Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Possibly Infected Computer


  • This topic is locked This topic is locked
16 replies to this topic

#1 Sutieday

Sutieday

  • Members
  • 12 posts
  • OFFLINE
  •  
  • Local time:05:08 AM

Posted 14 August 2013 - 11:17 PM

I'm not sure if I am infected, here are my dds logs.

 

DDS (Ver_2012-11-20.01) - NTFS_AMD64
Internet Explorer: 10.0.9200.16660
Run by Clinton at 22:09:23 on 2013-08-14
Microsoft Windows 7 Home Premium   6.1.7601.1.1252.1.1033.18.4044.2018 [GMT -4:00]
.
AV: COMODO Antivirus *Enabled/Updated* {B74CC7D2-B407-E1DC-1033-DD315BCDC8C8}
SP: Windows Defender *Disabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: COMODO Antivirus *Enabled/Updated* {0C2D2636-923D-EE52-2A83-E643204A8275}
FW: COMODO Firewall *Enabled* {8F7746F7-FE68-E084-3B6C-7404A51E8FB3}
.
============== Running Processes ===============
.
C:\windows\system32\lsm.exe
C:\windows\system32\svchost.exe -k DcomLaunch
C:\windows\system32\svchost.exe -k RPCSS
C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
C:\windows\system32\svchost.exe -k NetworkService
C:\windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\windows\system32\svchost.exe -k LocalService
C:\windows\system32\svchost.exe -k netsvcs
C:\windows\system32\svchost.exe -k GPSvcGroup
C:\windows\system32\WLANExt.exe
C:\windows\System32\spoolsv.exe
C:\windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\windows\system32\CISVC.EXE
C:\windows\system32\svchost.exe -k imgsvc
C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe
C:\windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\windows\system32\SearchIndexer.exe
C:\windows\system32\taskhost.exe
C:\windows\system32\Dwm.exe
C:\windows\Explorer.EXE
C:\Program Files\COMODO\COMODO Internet Security\CisTray.exe
C:\Program Files (x86)\OpenDNS Updater\OpenDNSUpdater.exe
C:\Program Files\COMODO\COMODO Internet Security\cis.exe
C:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
C:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
C:\windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\windows\servicing\TrustedInstaller.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files\COMODO\COMODO Internet Security\cavwp.exe
C:\Program Files\COMODO\COMODO Internet Security\cavwp.exe
C:\Program Files\COMODO\COMODO Internet Security\CIS.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\windows\system32\wbem\wmiprvse.exe
C:\windows\System32\cscript.exe
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxps://duckduckgo.com/
uDefault_Page_URL = hxxp://start.toshiba.com
mURLSearchHooks: {8bdea9d6-6f62-45eb-8ee9-8a81af0d2f94} - <orphaned>
mWinlogon: Userinit = userinit.exe,
uRun: [OpenDNS Updater] "C:\Program Files (x86)\OpenDNS Updater\OpenDNSUpdater.exe" /autostart
uRun: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
mRun: [KeePass 2 PreLoad] "C:\Program Files (x86)\KeePass Password Safe 2\KeePass.exe" --preload
StartupFolder: C:\Users\Clinton\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\StartUp\MOZILL~1.LNK - C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe
uPolicies-Explorer: NoDriveTypeAutoRun = dword:221
uPolicies-Explorer: NoResolveTrack = dword:1
uPolicies-DisallowRun: 1 = rund1132.exe
uPolicies-DisallowRun: 2 = m5vbvm60.exe
uPolicies-DisallowRun: 3 = Unoccupied.reg
uPolicies-DisallowRun: 4 = Regedit32.com
uPolicies-DisallowRun: 5 = Shell32.com
uPolicies-DisallowRun: 6 = dllchache.exe
uPolicies-DisallowRun: 7 = services_test.exe
uPolicies-DisallowRun: 8 = New Folder.exe
uPolicies-DisallowRun: 9 = systemio.exe
uPolicies-DisallowRun: 10 = JK.exe
uPolicies-DisallowRun: 11 = rundl132.exe
uPolicies-DisallowRun: 12 = Logo1_.exe
uPolicies-DisallowRun: 13 = RichDll.exe
uPolicies-DisallowRun: 14 = loveRabbit.exe
uPolicies-DisallowRun: 15 = msexch400.exe
uPolicies-DisallowRun: 16 = Rabbit.exe
uPolicies-DisallowRun: 17 = aut0exec.bat
uPolicies-DisallowRun: 18 = ntde1ect.com
uPolicies-DisallowRun: 19 = Mixa.exe
uPolicies-DisallowRun: 20 = apvo.exe
uPolicies-DisallowRun: 21 = expressav.exe
uPolicies-DisallowRun: 22 = apv0.exe
uPolicies-DisallowRun: 23 = l33na.exe
uPolicies-DisallowRun: 24 = ed.exe
uPolicies-DisallowRun: 25 = spooisv.exe
uPolicies-DisallowRun: 26 = rttrwq.exe
uPolicies-DisallowRun: 27 = _use.exe
uPolicies-DisallowRun: 28 = 11-00.exe
uPolicies-DisallowRun: 29 = wmibus.exe
uPolicies-DisallowRun: 30 = wmisys.exe
uPolicies-DisallowRun: 31 = Normal.exe
uPolicies-DisallowRun: 32 = execute.exe
uPolicies-DisallowRun: 33 = leena.job
uPolicies-DisallowRun: 34 = leena.exe
uPolicies-DisallowRun: 35 = aneel.exe
uPolicies-DisallowRun: 36 = wuauc1t.exe
uPolicies-DisallowRun: 37 = Win32dll.exe
uPolicies-DisallowRun: 38 = Win32.dll.vbs
uPolicies-DisallowRun: 39 = SteamDll32.exe
uPolicies-DisallowRun: 40 = WinSteam.exe
uPolicies-DisallowRun: 41 = SteamHelper.exe
uPolicies-DisallowRun: 42 = kavo.exe
uPolicies-DisallowRun: 43 = spoclsv.exe
uPolicies-DisallowRun: 44 = dfqnabib.exe
uPolicies-DisallowRun: 45 = sfsxachu.exe
uPolicies-DisallowRun: 46 = stjxakin.exe
uPolicies-DisallowRun: 47 = tjfyabyt.exe
uPolicies-DisallowRun: 48 = kdaic.exe
uPolicies-DisallowRun: 49 = zsdjabmp.exe
uPolicies-DisallowRun: 50 = lpmxajkl.exe
uPolicies-DisallowRun: 51 = dfqnabib.exe
uPolicies-DisallowRun: 52 = WINLOG0N.exe
uPolicies-DisallowRun: 53 = SVCH0ST.exe
uPolicies-DisallowRun: 54 = System.exe
uPolicies-DisallowRun: 55 = phim nguoi lon.exe
uPolicies-DisallowRun: 56 = password_viewer.exe
uPolicies-DisallowRun: 57 = SVCHOST555.exe
uPolicies-DisallowRun: 58 = inst_vinh.exe
uPolicies-DisallowRun: 59 = Bro_Act.exe
uPolicies-DisallowRun: 60 = braviax.exe
uPolicies-DisallowRun: 61 = CbEvtSvc.exe
uPolicies-DisallowRun: 62 = MySexy.exe
uPolicies-DisallowRun: 63 = msconfig.com
uPolicies-DisallowRun: 64 = regedit.com
uPolicies-DisallowRun: 65 = default__.pif
uPolicies-DisallowRun: 66 = jvosoft.exe
uPolicies-DisallowRun: 67 = 9sky8pia.exe
uPolicies-DisallowRun: 68 = amvo0.exe
uPolicies-DisallowRun: 69 = lphc9dkj0ec6a.exe
uPolicies-DisallowRun: 70 = rhcahej0ej6v.exe
uPolicies-DisallowRun: 71 = chiCkie.exe
uPolicies-DisallowRun: 72 = ExeServ.exe
uPolicies-DisallowRun: 73 = Av-Prev.exe
uPolicies-DisallowRun: 74 = ati2avxx.exe
uPolicies-DisallowRun: 75 = Sex Picture.scr
uPolicies-DisallowRun: 76 = xpupdate.exe
uPolicies-DisallowRun: 77 = comine.exe
uPolicies-DisallowRun: 78 = autochl.exe
uPolicies-DisallowRun: 79 = log.exe
uPolicies-DisallowRun: 80 = comboClt.ocx.vbs
uPolicies-DisallowRun: 81 = Sos.exe
uPolicies-DisallowRun: 82 = kxvo.exe
uPolicies-DisallowRun: 83 = zz.exe
uPolicies-DisallowRun: 84 = lsasss.exe
uPolicies-DisallowRun: 85 = order.exe
uPolicies-DisallowRun: 86 = Flashy.exe
uPolicies-DisallowRun: 87 = meex.exe
uPolicies-DisallowRun: 88 = xibgptd.exe
uPolicies-DisallowRun: 89 = xmjisnw.exe
uPolicies-DisallowRun: 90 = asd0.exe
uPolicies-DisallowRun: 91 = windowsupd2.exe
uPolicies-DisallowRun: 92 = winhost.exe
uPolicies-DisallowRun: 93 = quicken.exe
uPolicies-DisallowRun: 94 = editpad.exe
uPolicies-DisallowRun: 95 = nwonknu.exe
uPolicies-DisallowRun: 96 = rasrun.exe
uPolicies-DisallowRun: 97 = psdrv.exe
uPolicies-DisallowRun: 98 = svci.exe
uPolicies-DisallowRun: 99 = unknown.exe
uPolicies-DisallowRun: 100 = castlecops[1].exe
uPolicies-DisallowRun: 101 = 1014[1].exe
uPolicies-DisallowRun: 102 = is[1].exe
uPolicies-DisallowRun: 103 = wcs.exe
uPolicies-DisallowRun: 104 = Sizhu.exe
uPolicies-DisallowRun: 105 = ibrv.exe
uPolicies-DisallowRun: 106 = vgguxso.exe
uPolicies-DisallowRun: 107 = uitxjwa.exe
uPolicies-DisallowRun: 108 = loadam.exe
uPolicies-DisallowRun: 109 = sunny.exe
uPolicies-DisallowRun: 110 = etialof.exe
uPolicies-DisallowRun: 111 = sdjxeqi.exe
uPolicies-DisallowRun: 112 = tsnqtjn.exe
uPolicies-DisallowRun: 113 = dluxde.exe
uPolicies-DisallowRun: 114 = Soft0
uPolicies-DisallowRun: 115 = 1.exe
uPolicies-DisallowRun: 116 = 10.exe
uPolicies-DisallowRun: 117 = SVOHOST.exe
uPolicies-DisallowRun: 118 = sxs.exe
uPolicies-DisallowRun: 119 = phimnguoilon.exe
uPolicies-DisallowRun: 120 = amvo.exe
uPolicies-DisallowRun: 121 = n1deiect.com
uPolicies-DisallowRun: 122 = qwc.exe
uPolicies-DisallowRun: 123 = tknn6.bat
uPolicies-DisallowRun: 124 = 6l6w8.com
uPolicies-DisallowRun: 125 = hay.exe
uPolicies-DisallowRun: 126 = more.exe
uPolicies-DisallowRun: 127 = nontay.exe
uPolicies-DisallowRun: 128 = boom.vbs
uPolicies-DisallowRun: 129 = drivers.cab.exe
uPolicies-DisallowRun: 130 = KEYBOARD.exe
uPolicies-DisallowRun: 131 = Global.exe
uPolicies-DisallowRun: 132 = jdbgmgr.exe
uPolicies-DisallowRun: 133 = secret.exe
uPolicies-DisallowRun: 134 = xdict.exe
uPolicies-DisallowRun: 135 = algssl.exe
uPolicies-DisallowRun: 136 = phimhot.exe
uPolicies-DisallowRun: 137 = other.exe
uPolicies-DisallowRun: 138 = fun.exe
uPolicies-DisallowRun: 139 = winsit.exe
uPolicies-DisallowRun: 140 = sal.xls.exe
uPolicies-DisallowRun: 141 = msfir80.exe
uPolicies-DisallowRun: 142 =  .exe
uPolicies-DisallowRun: 143 = MSconfigg.exe
uPolicies-DisallowRun: 144 = servics.exe
uPolicies-DisallowRun: 145 = expl0rer.exe
uPolicies-DisallowRun: 146 = tel.xls.exe
uPolicies-DisallowRun: 147 = funni.exe
uPolicies-DisallowRun: 148 = kvosoft.exe
uPolicies-DisallowRun: 149 = 4.exe
uPolicies-DisallowRun: 150 = 2008.exe
uPolicies-DisallowRun: 151 = folder.exe
uPolicies-DisallowRun: 152 = knx32.exe
uPolicies-DisallowRun: 153 = Mixa_I.exe
uPolicies-DisallowRun: 154 = bleep.exe
uPolicies-DisallowRun: 155 = Happy99.exe
uPolicies-DisallowRun: 156 = SKA.EXE
uPolicies-DisallowRun: 157 = sysmgr.exe
uPolicies-DisallowRun: 158 = Mixa_1.exe
uPolicies-DisallowRun: 159 = skynet.exe
uPolicies-DisallowRun: 160 = Isass.exe
uPolicies-DisallowRun: 161 = 8out.exe
uPolicies-DisallowRun: 162 = lotto.exe
uPolicies-DisallowRun: 163 = ieav.exe
uPolicies-DisallowRun: 164 = win32.host.exe
uPolicies-DisallowRun: 165 = osgjaaj.exe
uPolicies-DisallowRun: 166 = info.exe
uPolicies-DisallowRun: 167 = ads.jpg.exe
uPolicies-DisallowRun: 168 = CKVO.EXE
uPolicies-DisallowRun: 169 = a2.exe
uPolicies-DisallowRun: 170 = rundii32.exe
uPolicies-DisallowRun: 171 = cd.exe
uPolicies-DisallowRun: 172 = ph.com
uPolicies-DisallowRun: 173 = winivstr.exe
uPolicies-DisallowRun: 174 = Default.exe
uPolicies-DisallowRun: 175 = NTDETECH.com
uPolicies-DisallowRun: 176 = l63snn8.exe
uPolicies-DisallowRun: 177 = svhost.exe
uPolicies-DisallowRun: 178 = svchot.exe
uPolicies-DisallowRun: 179 = svch0t.exe
uPolicies-DisallowRun: 180 = svh0st.exe
uPolicies-DisallowRun: 181 = my_80004.exe
uPolicies-DisallowRun: 182 = explorcr.exe
uPolicies-DisallowRun: 183 = admin6_ver0424.exe
uPolicies-DisallowRun: 184 = yeSetup.exe
uPolicies-DisallowRun: 185 = dodolook591.exe
uPolicies-DisallowRun: 186 = alexa240.exe
uPolicies-DisallowRun: 187 = 1072.exe
uPolicies-DisallowRun: 188 = atmpvcno.dll.exe
uPolicies-DisallowRun: 189 = atmlib.dll.exe
uPolicies-DisallowRun: 190 = musica.exe
uPolicies-DisallowRun: 191 = ...exe
uPolicies-DisallowRun: 192 = ..exe
uPolicies-DisallowRun: 193 = crack.com
uPolicies-DisallowRun: 194 = dwintl.dll.exe
uPolicies-DisallowRun: 195 = explorer.zip.scr
uPolicies-DisallowRun: 196 = pictures.exe
uPolicies-DisallowRun: 197 = readme.com
uPolicies-DisallowRun: 198 = 12520437.cpx.exe
uPolicies-DisallowRun: 199 = 12520850.cpx.exe
uPolicies-DisallowRun: 200 = 3com_dmi.exe
uPolicies-DisallowRun: 201 = 6to4svc.dll.exe
uPolicies-DisallowRun: 202 = access.cpl.exe
uPolicies-DisallowRun: 203 = acctres.dll.exe
uPolicies-DisallowRun: 204 = acelpdec.ax.exe
uPolicies-DisallowRun: 205 = acledit.dll.exe
uPolicies-DisallowRun: 206 = aclui.dll.exe
uPolicies-DisallowRun: 207 = activeds.dll.exe
uPolicies-DisallowRun: 208 = activeds.tlb.exe
uPolicies-DisallowRun: 209 = actxprxy.dll.exe
uPolicies-DisallowRun: 210 = admparse.dll.exe
uPolicies-DisallowRun: 211 = adodc.srg.exe
uPolicies-DisallowRun: 212 = adptif.dll.exe
uPolicies-DisallowRun: 213 = adsldp.dll.exe
uPolicies-DisallowRun: 214 = adsldpc.dll.exe
uPolicies-DisallowRun: 215 = adsmsext.dll.exe
uPolicies-DisallowRun: 216 = adsnds.dll.exe
uPolicies-DisallowRun: 217 = adsnt.dll.exe
uPolicies-DisallowRun: 218 = adsnw.dll.exe
uPolicies-DisallowRun: 219 = advapi32.dll.exe
uPolicies-DisallowRun: 220 = advpack.dll.exe
uPolicies-DisallowRun: 221 = alrsvc.dll.exe
uPolicies-DisallowRun: 222 = amcompat.tlb.exe
uPolicies-DisallowRun: 223 = amstream.dll.exe
uPolicies-DisallowRun: 224 = ansi.sys.exe
uPolicies-DisallowRun: 225 = apcups.dll.exe
uPolicies-DisallowRun: 226 = apphelp.dll.exe
uPolicies-DisallowRun: 227 = appmgmts.dll.exe
uPolicies-DisallowRun: 228 = appmgr.dll.exe
uPolicies-DisallowRun: 229 = appwiz.cpl.exe
uPolicies-DisallowRun: 230 = asctrls.ocx.exe
uPolicies-DisallowRun: 231 = asferror.dll.exe
uPolicies-DisallowRun: 232 = asycfilt.dll.exe
uPolicies-DisallowRun: 233 = atkctrs.dll.exe
uPolicies-DisallowRun: 234 = atl.dll.exe
uPolicies-DisallowRun: 235 = atmfd.dll.exe
uPolicies-DisallowRun: 236 = 100.exe
uPolicies-DisallowRun: 237 = 101.exe
uPolicies-DisallowRun: 238 = 102.exe
uPolicies-DisallowRun: 239 = 103.exe
uPolicies-DisallowRun: 240 = 104.exe
uPolicies-DisallowRun: 241 = 105.exe
uPolicies-DisallowRun: 242 = 106.exe
uPolicies-DisallowRun: 243 = 107.exe
uPolicies-DisallowRun: 244 = 108.exe
uPolicies-DisallowRun: 245 = 109.exe
uPolicies-DisallowRun: 246 = 11.exe
uPolicies-DisallowRun: 247 = 110.exe
uPolicies-DisallowRun: 248 = 111.exe
uPolicies-DisallowRun: 249 = 112.exe
uPolicies-DisallowRun: 250 = 113.exe
uPolicies-DisallowRun: 251 = 114.exe
uPolicies-DisallowRun: 252 = 115.exe
uPolicies-DisallowRun: 253 = 116.exe
uPolicies-DisallowRun: 254 = 117.exe
uPolicies-DisallowRun: 255 = 118.exe
uPolicies-DisallowRun: 256 = 119.exe
uPolicies-DisallowRun: 257 = 12.exe
uPolicies-DisallowRun: 258 = 120.exe
uPolicies-DisallowRun: 259 = 122.exe
uPolicies-DisallowRun: 260 = 123.exe
uPolicies-DisallowRun: 261 = 124.exe
uPolicies-DisallowRun: 262 = 125.exe
uPolicies-DisallowRun: 263 = blastk.exe
uPolicies-DisallowRun: 264 = 126.exe
uPolicies-DisallowRun: 265 = 127.exe
uPolicies-DisallowRun: 266 = 128.exe
uPolicies-DisallowRun: 267 = 129.exe
uPolicies-DisallowRun: 268 = 13.exe
uPolicies-DisallowRun: 269 = 130.exe
uPolicies-DisallowRun: 270 = 131.exe
uPolicies-DisallowRun: 271 = 132.exe
uPolicies-DisallowRun: 272 = 133.exe
uPolicies-DisallowRun: 273 = 134.exe
uPolicies-DisallowRun: 274 = 135.exe
uPolicies-DisallowRun: 275 = 136.exe
uPolicies-DisallowRun: 276 = 137.exe
uPolicies-DisallowRun: 277 = 138.exe
uPolicies-DisallowRun: 278 = 139.exe
uPolicies-DisallowRun: 279 = 14.exe
uPolicies-DisallowRun: 280 = 140.exe
uPolicies-DisallowRun: 281 = 141.exe
uPolicies-DisallowRun: 282 = 142.exe
uPolicies-DisallowRun: 283 = 143.exe
uPolicies-DisallowRun: 284 = 144.exe
uPolicies-DisallowRun: 285 = 145.exe
uPolicies-DisallowRun: 286 = 146.exe
uPolicies-DisallowRun: 287 = 147.exe
uPolicies-DisallowRun: 288 = 148.exe
uPolicies-DisallowRun: 289 = 149.exe
uPolicies-DisallowRun: 290 = 15.exe
uPolicies-DisallowRun: 291 = 150.exe
uPolicies-DisallowRun: 292 = 151.exe
uPolicies-DisallowRun: 293 = 152.exe
uPolicies-DisallowRun: 294 = 153.exe
uPolicies-DisallowRun: 295 = 154.exe
uPolicies-DisallowRun: 296 = 155.exe
uPolicies-DisallowRun: 297 = 156.exe
uPolicies-DisallowRun: 298 = 157.exe
uPolicies-DisallowRun: 299 = 158.exe
uPolicies-DisallowRun: 300 = 159.exe
uPolicies-DisallowRun: 301 = 16.exe
uPolicies-DisallowRun: 302 = 160.exe
uPolicies-DisallowRun: 303 = 161.exe
uPolicies-DisallowRun: 304 = 162.exe
uPolicies-DisallowRun: 305 = 163.exe
uPolicies-DisallowRun: 306 = 164.exe
uPolicies-DisallowRun: 307 = 165.exe
uPolicies-DisallowRun: 308 = 166.exe
uPolicies-DisallowRun: 309 = 167.exe
uPolicies-DisallowRun: 310 = 168.exe
uPolicies-DisallowRun: 311 = 169.exe
uPolicies-DisallowRun: 312 = 17.exe
uPolicies-DisallowRun: 313 = 170.exe
uPolicies-DisallowRun: 314 = 171.exe
uPolicies-DisallowRun: 315 = 172.exe
uPolicies-DisallowRun: 316 = 173.exe
uPolicies-DisallowRun: 317 = 174.exe
uPolicies-DisallowRun: 318 = 175.exe
uPolicies-DisallowRun: 319 = 176.exe
uPolicies-DisallowRun: 320 = 177.exe
uPolicies-DisallowRun: 321 = 178.exe
uPolicies-DisallowRun: 322 = 179.exe
uPolicies-DisallowRun: 323 = 18.exe
uPolicies-DisallowRun: 324 = 180.exe
uPolicies-DisallowRun: 325 = 181.exe
uPolicies-DisallowRun: 326 = 182.exe
uPolicies-DisallowRun: 327 = 183.exe
uPolicies-DisallowRun: 328 = 184.exe
uPolicies-DisallowRun: 329 = 185.exe
uPolicies-DisallowRun: 330 = 186.exe
uPolicies-DisallowRun: 331 = 187.exe
uPolicies-DisallowRun: 332 = 188.exe
uPolicies-DisallowRun: 333 = 189.exe
uPolicies-DisallowRun: 334 = 19.exe
uPolicies-DisallowRun: 335 = 190.exe
uPolicies-DisallowRun: 336 = 191.exe
uPolicies-DisallowRun: 337 = 192.exe
uPolicies-DisallowRun: 338 = 193.exe
uPolicies-DisallowRun: 339 = 194.exe
uPolicies-DisallowRun: 340 = 195.exe
uPolicies-DisallowRun: 341 = 196.exe
uPolicies-DisallowRun: 342 = 197.exe
uPolicies-DisallowRun: 343 = 198.exe
uPolicies-DisallowRun: 344 = 199.exe
uPolicies-DisallowRun: 345 = 20.exe
uPolicies-DisallowRun: 346 = 21.exe
uPolicies-DisallowRun: 347 = 22.exe
uPolicies-DisallowRun: 348 = 23.exe
uPolicies-DisallowRun: 349 = 24.exe
uPolicies-DisallowRun: 350 = 25.exe
uPolicies-DisallowRun: 351 = 26.exe
uPolicies-DisallowRun: 352 = 27.exe
uPolicies-DisallowRun: 353 = 28.exe
uPolicies-DisallowRun: 354 = 29.exe
uPolicies-DisallowRun: 355 = 3.exe
uPolicies-DisallowRun: 356 = 30.exe
uPolicies-DisallowRun: 357 = 1000.exe
uPolicies-DisallowRun: 358 = 1001.exe
uPolicies-DisallowRun: 359 = 1002.exe
uPolicies-DisallowRun: 360 = 1003.exe
uPolicies-DisallowRun: 361 = 1004.exe
uPolicies-DisallowRun: 362 = 1005.exe
uPolicies-DisallowRun: 363 = 1006.exe
uPolicies-DisallowRun: 364 = 1007.exe
uPolicies-DisallowRun: 365 = 1008.exe
uPolicies-DisallowRun: 366 = 1009.exe
uPolicies-DisallowRun: 367 = 1010.exe
uPolicies-DisallowRun: 368 = 1011.exe
uPolicies-DisallowRun: 369 = 1012.exe
uPolicies-DisallowRun: 370 = 1013.exe
uPolicies-DisallowRun: 371 = 1014.exe
uPolicies-DisallowRun: 372 = 1015.exe
uPolicies-DisallowRun: 373 = 1016.exe
uPolicies-DisallowRun: 374 = 1017.exe
uPolicies-DisallowRun: 375 = 1018.exe
uPolicies-DisallowRun: 376 = 1019.exe
uPolicies-DisallowRun: 377 = 1020.exe
uPolicies-DisallowRun: 378 = 1021.exe
uPolicies-DisallowRun: 379 = 1022.exe
uPolicies-DisallowRun: 380 = 1023.exe
uPolicies-DisallowRun: 381 = 1024.exe
uPolicies-DisallowRun: 382 = 1025.exe
uPolicies-DisallowRun: 383 = 1026.exe
uPolicies-DisallowRun: 384 = 1027.exe
uPolicies-DisallowRun: 385 = 1028.exe
uPolicies-DisallowRun: 386 = 1029.exe
uPolicies-DisallowRun: 387 = 1030.exe
uPolicies-DisallowRun: 388 = 1031.exe
uPolicies-DisallowRun: 389 = 1032.exe
uPolicies-DisallowRun: 390 = 1033.exe
uPolicies-DisallowRun: 391 = 1034.exe
uPolicies-DisallowRun: 392 = 1035.exe
uPolicies-DisallowRun: 393 = 1036.exe
uPolicies-DisallowRun: 394 = 1037.exe
uPolicies-DisallowRun: 395 = 1038.exe
uPolicies-DisallowRun: 396 = 1039.exe
uPolicies-DisallowRun: 397 = 1040.exe
uPolicies-DisallowRun: 398 = 1041.exe
uPolicies-DisallowRun: 399 = 1042.exe
uPolicies-DisallowRun: 400 = 1043.exe
uPolicies-DisallowRun: 401 = 1044.exe
uPolicies-DisallowRun: 402 = 1045.exe
uPolicies-DisallowRun: 403 = 1046.exe
uPolicies-DisallowRun: 404 = 1047.exe
uPolicies-DisallowRun: 405 = 1048.exe
uPolicies-DisallowRun: 406 = 1049.exe
uPolicies-DisallowRun: 407 = 1050.exe
uPolicies-DisallowRun: 408 = 1051.exe
uPolicies-DisallowRun: 409 = 1052.exe
uPolicies-DisallowRun: 410 = 1053.exe
uPolicies-DisallowRun: 411 = 1054.exe
uPolicies-DisallowRun: 412 = 1055.exe
uPolicies-DisallowRun: 413 = 1056.exe
uPolicies-DisallowRun: 414 = 1057.exe
uPolicies-DisallowRun: 415 = 1058.exe
uPolicies-DisallowRun: 416 = 1059.exe
uPolicies-DisallowRun: 417 = 1060.exe
uPolicies-DisallowRun: 418 = 1061.exe
uPolicies-DisallowRun: 419 = 1062.exe
uPolicies-DisallowRun: 420 = 1063.exe
uPolicies-DisallowRun: 421 = 1064.exe
uPolicies-DisallowRun: 422 = 1065.exe
uPolicies-DisallowRun: 423 = 1066.exe
uPolicies-DisallowRun: 424 = 1067.exe
uPolicies-DisallowRun: 425 = 1068.exe
uPolicies-DisallowRun: 426 = 1069.exe
uPolicies-DisallowRun: 427 = 1070.exe
uPolicies-DisallowRun: 428 = 1071.exe
uPolicies-DisallowRun: 429 = 1072.exe
uPolicies-DisallowRun: 430 = 1073.exe
uPolicies-DisallowRun: 431 = 1074.exe
uPolicies-DisallowRun: 432 = 1075.exe
uPolicies-DisallowRun: 433 = 1076.exe
uPolicies-DisallowRun: 434 = 1077.exe
uPolicies-DisallowRun: 435 = 1078.exe
uPolicies-DisallowRun: 436 = 1079.exe
uPolicies-DisallowRun: 437 = 1080.exe
uPolicies-DisallowRun: 438 = 1081.exe
uPolicies-DisallowRun: 439 = 1082.exe
uPolicies-DisallowRun: 440 = 1083.exe
uPolicies-DisallowRun: 441 = 1084.exe
uPolicies-DisallowRun: 442 = 1085.exe
uPolicies-DisallowRun: 443 = 1086.exe
uPolicies-DisallowRun: 444 = 1087.exe
uPolicies-DisallowRun: 445 = 1088.exe
uPolicies-DisallowRun: 446 = 1089.exe
uPolicies-DisallowRun: 447 = 1090.exe
uPolicies-DisallowRun: 448 = 1091.exe
uPolicies-DisallowRun: 449 = 1092.exe
uPolicies-DisallowRun: 450 = 1093.exe
uPolicies-DisallowRun: 451 = 1094.exe
uPolicies-DisallowRun: 452 = 1095.exe
uPolicies-DisallowRun: 453 = 1096.exe
uPolicies-DisallowRun: 454 = 1097.exe
uPolicies-DisallowRun: 455 = 1099.exe
uPolicies-DisallowRun: 456 = 6307.exe
uPolicies-DisallowRun: 457 = 6308.exe
uPolicies-DisallowRun: 458 = 6309.exe
uPolicies-DisallowRun: 459 = 6310.exe
uPolicies-DisallowRun: 460 = 6311.exe
uPolicies-DisallowRun: 461 = 6312.exe
uPolicies-DisallowRun: 462 = 6314.exe
uPolicies-DisallowRun: 463 = 6313.exe
uPolicies-DisallowRun: 464 = 6315.exe
uPolicies-DisallowRun: 465 = 6316.exe
uPolicies-DisallowRun: 466 = 6317.exe
uPolicies-DisallowRun: 467 = 6318.exe
uPolicies-DisallowRun: 468 = 6319.exe
uPolicies-DisallowRun: 469 = 6320.exe
uPolicies-DisallowRun: 470 = 6321.exe
uPolicies-DisallowRun: 471 = 6322.exe
uPolicies-DisallowRun: 472 = 6323.exe
uPolicies-DisallowRun: 473 = 6324.exe
uPolicies-DisallowRun: 474 = 6325.exe
uPolicies-DisallowRun: 475 = 6326.exe
uPolicies-DisallowRun: 476 = 6327.exe
uPolicies-DisallowRun: 477 = 6328.exe
uPolicies-DisallowRun: 478 = 6329.exe
uPolicies-DisallowRun: 479 = 6330.exe
uPolicies-DisallowRun: 480 = 6331.exe
uPolicies-DisallowRun: 481 = 6332.exe
uPolicies-DisallowRun: 482 = 6333.exe
uPolicies-DisallowRun: 483 = 6334.exe
uPolicies-DisallowRun: 484 = 6335.exe
uPolicies-DisallowRun: 485 = 6336.exe
uPolicies-DisallowRun: 486 = 6337.exe
uPolicies-DisallowRun: 487 = 6338.exe
uPolicies-DisallowRun: 488 = 6339.exe
uPolicies-DisallowRun: 489 = 6340.exe
uPolicies-DisallowRun: 490 = 6341.exe
uPolicies-DisallowRun: 491 = 6342.exe
uPolicies-DisallowRun: 492 = 6343.exe
uPolicies-DisallowRun: 493 = 6344.exe
uPolicies-DisallowRun: 494 = 6345.exe
uPolicies-DisallowRun: 495 = 6346.exe
uPolicies-DisallowRun: 496 = 6347.exe
uPolicies-DisallowRun: 497 = 6348.exe
uPolicies-DisallowRun: 498 = 6349.exe
uPolicies-DisallowRun: 499 = 6350.exe
uPolicies-DisallowRun: 500 = 6351.exe
uPolicies-DisallowRun: 501 = 6352.exe
uPolicies-DisallowRun: 502 = 6353.exe
uPolicies-DisallowRun: 503 = 6354.exe
uPolicies-DisallowRun: 504 = 6355.exe
uPolicies-DisallowRun: 505 = 6356.exe
uPolicies-DisallowRun: 506 = 6357.exe
uPolicies-DisallowRun: 507 = 6358.exe
uPolicies-DisallowRun: 508 = 6359.exe
uPolicies-DisallowRun: 509 = 6360.exe
uPolicies-DisallowRun: 510 = 6361.exe
uPolicies-DisallowRun: 511 = 6362.exe
uPolicies-DisallowRun: 512 = 6363.exe
uPolicies-DisallowRun: 513 = 6364.exe
uPolicies-DisallowRun: 514 = 6365.exe
uPolicies-DisallowRun: 515 = 6366.exe
uPolicies-DisallowRun: 516 = 6367.exe
uPolicies-DisallowRun: 517 = 6369.exe
uPolicies-DisallowRun: 518 = 6368.exe
uPolicies-DisallowRun: 519 = 6370.exe
uPolicies-DisallowRun: 520 = 6371.exe
uPolicies-DisallowRun: 521 = 6372.exe
uPolicies-DisallowRun: 522 = 6373.exe
uPolicies-DisallowRun: 523 = 6374.exe
uPolicies-DisallowRun: 524 = 6375.exe
uPolicies-DisallowRun: 525 = 6376.exe
uPolicies-DisallowRun: 526 = 6377.exe
uPolicies-DisallowRun: 527 = 6378.exe
uPolicies-DisallowRun: 528 = 6379.exe
uPolicies-DisallowRun: 529 = 6380.exe
uPolicies-DisallowRun: 530 = 6381.exe
uPolicies-DisallowRun: 531 = 6382.exe
uPolicies-DisallowRun: 532 = 6383.exe
uPolicies-DisallowRun: 533 = 6384.exe
uPolicies-DisallowRun: 534 = 6385.exe
uPolicies-DisallowRun: 535 = 6386.exe
uPolicies-DisallowRun: 536 = 6387.exe
uPolicies-DisallowRun: 537 = 6388.exe
uPolicies-DisallowRun: 538 = 6389.exe
uPolicies-DisallowRun: 539 = 6390.exe
uPolicies-DisallowRun: 540 = 6391.exe
uPolicies-DisallowRun: 541 = 6392.exe
uPolicies-DisallowRun: 542 = 6393.exe
uPolicies-DisallowRun: 543 = 6394.exe
uPolicies-DisallowRun: 544 = 6395.exe
uPolicies-DisallowRun: 545 = 6396.exe
uPolicies-DisallowRun: 546 = 6397.exe
uPolicies-DisallowRun: 547 = 6398.exe
uPolicies-DisallowRun: 548 = 6399.exe
uPolicies-DisallowRun: 549 = 6400.exe
uPolicies-DisallowRun: 550 = 6401.exe
uPolicies-DisallowRun: 551 = 6402.exe
uPolicies-DisallowRun: 552 = 6403.exe
uPolicies-DisallowRun: 553 = 6404.exe
uPolicies-DisallowRun: 554 = 6405.exe
uPolicies-DisallowRun: 555 = 6406.exe
uPolicies-DisallowRun: 556 = 6407.exe
uPolicies-DisallowRun: 557 = regfixxsx.exe
uPolicies-DisallowRun: 558 = documents.exe
uPolicies-DisallowRun: 559 = favorites.exe
uPolicies-DisallowRun: 560 = ernsjyi.exe
uPolicies-DisallowRun: 561 = jjcmdrj.exe
uPolicies-DisallowRun: 562 = nheste.exe
uPolicies-DisallowRun: 563 = nxmwp.exe
uPolicies-DisallowRun: 564 = rwmgh.exe
uPolicies-DisallowRun: 565 = tbljxjk.exe
uPolicies-DisallowRun: 566 = vohth.exe
uPolicies-DisallowRun: 567 = vvpmyvaw.exe
uPolicies-DisallowRun: 568 = aa.exe
uPolicies-DisallowRun: 569 = _cw0srv.exe
uPolicies-DisallowRun: 570 = links.exe
uPolicies-DisallowRun: 571 = serivces01.exe
uPolicies-DisallowRun: 572 = serivces05.exe
uPolicies-DisallowRun: 573 = sruninstall.exe
uPolicies-DisallowRun: 574 = serivcesb.exe
uPolicies-DisallowRun: 575 = serivcesf.exe
uPolicies-DisallowRun: 576 = servcies04.exe
uPolicies-DisallowRun: 577 = jxzub5410451.exe
uPolicies-DisallowRun: 578 = chert5-998.exe
uPolicies-DisallowRun: 579 = kernel1.exe
uPolicies-DisallowRun: 580 = beep.exe
uPolicies-DisallowRun: 581 = iexpl0re.exe
uPolicies-DisallowRun: 582 = crasos.exe
uPolicies-DisallowRun: 583 = cmdbcs.exe
uPolicies-DisallowRun: 584 = realschd.exe
uPolicies-DisallowRun: 585 = wsvbs.exe
uPolicies-DisallowRun: 586 = msdccrt.exe
uPolicies-DisallowRun: 587 = run1132.exe
uPolicies-DisallowRun: 588 = sysload3.exe
uPolicies-DisallowRun: 589 = tempicon.exe
uPolicies-DisallowRun: 590 = sysbmw.exe
uPolicies-DisallowRun: 591 = rpcs.exe
uPolicies-DisallowRun: 592 = msvce32.exe
uPolicies-DisallowRun: 593 = svhost32.exe
uPolicies-DisallowRun: 594 = internat.exe
uPolicies-DisallowRun: 595 = ctmontv.exe
uPolicies-DisallowRun: 596 = ncscv32.exe
uPolicies-DisallowRun: 597 = spo0lsv.exe
uPolicies-DisallowRun: 598 = wdfmgr32.exe
uPolicies-DisallowRun: 599 = upxdnd.exe
uPolicies-DisallowRun: 600 = ssopure.exe
uPolicies-DisallowRun: 601 = c0nime.exe
uPolicies-DisallowRun: 602 = nvscv32.exe
uPolicies-DisallowRun: 603 = bleepjacks.exe
uPolicies-DisallowRun: 604 = lying.exe
uPolicies-DisallowRun: 605 = jbele1.com
uPolicies-DisallowRun: 606 = vt2n8re.com
uPolicies-DisallowRun: 607 = 0011E924.vbs
uPolicies-DisallowRun: 608 = 672.exe
uPolicies-DisallowRun: 609 = ciygje.exe
uPolicies-DisallowRun: 610 = kmbbvua.exe
uPolicies-DisallowRun: 611 = mkqn.exe
uPolicies-DisallowRun: 612 = pajto.exe
uPolicies-DisallowRun: 613 = rbgc.exe
uPolicies-DisallowRun: 614 = rs32net.exe
uPolicies-DisallowRun: 615 = vbmwi.exe
uPolicies-DisallowRun: 616 = wfthnpkw.exe
uPolicies-DisallowRun: 617 = wsxyguvs.exe
uPolicies-DisallowRun: 618 = servcies9.exe
uPolicies-DisallowRun: 619 = servciesa.exe
uPolicies-DisallowRun: 620 = servciesaa.exe
uPolicies-DisallowRun: 621 = Vxl.exe
uPolicies-DisallowRun: 622 = ~.exe
uPolicies-DisallowRun: 623 = YUR7.exe
uPolicies-DisallowRun: 624 = YUR8.exe
uPolicies-DisallowRun: 625 = YUR9.exe
uPolicies-DisallowRun: 626 = YURA.exe
uPolicies-DisallowRun: 627 = Rapid Antivirus.exe
uPolicies-DisallowRun: 628 = zPharoh.exe
uPolicies-DisallowRun: 629 = winiguard.exe
uPolicies-DisallowRun: 630 = zPharaoh.exe
uPolicies-DisallowRun: 631 = lphcns0j0e1av.exe
uPolicies-DisallowRun: 632 = serverx.exe
uPolicies-DisallowRun: 633 = Sulfnbk.exe
uPolicies-DisallowRun: 634 = 11122oo7.exe
uPolicies-DisallowRun: 635 = newfolder.exe
uPolicies-DisallowRun: 636 = qq.exe
uPolicies-DisallowRun: 637 = 75976W.exe
uPolicies-DisallowRun: 638 = 75976L.exe
uPolicies-DisallowRun: 639 = brastk.exe
uPolicies-DisallowRun: 640 = lky.exe
uPolicies-DisallowRun: 641 = whi.com
uPolicies-DisallowRun: 642 = sq.com
uPolicies-DisallowRun: 643 = kamsoft.exe
uPolicies-DisallowRun: 644 = rs32net.exe
uPolicies-DisallowRun: 645 = Gool.exe
uPolicies-DisallowRun: 646 = brnu492.exe
uPolicies-DisallowRun: 647 = apipr.exe
uPolicies-DisallowRun: 648 = apiph32.exe
uPolicies-DisallowRun: 649 = BNH1.EXE
uPolicies-DisallowRun: 650 = ce1.exe
uPolicies-DisallowRun: 651 = dq1.exe
uPolicies-DisallowRun: 652 = purger.exe
uPolicies-DisallowRun: 653 = s-1-5-21.exe
uPolicies-DisallowRun: 654 = lockbar.exe
uPolicies-DisallowRun: 655 = aa0.exe
uPolicies-DisallowRun: 755 = zip0.exe
uPolicies-DisallowRun: 855 = soft0.exe
uPolicies-DisallowRun: 656 = aa1.exe
uPolicies-DisallowRun: 756 = zip1.exe
uPolicies-DisallowRun: 856 = soft1.exe
uPolicies-DisallowRun: 657 = aa2.exe
uPolicies-DisallowRun: 757 = zip2.exe
uPolicies-DisallowRun: 857 = soft2.exe
uPolicies-DisallowRun: 658 = aa3.exe
uPolicies-DisallowRun: 758 = zip3.exe
uPolicies-DisallowRun: 858 = soft3.exe
uPolicies-DisallowRun: 659 = aa4.exe
uPolicies-DisallowRun: 759 = zip4.exe
uPolicies-DisallowRun: 859 = soft4.exe
uPolicies-DisallowRun: 660 = aa5.exe
uPolicies-DisallowRun: 760 = zip5.exe
uPolicies-DisallowRun: 860 = soft5.exe
uPolicies-DisallowRun: 661 = aa6.exe
uPolicies-DisallowRun: 761 = zip6.exe
uPolicies-DisallowRun: 861 = soft6.exe
uPolicies-DisallowRun: 662 = aa7.exe
uPolicies-DisallowRun: 762 = zip7.exe
uPolicies-DisallowRun: 862 = soft7.exe
uPolicies-DisallowRun: 663 = aa8.exe
uPolicies-DisallowRun: 763 = zip8.exe
uPolicies-DisallowRun: 863 = soft8.exe
uPolicies-DisallowRun: 664 = aa9.exe
uPolicies-DisallowRun: 764 = zip9.exe
uPolicies-DisallowRun: 864 = soft9.exe
uPolicies-DisallowRun: 665 = aa10.exe
uPolicies-DisallowRun: 765 = zip10.exe
uPolicies-DisallowRun: 865 = soft10.exe
uPolicies-DisallowRun: 666 = aa11.exe
uPolicies-DisallowRun: 766 = zip11.exe
uPolicies-DisallowRun: 866 = soft11.exe
uPolicies-DisallowRun: 667 = aa12.exe
uPolicies-DisallowRun: 767 = zip12.exe
uPolicies-DisallowRun: 867 = soft12.exe
uPolicies-DisallowRun: 668 = aa13.exe
uPolicies-DisallowRun: 768 = zip13.exe
uPolicies-DisallowRun: 868 = soft13.exe
uPolicies-DisallowRun: 669 = aa14.exe
uPolicies-DisallowRun: 769 = zip14.exe
uPolicies-DisallowRun: 869 = soft14.exe
uPolicies-DisallowRun: 670 = aa15.exe
uPolicies-DisallowRun: 770 = zip15.exe
uPolicies-DisallowRun: 870 = soft15.exe
uPolicies-DisallowRun: 671 = aa16.exe
uPolicies-DisallowRun: 771 = zip16.exe
uPolicies-DisallowRun: 871 = soft16.exe
uPolicies-DisallowRun: 672 = aa17.exe
uPolicies-DisallowRun: 772 = zip17.exe
uPolicies-DisallowRun: 872 = soft17.exe
uPolicies-DisallowRun: 673 = aa18.exe
uPolicies-DisallowRun: 773 = zip18.exe
uPolicies-DisallowRun: 873 = soft18.exe
uPolicies-DisallowRun: 674 = aa19.exe
uPolicies-DisallowRun: 774 = zip19.exe
uPolicies-DisallowRun: 874 = soft19.exe
uPolicies-DisallowRun: 675 = aa20.exe
uPolicies-DisallowRun: 775 = zip20.exe
uPolicies-DisallowRun: 875 = soft20.exe
uPolicies-DisallowRun: 676 = aa21.exe
uPolicies-DisallowRun: 776 = zip21.exe
uPolicies-DisallowRun: 876 = soft21.exe
uPolicies-DisallowRun: 677 = aa22.exe
uPolicies-DisallowRun: 777 = zip22.exe
uPolicies-DisallowRun: 877 = soft22.exe
uPolicies-DisallowRun: 678 = aa23.exe
uPolicies-DisallowRun: 778 = zip23.exe
uPolicies-DisallowRun: 878 = soft23.exe
uPolicies-DisallowRun: 679 = aa24.exe
uPolicies-DisallowRun: 779 = zip24.exe
uPolicies-DisallowRun: 879 = soft24.exe
uPolicies-DisallowRun: 680 = aa25.exe
uPolicies-DisallowRun: 780 = zip25.exe
uPolicies-DisallowRun: 880 = soft25.exe
uPolicies-DisallowRun: 681 = aa26.exe
uPolicies-DisallowRun: 781 = zip26.exe
uPolicies-DisallowRun: 881 = soft26.exe
uPolicies-DisallowRun: 682 = aa27.exe
uPolicies-DisallowRun: 782 = zip27.exe
uPolicies-DisallowRun: 882 = soft27.exe
uPolicies-DisallowRun: 683 = aa28.exe
uPolicies-DisallowRun: 783 = zip28.exe
uPolicies-DisallowRun: 883 = soft28.exe
uPolicies-DisallowRun: 684 = aa29.exe
uPolicies-DisallowRun: 784 = zip29.exe
uPolicies-DisallowRun: 884 = soft29.exe
uPolicies-DisallowRun: 685 = aa30.exe
uPolicies-DisallowRun: 785 = zip30.exe
uPolicies-DisallowRun: 885 = soft30.exe
uPolicies-DisallowRun: 686 = aa31.exe
uPolicies-DisallowRun: 786 = zip31.exe
uPolicies-DisallowRun: 886 = soft31.exe
uPolicies-DisallowRun: 687 = aa32.exe
uPolicies-DisallowRun: 787 = zip32.exe
uPolicies-DisallowRun: 887 = soft32.exe
uPolicies-DisallowRun: 688 = aa33.exe
uPolicies-DisallowRun: 788 = zip33.exe
uPolicies-DisallowRun: 888 = soft33.exe
uPolicies-DisallowRun: 689 = aa34.exe
uPolicies-DisallowRun: 789 = zip34.exe
uPolicies-DisallowRun: 889 = soft34.exe
uPolicies-DisallowRun: 690 = aa35.exe
uPolicies-DisallowRun: 790 = zip35.exe
uPolicies-DisallowRun: 890 = soft35.exe
uPolicies-DisallowRun: 691 = aa36.exe
uPolicies-DisallowRun: 791 = zip36.exe
uPolicies-DisallowRun: 891 = soft36.exe
uPolicies-DisallowRun: 692 = aa37.exe
uPolicies-DisallowRun: 792 = zip37.exe
uPolicies-DisallowRun: 892 = soft37.exe
uPolicies-DisallowRun: 693 = aa38.exe
uPolicies-DisallowRun: 793 = zip38.exe
uPolicies-DisallowRun: 893 = soft38.exe
uPolicies-DisallowRun: 694 = aa39.exe
uPolicies-DisallowRun: 794 = zip39.exe
uPolicies-DisallowRun: 894 = soft39.exe
uPolicies-DisallowRun: 695 = aa40.exe
uPolicies-DisallowRun: 795 = zip40.exe
uPolicies-DisallowRun: 895 = soft40.exe
uPolicies-DisallowRun: 696 = aa41.exe
uPolicies-DisallowRun: 796 = zip41.exe
uPolicies-DisallowRun: 896 = soft41.exe
uPolicies-DisallowRun: 697 = aa42.exe
uPolicies-DisallowRun: 797 = zip42.exe
uPolicies-DisallowRun: 897 = soft42.exe
uPolicies-DisallowRun: 698 = aa43.exe
uPolicies-DisallowRun: 798 = zip43.exe
uPolicies-DisallowRun: 898 = soft43.exe
uPolicies-DisallowRun: 699 = aa44.exe
uPolicies-DisallowRun: 799 = zip44.exe
uPolicies-DisallowRun: 899 = soft44.exe
uPolicies-DisallowRun: 700 = aa45.exe
uPolicies-DisallowRun: 800 = zip45.exe
uPolicies-DisallowRun: 900 = soft45.exe
uPolicies-DisallowRun: 701 = aa46.exe
uPolicies-DisallowRun: 801 = zip46.exe
uPolicies-DisallowRun: 901 = soft46.exe
uPolicies-DisallowRun: 702 = aa47.exe
uPolicies-DisallowRun: 802 = zip47.exe
uPolicies-DisallowRun: 902 = soft47.exe
uPolicies-DisallowRun: 703 = aa48.exe
uPolicies-DisallowRun: 803 = zip48.exe
uPolicies-DisallowRun: 903 = soft48.exe
uPolicies-DisallowRun: 704 = aa49.exe
uPolicies-DisallowRun: 804 = zip49.exe
uPolicies-DisallowRun: 904 = soft49.exe
uPolicies-DisallowRun: 705 = aa50.exe
uPolicies-DisallowRun: 805 = zip50.exe
uPolicies-DisallowRun: 905 = soft50.exe
uPolicies-DisallowRun: 706 = aa51.exe
uPolicies-DisallowRun: 806 = zip51.exe
uPolicies-DisallowRun: 906 = soft51.exe
uPolicies-DisallowRun: 707 = aa52.exe
uPolicies-DisallowRun: 807 = zip52.exe
uPolicies-DisallowRun: 907 = soft52.exe
uPolicies-DisallowRun: 708 = aa53.exe
uPolicies-DisallowRun: 808 = zip53.exe
uPolicies-DisallowRun: 908 = soft53.exe
uPolicies-DisallowRun: 709 = aa54.exe
uPolicies-DisallowRun: 809 = zip54.exe
uPolicies-DisallowRun: 909 = soft54.exe
uPolicies-DisallowRun: 710 = aa55.exe
uPolicies-DisallowRun: 810 = zip55.exe
uPolicies-DisallowRun: 910 = soft55.exe
uPolicies-DisallowRun: 711 = aa56.exe
uPolicies-DisallowRun: 811 = zip56.exe
uPolicies-DisallowRun: 911 = soft56.exe
uPolicies-DisallowRun: 712 = aa57.exe
uPolicies-DisallowRun: 812 = zip57.exe
uPolicies-DisallowRun: 912 = soft57.exe
uPolicies-DisallowRun: 713 = aa58.exe
uPolicies-DisallowRun: 813 = zip58.exe
uPolicies-DisallowRun: 913 = soft58.exe
uPolicies-DisallowRun: 714 = aa59.exe
uPolicies-DisallowRun: 814 = zip59.exe
uPolicies-DisallowRun: 914 = soft59.exe
uPolicies-DisallowRun: 715 = aa60.exe
uPolicies-DisallowRun: 815 = zip60.exe
uPolicies-DisallowRun: 915 = soft60.exe
uPolicies-DisallowRun: 716 = aa61.exe
uPolicies-DisallowRun: 816 = zip61.exe
uPolicies-DisallowRun: 916 = soft61.exe
uPolicies-DisallowRun: 717 = aa62.exe
uPolicies-DisallowRun: 817 = zip62.exe
uPolicies-DisallowRun: 917 = soft62.exe
uPolicies-DisallowRun: 718 = aa63.exe
uPolicies-DisallowRun: 818 = zip63.exe
uPolicies-DisallowRun: 918 = soft63.exe
uPolicies-DisallowRun: 719 = aa64.exe
uPolicies-DisallowRun: 819 = zip64.exe
uPolicies-DisallowRun: 919 = soft64.exe
uPolicies-DisallowRun: 720 = aa65.exe
uPolicies-DisallowRun: 820 = zip65.exe
uPolicies-DisallowRun: 920 = soft65.exe
uPolicies-DisallowRun: 721 = aa66.exe
uPolicies-DisallowRun: 821 = zip66.exe
uPolicies-DisallowRun: 921 = soft66.exe
uPolicies-DisallowRun: 722 = aa67.exe
uPolicies-DisallowRun: 822 = zip67.exe
uPolicies-DisallowRun: 922 = soft67.exe
uPolicies-DisallowRun: 723 = aa68.exe
uPolicies-DisallowRun: 823 = zip68.exe
uPolicies-DisallowRun: 923 = soft68.exe
uPolicies-DisallowRun: 724 = aa69.exe
uPolicies-DisallowRun: 824 = zip69.exe
uPolicies-DisallowRun: 924 = soft69.exe
uPolicies-DisallowRun: 725 = aa70.exe
uPolicies-DisallowRun: 825 = zip70.exe
uPolicies-DisallowRun: 925 = soft70.exe
uPolicies-DisallowRun: 726 = aa71.exe
uPolicies-DisallowRun: 826 = zip71.exe
uPolicies-DisallowRun: 926 = soft71.exe
uPolicies-DisallowRun: 727 = aa72.exe
uPolicies-DisallowRun: 827 = zip72.exe
uPolicies-DisallowRun: 927 = soft72.exe
uPolicies-DisallowRun: 728 = aa73.exe
uPolicies-DisallowRun: 828 = zip73.exe
uPolicies-DisallowRun: 928 = soft73.exe
uPolicies-DisallowRun: 729 = aa74.exe
uPolicies-DisallowRun: 829 = zip74.exe
uPolicies-DisallowRun: 929 = soft74.exe
uPolicies-DisallowRun: 730 = aa75.exe
uPolicies-DisallowRun: 830 = zip75.exe
uPolicies-DisallowRun: 930 = soft75.exe
uPolicies-DisallowRun: 731 = aa76.exe
uPolicies-DisallowRun: 831 = zip76.exe
uPolicies-DisallowRun: 931 = soft76.exe
uPolicies-DisallowRun: 732 = aa77.exe
uPolicies-DisallowRun: 832 = zip77.exe
uPolicies-DisallowRun: 932 = soft77.exe
uPolicies-DisallowRun: 733 = aa78.exe
uPolicies-DisallowRun: 833 = zip78.exe
uPolicies-DisallowRun: 933 = soft78.exe
uPolicies-DisallowRun: 734 = aa79.exe
uPolicies-DisallowRun: 834 = zip79.exe
uPolicies-DisallowRun: 934 = soft79.exe
uPolicies-DisallowRun: 735 = aa80.exe
uPolicies-DisallowRun: 835 = zip80.exe
uPolicies-DisallowRun: 935 = soft80.exe
uPolicies-DisallowRun: 736 = aa81.exe
uPolicies-DisallowRun: 836 = zip81.exe
uPolicies-DisallowRun: 936 = soft81.exe
uPolicies-DisallowRun: 737 = aa82.exe
uPolicies-DisallowRun: 837 = zip82.exe
uPolicies-DisallowRun: 937 = soft82.exe
uPolicies-DisallowRun: 738 = aa83.exe
uPolicies-DisallowRun: 838 = zip83.exe
uPolicies-DisallowRun: 938 = soft83.exe
uPolicies-DisallowRun: 739 = aa84.exe
uPolicies-DisallowRun: 839 = zip84.exe
uPolicies-DisallowRun: 939 = soft84.exe
uPolicies-DisallowRun: 740 = aa85.exe
uPolicies-DisallowRun: 840 = zip85.exe
uPolicies-DisallowRun: 940 = soft85.exe
uPolicies-DisallowRun: 741 = aa86.exe
uPolicies-DisallowRun: 841 = zip86.exe
uPolicies-DisallowRun: 941 = soft86.exe
uPolicies-DisallowRun: 742 = aa87.exe
uPolicies-DisallowRun: 842 = zip87.exe
uPolicies-DisallowRun: 942 = soft87.exe
uPolicies-DisallowRun: 743 = aa88.exe
uPolicies-DisallowRun: 843 = zip88.exe
uPolicies-DisallowRun: 943 = soft88.exe
uPolicies-DisallowRun: 744 = aa89.exe
uPolicies-DisallowRun: 844 = zip89.exe
uPolicies-DisallowRun: 944 = soft89.exe
uPolicies-DisallowRun: 745 = aa90.exe
uPolicies-DisallowRun: 845 = zip90.exe
uPolicies-DisallowRun: 945 = soft90.exe
uPolicies-DisallowRun: 746 = aa91.exe
uPolicies-DisallowRun: 846 = zip91.exe
uPolicies-DisallowRun: 946 = soft91.exe
uPolicies-DisallowRun: 747 = aa92.exe
uPolicies-DisallowRun: 847 = zip92.exe
uPolicies-DisallowRun: 947 = soft92.exe
uPolicies-DisallowRun: 748 = aa93.exe
uPolicies-DisallowRun: 848 = zip93.exe
uPolicies-DisallowRun: 948 = soft93.exe
uPolicies-DisallowRun: 749 = aa94.exe
uPolicies-DisallowRun: 849 = zip94.exe
uPolicies-DisallowRun: 949 = soft94.exe
uPolicies-DisallowRun: 750 = aa95.exe
uPolicies-DisallowRun: 850 = zip95.exe
uPolicies-DisallowRun: 950 = soft95.exe
uPolicies-DisallowRun: 751 = aa96.exe
uPolicies-DisallowRun: 851 = zip96.exe
uPolicies-DisallowRun: 951 = soft96.exe
uPolicies-DisallowRun: 752 = aa97.exe
uPolicies-DisallowRun: 852 = zip97.exe
uPolicies-DisallowRun: 952 = soft97.exe
uPolicies-DisallowRun: 753 = aa98.exe
uPolicies-DisallowRun: 853 = zip98.exe
uPolicies-DisallowRun: 953 = soft98.exe
uPolicies-DisallowRun: 754 = aa99.exe
uPolicies-DisallowRun: 854 = zip99.exe
uPolicies-DisallowRun: 954 = soft99.exe
uPolicies-DisallowRun: 955 = $sys$drv.exe
uPolicies-DisallowRun: 956 = $sys$sos$sys$.exe
uPolicies-DisallowRun: 957 = $sys$xp.exe
uPolicies-DisallowRun: 958 = ~565.exe
uPolicies-DisallowRun: 959 = 0.exe
uPolicies-DisallowRun: 960 = 004.exe
