Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

PC works very slow, 100% CPU most of the time


  • Please log in to reply
16 replies to this topic

#1 internetaccess

internetaccess

  • Members
  • 9 posts
  • OFFLINE
  •  
  • Local time:04:15 AM

Posted 18 August 2013 - 12:43 PM

Hello Bleeping Computer,

I've been trying to clean up my younger sister's PC myself, though I think I could have missed a few things, as her computer is still very slow, and it's almost impossible to use it anymore. Everything is very slow, and the Task Manager shows 100% CPU usage most of the time, regardless of what applications are running at the moment.

Please assist.

Many thanks.

 

DDS (Ver_2012-11-20.01) - NTFS_AMD64
Internet Explorer: 10.0.9200.16635  BrowserJavaVersion: 10.17.2
Run by Julia at 19:24:16 on 2013-08-18
Microsoft Windows 7 Home Premium   6.1.7601.1.1250.48.1045.18.4063.2330 [GMT 2:00]
.
AV: AVG Anti-Virus Free *Enabled/Updated* {5A2746B1-DEE9-F85A-FBCD-ADB11639C5F0}
SP: AVG Anti-Virus Free *Enabled/Updated* {E146A755-F8D3-F7D4-C17D-96C36DBE8F4D}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
============== Running Processes ===============
.
C:\Program Files (x86)\AVG\AVG9\avgchsva.exe
C:\Program Files (x86)\AVG\AVG9\avgrsa.exe
C:\Windows\system32\lsm.exe
C:\Program Files (x86)\AVG\AVG9\avgcsrva.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_70dacb64382a61a7\STacSV64.exe
C:\Windows\system32\Hpservice.exe
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\atieclxx.exe
C:\Windows\system32\WLANExt.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\taskeng.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_70dacb64382a61a7\AESTSr64.exe
C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\Program Files (x86)\AVG\AVG9\avgwdsvc.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
C:\Program Files (x86)\Seagate\SeagateManager\Sync\FreeAgentService.exe
C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
C:\Program Files (x86)\Sony\PMB\PMBDeviceInfoProvider.exe
C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
C:\Program Files (x86)\AVG\AVG9\avgemc.exe
C:\Program Files (x86)\AVG\AVG9\avgnsa.exe
C:\Program Files (x86)\AVG\AVG9\avgcsrvx.exe
C:\Windows\system32\svchost.exe -k bthsvcs
C:\Windows\servicing\TrustedInstaller.exe
C:\Windows\SysWOW64\schtasks.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
C:\Program Files (x86)\Hewlett-Packard\HP Health Check\hphc_service.exe
C:\Windows\system32\sppsvc.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Windows\system32\SearchIndexer.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\IDT\WDM\sttray64.exe
C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe
C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\backWeb-8876480.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\ManyCam\Bin\ManyCam.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Program Files (x86)\McAfee Security Scan\3.0.229\SSScheduler.exe
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BtStackServer.exe
C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QLBCtrl.exe
C:\Program Files (x86)\Hp\HP Software Update\hpwuschd2.exe
C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
C:\Program Files (x86)\Seagate\SeagateManager\FreeAgent Status\stxmenumgr.exe
C:\Program Files (x86)\AVG\AVG9\avgtray.exe
C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BluetoothHeadsetProxy.exe
C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanionInfo.exe
C:\Program Files (x86)\Sony\PMB\PMBVolumeWatcher.exe
C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe
C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
C:\Program Files (x86)\SweetIM\Communicator\SweetPacksUpdateManager.exe
C:\Program Files (x86)\iTunes\iTunesHelper.exe
C:\Program Files (x86)\Adobe\Reader 9.0\Reader\reader_sl.exe
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Windows\system32\taskeng.exe
c:\Program Files (x86)\Hewlett-Packard\Media\DVD\DVDAgent.exe
c:\Program Files (x86)\Hewlett-Packard\Media\Live TV\TVAgent.exe
c:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMLSvc.exe
C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Program Files (x86)\Hewlett-Packard\Shared\hpqToaster.exe
C:\Program Files (x86)\Hewlett-Packard\Shared\hpCaslNotification.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\wuauclt.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\System32\cscript.exe
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://www.search.ask.com/?l=dis&o=APN10457&gct=hp&apn_ptnrs=^AKH&apn_dtid=^YYYYYY^YY^PL&p2=^AKH^YYYYYY^YY^PL&tpid=MYC3&apn_dbr=cr_26.0.1410.64
uDefault_Page_URL = hxxp://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=pl_PL&c=94&bd=Pavilion&pf=cnnb
mStart Page = hxxp://websearch.helpmefindyour.info/?pid=658&r=2013/04/24&hid=3849054362&lg=EN&cc=PL
uURLSearchHooks: {D8278076-BC68-4484-9233-6E7F1628B56C} - <orphaned>
uURLSearchHooks: {90b49673-5506-483e-b92b-ca0265bd9ca8} - <orphaned>
dURLSearchHooks: {D8278076-BC68-4484-9233-6E7F1628B56C} - <orphaned>
mWinlogon: Userinit = userinit.exe
BHO: TinyBHO Class: {00e71626-0bef-11dc-8314-0800200c9a66} - C:\Users\Julia\AppData\Roaming\DownloaderGold\ieplug.dll
BHO: Vid-Saver: {11111111-1111-1111-1111-110011341191} - C:\Program Files (x86)\Vid-Saver\Vid-Saver.dll
BHO: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
BHO: DivX Plus Web Player HTML5 <video>: {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files (x86)\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll
BHO: AVG Safe Search: {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files (x86)\AVG\AVG9\avgssie.dll
BHO: Groove GFS Browser Helper: {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
BHO: Java™ Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
BHO: Pomocnik rejestracji us≥ugi Windows Live: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
BHO: Skype Browser Helper: {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
BHO: Java™ Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
BHO: IEPluginBHO Class: {F5CC7F02-6F4E-4462-B5B1-394A57FD3E0D} - C:\Users\Julia\AppData\Roaming\Nowe Gadu-Gadu\_userdata\ggbho.1.dll
TB: toolplugin: {DFEFCDEE-CF1A-4FC8-89AF-189327213627} - C:\Users\Julia\AppData\Roaming\toolplugin\toolbar.dll
uRun: [LightScribe Control Panel] C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe -hidden
uRun: [Gadu-Gadu 10] "C:\Program Files (x86)\Gadu-Gadu 10\gg.exe"
uRun: [msnmsgr] "C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe" /background
uRun: [Nowe Gadu-Gadu] "C:\Program Files (x86)\Nowe Gadu-Gadu\gg.exe"
uRun: [Facebook Update] "C:\Users\Julia\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver
uRun: [swg] "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
uRun: [Sony PC Companion] "C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe" /Background
uRun: [Media Finder] "C:\Program Files (x86)\Media Finder\Media Finder.exe" /opentotray
uRun: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
uRun: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
uRun: [ManyCam] "C:\Program Files (x86)\ManyCam\Bin\ManyCam.exe" /silent
uRun: [EADM] "C:\Program Files (x86)\Origin\Origin.exe" -AutoStart
mRun: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
mRun: [HPCam_Menu] "c:\Program Files (x86)\Hewlett-Packard\Media\Webcam\MUITransfer\MUIStartMenu.exe" "c:\Program Files (x86)\Hewlett-Packard\Media\Webcam" UpdateWithCreateOnce "Software\Hewlett-Packard\Media\Webcam"
mRun: [QlbCtrl.exe] C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start
mRun: [UpdatePRCShortCut] "C:\Program Files (x86)\Hewlett-Packard\Recovery\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\Hewlett-Packard\Recovery" UpdateWithCreateOnce "Software\CyberLink\PowerRecover"
mRun: [HP Software Update] C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe
mRun: [WirelessAssistant] C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
mRun: [MaxMenuMgr] "C:\Program Files (x86)\Seagate\SeagateManager\FreeAgent Status\StxMenuMgr.exe"
mRun: [AVG9_TRAY] C:\PROGRA~2\AVG\AVG9\avgtray.exe
mRun: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
mRun: [AppleSyncNotifier] C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe
mRun: [Google Updater] "C:\Program Files (x86)\Google\Google Updater\GoogleUpdater.exe" -check_deprecation
mRun: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
mRun: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
mRun: [PMBVolumeWatcher] C:\Program Files (x86)\Sony\PMB\PMBVolumeWatcher.exe
mRun: [DivXUpdate] "C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
mRun: [Sweetpacks Communicator] C:\Program Files (x86)\SweetIM\Communicator\SweetPacksUpdateManager.exe
mRun: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
mRun: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
mRun: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
mRun: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
StartupFolder: C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\Startup\BLUETO~1.LNK - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
StartupFolder: C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\Startup\LOGITE~1.LNK - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
StartupFolder: C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\Startup\MCAFEE~1.LNK - C:\Program Files (x86)\McAfee Security Scan\3.0.229\SSScheduler.exe
uPolicies-Explorer: NoDriveTypeAutoRun = dword:145
uPolicies-System: WallpaperStyle = 2
mPolicies-Explorer: NoActiveDesktop = dword:1
mPolicies-Explorer: NoActiveDesktopChanges = dword:1
mPolicies-System: ConsentPromptBehaviorAdmin = dword:5
mPolicies-System: ConsentPromptBehaviorUser = dword:3
mPolicies-System: EnableUIADesktopToggle = dword:0
mPolicies-System: PromptOnSecureDesktop = dword:0
mPolicies-System: WallpaperStyle = 2
IE: Add to Google Photos Screensa&ver - C:\Windows\System32\GPhotos.scr/200
IE: Download with &Media Finder - C:\Program Files (x86)\Media Finder\hook.html
IE: E&ksportuj do programu Microsoft Excel - C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
IE: Wyúlij obraz do urzπdzenia &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
IE: Wyúlij stronÍ do urzπdzenia &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} -
IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503}
IE: {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
DPF: {166B1BCA-3F9C-11CF-8075-444553540000} - hxxp://download.macromedia.com/pub/shockwave/cabs/director/sw.cab
DPF: {8100D56A-5661-482C-BEE8-AFECE305D968} - hxxp://upload.facebook.com/controls/2009.07.28_v5.5.8.1/FacebookPhotoUploader55.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_29-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_29-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_29-windows-i586.cab
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
TCP: NameServer = 192.168.1.254
TCP: Interfaces\{2E19588D-9A21-4309-895E-E92BD0203FE1} : DHCPNameServer = 192.168.1.254
TCP: Interfaces\{2E19588D-9A21-4309-895E-E92BD0203FE1}\35147454D4F583144483 : DHCPNameServer = 192.168.1.1
TCP: Interfaces\{2E19588D-9A21-4309-895E-E92BD0203FE1}\5416379724F687D2443413440383 : DHCPNameServer = 192.168.2.1
TCP: Interfaces\{2E19588D-9A21-4309-895E-E92BD0203FE1}\E4544594143505F445D2265616365603 : DHCPNameServer = 192.168.1.254
TCP: Interfaces\{2E19588D-9A21-4309-895E-E92BD0203FE1}\E4544594143505F445D2265653335603 : DHCPNameServer = 192.168.1.254
TCP: Interfaces\{64AB0B1C-D2B2-44CC-BA88-75E8BF27C425} : DHCPNameServer = 192.168.1.254
TCP: Interfaces\{D87D61F6-051A-4624-A54B-AA034E1DE1B1} : DHCPNameServer = 192.168.42.129
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files (x86)\AVG\AVG9\avgpp.dll
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll
SSODL: WebCheck - <orphaned>
SEH: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
mASetup: {10880D85-AAD9-4558-ABDC-2AB1552D831F} - "C:\Program Files (x86)\Common Files\LightScribe\LSRunOnce.exe"
mASetup: {8A69D345-D564-463c-AFF1-A69D9E530F96} - "C:\Program Files (x86)\Google\Chrome\Application\28.0.1500.95\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --multi-install --chrome
x64-BHO: TinyBHO Class: {00e71626-0bef-11dc-8314-0864264c9a64} - C:\Users\Julia\AppData\Roaming\DownloaderGold\ieplug.dll
x64-BHO: AVG Safe Search: {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files (x86)\AVG\AVG9\avgssiea.dll
x64-BHO: Java™ Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
x64-Run: [SynTPEnh] C:\Program Files (x86)\Synaptics\SynTP\SynTPEnh.exe
x64-Run: [SmartMenu] C:\Program Files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe /background
x64-Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
x64-Run: [SysTrayApp] C:\Program Files\IDT\WDM\sttray64.exe
x64-IE: {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
x64-DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_14-windows-i586.cab
x64-DPF: {CAFEEFAC-0016-0000-0014-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_14-windows-i586.cab
x64-DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_14-windows-i586.cab
x64-Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - <orphaned>
x64-Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files (x86)\AVG\AVG9\avgppa.dll
x64-Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - <orphaned>
x64-Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - <orphaned>
x64-SSODL: WebCheck - <orphaned>
.
================= FIREFOX ===================
.
FF - ProfilePath - C:\Users\Julia\AppData\Roaming\Mozilla\Firefox\Profiles\8kg6a5z5.default\
FF - prefs.js: browser.search.defaulturl - hxxp://websearch.helpmefindyour.info/?pid=658&r=2013/04/24&hid=3849054362&lg=EN&cc=PL&l=1&q=
FF - prefs.js: browser.search.selectedEngine - WebSearch
FF - prefs.js: browser.startup.homepage - hxxp://search.babylon.com/?affID=119370&babsrc=HP_ss_gin2g&mntrId=28770027132E2B0D
FF - component: C:\Users\Julia\AppData\Roaming\Mozilla\Firefox\Profiles\8kg6a5z5.default\extensions\{90b49673-5506-483e-b92b-ca0265bd9ca8}\components\RadioWMPCoreGecko10.dll
FF - component: C:\Users\Julia\AppData\Roaming\Mozilla\Firefox\Profiles\8kg6a5z5.default\extensions\{90b49673-5506-483e-b92b-ca0265bd9ca8}\components\RadioWMPCoreGecko19.dll
FF - component: C:\Users\Julia\AppData\Roaming\Mozilla\Firefox\Profiles\8kg6a5z5.default\extensions\{90b49673-5506-483e-b92b-ca0265bd9ca8}\components\RadioWMPCoreGecko5.dll
FF - component: C:\Users\Julia\AppData\Roaming\Mozilla\Firefox\Profiles\8kg6a5z5.default\extensions\{90b49673-5506-483e-b92b-ca0265bd9ca8}\components\RadioWMPCoreGecko6.dll
FF - component: C:\Users\Julia\AppData\Roaming\Mozilla\Firefox\Profiles\8kg6a5z5.default\extensions\{90b49673-5506-483e-b92b-ca0265bd9ca8}\components\RadioWMPCoreGecko7.dll
FF - component: C:\Users\Julia\AppData\Roaming\Mozilla\Firefox\Profiles\8kg6a5z5.default\extensions\{90b49673-5506-483e-b92b-ca0265bd9ca8}\components\RadioWMPCoreGecko8.dll
FF - component: C:\Users\Julia\AppData\Roaming\Mozilla\Firefox\Profiles\8kg6a5z5.default\extensions\{90b49673-5506-483e-b92b-ca0265bd9ca8}\components\RadioWMPCoreGecko9.dll
FF - plugin: C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll
FF - plugin: C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll
FF - plugin: C:\Program Files (x86)\Google\Google Updater\2.4.2432.1652\npCIDetect14.dll
FF - plugin: C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll
FF - plugin: C:\Program Files (x86)\Google\Update\1.3.21.145\npGoogleUpdate3.dll
FF - plugin: C:\Program Files (x86)\Java\jre7\bin\npjpi170_17.dll
FF - plugin: C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll
FF - plugin: C:\Program Files (x86)\Sony\Media Go\npmediago.dll
FF - plugin: C:\Program Files (x86)\Sony\PLAYSTATION Network Downloader\nppsndl.dll
FF - plugin: C:\Users\Julia\AppData\Local\Facebook\Messenger\2.1.4814.0\npFbDesktopPlugin.dll
FF - plugin: C:\Users\Julia\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll
FF - plugin: C:\Users\Julia\AppData\Roaming\Nowe Gadu-Gadu\_userdata\npgg.1.dll
FF - plugin: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_202.dll
FF - plugin: C:\Windows\SysWOW64\npDeployJava1.dll
.
---- FIREFOX POLICIES ----
FF - user.js: browser.search.order.1 - Search the web
FF - user.js: keyword.URL - hxxp://www.browsersafesearch.com?client=mozilla-firefox&cd=UTF-8&search=1&q=
FF - user.js: privacy.item.cookies - false
FF - user.js: privacy.sanitize.promptOnSanitize - false
FF - user.js: extensions.funmoods.autoRvrt - false
FF - user.js: extensions.funmoods_i.hmpg - true
FF - user.js: extensions.funmoods_i.hmpgUrl - hxxp://start.funmoods.com/?f=1&a=ironto
FF - user.js: extensions.funmoods_i.dfltSrch - true
FF - user.js: extensions.funmoods.srchPrvdr - Search
FF - user.js: extensions.funmoods_i.dnsErr - true
FF - user.js: extensions.funmoods_i.newTab - true
FF - user.js: extensions.funmoods.newTabUrl - hxxp://start.funmoods.com/?f=2&a=ironto
FF - user.js: extensions.funmoods.tlbrSrchUrl - hxxp://start.funmoods.com/results.php?f=3&a=ironto&q=
FF - user.js: extensions.funmoods.id - 28776bb00000000000000027132e2b0d
FF - user.js: extensions.funmoods.instlDay - 15431
FF - user.js: extensions.funmoods.vrsn - 1.5.19.3
FF - user.js: extensions.funmoods.vrsni - 1.5.19.3
FF - user.js: extensions.funmoods_i.vrsnTs - 1.5.19.317:16:14
FF - user.js: extensions.funmoods.prtnrId - funmoods
FF - user.js: extensions.funmoods.prdct - funmoods
FF - user.js: extensions.funmoods.aflt - ironto
FF - user.js: extensions.funmoods_i.smplGrp - none
FF - user.js: extensions.funmoods.tlbrId - base
FF - user.js: extensions.funmoods.instlRef -
FF - user.js: extensions.funmoods.dfltLng -
FF - user.js: extensions.funmoods.excTlbr - false
FF - user.js: extensions.funmoods.admin - false
.
user_pref('extensions.dealply.partner', 'iron');
.
user_pref('extensions.dealply.channel', 'iron3');
.
user_pref('extensions.dealply.installId', 'v23600282087921110776172012040117182433');
.
user_pref('extensions.dealply.installIdSource', 'inst');
.
user_pref('extensions.dealply.sampleGroup', '3');
FF - user.js: extensions.BabylonToolbar.tlbrSrchUrl - hxxp://search.babylon.com/?babsrc=TB_def&mntrId=28776bb00000000000000027132e2b0d&q=
FF - user.js: extensions.BabylonToolbar.id - 28776bb00000000000000027132e2b0d
FF - user.js: extensions.BabylonToolbar.appId - {BDB69379-802F-4eaf-B541-F8DE92DD98DB}
FF - user.js: extensions.BabylonToolbar.instlDay - 15682
FF - user.js: extensions.BabylonToolbar.vrsn - 1.8.4.9
FF - user.js: extensions.BabylonToolbar.vrsni - 1.8.4.9
FF - user.js: extensions.BabylonToolbar_i.vrsnTs - 1.8.4.916:01:22
FF - user.js: extensions.BabylonToolbar.prtnrId - babylon
FF - user.js: extensions.BabylonToolbar.prdct - BabylonToolbar
FF - user.js: extensions.BabylonToolbar.aflt - babsst
FF - user.js: extensions.BabylonToolbar_i.smplGrp - none
FF - user.js: extensions.BabylonToolbar.tlbrId - tb9
FF - user.js: extensions.BabylonToolbar.instlRef - sst
FF - user.js: extensions.BabylonToolbar.dfltLng - en
FF - user.js: extensions.BabylonToolbar_i.excTlbr - false
FF - user.js: extensions.BabylonToolbar.excTlbr - false
FF - user.js: extensions.BabylonToolbar.admin - false
FF - user.js: extensions.BabylonToolbar_i.babTrack - affID=110824&tt=4912_3
FF - user.js: extensions.BabylonToolbar_i.babExt -
FF - user.js: extensions.BabylonToolbar_i.srcExt - ss
FF - user.js: extensions.BabylonToolbar.autoRvrt - false
FF - user.js: extensions.BabylonToolbar.rvrt - false
FF - user.js: extensions.BabylonToolbar_i.newTab - false
.
FF - user.js: extensions.delta.tlbrSrchUrl -
FF - user.js: extensions.delta.id - 28776bb00000000000000027132e2b0d
FF - user.js: extensions.delta.appId - {C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}
FF - user.js: extensions.delta.instlDay - 15783
FF - user.js: extensions.delta.vrsn - 1.8.10.0
FF - user.js: extensions.delta.vrsni - 1.8.10.0
FF - user.js: extensions.delta.vrsnTs - 1.8.10.018:24:46
FF - user.js: extensions.delta.prtnrId - delta
FF - user.js: extensions.delta.prdct - delta
FF - user.js: extensions.delta.aflt - babsst
FF - user.js: extensions.delta.smplGrp - none
FF - user.js: extensions.delta.tlbrId - base
FF - user.js: extensions.delta.instlRef - sst
FF - user.js: extensions.delta.dfltLng - en
FF - user.js: extensions.delta.excTlbr - false
FF - user.js: extensions.delta.admin - false
FF - user.js: extensions.delta.autoRvrt - false
FF - user.js: extensions.delta.rvrt - false
FF - user.js: extensions.delta.newTab - false
.
.
.
============= SERVICES / DRIVERS ===============
.
R1 AvgLdx64;AVG Free AVI Loader Driver x64;C:\Windows\System32\drivers\avgldx64.sys [2010-4-12 269904]
R1 AvgMfx64;AVG Free On-access Scanner Minifilter Driver x64;C:\Windows\System32\drivers\avgmfx64.sys [2010-4-12 35664]
R1 AvgTdiA;AVG Free Network Redirector x64;C:\Windows\System32\drivers\avgtdia.sys [2010-4-12 317520]
R2 AESTFilters;Andrea ST Filters Service;C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_70dacb64382a61a7\AESTSr64.exe [2011-10-22 89600]
R2 AMD External Events Utility;AMD External Events Utility;C:\Windows\System32\atiesrxx.exe [2009-7-2 203264]
R2 avg9emc;AVG Free E-mail Scanner;C:\Program Files (x86)\AVG\AVG9\avgemc.exe [2010-7-15 921952]
R2 avg9wd;AVG Free WatchDog;C:\Program Files (x86)\AVG\AVG9\avgwdsvc.exe [2010-7-15 308136]
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
R2 FreeAgentGoNext Service;Seagate Service;C:\Program Files (x86)\Seagate\SeagateManager\Sync\FreeAgentService.exe [2009-9-26 189736]
R2 HPDrvMntSvc.exe;HP Quick Synchronization Service;C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe [2010-10-14 92216]
R2 hpsrv;HP Service;C:\Windows\System32\hpservice.exe [2009-7-8 30520]
R2 PMBDeviceInfoProvider;PMBDeviceInfoProvider;C:\Program Files (x86)\Sony\PMB\PMBDeviceInfoProvider.exe [2010-11-27 398176]
R3 btwl2cap;Bluetooth L2CAP Service;C:\Windows\System32\drivers\btwl2cap.sys [2009-8-25 35104]
R3 Com4QLBEx;Com4QLBEx;C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe [2009-9-17 228408]
R3 enecir;ENE CIR Receiver;C:\Windows\System32\drivers\enecir.sys [2009-6-29 70656]
R3 ManyCam;ManyCam Virtual Webcam;C:\Windows\System32\drivers\mcvidrv_x64.sys [2013-4-20 44928]
R3 mcaudrv_simple;ManyCam Virtual Microphone;C:\Windows\System32\drivers\mcaudrv_x64.sys [2013-1-31 28160]
R3 RTL8167;Realtek 8167 NT Driver;C:\Windows\System32\drivers\Rt64win7.sys [2009-8-25 233472]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576]
S2 SkypeUpdate;Skype Updater;C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-2-28 161384]
S3 ggflt;SEMC USB Flash Driver Filter;C:\Windows\System32\drivers\ggflt.sys [2012-7-3 14448]
S3 JMCR;JMCR;C:\Windows\System32\drivers\jmcr.sys [2009-7-21 140712]
S3 McComponentHostService;McAfee Security Scan Component Host Service;C:\Program Files (x86)\McAfee Security Scan\3.0.229\McCHSvc.exe [2011-9-20 237008]
S3 netw5v64;Intel® Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 64 Bit;C:\Windows\System32\drivers\netw5v64.sys [2009-6-10 5434368]
S3 Sony PC Companion;Sony PC Companion;C:\Program Files (x86)\Sony\Sony PC Companion\PCCService.exe [2012-4-27 155824]
S3 SrvHsfHDA;SrvHsfHDA;C:\Windows\System32\drivers\VSTAZL6.SYS [2009-7-14 292864]
S3 SrvHsfV92;SrvHsfV92;C:\Windows\System32\drivers\VSTDPV6.SYS [2009-7-14 1485312]
S3 SrvHsfWinac;SrvHsfWinac;C:\Windows\System32\drivers\VSTCNXT6.SYS [2009-7-14 740864]
S3 TsUsbFlt;TsUsbFlt;C:\Windows\System32\drivers\TsUsbFlt.sys [2011-2-26 59392]
S3 USBAAPL64;Apple Mobile USB Driver;C:\Windows\System32\drivers\usbaapl64.sys [2012-2-15 52736]
S3 WatAdminSvc;Us≥uga Technologie aktywacji systemu Windows;C:\Windows\System32\Wat\WatAdminSvc.exe [2010-5-23 1255736]
S3 yukonw7;NDIS6.2 Miniport Driver for Marvell Yukon Ethernet Controller;C:\Windows\System32\drivers\yk62x64.sys [2009-6-10 389120]
.
=============== Created Last 30 ================
.
.
==================== Find3M  ====================
.
2013-06-18 16:26:52    71048    ----a-w-    C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
2013-06-18 16:26:52    692104    ----a-w-    C:\Windows\SysWow64\FlashPlayerApp.exe
2013-06-18 16:26:00    9089416    ----a-w-    C:\Windows\SysWow64\FlashPlayerInstaller.exe
2013-06-11 23:43:37    1767936    ----a-w-    C:\Windows\SysWow64\wininet.dll
2013-06-11 23:43:00    2877440    ----a-w-    C:\Windows\SysWow64\jscript9.dll
2013-06-11 23:42:58    61440    ----a-w-    C:\Windows\SysWow64\iesetup.dll
2013-06-11 23:42:58    109056    ----a-w-    C:\Windows\SysWow64\iesysprep.dll
2013-06-11 23:26:20    2241024    ----a-w-    C:\Windows\System32\wininet.dll
2013-06-11 23:25:16    3958784    ----a-w-    C:\Windows\System32\jscript9.dll
2013-06-11 23:25:13    67072    ----a-w-    C:\Windows\System32\iesetup.dll
2013-06-11 23:25:13    136704    ----a-w-    C:\Windows\System32\iesysprep.dll
2013-06-11 22:51:45    71680    ----a-w-    C:\Windows\SysWow64\RegisterIEPKEYs.exe
2013-06-11 22:50:58    89600    ----a-w-    C:\Windows\System32\RegisterIEPKEYs.exe
2013-06-07 03:22:18    2706432    ----a-w-    C:\Windows\System32\mshtml.tlb
2013-06-07 02:37:52    2706432    ----a-w-    C:\Windows\SysWow64\mshtml.tlb
2013-06-05 03:34:27    3153920    ----a-w-    C:\Windows\System32\win32k.sys
2013-06-04 06:00:13    624128    ----a-w-    C:\Windows\System32\qedit.dll
2013-06-04 04:53:07    509440    ----a-w-    C:\Windows\SysWow64\qedit.dll
2013-05-28 13:05:16    163328    ----a-w-    C:\Windows\SysWow64\FlashPlayerUpdateService.exe
.
============= FINISH: 19:26:53,41 ===============

 

Attached Files



BC AdBot (Login to Remove)

 


#2 Starbuck

Starbuck

    'r Brudiwr


  • Malware Response Team
  • 4,149 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Midlands, UK
  • Local time:03:15 AM

Posted 18 August 2013 - 06:27 PM

Hi internetaccess and welcome to BC.

I see a few problems in the report, so let's deal with the obvious and then get a more thorough scan done.

P2P Warning
Please note that as long as you're using any form of Peer-to-Peer networking ( Frostwire, Limewire, UTorrent etc.) and downloading files from non-documented sources, you can expect infestations of malware to occur.
Once upon a time, P2P file sharing was fairly safe. That is no longer true.
P2P programmes form a direct conduit onto your computer, their security measures are easily circumvented, and Malware writers are increasingly exploiting them to spread their wares onto your computer. Further to that, if your P2P programme is not configured correctly you may be sharing more files than you realise. There have been cases where people's Passwords, Address Books and other personal, private, and financial details have been exposed to the file sharing network by a badly configured programme.

Many of the programmes come bundled with other unwanted programmes, but even the ones free of any bundled software are not safe to use.
When you use them you are downloading software from an unknown source directly onto your computer, bypassing your Firewall and Anti-Virus software. Hardly surprising then that many of these Downloads are being targeted to carry infections.

You may decide to continue P2P sharing, but keep in mind that this practice may be the source of future malware infestation.
If we clean your computer of infection, and you return to us a short time later with an infection contracted by the use of P2P programmes, we may refuse to help you.

If do you do decide (unwisely) to keep these programs, please refrain from using them until we have finished cleaning your system.


Step 1
Please download Junkware Removal Tool to your desktop.
  • Shut down your protection software now to avoid potential conflicts.
  • Run the tool by double-clicking it. If you are using Windows Vista, 7, or 8; instead of double-clicking, right-mouse click JRT.exe and select "Run as Administrator".
  • The tool will open and start scanning your system.
  • Please be patient as this can take a while to complete depending on your system's specifications.
  • On completion, a log (JRT.txt) is saved to your desktop and will automatically open.
  • Post the contents of JRT.txt into your next message.
Step 2
Your Java is out of date. Older versions have vulnerabilities that malware can use to infect your system. A malicious site could render Java content under older, vulnerable versions of Sun's software if the user has not removed them. Please follow these steps to remove older version Java components and update:
  • Download the latest version of Java Runtime Environment (JRE) 7 Update 25 and save it to your desktop.
  • Scroll down to where it says "Java SE 7 Update 25".
  • Click the "Download JRE" button.
  • Accept the license agreement.
  • select 'Windows x64.exe' from the list.
  • Save the file to your desktop.
  • Close any programs you may have running - especially your web browser.
  • Go to Start > Settings > Control Panel, double-click on Add/Remove Programs and remove all older versions of Java.
  • Check (highlight) any item with Java Runtime Environment (JRE or J2SE) in the name.
  • Click the Remove or Change/Remove button.
  • Repeat as many times as necessary to remove each Java versions.
    .
    Java 7 Update 17
    Java™ 6 Update 14 (64-bit)
    Java™ 6 Update 29
    Java™ 7 Update 4
    .
  • Reboot your computer once all Java components are removed.
  • Then from your desktop double-click on downloaded icon to install the newest version.
Step 3
  • Download OTL to your desktop.
    right click on the link and select 'Save Link/Target As'.

    if you have problems, try this download link:
    OTL
  • Double click on the icon to run it. Make sure all other windows are closed and to let it run uninterrupted.
  • When the window appears, underneath Output at the top change it to Minimal Output.
  • Check the boxes beside LOP Check and Purity Check
.

.
Otllatest.png

Now copy the lines in bold below.

netsvcs
msconfig
%SYSTEMDRIVE%\*.*
%systemroot%\system32\Spool\prtprocs\w32x86\*.dll
%systemroot%\*. /mp /s
%systemroot%\system32\*.dll /lockedfiles
%systemroot%\Tasks\*.job /lockedfiles
%systemroot%\system32\drivers\*.sys /lockedfiles
%systemroot%\system32\*.exe /lockedfiles
%systemroot%\System32\config\*.sav
%PROGRAMFILES%\*
%USERPROFILE%\..|smtmp;true;true;true /FP
HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU
hklm\software\clients\startmenuinternet|command /rs
hklm\software\clients\startmenuinternet|command /64 /rs
CREATERESTOREPOINT
  • right click in the Custom Scans/Fixes window (under the blue bar) and choose Paste.

    scan-fix.png
    .
  • Click the Run Scan button.

    runscan.png
  • Do not change any settings unless otherwise told to do so. The scan wont take long.
  • When the scan completes, it will open two notepad windows. OTL.Txt and Extras.Txt. These are saved in the same location as OTL.
  • Please copy (Edit->Select All, Edit->Copy) the contents of these files, one at a time, and post them with your next reply.
In your next reply, please submit:
JRT.txt
and both reports from Otl


Thanks.

BBPP6nz.png


#3 internetaccess

internetaccess
  • Topic Starter

  • Members
  • 9 posts
  • OFFLINE
  •  
  • Local time:04:15 AM

Posted 19 August 2013 - 09:30 AM

Thanks! It seems to be working better already. I needed to split the reports between two posts, since I received an error "post too long" while trying to post them all in just one post.

 

OTL Extras logfile created on: 2013-08-19 15:45:57 - Run 1
OTL by OldTimer - Version 3.2.69.0     Folder = C:\Users\Julia\Desktop
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.10.9200.16660)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd
 
3,97 Gb Total Physical Memory | 1,75 Gb Available Physical Memory | 44,11% Memory free
7,93 Gb Paging File | 5,38 Gb Available in Paging File | 67,87% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
 
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 285,40 Gb Total Space | 73,66 Gb Free Space | 25,81% Space Free | Partition Type: NTFS
Drive D: | 12,50 Gb Total Space | 2,09 Gb Free Space | 16,75% Space Free | Partition Type: NTFS
Drive E: | 3,90 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: UDF
 
Computer Name: JULIA-KOMPUTER | User Name: Julia | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
 
========== Extra Registry (SafeList) ==========
 
 
========== File Associations ==========
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.html[@ = Opera.HTML] -- C:\Program Files (x86)\Opera\Opera.exe (Opera Software)
.url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)
.html [@ = Opera.HTML] -- C:\Program Files (x86)\Opera\Opera.exe (Opera Software)
 
[HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
.html [@ = ChromeHTML] -- Reg Error: Key error. File not found
 
========== Shell Spawning ==========
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1"
http [open] -- "C:\Program Files (x86)\Opera\Opera.exe" "%1" (Opera Software)
https [open] -- "C:\Program Files (x86)\Opera\Opera.exe" "%1" (Opera Software)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- "C:\Users\Julia\AppData\Roaming\File Scout\filescout.exe" /open "%1"
Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" ()
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [napiprojekt] -- "C:\Program Files (x86)\NapiProjekt\napisy.exe" "%1" ()
Directory [OneNote.Open] -- C:\PROGRA~2\MICROS~1\Office12\ONENOTE.EXE "%L"
Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" ()
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation)
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1"
http [open] -- "C:\Program Files (x86)\Opera\Opera.exe" "%1" (Opera Software)
https [open] -- "C:\Program Files (x86)\Opera\Opera.exe" "%1" (Opera Software)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- "C:\Users\Julia\AppData\Roaming\File Scout\filescout.exe" /open "%1"
Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" ()
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [napiprojekt] -- "C:\Program Files (x86)\NapiProjekt\napisy.exe" "%1" ()
Directory [OneNote.Open] -- C:\PROGRA~2\MICROS~1\Office12\ONENOTE.EXE "%L"
Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" ()
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error.
 
========== Security Center Settings ==========
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 4D B2 76 41 04 CA 01  [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
 
========== Firewall Settings ==========
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
 
========== Authorized Applications List ==========
 
 
========== Vista Active Open Ports Exception List ==========
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{025358EE-5BA2-4FE4-846B-A7870B0CF3EE}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | 
"{0A806E4B-F152-44A9-BAF1-DC01DEACF8ED}" = lport=445 | protocol=6 | dir=in | app=system | 
"{0D8B80CA-C99B-42E9-815F-029767DA067A}" = rport=3702 | protocol=17 | dir=out | svc=fdphost | app=%systemroot%\system32\svchost.exe | 
"{16DB8248-F7AA-45AA-87F6-78B489737E41}" = rport=139 | protocol=6 | dir=out | app=system | 
"{1F35BDF8-CD45-41D0-BC87-E16D7822D155}" = lport=2869 | protocol=6 | dir=in | app=system | 
"{2217F9DD-0942-4D17-9CC5-AF031E3AF910}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | 
"{27FD9BDC-1268-4B30-B7EE-80F5FC4E4D56}" = lport=3702 | protocol=17 | dir=in | svc=fdrespub | app=%systemroot%\system32\svchost.exe | 
"{2E3274A4-7F59-46EE-9475-2A2AD508FED4}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | 
"{2F92158C-18AB-423F-9046-151426BED170}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | 
"{3213814D-C382-40BF-AF42-9E2EB196A468}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | 
"{379C47BD-5829-4598-A167-ABD506F1C834}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=svchost.exe | 
"{4509860A-4B65-4A44-A266-E9BE213735E3}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | 
"{551EE6A6-A039-4861-B222-EAAFF96E0E1C}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | 
"{6178BB60-3DF3-492F-A9ED-E3CEEAD67BAE}" = lport=139 | protocol=6 | dir=in | app=system | 
"{61B8D83F-F9D0-43F5-AF4F-994128BE2FE8}" = lport=10243 | protocol=6 | dir=in | app=system | 
"{662084B3-1E43-415E-8993-6A93661CE0E9}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | 
"{88D596F9-EE9E-441E-992D-D26FA6F7E23F}" = rport=137 | protocol=17 | dir=out | app=system | 
"{928F3A88-9BFA-4F9A-A505-D8A9B6ACD759}" = lport=3702 | protocol=17 | dir=in | svc=fdphost | app=%systemroot%\system32\svchost.exe | 
"{9F5E9021-AC9D-4831-9EFD-D93487EFC0DE}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | 
"{A590FE2A-6821-4EB3-984C-96A9061EDAAA}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | 
"{A6403F76-80D9-456C-B032-A85276619B74}" = lport=2869 | protocol=6 | dir=in | app=system | 
"{A67246D2-4505-45B6-AFE1-EFCD0E2A62AC}" = rport=10243 | protocol=6 | dir=out | app=system | 
"{AB03AA73-AB2A-4EAC-84F0-140724C40B22}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | 
"{AD4D4F63-7D06-4E7F-A5BC-4D201C427099}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | 
"{B4988ECF-1F58-4790-862C-2E05DB1424C2}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | 
"{B7118795-1BD0-4B3A-A97F-2E6BA3350EF6}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | 
"{C70E10EA-410D-4C51-899B-793E78FBDA15}" = lport=138 | protocol=17 | dir=in | app=system | 
"{D954A6BC-8804-4047-B789-0C4C07B0EE67}" = lport=137 | protocol=17 | dir=in | app=system | 
"{E31EA8C0-6012-4C23-9B3A-723AD77747D5}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | 
"{E80280C3-BF5E-4F90-9999-1E048379B231}" = rport=445 | protocol=6 | dir=out | app=system | 
"{EAFCB08C-5FB9-4CF2-A09A-330EC8CB852B}" = rport=138 | protocol=17 | dir=out | app=system | 
"{F5CCD281-3864-46AF-94AD-C0E6FFBC80BF}" = rport=3702 | protocol=17 | dir=out | svc=fdrespub | app=%systemroot%\system32\svchost.exe | 
"{FB2E01A1-0BEC-433C-AA7F-2064B98AF110}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | 
 
========== Vista Active Application Exception List ==========
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{05C2B9FE-BD49-4768-A6A9-57DF757E05D1}" = protocol=6 | dir=out | app=system | 
"{09CDE4E0-75AE-40E4-818B-28A5DE7E9672}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | 
"{0CD4332A-9B69-4B97-8FE6-1C49CDA1BE71}" = protocol=17 | dir=in | app=c:\program files (x86)\sony ericsson\update engine\sony ericsson update engine.exe | 
"{0EB8732A-093F-450D-B7A7-EE9C4C6D4777}" = protocol=6 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe | 
"{120C8447-4625-4153-A5B5-56CC18C56812}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | 
"{1657B4E7-648F-4E02-A3A9-06B7344B33B3}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | 
"{244CBEAA-D79A-454A-A49D-836B86B9AFBB}" = dir=in | app=c:\program files (x86)\avg\avg9\avgemc.exe | 
"{269B1D16-C22D-41E2-A6AD-4D1323933FB6}" = dir=in | app=c:\program files (x86)\hewlett-packard\media\dvd\hptouchsmartmusic.exe | 
"{29D3750F-47DD-4742-B765-DA1461281456}" = protocol=6 | dir=in | app=c:\program files (x86)\utorrent\utorrent.exe | 
"{2DAB2E12-B5B9-44D4-91D7-C48F810044BA}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | 
"{342C5810-7DFE-4A9F-8F4C-6440DED97FED}" = dir=in | app=c:\program files (x86)\hewlett-packard\touchsmart\media\hptouchsmartmusic.exe | 
"{394957D4-3567-4FEF-9647-55260D194513}" = dir=in | app=c:\program files (x86)\hewlett-packard\media\dvd\hpdvdsmart.exe | 
"{3E09860B-DCB3-4C04-9606-6AFFD80F5EF6}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | 
"{45CAD580-21CA-40E6-91A0-95A4978E806E}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | 
"{4BBA9393-AF13-4F36-AB3D-FAD3753A8406}" = dir=in | app=c:\program files (x86)\hewlett-packard\touchsmart\media\kernel\clml\clmlsvc.exe | 
"{4C738961-C766-47B7-8788-8CA2AD7F4A2C}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | 
"{565134C0-0C73-46BF-9608-F45224F45E44}" = protocol=17 | dir=in | app=c:\windows\syswow64\msiexec.exe | 
"{6075C8E9-C135-411E-8C16-CBE2B8BE9865}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | 
"{69A88C73-C973-47C6-B732-C9F425BAB8E3}" = dir=in | app=c:\program files (x86)\hewlett-packard\media\dvd\kernel\clml\clmlsvc.exe | 
"{6EDAC340-0DB1-4881-827C-C2551D641143}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe | 
"{70F584D0-FD39-4568-BAFE-969B217C9CBF}" = dir=in | app=c:\program files (x86)\hewlett-packard\media\dvd\tsmagent.exe | 
"{7E476DA1-FBE5-4FF6-A936-DF9194018998}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | 
"{7E61EBF5-EBB6-461D-9D78-19FBE6AA0427}" = dir=in | app=c:\program files (x86)\hewlett-packard\touchsmart\media\hptouchsmartphoto.exe | 
"{7F3492A4-63A9-47E4-B217-DAE8F56BCBDC}" = protocol=6 | dir=in | app=c:\program files (x86)\sweetim\communicator\sweetpacksupdatemanager.exe | 
"{82008FBE-7F63-4A10-A5DC-B4CE562745DD}" = protocol=6 | dir=in | app=c:\program files (x86)\sony ericsson\update engine\sony ericsson update engine.exe | 
"{8270F4E4-4356-401D-8B74-E62F7E05DAC5}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | 
"{940F7546-E6BB-43DA-B87E-6E9A8A412B1C}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\groove.exe | 
"{9488E5C3-BF7E-4B31-BEBD-8CF0571EC0F1}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe | 
"{948F5944-2AD2-46C2-AA34-84AD86866C29}" = dir=in | app=c:\program files (x86)\avg\avg9\avgnsa.exe | 
"{9681354B-ACD9-4B42-879C-557354AE27A0}" = protocol=17 | dir=in | app=c:\program files (x86)\sony ericsson\update engine\sony ericsson update engine.exe | 
"{97586A64-79C8-485A-8C8C-BDCC8FE812B9}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | 
"{9B26FDEC-0E29-476A-9CF2-935392227664}" = dir=in | app=c:\program files (x86)\itunes\itunes.exe | 
"{9BB05994-8E51-437A-89E6-25B4B188E0E0}" = dir=in | app=c:\program files (x86)\common files\apple\apple application support\webkit2webprocess.exe | 
"{9C761D0C-B04F-4AEB-ADD9-4091E21483DE}" = dir=in | app=c:\users\julia\appdata\local\facebook\video\skype\facebookvideocalling.exe | 
"{A383454D-1A7B-4DF4-BC81-4A3F96B9AAB9}" = dir=in | app=c:\program files (x86)\hewlett-packard\media\live tv\qpservice.exe | 
"{A6B9E47C-1AEA-4341-9076-00A4599E889C}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe | 
"{A8003A96-98FF-45DC-9D72-104CE2660796}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe | 
"{A900CEC0-B59F-429D-AB62-CC97D6613704}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | 
"{B422C0FA-A00F-42C8-A946-903BDB3B753A}" = dir=in | app=c:\program files (x86)\hewlett-packard\touchsmart\media\hptouchsmartvideo.exe | 
"{BA2945E7-00F8-4997-A93D-9D111ABBBD8C}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | 
"{C0626C9E-6188-4A8E-B4AC-72B8EF62DCF0}" = dir=in | app=c:\program files (x86)\windows live\messenger\msnmsgr.exe | 
"{C30AF1D7-24CE-4451-B530-0E9E854F088F}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office12\groove.exe | 
"{C6844E7A-C7A9-4584-B6EB-F75CB473015F}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | 
"{CA80F7A2-0F9F-40AF-9834-57F30F67F633}" = protocol=17 | dir=in | app=c:\program files (x86)\sweetim\communicator\sweetpacksupdatemanager.exe | 
"{CF66F832-1F24-418A-BD04-A5A0003DC464}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | 
"{D1F92C77-9D2C-479D-A126-35C2E1E89772}" = dir=in | app=c:\program files (x86)\hewlett-packard\touchsmart\media\tsmagent.exe | 
"{D47A0190-547D-4844-BE3B-ACB71AE24FC8}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | 
"{D51F14D7-60CB-4E3C-8C13-0A6B8F65C6AC}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | 
"{D63D1DA5-676B-4057-9892-3ED52130DE20}" = protocol=6 | dir=in | app=c:\windows\syswow64\msiexec.exe | 
"{D8C1F577-D780-4B18-ABF0-785BB6C3F420}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | 
"{E26898AE-1CCF-4E67-B384-B6096F5B75D3}" = dir=in | app=c:\program files (x86)\hewlett-packard\media\dvd\hptouchsmartvideo.exe | 
"{E2DD571B-1892-4F47-B11D-7F4C22840A01}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe | 
"{E5253AB3-830C-4393-8184-1C170D526FC3}" = protocol=17 | dir=in | app=c:\program files (x86)\utorrent\utorrent.exe | 
"{E9AFB9D4-E560-4E30-848D-BC6C7B16721B}" = dir=in | app=c:\program files (x86)\hewlett-packard\media\dvd\hptouchsmartphoto.exe | 
"{EA3226BC-CEF9-4EBB-A96E-B85CCBC5F8C1}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe | 
"{EA4E51D9-0CDA-43D5-9238-75E31C0B7015}" = protocol=17 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe | 
"{EB2E5C4E-4FF5-4B53-9F3D-EDC1C7E484FD}" = protocol=17 | dir=in | app=c:\program files (x86)\opera\opera.exe | 
"{EF0DBEEA-A6F5-43E5-AA99-55E16C36E80A}" = dir=in | app=c:\program files (x86)\hewlett-packard\media\live tv\qp.exe | 
"{F0E24DD4-C911-485D-AD1D-3D7448D40816}" = protocol=6 | dir=in | app=c:\program files (x86)\opera\opera.exe | 
"{F1468B13-8F38-48F8-AC01-C1A1D7D4A871}" = dir=in | app=c:\program files (x86)\avg\avg9\avgupd.exe | 
"{F9179DD5-319A-4029-A236-6865F77F5508}" = protocol=6 | dir=in | app=c:\program files (x86)\sony ericsson\update engine\sony ericsson update engine.exe | 
"{FE351999-ECC7-4F26-9AAB-CC59A9C5D541}" = dir=in | app=c:\program files (x86)\cyberlink\powerdirector\pdr.exe | 
"TCP Query User{45D24766-62EE-4F77-8352-7281D53B5F99}C:\program files\logitech\desktop messenger\8876480\program\backweb-8876480.exe" = protocol=6 | dir=in | app=c:\program files\logitech\desktop messenger\8876480\program\backweb-8876480.exe | 
"TCP Query User{4D9B00C0-B087-4DDB-8AAE-8C7EE8C4E034}C:\program files\logitech\desktop messenger\8876480\program\backweb-8876480.exe" = protocol=6 | dir=in | app=c:\program files\logitech\desktop messenger\8876480\program\backweb-8876480.exe | 
"TCP Query User{553E624D-23FB-4B5B-B370-2B486EDEDF17}C:\program files (x86)\nowe gadu-gadu\gg.exe" = protocol=6 | dir=in | app=c:\program files (x86)\nowe gadu-gadu\gg.exe | 
"TCP Query User{75E10E12-FA83-47FE-8EC9-A24B0DB1758F}C:\program files (x86)\secondlifeviewer\slvoice.exe" = protocol=6 | dir=in | app=c:\program files (x86)\secondlifeviewer\slvoice.exe | 
"TCP Query User{7A02DA1D-9162-4242-8FF1-FB0EC6579DB8}C:\program files (x86)\gadu-gadu 10\gg.exe" = protocol=6 | dir=in | app=c:\program files (x86)\gadu-gadu 10\gg.exe | 
"TCP Query User{88265748-7B1C-4DA4-BCDA-FCEF172692A9}C:\program files (x86)\gadu-gadu 10\gg.exe" = protocol=6 | dir=in | app=c:\program files (x86)\gadu-gadu 10\gg.exe | 
"TCP Query User{A635547E-8FFD-4174-A5FD-BA3DFC37DB96}C:\program files\java\jre6\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files\java\jre6\bin\javaw.exe | 
"TCP Query User{C4BCD070-D6DD-4C8D-839E-B9826DA299FC}C:\users\julia\desktop\utorrent.exe" = protocol=6 | dir=in | app=c:\users\julia\desktop\utorrent.exe | 
"TCP Query User{D188E903-CA75-4957-A989-5E5C0E162BF8}C:\program files (x86)\electronic arts\eadm\core.exe" = protocol=6 | dir=in | app=c:\program files (x86)\electronic arts\eadm\core.exe | 
"UDP Query User{091A027D-8958-4E92-A352-4B6AA2E162C3}C:\program files (x86)\gadu-gadu 10\gg.exe" = protocol=17 | dir=in | app=c:\program files (x86)\gadu-gadu 10\gg.exe | 
"UDP Query User{0E52C4B3-AF64-42C0-927E-CE2037EB1359}C:\program files (x86)\nowe gadu-gadu\gg.exe" = protocol=17 | dir=in | app=c:\program files (x86)\nowe gadu-gadu\gg.exe | 
"UDP Query User{4F6CE0A7-53F3-4E31-995D-13A4B488DB05}C:\users\julia\desktop\utorrent.exe" = protocol=17 | dir=in | app=c:\users\julia\desktop\utorrent.exe | 
"UDP Query User{5FBC2415-E31E-438A-98D1-866843568E6A}C:\program files (x86)\gadu-gadu 10\gg.exe" = protocol=17 | dir=in | app=c:\program files (x86)\gadu-gadu 10\gg.exe | 
"UDP Query User{69718E49-FC68-48C8-B792-DA5BFAA7622B}C:\program files\java\jre6\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files\java\jre6\bin\javaw.exe | 
"UDP Query User{7550425C-0D8A-4ED0-99AE-E5855DF82640}C:\program files\logitech\desktop messenger\8876480\program\backweb-8876480.exe" = protocol=17 | dir=in | app=c:\program files\logitech\desktop messenger\8876480\program\backweb-8876480.exe | 
"UDP Query User{8554742F-83FF-403A-B8CC-F27A51AEFB85}C:\program files\logitech\desktop messenger\8876480\program\backweb-8876480.exe" = protocol=17 | dir=in | app=c:\program files\logitech\desktop messenger\8876480\program\backweb-8876480.exe | 
"UDP Query User{8DDB367D-A750-4070-9632-81DB7D129001}C:\program files (x86)\secondlifeviewer\slvoice.exe" = protocol=17 | dir=in | app=c:\program files (x86)\secondlifeviewer\slvoice.exe | 
"UDP Query User{AE0186E3-AC7C-45C1-9D87-73E94908DE41}C:\program files (x86)\electronic arts\eadm\core.exe" = protocol=17 | dir=in | app=c:\program files (x86)\electronic arts\eadm\core.exe | 
 
