\hwpolicy.sys 2010/10/26 20:33:39.0680 i8042prt (fa55c73d4affa7ee23ac4be53b4592d3) C:\Windows\system32\DRIVERS\i8042prt.sys 2010/10/26 20:33:39.0700 iaStorV (d83efb6fd45df9d55e9a1afc63640d50) C:\Windows\system32\DRIVERS\iaStorV.sys 2010/10/26 20:33:39.0740 iirsp (5c18831c61933628f5bb0ea2675b9d21) C:\Windows\system32\DRIVERS\iirsp.sys 2010/10/26 20:33:39.0820 IntcAzAudAddService (d42d651676883181400e22957a7e0b1e) C:\Windows\system32\drivers\RTKVHD64.sys 2010/10/26 20:33:39.0860 intelide (f00f20e70c6ec3aa366910083a0518aa) C:\Windows\system32\DRIVERS\intelide.sys 2010/10/26 20:33:39.0880 intelppm (ada036632c664caa754079041cf1f8c1) C:\Windows\system32\DRIVERS\intelppm.sys 2010/10/26 20:33:39.0920 IpFilterDriver (722dd294df62483cecaae6e094b4d695) C:\Windows\system32\DRIVERS\ipfltdrv.sys 2010/10/26 20:33:39.0960 IPMIDRV (e2b4a4494db7cb9b89b55ca268c337c5) C:\Windows\system32\DRIVERS\IPMIDrv.sys 2010/10/26 20:33:39.0990 IPNAT (af9b39a7e7b6caa203b3862582e9f2d0) C:\Windows\system32\drivers\ipnat.sys 2010/10/26 20:33:40.0020 IRENUM (3abf5e7213eb28966d55d58b515d5ce9) C:\Windows\system32\drivers\irenum.sys 2010/10/26 20:33:40.0040 isapnp (2f7b28dc3e1183e5eb418df55c204f38) C:\Windows\system32\DRIVERS\isapnp.sys 2010/10/26 20:33:40.0070 iScsiPrt (fa4d2557de56d45b0a346f93564be6e1) C:\Windows\system32\DRIVERS\msiscsi.sys 2010/10/26 20:33:40.0090 kbdclass (bc02336f1cba7dcc7d1213bb588a68a5) C:\Windows\system32\DRIVERS\kbdclass.sys 2010/10/26 20:33:40.0110 kbdhid (6def98f8541e1b5dceb2c822a11f7323) C:\Windows\system32\DRIVERS\kbdhid.sys 2010/10/26 20:33:40.0140 KSecDD (e8b6fcc9c83535c67f835d407620bd27) C:\Windows\system32\Drivers\ksecdd.sys 2010/10/26 20:33:40.0200 KSecPkg (a8c63880ef6f4d3fec7b616b9c060215) C:\Windows\system32\Drivers\ksecpkg.sys 2010/10/26 20:33:40.0220 ksthunk (6869281e78cb31a43e969f06b57347c4) C:\Windows\system32\drivers\ksthunk.sys 2010/10/26 20:33:40.0260 lltdio (1538831cf8ad2979a04c423779465827) C:\Windows\system32\DRIVERS\lltdio.sys 2010/10/26 20:33:40.0310 LSI_FC (1a93e54eb0ece102495a51266dcdb6a6) C:\Windows\system32\DRIVERS\lsi_fc.sys 2010/10/26 20:33:40.0330 LSI_SAS (1047184a9fdc8bdbff857175875ee810) C:\Windows\system32\DRIVERS\lsi_sas.sys 2010/10/26 20:33:40.0350 LSI_SAS2 (30f5c0de1ee8b5bc9306c1f0e4a75f93) C:\Windows\system32\DRIVERS\lsi_sas2.sys 2010/10/26 20:33:40.0360 LSI_SCSI (0504eacaff0d3c8aed161c4b0d369d4a) C:\Windows\system32\DRIVERS\lsi_scsi.sys 2010/10/26 20:33:40.0390 luafv (43d0f98e1d56ccddb0d5254cff7b356e) C:\Windows\system32\drivers\luafv.sys 2010/10/26 20:33:40.0440 MarvinBus (024da28053d57e9e32bee52600576bbb) C:\Windows\system32\DRIVERS\MarvinBus64.sys 2010/10/26 20:33:40.0530 mcdbus (79d51e7f5926e8ce1b3ebecebae28cff) C:\Windows\system32\DRIVERS\mcdbus.sys 2010/10/26 20:33:40.0560 megasas (a55805f747c6edb6a9080d7c633bd0f4) C:\Windows\system32\DRIVERS\megasas.sys 2010/10/26 20:33:40.0590 MegaSR (baf74ce0072480c3b6b7c13b2a94d6b3) C:\Windows\system32\DRIVERS\MegaSR.sys 2010/10/26 20:33:40.0630 Modem (800ba92f7010378b09f9ed9270f07137) C:\Windows\system32\drivers\modem.sys 2010/10/26 20:33:40.0650 monitor (b03d591dc7da45ece20b3b467e6aadaa) C:\Windows\system32\DRIVERS\monitor.sys 2010/10/26 20:33:40.0680 mouclass (7d27ea49f3c1f687d357e77a470aea99) C:\Windows\system32\DRIVERS\mouclass.sys 2010/10/26 