uPolicies-DisallowRun: 961 = 005.exe
uPolicies-DisallowRun: 962 = 006.exe
uPolicies-DisallowRun: 963 = 007.exe
uPolicies-DisallowRun: 964 = 007ssinstall.exe
uPolicies-DisallowRun: 965 = 008.exe
uPolicies-DisallowRun: 966 = 009.exe
uPolicies-DisallowRun: 967 = 01dopewars_update.exe
uPolicies-DisallowRun: 968 = 01logo.exe
uPolicies-DisallowRun: 969 = 04s28lat.exe
uPolicies-DisallowRun: 970 = 06qytm1a.exe
uPolicies-DisallowRun: 971 = 09857728.exe
uPolicies-DisallowRun: 972 = 1004270.exe
uPolicies-DisallowRun: 973 = 1054571.exe
uPolicies-DisallowRun: 974 = 11421604.exe
uPolicies-DisallowRun: 975 = 123bar.exe
uPolicies-DisallowRun: 976 = 123hiddensender.exe
uPolicies-DisallowRun: 977 = 12nail.exe
uPolicies-DisallowRun: 978 = 14hi1qs8.exe
uPolicies-DisallowRun: 979 = 17131762.exe
uPolicies-DisallowRun: 980 = 180ax.exe
uPolicies-DisallowRun: 981 = 180pack6480.exe
uPolicies-DisallowRun: 982 = 180sa.exe
uPolicies-DisallowRun: 983 = 180sainstallernusac.exe
uPolicies-DisallowRun: 984 = 180stuninstaller.exe
uPolicies-DisallowRun: 985 = 1lyu2k.exe
uPolicies-DisallowRun: 986 = 1o32cwjn.exe
uPolicies-DisallowRun: 987 = 2.sfx.exe.exe
uPolicies-DisallowRun: 988 = 2005.exe
uPolicies-DisallowRun: 989 = 202_app13.exe
uPolicies-DisallowRun: 990 = 26-593.exe
uPolicies-DisallowRun: 991 = 29904603.exe
uPolicies-DisallowRun: 992 = 2search.exe
uPolicies-DisallowRun: 993 = 302v2fp0.exe
uPolicies-DisallowRun: 994 = 39987557.exe
uPolicies-DisallowRun: 995 = 50cent.exe
uPolicies-DisallowRun: 996 = 53648356.svd
uPolicies-DisallowRun: 997 = 5thkf354.exe
uPolicies-DisallowRun: 998 = 63de0cc3d01
uPolicies-DisallowRun: 999 = 63mm.exe
uPolicies-DisallowRun: 1000 = 666.exe
uPolicies-DisallowRun: 1001 = 66978039.exe
uPolicies-DisallowRun: 1002 = 69254441.exe
uPolicies-DisallowRun: 1003 = 9spj1iiq.exe
uPolicies-DisallowRun: 1004 = a_clearsearch.exe
uPolicies-DisallowRun: 1005 = a0011142.exe
uPolicies-DisallowRun: 1006 = a006.exe
uPolicies-DisallowRun: 1007 = a006.exe
uPolicies-DisallowRun: 1008 = a0067423.exe
uPolicies-DisallowRun: 1009 = a0067428.exe
uPolicies-DisallowRun: 1010 = a64sddd.exe
uPolicies-DisallowRun: 1011 = abg-aceh.exe
uPolicies-DisallowRun: 1012 = abox.exe
uPolicies-DisallowRun: 1013 = abs.exe
uPolicies-DisallowRun: 1014 = absr.exe
uPolicies-DisallowRun: 1015 = access members area.exe
uPolicies-DisallowRun: 1016 = access.exe
uPolicies-DisallowRun: 1017 = accwizz.exe
uPolicies-DisallowRun: 1018 = acespy331t.exe
uPolicies-DisallowRun: 1019 = aclservice.exe
uPolicies-DisallowRun: 1020 = aconti.exe
uPolicies-DisallowRun: 1021 = actalert.exe
uPolicies-DisallowRun: 1022 = activeds.exe
uPolicies-DisallowRun: 1023 = activeplus.exe
uPolicies-DisallowRun: 1024 = activex_300_it.exe
uPolicies-DisallowRun: 1025 = actualspy.exe
uPolicies-DisallowRun: 1026 = actx1.exe
uPolicies-DisallowRun: 1027 = ad.exe
uPolicies-DisallowRun: 1028 = adaware.exe
uPolicies-DisallowRun: 1029 = adl_mteststub.exe
uPolicies-DisallowRun: 1030 = adlinstallwin32.exe
uPolicies-DisallowRun: 1031 = adm4005.exe
uPolicies-DisallowRun: 1032 = admanctl.exe
uPolicies-DisallowRun: 1033 = admilliserv.exe
uPolicies-DisallowRun: 1034 = admlib32.exe
uPolicies-DisallowRun: 1035 = adobe_flash.exe
uPolicies-DisallowRun: 1036 = adobes.exe
uPolicies-DisallowRun: 1037 = adp.exe
uPolicies-DisallowRun: 1038 = adsetup.silent.1.13.exe
uPolicies-DisallowRun: 1039 = adstatserv.exe
uPolicies-DisallowRun: 1040 = adtech2006.exe
uPolicies-DisallowRun: 1041 = adupdater.exe
uPolicies-DisallowRun: 1042 = adv.exe
uPolicies-DisallowRun: 1043 = advapi.exe
uPolicies-DisallowRun: 1044 = adx.exe
uPolicies-DisallowRun: 1045 = ahadp.exe
uPolicies-DisallowRun: 1046 = aim spy plugin.exe
uPolicies-DisallowRun: 1047 = ajrpbi.exe
uPolicies-DisallowRun: 1048 = alchem.exe
uPolicies-DisallowRun: 1049 = alevir.exe
uPolicies-DisallowRun: 1050 = alp2plib.exe
uPolicies-DisallowRun: 1051 = amero.exe
uPolicies-DisallowRun: 1052 = amp2pl.exe
uPolicies-DisallowRun: 1053 = angelex.exe
uPolicies-DisallowRun: 1054 = anti_troj.exe
uPolicies-DisallowRun: 1055 = antiav.exe
uPolicies-DisallowRun: 1056 = antispy.exe
uPolicies-DisallowRun: 1057 = antivirus update.exe
uPolicies-DisallowRun: 1058 = antivirus32.exe
uPolicies-DisallowRun: 1059 = aocbhm.exe
uPolicies-DisallowRun: 1060 = aornum.exe
uPolicies-DisallowRun: 1061 = ap0.exe
uPolicies-DisallowRun: 1062 = ap2.exe
uPolicies-DisallowRun: 1063 = apd123.exe
uPolicies-DisallowRun: 1064 = app.exe
uPolicies-DisallowRun: 1065 = appsetup.exe
uPolicies-DisallowRun: 1066 = aq3hel~1.exe
uPolicies-DisallowRun: 1067 = archive.exe
uPolicies-DisallowRun: 1068 = arr.exe
uPolicies-DisallowRun: 1069 = arupdate.exe
uPolicies-DisallowRun: 1070 = arupld32.exe
uPolicies-DisallowRun: 1071 = asd.exe
uPolicies-DisallowRun: 1072 = asearchassist.exe
uPolicies-DisallowRun: 1073 = asm.exe
uPolicies-DisallowRun: 1074 = asmonitor.exe
uPolicies-DisallowRun: 1075 = astart.exe
uPolicies-DisallowRun: 1076 = atipta.exe
uPolicies-DisallowRun: 1077 = atiupdate.exe
uPolicies-DisallowRun: 1078 = atmsvc.exe
uPolicies-DisallowRun: 1079 = aupdate_uninstall.exe
uPolicies-DisallowRun: 1080 = aurora(1).exe
uPolicies-DisallowRun: 1081 = aurora.exe
uPolicies-DisallowRun: 1082 = aurora-wise1.exe
uPolicies-DisallowRun: 1083 = ause3-decoded.exe
uPolicies-DisallowRun: 1084 = ausvc.exe
uPolicies-DisallowRun: 1085 = autoexec.exe
uPolicies-DisallowRun: 1086 = automove.exe
uPolicies-DisallowRun: 1087 = autoupdatev2.exe
uPolicies-DisallowRun: 1088 = aux32.exe
uPolicies-DisallowRun: 1089 = av.exe
uPolicies-DisallowRun: 1090 = avghalsb.exe
uPolicies-DisallowRun: 1091 = avserve.exe
uPolicies-DisallowRun: 1092 = avserve2.exe
uPolicies-DisallowRun: 1093 = b2search_v17.exe
uPolicies-DisallowRun: 1094 = backdoor.prorat.13.exe
uPolicies-DisallowRun: 1095 = backdoor.prorat.13_(57).exe
uPolicies-DisallowRun: 1096 = backup-20040105-225929-414.exe
uPolicies-DisallowRun: 1097 = backweb.exe
uPolicies-DisallowRun: 1098 = banmanpro.exe
uPolicies-DisallowRun: 1099 = bargain3.exe
uPolicies-DisallowRun: 1100 = bargain4.exe
uPolicies-DisallowRun: 1101 = bargainbuddy.exe
uPolicies-DisallowRun: 1102 = bargains.exe
uPolicies-DisallowRun: 1103 = basfipm.exe
uPolicies-DisallowRun: 1104 = bazzi.exe
uPolicies-DisallowRun: 1105 = bb.exe
uPolicies-DisallowRun: 1106 = bbchk.exe
uPolicies-DisallowRun: 1107 = bbfbeola.exe
uPolicies-DisallowRun: 1108 = bbi8015.exe
uPolicies-DisallowRun: 1109 = bbi8018.exe
uPolicies-DisallowRun: 1110 = bbi8032.exe
uPolicies-DisallowRun: 1111 = bbntqcbw.exe
uPolicies-DisallowRun: 1112 = bboy.exe
uPolicies-DisallowRun: 1113 = bdrqbac.exe
uPolicies-DisallowRun: 1114 = bedo9iz1.exe
uPolicies-DisallowRun: 1115 = belt.exe
uPolicies-DisallowRun: 1116 = berasjatah.exe
uPolicies-DisallowRun: 1117 = beta.exe
uPolicies-DisallowRun: 1118 = bhp.exe
uPolicies-DisallowRun: 1119 = bhsv.exe
uPolicies-DisallowRun: 1120 = bi5.exe
uPolicies-DisallowRun: 1121 = bifrost.exe
uPolicies-DisallowRun: 1122 = bil.exe
uPolicies-DisallowRun: 1123 = bindshell.exe
uPolicies-DisallowRun: 1124 = bionet.exe
uPolicies-DisallowRun: 1125 = bk.exe
uPolicies-DisallowRun: 1126 = block-checker.exe
uPolicies-DisallowRun: 1127 = blondes.exe
uPolicies-DisallowRun: 1128 = bloodhound.exe
uPolicies-DisallowRun: 1129 = blss.exe
uPolicies-DisallowRun: 1130 = bman.exe
uPolicies-DisallowRun: 1131 = bml8pjp7.exe
uPolicies-DisallowRun: 1132 = bmupdate.exe
uPolicies-DisallowRun: 1133 = bokja.exe
uPolicies-DisallowRun: 1134 = bookedspace.exe
uPolicies-DisallowRun: 1135 = boot.exe
uPolicies-DisallowRun: 1136 = bootconf.exe
uPolicies-DisallowRun: 1137 = bot.exe
uPolicies-DisallowRun: 1138 = bp.exe
uPolicies-DisallowRun: 1139 = bpc.exe
uPolicies-DisallowRun: 1140 = safesys.exe
uPolicies-DisallowRun: 1141 = bpsinstall.exe
uPolicies-DisallowRun: 1142 = brasil.exe
uPolicies-DisallowRun: 1143 = brengkolang.com
uPolicies-DisallowRun: 1144 = bronstab.exe
uPolicies-DisallowRun: 1145 = bsoft.exe
uPolicies-DisallowRun: 1146 = buddy.exe
uPolicies-DisallowRun: 1147 = bugsfix.exe
uPolicies-DisallowRun: 1148 = bundle.exe
uPolicies-DisallowRun: 1149 = bundle~1.exe
uPolicies-DisallowRun: 1150 = bundleouter.exe
uPolicies-DisallowRun: 1151 = bundleouter2501031120.exe
uPolicies-DisallowRun: 1152 = bundleouter2601031121.exe
uPolicies-DisallowRun: 1153 = bundles.exe
uPolicies-DisallowRun: 1154 = bundles118.exe
uPolicies-DisallowRun: 1155 = bxproxy.exe
uPolicies-DisallowRun: 1156 = camviewer.exe
uPolicies-DisallowRun: 1157 = card.exe
uPolicies-DisallowRun: 1158 = cartao.exe
uPolicies-DisallowRun: 1159 = cas2stub.exe
uPolicies-DisallowRun: 1160 = casclient.exe
uPolicies-DisallowRun: 1161 = cashsaverupdate.exe
uPolicies-DisallowRun: 1162 = cb.exe
uPolicies-DisallowRun: 1163 = cc.exe
uPolicies-DisallowRun: 1164 = cd_install.exe
uPolicies-DisallowRun: 1165 = cd_install_291.exe
uPolicies-DisallowRun: 1166 = cd_load.exe
uPolicies-DisallowRun: 1167 = cd5a8b2bd01
uPolicies-DisallowRun: 1168 = cdaengine
uPolicies-DisallowRun: 1169 = cdaengine0500
uPolicies-DisallowRun: 1170 = cdf.exe
uPolicies-DisallowRun: 1171 = cds.exe
uPolicies-DisallowRun: 1172 = cdsm32.exe
uPolicies-DisallowRun: 1173 = cfgmgr52.exe
uPolicies-DisallowRun: 1174 = cfmon.exe
uPolicies-DisallowRun: 1175 = cg.exe
uPolicies-DisallowRun: 1176 = cgtask.exe
uPolicies-DisallowRun: 1177 = check.exe
uPolicies-DisallowRun: 1178 = checkreg.exe
uPolicies-DisallowRun: 1179 = checkup.exe
uPolicies-DisallowRun: 1180 = chkntsv.exe
uPolicies-DisallowRun: 1181 = chkras.exe
uPolicies-DisallowRun: 1182 = choke.exe
uPolicies-DisallowRun: 1183 = chq7gv5g.exe
uPolicies-DisallowRun: 1184 = cisvvc.exe
uPolicies-DisallowRun: 1185 = cjqxe.exe
uPolicies-DisallowRun: 1186 = ckusdll.exe
uPolicies-DisallowRun: 1187 = clbcatex.exe
uPolicies-DisallowRun: 1188 = client.exe
uPolicies-DisallowRun: 1189 = clientax.exe
uPolicies-DisallowRun: 1190 = cm.exe
uPolicies-DisallowRun: 1191 = cmappsetup.exe
uPolicies-DisallowRun: 1192 = cmappupdate.exe
uPolicies-DisallowRun: 1193 = cmd32.exe
uPolicies-DisallowRun: 1194 = cmdinst.exe
uPolicies-DisallowRun: 1195 = cmesys.exe
uPolicies-DisallowRun: 1196 = cmeupd.exe
uPolicies-DisallowRun: 1197 = cmman.exe
uPolicies-DisallowRun: 1198 = cmqcemmpm.exe
uPolicies-DisallowRun: 1199 = cmrsr.exe
uPolicies-DisallowRun: 1200 = cmrss.exe
uPolicies-DisallowRun: 1201 = cmsystem.exe
uPolicies-DisallowRun: 1202 = cnqmax.exe
uPolicies-DisallowRun: 1203 = codecsetup.exe
uPolicies-DisallowRun: 1204 = comctl_32.exe
uPolicies-DisallowRun: 1205 = commando.exe
uPolicies-DisallowRun: 1206 = conscorr.exe
uPolicies-DisallowRun: 1207 = consol32.exe
uPolicies-DisallowRun: 1208 = cool.exe
uPolicies-DisallowRun: 1209 = copy of optimize.exe
uPolicies-DisallowRun: 1210 = corpstats.exe
uPolicies-DisallowRun: 1211 = cp.exe
uPolicies-DisallowRun: 1212 = cpanel.exe
uPolicies-DisallowRun: 1213 = cpr.exe
uPolicies-DisallowRun: 1214 = crackserver-service.exe
uPolicies-DisallowRun: 1215 = crmss.exe
uPolicies-DisallowRun: 1216 = crss.exe
uPolicies-DisallowRun: 1217 = crsss.exe
uPolicies-DisallowRun: 1218 = cryptfg.exe
uPolicies-DisallowRun: 1219 = csaolinst.exe
uPolicies-DisallowRun: 1220 = csaolldr.exe
uPolicies-DisallowRun: 1221 = csbiinst.exe
uPolicies-DisallowRun: 1222 = csieinst.exe
uPolicies-DisallowRun: 1223 = csmsv.exe
uPolicies-DisallowRun: 1224 = csrcs.exe
uPolicies-DisallowRun: 1225 = csrdeu32.exe
uPolicies-DisallowRun: 1226 = csrrs.exe
uPolicies-DisallowRun: 1227 = csrs.exe
uPolicies-DisallowRun: 1228 = csrsc.exe
uPolicies-DisallowRun: 1229 = csrse.exe
uPolicies-DisallowRun: 1230 = csrss32.exe
uPolicies-DisallowRun: 1231 = ctfmon32.exe
uPolicies-DisallowRun: 1232 = cucu.exe
uPolicies-DisallowRun: 1233 = cxq8ojka.exe
uPolicies-DisallowRun: 1234 = cxtpls.exe
uPolicies-DisallowRun: 1235 = cydoor.exe
uPolicies-DisallowRun: 1236 = cydoor_uninstall.exe
uPolicies-DisallowRun: 1237 = cz.exe
uPolicies-DisallowRun: 1238 = czncin.exe
uPolicies-DisallowRun: 1239 = d.exe
uPolicies-DisallowRun: 1240 = d6.exe
uPolicies-DisallowRun: 1241 = data2.exe
uPolicies-DisallowRun: 1242 = data3.exe
uPolicies-DisallowRun: 1243 = datemanager.exe
uPolicies-DisallowRun: 1244 = dbaccess.exe
uPolicies-DisallowRun: 1245 = dc1.exe
uPolicies-DisallowRun: 1246 = dc37.exe
uPolicies-DisallowRun: 1247 = dc38.exe
uPolicies-DisallowRun: 1248 = dc39.exe
uPolicies-DisallowRun: 1249 = dc42.exe
uPolicies-DisallowRun: 1250 = dc43.exe
uPolicies-DisallowRun: 1251 = dc44.exe
uPolicies-DisallowRun: 1252 = dc82.exe
uPolicies-DisallowRun: 1253 = dc83.exe
uPolicies-DisallowRun: 1254 = dc84.exe
uPolicies-DisallowRun: 1255 = dc85.exe
uPolicies-DisallowRun: 1256 = dc86.exe
uPolicies-DisallowRun: 1257 = dcomcfg.exe
uPolicies-DisallowRun: 1258 = dcomx.exe
uPolicies-DisallowRun: 1259 = ddcman.exe
uPolicies-DisallowRun: 1260 = dealhelper.exe
uPolicies-DisallowRun: 1261 = delmsbb.exe
uPolicies-DisallowRun: 1262 = deskadkeep.exe
uPolicies-DisallowRun: 1263 = deskadserv.exe
uPolicies-DisallowRun: 1264 = desktop.exe
uPolicies-DisallowRun: 1265 = dfe.exe
uPolicies-DisallowRun: 1266 = dfrgsrv.exe
uPolicies-DisallowRun: 1267 = dgwojz0h.exe
uPolicies-DisallowRun: 1268 = dhbrwsr.exe
uPolicies-DisallowRun: 1269 = dho.exe
uPolicies-DisallowRun: 1270 = dhupdt.exe
uPolicies-DisallowRun: 1271 = dial.exe
uPolicies-DisallowRun: 1272 = dinst.exe
uPolicies-DisallowRun: 1273 = dioxin.exe
uPolicies-DisallowRun: 1274 = directs.exe
uPolicies-DisallowRun: 1275 = directx.exe
uPolicies-DisallowRun: 1276 = directxset.exe
uPolicies-DisallowRun: 1277 = disp1150.exe
uPolicies-DisallowRun: 1278 = display.exe
uPolicies-DisallowRun: 1279 = divx.exe
uPolicies-DisallowRun: 1280 = dlgli.exe
uPolicies-DisallowRun: 1281 = dlhost.exe
uPolicies-DisallowRun: 1282 = dll32.exe
uPolicies-DisallowRun: 1283 = dllreg.exe
uPolicies-DisallowRun: 1284 = dmserver.exe
uPolicies-DisallowRun: 1285 = dodrrr.exe
uPolicies-DisallowRun: 1286 = down.exe
uPolicies-DisallowRun: 1287 = download.exe
uPolicies-DisallowRun: 1288 = downloadplus.exe
uPolicies-DisallowRun: 1289 = dp-b23011805.exe
uPolicies-DisallowRun: 1290 = dpul6zoa.exe
uPolicies-DisallowRun: 1291 = dr.exe
uPolicies-DisallowRun: 1292 = dr_s.exe
uPolicies-DisallowRun: 1293 = drpmon(1).exe
uPolicies-DisallowRun: 1294 = drpmon.exe
uPolicies-DisallowRun: 1295 = drv.exe
uPolicies-DisallowRun: 1296 = drvddll.exe
uPolicies-DisallowRun: 1297 = drwtsn16.exe
uPolicies-DisallowRun: 1298 = ds.exe
uPolicies-DisallowRun: 1299 = dscbtshl.exe
uPolicies-DisallowRun: 1300 = dssagent.exe
uPolicies-DisallowRun: 1301 = dtloader.exe
uPolicies-DisallowRun: 1302 = duel.exe
uPolicies-DisallowRun: 1303 = dun.exe
uPolicies-DisallowRun: 1304 = dvbern.exe
uPolicies-DisallowRun: 1305 = dvchost.exe
uPolicies-DisallowRun: 1306 = dvdkeyauth.exe
uPolicies-DisallowRun: 1307 = dvldr32.exe
uPolicies-DisallowRun: 1308 = dvwnhd.exe
uPolicies-DisallowRun: 1309 = dw.exe
uPolicies-DisallowRun: 1310 = dwcg.exe
uPolicies-DisallowRun: 1311 = dwe.exe
uPolicies-DisallowRun: 1312 = dwnupdt.exe
uPolicies-DisallowRun: 1313 = usbautotuner.exe
uPolicies-DisallowRun: 1314 = dxnf.exe
uPolicies-DisallowRun: 1315 = e85b8fb2d01.exe
uPolicies-DisallowRun: 1316 = easy.windows.monitoring.exe
uPolicies-DisallowRun: 1317 = easyav.exe
uPolicies-DisallowRun: 1318 = ecodec.exe
uPolicies-DisallowRun: 1319 = edit server.exe
uPolicies-DisallowRun: 1320 = ee.exe
uPolicies-DisallowRun: 1321 = ee1a8f91d01.exe
uPolicies-DisallowRun: 1322 = ee248fa7d01.exe
uPolicies-DisallowRun: 1323 = eeea8fa3d01.exe
uPolicies-DisallowRun: 1324 = eeef8fa2d01.exe
uPolicies-DisallowRun: 1325 = eetu.exe
uPolicies-DisallowRun: 1326 = eksplorasi.exe
uPolicies-DisallowRun: 1327 = elos.exe
uPolicies-DisallowRun: 1328 = eml.exe
uPolicies-DisallowRun: 1329 = emsw.exe
uPolicies-DisallowRun: 1330 = enbiei.exe
uPolicies-DisallowRun: 1331 = enuubwafo.exe
uPolicies-DisallowRun: 1332 = epswad4.exe
uPolicies-DisallowRun: 1333 = errorguard.exe
uPolicies-DisallowRun: 1334 = ers.exe
uPolicies-DisallowRun: 1335 = ersvc.exe
uPolicies-DisallowRun: 1336 = escan.exe
uPolicies-DisallowRun: 1337 = esyndicateinst.exe
uPolicies-DisallowRun: 1338 = evr8gkxb.exe
uPolicies-DisallowRun: 1339 = exchng32.exe
uPolicies-DisallowRun: 1340 = exclean.exe
uPolicies-DisallowRun: 1341 = exdl.exe
uPolicies-DisallowRun: 1342 = exec.exe
uPolicies-DisallowRun: 1343 = exp.exe
uPolicies-DisallowRun: 1344 = expl32.exe
uPolicies-DisallowRun: 1345 = explore.exe
uPolicies-DisallowRun: 1346 = explored.exe
uPolicies-DisallowRun: 1347 = exploreff.exe
uPolicies-DisallowRun: 1348 = explorer32.exe
uPolicies-DisallowRun: 1349 = explorere.exe
uPolicies-DisallowRun: 1350 = exul.exe
uPolicies-DisallowRun: 1351 = ezinstall.exe
uPolicies-DisallowRun: 1352 = ezpopstub.exe
uPolicies-DisallowRun: 1353 = ezstub.exe
uPolicies-DisallowRun: 1354 = ezstub22.exe
uPolicies-DisallowRun: 1355 = ezulumain.exe
uPolicies-DisallowRun: 1356 = f3403484.exe
uPolicies-DisallowRun: 1357 = f4bbfeaed01
uPolicies-DisallowRun: 1358 = farmmext.exe
uPolicies-DisallowRun: 1359 = fash.exe
uPolicies-DisallowRun: 1360 = fasterxp.exe
uPolicies-DisallowRun: 1361 = fbi_facebook.exe
uPolicies-DisallowRun: 1362 = fc.exe
uPolicies-DisallowRun: 1363 = fixtitle.exe
uPolicies-DisallowRun: 1364 = fjdbfvk.exe
uPolicies-DisallowRun: 1365 = flashtalk-wise1000.exe
uPolicies-DisallowRun: 1366 = fntldr.exe
uPolicies-DisallowRun: 1367 = fontloader.exe
uPolicies-DisallowRun: 1368 = fontview.exe
uPolicies-DisallowRun: 1369 = formulario.exe
uPolicies-DisallowRun: 1370 = fph.exe
uPolicies-DisallowRun: 1371 = fqc.exe
uPolicies-DisallowRun: 1372 = freexxx.exe
uPolicies-DisallowRun: 1373 = frsk.exe
uPolicies-DisallowRun: 1374 = fservice.exe
uPolicies-DisallowRun: 1375 = fsg.exe
uPolicies-DisallowRun: 1376 = fsg_4104.exe
uPolicies-DisallowRun: 1377 = fsjyhc5r.exe
uPolicies-DisallowRun: 1378 = fsw.exe
uPolicies-DisallowRun: 1379 = fullgames.exe
uPolicies-DisallowRun: 1380 = fuwxenc.exe
uPolicies-DisallowRun: 1381 = fvprotect.exe
uPolicies-DisallowRun: 1382 = g181511.a.stub.exe
uPolicies-DisallowRun: 1383 = g4eyp3kf.exe
uPolicies-DisallowRun: 1384 = gaedzsxe.exe
uPolicies-DisallowRun: 1385 = gah95on6.exe
uPolicies-DisallowRun: 1386 = gain_trickler_3102.exe
uPolicies-DisallowRun: 1387 = gain_trickler_3202.exe
uPolicies-DisallowRun: 1388 = my music.exe
uPolicies-DisallowRun: 1389 = gateway.exe
uPolicies-DisallowRun: 1390 = gator.exe
uPolicies-DisallowRun: 1391 = gatorstubsetup.exe
uPolicies-DisallowRun: 1392 = get.exe
uPolicies-DisallowRun: 1393 = get_flash_update.exe
uPolicies-DisallowRun: 1394 = getbuys.exe
uPolicies-DisallowRun: 1395 = gfjgj.exe
uPolicies-DisallowRun: 1396 = ghost.bat
uPolicies-DisallowRun: 1397 = ginst_001_1234_4201.exe
uPolicies-DisallowRun: 1398 = gld.exe
uPolicies-DisallowRun: 1399 = glf2fglf2f.exe
uPolicies-DisallowRun: 1400 = gm.exe
uPolicies-DisallowRun: 1401 = gmt.exe
uPolicies-DisallowRun: 1402 = gogoaddisplay.exe
uPolicies-DisallowRun: 1403 = gogoaddressbar.exe
uPolicies-DisallowRun: 1404 = gogofileshare.exe
uPolicies-DisallowRun: 1405 = gogotoolbar.exe
uPolicies-DisallowRun: 1406 = gogotools.exe
uPolicies-DisallowRun: 1407 = gogotools0.exe
uPolicies-DisallowRun: 1408 = gogotoolsinstaller.exe
uPolicies-DisallowRun: 1409 = gsohy92a.exe
uPolicies-DisallowRun: 1410 = gstartup.exe
uPolicies-DisallowRun: 1411 = szace.exe
uPolicies-DisallowRun: 1412 = guninstaller.exe
uPolicies-DisallowRun: 1413 = h2g140n1.exe
uPolicies-DisallowRun: 1414 = hacker.exe
uPolicies-DisallowRun: 1415 = haiyang.exe
uPolicies-DisallowRun: 1416 = hbinst.exe
uPolicies-DisallowRun: 1417 = hbtv.exe
uPolicies-DisallowRun: 1418 = heat.exe
uPolicies-DisallowRun: 1419 = hellmsn.exe
uPolicies-DisallowRun: 1420 = helpexp.exe
uPolicies-DisallowRun: 1421 = hgfedcba.exe
uPolicies-DisallowRun: 1422 = hgqhp.exe
uPolicies-DisallowRun: 1423 = hhs32.pif
uPolicies-DisallowRun: 1424 = hidden32.exe
uPolicies-DisallowRun: 1425 = hidedown.exe
uPolicies-DisallowRun: 1426 = hidr.exe
uPolicies-DisallowRun: 1427 = hloader.exe
uPolicies-DisallowRun: 1428 = hnm_svc.exe
uPolicies-DisallowRun: 1429 = hookdump.exe
uPolicies-DisallowRun: 1430 = host.exe
uPolicies-DisallowRun: 1431 = hot.exe
uPolicies-DisallowRun: 1432 = hot_tarts_mc.exe
uPolicies-DisallowRun: 1433 = hprog.exe
uPolicies-DisallowRun: 1434 = hro.exe
uPolicies-DisallowRun: 1435 = htmdeng.exe
uPolicies-DisallowRun: 1436 = hwclock.exe
uPolicies-DisallowRun: 1437 = hxdef.exe
uPolicies-DisallowRun: 1438 = hxdl.exe
uPolicies-DisallowRun: 1439 = hxiul.exe
uPolicies-DisallowRun: 1440 = i3k0hgad.exe
uPolicies-DisallowRun: 1441 = ibm00001.exe
uPolicies-DisallowRun: 1442 = icon.exe
uPolicies-DisallowRun: 1443 = idemlog.exe
uPolicies-DisallowRun: 1444 = idleui.exe
uPolicies-DisallowRun: 1445 = iebtm.exe
uPolicies-DisallowRun: 1446 = iedll.exe
uPolicies-DisallowRun: 1447 = iedriver.exe
uPolicies-DisallowRun: 1448 = iegator.exe
uPolicies-DisallowRun: 1449 = iehost.exe
uPolicies-DisallowRun: 1450 = iep.exe
uPolicies-DisallowRun: 1451 = iesetup.exe
uPolicies-DisallowRun: 1452 = iexpiore.exe
uPolicies-DisallowRun: 1453 = iexplor32.exe
uPolicies-DisallowRun: 1454 = iexplore32.exe
uPolicies-DisallowRun: 1455 = iexplorer.exe
uPolicies-DisallowRun: 1456 = igetnet_3845_3645.exe
uPolicies-DisallowRun: 1457 = igps.exe
uPolicies-DisallowRun: 1458 = igpsdon6.exe
uPolicies-DisallowRun: 1459 = iinstall.exe
uPolicies-DisallowRun: 1460 = im_2.exe
uPolicies-DisallowRun: 1461 = imguninst.exe
uPolicies-DisallowRun: 1462 = infoctl.exe
uPolicies-DisallowRun: 1463 = infus.exe
uPolicies-DisallowRun: 1464 = infwin.exe
uPolicies-DisallowRun: 1465 = init32m.exe
uPolicies-DisallowRun: 1466 = ink.exe
uPolicies-DisallowRun: 1467 = inst.exe
uPolicies-DisallowRun: 1468 = install1.exe
uPolicies-DisallowRun: 1469 = installdatemanager.exe
uPolicies-DisallowRun: 1470 = installer1.exe
uPolicies-DisallowRun: 1471 = instant access.exe
uPolicies-DisallowRun: 1472 = intdel.exe
uPolicies-DisallowRun: 1473 = intel32.exe
uPolicies-DisallowRun: 1474 = intell321.exe
uPolicies-DisallowRun: 1475 = intenat.exe
uPolicies-DisallowRun: 1476 = internet.exe
uPolicies-DisallowRun: 1477 = internetfeatures.exe
uPolicies-DisallowRun: 1478 = ipfw.exe
uPolicies-DisallowRun: 1479 = ipu.exe
uPolicies-DisallowRun: 1480 = ipwins.exe
uPolicies-DisallowRun: 1481 = irasyncd.exe
uPolicies-DisallowRun: 1482 = iroffer.exe
uPolicies-DisallowRun: 1483 = isamini.exe
uPolicies-DisallowRun: 1484 = isamntr.exe
uPolicies-DisallowRun: 1485 = isamonitor.exe
uPolicies-DisallowRun: 1486 = isass.exe
uPolicies-DisallowRun: 1487 = ishost.exe
uPolicies-DisallowRun: 1488 = isinstalldonecrazy.exe
uPolicies-DisallowRun: 1489 = ismon.exe
uPolicies-DisallowRun: 1490 = isnotify.exe
uPolicies-DisallowRun: 1491 = ispsupport.exe
uPolicies-DisallowRun: 1492 = issearch.exe
uPolicies-DisallowRun: 1493 = istsvc.exe
uPolicies-DisallowRun: 1494 = itbill.exe
uPolicies-DisallowRun: 1495 = itphwd.exe
uPolicies-DisallowRun: 1496 = iwatch.exe
uPolicies-DisallowRun: 1497 = j4g8w5m8.exe
uPolicies-DisallowRun: 1498 = j7k8ug16.exe
uPolicies-DisallowRun: 1499 = j95i15ei.exe
uPolicies-DisallowRun: 1500 = jabber.exe
uPolicies-DisallowRun: 1501 = jammer2nd.exe
uPolicies-DisallowRun: 1502 = jawa32.exe
uPolicies-DisallowRun: 1503 = jdbgmrg.exe
uPolicies-DisallowRun: 1504 = jif.exe
uPolicies-DisallowRun: 1505 = jkill.exe
uPolicies-DisallowRun: 1506 = jmnmxr.exe
uPolicies-DisallowRun: 1507 = jnfdtdi.exe
uPolicies-DisallowRun: 1508 = jq34042x.exe
uPolicies-DisallowRun: 1509 = jre4i3q6.exe
uPolicies-DisallowRun: 1510 = jushed32.exe
uPolicies-DisallowRun: 1511 = jxcevib2.exe
uPolicies-DisallowRun: 1512 = k4eboy6.exe
uPolicies-DisallowRun: 1513 = kaboom.exe
uPolicies-DisallowRun: 1514 = kahlisetup_demo.exe
uPolicies-DisallowRun: 1515 = kane.exe
uPolicies-DisallowRun: 1516 = kazza.exe
uPolicies-DisallowRun: 1517 = kb021119.exe
uPolicies-DisallowRun: 1518 = keenvalue.exe
uPolicies-DisallowRun: 1519 = kernal32.exe
uPolicies-DisallowRun: 1520 = kerne1412.exe
uPolicies-DisallowRun: 1521 = kernel32.exe
uPolicies-DisallowRun: 1522 = kernels32.exe
uPolicies-DisallowRun: 1523 = kernels64.exe
uPolicies-DisallowRun: 1524 = keu2zfke.exe
uPolicies-DisallowRun: 1525 = keylogger plugin.exe
uPolicies-DisallowRun: 1526 = keyword.exe
uPolicies-DisallowRun: 1527 = kl.exe
uPolicies-DisallowRun: 1528 = kmwoa.exe
uPolicies-DisallowRun: 1529 = kmwol.exe
uPolicies-DisallowRun: 1530 = kmwop.exe
uPolicies-DisallowRun: 1531 = knuzql.exe
uPolicies-DisallowRun: 1532 = krxz.exe
uPolicies-DisallowRun: 1533 = l6y07fu5.exe
uPolicies-DisallowRun: 1534 = lass.exe
uPolicies-DisallowRun: 1535 = launchadware.exe
uPolicies-DisallowRun: 1536 = layer.exe
uPolicies-DisallowRun: 1537 = lcc.exe
uPolicies-DisallowRun: 1538 = lex.exe
uPolicies-DisallowRun: 1539 = lexplore.exe
uPolicies-DisallowRun: 1540 = license_manager.exe
uPolicies-DisallowRun: 1541 = bmonq.exe
uPolicies-DisallowRun: 1542 = live.exe
uPolicies-DisallowRun: 1543 = lmu.exe
uPolicies-DisallowRun: 1544 = load.exe
uPolicies-DisallowRun: 1545 = load32.exe
uPolicies-DisallowRun: 1546 = loader(1).exe
uPolicies-DisallowRun: 1547 = l26.exe
uPolicies-DisallowRun: 1548 = loader[1].exe
uPolicies-DisallowRun: 1549 = lockx.exe
uPolicies-DisallowRun: 1550 = lodctr32.exe
uPolicies-DisallowRun: 1551 = Duel_v2.exe
uPolicies-DisallowRun: 1552 = logon.exe
uPolicies-DisallowRun: 1553 = loud.exe
uPolicies-DisallowRun: 1554 = lp.exe
uPolicies-DisallowRun: 1555 = lsa.exe
uPolicies-DisallowRun: 1556 = lsas.exe
uPolicies-DisallowRun: 1557 = lsass32.exe
uPolicies-DisallowRun: 1558 = lsassa.exe
uPolicies-DisallowRun: 1559 = lssas.exe
uPolicies-DisallowRun: 1560 = lsserv.exe
uPolicies-DisallowRun: 1561 = ma.exe
uPolicies-DisallowRun: 1562 = mahtfi.exe
uPolicies-DisallowRun: 1563 = mapisvc32.exe
uPolicies-DisallowRun: 1564 = mario.exe
uPolicies-DisallowRun: 1565 = matcli.exe
uPolicies-DisallowRun: 1566 = mcafee.update.exe.exe
uPolicies-DisallowRun: 1567 = mcf.exe
uPolicies-DisallowRun: 1568 = md.exe
uPolicies-DisallowRun: 1569 = mdms.exe
uPolicies-DisallowRun: 1570 = me.exe
uPolicies-DisallowRun: 1571 = medgs1.exe
uPolicies-DisallowRun: 1572 = mediaaccess.exe
uPolicies-DisallowRun: 1573 = mediaaccessinstpack.exe
uPolicies-DisallowRun: 1574 = mediaacck.exe
uPolicies-DisallowRun: 1575 = mediagateway.exe
uPolicies-DisallowRun: 1576 = mediaman.exe
uPolicies-DisallowRun: 1577 = mediapass.exe
uPolicies-DisallowRun: 1578 = mediapassk.exe
uPolicies-DisallowRun: 1579 = members-area.exe
uPolicies-DisallowRun: 1580 = memorymeter.exe
uPolicies-DisallowRun: 1581 = menu.exe
uPolicies-DisallowRun: 1582 = mfc71.exe
uPolicies-DisallowRun: 1583 = mfin32.exe
uPolicies-DisallowRun: 1584 = mfx8k065.exe
uPolicies-DisallowRun: 1585 = microsystem.exe
uPolicies-DisallowRun: 1586 = minibug.exe
uPolicies-DisallowRun: 1587 = mirc32.exe
uPolicies-DisallowRun: 1588 = mirindaa1i.exe
uPolicies-DisallowRun: 1589 = mirror_plugin.exe
uPolicies-DisallowRun: 1590 = mksc.exe
uPolicies-DisallowRun: 1591 = mm.exe
uPolicies-DisallowRun: 1592 = mm15201518.stub.exe
uPolicies-DisallowRun: 1593 = mmbun.exe
uPolicies-DisallowRun: 1594 = mmm.exe
uPolicies-DisallowRun: 1595 = mmod.exe
uPolicies-DisallowRun: 1596 = mmsg.exe
uPolicies-DisallowRun: 1597 = mmups.exe
uPolicies-DisallowRun: 1598 = mnss.exe
uPolicies-DisallowRun: 1599 = mostat.exe
uPolicies-DisallowRun: 1600 = mousedrv.exe
uPolicies-DisallowRun: 1601 = mp3serch.exe
uPolicies-DisallowRun: 1602 = mp7eq7hx.exe
uPolicies-DisallowRun: 1603 = mrjj.exe
uPolicies-DisallowRun: 1604 = mrtstub.exe
uPolicies-DisallowRun: 1605 = msaa.exe
uPolicies-DisallowRun: 1606 = msapp.exe
uPolicies-DisallowRun: 1607 = msbb.exe
uPolicies-DisallowRun: 1608 = msbb[1].exe
uPolicies-DisallowRun: 1609 = msblast.exe
uPolicies-DisallowRun: 1610 = msc32.exe
uPolicies-DisallowRun: 1611 = mscache.exe
uPolicies-DisallowRun: 1612 = msccn32.exe
uPolicies-DisallowRun: 1613 = msckin.exe
uPolicies-DisallowRun: 1614 = mscman.exe
uPolicies-DisallowRun: 1615 = mscnsz.exe
uPolicies-DisallowRun: 1616 = mscommand.exe
uPolicies-DisallowRun: 1617 = msconfgh.exe
uPolicies-DisallowRun: 1618 = msconfig32.exe
uPolicies-DisallowRun: 1619 = mscornet.exe
uPolicies-DisallowRun: 1620 = mscvb32.exe
uPolicies-DisallowRun: 1621 = msdm.exe
uPolicies-DisallowRun: 1622 = msexreg.exe
uPolicies-DisallowRun: 1623 = msgdmf.exe
uPolicies-DisallowRun: 1624 = msgfix.exe
uPolicies-DisallowRun: 1625 = msgrsv32.exe
uPolicies-DisallowRun: 1626 = msiexec16.exe
uPolicies-DisallowRun: 1627 = msinfo.exe
uPolicies-DisallowRun: 1628 = mslagent.exe
uPolicies-DisallowRun: 1629 = mslaugh.exe
uPolicies-DisallowRun: 1630 = msmc.exe
uPolicies-DisallowRun: 1631 = msmgs.exe
uPolicies-DisallowRun: 1632 = msmgt.exe
uPolicies-DisallowRun: 1633 = msmm.exe
uPolicies-DisallowRun: 1634 = msmsg.exe
uPolicies-DisallowRun: 1635 = msnlive.exe
uPolicies-DisallowRun: 1636 = msnst32.exe
uPolicies-DisallowRun: 1637 = msole32.exe
uPolicies-DisallowRun: 1638 = mspath.exe
uPolicies-DisallowRun: 1639 = mspmspv.exe
uPolicies-DisallowRun: 1640 = msrexe.exe
uPolicies-DisallowRun: 1641 = mssearchnet.exe
uPolicies-DisallowRun: 1642 = mssecure.exe
uPolicies-DisallowRun: 1643 = msshed32.exe
uPolicies-DisallowRun: 1644 = mssvc32.exe
uPolicies-DisallowRun: 1645 = mssvr.exe
uPolicies-DisallowRun: 1646 = mssys.exe
uPolicies-DisallowRun: 1647 = mstasks.exe
uPolicies-DisallowRun: 1648 = mstc.exe
uPolicies-DisallowRun: 1649 = mstcs.exe
uPolicies-DisallowRun: 1650 = msupdate.exe
uPolicies-DisallowRun: 1651 = msvc32.exe
uPolicies-DisallowRun: 1652 = msvcrl.exe
uPolicies-DisallowRun: 1653 = msvgr.exe
uPolicies-DisallowRun: 1654 = msvxd.exe
uPolicies-DisallowRun: 1655 = msw.exe
uPolicies-DisallowRun: 1656 = mswin32.exe
uPolicies-DisallowRun: 1657 = mswinb32.exe
uPolicies-DisallowRun: 1658 = msxct.exe
uPolicies-DisallowRun: 1659 = mt.exe
uPolicies-DisallowRun: 1660 = mtask.exe
uPolicies-DisallowRun: 1661 = mtjuhp.exe
uPolicies-DisallowRun: 1662 = mudsc.exe
uPolicies-DisallowRun: 1663 = murphy.exe
uPolicies-DisallowRun: 1664 = mwd.exe
uPolicies-DisallowRun: 1665 = mwfirewall.exe
uPolicies-DisallowRun: 1666 = mwsoemon.exe
uPolicies-DisallowRun: 1667 = mwsvm.exe
uPolicies-DisallowRun: 1668 = mypcsearch.exe
uPolicies-DisallowRun: 1669 = mysearch2.0.exe
uPolicies-DisallowRun: 1670 = mysetp.exe
uPolicies-DisallowRun: 1671 = myurlff.exe
uPolicies-DisallowRun: 1672 = myurlsagain.exe
uPolicies-DisallowRun: 1673 = n.exe
uPolicies-DisallowRun: 1674 = n1hvjmy9.exe
uPolicies-DisallowRun: 1675 = n20050308.exe
uPolicies-DisallowRun: 1676 = nail(1).exe
uPolicies-DisallowRun: 1677 = nail.exe
uPolicies-DisallowRun: 1678 = namedpipe.exe
uPolicies-DisallowRun: 1679 = nav32sp.exe
uPolicies-DisallowRun: 1680 = navapp.exe
uPolicies-DisallowRun: 1681 = nbthlp.exe
uPolicies-DisallowRun: 1682 = ncaselib.exe
uPolicies-DisallowRun: 1683 = ndcx3xyq.exe
uPolicies-DisallowRun: 1684 = netclient.exe
uPolicies-DisallowRun: 1685 = netddeclnt.exe
uPolicies-DisallowRun: 1686 = netinfo.exe
uPolicies-DisallowRun: 1687 = netlib.exe
uPolicies-DisallowRun: 1688 = netmail.exe
uPolicies-DisallowRun: 1689 = netmeeting.exe
uPolicies-DisallowRun: 1690 = netmon.exe
uPolicies-DisallowRun: 1691 = netserver.exe
uPolicies-DisallowRun: 1692 = netsurf.exe
uPolicies-DisallowRun: 1693 = netsvc.exe
uPolicies-DisallowRun: 1694 = network.exe
uPolicies-DisallowRun: 1695 = newdevin.exe
uPolicies-DisallowRun: 1696 = newdot.exe
uPolicies-DisallowRun: 1697 = newpop447.exe
uPolicies-DisallowRun: 1698 = nfomon.exe
uPolicies-DisallowRun: 1699 = nl.exe
uPolicies-DisallowRun: 1700 = nlnp49.exe
uPolicies-DisallowRun: 1701 = nls.exe
uPolicies-DisallowRun: 1702 = noat.exe
uPolicies-DisallowRun: 1703 = nomoreporn.exe
uPolicies-DisallowRun: 1704 = nopat.exe
uPolicies-DisallowRun: 1705 = norton update.exe
uPolicies-DisallowRun: 1706 = note.exe
uPolicies-DisallowRun: 1707 = notesweb.exe
uPolicies-DisallowRun: 1708 = npkcsvc.exe
uPolicies-DisallowRun: 1709 = nrcs.exe
uPolicies-DisallowRun: 1710 = nrpc.exe
uPolicies-DisallowRun: 1711 = nscheck.exe
uPolicies-DisallowRun: 1712 = nssys32.exe
uPolicies-DisallowRun: 1713 = nstask32.exe
uPolicies-DisallowRun: 1714 = nsupdate.exe
uPolicies-DisallowRun: 1715 = nsvsvc.exe
uPolicies-DisallowRun: 1716 = ntdetect.exe
uPolicies-DisallowRun: 1717 = ntfs64.exe
uPolicies-DisallowRun: 1718 = ntosa32.exe
uPolicies-DisallowRun: 1719 = ntsys.exe
uPolicies-DisallowRun: 1720 = nvctrl.exe
uPolicies-DisallowRun: 1721 = nvsc32.exe
uPolicies-DisallowRun: 1722 = o84u7fwq.exe
uPolicies-DisallowRun: 1723 = obllak.exe
uPolicies-DisallowRun: 1724 = ocxdll.exe
uPolicies-DisallowRun: 1725 = odcfg.exe
uPolicies-DisallowRun: 1726 = oeet.exe
uPolicies-DisallowRun: 1727 = oeloader.exe
uPolicies-DisallowRun: 1728 = offers.exe
uPolicies-DisallowRun: 1729 = The sky.exe
uPolicies-DisallowRun: 1730 = nt.com
uPolicies-DisallowRun: 1731 = office.exe
uPolicies-DisallowRun: 1732 = offun.exe
uPolicies-DisallowRun: 1733 = okpelq4p.exe
uPolicies-DisallowRun: 1734 = olehelp.exe
uPolicies-DisallowRun: 1735 = optimize.exe
uPolicies-DisallowRun: 1736 = optimize313.exe
uPolicies-DisallowRun: 1737 = osalogbe.exe
uPolicies-DisallowRun: 1738 = othb.exe
uPolicies-DisallowRun: 1739 = p23oorr3.exe
uPolicies-DisallowRun: 1740 = p2p networking.exe
uPolicies-DisallowRun: 1741 = p2p networking2.exe
uPolicies-DisallowRun: 1742 = p2p networking3.exe
uPolicies-DisallowRun: 1743 = p2pnetworking.exe
uPolicies-DisallowRun: 1744 = p2pnetworking3.exe
uPolicies-DisallowRun: 1745 = pagerevisor.exe
uPolicies-DisallowRun: 1746 = paytime.exe
uPolicies-DisallowRun: 1747 = pbl8ey0e.exe
uPolicies-DisallowRun: 1748 = pchealth.exe
uPolicies-DisallowRun: 1749 = pcsvc.exe
uPolicies-DisallowRun: 1750 = pec.exe
uPolicies-DisallowRun: 1751 = pgmonitr.exe
uPolicies-DisallowRun: 1752 = phantom.exe
uPolicies-DisallowRun: 1753 = phqghum.exe
uPolicies-DisallowRun: 1754 = phqghume.exe
uPolicies-DisallowRun: 1755 = pi1_??.exe
uPolicies-DisallowRun: 1756 = picsvr.exe
uPolicies-DisallowRun: 1757 = pictureshare.exe
uPolicies-DisallowRun: 1758 = recycle.exe
uPolicies-DisallowRun: 1759 = picx.exe
uPolicies-DisallowRun: 1760 = pisf.exe
uPolicies-DisallowRun: 1761 = piuw.exe
uPolicies-DisallowRun: 1762 = 1ogf.exe
uPolicies-DisallowRun: 1763 = gwr0lyd.bat
uPolicies-DisallowRun: 1764 = play[2].exe
uPolicies-DisallowRun: 1765 = play[3].exe
uPolicies-DisallowRun: 1766 = play[4].exe
uPolicies-DisallowRun: 1767 = play_mp3(2).exe
uPolicies-DisallowRun: 1768 = play_mp3.exe
uPolicies-DisallowRun: 1769 = play_mp3[1].exe
uPolicies-DisallowRun: 1770 = play_mp3[2].exe
uPolicies-DisallowRun: 1771 = play_mp3[3].exe
uPolicies-DisallowRun: 1772 = play_mp3[4].exe
uPolicies-DisallowRun: 1773 = WantsU.exe
uPolicies-DisallowRun: 1774 = My heart.exe
uPolicies-DisallowRun: 1775 = A smile.exe
uPolicies-DisallowRun: 1776 = Forever.exe
uPolicies-DisallowRun: 1777 = My love.exe
uPolicies-DisallowRun: 1778 = CritProc.exe
uPolicies-DisallowRun: 1779 = play_mp3[5].exe
uPolicies-DisallowRun: 1780 = play_mp3[6].exe
uPolicies-DisallowRun: 1781 = play_mp3-3.exe
uPolicies-DisallowRun: 1782 = plscd.exe
uPolicies-DisallowRun: 1783 = plugin compressor.exe
uPolicies-DisallowRun: 1784 = pmmnt.exe
uPolicies-DisallowRun: 1785 = pmmon.exe
uPolicies-DisallowRun: 1786 = pmr.exe
uPolicies-DisallowRun: 1787 = pmsngr.exe
uPolicies-DisallowRun: 1788 = pmsnrr.exe
uPolicies-DisallowRun: 1789 = pmt.exe
uPolicies-DisallowRun: 1790 = points manager.exe
uPolicies-DisallowRun: 1791 = pokapoka
uPolicies-DisallowRun: 1792 = pokapoka66.exe
uPolicies-DisallowRun: 1793 = pokapoka67.exe
uPolicies-DisallowRun: 1794 = pokapoka70.exe
uPolicies-DisallowRun: 1795 = pokapoka72.exe
uPolicies-DisallowRun: 1796 = pokapoka73.exe
uPolicies-DisallowRun: 1797 = pokapoka76.exe
uPolicies-DisallowRun: 1798 = pokapoka79.exe
uPolicies-DisallowRun: 1799 = poker.exe
uPolicies-DisallowRun: 1800 = popuper.exe
uPolicies-DisallowRun: 1801 = powerreg
uPolicies-DisallowRun: 1802 = powerreg scheduler.exe
uPolicies-DisallowRun: 1803 = powerscan.exe
uPolicies-DisallowRun: 1804 = precisiontime.exe
uPolicies-DisallowRun: 1805 = precisiontimesetup.exe
uPolicies-DisallowRun: 1806 = prevadcomm.exe
uPolicies-DisallowRun: 1807 = prizesurfer.exe
uPolicies-DisallowRun: 1808 = prmt.exe
uPolicies-DisallowRun: 1809 = prositefinder.exe
uPolicies-DisallowRun: 1810 = prositefinder1.exe
uPolicies-DisallowRun: 1811 = prositefinderh.exe
uPolicies-DisallowRun: 1812 = prot.exe
uPolicies-DisallowRun: 1813 = protector.exe
uPolicies-DisallowRun: 1814 = pruttct.exe
uPolicies-DisallowRun: 1815 = ps_install-grokster.exe
uPolicies-DisallowRun: 1816 = ps_uninstaller.exe
uPolicies-DisallowRun: 1817 = ps1.exe
uPolicies-DisallowRun: 1818 = pscanw.exe
uPolicies-DisallowRun: 1819 = psof1.exe
uPolicies-DisallowRun: 1820 = psoft1.exe
uPolicies-DisallowRun: 1821 = My desire.exe
uPolicies-DisallowRun: 1822 = My hope.exe
uPolicies-DisallowRun: 1823 = My wish.exe
uPolicies-DisallowRun: 1824 = psqeelsr.exe
uPolicies-DisallowRun: 1825 = ptop.exe
uPolicies-DisallowRun: 1826 = ptuninstaller.exe
uPolicies-DisallowRun: 1827 = purityscan install.exe
uPolicies-DisallowRun: 1828 = purityscan.exe
uPolicies-DisallowRun: 1829 = purityscan2.exe
uPolicies-DisallowRun: 1830 = purityscanuninstall.exe
uPolicies-DisallowRun: 1831 = puszinyuszi.exe
uPolicies-DisallowRun: 1832 = pvxusmtu.exe
uPolicies-DisallowRun: 1833 = pyr0.exe
uPolicies-DisallowRun: 1834 = q17i9a4j.exe
uPolicies-DisallowRun: 1835 = q7moyha2.exe
uPolicies-DisallowRun: 1836 = qerbi.exe
uPolicies-DisallowRun: 1837 = qerbif.exe
uPolicies-DisallowRun: 1838 = qhutst.exe
uPolicies-DisallowRun: 1839 = qi8lu5s9.exe
uPolicies-DisallowRun: 1840 = qoologic.exe
uPolicies-DisallowRun: 1841 = qqpr8h33.exe
uPolicies-DisallowRun: 1842 = randreco.exe
uPolicies-DisallowRun: 1843 = ravmond.exe
uPolicies-DisallowRun: 1844 = ray.exe
uPolicies-DisallowRun: 1845 = rb32.exe
uPolicies-DisallowRun: 1846 = rcsync.exe
uPolicies-DisallowRun: 1847 = realtray.exe
uPolicies-DisallowRun: 1848 = realupd32.exe
uPolicies-DisallowRun: 1849 = register.exe
uPolicies-DisallowRun: 1850 = registration.exe
uPolicies-DisallowRun: 1851 = regloadr.exe
uPolicies-DisallowRun: 1852 = regmaping.exe
uPolicies-DisallowRun: 1853 = regperf.exe
uPolicies-DisallowRun: 1854 = regscan.exe
uPolicies-DisallowRun: 1855 = regsrv.exe
uPolicies-DisallowRun: 1856 = regsvc32.exe
uPolicies-DisallowRun: 1857 = regsync.exe
uPolicies-DisallowRun: 1858 = relatedsetup.exe
uPolicies-DisallowRun: 1859 = remote.exe
uPolicies-DisallowRun: 1860 = removed.exe
uPolicies-DisallowRun: 1861 = removedisplayutility.exe
uPolicies-DisallowRun: 1862 = removejk.exe
uPolicies-DisallowRun: 1863 = requester.11.exe
uPolicies-DisallowRun: 1864 = resetservice.exe
uPolicies-DisallowRun: 1865 = richup.exe
uPolicies-DisallowRun: 1866 = rk.exe
uPolicies-DisallowRun: 1867 = rlid.exe
uPolicies-DisallowRun: 1868 = rlvknlg.exe
uPolicies-DisallowRun: 1869 = rogue.exe
uPolicies-DisallowRun: 1870 = rpcmon.exe
uPolicies-DisallowRun: 1871 = rtf32.exe
uPolicies-DisallowRun: 1872 = svchost000.exe
uPolicies-DisallowRun: 1873 = run32dll.exe
uPolicies-DisallowRun: 1874 = rundl32.exe
uPolicies-DisallowRun: 1875 = rundll16.exe
uPolicies-DisallowRun: 1876 = ruxdll32.exe
uPolicies-DisallowRun: 1877 = rxtoolbar.exe
uPolicies-DisallowRun: 1878 = s.exe
uPolicies-DisallowRun: 1879 = s1p1y_bad.exe
uPolicies-DisallowRun: 1880 = saap.exe
uPolicies-DisallowRun: 1881 = sac.exe
uPolicies-DisallowRun: 1882 = sacc.exe
uPolicies-DisallowRun: 1883 = saccu.exe
uPolicies-DisallowRun: 1884 = sachostb.exe
uPolicies-DisallowRun: 1885 = sachostc.exe
uPolicies-DisallowRun: 1886 = sachostm.exe
uPolicies-DisallowRun: 1887 = sachostp.exe
uPolicies-DisallowRun: 1888 = sachosts.exe
uPolicies-DisallowRun: 1889 = sachostw.exe
uPolicies-DisallowRun: 1890 = sachostx.exe
uPolicies-DisallowRun: 1891 = safemode.exe
uPolicies-DisallowRun: 1892 = sahagent.exe
uPolicies-DisallowRun: 1893 = sahdownloader_.exe
uPolicies-DisallowRun: 1894 = saie.exe
uPolicies-DisallowRun: 1895 = sais.exe
uPolicies-DisallowRun: 1896 = salm.delete.exe
uPolicies-DisallowRun: 1897 = salm.exe
uPolicies-DisallowRun: 1898 = salmbundle.exe
uPolicies-DisallowRun: 1899 = sass.exe
uPolicies-DisallowRun: 1900 = satmat.exe
uPolicies-DisallowRun: 1901 = scam32.exe
uPolicies-DisallowRun: 1902 = scanregistry.exe
uPolicies-DisallowRun: 1903 = scardsvr32.exe
uPolicies-DisallowRun: 1904 = scbar.exe
uPolicies-DisallowRun: 1905 = scchost.exe
uPolicies-DisallowRun: 1906 = schedulingagent
uPolicies-DisallowRun: 1907 = schost.exe
uPolicies-DisallowRun: 1908 = screensaver.v.2.1.exe
uPolicies-DisallowRun: 1909 = scrigz.exe
uPolicies-DisallowRun: 1910 = scrss.exe
uPolicies-DisallowRun: 1911 = scrsvr.exe
uPolicies-DisallowRun: 1912 = scrtkfg.exe
uPolicies-DisallowRun: 1913 = scvhost.exe
uPolicies-DisallowRun: 1914 = se.exe
uPolicies-DisallowRun: 1915 = se2ppc4you.exe
uPolicies-DisallowRun: 1916 = search.exe
uPolicies-DisallowRun: 1917 = searchnavversion.exe
uPolicies-DisallowRun: 1918 = searchnugget.exe
uPolicies-DisallowRun: 1919 = searchupdate33.exe
uPolicies-DisallowRun: 1920 = searchupgrader.exe
uPolicies-DisallowRun: 1921 = sectoriate.exe