========== HKEY_LOCAL_MACHINE Uninstall List ==========
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{071c9b48-7c32-4621-a0ac-3f809523288f}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{16AD84C0-E7A0-F64D-D55A-15D274C4439A}" = ccc-utility64
"{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219
"{33B18075-C7DF-4839-8517-C6E9338D84F2}" = HP 3D DriveGuard
"{4BDE7544-0A08-4AD9-8A8F-4B7944471C36}" = iTunes
"{56F26668-13DA-497A-883F-61434A10CBAB}" = MobileMe Control Panel
"{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
"{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}" = Bonjour
"{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
"{83715090-142B-D305-36EC-7538A007D336}" = ATI Catalyst Install Manager
"{88E60521-1E4E-4785-B9F1-1798A4BD0C30}" = HP MediaSmart SmartMenu
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{90120000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2007
"{90120000-002A-0415-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (Polish) 2007
"{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting
"{9E9D49A4-1DF4-4138-B7DB-5D87A893088E}" = HP Integrated Module with Bluetooth wireless technology
"{A49402DD-2781-3782-B0CF-52BDA349E3F3}" = Microsoft .NET Framework 4 Client Profile PLK Language Pack
"{aac9fcc4-dd9e-4add-901c-b5496a07ab2e}" = Microsoft Visual C++ 2005 Redistributable (x64) - KB2467175
"{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{B6E3757B-5E77-3915-866A-CCFC4B8D194C}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053
"{B8AD779A-82DA-4365-A7D0-AD3DCFC55CFF}" = Apple Mobile Device Support
"{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile
"Broadcom 802.11 Wireless LAN Adapter" = Broadcom 802.11 Wireless LAN Adapter
"FFE7D41DF3C645075BB149E21988B63996C34187" = ENE CIR Receiver Driver
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Microsoft .NET Framework 4 Client Profile PLK Language Pack" = Polski pakiet językowy dla programu Microsoft .NET Framework 4 Client Profile
"SynTPDeinstKey" = Synaptics Pointing Device Driver
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}" = Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148
"{01FB4998-33C4-4431-85ED-079E3EEFE75D}" = HP MediaSmart Webcam
"{07FA4960-B038-49EB-891B-9F95930AA544}" = HP Customer Experience Enhancements
"{08DB3902-2CE0-474D-BCE3-0177766CE9F1}" = HP Support Assistant
"{0E532C84-4275-41B3-9D81-D4A1A20D8EE7}" = PlayStation®Store
"{1111706F-666A-4037-7777-210328764D10}" = JavaFX 2.1.0
"{16B2F93F-6C48-4F27-99DB-268AFEA2F35A}" = Kopciuszek: Zostań księżniczką
"{196467F1-C11F-4F76-858B-5812ADC83B94}" = MSXML 4.0 SP3 Parser
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}" = CyberLink DVD Suite
"{205C6BDD-7B73-42DE-8505-9A093F35A238}" = Narzędzie do przekazywania usługi Windows Live
"{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}" = MSVCRT
"{231BB0CA-0455-4478-A19F-66423A16AC7B}" = Hotel dla zwierzaków
"{254C37AA-6B72-4300-84F6-98A82419187E}" = ActiveCheck component for HP Active Support Library
"{26604C7E-A313-4D12-867F-7C6E7820BE4C}" = JMicron Flash Media Controller Driver
"{266D0EEA-E5A6-4A08-A0EE-5391D4EA44A7}" = Catalyst Control Center - Branding
"{26A24AE4-039D-4CA4-87B4-2F83217025FF}" = Java 7 Update 25
"{27B0C2FD-9739-8D7D-6552-307C786D9097}" = Catalyst Control Center InstallProxy
"{2A30052B-831C-41D3-8044-3C0388066350}" = Seagate Manager Installer
"{2A5FBE73-76DA-4A31-BD86-1B0E01DC33F8}" = Windows Live Messenger
"{2FDBBCEA-62DB-45F4-B6E5-0E1FB2A1F29D}" = Visual C++ 8.0 Runtime Setup Package (x64)
"{3023EBDA-BF1B-4831-B347-E5018555F26E}" = HP MediaSmart Movie Themes
"{306B39C9-3AB1-4161-8567-9C7E50B41AE3}" = Microsoft Works
"{34D2AB40-150D-475D-AE32-BD23FB5EE355}" = HP Quick Launch Buttons
"{359FCAA7-B544-4147-AE3B-8C8A526E2427}" = Sony Image Data Suite
"{38022B5C-0C69-389F-DA48-B87480B5705A}" = CCC Help Turkish
"{3B4E636E-9D65-4D67-BA61-189800823F52}" = Windows Live Communications Platform
"{3BBBF379-6C7E-0985-18F6-6C60D6C36EC6}" = CCC Help Portuguese
"{3BBFD444-5FAB-49F6-98B1-A1954E831399}" = The Sims™ 3 Zostań gwiazdą
"{3DE92282-CB49-434F-81BF-94E5B380E889}" = The Sims™ 3 Cztery pory roku
"{40BF1E83-20EB-11D8-97C5-0009C5020658}" = Power2Go
"{44B2A0AB-412E-4F8C-B058-D1E8AECCDFF5}" = PowerRecover
"{45057FCE-5784-48BE-8176-D9D00AF56C3C}" = The Sims™ 3 Po zmroku
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4B2F56AC-C043-C84F-3EF1-E6D6F21E934F}" = Catalyst Control Center Graphics Full Existing
"{4DE3E3D9-AE81-45DE-9195-3015F7B1DBF3}" = Junk Mail filter update
"{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}" = Skype™ 6.3
"{4F2C2E34-5A3E-0E70-BDFC-A5B1E3C2FFAC}" = Catalyst Control Center Graphics Light
"{51958BA7-21E4-4A8B-9098-CD8375BD17B2}" = Asystent rejestracji usługi Windows Live
"{532715CE-CFD6-E4F8-53C3-2F1DE31C04DA}" = CCC Help Hungarian
"{54CC7901-804D-4155-B353-21F0CC9112AB}" = HP Wireless Assistant
"{558CC8A3-F1A2-9C31-7B90-F61E476B8622}" = CCC Help Dutch
"{5D09C772-ECB3-442B-9CC6-B4341C78FDC2}" = Obsługa programów Apple
"{5D76ABD5-262B-6D65-6C13-F38175C7A5AF}" = CCC Help Korean
"{5D92E608-E454-0C8C-D577-7F7C06151117}" = CCC Help Greek
"{65761BAE-11E8-48FE-B30F-1F01011AB906}" = Narzędzie The Sims™ 3 Stwórz świat – Beta
"{66491917-51F6-4A48-89BD-ED0E8DD109AA}" = Barbie™ Fashion Show™ CD-ROM
"{669D4A35-146B-4314-89F1-1AC3D7B88367}" = HPAsset component for HP Active Support Library
"{67626E09-5366-4480-8F1E-93FADF50CA15}" = HP MediaSmart Live TV
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{7204BDEE-1A48-4D95-A964-44A9250B439E}" = Facebook Messenger 2.1.4814.0
"{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
"{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update
"{78E9A751-5616-233F-1249-16AC5758C646}" = muvee Reveal Seagate Edition
"{79EECA21-CDFA-6012-5E8B-6CF2623D647A}" = Catalyst Control Center Graphics Full New
"{7B11296A-F894-449C-8DF6-6AAAA7D4D118}" = The Sims™ 3 Miejskie Życie Akcesoria
"{7BE6BC10-6737-CD9D-8363-F919B8D6D917}" = Catalyst Control Center Core Implementation
"{7FA1DAFD-AF55-E915-FD92-F269443A2ADF}" = Media Go Video Playback Engine 1.88.110.12050
"{80FBA7A7-ABD1-4910-A916-023075C45593}" = CCC Help Danish
"{82EF29B1-9B60-4142-A155-0599216DD053}" = LightScribe System Software
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}" = Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570
"{8797DE34-22BC-CA33-6B67-A0CC2765B545}" = CCC Help German
"{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek 8136 8168 8169 Ethernet Driver
"{89D1C17B-90DE-650A-073A-A7FA7BC6ECE5}" = CCC Help French
"{8C664716-FD23-9902-A29E-863D056F46FC}" = CCC Help Russian
"{8F36B221-F483-B7CE-4DDA-7BDA4D81E306}" = CCC Help English
"{8FB16749-1235-D027-AF25-1D22A9FEC0D5}" = CCC Help Thai
"{8FFC5648-FAF8-43A3-BC8F-42BA1E275C4E}" = Choice Guard
"{900B1197-53F5-4F46-A882-2CFFFE2EEDCB}" = Logitech Desktop Messenger
"{90120000-0015-0415-0000-0000000FF1CE}" = Microsoft Office Access MUI (Polish) 2007
"{90120000-0015-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0016-0415-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Polish) 2007
"{90120000-0016-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0018-0415-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Polish) 2007
"{90120000-0018-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0019-0415-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Polish) 2007
"{90120000-0019-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001A-0415-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Polish) 2007
"{90120000-001A-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001B-0415-0000-0000000FF1CE}" = Microsoft Office Word MUI (Polish) 2007
"{90120000-001B-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007
"{90120000-001F-0407-0000-0000000FF1CE}_ENTERPRISE_{A0516415-ED61-419A-981D-93596DA74165}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-0409-0000-0000000FF1CE}_ENTERPRISE_{ABDDE972-355B-4AF1-89A8-DA50B7B5C045}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-0415-0000-0000000FF1CE}" = Microsoft Office Proof (Polish) 2007
"{90120000-001F-0415-0000-0000000FF1CE}_ENTERPRISE_{E9EA2604-8AC9-47D2-8F4B-6BF60787A357}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-002A-0000-1000-0000000FF1CE}_ENTERPRISE_{E64BA721-2310-4B55-BE5A-2925F9706192}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-002A-0415-1000-0000000FF1CE}_ENTERPRISE_{D45F91DE-F0FC-4D5F-9A0C-FDE5B251AAC6}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-002C-0415-0000-0000000FF1CE}" = Microsoft Office Proofing (Polish) 2007
"{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007
"{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{3D019598-7B59-447A-80AE-815B703B84FF}" = Security Update for Microsoft Office system 2007 (972581)
"{90120000-0044-0415-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Polish) 2007
"{90120000-0044-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-006E-0415-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Polish) 2007
"{90120000-006E-0415-0000-0000000FF1CE}_ENTERPRISE_{D45F91DE-F0FC-4D5F-9A0C-FDE5B251AAC6}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-00A1-0415-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Polish) 2007
"{90120000-00A1-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-00BA-0415-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Polish) 2007
"{90120000-00BA-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{910F4A29-1134-49E0-AD8B-56E4A3152BD1}" = The Sims™ 3 Kariera
"{91A3A4DE-656A-5C7A-5B61-75FB6D167A6A}" = CCC Help Polish
"{933B4015-4618-4716-A828-5289FC03165F}" = VC80CRTRedist - 8.0.50727.6195
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{9EDB805A-E11C-8842-2393-FDFDA17963AC}" = CCC Help Chinese Traditional
"{a0fe116e-9a8a-466f-aee0-625cb7c207e3}" = Microsoft Visual C++ 2005 Redistributable - KB2467175
"{A16D1BBD-BE86-0183-4152-2E85FECC31F7}" = CCC Help Finnish
"{A19856E3-C9D7-988E-5B8C-70C87342B8DD}" = Catalyst Control Center Localization All
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{AC76BA86-7AD7-1045-7B44-A92000000001}" = Adobe Reader 9.2 - Polish
"{AC76BA86-7AD7-5464-3428-900000000004}" = Spelling Dictionaries Support For Adobe Reader 9
"{AD777154-A573-4FCA-C730-D7C33437262C}" = CCC Help Czech
"{B194272D-1F92-46DF-99EB-8D5CE91CB4EC}" = Adobe AIR
"{B2EE25B9-5B00-4ACF-94F0-92433C28C39E}" = HP MediaSmart Music/Photo/Video
"{B37DAFA5-717D-41F8-BDFB-3A4B68C0B3A1}" = The Sims™ 3 Nie z tego świata
"{B51605BF-6326-4553-AE96-6D7F1813D5F5}" = HP User Guides 0154
"{B53E61D7-7C80-40DF-82D2-CF5390D6D20A}" = HP Advisor
"{B6659DD8-00A7-4A24-BBFB-C1F6982E5D66}" = PlayStation®Network Downloader
"{B66D2CC9-652D-EBE5-497F-74BBC1029FB4}" = CCC Help Japanese
"{B6892A3F-51F5-4BA4-92E5-3F4A1A10720D}" = Podstawowe programy Windows Live
"{B6A4D07E-725F-07CD-DE49-8AB76939631D}" = CCC Help Norwegian
"{B6A98E5F-D6A7-46FB-9E9D-1F7BF443491C}" = PMB
"{B6CF2967-C81E-40C0-9815-C05774FEF120}" = Skype Click to Call
"{B92C5909-1D37-4C51-8397-A28BB28E5DC3}" = Facebook Video Calling 1.2.0.287
"{BA26FFA5-6D47-47DB-BE56-34C357B5F8CC}" = The Sims™ 3 Wymarzone Podróże
"{BF930A5D-4F36-5158-C8DA-DECD5B51A78E}" = CCC Help Chinese Standard
"{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}" = The Sims™ 3
"{C12631C6-804D-4B32-B0DD-8A496462F106}" = The Sims™ 3 Zwierzaki
"{C59C179C-668D-49A9-B6EA-0121CCFC1243}" = LabelPrint
"{C6FCE95C-0072-40C0-9AB2-3EF88DA6CED9}" = Catalyst Control Center Graphics Previews Common
"{C779648B-410E-4BBA-B75B-5815BCEFE71D}" = Safari
"{C9E14402-3631-4182-B377-6B0DFB1C0339}" = QuickTime
"{CB099890-1D5F-11D5-9EA9-0050BAE317E1}" = PowerDirector
"{D46D081B-F60E-467E-A7C4-117B70D76731}" = HP Update
"{DB4690C5-9015-401D-A96C-A49909B7C372}" = Poczta usługi Windows Live
"{DBF1AE39-DA30-4B89-A7EB-3BDA675C5D9E}" = Media Go
"{DCCAD079-F92C-44DA-B258-624FC6517A5A}" = HP MediaSmart DVD
"{DD49053A-0140-44EF-AE75-C4BC1FDB8286}" = Windows Live Writer
"{DF166A93-835F-DF13-E974-FD73E8D7F4F6}" = CCC Help Swedish
"{E09F7D2B-C1C1-D80B-7775-6FFE9D713C60}" = CCC Help Spanish
"{E26EEBF8-3A50-8095-5877-AE243C8852EF}" = Catalyst Control Center Graphics Previews Vista
"{E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}" = IDT Audio
"{E3E71D07-CD27-46CB-8448-16D4FB29AA13}" = Microsoft WSE 3.0 Runtime
"{E553760D-D7F7-48BF-BD8B-C7E23BA04CB5}" = HP MediaSmart Internet TV
"{E6B88BD6-E4B2-4701-A648-B6DAC6E491CC}" = The Sims™ 3 Pokolenia
"{E97C937C-AE21-453D-86A0-A231507543D1}" = ACID Music Studio 8.0
"{EC8049FF-B0E3-A963-408C-1B1D8F20DD55}" = CCC Help Italian
"{ED436EA8-4145-4703-AE5D-4D09DD24AF5A}" = The Sims™ 3 Szybka jazda Akcesoria
"{F09EF8F2-0976-42C1-8D9D-8DF78337C6E3}" = Sony PC Companion 2.10.165
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219
"{F1D7AC58-554A-4A58-B784-B61558B1449A}" = QLBCASL
"{F3B912F5-EB57-45AA-B3D1-EB532BCF6EF8}" = HP Setup
"{FB697452-8CA4-46B4-98B1-165C922A2EF3}" = Update Manager for SweetPacks 1.0
"{FD1D88FA-E5E0-BA76-73C8-7362E9703842}" = ccc-core-static
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin
"Adobe Shockwave Player" = Adobe Shockwave Player 11.5
"Alik - Już idę do szkoły_is1" = Alik - Już idę do szkoły
"Alik - Mój pierwszy alfabet_is1" = Alik - Mój pierwszy alfabet
"Alik - Wesoła matematyka_is1" = Alik - Wesoła matematyka
"Amazing Photo Editor V7.9.2" = Amazing Photo Editor V7.9.2
"AVG9Uninstall" = AVG Free 9.0
"AviSynth" = AviSynth 2.5
"CCleaner" = CCleaner
"Didakta - Biologia (Nauka o człowieku)_is1" = Didakta - Biologia (Nauka o człowieku)
"Didakta - Chemia_is1" = Didakta - Chemia
"Didakta - Fizyka_is1" = Didakta - Fizyka
"Didakta - Geometria (Obliczenia i pomiary)_is1" = Didakta - Geometria (Obliczenia i pomiary)
"Didakta - Geometria (Zadania konstrukcyjne)_is1" = Didakta - Geometria (Zadania konstrukcyjne)
"Didakta - Historia_is1" = Didakta - Historia
"DivX Setup" = DivX Setup
"DVD Decrypter" = DVD Decrypter (Remove Only)
"ENTERPRISE" = Microsoft Office Enterprise 2007
"Gadu-Gadu 10" = Gadu-Gadu 10
"Google Chrome" = Google Chrome
"Google Updater" = Aktualizator Google
"InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}" = HP MediaSmart Webcam
"InstallShield_{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}" = CyberLink DVD Suite
"InstallShield_{2A30052B-831C-41D3-8044-3C0388066350}" = Seagate Manager Installer
"InstallShield_{3023EBDA-BF1B-4831-B347-E5018555F26E}" = HP MediaSmart Movie Themes
"InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}" = Power2Go
"InstallShield_{67626E09-5366-4480-8F1E-93FADF50CA15}" = HP MediaSmart Live TV
"InstallShield_{B2EE25B9-5B00-4ACF-94F0-92433C28C39E}" = HP MediaSmart Music/Photo/Video
"InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}" = LabelPrint
"InstallShield_{CB099890-1D5F-11D5-9EA9-0050BAE317E1}" = PowerDirector
"InstallShield_{DCCAD079-F92C-44DA-B258-624FC6517A5A}" = HP MediaSmart DVD
"InstallShield_{E553760D-D7F7-48BF-BD8B-C7E23BA04CB5}" = HP MediaSmart Internet TV
"ManyCam" = ManyCam 3.1.51
"McAfee Security Scan" = McAfee Security Scan Plus
"Mozilla Firefox (3.6.23)" = Mozilla Firefox (3.6.23)
"NapiProjekt_is1" = NapiProjekt (2.0.0.2151)
"Nowe Gadu-Gadu" = Nowe Gadu-Gadu
"NSS" = Norton Security Scan
"Opera 12.11.1661" = Opera 12.11
"Origin" = Origin
"PhotoScape" = PhotoScape
"Picasa 3" = Picasa 3
"SP_4e24eecb" = Search Assistant WebSearch 1.74
"SubEdit-Player_is1" = SubEdit-Player
"Szkoła podstawowa klasa 5 - DZIEŃ DOBRY HISTORIO!" = Szkoła podstawowa klasa 5 - DZIEŃ DOBRY HISTORIO!
"Szkoła podstawowa klasa 5 - Tajemnice przyrody" = Szkoła podstawowa klasa 5 - Tajemnice przyrody
"Szkoła podstawowa klasa 6 - Dzień dobry historio!" = Szkoła podstawowa klasa 6 - Dzień dobry historio!
"Szkoła podstawowa klasa 6 – Tajemnice przyrody" = Szkoła podstawowa klasa 6 – Tajemnice przyrody
"Tux Paint Stamps_is1" = Tux Paint Stamps 2008.06.30
"Tux Paint_is1" = Tux Paint 0.9.21
"Unlocker" = Unlocker 1.9.0
"Update Engine" = Sony Ericsson Update Engine
"uTorrent" = µTorrent
"V9Software" = Deinstalator Strony V9
"Videora iPod Converter" = Videora iPod Converter 5.04
"Vid-Saver" = Vid-Saver
"VLC media player" = VLC media player 2.0.1
"WildTangent hp Master Uninstall" = HP Games
"WinLiveSuite_Wave3" = Podstawowe programy Windows Live
 
========== HKEY_CURRENT_USER Uninstall List ==========
 
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"DSite" = Update for Video Converter
"Funmoods" = MaintenanceService-Funmoods
"PDF Reader" = PDF Reader
"PDF Reader Packages" = PDF Reader Packages
"Video Converter Packages" = Video Converter Packages
 
========== Last 20 Event Log Errors ==========
 
[ Application Events ]
Error - 2013-08-19 08:02:01 | Computer Name = Julia-Komputer | Source = Application Error | ID = 1000
Description = Nazwa aplikacji powodującej błąd: FlashPlayerUpdateService.exe, wersja:
 11.6.602.180, sygnatura czasowa: 0x51a4ab8c  Nazwa modułu powodującego błąd: ntdll.dll,
 wersja: 6.1.7601.17725, sygnatura czasowa: 0x4ec49b8f  Kod wyjątku: 0xc0000005  Przesunięcie
 błędu: 0x0002e243  Identyfikator procesu powodującego błąd: 0xa50  Godzina uruchomienia
 aplikacji powodującej błąd: 0x01ce9cd3e8ea9de7  Ścieżka aplikacji powodującej błąd:
 C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe  Ścieżka modułu powodującego
 błąd: C:\Windows\SysWOW64\ntdll.dll  Identyfikator raportu: 274443d9-08c7-11e3-90ba-0027132e2b0d
 
Error - 2013-08-19 08:04:21 | Computer Name = Julia-Komputer | Source = Application Error | ID = 1000
Description = Nazwa aplikacji powodującej błąd: DivXUpdate.exe, wersja: 1.0.6.15,
 sygnatura czasowa: 0x4e31ebcf  Nazwa modułu powodującego błąd: unknown, wersja: 0.0.0.0,
 sygnatura czasowa: 0x00000000  Kod wyjątku: 0x80000004  Przesunięcie błędu: 0x00317696
Identyfikator
 procesu powodującego błąd: 0x1098  Godzina uruchomienia aplikacji powodującej błąd:
 0x01ce9cccf338b222  Ścieżka aplikacji powodującej błąd: C:\Program Files (x86)\DivX\DivX
 Update\DivXUpdate.exe  Ścieżka modułu powodującego błąd: unknown  Identyfikator raportu:
 7ad5cd59-08c7-11e3-90ba-0027132e2b0d
 
Error - 2013-08-19 10:02:05 | Computer Name = Julia-Komputer | Source = Application Error | ID = 1000
Description = Nazwa aplikacji powodującej błąd: FlashPlayerUpdateService.exe, wersja:
 11.6.602.180, sygnatura czasowa: 0x51a4ab8c  Nazwa modułu powodującego błąd: ntdll.dll,
 wersja: 6.1.7601.17725, sygnatura czasowa: 0x4ec49b8f  Kod wyjątku: 0xc0000005  Przesunięcie
 błędu: 0x0002e243  Identyfikator procesu powodującego błąd: 0xd38  Godzina uruchomienia
 aplikacji powodującej błąd: 0x01ce9ce4adbb4bb3  Ścieżka aplikacji powodującej błąd:
 C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe  Ścieżka modułu powodującego
 błąd: C:\Windows\SysWOW64\ntdll.dll  Identyfikator raportu: ed3951ac-08d7-11e3-a93f-0027132e2b0d
 
[ Hewlett-Packard Events ]
Error - 2013-04-12 15:54:01 | Computer Name = Julia-Komputer | Source = Hewlett-Packard | ID = 0
Description = AAProcessExited() C:\ProgramData\Hewlett-Packard\HP Support Framework\Telemetry\041312095356.xml
 File not created by asset agent
 
Error - 2013-04-24 05:35:43 | Computer Name = Julia-Komputer | Source = Hewlett-Packard | ID = 0
Description = AAProcessExited() C:\ProgramData\Hewlett-Packard\HP Support Framework\Telemetry\041324113538.xml
 File not created by asset agent
 
Error - 2013-04-25 08:19:42 | Computer Name = Julia-Komputer | Source = Hewlett-Packard | ID = 0
Description = AAProcessExited() C:\ProgramData\Hewlett-Packard\HP Support Framework\Telemetry\041325021936.xml
 File not created by asset agent
 
Error - 2013-06-04 10:48:56 | Computer Name = Julia-Komputer | Source = Hewlett-Packard | ID = 0
Description = AAProcessExited() C:\ProgramData\Hewlett-Packard\HP Support Framework\Telemetry\061304044847.xml
 File not created by asset agent
 
Error - 2013-06-24 07:36:36 | Computer Name = Julia-Komputer | Source = Hewlett-Packard | ID = 0
Description = AAProcessExited() C:\ProgramData\Hewlett-Packard\HP Support Framework\Telemetry\061324013604.xml
 File not created by asset agent
 
Error - 2013-06-24 07:37:08 | Computer Name = Julia-Komputer | Source = Hewlett-Packard | ID = 0
Description = AAProcessExited() C:\ProgramData\Hewlett-Packard\HP Support Framework\Telemetry\061324013636.xml
 File not created by asset agent
 
Error - 2013-07-01 04:35:20 | Computer Name = Julia-Komputer | Source = Hewlett-Packard | ID = 0
Description = AAProcessExited() C:\ProgramData\Hewlett-Packard\HP Support Framework\Telemetry\071301103514.xml
 File not created by asset agent
 
Error - 2013-07-06 15:57:33 | Computer Name = Julia-Komputer | Source = Hewlett-Packard | ID = 0
Description = AAProcessExited() C:\ProgramData\Hewlett-Packard\HP Support Framework\Telemetry\071306095727.xml
 File not created by asset agent
 
Error - 2013-07-29 03:19:19 | Computer Name = Julia-Komputer | Source = Hewlett-Packard | ID = 0
Description = AAProcessExited() C:\ProgramData\Hewlett-Packard\HP Support Framework\Telemetry\071329091909.xml
 File not created by asset agent
 
Error - 2013-08-10 07:03:13 | Computer Name = Julia-Komputer | Source = Hewlett-Packard | ID = 0
Description = AAProcessExited() C:\ProgramData\Hewlett-Packard\HP Support Framework\Telemetry\081310010240.xml
 File not created by asset agent
 
[ System Events ]
Error - 2013-08-19 09:35:16 | Computer Name = Julia-Komputer | Source = Microsoft-Windows-WindowsUpdateClient | ID = 20
Description = Instalacja nie powiodła się: system Windows nie mógł zainstalować 
następującej aktualizacji, ponieważ wystąpił błąd 0x8007006e: Aktualizacja zabezpieczeń
 produktu Microsoft Office 2007 suites (KB2596871).
 
Error - 2013-08-19 09:35:18 | Computer Name = Julia-Komputer | Source = Microsoft-Windows-WindowsUpdateClient | ID = 20
Description = Instalacja nie powiodła się: system Windows nie mógł zainstalować 
następującej aktualizacji, ponieważ wystąpił błąd 0x8007006e: Aktualizacja zabezpieczeń
 produktu Microsoft Office PowerPoint 2007 (KB2596912).
 
Error - 2013-08-19 09:35:20 | Computer Name = Julia-Komputer | Source = Microsoft-Windows-WindowsUpdateClient | ID = 20
Description = Instalacja nie powiodła się: system Windows nie mógł zainstalować 
następującej aktualizacji, ponieważ wystąpił błąd 0x8007006e: Aktualizacja zabezpieczeń
 produktu Microsoft Office 2007 suites (KB2596672).
 
Error - 2013-08-19 09:35:21 | Computer Name = Julia-Komputer | Source = Microsoft-Windows-WindowsUpdateClient | ID = 20
Description = Instalacja nie powiodła się: system Windows nie mógł zainstalować 
następującej aktualizacji, ponieważ wystąpił błąd 0x8007006e: Aktualizacja zabezpieczeń
 produktu Microsoft Office 2007 suites (KB2687441).
 
Error - 2013-08-19 09:35:23 | Computer Name = Julia-Komputer | Source = Microsoft-Windows-WindowsUpdateClient | ID = 20
Description = Instalacja nie powiodła się: system Windows nie mógł zainstalować 
następującej aktualizacji, ponieważ wystąpił błąd 0x8007006e: Aktualizacja produktu
 Microsoft Office 2007 suites (KB2596660).
 
Error - 2013-08-19 09:35:25 | Computer Name = Julia-Komputer | Source = Microsoft-Windows-WindowsUpdateClient | ID = 20
Description = Instalacja nie powiodła się: system Windows nie mógł zainstalować 
następującej aktualizacji, ponieważ wystąpił błąd 0x8007006e: Aktualizacja zabezpieczeń
 produktu Microsoft Office 2007 suites (KB2687311).
 
Error - 2013-08-19 09:36:04 | Computer Name = Julia-Komputer | Source = Microsoft-Windows-WindowsUpdateClient | ID = 20
Description = Instalacja nie powiodła się: system Windows nie mógł zainstalować 
następującej aktualizacji, ponieważ wystąpił błąd 0x8007006e: Aktualizacja zabezpieczeń
 produktu Microsoft Office 2007 suites (KB2596744).
 
Error - 2013-08-19 09:36:06 | Computer Name = Julia-Komputer | Source = Microsoft-Windows-WindowsUpdateClient | ID = 20
Description = Instalacja nie powiodła się: system Windows nie mógł zainstalować 
następującej aktualizacji, ponieważ wystąpił błąd 0x8007006e: Aktualizacja zabezpieczeń
 produktu Microsoft Office 2007 suites (KB2687499).
 
Error - 2013-08-19 09:36:08 | Computer Name = Julia-Komputer | Source = Microsoft-Windows-WindowsUpdateClient | ID = 20
Description = Instalacja nie powiodła się: system Windows nie mógł zainstalować 
następującej aktualizacji, ponieważ wystąpił błąd 0x8007006e: Aktualizacja zabezpieczeń
 produktu Microsoft Office PowerPoint 2007 (KB2596764).
 
Error - 2013-08-19 09:43:13 | Computer Name = Julia-Komputer | Source = DCOM | ID = 10010
Description = 
 
 
< End of report >

Edited by internetaccess, 19 August 2013 - 10:31 AM.


#4 internetaccess

internetaccess
  • Topic Starter

  • Members
  • 9 posts
  • OFFLINE
  •  
  • Local time:04:15 AM

Posted 19 August 2013 - 09:32 AM



OTL logfile created on: 2013-08-19 15:45:56 - Run 1
OTL by OldTimer - Version 3.2.69.0     Folder = C:\Users\Julia\Desktop
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.10.9200.16660)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd
 
3,97 Gb Total Physical Memory | 1,75 Gb Available Physical Memory | 44,11% Memory free
7,93 Gb Paging File | 5,38 Gb Available in Paging File | 67,87% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
 
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 285,40 Gb Total Space | 73,66 Gb Free Space | 25,81% Space Free | Partition Type: NTFS
Drive D: | 12,50 Gb Total Space | 2,09 Gb Free Space | 16,75% Space Free | Partition Type: NTFS
Drive E: | 3,90 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: UDF
 
Computer Name: JULIA-KOMPUTER | User Name: Julia | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
 
========== Processes (SafeList) ==========
 
PRC - C:\Users\Julia\Desktop\OTL.scr (OldTimer Tools)
PRC - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.)
PRC - C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe (Sony)
PRC - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe (Adobe Systems Incorporated)
PRC - C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanionInfo.exe ()
PRC - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\backWeb-8876480.exe (Logitech)
PRC - C:\Program Files (x86)\AVG\AVG9\avgtray.exe (AVG Technologies CZ, s.r.o.)
PRC - C:\Program Files (x86)\McAfee Security Scan\3.0.229\SSScheduler.exe (McAfee, Inc.)
PRC - C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe ()
PRC - C:\Program Files (x86)\Sony\PMB\PMBVolumeWatcher.exe (Sony Corporation)
PRC - C:\Program Files (x86)\Sony\PMB\PMBDeviceInfoProvider.exe (Sony Corporation)
PRC - C:\Program Files (x86)\AVG\AVG9\avgcsrvx.exe (AVG Technologies CZ, s.r.o.)
PRC - C:\Windows\SysWOW64\schtasks.exe (Microsoft Corporation)
PRC - C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe (Hewlett-Packard Company)
PRC - C:\Program Files (x86)\AVG\AVG9\avgemc.exe (AVG Technologies CZ, s.r.o.)
PRC - C:\Program Files (x86)\AVG\AVG9\avgwdsvc.exe (AVG Technologies CZ, s.r.o.)
PRC - C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe (Microsoft Corporation)
PRC - C:\Program Files (x86)\Seagate\SeagateManager\Sync\FreeAgentService.exe (Seagate Technology LLC)
PRC - C:\Program Files (x86)\Seagate\SeagateManager\FreeAgent Status\stxmenumgr.exe (Seagate LLC)
PRC - C:\Program Files\WIDCOMM\Bluetooth Software\BluetoothHeadsetProxy.exe (Broadcom Corporation.)
PRC - c:\Program Files (x86)\Hewlett-Packard\Media\Live TV\TVAgent.exe (CyberLink Corp.)
PRC - c:\Program Files (x86)\Hewlett-Packard\Media\DVD\DVDAgent.exe (CyberLink Corp.)
PRC - c:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMLSvc.exe (CyberLink)
 
 
========== Modules (No Company Name) ==========
 
MOD - C:\Program Files (x86)\Google\Chrome\Application\28.0.1500.95\ppGoogleNaClPluginChrome.dll ()
MOD - C:\Program Files (x86)\Google\Chrome\Application\28.0.1500.95\pdf.dll ()
MOD - C:\Program Files (x86)\Google\Chrome\Application\28.0.1500.95\libglesv2.dll ()
MOD - C:\Program Files (x86)\Google\Chrome\Application\28.0.1500.95\libegl.dll ()
MOD - C:\Program Files (x86)\Google\Chrome\Application\28.0.1500.95\ffmpegsumo.dll ()
MOD - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_224.dll ()
MOD - C:\Program Files (x86)\Sony\Sony PC Companion\MExplorer.dll ()
MOD - C:\Program Files (x86)\Sony\Sony PC Companion\sqlite3.dll ()
MOD - C:\Program Files (x86)\Sony\Sony PC Companion\PhoneUpdate.dll ()
MOD - C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanionInfo.exe ()
MOD - C:\Program Files\Logitech\Desktop Messenger\8876480\6.1.4.68-8876480L\Program\bwfiles.dll ()
MOD - C:\Program Files\Logitech\Desktop Messenger\8876480\6.1.4.68-8876480L\Program\BWScriptExt.dll ()
MOD - C:\Program Files\Logitech\Desktop Messenger\8876480\6.1.4.68-8876480L\Program\clntutil.dll ()
MOD - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\bwscriptext-8876480.dll ()
MOD - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWfiles-8876480.dll ()
MOD - C:\Program Files (x86)\Sony\Sony PC Companion\TMonitorAPI.dll ()
MOD - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll ()
MOD - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll ()
MOD - C:\Program Files (x86)\DivX\DivX Update\DivXUpdateCheck.dll ()
MOD - C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe ()
MOD - C:\Program Files (x86)\Sony\Sony PC Companion\Report.dll ()
MOD - c:\Program Files (x86)\Hewlett-Packard\Media\Live TV\Kernel\TV\CLCapEngine.dll ()
MOD - c:\Program Files (x86)\Hewlett-Packard\Media\Live TV\Kernel\TV\CLSchMgr.dll ()
MOD - c:\Program Files (x86)\Hewlett-Packard\Media\Live TV\Kernel\TV\CLTinyDB.dll ()
MOD - c:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMediaLibrary.dll ()
MOD - C:\Program Files (x86)\Common Files\LightScribe\QtGui4.dll ()
MOD - C:\Program Files (x86)\Common Files\LightScribe\QtCore4.dll ()
MOD - C:\Program Files (x86)\Common Files\LightScribe\plugins\imageformats\qjpeg4.dll ()
 
 
========== Services (SafeList) ==========
 
SRV:64bit: - (WinDefend) -- C:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation)
SRV:64bit: - (STacSV) -- C:\Windows\SysNative\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_70dacb64382a61a7\stacsv64.exe (IDT, Inc.)
SRV:64bit: - (btwdins) -- C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe (Broadcom Corporation.)
SRV:64bit: - (hpsrv) -- C:\Windows\SysNative\hpservice.exe (Hewlett-Packard)
SRV:64bit: - (AMD External Events Utility) -- C:\Windows\SysNative\atiesrxx.exe (AMD)
SRV:64bit: - (AESTFilters) -- C:\Windows\SysNative\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_70dacb64382a61a7\AESTSr64.exe (Andrea Electronics Corporation)
SRV - (AdobeFlashPlayerUpdateSvc) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe (Adobe Systems Incorporated)
SRV - (SkypeUpdate) -- C:\Program Files (x86)\Skype\Updater\Updater.exe (Skype Technologies)
SRV - (Sony PC Companion) -- C:\Program Files (x86)\Sony\Sony PC Companion\PCCService.exe (Avanquest Software)
SRV - (McComponentHostService) -- C:\Program Files (x86)\McAfee Security Scan\3.0.229\McCHSvc.exe (McAfee, Inc.)
SRV - (PMBDeviceInfoProvider) -- C:\Program Files (x86)\Sony\PMB\PMBDeviceInfoProvider.exe (Sony Corporation)
SRV - (HPDrvMntSvc.exe) -- C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe (Hewlett-Packard Company)
SRV - (avg9emc) -- C:\Program Files (x86)\AVG\AVG9\avgemc.exe (AVG Technologies CZ, s.r.o.)
SRV - (avg9wd) -- C:\Program Files (x86)\AVG\AVG9\avgwdsvc.exe (AVG Technologies CZ, s.r.o.)
SRV - (STacSV) -- C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_70dacb64382a61a7\STacSV64.exe (IDT, Inc.)
SRV - (clr_optimization_v4.0.30319_32) -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe (Microsoft Corporation)
SRV - (FreeAgentGoNext Service) -- C:\Program Files (x86)\Seagate\SeagateManager\Sync\FreeAgentService.exe (Seagate Technology LLC)
SRV - (clr_optimization_v2.0.50727_32) -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe (Microsoft Corporation)
SRV - (GameConsoleService) -- C:\Program Files (x86)\HP Games\HP Game Console\GameConsoleService.exe (WildTangent, Inc.)
SRV - (AESTFilters) -- C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_70dacb64382a61a7\AESTSr64.exe (Andrea Electronics Corporation)
 