20:33:40.0710 mouhid (d3bf052c40b0c4166d9fd86a4288c1e6) C:\Windows\system32\DRIVERS\mouhid.sys 2010/10/26 20:33:40.0730 mountmgr (791af66c4d0e7c90a3646066386fb571) C:\Windows\system32\drivers\mountmgr.sys 2010/10/26 20:33:40.0750 mpio (609d1d87649ecc19796f4d76d4c15cea) C:\Windows\system32\DRIVERS\mpio.sys 2010/10/26 20:33:40.0770 mpsdrv (6c38c9e45ae0ea2fa5e551f2ed5e978f) C:\Windows\system32\drivers\mpsdrv.sys 2010/10/26 20:33:40.0790 MRxDAV (30524261bb51d96d6fcbac20c810183c) C:\Windows\system32\drivers\mrxdav.sys 2010/10/26 20:33:40.0830 mrxsmb (767a4c3bcf9410c286ced15a2db17108) C:\Windows\system32\DRIVERS\mrxsmb.sys 2010/10/26 20:33:40.0860 mrxsmb10 (920ee0ff995fcfdeb08c41605a959e1c) C:\Windows\system32\DRIVERS\mrxsmb10.sys 2010/10/26 20:33:40.0880 mrxsmb20 (740d7ea9d72c981510a5292cf6adc941) C:\Windows\system32\DRIVERS\mrxsmb20.sys 2010/10/26 20:33:40.0890 msahci (5c37497276e3b3a5488b23a326a754b7) C:\Windows\system32\DRIVERS\msahci.sys 2010/10/26 20:33:40.0910 msdsm (8d27b597229aed79430fb9db3bcbfbd0) C:\Windows\system32\DRIVERS\msdsm.sys 2010/10/26 20:33:40.0950 Msfs (aa3fb40e17ce1388fa1bedab50ea8f96) C:\Windows\system32\drivers\Msfs.sys 2010/10/26 20:33:40.0970 mshidkmdf (f9d215a46a8b9753f61767fa72a20326) C:\Windows\System32\drivers\mshidkmdf.sys 2010/10/26 20:33:40.0980 msisadrv (d916874bbd4f8b07bfb7fa9b3ccae29d) C:\Windows\system32\DRIVERS\msisadrv.sys 2010/10/26 20:33:41.0010 MSKSSRV (49ccf2c4fea34ffad8b1b59d49439366) C:\Windows\system32\drivers\MSKSSRV.sys 2010/10/26 20:33:41.0040 MSPCLOCK (bdd71ace35a232104ddd349ee70e1ab3) C:\Windows\system32\drivers\MSPCLOCK.sys 2010/10/26 20:33:41.0050 MSPQM (4ed981241db27c3383d72092b618a1d0) C:\Windows\system32\drivers\MSPQM.sys 2010/10/26 20:33:41.0070 MsRPC (89cb141aa8616d8c6a4610fa26c60964) C:\Windows\system32\drivers\MsRPC.sys 2010/10/26 20:33:41.0100 mssmbios (0eed230e37515a0eaee3c2e1bc97b288) C:\Windows\system32\DRIVERS\mssmbios.sys 2010/10/26 20:33:41.0120 MSTEE (2e66f9ecb30b4221a318c92ac2250779) C:\Windows\system32\drivers\MSTEE.sys 2010/10/26 20:33:41.0140 MTConfig (7ea404308934e675bffde8edf0757bcd) C:\Windows\system32\DRIVERS\MTConfig.sys 2010/10/26 20:33:41.0180 MTsensor (2219a3d695405e7ba2186ba6b9ede14a) C:\Windows\system32\DRIVERS\ASACPI.sys 2010/10/26 20:33:41.0190 Mup (f9a18612fd3526fe473c1bda678d61c8) C:\Windows\system32\Drivers\mup.sys 2010/10/26 20:33:41.0220 NativeWifiP (1ea3749c4114db3e3161156ffffa6b33) C:\Windows\system32\DRIVERS\nwifi.sys 2010/10/26 20:33:41.0280 NDIS (cad515dbd07d082bb317d9928ce8962c) C:\Windows\system32\drivers\ndis.sys 2010/10/26 20:33:41.0300 NdisCap (9f9a1f53aad7da4d6fef5bb73ab811ac) C:\Windows\system32\DRIVERS\ndiscap.sys 2010/10/26 20:33:41.0330 NdisTapi (30639c932d9fef22b31268fe25a1b6e5) C:\Windows\system32\DRIVERS\ndistapi.sys 2010/10/26 20:33:41.0350 Ndisuio (f105ba1e22bf1f2ee8f005d4305e4bec) C:\Windows\system32\DRIVERS\ndisuio.sys 2010/10/26 20:33:41.0370 NdisWan (557dfab9ca1fcb036ac77564c010dad3) C:\Windows\system32\DRIVERS\ndiswan.sys 2010/10/26 20:33:41.0400 NDProxy (659b74fb74b86228d6338d643cd3e3cf) C:\Windows\system32\drivers\NDProxy.sys 2010/10/26 20:33:41.0420 NetBIOS (86743d9f5d2b1048062b14b1d84501c4) C:\Windows\system32\DRIVERS\netbios.sys 2010/10/26 20:33:41.0440 NetBT (9162b273a44ab9dce5b44362731d062a) C:\Windows\system32\DRIVERS\netbt.sys 