uPolicies-DisallowRun: 1922 = secure.exe
uPolicies-DisallowRun: 1923 = sed.exe
uPolicies-DisallowRun: 1924 = sedk.exe
uPolicies-DisallowRun: 1925 = seekmo.exe
uPolicies-DisallowRun: 1926 = seeve.exe
uPolicies-DisallowRun: 1927 = semanticinsight.exe
uPolicies-DisallowRun: 1928 = sempalong.exe
uPolicies-DisallowRun: 1929 = senslogn.exe
uPolicies-DisallowRun: 1930 = sepinst.exe
uPolicies-DisallowRun: 1931 = servce.exe
uPolicies-DisallowRun: 1932 = servercon.exe
uPolicies-DisallowRun: 1933 = servic.exe
uPolicies-DisallowRun: 1934 = service5.exe
uPolicies-DisallowRun: 1935 = services32.exe
uPolicies-DisallowRun: 1936 = setup_jalapeno.exe
uPolicies-DisallowRun: 1937 = setup32i.exe
uPolicies-DisallowRun: 1938 = sf.exe
uPolicies-DisallowRun: 1939 = sfc32.exe
uPolicies-DisallowRun: 1940 = sfgdulkp.exe
uPolicies-DisallowRun: 1941 = sfwqi.exe
uPolicies-DisallowRun: 1942 = shell32.exe
uPolicies-DisallowRun: 1943 = shell386.exe
uPolicies-DisallowRun: 1944 = shine.exe
uPolicies-DisallowRun: 1945 = shlhook.exe
uPolicies-DisallowRun: 1946 = shmgrate.exe
uPolicies-DisallowRun: 1947 = shnlog.exe
uPolicies-DisallowRun: 1948 = shutdownutility.exe
uPolicies-DisallowRun: 1949 = si.exe
uPolicies-DisallowRun: 1950 = sideb.exe
uPolicies-DisallowRun: 1951 = sidedb_install.exe
uPolicies-DisallowRun: 1952 = sksockserver.exe
uPolicies-DisallowRun: 1953 = skynetave.exe
uPolicies-DisallowRun: 1954 = skype32.exe
uPolicies-DisallowRun: 1955 = slmss.exe
uPolicies-DisallowRun: 1956 = slserve.exe
uPolicies-DisallowRun: 1957 = slserves.exe
uPolicies-DisallowRun: 1958 = slsk.exe
uPolicies-DisallowRun: 1959 = smmss.exe
uPolicies-DisallowRun: 1960 = sms.exe
uPolicies-DisallowRun: 1961 = smschk.exe
uPolicies-DisallowRun: 1962 = smsonx32.exe
uPolicies-DisallowRun: 1963 = smsss.exe
uPolicies-DisallowRun: 1964 = smszac32.exe
uPolicies-DisallowRun: 1965 = soap.exe
uPolicies-DisallowRun: 1966 = Cn911.exe
uPolicies-DisallowRun: 1967 = soproc.exe
uPolicies-DisallowRun: 1968 = sp.exe
uPolicies-DisallowRun: 1969 = sp2ctr.exe
uPolicies-DisallowRun: 1970 = spoler.exe
uPolicies-DisallowRun: 1971 = spollsv.exe
uPolicies-DisallowRun: 1972 = spool.exe
uPolicies-DisallowRun: 1973 = spooler.exe
uPolicies-DisallowRun: 1974 = spools.exe
uPolicies-DisallowRun: 1975 = spoolsrv.exe
uPolicies-DisallowRun: 1976 = spoolsrv32.exe
uPolicies-DisallowRun: 1977 = spoolsvc.exe
uPolicies-DisallowRun: 1978 = sprite.exe
uPolicies-DisallowRun: 1979 = spvspool.exe
uPolicies-DisallowRun: 1980 = spyagent.exe
uPolicies-DisallowRun: 1981 = spyagent4.exe
uPolicies-DisallowRun: 1982 = spyaxe.exe
uPolicies-DisallowRun: 1983 = spybuddy.exe
uPolicies-DisallowRun: 1984 = spysheriff.exe
uPolicies-DisallowRun: 1985 = spytrooper.exe
uPolicies-DisallowRun: 1986 = spyware.exe
uPolicies-DisallowRun: 1987 = sqlexp.exe
uPolicies-DisallowRun: 1988 = sqlexp1.exe
uPolicies-DisallowRun: 1989 = sqlrep.exe
uPolicies-DisallowRun: 1990 = sqlscan.exe
uPolicies-DisallowRun: 1991 = sqlserver.exe
uPolicies-DisallowRun: 1992 = sr.exe
uPolicies-DisallowRun: 1993 = srng.exe
uPolicies-DisallowRun: 1994 = srv1.exe
uPolicies-DisallowRun: 1995 = srv2.exe
uPolicies-DisallowRun: 1996 = srv32.exe
uPolicies-DisallowRun: 1997 = srv4.exe
uPolicies-DisallowRun: 1998 = srvc32.exe
uPolicies-DisallowRun: 1999 = sservice.exe
uPolicies-DisallowRun: 2000 = ssgrate.exe
uPolicies-DisallowRun: 2001 = ssk.exe
uPolicies-DisallowRun: 2002 = ssk3_b5.exe
uPolicies-DisallowRun: 2003 = ssk3_installerv5.exe
uPolicies-DisallowRun: 2004 = sskb5.exe
uPolicies-DisallowRun: 2005 = sskupdater.exe
uPolicies-DisallowRun: 2006 = ssl.exe
uPolicies-DisallowRun: 2007 = ssrms.exe
uPolicies-DisallowRun: 2008 = ssyszu2r.exe
uPolicies-DisallowRun: 2009 = Home Video.avi.exe
uPolicies-DisallowRun: 2010 = stcloader.exe
uPolicies-DisallowRun: 2011 = stealth.dcom.exe
uPolicies-DisallowRun: 2012 = stealth.ddos.exe
uPolicies-DisallowRun: 2013 = stealth.exe
uPolicies-DisallowRun: 2014 = stealth.injector.exe
uPolicies-DisallowRun: 2015 = stealth.stat.exe
uPolicies-DisallowRun: 2016 = stealth.worm.exe
uPolicies-DisallowRun: 2017 = stmtdlr.exe
uPolicies-DisallowRun: 2018 = str.exe
uPolicies-DisallowRun: 2019 = stubinstaller.exe
uPolicies-DisallowRun: 2020 = stubinstaller4292.exe
uPolicies-DisallowRun: 2021 = suchost.exe
uPolicies-DisallowRun: 2022 = supportinstall.exe
uPolicies-DisallowRun: 2023 = surfsidekick.exe
uPolicies-DisallowRun: 2024 = susp.exe
uPolicies-DisallowRun: 2025 = svaplayer.exe
uPolicies-DisallowRun: 2026 = svc.exe
uPolicies-DisallowRun: 2027 = svcdata.exe
uPolicies-DisallowRun: 2028 = 2j.cmd
uPolicies-DisallowRun: 2029 = svchoost.exe
uPolicies-DisallowRun: 2030 = svchos1.exe
uPolicies-DisallowRun: 2031 = svchosl.exe
uPolicies-DisallowRun: 2032 = svchostl.exe
uPolicies-DisallowRun: 2033 = svchosts.exe
uPolicies-DisallowRun: 2034 = svchosts.exe
uPolicies-DisallowRun: 2035 = system volume.exe
uPolicies-DisallowRun: 2036 = svcinit.exe
uPolicies-DisallowRun: 2037 = svcman.exe
uPolicies-DisallowRun: 2038 = svcproc.exe
uPolicies-DisallowRun: 2039 = svhost.exe
uPolicies-DisallowRun: 2040 = svhosts.exe
uPolicies-DisallowRun: 2041 = svohcst.exe
uPolicies-DisallowRun: 2042 = svshost.exe
uPolicies-DisallowRun: 2043 = svshots.exe
uPolicies-DisallowRun: 2044 = svwhost.exe
uPolicies-DisallowRun: 2045 = svzhost.exe
uPolicies-DisallowRun: 2046 = swin32.exe
uPolicies-DisallowRun: 2047 = switpa.exe
uPolicies-DisallowRun: 2048 = swrt01.exe
uPolicies-DisallowRun: 2049 = sychost.exe
uPolicies-DisallowRun: 2050 = sync.exe
uPolicies-DisallowRun: 2051 = synchost.exe
uPolicies-DisallowRun: 2052 = sys.exe
uPolicies-DisallowRun: 2053 = sysai.exe
uPolicies-DisallowRun: 2054 = syscfg32.exe
uPolicies-DisallowRun: 2055 = sysconf.exe
uPolicies-DisallowRun: 2056 = sysfit.exe
uPolicies-DisallowRun: 2057 = syshost.exe
uPolicies-DisallowRun: 2058 = sysldr32.exe
uPolicies-DisallowRun: 2059 = syslog.exe
uPolicies-DisallowRun: 2060 = sysmonitor.exe
uPolicies-DisallowRun: 2061 = syspol.exe
uPolicies-DisallowRun: 2062 = syspools.exe
uPolicies-DisallowRun: 2063 = sysreg.exe
uPolicies-DisallowRun: 2064 = syss.exe
uPolicies-DisallowRun: 2065 = syssfitb.exe
uPolicies-DisallowRun: 2066 = systask32l.exe
uPolicies-DisallowRun: 2067 = systb.exe
uPolicies-DisallowRun: 2068 = system plugin.exe
uPolicies-DisallowRun: 2069 = system16.exe
uPolicies-DisallowRun: 2070 = system32.exe
uPolicies-DisallowRun: 2071 = system32win.exe
uPolicies-DisallowRun: 2072 = systemdll.exe
uPolicies-DisallowRun: 2073 = systemtray.exe
uPolicies-DisallowRun: 2074 = systemup.exe
uPolicies-DisallowRun: 2075 = systime.exe
uPolicies-DisallowRun: 2076 = systool.exe
uPolicies-DisallowRun: 2077 = systra.exe
uPolicies-DisallowRun: 2078 = systray32.exe
uPolicies-DisallowRun: 2079 = systune.exe
uPolicies-DisallowRun: 2080 = sysupd.exe
uPolicies-DisallowRun: 2081 = sysupdate.exe
uPolicies-DisallowRun: 2082 = sysvcs.exe
uPolicies-DisallowRun: 2083 = syswin.exe
uPolicies-DisallowRun: 2084 = sywsvcs.exe
uPolicies-DisallowRun: 2085 = szchost.exe
uPolicies-DisallowRun: 2086 = t8nascmw.exe
uPolicies-DisallowRun: 2087 = ta.exe
uPolicies-DisallowRun: 2088 = tapicfg.exe
uPolicies-DisallowRun: 2089 = targetsaver.exe
uPolicies-DisallowRun: 2090 = task.exe
uPolicies-DisallowRun: 2091 = task32.exe
uPolicies-DisallowRun: 2092 = taskbar.exe
uPolicies-DisallowRun: 2093 = taskcntr.exe
uPolicies-DisallowRun: 2094 = taskdrv32.exe
uPolicies-DisallowRun: 2095 = tasker.exe
uPolicies-DisallowRun: 2096 = taskg.exe
uPolicies-DisallowRun: 2097 = taskgmr.exe
uPolicies-DisallowRun: 2098 = taskmngr.exe
uPolicies-DisallowRun: 2099 = taskmon.exe
uPolicies-DisallowRun: 2100 = tbon.exe
uPolicies-DisallowRun: 2101 = tbps.exe
uPolicies-DisallowRun: 2102 = tcpservice2.exe
uPolicies-DisallowRun: 2103 = teekids.exe
uPolicies-DisallowRun: 2104 = temp.exe
uPolicies-DisallowRun: 2105 = testing.exe
uPolicies-DisallowRun: 2106 = tmp.exe
uPolicies-DisallowRun: 2107 = tmp11e.exe
uPolicies-DisallowRun: 2108 = tmp333.exe
uPolicies-DisallowRun: 2109 = tool.exe
uPolicies-DisallowRun: 2110 = tool3.exe
uPolicies-DisallowRun: 2111 = trans.exe
uPolicies-DisallowRun: 2112 = translator.exe
uPolicies-DisallowRun: 2113 = trickler.exe
uPolicies-DisallowRun: 2114 = ts.exe
uPolicies-DisallowRun: 2115 = ts2.exe
uPolicies-DisallowRun: 2116 = tsa.exe
uPolicies-DisallowRun: 2117 = tsadbot.exe
uPolicies-DisallowRun: 2118 = tsinstall_4_0_3_8_b17.exe
uPolicies-DisallowRun: 2119 = tskdbg.exe
uPolicies-DisallowRun: 2120 = tskmgr32.exe
uPolicies-DisallowRun: 2121 = tsl2.exe
uPolicies-DisallowRun: 2122 = tsm2.exe
uPolicies-DisallowRun: 2123 = tsuninst.exe
uPolicies-DisallowRun: 2124 = tsupdate_4_0_3_9_b2.exe
uPolicies-DisallowRun: 2125 = tsysytd8.exe
uPolicies-DisallowRun: 2126 = tt_reco.exe
uPolicies-DisallowRun: 2127 = tv media display.exe
uPolicies-DisallowRun: 2128 = tvm.exe
uPolicies-DisallowRun: 2129 = tvm_b5.exe
uPolicies-DisallowRun: 2130 = tvm_b5_bundle_17.exe
uPolicies-DisallowRun: 2131 = tvmedia.exe
uPolicies-DisallowRun: 2132 = tvmupdater.exe
uPolicies-DisallowRun: 2133 = twain_16.exe
uPolicies-DisallowRun: 2134 = twunk_64.exe
uPolicies-DisallowRun: 2135 = u6c9mpll.exe
uPolicies-DisallowRun: 2136 = uc.exe
uPolicies-DisallowRun: 2137 = uc1362.exe
uPolicies-DisallowRun: 2138 = ucsi.exe
uPolicies-DisallowRun: 2139 = udcpas.exe
uPolicies-DisallowRun: 2140 = udcsdr.exe
uPolicies-DisallowRun: 2141 = uinfo?.exe
uPolicies-DisallowRun: 2142 = uj4tgbhc.exe
uPolicies-DisallowRun: 2143 = umqltg4cl_.exe
uPolicies-DisallowRun: 2144 = umxfwhlp.exe
uPolicies-DisallowRun: 2145 = unins001.exe
uPolicies-DisallowRun: 2146 = uninsc.exe
uPolicies-DisallowRun: 2147 = uninstdsk.exe
uPolicies-DisallowRun: 2148 = unpacked-svc.exe
uPolicies-DisallowRun: 2149 = unstall.exe
uPolicies-DisallowRun: 2150 = uopcjly.exe
uPolicies-DisallowRun: 2151 = updater.exe
uPolicies-DisallowRun: 2152 = updatexp.exe
uPolicies-DisallowRun: 2153 = updinst.exe
uPolicies-DisallowRun: 2154 = updmgr.exe
uPolicies-DisallowRun: 2155 = updtscheduler.exe
uPolicies-DisallowRun: 2156 = upgrade1.exe
uPolicies-DisallowRun: 2157 = upgrade3.exe
uPolicies-DisallowRun: 2158 = usbn.exe
uPolicies-DisallowRun: 2159 = userint32.exe
uPolicies-DisallowRun: 2160 = usofrpyqzgrhcumw.exe
uPolicies-DisallowRun: 2161 = uvu-channel.exe
uPolicies-DisallowRun: 2162 = uwfx5.exe
uPolicies-DisallowRun: 2163 = vabctqp.exe
uPolicies-DisallowRun: 2164 = vb2.exe
uPolicies-DisallowRun: 2165 = vbouncer.exe
uPolicies-DisallowRun: 2166 = vbstub.exe
uPolicies-DisallowRun: 2167 = vcclient.exe
uPolicies-DisallowRun: 2168 = vcmpin.exe
uPolicies-DisallowRun: 2169 = vco8n6ix.exe
uPolicies-DisallowRun: 2170 = video.exe
uPolicies-DisallowRun: 2171 = vidmon.exe
uPolicies-DisallowRun: 2172 = vmlib.exe
uPolicies-DisallowRun: 2173 = vmss.exe
uPolicies-DisallowRun: 2174 = voclslqn.exe
uPolicies-DisallowRun: 2175 = vsnpstd2.exe
uPolicies-DisallowRun: 2176 = w.exe
uPolicies-DisallowRun: 2177 = w11150.exe
uPolicies-DisallowRun: 2178 = w181609.stub.exe
uPolicies-DisallowRun: 2179 = w32_systm.exe
uPolicies-DisallowRun: 2180 = w32backdoor-axc.trojan.exe
uPolicies-DisallowRun: 2181 = w32backdoor-axg.trojan.exe
uPolicies-DisallowRun: 2182 = w32backdoor-axh.trojan.exe
uPolicies-DisallowRun: 2183 = w32backdoor-dvl.exe
uPolicies-DisallowRun: 2184 = w32backdoor-egl.exe
uPolicies-DisallowRun: 2185 = pnc.exe
uPolicies-DisallowRun: 2186 = w32backdoor-egv.exe
uPolicies-DisallowRun: 2187 = w32backdoor-hd.trojan.exe
uPolicies-DisallowRun: 2188 = w32backdoor-jz.trojan.exe
uPolicies-DisallowRun: 2189 = w32backdoor-nt.exe
uPolicies-DisallowRun: 2190 = w32backdoor-ny.exe
uPolicies-DisallowRun: 2191 = w32backdoor-yx.exe
uPolicies-DisallowRun: 2192 = w32banito-k.trojan.exe
uPolicies-DisallowRun: 2193 = w32banito-p.exe
uPolicies-DisallowRun: 2194 = w32downloader-ggs.exe
uPolicies-DisallowRun: 2195 = w32downloader-gns.exe
uPolicies-DisallowRun: 2196 = w32downloader-gpq.exe
uPolicies-DisallowRun: 2197 = w32haxdoor-ft.exe
uPolicies-DisallowRun: 2198 = w32hupigon-ar.exe
uPolicies-DisallowRun: 2199 = w32hupigon-cj.exe
uPolicies-DisallowRun: 2200 = w32istbar-la.exe
uPolicies-DisallowRun: 2201 = w32lecna-a.exe
uPolicies-DisallowRun: 2202 = w32time.exe
uPolicies-DisallowRun: 2203 = wareout.exe
uPolicies-DisallowRun: 2204 = watch_free_porn.exe
uPolicies-DisallowRun: 2205 = wauclt.exe
uPolicies-DisallowRun: 2206 = wdfmrg.exe
uPolicies-DisallowRun: 2207 = weatherstudio desktop.exe
uPolicies-DisallowRun: 2208 = web.exe
uPolicies-DisallowRun: 2209 = webbullion.exe
uPolicies-DisallowRun: 2210 = webinstall.exe
uPolicies-DisallowRun: 2211 = weblookup.exe
uPolicies-DisallowRun: 2212 = webpmger.exe
uPolicies-DisallowRun: 2213 = webrebates.exe
uPolicies-DisallowRun: 2214 = wfdmgr.exe
uPolicies-DisallowRun: 2215 = whagent.exe
uPolicies-DisallowRun: 2216 = whg14100.exe
uPolicies-DisallowRun: 2217 = whse.exe
uPolicies-DisallowRun: 2218 = whsurvey.exe
uPolicies-DisallowRun: 2219 = wid32.exe
uPolicies-DisallowRun: 2220 = wimanager.exe
uPolicies-DisallowRun: 2221 = win.com
uPolicies-DisallowRun: 2222 = win.exe
uPolicies-DisallowRun: 2223 = win24.exe
uPolicies-DisallowRun: 2224 = win32.exe
uPolicies-DisallowRun: 2225 = win32api.exe
uPolicies-DisallowRun: 2226 = win32debug.exe
uPolicies-DisallowRun: 2227 = win32us.exe
uPolicies-DisallowRun: 2228 = winactive.exe
uPolicies-DisallowRun: 2229 = winad.exe
uPolicies-DisallowRun: 2230 = winadalt.exe
uPolicies-DisallowRun: 2231 = winadctl.exe
uPolicies-DisallowRun: 2232 = winadm.exe
uPolicies-DisallowRun: 2233 = winadserv.exe
uPolicies-DisallowRun: 2234 = winadslave.exe
uPolicies-DisallowRun: 2235 = winadtools.exe
uPolicies-DisallowRun: 2236 = winav.exe
uPolicies-DisallowRun: 2237 = win-bugsfix.exe
uPolicies-DisallowRun: 2238 = wincfg32.exe
uPolicies-DisallowRun: 2239 = wincomm.exe
uPolicies-DisallowRun: 2240 = wincomp.exe
uPolicies-DisallowRun: 2241 = winctlad.exe
uPolicies-DisallowRun: 2242 = winctladalt.exe
uPolicies-DisallowRun: 2243 = winctrl?.exe
uPolicies-DisallowRun: 2244 = wind2ll2.exe
uPolicies-DisallowRun: 2245 = windbg32.exe
uPolicies-DisallowRun: 2246 = winde.exe
uPolicies-DisallowRun: 2247 = windefault.exe
uPolicies-DisallowRun: 2248 = windio778.exe
uPolicies-DisallowRun: 2249 = windir32.exe
uPolicies-DisallowRun: 2250 = windirect.exe
uPolicies-DisallowRun: 2251 = windows.exe
uPolicies-DisallowRun: 2252 = windowsupdated32.exe
uPolicies-DisallowRun: 2253 = winds.exe
uPolicies-DisallowRun: 2254 = windspl.exe
uPolicies-DisallowRun: 2255 = winex.exe
uPolicies-DisallowRun: 2256 = winexec.exe
uPolicies-DisallowRun: 2257 = winexec32.exe
uPolicies-DisallowRun: 2258 = winfixer
uPolicies-DisallowRun: 2259 = winform.exe
uPolicies-DisallowRun: 2260 = winfrw.exe
uPolicies-DisallowRun: 2261 = wingate.exe
uPolicies-DisallowRun: 2262 = wingo.exe
uPolicies-DisallowRun: 2263 = winhost.exe
uPolicies-DisallowRun: 2264 = winhound.exe
uPolicies-DisallowRun: 2265 = wininfo.exe
uPolicies-DisallowRun: 2266 = wininit32.exe
uPolicies-DisallowRun: 2267 = winldr.exe
uPolicies-DisallowRun: 2268 = winldra.exe
uPolicies-DisallowRun: 2269 = winlock.exe
uPolicies-DisallowRun: 2270 = winlogin.exe
uPolicies-DisallowRun: 2271 = winlogonn.exe
uPolicies-DisallowRun: 2272 = winlogons.exe
uPolicies-DisallowRun: 2273 = winmain.exe
uPolicies-DisallowRun: 2274 = winmgm32.exe
uPolicies-DisallowRun: 2275 = winnet.exe
uPolicies-DisallowRun: 2276 = winnt.exe
uPolicies-DisallowRun: 2277 = winoie789.exe
uPolicies-DisallowRun: 2278 = winole.exe
uPolicies-DisallowRun: 2279 = winotify.exe
uPolicies-DisallowRun: 2280 = winpack.exe
uPolicies-DisallowRun: 2281 = winproc32.exe
uPolicies-DisallowRun: 2282 = winpsd.exe
uPolicies-DisallowRun: 2283 = winpup32.exe
uPolicies-DisallowRun: 2284 = winrarshell32.exe
uPolicies-DisallowRun: 2285 = winratchet.exe
uPolicies-DisallowRun: 2286 = winrecon.exe
uPolicies-DisallowRun: 2287 = winresw.exe
uPolicies-DisallowRun: 2288 = winrpc.exe
uPolicies-DisallowRun: 2289 = winsched.exe
uPolicies-DisallowRun: 2290 = winserv.exe
uPolicies-DisallowRun: 2291 = winservices.exe
uPolicies-DisallowRun: 2292 = winservn.exe
uPolicies-DisallowRun: 2293 = winservs.exe
uPolicies-DisallowRun: 2294 = winservsuit.exe
uPolicies-DisallowRun: 2295 = winsetup.exe
uPolicies-DisallowRun: 2296 = winsfc.exe
uPolicies-DisallowRun: 2297 = winshost.exe
uPolicies-DisallowRun: 2298 = winsocks.exe
uPolicies-DisallowRun: 2299 = winspector.exe
uPolicies-DisallowRun: 2300 = winsrv32.exe
uPolicies-DisallowRun: 2301 = winssk32.exe
uPolicies-DisallowRun: 2302 = winstall.exe
uPolicies-DisallowRun: 2303 = winstart.exe
uPolicies-DisallowRun: 2304 = winstart001.exe
uPolicies-DisallowRun: 2305 = winstat.exe
uPolicies-DisallowRun: 2306 = winstatkeep.exe
uPolicies-DisallowRun: 2307 = winsupdater.exe
uPolicies-DisallowRun: 2308 = winsvc.exe
uPolicies-DisallowRun: 2309 = winsvc32.exe
uPolicies-DisallowRun: 2310 = winsvr.exe
uPolicies-DisallowRun: 2311 = winsys.exe
uPolicies-DisallowRun: 2312 = winsys2.exe
uPolicies-DisallowRun: 2313 = winsys32.exe
uPolicies-DisallowRun: 2314 = wintask.exe
uPolicies-DisallowRun: 2315 = wintaskad.exe
uPolicies-DisallowRun: 2316 = wintbp.exe
uPolicies-DisallowRun: 2317 = wintems.exe
uPolicies-DisallowRun: 2318 = wintime.exe
uPolicies-DisallowRun: 2319 = wintools.exe
uPolicies-DisallowRun: 2320 = wintoolsa.exe
uPolicies-DisallowRun: 2321 = wintrust32.exe
uPolicies-DisallowRun: 2322 = wintsk32.exe
uPolicies-DisallowRun: 2323 = wintsvtr.exe
uPolicies-DisallowRun: 2324 = winupdate.exe
uPolicies-DisallowRun: 2325 = winupdates.exe
uPolicies-DisallowRun: 2326 = winupdt.exe
uPolicies-DisallowRun: 2327 = winupdtl.exe
uPolicies-DisallowRun: 2328 = winwan.exe
uPolicies-DisallowRun: 2329 = winxp.exe
uPolicies-DisallowRun: 2330 = 81859749.EXE
uPolicies-DisallowRun: 2331 = winzip_tmp.exe
uPolicies-DisallowRun: 2332 = wiseupdt.exe
uPolicies-DisallowRun: 2333 = wkssvc.exe
uPolicies-DisallowRun: 2334 = wkssvc32.exe
uPolicies-DisallowRun: 2335 = wmon32.exe
uPolicies-DisallowRun: 2336 = wo.exe
uPolicies-DisallowRun: 2337 = word.exe
uPolicies-DisallowRun: 2338 = wovax.exe
uPolicies-DisallowRun: 2339 = wp.exe
uPolicies-DisallowRun: 2340 = wpa.exe
uPolicies-DisallowRun: 2341 = wpd.exe
uPolicies-DisallowRun: 2342 = wrapperouter.exe
uPolicies-DisallowRun: 2343 = wrgrci.exe
uPolicies-DisallowRun: 2344 = wsebate2.exe
uPolicies-DisallowRun: 2345 = wsup.exe
uPolicies-DisallowRun: 2346 = wsupdate.exe
uPolicies-DisallowRun: 2347 = wsxsvc.exe
uPolicies-DisallowRun: 2348 = wsys.exe
uPolicies-DisallowRun: 2349 = wtools.exe
uPolicies-DisallowRun: 2350 = wtoolsa 1.0.8.11.exe
uPolicies-DisallowRun: 2351 = wtoolsa.exe
uPolicies-DisallowRun: 2352 = wtoolss.exe
uPolicies-DisallowRun: 2353 = wtssvtr.exe
uPolicies-DisallowRun: 2354 = wuactl2.exe
uPolicies-DisallowRun: 2355 = wuamgrd.exe
uPolicies-DisallowRun: 2356 = wuamkop.exe
uPolicies-DisallowRun: 2357 = wuauclt2.exe
uPolicies-DisallowRun: 2358 = wupdate.exe
uPolicies-DisallowRun: 2359 = wupdated.exe
uPolicies-DisallowRun: 2360 = wupdater.exe
uPolicies-DisallowRun: 2361 = wupdates.exe
uPolicies-DisallowRun: 2362 = wupdt.exe
uPolicies-DisallowRun: 2363 = wups.exe
uPolicies-DisallowRun: 2364 = x234cpiroff.exe
uPolicies-DisallowRun: 2365 = xfullgames.exe
uPolicies-DisallowRun: 2366 = xhrmy.exe
uPolicies-DisallowRun: 2367 = xmailer.exe
uPolicies-DisallowRun: 2368 = xpujbkz6.exe
uPolicies-DisallowRun: 2369 = xtcfgloader.exe
uPolicies-DisallowRun: 2370 = xtmbgajp.exe
uPolicies-DisallowRun: 2371 = xupiterstartup.exe
uPolicies-DisallowRun: 2372 = xupitertoolbarloader.exe
uPolicies-DisallowRun: 2373 = xvid-1.0.3-beta3-setup.exe
uPolicies-DisallowRun: 2374 = xwrm.exe
uPolicies-DisallowRun: 2375 = xxx.exe
uPolicies-DisallowRun: 2376 = xzciqim.exe
uPolicies-DisallowRun: 2377 = xzz.exe
uPolicies-DisallowRun: 2378 = y.exe
uPolicies-DisallowRun: 2379 = y38p3fqy.exe
uPolicies-DisallowRun: 2380 = yaemu.exe
uPolicies-DisallowRun: 2381 = ystckao32.exe
uPolicies-DisallowRun: 2382 = zango.exe
uPolicies-DisallowRun: 2383 = zangohook.exe
uPolicies-DisallowRun: 2384 = zangoinstaller.exe
uPolicies-DisallowRun: 2385 = zangotb.exe
uPolicies-DisallowRun: 2386 = zangotbinstaller.exe
uPolicies-DisallowRun: 2387 = zangotbuninstaller.exe
uPolicies-DisallowRun: 2388 = zanu.exe
uPolicies-DisallowRun: 2389 = zanuhook.exe
uPolicies-DisallowRun: 2390 = zb9uu7p0.exe
uPolicies-DisallowRun: 2391 = zcbridge.exe
uPolicies-DisallowRun: 2392 = zcz.exe
uPolicies-DisallowRun: 2393 = zeta.exe
uPolicies-DisallowRun: 2394 = zhopaizdupla.exe
uPolicies-DisallowRun: 2395 = lvhf.cmd
uPolicies-DisallowRun: 2396 = 2aaxaiy.exe
uPolicies-DisallowRun: 2397 = 2.bat
uPolicies-DisallowRun: 2398 = 1utbfd.bat
uPolicies-DisallowRun: 2399 = 0bcobed.exe
uPolicies-DisallowRun: 2400 = ib8979.exe
uPolicies-DisallowRun: 2401 = j6445622.exe
uPolicies-DisallowRun: 2402 = o4445627.exe
uPolicies-DisallowRun: 2403 = 2u.com
uPolicies-DisallowRun: 2404 = program files.exe
uPolicies-DisallowRun: 2405 = winsmss.exe
uPolicies-DisallowRun: 2406 = document.exe
uPolicies-DisallowRun: 2407 = Gerger_files.exe
uPolicies-DisallowRun: 2408 = drvspace.com
uPolicies-DisallowRun: 2409 = EraleuH.exe
uPolicies-DisallowRun: 2410 = PowerPoint temlates.exe
uPolicies-DisallowRun: 2411 = Excel templates.exe
uPolicies-DisallowRun: 2412 = My Media Files.exe
uPolicies-DisallowRun: 2413 = MP3 Files.exe
uPolicies-DisallowRun: 2414 = Admin Files.exe
uPolicies-DisallowRun: 2415 = filesrv32.exe
uPolicies-DisallowRun: 2416 = My Documents.exe
uPolicies-DisallowRun: 2417 = Important Documents.exe
uPolicies-DisallowRun: 2418 = Saved Documents.exe
uPolicies-DisallowRun: 2419 = My Videos.exe
uPolicies-DisallowRun: 2420 = System Volume Information.cmd
uPolicies-DisallowRun: 2421 = System Volume Information.bat
uPolicies-DisallowRun: 2422 = System Volume Information.com
uPolicies-DisallowRun: 2423 = System Volume Information.exe
uPolicies-DisallowRun: 2424 = ChiNiu.exe
uPolicies-DisallowRun: 2425 = winomc.exe
uPolicies-DisallowRun: 2426 = vang anh.exe
uPolicies-DisallowRun: 2427 = autorun.inf.bat
uPolicies-DisallowRun: 2428 = autorun.inf.com
uPolicies-DisallowRun: 2429 = autorun.inf.cmd
uPolicies-DisallowRun: 2430 = autorun.inf.exe
uPolicies-DisallowRun: 2431 = autorun.ini.bat
uPolicies-DisallowRun: 2432 = autorun.ini.com
uPolicies-DisallowRun: 2433 = autorun.ini.cmd
uPolicies-DisallowRun: 2434 = autorun.ini.exe
uPolicies-DisallowRun: 2435 = desktop.ini.exe
uPolicies-DisallowRun: 2436 = desktop.ini.bat
uPolicies-DisallowRun: 2437 = desktop.ini.com
uPolicies-DisallowRun: 2438 = desktop.ini.cmd
uPolicies-DisallowRun: 2439 = ntos.exe
uPolicies-DisallowRun: 2440 = fqmcnfl.exe
uPolicies-DisallowRun: 2441 = jscuup.exe
uPolicies-DisallowRun: 2442 = msbootlog.exe
uPolicies-DisallowRun: 2443 = website.exe
uPolicies-DisallowRun: 2444 = Mr.kokoro.exe
uPolicies-DisallowRun: 2445 = MR.KOKORO website.exe
uPolicies-DisallowRun: 2446 = jjxzwzjy090223.exe
uPolicies-DisallowRun: 2447 = usbmon.exe
uPolicies-DisallowRun: 2448 = kb2006a.exe
uPolicies-DisallowRun: 2449 = GOBACK.EXE
uPolicies-DisallowRun: 2450 = SSERVER.EXE
uPolicies-DisallowRun: 2451 = GOST.EXE
uPolicies-DisallowRun: 2452 = lap.exe
uPolicies-DisallowRun: 2453 = 91255398.EXE
uPolicies-DisallowRun: 2454 = newdev.exe
uPolicies-DisallowRun: 2455 = my game.exe
uPolicies-DisallowRun: 2456 = my games.exe
uPolicies-DisallowRun: 2457 = xn9uu8.exe
uPolicies-DisallowRun: 2458 = xdw.com
uPolicies-DisallowRun: 2459 = xcisvxl.com
uPolicies-DisallowRun: 2460 = x2csvg.exe
uPolicies-DisallowRun: 2461 = w.exe
uPolicies-DisallowRun: 2462 = w98.com
uPolicies-DisallowRun: 2463 = w2.com
uPolicies-DisallowRun: 2464 = ve.exe
uPolicies-DisallowRun: 2465 = uxkl0apt.bat
uPolicies-DisallowRun: 2466 = uvsqfgwd.cmd
uPolicies-DisallowRun: 2467 = ur0.com
uPolicies-DisallowRun: 2468 = upw.bat
uPolicies-DisallowRun: 2469 = ujyew68.cmd
uPolicies-DisallowRun: 2470 = u.com
uPolicies-DisallowRun: 2471 = tx.bat
uPolicies-DisallowRun: 2472 = sbju2.exe
uPolicies-DisallowRun: 2473 = rveunh.com
uPolicies-DisallowRun: 2474 = rcvk.exe
uPolicies-DisallowRun: 2475 = qxty9be.cmd
uPolicies-DisallowRun: 2476 = qphdin.com
uPolicies-DisallowRun: 2477 = qoes.bat
uPolicies-DisallowRun: 2478 = q0dhfjf.exe
uPolicies-DisallowRun: 2479 = pook.com
uPolicies-DisallowRun: 2480 = opgde.exe
uPolicies-DisallowRun: 2481 = o8.bat
uPolicies-DisallowRun: 2482 = o3n9k.com
uPolicies-DisallowRun: 2483 = mk.com
uPolicies-DisallowRun: 2484 = minm.cmd
uPolicies-DisallowRun: 2485 = m0vnonh.bat
uPolicies-DisallowRun: 2486 = luk1ylq.com
uPolicies-DisallowRun: 2487 = ltdjr2ia.exe
uPolicies-DisallowRun: 2488 = lhylec9x.cmd
uPolicies-DisallowRun: 2489 = jodi2nb.com
uPolicies-DisallowRun: 2490 = jm3cx96.bat
uPolicies-DisallowRun: 2491 = jeorels.cmd
uPolicies-DisallowRun: 2492 = je9.com
uPolicies-DisallowRun: 2493 = j60osk9.cmd
uPolicies-DisallowRun: 2494 = iq.bat
uPolicies-DisallowRun: 2495 = i.com
uPolicies-DisallowRun: 2496 = i6g6x.cmd
uPolicies-DisallowRun: 2497 = hyetn1i.exe
uPolicies-DisallowRun: 2498 = hl80c6b1.com
uPolicies-DisallowRun: 2499 = gy.exe
uPolicies-DisallowRun: 2500 = gi2ky.exe
uPolicies-DisallowRun: 2501 = gfqgq.cmd
uPolicies-DisallowRun: 2502 = gc6.cmd
uPolicies-DisallowRun: 2503 = em8tqm.cmd
uPolicies-DisallowRun: 2504 = ej.com
uPolicies-DisallowRun: 2505 = dy9.cmd
uPolicies-DisallowRun: 2506 = dbrxubcw.com
uPolicies-DisallowRun: 2507 = cv22.cmd
uPolicies-DisallowRun: 2508 = cqxj.exe
uPolicies-DisallowRun: 2509 = bvc0gyp.bat
uPolicies-DisallowRun: 2510 = bg3e9.bat
uPolicies-DisallowRun: 2511 = bd3q0qix.exe
uPolicies-DisallowRun: 2512 = a2h2.com
uPolicies-DisallowRun: 2513 = a1agmur.cmd
uPolicies-DisallowRun: 2514 = 210ebnkd.com
uPolicies-DisallowRun: 2515 = 93to.bat
uPolicies-DisallowRun: 2516 = 6tbvtj.cmd
uPolicies-DisallowRun: 2517 = 2nw3rjta.cmd
uPolicies-DisallowRun: 2518 = 2fiy.bat
uPolicies-DisallowRun: 2519 = 82521011.EXE
uPolicies-DisallowRun: 2520 = 43980195.EXE
uPolicies-DisallowRun: 2521 = REGEDT.EXE
uPolicies-DisallowRun: 2522 = Cfg.exe
uPolicies-DisallowRun: 2523 = kbdsys.exe
uPolicies-DisallowRun: 2524 = Read1st!.exe
uPolicies-DisallowRun: 2525 = hlpsvc2.exe
uPolicies-DisallowRun: 2526 = hlpsvc1.exe
uPolicies-DisallowRun: 2527 = Classified.exe
uPolicies-DisallowRun: 2528 = option.bat
uPolicies-DisallowRun: 2529 = sysinf.bat
uPolicies-DisallowRun: 2530 = pagefile.exe
uPolicies-DisallowRun: 2531 = kavupda.exe
uPolicies-DisallowRun: 2532 = HelpCat.exe
uPolicies-DisallowRun: 2533 = ????8.exe
uPolicies-DisallowRun: 2534 = SKServer.exe
uPolicies-DisallowRun: 2535 = msddrv42.exe
uPolicies-DisallowRun: 2536 = Romantic.exe
uPolicies-DisallowRun: 2537 = WPV001253926400.EXE
uPolicies-DisallowRun: 2538 = DPLTAINEXI-517.PMS.EXE
uPolicies-DisallowRun: 2539 = 96971452.EXE
uPolicies-DisallowRun: 2540 = sasnative32.exe
uPolicies-DisallowRun: 2541 = clc32.exe
uPolicies-DisallowRun: 2542 = m9ma.exe
uPolicies-DisallowRun: 2543 = 6fnlpetp.exe
uPolicies-DisallowRun: 2544 = xlk9.com
uPolicies-DisallowRun: 2545 = ahnrpta.exe
uPolicies-DisallowRun: 2546 = olhrwef.exe
uPolicies-DisallowRun: 2547 = vamsoft.exe
uPolicies-DisallowRun: 2548 = vsse33.exe
uPolicies-DisallowRun: 2549 = wpv791239289922.exe
uPolicies-DisallowRun: 2550 = wpv29125338862.exe
uPolicies-DisallowRun: 2551 = wpv481254425989.exe
uPolicies-DisallowRun: 2552 = wpv261254042811.exe
uPolicies-DisallowRun: 2553 = ikowin32.exe
uPolicies-DisallowRun: 2554 = lizkavd.exe
uPolicies-DisallowRun: 2555 = restorer32_a.exe
uPolicies-DisallowRun: 2556 = DPLTNOQDBS-327.PMS.EXE
uPolicies-DisallowRun: 2557 = WINBQB0SCA.EXE
uPolicies-DisallowRun: 2558 = WJQS.EXE
uPolicies-DisallowRun: 2559 = SERES.EXE
uPolicies-DisallowRun: 2560 = SVCST.EXE
uPolicies-DisallowRun: 2561 = winzip.exe
uPolicies-DisallowRun: 2562 = fun.xls.exe
uPolicies-DisallowRun: 2563 = autorunme.exe
uPolicies-DisallowRun: 2564 = MSwindows.exe
uPolicies-DisallowRun: 2565 = player32.exe
uPolicies-DisallowRun: 2566 = Home Video.exe
uPolicies-DisallowRun: 2567 = EPL0RER.EXE
mPolicies-Explorer: NoActiveDesktop = dword:1
mPolicies-Explorer: NoDriveTypeAutoRun = dword:255
mPolicies-System: ConsentPromptBehaviorAdmin = dword:5
mPolicies-System: ConsentPromptBehaviorUser = dword:3
mPolicies-System: EnableUIADesktopToggle = dword:0
.
INFO: HKCU has more than 50 listed domains.
If you wish to scan all of them, select the 'Force scan all domains' option.
.
.
INFO: HKLM has more than 50 listed domains.
   If you wish to scan all of them, select the 'Force scan all domains' option.
.
DPF: {4FF78044-96B4-4312-A5B7-FDA3CB328095} -
TCP: NameServer = 192.168.1.1
TCP: Interfaces\{CB014859-0A7E-4E3F-AE32-B6E9C94FAB1D} : NameServer = 208.67.222.222,208.67.220.220
TCP: Interfaces\{CB014859-0A7E-4E3F-AE32-B6E9C94FAB1D} : DHCPNameServer = 192.168.1.1
TCP: Interfaces\{CB014859-0A7E-4E3F-AE32-B6E9C94FAB1D}\3525751405 : NameServer = 208.67.222.222,208.67.220.220
TCP: Interfaces\{CB014859-0A7E-4E3F-AE32-B6E9C94FAB1D}\3525751405 : DHCPNameServer = 172.16.0.2 172.16.0.3
TCP: Interfaces\{D7D046DE-EA84-4A0B-A872-2A8EF8616F13} : NameServer = 208.67.222.222,208.67.220.220
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll
SSODL: WebCheck - <orphaned>
x64-BHO: Java™ Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
x64-BHO: Java™ Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
x64-Run: [COMODO Internet Security] C:\Program Files\COMODO\COMODO Internet Security\cistray.exe
x64-DPF: {3234EB1E-733E-4E6A-A8AB-EBB6287E5A7E} - hxxp://content.systemrequirementslab.com.s3.amazonaws.com/global/bin/srldetect_intel64_4.5.13.0.cab
x64-Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - <orphaned>
x64-Notify: igfxcui - igfxdev.dll
x64-SSODL: WebCheck - <orphaned>
x64-mASetup: {12d0ed0d-0ee0-4f90-8827-78cefb8f4988} - C:\windows\System32\ieudinit.exe
.
================= FIREFOX ===================
.
FF - ProfilePath - C:\Users\Clinton\AppData\Roaming\Mozilla\Firefox\Profiles\2z7hpmt6.default\
FF - prefs.js: browser.search.selectedEngine - DuckDuckGo
FF - prefs.js: browser.startup.homepage - hxxps://duckduckgo.com/
FF - plugin: C:\windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_94.dll
FF - ExtSQL: 2013-08-05 14:36; jid0-zDuE7MQZjTEpOLHPvhw3GbDyhIg@jetpack; C:\Users\Clinton\AppData\Roaming\Mozilla\Firefox\Profiles\2z7hpmt6.default\extensions\jid0-zDuE7MQZjTEpOLHPvhw3GbDyhIg@jetpack.xpi
FF - ExtSQL: 2013-08-05 14:37; omnibar@ajitk.com; C:\Users\Clinton\AppData\Roaming\Mozilla\Firefox\Profiles\2z7hpmt6.default\extensions\omnibar@ajitk.com.xpi
FF - ExtSQL: 2013-08-10 13:01; PrivDog@AdTrustMedia.com; C:\Users\Clinton\AppData\Roaming\Mozilla\Firefox\Profiles\2z7hpmt6.default\extensions\PrivDog@AdTrustMedia.com.xpi
.
============= SERVICES / DRIVERS ===============
.
R1 cmderd;COMODO Internet Security Eradication Driver;C:\windows\System32\drivers\cmderd.sys [2013-6-18 23168]
R1 cmdGuard;COMODO Internet Security Sandbox Driver;C:\windows\System32\drivers\cmdguard.sys [2013-7-8 708632]
R1 cmdHlp;COMODO Internet Security Helper Driver;C:\windows\System32\drivers\cmdhlp.sys [2013-6-18 48360]
.
=============== File Associations ===============
.
FileExt: .txt: txtfile=C:\windows\SysWow64\NOTEPAD.EXE %1
FileExt: .ini: inifile=C:\windows\SysWow64\NOTEPAD.EXE %1
FileExt: .js: jsfile=C:\windows\SysWow64\WScript.exe "%1" %*
.
=============== Created Last 30 ================
.
2013-08-15 00:47:20    --------    d-----w-    C:\Users\Clinton\AppData\Roaming\KeePass
2013-08-15 00:38:54    --------    d-----w-    C:\Program Files (x86)\KeePass Password Safe 2
2013-08-14 19:59:22    --------    d-----w-    C:\Users\Clinton\AppData\Local\ezvid,_inc
2013-08-14 19:54:30    --------    d-----w-    C:\Program Files\Microsoft Games
2013-08-14 18:19:39    2048    ----a-w-    C:\windows\System32\tzres.dll
2013-08-14 18:19:38    2048    ----a-w-    C:\windows\SysWow64\tzres.dll
2013-08-14 18:19:26    224256    ----a-w-    C:\windows\System32\wintrust.dll
2013-08-14 18:19:26    175104    ----a-w-    C:\windows\SysWow64\wintrust.dll
2013-08-14 18:19:26    1472512    ----a-w-    C:\windows\System32\crypt32.dll
2013-08-14 18:19:26    1166848    ----a-w-    C:\windows\SysWow64\crypt32.dll
2013-08-14 18:19:25    184320    ----a-w-    C:\windows\System32\cryptsvc.dll
2013-08-14 18:19:25    140288    ----a-w-    C:\windows\SysWow64\cryptsvc.dll
2013-08-14 18:19:25    139776    ----a-w-    C:\windows\System32\cryptnet.dll
2013-08-14 18:19:25    103936    ----a-w-    C:\windows\SysWow64\cryptnet.dll
2013-08-14 18:19:19    39936    ----a-w-    C:\windows\System32\drivers\tssecsrv.sys
2013-08-14 18:19:18    1910208    ----a-w-    C:\windows\System32\drivers\tcpip.sys
2013-08-14 16:53:18    --------    d-----w-    C:\Program Files\Defraggler
2013-08-14 14:14:23    --------    d-----w-    C:\Users\Clinton\AppData\Local\gtk-2.0
2013-08-14 14:14:23    --------    d-----w-    C:\Users\Clinton\.thumbnails
2013-08-14 14:09:32    --------    d-----w-    C:\Users\Clinton\AppData\Local\gegl-0.2
2013-08-13 15:00:56    --------    d-----w-    C:\Users\Clinton\AppData\Roaming\WinBatch
2013-08-13 02:10:24    452088    ----a-w-    C:\windows\System32\drivers\IntcDAud.sys
2013-08-12 22:16:28    --------    d-----w-    C:\ProgramData\Auslogics
2013-08-11 22:28:41    116224    ----a-w-    C:\windows\System32\igfxCoIn_v3223.dll
2013-08-11 22:17:42    --------    d-----w-    C:\Users\Clinton\AppData\Local\Innovative Solutions
2013-08-11 00:11:29    --------    d--h--w-    C:\Program Files (x86)\Common Files\EAInstaller
2013-08-11 00:10:34    3426072    ----a-w-    C:\windows\SysWow64\d3dx9_32.dll
2013-08-10 23:33:14    --------    d-----w-    C:\ProgramData\EA Core
2013-08-10 22:15:16    --------    d-----w-    C:\Program Files (x86)\Origin Games
2013-08-10 22:14:55    --------    d-----w-    C:\Users\Clinton\AppData\Roaming\Origin
2013-08-10 22:14:53    --------    d-----w-    C:\Users\Clinton\AppData\Local\Origin
2013-08-10 22:14:05    --------    d-----w-    C:\ProgramData\Origin
2013-08-10 22:14:04    --------    d-----w-    C:\ProgramData\Electronic Arts
2013-08-10 22:13:40    --------    d-----w-    C:\Program Files (x86)\Origin
2013-08-10 22:06:25    47632    ----a-w-    C:\windows\System32\drivers\PSKMAD.sys
2013-08-10 17:01:43    --------    d-----w-    C:\Program Files\AdTrustMedia
2013-08-10 17:01:43    --------    d-----w-    C:\Program Files (x86)\AdTrustMedia
2013-08-10 16:46:09    --------    d-----w-    C:\Users\Clinton\Firefox Versions
2013-08-09 08:21:49    108968    ----a-w-    C:\windows\System32\WindowsAccessBridge-64.dll
2013-08-03 01:29:42    --------    d-----r-    C:\Program Files (x86)\Skype
2013-07-29 15:14:49    --------    d-s---w-    C:\ProgramData\Shared Space
2013-07-29 15:14:45    --------    d-----w-    C:\Program Files\COMODO
2013-07-29 15:14:36    --------    d-----w-    C:\ProgramData\Comodo
2013-07-29 15:14:25    --------    d-----w-    C:\ProgramData\Comodo Downloader
2013-07-29 15:04:56    --------    d-----w-    C:\windows\System32\wbem\repository
2013-07-27 20:18:14    238352    ----a-w-    C:\windows\System32\drivers\VBoxDrv.sys
2013-07-27 20:18:05    120080    ----a-w-    C:\windows\System32\drivers\VBoxUSBMon.sys
2013-07-26 14:08:01    --------    d-----w-    C:\Users\Clinton\AppData\Roaming\TeamViewer
2013-07-26 14:05:11    --------    d-----w-    C:\Program Files (x86)\TeamViewer
2013-07-26 00:40:31    --------    d-----w-    C:\Users\Clinton\AppData\Roaming\OpenDNS Updater
2013-07-26 00:40:30    --------    d-----w-    C:\Program Files (x86)\OpenDNS Updater
2013-07-25 23:12:03    --------    d-----w-    C:\Users\Clinton\AppData\Roaming\.minecraft
2013-07-25 22:18:09    972712    ----a-w-    C:\windows\System32\deployJava1.dll
2013-07-25 03:28:14    373760    ----a-w-    C:\windows\SysWow64\SafeIPs.dll
2013-07-25 01:51:33    534016    ----a-w-    C:\windows\System32\SafeIPs64.dll
2013-07-23 22:41:18    --------    d-----w-    C:\Users\Clinton\AppData\Roaming\OpenOffice
2013-07-23 22:38:48    --------    d-----w-    C:\Program Files (x86)\OpenOffice 4
2013-07-22 06:38:15    255064    ----a-w-    C:\windows\System32\unrar64.dll
2013-07-22 06:38:11    --------    d-----w-    C:\Program Files (x86)\K-Lite Codec Pack
2013-07-22 06:37:02    --------    d-----w-    C:\Users\Clinton\AppData\Local\Programs
2013-07-22 06:34:23    --------    d-----w-    C:\Program Files (x86)\VideoLAN
2013-07-22 06:31:30    --------    d-----w-    C:\Users\Clinton\AppData\Roaming\uTorrent
2013-07-21 22:30:04    --------    d-----w-    C:\Users\Clinton\AppData\Local\Mozilla
2013-07-21 22:27:07    --------    d-----w-    C:\Users\Clinton\AppData\Local\Thunderbird
2013-07-21 22:27:03    --------    d-----w-    C:\Program Files (x86)\Mozilla Maintenance Service
2013-07-21 09:09:55    --------    d-----w-    C:\ProgramData\Adtrustmedia
2013-07-21 01:40:25    --------    d-----w-    C:\Users\Clinton\AppData\Roaming\Comodo
.
==================== Find3M  ====================
.
2013-08-09 08:21:41    1093032    ----a-w-    C:\windows\System32\npDeployJava1.dll
2013-07-26 05:13:37    2241024    ----a-w-    C:\windows\System32\wininet.dll
2013-07-26 05:12:08    3958784    ----a-w-    C:\windows\System32\jscript9.dll
2013-07-26 05:12:04    136704    ----a-w-    C:\windows\System32\iesysprep.dll
2013-07-26 05:12:03    67072    ----a-w-    C:\windows\System32\iesetup.dll
2013-07-26 03:35:08    2706432    ----a-w-    C:\windows\System32\mshtml.tlb
2013-07-26 03:13:24    1767936    ----a-w-    C:\windows\SysWow64\wininet.dll
2013-07-26 03:12:04    2877440    ----a-w-    C:\windows\SysWow64\jscript9.dll
2013-07-26 03:12:00    61440    ----a-w-    C:\windows\SysWow64\iesetup.dll
2013-07-26 03:12:00    109056    ----a-w-    C:\windows\SysWow64\iesysprep.dll
2013-07-26 02:49:14    2706432    ----a-w-    C:\windows\SysWow64\mshtml.tlb
2013-07-26 02:39:38    89600    ----a-w-    C:\windows\System32\RegisterIEPKEYs.exe
2013-07-26 01:59:38    71680    ----a-w-    C:\windows\SysWow64\RegisterIEPKEYs.exe
2013-07-25 09:25:54    1888768    ----a-w-    C:\windows\System32\WMVDECOD.DLL
2013-07-25 08:57:27    1620992    ----a-w-    C:\windows\SysWow64\WMVDECOD.DLL
2013-07-21 00:40:27    71048    ----a-w-    C:\windows\SysWow64\FlashPlayerCPLApp.cpl
2013-07-21 00:40:27    692104    ----a-w-    C:\windows\SysWow64\FlashPlayerApp.exe
2013-07-16 01:31:16    867240    ----a-w-    C:\windows\SysWow64\npDeployJava1.dll
2013-07-16 01:31:16    789416    ----a-w-    C:\windows\SysWow64\deployJava1.dll
2013-07-13 15:28:02    216152    ----a-w-    C:\windows\SysWow64\unrar.dll
2013-07-09 06:03:30    5550528    ----a-w-    C:\windows\System32\ntoskrnl.exe
2013-07-09 05:54:22    1732032    ----a-w-    C:\windows\System32\ntdll.dll
2013-07-09 05:53:12    243712    ----a-w-    C:\windows\System32\wow64.dll
2013-07-09 05:51:16    1217024    ----a-w-    C:\windows\System32\rpcrt4.dll
2013-07-09 05:03:34    3968960    ----a-w-    C:\windows\SysWow64\ntkrnlpa.exe
2013-07-09 05:03:34    3913664    ----a-w-    C:\windows\SysWow64\ntoskrnl.exe
2013-07-09 04:53:47    1292192    ----a-w-    C:\windows\SysWow64\ntdll.dll
2013-07-09 04:52:33    663552    ----a-w-    C:\windows\SysWow64\rpcrt4.dll
2013-07-09 04:52:33    5120    ----a-w-    C:\windows\SysWow64\wow32.dll
2013-07-09 04:45:07    44032    ----a-w-    C:\windows\apppatch\acwow64.dll
2013-07-09 02:49:42    25600    ----a-w-    C:\windows\SysWow64\setup16.exe
2013-07-09 02:49:41    7680    ----a-w-    C:\windows\SysWow64\instnm.exe
2013-07-09 02:49:39    14336    ----a-w-    C:\windows\SysWow64\ntvdm64.dll
2013-07-09 02:49:38    2048    ----a-w-    C:\windows\SysWow64\user.exe
2013-07-09 01:59:54    708632    ----a-w-    C:\windows\System32\drivers\cmdguard.sys
2013-07-04 19:57:00    131856    ----a-w-    C:\windows\System32\drivers\VBoxNetAdp.sys
2013-07-04 19:57:00    106256    ----a-w-    C:\windows\System32\drivers\VBoxUSB.sys
2013-06-25 08:20:04    117024    ----a-w-    C:\windows\SysWow64\BootDefrag.exe
2013-06-25 08:20:04    117024    ----a-w-    C:\windows\System32\BootDefrag.exe
2013-06-18 20:16:10    48360    ----a-w-    C:\windows\System32\drivers\cmdhlp.sys
2013-06-18 20:16:08    23168    ----a-w-    C:\windows\System32\drivers\cmderd.sys
2013-06-18 20:15:48    437688    ----a-w-    C:\windows\System32\guard64.dll
2013-06-18 20:15:48    348584    ----a-w-    C:\windows\SysWow64\guard32.dll
2013-06-18 15:15:49    43216    ----a-w-    C:\windows\System32\cmdcsr.dll
2013-06-18 15:15:38    45784    ----a-w-    C:\windows\System32\cmdkbd64.dll
2013-06-18 15:15:38    344792    ----a-w-    C:\windows\System32\cmdvrt64.dll
2013-06-18 15:15:35    278232    ----a-w-    C:\windows\SysWow64\cmdvrt32.dll
2013-06-18 15:15:34    40664    ----a-w-    C:\windows\SysWow64\cmdkbd32.dll
2013-06-05 03:34:27    3153920    ----a-w-    C:\windows\System32\win32k.sys
2013-06-04 06:00:13    624128    ----a-w-    C:\windows\System32\qedit.dll
2013-06-04 04:53:07    509440    ----a-w-    C:\windows\SysWow64\qedit.dll
2013-05-26 15:42:42    16152    ----a-w-    C:\windows\System32\drivers\SWDUMon.sys
.
============= FINISH: 22:12:00.56 ===============
 