 
========== Driver Services (SafeList) ==========
 
DRV:64bit: - (usb_rndisx) -- C:\Windows\SysNative\drivers\usb8023x.sys (Microsoft Corporation)
DRV:64bit: - (mcaudrv_simple) -- C:\Windows\SysNative\drivers\mcaudrv_x64.sys (ManyCam LLC)
DRV:64bit: - (ManyCam) -- C:\Windows\SysNative\drivers\mcvidrv_x64.sys (ManyCam LLC)
DRV:64bit: - (ggsemc) -- C:\Windows\SysNative\drivers\ggsemc.sys (Sony Ericsson Mobile Communications)
DRV:64bit: - (ggflt) -- C:\Windows\SysNative\drivers\ggflt.sys (Sony Ericsson Mobile Communications)
DRV:64bit: - (Fs_Rec) -- C:\Windows\SysNative\drivers\fs_rec.sys (Microsoft Corporation)
DRV:64bit: - (USBAAPL64) -- C:\Windows\SysNative\drivers\usbaapl64.sys (Apple, Inc.)
DRV:64bit: - (AvgMfx64) -- C:\Windows\SysNative\drivers\avgmfx64.sys (AVG Technologies CZ, s.r.o.)
DRV:64bit: - (AvgTdiA) -- C:\Windows\SysNative\drivers\avgtdia.sys (AVG Technologies CZ, s.r.o.)
DRV:64bit: - (amdsata) -- C:\Windows\SysNative\drivers\amdsata.sys (Advanced Micro Devices)
DRV:64bit: - (amdxata) -- C:\Windows\SysNative\drivers\amdxata.sys (Advanced Micro Devices)
DRV:64bit: - (HpSAMD) -- C:\Windows\SysNative\drivers\HpSAMD.sys (Hewlett-Packard Company)
DRV:64bit: - (TsUsbFlt) -- C:\Windows\SysNative\drivers\TsUsbFlt.sys (Microsoft Corporation)
DRV:64bit: - (sdbus) -- C:\Windows\SysNative\drivers\sdbus.sys (Microsoft Corporation)
DRV:64bit: - (sptd) -- C:\Windows\SysNative\drivers\sptd.sys ()
DRV:64bit: - (AvgLdx64) -- C:\Windows\SysNative\drivers\avgldx64.sys (AVG Technologies CZ, s.r.o.)
DRV:64bit: - (SynTP) -- C:\Windows\SysNative\drivers\SynTP.sys (Synaptics Incorporated)
DRV:64bit: - (STHDA) -- C:\Windows\SysNative\drivers\stwrt64.sys (IDT, Inc.)
DRV:64bit: - (BCM43XX) -- C:\Windows\SysNative\drivers\BCMWL664.SYS (Broadcom Corporation)
DRV:64bit: - (JMCR) -- C:\Windows\SysNative\drivers\jmcr.sys (JMicron Technology Corporation)
DRV:64bit: - (amdsbs) -- C:\Windows\SysNative\drivers\amdsbs.sys (AMD Technologies Inc.)
DRV:64bit: - (LSI_SAS2) -- C:\Windows\SysNative\drivers\lsi_sas2.sys (LSI Corporation)
DRV:64bit: - (stexstor) -- C:\Windows\SysNative\drivers\stexstor.sys (Promise Technology)
DRV:64bit: - (RTL8167) -- C:\Windows\SysNative\drivers\Rt64win7.sys (Realtek                                            )
DRV:64bit: - (hpdskflt) -- C:\Windows\SysNative\drivers\hpdskflt.sys (Hewlett-Packard)
DRV:64bit: - (Accelerometer) -- C:\Windows\SysNative\drivers\Accelerometer.sys (Hewlett-Packard)
DRV:64bit: - (atikmdag) -- C:\Windows\SysNative\drivers\atikmdag.sys (ATI Technologies Inc.)
DRV:64bit: - (btwaudio) -- C:\Windows\SysNative\drivers\btwaudio.sys (Broadcom Corporation.)
DRV:64bit: - (btwavdt) -- C:\Windows\SysNative\drivers\btwavdt.sys (Broadcom Corporation.)
DRV:64bit: - (btwrchid) -- C:\Windows\SysNative\drivers\btwrchid.sys (Broadcom Corporation.)
DRV:64bit: - (enecir) -- C:\Windows\SysNative\drivers\enecir.sys (ENE TECHNOLOGY INC.)
DRV:64bit: - (AtiHdmiService) -- C:\Windows\SysNative\drivers\AtiHdmi.sys (ATI Research Inc.)
DRV:64bit: - (SrvHsfV92) -- C:\Windows\SysNative\drivers\VSTDPV6.SYS (Conexant Systems, Inc.)
DRV:64bit: - (SrvHsfWinac) -- C:\Windows\SysNative\drivers\VSTCNXT6.SYS (Conexant Systems, Inc.)
DRV:64bit: - (SrvHsfHDA) -- C:\Windows\SysNative\drivers\VSTAZL6.SYS (Conexant Systems, Inc.)
DRV:64bit: - (AgereSoftModem) -- C:\Windows\SysNative\drivers\agrsm64.sys (LSI Corp)
DRV:64bit: - (igfx) -- C:\Windows\SysNative\drivers\igdkmd64.sys (Intel Corporation)
DRV:64bit: - (yukonw7) -- C:\Windows\SysNative\drivers\yk62x64.sys (Marvell)
DRV:64bit: - (netw5v64) -- C:\Windows\SysNative\drivers\netw5v64.sys (Intel Corporation)
DRV:64bit: - (ebdrv) -- C:\Windows\SysNative\drivers\evbda.sys (Broadcom Corporation)
DRV:64bit: - (b06bdrv) -- C:\Windows\SysNative\drivers\bxvbda.sys (Broadcom Corporation)
DRV:64bit: - (b57nd60a) -- C:\Windows\SysNative\drivers\b57nd60a.sys (Broadcom Corporation)
DRV:64bit: - (hcw85cir) -- C:\Windows\SysNative\drivers\hcw85cir.sys (Hauppauge Computer Works, Inc.)
DRV:64bit: - (GEARAspiWDM) -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys (GEAR Software Inc.)
DRV:64bit: - (HpqKbFiltr) -- C:\Windows\SysNative\drivers\HpqKbFiltr.sys (Hewlett-Packard Development Company, L.P.)
DRV:64bit: - (btwl2cap) -- C:\Windows\SysNative\drivers\btwl2cap.sys (Broadcom Corporation.)
DRV:64bit: - (RimUsb) -- C:\Windows\SysNative\drivers\RimUsb_AMD64.sys (Research In Motion Limited)
DRV - (UnlockerDriver5) -- C:\Program Files (x86)\Unlocker\UnlockerDriver5.sys ()
DRV - (WIMMount) -- C:\Windows\SysWOW64\drivers\wimmount.sys (Microsoft Corporation)
 
 
========== Standard Registry (SafeList) ==========
 
 
========== Internet Explorer ==========
 
IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {6A1806CD-94D4-4689-BA73-E35EA1EA9990}
IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE:64bit: - HKLM\..\SearchScopes\{E2958F71-2B50-4864-811E-2F39556414E9}: "URL" = http://slirsredirect.search.aol.com/slirs_http/sredir?sredir=1602&query={searchTerms}&invocationType=tb50hpcnnbie7-pl-pl
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
IE - HKLM\..\SearchScopes,DefaultScope = {6A1806CD-94D4-4689-BA73-E35EA1EA9990}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
 
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
IE - HKCU\..\URLSearchHook: {90b49673-5506-483e-b92b-ca0265bd9ca8} - No CLSID value found
IE - HKCU\..\URLSearchHook: {D8278076-BC68-4484-9233-6E7F1628B56C} - No CLSID value found
IE - HKCU\..\SearchScopes,DefaultScope = {BB74DE59-BC4C-4172-9AC4-73315F71CFFE}
IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local;localhost
 
========== FireFox ==========
 
FF - prefs.js..extensions.enabledItems: {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}:1.3.10
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA}:6.0.29
FF - prefs.js..extensions.enabledItems: ffxtlbr@babylon.com:1.5.0
FF - prefs.js..extensions.enabledItems: welcome@toolmin.com:1.03
FF - prefs.js..extensions.enabledItems: {90b49673-5506-483e-b92b-ca0265bd9ca8}:3.9.0.3
FF - prefs.js..extensions.enabledItems: {23fcfd51-4958-4f00-80a3-ae97e717ed8b}:2.1.2.145
FF - prefs.js..extensions.enabledItems: ffxtlbr@funmoods.com:1.5.0
FF - prefs.js..extensions.enabledItems: crossriderapp3491@crossrider.com:0.81.20
FF - prefs.js..extensions.enabledItems: gencrawler@some.com:2.6
FF - prefs.js..extensions.enabledItems: addon@defaulttab.com:1.4.4
FF - prefs.js..extensions.enabledItems: oicqk@lmjlqlaxla.com:3.8
FF - user.js - File not found
 
FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_11_7_700_224.dll File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0: C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_224.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\Windows\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=:  File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Browser Plugin,version=1.0.0: C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0: C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF - HKLM\Software\MozillaPlugins\@google.com/npPicasa3,version=3.0.0: C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.25.2: C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files (x86)\Java\jre7\bin\new_plugin\npjp2.dll File not found
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.25.2: C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.4.1: C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@pack.google.com/Google Updater;version=14: C:\Program Files (x86)\Google\Google Updater\2.4.2432.1652\npCIDetect14.dll (Google)
FF - HKLM\Software\MozillaPlugins\@playstation.com/PsndlCheck,version=1.00: C:\Program Files (x86)\Sony\PLAYSTATION Network Downloader\nppsndl.dll (Sony Computer Entertainment Inc.)
FF - HKLM\Software\MozillaPlugins\@SonyCreativeSoftware.com/Media Go,version=1.0: C:\Program Files (x86)\Sony\Media Go\npmediago.dll (Sony Network Entertainment International LLC)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.0.1: C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF - HKCU\Software\MozillaPlugins\@Skype Limited.com/Facebook Video Calling Plugin: C:\Users\Julia\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited)
FF - HKCU\Software\MozillaPlugins\facebook.com/fbDesktopPlugin: C:\Users\Julia\AppData\Local\Facebook\Messenger\2.1.4814.0\npFbDesktopPlugin.dll (Facebook, Inc.)
 
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{23fcfd51-4958-4f00-80a3-ae97e717ed8b}: C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\DivXHTML5 [2012-02-12 22:52:34 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\oicqk@lmjlqlaxla.com: C:\Users\Julia\AppData\Roaming\Mozilla\Firefox\Profiles\8kg6a5z5.default\extensions\oicqk@lmjlqlaxla.com [2013-04-24 10:12:27 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 3.6.23\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2012-04-01 17:18:44 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 3.6.23\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2012-09-27 15:23:31 | 000,000,000 | ---D | M]
 
[2010-09-02 17:19:04 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Julia\AppData\Roaming\mozilla\Extensions
[2013-08-19 13:55:53 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Julia\AppData\Roaming\mozilla\Firefox\Profiles\8kg6a5z5.default\extensions
[2013-08-19 13:55:51 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Julia\AppData\Roaming\mozilla\Firefox\Profiles\8kg6a5z5.default\extensions\{90b49673-5506-483e-b92b-ca0265bd9ca8}
[2011-10-24 00:09:35 | 000,000,000 | ---D | M] (Adblock Plus) -- C:\Users\Julia\AppData\Roaming\mozilla\Firefox\Profiles\8kg6a5z5.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}
[2013-08-19 13:55:51 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Julia\AppData\Roaming\mozilla\Firefox\Profiles\8kg6a5z5.default\extensions\addon@defaulttab.com
[2013-04-24 10:12:27 | 000,000,000 | ---D | M] (Broowose22save) -- C:\Users\Julia\AppData\Roaming\mozilla\Firefox\Profiles\8kg6a5z5.default\extensions\oicqk@lmjlqlaxla.com
[2012-02-12 22:59:13 | 000,000,000 | ---D | M] (toolplugin) -- C:\Users\Julia\AppData\Roaming\mozilla\Firefox\Profiles\8kg6a5z5.default\extensions\welcome@toolmin.com
[2013-04-20 02:36:53 | 000,002,512 | ---- | M] () -- C:\Users\Julia\AppData\Roaming\mozilla\firefox\profiles\8kg6a5z5.default\searchplugins\ask-search.xml
[2013-08-19 15:28:45 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\mozilla firefox\extensions
[2012-03-16 16:10:12 | 000,000,000 | ---D | M] (Skype Click to Call) -- C:\Program Files (x86)\mozilla firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
[2011-04-29 11:33:12 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}
[2011-04-29 11:37:45 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0025-ABCDEFFEDCBA}
[2012-02-12 22:52:34 | 000,000,000 | ---D | M] (DivX Plus Web Player HTML5 &lt;video&gt;) -- C:\PROGRAM FILES (X86)\DIVX\DIVX PLUS WEB PLAYER\FIREFOX\DIVXHTML5
File not found (No name found) -- C:\PROGRAM FILES (X86)\MOZILLA FIREFOX\EXTENSIONS\{CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA}
[2012-12-08 18:08:31 | 000,000,000 | ---D | M] (General Crawler) -- C:\USERS\JULIA\APPDATA\ROAMING\MOZILLA\EXTENSIONS\{EC8030F7-C20A-464F-9B0E-13A3A9E97384}\GENCRAWLER@SOME.COM
File not found (No name found) -- C:\USERS\JULIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8KG6A5Z5.DEFAULT\EXTENSIONS\CROSSRIDERAPP3491@CROSSRIDER.COM
File not found (No name found) -- C:\USERS\JULIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8KG6A5Z5.DEFAULT\EXTENSIONS\FFXTLBR@BABYLON.COM
File not found (No name found) -- C:\USERS\JULIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8KG6A5Z5.DEFAULT\EXTENSIONS\FFXTLBR@FUNMOODS.COM
[2012-04-01 17:18:42 | 000,002,767 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\allegro-pl.xml
[2012-04-01 17:18:42 | 000,001,406 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\fbc-pl.xml
[2012-04-01 17:18:42 | 000,000,917 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\merlin-pl.xml
[2012-04-01 17:18:42 | 000,000,858 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\pwn-pl.xml
[2012-02-12 22:59:13 | 000,000,158 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\Search the web.src
[2012-04-01 17:18:42 | 000,001,183 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\wikipedia-pl.xml
[2012-04-01 17:18:42 | 000,001,683 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\wp-pl.xml
 
========== Chrome  ==========
 
CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}ie={inputEncoding}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&q={searchTerms}&{google:cursorPosition}{google:zeroPrefixUrl}sugkey={google:suggestAPIKeyParameter},
CHR - plugin: Shockwave Flash (Disabled) = C:\Program Files (x86)\Google\Chrome\Application\28.0.1500.95\PepperFlash\pepflashplayer.dll
CHR - plugin: Chrome Remote Desktop Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\28.0.1500.95\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\28.0.1500.95\pdf.dll
CHR - plugin: Adobe Acrobat (Enabled) = C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll
CHR - plugin: 2007 Microsoft Office system (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\NPOFF12.DLL
CHR - plugin: QuickTime Plug-in 7.7 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin.dll
CHR - plugin: QuickTime Plug-in 7.7 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin2.dll
CHR - plugin: QuickTime Plug-in 7.7 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin3.dll
CHR - plugin: QuickTime Plug-in 7.7 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin4.dll
CHR - plugin: QuickTime Plug-in 7.7 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin5.dll
CHR - plugin: QuickTime Plug-in 7.7 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin6.dll
CHR - plugin: QuickTime Plug-in 7.7 (Enabled) = C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin7.dll
CHR - plugin: DivX VOD Helper Plug-in (Enabled) = C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll
CHR - plugin: DivX Plus Web Player (Enabled) = C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll
CHR - plugin: Google Updater (Enabled) = C:\Program Files (x86)\Google\Google Updater\2.4.2432.1652\npCIDetect14.dll
CHR - plugin: Picasa (Enabled) = C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll
CHR - plugin: Google Update (Enabled) = C:\Program Files (x86)\Google\Update\1.3.21.135\npGoogleUpdate3.dll
CHR - plugin: Java™ Platform SE 7 U7 (Enabled) = C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll
CHR - plugin: Media Go Detector (Enabled) = C:\Program Files (x86)\Sony\Media Go\npmediago.dll
CHR - plugin: PlayStation®Network Downloader Check Plug-in (Enabled) = C:\Program Files (x86)\Sony\PLAYSTATION Network Downloader\nppsndl.dll
CHR - plugin: VLC Web Plugin (Enabled) = C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
CHR - plugin: iTunes Application Detector (Enabled) = C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll
CHR - plugin: Facebook Desktop (Enabled) = C:\Users\Julia\AppData\Local\Facebook\Messenger\2.1.4814.0\npFbDesktopPlugin.dll
CHR - plugin: Facebook Video Calling Plugin (Enabled) = C:\Users\Julia\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll
CHR - plugin: Java Deployment Toolkit 7.0.70.11 (Enabled) = C:\Windows\SysWOW64\npDeployJava1.dll
CHR - plugin: Shockwave for Director (Enabled) = C:\Windows\system32\Adobe\Director\np32dsw.dll
CHR - plugin: Silverlight Plug-In (Enabled) = c:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrl.dll
CHR - Extension: YouTube = C:\Users\Julia\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\
CHR - Extension: Szukaj w Google = C:\Users\Julia\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\
CHR - Extension: Transferuj.pl = C:\Users\Julia\AppData\Local\Google\Chrome\User Data\Default\Extensions\dmbhnokcfchfkdgechgkhcfekdfpdjld\1.0.8_0\
CHR - Extension: Skype Click to Call = C:\Users\Julia\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\5.9.0.9216_0\
CHR - Extension: DivX Plus Web Player HTML5 video = C:\Users\Julia\AppData\Local\Google\Chrome\User Data\Default\Extensions\nneajnkjbffgblleaoojgaacokifdkhm\2.1.2.145_0\
CHR - Extension: Gmail = C:\Users\Julia\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\
 
O1 HOSTS File: ([2009-06-10 23:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O2:64bit: - BHO: (TinyBHO Class) - {00e71626-0bef-11dc-8314-0864264c9a64} - C:\Users\Julia\AppData\Roaming\DownloaderGold\ieplug.dll ()
O2:64bit: - BHO: (AVG Safe Search) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files (x86)\AVG\AVG9\avgssiea.dll (AVG Technologies CZ, s.r.o.)
O2:64bit: - BHO: (Java™ Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll File not found
O2 - BHO: (TinyBHO Class) - {00e71626-0bef-11dc-8314-0800200c9a66} - C:\Users\Julia\AppData\Roaming\DownloaderGold\ieplug.dll ()
O2 - BHO: (DivX Plus Web Player HTML5 <video>) - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files (x86)\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll (DivX, LLC)
O2 - BHO: (no name) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - No CLSID value found.
O2 - BHO: (Java™ Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (Skype Browser Helper) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O2 - BHO: (Java™ Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\jp2ssv.dll (Oracle Corporation)
O2 - BHO: (IEPluginBHO Class) - {F5CC7F02-6F4E-4462-B5B1-394A57FD3E0D} - C:\Users\Julia\AppData\Roaming\Nowe Gadu-Gadu\_userdata\ggbho.1.dll (GG Network S.A.)
O3 - HKLM\..\Toolbar: (toolplugin) - {DFEFCDEE-CF1A-4FC8-89AF-189327213627} - C:\Users\Julia\AppData\Roaming\toolplugin\toolbar.dll File not found
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {90B49673-5506-483E-B92B-CA0265BD9CA8} - No CLSID value found.
O4:64bit: - HKLM..\Run: [SmartMenu] C:\Program Files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe ()
O4:64bit: - HKLM..\Run: [SysTrayApp] C:\Program Files\IDT\WDM\sttray64.exe (IDT, Inc.)
O4 - HKLM..\Run: []  File not found
O4 - HKLM..\Run: [APSDaemon] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.)
O4 - HKLM..\Run: [AVG9_TRAY] C:\PROGRA~2\AVG\AVG9\avgtray.exe (AVG Technologies CZ, s.r.o.)
O4 - HKLM..\Run: [DivXUpdate] C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe ()
O4 - HKLM..\Run: [Google Updater] C:\Program Files (x86)\Google\Google Updater\GoogleUpdater.exe (Google)
O4 - HKLM..\Run: [HPCam_Menu] c:\Program Files (x86)\Hewlett-Packard\Media\Webcam\MUITransfer\MUIStartMenu.exe (CyberLink Corp.)
O4 - HKLM..\Run: [MaxMenuMgr] C:\Program Files (x86)\Seagate\SeagateManager\FreeAgent Status\StxMenuMgr.exe (Seagate LLC)
O4 - HKLM..\Run: [PMBVolumeWatcher] C:\Program Files (x86)\Sony\PMB\PMBVolumeWatcher.exe (Sony Corporation)
O4 - HKLM..\Run: [StartCCC] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)
O4 - HKLM..\Run: [UpdatePRCShortCut] C:\Program Files (x86)\Hewlett-Packard\Recovery\MUITransfer\MUIStartMenu.exe (CyberLink Corp.)
O4 - HKCU..\Run: [EADM] C:\Program Files (x86)\Origin\Origin.exe (Electronic Arts)
O4 - HKCU..\Run: [Facebook Update] C:\Users\Julia\AppData\Local\Facebook\Update\FacebookUpdate.exe (Facebook Inc.)
O4 - HKCU..\Run: [Gadu-Gadu 10] C:\Program Files (x86)\Gadu-Gadu 10\gg.exe (GG Network S.A.)
O4 - HKCU..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\backWeb-8876480.exe (Logitech)
O4 - HKCU..\Run: [ManyCam] "C:\Program Files (x86)\ManyCam\Bin\ManyCam.exe" /silent File not found
O4 - HKCU..\Run: [Media Finder] "C:\Program Files (x86)\Media Finder\Media Finder.exe" /opentotray File not found
O4 - HKCU..\Run: [Nowe Gadu-Gadu] C:\Program Files (x86)\Nowe Gadu-Gadu\gg.exe (GG Network S.A.)
O4 - HKCU..\Run: [Sony PC Companion] C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe (Sony)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: WallpaperStyle = 2
O8:64bit: - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200 File not found
O8:64bit: - Extra context menu item: E&ksportuj do programu Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000 File not found
O8:64bit: - Extra context menu item: Wyślij obraz do urządzenia &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm ()
O8:64bit: - Extra context menu item: Wyślij stronę do urządzenia &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O8 - Extra context menu item: Add to Google Photos Screensa&ver - C:\Windows\SysWow64\GPhotos.scr (Google Inc.)
O8 - Extra context menu item: E&ksportuj do programu Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000 File not found
O8 - Extra context menu item: Wyślij obraz do urządzenia &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm ()
O8 - Extra context menu item: Wyślij stronę do urządzenia &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9:64bit: - Extra Button: @C:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9:64bit: - Extra 'Tools' menuitem : @C:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9 - Extra Button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra 'Tools' menuitem : Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL (Microsoft Corporation)
O9 - Extra Button: Wyślij do interfejsu Bluetooth - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9 - Extra 'Tools' menuitem : Wyślij do urządzenia &Bluetooth... - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000008 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000008 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O1364bit: - gopher Prefix: missing
O13 - gopher Prefix: missing
O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} http://download.macromedia.com/pub/shockwave/cabs/director/sw.cab (Shockwave ActiveX Control)
O16 - DPF: {8100D56A-5661-482C-BEE8-AFECE305D968} http://upload.facebook.com/controls/2009.07.28_v5.5.8.1/FacebookPhotoUploader55.cab (Facebook Photo Uploader 5 Control)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.7.0/jinstall-1_7_0_25-windows-i586.cab (Java Plug-in 10.4.1)
O16 - DPF: {CAFEEFAC-0017-0000-0025-ABCDEFFEDCBA} http://java.sun.com/update/1.7.0/jinstall-1_7_0_25-windows-i586.cab (Java Plug-in 1.7.0_25)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.7.0/jinstall-1_7_0_25-windows-i586.cab (Java Plug-in 10.4.1)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{2E19588D-9A21-4309-895E-E92BD0203FE1}: DhcpNameServer = 192.168.1.254
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{64AB0B1C-D2B2-44CC-BA88-75E8BF27C425}: DhcpNameServer = 192.168.1.254
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{D87D61F6-051A-4624-A54B-AA034E1DE1B1}: DhcpNameServer = 192.168.42.129
O18:64bit: - Protocol\Handler\grooveLocalGWS - No CLSID value found
O18:64bit: - Protocol\Handler\linkscanner {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files (x86)\AVG\AVG9\avgppa.dll (AVG Technologies CZ, s.r.o.)
O18:64bit: - Protocol\Handler\livecall - No CLSID value found
O18:64bit: - Protocol\Handler\ms-help - No CLSID value found
O18:64bit: - Protocol\Handler\ms-itss - No CLSID value found
O18:64bit: - Protocol\Handler\msnim - No CLSID value found
O18:64bit: - Protocol\Handler\skype4com - No CLSID value found
O18:64bit: - Protocol\Handler\skype-ie-addon-data - No CLSID value found
O18:64bit: - Protocol\Handler\wlmailhtml - No CLSID value found
O18 - Protocol\Handler\linkscanner {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files (x86)\AVG\AVG9\avgpp.dll (AVG Technologies CZ, s.r.o.)
O18 - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~2\WIC4A1~1\MESSEN~1\MSGRAP~1.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~2\WIC4A1~1\MESSEN~1\MSGRAP~1.DLL (Microsoft Corporation)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies)
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\PROGRA~2\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
O20:64bit: - AppInit_DLLs: (avgrssta.dll) - C:\Windows\SysNative\avgrssta.dll (AVG Technologies CZ, s.r.o.)
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2012-09-28 15:30:38 | 000,055,176 | R--- | M] (Electronic Arts) - E:\Autorun.exe -- [ UDF ]
O32 - AutoRun File - [2012-09-28 11:48:28 | 000,000,049 | R--- | M] () - E:\Autorun.inf -- [ UDF ]
O33 - MountPoints2\{0cbc2efd-86fc-11e1-a87e-0027132e2b0d}\Shell - "" = AutoRun
O33 - MountPoints2\{0cbc2efd-86fc-11e1-a87e-0027132e2b0d}\Shell\AutoRun\command - "" = G:\Startme.exe
O33 - MountPoints2\{eba1cc21-9109-11de-a358-806e6f6e6963}\Shell - "" = AutoRun
O33 - MountPoints2\{eba1cc21-9109-11de-a358-806e6f6e6963}\Shell\AutoRun\command - "" = E:\Autorun.exe -- [2012-09-28 15:30:38 | 000,055,176 | R--- | M] (Electronic Arts)
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)
 
 
 
CREATERESTOREPOINT
Restore point Set: OTL Restore Point
 
========== Files/Folders - Created Within 30 Days ==========
 
[2013-08-19 15:44:03 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Users\Julia\Desktop\OTL.scr
[2013-08-19 15:23:42 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Java
[2013-08-19 15:23:12 | 000,227,720 | ---- | C] (Oracle Corporation) -- C:\Windows\SysWow64\javaws.exe
[2013-08-19 15:22:54 | 000,096,168 | ---- | C] (Oracle Corporation) -- C:\Windows\SysWow64\WindowsAccessBridge-32.dll
[2013-08-19 13:43:26 | 000,391,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieui.dll
[2013-08-19 13:43:24 | 000,526,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieui.dll
[2013-08-19 13:43:20 | 000,067,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iesetup.dll
[2013-08-19 13:43:20 | 000,061,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iesetup.dll
[2013-08-19 13:43:19 | 000,136,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iesysprep.dll
[2013-08-19 13:43:19 | 000,109,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iesysprep.dll
[2013-08-19 13:43:19 | 000,089,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RegisterIEPKEYs.exe
[2013-08-19 13:43:19 | 000,071,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RegisterIEPKEYs.exe
[2013-08-19 13:43:19 | 000,051,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ie4uinit.exe
[2013-08-19 13:43:19 | 000,039,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iernonce.dll
[2013-08-19 13:43:19 | 000,033,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iernonce.dll
[2013-08-19 13:43:11 | 000,603,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msfeeds.dll
[2013-08-19 13:43:09 | 000,855,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript.dll
[2013-08-19 13:43:09 | 000,690,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript.dll
[2013-08-19 13:43:07 | 003,958,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9.dll
[2013-08-19 13:25:30 | 000,175,016 | ---- | C] (Oracle Corporation) -- C:\Windows\SysWow64\javaw.exe
[2013-08-19 13:25:30 | 000,175,016 | ---- | C] (Oracle Corporation) -- C:\Windows\SysWow64\java.exe
[2013-08-19 13:21:07 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\MRT
[2013-08-19 13:16:34 | 001,018,305 | ---- | C] (Thisisu) -- C:\Users\Julia\Desktop\JRT.exe
[2013-08-19 13:08:02 | 000,000,000 | ---D | C] -- C:\Windows\ERUNT
[2013-08-18 19:22:13 | 000,688,992 | R--- | C] (Swearware) -- C:\Users\Julia\Desktop\dds.com
[2013-08-18 18:14:39 | 001,472,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\crypt32.dll
[2013-08-18 18:14:39 | 000,224,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wintrust.dll
[2013-08-18 18:14:38 | 000,139,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cryptnet.dll
[2013-08-18 18:14:25 | 001,888,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WMVDECOD.DLL
[2013-08-18 18:14:25 | 001,620,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMVDECOD.DLL
[2013-08-18 18:13:55 | 001,217,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rpcrt4.dll
[1 C:\Users\Julia\Documents\*.tmp files -> C:\Users\Julia\Documents\*.tmp -> ]
 
========== Files - Modified Within 30 Days ==========
 
[2013-08-19 16:02:17 | 000,000,930 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2013-08-19 15:59:05 | 000,001,078 | ---- | M] () -- C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-553491155-114384707-3148371120-1000UA.job
[2013-08-19 15:56:00 | 000,001,048 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2013-08-19 15:49:54 | 000,023,248 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2013-08-19 15:49:54 | 000,023,248 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2013-08-19 15:46:35 | 001,549,932 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2013-08-19 15:46:35 | 000,698,146 | ---- | M] () -- C:\Windows\SysNative\perfh015.dat
[2013-08-19 15:46:35 | 000,616,242 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2013-08-19 15:46:35 | 000,135,224 | ---- | M] () -- C:\Windows\SysNative\perfc015.dat
[2013-08-19 15:46:35 | 000,106,622 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2013-08-19 15:44:07 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Julia\Desktop\OTL.scr
[2013-08-19 15:40:09 | 000,001,044 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2013-08-19 15:37:42 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2013-08-19 15:37:40 | 3195,420,672 | -HS- | M] () -- C:\hiberfil.sys
[2013-08-19 15:22:45 | 000,175,016 | ---- | M] (Oracle Corporation) -- C:\Windows\SysWow64\javaw.exe
[2013-08-19 15:22:45 | 000,175,016 | ---- | M] (Oracle Corporation) -- C:\Windows\SysWow64\java.exe
[2013-08-19 15:22:45 | 000,096,168 | ---- | M] (Oracle Corporation) -- C:\Windows\SysWow64\WindowsAccessBridge-32.dll
[2013-08-19 15:22:44 | 000,867,240 | ---- | M] (Oracle Corporation) -- C:\Windows\SysWow64\npDeployJava1.dll
[2013-08-19 15:22:44 | 000,789,416 | ---- | M] (Oracle Corporation) -- C:\Windows\SysWow64\deployJava1.dll
[2013-08-19 13:27:13 | 000,000,936 | ---- | M] () -- C:\Windows\tasks\Google Software Updater.job
[2013-08-19 13:16:07 | 001,018,305 | ---- | M] (Thisisu) -- C:\Users\Julia\Desktop\JRT.exe
[2013-08-19 13:07:17 | 000,002,432 | ---- | M] () -- C:\Users\Julia\AppData\Local\Temphf3852.html
[2013-08-18 19:23:16 | 000,002,432 | ---- | M] () -- C:\Users\Julia\AppData\Local\TempkK2572.html
[2013-08-18 19:22:24 | 000,688,992 | R--- | M] (Swearware) -- C:\Users\Julia\Desktop\dds.com
[2013-08-18 18:03:09 | 000,002,432 | ---- | M] () -- C:\Users\Julia\AppData\Local\TempFK4536.html
[2013-08-18 17:57:14 | 000,000,266 | RHS- | M] () -- C:\Users\Julia\ntuser.pol
[2013-08-18 17:56:44 | 000,001,056 | ---- | M] () -- C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-553491155-114384707-3148371120-1000Core.job
[2013-08-10 13:03:47 | 000,001,854 | ---- | M] () -- C:\Users\Julia\AppData\Roaming\GhostObjGAFix.xml
[2013-08-10 12:33:59 | 000,002,432 | ---- | M] () -- C:\Users\Julia\AppData\Local\TempXK3196.html
[2013-07-30 22:04:37 | 000,000,053 | ---- | M] () -- C:\Users\Julia\AppData\Roaming\WB.CFG
[2013-07-28 22:52:01 | 000,002,432 | ---- | M] () -- C:\Users\Julia\AppData\Local\Tempuk4480.html
[2013-07-28 22:52:01 | 000,002,089 | ---- | M] () -- C:\Users\Julia\AppData\Local\TempEs4480.html
[2013-07-28 22:34:43 | 000,001,969 | ---- | M] () -- C:\Users\Julia\Desktop\Skype.lnk
[2013-07-26 07:13:58 | 000,051,712 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ie4uinit.exe
[2013-07-26 07:12:27 | 000,603,136 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\msfeeds.dll
[2013-07-26 07:12:08 | 003,958,784 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9.dll
[2013-07-26 07:12:08 | 000,855,552 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\jscript.dll
[2013-07-26 07:12:04 | 000,526,336 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ieui.dll
[2013-07-26 07:12:04 | 000,136,704 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\iesysprep.dll
[2013-07-26 07:12:03 | 000,067,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\iesetup.dll
[2013-07-26 07:12:03 | 000,039,936 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\iernonce.dll
[2013-07-26 05:12:04 | 000,690,688 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript.dll
[2013-07-26 05:12:00 | 000,391,168 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\ieui.dll
[2013-07-26 05:12:00 | 000,109,056 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\iesysprep.dll
[2013-07-26 05:12:00 | 000,061,440 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\iesetup.dll
[2013-07-26 05:11:59 | 000,033,280 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\iernonce.dll
[2013-07-26 04:39:38 | 000,089,600 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\RegisterIEPKEYs.exe
[2013-07-26 03:59:38 | 000,071,680 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\RegisterIEPKEYs.exe
[2013-07-25 11:25:54 | 001,888,768 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\WMVDECOD.DLL
[2013-07-25 10:57:27 | 001,620,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\WMVDECOD.DLL
[1 C:\Users\Julia\Documents\*.tmp files -> C:\Users\Julia\Documents\*.tmp -> ]
 