2010/10/26 20:33:41.0500 nfrd960 (77889813be4d166cdab78ddba990da92) C:\Windows\system32\DRIVERS\nfrd960.sys 2010/10/26 20:33:41.0530 Npfs (1e4c4ab5c9b8dd13179bbdc75a2a01f7) C:\Windows\system32\drivers\Npfs.sys 2010/10/26 20:33:41.0540 nsiproxy (e7f5ae18af4168178a642a9247c63001) C:\Windows\system32\drivers\nsiproxy.sys 2010/10/26 20:33:41.0600 Ntfs (356698a13c4630d5b31c37378d469196) C:\Windows\system32\drivers\Ntfs.sys 2010/10/26 20:33:41.0630 Null (9899284589f75fa8724ff3d16aed75c1) C:\Windows\system32\drivers\Null.sys 2010/10/26 20:33:41.0660 nvraid (3e38712941e9bb4ddbee00affe3fed3d) C:\Windows\system32\DRIVERS\nvraid.sys 2010/10/26 20:33:41.0680 nvstor (477dc4d6deb99be37084c9ac6d013da1) C:\Windows\system32\DRIVERS\nvstor.sys 2010/10/26 20:33:41.0710 nv_agp (270d7cd42d6e3979f6dd0146650f0e05) C:\Windows\system32\DRIVERS\nv_agp.sys 2010/10/26 20:33:41.0820 ohci1394 (3589478e4b22ce21b41fa1bfc0b8b8a0) C:\Windows\system32\DRIVERS\ohci1394.sys 2010/10/26 20:33:41.0890 Parport (0086431c29c35be1dbc43f52cc273887) C:\Windows\system32\DRIVERS\parport.sys 2010/10/26 20:33:41.0910 partmgr (7daa117143316c4a1537e074a5a9eaf0) C:\Windows\system32\drivers\partmgr.sys 2010/10/26 20:33:42.0000 pccsmcfd (bc0018c2d29f655188a0ed3fa94fdb24) C:\Windows\system32\DRIVERS\pccsmcfdx64.sys 2010/10/26 20:33:42.0060 PCGenFAM (312679b297c33611e0b70cb85277410f) C:\Windows\system32\DRIVERS\PCGenFAM.sys 2010/10/26 20:33:42.0100 pci (f36f6504009f2fb0dfd1b17a116ad74b) C:\Windows\system32\DRIVERS\pci.sys 2010/10/26 20:33:42.0120 pciide (b5b8b5ef2e5cb34df8dcf8831e3534fa) C:\Windows\system32\DRIVERS\pciide.sys 2010/10/26 20:33:42.0160 pcmcia (b2e81d4e87ce48589f98cb8c05b01f2f) C:\Windows\system32\DRIVERS\pcmcia.sys 2010/10/26 20:33:42.0190 pcw (d6b9c2e1a11a3a4b26a182ffef18f603) C:\Windows\system32\drivers\pcw.sys 2010/10/26 20:33:42.0220 PEAUTH (68769c3356b3be5d1c732c97b9a80d6e) C:\Windows\system32\drivers\peauth.sys 2010/10/26 20:33:42.0340 PptpMiniport (27cc19e81ba5e3403c48302127bda717) C:\Windows\system32\DRIVERS\raspptp.sys 2010/10/26 20:33:42.0360 Processor (0d922e23c041efb1c3fac2a6f943c9bf) C:\Windows\system32\DRIVERS\processr.sys 2010/10/26 20:33:42.0390 Psched (ee992183bd8eaefd9973f352e587a299) C:\Windows\system32\DRIVERS\pacer.sys 2010/10/26 20:33:42.0440 ql2300 (a53a15a11ebfd21077463ee2c7afeef0) C:\Windows\system32\DRIVERS\ql2300.sys 2010/10/26 20:33:42.0470 ql40xx (4f6d12b51de1aaeff7dc58c4d75423c8) C:\Windows\system32\DRIVERS\ql40xx.sys 2010/10/26 20:33:42.0500 QWAVEdrv (76707bb36430888d9ce9d705398adb6c) C:\Windows\system32\drivers\qwavedrv.sys 2010/10/26 20:33:42.0530 RasAcd (5a0da8ad5762fa2d91678a8a01311704) C:\Windows\system32\DRIVERS\rasacd.sys 2010/10/26 20:33:42.0560 RasAgileVpn (7ecff9b22276b73f43a99a15a6094e90) C:\Windows\system32\DRIVERS\AgileVpn.sys 2010/10/26 20:33:42.0590 Rasl2tp (87a6e852a22991580d6d39adc4790463) C:\Windows\system32\DRIVERS\rasl2tp.sys 2010/10/26 20:33:42.0610 RasPppoe (855c9b1cd4756c5e9a2aa58a15f58c25) C:\Windows\system32\DRIVERS\raspppoe.sys 2010/10/26 20:33:42.0630 RasSstp (e8b1e447b008d07ff47d016c2b0eeecb) C:\Windows\system32\DRIVERS\rassstp.sys 2010/10/26 20:33:42.0650 rdbss (3bac8142102c15d59a87757c1d41dce5) C:\Windows\system32\DRIVERS\rdbss.sys 2010/10/26 20:33:42.0680 rdpbus (302da2a0539f2cf54d7c6cc30c1f2d8d) C:\Windows\system32\DRIVERS\rdpbus.sys 2010/10/26 20:33:42.0690 RDPCDD (cea6cc257fc9b7715f1c2b4849286d24) C:\Windows\system32\DRIVERS\RDPCDD.sys 2010/10/26 20:33:42.0710 RDPDR (9706b84dbabfc4b4ca46c5a82b14dfa3) C:\Windows\system32\drivers\rdpdr.sys 2010/10/26 20:33:42.0720 RDPENCDD (bb5971a4f00659529a5c44831af22365) C:\Windows\system32\drivers\rdpencdd.sys 2010/10/26 20:33:42.0750 RDPREFMP (216f3fa57533d98e1f74ded70113177a) C:\Windows\system32\drivers\rdprefmp.sys 2010/10/26 20:33:42.0770 RDPWD (8a3e6bea1c53ea6177fe2b6eba2c80d7) C:\Windows\system32\drivers\RDPWD.sys 2010/10/26 20:33:42.0790 rdyboost (634b9a2181d98f15941236886164ec8b) C:\Windows\system32\drivers\rdyboost.sys 2010/10/26 20:33:42.0860 rspndr (ddc86e4f8e7456261e637e3552e804ff) C:\Windows\system32\DRIVERS\rspndr.sys 2010/10/26 20:33:42.0910 RTL8167 (7ea8d2eb9bbfd2ab8a3117a1e96d3b3a) C:\Windows\system32\DRIVERS\Rt64win7.sys 2010/10/26 20:33:42.0930 s3cap (88af6e02ab19df7fd07ecdf9c91e9af6) C:\Windows\system32\DRIVERS\vms3cap.sys 2010/10/26 20:33:42.0980 sbp2port (e3bbb89983daf5622c1d50cf49f28227) C:\Windows\system32\DRIVERS\sbp2port.sys 2010/10/26 20:33:43.0010 scfilter (c94da20c7e3ba1dca269bc8460d98387) C:\Windows\system32\DRIVERS\scfilter.sys 2010/10/26 20:33:43.0070 ScreamBAudioSvc (490b0b68bb938d5c628ec4a67277be75) C:\Windows\system32\drivers\ScreamingBAudio64.sys 2010/10/26 20:33:43.0090 secdrv (3ea8a16169c26afbeb544e0e48421186) C:\Windows\system32\drivers\secdrv.sys 2010/10/26 20:33:43.0130 Serenum (cb624c0035412af0debec78c41f5ca1b) C:\Windows\system32\DRIVERS\serenum.sys 2010/10/26 20:33:43.0150 Serial (c1d8e28b2c2adfaec4ba89e9fda69bd6) C:\Windows\system32\DRIVERS\serial.sys 2010/10/26 20:33:43.0170 sermouse (1c545a7d0691cc4a027396535691c3e3) C:\Windows\system32\DRIVERS\sermouse.sys 2010/10/26 20:33:43.0230 sffdisk (a554811bcd09279536440c964ae35bbf) C:\Windows\system32\DRIVERS\sffdisk.sys 2010/10/26 20:33:43.0270 sffp_mmc (ff414f0baefeba59bc6c04b3db0b87bf) C:\Windows\system32\DRIVERS\sffp_mmc.sys 2010/10/26 20:33:43.0290 sffp_sd (178298f767fe638c9fedcbdef58bb5e4) C:\Windows\system32\DRIVERS\sffp_sd.sys 2010/10/26 20:33:43.0310 sfloppy (a9d601643a1647211a1ee2ec4e433ff4) C:\Windows\system32\DRIVERS\sfloppy.sys 2010/10/26 20:33:43.0350 SiSRaid2 (843caf1e5fde1ffd5ff768f23a51e2e1) C:\Windows\system32\DRIVERS\SiSRaid2.sys 2010/10/26 20:33:43.0370 SiSRaid4 (6a6c106d42e9ffff8b9fcb4f754f6da4) C:\Windows\system32\DRIVERS\sisraid4.sys 2010/10/26 20:33:43.0380 Smb (548260a7b8654e024dc30bf8a7c5baa4) C:\Windows\system32\DRIVERS\smb.sys 2010/10/26 20:33:43.0440 spldr (b9e31e5cacdfe584f34f730a677803f9) C:\Windows\system32\drivers\spldr.sys 2010/10/26 20:33:43.0490 srv (de6f5658da951c4bc8e498570b5b0d5f) C:\Windows\system32\DRIVERS\srv.sys 2010/10/26 20:33:43.0520 srv2 (4d33d59c0b930c523d29f9bd40cda9d2) C:\Windows\system32\DRIVERS\srv2.sys 2010/10/26 20:33:43.0550 srvnet (5a663fd67049267bc5c3f3279e631ffb) C:\Windows\system32\DRIVERS\srvnet.sys 2010/10/26 20:33:43.0600 StarPortLite (93a84f6c9423117a622ed2b5ae7441a4) C:\Windows\system32\DRIVERS\StarPortLite.sys 2010/10/26 20:33:43.0620 stexstor (f3817967ed533d08327dc73bc4d5542a) C:\Windows\system32\DRIVERS\stexstor.sys 2010/10/26 20:33:43.0640 storflt (ffd7a6f15b14234b5b0e5d49e7961895) C:\Windows\system32\DRIVERS\vmstorfl.sys 