 

 

 

___

 

To helper: Related infection : http://forums.malwarebytes.org/index.php?showtopic=66006

Attached Files


Edited by thisisu, 14 August 2013 - 11:56 PM.
Info for helper


BC AdBot (Login to Remove)

 


#2 HelpBot

HelpBot

    Bleepin' Binary Bot


  • Bots
  • 12,658 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:05:08 AM

Posted 19 August 2013 - 11:20 PM

Hello and welcome to Bleeping Computer!

I am HelpBot: an automated program designed to help the Bleeping Computer Staff better assist you! This message contains very important information, so please read through all of it before doing anything.

We apologize for the delay in responding to your request for help. Here at Bleeping Computer we get overwhelmed at times, and we are trying our best to keep up. Please note that your topic was not intentionally overlooked. Our mission is to help everyone in need, but sometimes it takes just a little longer to get to every request for help. No one is ignored here.

To help Bleeping Computer better assist you please perform the following steps:

***************************************************

step1.gif In order to continue receiving help at BleepingComputer.com, YOU MUST tell me if you still need help or if your issue has already been resolved on your own or through another resource! To tell me this, please click on the following link and follow the instructions there.

CLICK THIS LINK >>> http://www.bleepingcomputer.com/logreply/504449 <<< CLICK THIS LINK



If you no longer need help, then all you needed to do was the previous instructions of telling me so. You can skip the rest of this post. If you do need help please continue with Step 2 below.

***************************************************

step2.gifIf you still need help, I would like you to post a Reply to this topic (click the "Add Reply" button in the lower right hand of this page). In that reply, please include the following information:

  • If you have not done so already, include a clear description of the problems you're having, along with any steps you may have performed so far.
  • A new DDS log. For your convenience, you will find the instructions for generating these logs repeated at the bottom of this post.
    • Please do this even if you have previously posted logs for us.
    • If you were unable to produce the logs originally please try once more.
    • If you are unable to create a log please provide detailed information about your installed Windows Operating System including the Version, Edition and if it is a 32bit or a 64bit system.
    • If you are unsure about any of these characteristics just post what you can and we will guide you.
  • Please tell us if you have your original Windows CD/DVD available.
  • Upon completing the above steps and posting a reply, another staff member will review your topic and do their best to resolve your issues.

Thank you for your patience, and again sorry for the delay.

***************************************************

We need to see some information about what is happening in your machine. Please perform the following scan again:

  • Download DDS by sUBs from the following link if you no longer have it available and save it to your destop.

    DDS.com Download Link
  • Double click on the DDS icon, allow it to run.
  • A small box will open, with an explanation about the tool. No input is needed, the scan is running.
  • Notepad will open with the results.
  • Follow the instructions that pop up for posting the results.
  • Close the program window, and delete the program from your desktop.
Please note: You may have to disable any script protection running if the scan fails to run. After downloading the tool, disconnect from the internet and disable all antivirus protection. Run the scan, enable your A/V and reconnect to the internet.

Information on A/V control can be found HERE.

As I am just a silly little program running on the BleepingComputer.com servers, please do not send me private messages as I do not know how to read and reply to them! Thanks!

#3 Sutieday

Sutieday
  • Topic Starter

  • Members
  • 12 posts
  • OFFLINE
  •  
  • Local time:05:08 AM

Posted 20 August 2013 - 12:16 AM

Here is my updated DDS log. Also I do not have a Windows Install Disc as my laptop didn't come with one.

 