========== Files Created - No Company Name ==========
 
[2013-08-19 13:06:58 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Temphf3852.html
[2013-08-18 19:21:54 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempkK2572.html
[2013-08-18 18:01:21 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempFK4536.html
[2013-07-30 22:04:37 | 000,000,053 | ---- | C] () -- C:\Users\Julia\AppData\Roaming\WB.CFG
[2013-07-29 09:04:59 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempXK3196.html
[2013-07-28 22:37:45 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempuk4480.html
[2013-07-28 22:37:45 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempEs4480.html
[2013-07-28 22:34:43 | 000,001,969 | ---- | C] () -- C:\Users\Julia\Desktop\Skype.lnk
[2013-07-16 08:39:58 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempZa2264.html
[2013-07-16 08:39:58 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempKE2264.html
[2013-07-15 23:43:32 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempAi3496.html
[2013-07-15 23:43:32 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempyA3496.html
[2013-07-14 18:03:52 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempcu4128.html
[2013-07-14 18:03:52 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempTv4128.html
[2013-07-08 17:26:39 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempga3620.html
[2013-07-08 17:26:39 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempkC3620.html
[2013-06-30 21:11:25 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Templw2076.html
[2013-06-30 21:11:25 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempaM2076.html
[2013-06-30 14:31:48 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempRu3340.html
[2013-06-30 14:31:48 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempoL3340.html
[2013-06-24 23:13:28 | 000,000,005 | ---- | C] () -- C:\Users\Julia\AppData\Roaming\WBPU-TTL.DAT
[2013-06-23 22:56:41 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempKh6388.html
[2013-06-23 22:56:03 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempfz6388.html
[2013-06-23 22:02:26 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TemplV4224.html
[2013-06-23 22:02:26 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempGt4224.html
[2013-06-23 22:01:40 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempeZ4224.html
[2013-06-23 22:01:40 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempTu4224.html
[2013-06-23 14:30:56 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempyE2116.html
[2013-06-23 14:30:56 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\Templc2116.html
[2013-06-23 14:01:50 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TemptA3908.html
[2013-06-20 22:44:16 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempql4552.html
[2013-06-20 22:44:16 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempaG4552.html
[2013-06-19 22:31:36 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempHm4124.html
[2013-06-19 22:31:36 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempuv4124.html
[2013-06-17 22:06:24 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TemplH3236.html
[2013-06-17 22:06:24 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempUM3236.html
[2013-06-17 19:40:25 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempdH5036.html
[2013-06-17 19:40:25 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempUW5036.html
[2013-06-04 16:38:09 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempjn4404.html
[2013-06-04 16:38:09 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempXg4404.html
[2013-05-25 13:11:00 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempdm3204.html
[2013-05-25 13:11:00 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempnz3204.html
[2013-05-21 18:15:03 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempMN4264.html
[2013-05-21 18:15:03 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempqT4264.html
[2013-05-19 20:06:58 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempCx2736.html
[2013-05-19 20:06:58 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempgl2736.html
[2013-05-19 12:38:54 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempbd3160.html
[2013-05-19 12:38:54 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\Templj3160.html
[2013-05-13 16:13:06 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempor3464.html
[2013-05-13 16:13:06 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempwr3464.html
[2013-05-03 22:19:03 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempdp3276.html
[2013-05-03 22:19:03 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempwj3276.html
[2013-05-02 12:16:54 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempEo2072.html
[2013-05-02 12:16:54 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\Templl2072.html
[2013-04-28 16:00:12 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempeb3192.html
[2013-04-28 16:00:12 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempyS3192.html
[2013-04-25 21:18:27 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempCp4216.html
[2013-04-25 21:18:27 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempmx4216.html
[2013-04-20 19:14:13 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempqx4476.html
[2013-04-20 19:14:13 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempPn4476.html
[2013-04-14 13:06:26 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempXs2804.html
[2013-04-14 13:06:26 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempfa2804.html
[2013-04-03 12:24:29 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempVu3452.html
[2013-04-03 12:24:29 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempwI3452.html
[2013-03-31 23:33:31 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempmf3136.html
[2013-03-31 23:33:31 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempXf3136.html
[2013-03-22 18:48:19 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempNz1876.html
[2013-03-22 18:48:19 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempZC1876.html
[2013-03-20 18:32:04 | 000,152,936 | -H-- | C] () -- C:\Windows\SysWow64\mlfcache.dat
[2013-03-20 18:30:42 | 000,000,266 | RHS- | C] () -- C:\Users\Julia\ntuser.pol
[2013-03-18 23:10:08 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempVs1796.html
[2013-03-18 23:10:08 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempiu1796.html
[2013-03-18 17:27:35 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempIa3696.html
[2013-03-18 17:27:35 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempGN3696.html
[2013-03-18 15:25:07 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempNM3452.html
[2013-03-18 15:25:07 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempQv3452.html
[2013-03-17 18:22:29 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TemprHB412.html
[2013-03-17 18:22:29 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempnKt412.html
[2013-03-17 16:11:00 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempnsx396.html
[2013-03-17 16:11:00 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempihS396.html
[2013-03-15 22:35:05 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempEn2836.html
[2013-03-15 22:35:05 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempIo2836.html
[2013-03-15 19:57:19 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempBO5288.html
[2013-03-15 19:57:19 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempGI5288.html
[2013-03-14 16:54:47 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempnq4180.html
[2013-03-14 16:54:47 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempae4180.html
[2013-03-08 21:41:04 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempZd7396.html
[2013-03-08 21:41:04 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempwc7396.html
[2013-03-06 19:17:35 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempuQ1548.html
[2013-03-04 15:40:55 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempGV3452.html
[2013-03-04 15:40:55 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempQF3452.html
[2013-02-28 21:29:43 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempDQ3660.html
[2013-02-28 21:29:43 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempmP3660.html
[2013-02-27 16:36:55 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempKv4236.html
[2013-02-27 16:36:55 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempHn4236.html
[2013-02-18 15:48:12 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempRv3576.html
[2013-02-18 15:48:12 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempOm3576.html
[2013-02-03 19:32:45 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempQo2280.html
[2013-02-03 19:32:45 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempOw2280.html
[2013-02-02 19:43:52 | 000,081,920 | R--- | C] () -- C:\Windows\bwUnin-6.1.4.68-8876480L.exe
[2013-02-02 02:45:59 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempxb3508.html
[2013-02-02 02:45:59 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempPO3508.html
[2013-01-26 13:25:38 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempyT8120.html
[2013-01-26 13:25:38 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempzV8120.html
[2013-01-26 13:19:16 | 000,000,297 | ---- | C] () -- C:\Windows\ALIK.INI
[2013-01-26 13:15:07 | 000,000,791 | ---- | C] () -- C:\Windows\didakta.ini
[2013-01-24 18:39:04 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempu10316.html
[2013-01-24 18:39:04 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempo10316.html
[2013-01-09 23:27:32 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempgq2132.html
[2013-01-09 23:27:32 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TemppP2132.html
[2013-01-09 23:16:40 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempfg2132.html
[2012-12-26 23:20:17 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempRp5956.html
[2012-12-26 23:20:17 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempcL5956.html
[2012-12-26 21:19:39 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempCL2468.html
[2012-12-25 17:01:43 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempjZ3992.html
[2012-12-25 17:01:43 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempsV3992.html
[2012-12-22 17:48:08 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempt10548.html
[2012-12-22 17:48:08 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempu10548.html
[2012-12-21 21:02:57 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempOq7964.html
[2012-12-21 21:02:57 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempgZ7964.html
[2012-12-16 21:49:08 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempZU6808.html
[2012-12-16 21:49:08 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempTo6808.html
[2012-12-08 20:37:55 | 000,012,288 | ---- | C] () -- C:\Users\Julia\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2012-12-05 22:28:35 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempzG4092.html
[2012-11-30 16:09:47 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempyF8836.html
[2012-11-30 16:09:47 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempAR8836.html
[2012-11-25 12:02:52 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempse4048.html
[2012-11-25 12:02:52 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempKF4048.html
[2012-11-17 12:42:44 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempHw2468.html
[2012-11-17 12:42:44 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempbj2468.html
[2012-11-16 18:39:09 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempbN3976.html
[2012-11-16 18:39:09 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TemptU3976.html
[2012-11-12 19:02:59 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempgT3924.html
[2012-11-12 19:02:59 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempOt3924.html
[2012-11-06 19:09:21 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempQv3976.html
[2012-11-06 19:09:21 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempfr3976.html
[2012-11-03 22:22:37 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempAv3676.html
[2012-11-03 22:22:37 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TemplT3676.html
[2012-10-27 12:12:10 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempBC6424.html
[2012-10-27 12:12:10 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempEy6424.html
[2012-10-14 01:20:47 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempwr3840.html
[2012-10-14 01:20:47 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempUo3840.html
[2012-10-12 22:46:35 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempLd3636.html
[2012-10-12 22:46:35 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempiY3636.html
[2012-09-27 15:22:58 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TemprA3352.html
[2012-09-27 15:22:58 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempPw3352.html
[2012-09-23 21:41:53 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempiL7672.html
[2012-09-23 21:41:53 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempgH7672.html
[2012-09-23 12:39:56 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempDz4064.html
[2012-09-23 12:39:56 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempYF4064.html
[2012-09-19 21:23:16 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempuT3940.html
[2012-09-19 21:23:16 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempWf3940.html
[2012-09-13 15:26:39 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempckG324.html
[2012-09-13 15:26:39 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempjky324.html
[2012-09-12 15:09:46 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempST3620.html
[2012-09-12 15:09:46 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempfl3620.html
[2012-09-03 18:12:37 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempfd4020.html
[2012-09-03 18:12:37 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempLA4020.html
[2012-08-29 17:36:29 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempL20864.html
[2012-08-29 17:36:29 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempq20864.html
[2012-08-18 12:16:31 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TemphW6660.html
[2012-08-18 12:16:31 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempXp6660.html
[2012-08-04 20:00:28 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempTw3704.html
[2012-08-04 20:00:28 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempAf3704.html
[2012-07-21 11:16:26 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempui1972.html
[2012-07-21 11:16:26 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempZm1972.html
[2012-07-03 11:20:49 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempiv3844.html
[2012-07-03 11:20:49 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempXX3844.html
[2012-06-28 16:32:11 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempqR9440.html
[2012-06-28 16:32:11 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempiE9440.html
[2012-06-25 17:58:57 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempKE3868.html
[2012-06-25 17:58:57 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempKI3868.html
[2012-06-21 21:05:53 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempqm3872.html
[2012-06-21 21:05:53 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempLx3872.html
[2012-06-19 15:11:15 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempOf3860.html
[2012-06-19 15:11:15 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempEQ3860.html
[2012-06-17 21:51:54 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempGt6860.html
[2012-06-17 21:51:54 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempqM6860.html
[2012-06-17 21:40:13 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempwF5664.html
[2012-06-17 21:40:13 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempOp5664.html
[2012-06-09 16:37:52 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempnJ3392.html
[2012-06-09 16:37:52 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempnG3392.html
[2012-05-26 14:12:34 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempaK3820.html
[2012-05-26 14:12:34 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempAw3820.html
[2012-05-26 13:19:28 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempau3688.html
[2012-05-26 13:19:28 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\Temprx3688.html
[2012-05-12 13:45:27 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempIW3840.html
[2012-05-12 13:45:27 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempMY3840.html
[2012-05-08 17:14:29 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TemptD9032.html
[2012-05-08 17:14:29 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempzC9032.html
[2012-05-05 12:41:11 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempg11060.html
[2012-05-05 12:41:11 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempB11060.html
[2012-05-04 23:45:25 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempEH3616.html
[2012-05-04 23:45:25 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempHa3616.html
[2012-05-04 21:34:24 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempQP3672.html
[2012-05-04 21:34:24 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempnT3672.html
[2012-05-02 21:27:38 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempgX3812.html
[2012-05-02 21:27:38 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempnI3812.html
[2012-04-15 15:10:34 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempcT3908.html
[2012-04-15 15:10:34 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempay3908.html
[2012-04-06 00:17:47 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempzo3732.html
[2012-04-06 00:17:47 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempRf3732.html
[2012-04-05 20:55:10 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempKn3824.html
[2012-04-05 20:55:10 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempzU3824.html
[2012-04-05 20:30:29 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempKI3824.html
[2012-04-05 20:30:29 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempmU3824.html
[2012-04-05 20:30:28 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempTT3824.html
[2012-03-31 13:10:13 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempaE3192.html
[2012-03-31 13:10:13 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempBO3192.html
[2012-03-29 15:03:54 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempRY4788.html
[2012-03-29 15:03:54 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempNV4788.html
[2012-03-29 14:26:22 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempBE3864.html
[2012-03-29 14:26:22 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempKz3864.html
[2012-03-23 20:35:48 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempDr3792.html
[2012-03-23 20:35:48 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempRq3792.html
[2012-03-15 22:15:23 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempH22792.html
[2012-03-15 22:15:23 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempv22792.html
[2012-03-15 22:15:22 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempd22792.html
[2012-03-08 17:58:30 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempmw3876.html
[2012-03-08 17:58:27 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempYm3876.html
[2012-02-29 16:46:23 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempT14268.html
[2012-02-29 16:46:23 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\Temps14268.html
[2012-02-29 16:46:22 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempz14268.html
[2012-02-24 21:52:18 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempqu3324.html
[2012-02-24 21:52:18 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempXQ3324.html
[2012-02-23 23:02:38 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Temppp3324.html
[2012-02-20 16:15:18 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempR33516.html
[2012-02-20 16:15:16 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempq33516.html
[2012-02-20 16:15:16 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempF33516.html
[2012-02-10 12:01:32 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempNA3524.html
[2012-02-10 12:01:32 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\Temprj3524.html
[2012-02-10 00:00:09 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempQf3704.html
[2012-02-10 00:00:09 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempPi3704.html
[2012-02-09 19:53:31 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempi11244.html
[2012-02-09 19:53:30 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempU11244.html
[2012-02-09 19:53:30 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempm11244.html
[2012-02-05 12:44:03 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempsY4036.html
[2012-02-05 12:44:03 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempoN4036.html
[2012-01-23 19:16:56 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempxH3872.html
[2012-01-23 19:16:56 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempwM3872.html
[2012-01-15 21:14:04 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempLP1076.html
[2012-01-15 21:14:04 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempPw1076.html
[2012-01-15 21:14:02 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempiz1076.html
[2012-01-15 21:14:02 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\Temphc1076.html
[2012-01-09 19:26:33 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempFB8912.html
[2012-01-09 19:26:33 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempoM8912.html
[2012-01-06 20:09:00 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TemprK8912.html
[2012-01-06 20:08:59 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempqD8912.html
[2012-01-06 20:08:59 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempFz8912.html
[2012-01-06 17:14:40 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempKx3376.html
[2012-01-01 17:07:26 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempfR3376.html
[2012-01-01 17:07:23 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempRz3376.html
[2012-01-01 01:59:10 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempHN2432.html
[2012-01-01 01:59:10 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempSp2432.html
[2011-12-31 22:01:40 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempBy2728.html
[2011-12-31 22:01:40 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempsp2728.html
[2011-12-31 19:47:49 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempAf4312.html
[2011-12-31 19:47:45 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempnf4312.html
[2011-12-31 19:47:45 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempxP4312.html
[2011-12-27 22:27:56 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempMD3448.html
[2011-12-27 22:27:53 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempPr3448.html
[2011-12-27 22:27:53 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempTb3448.html
[2011-12-20 21:55:55 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempoU3416.html
[2011-12-17 12:02:31 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempZC3416.html
[2011-12-17 12:02:31 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TemphS3416.html
[2011-12-13 20:37:33 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempkn3576.html
[2011-12-13 20:37:30 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TemptE3576.html
[2011-12-13 20:37:30 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempxB3576.html
[2011-12-13 18:38:16 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempTA4640.html
[2011-12-13 18:38:16 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempMQ4640.html
[2011-12-13 18:38:13 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Templm4640.html
[2011-12-13 18:38:13 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempik4640.html
[2011-11-25 21:32:12 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempXU3808.html
[2011-11-25 21:00:03 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempQG3808.html
[2011-11-25 21:00:02 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempnD3808.html
[2011-11-25 21:00:02 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempip3808.html
[2011-11-24 21:35:42 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TemprQ3788.html
[2011-11-24 21:35:35 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempXq3788.html
[2011-11-24 21:35:35 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempHR3788.html
[2011-11-14 17:20:06 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempPE8240.html
[2011-11-14 17:20:05 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempBO8240.html
[2011-11-14 17:20:05 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempmy8240.html
[2011-11-06 19:34:05 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempNM4420.html
[2011-11-06 19:34:05 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempYT4420.html
[2011-11-02 22:21:09 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TemprL3764.html
[2011-11-02 22:21:03 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempty3764.html
[2011-11-02 22:21:03 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempEm3764.html
[2011-10-31 22:13:44 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempCn3540.html
[2011-10-31 22:13:44 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempoK3540.html
[2011-10-30 23:39:24 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempfvx672.html
[2011-10-30 23:39:02 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempAlh672.html
[2011-10-30 23:39:02 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempLnM672.html
[2011-10-29 18:48:46 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempku4544.html
[2011-10-29 18:48:43 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempps4544.html
[2011-10-29 18:48:43 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempfl4544.html
[2011-10-24 14:14:32 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Temppr7136.html
[2011-10-24 14:14:32 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempoB7136.html
[2011-10-24 14:14:32 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempOV7136.html
[2011-10-23 22:24:45 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempYq2336.html
[2011-10-23 22:24:45 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempPW2336.html
[2011-10-22 21:00:01 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempUU4616.html
[2011-10-22 21:00:00 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempKM4616.html
[2011-10-22 21:00:00 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempLj4616.html
[2011-10-22 19:34:16 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempnm3736.html
[2011-10-22 19:34:09 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempPF3736.html
[2011-10-22 19:34:09 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempis3736.html
[2011-10-18 21:34:13 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempLp4208.html
[2011-10-18 21:33:38 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Temphy4208.html
[2011-10-18 21:33:38 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempuq4208.html
[2011-09-27 19:50:14 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempcQ3908.html
[2011-09-27 19:50:14 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempwy3908.html
[2011-09-19 15:43:31 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TemptLb148.html
[2011-09-19 15:43:31 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempapm148.html
[2011-09-19 15:43:30 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempWNt148.html
[2011-09-19 15:43:30 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempAUt148.html
[2011-09-18 20:47:14 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempXe3540.html
[2011-09-18 20:47:14 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempRK3540.html
[2011-09-18 20:47:13 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempQM3540.html
[2011-09-18 20:47:13 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempPf3540.html
[2011-09-13 18:21:09 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempsr3508.html
[2011-09-13 18:21:09 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempOO3508.html
[2011-09-13 18:21:08 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempzT3508.html
[2011-09-13 18:21:08 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempjs3508.html
[2011-09-06 18:36:28 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempxF3608.html
[2011-09-06 18:36:28 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\Templv3608.html
[2011-08-29 10:19:10 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempfS3608.html
[2011-08-29 10:19:10 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempcl3608.html
[2011-08-27 21:42:03 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempcM4496.html
[2011-08-27 21:42:03 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempPr4496.html
[2011-08-11 17:05:17 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempfc3520.html
[2011-08-11 17:05:17 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempfM3520.html
[2011-07-27 17:34:14 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempFh3020.html
[2011-07-27 17:34:11 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempTg3020.html
[2011-07-27 17:34:11 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempmQ3020.html
[2011-07-26 21:38:56 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempSo3464.html
[2011-07-26 21:38:56 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempwh3464.html
[2011-07-18 14:45:26 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempjG3452.html
[2011-07-18 14:45:24 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempOv3452.html
[2011-07-18 14:45:24 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempIQ3452.html
[2011-07-08 12:52:52 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TemprY2564.html
[2011-07-08 12:52:52 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempot2564.html
[2011-07-08 12:52:52 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempqv2564.html
[2011-07-05 12:11:15 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempLr3660.html
[2011-07-05 12:11:14 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempbu3660.html
[2011-06-29 12:01:40 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempGq3672.html
[2011-06-29 12:01:31 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TemppQ3672.html
[2011-06-29 12:01:31 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempyZ3672.html
[2011-06-18 21:37:16 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempNU4308.html
[2011-06-18 21:37:16 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempCa4308.html
[2011-06-18 21:37:16 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempIx4308.html
[2011-06-14 16:06:52 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempZz3276.html
[2011-06-14 16:06:50 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempte3276.html
[2011-06-14 16:06:50 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempXU3276.html
[2011-06-12 16:48:41 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempFQ3508.html
[2011-06-12 16:48:40 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempXy3508.html
[2011-06-12 16:48:40 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempkj3508.html
[2011-06-04 22:13:47 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempkE3548.html
[2011-06-04 22:13:44 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempcS3548.html
[2011-06-04 22:13:44 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempMT3548.html
[2011-06-02 19:52:14 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempzL3564.html
[2011-06-02 19:52:14 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TemphN3564.html
[2011-06-02 19:52:12 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempuc3564.html
[2011-06-02 19:52:12 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempOZ3564.html
[2011-06-02 19:26:15 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempby3696.html
[2011-06-02 19:26:14 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempqD3696.html
[2011-06-02 19:26:12 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempLs3696.html
[2011-06-02 19:26:12 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempei3696.html
[2011-06-01 22:53:40 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempjh4344.html
[2011-06-01 22:53:40 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempWt4344.html
[2011-06-01 22:53:38 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempks4344.html
[2011-06-01 22:53:38 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempVX4344.html
[2011-05-24 14:44:34 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempdB4140.html
[2011-05-24 14:44:34 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempBF4140.html
[2011-05-23 19:13:20 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempHE4112.html
[2011-05-23 19:13:20 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempga4112.html
[2011-05-23 19:13:20 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempNB4112.html
[2011-05-20 18:34:14 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempdn3184.html
[2011-05-20 18:34:13 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempOC3184.html
[2011-05-20 18:34:13 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempbb3184.html
[2011-05-19 07:56:41 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Temptm3720.html
[2011-05-19 07:56:40 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempfE3720.html
[2011-05-19 07:56:40 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempxE3720.html
[2011-05-15 18:33:06 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempzu4496.html
[2011-05-15 18:33:05 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempsK4496.html
[2011-05-15 18:33:05 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempGo4496.html
[2011-05-15 15:34:02 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempqp4428.html
[2011-05-15 15:34:02 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempJM4428.html
[2011-05-15 15:34:01 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempVI4428.html
[2011-05-15 15:34:01 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempMw4428.html
[2011-05-12 20:38:29 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempaP3792.html
[2011-05-12 20:38:26 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempWn3792.html
[2011-05-12 20:38:26 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempyT3792.html
[2011-05-08 17:55:15 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempPx3616.html
[2011-05-08 17:55:15 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempiD3616.html
[2011-04-30 18:52:27 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempxa3804.html
[2011-04-30 18:52:17 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempiY3804.html
[2011-04-30 18:52:17 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempTd3804.html
[2011-04-30 18:22:25 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempvx3732.html
[2011-04-30 18:22:25 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempND3732.html
[2011-04-30 18:22:22 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempSr3732.html
[2011-04-30 18:22:22 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempXX3732.html
[2011-04-29 11:23:07 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempzj3620.html
[2011-04-29 11:23:06 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempKW3620.html
[2011-04-29 11:23:06 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TemptU3620.html
[2011-04-28 09:27:03 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempvST224.html
[2011-04-28 09:27:03 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempNny224.html
[2011-04-28 09:27:02 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempIid224.html
[2011-04-28 09:27:02 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempncx224.html
[2011-04-27 09:58:07 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempff2420.html
[2011-04-27 09:58:07 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempMe2420.html
[2011-04-27 09:58:06 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Templd2420.html
[2011-04-27 09:58:06 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempUu2420.html
[2011-04-26 13:11:59 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempZR4724.html
[2011-04-26 13:11:19 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempxt4724.html
[2011-04-25 21:17:31 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempFt3648.html
[2011-04-25 21:17:31 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempXd3648.html
[2011-04-25 01:33:32 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempiP3692.html
[2011-04-18 09:04:57 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempGd4388.html
[2011-04-18 09:04:57 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempVu4388.html
[2011-04-12 08:20:48 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempOi6280.html
[2011-04-12 08:20:48 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempnr6280.html
[2011-04-11 10:29:39 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempea3920.html
[2011-03-25 08:14:33 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempEq3080.html
[2011-03-25 08:14:33 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempQN3080.html
[2011-03-24 09:06:02 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempUu3660.html
[2011-03-24 09:06:02 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempbS3660.html
[2011-03-23 18:08:18 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempxy3696.html
[2011-03-23 18:08:18 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempgI3696.html
[2011-03-23 16:15:24 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempdZ3416.html
[2011-03-23 15:49:15 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempzy3848.html
[2011-03-19 09:36:06 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempqR4100.html
[2011-03-19 09:36:06 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempjv4100.html
[2011-03-12 11:16:41 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TemprD3676.html
[2011-03-12 11:16:41 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempCh3676.html
[2011-03-11 08:20:01 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempPc4500.html
[2011-03-11 08:20:01 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempKK4500.html
[2011-03-05 16:16:06 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempFA3108.html
[2011-03-05 16:16:06 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempaN3108.html
[2011-02-27 10:47:21 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TemphN5104.html
[2011-02-27 10:47:21 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempcR5104.html
[2011-02-26 14:46:51 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempfI3628.html
[2011-02-26 14:46:51 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TemphC3628.html
[2011-02-26 14:15:13 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempzU4160.html
[2011-02-26 14:15:13 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempgA4160.html
[2011-02-26 13:28:22 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempZf3692.html
[2011-02-26 13:28:22 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempAp3692.html
[2011-02-22 20:25:24 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempFO3504.html
[2011-02-22 20:25:24 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempMi3504.html
[2011-02-19 12:23:12 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempwV3176.html
[2011-02-19 12:23:12 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempbx3176.html
[2011-02-18 12:08:51 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempOt3588.html
[2011-02-18 12:08:51 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempFU3588.html
[2011-02-17 16:39:42 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempQT5188.html
[2011-02-17 16:39:42 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempNA5188.html
[2011-02-12 10:37:16 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempfJ3904.html
[2011-02-11 22:15:42 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempaU3768.html
[2011-02-02 10:46:32 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempYM3704.html
[2011-02-02 10:46:31 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempQG3704.html
[2011-01-31 15:50:45 | 000,001,854 | ---- | C] () -- C:\Users\Julia\AppData\Roaming\GhostObjGAFix.xml
[2011-01-30 21:08:41 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempvl3532.html
[2011-01-30 21:08:41 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempgg3532.html
[2011-01-17 13:44:40 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempLc4384.html
[2011-01-17 13:44:40 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempjg4384.html
[2011-01-17 11:31:01 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempTR3908.html
[2011-01-17 11:31:01 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempPQ3908.html
[2011-01-13 20:10:28 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TemplQ3396.html
[2011-01-13 20:10:28 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempWd3396.html
[2011-01-05 11:59:54 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempaR3992.html
[2011-01-05 11:59:54 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempOe3992.html
[2010-12-30 19:24:18 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempvV3864.html
[2010-12-30 19:24:18 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempHX3864.html
[2010-12-24 17:18:28 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempXw3864.html
[2010-12-24 17:18:27 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Temphm3864.html
[2010-12-16 09:33:55 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempkk3788.html
[2010-12-16 09:33:55 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TemphI3788.html
[2010-11-29 16:53:21 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempbA4012.html
[2010-11-29 16:53:21 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempgl4012.html
[2010-11-28 19:31:11 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempmu3780.html
[2010-11-15 09:26:55 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempLt3956.html
[2010-11-15 09:26:55 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempiO3956.html
[2010-11-14 22:20:14 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempzl3832.html
[2010-11-14 22:20:14 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempXL3832.html
[2010-11-14 21:46:19 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempib3112.html
[2010-11-14 21:46:19 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempBz3112.html
[2010-11-13 23:04:52 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempow3780.html
[2010-11-13 23:04:52 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempHM3780.html
[2010-11-11 10:55:18 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempgt3124.html
[2010-11-11 10:55:18 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempqt3124.html
[2010-11-08 09:35:39 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempif2556.html
[2010-11-08 09:35:39 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempgE2556.html
[2010-10-15 18:07:10 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempgs3200.html
[2010-10-15 18:07:10 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempvI3200.html
[2010-10-15 14:22:38 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempKM3632.html
[2010-10-15 14:22:38 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempWv3632.html
[2010-10-13 17:34:21 | 000,000,056 | -H-- | C] () -- C:\ProgramData\ezsidmv.dat
[2010-10-11 08:50:12 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempoWh952.html
[2010-10-11 08:50:12 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempuOr952.html
[2010-10-03 12:56:33 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempMu3604.html
[2010-10-03 12:56:33 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempRa3604.html
[2010-10-02 14:38:31 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempSF2388.html
[2010-10-02 14:38:30 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempzq2388.html
[2010-10-01 07:03:45 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempVp1108.html
[2010-10-01 07:03:45 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempII1108.html
[2010-09-30 07:58:41 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempvm1732.html
[2010-09-30 07:58:41 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempyI1732.html
[2010-09-26 18:14:24 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempNu3180.html
[2010-09-26 18:14:24 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempGb3180.html
[2010-09-22 19:29:37 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempOp4020.html
[2010-09-22 19:29:37 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempPB4020.html
[2010-09-22 08:27:01 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempES4048.html
[2010-09-22 08:27:01 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempVm4048.html
[2010-09-18 19:07:21 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempL10156.html
[2010-09-18 19:07:21 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempn10156.html
[2010-09-17 20:07:52 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempGG3104.html
[2010-09-17 20:07:52 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempdD3104.html
[2010-09-16 09:07:03 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempdG3104.html
[2010-09-16 09:07:03 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempEg3104.html
[2010-09-15 23:25:21 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempIP3948.html
[2010-09-15 23:25:21 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempUp3948.html
[2010-09-15 10:34:32 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempaW1492.html
[2010-09-15 10:34:32 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempsr1492.html
[2010-09-14 08:11:04 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempbn3696.html
[2010-09-14 08:11:04 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempME3696.html
[2010-09-12 23:34:15 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempLW2660.html
[2010-09-12 23:34:15 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempoG2660.html
[2010-09-12 21:47:34 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempDi3848.html
[2010-09-12 21:47:34 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempSM3848.html
[2010-09-11 12:30:31 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempSL3468.html
[2010-09-11 12:30:30 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempsV3468.html
[2010-09-11 11:15:50 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempGz4016.html
[2010-09-11 11:15:50 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempZu4016.html
[2010-09-11 03:08:01 | 000,286,796 | ---- | C] () -- C:\Users\Julia\AppData\Local\tmpIMG_0112.1
[2010-09-11 03:07:59 | 001,035,802 | ---- | C] () -- C:\Users\Julia\AppData\Local\tmpIMG_0112.0
[2010-09-11 03:07:59 | 000,283,018 | ---- | C] () -- C:\Users\Julia\AppData\Local\tmpIMG_0112.JPG
[2010-09-10 22:10:13 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempjM3948.html
[2010-09-10 22:10:13 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempqC3948.html
[2010-09-05 14:35:52 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempLh3920.html
[2010-09-05 14:35:52 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempMn3920.html
[2010-09-03 06:59:36 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TemptD2084.html
[2010-09-03 06:59:36 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempvL2084.html
[2010-09-03 00:14:38 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempCT4400.html
[2010-09-02 23:54:29 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempDg4072.html
[2010-09-02 19:47:42 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempCX2984.html
[2010-09-02 19:47:42 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempuh2984.html
[2010-09-02 18:18:19 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempba3256.html
[2010-09-02 18:18:19 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempJB3256.html
[2010-09-02 17:13:48 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Temphv4004.html
[2010-09-02 17:13:48 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempTk4004.html
[2010-09-02 17:08:53 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempeb2260.html
[2010-09-02 17:08:53 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempdr2260.html
[2010-09-02 16:20:11 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempBK4384.html
[2010-09-02 16:20:11 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempXS4384.html
[2010-08-27 09:30:30 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempTI4964.html
[2010-08-27 09:30:30 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempDk4964.html
[2010-08-26 22:44:20 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TemphY1696.html
[2010-08-26 22:44:20 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempXe1696.html
[2010-08-26 09:24:36 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempHv3904.html
[2010-08-26 09:24:36 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempVv3904.html
[2010-08-21 18:31:05 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempXB3632.html
[2010-08-20 15:38:29 | 000,002,432 | ---- | C] () -- C:\Users\Julia\AppData\Local\Tempkv3864.html
[2010-08-20 15:38:29 | 000,002,089 | ---- | C] () -- C:\Users\Julia\AppData\Local\TempDh3864.html
[2010-06-28 18:12:22 | 000,023,024 | ---- | C] () -- C:\Users\Julia\AppData\Roaming\UserTile.png
[2010-05-10 19:50:16 | 001,319,475 | ---- | C] () -- C:\Users\Julia\AppData\Local\tmpP5091732.JPG
[2010-05-10 19:42:02 | 001,052,501 | ---- | C] () -- C:\Users\Julia\AppData\Local\tmpP5101777.3
[2010-05-10 19:40:42 | 001,056,006 | ---- | C] () -- C:\Users\Julia\AppData\Local\tmpP5101777.2
[2010-05-10 19:40:35 | 001,056,054 | ---- | C] () -- C:\Users\Julia\AppData\Local\tmpP5101777.1
[2010-05-10 19:40:30 | 001,358,394 | ---- | C] () -- C:\Users\Julia\AppData\Local\tmpP5101777.JPG
[2010-05-10 19:40:29 | 001,358,394 | ---- | C] () -- C:\Users\Julia\AppData\Local\tmpP5101777.0
[2010-04-22 16:40:35 | 000,084,269 | ---- | C] () -- C:\Users\Julia\AppData\Local\tmpMAXB2.JPG
[2010-01-12 21:16:35 | 000,001,232 | ---- | C] () -- C:\Users\Julia\Proof.XML
 
========== ZeroAccess Check ==========
 
[2009-07-14 06:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini
 
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
 
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
 
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64
 
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
 
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2013-02-27 07:52:56 | 014,172,672 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
 
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2013-02-27 06:55:05 | 012,872,704 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
 
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009-07-14 03:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
 
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010-11-20 14:19:02 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
 
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009-07-14 03:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
 
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
 
========== LOP Check ==========
 
[2013-03-16 22:14:41 | 000,000,000 | ---D | M] -- C:\Users\Julia\AppData\Roaming\.minecraft
[2010-09-02 16:23:29 | 000,000,000 | ---D | M] -- C:\Users\Julia\AppData\Roaming\DAEMON Tools Lite
[2012-10-12 23:10:33 | 000,000,000 | ---D | M] -- C:\Users\Julia\AppData\Roaming\DownloaderGold
[2013-01-09 23:27:32 | 000,000,000 | ---D | M] -- C:\Users\Julia\AppData\Roaming\Gadu-Gadu 10
[2010-01-13 14:25:47 | 000,000,000 | ---D | M] -- C:\Users\Julia\AppData\Roaming\Leadertech
[2010-07-03 22:04:15 | 000,000,000 | ---D | M] -- C:\Users\Julia\AppData\Roaming\muvee Technologies
[2012-04-05 20:10:12 | 000,000,000 | ---D | M] -- C:\Users\Julia\AppData\Roaming\NapiProjekt
[2011-04-26 13:05:26 | 000,000,000 | ---D | M] -- C:\Users\Julia\AppData\Roaming\Nowe Gadu-Gadu
[2011-02-14 20:16:56 | 000,000,000 | ---D | M] -- C:\Users\Julia\AppData\Roaming\OpenFM
[2012-12-05 20:45:34 | 000,000,000 | ---D | M] -- C:\Users\Julia\AppData\Roaming\Opera
[2013-06-23 14:27:37 | 000,000,000 | ---D | M] -- C:\Users\Julia\AppData\Roaming\Origin
[2012-12-08 17:01:36 | 000,000,000 | ---D | M] -- C:\Users\Julia\AppData\Roaming\PDFReaderPackages
[2012-05-03 00:11:58 | 000,000,000 | ---D | M] -- C:\Users\Julia\AppData\Roaming\PhotoScape
[2011-08-11 19:10:55 | 000,000,000 | ---D | M] -- C:\Users\Julia\AppData\Roaming\PlayFirst
[2012-01-19 22:53:44 | 000,000,000 | ---D | M] -- C:\Users\Julia\AppData\Roaming\SecondLife
[2012-07-24 15:07:09 | 000,000,000 | ---D | M] -- C:\Users\Julia\AppData\Roaming\Sony
[2012-04-01 17:18:35 | 000,000,000 | ---D | M] -- C:\Users\Julia\AppData\Roaming\SumatraPDF
[2012-01-19 21:51:33 | 000,000,000 | ---D | M] -- C:\Users\Julia\AppData\Roaming\TestApp
[2010-06-14 09:53:32 | 000,000,000 | ---D | M] -- C:\Users\Julia\AppData\Roaming\TuxPaint
[2013-02-03 18:32:29 | 000,000,000 | ---D | M] -- C:\Users\Julia\AppData\Roaming\uTorrent
[2013-03-19 19:23:49 | 000,000,000 | ---D | M] -- C:\Users\Julia\AppData\Roaming\Video Converter Packages
[2010-01-14 18:28:53 | 000,000,000 | ---D | M] -- C:\Users\Julia\AppData\Roaming\WildTangent
 
========== Purity Check ==========
 
 
 
========== Custom Scans ==========
 
< %SYSTEMDRIVE%\*.* >
[2009-07-14 03:38:58 | 000,383,562 | RHS- | M] () -- C:\bootmgr
[2013-08-19 15:37:40 | 3195,420,672 | -HS- | M] () -- C:\hiberfil.sys
[2010-04-15 18:37:38 | 000,000,186 | ---- | M] () -- C:\hpqlb.log
[2013-02-02 19:49:33 | 000,000,183 | ---- | M] () -- C:\LogiSetup.log
[2013-08-19 15:37:43 | 4260,560,896 | -HS- | M] () -- C:\pagefile.sys
 
< %systemroot%\system32\Spool\prtprocs\w32x86\*.dll >
 
< %systemroot%\*. /mp /s >
 
< %systemroot%\system32\*.dll /lockedfiles >
[2013-07-26 05:11:59 | 013,761,024 | ---- | M] (Microsoft Corporation) Unable to obtain MD5 -- C:\Windows\system32\ieframe.dll
 
< %systemroot%\Tasks\*.job /lockedfiles >
 
< %systemroot%\system32\drivers\*.sys /lockedfiles >
 
< %systemroot%\system32\*.exe /lockedfiles >
 
< %systemroot%\System32\config\*.sav >
 
< %PROGRAMFILES%\* >
[2009-07-14 06:54:24 | 000,000,174 | -HS- | M] () -- C:\Program Files (x86)\desktop.ini
 
< %USERPROFILE%\..|smtmp;true;true;true /FP >
 
< HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU >
 
< hklm\software\clients\startmenuinternet|command /rs >
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\InstallInfo\\HideIconsCommand: "C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe" /HideShortcuts [2012-04-01 17:18:42 | 000,553,832 | ---- | M] (Mozilla Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\InstallInfo\\ShowIconsCommand: "C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe" /ShowShortcuts [2012-04-01 17:18:42 | 000,553,832 | ---- | M] (Mozilla Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\InstallInfo\\ReinstallCommand: "C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe" /SetAsDefaultAppGlobal [2012-04-01 17:18:42 | 000,553,832 | ---- | M] (Mozilla Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\shell\open\command\\: C:\Program Files (x86)\Mozilla Firefox\firefox.exe [2012-04-01 17:18:40 | 000,912,344 | ---- | M] (Mozilla Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\shell\properties\command\\: "C:\Program Files (x86)\Mozilla Firefox\firefox.exe" -preferences [2012-04-01 17:18:40 | 000,912,344 | ---- | M] (Mozilla Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\shell\safemode\command\\: "C:\Program Files (x86)\Mozilla Firefox\firefox.exe" -safe-mode [2012-04-01 17:18:40 | 000,912,344 | ---- | M] (Mozilla Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\Google Chrome\InstallInfo\\ShowIconsCommand: "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --show-icons [2013-07-25 02:49:49 | 000,846,288 | ---- | M] (Google Inc.)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\Google Chrome\InstallInfo\\HideIconsCommand: "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --hide-icons [2013-07-25 02:49:49 | 000,846,288 | ---- | M] (Google Inc.)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\Google Chrome\InstallInfo\\ReinstallCommand: "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --make-default-browser [2013-07-25 02:49:49 | 000,846,288 | ---- | M] (Google Inc.)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\Google Chrome\shell\open\command\\: "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" [2013-07-25 02:49:49 | 000,846,288 | ---- | M] (Google Inc.)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\InstallInfo\\ShowIconsCommand: "C:\Windows\System32\ie4uinit.exe" -show
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\InstallInfo\\ReinstallCommand: "C:\Windows\System32\ie4uinit.exe" -reinstall
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\InstallInfo\\HideIconsCommand: "C:\Windows\System32\ie4uinit.exe" -hide
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\shell\naom\command\\: "C:\Program Files\Internet Explorer\iexplore.exe" -extoff [2013-07-26 08:23:39 | 000,775,256 | ---- | M] (Microsoft Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\shell\open\command\\: C:\Program Files\Internet Explorer\iexplore.exe [2013-07-26 08:23:39 | 000,775,256 | ---- | M] (Microsoft Corporation)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\Opera\InstallInfo\\ShowIconsCommand: "C:\Program Files (x86)\Opera\Opera.exe" /ShowIconsCommand [2012-12-05 20:44:48 | 000,878,480 | ---- | M] (Opera Software)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\Opera\InstallInfo\\HideIconsCommand: "C:\Program Files (x86)\Opera\Opera.exe" /HideIconsCommand [2012-12-05 20:44:48 | 000,878,480 | ---- | M] (Opera Software)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\Opera\InstallInfo\\ReinstallCommand: "C:\Program Files (x86)\Opera\Opera.exe" /ReInstallBrowser [2012-12-05 20:44:48 | 000,878,480 | ---- | M] (Opera Software)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\Opera\shell\open\command\\: "C:\Program Files (x86)\Opera\Opera.exe" [2012-12-05 20:44:48 | 000,878,480 | ---- | M] (Opera Software)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\Safari.exe\InstallInfo\\ReinstallCommand: "C:\Program Files (x86)\Safari\Safari.exe" /reinstall [2012-04-25 11:36:36 | 002,388,336 | ---- | M] (Apple Inc.)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\Safari.exe\InstallInfo\\HideIconsCommand: "C:\Program Files (x86)\Safari\Safari.exe" /hideicons [2012-04-25 11:36:36 | 002,388,336 | ---- | M] (Apple Inc.)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\Safari.exe\InstallInfo\\ShowIconsCommand: "C:\Program Files (x86)\Safari\Safari.exe" /showicons [2012-04-25 11:36:36 | 002,388,336 | ---- | M] (Apple Inc.)
HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\Safari.exe\shell\open\command\\: "C:\Program Files (x86)\Safari\Safari.exe" [2012-04-25 11:36:36 | 002,388,336 | ---- | M] (Apple Inc.)
 
< hklm\software\clients\startmenuinternet|command /64 /rs >
64bit-HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\InstallInfo\\HideIconsCommand: "C:\PROGRAM FILES (X86)\MOZILLA FIREFOX\UNINSTALL\HELPER.EXE" /HIDESHORTCUTS [2012-04-01 17:18:42 | 000,553,832 | ---- | M] (Mozilla Corporation)
64bit-HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\InstallInfo\\ShowIconsCommand: "C:\PROGRAM FILES (X86)\MOZILLA FIREFOX\UNINSTALL\HELPER.EXE" /SHOWSHORTCUTS [2012-04-01 17:18:42 | 000,553,832 | ---- | M] (Mozilla Corporation)
64bit-HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\InstallInfo\\ReinstallCommand: "C:\PROGRAM FILES (X86)\MOZILLA FIREFOX\UNINSTALL\HELPER.EXE" /SETASDEFAULTAPPGLOBAL [2012-04-01 17:18:42 | 000,553,832 | ---- | M] (Mozilla Corporation)
64bit-HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\shell\open\command\\: C:\PROGRAM FILES (X86)\MOZILLA FIREFOX\FIREFOX.EXE [2012-04-01 17:18:40 | 000,912,344 | ---- | M] (Mozilla Corporation)
64bit-HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\shell\properties\command\\: "C:\PROGRAM FILES (X86)\MOZILLA FIREFOX\FIREFOX.EXE" -PREFERENCES [2012-04-01 17:18:40 | 000,912,344 | ---- | M] (Mozilla Corporation)
64bit-HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\FIREFOX.EXE\shell\safemode\command\\: "C:\PROGRAM FILES (X86)\MOZILLA FIREFOX\FIREFOX.EXE" -SAFE-MODE [2012-04-01 17:18:40 | 000,912,344 | ---- | M] (Mozilla Corporation)
64bit-HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\Google Chrome\InstallInfo\\ShowIconsCommand: "C:\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLICATION\CHROME.EXE" --SHOW-ICONS [2013-07-25 02:49:49 | 000,846,288 | ---- | M] (Google Inc.)
64bit-HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\Google Chrome\InstallInfo\\HideIconsCommand: "C:\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLICATION\CHROME.EXE" --HIDE-ICONS [2013-07-25 02:49:49 | 000,846,288 | ---- | M] (Google Inc.)
64bit-HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\Google Chrome\InstallInfo\\ReinstallCommand: "C:\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLICATION\CHROME.EXE" --MAKE-DEFAULT-BROWSER [2013-07-25 02:49:49 | 000,846,288 | ---- | M] (Google Inc.)
64bit-HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\Google Chrome\shell\open\command\\: "C:\PROGRAM FILES (X86)\GOOGLE\CHROME\APPLICATION\CHROME.EXE" [2013-07-25 02:49:49 | 000,846,288 | ---- | M] (Google Inc.)
64bit-HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\InstallInfo\\ShowIconsCommand: "C:\WINDOWS\SYSTEM32\IE4UINIT.EXE" -SHOW [2013-07-26 07:13:58 | 000,051,712 | ---- | M] (Microsoft Corporation)
64bit-HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\InstallInfo\\ReinstallCommand: "C:\WINDOWS\SYSTEM32\IE4UINIT.EXE" -REINSTALL [2013-07-26 07:13:58 | 000,051,712 | ---- | M] (Microsoft Corporation)
64bit-HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\InstallInfo\\HideIconsCommand: "C:\WINDOWS\SYSTEM32\IE4UINIT.EXE" -HIDE [2013-07-26 07:13:58 | 000,051,712 | ---- | M] (Microsoft Corporation)
64bit-HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\shell\naom\command\\: "C:\PROGRAM FILES\INTERNET EXPLORER\IEXPLORE.EXE" -EXTOFF [2013-07-26 08:23:39 | 000,775,256 | ---- | M] (Microsoft Corporation)
64bit-HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\IEXPLORE.EXE\shell\open\command\\: C:\PROGRAM FILES\INTERNET EXPLORER\IEXPLORE.EXE [2013-07-26 08:23:39 | 000,775,256 | ---- | M] (Microsoft Corporation)
64bit-HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\Opera\InstallInfo\\ShowIconsCommand: "C:\PROGRAM FILES (X86)\OPERA\OPERA.EXE" /SHOWICONSCOMMAND [2012-12-05 20:44:48 | 000,878,480 | ---- | M] (Opera Software)
64bit-HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\Opera\InstallInfo\\HideIconsCommand: "C:\PROGRAM FILES (X86)\OPERA\OPERA.EXE" /HIDEICONSCOMMAND [2012-12-05 20:44:48 | 000,878,480 | ---- | M] (Opera Software)
64bit-HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\Opera\InstallInfo\\ReinstallCommand: "C:\PROGRAM FILES (X86)\OPERA\OPERA.EXE" /REINSTALLBROWSER [2012-12-05 20:44:48 | 000,878,480 | ---- | M] (Opera Software)
64bit-HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\Opera\shell\open\command\\: "C:\PROGRAM FILES (X86)\OPERA\OPERA.EXE" [2012-12-05 20:44:48 | 000,878,480 | ---- | M] (Opera Software)
64bit-HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\Safari.exe\InstallInfo\\ReinstallCommand: "C:\PROGRAM FILES (X86)\SAFARI\SAFARI.EXE" /REINSTALL [2012-04-25 11:36:36 | 002,388,336 | ---- | M] (Apple Inc.)
64bit-HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\Safari.exe\InstallInfo\\HideIconsCommand: "C:\PROGRAM FILES (X86)\SAFARI\SAFARI.EXE" /HIDEICONS [2012-04-25 11:36:36 | 002,388,336 | ---- | M] (Apple Inc.)
64bit-HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\Safari.exe\InstallInfo\\ShowIconsCommand: "C:\PROGRAM FILES (X86)\SAFARI\SAFARI.EXE" /SHOWICONS [2012-04-25 11:36:36 | 002,388,336 | ---- | M] (Apple Inc.)
64bit-HKEY_LOCAL_MACHINE\software\clients\startmenuinternet\Safari.exe\shell\open\command\\: "C:\PROGRAM FILES (X86)\SAFARI\SAFARI.EXE" [2012-04-25 11:36:36 | 002,388,336 | ---- | M] (Apple Inc.)
 
========== Alternate Data Streams ==========
 
@Alternate Data Stream - 127 bytes -> C:\ProgramData\Temp:430C6D84
@Alternate Data Stream - 112 bytes -> C:\ProgramData\Temp:D1B5B4F1
@Alternate Data Stream - 109 bytes -> C:\ProgramData\Temp:DFC5A2B2
 
< End of report >
 
OTL Extras logfile created on: 2013-08-19 15:45:57 - Run 1
OTL by OldTimer - Version 3.2.69.0     Folder = C:\Users\Julia\Desktop
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.10.9200.16660)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd
 
3,97 Gb Total Physical Memory | 1,75 Gb Available Physical Memory | 44,11% Memory free
7,93 Gb Paging File | 5,38 Gb Available in Paging File | 67,87% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
 
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 285,40 Gb Total Space | 73,66 Gb Free Space | 25,81% Space Free | Partition Type: NTFS
Drive D: | 12,50 Gb Total Space | 2,09 Gb Free Space | 16,75% Space Free | Partition Type: NTFS
Drive E: | 3,90 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: UDF
 
Computer Name: JULIA-KOMPUTER | User Name: Julia | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
 
========== Extra Registry (SafeList) ==========
 
 
========== File Associations ==========
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.html[@ = Opera.HTML] -- C:\Program Files (x86)\Opera\Opera.exe (Opera Software)
.url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)
.html [@ = Opera.HTML] -- C:\Program Files (x86)\Opera\Opera.exe (Opera Software)
 
[HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
.html [@ = ChromeHTML] -- Reg Error: Key error. File not found
 
========== Shell Spawning ==========
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1"
http [open] -- "C:\Program Files (x86)\Opera\Opera.exe" "%1" (Opera Software)
https [open] -- "C:\Program Files (x86)\Opera\Opera.exe" "%1" (Opera Software)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- "C:\Users\Julia\AppData\Roaming\File Scout\filescout.exe" /open "%1"
Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" ()
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [napiprojekt] -- "C:\Program Files (x86)\NapiProjekt\napisy.exe" "%1" ()
Directory [OneNote.Open] -- C:\PROGRA~2\MICROS~1\Office12\ONENOTE.EXE "%L"
Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" ()
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation)
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1"
http [open] -- "C:\Program Files (x86)\Opera\Opera.exe" "%1" (Opera Software)
https [open] -- "C:\Program Files (x86)\Opera\Opera.exe" "%1" (Opera Software)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- "C:\Users\Julia\AppData\Roaming\File Scout\filescout.exe" /open "%1"
Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" ()
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [napiprojekt] -- "C:\Program Files (x86)\NapiProjekt\napisy.exe" "%1" ()
Directory [OneNote.Open] -- C:\PROGRA~2\MICROS~1\Office12\ONENOTE.EXE "%L"
Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" ()
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error.
 
========== Security Center Settings ==========
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 4D B2 76 41 04 CA 01  [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
 
========== Firewall Settings ==========
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
 
========== Authorized Applications List ==========
 
 
========== Vista Active Open Ports Exception List ==========
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{025358EE-5BA2-4FE4-846B-A7870B0CF3EE}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | 
"{0A806E4B-F152-44A9-BAF1-DC01DEACF8ED}" = lport=445 | protocol=6 | dir=in | app=system | 
"{0D8B80CA-C99B-42E9-815F-029767DA067A}" = rport=3702 | protocol=17 | dir=out | svc=fdphost | app=%systemroot%\system32\svchost.exe | 
"{16DB8248-F7AA-45AA-87F6-78B489737E41}" = rport=139 | protocol=6 | dir=out | app=system | 
"{1F35BDF8-CD45-41D0-BC87-E16D7822D155}" = lport=2869 | protocol=6 | dir=in | app=system | 
"{2217F9DD-0942-4D17-9CC5-AF031E3AF910}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | 
"{27FD9BDC-1268-4B30-B7EE-80F5FC4E4D56}" = lport=3702 | protocol=17 | dir=in | svc=fdrespub | app=%systemroot%\system32\svchost.exe | 
"{2E3274A4-7F59-46EE-9475-2A2AD508FED4}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | 
"{2F92158C-18AB-423F-9046-151426BED170}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | 
"{3213814D-C382-40BF-AF42-9E2EB196A468}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | 
"{379C47BD-5829-4598-A167-ABD506F1C834}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=svchost.exe | 
"{4509860A-4B65-4A44-A266-E9BE213735E3}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | 
"{551EE6A6-A039-4861-B222-EAAFF96E0E1C}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | 
"{6178BB60-3DF3-492F-A9ED-E3CEEAD67BAE}" = lport=139 | protocol=6 | dir=in | app=system | 
"{61B8D83F-F9D0-43F5-AF4F-994128BE2FE8}" = lport=10243 | protocol=6 | dir=in | app=system | 
"{662084B3-1E43-415E-8993-6A93661CE0E9}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | 
"{88D596F9-EE9E-441E-992D-D26FA6F7E23F}" = rport=137 | protocol=17 | dir=out | app=system | 
"{928F3A88-9BFA-4F9A-A505-D8A9B6ACD759}" = lport=3702 | protocol=17 | dir=in | svc=fdphost | app=%systemroot%\system32\svchost.exe | 
"{9F5E9021-AC9D-4831-9EFD-D93487EFC0DE}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | 
"{A590FE2A-6821-4EB3-984C-96A9061EDAAA}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | 
"{A6403F76-80D9-456C-B032-A85276619B74}" = lport=2869 | protocol=6 | dir=in | app=system | 
"{A67246D2-4505-45B6-AFE1-EFCD0E2A62AC}" = rport=10243 | protocol=6 | dir=out | app=system | 
"{AB03AA73-AB2A-4EAC-84F0-140724C40B22}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | 
"{AD4D4F63-7D06-4E7F-A5BC-4D201C427099}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | 
"{B4988ECF-1F58-4790-862C-2E05DB1424C2}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | 
"{B7118795-1BD0-4B3A-A97F-2E6BA3350EF6}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | 
"{C70E10EA-410D-4C51-899B-793E78FBDA15}" = lport=138 | protocol=17 | dir=in | app=system | 
"{D954A6BC-8804-4047-B789-0C4C07B0EE67}" = lport=137 | protocol=17 | dir=in | app=system | 
"{E31EA8C0-6012-4C23-9B3A-723AD77747D5}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | 
"{E80280C3-BF5E-4F90-9999-1E048379B231}" = rport=445 | protocol=6 | dir=out | app=system | 
"{EAFCB08C-5FB9-4CF2-A09A-330EC8CB852B}" = rport=138 | protocol=17 | dir=out | app=system | 
"{F5CCD281-3864-46AF-94AD-C0E6FFBC80BF}" = rport=3702 | protocol=17 | dir=out | svc=fdrespub | app=%systemroot%\system32\svchost.exe | 
"{FB2E01A1-0BEC-433C-AA7F-2064B98AF110}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | 
 