2010/10/26 20:33:43.0660 storvsc (8fccbefc5c440b3c23454656e551b09a) C:\Windows\system32\DRIVERS\storvsc.sys 2010/10/26 20:33:43.0680 swenum (d01ec09b6711a5f8e7e6564a4d0fbc90) C:\Windows\system32\DRIVERS\swenum.sys 2010/10/26 20:33:43.0750 tap0901 (4ef44915e522f3ecd1a3ff540aa64126) C:\Windows\system32\DRIVERS\tap0901.sys 2010/10/26 20:33:43.0820 Tcpip (90a2d722cf64d911879d6c4a4f802a4d) C:\Windows\system32\drivers\tcpip.sys 2010/10/26 20:33:43.0880 TCPIP6 (90a2d722cf64d911879d6c4a4f802a4d) C:\Windows\system32\DRIVERS\tcpip.sys 2010/10/26 20:33:43.0910 tcpipreg (76d078af6f587b162d50210f761eb9ed) C:\Windows\system32\drivers\tcpipreg.sys 2010/10/26 20:33:43.0940 TDPIPE (3371d21011695b16333a3934340c4e7c) C:\Windows\system32\drivers\tdpipe.sys 2010/10/26 20:33:43.0960 TDTCP (e4245bda3190a582d55ed09e137401a9) C:\Windows\system32\drivers\tdtcp.sys 2010/10/26 20:33:43.0970 tdx (079125c4b17b01fcaeebce0bcb290c0f) C:\Windows\system32\DRIVERS\tdx.sys 2010/10/26 20:33:43.0990 TermDD (c448651339196c0e869a355171875522) C:\Windows\system32\DRIVERS\termdd.sys 2010/10/26 20:33:44.0050 tmpreflt (ee0d3cb7368bf08ff5610dd62990e62e) C:\Windows\system32\DRIVERS\tmpreflt.sys 2010/10/26 20:33:44.0100 tmxpflt (850db5e4b0c840c1ede013ac9838f1eb) C:\Windows\system32\DRIVERS\tmxpflt.sys 2010/10/26 20:33:44.0160 tssecsrv (61b96c26131e37b24e93327a0bd1fb95) C:\Windows\system32\DRIVERS\tssecsrv.sys 2010/10/26 20:33:44.0190 tunnel (3836171a2cdf3af8ef10856db9835a70) C:\Windows\system32\DRIVERS\tunnel.sys 2010/10/26 20:33:44.0220 uagp35 (b4dd609bd7e282bfc683cec7eaaaad67) C:\Windows\system32\DRIVERS\uagp35.sys 2010/10/26 20:33:44.0270 udfs (d47baead86c65d4f4069d7ce0a4edceb) C:\Windows\system32\DRIVERS\udfs.sys 2010/10/26 20:33:44.0320 uliagpkx (4bfe1bc28391222894cbf1e7d0e42320) C:\Windows\system32\DRIVERS\uliagpkx.sys 2010/10/26 20:33:44.0350 umbus (eab6c35e62b1b0db0d1b48b671d3a117) C:\Windows\system32\DRIVERS\umbus.sys 2010/10/26 20:33:44.0380 UmPass (b2e8e8cb557b156da5493bbddcc1474d) C:\Windows\system32\DRIVERS\umpass.sys 2010/10/26 20:33:44.0430 usbaudio (77b01bc848298223a95d4ec23e1785a1) C:\Windows\system32\drivers\usbaudio.sys 2010/10/26 20:33:44.0450 usbccgp (b26afb54a534d634523c4fb66765b026) C:\Windows\system32\DRIVERS\usbccgp.sys 2010/10/26 20:33:44.0470 usbcir (af0892a803fdda7492f595368e3b68e7) C:\Windows\system32\DRIVERS\usbcir.sys 2010/10/26 20:33:44.0490 usbehci (2ea4aff7be7eb4632e3aa8595b0803b5) C:\Windows\system32\DRIVERS\usbehci.sys 2010/10/26 20:33:44.0520 usbhub (4c9042b8df86c1e8e6240c218b99b39b) C:\Windows\system32\DRIVERS\usbhub.sys 2010/10/26 20:33:44.0540 usbohci (58e546bbaf87664fc57e0f6081e4f609) C:\Windows\system32\DRIVERS\usbohci.sys 2010/10/26 20:33:44.0550 usbprint (73188f58fb384e75c4063d29413cee3d) C:\Windows\system32\DRIVERS\usbprint.sys 2010/10/26 20:33:44.0590 usbscan (aaa2513c8aed8b54b189fd0c6b1634c0) C:\Windows\system32\DRIVERS\usbscan.sys 2010/10/26 20:33:44.0620 USBSTOR (080d3820da6c046be82fc8b45a893e83) C:\Windows\system32\DRIVERS\USBSTOR.SYS 2010/10/26 20:33:44.0680 usbuhci (81fb2216d3a60d1284455d511797db3d) C:\Windows\system32\DRIVERS\usbuhci.sys 2010/10/26 20:33:44.0770 usbvideo (7cb8c573c6e4a2714402cc0a36eab4fe) C:\Windows\System32\Drivers\usbvideo.sys 2010/10/26 20:33:44.0810 vdrvroot (c5c876ccfc083ff3b128f933823e87bd) C:\Windows\system32\DRIVERS\vdrvroot.sys 2010/10/26 20:33:44.0840 vga (da4da3f5e02943c2dc8c6ed875de68dd) C:\Windows\system32\DRIVERS\vgapnp.sys 2010/10/26 20:33:44.0860 VgaSave (53e92a310193cb3c03bea963de7d9cfc) C:\Windows\System32\drivers\vga.sys 2010/10/26 20:33:44.0890 vhdmp (c82e748660f62a242b2dfac1442f22a4) C:\Windows\system32\DRIVERS\vhdmp.sys 2010/10/26 20:33:44.0910 viaide (e5689d93ffe4e5d66c0178761240dd54) C:\Windows\system32\DRIVERS\viaide.sys 2010/10/26 20:33:44.0920 vmbus (1501699d7eda984abc4155a7da5738d1) C:\Windows\system32\DRIVERS\vmbus.sys 2010/10/26 20:33:44.0950 VMBusHID (ae10c35761889e65a6f7176937c5592c) C:\Windows\system32\DRIVERS\VMBusHID.sys 2010/10/26 20:33:44.0970 volmgr (2b1a3dae2b4e70dbba822b7a03fbd4a3) C:\Windows\system32\DRIVERS\volmgr.sys 2010/10/26 20:33:45.0000 volmgrx (99b0cbb569ca79acaed8c91461d765fb) C:\Windows\system32\drivers\volmgrx.sys 2010/10/26 20:33:45.0040 volsnap (58f82eed8ca24b461441f9c3e4f0bf5c) C:\Windows\system32\DRIVERS\volsnap.sys 2010/10/26 20:33:45.0110 vsapint (6a42451b220ac2eaeb3524200c3b8acc) C:\Windows\system32\DRIVERS\vsapint.sys 2010/10/26 20:33:45.0150 vsmraid (5e2016ea6ebaca03c04feac5f330d997) C:\Windows\system32\DRIVERS\vsmraid.sys 2010/10/26 20:33:45.0190 vwifibus (36d4720b72b5c5d9cb2b9c29e9df67a1) C:\Windows\System32\drivers\vwifibus.sys 2010/10/26 20:33:45.0230 WacomPen (4e9440f4f152a7b944cb1663d3935a3e) C:\Windows\system32\DRIVERS\wacompen.sys 2010/10/26 20:33:45.0260 WANARP (47ca49400643effd3f1c9a27e1d69324) C:\Windows\system32\DRIVERS\wanarp.sys 2010/10/26 20:33:45.0270 Wanarpv6 (47ca49400643effd3f1c9a27e1d69324) C:\Windows\system32\DRIVERS\wanarp.sys 2010/10/26 20:33:45.0320 Wd (72889e16ff12ba0f235467d6091b17dc) C:\Windows\system32\DRIVERS\wd.sys 2010/10/26 20:33:45.0350 Wdf01000 (441bd2d7b4f98134c3a4f9fa570fd250) C:\Windows\system32\drivers\Wdf01000.sys 2010/10/26 20:33:45.0390 WfpLwf (611b23304bf067451a9fdee01fbdd725) C:\Windows\system32\DRIVERS\wfplwf.sys 2010/10/26 20:33:45.0410 WIMMount (05ecaec3e4529a7153b3136ceb49f0ec) C:\Windows\system32\drivers\wimmount.sys 2010/10/26 20:33:45.0490 WinUsb (817eaff5d38674edd7713b9dfb8e9791) C:\Windows\system32\DRIVERS\WinUsb.sys 2010/10/26 20:33:45.0550 WmBEnum (14dc5897bc6c4e03c023ad80abb7f539) C:\Windows\system32\drivers\WmBEnum.sys 2010/10/26 20:33:45.0590 WmFilter (2de0a0cea49972c82c7e9d36bd4c1247) C:\Windows\system32\drivers\WmFilter.sys 2010/10/26 20:33:45.0600 WmiAcpi (f6ff8944478594d0e414d3f048f0d778) C:\Windows\system32\DRIVERS\wmiacpi.sys 2010/10/26 20:33:45.0640 WmVirHid (53c12ae1183f3f7787f1f1835001ccc0) C:\Windows\system32\drivers\WmVirHid.sys 2010/10/26 20:33:45.0660 WmXlCore (c807e470cca24f5e479da4872a7d2121) C:\Windows\system32\drivers\WmXlCore.sys 2010/10/26 20:33:45.0690 ws2ifsl (6bcc1d7d2fd2453957c5479a32364e52) C:\Windows\system32\drivers\ws2ifsl.sys 2010/10/26 20:33:45.0740 WudfPf (7cadc74271dd6461c452c271b30bd378) C:\Windows\system32\drivers\WudfPf.sys 2010/10/26 20:33:45.0760 WUDFRd (3b197af0fff08aa66b6b2241ca538d64) C:\Windows\system32\DRIVERS\WUDFRd.sys 2010/10/26 20:33:45.0830 ================================================================================ 2010/10/26 20:33:45.0830 Scan finished 2010/10/26 20:33:45.0830 ================================================================================