DDS (Ver_2012-11-20.01) - NTFS_AMD64
Internet Explorer: 10.0.9200.16660
Run by Clinton at 1:12:22 on 2013-08-20
Microsoft Windows 7 Home Premium   6.1.7601.1.1252.1.1033.18.4044.2847 [GMT -4:00]
.
AV: COMODO Antivirus *Disabled/Updated* {B74CC7D2-B407-E1DC-1033-DD315BCDC8C8}
SP: Windows Defender *Disabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: COMODO Antivirus *Disabled/Updated* {0C2D2636-923D-EE52-2A83-E643204A8275}
FW: COMODO Firewall *Enabled* {8F7746F7-FE68-E084-3B6C-7404A51E8FB3}
.
============== Running Processes ===============
.
C:\windows\system32\lsm.exe
C:\windows\system32\svchost.exe -k DcomLaunch
C:\windows\system32\svchost.exe -k RPCSS
C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
C:\windows\system32\svchost.exe -k NetworkService
C:\windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\windows\system32\svchost.exe -k LocalService
C:\windows\system32\svchost.exe -k netsvcs
C:\windows\system32\svchost.exe -k GPSvcGroup
C:\windows\system32\WLANExt.exe
C:\windows\System32\spoolsv.exe
C:\windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
C:\windows\system32\svchost.exe -k imgsvc
C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe
C:\windows\system32\taskhost.exe
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
C:\windows\system32\Dwm.exe
C:\windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\windows\Explorer.EXE
C:\Program Files\COMODO\COMODO Internet Security\cavwp.exe
C:\Program Files\COMODO\COMODO Internet Security\CisTray.exe
C:\Program Files (x86)\OpenDNS Updater\OpenDNSUpdater.exe
C:\Program Files\COMODO\COMODO Internet Security\cis.exe
C:\windows\system32\SearchIndexer.exe
C:\windows\system32\SearchProtocolHost.exe
C:\windows\system32\SearchFilterHost.exe
C:\windows\system32\wbem\wmiprvse.exe
C:\windows\System32\cscript.exe
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxps://duckduckgo.com/
uDefault_Page_URL = hxxp://start.toshiba.com
mURLSearchHooks: {8bdea9d6-6f62-45eb-8ee9-8a81af0d2f94} - <orphaned>
mWinlogon: Userinit = userinit.exe,
uRun: [OpenDNS Updater] "C:\Program Files (x86)\OpenDNS Updater\OpenDNSUpdater.exe" /autostart
uPolicies-Explorer: NoDriveTypeAutoRun = dword:221
uPolicies-Explorer: NoResolveTrack = dword:1
uPolicies-DisallowRun: 1 = rund1132.exe
uPolicies-DisallowRun: 2 = m5vbvm60.exe
uPolicies-DisallowRun: 3 = Unoccupied.reg
uPolicies-DisallowRun: 4 = Regedit32.com
uPolicies-DisallowRun: 5 = Shell32.com
uPolicies-DisallowRun: 6 = dllchache.exe
uPolicies-DisallowRun: 7 = services_test.exe
uPolicies-DisallowRun: 8 = New Folder.exe
uPolicies-DisallowRun: 9 = systemio.exe
uPolicies-DisallowRun: 10 = JK.exe
uPolicies-DisallowRun: 11 = rundl132.exe
uPolicies-DisallowRun: 12 = Logo1_.exe
uPolicies-DisallowRun: 13 = RichDll.exe
uPolicies-DisallowRun: 14 = loveRabbit.exe
uPolicies-DisallowRun: 15 = msexch400.exe
uPolicies-DisallowRun: 16 = Rabbit.exe
uPolicies-DisallowRun: 17 = aut0exec.bat
uPolicies-DisallowRun: 18 = ntde1ect.com
uPolicies-DisallowRun: 19 = Mixa.exe
uPolicies-DisallowRun: 20 = apvo.exe
uPolicies-DisallowRun: 21 = expressav.exe
uPolicies-DisallowRun: 22 = apv0.exe
uPolicies-DisallowRun: 23 = l33na.exe
uPolicies-DisallowRun: 24 = ed.exe
uPolicies-DisallowRun: 25 = spooisv.exe
uPolicies-DisallowRun: 26 = rttrwq.exe
uPolicies-DisallowRun: 27 = _use.exe
uPolicies-DisallowRun: 28 = 11-00.exe
uPolicies-DisallowRun: 29 = wmibus.exe
uPolicies-DisallowRun: 30 = wmisys.exe
uPolicies-DisallowRun: 31 = Normal.exe
uPolicies-DisallowRun: 32 = execute.exe
uPolicies-DisallowRun: 33 = leena.job
uPolicies-DisallowRun: 34 = leena.exe
uPolicies-DisallowRun: 35 = aneel.exe
uPolicies-DisallowRun: 36 = wuauc1t.exe
uPolicies-DisallowRun: 37 = Win32dll.exe
uPolicies-DisallowRun: 38 = Win32.dll.vbs
uPolicies-DisallowRun: 39 = SteamDll32.exe
uPolicies-DisallowRun: 40 = WinSteam.exe
uPolicies-DisallowRun: 41 = SteamHelper.exe
uPolicies-DisallowRun: 42 = kavo.exe
uPolicies-DisallowRun: 43 = spoclsv.exe
uPolicies-DisallowRun: 44 = dfqnabib.exe
uPolicies-DisallowRun: 45 = sfsxachu.exe
uPolicies-DisallowRun: 46 = stjxakin.exe
uPolicies-DisallowRun: 47 = tjfyabyt.exe
uPolicies-DisallowRun: 48 = kdaic.exe
uPolicies-DisallowRun: 49 = zsdjabmp.exe
uPolicies-DisallowRun: 50 = lpmxajkl.exe
uPolicies-DisallowRun: 51 = dfqnabib.exe
uPolicies-DisallowRun: 52 = WINLOG0N.exe
uPolicies-DisallowRun: 53 = SVCH0ST.exe
uPolicies-DisallowRun: 54 = System.exe
uPolicies-DisallowRun: 55 = phim nguoi lon.exe
uPolicies-DisallowRun: 56 = password_viewer.exe
uPolicies-DisallowRun: 57 = SVCHOST555.exe
uPolicies-DisallowRun: 58 = inst_vinh.exe
uPolicies-DisallowRun: 59 = Bro_Act.exe
uPolicies-DisallowRun: 60 = braviax.exe
uPolicies-DisallowRun: 61 = CbEvtSvc.exe
uPolicies-DisallowRun: 62 = MySexy.exe
uPolicies-DisallowRun: 63 = msconfig.com
uPolicies-DisallowRun: 64 = regedit.com
uPolicies-DisallowRun: 65 = default__.pif
uPolicies-DisallowRun: 66 = jvosoft.exe
uPolicies-DisallowRun: 67 = 9sky8pia.exe
uPolicies-DisallowRun: 68 = amvo0.exe
uPolicies-DisallowRun: 69 = lphc9dkj0ec6a.exe
uPolicies-DisallowRun: 70 = rhcahej0ej6v.exe
uPolicies-DisallowRun: 71 = chiCkie.exe
uPolicies-DisallowRun: 72 = ExeServ.exe
uPolicies-DisallowRun: 73 = Av-Prev.exe
uPolicies-DisallowRun: 74 = ati2avxx.exe
uPolicies-DisallowRun: 75 = Sex Picture.scr
uPolicies-DisallowRun: 76 = xpupdate.exe
uPolicies-DisallowRun: 77 = comine.exe
uPolicies-DisallowRun: 78 = autochl.exe
uPolicies-DisallowRun: 79 = log.exe
uPolicies-DisallowRun: 80 = comboClt.ocx.vbs
uPolicies-DisallowRun: 81 = Sos.exe
uPolicies-DisallowRun: 82 = kxvo.exe
uPolicies-DisallowRun: 83 = zz.exe
uPolicies-DisallowRun: 84 = lsasss.exe
uPolicies-DisallowRun: 85 = order.exe
uPolicies-DisallowRun: 86 = Flashy.exe
uPolicies-DisallowRun: 87 = meex.exe
uPolicies-DisallowRun: 88 = xibgptd.exe
uPolicies-DisallowRun: 89 = xmjisnw.exe
uPolicies-DisallowRun: 90 = asd0.exe
uPolicies-DisallowRun: 91 = windowsupd2.exe
uPolicies-DisallowRun: 92 = winhost.exe
uPolicies-DisallowRun: 93 = quicken.exe
uPolicies-DisallowRun: 94 = editpad.exe
uPolicies-DisallowRun: 95 = nwonknu.exe
uPolicies-DisallowRun: 96 = rasrun.exe
uPolicies-DisallowRun: 97 = psdrv.exe
uPolicies-DisallowRun: 98 = svci.exe
uPolicies-DisallowRun: 99 = unknown.exe
uPolicies-DisallowRun: 100 = castlecops[1].exe
uPolicies-DisallowRun: 101 = 1014[1].exe
uPolicies-DisallowRun: 102 = is[1].exe
uPolicies-DisallowRun: 103 = wcs.exe
uPolicies-DisallowRun: 104 = Sizhu.exe
uPolicies-DisallowRun: 105 = ibrv.exe
uPolicies-DisallowRun: 106 = vgguxso.exe
uPolicies-DisallowRun: 107 = uitxjwa.exe
uPolicies-DisallowRun: 108 = loadam.exe
uPolicies-DisallowRun: 109 = sunny.exe
uPolicies-DisallowRun: 110 = etialof.exe
uPolicies-DisallowRun: 111 = sdjxeqi.exe
uPolicies-DisallowRun: 112 = tsnqtjn.exe
uPolicies-DisallowRun: 113 = dluxde.exe
uPolicies-DisallowRun: 114 = Soft0
uPolicies-DisallowRun: 115 = 1.exe
uPolicies-DisallowRun: 116 = 10.exe
uPolicies-DisallowRun: 117 = SVOHOST.exe
uPolicies-DisallowRun: 118 = sxs.exe
uPolicies-DisallowRun: 119 = phimnguoilon.exe
uPolicies-DisallowRun: 120 = amvo.exe
uPolicies-DisallowRun: 121 = n1deiect.com
uPolicies-DisallowRun: 122 = qwc.exe
uPolicies-DisallowRun: 123 = tknn6.bat
uPolicies-DisallowRun: 124 = 6l6w8.com
uPolicies-DisallowRun: 125 = hay.exe
uPolicies-DisallowRun: 126 = more.exe
uPolicies-DisallowRun: 127 = nontay.exe
uPolicies-DisallowRun: 128 = boom.vbs
uPolicies-DisallowRun: 129 = drivers.cab.exe
uPolicies-DisallowRun: 130 = KEYBOARD.exe
uPolicies-DisallowRun: 131 = Global.exe
uPolicies-DisallowRun: 132 = jdbgmgr.exe
uPolicies-DisallowRun: 133 = secret.exe
uPolicies-DisallowRun: 134 = xdict.exe
uPolicies-DisallowRun: 135 = algssl.exe
uPolicies-DisallowRun: 136 = phimhot.exe
uPolicies-DisallowRun: 137 = other.exe
uPolicies-DisallowRun: 138 = fun.exe
uPolicies-DisallowRun: 139 = winsit.exe
uPolicies-DisallowRun: 140 = sal.xls.exe
uPolicies-DisallowRun: 141 = msfir80.exe
uPolicies-DisallowRun: 142 =  .exe
uPolicies-DisallowRun: 143 = MSconfigg.exe
uPolicies-DisallowRun: 144 = servics.exe
uPolicies-DisallowRun: 145 = expl0rer.exe
uPolicies-DisallowRun: 146 = tel.xls.exe
uPolicies-DisallowRun: 147 = funni.exe
uPolicies-DisallowRun: 148 = kvosoft.exe
uPolicies-DisallowRun: 149 = 4.exe
uPolicies-DisallowRun: 150 = 2008.exe
uPolicies-DisallowRun: 151 = folder.exe
uPolicies-DisallowRun: 152 = knx32.exe
uPolicies-DisallowRun: 153 = Mixa_I.exe
uPolicies-DisallowRun: 154 = bleep.exe
uPolicies-DisallowRun: 155 = Happy99.exe
uPolicies-DisallowRun: 156 = SKA.EXE
uPolicies-DisallowRun: 157 = sysmgr.exe
uPolicies-DisallowRun: 158 = Mixa_1.exe
uPolicies-DisallowRun: 159 = skynet.exe
uPolicies-DisallowRun: 160 = Isass.exe
uPolicies-DisallowRun: 161 = 8out.exe
uPolicies-DisallowRun: 162 = lotto.exe
uPolicies-DisallowRun: 163 = ieav.exe
uPolicies-DisallowRun: 164 = win32.host.exe
uPolicies-DisallowRun: 165 = osgjaaj.exe
uPolicies-DisallowRun: 166 = info.exe
uPolicies-DisallowRun: 167 = ads.jpg.exe
uPolicies-DisallowRun: 168 = CKVO.EXE
uPolicies-DisallowRun: 169 = a2.exe
uPolicies-DisallowRun: 170 = rundii32.exe
uPolicies-DisallowRun: 171 = cd.exe
uPolicies-DisallowRun: 172 = ph.com
uPolicies-DisallowRun: 173 = winivstr.exe
uPolicies-DisallowRun: 174 = Default.exe
uPolicies-DisallowRun: 175 = NTDETECH.com
uPolicies-DisallowRun: 176 = l63snn8.exe
uPolicies-DisallowRun: 177 = svhost.exe
uPolicies-DisallowRun: 178 = svchot.exe
uPolicies-DisallowRun: 179 = svch0t.exe
uPolicies-DisallowRun: 180 = svh0st.exe
uPolicies-DisallowRun: 181 = my_80004.exe
uPolicies-DisallowRun: 182 = explorcr.exe
uPolicies-DisallowRun: 183 = admin6_ver0424.exe
uPolicies-DisallowRun: 184 = yeSetup.exe
uPolicies-DisallowRun: 185 = dodolook591.exe
uPolicies-DisallowRun: 186 = alexa240.exe
uPolicies-DisallowRun: 187 = 1072.exe
uPolicies-DisallowRun: 188 = atmpvcno.dll.exe
uPolicies-DisallowRun: 189 = atmlib.dll.exe
uPolicies-DisallowRun: 190 = musica.exe
uPolicies-DisallowRun: 191 = ...exe
uPolicies-DisallowRun: 192 = ..exe
uPolicies-DisallowRun: 193 = crack.com
uPolicies-DisallowRun: 194 = dwintl.dll.exe
uPolicies-DisallowRun: 195 = explorer.zip.scr
uPolicies-DisallowRun: 196 = pictures.exe
uPolicies-DisallowRun: 197 = readme.com
uPolicies-DisallowRun: 198 = 12520437.cpx.exe
uPolicies-DisallowRun: 199 = 12520850.cpx.exe
uPolicies-DisallowRun: 200 = 3com_dmi.exe
uPolicies-DisallowRun: 201 = 6to4svc.dll.exe
uPolicies-DisallowRun: 202 = access.cpl.exe
uPolicies-DisallowRun: 203 = acctres.dll.exe
uPolicies-DisallowRun: 204 = acelpdec.ax.exe
uPolicies-DisallowRun: 205 = acledit.dll.exe
uPolicies-DisallowRun: 206 = aclui.dll.exe
uPolicies-DisallowRun: 207 = activeds.dll.exe
uPolicies-DisallowRun: 208 = activeds.tlb.exe
uPolicies-DisallowRun: 209 = actxprxy.dll.exe
uPolicies-DisallowRun: 210 = admparse.dll.exe
uPolicies-DisallowRun: 211 = adodc.srg.exe
uPolicies-DisallowRun: 212 = adptif.dll.exe
uPolicies-DisallowRun: 213 = adsldp.dll.exe
uPolicies-DisallowRun: 214 = adsldpc.dll.exe
uPolicies-DisallowRun: 215 = adsmsext.dll.exe
uPolicies-DisallowRun: 216 = adsnds.dll.exe
uPolicies-DisallowRun: 217 = adsnt.dll.exe
uPolicies-DisallowRun: 218 = adsnw.dll.exe
uPolicies-DisallowRun: 219 = advapi32.dll.exe
uPolicies-DisallowRun: 220 = advpack.dll.exe
uPolicies-DisallowRun: 221 = alrsvc.dll.exe
uPolicies-DisallowRun: 222 = amcompat.tlb.exe
uPolicies-DisallowRun: 223 = amstream.dll.exe
uPolicies-DisallowRun: 224 = ansi.sys.exe
uPolicies-DisallowRun: 225 = apcups.dll.exe
uPolicies-DisallowRun: 226 = apphelp.dll.exe
uPolicies-DisallowRun: 227 = appmgmts.dll.exe
uPolicies-DisallowRun: 228 = appmgr.dll.exe
uPolicies-DisallowRun: 229 = appwiz.cpl.exe
uPolicies-DisallowRun: 230 = asctrls.ocx.exe
uPolicies-DisallowRun: 231 = asferror.dll.exe
uPolicies-DisallowRun: 232 = asycfilt.dll.exe
uPolicies-DisallowRun: 233 = atkctrs.dll.exe
uPolicies-DisallowRun: 234 = atl.dll.exe
uPolicies-DisallowRun: 235 = atmfd.dll.exe
uPolicies-DisallowRun: 236 = 100.exe
uPolicies-DisallowRun: 237 = 101.exe
uPolicies-DisallowRun: 238 = 102.exe
uPolicies-DisallowRun: 239 = 103.exe
uPolicies-DisallowRun: 240 = 104.exe
uPolicies-DisallowRun: 241 = 105.exe
uPolicies-DisallowRun: 242 = 106.exe
uPolicies-DisallowRun: 243 = 107.exe
uPolicies-DisallowRun: 244 = 108.exe
uPolicies-DisallowRun: 245 = 109.exe
uPolicies-DisallowRun: 246 = 11.exe
uPolicies-DisallowRun: 247 = 110.exe
uPolicies-DisallowRun: 248 = 111.exe
uPolicies-DisallowRun: 249 = 112.exe
uPolicies-DisallowRun: 250 = 113.exe
uPolicies-DisallowRun: 251 = 114.exe
uPolicies-DisallowRun: 252 = 115.exe
uPolicies-DisallowRun: 253 = 116.exe
uPolicies-DisallowRun: 254 = 117.exe
uPolicies-DisallowRun: 255 = 118.exe
uPolicies-DisallowRun: 256 = 119.exe
uPolicies-DisallowRun: 257 = 12.exe
uPolicies-DisallowRun: 258 = 120.exe
uPolicies-DisallowRun: 259 = 122.exe
uPolicies-DisallowRun: 260 = 123.exe
uPolicies-DisallowRun: 261 = 124.exe
uPolicies-DisallowRun: 262 = 125.exe
uPolicies-DisallowRun: 263 = blastk.exe
uPolicies-DisallowRun: 264 = 126.exe
uPolicies-DisallowRun: 265 = 127.exe
uPolicies-DisallowRun: 266 = 128.exe
uPolicies-DisallowRun: 267 = 129.exe
uPolicies-DisallowRun: 268 = 13.exe
uPolicies-DisallowRun: 269 = 130.exe
uPolicies-DisallowRun: 270 = 131.exe
uPolicies-DisallowRun: 271 = 132.exe
uPolicies-DisallowRun: 272 = 133.exe
uPolicies-DisallowRun: 273 = 134.exe
uPolicies-DisallowRun: 274 = 135.exe
uPolicies-DisallowRun: 275 = 136.exe
uPolicies-DisallowRun: 276 = 137.exe
uPolicies-DisallowRun: 277 = 138.exe
uPolicies-DisallowRun: 278 = 139.exe
uPolicies-DisallowRun: 279 = 14.exe
uPolicies-DisallowRun: 280 = 140.exe
uPolicies-DisallowRun: 281 = 141.exe
uPolicies-DisallowRun: 282 = 142.exe
uPolicies-DisallowRun: 283 = 143.exe
uPolicies-DisallowRun: 284 = 144.exe
uPolicies-DisallowRun: 285 = 145.exe
uPolicies-DisallowRun: 286 = 146.exe
uPolicies-DisallowRun: 287 = 147.exe
uPolicies-DisallowRun: 288 = 148.exe
uPolicies-DisallowRun: 289 = 149.exe
uPolicies-DisallowRun: 290 = 15.exe
uPolicies-DisallowRun: 291 = 150.exe
uPolicies-DisallowRun: 292 = 151.exe
uPolicies-DisallowRun: 293 = 152.exe
uPolicies-DisallowRun: 294 = 153.exe
uPolicies-DisallowRun: 295 = 154.exe
uPolicies-DisallowRun: 296 = 155.exe
uPolicies-DisallowRun: 297 = 156.exe
uPolicies-DisallowRun: 298 = 157.exe
uPolicies-DisallowRun: 299 = 158.exe
uPolicies-DisallowRun: 300 = 159.exe
uPolicies-DisallowRun: 301 = 16.exe
uPolicies-DisallowRun: 302 = 160.exe
uPolicies-DisallowRun: 303 = 161.exe
uPolicies-DisallowRun: 304 = 162.exe
uPolicies-DisallowRun: 305 = 163.exe
uPolicies-DisallowRun: 306 = 164.exe
uPolicies-DisallowRun: 307 = 165.exe
uPolicies-DisallowRun: 308 = 166.exe
uPolicies-DisallowRun: 309 = 167.exe
uPolicies-DisallowRun: 310 = 168.exe
uPolicies-DisallowRun: 311 = 169.exe
uPolicies-DisallowRun: 312 = 17.exe
uPolicies-DisallowRun: 313 = 170.exe
uPolicies-DisallowRun: 314 = 171.exe
uPolicies-DisallowRun: 315 = 172.exe
uPolicies-DisallowRun: 316 = 173.exe
uPolicies-DisallowRun: 317 = 174.exe
uPolicies-DisallowRun: 318 = 175.exe
uPolicies-DisallowRun: 319 = 176.exe
uPolicies-DisallowRun: 320 = 177.exe
uPolicies-DisallowRun: 321 = 178.exe
uPolicies-DisallowRun: 322 = 179.exe
uPolicies-DisallowRun: 323 = 18.exe
uPolicies-DisallowRun: 324 = 180.exe
uPolicies-DisallowRun: 325 = 181.exe
uPolicies-DisallowRun: 326 = 182.exe
uPolicies-DisallowRun: 327 = 183.exe
uPolicies-DisallowRun: 328 = 184.exe
uPolicies-DisallowRun: 329 = 185.exe
uPolicies-DisallowRun: 330 = 186.exe
uPolicies-DisallowRun: 331 = 187.exe
uPolicies-DisallowRun: 332 = 188.exe
uPolicies-DisallowRun: 333 = 189.exe
uPolicies-DisallowRun: 334 = 19.exe
uPolicies-DisallowRun: 335 = 190.exe
uPolicies-DisallowRun: 336 = 191.exe
uPolicies-DisallowRun: 337 = 192.exe
uPolicies-DisallowRun: 338 = 193.exe
uPolicies-DisallowRun: 339 = 194.exe
uPolicies-DisallowRun: 340 = 195.exe
uPolicies-DisallowRun: 341 = 196.exe
uPolicies-DisallowRun: 342 = 197.exe
uPolicies-DisallowRun: 343 = 198.exe
uPolicies-DisallowRun: 344 = 199.exe
uPolicies-DisallowRun: 345 = 20.exe
uPolicies-DisallowRun: 346 = 21.exe
uPolicies-DisallowRun: 347 = 22.exe
uPolicies-DisallowRun: 348 = 23.exe
uPolicies-DisallowRun: 349 = 24.exe
uPolicies-DisallowRun: 350 = 25.exe
uPolicies-DisallowRun: 351 = 26.exe
uPolicies-DisallowRun: 352 = 27.exe
uPolicies-DisallowRun: 353 = 28.exe
uPolicies-DisallowRun: 354 = 29.exe
uPolicies-DisallowRun: 355 = 3.exe
uPolicies-DisallowRun: 356 = 30.exe
uPolicies-DisallowRun: 357 = 1000.exe
uPolicies-DisallowRun: 358 = 1001.exe
uPolicies-DisallowRun: 359 = 1002.exe
uPolicies-DisallowRun: 360 = 1003.exe
uPolicies-DisallowRun: 361 = 1004.exe
uPolicies-DisallowRun: 362 = 1005.exe
uPolicies-DisallowRun: 363 = 1006.exe
uPolicies-DisallowRun: 364 = 1007.exe
uPolicies-DisallowRun: 365 = 1008.exe
uPolicies-DisallowRun: 366 = 1009.exe
uPolicies-DisallowRun: 367 = 1010.exe
uPolicies-DisallowRun: 368 = 1011.exe
uPolicies-DisallowRun: 369 = 1012.exe
uPolicies-DisallowRun: 370 = 1013.exe
uPolicies-DisallowRun: 371 = 1014.exe
uPolicies-DisallowRun: 372 = 1015.exe
uPolicies-DisallowRun: 373 = 1016.exe
uPolicies-DisallowRun: 374 = 1017.exe
uPolicies-DisallowRun: 375 = 1018.exe
uPolicies-DisallowRun: 376 = 1019.exe
uPolicies-DisallowRun: 377 = 1020.exe
uPolicies-DisallowRun: 378 = 1021.exe
uPolicies-DisallowRun: 379 = 1022.exe
uPolicies-DisallowRun: 380 = 1023.exe
uPolicies-DisallowRun: 381 = 1024.exe
uPolicies-DisallowRun: 382 = 1025.exe
uPolicies-DisallowRun: 383 = 1026.exe
uPolicies-DisallowRun: 384 = 1027.exe
uPolicies-DisallowRun: 385 = 1028.exe
uPolicies-DisallowRun: 386 = 1029.exe
uPolicies-DisallowRun: 387 = 1030.exe
uPolicies-DisallowRun: 388 = 1031.exe
uPolicies-DisallowRun: 389 = 1032.exe
uPolicies-DisallowRun: 390 = 1033.exe
uPolicies-DisallowRun: 391 = 1034.exe
uPolicies-DisallowRun: 392 = 1035.exe
uPolicies-DisallowRun: 393 = 1036.exe
uPolicies-DisallowRun: 394 = 1037.exe
uPolicies-DisallowRun: 395 = 1038.exe
uPolicies-DisallowRun: 396 = 1039.exe
uPolicies-DisallowRun: 397 = 1040.exe
uPolicies-DisallowRun: 398 = 1041.exe
uPolicies-DisallowRun: 399 = 1042.exe
uPolicies-DisallowRun: 400 = 1043.exe
uPolicies-DisallowRun: 401 = 1044.exe
uPolicies-DisallowRun: 402 = 1045.exe
uPolicies-DisallowRun: 403 = 1046.exe
uPolicies-DisallowRun: 404 = 1047.exe
uPolicies-DisallowRun: 405 = 1048.exe
uPolicies-DisallowRun: 406 = 1049.exe
uPolicies-DisallowRun: 407 = 1050.exe
uPolicies-DisallowRun: 408 = 1051.exe
uPolicies-DisallowRun: 409 = 1052.exe
uPolicies-DisallowRun: 410 = 1053.exe
uPolicies-DisallowRun: 411 = 1054.exe
uPolicies-DisallowRun: 412 = 1055.exe
uPolicies-DisallowRun: 413 = 1056.exe
uPolicies-DisallowRun: 414 = 1057.exe
uPolicies-DisallowRun: 415 = 1058.exe
uPolicies-DisallowRun: 416 = 1059.exe
uPolicies-DisallowRun: 417 = 1060.exe
uPolicies-DisallowRun: 418 = 1061.exe
uPolicies-DisallowRun: 419 = 1062.exe
uPolicies-DisallowRun: 420 = 1063.exe
uPolicies-DisallowRun: 421 = 1064.exe
uPolicies-DisallowRun: 422 = 1065.exe
uPolicies-DisallowRun: 423 = 1066.exe
uPolicies-DisallowRun: 424 = 1067.exe
uPolicies-DisallowRun: 425 = 1068.exe
uPolicies-DisallowRun: 426 = 1069.exe
uPolicies-DisallowRun: 427 = 1070.exe
uPolicies-DisallowRun: 428 = 1071.exe
uPolicies-DisallowRun: 429 = 1072.exe
uPolicies-DisallowRun: 430 = 1073.exe
uPolicies-DisallowRun: 431 = 1074.exe
uPolicies-DisallowRun: 432 = 1075.exe
uPolicies-DisallowRun: 433 = 1076.exe
uPolicies-DisallowRun: 434 = 1077.exe
uPolicies-DisallowRun: 435 = 1078.exe
uPolicies-DisallowRun: 436 = 1079.exe
uPolicies-DisallowRun: 437 = 1080.exe
uPolicies-DisallowRun: 438 = 1081.exe
uPolicies-DisallowRun: 439 = 1082.exe
uPolicies-DisallowRun: 440 = 1083.exe
uPolicies-DisallowRun: 441 = 1084.exe
uPolicies-DisallowRun: 442 = 1085.exe
uPolicies-DisallowRun: 443 = 1086.exe
uPolicies-DisallowRun: 444 = 1087.exe
uPolicies-DisallowRun: 445 = 1088.exe
uPolicies-DisallowRun: 446 = 1089.exe
uPolicies-DisallowRun: 447 = 1090.exe
uPolicies-DisallowRun: 448 = 1091.exe
uPolicies-DisallowRun: 449 = 1092.exe
uPolicies-DisallowRun: 450 = 1093.exe
uPolicies-DisallowRun: 451 = 1094.exe
uPolicies-DisallowRun: 452 = 1095.exe
uPolicies-DisallowRun: 453 = 1096.exe
uPolicies-DisallowRun: 454 = 1097.exe
uPolicies-DisallowRun: 455 = 1099.exe
uPolicies-DisallowRun: 456 = 6307.exe
uPolicies-DisallowRun: 457 = 6308.exe
uPolicies-DisallowRun: 458 = 6309.exe
uPolicies-DisallowRun: 459 = 6310.exe
uPolicies-DisallowRun: 460 = 6311.exe
uPolicies-DisallowRun: 461 = 6312.exe
uPolicies-DisallowRun: 462 = 6314.exe
uPolicies-DisallowRun: 463 = 6313.exe
uPolicies-DisallowRun: 464 = 6315.exe
uPolicies-DisallowRun: 465 = 6316.exe
uPolicies-DisallowRun: 466 = 6317.exe
uPolicies-DisallowRun: 467 = 6318.exe
uPolicies-DisallowRun: 468 = 6319.exe
uPolicies-DisallowRun: 469 = 6320.exe
uPolicies-DisallowRun: 470 = 6321.exe
uPolicies-DisallowRun: 471 = 6322.exe
uPolicies-DisallowRun: 472 = 6323.exe
uPolicies-DisallowRun: 473 = 6324.exe
uPolicies-DisallowRun: 474 = 6325.exe
uPolicies-DisallowRun: 475 = 6326.exe
uPolicies-DisallowRun: 476 = 6327.exe
uPolicies-DisallowRun: 477 = 6328.exe
uPolicies-DisallowRun: 478 = 6329.exe
uPolicies-DisallowRun: 479 = 6330.exe
uPolicies-DisallowRun: 480 = 6331.exe
uPolicies-DisallowRun: 481 = 6332.exe
uPolicies-DisallowRun: 482 = 6333.exe
uPolicies-DisallowRun: 483 = 6334.exe
uPolicies-DisallowRun: 484 = 6335.exe
uPolicies-DisallowRun: 485 = 6336.exe
uPolicies-DisallowRun: 486 = 6337.exe
uPolicies-DisallowRun: 487 = 6338.exe
uPolicies-DisallowRun: 488 = 6339.exe
uPolicies-DisallowRun: 489 = 6340.exe
uPolicies-DisallowRun: 490 = 6341.exe
uPolicies-DisallowRun: 491 = 6342.exe
uPolicies-DisallowRun: 492 = 6343.exe
uPolicies-DisallowRun: 493 = 6344.exe
uPolicies-DisallowRun: 494 = 6345.exe
uPolicies-DisallowRun: 495 = 6346.exe
uPolicies-DisallowRun: 496 = 6347.exe
uPolicies-DisallowRun: 497 = 6348.exe
uPolicies-DisallowRun: 498 = 6349.exe
uPolicies-DisallowRun: 499 = 6350.exe
uPolicies-DisallowRun: 500 = 6351.exe
uPolicies-DisallowRun: 501 = 6352.exe
uPolicies-DisallowRun: 502 = 6353.exe
uPolicies-DisallowRun: 503 = 6354.exe
uPolicies-DisallowRun: 504 = 6355.exe
uPolicies-DisallowRun: 505 = 6356.exe
uPolicies-DisallowRun: 506 = 6357.exe
uPolicies-DisallowRun: 507 = 6358.exe
uPolicies-DisallowRun: 508 = 6359.exe
uPolicies-DisallowRun: 509 = 6360.exe
uPolicies-DisallowRun: 510 = 6361.exe
uPolicies-DisallowRun: 511 = 6362.exe
uPolicies-DisallowRun: 512 = 6363.exe
uPolicies-DisallowRun: 513 = 6364.exe
uPolicies-DisallowRun: 514 = 6365.exe
uPolicies-DisallowRun: 515 = 6366.exe
uPolicies-DisallowRun: 516 = 6367.exe
uPolicies-DisallowRun: 517 = 6369.exe
uPolicies-DisallowRun: 518 = 6368.exe
uPolicies-DisallowRun: 519 = 6370.exe
uPolicies-DisallowRun: 520 = 6371.exe
uPolicies-DisallowRun: 521 = 6372.exe
uPolicies-DisallowRun: 522 = 6373.exe
uPolicies-DisallowRun: 523 = 6374.exe
uPolicies-DisallowRun: 524 = 6375.exe
uPolicies-DisallowRun: 525 = 6376.exe
uPolicies-DisallowRun: 526 = 6377.exe
uPolicies-DisallowRun: 527 = 6378.exe
uPolicies-DisallowRun: 528 = 6379.exe
uPolicies-DisallowRun: 529 = 6380.exe
uPolicies-DisallowRun: 530 = 6381.exe
uPolicies-DisallowRun: 531 = 6382.exe
uPolicies-DisallowRun: 532 = 6383.exe
uPolicies-DisallowRun: 533 = 6384.exe
uPolicies-DisallowRun: 534 = 6385.exe
uPolicies-DisallowRun: 535 = 6386.exe
uPolicies-DisallowRun: 536 = 6387.exe
uPolicies-DisallowRun: 537 = 6388.exe
uPolicies-DisallowRun: 538 = 6389.exe
uPolicies-DisallowRun: 539 = 6390.exe
uPolicies-DisallowRun: 540 = 6391.exe
uPolicies-DisallowRun: 541 = 6392.exe
uPolicies-DisallowRun: 542 = 6393.exe
uPolicies-DisallowRun: 543 = 6394.exe
uPolicies-DisallowRun: 544 = 6395.exe
uPolicies-DisallowRun: 545 = 6396.exe
uPolicies-DisallowRun: 546 = 6397.exe
uPolicies-DisallowRun: 547 = 6398.exe
uPolicies-DisallowRun: 548 = 6399.exe
uPolicies-DisallowRun: 549 = 6400.exe
uPolicies-DisallowRun: 550 = 6401.exe
uPolicies-DisallowRun: 551 = 6402.exe
uPolicies-DisallowRun: 552 = 6403.exe
uPolicies-DisallowRun: 553 = 6404.exe
uPolicies-DisallowRun: 554 = 6405.exe
uPolicies-DisallowRun: 555 = 6406.exe
uPolicies-DisallowRun: 556 = 6407.exe
uPolicies-DisallowRun: 557 = regfixxsx.exe
uPolicies-DisallowRun: 558 = documents.exe
uPolicies-DisallowRun: 559 = favorites.exe
uPolicies-DisallowRun: 560 = ernsjyi.exe
uPolicies-DisallowRun: 561 = jjcmdrj.exe
uPolicies-DisallowRun: 562 = nheste.exe
uPolicies-DisallowRun: 563 = nxmwp.exe
uPolicies-DisallowRun: 564 = rwmgh.exe
uPolicies-DisallowRun: 565 = tbljxjk.exe
uPolicies-DisallowRun: 566 = vohth.exe
uPolicies-DisallowRun: 567 = vvpmyvaw.exe
uPolicies-DisallowRun: 568 = aa.exe
uPolicies-DisallowRun: 569 = _cw0srv.exe
uPolicies-DisallowRun: 570 = links.exe
uPolicies-DisallowRun: 571 = serivces01.exe
uPolicies-DisallowRun: 572 = serivces05.exe
uPolicies-DisallowRun: 573 = sruninstall.exe
uPolicies-DisallowRun: 574 = serivcesb.exe
uPolicies-DisallowRun: 575 = serivcesf.exe
uPolicies-DisallowRun: 576 = servcies04.exe
uPolicies-DisallowRun: 577 = jxzub5410451.exe
uPolicies-DisallowRun: 578 = chert5-998.exe
uPolicies-DisallowRun: 579 = kernel1.exe
uPolicies-DisallowRun: 580 = beep.exe
uPolicies-DisallowRun: 581 = iexpl0re.exe
uPolicies-DisallowRun: 582 = crasos.exe
uPolicies-DisallowRun: 583 = cmdbcs.exe
uPolicies-DisallowRun: 584 = realschd.exe
uPolicies-DisallowRun: 585 = wsvbs.exe
uPolicies-DisallowRun: 586 = msdccrt.exe
uPolicies-DisallowRun: 587 = run1132.exe
uPolicies-DisallowRun: 588 = sysload3.exe
uPolicies-DisallowRun: 589 = tempicon.exe
uPolicies-DisallowRun: 590 = sysbmw.exe
uPolicies-DisallowRun: 591 = rpcs.exe
uPolicies-DisallowRun: 592 = msvce32.exe
uPolicies-DisallowRun: 593 = svhost32.exe
uPolicies-DisallowRun: 594 = internat.exe
uPolicies-DisallowRun: 595 = ctmontv.exe
uPolicies-DisallowRun: 596 = ncscv32.exe
uPolicies-DisallowRun: 597 = spo0lsv.exe
uPolicies-DisallowRun: 598 = wdfmgr32.exe
uPolicies-DisallowRun: 599 = upxdnd.exe
uPolicies-DisallowRun: 600 = ssopure.exe
uPolicies-DisallowRun: 601 = c0nime.exe
uPolicies-DisallowRun: 602 = nvscv32.exe
uPolicies-DisallowRun: 603 = bleepjacks.exe
uPolicies-DisallowRun: 604 = lying.exe
uPolicies-DisallowRun: 605 = jbele1.com
uPolicies-DisallowRun: 606 = vt2n8re.com
uPolicies-DisallowRun: 607 = 0011E924.vbs
uPolicies-DisallowRun: 608 = 672.exe
uPolicies-DisallowRun: 609 = ciygje.exe
uPolicies-DisallowRun: 610 = kmbbvua.exe
uPolicies-DisallowRun: 611 = mkqn.exe
uPolicies-DisallowRun: 612 = pajto.exe
uPolicies-DisallowRun: 613 = rbgc.exe
uPolicies-DisallowRun: 614 = rs32net.exe
uPolicies-DisallowRun: 615 = vbmwi.exe
uPolicies-DisallowRun: 616 = wfthnpkw.exe
uPolicies-DisallowRun: 617 = wsxyguvs.exe
uPolicies-DisallowRun: 618 = servcies9.exe
uPolicies-DisallowRun: 619 = servciesa.exe
uPolicies-DisallowRun: 620 = servciesaa.exe
uPolicies-DisallowRun: 621 = Vxl.exe
uPolicies-DisallowRun: 622 = ~.exe
uPolicies-DisallowRun: 623 = YUR7.exe
uPolicies-DisallowRun: 624 = YUR8.exe
uPolicies-DisallowRun: 625 = YUR9.exe
uPolicies-DisallowRun: 626 = YURA.exe
uPolicies-DisallowRun: 627 = Rapid Antivirus.exe
uPolicies-DisallowRun: 628 = zPharoh.exe
uPolicies-DisallowRun: 629 = winiguard.exe
uPolicies-DisallowRun: 630 = zPharaoh.exe
uPolicies-DisallowRun: 631 = lphcns0j0e1av.exe
uPolicies-DisallowRun: 632 = serverx.exe
uPolicies-DisallowRun: 633 = Sulfnbk.exe
uPolicies-DisallowRun: 634 = 11122oo7.exe
uPolicies-DisallowRun: 635 = newfolder.exe
uPolicies-DisallowRun: 636 = qq.exe
uPolicies-DisallowRun: 637 = 75976W.exe
uPolicies-DisallowRun: 638 = 75976L.exe
uPolicies-DisallowRun: 639 = brastk.exe
uPolicies-DisallowRun: 640 = lky.exe
uPolicies-DisallowRun: 641 = whi.com
uPolicies-DisallowRun: 642 = sq.com
uPolicies-DisallowRun: 643 = kamsoft.exe
uPolicies-DisallowRun: 644 = rs32net.exe
uPolicies-DisallowRun: 645 = Gool.exe
uPolicies-DisallowRun: 646 = brnu492.exe
uPolicies-DisallowRun: 647 = apipr.exe
uPolicies-DisallowRun: 648 = apiph32.exe
uPolicies-DisallowRun: 649 = BNH1.EXE
uPolicies-DisallowRun: 650 = ce1.exe
uPolicies-DisallowRun: 651 = dq1.exe
uPolicies-DisallowRun: 652 = purger.exe
uPolicies-DisallowRun: 653 = s-1-5-21.exe
uPolicies-DisallowRun: 654 = lockbar.exe
uPolicies-DisallowRun: 655 = aa0.exe
uPolicies-DisallowRun: 755 = zip0.exe
uPolicies-DisallowRun: 855 = soft0.exe
uPolicies-DisallowRun: 656 = aa1.exe
uPolicies-DisallowRun: 756 = zip1.exe
uPolicies-DisallowRun: 856 = soft1.exe
uPolicies-DisallowRun: 657 = aa2.exe
uPolicies-DisallowRun: 757 = zip2.exe
uPolicies-DisallowRun: 857 = soft2.exe
uPolicies-DisallowRun: 658 = aa3.exe
uPolicies-DisallowRun: 758 = zip3.exe
uPolicies-DisallowRun: 858 = soft3.exe
uPolicies-DisallowRun: 659 = aa4.exe
uPolicies-DisallowRun: 759 = zip4.exe
uPolicies-DisallowRun: 859 = soft4.exe
uPolicies-DisallowRun: 660 = aa5.exe
uPolicies-DisallowRun: 760 = zip5.exe
uPolicies-DisallowRun: 860 = soft5.exe
uPolicies-DisallowRun: 661 = aa6.exe
uPolicies-DisallowRun: 761 = zip6.exe
uPolicies-DisallowRun: 861 = soft6.exe
uPolicies-DisallowRun: 662 = aa7.exe
uPolicies-DisallowRun: 762 = zip7.exe
uPolicies-DisallowRun: 862 = soft7.exe
uPolicies-DisallowRun: 663 = aa8.exe
uPolicies-DisallowRun: 763 = zip8.exe
uPolicies-DisallowRun: 863 = soft8.exe
uPolicies-DisallowRun: 664 = aa9.exe
uPolicies-DisallowRun: 764 = zip9.exe
uPolicies-DisallowRun: 864 = soft9.exe
uPolicies-DisallowRun: 665 = aa10.exe
uPolicies-DisallowRun: 765 = zip10.exe
uPolicies-DisallowRun: 865 = soft10.exe
uPolicies-DisallowRun: 666 = aa11.exe
uPolicies-DisallowRun: 766 = zip11.exe
uPolicies-DisallowRun: 866 = soft11.exe
uPolicies-DisallowRun: 667 = aa12.exe
uPolicies-DisallowRun: 767 = zip12.exe
uPolicies-DisallowRun: 867 = soft12.exe
uPolicies-DisallowRun: 668 = aa13.exe
uPolicies-DisallowRun: 768 = zip13.exe
uPolicies-DisallowRun: 868 = soft13.exe
uPolicies-DisallowRun: 669 = aa14.exe
uPolicies-DisallowRun: 769 = zip14.exe
uPolicies-DisallowRun: 869 = soft14.exe
uPolicies-DisallowRun: 670 = aa15.exe
uPolicies-DisallowRun: 770 = zip15.exe
uPolicies-DisallowRun: 870 = soft15.exe
uPolicies-DisallowRun: 671 = aa16.exe
uPolicies-DisallowRun: 771 = zip16.exe
uPolicies-DisallowRun: 871 = soft16.exe
uPolicies-DisallowRun: 672 = aa17.exe
uPolicies-DisallowRun: 772 = zip17.exe
uPolicies-DisallowRun: 872 = soft17.exe
uPolicies-DisallowRun: 673 = aa18.exe
uPolicies-DisallowRun: 773 = zip18.exe
uPolicies-DisallowRun: 873 = soft18.exe
uPolicies-DisallowRun: 674 = aa19.exe
uPolicies-DisallowRun: 774 = zip19.exe
uPolicies-DisallowRun: 874 = soft19.exe
uPolicies-DisallowRun: 675 = aa20.exe
uPolicies-DisallowRun: 775 = zip20.exe
uPolicies-DisallowRun: 875 = soft20.exe
uPolicies-DisallowRun: 676 = aa21.exe
uPolicies-DisallowRun: 776 = zip21.exe
uPolicies-DisallowRun: 876 = soft21.exe
uPolicies-DisallowRun: 677 = aa22.exe
uPolicies-DisallowRun: 777 = zip22.exe
uPolicies-DisallowRun: 877 = soft22.exe
uPolicies-DisallowRun: 678 = aa23.exe
uPolicies-DisallowRun: 778 = zip23.exe
uPolicies-DisallowRun: 878 = soft23.exe
uPolicies-DisallowRun: 679 = aa24.exe
uPolicies-DisallowRun: 779 = zip24.exe
uPolicies-DisallowRun: 879 = soft24.exe
uPolicies-DisallowRun: 680 = aa25.exe
uPolicies-DisallowRun: 780 = zip25.exe
uPolicies-DisallowRun: 880 = soft25.exe
uPolicies-DisallowRun: 681 = aa26.exe
uPolicies-DisallowRun: 781 = zip26.exe
uPolicies-DisallowRun: 881 = soft26.exe
uPolicies-DisallowRun: 682 = aa27.exe
uPolicies-DisallowRun: 782 = zip27.exe
uPolicies-DisallowRun: 882 = soft27.exe
uPolicies-DisallowRun: 683 = aa28.exe
uPolicies-DisallowRun: 783 = zip28.exe
uPolicies-DisallowRun: 883 = soft28.exe
uPolicies-DisallowRun: 684 = aa29.exe
uPolicies-DisallowRun: 784 = zip29.exe
uPolicies-DisallowRun: 884 = soft29.exe
uPolicies-DisallowRun: 685 = aa30.exe
uPolicies-DisallowRun: 785 = zip30.exe
uPolicies-DisallowRun: 885 = soft30.exe
uPolicies-DisallowRun: 686 = aa31.exe
uPolicies-DisallowRun: 786 = zip31.exe
uPolicies-DisallowRun: 886 = soft31.exe
uPolicies-DisallowRun: 687 = aa32.exe
uPolicies-DisallowRun: 787 = zip32.exe
uPolicies-DisallowRun: 887 = soft32.exe
uPolicies-DisallowRun: 688 = aa33.exe
uPolicies-DisallowRun: 788 = zip33.exe
uPolicies-DisallowRun: 888 = soft33.exe
uPolicies-DisallowRun: 689 = aa34.exe
uPolicies-DisallowRun: 789 = zip34.exe
uPolicies-DisallowRun: 889 = soft34.exe
uPolicies-DisallowRun: 690 = aa35.exe
uPolicies-DisallowRun: 790 = zip35.exe
uPolicies-DisallowRun: 890 = soft35.exe
uPolicies-DisallowRun: 691 = aa36.exe
uPolicies-DisallowRun: 791 = zip36.exe
uPolicies-DisallowRun: 891 = soft36.exe
uPolicies-DisallowRun: 692 = aa37.exe
uPolicies-DisallowRun: 792 = zip37.exe
uPolicies-DisallowRun: 892 = soft37.exe
uPolicies-DisallowRun: 693 = aa38.exe
uPolicies-DisallowRun: 793 = zip38.exe
uPolicies-DisallowRun: 893 = soft38.exe
uPolicies-DisallowRun: 694 = aa39.exe
uPolicies-DisallowRun: 794 = zip39.exe
uPolicies-DisallowRun: 894 = soft39.exe
uPolicies-DisallowRun: 695 = aa40.exe
uPolicies-DisallowRun: 795 = zip40.exe
uPolicies-DisallowRun: 895 = soft40.exe
uPolicies-DisallowRun: 696 = aa41.exe
uPolicies-DisallowRun: 796 = zip41.exe
uPolicies-DisallowRun: 896 = soft41.exe
uPolicies-DisallowRun: 697 = aa42.exe
uPolicies-DisallowRun: 797 = zip42.exe
uPolicies-DisallowRun: 897 = soft42.exe
uPolicies-DisallowRun: 698 = aa43.exe
uPolicies-DisallowRun: 798 = zip43.exe
uPolicies-DisallowRun: 898 = soft43.exe
uPolicies-DisallowRun: 699 = aa44.exe
uPolicies-DisallowRun: 799 = zip44.exe
uPolicies-DisallowRun: 899 = soft44.exe
uPolicies-DisallowRun: 700 = aa45.exe
uPolicies-DisallowRun: 800 = zip45.exe
uPolicies-DisallowRun: 900 = soft45.exe
uPolicies-DisallowRun: 701 = aa46.exe
uPolicies-DisallowRun: 801 = zip46.exe
uPolicies-DisallowRun: 901 = soft46.exe
uPolicies-DisallowRun: 702 = aa47.exe
uPolicies-DisallowRun: 802 = zip47.exe
uPolicies-DisallowRun: 902 = soft47.exe
uPolicies-DisallowRun: 703 = aa48.exe
uPolicies-DisallowRun: 803 = zip48.exe
uPolicies-DisallowRun: 903 = soft48.exe
uPolicies-DisallowRun: 704 = aa49.exe
uPolicies-DisallowRun: 804 = zip49.exe
uPolicies-DisallowRun: 904 = soft49.exe
uPolicies-DisallowRun: 705 = aa50.exe
uPolicies-DisallowRun: 805 = zip50.exe
uPolicies-DisallowRun: 905 = soft50.exe
uPolicies-DisallowRun: 706 = aa51.exe
uPolicies-DisallowRun: 806 = zip51.exe
uPolicies-DisallowRun: 906 = soft51.exe
uPolicies-DisallowRun: 707 = aa52.exe
uPolicies-DisallowRun: 807 = zip52.exe
uPolicies-DisallowRun: 907 = soft52.exe
uPolicies-DisallowRun: 708 = aa53.exe
uPolicies-DisallowRun: 808 = zip53.exe
uPolicies-DisallowRun: 908 = soft53.exe
uPolicies-DisallowRun: 709 = aa54.exe
uPolicies-DisallowRun: 809 = zip54.exe
uPolicies-DisallowRun: 909 = soft54.exe
uPolicies-DisallowRun: 710 = aa55.exe
uPolicies-DisallowRun: 810 = zip55.exe
uPolicies-DisallowRun: 910 = soft55.exe
uPolicies-DisallowRun: 711 = aa56.exe
uPolicies-DisallowRun: 811 = zip56.exe
uPolicies-DisallowRun: 911 = soft56.exe
uPolicies-DisallowRun: 712 = aa57.exe
uPolicies-DisallowRun: 812 = zip57.exe
uPolicies-DisallowRun: 912 = soft57.exe
uPolicies-DisallowRun: 713 = aa58.exe
uPolicies-DisallowRun: 813 = zip58.exe
uPolicies-DisallowRun: 913 = soft58.exe
uPolicies-DisallowRun: 714 = aa59.exe
uPolicies-DisallowRun: 814 = zip59.exe
uPolicies-DisallowRun: 914 = soft59.exe
uPolicies-DisallowRun: 715 = aa60.exe
uPolicies-DisallowRun: 815 = zip60.exe
uPolicies-DisallowRun: 915 = soft60.exe
uPolicies-DisallowRun: 716 = aa61.exe
uPolicies-DisallowRun: 816 = zip61.exe
uPolicies-DisallowRun: 916 = soft61.exe
uPolicies-DisallowRun: 717 = aa62.exe
uPolicies-DisallowRun: 817 = zip62.exe
uPolicies-DisallowRun: 917 = soft62.exe
uPolicies-DisallowRun: 718 = aa63.exe
uPolicies-DisallowRun: 818 = zip63.exe
uPolicies-DisallowRun: 918 = soft63.exe
uPolicies-DisallowRun: 719 = aa64.exe
uPolicies-DisallowRun: 819 = zip64.exe
uPolicies-DisallowRun: 919 = soft64.exe
uPolicies-DisallowRun: 720 = aa65.exe
uPolicies-DisallowRun: 820 = zip65.exe
uPolicies-DisallowRun: 920 = soft65.exe
uPolicies-DisallowRun: 721 = aa66.exe
uPolicies-DisallowRun: 821 = zip66.exe
uPolicies-DisallowRun: 921 = soft66.exe
uPolicies-DisallowRun: 722 = aa67.exe
uPolicies-DisallowRun: 822 = zip67.exe
uPolicies-DisallowRun: 922 = soft67.exe
uPolicies-DisallowRun: 723 = aa68.exe
uPolicies-DisallowRun: 823 = zip68.exe
uPolicies-DisallowRun: 923 = soft68.exe
uPolicies-DisallowRun: 724 = aa69.exe
uPolicies-DisallowRun: 824 = zip69.exe
uPolicies-DisallowRun: 924 = soft69.exe
uPolicies-DisallowRun: 725 = aa70.exe
uPolicies-DisallowRun: 825 = zip70.exe
uPolicies-DisallowRun: 925 = soft70.exe
uPolicies-DisallowRun: 726 = aa71.exe
uPolicies-DisallowRun: 826 = zip71.exe
uPolicies-DisallowRun: 926 = soft71.exe
uPolicies-DisallowRun: 727 = aa72.exe
uPolicies-DisallowRun: 827 = zip72.exe
uPolicies-DisallowRun: 927 = soft72.exe
uPolicies-DisallowRun: 728 = aa73.exe
uPolicies-DisallowRun: 828 = zip73.exe
uPolicies-DisallowRun: 928 = soft73.exe
uPolicies-DisallowRun: 729 = aa74.exe
uPolicies-DisallowRun: 829 = zip74.exe
uPolicies-DisallowRun: 929 = soft74.exe
uPolicies-DisallowRun: 730 = aa75.exe
uPolicies-DisallowRun: 830 = zip75.exe
uPolicies-DisallowRun: 930 = soft75.exe
uPolicies-DisallowRun: 731 = aa76.exe
uPolicies-DisallowRun: 831 = zip76.exe
uPolicies-DisallowRun: 931 = soft76.exe
uPolicies-DisallowRun: 732 = aa77.exe
uPolicies-DisallowRun: 832 = zip77.exe
uPolicies-DisallowRun: 932 = soft77.exe
uPolicies-DisallowRun: 733 = aa78.exe
uPolicies-DisallowRun: 833 = zip78.exe
uPolicies-DisallowRun: 933 = soft78.exe
uPolicies-DisallowRun: 734 = aa79.exe
uPolicies-DisallowRun: 834 = zip79.exe
uPolicies-DisallowRun: 934 = soft79.exe
uPolicies-DisallowRun: 735 = aa80.exe
uPolicies-DisallowRun: 835 = zip80.exe
uPolicies-DisallowRun: 935 = soft80.exe
uPolicies-DisallowRun: 736 = aa81.exe
uPolicies-DisallowRun: 836 = zip81.exe
uPolicies-DisallowRun: 936 = soft81.exe
uPolicies-DisallowRun: 737 = aa82.exe
uPolicies-DisallowRun: 837 = zip82.exe
uPolicies-DisallowRun: 937 = soft82.exe
uPolicies-DisallowRun: 738 = aa83.exe
uPolicies-DisallowRun: 838 = zip83.exe
uPolicies-DisallowRun: 938 = soft83.exe
uPolicies-DisallowRun: 739 = aa84.exe
uPolicies-DisallowRun: 839 = zip84.exe
uPolicies-DisallowRun: 939 = soft84.exe
uPolicies-DisallowRun: 740 = aa85.exe
uPolicies-DisallowRun: 840 = zip85.exe
uPolicies-DisallowRun: 940 = soft85.exe
uPolicies-DisallowRun: 741 = aa86.exe
uPolicies-DisallowRun: 841 = zip86.exe
uPolicies-DisallowRun: 941 = soft86.exe
uPolicies-DisallowRun: 742 = aa87.exe
uPolicies-DisallowRun: 842 = zip87.exe
uPolicies-DisallowRun: 942 = soft87.exe
uPolicies-DisallowRun: 743 = aa88.exe
uPolicies-DisallowRun: 843 = zip88.exe
uPolicies-DisallowRun: 943 = soft88.exe
uPolicies-DisallowRun: 744 = aa89.exe
uPolicies-DisallowRun: 844 = zip89.exe
uPolicies-DisallowRun: 944 = soft89.exe
uPolicies-DisallowRun: 745 = aa90.exe
uPolicies-DisallowRun: 845 = zip90.exe
uPolicies-DisallowRun: 945 = soft90.exe
uPolicies-DisallowRun: 746 = aa91.exe
uPolicies-DisallowRun: 846 = zip91.exe
uPolicies-DisallowRun: 946 = soft91.exe
uPolicies-DisallowRun: 747 = aa92.exe
uPolicies-DisallowRun: 847 = zip92.exe
uPolicies-DisallowRun: 947 = soft92.exe
uPolicies-DisallowRun: 748 = aa93.exe
uPolicies-DisallowRun: 848 = zip93.exe
uPolicies-DisallowRun: 948 = soft93.exe
uPolicies-DisallowRun: 749 = aa94.exe
uPolicies-DisallowRun: 849 = zip94.exe
uPolicies-DisallowRun: 949 = soft94.exe
uPolicies-DisallowRun: 750 = aa95.exe
uPolicies-DisallowRun: 850 = zip95.exe
uPolicies-DisallowRun: 950 = soft95.exe
uPolicies-DisallowRun: 751 = aa96.exe
uPolicies-DisallowRun: 851 = zip96.exe
uPolicies-DisallowRun: 951 = soft96.exe
uPolicies-DisallowRun: 752 = aa97.exe
uPolicies-DisallowRun: 852 = zip97.exe
uPolicies-DisallowRun: 952 = soft97.exe
uPolicies-DisallowRun: 753 = aa98.exe
uPolicies-DisallowRun: 853 = zip98.exe
uPolicies-DisallowRun: 953 = soft98.exe
uPolicies-DisallowRun: 754 = aa99.exe
uPolicies-DisallowRun: 854 = zip99.exe
uPolicies-DisallowRun: 954 = soft99.exe
uPolicies-DisallowRun: 955 = $sys$drv.exe
uPolicies-DisallowRun: 956 = $sys$sos$sys$.exe
uPolicies-DisallowRun: 957 = $sys$xp.exe
uPolicies-DisallowRun: 958 = ~565.exe
uPolicies-DisallowRun: 959 = 0.exe
uPolicies-DisallowRun: 960 = 004.exe
uPolicies-DisallowRun: 961 = 005.exe
uPolicies-DisallowRun: 962 = 006.exe
uPolicies-DisallowRun: 963 = 007.exe
uPolicies-DisallowRun: 964 = 007ssinstall.exe
uPolicies-DisallowRun: 965 = 008.exe
uPolicies-DisallowRun: 966 = 009.exe
uPolicies-DisallowRun: 967 = 01dopewars_update.exe
uPolicies-DisallowRun: 968 = 01logo.exe
uPolicies-DisallowRun: 969 = 04s28lat.exe
uPolicies-DisallowRun: 970 = 06qytm1a.exe
uPolicies-DisallowRun: 971 = 09857728.exe
uPolicies-DisallowRun: 972 = 1004270.exe
uPolicies-DisallowRun: 973 = 1054571.exe
uPolicies-DisallowRun: 974 = 11421604.exe
uPolicies-DisallowRun: 975 = 123bar.exe
uPolicies-DisallowRun: 976 = 123hiddensender.exe
uPolicies-DisallowRun: 977 = 12nail.exe
uPolicies-DisallowRun: 978 = 14hi1qs8.exe
uPolicies-DisallowRun: 979 = 17131762.exe
uPolicies-DisallowRun: 980 = 180ax.exe
uPolicies-DisallowRun: 981 = 180pack6480.exe
uPolicies-DisallowRun: 982 = 180sa.exe
uPolicies-DisallowRun: 983 = 180sainstallernusac.exe
uPolicies-DisallowRun: 984 = 180stuninstaller.exe
uPolicies-DisallowRun: 985 = 1lyu2k.exe
uPolicies-DisallowRun: 986 = 1o32cwjn.exe
uPolicies-DisallowRun: 987 = 2.sfx.exe.exe
uPolicies-DisallowRun: 988 = 2005.exe
uPolicies-DisallowRun: 989 = 202_app13.exe
uPolicies-DisallowRun: 990 = 26-593.exe
uPolicies-DisallowRun: 991 = 29904603.exe
uPolicies-DisallowRun: 992 = 2search.exe
uPolicies-DisallowRun: 993 = 302v2fp0.exe
uPolicies-DisallowRun: 994 = 39987557.exe
uPolicies-DisallowRun: 995 = 50cent.exe
uPolicies-DisallowRun: 996 = 53648356.svd
uPolicies-DisallowRun: 997 = 5thkf354.exe
uPolicies-DisallowRun: 998 = 63de0cc3d01
uPolicies-DisallowRun: 999 = 63mm.exe
uPolicies-DisallowRun: 1000 = 666.exe
uPolicies-DisallowRun: 1001 = 66978039.exe
uPolicies-DisallowRun: 1002 = 69254441.exe
uPolicies-DisallowRun: 1003 = 9spj1iiq.exe
uPolicies-DisallowRun: 1004 = a_clearsearch.exe
uPolicies-DisallowRun: 1005 = a0011142.exe
uPolicies-DisallowRun: 1006 = a006.exe
uPolicies-DisallowRun: 1007 = a006.exe