========== Vista Active Application Exception List ==========
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{05C2B9FE-BD49-4768-A6A9-57DF757E05D1}" = protocol=6 | dir=out | app=system | 
"{09CDE4E0-75AE-40E4-818B-28A5DE7E9672}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | 
"{0CD4332A-9B69-4B97-8FE6-1C49CDA1BE71}" = protocol=17 | dir=in | app=c:\program files (x86)\sony ericsson\update engine\sony ericsson update engine.exe | 
"{0EB8732A-093F-450D-B7A7-EE9C4C6D4777}" = protocol=6 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe | 
"{120C8447-4625-4153-A5B5-56CC18C56812}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | 
"{1657B4E7-648F-4E02-A3A9-06B7344B33B3}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | 
"{244CBEAA-D79A-454A-A49D-836B86B9AFBB}" = dir=in | app=c:\program files (x86)\avg\avg9\avgemc.exe | 
"{269B1D16-C22D-41E2-A6AD-4D1323933FB6}" = dir=in | app=c:\program files (x86)\hewlett-packard\media\dvd\hptouchsmartmusic.exe | 
"{29D3750F-47DD-4742-B765-DA1461281456}" = protocol=6 | dir=in | app=c:\program files (x86)\utorrent\utorrent.exe | 
"{2DAB2E12-B5B9-44D4-91D7-C48F810044BA}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | 
"{342C5810-7DFE-4A9F-8F4C-6440DED97FED}" = dir=in | app=c:\program files (x86)\hewlett-packard\touchsmart\media\hptouchsmartmusic.exe | 
"{394957D4-3567-4FEF-9647-55260D194513}" = dir=in | app=c:\program files (x86)\hewlett-packard\media\dvd\hpdvdsmart.exe | 
"{3E09860B-DCB3-4C04-9606-6AFFD80F5EF6}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | 
"{45CAD580-21CA-40E6-91A0-95A4978E806E}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | 
"{4BBA9393-AF13-4F36-AB3D-FAD3753A8406}" = dir=in | app=c:\program files (x86)\hewlett-packard\touchsmart\media\kernel\clml\clmlsvc.exe | 
"{4C738961-C766-47B7-8788-8CA2AD7F4A2C}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | 
"{565134C0-0C73-46BF-9608-F45224F45E44}" = protocol=17 | dir=in | app=c:\windows\syswow64\msiexec.exe | 
"{6075C8E9-C135-411E-8C16-CBE2B8BE9865}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | 
"{69A88C73-C973-47C6-B732-C9F425BAB8E3}" = dir=in | app=c:\program files (x86)\hewlett-packard\media\dvd\kernel\clml\clmlsvc.exe | 
"{6EDAC340-0DB1-4881-827C-C2551D641143}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe | 
"{70F584D0-FD39-4568-BAFE-969B217C9CBF}" = dir=in | app=c:\program files (x86)\hewlett-packard\media\dvd\tsmagent.exe | 
"{7E476DA1-FBE5-4FF6-A936-DF9194018998}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | 
"{7E61EBF5-EBB6-461D-9D78-19FBE6AA0427}" = dir=in | app=c:\program files (x86)\hewlett-packard\touchsmart\media\hptouchsmartphoto.exe | 
"{7F3492A4-63A9-47E4-B217-DAE8F56BCBDC}" = protocol=6 | dir=in | app=c:\program files (x86)\sweetim\communicator\sweetpacksupdatemanager.exe | 
"{82008FBE-7F63-4A10-A5DC-B4CE562745DD}" = protocol=6 | dir=in | app=c:\program files (x86)\sony ericsson\update engine\sony ericsson update engine.exe | 
"{8270F4E4-4356-401D-8B74-E62F7E05DAC5}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | 
"{940F7546-E6BB-43DA-B87E-6E9A8A412B1C}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\groove.exe | 
"{9488E5C3-BF7E-4B31-BEBD-8CF0571EC0F1}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe | 
"{948F5944-2AD2-46C2-AA34-84AD86866C29}" = dir=in | app=c:\program files (x86)\avg\avg9\avgnsa.exe | 
"{9681354B-ACD9-4B42-879C-557354AE27A0}" = protocol=17 | dir=in | app=c:\program files (x86)\sony ericsson\update engine\sony ericsson update engine.exe | 
"{97586A64-79C8-485A-8C8C-BDCC8FE812B9}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | 
"{9B26FDEC-0E29-476A-9CF2-935392227664}" = dir=in | app=c:\program files (x86)\itunes\itunes.exe | 
"{9BB05994-8E51-437A-89E6-25B4B188E0E0}" = dir=in | app=c:\program files (x86)\common files\apple\apple application support\webkit2webprocess.exe | 
"{9C761D0C-B04F-4AEB-ADD9-4091E21483DE}" = dir=in | app=c:\users\julia\appdata\local\facebook\video\skype\facebookvideocalling.exe | 
"{A383454D-1A7B-4DF4-BC81-4A3F96B9AAB9}" = dir=in | app=c:\program files (x86)\hewlett-packard\media\live tv\qpservice.exe | 
"{A6B9E47C-1AEA-4341-9076-00A4599E889C}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe | 
"{A8003A96-98FF-45DC-9D72-104CE2660796}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe | 
"{A900CEC0-B59F-429D-AB62-CC97D6613704}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | 
"{B422C0FA-A00F-42C8-A946-903BDB3B753A}" = dir=in | app=c:\program files (x86)\hewlett-packard\touchsmart\media\hptouchsmartvideo.exe | 
"{BA2945E7-00F8-4997-A93D-9D111ABBBD8C}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | 
"{C0626C9E-6188-4A8E-B4AC-72B8EF62DCF0}" = dir=in | app=c:\program files (x86)\windows live\messenger\msnmsgr.exe | 
"{C30AF1D7-24CE-4451-B530-0E9E854F088F}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office12\groove.exe | 
"{C6844E7A-C7A9-4584-B6EB-F75CB473015F}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | 
"{CA80F7A2-0F9F-40AF-9834-57F30F67F633}" = protocol=17 | dir=in | app=c:\program files (x86)\sweetim\communicator\sweetpacksupdatemanager.exe | 
"{CF66F832-1F24-418A-BD04-A5A0003DC464}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | 
"{D1F92C77-9D2C-479D-A126-35C2E1E89772}" = dir=in | app=c:\program files (x86)\hewlett-packard\touchsmart\media\tsmagent.exe | 
"{D47A0190-547D-4844-BE3B-ACB71AE24FC8}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | 
"{D51F14D7-60CB-4E3C-8C13-0A6B8F65C6AC}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | 
"{D63D1DA5-676B-4057-9892-3ED52130DE20}" = protocol=6 | dir=in | app=c:\windows\syswow64\msiexec.exe | 
"{D8C1F577-D780-4B18-ABF0-785BB6C3F420}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | 
"{E26898AE-1CCF-4E67-B384-B6096F5B75D3}" = dir=in | app=c:\program files (x86)\hewlett-packard\media\dvd\hptouchsmartvideo.exe | 
"{E2DD571B-1892-4F47-B11D-7F4C22840A01}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe | 
"{E5253AB3-830C-4393-8184-1C170D526FC3}" = protocol=17 | dir=in | app=c:\program files (x86)\utorrent\utorrent.exe | 
"{E9AFB9D4-E560-4E30-848D-BC6C7B16721B}" = dir=in | app=c:\program files (x86)\hewlett-packard\media\dvd\hptouchsmartphoto.exe | 
"{EA3226BC-CEF9-4EBB-A96E-B85CCBC5F8C1}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe | 
"{EA4E51D9-0CDA-43D5-9238-75E31C0B7015}" = protocol=17 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe | 
"{EB2E5C4E-4FF5-4B53-9F3D-EDC1C7E484FD}" = protocol=17 | dir=in | app=c:\program files (x86)\opera\opera.exe | 
"{EF0DBEEA-A6F5-43E5-AA99-55E16C36E80A}" = dir=in | app=c:\program files (x86)\hewlett-packard\media\live tv\qp.exe | 
"{F0E24DD4-C911-485D-AD1D-3D7448D40816}" = protocol=6 | dir=in | app=c:\program files (x86)\opera\opera.exe | 
"{F1468B13-8F38-48F8-AC01-C1A1D7D4A871}" = dir=in | app=c:\program files (x86)\avg\avg9\avgupd.exe | 
"{F9179DD5-319A-4029-A236-6865F77F5508}" = protocol=6 | dir=in | app=c:\program files (x86)\sony ericsson\update engine\sony ericsson update engine.exe | 
"{FE351999-ECC7-4F26-9AAB-CC59A9C5D541}" = dir=in | app=c:\program files (x86)\cyberlink\powerdirector\pdr.exe | 
"TCP Query User{45D24766-62EE-4F77-8352-7281D53B5F99}C:\program files\logitech\desktop messenger\8876480\program\backweb-8876480.exe" = protocol=6 | dir=in | app=c:\program files\logitech\desktop messenger\8876480\program\backweb-8876480.exe | 
"TCP Query User{4D9B00C0-B087-4DDB-8AAE-8C7EE8C4E034}C:\program files\logitech\desktop messenger\8876480\program\backweb-8876480.exe" = protocol=6 | dir=in | app=c:\program files\logitech\desktop messenger\8876480\program\backweb-8876480.exe | 
"TCP Query User{553E624D-23FB-4B5B-B370-2B486EDEDF17}C:\program files (x86)\nowe gadu-gadu\gg.exe" = protocol=6 | dir=in | app=c:\program files (x86)\nowe gadu-gadu\gg.exe | 
"TCP Query User{75E10E12-FA83-47FE-8EC9-A24B0DB1758F}C:\program files (x86)\secondlifeviewer\slvoice.exe" = protocol=6 | dir=in | app=c:\program files (x86)\secondlifeviewer\slvoice.exe | 
"TCP Query User{7A02DA1D-9162-4242-8FF1-FB0EC6579DB8}C:\program files (x86)\gadu-gadu 10\gg.exe" = protocol=6 | dir=in | app=c:\program files (x86)\gadu-gadu 10\gg.exe | 
"TCP Query User{88265748-7B1C-4DA4-BCDA-FCEF172692A9}C:\program files (x86)\gadu-gadu 10\gg.exe" = protocol=6 | dir=in | app=c:\program files (x86)\gadu-gadu 10\gg.exe | 
"TCP Query User{A635547E-8FFD-4174-A5FD-BA3DFC37DB96}C:\program files\java\jre6\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files\java\jre6\bin\javaw.exe | 
"TCP Query User{C4BCD070-D6DD-4C8D-839E-B9826DA299FC}C:\users\julia\desktop\utorrent.exe" = protocol=6 | dir=in | app=c:\users\julia\desktop\utorrent.exe | 
"TCP Query User{D188E903-CA75-4957-A989-5E5C0E162BF8}C:\program files (x86)\electronic arts\eadm\core.exe" = protocol=6 | dir=in | app=c:\program files (x86)\electronic arts\eadm\core.exe | 
"UDP Query User{091A027D-8958-4E92-A352-4B6AA2E162C3}C:\program files (x86)\gadu-gadu 10\gg.exe" = protocol=17 | dir=in | app=c:\program files (x86)\gadu-gadu 10\gg.exe | 
"UDP Query User{0E52C4B3-AF64-42C0-927E-CE2037EB1359}C:\program files (x86)\nowe gadu-gadu\gg.exe" = protocol=17 | dir=in | app=c:\program files (x86)\nowe gadu-gadu\gg.exe | 
"UDP Query User{4F6CE0A7-53F3-4E31-995D-13A4B488DB05}C:\users\julia\desktop\utorrent.exe" = protocol=17 | dir=in | app=c:\users\julia\desktop\utorrent.exe | 
"UDP Query User{5FBC2415-E31E-438A-98D1-866843568E6A}C:\program files (x86)\gadu-gadu 10\gg.exe" = protocol=17 | dir=in | app=c:\program files (x86)\gadu-gadu 10\gg.exe | 
"UDP Query User{69718E49-FC68-48C8-B792-DA5BFAA7622B}C:\program files\java\jre6\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files\java\jre6\bin\javaw.exe | 
"UDP Query User{7550425C-0D8A-4ED0-99AE-E5855DF82640}C:\program files\logitech\desktop messenger\8876480\program\backweb-8876480.exe" = protocol=17 | dir=in | app=c:\program files\logitech\desktop messenger\8876480\program\backweb-8876480.exe | 
"UDP Query User{8554742F-83FF-403A-B8CC-F27A51AEFB85}C:\program files\logitech\desktop messenger\8876480\program\backweb-8876480.exe" = protocol=17 | dir=in | app=c:\program files\logitech\desktop messenger\8876480\program\backweb-8876480.exe | 
"UDP Query User{8DDB367D-A750-4070-9632-81DB7D129001}C:\program files (x86)\secondlifeviewer\slvoice.exe" = protocol=17 | dir=in | app=c:\program files (x86)\secondlifeviewer\slvoice.exe | 
"UDP Query User{AE0186E3-AC7C-45C1-9D87-73E94908DE41}C:\program files (x86)\electronic arts\eadm\core.exe" = protocol=17 | dir=in | app=c:\program files (x86)\electronic arts\eadm\core.exe | 
 
========== HKEY_LOCAL_MACHINE Uninstall List ==========
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{071c9b48-7c32-4621-a0ac-3f809523288f}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{16AD84C0-E7A0-F64D-D55A-15D274C4439A}" = ccc-utility64
"{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219
"{33B18075-C7DF-4839-8517-C6E9338D84F2}" = HP 3D DriveGuard
"{4BDE7544-0A08-4AD9-8A8F-4B7944471C36}" = iTunes
"{56F26668-13DA-497A-883F-61434A10CBAB}" = MobileMe Control Panel
"{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
"{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}" = Bonjour
"{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
"{83715090-142B-D305-36EC-7538A007D336}" = ATI Catalyst Install Manager
"{88E60521-1E4E-4785-B9F1-1798A4BD0C30}" = HP MediaSmart SmartMenu
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{90120000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2007
"{90120000-002A-0415-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (Polish) 2007
"{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting
"{9E9D49A4-1DF4-4138-B7DB-5D87A893088E}" = HP Integrated Module with Bluetooth wireless technology
"{A49402DD-2781-3782-B0CF-52BDA349E3F3}" = Microsoft .NET Framework 4 Client Profile PLK Language Pack
"{aac9fcc4-dd9e-4add-901c-b5496a07ab2e}" = Microsoft Visual C++ 2005 Redistributable (x64) - KB2467175
"{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{B6E3757B-5E77-3915-866A-CCFC4B8D194C}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053
"{B8AD779A-82DA-4365-A7D0-AD3DCFC55CFF}" = Apple Mobile Device Support
"{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile
"Broadcom 802.11 Wireless LAN Adapter" = Broadcom 802.11 Wireless LAN Adapter
"FFE7D41DF3C645075BB149E21988B63996C34187" = ENE CIR Receiver Driver
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Microsoft .NET Framework 4 Client Profile PLK Language Pack" = Polski pakiet językowy dla programu Microsoft .NET Framework 4 Client Profile
"SynTPDeinstKey" = Synaptics Pointing Device Driver
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}" = Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148
"{01FB4998-33C4-4431-85ED-079E3EEFE75D}" = HP MediaSmart Webcam
"{07FA4960-B038-49EB-891B-9F95930AA544}" = HP Customer Experience Enhancements
"{08DB3902-2CE0-474D-BCE3-0177766CE9F1}" = HP Support Assistant
"{0E532C84-4275-41B3-9D81-D4A1A20D8EE7}" = PlayStation®Store
"{1111706F-666A-4037-7777-210328764D10}" = JavaFX 2.1.0
"{16B2F93F-6C48-4F27-99DB-268AFEA2F35A}" = Kopciuszek: Zostań księżniczką
"{196467F1-C11F-4F76-858B-5812ADC83B94}" = MSXML 4.0 SP3 Parser
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}" = CyberLink DVD Suite
"{205C6BDD-7B73-42DE-8505-9A093F35A238}" = Narzędzie do przekazywania usługi Windows Live
"{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}" = MSVCRT
"{231BB0CA-0455-4478-A19F-66423A16AC7B}" = Hotel dla zwierzaków
"{254C37AA-6B72-4300-84F6-98A82419187E}" = ActiveCheck component for HP Active Support Library
"{26604C7E-A313-4D12-867F-7C6E7820BE4C}" = JMicron Flash Media Controller Driver
"{266D0EEA-E5A6-4A08-A0EE-5391D4EA44A7}" = Catalyst Control Center - Branding
"{26A24AE4-039D-4CA4-87B4-2F83217025FF}" = Java 7 Update 25
"{27B0C2FD-9739-8D7D-6552-307C786D9097}" = Catalyst Control Center InstallProxy
"{2A30052B-831C-41D3-8044-3C0388066350}" = Seagate Manager Installer
"{2A5FBE73-76DA-4A31-BD86-1B0E01DC33F8}" = Windows Live Messenger
"{2FDBBCEA-62DB-45F4-B6E5-0E1FB2A1F29D}" = Visual C++ 8.0 Runtime Setup Package (x64)
"{3023EBDA-BF1B-4831-B347-E5018555F26E}" = HP MediaSmart Movie Themes
"{306B39C9-3AB1-4161-8567-9C7E50B41AE3}" = Microsoft Works
"{34D2AB40-150D-475D-AE32-BD23FB5EE355}" = HP Quick Launch Buttons
"{359FCAA7-B544-4147-AE3B-8C8A526E2427}" = Sony Image Data Suite
"{38022B5C-0C69-389F-DA48-B87480B5705A}" = CCC Help Turkish
"{3B4E636E-9D65-4D67-BA61-189800823F52}" = Windows Live Communications Platform
"{3BBBF379-6C7E-0985-18F6-6C60D6C36EC6}" = CCC Help Portuguese
"{3BBFD444-5FAB-49F6-98B1-A1954E831399}" = The Sims™ 3 Zostań gwiazdą
"{3DE92282-CB49-434F-81BF-94E5B380E889}" = The Sims™ 3 Cztery pory roku
"{40BF1E83-20EB-11D8-97C5-0009C5020658}" = Power2Go
"{44B2A0AB-412E-4F8C-B058-D1E8AECCDFF5}" = PowerRecover
"{45057FCE-5784-48BE-8176-D9D00AF56C3C}" = The Sims™ 3 Po zmroku
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4B2F56AC-C043-C84F-3EF1-E6D6F21E934F}" = Catalyst Control Center Graphics Full Existing
"{4DE3E3D9-AE81-45DE-9195-3015F7B1DBF3}" = Junk Mail filter update
"{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}" = Skype™ 6.3
"{4F2C2E34-5A3E-0E70-BDFC-A5B1E3C2FFAC}" = Catalyst Control Center Graphics Light
"{51958BA7-21E4-4A8B-9098-CD8375BD17B2}" = Asystent rejestracji usługi Windows Live
"{532715CE-CFD6-E4F8-53C3-2F1DE31C04DA}" = CCC Help Hungarian
"{54CC7901-804D-4155-B353-21F0CC9112AB}" = HP Wireless Assistant
"{558CC8A3-F1A2-9C31-7B90-F61E476B8622}" = CCC Help Dutch
"{5D09C772-ECB3-442B-9CC6-B4341C78FDC2}" = Obsługa programów Apple
"{5D76ABD5-262B-6D65-6C13-F38175C7A5AF}" = CCC Help Korean
"{5D92E608-E454-0C8C-D577-7F7C06151117}" = CCC Help Greek
"{65761BAE-11E8-48FE-B30F-1F01011AB906}" = Narzędzie The Sims™ 3 Stwórz świat – Beta
"{66491917-51F6-4A48-89BD-ED0E8DD109AA}" = Barbie™ Fashion Show™ CD-ROM
"{669D4A35-146B-4314-89F1-1AC3D7B88367}" = HPAsset component for HP Active Support Library
"{67626E09-5366-4480-8F1E-93FADF50CA15}" = HP MediaSmart Live TV
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{7204BDEE-1A48-4D95-A964-44A9250B439E}" = Facebook Messenger 2.1.4814.0
"{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
"{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update
"{78E9A751-5616-233F-1249-16AC5758C646}" = muvee Reveal Seagate Edition
"{79EECA21-CDFA-6012-5E8B-6CF2623D647A}" = Catalyst Control Center Graphics Full New
"{7B11296A-F894-449C-8DF6-6AAAA7D4D118}" = The Sims™ 3 Miejskie Życie Akcesoria
"{7BE6BC10-6737-CD9D-8363-F919B8D6D917}" = Catalyst Control Center Core Implementation
"{7FA1DAFD-AF55-E915-FD92-F269443A2ADF}" = Media Go Video Playback Engine 1.88.110.12050
"{80FBA7A7-ABD1-4910-A916-023075C45593}" = CCC Help Danish
"{82EF29B1-9B60-4142-A155-0599216DD053}" = LightScribe System Software
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}" = Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570
"{8797DE34-22BC-CA33-6B67-A0CC2765B545}" = CCC Help German
"{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek 8136 8168 8169 Ethernet Driver
"{89D1C17B-90DE-650A-073A-A7FA7BC6ECE5}" = CCC Help French
"{8C664716-FD23-9902-A29E-863D056F46FC}" = CCC Help Russian
"{8F36B221-F483-B7CE-4DDA-7BDA4D81E306}" = CCC Help English
"{8FB16749-1235-D027-AF25-1D22A9FEC0D5}" = CCC Help Thai
"{8FFC5648-FAF8-43A3-BC8F-42BA1E275C4E}" = Choice Guard
"{900B1197-53F5-4F46-A882-2CFFFE2EEDCB}" = Logitech Desktop Messenger
"{90120000-0015-0415-0000-0000000FF1CE}" = Microsoft Office Access MUI (Polish) 2007
"{90120000-0015-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0016-0415-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Polish) 2007
"{90120000-0016-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0018-0415-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Polish) 2007
"{90120000-0018-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0019-0415-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Polish) 2007
"{90120000-0019-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001A-0415-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Polish) 2007
"{90120000-001A-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001B-0415-0000-0000000FF1CE}" = Microsoft Office Word MUI (Polish) 2007
"{90120000-001B-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007
"{90120000-001F-0407-0000-0000000FF1CE}_ENTERPRISE_{A0516415-ED61-419A-981D-93596DA74165}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-0409-0000-0000000FF1CE}_ENTERPRISE_{ABDDE972-355B-4AF1-89A8-DA50B7B5C045}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-0415-0000-0000000FF1CE}" = Microsoft Office Proof (Polish) 2007
"{90120000-001F-0415-0000-0000000FF1CE}_ENTERPRISE_{E9EA2604-8AC9-47D2-8F4B-6BF60787A357}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-002A-0000-1000-0000000FF1CE}_ENTERPRISE_{E64BA721-2310-4B55-BE5A-2925F9706192}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-002A-0415-1000-0000000FF1CE}_ENTERPRISE_{D45F91DE-F0FC-4D5F-9A0C-FDE5B251AAC6}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-002C-0415-0000-0000000FF1CE}" = Microsoft Office Proofing (Polish) 2007
"{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007
"{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{3D019598-7B59-447A-80AE-815B703B84FF}" = Security Update for Microsoft Office system 2007 (972581)
"{90120000-0044-0415-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Polish) 2007
"{90120000-0044-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-006E-0415-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Polish) 2007
"{90120000-006E-0415-0000-0000000FF1CE}_ENTERPRISE_{D45F91DE-F0FC-4D5F-9A0C-FDE5B251AAC6}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-00A1-0415-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Polish) 2007
"{90120000-00A1-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-00BA-0415-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Polish) 2007
"{90120000-00BA-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{910F4A29-1134-49E0-AD8B-56E4A3152BD1}" = The Sims™ 3 Kariera
"{91A3A4DE-656A-5C7A-5B61-75FB6D167A6A}" = CCC Help Polish
"{933B4015-4618-4716-A828-5289FC03165F}" = VC80CRTRedist - 8.0.50727.6195
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{9EDB805A-E11C-8842-2393-FDFDA17963AC}" = CCC Help Chinese Traditional
"{a0fe116e-9a8a-466f-aee0-625cb7c207e3}" = Microsoft Visual C++ 2005 Redistributable - KB2467175
"{A16D1BBD-BE86-0183-4152-2E85FECC31F7}" = CCC Help Finnish
"{A19856E3-C9D7-988E-5B8C-70C87342B8DD}" = Catalyst Control Center Localization All
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{AC76BA86-7AD7-1045-7B44-A92000000001}" = Adobe Reader 9.2 - Polish
"{AC76BA86-7AD7-5464-3428-900000000004}" = Spelling Dictionaries Support For Adobe Reader 9
"{AD777154-A573-4FCA-C730-D7C33437262C}" = CCC Help Czech
"{B194272D-1F92-46DF-99EB-8D5CE91CB4EC}" = Adobe AIR
"{B2EE25B9-5B00-4ACF-94F0-92433C28C39E}" = HP MediaSmart Music/Photo/Video
"{B37DAFA5-717D-41F8-BDFB-3A4B68C0B3A1}" = The Sims™ 3 Nie z tego świata
"{B51605BF-6326-4553-AE96-6D7F1813D5F5}" = HP User Guides 0154
"{B53E61D7-7C80-40DF-82D2-CF5390D6D20A}" = HP Advisor
"{B6659DD8-00A7-4A24-BBFB-C1F6982E5D66}" = PlayStation®Network Downloader
"{B66D2CC9-652D-EBE5-497F-74BBC1029FB4}" = CCC Help Japanese
"{B6892A3F-51F5-4BA4-92E5-3F4A1A10720D}" = Podstawowe programy Windows Live
"{B6A4D07E-725F-07CD-DE49-8AB76939631D}" = CCC Help Norwegian
"{B6A98E5F-D6A7-46FB-9E9D-1F7BF443491C}" = PMB
"{B6CF2967-C81E-40C0-9815-C05774FEF120}" = Skype Click to Call
"{B92C5909-1D37-4C51-8397-A28BB28E5DC3}" = Facebook Video Calling 1.2.0.287
"{BA26FFA5-6D47-47DB-BE56-34C357B5F8CC}" = The Sims™ 3 Wymarzone Podróże
"{BF930A5D-4F36-5158-C8DA-DECD5B51A78E}" = CCC Help Chinese Standard
"{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}" = The Sims™ 3
"{C12631C6-804D-4B32-B0DD-8A496462F106}" = The Sims™ 3 Zwierzaki
"{C59C179C-668D-49A9-B6EA-0121CCFC1243}" = LabelPrint
"{C6FCE95C-0072-40C0-9AB2-3EF88DA6CED9}" = Catalyst Control Center Graphics Previews Common
"{C779648B-410E-4BBA-B75B-5815BCEFE71D}" = Safari
"{C9E14402-3631-4182-B377-6B0DFB1C0339}" = QuickTime
"{CB099890-1D5F-11D5-9EA9-0050BAE317E1}" = PowerDirector
"{D46D081B-F60E-467E-A7C4-117B70D76731}" = HP Update
"{DB4690C5-9015-401D-A96C-A49909B7C372}" = Poczta usługi Windows Live
"{DBF1AE39-DA30-4B89-A7EB-3BDA675C5D9E}" = Media Go
"{DCCAD079-F92C-44DA-B258-624FC6517A5A}" = HP MediaSmart DVD
"{DD49053A-0140-44EF-AE75-C4BC1FDB8286}" = Windows Live Writer
"{DF166A93-835F-DF13-E974-FD73E8D7F4F6}" = CCC Help Swedish
"{E09F7D2B-C1C1-D80B-7775-6FFE9D713C60}" = CCC Help Spanish
"{E26EEBF8-3A50-8095-5877-AE243C8852EF}" = Catalyst Control Center Graphics Previews Vista
"{E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}" = IDT Audio
"{E3E71D07-CD27-46CB-8448-16D4FB29AA13}" = Microsoft WSE 3.0 Runtime
"{E553760D-D7F7-48BF-BD8B-C7E23BA04CB5}" = HP MediaSmart Internet TV
"{E6B88BD6-E4B2-4701-A648-B6DAC6E491CC}" = The Sims™ 3 Pokolenia
"{E97C937C-AE21-453D-86A0-A231507543D1}" = ACID Music Studio 8.0
"{EC8049FF-B0E3-A963-408C-1B1D8F20DD55}" = CCC Help Italian
"{ED436EA8-4145-4703-AE5D-4D09DD24AF5A}" = The Sims™ 3 Szybka jazda Akcesoria
"{F09EF8F2-0976-42C1-8D9D-8DF78337C6E3}" = Sony PC Companion 2.10.165
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219
"{F1D7AC58-554A-4A58-B784-B61558B1449A}" = QLBCASL
"{F3B912F5-EB57-45AA-B3D1-EB532BCF6EF8}" = HP Setup
"{FB697452-8CA4-46B4-98B1-165C922A2EF3}" = Update Manager for SweetPacks 1.0
"{FD1D88FA-E5E0-BA76-73C8-7362E9703842}" = ccc-core-static
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin
"Adobe Shockwave Player" = Adobe Shockwave Player 11.5
"Alik - Już idę do szkoły_is1" = Alik - Już idę do szkoły
"Alik - Mój pierwszy alfabet_is1" = Alik - Mój pierwszy alfabet
"Alik - Wesoła matematyka_is1" = Alik - Wesoła matematyka
"Amazing Photo Editor V7.9.2" = Amazing Photo Editor V7.9.2
"AVG9Uninstall" = AVG Free 9.0
"AviSynth" = AviSynth 2.5
"CCleaner" = CCleaner
"Didakta - Biologia (Nauka o człowieku)_is1" = Didakta - Biologia (Nauka o człowieku)
"Didakta - Chemia_is1" = Didakta - Chemia
"Didakta - Fizyka_is1" = Didakta - Fizyka
"Didakta - Geometria (Obliczenia i pomiary)_is1" = Didakta - Geometria (Obliczenia i pomiary)
"Didakta - Geometria (Zadania konstrukcyjne)_is1" = Didakta - Geometria (Zadania konstrukcyjne)
"Didakta - Historia_is1" = Didakta - Historia
"DivX Setup" = DivX Setup
"DVD Decrypter" = DVD Decrypter (Remove Only)
"ENTERPRISE" = Microsoft Office Enterprise 2007
"Gadu-Gadu 10" = Gadu-Gadu 10
"Google Chrome" = Google Chrome
"Google Updater" = Aktualizator Google
"InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}" = HP MediaSmart Webcam
"InstallShield_{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}" = CyberLink DVD Suite
"InstallShield_{2A30052B-831C-41D3-8044-3C0388066350}" = Seagate Manager Installer
"InstallShield_{3023EBDA-BF1B-4831-B347-E5018555F26E}" = HP MediaSmart Movie Themes
"InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}" = Power2Go
"InstallShield_{67626E09-5366-4480-8F1E-93FADF50CA15}" = HP MediaSmart Live TV
"InstallShield_{B2EE25B9-5B00-4ACF-94F0-92433C28C39E}" = HP MediaSmart Music/Photo/Video
"InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}" = LabelPrint
"InstallShield_{CB099890-1D5F-11D5-9EA9-0050BAE317E1}" = PowerDirector
"InstallShield_{DCCAD079-F92C-44DA-B258-624FC6517A5A}" = HP MediaSmart DVD
"InstallShield_{E553760D-D7F7-48BF-BD8B-C7E23BA04CB5}" = HP MediaSmart Internet TV
"ManyCam" = ManyCam 3.1.51
"McAfee Security Scan" = McAfee Security Scan Plus
"Mozilla Firefox (3.6.23)" = Mozilla Firefox (3.6.23)
"NapiProjekt_is1" = NapiProjekt (2.0.0.2151)
"Nowe Gadu-Gadu" = Nowe Gadu-Gadu
"NSS" = Norton Security Scan
"Opera 12.11.1661" = Opera 12.11
"Origin" = Origin
"PhotoScape" = PhotoScape
"Picasa 3" = Picasa 3
"SP_4e24eecb" = Search Assistant WebSearch 1.74
"SubEdit-Player_is1" = SubEdit-Player
"Szkoła podstawowa klasa 5 - DZIEŃ DOBRY HISTORIO!" = Szkoła podstawowa klasa 5 - DZIEŃ DOBRY HISTORIO!
"Szkoła podstawowa klasa 5 - Tajemnice przyrody" = Szkoła podstawowa klasa 5 - Tajemnice przyrody
"Szkoła podstawowa klasa 6 - Dzień dobry historio!" = Szkoła podstawowa klasa 6 - Dzień dobry historio!
"Szkoła podstawowa klasa 6 – Tajemnice przyrody" = Szkoła podstawowa klasa 6 – Tajemnice przyrody
"Tux Paint Stamps_is1" = Tux Paint Stamps 2008.06.30
"Tux Paint_is1" = Tux Paint 0.9.21
"Unlocker" = Unlocker 1.9.0
"Update Engine" = Sony Ericsson Update Engine
"uTorrent" = µTorrent
"V9Software" = Deinstalator Strony V9
"Videora iPod Converter" = Videora iPod Converter 5.04
"Vid-Saver" = Vid-Saver
"VLC media player" = VLC media player 2.0.1
"WildTangent hp Master Uninstall" = HP Games
"WinLiveSuite_Wave3" = Podstawowe programy Windows Live
 
========== HKEY_CURRENT_USER Uninstall List ==========
 
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"DSite" = Update for Video Converter
"Funmoods" = MaintenanceService-Funmoods
"PDF Reader" = PDF Reader
"PDF Reader Packages" = PDF Reader Packages
"Video Converter Packages" = Video Converter Packages
 
========== Last 20 Event Log Errors ==========
 
[ Application Events ]
Error - 2013-08-19 08:02:01 | Computer Name = Julia-Komputer | Source = Application Error | ID = 1000
Description = Nazwa aplikacji powodującej błąd: FlashPlayerUpdateService.exe, wersja:
 11.6.602.180, sygnatura czasowa: 0x51a4ab8c  Nazwa modułu powodującego błąd: ntdll.dll,
 wersja: 6.1.7601.17725, sygnatura czasowa: 0x4ec49b8f  Kod wyjątku: 0xc0000005  Przesunięcie
 błędu: 0x0002e243  Identyfikator procesu powodującego błąd: 0xa50  Godzina uruchomienia
 aplikacji powodującej błąd: 0x01ce9cd3e8ea9de7  Ścieżka aplikacji powodującej błąd:
 C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe  Ścieżka modułu powodującego
 błąd: C:\Windows\SysWOW64\ntdll.dll  Identyfikator raportu: 274443d9-08c7-11e3-90ba-0027132e2b0d
 
Error - 2013-08-19 08:04:21 | Computer Name = Julia-Komputer | Source = Application Error | ID = 1000
Description = Nazwa aplikacji powodującej błąd: DivXUpdate.exe, wersja: 1.0.6.15,
 sygnatura czasowa: 0x4e31ebcf  Nazwa modułu powodującego błąd: unknown, wersja: 0.0.0.0,
 sygnatura czasowa: 0x00000000  Kod wyjątku: 0x80000004  Przesunięcie błędu: 0x00317696
Identyfikator
 procesu powodującego błąd: 0x1098  Godzina uruchomienia aplikacji powodującej błąd:
 0x01ce9cccf338b222  Ścieżka aplikacji powodującej błąd: C:\Program Files (x86)\DivX\DivX
 Update\DivXUpdate.exe  Ścieżka modułu powodującego błąd: unknown  Identyfikator raportu:
 7ad5cd59-08c7-11e3-90ba-0027132e2b0d
 
Error - 2013-08-19 10:02:05 | Computer Name = Julia-Komputer | Source = Application Error | ID = 1000
Description = Nazwa aplikacji powodującej błąd: FlashPlayerUpdateService.exe, wersja:
 11.6.602.180, sygnatura czasowa: 0x51a4ab8c  Nazwa modułu powodującego błąd: ntdll.dll,
 wersja: 6.1.7601.17725, sygnatura czasowa: 0x4ec49b8f  Kod wyjątku: 0xc0000005  Przesunięcie
 błędu: 0x0002e243  Identyfikator procesu powodującego błąd: 0xd38  Godzina uruchomienia
 aplikacji powodującej błąd: 0x01ce9ce4adbb4bb3  Ścieżka aplikacji powodującej błąd:
 C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe  Ścieżka modułu powodującego
 błąd: C:\Windows\SysWOW64\ntdll.dll  Identyfikator raportu: ed3951ac-08d7-11e3-a93f-0027132e2b0d
 
[ Hewlett-Packard Events ]
Error - 2013-04-12 15:54:01 | Computer Name = Julia-Komputer | Source = Hewlett-Packard | ID = 0
Description = AAProcessExited() C:\ProgramData\Hewlett-Packard\HP Support Framework\Telemetry\041312095356.xml
 File not created by asset agent
 
Error - 2013-04-24 05:35:43 | Computer Name = Julia-Komputer | Source = Hewlett-Packard | ID = 0
Description = AAProcessExited() C:\ProgramData\Hewlett-Packard\HP Support Framework\Telemetry\041324113538.xml
 File not created by asset agent
 
Error - 2013-04-25 08:19:42 | Computer Name = Julia-Komputer | Source = Hewlett-Packard | ID = 0
Description = AAProcessExited() C:\ProgramData\Hewlett-Packard\HP Support Framework\Telemetry\041325021936.xml
 File not created by asset agent
 
Error - 2013-06-04 10:48:56 | Computer Name = Julia-Komputer | Source = Hewlett-Packard | ID = 0
Description = AAProcessExited() C:\ProgramData\Hewlett-Packard\HP Support Framework\Telemetry\061304044847.xml
 File not created by asset agent
 
Error - 2013-06-24 07:36:36 | Computer Name = Julia-Komputer | Source = Hewlett-Packard | ID = 0
Description = AAProcessExited() C:\ProgramData\Hewlett-Packard\HP Support Framework\Telemetry\061324013604.xml
 File not created by asset agent
 
Error - 2013-06-24 07:37:08 | Computer Name = Julia-Komputer | Source = Hewlett-Packard | ID = 0
Description = AAProcessExited() C:\ProgramData\Hewlett-Packard\HP Support Framework\Telemetry\061324013636.xml
 File not created by asset agent
 
Error - 2013-07-01 04:35:20 | Computer Name = Julia-Komputer | Source = Hewlett-Packard | ID = 0
Description = AAProcessExited() C:\ProgramData\Hewlett-Packard\HP Support Framework\Telemetry\071301103514.xml
 File not created by asset agent
 
Error - 2013-07-06 15:57:33 | Computer Name = Julia-Komputer | Source = Hewlett-Packard | ID = 0
Description = AAProcessExited() C:\ProgramData\Hewlett-Packard\HP Support Framework\Telemetry\071306095727.xml
 File not created by asset agent
 
Error - 2013-07-29 03:19:19 | Computer Name = Julia-Komputer | Source = Hewlett-Packard | ID = 0
Description = AAProcessExited() C:\ProgramData\Hewlett-Packard\HP Support Framework\Telemetry\071329091909.xml
 File not created by asset agent
 
Error - 2013-08-10 07:03:13 | Computer Name = Julia-Komputer | Source = Hewlett-Packard | ID = 0
Description = AAProcessExited() C:\ProgramData\Hewlett-Packard\HP Support Framework\Telemetry\081310010240.xml
 File not created by asset agent
 
[ System Events ]
Error - 2013-08-19 09:35:16 | Computer Name = Julia-Komputer | Source = Microsoft-Windows-WindowsUpdateClient | ID = 20
Description = Instalacja nie powiodła się: system Windows nie mógł zainstalować 
następującej aktualizacji, ponieważ wystąpił błąd 0x8007006e: Aktualizacja zabezpieczeń
 produktu Microsoft Office 2007 suites (KB2596871).
 
Error - 2013-08-19 09:35:18 | Computer Name = Julia-Komputer | Source = Microsoft-Windows-WindowsUpdateClient | ID = 20
Description = Instalacja nie powiodła się: system Windows nie mógł zainstalować 
następującej aktualizacji, ponieważ wystąpił błąd 0x8007006e: Aktualizacja zabezpieczeń
 produktu Microsoft Office PowerPoint 2007 (KB2596912).
 
Error - 2013-08-19 09:35:20 | Computer Name = Julia-Komputer | Source = Microsoft-Windows-WindowsUpdateClient | ID = 20
Description = Instalacja nie powiodła się: system Windows nie mógł zainstalować 
następującej aktualizacji, ponieważ wystąpił błąd 0x8007006e: Aktualizacja zabezpieczeń
 produktu Microsoft Office 2007 suites (KB2596672).
 
Error - 2013-08-19 09:35:21 | Computer Name = Julia-Komputer | Source = Microsoft-Windows-WindowsUpdateClient | ID = 20
Description = Instalacja nie powiodła się: system Windows nie mógł zainstalować 
następującej aktualizacji, ponieważ wystąpił błąd 0x8007006e: Aktualizacja zabezpieczeń
 produktu Microsoft Office 2007 suites (KB2687441).
 
Error - 2013-08-19 09:35:23 | Computer Name = Julia-Komputer | Source = Microsoft-Windows-WindowsUpdateClient | ID = 20
Description = Instalacja nie powiodła się: system Windows nie mógł zainstalować 
następującej aktualizacji, ponieważ wystąpił błąd 0x8007006e: Aktualizacja produktu
 Microsoft Office 2007 suites (KB2596660).
 
Error - 2013-08-19 09:35:25 | Computer Name = Julia-Komputer | Source = Microsoft-Windows-WindowsUpdateClient | ID = 20
Description = Instalacja nie powiodła się: system Windows nie mógł zainstalować 
następującej aktualizacji, ponieważ wystąpił błąd 0x8007006e: Aktualizacja zabezpieczeń
 produktu Microsoft Office 2007 suites (KB2687311).
 
Error - 2013-08-19 09:36:04 | Computer Name = Julia-Komputer | Source = Microsoft-Windows-WindowsUpdateClient | ID = 20
Description = Instalacja nie powiodła się: system Windows nie mógł zainstalować 
następującej aktualizacji, ponieważ wystąpił błąd 0x8007006e: Aktualizacja zabezpieczeń
 produktu Microsoft Office 2007 suites (KB2596744).
 
Error - 2013-08-19 09:36:06 | Computer Name = Julia-Komputer | Source = Microsoft-Windows-WindowsUpdateClient | ID = 20
Description = Instalacja nie powiodła się: system Windows nie mógł zainstalować 
następującej aktualizacji, ponieważ wystąpił błąd 0x8007006e: Aktualizacja zabezpieczeń
 produktu Microsoft Office 2007 suites (KB2687499).
 
Error - 2013-08-19 09:36:08 | Computer Name = Julia-Komputer | Source = Microsoft-Windows-WindowsUpdateClient | ID = 20
Description = Instalacja nie powiodła się: system Windows nie mógł zainstalować 
następującej aktualizacji, ponieważ wystąpił błąd 0x8007006e: Aktualizacja zabezpieczeń
 produktu Microsoft Office PowerPoint 2007 (KB2596764).
 
Error - 2013-08-19 09:43:13 | Computer Name = Julia-Komputer | Source = DCOM | ID = 10010
Description = 
 
 
< End of report >
 

 



#5 Starbuck

Starbuck

    'r Brudiwr


  • Malware Response Team
  • 4,149 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Midlands, UK
  • Local time:03:15 AM

Posted 19 August 2013 - 11:28 AM

Hi internetaccess

Could you please post the report from Junkware Removal Tool

Thanks

BBPP6nz.png


#6 internetaccess

internetaccess
  • Topic Starter

  • Members
  • 9 posts
  • OFFLINE
  •  
  • Local time:04:15 AM

Posted 19 August 2013 - 11:34 AM

Sorry! Here it is.