  16. Hello people. Last week, out of the blue, I began seeing pop-ups from Windows security. They all look almost the same and now I get this too I cannot see any websites that use flash, because it tells me I don't have it installed, but it also won't let me install it. I cannot install programs. It does the same kind of error. Also I have lost the ability to right click on stuff like "My Computer" & "My network places" I tend to take security serious. I run Avast Free - every night I update and scan. Malwarebytes - Updated daily, and I run it every other day Spybot a&d - Updated daily, and I run it every other day hijackthis I also use these tools to keep my registry spiffy I have run Avast, Malwarebytes, Spybot a&d, multiple times, there were a few small things like tracking cookies, and something else, anyways I got rid of it all. I have also ran Malwarebytes and Spybot in safe mode, they found nothing. I run W7x64 Ultimate. I ask you gods of the interwebz to help me out. I am tired of not being able to do anything. Here is my hijackthis scan Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 7:28:46 PM, on 10/26/2010 Running processes: C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe C:\Program Files (x86)\Microsoft Office\Office12\WINWORD.EXE C:\Windows\SysWOW64\DllHost.exe C:\Program Files (x86)\Skype\Phone\Skype.exe C:\Program Files (x86)\Mozilla Firefox\firefox.exe C:\Windows\SysWOW64\NOTEPAD.EXE C:\Program Files (x86)\Trend Micro\HiJackThis\HiJackThis.exe R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=;ftp=;https=; R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - (no file) O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll (filesize 328248 bytes, MD5 972F4608E0BA74BE1DB448947E5A9822) O2 - BHO: ContributeBHO Class - {074C1DC5-9320-4A9A-947D-C042949C6216} - C:\Program Files (x86)\Adobe\Adobe Contribute CS5\Plugins\IEPlugin\contributeieplugin.dll (filesize 164312 bytes, MD5 243D02AF4004D601979DB31C9CFD8C56) O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (filesize 439168 bytes, MD5 6BF01E200063D7274F3AF06D226671F5) O2 - BHO: Babylon IE plugin - {9CFACCB6-2F3F-4177-94EA-0D2B72D384C1} - C:\Program Files (x86)\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll (filesize 253368 bytes, MD5 62EB08F9C1817EBCE5F2D5120B53612C) O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll (filesize 41760 bytes, MD5 6D5ADB1C823BFE21F9431D0995C7B185) O2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll (filesize 517688 bytes, MD5 4743B45C41BE35709F81BEC62FDA0AA0) O3 - Toolbar: Contribute Toolbar - {517BDDE4-E3A7-4570-B21E-2B52B6139FC7} - C:\Program Files (x86)\Adobe\Adobe Contribute CS5\Plugins\IEPlugin\contributeieplugin.dll (filesize 164312 bytes, MD5 243D02AF4004D601979DB31C9CFD8C56) O4 - HKLM\..\Run: [hpqSRMon] C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSRMon.exeC:\Program Files (x86)\HP\Digital Imaging\bin\hpqSRMon.exe O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" (filesize 248552 bytes, MD5 93DB1FF92B03D24738A71E6E4992DFD3) O4 - HKLM\..\Run: [startCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun (filesize 98304 bytes, MD5 0700EA00C2CBB1F89E2681F90A14820C) O4 - HKLM\..