uPolicies-DisallowRun: 1008 = a0067423.exe
uPolicies-DisallowRun: 1009 = a0067428.exe
uPolicies-DisallowRun: 1010 = a64sddd.exe
uPolicies-DisallowRun: 1011 = abg-aceh.exe
uPolicies-DisallowRun: 1012 = abox.exe
uPolicies-DisallowRun: 1013 = abs.exe
uPolicies-DisallowRun: 1014 = absr.exe
uPolicies-DisallowRun: 1015 = access members area.exe
uPolicies-DisallowRun: 1016 = access.exe
uPolicies-DisallowRun: 1017 = accwizz.exe
uPolicies-DisallowRun: 1018 = acespy331t.exe
uPolicies-DisallowRun: 1019 = aclservice.exe
uPolicies-DisallowRun: 1020 = aconti.exe
uPolicies-DisallowRun: 1021 = actalert.exe
uPolicies-DisallowRun: 1022 = activeds.exe
uPolicies-DisallowRun: 1023 = activeplus.exe
uPolicies-DisallowRun: 1024 = activex_300_it.exe
uPolicies-DisallowRun: 1025 = actualspy.exe
uPolicies-DisallowRun: 1026 = actx1.exe
uPolicies-DisallowRun: 1027 = ad.exe
uPolicies-DisallowRun: 1028 = adaware.exe
uPolicies-DisallowRun: 1029 = adl_mteststub.exe
uPolicies-DisallowRun: 1030 = adlinstallwin32.exe
uPolicies-DisallowRun: 1031 = adm4005.exe
uPolicies-DisallowRun: 1032 = admanctl.exe
uPolicies-DisallowRun: 1033 = admilliserv.exe
uPolicies-DisallowRun: 1034 = admlib32.exe
uPolicies-DisallowRun: 1035 = adobe_flash.exe
uPolicies-DisallowRun: 1036 = adobes.exe
uPolicies-DisallowRun: 1037 = adp.exe
uPolicies-DisallowRun: 1038 = adsetup.silent.1.13.exe
uPolicies-DisallowRun: 1039 = adstatserv.exe
uPolicies-DisallowRun: 1040 = adtech2006.exe
uPolicies-DisallowRun: 1041 = adupdater.exe
uPolicies-DisallowRun: 1042 = adv.exe
uPolicies-DisallowRun: 1043 = advapi.exe
uPolicies-DisallowRun: 1044 = adx.exe
uPolicies-DisallowRun: 1045 = ahadp.exe
uPolicies-DisallowRun: 1046 = aim spy plugin.exe
uPolicies-DisallowRun: 1047 = ajrpbi.exe
uPolicies-DisallowRun: 1048 = alchem.exe
uPolicies-DisallowRun: 1049 = alevir.exe
uPolicies-DisallowRun: 1050 = alp2plib.exe
uPolicies-DisallowRun: 1051 = amero.exe
uPolicies-DisallowRun: 1052 = amp2pl.exe
uPolicies-DisallowRun: 1053 = angelex.exe
uPolicies-DisallowRun: 1054 = anti_troj.exe
uPolicies-DisallowRun: 1055 = antiav.exe
uPolicies-DisallowRun: 1056 = antispy.exe
uPolicies-DisallowRun: 1057 = antivirus update.exe
uPolicies-DisallowRun: 1058 = antivirus32.exe
uPolicies-DisallowRun: 1059 = aocbhm.exe
uPolicies-DisallowRun: 1060 = aornum.exe
uPolicies-DisallowRun: 1061 = ap0.exe
uPolicies-DisallowRun: 1062 = ap2.exe
uPolicies-DisallowRun: 1063 = apd123.exe
uPolicies-DisallowRun: 1064 = app.exe
uPolicies-DisallowRun: 1065 = appsetup.exe
uPolicies-DisallowRun: 1066 = aq3hel~1.exe
uPolicies-DisallowRun: 1067 = archive.exe
uPolicies-DisallowRun: 1068 = arr.exe
uPolicies-DisallowRun: 1069 = arupdate.exe
uPolicies-DisallowRun: 1070 = arupld32.exe
uPolicies-DisallowRun: 1071 = asd.exe
uPolicies-DisallowRun: 1072 = asearchassist.exe
uPolicies-DisallowRun: 1073 = asm.exe
uPolicies-DisallowRun: 1074 = asmonitor.exe
uPolicies-DisallowRun: 1075 = astart.exe
uPolicies-DisallowRun: 1076 = atipta.exe
uPolicies-DisallowRun: 1077 = atiupdate.exe
uPolicies-DisallowRun: 1078 = atmsvc.exe
uPolicies-DisallowRun: 1079 = aupdate_uninstall.exe
uPolicies-DisallowRun: 1080 = aurora(1).exe
uPolicies-DisallowRun: 1081 = aurora.exe
uPolicies-DisallowRun: 1082 = aurora-wise1.exe
uPolicies-DisallowRun: 1083 = ause3-decoded.exe
uPolicies-DisallowRun: 1084 = ausvc.exe
uPolicies-DisallowRun: 1085 = autoexec.exe
uPolicies-DisallowRun: 1086 = automove.exe
uPolicies-DisallowRun: 1087 = autoupdatev2.exe
uPolicies-DisallowRun: 1088 = aux32.exe
uPolicies-DisallowRun: 1089 = av.exe
uPolicies-DisallowRun: 1090 = avghalsb.exe
uPolicies-DisallowRun: 1091 = avserve.exe
uPolicies-DisallowRun: 1092 = avserve2.exe
uPolicies-DisallowRun: 1093 = b2search_v17.exe
uPolicies-DisallowRun: 1094 = backdoor.prorat.13.exe
uPolicies-DisallowRun: 1095 = backdoor.prorat.13_(57).exe
uPolicies-DisallowRun: 1096 = backup-20040105-225929-414.exe
uPolicies-DisallowRun: 1097 = backweb.exe
uPolicies-DisallowRun: 1098 = banmanpro.exe
uPolicies-DisallowRun: 1099 = bargain3.exe
uPolicies-DisallowRun: 1100 = bargain4.exe
uPolicies-DisallowRun: 1101 = bargainbuddy.exe
uPolicies-DisallowRun: 1102 = bargains.exe
uPolicies-DisallowRun: 1103 = basfipm.exe
uPolicies-DisallowRun: 1104 = bazzi.exe
uPolicies-DisallowRun: 1105 = bb.exe
uPolicies-DisallowRun: 1106 = bbchk.exe
uPolicies-DisallowRun: 1107 = bbfbeola.exe
uPolicies-DisallowRun: 1108 = bbi8015.exe
uPolicies-DisallowRun: 1109 = bbi8018.exe
uPolicies-DisallowRun: 1110 = bbi8032.exe
uPolicies-DisallowRun: 1111 = bbntqcbw.exe
uPolicies-DisallowRun: 1112 = bboy.exe
uPolicies-DisallowRun: 1113 = bdrqbac.exe
uPolicies-DisallowRun: 1114 = bedo9iz1.exe
uPolicies-DisallowRun: 1115 = belt.exe
uPolicies-DisallowRun: 1116 = berasjatah.exe
uPolicies-DisallowRun: 1117 = beta.exe
uPolicies-DisallowRun: 1118 = bhp.exe
uPolicies-DisallowRun: 1119 = bhsv.exe
uPolicies-DisallowRun: 1120 = bi5.exe
uPolicies-DisallowRun: 1121 = bifrost.exe
uPolicies-DisallowRun: 1122 = bil.exe
uPolicies-DisallowRun: 1123 = bindshell.exe
uPolicies-DisallowRun: 1124 = bionet.exe
uPolicies-DisallowRun: 1125 = bk.exe
uPolicies-DisallowRun: 1126 = block-checker.exe
uPolicies-DisallowRun: 1127 = blondes.exe
uPolicies-DisallowRun: 1128 = bloodhound.exe
uPolicies-DisallowRun: 1129 = blss.exe
uPolicies-DisallowRun: 1130 = bman.exe
uPolicies-DisallowRun: 1131 = bml8pjp7.exe
uPolicies-DisallowRun: 1132 = bmupdate.exe
uPolicies-DisallowRun: 1133 = bokja.exe
uPolicies-DisallowRun: 1134 = bookedspace.exe
uPolicies-DisallowRun: 1135 = boot.exe
uPolicies-DisallowRun: 1136 = bootconf.exe
uPolicies-DisallowRun: 1137 = bot.exe
uPolicies-DisallowRun: 1138 = bp.exe
uPolicies-DisallowRun: 1139 = bpc.exe
uPolicies-DisallowRun: 1140 = safesys.exe
uPolicies-DisallowRun: 1141 = bpsinstall.exe
uPolicies-DisallowRun: 1142 = brasil.exe
uPolicies-DisallowRun: 1143 = brengkolang.com
uPolicies-DisallowRun: 1144 = bronstab.exe
uPolicies-DisallowRun: 1145 = bsoft.exe
uPolicies-DisallowRun: 1146 = buddy.exe
uPolicies-DisallowRun: 1147 = bugsfix.exe
uPolicies-DisallowRun: 1148 = bundle.exe
uPolicies-DisallowRun: 1149 = bundle~1.exe
uPolicies-DisallowRun: 1150 = bundleouter.exe
uPolicies-DisallowRun: 1151 = bundleouter2501031120.exe
uPolicies-DisallowRun: 1152 = bundleouter2601031121.exe
uPolicies-DisallowRun: 1153 = bundles.exe
uPolicies-DisallowRun: 1154 = bundles118.exe
uPolicies-DisallowRun: 1155 = bxproxy.exe
uPolicies-DisallowRun: 1156 = camviewer.exe
uPolicies-DisallowRun: 1157 = card.exe
uPolicies-DisallowRun: 1158 = cartao.exe
uPolicies-DisallowRun: 1159 = cas2stub.exe
uPolicies-DisallowRun: 1160 = casclient.exe
uPolicies-DisallowRun: 1161 = cashsaverupdate.exe
uPolicies-DisallowRun: 1162 = cb.exe
uPolicies-DisallowRun: 1163 = cc.exe
uPolicies-DisallowRun: 1164 = cd_install.exe
uPolicies-DisallowRun: 1165 = cd_install_291.exe
uPolicies-DisallowRun: 1166 = cd_load.exe
uPolicies-DisallowRun: 1167 = cd5a8b2bd01
uPolicies-DisallowRun: 1168 = cdaengine
uPolicies-DisallowRun: 1169 = cdaengine0500
uPolicies-DisallowRun: 1170 = cdf.exe
uPolicies-DisallowRun: 1171 = cds.exe
uPolicies-DisallowRun: 1172 = cdsm32.exe
uPolicies-DisallowRun: 1173 = cfgmgr52.exe
uPolicies-DisallowRun: 1174 = cfmon.exe
uPolicies-DisallowRun: 1175 = cg.exe
uPolicies-DisallowRun: 1176 = cgtask.exe
uPolicies-DisallowRun: 1177 = check.exe
uPolicies-DisallowRun: 1178 = checkreg.exe
uPolicies-DisallowRun: 1179 = checkup.exe
uPolicies-DisallowRun: 1180 = chkntsv.exe
uPolicies-DisallowRun: 1181 = chkras.exe
uPolicies-DisallowRun: 1182 = choke.exe
uPolicies-DisallowRun: 1183 = chq7gv5g.exe
uPolicies-DisallowRun: 1184 = cisvvc.exe
uPolicies-DisallowRun: 1185 = cjqxe.exe
uPolicies-DisallowRun: 1186 = ckusdll.exe
uPolicies-DisallowRun: 1187 = clbcatex.exe
uPolicies-DisallowRun: 1188 = client.exe
uPolicies-DisallowRun: 1189 = clientax.exe
uPolicies-DisallowRun: 1190 = cm.exe
uPolicies-DisallowRun: 1191 = cmappsetup.exe
uPolicies-DisallowRun: 1192 = cmappupdate.exe
uPolicies-DisallowRun: 1193 = cmd32.exe
uPolicies-DisallowRun: 1194 = cmdinst.exe
uPolicies-DisallowRun: 1195 = cmesys.exe
uPolicies-DisallowRun: 1196 = cmeupd.exe
uPolicies-DisallowRun: 1197 = cmman.exe
uPolicies-DisallowRun: 1198 = cmqcemmpm.exe
uPolicies-DisallowRun: 1199 = cmrsr.exe
uPolicies-DisallowRun: 1200 = cmrss.exe
uPolicies-DisallowRun: 1201 = cmsystem.exe
uPolicies-DisallowRun: 1202 = cnqmax.exe
uPolicies-DisallowRun: 1203 = codecsetup.exe
uPolicies-DisallowRun: 1204 = comctl_32.exe
uPolicies-DisallowRun: 1205 = commando.exe
uPolicies-DisallowRun: 1206 = conscorr.exe
uPolicies-DisallowRun: 1207 = consol32.exe
uPolicies-DisallowRun: 1208 = cool.exe
uPolicies-DisallowRun: 1209 = copy of optimize.exe
uPolicies-DisallowRun: 1210 = corpstats.exe
uPolicies-DisallowRun: 1211 = cp.exe
uPolicies-DisallowRun: 1212 = cpanel.exe
uPolicies-DisallowRun: 1213 = cpr.exe
uPolicies-DisallowRun: 1214 = crackserver-service.exe
uPolicies-DisallowRun: 1215 = crmss.exe
uPolicies-DisallowRun: 1216 = crss.exe
uPolicies-DisallowRun: 1217 = crsss.exe
uPolicies-DisallowRun: 1218 = cryptfg.exe
uPolicies-DisallowRun: 1219 = csaolinst.exe
uPolicies-DisallowRun: 1220 = csaolldr.exe
uPolicies-DisallowRun: 1221 = csbiinst.exe
uPolicies-DisallowRun: 1222 = csieinst.exe
uPolicies-DisallowRun: 1223 = csmsv.exe
uPolicies-DisallowRun: 1224 = csrcs.exe
uPolicies-DisallowRun: 1225 = csrdeu32.exe
uPolicies-DisallowRun: 1226 = csrrs.exe
uPolicies-DisallowRun: 1227 = csrs.exe
uPolicies-DisallowRun: 1228 = csrsc.exe
uPolicies-DisallowRun: 1229 = csrse.exe
uPolicies-DisallowRun: 1230 = csrss32.exe
uPolicies-DisallowRun: 1231 = ctfmon32.exe
uPolicies-DisallowRun: 1232 = cucu.exe
uPolicies-DisallowRun: 1233 = cxq8ojka.exe
uPolicies-DisallowRun: 1234 = cxtpls.exe
uPolicies-DisallowRun: 1235 = cydoor.exe
uPolicies-DisallowRun: 1236 = cydoor_uninstall.exe
uPolicies-DisallowRun: 1237 = cz.exe
uPolicies-DisallowRun: 1238 = czncin.exe
uPolicies-DisallowRun: 1239 = d.exe
uPolicies-DisallowRun: 1240 = d6.exe
uPolicies-DisallowRun: 1241 = data2.exe
uPolicies-DisallowRun: 1242 = data3.exe
uPolicies-DisallowRun: 1243 = datemanager.exe
uPolicies-DisallowRun: 1244 = dbaccess.exe
uPolicies-DisallowRun: 1245 = dc1.exe
uPolicies-DisallowRun: 1246 = dc37.exe
uPolicies-DisallowRun: 1247 = dc38.exe
uPolicies-DisallowRun: 1248 = dc39.exe
uPolicies-DisallowRun: 1249 = dc42.exe
uPolicies-DisallowRun: 1250 = dc43.exe
uPolicies-DisallowRun: 1251 = dc44.exe
uPolicies-DisallowRun: 1252 = dc82.exe
uPolicies-DisallowRun: 1253 = dc83.exe
uPolicies-DisallowRun: 1254 = dc84.exe
uPolicies-DisallowRun: 1255 = dc85.exe
uPolicies-DisallowRun: 1256 = dc86.exe
uPolicies-DisallowRun: 1257 = dcomcfg.exe
uPolicies-DisallowRun: 1258 = dcomx.exe
uPolicies-DisallowRun: 1259 = ddcman.exe
uPolicies-DisallowRun: 1260 = dealhelper.exe
uPolicies-DisallowRun: 1261 = delmsbb.exe
uPolicies-DisallowRun: 1262 = deskadkeep.exe
uPolicies-DisallowRun: 1263 = deskadserv.exe
uPolicies-DisallowRun: 1264 = desktop.exe
uPolicies-DisallowRun: 1265 = dfe.exe
uPolicies-DisallowRun: 1266 = dfrgsrv.exe
uPolicies-DisallowRun: 1267 = dgwojz0h.exe
uPolicies-DisallowRun: 1268 = dhbrwsr.exe
uPolicies-DisallowRun: 1269 = dho.exe
uPolicies-DisallowRun: 1270 = dhupdt.exe
uPolicies-DisallowRun: 1271 = dial.exe
uPolicies-DisallowRun: 1272 = dinst.exe
uPolicies-DisallowRun: 1273 = dioxin.exe
uPolicies-DisallowRun: 1274 = directs.exe
uPolicies-DisallowRun: 1275 = directx.exe
uPolicies-DisallowRun: 1276 = directxset.exe
uPolicies-DisallowRun: 1277 = disp1150.exe
uPolicies-DisallowRun: 1278 = display.exe
uPolicies-DisallowRun: 1279 = divx.exe
uPolicies-DisallowRun: 1280 = dlgli.exe
uPolicies-DisallowRun: 1281 = dlhost.exe
uPolicies-DisallowRun: 1282 = dll32.exe
uPolicies-DisallowRun: 1283 = dllreg.exe
uPolicies-DisallowRun: 1284 = dmserver.exe
uPolicies-DisallowRun: 1285 = dodrrr.exe
uPolicies-DisallowRun: 1286 = down.exe
uPolicies-DisallowRun: 1287 = download.exe
uPolicies-DisallowRun: 1288 = downloadplus.exe
uPolicies-DisallowRun: 1289 = dp-b23011805.exe
uPolicies-DisallowRun: 1290 = dpul6zoa.exe
uPolicies-DisallowRun: 1291 = dr.exe
uPolicies-DisallowRun: 1292 = dr_s.exe
uPolicies-DisallowRun: 1293 = drpmon(1).exe
uPolicies-DisallowRun: 1294 = drpmon.exe
uPolicies-DisallowRun: 1295 = drv.exe
uPolicies-DisallowRun: 1296 = drvddll.exe
uPolicies-DisallowRun: 1297 = drwtsn16.exe
uPolicies-DisallowRun: 1298 = ds.exe
uPolicies-DisallowRun: 1299 = dscbtshl.exe
uPolicies-DisallowRun: 1300 = dssagent.exe
uPolicies-DisallowRun: 1301 = dtloader.exe
uPolicies-DisallowRun: 1302 = duel.exe
uPolicies-DisallowRun: 1303 = dun.exe
uPolicies-DisallowRun: 1304 = dvbern.exe
uPolicies-DisallowRun: 1305 = dvchost.exe
uPolicies-DisallowRun: 1306 = dvdkeyauth.exe
uPolicies-DisallowRun: 1307 = dvldr32.exe
uPolicies-DisallowRun: 1308 = dvwnhd.exe
uPolicies-DisallowRun: 1309 = dw.exe
uPolicies-DisallowRun: 1310 = dwcg.exe
uPolicies-DisallowRun: 1311 = dwe.exe
uPolicies-DisallowRun: 1312 = dwnupdt.exe
uPolicies-DisallowRun: 1313 = usbautotuner.exe
uPolicies-DisallowRun: 1314 = dxnf.exe
uPolicies-DisallowRun: 1315 = e85b8fb2d01.exe
uPolicies-DisallowRun: 1316 = easy.windows.monitoring.exe
uPolicies-DisallowRun: 1317 = easyav.exe
uPolicies-DisallowRun: 1318 = ecodec.exe
uPolicies-DisallowRun: 1319 = edit server.exe
uPolicies-DisallowRun: 1320 = ee.exe
uPolicies-DisallowRun: 1321 = ee1a8f91d01.exe
uPolicies-DisallowRun: 1322 = ee248fa7d01.exe
uPolicies-DisallowRun: 1323 = eeea8fa3d01.exe
uPolicies-DisallowRun: 1324 = eeef8fa2d01.exe
uPolicies-DisallowRun: 1325 = eetu.exe
uPolicies-DisallowRun: 1326 = eksplorasi.exe
uPolicies-DisallowRun: 1327 = elos.exe
uPolicies-DisallowRun: 1328 = eml.exe
uPolicies-DisallowRun: 1329 = emsw.exe
uPolicies-DisallowRun: 1330 = enbiei.exe
uPolicies-DisallowRun: 1331 = enuubwafo.exe
uPolicies-DisallowRun: 1332 = epswad4.exe
uPolicies-DisallowRun: 1333 = errorguard.exe
uPolicies-DisallowRun: 1334 = ers.exe
uPolicies-DisallowRun: 1335 = ersvc.exe
uPolicies-DisallowRun: 1336 = escan.exe
uPolicies-DisallowRun: 1337 = esyndicateinst.exe
uPolicies-DisallowRun: 1338 = evr8gkxb.exe
uPolicies-DisallowRun: 1339 = exchng32.exe
uPolicies-DisallowRun: 1340 = exclean.exe
uPolicies-DisallowRun: 1341 = exdl.exe
uPolicies-DisallowRun: 1342 = exec.exe
uPolicies-DisallowRun: 1343 = exp.exe
uPolicies-DisallowRun: 1344 = expl32.exe
uPolicies-DisallowRun: 1345 = explore.exe
uPolicies-DisallowRun: 1346 = explored.exe
uPolicies-DisallowRun: 1347 = exploreff.exe
uPolicies-DisallowRun: 1348 = explorer32.exe
uPolicies-DisallowRun: 1349 = explorere.exe
uPolicies-DisallowRun: 1350 = exul.exe
uPolicies-DisallowRun: 1351 = ezinstall.exe
uPolicies-DisallowRun: 1352 = ezpopstub.exe
uPolicies-DisallowRun: 1353 = ezstub.exe
uPolicies-DisallowRun: 1354 = ezstub22.exe
uPolicies-DisallowRun: 1355 = ezulumain.exe
uPolicies-DisallowRun: 1356 = f3403484.exe
uPolicies-DisallowRun: 1357 = f4bbfeaed01
uPolicies-DisallowRun: 1358 = farmmext.exe
uPolicies-DisallowRun: 1359 = fash.exe
uPolicies-DisallowRun: 1360 = fasterxp.exe
uPolicies-DisallowRun: 1361 = fbi_facebook.exe
uPolicies-DisallowRun: 1362 = fc.exe
uPolicies-DisallowRun: 1363 = fixtitle.exe
uPolicies-DisallowRun: 1364 = fjdbfvk.exe
uPolicies-DisallowRun: 1365 = flashtalk-wise1000.exe
uPolicies-DisallowRun: 1366 = fntldr.exe
uPolicies-DisallowRun: 1367 = fontloader.exe
uPolicies-DisallowRun: 1368 = fontview.exe
uPolicies-DisallowRun: 1369 = formulario.exe
uPolicies-DisallowRun: 1370 = fph.exe
uPolicies-DisallowRun: 1371 = fqc.exe
uPolicies-DisallowRun: 1372 = freexxx.exe
uPolicies-DisallowRun: 1373 = frsk.exe
uPolicies-DisallowRun: 1374 = fservice.exe
uPolicies-DisallowRun: 1375 = fsg.exe
uPolicies-DisallowRun: 1376 = fsg_4104.exe
uPolicies-DisallowRun: 1377 = fsjyhc5r.exe
uPolicies-DisallowRun: 1378 = fsw.exe
uPolicies-DisallowRun: 1379 = fullgames.exe
uPolicies-DisallowRun: 1380 = fuwxenc.exe
uPolicies-DisallowRun: 1381 = fvprotect.exe
uPolicies-DisallowRun: 1382 = g181511.a.stub.exe
uPolicies-DisallowRun: 1383 = g4eyp3kf.exe
uPolicies-DisallowRun: 1384 = gaedzsxe.exe
uPolicies-DisallowRun: 1385 = gah95on6.exe
uPolicies-DisallowRun: 1386 = gain_trickler_3102.exe
uPolicies-DisallowRun: 1387 = gain_trickler_3202.exe
uPolicies-DisallowRun: 1388 = my music.exe
uPolicies-DisallowRun: 1389 = gateway.exe
uPolicies-DisallowRun: 1390 = gator.exe
uPolicies-DisallowRun: 1391 = gatorstubsetup.exe
uPolicies-DisallowRun: 1392 = get.exe
uPolicies-DisallowRun: 1393 = get_flash_update.exe
uPolicies-DisallowRun: 1394 = getbuys.exe
uPolicies-DisallowRun: 1395 = gfjgj.exe
uPolicies-DisallowRun: 1396 = ghost.bat
uPolicies-DisallowRun: 1397 = ginst_001_1234_4201.exe
uPolicies-DisallowRun: 1398 = gld.exe
uPolicies-DisallowRun: 1399 = glf2fglf2f.exe
uPolicies-DisallowRun: 1400 = gm.exe
uPolicies-DisallowRun: 1401 = gmt.exe
uPolicies-DisallowRun: 1402 = gogoaddisplay.exe
uPolicies-DisallowRun: 1403 = gogoaddressbar.exe
uPolicies-DisallowRun: 1404 = gogofileshare.exe
uPolicies-DisallowRun: 1405 = gogotoolbar.exe
uPolicies-DisallowRun: 1406 = gogotools.exe
uPolicies-DisallowRun: 1407 = gogotools0.exe
uPolicies-DisallowRun: 1408 = gogotoolsinstaller.exe
uPolicies-DisallowRun: 1409 = gsohy92a.exe
uPolicies-DisallowRun: 1410 = gstartup.exe
uPolicies-DisallowRun: 1411 = szace.exe
uPolicies-DisallowRun: 1412 = guninstaller.exe
uPolicies-DisallowRun: 1413 = h2g140n1.exe
uPolicies-DisallowRun: 1414 = hacker.exe
uPolicies-DisallowRun: 1415 = haiyang.exe
uPolicies-DisallowRun: 1416 = hbinst.exe
uPolicies-DisallowRun: 1417 = hbtv.exe
uPolicies-DisallowRun: 1418 = heat.exe
uPolicies-DisallowRun: 1419 = hellmsn.exe
uPolicies-DisallowRun: 1420 = helpexp.exe
uPolicies-DisallowRun: 1421 = hgfedcba.exe
uPolicies-DisallowRun: 1422 = hgqhp.exe
uPolicies-DisallowRun: 1423 = hhs32.pif
uPolicies-DisallowRun: 1424 = hidden32.exe
uPolicies-DisallowRun: 1425 = hidedown.exe
uPolicies-DisallowRun: 1426 = hidr.exe
uPolicies-DisallowRun: 1427 = hloader.exe
uPolicies-DisallowRun: 1428 = hnm_svc.exe
uPolicies-DisallowRun: 1429 = hookdump.exe
uPolicies-DisallowRun: 1430 = host.exe
uPolicies-DisallowRun: 1431 = hot.exe
uPolicies-DisallowRun: 1432 = hot_tarts_mc.exe
uPolicies-DisallowRun: 1433 = hprog.exe
uPolicies-DisallowRun: 1434 = hro.exe
uPolicies-DisallowRun: 1435 = htmdeng.exe
uPolicies-DisallowRun: 1436 = hwclock.exe
uPolicies-DisallowRun: 1437 = hxdef.exe
uPolicies-DisallowRun: 1438 = hxdl.exe
uPolicies-DisallowRun: 1439 = hxiul.exe
uPolicies-DisallowRun: 1440 = i3k0hgad.exe
uPolicies-DisallowRun: 1441 = ibm00001.exe
uPolicies-DisallowRun: 1442 = icon.exe
uPolicies-DisallowRun: 1443 = idemlog.exe
uPolicies-DisallowRun: 1444 = idleui.exe
uPolicies-DisallowRun: 1445 = iebtm.exe
uPolicies-DisallowRun: 1446 = iedll.exe
uPolicies-DisallowRun: 1447 = iedriver.exe
uPolicies-DisallowRun: 1448 = iegator.exe
uPolicies-DisallowRun: 1449 = iehost.exe
uPolicies-DisallowRun: 1450 = iep.exe
uPolicies-DisallowRun: 1451 = iesetup.exe
uPolicies-DisallowRun: 1452 = iexpiore.exe
uPolicies-DisallowRun: 1453 = iexplor32.exe
uPolicies-DisallowRun: 1454 = iexplore32.exe
uPolicies-DisallowRun: 1455 = iexplorer.exe
uPolicies-DisallowRun: 1456 = igetnet_3845_3645.exe
uPolicies-DisallowRun: 1457 = igps.exe
uPolicies-DisallowRun: 1458 = igpsdon6.exe
uPolicies-DisallowRun: 1459 = iinstall.exe
uPolicies-DisallowRun: 1460 = im_2.exe
uPolicies-DisallowRun: 1461 = imguninst.exe
uPolicies-DisallowRun: 1462 = infoctl.exe
uPolicies-DisallowRun: 1463 = infus.exe
uPolicies-DisallowRun: 1464 = infwin.exe
uPolicies-DisallowRun: 1465 = init32m.exe
uPolicies-DisallowRun: 1466 = ink.exe
uPolicies-DisallowRun: 1467 = inst.exe
uPolicies-DisallowRun: 1468 = install1.exe
uPolicies-DisallowRun: 1469 = installdatemanager.exe
uPolicies-DisallowRun: 1470 = installer1.exe
uPolicies-DisallowRun: 1471 = instant access.exe
uPolicies-DisallowRun: 1472 = intdel.exe
uPolicies-DisallowRun: 1473 = intel32.exe
uPolicies-DisallowRun: 1474 = intell321.exe
uPolicies-DisallowRun: 1475 = intenat.exe
uPolicies-DisallowRun: 1476 = internet.exe
uPolicies-DisallowRun: 1477 = internetfeatures.exe
uPolicies-DisallowRun: 1478 = ipfw.exe
uPolicies-DisallowRun: 1479 = ipu.exe
uPolicies-DisallowRun: 1480 = ipwins.exe
uPolicies-DisallowRun: 1481 = irasyncd.exe
uPolicies-DisallowRun: 1482 = iroffer.exe
uPolicies-DisallowRun: 1483 = isamini.exe
uPolicies-DisallowRun: 1484 = isamntr.exe
uPolicies-DisallowRun: 1485 = isamonitor.exe
uPolicies-DisallowRun: 1486 = isass.exe
uPolicies-DisallowRun: 1487 = ishost.exe
uPolicies-DisallowRun: 1488 = isinstalldonecrazy.exe
uPolicies-DisallowRun: 1489 = ismon.exe
uPolicies-DisallowRun: 1490 = isnotify.exe
uPolicies-DisallowRun: 1491 = ispsupport.exe
uPolicies-DisallowRun: 1492 = issearch.exe
uPolicies-DisallowRun: 1493 = istsvc.exe
uPolicies-DisallowRun: 1494 = itbill.exe
uPolicies-DisallowRun: 1495 = itphwd.exe
uPolicies-DisallowRun: 1496 = iwatch.exe
uPolicies-DisallowRun: 1497 = j4g8w5m8.exe
uPolicies-DisallowRun: 1498 = j7k8ug16.exe
uPolicies-DisallowRun: 1499 = j95i15ei.exe
uPolicies-DisallowRun: 1500 = jabber.exe
uPolicies-DisallowRun: 1501 = jammer2nd.exe
uPolicies-DisallowRun: 1502 = jawa32.exe
uPolicies-DisallowRun: 1503 = jdbgmrg.exe
uPolicies-DisallowRun: 1504 = jif.exe
uPolicies-DisallowRun: 1505 = jkill.exe
uPolicies-DisallowRun: 1506 = jmnmxr.exe
uPolicies-DisallowRun: 1507 = jnfdtdi.exe
uPolicies-DisallowRun: 1508 = jq34042x.exe
uPolicies-DisallowRun: 1509 = jre4i3q6.exe
uPolicies-DisallowRun: 1510 = jushed32.exe
uPolicies-DisallowRun: 1511 = jxcevib2.exe
uPolicies-DisallowRun: 1512 = k4eboy6.exe
uPolicies-DisallowRun: 1513 = kaboom.exe
uPolicies-DisallowRun: 1514 = kahlisetup_demo.exe
uPolicies-DisallowRun: 1515 = kane.exe
uPolicies-DisallowRun: 1516 = kazza.exe
uPolicies-DisallowRun: 1517 = kb021119.exe
uPolicies-DisallowRun: 1518 = keenvalue.exe
uPolicies-DisallowRun: 1519 = kernal32.exe
uPolicies-DisallowRun: 1520 = kerne1412.exe
uPolicies-DisallowRun: 1521 = kernel32.exe
uPolicies-DisallowRun: 1522 = kernels32.exe
uPolicies-DisallowRun: 1523 = kernels64.exe
uPolicies-DisallowRun: 1524 = keu2zfke.exe
uPolicies-DisallowRun: 1525 = keylogger plugin.exe
uPolicies-DisallowRun: 1526 = keyword.exe
uPolicies-DisallowRun: 1527 = kl.exe
uPolicies-DisallowRun: 1528 = kmwoa.exe
uPolicies-DisallowRun: 1529 = kmwol.exe
uPolicies-DisallowRun: 1530 = kmwop.exe
uPolicies-DisallowRun: 1531 = knuzql.exe
uPolicies-DisallowRun: 1532 = krxz.exe
uPolicies-DisallowRun: 1533 = l6y07fu5.exe
uPolicies-DisallowRun: 1534 = lass.exe
uPolicies-DisallowRun: 1535 = launchadware.exe
uPolicies-DisallowRun: 1536 = layer.exe
uPolicies-DisallowRun: 1537 = lcc.exe
uPolicies-DisallowRun: 1538 = lex.exe
uPolicies-DisallowRun: 1539 = lexplore.exe
uPolicies-DisallowRun: 1540 = license_manager.exe
uPolicies-DisallowRun: 1541 = bmonq.exe
uPolicies-DisallowRun: 1542 = live.exe
uPolicies-DisallowRun: 1543 = lmu.exe
uPolicies-DisallowRun: 1544 = load.exe
uPolicies-DisallowRun: 1545 = load32.exe
uPolicies-DisallowRun: 1546 = loader(1).exe
uPolicies-DisallowRun: 1547 = l26.exe
uPolicies-DisallowRun: 1548 = loader[1].exe
uPolicies-DisallowRun: 1549 = lockx.exe
uPolicies-DisallowRun: 1550 = lodctr32.exe
uPolicies-DisallowRun: 1551 = Duel_v2.exe
uPolicies-DisallowRun: 1552 = logon.exe
uPolicies-DisallowRun: 1553 = loud.exe
uPolicies-DisallowRun: 1554 = lp.exe
uPolicies-DisallowRun: 1555 = lsa.exe
uPolicies-DisallowRun: 1556 = lsas.exe
uPolicies-DisallowRun: 1557 = lsass32.exe
uPolicies-DisallowRun: 1558 = lsassa.exe
uPolicies-DisallowRun: 1559 = lssas.exe
uPolicies-DisallowRun: 1560 = lsserv.exe
uPolicies-DisallowRun: 1561 = ma.exe
uPolicies-DisallowRun: 1562 = mahtfi.exe
uPolicies-DisallowRun: 1563 = mapisvc32.exe
uPolicies-DisallowRun: 1564 = mario.exe
uPolicies-DisallowRun: 1565 = matcli.exe
uPolicies-DisallowRun: 1566 = mcafee.update.exe.exe
uPolicies-DisallowRun: 1567 = mcf.exe
uPolicies-DisallowRun: 1568 = md.exe
uPolicies-DisallowRun: 1569 = mdms.exe
uPolicies-DisallowRun: 1570 = me.exe
uPolicies-DisallowRun: 1571 = medgs1.exe
uPolicies-DisallowRun: 1572 = mediaaccess.exe
uPolicies-DisallowRun: 1573 = mediaaccessinstpack.exe
uPolicies-DisallowRun: 1574 = mediaacck.exe
uPolicies-DisallowRun: 1575 = mediagateway.exe
uPolicies-DisallowRun: 1576 = mediaman.exe
uPolicies-DisallowRun: 1577 = mediapass.exe
uPolicies-DisallowRun: 1578 = mediapassk.exe
uPolicies-DisallowRun: 1579 = members-area.exe
uPolicies-DisallowRun: 1580 = memorymeter.exe
uPolicies-DisallowRun: 1581 = menu.exe
uPolicies-DisallowRun: 1582 = mfc71.exe
uPolicies-DisallowRun: 1583 = mfin32.exe
uPolicies-DisallowRun: 1584 = mfx8k065.exe
uPolicies-DisallowRun: 1585 = microsystem.exe
uPolicies-DisallowRun: 1586 = minibug.exe
uPolicies-DisallowRun: 1587 = mirc32.exe
uPolicies-DisallowRun: 1588 = mirindaa1i.exe
uPolicies-DisallowRun: 1589 = mirror_plugin.exe
uPolicies-DisallowRun: 1590 = mksc.exe
uPolicies-DisallowRun: 1591 = mm.exe
uPolicies-DisallowRun: 1592 = mm15201518.stub.exe
uPolicies-DisallowRun: 1593 = mmbun.exe
uPolicies-DisallowRun: 1594 = mmm.exe
uPolicies-DisallowRun: 1595 = mmod.exe
uPolicies-DisallowRun: 1596 = mmsg.exe
uPolicies-DisallowRun: 1597 = mmups.exe
uPolicies-DisallowRun: 1598 = mnss.exe
uPolicies-DisallowRun: 1599 = mostat.exe
uPolicies-DisallowRun: 1600 = mousedrv.exe
uPolicies-DisallowRun: 1601 = mp3serch.exe
uPolicies-DisallowRun: 1602 = mp7eq7hx.exe
uPolicies-DisallowRun: 1603 = mrjj.exe
uPolicies-DisallowRun: 1604 = mrtstub.exe
uPolicies-DisallowRun: 1605 = msaa.exe
uPolicies-DisallowRun: 1606 = msapp.exe
uPolicies-DisallowRun: 1607 = msbb.exe
uPolicies-DisallowRun: 1608 = msbb[1].exe
uPolicies-DisallowRun: 1609 = msblast.exe
uPolicies-DisallowRun: 1610 = msc32.exe
uPolicies-DisallowRun: 1611 = mscache.exe
uPolicies-DisallowRun: 1612 = msccn32.exe
uPolicies-DisallowRun: 1613 = msckin.exe
uPolicies-DisallowRun: 1614 = mscman.exe
uPolicies-DisallowRun: 1615 = mscnsz.exe
uPolicies-DisallowRun: 1616 = mscommand.exe
uPolicies-DisallowRun: 1617 = msconfgh.exe
uPolicies-DisallowRun: 1618 = msconfig32.exe
uPolicies-DisallowRun: 1619 = mscornet.exe
uPolicies-DisallowRun: 1620 = mscvb32.exe
uPolicies-DisallowRun: 1621 = msdm.exe
uPolicies-DisallowRun: 1622 = msexreg.exe
uPolicies-DisallowRun: 1623 = msgdmf.exe
uPolicies-DisallowRun: 1624 = msgfix.exe
uPolicies-DisallowRun: 1625 = msgrsv32.exe
uPolicies-DisallowRun: 1626 = msiexec16.exe
uPolicies-DisallowRun: 1627 = msinfo.exe
uPolicies-DisallowRun: 1628 = mslagent.exe
uPolicies-DisallowRun: 1629 = mslaugh.exe
uPolicies-DisallowRun: 1630 = msmc.exe
uPolicies-DisallowRun: 1631 = msmgs.exe
uPolicies-DisallowRun: 1632 = msmgt.exe
uPolicies-DisallowRun: 1633 = msmm.exe
uPolicies-DisallowRun: 1634 = msmsg.exe
uPolicies-DisallowRun: 1635 = msnlive.exe
uPolicies-DisallowRun: 1636 = msnst32.exe
uPolicies-DisallowRun: 1637 = msole32.exe
uPolicies-DisallowRun: 1638 = mspath.exe
uPolicies-DisallowRun: 1639 = mspmspv.exe
uPolicies-DisallowRun: 1640 = msrexe.exe
uPolicies-DisallowRun: 1641 = mssearchnet.exe
uPolicies-DisallowRun: 1642 = mssecure.exe
uPolicies-DisallowRun: 1643 = msshed32.exe
uPolicies-DisallowRun: 1644 = mssvc32.exe
uPolicies-DisallowRun: 1645 = mssvr.exe
uPolicies-DisallowRun: 1646 = mssys.exe
uPolicies-DisallowRun: 1647 = mstasks.exe
uPolicies-DisallowRun: 1648 = mstc.exe
uPolicies-DisallowRun: 1649 = mstcs.exe
uPolicies-DisallowRun: 1650 = msupdate.exe
uPolicies-DisallowRun: 1651 = msvc32.exe
uPolicies-DisallowRun: 1652 = msvcrl.exe
uPolicies-DisallowRun: 1653 = msvgr.exe
uPolicies-DisallowRun: 1654 = msvxd.exe
uPolicies-DisallowRun: 1655 = msw.exe
uPolicies-DisallowRun: 1656 = mswin32.exe
uPolicies-DisallowRun: 1657 = mswinb32.exe
uPolicies-DisallowRun: 1658 = msxct.exe
uPolicies-DisallowRun: 1659 = mt.exe
uPolicies-DisallowRun: 1660 = mtask.exe
uPolicies-DisallowRun: 1661 = mtjuhp.exe
uPolicies-DisallowRun: 1662 = mudsc.exe
uPolicies-DisallowRun: 1663 = murphy.exe
uPolicies-DisallowRun: 1664 = mwd.exe
uPolicies-DisallowRun: 1665 = mwfirewall.exe
uPolicies-DisallowRun: 1666 = mwsoemon.exe
uPolicies-DisallowRun: 1667 = mwsvm.exe
uPolicies-DisallowRun: 1668 = mypcsearch.exe
uPolicies-DisallowRun: 1669 = mysearch2.0.exe
uPolicies-DisallowRun: 1670 = mysetp.exe
uPolicies-DisallowRun: 1671 = myurlff.exe
uPolicies-DisallowRun: 1672 = myurlsagain.exe
uPolicies-DisallowRun: 1673 = n.exe
uPolicies-DisallowRun: 1674 = n1hvjmy9.exe
uPolicies-DisallowRun: 1675 = n20050308.exe
uPolicies-DisallowRun: 1676 = nail(1).exe
uPolicies-DisallowRun: 1677 = nail.exe
uPolicies-DisallowRun: 1678 = namedpipe.exe
uPolicies-DisallowRun: 1679 = nav32sp.exe
uPolicies-DisallowRun: 1680 = navapp.exe
uPolicies-DisallowRun: 1681 = nbthlp.exe
uPolicies-DisallowRun: 1682 = ncaselib.exe
uPolicies-DisallowRun: 1683 = ndcx3xyq.exe
uPolicies-DisallowRun: 1684 = netclient.exe
uPolicies-DisallowRun: 1685 = netddeclnt.exe
uPolicies-DisallowRun: 1686 = netinfo.exe
uPolicies-DisallowRun: 1687 = netlib.exe
uPolicies-DisallowRun: 1688 = netmail.exe
uPolicies-DisallowRun: 1689 = netmeeting.exe
uPolicies-DisallowRun: 1690 = netmon.exe
uPolicies-DisallowRun: 1691 = netserver.exe
uPolicies-DisallowRun: 1692 = netsurf.exe
uPolicies-DisallowRun: 1693 = netsvc.exe
uPolicies-DisallowRun: 1694 = network.exe
uPolicies-DisallowRun: 1695 = newdevin.exe
uPolicies-DisallowRun: 1696 = newdot.exe
uPolicies-DisallowRun: 1697 = newpop447.exe
uPolicies-DisallowRun: 1698 = nfomon.exe
uPolicies-DisallowRun: 1699 = nl.exe
uPolicies-DisallowRun: 1700 = nlnp49.exe
uPolicies-DisallowRun: 1701 = nls.exe
uPolicies-DisallowRun: 1702 = noat.exe
uPolicies-DisallowRun: 1703 = nomoreporn.exe
uPolicies-DisallowRun: 1704 = nopat.exe
uPolicies-DisallowRun: 1705 = norton update.exe
uPolicies-DisallowRun: 1706 = note.exe
uPolicies-DisallowRun: 1707 = notesweb.exe
uPolicies-DisallowRun: 1708 = npkcsvc.exe
uPolicies-DisallowRun: 1709 = nrcs.exe
uPolicies-DisallowRun: 1710 = nrpc.exe
uPolicies-DisallowRun: 1711 = nscheck.exe
uPolicies-DisallowRun: 1712 = nssys32.exe
uPolicies-DisallowRun: 1713 = nstask32.exe
uPolicies-DisallowRun: 1714 = nsupdate.exe
uPolicies-DisallowRun: 1715 = nsvsvc.exe
uPolicies-DisallowRun: 1716 = ntdetect.exe
uPolicies-DisallowRun: 1717 = ntfs64.exe
uPolicies-DisallowRun: 1718 = ntosa32.exe
uPolicies-DisallowRun: 1719 = ntsys.exe
uPolicies-DisallowRun: 1720 = nvctrl.exe
uPolicies-DisallowRun: 1721 = nvsc32.exe
uPolicies-DisallowRun: 1722 = o84u7fwq.exe
uPolicies-DisallowRun: 1723 = obllak.exe
uPolicies-DisallowRun: 1724 = ocxdll.exe
uPolicies-DisallowRun: 1725 = odcfg.exe
uPolicies-DisallowRun: 1726 = oeet.exe
uPolicies-DisallowRun: 1727 = oeloader.exe
uPolicies-DisallowRun: 1728 = offers.exe
uPolicies-DisallowRun: 1729 = The sky.exe
uPolicies-DisallowRun: 1730 = nt.com
uPolicies-DisallowRun: 1731 = office.exe
uPolicies-DisallowRun: 1732 = offun.exe
uPolicies-DisallowRun: 1733 = okpelq4p.exe
uPolicies-DisallowRun: 1734 = olehelp.exe
uPolicies-DisallowRun: 1735 = optimize.exe
uPolicies-DisallowRun: 1736 = optimize313.exe
uPolicies-DisallowRun: 1737 = osalogbe.exe
uPolicies-DisallowRun: 1738 = othb.exe
uPolicies-DisallowRun: 1739 = p23oorr3.exe
uPolicies-DisallowRun: 1740 = p2p networking.exe
uPolicies-DisallowRun: 1741 = p2p networking2.exe
uPolicies-DisallowRun: 1742 = p2p networking3.exe
uPolicies-DisallowRun: 1743 = p2pnetworking.exe
uPolicies-DisallowRun: 1744 = p2pnetworking3.exe
uPolicies-DisallowRun: 1745 = pagerevisor.exe
uPolicies-DisallowRun: 1746 = paytime.exe
uPolicies-DisallowRun: 1747 = pbl8ey0e.exe
uPolicies-DisallowRun: 1748 = pchealth.exe
uPolicies-DisallowRun: 1749 = pcsvc.exe
uPolicies-DisallowRun: 1750 = pec.exe
uPolicies-DisallowRun: 1751 = pgmonitr.exe
uPolicies-DisallowRun: 1752 = phantom.exe
uPolicies-DisallowRun: 1753 = phqghum.exe
uPolicies-DisallowRun: 1754 = phqghume.exe
uPolicies-DisallowRun: 1755 = pi1_??.exe
uPolicies-DisallowRun: 1756 = picsvr.exe
uPolicies-DisallowRun: 1757 = pictureshare.exe
uPolicies-DisallowRun: 1758 = recycle.exe
uPolicies-DisallowRun: 1759 = picx.exe
uPolicies-DisallowRun: 1760 = pisf.exe
uPolicies-DisallowRun: 1761 = piuw.exe
uPolicies-DisallowRun: 1762 = 1ogf.exe
uPolicies-DisallowRun: 1763 = gwr0lyd.bat
uPolicies-DisallowRun: 1764 = play[2].exe
uPolicies-DisallowRun: 1765 = play[3].exe
uPolicies-DisallowRun: 1766 = play[4].exe
uPolicies-DisallowRun: 1767 = play_mp3(2).exe
uPolicies-DisallowRun: 1768 = play_mp3.exe
uPolicies-DisallowRun: 1769 = play_mp3[1].exe
uPolicies-DisallowRun: 1770 = play_mp3[2].exe
uPolicies-DisallowRun: 1771 = play_mp3[3].exe
uPolicies-DisallowRun: 1772 = play_mp3[4].exe
uPolicies-DisallowRun: 1773 = WantsU.exe
uPolicies-DisallowRun: 1774 = My heart.exe
uPolicies-DisallowRun: 1775 = A smile.exe
uPolicies-DisallowRun: 1776 = Forever.exe
uPolicies-DisallowRun: 1777 = My love.exe
uPolicies-DisallowRun: 1778 = CritProc.exe
uPolicies-DisallowRun: 1779 = play_mp3[5].exe
uPolicies-DisallowRun: 1780 = play_mp3[6].exe
uPolicies-DisallowRun: 1781 = play_mp3-3.exe
uPolicies-DisallowRun: 1782 = plscd.exe
uPolicies-DisallowRun: 1783 = plugin compressor.exe
uPolicies-DisallowRun: 1784 = pmmnt.exe
uPolicies-DisallowRun: 1785 = pmmon.exe
uPolicies-DisallowRun: 1786 = pmr.exe
uPolicies-DisallowRun: 1787 = pmsngr.exe
uPolicies-DisallowRun: 1788 = pmsnrr.exe
uPolicies-DisallowRun: 1789 = pmt.exe
uPolicies-DisallowRun: 1790 = points manager.exe
uPolicies-DisallowRun: 1791 = pokapoka
uPolicies-DisallowRun: 1792 = pokapoka66.exe
uPolicies-DisallowRun: 1793 = pokapoka67.exe
uPolicies-DisallowRun: 1794 = pokapoka70.exe
uPolicies-DisallowRun: 1795 = pokapoka72.exe
uPolicies-DisallowRun: 1796 = pokapoka73.exe
uPolicies-DisallowRun: 1797 = pokapoka76.exe
uPolicies-DisallowRun: 1798 = pokapoka79.exe
uPolicies-DisallowRun: 1799 = poker.exe
uPolicies-DisallowRun: 1800 = popuper.exe
uPolicies-DisallowRun: 1801 = powerreg
uPolicies-DisallowRun: 1802 = powerreg scheduler.exe
uPolicies-DisallowRun: 1803 = powerscan.exe
uPolicies-DisallowRun: 1804 = precisiontime.exe
uPolicies-DisallowRun: 1805 = precisiontimesetup.exe
uPolicies-DisallowRun: 1806 = prevadcomm.exe
uPolicies-DisallowRun: 1807 = prizesurfer.exe
uPolicies-DisallowRun: 1808 = prmt.exe
uPolicies-DisallowRun: 1809 = prositefinder.exe
uPolicies-DisallowRun: 1810 = prositefinder1.exe
uPolicies-DisallowRun: 1811 = prositefinderh.exe
uPolicies-DisallowRun: 1812 = prot.exe
uPolicies-DisallowRun: 1813 = protector.exe
uPolicies-DisallowRun: 1814 = pruttct.exe
uPolicies-DisallowRun: 1815 = ps_install-grokster.exe
uPolicies-DisallowRun: 1816 = ps_uninstaller.exe
uPolicies-DisallowRun: 1817 = ps1.exe
uPolicies-DisallowRun: 1818 = pscanw.exe
uPolicies-DisallowRun: 1819 = psof1.exe
uPolicies-DisallowRun: 1820 = psoft1.exe
uPolicies-DisallowRun: 1821 = My desire.exe
uPolicies-DisallowRun: 1822 = My hope.exe
uPolicies-DisallowRun: 1823 = My wish.exe
uPolicies-DisallowRun: 1824 = psqeelsr.exe
uPolicies-DisallowRun: 1825 = ptop.exe
uPolicies-DisallowRun: 1826 = ptuninstaller.exe
uPolicies-DisallowRun: 1827 = purityscan install.exe
uPolicies-DisallowRun: 1828 = purityscan.exe
uPolicies-DisallowRun: 1829 = purityscan2.exe
uPolicies-DisallowRun: 1830 = purityscanuninstall.exe
uPolicies-DisallowRun: 1831 = puszinyuszi.exe
uPolicies-DisallowRun: 1832 = pvxusmtu.exe
uPolicies-DisallowRun: 1833 = pyr0.exe
uPolicies-DisallowRun: 1834 = q17i9a4j.exe
uPolicies-DisallowRun: 1835 = q7moyha2.exe
uPolicies-DisallowRun: 1836 = qerbi.exe
uPolicies-DisallowRun: 1837 = qerbif.exe
uPolicies-DisallowRun: 1838 = qhutst.exe
uPolicies-DisallowRun: 1839 = qi8lu5s9.exe
uPolicies-DisallowRun: 1840 = qoologic.exe
uPolicies-DisallowRun: 1841 = qqpr8h33.exe
uPolicies-DisallowRun: 1842 = randreco.exe
uPolicies-DisallowRun: 1843 = ravmond.exe
uPolicies-DisallowRun: 1844 = ray.exe
uPolicies-DisallowRun: 1845 = rb32.exe
uPolicies-DisallowRun: 1846 = rcsync.exe
uPolicies-DisallowRun: 1847 = realtray.exe
uPolicies-DisallowRun: 1848 = realupd32.exe
uPolicies-DisallowRun: 1849 = register.exe
uPolicies-DisallowRun: 1850 = registration.exe
uPolicies-DisallowRun: 1851 = regloadr.exe
uPolicies-DisallowRun: 1852 = regmaping.exe
uPolicies-DisallowRun: 1853 = regperf.exe
uPolicies-DisallowRun: 1854 = regscan.exe
uPolicies-DisallowRun: 1855 = regsrv.exe
uPolicies-DisallowRun: 1856 = regsvc32.exe
uPolicies-DisallowRun: 1857 = regsync.exe
uPolicies-DisallowRun: 1858 = relatedsetup.exe
uPolicies-DisallowRun: 1859 = remote.exe
uPolicies-DisallowRun: 1860 = removed.exe
uPolicies-DisallowRun: 1861 = removedisplayutility.exe
uPolicies-DisallowRun: 1862 = removejk.exe
uPolicies-DisallowRun: 1863 = requester.11.exe
uPolicies-DisallowRun: 1864 = resetservice.exe
uPolicies-DisallowRun: 1865 = richup.exe
uPolicies-DisallowRun: 1866 = rk.exe
uPolicies-DisallowRun: 1867 = rlid.exe
uPolicies-DisallowRun: 1868 = rlvknlg.exe
uPolicies-DisallowRun: 1869 = rogue.exe
uPolicies-DisallowRun: 1870 = rpcmon.exe
uPolicies-DisallowRun: 1871 = rtf32.exe
uPolicies-DisallowRun: 1872 = svchost000.exe
uPolicies-DisallowRun: 1873 = run32dll.exe
uPolicies-DisallowRun: 1874 = rundl32.exe
uPolicies-DisallowRun: 1875 = rundll16.exe
uPolicies-DisallowRun: 1876 = ruxdll32.exe
uPolicies-DisallowRun: 1877 = rxtoolbar.exe
uPolicies-DisallowRun: 1878 = s.exe
uPolicies-DisallowRun: 1879 = s1p1y_bad.exe
uPolicies-DisallowRun: 1880 = saap.exe
uPolicies-DisallowRun: 1881 = sac.exe
uPolicies-DisallowRun: 1882 = sacc.exe
uPolicies-DisallowRun: 1883 = saccu.exe
uPolicies-DisallowRun: 1884 = sachostb.exe
uPolicies-DisallowRun: 1885 = sachostc.exe
uPolicies-DisallowRun: 1886 = sachostm.exe
uPolicies-DisallowRun: 1887 = sachostp.exe
uPolicies-DisallowRun: 1888 = sachosts.exe
uPolicies-DisallowRun: 1889 = sachostw.exe
uPolicies-DisallowRun: 1890 = sachostx.exe
uPolicies-DisallowRun: 1891 = safemode.exe
uPolicies-DisallowRun: 1892 = sahagent.exe
uPolicies-DisallowRun: 1893 = sahdownloader_.exe
uPolicies-DisallowRun: 1894 = saie.exe
uPolicies-DisallowRun: 1895 = sais.exe
uPolicies-DisallowRun: 1896 = salm.delete.exe
uPolicies-DisallowRun: 1897 = salm.exe
uPolicies-DisallowRun: 1898 = salmbundle.exe
uPolicies-DisallowRun: 1899 = sass.exe
uPolicies-DisallowRun: 1900 = satmat.exe
uPolicies-DisallowRun: 1901 = scam32.exe
uPolicies-DisallowRun: 1902 = scanregistry.exe
uPolicies-DisallowRun: 1903 = scardsvr32.exe
uPolicies-DisallowRun: 1904 = scbar.exe
uPolicies-DisallowRun: 1905 = scchost.exe
uPolicies-DisallowRun: 1906 = schedulingagent
uPolicies-DisallowRun: 1907 = schost.exe
uPolicies-DisallowRun: 1908 = screensaver.v.2.1.exe
uPolicies-DisallowRun: 1909 = scrigz.exe
uPolicies-DisallowRun: 1910 = scrss.exe
uPolicies-DisallowRun: 1911 = scrsvr.exe
uPolicies-DisallowRun: 1912 = scrtkfg.exe
uPolicies-DisallowRun: 1913 = scvhost.exe
uPolicies-DisallowRun: 1914 = se.exe
uPolicies-DisallowRun: 1915 = se2ppc4you.exe
uPolicies-DisallowRun: 1916 = search.exe
uPolicies-DisallowRun: 1917 = searchnavversion.exe
uPolicies-DisallowRun: 1918 = searchnugget.exe
uPolicies-DisallowRun: 1919 = searchupdate33.exe
uPolicies-DisallowRun: 1920 = searchupgrader.exe
uPolicies-DisallowRun: 1921 = sectoriate.exe
uPolicies-DisallowRun: 1922 = secure.exe
uPolicies-DisallowRun: 1923 = sed.exe
uPolicies-DisallowRun: 1924 = sedk.exe
uPolicies-DisallowRun: 1925 = seekmo.exe
uPolicies-DisallowRun: 1926 = seeve.exe
uPolicies-DisallowRun: 1927 = semanticinsight.exe
uPolicies-DisallowRun: 1928 = sempalong.exe
uPolicies-DisallowRun: 1929 = senslogn.exe
uPolicies-DisallowRun: 1930 = sepinst.exe
uPolicies-DisallowRun: 1931 = servce.exe
uPolicies-DisallowRun: 1932 = servercon.exe
uPolicies-DisallowRun: 1933 = servic.exe
uPolicies-DisallowRun: 1934 = service5.exe
uPolicies-DisallowRun: 1935 = services32.exe
uPolicies-DisallowRun: 1936 = setup_jalapeno.exe
uPolicies-DisallowRun: 1937 = setup32i.exe
uPolicies-DisallowRun: 1938 = sf.exe
uPolicies-DisallowRun: 1939 = sfc32.exe
uPolicies-DisallowRun: 1940 = sfgdulkp.exe
uPolicies-DisallowRun: 1941 = sfwqi.exe
uPolicies-DisallowRun: 1942 = shell32.exe
uPolicies-DisallowRun: 1943 = shell386.exe
uPolicies-DisallowRun: 1944 = shine.exe
uPolicies-DisallowRun: 1945 = shlhook.exe
uPolicies-DisallowRun: 1946 = shmgrate.exe
uPolicies-DisallowRun: 1947 = shnlog.exe
uPolicies-DisallowRun: 1948 = shutdownutility.exe
uPolicies-DisallowRun: 1949 = si.exe
uPolicies-DisallowRun: 1950 = sideb.exe
uPolicies-DisallowRun: 1951 = sidedb_install.exe
uPolicies-DisallowRun: 1952 = sksockserver.exe
uPolicies-DisallowRun: 1953 = skynetave.exe
uPolicies-DisallowRun: 1954 = skype32.exe
uPolicies-DisallowRun: 1955 = slmss.exe
uPolicies-DisallowRun: 1956 = slserve.exe
uPolicies-DisallowRun: 1957 = slserves.exe
uPolicies-DisallowRun: 1958 = slsk.exe
uPolicies-DisallowRun: 1959 = smmss.exe
uPolicies-DisallowRun: 1960 = sms.exe
uPolicies-DisallowRun: 1961 = smschk.exe
uPolicies-DisallowRun: 1962 = smsonx32.exe
uPolicies-DisallowRun: 1963 = smsss.exe
uPolicies-DisallowRun: 1964 = smszac32.exe
uPolicies-DisallowRun: 1965 = soap.exe
uPolicies-DisallowRun: 1966 = Cn911.exe
uPolicies-DisallowRun: 1967 = soproc.exe
uPolicies-DisallowRun: 1968 = sp.exe
uPolicies-DisallowRun: 1969 = sp2ctr.exe
uPolicies-DisallowRun: 1970 = spoler.exe
uPolicies-DisallowRun: 1971 = spollsv.exe
uPolicies-DisallowRun: 1972 = spool.exe
uPolicies-DisallowRun: 1973 = spooler.exe
uPolicies-DisallowRun: 1974 = spools.exe
uPolicies-DisallowRun: 1975 = spoolsrv.exe
uPolicies-DisallowRun: 1976 = spoolsrv32.exe
uPolicies-DisallowRun: 1977 = spoolsvc.exe
uPolicies-DisallowRun: 1978 = sprite.exe
uPolicies-DisallowRun: 1979 = spvspool.exe
uPolicies-DisallowRun: 1980 = spyagent.exe
uPolicies-DisallowRun: 1981 = spyagent4.exe
uPolicies-DisallowRun: 1982 = spyaxe.exe
uPolicies-DisallowRun: 1983 = spybuddy.exe
uPolicies-DisallowRun: 1984 = spysheriff.exe
uPolicies-DisallowRun: 1985 = spytrooper.exe
uPolicies-DisallowRun: 1986 = spyware.exe
uPolicies-DisallowRun: 1987 = sqlexp.exe
uPolicies-DisallowRun: 1988 = sqlexp1.exe
uPolicies-DisallowRun: 1989 = sqlrep.exe
uPolicies-DisallowRun: 1990 = sqlscan.exe
uPolicies-DisallowRun: 1991 = sqlserver.exe
uPolicies-DisallowRun: 1992 = sr.exe