 

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 5.5.0 (08.18.2013:1)
OS: Windows 7 Home Premium x64
Ran by Julia on 2013-08-19 at 13:27:20,50
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
 
 
 
 
~~~ Services
 
 
 
~~~ Registry Values
 
Successfully deleted: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\New Windows\Allow\\*.crossrider.com
Successfully deleted: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\New Windows\Allow\\*.crossrider.com
Successfully deleted: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{98889811-442D-49dd-99D7-DC866BE87DBC}
Successfully repaired: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-18\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-19\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-20\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-21-553491155-114384707-3148371120-1000\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\\Default_Page_URL
 
 
 
~~~ Registry Keys
 
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\{BDB69379-802F-4EAF-B541-F8DE92DD98DB}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\{EA28B360-05E0-4F93-8150-02891F1D8D3C}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{E46C8196-B634-44A1-AF6E-957C64278AB1}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{10DE7085-6A1E-4D41-A7BF-9AF93E351401}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{1AD27395-1659-4DFF-A319-2CFA243861A5}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{31E3BC75-2A09-4CFF-9C92-8D0ED8D1DC0F}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{E2343056-CC08-46AC-B898-BFC7ACF4E755}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\babsolution
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\complitly
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\cr_installer
Failed to delete: [Registry Key] HKEY_CURRENT_USER\Software\datamngr
Failed to delete: [Registry Key] HKEY_CURRENT_USER\Software\datamngr_toolbar
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\delta ltd
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\funmoods
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\installcore
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\installedbrowserextensions
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\mediafinder
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\softonic
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\sweetim
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\yahoopartnertoolbar
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\AppDataLow\software\conduit
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\AppDataLow\software\conduitsearchscopes
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\AppDataLow\software\crossrider
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\AppDataLow\software\pricegong
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\AppDataLow\sprotector
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\download with &media finder
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{2EECD738-5844-4A99-B4B6-146BF802613B}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{97F2FF5B-260C-4CCF-834A-2DDA4E29E39E}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{98889811-442D-49DD-99D7-DC866BE87DBC}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{2EECD738-5844-4A99-B4B6-146BF802613B}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{98889811-442D-49DD-99D7-DC866BE87DBC}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\babylon
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\conduit
Failed to delete: [Registry Key] HKEY_LOCAL_MACHINE\Software\datamngr
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\sweetim
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\systweak
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\applications\ilividsetupv1.exe
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\mf
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\prod.cap
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\conduitinstaller_rasapi32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\conduitinstaller_rasmancs
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\mybabylontb_rasapi32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\mybabylontb_rasmancs
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\sweetim_rasapi32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\sweetim_rasmancs
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\sweetpacksupdatemanager_rasapi32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\sweetpacksupdatemanager_rasmancs
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\vid-saver_rasapi32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\vid-saver_rasmancs
Failed to delete: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\datamngr
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\sp global
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\sprotector
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CrossriderApp0003491.BHO
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CrossriderApp0003491.BHO.1
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CrossriderApp0003491.FBApi
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CrossriderApp0003491.FBApi.1
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CrossriderApp0003491.Sandbox
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CrossriderApp0003491.Sandbox.1
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{11111111-1111-1111-1111-110011341191}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{22222222-2222-2222-2222-220022342291}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{33333333-3333-3333-3333-330033343391}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{55555555-5555-5555-5555-550055345591}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{66666666-6666-6666-6666-660066346691}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{77777777-7777-7777-7777-770077347791}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{44444444-4444-4444-4444-440044344491}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{11111111-1111-1111-1111-110011341191}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{22222222-2222-2222-2222-220022342291}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{33333333-3333-3333-3333-330033343391}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Wow6432Node\Interface\{55555555-5555-5555-5555-550055345591}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Wow6432Node\Interface\{66666666-6666-6666-6666-660066346691}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Wow6432Node\Interface\{77777777-7777-7777-7777-770077347791}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Wow6432Node\TypeLib\{44444444-4444-4444-4444-440044344491}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\CrossriderApp0003491.BHO
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\CrossriderApp0003491.BHO.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\CrossriderApp0003491.FBApi
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\CrossriderApp0003491.FBApi.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\CrossriderApp0003491.Sandbox
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\CrossriderApp0003491.Sandbox.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\Toolbar.CT2612669
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\Interface\{55555555-5555-5555-5555-550055345591}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\Interface\{66666666-6666-6666-6666-660066346691}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\Interface\{77777777-7777-7777-7777-770077347791}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\TypeLib\{44444444-4444-4444-4444-440044344491}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{11111111-1111-1111-1111-110011341191}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110011341191}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{11111111-1111-1111-1111-110011341191}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\HPSF_Tasks_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\HPSF_Tasks_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\UpdateTask_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\UpdateTask_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{11111111-1111-1111-1111-110011341191}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\Wow6432Node\Interface\{55555555-5555-5555-5555-550055345591}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\Wow6432Node\Interface\{66666666-6666-6666-6666-660066346691}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\Wow6432Node\Interface\{77777777-7777-7777-7777-770077347791}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\Wow6432Node\TypeLib\{44444444-4444-4444-4444-440044344491}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\HPSF_Tasks_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\HPSF_Tasks_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\UpdateTask_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\UpdateTask_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110011341191}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{259076C1-9C38-4B67-8DA0-2F376C18BCC0}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{56E8BDEA-5318-43E2-9769-E1C1677354F6}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{E2958F71-2B50-4864-811E-2F39556414E9}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{BB74DE59-BC4C-4172-9AC4-73315F71CFFE}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{E2958F71-2B50-4864-811E-2F39556414E9}
Successfully deleted: [Registry Key] "hkey_current_user\software\apn pip"
Successfully deleted: [Registry Key] "hkey_local_machine\software\pip"
 
 
 
~~~ Files
 
 
 
~~~ Folders
 
Successfully deleted: [Folder] "C:\ProgramData\apn"
Successfully deleted: [Folder] "C:\ProgramData\babylon"
Successfully deleted: [Folder] "C:\ProgramData\big fish games"
Successfully deleted: [Folder] "C:\ProgramData\softsafe"
Failed to delete: [Folder] "C:\ProgramData\sweetim"
Failed to delete: [Folder] "C:\ProgramData\tarma installer"
Successfully deleted: [Folder] "C:\Users\Julia\AppData\Roaming\babylon"
Successfully deleted: [Folder] "C:\Users\Julia\AppData\Roaming\dsite"
Failed to delete: [Folder] "C:\Users\Julia\AppData\Roaming\file scout"
Successfully deleted: [Folder] "C:\Users\Julia\AppData\Roaming\funmoods"
Successfully deleted: [Folder] "C:\Users\Julia\AppData\Roaming\media finder"
Successfully deleted: [Folder] "C:\Users\Julia\AppData\Roaming\systweak"
Successfully deleted: [Folder] "C:\Users\Julia\AppData\Roaming\toolplugin"
Successfully deleted: [Folder] "C:\Users\Julia\appdata\local\conduit"
Successfully deleted: [Folder] "C:\Users\Julia\appdata\local\vid-saver"
Successfully deleted: [Folder] "C:\Users\Julia\appdata\locallow\boost_interprocess"
Successfully deleted: [Folder] "C:\Users\Julia\appdata\locallow\conduit"
Successfully deleted: [Folder] "C:\Users\Julia\appdata\locallow\pricegong"
Successfully deleted: [Folder] "C:\Program Files (x86)\conduit"
Successfully deleted: [Folder] "C:\Program Files (x86)\dealply"
Successfully deleted: [Folder] "C:\Program Files (x86)\red kawa"
Failed to delete: [Folder] "C:\Program Files (x86)\sweetim"
Successfully deleted: [Folder] "C:\Program Files (x86)\vid-saver"
Successfully deleted: [Folder] "C:\Program Files (x86)\websearch"
 
 
 
~~~ FireFox
 
Successfully deleted: [File] C:\user.js
Failed to delete: [File] "C:\Program Files (x86)\Mozilla Firefox\searchplugins\babylon.xml"
Successfully deleted: [File] "C:\Program Files (x86)\Mozilla Firefox\searchplugins\babylon.xml"
Successfully deleted: [File] C:\Users\Julia\AppData\Roaming\mozilla\firefox\profiles\8kg6a5z5.default\user.js
Successfully deleted: [File] C:\Users\Julia\AppData\Roaming\mozilla\firefox\profiles\8kg6a5z5.default\invalidprefs.js
Successfully deleted: [File] C:\Users\Julia\AppData\Roaming\mozilla\firefox\profiles\8kg6a5z5.default\searchplugins\babylon.xml
Successfully deleted: [File] C:\Users\Julia\AppData\Roaming\mozilla\firefox\profiles\8kg6a5z5.default\searchplugins\babylon1.xml
Successfully deleted: [File] C:\Users\Julia\AppData\Roaming\mozilla\firefox\profiles\8kg6a5z5.default\searchplugins\conduit.xml
Successfully deleted: [File] C:\Users\Julia\AppData\Roaming\mozilla\firefox\profiles\8kg6a5z5.default\searchplugins\delta.xml
Successfully deleted: [File] C:\Users\Julia\AppData\Roaming\mozilla\firefox\profiles\8kg6a5z5.default\searchplugins\funmoods.xml
Successfully deleted: [File] C:\Users\Julia\AppData\Roaming\mozilla\firefox\profiles\8kg6a5z5.default\searchplugins\sweetim.xml
Successfully deleted: [File] C:\Users\Julia\AppData\Roaming\mozilla\firefox\profiles\8kg6a5z5.default\searchplugins\websearch.xml
Failed to delete: [Folder] C:\Users\Julia\AppData\Roaming\mozilla\firefox\profiles\8kg6a5z5.default\conduitcommon
Successfully deleted: [Folder] C:\Users\Julia\AppData\Roaming\mozilla\firefox\profiles\8kg6a5z5.default\extensions\crossriderapp3491@crossrider.com
Successfully deleted: [Folder] C:\Users\Julia\AppData\Roaming\mozilla\firefox\profiles\8kg6a5z5.default\extensions\ffxtlbr@funmoods.com
Failed to delete: [Folder] C:\Users\Julia\AppData\Roaming\mozilla\firefox\profiles\8kg6a5z5.default\extensions\addon@defaulttab.com
Failed to delete: [Folder] C:\Users\Julia\AppData\Roaming\mozilla\firefox\profiles\8kg6a5z5.default\extensions\{90B49673-5506-483E-B92B-CA0265BD9CA8}
Successfully deleted: [Folder] C:\Users\Julia\AppData\Roaming\mozilla\firefox\profiles\8kg6a5z5.default\extensions\{EEE6C361-6118-11DC-9C72-001320C79847}
Successfully deleted the following from C:\Users\Julia\AppData\Roaming\mozilla\firefox\profiles\8kg6a5z5.default\prefs.js
 
user_pref("avg.install.userHPSettings", "hxxp://www.delta-search.com/?affID=119370&babsrc=HP_ss&mntrId=28770027132E2B0D");
user_pref("avg.install.userSPSettings", "Search the web (Babylon)");
user_pref("browser.babylon.HPOnNewTab", "search.babylon.com");
user_pref("browser.search.defaultthis.engineName", "IMVU Inc Customized Web Search");
user_pref("browser.search.defaulturl", "hxxp://websearch.helpmefindyour.info/?pid=658&r=2013/04/24&hid=3849054362&lg=EN&cc=PL&l=1&q=");
user_pref("browser.search.selectedEngine", "WebSearch");
user_pref("browser.search.selectedEngine,S", "WebSearch");
user_pref("browser.startup.homepage", "hxxp://search.babylon.com/?affID=119370&babsrc=HP_ss_gin2g&mntrId=28770027132E2B0D");
user_pref("CommunityToolbar.ConduitHomepagesList", "hxxp://search.conduit.com/?ctid=CT2612669&SearchSource=13");
user_pref("CommunityToolbar.ConduitSearchList", "IMVU Inc Customized Web Search");
user_pref("extensions.BabylonToolbar.admin", false);
user_pref("extensions.BabylonToolbar.aflt", "babsst");
user_pref("extensions.BabylonToolbar.appId", "{BDB69379-802F-4eaf-B541-F8DE92DD98DB}");
user_pref("extensions.BabylonToolbar.autoRvrt", "false");
user_pref("extensions.BabylonToolbar.babExt", "");
user_pref("extensions.BabylonToolbar.babTrack", "affID=110824&tt=4912_3");
user_pref("extensions.BabylonToolbar.bbDpng", "20");
user_pref("extensions.BabylonToolbar.cntry", "PL");
user_pref("extensions.BabylonToolbar.dfltLng", "en");
user_pref("extensions.BabylonToolbar.dfltSrch", true);
user_pref("extensions.BabylonToolbar.dpkLst", "");
user_pref("extensions.BabylonToolbar.excTlbr", false);
user_pref("extensions.BabylonToolbar.hdrMd5", "53F957B1F57484BC4D8EAB64428AB8C7");
user_pref("extensions.BabylonToolbar.hmpg", true);
user_pref("extensions.BabylonToolbar.id", "28776bb00000000000000027132e2b0d");
user_pref("extensions.BabylonToolbar.instlDay", "15682");
user_pref("extensions.BabylonToolbar.instlRef", "sst");
user_pref("extensions.BabylonToolbar.lastVrsnTs", "1.8.4.916:01:22");
user_pref("extensions.BabylonToolbar.newTab", false);
user_pref("extensions.BabylonToolbar.pnu_tb9", "{\"newVrsn\":\"7\",\"lastVrsn\":\"7\",\"vrsnLoad\":\"\",\"showMsg\":\"false\",\"showSilent\":\"false\",\"msgTs\":0,\"lstMsgTs\"
user_pref("extensions.BabylonToolbar.prdct", "BabylonToolbar");
user_pref("extensions.BabylonToolbar.prtnrId", "babylon");
user_pref("extensions.BabylonToolbar.rvrt", "false");
user_pref("extensions.BabylonToolbar.sg", "azb");
user_pref("extensions.BabylonToolbar.smplGrp", "azb");
user_pref("extensions.BabylonToolbar.srcExt", "ss");
user_pref("extensions.BabylonToolbar.tlbrId", "tb9");
user_pref("extensions.BabylonToolbar.tlbrSrchUrl", "hxxp://search.babylon.com/?babsrc=TB_def&mntrId=28776bb00000000000000027132e2b0d&q=");
user_pref("extensions.BabylonToolbar.vrsn", "1.8.4.9");
user_pref("extensions.BabylonToolbar.vrsni", "1.8.4.9");
user_pref("extensions.BabylonToolbar.vrsnTs", "1.8.4.916:01:22");
user_pref("extensions.BabylonToolbar_i.babExt", "");
user_pref("extensions.BabylonToolbar_i.babTrack", "affID=110824&tt=4912_3");
user_pref("extensions.BabylonToolbar_i.excTlbr", false);
user_pref("extensions.BabylonToolbar_i.newTab", false);
user_pref("extensions.BabylonToolbar_i.smplGrp", "none");
user_pref("extensions.BabylonToolbar_i.srcExt", "ss");
user_pref("extensions.BabylonToolbar_i.vrsnTs", "1.8.4.916:01:22");
user_pref("extensions.crossrider.bic", "13d889c50ea084638dd62a1e4352cf60");
user_pref("extensions.crossriderapp3491.3491.active", true);
user_pref("extensions.crossriderapp3491.3491.addressbar", "");
user_pref("extensions.crossriderapp3491.3491.affid", "0");
user_pref("extensions.crossriderapp3491.3491.backgroundjs", "\n\n//\n");
user_pref("extensions.crossriderapp3491.3491.backgroundver", 42);
user_pref("extensions.crossriderapp3491.3491.can_run_bg_code", true);
user_pref("extensions.crossriderapp3491.3491.certdomaininstaller", "");
user_pref("extensions.crossriderapp3491.3491.changeprevious", false);
user_pref("extensions.crossriderapp3491.3491.cookie._GPL_aoi.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100");
user_pref("extensions.crossriderapp3491.3491.cookie._GPL_aoi.value", "1339258249");
user_pref("extensions.crossriderapp3491.3491.cookie._GPL_arbitrary_code.expiration", "Wed Mar 20 2013 17:28:22 GMT+0100");
user_pref("extensions.crossriderapp3491.3491.cookie._GPL_arbitrary_code.value", "%22/**/%22");
user_pref("extensions.crossriderapp3491.3491.cookie._GPL_blocklist.expiration", "Wed Mar 20 2013 17:28:22 GMT+0100");
user_pref("extensions.crossriderapp3491.3491.cookie._GPL_blocklist.value", "%22nonexistantdomain.com%22");
user_pref("extensions.crossriderapp3491.3491.cookie._GPL_country_code.expiration", "Wed Mar 27 2013 17:23:21 GMT+0100");
user_pref("extensions.crossriderapp3491.3491.cookie._GPL_country_code.value", "%22PL%22");
user_pref("extensions.crossriderapp3491.3491.cookie._GPL_currenttime.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100");
user_pref("extensions.crossriderapp3491.3491.cookie._GPL_currenttime.value", "%221363714949%22");
user_pref("extensions.crossriderapp3491.3491.cookie._GPL_hotfix20111102645.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100");
user_pref("extensions.crossriderapp3491.3491.cookie._GPL_hotfix20111102645.value", "%221%22");
user_pref("extensions.crossriderapp3491.3491.cookie._GPL_installer_params.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100");
user_pref("extensions.crossriderapp3491.3491.cookie._GPL_installer_params.value", "%7B%22source_id%22%3A%22BVS%22%2C%22sub_id%22%3A%22default%22%2C%22uzid%22%3A%2224540%26subi
user_pref("extensions.crossriderapp3491.3491.cookie._GPL_installtime.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100");
user_pref("extensions.crossriderapp3491.3491.cookie._GPL_installtime.value", "%221363714949%22");
user_pref("extensions.crossriderapp3491.3491.cookie._GPL_parent_zoneid.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100");
user_pref("extensions.crossriderapp3491.3491.cookie._GPL_parent_zoneid.value", "%2224540%22");
user_pref("extensions.crossriderapp3491.3491.cookie._GPL_pc_20120828.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100");
user_pref("extensions.crossriderapp3491.3491.cookie._GPL_pc_20120828.value", "1363796611084");
user_pref("extensions.crossriderapp3491.3491.cookie._GPL_product_id.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100");
user_pref("extensions.crossriderapp3491.3491.cookie._GPL_product_id.value", "%221147%22");
user_pref("extensions.crossriderapp3491.3491.cookie._GPL_zoneid.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100");
user_pref("extensions.crossriderapp3491.3491.cookie._GPL_zoneid.value", "%2243854%22");
user_pref("extensions.crossriderapp3491.3491.cookie.dbtest.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100");
user_pref("extensions.crossriderapp3491.3491.cookie.dbtest.value", "1363796595293");
user_pref("extensions.crossriderapp3491.3491.cookie.InstallationTime.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100");
user_pref("extensions.crossriderapp3491.3491.cookie.InstallationTime.value", "1339258249");
user_pref("extensions.crossriderapp3491.3491.cookie.InstallerParams.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100");
user_pref("extensions.crossriderapp3491.3491.description", "Vid-Saver allows you to download your favorite streaming videos!");
user_pref("extensions.crossriderapp3491.3491.domain", "");
user_pref("extensions.crossriderapp3491.3491.emailsig", "");
user_pref("extensions.crossriderapp3491.3491.enablesearch", false);
user_pref("extensions.crossriderapp3491.3491.exposesites", "");
user_pref("extensions.crossriderapp3491.3491.fbremoteurl", "");
user_pref("extensions.crossriderapp3491.3491.group", 0);
user_pref("extensions.crossriderapp3491.3491.homepage", "");
user_pref("extensions.crossriderapp3491.3491.iframe", false);
user_pref("extensions.crossriderapp3491.3491.InstallationThankYouPage", true);
user_pref("extensions.crossriderapp3491.3491.InstallationTime", 1339258249);
user_pref("extensions.crossriderapp3491.3491.InstallationUserSettings.searchUserConifrmation", false);
user_pref("extensions.crossriderapp3491.3491.InstallationUserSettings.setHomepage", false);
user_pref("extensions.crossriderapp3491.3491.InstallationUserSettings.setNewTab", false);
user_pref("extensions.crossriderapp3491.3491.InstallationUserSettings.setSearch", false);
user_pref("extensions.crossriderapp3491.3491.internaldb.InstallerIdentifiers.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100");
user_pref("extensions.crossriderapp3491.3491.internaldb.InstallerIdentifiers.value", "%7B%22installer_bic%22%3A%22359A653B68DE4B5E897F9F8F5C1419F7IE%22%2C%22installer_verifier
user_pref("extensions.crossriderapp3491.3491.js", "\n\nif(\"undefined\"!=typeof _GPL_PLUGIN){var _GPL_=function(){_GPL_PLUGIN.started||_GPL_PLUGIN.prepare({pid:1140,baseCDN:\"
user_pref("extensions.crossriderapp3491.3491.manifesturl", "");
user_pref("extensions.crossriderapp3491.3491.name", "Vid-Saver");
user_pref("extensions.crossriderapp3491.3491.newtab", "");
user_pref("extensions.crossriderapp3491.3491.opensearch", "");
user_pref("extensions.crossriderapp3491.3491.plugins.plugin_1000014.code", "Array.prototype.indexOf||(Array.prototype.indexOf=function(B){if(void 0===this||null===this)throw n
user_pref("extensions.crossriderapp3491.3491.plugins.plugin_1000014.name", "GPL Plugin (Loader)");
user_pref("extensions.crossriderapp3491.3491.plugins.plugin_1000014.ver", 15);
user_pref("extensions.crossriderapp3491.3491.plugins.plugin_1000015.code", "var a=appAPI.db.getList(),cf_ran=!1,_GPL_BG={vars:{},rules:{},started:!1,allowed:!1,log:function(f)
user_pref("extensions.crossriderapp3491.3491.plugins.plugin_1000015.name", "GPL Background (BG)");
user_pref("extensions.crossriderapp3491.3491.plugins.plugin_1000015.ver", 34);
user_pref("extensions.crossriderapp3491.3491.plugins.plugin_13.code", "(function(a){a.selectedText=function(e,c){function d(){if(window.getSelection){return window.getSelectio
user_pref("extensions.crossriderapp3491.3491.plugins.plugin_13.name", "CrossriderAppUtils");
user_pref("extensions.crossriderapp3491.3491.plugins.plugin_13.ver", 2);
user_pref("extensions.crossriderapp3491.3491.plugins.plugin_14.code", "if(typeof(appAPI)===\"undefined\"){appAPI={};}var CR__bIsIEWindow=false;if(typeof window!==\"undefined\"
user_pref("extensions.crossriderapp3491.3491.plugins.plugin_14.name", "CrossriderUtils");
user_pref("extensions.crossriderapp3491.3491.plugins.plugin_14.ver", 2);
user_pref("extensions.crossriderapp3491.3491.plugins.plugin_16.code", "if((typeof isBackground===\"undefined\"||isBackground!==true)&&(typeof _firefoxVersion!==\"undefined\"&&
user_pref("extensions.crossriderapp3491.3491.plugins.plugin_16.name", "FFAppAPIWrapper");
user_pref("extensions.crossriderapp3491.3491.plugins.plugin_16.ver", 5);
user_pref("extensions.crossriderapp3491.3491.plugins.plugin_17.code", "if(typeof window!==\"undefined\"){\n/*!\n * jQuery JavaScript Library v1.4.2\n * hxxp://jquery.com/\n *\
user_pref("extensions.crossriderapp3491.3491.plugins.plugin_17.name", "jQuery");
user_pref("extensions.crossriderapp3491.3491.plugins.plugin_17.ver", 3);
user_pref("extensions.crossriderapp3491.3491.plugins.plugin_47.code", "(function(){appAPI.ready=function(a){appAPI.resources.isReady(a);};}());var CrossRiderResourcesManager=(
user_pref("extensions.crossriderapp3491.3491.plugins.plugin_47.name", "resources_background");
user_pref("extensions.crossriderapp3491.3491.plugins.plugin_47.ver", 1);
user_pref("extensions.crossriderapp3491.3491.plugins.plugin_64.code", "(function(){var h=\"__CR_EMPTY_CHANNEL__\";var d=function(j){return(typeof j===\"object\"&&j!==null);};v
user_pref("extensions.crossriderapp3491.3491.plugins.plugin_64.name", "appApiMessage");
user_pref("extensions.crossriderapp3491.3491.plugins.plugin_64.ver", 1);
user_pref("extensions.crossriderapp3491.3491.plugins.plugin_72.code", "if(appAPI.__should_activate_validation__===true){(function(){var k={};var f=appAPI.appInfo.name;var l=fu
user_pref("extensions.crossriderapp3491.3491.plugins.plugin_72.name", "appApiValidation");
user_pref("extensions.crossriderapp3491.3491.plugins.plugin_72.ver", 1);
user_pref("extensions.crossriderapp3491.3491.plugins.plugin_78.code", "if(typeof jQuery!==\"undefined\"&&(jQuery)&&typeof navigator!==\"undefined\"&&typeof navigator.userAgent
user_pref("extensions.crossriderapp3491.3491.plugins.plugin_78.name", "CrossriderInfo");
user_pref("extensions.crossriderapp3491.3491.plugins.plugin_78.ver", 2);
user_pref("extensions.crossriderapp3491.3491.plugins_lists.plugins_0", "14,78,16,64,47,72,1000015");
user_pref("extensions.crossriderapp3491.3491.plugins_lists.plugins_1", "17,14,78,13,16,64,72,1000014");
user_pref("extensions.crossriderapp3491.3491.pluginsurl", "hxxp://app-static.crossrider.com/plugin/apps/3491/plugins/081/ff/plugins.json");
user_pref("extensions.crossriderapp3491.3491.pluginsversion", 59);
user_pref("extensions.crossriderapp3491.3491.premium", true);
user_pref("extensions.crossriderapp3491.3491.publisher", "215 Apps");
user_pref("extensions.crossriderapp3491.3491.searchstatus", 0);
user_pref("extensions.crossriderapp3491.3491.setnewtab", false);
user_pref("extensions.crossriderapp3491.3491.settingsurl", "");
user_pref("extensions.crossriderapp3491.3491.thankyou", "hxxp://vid-saver.com/thankyou.html");
user_pref("extensions.crossriderapp3491.3491.updateinterval", 360);
user_pref("extensions.crossriderapp3491.3491.ver", 102);
user_pref("extensions.crossriderapp3491.apps", "3491");
user_pref("extensions.crossriderapp3491.bic", "13d889c50ea084638dd62a1e4352cf60");
user_pref("extensions.crossriderapp3491.cid", 3491);
user_pref("extensions.crossriderapp3491.firstrun", false);
user_pref("extensions.crossriderapp3491.hadappinstalled", true);
user_pref("extensions.crossriderapp3491.installationdate", 1363796579);
user_pref("extensions.crossriderapp3491.lastcheck", 22729943);
user_pref("extensions.crossriderapp3491.lastcheckitem", 22729944);
user_pref("extensions.crossriderapp3491.misc.lastBgWorkerTimer", "1363797002856");
user_pref("extensions.crossriderapp3491.misc.lastDomWorkerTimer", "1363797002789");
user_pref("extensions.defaulttab.active.affiliate", 3513);
user_pref("extensions.defaulttab.browserID", "E263AA116C02EE6295ED5623761B93EF");
user_pref("extensions.defaulttab.config", "<!--- Page(page_conn_problem_dsl_and_eth_cable_disconnected)=[] ---><HTML><HEAD><META HTTP-EQUIV=\"Content-Type\" CONTENT=\"text/htm
user_pref("extensions.defaulttab.firstrun", false);
user_pref("extensions.defaulttab.installedVersion", "1.4.4");
user_pref("extensions.delta.admin", false);
user_pref("extensions.delta.aflt", "babsst");
user_pref("extensions.delta.appId", "{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}");
user_pref("extensions.delta.autoRvrt", "false");
user_pref("extensions.delta.babTrack", "affID=110824&tt=4912_3");
user_pref("extensions.delta.bbDpng", "20");
user_pref("extensions.delta.cntry", "PL");
user_pref("extensions.delta.dfltLng", "en");
user_pref("extensions.delta.dfltSrch", false);
user_pref("extensions.delta.excTlbr", false);
user_pref("extensions.delta.hdrMd5", "8F26DB2C927D7B4090B16A33DF8E05DD");
user_pref("extensions.delta.hmpg", false);
user_pref("extensions.delta.id", "28776bb00000000000000027132e2b0d");
user_pref("extensions.delta.instlDay", "15783");
user_pref("extensions.delta.instlRef", "sst");
user_pref("extensions.delta.lastVrsnTs", "");
user_pref("extensions.delta.newTab", false);
user_pref("extensions.delta.prdct", "delta");
user_pref("extensions.delta.prtnrId", "delta");
user_pref("extensions.delta.rvrt", "false");
user_pref("extensions.delta.sg", "azb");
user_pref("extensions.delta.smplGrp", "none");
user_pref("extensions.delta.tlbrId", "base");
user_pref("extensions.delta.tlbrSrchUrl", "");
user_pref("extensions.delta.vrsn", "1.8.10.0");
user_pref("extensions.delta.vrsni", "1.8.10.0");
user_pref("extensions.delta.vrsnTs", "1.8.10.018:24:46");
user_pref("extensions.funmoods.admin", false);
user_pref("extensions.funmoods.aflt", "ironto");
user_pref("extensions.funmoods.autoRvrt", "false");
user_pref("extensions.funmoods.cntry", "PL");
user_pref("extensions.funmoods.cv", "cv5");
user_pref("extensions.funmoods.dfltLng", "");
user_pref("extensions.funmoods.dfltSrch", true);
user_pref("extensions.funmoods.excTlbr", false);
user_pref("extensions.funmoods.fmupdtFirst", false);
user_pref("extensions.funmoods.hdrMd5", "C2DD6D35539F405969241296B10CBF12");
user_pref("extensions.funmoods.hmpg", true);
user_pref("extensions.funmoods.id", "28776bb00000000000000027132e2b0d");
user_pref("extensions.funmoods.instlDay", "15431");
user_pref("extensions.funmoods.instlRef", "");
user_pref("extensions.funmoods.lastVrsnTs", "1.5.19.317:16:14");
user_pref("extensions.funmoods.newTab", true);
user_pref("extensions.funmoods.newTabUrl", "hxxp://start.funmoods.com/?f=2&a=ironto");
user_pref("extensions.funmoods.prdct", "funmoods");
user_pref("extensions.funmoods.prtnrId", "funmoods");
user_pref("extensions.funmoods.sg", "none");
user_pref("extensions.funmoods.smplGrp", "none");
user_pref("extensions.funmoods.srchPrvdr", "Search");
user_pref("extensions.funmoods.tlbrId", "base");
user_pref("extensions.funmoods.tlbrSrchUrl", "hxxp://start.funmoods.com/results.php?f=3&a=ironto&q=");
user_pref("extensions.funmoods.vrsn", "1.5.19.3");
user_pref("extensions.funmoods.vrsni", "1.5.19.3");
user_pref("extensions.funmoods.vrsnTs", "1.5.19.317:16:14");
user_pref("extensions.funmoods_i.dfltSrch", true);
user_pref("extensions.funmoods_i.dnsErr", true);
user_pref("extensions.funmoods_i.hmpg", true);
user_pref("extensions.funmoods_i.hmpgUrl", "hxxp://start.funmoods.com/?f=1&a=ironto");
user_pref("extensions.funmoods_i.newTab", true);
user_pref("extensions.funmoods_i.smplGrp", "none");
user_pref("extensions.funmoods_i.vrsnTs", "1.5.19.317:16:14");
user_pref("extensions.newAddons", "toolbar_MYC3@apn.ask.com,oicqk@lmjlqlaxla.com,addon@defaulttab.com");
Emptied folder: C:\Users\Julia\AppData\Roaming\mozilla\firefox\profiles\8kg6a5z5.default\minidumps [4 files]
 
 
 
~~~ Chrome
 
Successfully deleted: [Folder] C:\Users\Julia\appdata\local\Google\Chrome\User Data\Default\Extensions\pgmfkblbflahhponhjmkcnpjinenhlnc
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Google\Chrome\Extensions\dednnpigldgdbpgcdpfppmlcnnbjciel
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Google\Chrome\Extensions\fdloijijlkoblmigdofommgnheckmaki
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Google\Chrome\Extensions\pgmfkblbflahhponhjmkcnpjinenhlnc
 
 
 
~~~ Event Viewer Logs were cleared
 
 
 
 
 
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 2013-08-19 at 13:58:37,39
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~


#7 Starbuck

Starbuck

    'r Brudiwr


  • Malware Response Team
  • 4,149 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Midlands, UK
  • Local time:03:15 AM

Posted 19 August 2013 - 12:22 PM

Hi internetaccess

Thanks for that.

Step 1
Please uninstall McAfee Security Scan Plus
It usually comes bundled with other programs and gets installed without your knowledge.
It's not needed anyway.


Step 2
Double click on OTL to run it.
Copy the lines in the codebox below. (make sure that :Otl is on the first line and that you include all of the Commands section )
:otl
IE - HKCU\..\URLSearchHook: {90b49673-5506-483e-b92b-ca0265bd9ca8} - No CLSID value found
IE - HKCU\..\URLSearchHook: {D8278076-BC68-4484-9233-6E7F1628B56C} - No CLSID value found
IE - HKCU\..\SearchScopes,DefaultScope = {BB74DE59-BC4C-4172-9AC4-73315F71CFFE}
FF - prefs.js..extensions.enabledItems: ffxtlbr@babylon.com:1.5.0
FF - prefs.js..extensions.enabledItems: welcome@toolmin.com:1.03
FF - prefs.js..extensions.enabledItems: ffxtlbr@funmoods.com:1.5.0
FF - prefs.js..extensions.enabledItems: crossriderapp3491@crossrider.com:0.81.20
FF - prefs.js..extensions.enabledItems: gencrawler@some.com:2.6
FF - prefs.js..extensions.enabledItems: addon@defaulttab.com:1.4.4
FF - prefs.js..extensions.enabledItems: oicqk@lmjlqlaxla.com:3.8
[2013-04-24 10:12:27 | 000,000,000 | ---D | M] (Broowose22save) -- C:\Users\Julia\AppData\Roaming\mozilla\Firefox\Profiles\8kg6a5z5.default\extensions\oicqk@lmjlqlaxla.com
[2012-02-12 22:59:13 | 000,000,000 | ---D | M] (toolplugin) -- C:\Users\Julia\AppData\Roaming\mozilla\Firefox\Profiles\8kg6a5z5.default\extensions\welcome@toolmin.com
[2013-04-20 02:36:53 | 000,002,512 | ---- | M] () -- C:\Users\Julia\AppData\Roaming\mozilla\firefox\profiles\8kg6a5z5.default\searchplugins\ask-search.xml
File not found (No name found) -- C:\PROGRAM FILES (X86)\MOZILLA FIREFOX\EXTENSIONS\{CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA}
[2012-12-08 18:08:31 | 000,000,000 | ---D | M] (General Crawler) -- C:\USERS\JULIA\APPDATA\ROAMING\MOZILLA\EXTENSIONS\{EC8030F7-C20A-464F-9B0E-13A3A9E97384}\GENCRAWLER@SOME.COM
File not found (No name found) -- C:\USERS\JULIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8KG6A5Z5.DEFAULT\EXTENSIONS\CROSSRIDERAPP3491@CROSSRIDER.COM
File not found (No name found) -- C:\USERS\JULIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8KG6A5Z5.DEFAULT\EXTENSIONS\FFXTLBR@BABYLON.COM
File not found (No name found) -- C:\USERS\JULIA\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\8KG6A5Z5.DEFAULT\EXTENSIONS\FFXTLBR@FUNMOODS.COM
O2 - BHO: (no name) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - No CLSID value found.
O3 - HKLM\..\Toolbar: (toolplugin) - {DFEFCDEE-CF1A-4FC8-89AF-189327213627} - C:\Users\Julia\AppData\Roaming\toolplugin\toolbar.dll File not found
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {90B49673-5506-483E-B92B-CA0265BD9CA8} - No CLSID value found.
O4 - HKLM..\Run: []  File not found
O4 - HKCU..\Run: [ManyCam] "C:\Program Files (x86)\ManyCam\Bin\ManyCam.exe" /silent File not found
O4 - HKCU..\Run: [Media Finder] "C:\Program Files (x86)\Media Finder\Media Finder.exe" /opentotray File not found
O8:64bit: - Extra context menu item: E&ksportuj do programu Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000 File not found
O8 - Extra context menu item: E&ksportuj do programu Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000 File not found
O1364bit: - gopher Prefix: missing
O13 - gopher Prefix: missing
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.)
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O33 - MountPoints2\{0cbc2efd-86fc-11e1-a87e-0027132e2b0d}\Shell - "" = AutoRun
O33 - MountPoints2\{0cbc2efd-86fc-11e1-a87e-0027132e2b0d}\Shell\AutoRun\command - "" = G:\Startme.exe
O33 - MountPoints2\{eba1cc21-9109-11de-a358-806e6f6e6963}\Shell - "" = AutoRun
O33 - MountPoints2\{eba1cc21-9109-11de-a358-806e6f6e6963}\Shell\AutoRun\command - "" = E:\Autorun.exe -- [2012-09-28 15:30:38 | 000,055,176 | R--- | M] (Electronic Arts)
@Alternate Data Stream - 127 bytes -> C:\ProgramData\Temp:430C6D84
@Alternate Data Stream - 112 bytes -> C:\ProgramData\Temp:D1B5B4F1
@Alternate Data Stream - 109 bytes -> C:\ProgramData\Temp:DFC5A2B2


:Files
C:\Users\Julia\AppData\Local\Temp*
ipconfig /flushdns /c

:commands
[emptytemp]
[purity]
[RESETHOSTS]


  • Return to OTL,
  • right click in the Custom Scans/Fixes window (under the blue bar) and choose Paste.

    scan-fix.png
  • Click the red Run Fix button.

    runfixbutton.png
  • OTL will reboot your system once the fix has completed.
  • After the reboot, you may need to double click OTL to launch the program and retrieve the log.
Copy and paste the contents of the OTL log that comes up after the fix in your next reply.

if you lose the report, there will be a copy here:
C:\_OTL\MovedFiles



Step 3
Please download AdwCleaner by Xplode onto your desktop.
  • Close all open programs and internet browsers.
  • Double click on adwcleaner.exe to run the tool.
  • Click on Search.
  • A logfile will automatically open after the scan has finished.
  • Please post the contents of that logfile with your next reply.
  • You can find the logfile at C:\AdwCleaner[R1].txt as well.
In your next reply, please submit:
Otl fix report
AdwCleaner report


Thanks.

BBPP6nz.png


#8 internetaccess

internetaccess
  • Topic Starter

  • Members
  • 9 posts
  • OFFLINE
  •  
  • Local time:04:15 AM

Posted 19 August 2013 - 01:05 PM

Everything seems to be working smoother, already.

 

OTL log

 