\Run: [ATICustomerCare] "C:\Program Files (x86)\ATI\ATICustomerCare\ATICustomerCare.exe" (filesize 311296 bytes, MD5 9B5E7EFF0485F39A9663314667D97049) O4 - HKCU\..\Run: [spybotSD TeaTimer] C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exeC:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe O4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE') O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE') O8 - Extra context menu item: Translate this web page with Babylon - res://C:\Program Files (x86)\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll/ActionTU.htm O8 - Extra context menu item: Translate with Babylon - res://C:\Program Files (x86)\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll/Action.htm O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll (filesize 188256 bytes, MD5 57CD4DE872712335A91F214572B4682B) O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll (filesize 188256 bytes, MD5 57CD4DE872712335A91F214572B4682B) O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll (filesize 603040 bytes, MD5 79F7DB36E67B9E8365FA824AD96DF400) O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll (filesize 603040 bytes, MD5 79F7DB36E67B9E8365FA824AD96DF400) O9 - Extra button: Show or hide HP Smart Web Printing - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll (filesize 517688 bytes, MD5 4743B45C41BE35709F81BEC62FDA0AA0) O9 - Extra button: Translate this web page with Babylon - {F72841F0-4EF1-4df5-BCE5-B3AC8ACF5478} - C:\Program Files (x86)\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll (filesize 253368 bytes, MD5 62EB08F9C1817EBCE5F2D5120B53612C) O9 - Extra 'Tools' menuitem: Translate this web page with Babylon - {F72841F0-4EF1-4df5-BCE5-B3AC8ACF5478} - C:\Program Files (x86)\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll (filesize 253368 bytes, MD5 62EB08F9C1817EBCE5F2D5120B53612C) O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (filesize 2135336 bytes, MD5 028FF74DAFDC7BB45C956A5EC8926CEE) O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll (filesize 42864 bytes, MD5 FDA40F2BEC7490A81F0F644474090447) O20 - AppInit_DLLs: le??????( O23 - Service: SAS Core Service (!SASCORE) - - (no file) O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing) O23 - Service: ASP.NET State Service (aspnet_state) - Unknown owner - C:\Windows\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe (file missing) O23 - Service: ASUS System Control Service (AsSysCtrlService) - Unknown owner - C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.02\AsSysCtrlService.exeC:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.02\AsSysCtrlService.exe O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files (x86)\Bonjour\mDNSResponder.exeC:\Program Files (x86)\Bonjour\mDNSResponder.exe O23 - Service: DeviceVM Meta Data Export Service (DvmMDES) - DeviceVM, Inc. - C:\ASUS.SYS\config\DVMExportService.exeC:\ASUS.SYS\config\DVMExportService.exe O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing) O23 - Service: FABS - Helping agent for MAGIX media database (Fabs) - MAGIX AG - C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exeC:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing) O23 - Service: Firebird Server - MAGIX Instance (FirebirdServerMAGIXInstance) - MAGIX
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.