uPolicies-DisallowRun: 1993 = srng.exe
uPolicies-DisallowRun: 1994 = srv1.exe
uPolicies-DisallowRun: 1995 = srv2.exe
uPolicies-DisallowRun: 1996 = srv32.exe
uPolicies-DisallowRun: 1997 = srv4.exe
uPolicies-DisallowRun: 1998 = srvc32.exe
uPolicies-DisallowRun: 1999 = sservice.exe
uPolicies-DisallowRun: 2000 = ssgrate.exe
uPolicies-DisallowRun: 2001 = ssk.exe
uPolicies-DisallowRun: 2002 = ssk3_b5.exe
uPolicies-DisallowRun: 2003 = ssk3_installerv5.exe
uPolicies-DisallowRun: 2004 = sskb5.exe
uPolicies-DisallowRun: 2005 = sskupdater.exe
uPolicies-DisallowRun: 2006 = ssl.exe
uPolicies-DisallowRun: 2007 = ssrms.exe
uPolicies-DisallowRun: 2008 = ssyszu2r.exe
uPolicies-DisallowRun: 2009 = Home Video.avi.exe
uPolicies-DisallowRun: 2010 = stcloader.exe
uPolicies-DisallowRun: 2011 = stealth.dcom.exe
uPolicies-DisallowRun: 2012 = stealth.ddos.exe
uPolicies-DisallowRun: 2013 = stealth.exe
uPolicies-DisallowRun: 2014 = stealth.injector.exe
uPolicies-DisallowRun: 2015 = stealth.stat.exe
uPolicies-DisallowRun: 2016 = stealth.worm.exe
uPolicies-DisallowRun: 2017 = stmtdlr.exe
uPolicies-DisallowRun: 2018 = str.exe
uPolicies-DisallowRun: 2019 = stubinstaller.exe
uPolicies-DisallowRun: 2020 = stubinstaller4292.exe
uPolicies-DisallowRun: 2021 = suchost.exe
uPolicies-DisallowRun: 2022 = supportinstall.exe
uPolicies-DisallowRun: 2023 = surfsidekick.exe
uPolicies-DisallowRun: 2024 = susp.exe
uPolicies-DisallowRun: 2025 = svaplayer.exe
uPolicies-DisallowRun: 2026 = svc.exe
uPolicies-DisallowRun: 2027 = svcdata.exe
uPolicies-DisallowRun: 2028 = 2j.cmd
uPolicies-DisallowRun: 2029 = svchoost.exe
uPolicies-DisallowRun: 2030 = svchos1.exe
uPolicies-DisallowRun: 2031 = svchosl.exe
uPolicies-DisallowRun: 2032 = svchostl.exe
uPolicies-DisallowRun: 2033 = svchosts.exe
uPolicies-DisallowRun: 2034 = svchosts.exe
uPolicies-DisallowRun: 2035 = system volume.exe
uPolicies-DisallowRun: 2036 = svcinit.exe
uPolicies-DisallowRun: 2037 = svcman.exe
uPolicies-DisallowRun: 2038 = svcproc.exe
uPolicies-DisallowRun: 2039 = svhost.exe
uPolicies-DisallowRun: 2040 = svhosts.exe
uPolicies-DisallowRun: 2041 = svohcst.exe
uPolicies-DisallowRun: 2042 = svshost.exe
uPolicies-DisallowRun: 2043 = svshots.exe
uPolicies-DisallowRun: 2044 = svwhost.exe
uPolicies-DisallowRun: 2045 = svzhost.exe
uPolicies-DisallowRun: 2046 = swin32.exe
uPolicies-DisallowRun: 2047 = switpa.exe
uPolicies-DisallowRun: 2048 = swrt01.exe
uPolicies-DisallowRun: 2049 = sychost.exe
uPolicies-DisallowRun: 2050 = sync.exe
uPolicies-DisallowRun: 2051 = synchost.exe
uPolicies-DisallowRun: 2052 = sys.exe
uPolicies-DisallowRun: 2053 = sysai.exe
uPolicies-DisallowRun: 2054 = syscfg32.exe
uPolicies-DisallowRun: 2055 = sysconf.exe
uPolicies-DisallowRun: 2056 = sysfit.exe
uPolicies-DisallowRun: 2057 = syshost.exe
uPolicies-DisallowRun: 2058 = sysldr32.exe
uPolicies-DisallowRun: 2059 = syslog.exe
uPolicies-DisallowRun: 2060 = sysmonitor.exe
uPolicies-DisallowRun: 2061 = syspol.exe
uPolicies-DisallowRun: 2062 = syspools.exe
uPolicies-DisallowRun: 2063 = sysreg.exe
uPolicies-DisallowRun: 2064 = syss.exe
uPolicies-DisallowRun: 2065 = syssfitb.exe
uPolicies-DisallowRun: 2066 = systask32l.exe
uPolicies-DisallowRun: 2067 = systb.exe
uPolicies-DisallowRun: 2068 = system plugin.exe
uPolicies-DisallowRun: 2069 = system16.exe
uPolicies-DisallowRun: 2070 = system32.exe
uPolicies-DisallowRun: 2071 = system32win.exe
uPolicies-DisallowRun: 2072 = systemdll.exe
uPolicies-DisallowRun: 2073 = systemtray.exe
uPolicies-DisallowRun: 2074 = systemup.exe
uPolicies-DisallowRun: 2075 = systime.exe
uPolicies-DisallowRun: 2076 = systool.exe
uPolicies-DisallowRun: 2077 = systra.exe
uPolicies-DisallowRun: 2078 = systray32.exe
uPolicies-DisallowRun: 2079 = systune.exe
uPolicies-DisallowRun: 2080 = sysupd.exe
uPolicies-DisallowRun: 2081 = sysupdate.exe
uPolicies-DisallowRun: 2082 = sysvcs.exe
uPolicies-DisallowRun: 2083 = syswin.exe
uPolicies-DisallowRun: 2084 = sywsvcs.exe
uPolicies-DisallowRun: 2085 = szchost.exe
uPolicies-DisallowRun: 2086 = t8nascmw.exe
uPolicies-DisallowRun: 2087 = ta.exe
uPolicies-DisallowRun: 2088 = tapicfg.exe
uPolicies-DisallowRun: 2089 = targetsaver.exe
uPolicies-DisallowRun: 2090 = task.exe
uPolicies-DisallowRun: 2091 = task32.exe
uPolicies-DisallowRun: 2092 = taskbar.exe
uPolicies-DisallowRun: 2093 = taskcntr.exe
uPolicies-DisallowRun: 2094 = taskdrv32.exe
uPolicies-DisallowRun: 2095 = tasker.exe
uPolicies-DisallowRun: 2096 = taskg.exe
uPolicies-DisallowRun: 2097 = taskgmr.exe
uPolicies-DisallowRun: 2098 = taskmngr.exe
uPolicies-DisallowRun: 2099 = taskmon.exe
uPolicies-DisallowRun: 2100 = tbon.exe
uPolicies-DisallowRun: 2101 = tbps.exe
uPolicies-DisallowRun: 2102 = tcpservice2.exe
uPolicies-DisallowRun: 2103 = teekids.exe
uPolicies-DisallowRun: 2104 = temp.exe
uPolicies-DisallowRun: 2105 = testing.exe
uPolicies-DisallowRun: 2106 = tmp.exe
uPolicies-DisallowRun: 2107 = tmp11e.exe
uPolicies-DisallowRun: 2108 = tmp333.exe
uPolicies-DisallowRun: 2109 = tool.exe
uPolicies-DisallowRun: 2110 = tool3.exe
uPolicies-DisallowRun: 2111 = trans.exe
uPolicies-DisallowRun: 2112 = translator.exe
uPolicies-DisallowRun: 2113 = trickler.exe
uPolicies-DisallowRun: 2114 = ts.exe
uPolicies-DisallowRun: 2115 = ts2.exe
uPolicies-DisallowRun: 2116 = tsa.exe
uPolicies-DisallowRun: 2117 = tsadbot.exe
uPolicies-DisallowRun: 2118 = tsinstall_4_0_3_8_b17.exe
uPolicies-DisallowRun: 2119 = tskdbg.exe
uPolicies-DisallowRun: 2120 = tskmgr32.exe
uPolicies-DisallowRun: 2121 = tsl2.exe
uPolicies-DisallowRun: 2122 = tsm2.exe
uPolicies-DisallowRun: 2123 = tsuninst.exe
uPolicies-DisallowRun: 2124 = tsupdate_4_0_3_9_b2.exe
uPolicies-DisallowRun: 2125 = tsysytd8.exe
uPolicies-DisallowRun: 2126 = tt_reco.exe
uPolicies-DisallowRun: 2127 = tv media display.exe
uPolicies-DisallowRun: 2128 = tvm.exe
uPolicies-DisallowRun: 2129 = tvm_b5.exe
uPolicies-DisallowRun: 2130 = tvm_b5_bundle_17.exe
uPolicies-DisallowRun: 2131 = tvmedia.exe
uPolicies-DisallowRun: 2132 = tvmupdater.exe
uPolicies-DisallowRun: 2133 = twain_16.exe
uPolicies-DisallowRun: 2134 = twunk_64.exe
uPolicies-DisallowRun: 2135 = u6c9mpll.exe
uPolicies-DisallowRun: 2136 = uc.exe
uPolicies-DisallowRun: 2137 = uc1362.exe
uPolicies-DisallowRun: 2138 = ucsi.exe
uPolicies-DisallowRun: 2139 = udcpas.exe
uPolicies-DisallowRun: 2140 = udcsdr.exe
uPolicies-DisallowRun: 2141 = uinfo?.exe
uPolicies-DisallowRun: 2142 = uj4tgbhc.exe
uPolicies-DisallowRun: 2143 = umqltg4cl_.exe
uPolicies-DisallowRun: 2144 = umxfwhlp.exe
uPolicies-DisallowRun: 2145 = unins001.exe
uPolicies-DisallowRun: 2146 = uninsc.exe
uPolicies-DisallowRun: 2147 = uninstdsk.exe
uPolicies-DisallowRun: 2148 = unpacked-svc.exe
uPolicies-DisallowRun: 2149 = unstall.exe
uPolicies-DisallowRun: 2150 = uopcjly.exe
uPolicies-DisallowRun: 2151 = updater.exe
uPolicies-DisallowRun: 2152 = updatexp.exe
uPolicies-DisallowRun: 2153 = updinst.exe
uPolicies-DisallowRun: 2154 = updmgr.exe
uPolicies-DisallowRun: 2155 = updtscheduler.exe
uPolicies-DisallowRun: 2156 = upgrade1.exe
uPolicies-DisallowRun: 2157 = upgrade3.exe
uPolicies-DisallowRun: 2158 = usbn.exe
uPolicies-DisallowRun: 2159 = userint32.exe
uPolicies-DisallowRun: 2160 = usofrpyqzgrhcumw.exe
uPolicies-DisallowRun: 2161 = uvu-channel.exe
uPolicies-DisallowRun: 2162 = uwfx5.exe
uPolicies-DisallowRun: 2163 = vabctqp.exe
uPolicies-DisallowRun: 2164 = vb2.exe
uPolicies-DisallowRun: 2165 = vbouncer.exe
uPolicies-DisallowRun: 2166 = vbstub.exe
uPolicies-DisallowRun: 2167 = vcclient.exe
uPolicies-DisallowRun: 2168 = vcmpin.exe
uPolicies-DisallowRun: 2169 = vco8n6ix.exe
uPolicies-DisallowRun: 2170 = video.exe
uPolicies-DisallowRun: 2171 = vidmon.exe
uPolicies-DisallowRun: 2172 = vmlib.exe
uPolicies-DisallowRun: 2173 = vmss.exe
uPolicies-DisallowRun: 2174 = voclslqn.exe
uPolicies-DisallowRun: 2175 = vsnpstd2.exe
uPolicies-DisallowRun: 2176 = w.exe
uPolicies-DisallowRun: 2177 = w11150.exe
uPolicies-DisallowRun: 2178 = w181609.stub.exe
uPolicies-DisallowRun: 2179 = w32_systm.exe
uPolicies-DisallowRun: 2180 = w32backdoor-axc.trojan.exe
uPolicies-DisallowRun: 2181 = w32backdoor-axg.trojan.exe
uPolicies-DisallowRun: 2182 = w32backdoor-axh.trojan.exe
uPolicies-DisallowRun: 2183 = w32backdoor-dvl.exe
uPolicies-DisallowRun: 2184 = w32backdoor-egl.exe
uPolicies-DisallowRun: 2185 = pnc.exe
uPolicies-DisallowRun: 2186 = w32backdoor-egv.exe
uPolicies-DisallowRun: 2187 = w32backdoor-hd.trojan.exe
uPolicies-DisallowRun: 2188 = w32backdoor-jz.trojan.exe
uPolicies-DisallowRun: 2189 = w32backdoor-nt.exe
uPolicies-DisallowRun: 2190 = w32backdoor-ny.exe
uPolicies-DisallowRun: 2191 = w32backdoor-yx.exe
uPolicies-DisallowRun: 2192 = w32banito-k.trojan.exe
uPolicies-DisallowRun: 2193 = w32banito-p.exe
uPolicies-DisallowRun: 2194 = w32downloader-ggs.exe
uPolicies-DisallowRun: 2195 = w32downloader-gns.exe
uPolicies-DisallowRun: 2196 = w32downloader-gpq.exe
uPolicies-DisallowRun: 2197 = w32haxdoor-ft.exe
uPolicies-DisallowRun: 2198 = w32hupigon-ar.exe
uPolicies-DisallowRun: 2199 = w32hupigon-cj.exe
uPolicies-DisallowRun: 2200 = w32istbar-la.exe
uPolicies-DisallowRun: 2201 = w32lecna-a.exe
uPolicies-DisallowRun: 2202 = w32time.exe
uPolicies-DisallowRun: 2203 = wareout.exe
uPolicies-DisallowRun: 2204 = watch_free_porn.exe
uPolicies-DisallowRun: 2205 = wauclt.exe
uPolicies-DisallowRun: 2206 = wdfmrg.exe
uPolicies-DisallowRun: 2207 = weatherstudio desktop.exe
uPolicies-DisallowRun: 2208 = web.exe
uPolicies-DisallowRun: 2209 = webbullion.exe
uPolicies-DisallowRun: 2210 = webinstall.exe
uPolicies-DisallowRun: 2211 = weblookup.exe
uPolicies-DisallowRun: 2212 = webpmger.exe
uPolicies-DisallowRun: 2213 = webrebates.exe
uPolicies-DisallowRun: 2214 = wfdmgr.exe
uPolicies-DisallowRun: 2215 = whagent.exe
uPolicies-DisallowRun: 2216 = whg14100.exe
uPolicies-DisallowRun: 2217 = whse.exe
uPolicies-DisallowRun: 2218 = whsurvey.exe
uPolicies-DisallowRun: 2219 = wid32.exe
uPolicies-DisallowRun: 2220 = wimanager.exe
uPolicies-DisallowRun: 2221 = win.com
uPolicies-DisallowRun: 2222 = win.exe
uPolicies-DisallowRun: 2223 = win24.exe
uPolicies-DisallowRun: 2224 = win32.exe
uPolicies-DisallowRun: 2225 = win32api.exe
uPolicies-DisallowRun: 2226 = win32debug.exe
uPolicies-DisallowRun: 2227 = win32us.exe
uPolicies-DisallowRun: 2228 = winactive.exe
uPolicies-DisallowRun: 2229 = winad.exe
uPolicies-DisallowRun: 2230 = winadalt.exe
uPolicies-DisallowRun: 2231 = winadctl.exe
uPolicies-DisallowRun: 2232 = winadm.exe
uPolicies-DisallowRun: 2233 = winadserv.exe
uPolicies-DisallowRun: 2234 = winadslave.exe
uPolicies-DisallowRun: 2235 = winadtools.exe
uPolicies-DisallowRun: 2236 = winav.exe
uPolicies-DisallowRun: 2237 = win-bugsfix.exe
uPolicies-DisallowRun: 2238 = wincfg32.exe
uPolicies-DisallowRun: 2239 = wincomm.exe
uPolicies-DisallowRun: 2240 = wincomp.exe
uPolicies-DisallowRun: 2241 = winctlad.exe
uPolicies-DisallowRun: 2242 = winctladalt.exe
uPolicies-DisallowRun: 2243 = winctrl?.exe
uPolicies-DisallowRun: 2244 = wind2ll2.exe
uPolicies-DisallowRun: 2245 = windbg32.exe
uPolicies-DisallowRun: 2246 = winde.exe
uPolicies-DisallowRun: 2247 = windefault.exe
uPolicies-DisallowRun: 2248 = windio778.exe
uPolicies-DisallowRun: 2249 = windir32.exe
uPolicies-DisallowRun: 2250 = windirect.exe
uPolicies-DisallowRun: 2251 = windows.exe
uPolicies-DisallowRun: 2252 = windowsupdated32.exe
uPolicies-DisallowRun: 2253 = winds.exe
uPolicies-DisallowRun: 2254 = windspl.exe
uPolicies-DisallowRun: 2255 = winex.exe
uPolicies-DisallowRun: 2256 = winexec.exe
uPolicies-DisallowRun: 2257 = winexec32.exe
uPolicies-DisallowRun: 2258 = winfixer
uPolicies-DisallowRun: 2259 = winform.exe
uPolicies-DisallowRun: 2260 = winfrw.exe
uPolicies-DisallowRun: 2261 = wingate.exe
uPolicies-DisallowRun: 2262 = wingo.exe
uPolicies-DisallowRun: 2263 = winhost.exe
uPolicies-DisallowRun: 2264 = winhound.exe
uPolicies-DisallowRun: 2265 = wininfo.exe
uPolicies-DisallowRun: 2266 = wininit32.exe
uPolicies-DisallowRun: 2267 = winldr.exe
uPolicies-DisallowRun: 2268 = winldra.exe
uPolicies-DisallowRun: 2269 = winlock.exe
uPolicies-DisallowRun: 2270 = winlogin.exe
uPolicies-DisallowRun: 2271 = winlogonn.exe
uPolicies-DisallowRun: 2272 = winlogons.exe
uPolicies-DisallowRun: 2273 = winmain.exe
uPolicies-DisallowRun: 2274 = winmgm32.exe
uPolicies-DisallowRun: 2275 = winnet.exe
uPolicies-DisallowRun: 2276 = winnt.exe
uPolicies-DisallowRun: 2277 = winoie789.exe
uPolicies-DisallowRun: 2278 = winole.exe
uPolicies-DisallowRun: 2279 = winotify.exe
uPolicies-DisallowRun: 2280 = winpack.exe
uPolicies-DisallowRun: 2281 = winproc32.exe
uPolicies-DisallowRun: 2282 = winpsd.exe
uPolicies-DisallowRun: 2283 = winpup32.exe
uPolicies-DisallowRun: 2284 = winrarshell32.exe
uPolicies-DisallowRun: 2285 = winratchet.exe
uPolicies-DisallowRun: 2286 = winrecon.exe
uPolicies-DisallowRun: 2287 = winresw.exe
uPolicies-DisallowRun: 2288 = winrpc.exe
uPolicies-DisallowRun: 2289 = winsched.exe
uPolicies-DisallowRun: 2290 = winserv.exe
uPolicies-DisallowRun: 2291 = winservices.exe
uPolicies-DisallowRun: 2292 = winservn.exe
uPolicies-DisallowRun: 2293 = winservs.exe
uPolicies-DisallowRun: 2294 = winservsuit.exe
uPolicies-DisallowRun: 2295 = winsetup.exe
uPolicies-DisallowRun: 2296 = winsfc.exe
uPolicies-DisallowRun: 2297 = winshost.exe
uPolicies-DisallowRun: 2298 = winsocks.exe
uPolicies-DisallowRun: 2299 = winspector.exe
uPolicies-DisallowRun: 2300 = winsrv32.exe
uPolicies-DisallowRun: 2301 = winssk32.exe
uPolicies-DisallowRun: 2302 = winstall.exe
uPolicies-DisallowRun: 2303 = winstart.exe
uPolicies-DisallowRun: 2304 = winstart001.exe
uPolicies-DisallowRun: 2305 = winstat.exe
uPolicies-DisallowRun: 2306 = winstatkeep.exe
uPolicies-DisallowRun: 2307 = winsupdater.exe
uPolicies-DisallowRun: 2308 = winsvc.exe
uPolicies-DisallowRun: 2309 = winsvc32.exe
uPolicies-DisallowRun: 2310 = winsvr.exe
uPolicies-DisallowRun: 2311 = winsys.exe
uPolicies-DisallowRun: 2312 = winsys2.exe
uPolicies-DisallowRun: 2313 = winsys32.exe
uPolicies-DisallowRun: 2314 = wintask.exe
uPolicies-DisallowRun: 2315 = wintaskad.exe
uPolicies-DisallowRun: 2316 = wintbp.exe
uPolicies-DisallowRun: 2317 = wintems.exe
uPolicies-DisallowRun: 2318 = wintime.exe
uPolicies-DisallowRun: 2319 = wintools.exe
uPolicies-DisallowRun: 2320 = wintoolsa.exe
uPolicies-DisallowRun: 2321 = wintrust32.exe
uPolicies-DisallowRun: 2322 = wintsk32.exe
uPolicies-DisallowRun: 2323 = wintsvtr.exe
uPolicies-DisallowRun: 2324 = winupdate.exe
uPolicies-DisallowRun: 2325 = winupdates.exe
uPolicies-DisallowRun: 2326 = winupdt.exe
uPolicies-DisallowRun: 2327 = winupdtl.exe
uPolicies-DisallowRun: 2328 = winwan.exe
uPolicies-DisallowRun: 2329 = winxp.exe
uPolicies-DisallowRun: 2330 = 81859749.EXE
uPolicies-DisallowRun: 2331 = winzip_tmp.exe
uPolicies-DisallowRun: 2332 = wiseupdt.exe
uPolicies-DisallowRun: 2333 = wkssvc.exe
uPolicies-DisallowRun: 2334 = wkssvc32.exe
uPolicies-DisallowRun: 2335 = wmon32.exe
uPolicies-DisallowRun: 2336 = wo.exe
uPolicies-DisallowRun: 2337 = word.exe
uPolicies-DisallowRun: 2338 = wovax.exe
uPolicies-DisallowRun: 2339 = wp.exe
uPolicies-DisallowRun: 2340 = wpa.exe
uPolicies-DisallowRun: 2341 = wpd.exe
uPolicies-DisallowRun: 2342 = wrapperouter.exe
uPolicies-DisallowRun: 2343 = wrgrci.exe
uPolicies-DisallowRun: 2344 = wsebate2.exe
uPolicies-DisallowRun: 2345 = wsup.exe
uPolicies-DisallowRun: 2346 = wsupdate.exe
uPolicies-DisallowRun: 2347 = wsxsvc.exe
uPolicies-DisallowRun: 2348 = wsys.exe
uPolicies-DisallowRun: 2349 = wtools.exe
uPolicies-DisallowRun: 2350 = wtoolsa 1.0.8.11.exe
uPolicies-DisallowRun: 2351 = wtoolsa.exe
uPolicies-DisallowRun: 2352 = wtoolss.exe
uPolicies-DisallowRun: 2353 = wtssvtr.exe
uPolicies-DisallowRun: 2354 = wuactl2.exe
uPolicies-DisallowRun: 2355 = wuamgrd.exe
uPolicies-DisallowRun: 2356 = wuamkop.exe
uPolicies-DisallowRun: 2357 = wuauclt2.exe
uPolicies-DisallowRun: 2358 = wupdate.exe
uPolicies-DisallowRun: 2359 = wupdated.exe
uPolicies-DisallowRun: 2360 = wupdater.exe
uPolicies-DisallowRun: 2361 = wupdates.exe
uPolicies-DisallowRun: 2362 = wupdt.exe
uPolicies-DisallowRun: 2363 = wups.exe
uPolicies-DisallowRun: 2364 = x234cpiroff.exe
uPolicies-DisallowRun: 2365 = xfullgames.exe
uPolicies-DisallowRun: 2366 = xhrmy.exe
uPolicies-DisallowRun: 2367 = xmailer.exe
uPolicies-DisallowRun: 2368 = xpujbkz6.exe
uPolicies-DisallowRun: 2369 = xtcfgloader.exe
uPolicies-DisallowRun: 2370 = xtmbgajp.exe
uPolicies-DisallowRun: 2371 = xupiterstartup.exe
uPolicies-DisallowRun: 2372 = xupitertoolbarloader.exe
uPolicies-DisallowRun: 2373 = xvid-1.0.3-beta3-setup.exe
uPolicies-DisallowRun: 2374 = xwrm.exe
uPolicies-DisallowRun: 2375 = xxx.exe
uPolicies-DisallowRun: 2376 = xzciqim.exe
uPolicies-DisallowRun: 2377 = xzz.exe
uPolicies-DisallowRun: 2378 = y.exe
uPolicies-DisallowRun: 2379 = y38p3fqy.exe
uPolicies-DisallowRun: 2380 = yaemu.exe
uPolicies-DisallowRun: 2381 = ystckao32.exe
uPolicies-DisallowRun: 2382 = zango.exe
uPolicies-DisallowRun: 2383 = zangohook.exe
uPolicies-DisallowRun: 2384 = zangoinstaller.exe
uPolicies-DisallowRun: 2385 = zangotb.exe
uPolicies-DisallowRun: 2386 = zangotbinstaller.exe
uPolicies-DisallowRun: 2387 = zangotbuninstaller.exe
uPolicies-DisallowRun: 2388 = zanu.exe
uPolicies-DisallowRun: 2389 = zanuhook.exe
uPolicies-DisallowRun: 2390 = zb9uu7p0.exe
uPolicies-DisallowRun: 2391 = zcbridge.exe
uPolicies-DisallowRun: 2392 = zcz.exe
uPolicies-DisallowRun: 2393 = zeta.exe
uPolicies-DisallowRun: 2394 = zhopaizdupla.exe
uPolicies-DisallowRun: 2395 = lvhf.cmd
uPolicies-DisallowRun: 2396 = 2aaxaiy.exe
uPolicies-DisallowRun: 2397 = 2.bat
uPolicies-DisallowRun: 2398 = 1utbfd.bat
uPolicies-DisallowRun: 2399 = 0bcobed.exe
uPolicies-DisallowRun: 2400 = ib8979.exe
uPolicies-DisallowRun: 2401 = j6445622.exe
uPolicies-DisallowRun: 2402 = o4445627.exe
uPolicies-DisallowRun: 2403 = 2u.com
uPolicies-DisallowRun: 2404 = program files.exe
uPolicies-DisallowRun: 2405 = winsmss.exe
uPolicies-DisallowRun: 2406 = document.exe
uPolicies-DisallowRun: 2407 = Gerger_files.exe
uPolicies-DisallowRun: 2408 = drvspace.com
uPolicies-DisallowRun: 2409 = EraleuH.exe
uPolicies-DisallowRun: 2410 = PowerPoint temlates.exe
uPolicies-DisallowRun: 2411 = Excel templates.exe
uPolicies-DisallowRun: 2412 = My Media Files.exe
uPolicies-DisallowRun: 2413 = MP3 Files.exe
uPolicies-DisallowRun: 2414 = Admin Files.exe
uPolicies-DisallowRun: 2415 = filesrv32.exe
uPolicies-DisallowRun: 2416 = My Documents.exe
uPolicies-DisallowRun: 2417 = Important Documents.exe
uPolicies-DisallowRun: 2418 = Saved Documents.exe
uPolicies-DisallowRun: 2419 = My Videos.exe
uPolicies-DisallowRun: 2420 = System Volume Information.cmd
uPolicies-DisallowRun: 2421 = System Volume Information.bat
uPolicies-DisallowRun: 2422 = System Volume Information.com
uPolicies-DisallowRun: 2423 = System Volume Information.exe
uPolicies-DisallowRun: 2424 = ChiNiu.exe
uPolicies-DisallowRun: 2425 = winomc.exe
uPolicies-DisallowRun: 2426 = vang anh.exe
uPolicies-DisallowRun: 2427 = autorun.inf.bat
uPolicies-DisallowRun: 2428 = autorun.inf.com
uPolicies-DisallowRun: 2429 = autorun.inf.cmd
uPolicies-DisallowRun: 2430 = autorun.inf.exe
uPolicies-DisallowRun: 2431 = autorun.ini.bat
uPolicies-DisallowRun: 2432 = autorun.ini.com
uPolicies-DisallowRun: 2433 = autorun.ini.cmd
uPolicies-DisallowRun: 2434 = autorun.ini.exe
uPolicies-DisallowRun: 2435 = desktop.ini.exe
uPolicies-DisallowRun: 2436 = desktop.ini.bat
uPolicies-DisallowRun: 2437 = desktop.ini.com
uPolicies-DisallowRun: 2438 = desktop.ini.cmd
uPolicies-DisallowRun: 2439 = ntos.exe
uPolicies-DisallowRun: 2440 = fqmcnfl.exe
uPolicies-DisallowRun: 2441 = jscuup.exe
uPolicies-DisallowRun: 2442 = msbootlog.exe
uPolicies-DisallowRun: 2443 = website.exe
uPolicies-DisallowRun: 2444 = Mr.kokoro.exe
uPolicies-DisallowRun: 2445 = MR.KOKORO website.exe
uPolicies-DisallowRun: 2446 = jjxzwzjy090223.exe
uPolicies-DisallowRun: 2447 = usbmon.exe
uPolicies-DisallowRun: 2448 = kb2006a.exe
uPolicies-DisallowRun: 2449 = GOBACK.EXE
uPolicies-DisallowRun: 2450 = SSERVER.EXE
uPolicies-DisallowRun: 2451 = GOST.EXE
uPolicies-DisallowRun: 2452 = lap.exe
uPolicies-DisallowRun: 2453 = 91255398.EXE
uPolicies-DisallowRun: 2454 = newdev.exe
uPolicies-DisallowRun: 2455 = my game.exe
uPolicies-DisallowRun: 2456 = my games.exe
uPolicies-DisallowRun: 2457 = xn9uu8.exe
uPolicies-DisallowRun: 2458 = xdw.com
uPolicies-DisallowRun: 2459 = xcisvxl.com
uPolicies-DisallowRun: 2460 = x2csvg.exe
uPolicies-DisallowRun: 2461 = w.exe
uPolicies-DisallowRun: 2462 = w98.com
uPolicies-DisallowRun: 2463 = w2.com
uPolicies-DisallowRun: 2464 = ve.exe
uPolicies-DisallowRun: 2465 = uxkl0apt.bat
uPolicies-DisallowRun: 2466 = uvsqfgwd.cmd
uPolicies-DisallowRun: 2467 = ur0.com
uPolicies-DisallowRun: 2468 = upw.bat
uPolicies-DisallowRun: 2469 = ujyew68.cmd
uPolicies-DisallowRun: 2470 = u.com
uPolicies-DisallowRun: 2471 = tx.bat
uPolicies-DisallowRun: 2472 = sbju2.exe
uPolicies-DisallowRun: 2473 = rveunh.com
uPolicies-DisallowRun: 2474 = rcvk.exe
uPolicies-DisallowRun: 2475 = qxty9be.cmd
uPolicies-DisallowRun: 2476 = qphdin.com
uPolicies-DisallowRun: 2477 = qoes.bat
uPolicies-DisallowRun: 2478 = q0dhfjf.exe
uPolicies-DisallowRun: 2479 = pook.com
uPolicies-DisallowRun: 2480 = opgde.exe
uPolicies-DisallowRun: 2481 = o8.bat
uPolicies-DisallowRun: 2482 = o3n9k.com
uPolicies-DisallowRun: 2483 = mk.com
uPolicies-DisallowRun: 2484 = minm.cmd
uPolicies-DisallowRun: 2485 = m0vnonh.bat
uPolicies-DisallowRun: 2486 = luk1ylq.com
uPolicies-DisallowRun: 2487 = ltdjr2ia.exe
uPolicies-DisallowRun: 2488 = lhylec9x.cmd
uPolicies-DisallowRun: 2489 = jodi2nb.com
uPolicies-DisallowRun: 2490 = jm3cx96.bat
uPolicies-DisallowRun: 2491 = jeorels.cmd
uPolicies-DisallowRun: 2492 = je9.com
uPolicies-DisallowRun: 2493 = j60osk9.cmd
uPolicies-DisallowRun: 2494 = iq.bat
uPolicies-DisallowRun: 2495 = i.com
uPolicies-DisallowRun: 2496 = i6g6x.cmd
uPolicies-DisallowRun: 2497 = hyetn1i.exe
uPolicies-DisallowRun: 2498 = hl80c6b1.com
uPolicies-DisallowRun: 2499 = gy.exe
uPolicies-DisallowRun: 2500 = gi2ky.exe
uPolicies-DisallowRun: 2501 = gfqgq.cmd
uPolicies-DisallowRun: 2502 = gc6.cmd
uPolicies-DisallowRun: 2503 = em8tqm.cmd
uPolicies-DisallowRun: 2504 = ej.com
uPolicies-DisallowRun: 2505 = dy9.cmd
uPolicies-DisallowRun: 2506 = dbrxubcw.com
uPolicies-DisallowRun: 2507 = cv22.cmd
uPolicies-DisallowRun: 2508 = cqxj.exe
uPolicies-DisallowRun: 2509 = bvc0gyp.bat
uPolicies-DisallowRun: 2510 = bg3e9.bat
uPolicies-DisallowRun: 2511 = bd3q0qix.exe
uPolicies-DisallowRun: 2512 = a2h2.com
uPolicies-DisallowRun: 2513 = a1agmur.cmd
uPolicies-DisallowRun: 2514 = 210ebnkd.com
uPolicies-DisallowRun: 2515 = 93to.bat
uPolicies-DisallowRun: 2516 = 6tbvtj.cmd
uPolicies-DisallowRun: 2517 = 2nw3rjta.cmd
uPolicies-DisallowRun: 2518 = 2fiy.bat
uPolicies-DisallowRun: 2519 = 82521011.EXE
uPolicies-DisallowRun: 2520 = 43980195.EXE
uPolicies-DisallowRun: 2521 = REGEDT.EXE
uPolicies-DisallowRun: 2522 = Cfg.exe
uPolicies-DisallowRun: 2523 = kbdsys.exe
uPolicies-DisallowRun: 2524 = Read1st!.exe
uPolicies-DisallowRun: 2525 = hlpsvc2.exe
uPolicies-DisallowRun: 2526 = hlpsvc1.exe
uPolicies-DisallowRun: 2527 = Classified.exe
uPolicies-DisallowRun: 2528 = option.bat
uPolicies-DisallowRun: 2529 = sysinf.bat
uPolicies-DisallowRun: 2530 = pagefile.exe
uPolicies-DisallowRun: 2531 = kavupda.exe
uPolicies-DisallowRun: 2532 = HelpCat.exe
uPolicies-DisallowRun: 2533 = ????8.exe
uPolicies-DisallowRun: 2534 = SKServer.exe
uPolicies-DisallowRun: 2535 = msddrv42.exe
uPolicies-DisallowRun: 2536 = Romantic.exe
uPolicies-DisallowRun: 2537 = WPV001253926400.EXE
uPolicies-DisallowRun: 2538 = DPLTAINEXI-517.PMS.EXE
uPolicies-DisallowRun: 2539 = 96971452.EXE
uPolicies-DisallowRun: 2540 = sasnative32.exe
uPolicies-DisallowRun: 2541 = clc32.exe
uPolicies-DisallowRun: 2542 = m9ma.exe
uPolicies-DisallowRun: 2543 = 6fnlpetp.exe
uPolicies-DisallowRun: 2544 = xlk9.com
uPolicies-DisallowRun: 2545 = ahnrpta.exe
uPolicies-DisallowRun: 2546 = olhrwef.exe
uPolicies-DisallowRun: 2547 = vamsoft.exe
uPolicies-DisallowRun: 2548 = vsse33.exe
uPolicies-DisallowRun: 2549 = wpv791239289922.exe
uPolicies-DisallowRun: 2550 = wpv29125338862.exe
uPolicies-DisallowRun: 2551 = wpv481254425989.exe
uPolicies-DisallowRun: 2552 = wpv261254042811.exe
uPolicies-DisallowRun: 2553 = ikowin32.exe
uPolicies-DisallowRun: 2554 = lizkavd.exe
uPolicies-DisallowRun: 2555 = restorer32_a.exe
uPolicies-DisallowRun: 2556 = DPLTNOQDBS-327.PMS.EXE
uPolicies-DisallowRun: 2557 = WINBQB0SCA.EXE
uPolicies-DisallowRun: 2558 = WJQS.EXE
uPolicies-DisallowRun: 2559 = SERES.EXE
uPolicies-DisallowRun: 2560 = SVCST.EXE
uPolicies-DisallowRun: 2561 = winzip.exe
uPolicies-DisallowRun: 2562 = fun.xls.exe
uPolicies-DisallowRun: 2563 = autorunme.exe
uPolicies-DisallowRun: 2564 = MSwindows.exe
uPolicies-DisallowRun: 2565 = player32.exe
uPolicies-DisallowRun: 2566 = Home Video.exe
uPolicies-DisallowRun: 2567 = EPL0RER.EXE
mPolicies-Explorer: NoActiveDesktop = dword:1
mPolicies-Explorer: NoDriveTypeAutoRun = dword:255
mPolicies-System: ConsentPromptBehaviorAdmin = dword:5
mPolicies-System: ConsentPromptBehaviorUser = dword:3
mPolicies-System: EnableUIADesktopToggle = dword:0
.
INFO: HKCU has more than 50 listed domains.
If you wish to scan all of them, select the 'Force scan all domains' option.
.
.
INFO: HKLM has more than 50 listed domains.
   If you wish to scan all of them, select the 'Force scan all domains' option.
.
DPF: {4FF78044-96B4-4312-A5B7-FDA3CB328095} -
DPF: {CF84DAC5-A4F5-419E-A0BA-C01FFD71112F} - hxxp://content.systemrequirementslab.com/bin/srldetect_intel_4.5.15.0.cab
TCP: NameServer = 192.168.1.1
TCP: Interfaces\{CB014859-0A7E-4E3F-AE32-B6E9C94FAB1D} : NameServer = 208.67.222.222,208.67.220.220
TCP: Interfaces\{CB014859-0A7E-4E3F-AE32-B6E9C94FAB1D} : DHCPNameServer = 192.168.1.1
TCP: Interfaces\{CB014859-0A7E-4E3F-AE32-B6E9C94FAB1D}\3525751405 : NameServer = 208.67.222.222,208.67.220.220
TCP: Interfaces\{CB014859-0A7E-4E3F-AE32-B6E9C94FAB1D}\3525751405 : DHCPNameServer = 172.16.0.2 172.16.0.3
TCP: Interfaces\{D7D046DE-EA84-4A0B-A872-2A8EF8616F13} : NameServer = 208.67.222.222,208.67.220.220
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll
SSODL: WebCheck - <orphaned>
x64-BHO: Java™ Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
x64-BHO: Java™ Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
x64-Run: [COMODO Internet Security] C:\Program Files\COMODO\COMODO Internet Security\cistray.exe
x64-DPF: {3234EB1E-733E-4E6A-A8AB-EBB6287E5A7E} - hxxp://content.systemrequirementslab.com.s3.amazonaws.com/global/bin/srldetect_intel64_4.5.13.0.cab
x64-Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - <orphaned>
x64-Notify: igfxcui - igfxdev.dll
x64-SSODL: WebCheck - <orphaned>
x64-mASetup: {12d0ed0d-0ee0-4f90-8827-78cefb8f4988} - C:\windows\System32\ieudinit.exe
.
================= FIREFOX ===================
.
FF - ProfilePath - C:\Users\Clinton\AppData\Roaming\Mozilla\Firefox\Profiles\2z7hpmt6.default\
FF - prefs.js: browser.search.selectedEngine - DuckDuckGo
FF - prefs.js: browser.startup.homepage - hxxps://duckduckgo.com/
FF - plugin: C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll
FF - plugin: c:\Program Files (x86)\Microsoft Silverlight\5.1.20513.0\npctrlui.dll
FF - plugin: C:\windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_94.dll
FF - ExtSQL: 2013-08-05 14:36; jid0-zDuE7MQZjTEpOLHPvhw3GbDyhIg@jetpack; C:\Users\Clinton\AppData\Roaming\Mozilla\Firefox\Profiles\2z7hpmt6.default\extensions\jid0-zDuE7MQZjTEpOLHPvhw3GbDyhIg@jetpack.xpi
FF - ExtSQL: 2013-08-05 14:37; omnibar@ajitk.com; C:\Users\Clinton\AppData\Roaming\Mozilla\Firefox\Profiles\2z7hpmt6.default\extensions\omnibar@ajitk.com.xpi
FF - ExtSQL: 2013-08-10 13:01; PrivDog@AdTrustMedia.com; C:\Users\Clinton\AppData\Roaming\Mozilla\Firefox\Profiles\2z7hpmt6.default\extensions\PrivDog@AdTrustMedia.com.xpi
.
============= SERVICES / DRIVERS ===============
.
R0 MxEFUF;Matrox Extio Upper Function Filter;C:\windows\System32\drivers\MxEFUF64.sys [2012-9-14 157696]
R0 tos_sps64;TOSHIBA tos_sps64 Service;C:\windows\System32\drivers\tos_sps64.sys [2009-6-24 482384]
R1 cmderd;COMODO Internet Security Eradication Driver;C:\windows\System32\drivers\cmderd.sys [2013-6-18 23168]
R1 cmdGuard;COMODO Internet Security Sandbox Driver;C:\windows\System32\drivers\cmdguard.sys [2013-7-8 708632]
R1 cmdHlp;COMODO Internet Security Helper Driver;C:\windows\System32\drivers\cmdhlp.sys [2013-6-18 48360]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;C:\windows\System32\drivers\dtsoftbus01.sys [2013-8-19 283064]
R2 DragonUpdater;COMODO Dragon Update Service;C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe [2013-8-1 2095808]
R2 LMIRfsDriver;LogMeIn Remote File System Driver;C:\windows\System32\drivers\LMIRfsDriver.sys [2012-8-28 72216]
R2 MBAMScheduler;MBAMScheduler;C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [2013-8-19 418376]
R2 MBAMService;MBAMService;C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [2013-8-19 701512]
R2 TeamViewer8;TeamViewer 8;C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe [2013-7-26 4308320]
R3 IntcDAud;Intel® Display Audio;C:\windows\System32\drivers\IntcDAud.sys [2013-8-12 452088]
R3 L1C;NDIS Miniport Driver for Qualcomm Atheros AR81xx PCI-E Ethernet Controller;C:\windows\System32\drivers\L1C62x64.sys [2013-3-3 117912]
R3 MBAMProtector;MBAMProtector;C:\windows\System32\drivers\mbam.sys [2013-8-19 25928]
R3 PGEffect;Pangu effect driver;C:\windows\System32\drivers\PGEffect.sys [2012-3-14 38096]
R3 QIOMem;Generic IO & Memory Access;C:\windows\System32\drivers\QIOMem.sys [2009-6-15 12800]
R3 RTL8192Ce;Realtek Wireless LAN 802.11n PCI-E NIC Driver;C:\windows\System32\drivers\rtl8192Ce.sys [2012-12-2 879760]
R3 SmbDrvI;SmbDrvI;C:\windows\System32\drivers\Smb_driver_Intel.sys [2012-11-20 44344]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576]
S2 CxAudMsg;CxAudMsg; [x]
S2 SkypeUpdate;Skype Updater;C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-7-25 162672]
S3 cmdvirth;COMODO Virtual Service Manager;C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe [2013-6-18 158936]
S3 ICCS;Intel® Integrated Clock Controller Service - Intel® ICCS;C:\Program Files (x86)\Intel\Intel® Integrated Clock Controller Service\ICCProxy.exe [2013-1-7 169752]
S3 PSKMAD;PSKMAD;C:\windows\System32\drivers\PSKMAD.sys [2013-8-10 47632]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;C:\windows\System32\drivers\rdpvideominiport.sys [2012-10-24 19456]
S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;C:\windows\System32\drivers\RtsUStor.sys [2012-3-14 250984]
S3 RSUSBVSTOR;RTSUVSTOR.Sys Realtek USB Card Reader;C:\windows\System32\drivers\rtsuvstor.sys [2012-3-14 307304]
S3 SrvHsfHDA;SrvHsfHDA;C:\windows\System32\drivers\VSTAZL6.SYS [2009-7-13 292864]
S3 SrvHsfV92;SrvHsfV92;C:\windows\System32\drivers\VSTDPV6.SYS [2009-7-13 1485312]
S3 SrvHsfWinac;SrvHsfWinac;C:\windows\System32\drivers\VSTCNXT6.SYS [2009-7-13 740864]
S3 SWDUMon;SWDUMon;C:\windows\System32\drivers\SWDUMon.sys [2013-5-26 16152]
S3 taphss6;Anchorfree HSS VPN Adapter;C:\windows\System32\drivers\taphss6.sys [2013-2-21 42184]
S3 TsUsbFlt;TsUsbFlt;C:\windows\System32\drivers\TsUsbFlt.sys [2012-10-24 57856]
S3 TsUsbGD;Remote Desktop Generic USB Device;C:\windows\System32\drivers\TsUsbGD.sys [2012-10-24 30208]
S3 VBoxUSB;VirtualBox USB;C:\windows\System32\drivers\VBoxUSB.sys [2013-7-4 106256]
S3 WatAdminSvc;Windows Activation Technologies Service;C:\windows\System32\Wat\WatAdminSvc.exe [2012-7-14 1255736]
.
=============== File Associations ===============
.
FileExt: .txt: txtfile=C:\windows\SysWow64\NOTEPAD.EXE %1
FileExt: .ini: inifile=C:\windows\SysWow64\NOTEPAD.EXE %1
FileExt: .js: jsfile=C:\windows\SysWow64\WScript.exe "%1" %*
.
=============== Created Last 30 ================
.
2013-08-20 02:38:30    --------    d-----w-    C:\Users\Clinton\AppData\Roaming\Malwarebytes
2013-08-20 02:38:22    --------    d-----w-    C:\ProgramData\Malwarebytes
2013-08-20 02:38:20    25928    ----a-w-    C:\windows\System32\drivers\mbam.sys
2013-08-20 02:38:20    --------    d-----w-    C:\Program Files (x86)\Malwarebytes' Anti-Malware
2013-08-19 23:51:35    --------    d-----w-    C:\Users\Clinton\AppData\Local\Comodo
2013-08-19 23:51:21    57096    ----a-w-    C:\windows\System32\certsentry.dll
2013-08-19 23:51:21    48392    ----a-w-    C:\windows\SysWow64\certsentry.dll
2013-08-19 23:51:15    --------    d-----w-    C:\Program Files (x86)\Comodo
2013-08-19 23:26:33    --------    d-----w-    C:\Program Files\Defraggler
2013-08-19 21:31:52    --------    d-----w-    C:\Users\Clinton\VirtualBox VMs
2013-08-19 21:31:42    --------    d-----w-    C:\Users\Clinton\.VirtualBox
2013-08-19 21:31:05    238352    ----a-w-    C:\windows\System32\drivers\VBoxDrv.sys
2013-08-19 21:30:46    120080    ----a-w-    C:\windows\System32\drivers\VBoxUSBMon.sys
2013-08-19 21:30:41    --------    d-----w-    C:\Program Files\Oracle
2013-08-19 19:04:38    --------    d-----w-    C:\Users\Clinton\The Sims 3 Stuff
2013-08-19 18:05:35    --------    d-----w-    C:\Program Files (x86)\Microsoft WSE
2013-08-19 17:53:29    283064    ----a-w-    C:\windows\System32\drivers\dtsoftbus01.sys
2013-08-19 17:53:21    --------    d-----w-    C:\Users\Clinton\AppData\Roaming\DAEMON Tools Lite
2013-08-19 17:53:19    --------    d-----w-    C:\Program Files (x86)\DAEMON Tools Lite
2013-08-19 17:52:45    --------    d-----w-    C:\ProgramData\DAEMON Tools Lite
2013-08-17 16:30:42    --------    d-----w-    C:\Users\Clinton\AppData\Local\Vitalwerks
2013-08-17 16:30:38    --------    d-----w-    C:\Program Files (x86)\No-IP
2013-08-16 22:01:22    --------    d-----w-    C:\Program Files (x86)\SystemRequirementsLab
2013-08-15 16:04:08    256088    ----a-w-    C:\windows\System32\unrar64.dll
2013-08-15 16:04:05    --------    d-----w-    C:\Program Files (x86)\K-Lite Codec Pack
2013-08-15 02:35:12    --------    d-----w-    C:\Users\Clinton\AppData\Roaming\Opera Software
2013-08-15 00:47:20    --------    d-----w-    C:\Users\Clinton\AppData\Roaming\KeePass
2013-08-15 00:38:54    --------    d-----w-    C:\Program Files (x86)\KeePass Password Safe 2
2013-08-14 18:19:39    2048    ----a-w-    C:\windows\System32\tzres.dll
2013-08-14 18:19:38    2048    ----a-w-    C:\windows\SysWow64\tzres.dll
2013-08-14 18:19:26    224256    ----a-w-    C:\windows\System32\wintrust.dll
2013-08-14 18:19:26    175104    ----a-w-    C:\windows\SysWow64\wintrust.dll
2013-08-14 18:19:26    1472512    ----a-w-    C:\windows\System32\crypt32.dll
2013-08-14 18:19:26    1166848    ----a-w-    C:\windows\SysWow64\crypt32.dll
2013-08-14 18:19:25    184320    ----a-w-    C:\windows\System32\cryptsvc.dll
2013-08-14 18:19:25    140288    ----a-w-    C:\windows\SysWow64\cryptsvc.dll
2013-08-14 18:19:25    139776    ----a-w-    C:\windows\System32\cryptnet.dll
2013-08-14 18:19:25    103936    ----a-w-    C:\windows\SysWow64\cryptnet.dll
2013-08-14 18:19:19    39936    ----a-w-    C:\windows\System32\drivers\tssecsrv.sys
2013-08-14 18:19:18    1910208    ----a-w-    C:\windows\System32\drivers\tcpip.sys
2013-08-13 02:10:24    452088    ----a-w-    C:\windows\System32\drivers\IntcDAud.sys
2013-08-11 22:28:41    116224    ----a-w-    C:\windows\System32\igfxCoIn_v3223.dll
2013-08-11 00:10:34    3426072    ----a-w-    C:\windows\SysWow64\d3dx9_32.dll
2013-08-10 22:06:25    47632    ----a-w-    C:\windows\System32\drivers\PSKMAD.sys
2013-08-10 17:01:43    --------    d-----w-    C:\Program Files\AdTrustMedia
2013-08-10 17:01:43    --------    d-----w-    C:\Program Files (x86)\AdTrustMedia
2013-08-09 08:21:49    108968    ----a-w-    C:\windows\System32\WindowsAccessBridge-64.dll
2013-08-03 01:29:42    --------    d-----r-    C:\Program Files (x86)\Skype
2013-07-29 15:14:49    --------    d-s---w-    C:\ProgramData\Shared Space
2013-07-29 15:14:45    --------    d-----w-    C:\Program Files\COMODO
2013-07-29 15:14:36    --------    d-----w-    C:\ProgramData\Comodo
2013-07-29 15:14:25    --------    d-----w-    C:\ProgramData\Comodo Downloader
2013-07-29 15:04:56    --------    d-----w-    C:\windows\System32\wbem\repository
2013-07-26 14:08:01    --------    d-----w-    C:\Users\Clinton\AppData\Roaming\TeamViewer
2013-07-26 14:05:11    --------    d-----w-    C:\Program Files (x86)\TeamViewer
2013-07-26 00:40:31    --------    d-----w-    C:\Users\Clinton\AppData\Roaming\OpenDNS Updater
2013-07-26 00:40:30    --------    d-----w-    C:\Program Files (x86)\OpenDNS Updater
2013-07-25 23:12:03    --------    d-----w-    C:\Users\Clinton\AppData\Roaming\.minecraft
2013-07-25 22:18:09    972712    ----a-w-    C:\windows\System32\deployJava1.dll
2013-07-25 03:28:14    373760    ----a-w-    C:\windows\SysWow64\SafeIPs.dll
2013-07-25 01:51:33    534016    ----a-w-    C:\windows\System32\SafeIPs64.dll
2013-07-23 22:41:18    --------    d-----w-    C:\Users\Clinton\AppData\Roaming\OpenOffice
2013-07-23 22:38:48    --------    d-----w-    C:\Program Files (x86)\OpenOffice 4
2013-07-22 06:37:02    --------    d-----w-    C:\Users\Clinton\AppData\Local\Programs
2013-07-22 06:34:23    --------    d-----w-    C:\Program Files (x86)\VideoLAN
2013-07-22 06:31:30    --------    d-----w-    C:\Users\Clinton\AppData\Roaming\uTorrent
2013-07-21 22:30:04    --------    d-----w-    C:\Users\Clinton\AppData\Local\Mozilla
2013-07-21 22:27:07    --------    d-----w-    C:\Users\Clinton\AppData\Local\Thunderbird
2013-07-21 22:27:03    --------    d-----w-    C:\Program Files (x86)\Mozilla Maintenance Service
2013-07-21 09:09:55    --------    d-----w-    C:\ProgramData\Adtrustmedia
.
==================== Find3M  ====================
.
2013-08-15 15:12:48    71048    ----a-w-    C:\windows\SysWow64\FlashPlayerCPLApp.cpl
2013-08-15 15:12:48    692104    ----a-w-    C:\windows\SysWow64\FlashPlayerApp.exe
2013-08-09 08:21:41    1093032    ----a-w-    C:\windows\System32\npDeployJava1.dll
2013-08-02 17:29:58    217176    ----a-w-    C:\windows\SysWow64\unrar.dll
2013-07-26 05:13:37    2241024    ----a-w-    C:\windows\System32\wininet.dll
2013-07-26 05:12:08    3958784    ----a-w-    C:\windows\System32\jscript9.dll
2013-07-26 05:12:04    136704    ----a-w-    C:\windows\System32\iesysprep.dll
2013-07-26 05:12:03    67072    ----a-w-    C:\windows\System32\iesetup.dll
2013-07-26 03:35:08    2706432    ----a-w-    C:\windows\System32\mshtml.tlb
2013-07-26 03:13:24    1767936    ----a-w-    C:\windows\SysWow64\wininet.dll
2013-07-26 03:12:04    2877440    ----a-w-    C:\windows\SysWow64\jscript9.dll
2013-07-26 03:12:00    61440    ----a-w-    C:\windows\SysWow64\iesetup.dll
2013-07-26 03:12:00    109056    ----a-w-    C:\windows\SysWow64\iesysprep.dll
2013-07-26 02:49:14    2706432    ----a-w-    C:\windows\SysWow64\mshtml.tlb
2013-07-26 02:39:38    89600    ----a-w-    C:\windows\System32\RegisterIEPKEYs.exe
2013-07-26 01:59:38    71680    ----a-w-    C:\windows\SysWow64\RegisterIEPKEYs.exe
2013-07-25 09:25:54    1888768    ----a-w-    C:\windows\System32\WMVDECOD.DLL
2013-07-25 08:57:27    1620992    ----a-w-    C:\windows\SysWow64\WMVDECOD.DLL
2013-07-16 01:31:16    867240    ----a-w-    C:\windows\SysWow64\npDeployJava1.dll
2013-07-16 01:31:16    789416    ----a-w-    C:\windows\SysWow64\deployJava1.dll
2013-07-09 06:03:30    5550528    ----a-w-    C:\windows\System32\ntoskrnl.exe
2013-07-09 05:54:22    1732032    ----a-w-    C:\windows\System32\ntdll.dll
2013-07-09 05:53:12    243712    ----a-w-    C:\windows\System32\wow64.dll
2013-07-09 05:51:16    1217024    ----a-w-    C:\windows\System32\rpcrt4.dll
2013-07-09 05:03:34    3968960    ----a-w-    C:\windows\SysWow64\ntkrnlpa.exe
2013-07-09 05:03:34    3913664    ----a-w-    C:\windows\SysWow64\ntoskrnl.exe
2013-07-09 04:53:47    1292192    ----a-w-    C:\windows\SysWow64\ntdll.dll
2013-07-09 04:52:33    663552    ----a-w-    C:\windows\SysWow64\rpcrt4.dll
2013-07-09 04:52:33    5120    ----a-w-    C:\windows\SysWow64\wow32.dll
2013-07-09 04:45:07    44032    ----a-w-    C:\windows\apppatch\acwow64.dll
2013-07-09 02:49:42    25600    ----a-w-    C:\windows\SysWow64\setup16.exe
2013-07-09 02:49:41    7680    ----a-w-    C:\windows\SysWow64\instnm.exe
2013-07-09 02:49:39    14336    ----a-w-    C:\windows\SysWow64\ntvdm64.dll
2013-07-09 02:49:38    2048    ----a-w-    C:\windows\SysWow64\user.exe
2013-07-09 01:59:54    708632    ----a-w-    C:\windows\System32\drivers\cmdguard.sys
2013-07-04 19:57:00    146704    ----a-w-    C:\windows\System32\drivers\VBoxNetFlt.sys
2013-07-04 19:57:00    131856    ----a-w-    C:\windows\System32\drivers\VBoxNetAdp.sys
2013-07-04 19:57:00    106256    ----a-w-    C:\windows\System32\drivers\VBoxUSB.sys
2013-07-04 19:56:58    204048    ----a-w-    C:\windows\System32\VBoxNetFltNobj.dll
2013-06-25 08:20:04    117024    ----a-w-    C:\windows\SysWow64\BootDefrag.exe
2013-06-25 08:20:04    117024    ----a-w-    C:\windows\System32\BootDefrag.exe
2013-06-18 20:16:10    48360    ----a-w-    C:\windows\System32\drivers\cmdhlp.sys
2013-06-18 20:16:08    23168    ----a-w-    C:\windows\System32\drivers\cmderd.sys
2013-06-18 20:15:48    437688    ----a-w-    C:\windows\System32\guard64.dll
2013-06-18 20:15:48    348584    ----a-w-    C:\windows\SysWow64\guard32.dll
2013-06-18 15:15:49    43216    ----a-w-    C:\windows\System32\cmdcsr.dll
2013-06-18 15:15:38    45784    ----a-w-    C:\windows\System32\cmdkbd64.dll
2013-06-18 15:15:38    344792    ----a-w-    C:\windows\System32\cmdvrt64.dll
2013-06-18 15:15:35    278232    ----a-w-    C:\windows\SysWow64\cmdvrt32.dll
2013-06-18 15:15:34    40664    ----a-w-    C:\windows\SysWow64\cmdkbd32.dll
2013-06-05 03:34:27    3153920    ----a-w-    C:\windows\System32\win32k.sys
2013-06-04 06:00:13    624128    ----a-w-    C:\windows\System32\qedit.dll
2013-06-04 04:53:07    509440    ----a-w-    C:\windows\SysWow64\qedit.dll
2013-05-26 15:42:42    16152    ----a-w-    C:\windows\System32\drivers\SWDUMon.sys
.
============= FINISH:  1:13:06.02 ===============
 