All processes killed
========== OTL ==========
Registry value HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks\\{90b49673-5506-483e-b92b-ca0265bd9ca8} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{90b49673-5506-483e-b92b-ca0265bd9ca8}\ not found.
Registry value HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks\\{D8278076-BC68-4484-9233-6E7F1628B56C} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D8278076-BC68-4484-9233-6E7F1628B56C}\ not found.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
Prefs.js: ffxtlbr@babylon.com:1.5.0 removed from extensions.enabledItems
Prefs.js: welcome@toolmin.com:1.03 removed from extensions.enabledItems
Prefs.js: ffxtlbr@funmoods.com:1.5.0 removed from extensions.enabledItems
Prefs.js: crossriderapp3491@crossrider.com:0.81.20 removed from extensions.enabledItems
Prefs.js: gencrawler@some.com:2.6 removed from extensions.enabledItems
Prefs.js: addon@defaulttab.com:1.4.4 removed from extensions.enabledItems
Prefs.js: oicqk@lmjlqlaxla.com:3.8 removed from extensions.enabledItems
C:\Users\Julia\AppData\Roaming\mozilla\Firefox\Profiles\8kg6a5z5.default\extensions\oicqk@lmjlqlaxla.com\content folder moved successfully.
C:\Users\Julia\AppData\Roaming\mozilla\Firefox\Profiles\8kg6a5z5.default\extensions\oicqk@lmjlqlaxla.com folder moved successfully.
C:\Users\Julia\AppData\Roaming\mozilla\Firefox\Profiles\8kg6a5z5.default\extensions\welcome@toolmin.com\chrome\content folder moved successfully.
C:\Users\Julia\AppData\Roaming\mozilla\Firefox\Profiles\8kg6a5z5.default\extensions\welcome@toolmin.com\chrome folder moved successfully.
C:\Users\Julia\AppData\Roaming\mozilla\Firefox\Profiles\8kg6a5z5.default\extensions\welcome@toolmin.com folder moved successfully.
C:\Users\Julia\AppData\Roaming\mozilla\firefox\profiles\8kg6a5z5.default\searchplugins\ask-search.xml moved successfully.
C:\USERS\JULIA\APPDATA\ROAMING\MOZILLA\EXTENSIONS\{EC8030F7-C20A-464F-9B0E-13A3A9E97384}\GENCRAWLER@SOME.COM\chrome\content folder moved successfully.
C:\USERS\JULIA\APPDATA\ROAMING\MOZILLA\EXTENSIONS\{EC8030F7-C20A-464F-9B0E-13A3A9E97384}\GENCRAWLER@SOME.COM\chrome folder moved successfully.
C:\USERS\JULIA\APPDATA\ROAMING\MOZILLA\EXTENSIONS\{EC8030F7-C20A-464F-9B0E-13A3A9E97384}\GENCRAWLER@SOME.COM folder moved successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}\ not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{DFEFCDEE-CF1A-4FC8-89AF-189327213627} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DFEFCDEE-CF1A-4FC8-89AF-189327213627}\ deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{2318C2B1-4965-11D4-9B18-009027A5CD4F} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2318C2B1-4965-11D4-9B18-009027A5CD4F}\ not found.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{90B49673-5506-483E-B92B-CA0265BD9CA8} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{90B49673-5506-483E-B92B-CA0265BD9CA8}\ not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\ deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\ManyCam not found.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\Media Finder not found.
64bit-Registry key HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\E&ksportuj do programu Microsoft Excel\ deleted successfully.
Registry key HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\E&ksportuj do programu Microsoft Excel\ not found.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\URL\Prefixes\\gopher|:gopher:// /E : value set successfully!
Starting removal of ActiveX control {E2883E8F-472F-4FB0-9522-AC9BF37916A7}
C:\Windows\Downloaded Program Files\gp.inf not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{E2883E8F-472F-4FB0-9522-AC9BF37916A7}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E2883E8F-472F-4FB0-9522-AC9BF37916A7}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{E2883E8F-472F-4FB0-9522-AC9BF37916A7}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E2883E8F-472F-4FB0-9522-AC9BF37916A7}\ not found.
64bit-Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad\\WebCheck deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E6FB5E20-DE35-11CF-9C87-00AA005127ED}\ not found.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad\\WebCheck deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E6FB5E20-DE35-11CF-9C87-00AA005127ED}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{0cbc2efd-86fc-11e1-a87e-0027132e2b0d}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0cbc2efd-86fc-11e1-a87e-0027132e2b0d}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{0cbc2efd-86fc-11e1-a87e-0027132e2b0d}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0cbc2efd-86fc-11e1-a87e-0027132e2b0d}\ not found.
File G:\Startme.exe not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{eba1cc21-9109-11de-a358-806e6f6e6963}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{eba1cc21-9109-11de-a358-806e6f6e6963}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{eba1cc21-9109-11de-a358-806e6f6e6963}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{eba1cc21-9109-11de-a358-806e6f6e6963}\ not found.
File move failed. E:\Autorun.exe scheduled to be moved on reboot.
ADS C:\ProgramData\Temp:430C6D84 deleted successfully.
ADS C:\ProgramData\Temp:D1B5B4F1 deleted successfully.
ADS C:\ProgramData\Temp:DFC5A2B2 deleted successfully.
========== FILES ==========
C:\Users\Julia\AppData\Local\Temp\{FF81734A-7B5F-4018-A6D3-BA1A769C246F} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{FF1A17D7-5A8B-4A4A-9077-D8940A0DC56E} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{FD83CE53-16B0-4B8B-AF94-C18A9902F20D} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{F3CB5429-5F6A-4F9C-9E22-9730D4BDF5D3} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{EEB2D483-7D9B-44A9-9EF4-A1F5BA671C16} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{EAF1028A-0544-4D6B-843E-84EC52FE6929} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{E75EBDE1-8E7D-4DA8-9EC2-43F86B638121} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{E48C4B83-572D-4797-8E8E-CA23B22146A7} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{E3DBF910-D454-497F-B0F7-FE16B2E2DD9D} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{E3527602-A117-4EC1-8714-2000C5FA33E7} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{E0109F41-2697-4556-A684-FFF23FDF0316} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{DF7100AB-DEA1-4658-86A1-9356D3E837D6} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{DF469075-1D89-48BD-AAC7-896B4090A692} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{DA3C33C8-6243-4286-B8B7-036671F7F48B}\Disk1 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{DA3C33C8-6243-4286-B8B7-036671F7F48B} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{D621EE8E-DE17-4CD6-91CC-368890699AC3} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{d61d8aea-db43-46d4-989c-17fd2bb4603f} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{D58F52D9-033C-4F4B-B14B-824F476C1D4D} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{CD318238-830B-42B8-815C-BD61E8ABF341} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{CB75D186-1150-4782-B484-EEF95A3BBA3F} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{CAC212B9-F095-495E-8850-CA60EBBBC1D8} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{C6D8292E-9BDE-4205-9291-74C00BD3B1C6} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{c1f2e077-2e9b-459e-96ab-56473b947a45} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{BA1ADA25-A1F8-46D1-B334-A9F5F418EB94}\Disk1 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{BA1ADA25-A1F8-46D1-B334-A9F5F418EB94} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{B5C8D8A2-28B5-4393-9E7D-0B95E3B14A78} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{B5B32D68-A1A4-4339-8559-ECE4B2FDC3C7} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{B1729396-8141-4A5C-937C-1955E24C0328} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{B015A654-7CFC-4808-BD93-31A945077C6D} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{AFBADB68-D80A-4FFA-B07D-B85AF8CD4A4E}\Disk1\Support\Readme folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{AFBADB68-D80A-4FFA-B07D-B85AF8CD4A4E}\Disk1\Support folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{AFBADB68-D80A-4FFA-B07D-B85AF8CD4A4E}\Disk1 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{AFBADB68-D80A-4FFA-B07D-B85AF8CD4A4E} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{AE0A1666-7498-47CF-98AF-8EF6FF504D0E}\Disk1 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{AE0A1666-7498-47CF-98AF-8EF6FF504D0E} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{AC48D12F-25BE-4F61-9D35-CB3A4CF2A811} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{ac02e1bc-3123-4569-8c10-4f774cc104c6} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{abd469fc-65c3-4661-8ba2-0c6433c3c324} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{AAF00F1B-2977-4238-8515-C87118CAEAEF} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{AAC41CD2-F9A4-4F1F-838B-42ED24158C01} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{A9B64425-02D3-49D6-888E-EE66151DB10E} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{A5B3D483-911F-4F1D-BCCF-21965F5803CC} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{A3028742-8BB2-4214-976F-9B6426122945} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{a0c49554-d542-4c32-bfde-047a317ecc74} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{A0063533-4154-4308-ABAA-29ABD92C0878}\{C05D8CDB-417D-4335-A38C-A0659EDFD6B8} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{A0063533-4154-4308-ABAA-29ABD92C0878} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{95CC6779-A0D1-4721-A1A9-B80504EA9A33}\{C43048A9-742C-4DAD-90D2-E3B53C9DB825} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{95CC6779-A0D1-4721-A1A9-B80504EA9A33} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{95275D9B-B6B4-48DE-9007-88532BEB83C0}\Disk1 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{95275D9B-B6B4-48DE-9007-88532BEB83C0} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{860cb5d1-f6ff-450d-8f46-ee2f03b63c69} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{809FE649-3FF4-4F25-8D32-2CF0CE3149B9}\{C43048A9-742C-4DAD-90D2-E3B53C9DB825} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{809FE649-3FF4-4F25-8D32-2CF0CE3149B9} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{80294542-8874-424A-A94C-1DCA759ACBAE} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{7AAB42BF-1ABF-4313-8336-CB10A3B5BB3C} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{79C944A7-90ED-4281-AA84-EAD0FB7F4240}\Disk1 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{79C944A7-90ED-4281-AA84-EAD0FB7F4240} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{74A519C6-DB85-403B-A5D9-AF70ACCF0C27} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{72E0DA4C-7C29-4A9D-8C1E-72BB8B8082D0} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{72DBADEF-F66D-4080-83EF-1C4DF22CCFF1} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{72C17907-CCE8-4917-A779-0A6B6ED17885}\Disk1\Support\Readme folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{72C17907-CCE8-4917-A779-0A6B6ED17885}\Disk1\Support folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{72C17907-CCE8-4917-A779-0A6B6ED17885}\Disk1 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{72C17907-CCE8-4917-A779-0A6B6ED17885} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{710c9bc4-75f7-4b11-a6f4-fad37b607e03} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{6BF09628-1F32-4C52-B532-462E957D9CFC} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{6AF5BCAC-FA07-444A-A954-D910ECD9E931} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{69FA73BC-2990-4D88-94AE-F2414CB26754} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{687229B4-410D-416D-BCAC-73A179CCBE8A} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{66fb4867-8d36-449b-a790-77d471310745} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{65395CDE-74FE-47E7-9698-2CB3FDFBDAF2}\{BA26FFA5-6D47-47DB-BE56-34C357B5F8CC} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{65395CDE-74FE-47E7-9698-2CB3FDFBDAF2} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{6501F3AD-82C6-4760-9E6E-5B0B0684A08F}\Disk1\Support\Readme folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{6501F3AD-82C6-4760-9E6E-5B0B0684A08F}\Disk1\Support folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{6501F3AD-82C6-4760-9E6E-5B0B0684A08F}\Disk1 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{6501F3AD-82C6-4760-9E6E-5B0B0684A08F} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{5FAC0DD0-B177-43FB-B67B-A3204CF04921} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{4E6DCFC4-F81E-4A5C-90A1-84F2C9AB3084} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{4CAFD2B3-2B71-46BA-ABF7-F9D71424F5D2} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{4b52a8a8-31cd-4708-a3b7-1082affaed4f} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{444C7F4B-C693-40AC-B571-621E87D7C0E8}\{C05D8CDB-417D-4335-A38C-A0659EDFD6B8} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{444C7F4B-C693-40AC-B571-621E87D7C0E8} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{4438e7f2-c92f-473c-b255-db7342102053} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{4379E5D5-D2B4-4EBC-8E22-6561E385BA32} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{432A1739-54D4-49F0-91E1-4004518C4934} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{3FA605E7-2A04-4CAD-9759-BF581ACABA86} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{3D1B1344-86C7-4137-9313-8FAC63165167}\Disk1 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{3D1B1344-86C7-4137-9313-8FAC63165167} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{3C741B7F-49ED-4A6B-8DD1-F7BF85EC60AC} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{3B5226E7-90F3-48A5-8E5B-EB313AEB6ECE} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{3A6D292B-C325-4681-AD89-E25CD914B389}\Disk1 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{3A6D292B-C325-4681-AD89-E25CD914B389} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{3368AE95-5390-40C8-9A0B-214B4A31F3A8} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{3363DEB9-8D29-46B6-AFFD-C6AAD7091E3D} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{32DA55EB-EF6A-40DF-BC0D-4751745B4A49} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{324F35A9-D5A1-4052-A6FE-E8D66F58DC42} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{320632e0-5067-4151-ae9a-915b8a0e6fc6} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{2F22B49A-E850-4569-A677-E9AA163E6BB7} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{2B445EED-7CFD-4DE8-8EC1-FC4407B04E64}\Disk1 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{2B445EED-7CFD-4DE8-8EC1-FC4407B04E64} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{2B1CECDA-AD52-4C75-B9AA-394A69127407} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{2B05FDC4-7270-498B-BE3F-182D985616EF} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{1EF595E2-8488-4D85-B192-458FB4991EC4} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{1B5AE16B-B0C3-4C23-9718-7091B4FA42DD} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{19F559A2-48E2-4641-B9CA-5494412ACF24} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{1905DA02-23EC-4060-9E4B-4CBF8B76C1F5}\Disk1 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{1905DA02-23EC-4060-9E4B-4CBF8B76C1F5} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{0CA1DB6B-56A4-40D5-BB0C-FFC54C4CEF8F} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{08BE4069-FA16-439E-B958-BC8DC30DDB72}\Disk1 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{08BE4069-FA16-439E-B958-BC8DC30DDB72} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{083F0E04-78EF-406D-8A4C-6FB5BFE10359} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{048ECEF4-6DF8-4F36-A220-E3699206B78A} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{023CBE2D-D466-4AEC-B323-38C0F32A5460} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{0061D3CC-635B-4F03-94A7-7C98413A44AE}\{910F4A29-1134-49E0-AD8B-56E4A3152BD1} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\{0061D3CC-635B-4F03-94A7-7C98413A44AE} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\_ISTMP2.DIR\_ISTMP0.DIR folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\_ISTMP2.DIR folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\_ISTMP1.DIR\_ISTMP0.DIR folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\_ISTMP1.DIR folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\xpiE6EC.tmp\widgets\templates\js folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\xpiE6EC.tmp\widgets\templates\css\images folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\xpiE6EC.tmp\widgets\templates\css folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\xpiE6EC.tmp\widgets\templates folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\xpiE6EC.tmp\widgets\search-suggestion folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\xpiE6EC.tmp\widgets\rebuttal\images folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\xpiE6EC.tmp\widgets\rebuttal folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\xpiE6EC.tmp\widgets\options\images folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\xpiE6EC.tmp\widgets\options folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\xpiE6EC.tmp\widgets folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\xpiE6EC.tmp\tb_ux folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\xpiE6EC.tmp\META-INF folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\xpiE6EC.tmp\lib\shims folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\xpiE6EC.tmp\lib folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\xpiE6EC.tmp\defaults\preferences folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\xpiE6EC.tmp\defaults folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\xpiE6EC.tmp\content_script\hack folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\xpiE6EC.tmp\content_script folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\xpiE6EC.tmp\config\skin\widgets\youtube\1.0 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\xpiE6EC.tmp\config\skin\widgets\youtube folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\xpiE6EC.tmp\config\skin\widgets\wordoftheday folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\xpiE6EC.tmp\config\skin\widgets\weather\3.0 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\xpiE6EC.tmp\config\skin\widgets\weather folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\xpiE6EC.tmp\config\skin\widgets\vk folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\xpiE6EC.tmp\config\skin\widgets\video\2.0 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\xpiE6EC.tmp\config\skin\widgets\video folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\xpiE6EC.tmp\config\skin\widgets\ultimosegundo folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\xpiE6EC.tmp\config\skin\widgets\simple-email-list folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\xpiE6EC.tmp\config\skin\widgets\radio\2.0 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\xpiE6EC.tmp\config\skin\widgets\radio folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\xpiE6EC.tmp\config\skin\widgets\orkut folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\xpiE6EC.tmp\config\skin\widgets\netvibes-voici folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\xpiE6EC.tmp\config\skin\widgets\netvibes-uol folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\xpiE6EC.tmp\config\skin\widgets\netvibes-todayinhistory folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\xpiE6EC.tmp\config\skin\widgets\netvibes-sportsru folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\xpiE6EC.tmp\config\skin\widgets\netvibes-sportsnl folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\xpiE6EC.tmp\config\skin\widgets\netvibes-programmetv folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\xpiE6EC.tmp\config\skin\widgets\netvibes-pbkdaily folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\xpiE6EC.tmp\config\skin\widgets\netvibes-nu-nl folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\xpiE6EC.tmp\config\skin\widgets\netvibes-newsru folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\xpiE6EC.tmp\config\skin\widgets\netvibes-mtv.it folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\xpiE6EC.tmp\config\skin\widgets\netvibes-lequipe folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\xpiE6EC.tmp\config\skin\widgets\netvibes-lemonde folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\xpiE6EC.tmp\config\skin\widgets\netvibes-lagazzettadellosport folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\xpiE6EC.tmp\config\skin\widgets\netvibes-kicker folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\xpiE6EC.tmp\config\skin\widgets\netvibes-g1 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\xpiE6EC.tmp\config\skin\widgets\netvibes-folha folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\xpiE6EC.tmp\config\skin\widgets\netvibes-financialtimes.de folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\xpiE6EC.tmp\config\skin\widgets\netvibes-financialtimes folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\xpiE6EC.tmp\config\skin\widgets\netvibes-expansion folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\xpiE6EC.tmp\config\skin\widgets\netvibes-elmundo folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\xpiE6EC.tmp\config\skin\widgets\netvibes-corrieredellasera folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\xpiE6EC.tmp\config\skin\widgets\netvibes-beppegrillo folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\xpiE6EC.tmp\config\skin\widgets\netvibes-bbcsports folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\xpiE6EC.tmp\config\skin\widgets\netvibes-bbc folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\xpiE6EC.tmp\config\skin\widgets\netvibes-ascom folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\xpiE6EC.tmp\config\skin\widgets\netvibes-abc folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\xpiE6EC.tmp\config\skin\widgets\map\1.0 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\xpiE6EC.tmp\config\skin\widgets\map folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\xpiE6EC.tmp\config\skin\widgets\games-feed folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\xpiE6EC.tmp\config\skin\widgets\facebook\3.0 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\xpiE6EC.tmp\config\skin\widgets\facebook folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\xpiE6EC.tmp\config\skin\widgets\cnn\1.0 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\xpiE6EC.tmp\config\skin\widgets\cnn folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\xpiE6EC.tmp\config\skin\widgets\ask-homepage-oasis folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\xpiE6EC.tmp\config\skin\widgets\amazon-navigation folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\xpiE6EC.tmp\config\skin\widgets folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\xpiE6EC.tmp\config\skin\images\vanilla folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\xpiE6EC.tmp\config\skin\images\search folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\xpiE6EC.tmp\config\skin\images\logo folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\xpiE6EC.tmp\config\skin\images folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\xpiE6EC.tmp\config\skin\css folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\xpiE6EC.tmp\config\skin folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\xpiE6EC.tmp\config folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\xpiE6EC.tmp\background folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\xpiE6EC.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\x86 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\x64 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\WZSE1.TMP folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\WZSE0.TMP folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\WPDNSE folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Word8.0 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\VCB\Languages\ZHH folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\VCB\Languages\TRK folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\VCB\Languages\THA folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\VCB\Languages\SVE folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\VCB\Languages\RUS folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\VCB\Languages\PTG folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\VCB\Languages\PLK folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\VCB\Languages\NOR folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\VCB\Languages\NLD folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\VCB\Languages\KOR folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\VCB\Languages\JPN folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\VCB\Languages\ITA folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\VCB\Languages\HUN folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\VCB\Languages\HEB folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\VCB\Languages\FRC folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\VCB\Languages\FRA folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\VCB\Languages\FIN folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\VCB\Languages\ESP folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\VCB\Languages\ESM folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\VCB\Languages\ENU folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\VCB\Languages\ENG folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\VCB\Languages\ELL folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\VCB\Languages\DEU folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\VCB\Languages\DAN folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\VCB\Languages\CSY folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\VCB\Languages\CHT folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\VCB\Languages\CHS folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\VCB\Languages\ARB folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\VCB\Languages folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\VCB\Graphics folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\VCB folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\VBE folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\upd9B20 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\upd4E00 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\tmp60985.WMC folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Temporary Internet Files\Content.IE5\DTG2L1WO folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Temporary Internet Files\Content.IE5\BED3SS1L folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Temporary Internet Files\Content.IE5\7OR3YMS6 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Temporary Internet Files\Content.IE5\67QX0YMR folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Temporary Internet Files\Content.IE5 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Temporary Internet Files folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Temp1_zalaczniki[1].zip folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Temp1_RecBoot[1].zip folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Temp1_libusb-win32-bin-1.2.3.0.zip\libusb-win32-bin-1.2.3.0\bin\x86 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Temp1_libusb-win32-bin-1.2.3.0.zip\libusb-win32-bin-1.2.3.0\bin folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Temp1_libusb-win32-bin-1.2.3.0.zip\libusb-win32-bin-1.2.3.0 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Temp1_libusb-win32-bin-1.2.3.0.zip folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Sony\Sony PC Companion\Plugins\{CD7587C5-4C01-4A60-B237-C2A36BE1C08C}\Graphics folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Sony\Sony PC Companion\Plugins\{CD7587C5-4C01-4A60-B237-C2A36BE1C08C} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Sony\Sony PC Companion\Plugins\{C8C6DF5B-5825-47CD-B985-40A46C71CDE3}\Graphics folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Sony\Sony PC Companion\Plugins\{C8C6DF5B-5825-47CD-B985-40A46C71CDE3} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Sony\Sony PC Companion\Plugins\{AB721AEB-D18E-4038-86AB-15DA8DF362E0}\Graphics folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Sony\Sony PC Companion\Plugins\{AB721AEB-D18E-4038-86AB-15DA8DF362E0} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Sony\Sony PC Companion\Plugins\{6CFB6439-7DDC-4785-9BEC-861F027E201E}\Graphics folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Sony\Sony PC Companion\Plugins\{6CFB6439-7DDC-4785-9BEC-861F027E201E} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Sony\Sony PC Companion\Plugins\{5AD3EF12-F3A1-4A3C-A360-A0C20F961860}\Graphics folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Sony\Sony PC Companion\Plugins\{5AD3EF12-F3A1-4A3C-A360-A0C20F961860} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Sony\Sony PC Companion\Plugins\{37AA65A5-2530-4218-B3A4-2308F6ED34FC}\Graphics folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Sony\Sony PC Companion\Plugins\{37AA65A5-2530-4218-B3A4-2308F6ED34FC} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Sony\Sony PC Companion\Plugins\{3124D88B-D984-410D-B211-FAFAD93F03DF}\Graphics folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Sony\Sony PC Companion\Plugins\{3124D88B-D984-410D-B211-FAFAD93F03DF} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Sony\Sony PC Companion\Plugins folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Sony\Sony PC Companion\AutoUpdate folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Sony\Sony PC Companion folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Sony folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Skype folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Seagate\FreeAgent folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Seagate folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\SDIAG_f2906d27-1384-4fb1-b8e7-60c220179a6e\result folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\SDIAG_f2906d27-1384-4fb1-b8e7-60c220179a6e\pl-PL folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\SDIAG_f2906d27-1384-4fb1-b8e7-60c220179a6e folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir9401 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir8995 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir8993 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir8975 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir896 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir8933 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir8923 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir8913 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir850 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir8389 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir8360 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir8321 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir8311 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir8288 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir8083 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir8034 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir8028 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir8018 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir7931 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir788 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir7832 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir7737 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir759 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir7569 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir7491 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir743 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir7409 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir7393 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir7390 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir7361 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir726 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir721 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir717 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir7165 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir7054 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir7041 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir7012 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir6645 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir655 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir6486 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir6463 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir616 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir593 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir5817 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir5681 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir564 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir5458 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir4920_5593 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir4920_5528 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir4920_5515 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir4920_5472 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir4920_21333 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir4920_13825 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir4920_10003 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir4872 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir4842 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir4836_7289 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir4836_5712 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir4836_5666 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir4836_5650 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir4836_5604 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir4836_4673 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir4836_10995 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir4783 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir4724 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir4648 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir4619 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir4573 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir4570 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir4536_6007 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir4536_5174 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir4536_31519 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir4536_31418 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir4536_31392 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir4536_31385 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir4536_23938 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir4452_8505 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir4452_6542 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir4452_6502 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir4452_6447 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir4452_6427 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir4452_20714 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir4452_18763 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir4440_12080 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir4328_5541 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir4328_29154 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir4328_20655 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir4328_16831 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir4328_16795 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir4328_16782 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir4328_16772 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir4260_3447 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir4260_25613 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir4260_23175 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir4260_23097 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir4260_23061 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir4260_22999 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir4260_10763 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir4250 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir4220_22497 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir4220_18368 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir4220_18358 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir4220_18325 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir4220_13840 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir4220_12421 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir4220_11828 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir4208 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir4127 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir4124 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir4112_7592 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir4112_31737 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir4112_31734 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir4112_31002 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir4112_30895 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir4112_30852 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir4112_30849 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir4112_23468 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir4112_18124 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir3924_30294 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir3924_24860 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir3924_24811 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir3924_24781 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir3924_24778 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir3924_14396 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir3924_11027 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir3816_6628 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir3816_30412 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir3816_27442 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir3816_27438 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir3816_27350 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir3816_27347 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir3760_6450 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir3760_30226 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir3760_20622 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir3760_20576 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir3760_20511 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir3760_20501 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir3760_12511 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir3644_9562 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir3644_9473 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir3644_9447 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir3644_9431 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir3644_6395 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir3644_5186 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir3644_20001 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir3572_8338 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir3572_32053 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir3572_20782 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir3572_15055 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir3572_15051 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir3572_15048 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir3572_10033 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir3396_9396 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir3396_18011 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir3396_18008 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir3396_17995 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir3396_17930 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir3396_17799 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir3396_17763 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir3328_9949 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir3328_24170 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir3328_24163 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir3328_21676 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir3328_16242 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir3328_16239 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir3328_13543 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir3304_9676 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir3304_4362 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir3304_4261 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir3304_4219 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir3304_4163 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir3304_12410 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir3304_10530 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir32693 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir3256 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir3214 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir31920 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir31900 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir31884 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir31750 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir31647 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir31644 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir3164 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir31346 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir31343 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir31336 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir31012 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir308_7180 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir308_17929 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir308_17744 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir308_17741 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir308_17551 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir308_17483 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir3067 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir30645 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir30639 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir30613 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir30570 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir30564 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir30554 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir30537 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir30524 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir30505 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir3014 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir29984 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir2995 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir29927 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir29898 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir29892 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir29885 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir2988 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir29826 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir29721 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir29579 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir29535 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir29435 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir29377 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir29360 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir29347 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir29324 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir29248 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir28771 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir28768 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir28765 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir28476 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir28092 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir27668 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir2760 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir27099 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir27073 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir27047 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir27044 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir27006 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir26874 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir26871 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir26868 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir26819 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir26792 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir26789 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir26783 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir26614 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir2626 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir26201 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir26062 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir2598 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir25698 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir25352 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir24718 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir23719 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir23687 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir23654 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir23553 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir23196 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir23133 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir23078 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir2304_30429 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir2304_20319 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir2304_15021 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir2304_14972 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir2304_14940 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir2304_14920 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir2304_13851 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir22993 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir2299 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir22987 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir22974 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir22753 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir22664 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir22620 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir22454 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir22421 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir22341 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir22264 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir22166 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir22158 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir22146 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir22143 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir22120 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir22112 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir22104 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir22034 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir22018 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir21991 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir21835 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir21336 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir21134 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir20963 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir20923 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir208_556 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir208_452 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir208_413 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir208_393 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir208_31492 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir208_26947 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir208_15203 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir2087 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir20702 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir20409 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir19950 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir19864 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir19833 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir1980_9045 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir1980_24748 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir1980_24627 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir1980_24578 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir1980_24506 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir1980_22297 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir1980_1672 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir19308 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir19285 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir19277 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir19260 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir19252 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir19245 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir19238 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir19236 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir19185 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir19182 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir19163 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir19015 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir18910 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir1857 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir18432 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir1821 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir18181 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir1802 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir18 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir1792 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir1782 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir17729 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir17713 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir17710 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir17707 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir17303 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir17299 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir17296 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir17293 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir1708 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir16778 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir16600 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir1623 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir16178 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir1616 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir16119 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir16044 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir16022 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir1597 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir15465 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir15344 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir15328 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir15249 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir15230 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir15207 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir15182 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir15116 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir14427 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir14200 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir14012 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir13959 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir13918 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir13830 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir13784 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir13777 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir13771 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir13638 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir13609 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir13592 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir13583 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir13553 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir13407 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir1332_30119 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir1332_30083 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir1332_30040 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir1332_30021 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir1332_22041 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir1332_19946 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir1332_12285 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir13058 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir12026 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir12015 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir11917 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir11895 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir11872 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir11868 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir11853 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir11705 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir11596 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir11583 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir11569 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir11566 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir11562 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir10819 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir10509 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\scoped_dir10086 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\plugtmp-9 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\plugtmp-8 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\plugtmp-7 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\plugtmp-6 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\plugtmp-5 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\plugtmp-4 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\plugtmp-3 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\plugtmp-2 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\plugtmp-1 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\plugtmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\PicasaInstaller folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Picasa3\Picasa filecheck folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Picasa3 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\pft631A.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\PerE8E0.tmp\Firmware\dfu folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\PerE8E0.tmp\Firmware\all_flash\all_flash.n88ap.production folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\PerE8E0.tmp\Firmware\all_flash folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\PerE8E0.tmp\Firmware folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\PerE8E0.tmp\amai\debug folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\PerE8E0.tmp\amai folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\PerE8E0.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Per8D97.tmp\Firmware\dfu folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Per8D97.tmp\Firmware\all_flash\all_flash.n88ap.production folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Per8D97.tmp\Firmware\all_flash folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Per8D97.tmp\Firmware folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Per8D97.tmp\amai\debug folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Per8D97.tmp\amai folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Per8D97.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Per5228.tmp\Firmware\dfu folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Per5228.tmp\Firmware\all_flash\all_flash.n88ap.production folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Per5228.tmp\Firmware\all_flash folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Per5228.tmp\Firmware folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Per5228.tmp\amai\debug folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Per5228.tmp\amai folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Per5228.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Per1CBD.tmp\Firmware\dfu folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Per1CBD.tmp\Firmware\all_flash\all_flash.n88ap.production folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Per1CBD.tmp\Firmware\all_flash folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Per1CBD.tmp\Firmware folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Per1CBD.tmp\amai\debug folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Per1CBD.tmp\amai folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Per1CBD.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\PCTInstaller folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\PC Tools Download Manager\lang folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\PC Tools Download Manager folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Origin folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\OpenCandy folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\OIS\temp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\OIS\cacheFiles folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\OIS folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\OfferID9999 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\OfferID9001 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\OfferID9000 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\OfferID5 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\OfferID15 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\OfferID11 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\OfferID10 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\nsw2E42.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\nstE772.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\nsqD75B.tmp\nslF651.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\nsqD75B.tmp\nsc57F.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\nsqD75B.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\nsoCD5D.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\nso272.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\nsnE736.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\nsm74A5.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\nsl4FC7.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\nsc11EB.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\MVC folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\mt_ffx\Funmoods\funmoods\1.5.19.3 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\mt_ffx\Funmoods\funmoods folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\mt_ffx\Funmoods folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\mt_ffx\Delta\delta\1.8.10.0 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\mt_ffx\Delta\delta folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\mt_ffx\Delta folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\mt_ffx\BabylonToolbar\BabylonToolbar\1.8.4.9 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\mt_ffx\BabylonToolbar\BabylonToolbar folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\mt_ffx\BabylonToolbar folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\mt_ffx folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\msohtmlclip1\01 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\msohtmlclip1 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\msohtmlclip folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\msdtadmin folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\msdt folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\mrtBE1B.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\mrt2BCB.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\mProjector3141591221 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Microsoft Visual C++ 2010  x86 Redistributable Setup_10.0.40219 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Microsoft Visual C++ 2010  x64 Redistributable Setup_10.0.40219 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\MFAData\logs folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\MFAData folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\MessengerCache folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Media Go\PSNStoreUpdate folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Media Go\Prepared folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Media Go\Gracenote folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Media Go folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Low\WPDNSE\{0030003A-0031-0041-4000-400041004100} folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Low\WPDNSE folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Low\Temporary Internet Files\Content.IE5\J0LYICBW folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Low\Temporary Internet Files\Content.IE5\HKU8H7FF folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Low\Temporary Internet Files\Content.IE5\BU17JQHJ folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Low\Temporary Internet Files\Content.IE5\1AOAYMYR folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Low\Temporary Internet Files\Content.IE5 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Low\Temporary Internet Files folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Low\MSI folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Low\hsperfdata_Julia folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Low\History\History.IE5 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Low\History folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Low\Google Toolbar folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Low\Cookies folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Low folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\jrt\temp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\jrt\erunt folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\jrt folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Jgl_Rt folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\iss1BAD.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\iss1170.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\isp1D07.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\isp1CE6.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\ish73018077\sdk folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\ish73018077\locale folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\ish73018077\license folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\ish73018077\images folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\ish73018077\DAT folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\ish73018077\css\sdk-ui\images folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\ish73018077\css\sdk-ui folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\ish73018077\css folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\ish73018077 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\is1590112554 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\is1438683437 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\is1373634743 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\is-OUL09.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\is-L256E.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\is-GDHOD.tmp\_isetup folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\is-GDHOD.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\is-7E21T.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\is-77NCD.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\is-6M8GG.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\installCH.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\ins2.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\ins1.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Icons folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\hsperfdata_Julia folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\History\History.IE5 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\History folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Google Toolbar folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\fontconfig\cache folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\fontconfig folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\DXF308.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\DownloadMngWeb folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\DownloadMngPhone folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\dmiwu folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\divFF7.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\divF3EF.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\divEBA5.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\divEA4E.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\divE629.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\divE493.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\divDF27.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\divDC6.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\divDAA6.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\divDAA5.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\divDA85.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\divD822.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\divD68.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\divD603.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\divD49.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\divD3C9.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\divD3A3.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\divD28A.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\divCF20.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\divCAFB.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\divBDA3.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\divBB81.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\divBA05.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\divB8E2.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\divB53A.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\divB24D.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\divB200.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\divB0E7.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\divB079.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\divAFED.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\divAF8.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\divAF41.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\divADFA.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\divAC93.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\divAB5B.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\divA968.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\divA88D.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\divA820.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\divA775.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\divA62D.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\divA5EF.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\divA3EC.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\divA275.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\divA249.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\divA034.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\div9D76.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\div9D57.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\div9CBB.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\div9C2F.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\div9B56.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\div9A2C.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\div97AC.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\div8F34.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\div8E4A.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\div8BAB.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\div8583.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\div844B.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\div82B8.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\div820A.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\div8101.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\div80C3.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\div7A3E.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\div79FF.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\div78A8.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\div7043.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\div6E5B.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\div6D54.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\div68B7.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\div6862.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\div674A.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\div6660.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\div6612.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\div63E0.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\div5AA.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\div56D6.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\div55DC.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\div5552.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\div5476.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\div530.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\div5253.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\div509E.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\div5060.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\div4DF3.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\div4D35.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\div4BAF.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\div4A19.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\div46E9.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\div46DE.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\div434.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\div4327.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\div42AD.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\div422D.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\div4163.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\div3EA4.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\div3E66.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\div39A5.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\div389C.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\div3745.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\div33CC.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\div2EFB.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\div2E6F.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\div2BFF.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\div2432.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\div2423.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\div22EA.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\div1F90.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\div1BD9.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\div18DC.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\div168C.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\div138.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\DefaultEmoticons folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\DDMCache folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\ct2612669\xpi folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\ct2612669 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CRX_75DAF8CB7768 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\ui folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\styles\user folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\styles\images folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\styles folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\skin folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\region\za folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\region\vn folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\region\us folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\region\ua\ru folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\region\ua folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\region\tw folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\region\se folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\region\ru folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\region\pk folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\region\ph folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\region\ng folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\region\my folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\region\mx folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\region\middle_east folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\region\latin_america folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\region\in folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\region\id folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\region\hk folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\region\gb folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\region\eg folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\region\cn\en folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\region\cn folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\region\cis\ru folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\region\cis\en folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\region\cis folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\region\au folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\region\ar folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\region folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\program\plugins folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\program folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\profile\webserver folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\profile\vps\0000 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\profile\vps folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\profile\styles\user folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\profile\styles folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\profile\opcache folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\profile\cache\sesn folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\profile\cache\revocation folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\profile\cache folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\profile\application_cache\mcache folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\profile\application_cache folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\profile folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\mapi folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\locale\zu folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\locale\zh-tw folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\locale\zh-cn folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\locale\vi folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\locale\uz folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\locale\ur folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\locale\uk folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\locale\tr folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\locale\tl folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\locale\th folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\locale\te folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\locale\ta folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\locale\sw folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\locale\sv folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\locale\sr folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\locale\sk folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\locale\ru folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\locale\ro folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\locale\pt-BR folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\locale\pt folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\locale\pl folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\locale\pa folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\locale\nn folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\locale\nl folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\locale\nb folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\locale\ms folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\locale\mk folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\locale\me folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\locale\lv folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\locale\lt folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\locale\ko folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\locale\kk folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\locale\ka folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\locale\ja folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\locale\it folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\locale\id folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\locale\hu folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\locale\hr folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\locale\hi folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\locale\he folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\locale\gd folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\locale\fy folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\locale\fr-CA folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\locale\fr folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\locale\fi folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\locale\fa folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\locale\et folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\locale\es-LA folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\locale\es-ES folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\locale\en-GB folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\locale\en folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\locale\el folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\locale\de folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\locale\da folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\locale\cs folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\locale\bn folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\locale\bg folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\locale\be folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\locale\az folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\locale\ar folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\locale\af folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\locale folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\gstreamer\plugins folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\gstreamer folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\extra folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera\defaults folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\CProgram Files (x86)Opera folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Cookies folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\comtypes_cache\sump-27 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\comtypes_cache folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Ceement\src folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Ceement folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\C986.dir folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\C6C9C434-BAB0-7891-819F-26C848F3C0EC\Latest\HtmlScreens folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\C6C9C434-BAB0-7891-819F-26C848F3C0EC\Latest folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\C6C9C434-BAB0-7891-819F-26C848F3C0EC folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\busE000 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\busC50B folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\bus6BFD folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Bunndle folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\BTN%Copy%1\BTN%Copy%2 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\BTN%Copy%1 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\APN-Stub\MYC3 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\APN-Stub folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\APN folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\AllServicesInfoFiles folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\AIRA02C.tmp\Adobe AIR\Versions\1.0\Resources folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\AIRA02C.tmp\Adobe AIR\Versions\1.0 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\AIRA02C.tmp\Adobe AIR\Versions folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\AIRA02C.tmp\Adobe AIR folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\AIRA02C.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Adobe\Acrobat\9.0 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Adobe\Acrobat folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\Adobe folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\acro_rd_dir folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\ACO\Vulnerabilities folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\ACO\Projects\vista2 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\ACO\Projects\vista folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\ACO\Projects\SDMS\Dashboard folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\ACO\Projects\SDMS folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\ACO\Projects folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\ACO\MultiVendor folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\ACO\HP-MultiPlatform folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\ACO\guidcpc folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\ACO\guid folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\ACO folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\8y1x5o00.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\866acb8dcc379c227ee5b37d6eb561 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\8664wrdata.~lk folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\7ZipSfx.000 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\7141wrdata.~lk folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\69045710 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\64D6A427-BAB0-7891-8ACB-50ADD263E9E6\Latest\HtmlScreens folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\64D6A427-BAB0-7891-8ACB-50ADD263E9E6\Latest folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\64D6A427-BAB0-7891-8ACB-50ADD263E9E6 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\6466wrdata.~lk folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\60685498 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\606826914 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\440B482D-BAB0-7891-BF16-261CEE457CD9\HtmlScreens folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\440B482D-BAB0-7891-BF16-261CEE457CD9 folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\3vh8cx5e.tmp folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\3924wrdata.~lk folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\3543937.Uninstall folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\3247.dir folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\2042wrdata.~lk folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\105575517.Uninstall folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\1027wrdata.~lk folder moved successfully.
C:\Users\Julia\AppData\Local\Temp\02261205-00001440-yma25qos9z folder moved successfully.
Folder move failed. C:\Users\Julia\AppData\Local\Temp scheduled to be moved on reboot.
C:\Users\Julia\AppData\Local\TempaE3192.html moved successfully.
C:\Users\Julia\AppData\Local\Tempae4180.html moved successfully.
C:\Users\Julia\AppData\Local\TempAf3704.html moved successfully.
C:\Users\Julia\AppData\Local\TempAf4312.html moved successfully.
C:\Users\Julia\AppData\Local\TempaG4552.html moved successfully.
C:\Users\Julia\AppData\Local\TempAi3496.html moved successfully.
C:\Users\Julia\AppData\Local\TempaK3820.html moved successfully.
C:\Users\Julia\AppData\Local\TempAlh672.html moved successfully.
C:\Users\Julia\AppData\Local\TempaM2076.html moved successfully.
C:\Users\Julia\AppData\Local\TempaN3108.html moved successfully.
C:\Users\Julia\AppData\Local\TempAp3692.html moved successfully.
C:\Users\Julia\AppData\Local\Tempap3784.html moved successfully.
C:\Users\Julia\AppData\Local\TempaP3792.html moved successfully.
C:\Users\Julia\AppData\Local\Tempapm148.html moved successfully.
C:\Users\Julia\AppData\Local\TempaR3992.html moved successfully.
C:\Users\Julia\AppData\Local\TempAR8836.html moved successfully.
C:\Users\Julia\AppData\Local\Tempau3688.html moved successfully.
C:\Users\Julia\AppData\Local\TempaU3768.html moved successfully.
C:\Users\Julia\AppData\Local\TempAUt148.html moved successfully.
C:\Users\Julia\AppData\Local\TempAv3676.html moved successfully.
C:\Users\Julia\AppData\Local\TempaW1492.html moved successfully.
C:\Users\Julia\AppData\Local\TempAw3820.html moved successfully.
C:\Users\Julia\AppData\Local\Tempay3908.html moved successfully.
C:\Users\Julia\AppData\Local\TempB11060.html moved successfully.
C:\Users\Julia\AppData\Local\Tempba3256.html moved successfully.
C:\Users\Julia\AppData\Local\TempbA4012.html moved successfully.
C:\Users\Julia\AppData\Local\Tempbb3184.html moved successfully.
C:\Users\Julia\AppData\Local\TempBC6424.html moved successfully.
C:\Users\Julia\AppData\Local\Tempbd3160.html moved successfully.
C:\Users\Julia\AppData\Local\TempBE3864.html moved successfully.
C:\Users\Julia\AppData\Local\TempBF4140.html moved successfully.
C:\Users\Julia\AppData\Local\Tempbj2468.html moved successfully.
C:\Users\Julia\AppData\Local\TempBK4384.html moved successfully.
C:\Users\Julia\AppData\Local\Tempbn3696.html moved successfully.
C:\Users\Julia\AppData\Local\TempbN3976.html moved successfully.
C:\Users\Julia\AppData\Local\TempBO3192.html moved successfully.
C:\Users\Julia\AppData\Local\TempBO5288.html moved successfully.
C:\Users\Julia\AppData\Local\TempBO8240.html moved successfully.
C:\Users\Julia\AppData\Local\TempbS3660.html moved successfully.
C:\Users\Julia\AppData\Local\Tempbu3660.html moved successfully.
C:\Users\Julia\AppData\Local\Tempbx3176.html moved successfully.
C:\Users\Julia\AppData\Local\TempBy2728.html moved successfully.
C:\Users\Julia\AppData\Local\Tempby3696.html moved successfully.
C:\Users\Julia\AppData\Local\TempBz3112.html moved successfully.
C:\Users\Julia\AppData\Local\TempCa4308.html moved successfully.
C:\Users\Julia\AppData\Local\TempCh3676.html moved successfully.
C:\Users\Julia\AppData\Local\TempCI3828.html moved successfully.
C:\Users\Julia\AppData\Local\TempckG324.html moved successfully.
C:\Users\Julia\AppData\Local\TempCL2468.html moved successfully.
C:\Users\Julia\AppData\Local\Tempcl3608.html moved successfully.
C:\Users\Julia\AppData\Local\TempcL5956.html moved successfully.
C:\Users\Julia\AppData\Local\TempcM4496.html moved successfully.
C:\Users\Julia\AppData\Local\TempCn3540.html moved successfully.
C:\Users\Julia\AppData\Local\TempCp4216.html moved successfully.
C:\Users\Julia\AppData\Local\TempcQ3908.html moved successfully.
C:\Users\Julia\AppData\Local\TempcR5104.html moved successfully.
C:\Users\Julia\AppData\Local\TempcS3548.html moved successfully.
C:\Users\Julia\AppData\Local\TempcT3908.html moved successfully.
C:\Users\Julia\AppData\Local\TempCT4400.html moved successfully.
C:\Users\Julia\AppData\Local\Tempcu4128.html moved successfully.
C:\Users\Julia\AppData\Local\TempCx2736.html moved successfully.
C:\Users\Julia\AppData\Local\TempCX2984.html moved successfully.
C:\Users\Julia\AppData\Local\Tempd22792.html moved successfully.
C:\Users\Julia\AppData\Local\TempdB4140.html moved successfully.
C:\Users\Julia\AppData\Local\TempdD3104.html moved successfully.
C:\Users\Julia\AppData\Local\TempdG3104.html moved successfully.
C:\Users\Julia\AppData\Local\TempDg4072.html moved successfully.
C:\Users\Julia\AppData\Local\TempDh3864.html moved successfully.
C:\Users\Julia\AppData\Local\TempdH5036.html moved successfully.
C:\Users\Julia\AppData\Local\TempDi3848.html moved successfully.
C:\Users\Julia\AppData\Local\TempDk4964.html moved successfully.
C:\Users\Julia\AppData\Local\Tempdm3204.html moved successfully.
C:\Users\Julia\AppData\Local\Tempdn3184.html moved successfully.
C:\Users\Julia\AppData\Local\Tempdp3276.html moved successfully.
C:\Users\Julia\AppData\Local\TempDQ3660.html moved successfully.
C:\Users\Julia\AppData\Local\Tempdr2260.html moved successfully.
C:\Users\Julia\AppData\Local\TempDr3792.html moved successfully.
C:\Users\Julia\AppData\Local\TempdZ3416.html moved successfully.
C:\Users\Julia\AppData\Local\TempDz4064.html moved successfully.
C:\Users\Julia\AppData\Local\Tempea3920.html moved successfully.
C:\Users\Julia\AppData\Local\Tempeb2260.html moved successfully.
C:\Users\Julia\AppData\Local\Tempeb3192.html moved successfully.
C:\Users\Julia\AppData\Local\TempEg3104.html moved successfully.
C:\Users\Julia\AppData\Local\TempEH3616.html moved successfully.
C:\Users\Julia\AppData\Local\Tempei3696.html moved successfully.
C:\Users\Julia\AppData\Local\TempEm3764.html moved successfully.
C:\Users\Julia\AppData\Local\TempEn2836.html moved successfully.
C:\Users\Julia\AppData\Local\TempEo2072.html moved successfully.
C:\Users\Julia\AppData\Local\TempEq3080.html moved successfully.
C:\Users\Julia\AppData\Local\TempEQ3860.html moved successfully.
C:\Users\Julia\AppData\Local\TempES4048.html moved successfully.
C:\Users\Julia\AppData\Local\TempEs4480.html moved successfully.
C:\Users\Julia\AppData\Local\TempEy6424.html moved successfully.
C:\Users\Julia\AppData\Local\TempeZ4224.html moved successfully.
C:\Users\Julia\AppData\Local\TempF33516.html moved successfully.
C:\Users\Julia\AppData\Local\Tempfa2804.html moved successfully.
C:\Users\Julia\AppData\Local\TempFA3108.html moved successfully.
C:\Users\Julia\AppData\Local\TempFB8912.html moved successfully.
C:\Users\Julia\AppData\Local\Tempfc3520.html moved successfully.
C:\Users\Julia\AppData\Local\Tempfd4020.html moved successfully.
C:\Users\Julia\AppData\Local\TempfE3720.html moved successfully.
C:\Users\Julia\AppData\Local\Tempff2420.html moved successfully.
C:\Users\Julia\AppData\Local\Tempfg2132.html moved successfully.
C:\Users\Julia\AppData\Local\TempFh3020.html moved successfully.
C:\Users\Julia\AppData\Local\TempfI3628.html moved successfully.
C:\Users\Julia\AppData\Local\TempfJ3904.html moved successfully.
C:\Users\Julia\AppData\Local\TempFK4536.html moved successfully.
C:\Users\Julia\AppData\Local\Tempfl3620.html moved successfully.
C:\Users\Julia\AppData\Local\Tempfl4544.html moved successfully.
C:\Users\Julia\AppData\Local\TempfM3520.html moved successfully.
C:\Users\Julia\AppData\Local\TempFO3504.html moved successfully.
C:\Users\Julia\AppData\Local\TempFQ3508.html moved successfully.
C:\Users\Julia\AppData\Local\TempfR3376.html moved successfully.
C:\Users\Julia\AppData\Local\Tempfr3976.html moved successfully.
C:\Users\Julia\AppData\Local\TempfS3608.html moved successfully.
C:\Users\Julia\AppData\Local\TempFt3648.html moved successfully.
C:\Users\Julia\AppData\Local\TempFU3588.html moved successfully.
C:\Users\Julia\AppData\Local\Tempfvx672.html moved successfully.
C:\Users\Julia\AppData\Local\Tempfz6388.html moved successfully.
C:\Users\Julia\AppData\Local\TempFz8912.html moved successfully.
C:\Users\Julia\AppData\Local\Tempg11060.html moved successfully.
C:\Users\Julia\AppData\Local\Tempga3620.html moved successfully.
C:\Users\Julia\AppData\Local\Tempga4112.html moved successfully.
C:\Users\Julia\AppData\Local\TempgA4160.html moved successfully.
C:\Users\Julia\AppData\Local\TempGb3180.html moved successfully.
C:\Users\Julia\AppData\Local\TempGd4388.html moved successfully.
C:\Users\Julia\AppData\Local\TempgE2556.html moved successfully.
C:\Users\Julia\AppData\Local\TempGG3104.html moved successfully.
C:\Users\Julia\AppData\Local\Tempgg3532.html moved successfully.
C:\Users\Julia\AppData\Local\TempgH7672.html moved successfully.
C:\Users\Julia\AppData\Local\TempgI3696.html moved successfully.
C:\Users\Julia\AppData\Local\TempGI5288.html moved successfully.
C:\Users\Julia\AppData\Local\Tempgl2736.html moved successfully.
C:\Users\Julia\AppData\Local\Tempgl4012.html moved successfully.
C:\Users\Julia\AppData\Local\TempGN3696.html moved successfully.
C:\Users\Julia\AppData\Local\TempGo4496.html moved successfully.
C:\Users\Julia\AppData\Local\Tempgq2132.html moved successfully.
C:\Users\Julia\AppData\Local\TempGq3672.html moved successfully.
C:\Users\Julia\AppData\Local\Tempgs3200.html moved successfully.
C:\Users\Julia\AppData\Local\Tempgt3124.html moved successfully.
C:\Users\Julia\AppData\Local\TempgT3924.html moved successfully.
C:\Users\Julia\AppData\Local\TempGt4224.html moved successfully.
C:\Users\Julia\AppData\Local\TempGt6860.html moved successfully.
C:\Users\Julia\AppData\Local\TempGV3452.html moved successfully.
C:\Users\Julia\AppData\Local\TempgX3812.html moved successfully.
C:\Users\Julia\AppData\Local\TempGz4016.html moved successfully.
C:\Users\Julia\AppData\Local\TempgZ7964.html moved successfully.
C:\Users\Julia\AppData\Local\TempH22792.html moved successfully.
C:\Users\Julia\AppData\Local\TempHa3616.html moved successfully.
C:\Users\Julia\AppData\Local\Temphc1076.html moved successfully.
C:\Users\Julia\AppData\Local\TemphC3628.html moved successfully.
C:\Users\Julia\AppData\Local\TempHE4112.html moved successfully.
C:\Users\Julia\AppData\Local\Temphf3852.html moved successfully.
C:\Users\Julia\AppData\Local\TemphI3788.html moved successfully.
C:\Users\Julia\AppData\Local\TempHM3780.html moved successfully.
C:\Users\Julia\AppData\Local\Temphm3864.html moved successfully.
C:\Users\Julia\AppData\Local\TempHm4124.html moved successfully.
C:\Users\Julia\AppData\Local\TempHN2432.html moved successfully.
C:\Users\Julia\AppData\Local\TemphN3564.html moved successfully.
C:\Users\Julia\AppData\Local\TempHn4236.html moved successfully.
C:\Users\Julia\AppData\Local\TemphN5104.html moved successfully.
C:\Users\Julia\AppData\Local\TempHR3788.html moved successfully.
C:\Users\Julia\AppData\Local\TemphS3416.html moved successfully.
C:\Users\Julia\AppData\Local\TempHv3904.html moved successfully.
C:\Users\Julia\AppData\Local\Temphv4004.html moved successfully.
C:\Users\Julia\AppData\Local\TempHw2468.html moved successfully.
C:\Users\Julia\AppData\Local\TemphW6660.html moved successfully.
C:\Users\Julia\AppData\Local\TempHX3864.html moved successfully.
C:\Users\Julia\AppData\Local\TemphY1696.html moved successfully.
C:\Users\Julia\AppData\Local\Temphy4208.html moved successfully.
C:\Users\Julia\AppData\Local\Tempi11244.html moved successfully.
C:\Users\Julia\AppData\Local\TempIa3696.html moved successfully.
C:\Users\Julia\AppData\Local\Tempib3112.html moved successfully.
C:\Users\Julia\AppData\Local\TempiD3616.html moved successfully.
C:\Users\Julia\AppData\Local\TempiE9440.html moved successfully.
C:\Users\Julia\AppData\Local\Tempif2556.html moved successfully.
C:\Users\Julia\AppData\Local\TempihS396.html moved successfully.
C:\Users\Julia\AppData\Local\TempII1108.html moved successfully.
C:\Users\Julia\AppData\Local\TempIid224.html moved successfully.
C:\Users\Julia\AppData\Local\Tempik4640.html moved successfully.
C:\Users\Julia\AppData\Local\TempiL7672.html moved successfully.
C:\Users\Julia\AppData\Local\TempIo2836.html moved successfully.
C:\Users\Julia\AppData\Local\TempiO3956.html moved successfully.
C:\Users\Julia\AppData\Local\TempiP3692.html moved successfully.
C:\Users\Julia\AppData\Local\Tempip3808.html moved successfully.
C:\Users\Julia\AppData\Local\TempIP3948.html moved successfully.
C:\Users\Julia\AppData\Local\TempIQ3452.html moved successfully.
C:\Users\Julia\AppData\Local\Tempis3736.html moved successfully.
C:\Users\Julia\AppData\Local\Tempiu1796.html moved successfully.
C:\Users\Julia\AppData\Local\Tempiv3844.html moved successfully.
C:\Users\Julia\AppData\Local\TempIW3840.html moved successfully.
C:\Users\Julia\AppData\Local\TempIx4308.html moved successfully.
C:\Users\Julia\AppData\Local\TempiY3636.html moved successfully.
C:\Users\Julia\AppData\Local\TempiY3804.html moved successfully.
C:\Users\Julia\AppData\Local\Tempiz1076.html moved successfully.
C:\Users\Julia\AppData\Local\Tempjb2544.html moved successfully.
C:\Users\Julia\AppData\Local\TempJB3256.html moved successfully.
C:\Users\Julia\AppData\Local\TempjG3452.html moved successfully.
C:\Users\Julia\AppData\Local\Tempjg4384.html moved successfully.
C:\Users\Julia\AppData\Local\Tempjh4344.html moved successfully.
C:\Users\Julia\AppData\Local\Tempjky324.html moved successfully.
C:\Users\Julia\AppData\Local\TempjM3948.html moved successfully.
C:\Users\Julia\AppData\Local\TempJM4428.html moved successfully.
C:\Users\Julia\AppData\Local\Tempjn4404.html moved successfully.
C:\Users\Julia\AppData\Local\TempJQ3828.html moved successfully.
C:\Users\Julia\AppData\Local\Tempjs3508.html moved successfully.
C:\Users\Julia\AppData\Local\Tempjv4100.html moved successfully.
C:\Users\Julia\AppData\Local\TempjZ3992.html moved successfully.
C:\Users\Julia\AppData\Local\TempkC3620.html moved successfully.
C:\Users\Julia\AppData\Local\TempKE2264.html moved successfully.
C:\Users\Julia\AppData\Local\TempkE3548.html moved successfully.
C:\Users\Julia\AppData\Local\TempKE3868.html moved successfully.
C:\Users\Julia\AppData\Local\TempKF4048.html moved successfully.
C:\Users\Julia\AppData\Local\TempKh6388.html moved successfully.
C:\Users\Julia\AppData\Local\TempKI3824.html moved successfully.
C:\Users\Julia\AppData\Local\TempKI3868.html moved successfully.
C:\Users\Julia\AppData\Local\Tempkj3508.html moved successfully.
C:\Users\Julia\AppData\Local\TempkK2572.html moved successfully.
C:\Users\Julia\AppData\Local\Tempkk3788.html moved successfully.
C:\Users\Julia\AppData\Local\TempKK4500.html moved successfully.
C:\Users\Julia\AppData\Local\TempKM3632.html moved successfully.
C:\Users\Julia\AppData\Local\TempKM4616.html moved successfully.
C:\Users\Julia\AppData\Local\Tempkn3576.html moved successfully.
C:\Users\Julia\AppData\Local\TempKn3824.html moved successfully.
C:\Users\Julia\AppData\Local\Tempks4344.html moved successfully.
C:\Users\Julia\AppData\Local\Tempku4544.html moved successfully.
C:\Users\Julia\AppData\Local\Tempkv3864.html moved successfully.
C:\Users\Julia\AppData\Local\TempKv4236.html moved successfully.
C:\Users\Julia\AppData\Local\TempKW3620.html moved successfully.
C:\Users\Julia\AppData\Local\TempKx3376.html moved successfully.
C:\Users\Julia\AppData\Local\TempKz3864.html moved successfully.
C:\Users\Julia\AppData\Local\TempL10156.html moved successfully.
C:\Users\Julia\AppData\Local\TempL20864.html moved successfully.
C:\Users\Julia\AppData\Local\TempLA4020.html moved successfully.
C:\Users\Julia\AppData\Local\Templc2116.html moved successfully.
C:\Users\Julia\AppData\Local\TempLc4384.html moved successfully.
C:\Users\Julia\AppData\Local\Templd2420.html moved successfully.
C:\Users\Julia\AppData\Local\TempLd3636.html moved successfully.
C:\Users\Julia\AppData\Local\TemplH3236.html moved successfully.
C:\Users\Julia\AppData\Local\TempLh3920.html moved successfully.
C:\Users\Julia\AppData\Local\Templj3160.html moved successfully.
C:\Users\Julia\AppData\Local\TempLj4616.html moved successfully.
C:\Users\Julia\AppData\Local\Templl2072.html moved successfully.
C:\Users\Julia\AppData\Local\Templm4640.html moved successfully.
C:\Users\Julia\AppData\Local\TempLnM672.html moved successfully.
C:\Users\Julia\AppData\Local\TempLP1076.html moved successfully.
C:\Users\Julia\AppData\Local\TempLp4208.html moved successfully.
C:\Users\Julia\AppData\Local\TemplQ3396.html moved successfully.
C:\Users\Julia\AppData\Local\TempLr3660.html moved successfully.
C:\Users\Julia\AppData\Local\TempLs3696.html moved successfully.
C:\Users\Julia\AppData\Local\TemplT3676.html moved successfully.
C:\Users\Julia\AppData\Local\TempLt3956.html moved successfully.
C:\Users\Julia\AppData\Local\Templv3608.html moved successfully.
C:\Users\Julia\AppData\Local\TemplV4224.html moved successfully.
C:\Users\Julia\AppData\Local\Templw2076.html moved successfully.
C:\Users\Julia\AppData\Local\TempLW2660.html moved successfully.
C:\Users\Julia\AppData\Local\TempLx3872.html moved successfully.
C:\Users\Julia\AppData\Local\Tempm11244.html moved successfully.
C:\Users\Julia\AppData\Local\TempMD3448.html moved successfully.
C:\Users\Julia\AppData\Local\TempMe2420.html moved successfully.
C:\Users\Julia\AppData\Local\TempME3696.html moved successfully.
C:\Users\Julia\AppData\Local\Tempmf3136.html moved successfully.
C:\Users\Julia\AppData\Local\TempMi3504.html moved successfully.
C:\Users\Julia\AppData\Local\TempMn3920.html moved successfully.
C:\Users\Julia\AppData\Local\TempMN4264.html moved successfully.
C:\Users\Julia\AppData\Local\TempmP3660.html moved successfully.
C:\Users\Julia\AppData\Local\TempmQ3020.html moved successfully.
C:\Users\Julia\AppData\Local\TempMQ4640.html moved successfully.
C:\Users\Julia\AppData\Local\TempMT3548.html moved successfully.
C:\Users\Julia\AppData\Local\TempMu3604.html moved successfully.
C:\Users\Julia\AppData\Local\Tempmu3780.html moved successfully.
C:\Users\Julia\AppData\Local\TempmU3824.html moved successfully.
C:\Users\Julia\AppData\Local\Tempmw3876.html moved successfully.
C:\Users\Julia\AppData\Local\TempMw4428.html moved successfully.
C:\Users\Julia\AppData\Local\Tempmx4216.html moved successfully.
C:\Users\Julia\AppData\Local\TempMY3840.html moved successfully.
C:\Users\Julia\AppData\Local\Tempmy8240.html moved successfully.
C:\Users\Julia\AppData\Local\Tempn10156.html moved successfully.
C:\Users\Julia\AppData\Local\TempNA3524.html moved successfully.
C:\Users\Julia\AppData\Local\TempNA5188.html moved successfully.
C:\Users\Julia\AppData\Local\TempNB4112.html moved successfully.
C:\Users\Julia\AppData\Local\Tempncx224.html moved successfully.
C:\Users\Julia\AppData\Local\TempND3732.html moved successfully.
C:\Users\Julia\AppData\Local\TempnD3808.html moved successfully.
C:\Users\Julia\AppData\Local\Tempnf4312.html moved successfully.
C:\Users\Julia\AppData\Local\TempnG3392.html moved successfully.
C:\Users\Julia\AppData\Local\TempnI3812.html moved successfully.
C:\Users\Julia\AppData\Local\TempnJ3392.html moved successfully.
C:\Users\Julia\AppData\Local\TempnKt412.html moved successfully.
C:\Users\Julia\AppData\Local\TempNM3452.html moved successfully.
C:\Users\Julia\AppData\Local\Tempnm3736.html moved successfully.
C:\Users\Julia\AppData\Local\TempNM4420.html moved successfully.
C:\Users\Julia\AppData\Local\TempNny224.html moved successfully.
C:\Users\Julia\AppData\Local\Tempnq4180.html moved successfully.
C:\Users\Julia\AppData\Local\Tempnr6280.html moved successfully.
C:\Users\Julia\AppData\Local\Tempnsx396.html moved successfully.
C:\Users\Julia\AppData\Local\TempnT3672.html moved successfully.
C:\Users\Julia\AppData\Local\TempNu3180.html moved successfully.
C:\Users\Julia\AppData\Local\TempNU4308.html moved successfully.
C:\Users\Julia\AppData\Local\TempNV4788.html moved successfully.
C:\Users\Julia\AppData\Local\TempNz1876.html moved successfully.
C:\Users\Julia\AppData\Local\Tempnz3204.html moved successfully.
C:\Users\Julia\AppData\Local\Tempo10316.html moved successfully.
C:\Users\Julia\AppData\Local\TempoB7136.html moved successfully.
C:\Users\Julia\AppData\Local\TempOC3184.html moved successfully.
C:\Users\Julia\AppData\Local\TempOe3992.html moved successfully.
C:\Users\Julia\AppData\Local\TempOf3860.html moved successfully.
C:\Users\Julia\AppData\Local\TempoG2660.html moved successfully.
C:\Users\Julia\AppData\Local\TempOi6280.html moved successfully.
C:\Users\Julia\AppData\Local\TempoK3540.html moved successfully.
C:\Users\Julia\AppData\Local\TempoL3340.html moved successfully.
C:\Users\Julia\AppData\Local\TempOm3576.html moved successfully.
C:\Users\Julia\AppData\Local\TempoM8912.html moved successfully.
C:\Users\Julia\AppData\Local\TempoN4036.html moved successfully.
C:\Users\Julia\AppData\Local\TempOO3508.html moved successfully.
C:\Users\Julia\AppData\Local\TempOp4020.html moved successfully.
C:\Users\Julia\AppData\Local\TempOp5664.html moved successfully.
C:\Users\Julia\AppData\Local\TempOq7964.html moved successfully.
C:\Users\Julia\AppData\Local\Tempor3464.html moved successfully.
C:\Users\Julia\AppData\Local\Temporary Internet Files folder moved successfully.
C:\Users\Julia\AppData\Local\Tempot2564.html moved successfully.
C:\Users\Julia\AppData\Local\TempOt3588.html moved successfully.
C:\Users\Julia\AppData\Local\TempOt3924.html moved successfully.
C:\Users\Julia\AppData\Local\TempoU3416.html moved successfully.
C:\Users\Julia\AppData\Local\TempOv3452.html moved successfully.
C:\Users\Julia\AppData\Local\TempOV7136.html moved successfully.
C:\Users\Julia\AppData\Local\TempOw2280.html moved successfully.
C:\Users\Julia\AppData\Local\Tempow3780.html moved successfully.
C:\Users\Julia\AppData\Local\TempoWh952.html moved successfully.
C:\Users\Julia\AppData\Local\TempOZ3564.html moved successfully.
C:\Users\Julia\AppData\Local\TempPB4020.html moved successfully.
C:\Users\Julia\AppData\Local\TempPc4500.html moved successfully.
C:\Users\Julia\AppData\Local\TempPE8240.html moved successfully.
C:\Users\Julia\AppData\Local\TempPf3540.html moved successfully.
C:\Users\Julia\AppData\Local\TempPF3736.html moved successfully.
C:\Users\Julia\AppData\Local\TempPi3704.html moved successfully.
C:\Users\Julia\AppData\Local\TempPn4476.html moved successfully.
C:\Users\Julia\AppData\Local\TempPO3508.html moved successfully.
C:\Users\Julia\AppData\Local\TemppP2132.html moved successfully.
C:\Users\Julia\AppData\Local\Temppp3324.html moved successfully.
C:\Users\Julia\AppData\Local\TemppQ3672.html moved successfully.
C:\Users\Julia\AppData\Local\TempPQ3908.html moved successfully.
C:\Users\Julia\AppData\Local\TempPr3448.html moved successfully.
C:\Users\Julia\AppData\Local\TempPr4496.html moved successfully.
C:\Users\Julia\AppData\Local\Temppr7136.html moved successfully.
C:\Users\Julia\AppData\Local\Tempps4544.html moved successfully.
C:\Users\Julia\AppData\Local\TempPw1076.html moved successfully.
C:\Users\Julia\AppData\Local\TempPW2336.html moved successfully.
C:\Users\Julia\AppData\Local\TempPw3352.html moved successfully.
C:\Users\Julia\AppData\Local\TempPx3616.html moved successfully.
C:\Users\Julia\AppData\Local\Tempq20864.html moved successfully.
C:\Users\Julia\AppData\Local\Tempq33516.html moved successfully.
C:\Users\Julia\AppData\Local\TempqC3948.html moved successfully.
C:\Users\Julia\AppData\Local\TempqD3696.html moved successfully.
C:\Users\Julia\AppData\Local\TempqD8912.html moved successfully.
C:\Users\Julia\AppData\Local\TempQF3452.html moved successfully.
C:\Users\Julia\AppData\Local\TempQf3704.html moved successfully.
C:\Users\Julia\AppData\Local\TempQG3704.html moved successfully.
C:\Users\Julia\AppData\Local\TempQG3808.html moved successfully.
C:\Users\Julia\AppData\Local\Tempql4552.html moved successfully.
C:\Users\Julia\AppData\Local\TempQM3540.html moved successfully.
C:\Users\Julia\AppData\Local\Tempqm3872.html moved successfully.
C:\Users\Julia\AppData\Local\TempqM6860.html moved successfully.
C:\Users\Julia\AppData\Local\TempQN3080.html moved successfully.
C:\Users\Julia\AppData\Local\TempQo2280.html moved successfully.
C:\Users\Julia\AppData\Local\TempQP3672.html moved successfully.
C:\Users\Julia\AppData\Local\Tempqp4428.html moved successfully.
C:\Users\Julia\AppData\Local\TempqR4100.html moved successfully.
C:\Users\Julia\AppData\Local\TempqR9440.html moved successfully.
C:\Users\Julia\AppData\Local\Tempqt3124.html moved successfully.
C:\Users\Julia\AppData\Local\TempqT4264.html moved successfully.
C:\Users\Julia\AppData\Local\TempQT5188.html moved successfully.
C:\Users\Julia\AppData\Local\Tempqu3324.html moved successfully.
C:\Users\Julia\AppData\Local\Tempqv2564.html moved successfully.
C:\Users\Julia\AppData\Local\TempQv3452.html moved successfully.
C:\Users\Julia\AppData\Local\TempQv3976.html moved successfully.
C:\Users\Julia\AppData\Local\Tempqx4476.html moved successfully.
C:\Users\Julia\AppData\Local\TempR33516.html moved successfully.
C:\Users\Julia\AppData\Local\TemprA3352.html moved successfully.
C:\Users\Julia\AppData\Local\TempRa3604.html moved successfully.
C:\Users\Julia\AppData\Local\TemprD3676.html moved successfully.
C:\Users\Julia\AppData\Local\TempRf3732.html moved successfully.
C:\Users\Julia\AppData\Local\TemprHB412.html moved successfully.
C:\Users\Julia\AppData\Local\Temprj3524.html moved successfully.
C:\Users\Julia\AppData\Local\TempRK3540.html moved successfully.
C:\Users\Julia\AppData\Local\TemprK8912.html moved successfully.
C:\Users\Julia\AppData\Local\TemprL3764.html moved successfully.
C:\Users\Julia\AppData\Local\TempRp5956.html moved successfully.
C:\Users\Julia\AppData\Local\TemprQ3788.html moved successfully.
C:\Users\Julia\AppData\Local\TempRq3792.html moved successfully.
C:\Users\Julia\AppData\Local\TempRu3340.html moved successfully.
C:\Users\Julia\AppData\Local\TempRv3576.html moved successfully.
C:\Users\Julia\AppData\Local\Temprx3688.html moved successfully.
C:\Users\Julia\AppData\Local\TemprY2564.html moved successfully.
C:\Users\Julia\AppData\Local\TempRY4788.html moved successfully.
C:\Users\Julia\AppData\Local\TempRz3376.html moved successfully.
C:\Users\Julia\AppData\Local\Temps14268.html moved successfully.
C:\Users\Julia\AppData\Local\Tempse4048.html moved successfully.
C:\Users\Julia\AppData\Local\TempSF2388.html moved successfully.
C:\Users\Julia\AppData\Local\TempsK4496.html moved successfully.
C:\Users\Julia\AppData\Local\TempSL3468.html moved successfully.
C:\Users\Julia\AppData\Local\TempSM3848.html moved successfully.
C:\Users\Julia\AppData\Local\TempSo3464.html moved successfully.
C:\Users\Julia\AppData\Local\TempSp2432.html moved successfully.
C:\Users\Julia\AppData\Local\Tempsp2728.html moved successfully.
C:\Users\Julia\AppData\Local\Tempsr1492.html moved successfully.
C:\Users\Julia\AppData\Local\Tempsr3508.html moved successfully.
C:\Users\Julia\AppData\Local\TempSr3732.html moved successfully.
C:\Users\Julia\AppData\Local\TempST3620.html moved successfully.
C:\Users\Julia\AppData\Local\TempsV3468.html moved successfully.
C:\Users\Julia\AppData\Local\TempsV3992.html moved successfully.
C:\Users\Julia\AppData\Local\TempsY4036.html moved successfully.
C:\Users\Julia\AppData\Local\Tempt10548.html moved successfully.
C:\Users\Julia\AppData\Local\TempT14268.html moved successfully.
C:\Users\Julia\AppData\Local\TemptA3908.html moved successfully.
C:\Users\Julia\AppData\Local\TempTA4640.html moved successfully.
C:\Users\Julia\AppData\Local\TempTb3448.html moved successfully.
C:\Users\Julia\AppData\Local\TemptD2084.html moved successfully.
C:\Users\Julia\AppData\Local\TempTd3804.html moved successfully.
C:\Users\Julia\AppData\Local\TemptD9032.html moved successfully.
C:\Users\Julia\AppData\Local\Tempte3276.html moved successfully.
C:\Users\Julia\AppData\Local\TemptE3576.html moved successfully.
C:\Users\Julia\AppData\Local\TempTg3020.html moved successfully.
C:\Users\Julia\AppData\Local\TempTI4964.html moved successfully.
C:\Users\Julia\AppData\Local\TempTk4004.html moved successfully.
C:\Users\Julia\AppData\Local\TemptLb148.html moved successfully.
C:\Users\Julia\AppData\Local\Temptm3720.html moved successfully.
C:\Users\Julia\AppData\Local\TempTo6808.html moved successfully.
C:\Users\Julia\AppData\Local\TempTR3908.html moved successfully.
C:\Users\Julia\AppData\Local\TempTT3824.html moved successfully.
C:\Users\Julia\AppData\Local\TemptU3620.html moved successfully.
C:\Users\Julia\AppData\Local\TemptU3976.html moved successfully.
C:\Users\Julia\AppData\Local\TempTu4224.html moved successfully.
C:\Users\Julia\AppData\Local\TempTv4128.html moved successfully.
C:\Users\Julia\AppData\Local\TempTw3704.html moved successfully.
C:\Users\Julia\AppData\Local\Tempty3764.html moved successfully.
C:\Users\Julia\AppData\Local\Tempu10316.html moved successfully.
C:\Users\Julia\AppData\Local\Tempu10548.html moved successfully.
C:\Users\Julia\AppData\Local\TempU11244.html moved successfully.
C:\Users\Julia\AppData\Local\Tempuc3564.html moved successfully.
C:\Users\Julia\AppData\Local\Tempuh2984.html moved successfully.
C:\Users\Julia\AppData\Local\Tempui1972.html moved successfully.
C:\Users\Julia\AppData\Local\Tempuk4480.html moved successfully.
C:\Users\Julia\AppData\Local\TempUM3236.html moved successfully.
C:\Users\Julia\AppData\Local\TempUo3840.html moved successfully.
C:\Users\Julia\AppData\Local\TempuOr952.html moved successfully.
C:\Users\Julia\AppData\Local\TempUp3948.html moved successfully.
C:\Users\Julia\AppData\Local\TempuQ1548.html moved successfully.
C:\Users\Julia\AppData\Local\Tempuq4208.html moved successfully.
C:\Users\Julia\AppData\Local\TempuT3940.html moved successfully.
C:\Users\Julia\AppData\Local\TempUu2420.html moved successfully.
C:\Users\Julia\AppData\Local\TempUu3660.html moved successfully.
C:\Users\Julia\AppData\Local\TempUU4616.html moved successfully.
C:\Users\Julia\AppData\Local\Tempuv4124.html moved successfully.
C:\Users\Julia\AppData\Local\TempUW5036.html moved successfully.
C:\Users\Julia\AppData\Local\Tempv22792.html moved successfully.
C:\Users\Julia\AppData\Local\TempvI3200.html moved successfully.
C:\Users\Julia\AppData\Local\TempVI4428.html moved successfully.
C:\Users\Julia\AppData\Local\TempvL2084.html moved successfully.
C:\Users\Julia\AppData\Local\Tempvl3532.html moved successfully.
C:\Users\Julia\AppData\Local\Tempvm1732.html moved successfully.
C:\Users\Julia\AppData\Local\TempVm4048.html moved successfully.
C:\Users\Julia\AppData\Local\TempVp1108.html moved successfully.
C:\Users\Julia\AppData\Local\TempVs1796.html moved successfully.
C:\Users\Julia\AppData\Local\TempvST224.html moved successfully.
C:\Users\Julia\AppData\Local\TempVu3452.html moved successfully.
C:\Users\Julia\AppData\Local\TempVu4388.html moved successfully.
C:\Users\Julia\AppData\Local\TempvV3864.html moved successfully.
C:\Users\Julia\AppData\Local\TempVv3904.html moved successfully.
C:\Users\Julia\AppData\Local\Tempvx3732.html moved successfully.
C:\Users\Julia\AppData\Local\TempVX4344.html moved successfully.
C:\Users\Julia\AppData\Local\Tempwc7396.html moved successfully.
C:\Users\Julia\AppData\Local\TempWd3396.html moved successfully.
C:\Users\Julia\AppData\Local\TempWf3940.html moved successfully.
C:\Users\Julia\AppData\Local\TempwF5664.html moved successfully.
C:\Users\Julia\AppData\Local\Tempwh3464.html moved successfully.
C:\Users\Julia\AppData\Local\TempwI3452.html moved successfully.
C:\Users\Julia\AppData\Local\Tempwj3276.html moved successfully.
C:\Users\Julia\AppData\Local\TempwM3872.html moved successfully.
C:\Users\Julia\AppData\Local\TempWn3792.html moved successfully.
C:\Users\Julia\AppData\Local\TempWNt148.html moved successfully.
C:\Users\Julia\AppData\Local\Tempwr3464.html moved successfully.
C:\Users\Julia\AppData\Local\Tempwr3840.html moved successfully.
C:\Users\Julia\AppData\Local\TempWt4344.html moved successfully.
C:\Users\Julia\AppData\Local\TempwV3176.html moved successfully.
C:\Users\Julia\AppData\Local\TempWv3632.html moved successfully.
C:\Users\Julia\AppData\Local\Tempwy3908.html moved successfully.
C:\Users\Julia\AppData\Local\Tempxa3804.html moved successfully.
C:\Users\Julia\AppData\Local\Tempxb3508.html moved successfully.
C:\Users\Julia\AppData\Local\TempxB3576.html moved successfully.
C:\Users\Julia\AppData\Local\TempXB3632.html moved successfully.
C:\Users\Julia\AppData\Local\TempXd3648.html moved successfully.
C:\Users\Julia\AppData\Local\TempXe1696.html moved successfully.
C:\Users\Julia\AppData\Local\TempXe3540.html moved successfully.
C:\Users\Julia\AppData\Local\TempxE3720.html moved successfully.
C:\Users\Julia\AppData\Local\TempXf3136.html moved successfully.
C:\Users\Julia\AppData\Local\TempxF3608.html moved successfully.
C:\Users\Julia\AppData\Local\TempXg4404.html moved successfully.
C:\Users\Julia\AppData\Local\TempxH3872.html moved successfully.
C:\Users\Julia\AppData\Local\TempXK3196.html moved successfully.
C:\Users\Julia\AppData\Local\TempXL3832.html moved successfully.
C:\Users\Julia\AppData\Local\TempxP4312.html moved successfully.
C:\Users\Julia\AppData\Local\TempXp6660.html moved successfully.
C:\Users\Julia\AppData\Local\TempXQ3324.html moved successfully.
C:\Users\Julia\AppData\Local\TempXq3788.html moved successfully.
C:\Users\Julia\AppData\Local\TempXs2804.html moved successfully.
C:\Users\Julia\AppData\Local\TempXS4384.html moved successfully.
C:\Users\Julia\AppData\Local\Tempxt4724.html moved successfully.
C:\Users\Julia\AppData\Local\TempXU3276.html moved successfully.
C:\Users\Julia\AppData\Local\TempXU3808.html moved successfully.
C:\Users\Julia\AppData\Local\TempXw3864.html moved successfully.
C:\Users\Julia\AppData\Local\TempXX3732.html moved successfully.
C:\Users\Julia\AppData\Local\TempXX3844.html moved successfully.
C:\Users\Julia\AppData\Local\TempXy3508.html moved successfully.
C:\Users\Julia\AppData\Local\Tempxy3696.html moved successfully.
C:\Users\Julia\AppData\Local\TempyA3496.html moved successfully.
C:\Users\Julia\AppData\Local\TempyE2116.html moved successfully.
C:\Users\Julia\AppData\Local\TempYF4064.html moved successfully.
C:\Users\Julia\AppData\Local\TempyF8836.html moved successfully.
C:\Users\Julia\AppData\Local\TempyI1732.html moved successfully.
C:\Users\Julia\AppData\Local\TempYM3704.html moved successfully.
C:\Users\Julia\AppData\Local\TempYm3876.html moved successfully.
C:\Users\Julia\AppData\Local\TempYq2336.html moved successfully.
C:\Users\Julia\AppData\Local\TempyS3192.html moved successfully.
C:\Users\Julia\AppData\Local\TempyT3792.html moved successfully.
C:\Users\Julia\AppData\Local\TempYT4420.html moved successfully.
C:\Users\Julia\AppData\Local\TempyT8120.html moved successfully.
C:\Users\Julia\AppData\Local\TempyZ3672.html moved successfully.
C:\Users\Julia\AppData\Local\Tempz14268.html moved successfully.
C:\Users\Julia\AppData\Local\TempZa2264.html moved successfully.
C:\Users\Julia\AppData\Local\TempZC1876.html moved successfully.
C:\Users\Julia\AppData\Local\TempZC3416.html moved successfully.
C:\Users\Julia\AppData\Local\TempzC9032.html moved successfully.
C:\Users\Julia\AppData\Local\TempZd7396.html moved successfully.
C:\Users\Julia\AppData\Local\TempZf3692.html moved successfully.
C:\Users\Julia\AppData\Local\TempzG4092.html moved successfully.
C:\Users\Julia\AppData\Local\Tempzj3620.html moved successfully.
C:\Users\Julia\AppData\Local\TempzL3564.html moved successfully.
C:\Users\Julia\AppData\Local\Tempzl3832.html moved successfully.
C:\Users\Julia\AppData\Local\TempZm1972.html moved successfully.
C:\Users\Julia\AppData\Local\Tempzo3732.html moved successfully.
C:\Users\Julia\AppData\Local\Tempzq2388.html moved successfully.
C:\Users\Julia\AppData\Local\TempZR4724.html moved successfully.
C:\Users\Julia\AppData\Local\TempzT3508.html moved successfully.
C:\Users\Julia\AppData\Local\TempzU3824.html moved successfully.
C:\Users\Julia\AppData\Local\TempZu4016.html moved successfully.
C:\Users\Julia\AppData\Local\TempzU4160.html moved successfully.
C:\Users\Julia\AppData\Local\Tempzu4496.html moved successfully.
C:\Users\Julia\AppData\Local\TempZU6808.html moved successfully.
C:\Users\Julia\AppData\Local\TempzV8120.html moved successfully.
C:\Users\Julia\AppData\Local\Tempzy3848.html moved successfully.
C:\Users\Julia\AppData\Local\TempZz3276.html moved successfully.
< ipconfig /flushdns /c >
Konfiguracja IP systemu Windows
Pomylnie opr˘ľniono pami©† podr©cznĄ programu rozpoznawania nazw DNS.
C:\Users\Julia\Desktop\cmd.bat deleted successfully.
C:\Users\Julia\Desktop\cmd.txt deleted successfully.
========== COMMANDS ==========
 