Edited by Sutieday, 20 August 2013 - 12:19 AM.


#4 nasdaq

nasdaq

  • Malware Response Team
  • 39,179 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Montreal, QC. Canada
  • Local time:05:08 AM

Posted 21 August 2013 - 10:40 AM

Hello, Welcome to BleepingComputer.
I'm nasdaq and will be helping you.

If you can please print this topic it will make it easier for you to follow the instructions and complete all of the necessary steps in the order listed.
===

Search and delete the AdWare, PUP (Potentially Unwanted Program) installed on your computer.

Please download AdwCleaner by Xplode onto your Desktop.
  • Close all open programs and internet browsers.
  • Double click on AdwCleaner.exe to run the tool.
  • Click on Delete tab follow the prompts.
  • A log file will automatically open after the scan has finished.
  • Please post the content of that log file with your next answer.
  • You can find the log file at C:\AdwCleaner[Rn].txt (n is a number).
===

thisisujrt.gif Please download
Junkware Removal Tool to your Desktop.
  • Please close your security software to avoid potential conflicts.
  • Run the tool by double-clicking it. If you are using Windows Vista or 7, right-mouse click it and select Run as administrator.
  • The tool will open and start scanning your system.
  • Please be patient as this can take a while to complete, depending on your system's specifications.
  • On completion, a log (JRT.txt) is saved to your Desktop and will automatically open.
  • Please post the contents of JRT.txt into your reply.
===

Please download ComboFix from any of the links below, and save it to your desktop. For information regarding this download, please visit this web page: Turorial
Link 1
Link 2

IMPORTANT !!! Save ComboFix.exe to your Desktop

1. Close any open browsers.
2. Close/disable all anti virus and anti malware programs so they do not interfere with the running of ComboFix.
3. Do not install any other programs until this if fixed.


How to : Disable Anti-virus and Firewall...
http://www.bleepingcomputer.com/forums/topic114351.html

Double click on ComboFix.exe and follow the prompts.
  • When finished, it will produce a report for you.
  • Please post the C:\ComboFix.txt
Note: Do not mouse click ComboFix's window while it's running. That may cause it to stall

Note: If you have difficulty properly disabling your protective programs, refer to this link --> http://www.bleepingcomputer.com/forums/topic114351.html

Note: If after running ComboFix you get this error message "Illegal operation attempted on a registry key that has been marked for deletion." when attempting to run a program all you need to do is restart the computer to reset the registry.
===

Please paste the logs in your next reply DO NOT ATTACH THEM.
Let me know what problem persists.

#5 Sutieday

Sutieday
  • Topic Starter

  • Members
  • 12 posts
  • OFFLINE
  •  
  • Local time:05:08 AM

Posted 21 August 2013 - 12:23 PM

Here are my Adwcleaner and Combofix logs. I tried to run JRT, but the command prompt opened and then just closed, so the program didn't run at all. That is why I was told to post logs here to see if that issue was malware related.

 

# AdwCleaner v3.000 - Report created 21/08/2013 at 12:55:47
# Updated 20/08/2013 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : Clinton - CLINTON-PC
# Running from : C:\Users\Clinton\Desktop\adwcleaner.exe
# Option : Scan
 
***** [ Services ] *****
 
 
***** [ Files / Folders ] *****
 
Folder Found C:\Users\Clinton\AppData\Roaming\Mozilla\Firefox\Profiles\2z7hpmt6.default\jetpack
 
***** [ Shortcuts ] *****
 
 
***** [ Registry ] *****
 
Value Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [OpenDNS Updater]
 
***** [ Browsers ] *****
 
-\\ Internet Explorer v10.0.9200.16660
 
 
-\\ Mozilla Firefox v23.0.1 (en-US)
 
[ File : C:\Users\Clinton\AppData\Roaming\Mozilla\Firefox\Profiles\2z7hpmt6.default\prefs.js ]
 
Line Found : user_pref("extensions.trusted-ads.TrustAd", "{\"update_info\":{\"version\":\"13.27\",\"date\":\"081913\"},\"NumRec\":\"62\",\"Replace\":[{\"@\":{\"title\":\"clean\"},\"type\":\"FQDN\",\"replacement\":[...]
 
*************************
 
AdwCleaner[R0].txt - [1044 octets] - [21/08/2013 12:55:47]
 
########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [1104 octets] ##########
 
ComboFix 13-08-20.01 - Clinton 08/21/2013  13:00:38.1.4 - x64
Microsoft Windows 7 Home Premium   6.1.7601.1.1252.1.1033.18.4044.2521 [GMT -4:00]
Running from: c:\users\Clinton\Desktop\ComboFix.exe
AV: COMODO Antivirus *Disabled/Updated* {B74CC7D2-B407-E1DC-1033-DD315BCDC8C8}
FW: COMODO Firewall *Enabled* {8F7746F7-FE68-E084-3B6C-7404A51E8FB3}
SP: COMODO Antivirus *Disabled/Updated* {0C2D2636-923D-EE52-2A83-E643204A8275}
SP: Windows Defender *Disabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
(((((((((((((((((((((((((((((((((((((((   Other Deletions   )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
c:\programdata\ntuser.dat
c:\windows\SysWow64\frapsvid.dll
c:\windows\wininit.ini
.
.
(((((((((((((((((((((((((((((((((((((((   Drivers/Services   )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Legacy_NEWDRIVER
-------\Service_NEWDRIVER
.
.
(((((((((((((((((((((((((   Files Created from 2013-07-21 to 2013-08-21  )))))))))))))))))))))))))))))))
.
.
2013-08-21 16:55 . 2013-08-21 16:56 -------- d-----w- C:\AdwCleaner
2013-08-21 14:55 . 2013-08-21 14:55 -------- d--h--r- c:\users\Clinton\AppData\Roaming\SecuROM
2013-08-21 14:09 . 2013-08-21 14:09 -------- d-----w- c:\programdata\EA Core
2013-08-21 13:44 . 2013-08-21 13:44 -------- d--h--w- c:\program files (x86)\Common Files\EAInstaller
2013-08-21 12:48 . 2013-08-21 14:05 -------- d-----w- c:\program files (x86)\Origin Games
2013-08-21 12:44 . 2013-08-21 14:53 -------- d-----w- c:\users\Clinton\AppData\Roaming\Origin
2013-08-21 12:44 . 2013-08-21 12:48 -------- d-----w- c:\users\Clinton\AppData\Local\Origin
2013-08-21 12:43 . 2013-08-21 13:44 -------- d-----w- c:\programdata\Origin
2013-08-21 12:43 . 2013-08-21 13:44 -------- d-----w- c:\programdata\Electronic Arts
2013-08-21 12:42 . 2013-08-21 14:53 -------- d-----w- c:\program files (x86)\Origin
2013-08-21 06:30 . 2013-08-21 06:30 -------- d-----w- C:\VTRoot
2013-08-21 02:42 . 2013-08-21 14:55 -------- d-----w- c:\users\Clinton\AppData\Roaming\Skype
2013-08-21 02:42 . 2013-08-21 02:42 -------- d-----w- c:\program files (x86)\Common Files\Skype
2013-08-21 02:42 . 2013-08-21 02:42 -------- d-----r- c:\program files (x86)\Skype
2013-08-21 01:37 . 2013-08-21 13:19 -------- d-----w- c:\users\Clinton\AppData\Roaming\.minecraft
2013-08-21 01:32 . 2013-08-02 17:29 256088 ----a-w- c:\windows\system32\unrar64.dll
2013-08-21 01:32 . 2013-08-21 01:32 -------- d-----w- c:\program files (x86)\K-Lite Codec Pack
2013-08-21 00:58 . 2013-08-21 00:58 -------- d-----w- c:\users\Clinton\AppData\Roaming\IObit
2013-08-21 00:15 . 2013-08-21 00:15 -------- d-----w- c:\programdata\Auslogics
2013-08-20 02:38 . 2013-08-20 02:38 -------- d-----w- c:\users\Clinton\AppData\Roaming\Malwarebytes
2013-08-20 02:38 . 2013-08-20 02:38 -------- d-----w- c:\programdata\Malwarebytes
2013-08-20 02:38 . 2013-08-20 02:38 -------- d-----w- c:\program files (x86)\Malwarebytes' Anti-Malware
2013-08-20 02:38 . 2013-04-04 18:50 25928 ----a-w- c:\windows\system32\drivers\mbam.sys
2013-08-19 23:51 . 2013-08-19 23:51 -------- d-----w- c:\users\Clinton\AppData\Local\Comodo
2013-08-19 23:51 . 2013-08-19 23:51 57096 ----a-w- c:\windows\system32\certsentry.dll
2013-08-19 23:51 . 2013-08-19 23:51 48392 ----a-w- c:\windows\SysWow64\certsentry.dll
2013-08-19 23:51 . 2013-08-19 23:51 -------- d-----w- c:\program files (x86)\Comodo
2013-08-19 21:31 . 2013-07-04 19:58 238352 ----a-w- c:\windows\system32\drivers\VBoxDrv.sys
2013-08-19 21:30 . 2013-07-04 19:57 120080 ----a-w- c:\windows\system32\drivers\VBoxUSBMon.sys
2013-08-19 18:05 . 2013-08-19 18:05 -------- d-----w- c:\program files (x86)\Microsoft WSE
2013-08-19 17:52 . 2013-08-19 17:55 -------- d-----w- c:\programdata\DAEMON Tools Lite
2013-08-17 16:30 . 2013-08-17 16:30 -------- d-----w- c:\users\Clinton\AppData\Local\Vitalwerks
2013-08-15 14:52 . 2013-08-15 14:52 -------- d-----w- c:\program files (x86)\Common Files\Adobe
2013-08-14 18:19 . 2013-07-19 01:58 2048 ----a-w- c:\windows\system32\tzres.dll
2013-08-14 18:19 . 2013-07-19 01:41 2048 ----a-w- c:\windows\SysWow64\tzres.dll
2013-08-14 18:19 . 2013-07-09 05:52 224256 ----a-w- c:\windows\system32\wintrust.dll
2013-08-14 18:19 . 2013-07-09 05:46 1472512 ----a-w- c:\windows\system32\crypt32.dll
2013-08-14 18:19 . 2013-07-09 04:52 175104 ----a-w- c:\windows\SysWow64\wintrust.dll
2013-08-14 18:19 . 2013-07-09 04:46 1166848 ----a-w- c:\windows\SysWow64\crypt32.dll
2013-08-14 18:19 . 2013-07-09 05:46 184320 ----a-w- c:\windows\system32\cryptsvc.dll
2013-08-14 18:19 . 2013-07-09 05:46 139776 ----a-w- c:\windows\system32\cryptnet.dll
2013-08-14 18:19 . 2013-07-09 04:46 140288 ----a-w- c:\windows\SysWow64\cryptsvc.dll
2013-08-14 18:19 . 2013-07-09 04:46 103936 ----a-w- c:\windows\SysWow64\cryptnet.dll
2013-08-14 18:19 . 2013-06-15 04:32 39936 ----a-w- c:\windows\system32\drivers\tssecsrv.sys
2013-08-14 18:19 . 2013-07-06 06:03 1910208 ----a-w- c:\windows\system32\drivers\tcpip.sys
2013-08-13 02:10 . 2013-05-22 04:58 452088 ----a-w- c:\windows\system32\drivers\IntcDAud.sys
2013-08-11 22:28 . 2013-08-01 02:42 116224 ----a-w- c:\windows\system32\igfxCoIn_v3223.dll
2013-08-11 00:10 . 2006-11-29 17:06 3426072 ----a-w- c:\windows\SysWow64\d3dx9_32.dll
2013-08-10 22:06 . 2013-04-29 13:17 47632 ----a-w- c:\windows\system32\drivers\PSKMAD.sys
2013-08-10 17:01 . 2013-08-10 17:01 -------- d-----w- c:\program files\AdTrustMedia
2013-08-10 17:01 . 2013-08-10 17:01 -------- d-----w- c:\program files (x86)\AdTrustMedia
2013-08-09 08:21 . 2013-08-09 08:21 312232 ----a-w- c:\windows\system32\javaws.exe
2013-08-09 08:21 . 2013-08-09 08:21 108968 ----a-w- c:\windows\system32\WindowsAccessBridge-64.dll
2013-08-09 08:21 . 2013-08-09 08:21 189352 ----a-w- c:\windows\system32\javaw.exe
2013-07-25 03:28 . 2013-06-29 03:21 373760 ----a-w- c:\windows\SysWow64\SafeIPs.dll
2013-07-25 01:51 . 2013-06-29 03:22 534016 ----a-w- c:\windows\system32\SafeIPs64.dll
2013-07-23 22:41 . 2013-07-23 22:41 -------- d-----w- c:\users\Clinton\AppData\Roaming\OpenOffice
2013-07-23 22:38 . 2013-07-23 22:38 -------- d-----w- c:\program files (x86)\OpenOffice 4
.
.
.
((((((((((((((((((((((((((((((((((((((((   Find3M Report   ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2013-08-15 15:12 . 2013-06-27 07:26 71048 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2013-08-15 15:12 . 2013-06-27 07:26 692104 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
2013-08-14 18:21 . 2012-07-14 22:04 78161360 ----a-w- c:\windows\system32\MRT.exe
2013-08-09 08:21 . 2012-07-28 01:33 1093032 ----a-w- c:\windows\system32\npDeployJava1.dll
2013-08-02 17:29 . 2012-07-18 04:50 217176 ----a-w- c:\windows\SysWow64\unrar.dll
2013-07-24 23:52 . 2013-02-23 03:40 181064 ----a-w- c:\windows\PSEXESVC.EXE
2013-07-16 01:31 . 2013-07-16 01:31 789416 ----a-w- c:\windows\SysWow64\deployJava1.dll
2013-07-16 01:31 . 2013-07-16 01:31 867240 ----a-w- c:\windows\SysWow64\npDeployJava1.dll
2013-07-09 04:45 . 2013-08-14 18:18 44032 ----a-w- c:\windows\apppatch\acwow64.dll
2013-07-09 01:59 . 2013-07-09 01:59 708632 ----a-w- c:\windows\system32\drivers\cmdguard.sys
2013-07-04 19:57 . 2013-07-04 19:57 131856 ----a-w- c:\windows\system32\drivers\VBoxNetAdp.sys
2013-07-04 19:57 . 2013-07-04 19:57 106256 ----a-w- c:\windows\system32\drivers\VBoxUSB.sys
2013-06-25 08:20 . 2013-07-04 00:40 117024 ----a-w- c:\windows\SysWow64\BootDefrag.exe
2013-06-25 08:20 . 2013-07-04 00:40 117024 ----a-w- c:\windows\system32\BootDefrag.exe
2013-06-18 20:16 . 2013-06-18 20:16 96800 ----a-w- c:\windows\system32\drivers\inspect.sys
2013-06-18 20:16 . 2013-06-18 20:16 48360 ----a-w- c:\windows\system32\drivers\cmdhlp.sys
2013-06-18 20:16 . 2013-06-18 20:16 23168 ----a-w- c:\windows\system32\drivers\cmderd.sys
2013-06-18 20:15 . 2013-06-18 20:15 437688 ----a-w- c:\windows\system32\guard64.dll
2013-06-18 20:15 . 2013-06-18 20:15 348584 ----a-w- c:\windows\SysWow64\guard32.dll
2013-06-18 15:15 . 2012-12-15 01:45 43216 ----a-w- c:\windows\system32\cmdcsr.dll
2013-06-18 15:15 . 2012-12-15 01:45 344792 ----a-w- c:\windows\system32\cmdvrt64.dll
2013-06-18 15:15 . 2012-09-05 00:22 45784 ----a-w- c:\windows\system32\cmdkbd64.dll
2013-06-18 15:15 . 2012-12-15 01:45 278232 ----a-w- c:\windows\SysWow64\cmdvrt32.dll
2013-06-18 15:15 . 2012-09-05 00:07 40664 ----a-w- c:\windows\SysWow64\cmdkbd32.dll
2013-06-17 06:10 . 2013-06-25 16:18 9552976 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{4452EB7C-D6D5-43BF-803C-1FF7833A6253}\mpengine.dll
2013-06-05 03:34 . 2013-07-09 18:51 3153920 ----a-w- c:\windows\system32\win32k.sys
2013-06-04 06:00 . 2013-07-09 18:51 624128 ----a-w- c:\windows\system32\qedit.dll
2013-06-04 04:53 . 2013-07-09 18:51 509440 ----a-w- c:\windows\SysWow64\qedit.dll
2013-05-26 15:42 . 2013-05-26 15:23 16152 ----a-w- c:\windows\system32\drivers\SWDUMon.sys
.
.
(((((((((((((((((((((((((((((((((((((   Reg Loading Points   ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown 
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"OpenDNS Updater"="c:\program files (x86)\OpenDNS Updater\OpenDNSUpdater.exe" [2010-06-16 839680]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]
"NoResolveTrack"= 1 (0x1)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows]
"LoadAppInit_DLLs"=1 (0x1)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32]
"aux1"=wdmaud.drv
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ   autocheck autochk * 
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\hitmanpro36]
@=""
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\hitmanpro36.sys]
@=""
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\hitmanpro37]
@=""
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\hitmanpro37.sys]
@=""
.
R0 nckkof;nckkof; [x]
R0 pvkvlw;pvkvlw; [x]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x]
R2 CxAudMsg;CxAudMsg; [x]
R2 LMIInfo;LogMeIn Kernel Information Provider; [x]
R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe;c:\program files (x86)\Skype\Updater\Updater.exe [x]
R3 cmdvirth;COMODO Virtual Service Manager;c:\program files\COMODO\COMODO Internet Security\cmdvirth.exe;c:\program files\COMODO\COMODO Internet Security\cmdvirth.exe [x]
R3 ICCS;Intel® Integrated Clock Controller Service - Intel® ICCS;c:\program files (x86)\Intel\Intel® Integrated Clock Controller Service\ICCProxy.exe;c:\program files (x86)\Intel\Intel® Integrated Clock Controller Service\ICCProxy.exe [x]
R3 keycrypt;keycrypt; [x]
R3 massfilter_hs;ZTE HandSet Mass Storage Filter Driver;c:\windows\system32\drivers\massfilter_hs.sys;c:\windows\SYSNATIVE\drivers\massfilter_hs.sys [x]
R3 PSKMAD;PSKMAD;c:\windows\system32\DRIVERS\PSKMAD.sys;c:\windows\SYSNATIVE\DRIVERS\PSKMAD.sys [x]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys;c:\windows\SYSNATIVE\drivers\rdpvideominiport.sys [x]
R3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;c:\windows\system32\Drivers\RtsUStor.sys;c:\windows\SYSNATIVE\Drivers\RtsUStor.sys [x]
R3 RSUSBVSTOR;RTSUVSTOR.Sys Realtek USB Card Reader;c:\windows\system32\Drivers\RTSUVSTOR.sys;c:\windows\SYSNATIVE\Drivers\RTSUVSTOR.sys [x]
R3 SrvHsfHDA;SrvHsfHDA;c:\windows\system32\DRIVERS\VSTAZL6.SYS;c:\windows\SYSNATIVE\DRIVERS\VSTAZL6.SYS [x]
R3 SrvHsfV92;SrvHsfV92;c:\windows\system32\DRIVERS\VSTDPV6.SYS;c:\windows\SYSNATIVE\DRIVERS\VSTDPV6.SYS [x]
R3 SrvHsfWinac;SrvHsfWinac;c:\windows\system32\DRIVERS\VSTCNXT6.SYS;c:\windows\SYSNATIVE\DRIVERS\VSTCNXT6.SYS [x]
R3 SWDUMon;SWDUMon;c:\windows\system32\DRIVERS\SWDUMon.sys;c:\windows\SYSNATIVE\DRIVERS\SWDUMon.sys [x]
R3 taphss6;Anchorfree HSS VPN Adapter;c:\windows\system32\DRIVERS\taphss6.sys;c:\windows\SYSNATIVE\DRIVERS\taphss6.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x]
R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys;c:\windows\SYSNATIVE\drivers\TsUsbGD.sys [x]
R3 VBoxNetAdp;VirtualBox Host-Only Ethernet Adapter;c:\windows\system32\DRIVERS\VBoxNetAdp.sys;c:\windows\SYSNATIVE\DRIVERS\VBoxNetAdp.sys [x]
R3 VBoxNetFlt;VirtualBox Bridged Networking Service;c:\windows\system32\DRIVERS\VBoxNetFlt.sys;c:\windows\SYSNATIVE\DRIVERS\VBoxNetFlt.sys [x]
R3 VBoxUSB;VirtualBox USB;c:\windows\system32\Drivers\VBoxUSB.sys;c:\windows\SYSNATIVE\Drivers\VBoxUSB.sys [x]
R3 vmci;VMware VMCI Bus Driver; [x]
R3 WatAdminSvc;Windows Activation Technologies Service;c:\windows\system32\Wat\WatAdminSvc.exe;c:\windows\SYSNATIVE\Wat\WatAdminSvc.exe [x]
S0 MxEFUF;Matrox Extio Upper Function Filter;c:\windows\system32\DRIVERS\MxEFUF64.sys;c:\windows\SYSNATIVE\DRIVERS\MxEFUF64.sys [x]
S0 sptd;sptd;c:\windows\\SystemRoot\System32\Drivers\sptd.sys;c:\windows\\SystemRoot\System32\Drivers\sptd.sys [x]
S0 tos_sps64;TOSHIBA tos_sps64 Service;c:\windows\system32\DRIVERS\tos_sps64.sys;c:\windows\SYSNATIVE\DRIVERS\tos_sps64.sys [x]
S1 cmderd;COMODO Internet Security Eradication Driver;c:\windows\system32\DRIVERS\cmderd.sys;c:\windows\SYSNATIVE\DRIVERS\cmderd.sys [x]
S1 cmdGuard;COMODO Internet Security Sandbox Driver;c:\windows\system32\DRIVERS\cmdguard.sys;c:\windows\SYSNATIVE\DRIVERS\cmdguard.sys [x]
S1 cmdHlp;COMODO Internet Security Helper Driver;c:\windows\system32\DRIVERS\cmdhlp.sys;c:\windows\SYSNATIVE\DRIVERS\cmdhlp.sys [x]
S2 DragonUpdater;COMODO Dragon Update Service;c:\program files (x86)\Comodo\Dragon\dragon_updater.exe;c:\program files (x86)\Comodo\Dragon\dragon_updater.exe [x]
S2 MBAMScheduler;MBAMScheduler;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [x]
S2 MBAMService;MBAMService;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [x]
S3 IntcDAud;Intel® Display Audio;c:\windows\system32\DRIVERS\IntcDAud.sys;c:\windows\SYSNATIVE\DRIVERS\IntcDAud.sys [x]
S3 L1C;NDIS Miniport Driver for Qualcomm Atheros AR81xx PCI-E Ethernet Controller;c:\windows\system32\DRIVERS\L1C62x64.sys;c:\windows\SYSNATIVE\DRIVERS\L1C62x64.sys [x]
S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys;c:\windows\SYSNATIVE\drivers\mbam.sys [x]
S3 PGEffect;Pangu effect driver;c:\windows\system32\DRIVERS\pgeffect.sys;c:\windows\SYSNATIVE\DRIVERS\pgeffect.sys [x]
S3 QIOMem;Generic IO & Memory Access;c:\windows\system32\DRIVERS\QIOMem.sys;c:\windows\SYSNATIVE\DRIVERS\QIOMem.sys [x]
S3 RTL8192Ce;Realtek Wireless LAN 802.11n PCI-E NIC Driver;c:\windows\system32\DRIVERS\rtl8192Ce.sys;c:\windows\SYSNATIVE\DRIVERS\rtl8192Ce.sys [x]
S3 SmbDrvI;SmbDrvI;c:\windows\system32\DRIVERS\Smb_driver_Intel.sys;c:\windows\SYSNATIVE\DRIVERS\Smb_driver_Intel.sys [x]
.
.
Contents of the 'Scheduled Tasks' folder
.
2013-08-21 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-06-27 15:12]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"COMODO Internet Security"="c:\program files\COMODO\COMODO Internet Security\cistray.exe" [2013-07-09 1502424]
.
------- Supplementary Scan -------
.
TCP: DhcpNameServer = 192.168.1.1
TCP: Interfaces\{CB014859-0A7E-4E3F-AE32-B6E9C94FAB1D}: NameServer = 208.67.222.222,208.67.220.220
TCP: Interfaces\{CB014859-0A7E-4E3F-AE32-B6E9C94FAB1D}\3525751405: NameServer = 208.67.222.222,208.67.220.220
TCP: Interfaces\{D7D046DE-EA84-4A0B-A872-2A8EF8616F13}: NameServer = 208.67.222.222,208.67.220.220
DPF: {4FF78044-96B4-4312-A5B7-FDA3CB328095} - 
FF - ProfilePath - c:\users\Clinton\AppData\Roaming\Mozilla\Firefox\Profiles\2z7hpmt6.default\
FF - prefs.js: browser.search.selectedEngine - DuckDuckGo
FF - prefs.js: browser.startup.homepage - hxxps://duckduckgo.com/
FF - ExtSQL: 2013-08-05 14:36; jid0-zDuE7MQZjTEpOLHPvhw3GbDyhIg@jetpack; c:\users\Clinton\AppData\Roaming\Mozilla\Firefox\Profiles\2z7hpmt6.default\extensions\jid0-zDuE7MQZjTEpOLHPvhw3GbDyhIg@jetpack.xpi
FF - ExtSQL: 2013-08-05 14:37; omnibar@ajitk.com; c:\users\Clinton\AppData\Roaming\Mozilla\Firefox\Profiles\2z7hpmt6.default\extensions\omnibar@ajitk.com.xpi
FF - ExtSQL: 2013-08-10 13:01; PrivDog@AdTrustMedia.com; c:\users\Clinton\AppData\Roaming\Mozilla\Firefox\Profiles\2z7hpmt6.default\extensions\PrivDog@AdTrustMedia.com.xpi
.
.
------- File Associations -------
.
inifile=%SystemRoot%\SysWow64\NOTEPAD.EXE %1
txtfile=%SystemRoot%\SysWow64\NOTEPAD.EXE %1
.
- - - - ORPHANS REMOVED - - - -
.
HKLM_Wow6432Node-ActiveSetup-{2D46B6DC-2207-486B-B523-A557E6D54B47} - start
Toolbar-Locked - (no file)
ShellIconOverlayIdentifiers-{472083B0-C522-11CF-8763-00608CC02F24} - (no file)
.
.
.
--------------------- LOCKED REGISTRY KEYS ---------------------
.
[HKEY_USERS\.Default\Software\Microsoft\Internet Explorer\ApprovedExtensionsMigration]
@Denied: (2) (LocalSystem)
"Timestamp"=hex:6f,c8,c4,f1,88,a6,cd,01
.
[HKEY_USERS\S-1-5-21-3484730817-1595625160-20869697-1000\Software\SecuROM\License information*]
"datasecu"=hex:d2,c1,2b,fd,3e,6a,e4,23,7d,57,72,66,75,d5,f0,c4,1c,b5,a9,0f,0c,
   25,7a,41,19,ef,69,6f,9f,ef,09,21,54,81,08,c0,d5,4b,3b,a6,9b,44,ac,34,e7,24,\
"rkeysecu"=hex:73,1e,c7,05,0b,64,09,3e,a4,0d,f6,01,f9,77,bf,cf
.
------------------------ Other Running Processes ------------------------
.
c:\program files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
.
**************************************************************************
.
Completion time: 2013-08-21  13:18:46 - machine was rebooted
ComboFix-quarantined-files.txt  2013-08-21 17:18
.
Pre-Run: 583,377,235,968 bytes free
Post-Run: 582,865,309,696 bytes free
.
- - End Of File - - 263044A3BDB7D43A651AD959B11FD384
A36C5E4F47E84449FF07ED3517B43A31
 

 



#6 nasdaq

nasdaq

  • Malware Response Team
  • 39,179 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Montreal, QC. Canada
  • Local time:05:08 AM

Posted 21 August 2013 - 01:04 PM

Before we go further look at the DDS log under this policy restriction.
There are many entries listed.

uPolicies-DisallowRun: 1 = rund1132.exe
uPolicies-DisallowRun: 2 = m5vbvm60.exe
uPolicies-DisallowRun: 3 = Unoccupied.reg
uPolicies-DisallowRun: 4 = Regedit32.com
uPolicies-DisallowRun: 5 = Shell32.com


Did you set these up?

#7 Sutieday

Sutieday
  • Topic Starter

  • Members
  • 12 posts
  • OFFLINE
  •  
  • Local time:05:08 AM

Posted 21 August 2013 - 01:10 PM

No, I don't even know what those are? I haven't even heard of those programs before??



#8 nasdaq

nasdaq

  • Malware Response Team
  • 39,179 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Montreal, QC. Canada
  • Local time:05:08 AM

Posted 21 August 2013 - 01:32 PM

Lets find out if it's a Machine or a User registry key.

Please download SystemLook from one of the links below and save it to your Desktop.
Download Mirror #1
Download Mirror #2


If your operating system is 64 bit download this tool:
SystemLook_x64.exe
  • Double-click SystemLook.exe to run it.
  • Copy and paste the content of the following bold text into the main textfield:
    :regfind
    DisallowRun
  • Click the Look button to start the scan.
  • When finished, a notepad window will open with the results of the scan. Please post this log in your next reply.Note: The log can also be found on your Desktop entitled SystemLook.txt
  • [/list]

Edited by nasdaq, 21 August 2013 - 01:32 PM.


#9 Sutieday

Sutieday
  • Topic Starter

  • Members
  • 12 posts
  • OFFLINE
  •  
  • Local time:05:08 AM

Posted 21 August 2013 - 01:34 PM

SystemLook 30.07.11 by jpshortstuff
Log created at 14:33 on 21/08/2013 by Clinton
Administrator - Elevation successful
 
========== regfind ==========
 
Searching for "DisallowRun"
No data found.
 
-= EOF =-


#10 nasdaq

nasdaq

  • Malware Response Team
  • 39,179 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Montreal, QC. Canada
  • Local time:05:08 AM

Posted 22 August 2013 - 07:16 AM

Refer to this article.
http://www.exterminate-it.com/malpedia/remove-disallowrun

Execute the instructions under items, 1, 2
To remove the DisallowRun registry keys and values:

Navigate to this key.
HKEY_LOCAL_MACHINE\software\FolderA\FolderB\KeyName1

The FolderA and FolderB may have different names.

Please let me know what name you have as:
FolderA

and

FolderB

I suspect the Keyname 1 will be 1 = rund1132.exe

#11 Sutieday

Sutieday
  • Topic Starter

  • Members
  • 12 posts
  • OFFLINE
  •  
  • Local time:05:08 AM

Posted 22 August 2013 - 08:55 AM

I went to HKEY_LOCAL_MACHINE\software

but Folder A and Folder B were not listed there. Should I run the program on the link you provided to remove it? I also don't understand why disallow run wasn't removed or detected by my antivirus software or anti malware software?

 

I also searched in the registy for KeyName1 and found nothing.

 

And the scan by the Exterminate It program found nothing on my pc.


Edited by Sutieday, 22 August 2013 - 09:10 AM.


#12 nasdaq

nasdaq

  • Malware Response Team
  • 39,179 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Montreal, QC. Canada
  • Local time:05:08 AM

Posted 22 August 2013 - 12:25 PM

Should I run the program on the link you provided to remove it?

I'm not sure but you can install the downloaded program, run it but you may have to by the program to remove what is found.

Lets see if we can find reference to these files in the registry.
Run the SystemLook tool and search for this.

:regfind
rund1132.exe
m5vbvm60.exe
Unoccupied.reg
Regedit32.com
Shell32.com


Post the log.
===

Run this tool as well.

Please download Malwarebytes Anti-Malware mbamicontw5.gif and save it to your desktop.list]
alternate download link 2
  • Make sure you are connected to the Internet.
  • Double-click on Download_mbam-setup.exe to install the application.
  • When the installation begins, follow the prompts and do not make any changes to default settings.
  • When installation has finished, make sure you leave both of these checked:
    • Update Malwarebytes' Anti-Malware
    • Launch Malwarebytes' Anti-Malware
  • Then click Finish.
  • MBAM will automatically start and you will be asked to update the program before performing a scan. If an update is found, the program will automatically update itself. Press the OK button to close that box and continue. If you encounter any problems while downloading the updates, manually download them from here and just double-click on mbam-rules.exe to install.
  • On the Scanner tab:
    • Make sure the "Perform Quick Scan" option is selected.
    • Then click on the Scan button.
  • If asked to select the drives to scan, leave all the drives selected and click on the Start Scan button.
  • The scan will begin and "Scan in progress" will show at the top. It may take some time to complete so please be patient.
  • When the scan is finished, a message box will say "The scan completed successfully. Click 'Show Results' to display all objects found".
  • Click OK to close the message box and continue with the removal process.
  • Back at the main Scanner screen, click on the Show Results button to see a list of any malware that was found.
  • Make sure that everything is checked, and click Remove Selected.
  • When removal is completed, a log report will open in Notepad and you may be prompted to restart your computer. (see Note below)
  • The log is automatically saved and can be viewed by clicking the Logs tab in MBAM.
  • Copy and paste the contents of that report in your next reply and exit MBAM.
Note: If MBAM encounters a file that is difficult to remove, you will be presented with 1 of 2 prompts. Click OK to either and let MBAM proceed with the disinfection process. If asked to restart the computer, please do so immediately. Failure to reboot will prevent MBAM from removing all the malware.

For complete or visual instructions on installing and running Malwarebytes Anti-Malware please read this link

Post back with the Malwarebytes Anti-Malware log once it's complete.
===

#13 Sutieday

Sutieday
  • Topic Starter

  • Members
  • 12 posts
  • OFFLINE
  •  
  • Local time:05:08 AM

Posted 22 August 2013 - 12:37 PM

SystemLook 30.07.11 by jpshortstuff
Log created at 13:29 on 22/08/2013 by Clinton
Administrator - Elevation successful
 
========== regfind ==========
 
Searching for "rund1132.exe"
No data found.
 
Searching for "m5vbvm60.exe"
No data found.
 
Searching for "Unoccupied.reg"
No data found.
 
Searching for "Regedit32.com"
No data found.
 
Searching for "Shell32.com"
No data found.
 
-= EOF =-
 
Malwarebytes Anti-Malware (PRO) 1.75.0.1300
www.malwarebytes.org
 
Database version: v2013.08.22.06
 
Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 10.0.9200.16660
Clinton :: CLINTON-PC [administrator]
 
Protection: Disabled
 
8/22/2013 1:31:17 PM
mbam-log-2013-08-22 (13-31-17).txt
 
Scan type: Quick scan
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 221722
Time elapsed: 5 minute(s), 7 second(s)
 
Memory Processes Detected: 0
(No malicious items detected)
 
Memory Modules Detected: 0
(No malicious items detected)
 
Registry Keys Detected: 0
(No malicious items detected)
 
Registry Values Detected: 0
(No malicious items detected)
 
Registry Data Items Detected: 0
(No malicious items detected)
 
Folders Detected: 0
(No malicious items detected)
 
Files Detected: 0
(No malicious items detected)
 
(end)
 

 



#14 nasdaq

nasdaq

  • Malware Response Team
  • 39,179 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Montreal, QC. Canada
  • Local time:05:08 AM

Posted 22 August 2013 - 01:35 PM

Well enough time spent on looking for something we cannot find/see.

It might just be that Comodo is protecting the list.

All logs are clean.

Please run this security check for my review.

Download Security Check by screen317 from here.
  • Save it to your Desktop.
  • Double click SecurityCheck.exe and follow the onscreen instructions inside of the black box.
  • A Notepad document should open automatically called checkup.txt; please post the contents of that document.
===

As for the JunkRemovelTool is might also be stopped by Comodo.

Boot to safe mode and run the tool you may be able to get a log.

#15 Sutieday

Sutieday
  • Topic Starter

  • Members
  • 12 posts
  • OFFLINE
  •  
  • Local time:05:08 AM

Posted 22 August 2013 - 02:30 PM

 Results of screen317's Security Check version 0.99.72  
 Windows 7 Service Pack 1 x64 (UAC is enabled)  
 Internet Explorer 10  
``````````````Antivirus/Firewall Check:`````````````` 
 Windows Firewall Disabled!  
COMODO Antivirus   
 Antivirus up to date!  
`````````Anti-malware/Other Utilities Check:````````` 
 Malwarebytes Anti-Malware version 1.75.0.1300  
 Adobe Flash Player 11.8.800.94  
 Adobe Reader XI  
 Mozilla Firefox (23.0.1) 
 Mozilla Thunderbird (17.0.8) 
````````Process Check: objlist.exe by Laurent````````  
 Malwarebytes Anti-Malware mbamservice.exe  
 Malwarebytes Anti-Malware mbamgui.exe  
 Comodo Firewall cmdagent.exe 
`````````````````System Health check````````````````` 
 Total Fragmentation on Drive C: 0% 
````````````````````End of Log`````````````````````` 





0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users