[EMPTYTEMP]
 
User: All Users
 
User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
->Flash cache emptied: 56504 bytes
 
User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 0 bytes
 
User: Jola
->Temp folder emptied: 69197289 bytes
->Temporary Internet Files folder emptied: 70155216 bytes
->Java cache emptied: 1 bytes
->Google Chrome cache emptied: 307231657 bytes
->Flash cache emptied: 57443 bytes
 
User: Julia
->Temp folder emptied: 2210337543 bytes
->Temporary Internet Files folder emptied: 2647318043 bytes
->Java cache emptied: 12673713 bytes
->FireFox cache emptied: 58738640 bytes
->Google Chrome cache emptied: 21095732 bytes
->Apple Safari cache emptied: 43723776 bytes
->Opera cache emptied: 19171546 bytes
->Flash cache emptied: 9426681 bytes
 
User: Public
 
%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 727857224 bytes
%systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 175567 bytes
%systemroot%\sysnative\config\systemprofile\AppData\LocalLow\Sun\Java\Deployment folder emptied: 736 bytes
RecycleBin emptied: 8989 bytes
 
Total Files Cleaned = 5 910,00 mb
 
C:\Windows\System32\drivers\etc\Hosts moved successfully.
HOSTS file reset successfully
 
OTL by OldTimer - Version 3.2.69.0 log created on 08192013_192958
 
Files\Folders moved on Reboot...
File move failed. E:\Autorun.exe scheduled to be moved on reboot.
C:\Users\Julia\AppData\Local\Temp folder moved successfully.
File\Folder C:\Users\Julia\AppData\Local\Temp\FXSAPIDebugLogFile.txt not found!
 
PendingFileRenameOperations files...
 
Registry entries deleted on Reboot...

 

 


AdwCleaner

 

 

# AdwCleaner v2.306 - Log utworzony 19/08/2013 o 20:00:41
# Aktualizacja 19/07/2013 przez Xplode
# System operacyjny : Windows 7 Home Premium Service Pack 1 (64 bits)
# Użytkownik : Julia - JULIA-KOMPUTER
# Tryb uruchomienia : Normalny
# Ścieżka : C:\Users\Julia\Desktop\AdwCleaner.exe
# Opcja [Szukaj]
 
 
***** [Usługi] *****
 
 
***** [Pliki / Foldery] *****
 
Folder Znaleziono : C:\ProgramData\Broowose22save
Folder Znaleziono : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Finder
Folder Znaleziono : C:\ProgramData\Tarma Installer
Folder Znaleziono : C:\Users\Julia\AppData\Roaming\Mozilla\Firefox\Profiles\8kg6a5z5.default\ConduitCommon
Folder Znaleziono : C:\Users\Julia\AppData\Roaming\Mozilla\Firefox\Profiles\8kg6a5z5.default\extensions\addon@defaulttab.com
Folder Znaleziono : C:\Users\Julia\AppData\Roaming\Mozilla\Firefox\Profiles\8kg6a5z5.default\SweetIMToolbarData
Plik Znaleziono : C:\Program Files (x86)\Mozilla Firefox\.autoreg
Plik Znaleziono : C:\Program Files (x86)\mozilla firefox\searchplugins\Search the web.src
Plik Znaleziono : C:\Users\Jola\AppData\Local\Google\Chrome\User Data\Default\bProtector Web Data
Plik Znaleziono : C:\Users\Jola\AppData\Local\Google\Chrome\User Data\Default\bprotectorpreferences
Plik Znaleziono : C:\Users\Julia\AppData\Roaming\Mozilla\Firefox\Profiles\8kg6a5z5.default\bProtector_extensions.rdf
 
***** [Rejestr] *****
 
Klucz Znaleziono : HKCU\Software\AppDataLow\Software\Vid-Saver
Klucz Znaleziono : HKCU\Software\DataMngr
Klucz Znaleziono : HKCU\Software\DataMngr_Toolbar
Klucz Znaleziono : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}
Klucz Znaleziono : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Klucz Znaleziono : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{DFEFCDEE-CF1A-4FC8-89AF-189327213627}
Klucz Znaleziono : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}
Klucz Znaleziono : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
Klucz Znaleziono : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Klucz Znaleziono : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{DFEFCDEE-CF1A-4FC8-89AF-189327213627}
Klucz Znaleziono : HKCU\Software\59ed9deb26ebe41
Klucz Znaleziono : HKLM\Software\DataMngr
Klucz Znaleziono : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
Klucz Znaleziono : HKLM\SOFTWARE\Wow6432Node\59ed9deb26ebe41
Klucz Znaleziono : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{761F6A83-F007-49E4-8EAC-CDB6808EF06F}
Klucz Znaleziono : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{76C45B18-A29E-43EA-AAF8-AF55C2E1AE17}
Klucz Znaleziono : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{7CD74AFF-3433-4E34-92E2-D98DFDB30754}
Klucz Znaleziono : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
Klucz Znaleziono : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{96EF404C-24C7-43D0-9096-4CCC8BB7CCAC}
Klucz Znaleziono : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{97720195-206A-42AE-8E65-260B9BA5589F}
Klucz Znaleziono : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{97D69524-BB57-4185-9C7F-5F05593B771A}
Klucz Znaleziono : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{986F7A5A-9676-47E1-8642-F41F8C3FCF82}
Klucz Znaleziono : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Klucz Znaleziono : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{B18788A4-92BD-440E-A4D1-380C36531119}
Klucz Znaleziono : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\lpmkgpnbiojfaoklbkpfneikocaobfai
Klucz Znaleziono : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\ndibdjnfmopecpmkdieinmbadjfpblof
Klucz Znaleziono : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Klucz Znaleziono : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\V9Software
Klucz Znaleziono : HKLM\SOFTWARE\Classes\Interface\{31E3BC75-2A09-4CFF-9C92-8D0ED8D1DC0F}
Klucz Znaleziono : HKLM\SOFTWARE\Tarma Installer
 
***** [Przeglądarki Internetowe] *****
 
-\\ Internet Explorer v10.0.9200.16660
 
[OK] Rejestr w porządku.
 
-\\ Mozilla Firefox v3.6.23 (pl)
 
Plik : C:\Users\Julia\AppData\Roaming\Mozilla\Firefox\Profiles\8kg6a5z5.default\prefs.js
 
Znaleziono : user_pref("extensions.BabylonToolbar.pnu_tb9", "{\"newVrsn\":\"7\",\"lastVrsn\":\"7\",\"vrsnLoad\":\[...]
Znaleziono : user_pref("extensions.crossriderapp3491.3491.backgroundjs", "\n\n//\n");
Znaleziono : user_pref("extensions.crossriderapp3491.3491.cookie._GPL_arbitrary_code.value", "%22/**/%22");
Znaleziono : user_pref("extensions.crossriderapp3491.3491.js", "\n\nif(\"undefined\"!=typeof _GPL_PLUGIN){var _GP[...]
Znaleziono : user_pref("extensions.crossriderapp3491.3491.plugins.plugin_14.code", "if(typeof(appAPI)===\"undefin[...]
Znaleziono : user_pref("extensions.crossriderapp3491.3491.plugins.plugin_16.code", "if((typeof isBackground===\"u[...]
Znaleziono : user_pref("extensions.crossriderapp3491.3491.plugins.plugin_17.code", "if(typeof window!==\"undefine[...]
Znaleziono : user_pref("extensions.crossriderapp3491.3491.plugins.plugin_64.code", "(function(){var h=\"__CR_EMPT[...]
Znaleziono : user_pref("extensions.crossriderapp3491.3491.plugins.plugin_78.code", "if(typeof jQuery!==\"undefine[...]
 
-\\ Google Chrome v28.0.1500.95
 
Plik : C:\Users\Julia\AppData\Local\Google\Chrome\User Data\Default\Preferences
 
Znaleziono [l.2355] : homepage = "hxxp://start.funmoods.com/?f=1&a=ironto",
 
Plik : C:\Users\Jola\AppData\Local\Google\Chrome\User Data\Default\Preferences
 
Znaleziono [l.2563] : homepage = "hxxp://www.search.ask.com/?l=dis&o=APN10457cr&gct=hp&apn_ptnrs=^AKH&apn_dtid=^YYYYYY^YY^PL&p2=^AKH^YYYYYY^YY^PL&tpid=MYC3&apn_dbr=cr_26.0.1410.64&apn_uid=290A19F2-DD1F-42D2-9BB0-4BBF42089AD0&itbv=11.8.1.227&doi=2013-04-19",
 
-\\ Opera v12.11.1661.0
 
Plik : C:\Users\Julia\AppData\Roaming\Opera\Opera\operaprefs.ini
 
[OK] Plik w porządku.
 
*************************
 
AdwCleaner[R1].txt - [6223 octets] - [19/08/2013 20:00:41]
 
########## EOF - C:\AdwCleaner[R1].txt - [6283 octets] ##########

Edited by internetaccess, 19 August 2013 - 01:08 PM.


#9 Starbuck

Starbuck

    'r Brudiwr


  • Malware Response Team
  • 4,149 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Midlands, UK
  • Local time:03:15 AM

Posted 19 August 2013 - 01:13 PM

I made a small typing omission in the Otl fix.
I tried to correct it before you ran the fix.
The fix removed more than i had wanted.
Keep an eye on things and if you have any problems we'll correct it.
  • Close all open programs and internet browsers.
  • Double click on adwcleaner.exe to run the tool.
  • Click on the Delete button.
  • Confirm each time with Ok.
  • You will be prompted to restart your computer. A text file will open after the restart.
  • Please post the contents of that logfile with your next reply.
  • You can find the logfile at C:\AdwCleaner[S1].txt as well.
Thanks

BBPP6nz.png


#10 internetaccess

internetaccess
  • Topic Starter

  • Members
  • 9 posts
  • OFFLINE
  •  
  • Local time:04:15 AM

Posted 19 August 2013 - 01:25 PM

Thanks Starbuck. Btw. just a reference for the log below - Usunięto = Removed

 


# AdwCleaner v2.306 - Log utworzony 19/08/2013 o 20:17:35
# Aktualizacja 19/07/2013 przez Xplode
# System operacyjny : Windows 7 Home Premium Service Pack 1 (64 bits)
# Użytkownik : Julia - JULIA-KOMPUTER
# Tryb uruchomienia : Normalny
# Ścieżka : C:\Users\Julia\Desktop\AdwCleaner.exe
# Opcja [Usuń]
 
 
***** [Usługi] *****
 
 
***** [Pliki / Foldery] *****
 
Folder Usunięto : C:\ProgramData\Broowose22save
Folder Usunięto : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Finder
Folder Usunięto : C:\ProgramData\Tarma Installer
Folder Usunięto : C:\Users\Julia\AppData\Roaming\Mozilla\Firefox\Profiles\8kg6a5z5.default\ConduitCommon
Folder Usunięto : C:\Users\Julia\AppData\Roaming\Mozilla\Firefox\Profiles\8kg6a5z5.default\extensions\addon@defaulttab.com
Folder Usunięto : C:\Users\Julia\AppData\Roaming\Mozilla\Firefox\Profiles\8kg6a5z5.default\SweetIMToolbarData
Plik Usunięto : C:\Program Files (x86)\Mozilla Firefox\.autoreg
Plik Usunięto : C:\Program Files (x86)\mozilla firefox\searchplugins\Search the web.src
Plik Usunięto : C:\Users\Jola\AppData\Local\Google\Chrome\User Data\Default\bProtector Web Data
Plik Usunięto : C:\Users\Jola\AppData\Local\Google\Chrome\User Data\Default\bprotectorpreferences
Plik Usunięto : C:\Users\Julia\AppData\Roaming\Mozilla\Firefox\Profiles\8kg6a5z5.default\bProtector_extensions.rdf
 
***** [Rejestr] *****
 
Klucz Usunięto : HKCU\Software\AppDataLow\Software\Vid-Saver
Klucz Usunięto : HKCU\Software\DataMngr
Klucz Usunięto : HKCU\Software\DataMngr_Toolbar
Klucz Usunięto : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}
Klucz Usunięto : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Klucz Usunięto : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{DFEFCDEE-CF1A-4FC8-89AF-189327213627}
Klucz Usunięto : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}
Klucz Usunięto : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
Klucz Usunięto : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Klucz Usunięto : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{DFEFCDEE-CF1A-4FC8-89AF-189327213627}
Klucz Usunięto : HKCU\Software\59ed9deb26ebe41
Klucz Usunięto : HKLM\Software\DataMngr
Klucz Usunięto : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
Klucz Usunięto : HKLM\SOFTWARE\Wow6432Node\59ed9deb26ebe41
Klucz Usunięto : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{761F6A83-F007-49E4-8EAC-CDB6808EF06F}
Klucz Usunięto : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{76C45B18-A29E-43EA-AAF8-AF55C2E1AE17}
Klucz Usunięto : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{7CD74AFF-3433-4E34-92E2-D98DFDB30754}
Klucz Usunięto : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
Klucz Usunięto : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{96EF404C-24C7-43D0-9096-4CCC8BB7CCAC}
Klucz Usunięto : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{97720195-206A-42AE-8E65-260B9BA5589F}
Klucz Usunięto : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{97D69524-BB57-4185-9C7F-5F05593B771A}
Klucz Usunięto : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{986F7A5A-9676-47E1-8642-F41F8C3FCF82}
Klucz Usunięto : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Klucz Usunięto : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{B18788A4-92BD-440E-A4D1-380C36531119}
Klucz Usunięto : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\lpmkgpnbiojfaoklbkpfneikocaobfai
Klucz Usunięto : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\ndibdjnfmopecpmkdieinmbadjfpblof
Klucz Usunięto : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Klucz Usunięto : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\V9Software
Klucz Usunięto : HKLM\SOFTWARE\Classes\Interface\{31E3BC75-2A09-4CFF-9C92-8D0ED8D1DC0F}
Klucz Usunięto : HKLM\SOFTWARE\Tarma Installer
 
***** [Przeglądarki Internetowe] *****
 
-\\ Internet Explorer v10.0.9200.16660
 
[OK] Rejestr w porządku.
 
-\\ Mozilla Firefox v3.6.23 (pl)
 
Plik : C:\Users\Julia\AppData\Roaming\Mozilla\Firefox\Profiles\8kg6a5z5.default\prefs.js
 
Usunięto : user_pref("extensions.BabylonToolbar.pnu_tb9", "{\"newVrsn\":\"7\",\"lastVrsn\":\"7\",\"vrsnLoad\":\[...]
Usunięto : user_pref("extensions.crossriderapp3491.3491.backgroundjs", "\n\n//\n");
Usunięto : user_pref("extensions.crossriderapp3491.3491.cookie._GPL_arbitrary_code.value", "%22/**/%22");
Usunięto : user_pref("extensions.crossriderapp3491.3491.js", "\n\nif(\"undefined\"!=typeof _GPL_PLUGIN){var _GP[...]
Usunięto : user_pref("extensions.crossriderapp3491.3491.plugins.plugin_14.code", "if(typeof(appAPI)===\"undefin[...]
Usunięto : user_pref("extensions.crossriderapp3491.3491.plugins.plugin_16.code", "if((typeof isBackground===\"u[...]
Usunięto : user_pref("extensions.crossriderapp3491.3491.plugins.plugin_17.code", "if(typeof window!==\"undefine[...]
Usunięto : user_pref("extensions.crossriderapp3491.3491.plugins.plugin_64.code", "(function(){var h=\"__CR_EMPT[...]
Usunięto : user_pref("extensions.crossriderapp3491.3491.plugins.plugin_78.code", "if(typeof jQuery!==\"undefine[...]
 
-\\ Google Chrome v28.0.1500.95
 
Plik : C:\Users\Julia\AppData\Local\Google\Chrome\User Data\Default\Preferences
 
Usunięto [l.2355] : homepage = "hxxp://start.funmoods.com/?f=1&a=ironto",
 
Plik : C:\Users\Jola\AppData\Local\Google\Chrome\User Data\Default\Preferences
 
Usunięto [l.2563] : homepage = "hxxp://www.search.ask.com/?l=dis&o=APN10457cr&gct=hp&apn_ptnrs=^AKH&apn_dtid=^YYYYY[...]
 
-\\ Opera v12.11.1661.0
 
Plik : C:\Users\Julia\AppData\Roaming\Opera\Opera\operaprefs.ini
 
[OK] Plik w porządku.
 
*************************
 
AdwCleaner[R1].txt - [6346 octets] - [19/08/2013 20:00:41]
AdwCleaner[S1].txt - [6042 octets] - [19/08/2013 20:17:35]
 
########## EOF - C:\AdwCleaner[S1].txt - [6102 octets] ##########


#11 Starbuck

Starbuck

    'r Brudiwr


  • Malware Response Team
  • 4,149 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Midlands, UK
  • Local time:03:15 AM

Posted 19 August 2013 - 02:32 PM

Btw. just a reference for the log below - Usunięto = Removed

Thanks for that.

I need you to check something for me:

Make sure that Hidden Files are set to be shown.

Click Start >> Control Panel >> Appearance and Personalization >> Folder Options
Now click the View tab and select Show Hidden Files, Folders and Drives.
Click Apply... OK

Now navigate to:
C:\Users\Julia\AppData\Local
open the Local folder and see if the Temp folder exists inside of it.

Thanks

BBPP6nz.png


#12 internetaccess

internetaccess
  • Topic Starter

  • Members
  • 9 posts
  • OFFLINE
  •  
  • Local time:04:15 AM

Posted 19 August 2013 - 02:53 PM

Yes, there is a Temp folder. This is how it looks inside of it. Thanks.

temp.png


Edited by internetaccess, 19 August 2013 - 03:15 PM.


#13 Starbuck

Starbuck

    'r Brudiwr


  • Malware Response Team
  • 4,149 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Midlands, UK
  • Local time:03:15 AM

Posted 19 August 2013 - 03:41 PM

That's fine then.
I had a feeling that the 'temp' folder would have been re-created.
I inadvertently removed it with the Otl fix.... but all is well now.
My apologies for the mistake.

You can hide the 'Hidden Files/Folders' now be following the previous instructions and de-selecting Show Hidden Files, Folders and Drives.
Click Apply... OK

Let's get an Online scan done now and check for anything else that may be on the system:

I'd like you to do an ESET OnlineScan
64Bit users, please see note at the bottom.

You may find it beneficial to close your resident AV program before running the scan.

It's been found that on some systems the Eset's Online Scan fails during the database download ( around 20% )
To prevent this happening:
When the Computer scan settings display shows, click the Advanced option, the place a check next to the following (if it is not already checked):

Enable Anti-Stealth technology

eset.png
  • Hold down Control and click on the following link to open ESET OnlineScan in a new window.
    ESET OnlineScan
  • Click the esetOnline.png button.
  • For alternate browsers only: (Microsoft Internet Explorer users can skip these steps)
    • Click on esetSmartInstall.png to download the ESET Smart Installer.
      Save it to your desktop.
    • Double click on the esetSmartInstallDesktopIcon.png icon on your desktop.
  • Check esetAcceptTerms.png
  • Click the esetStart.png button.
  • Accept any security warnings from your browser.
  • Check esetScanArchives.png
  • Make sure that the option Remove found threats is ticked, and the option Scan unwanted applications is checked
  • Click the Start button.
  • ESET will then download updates for itself, install itself, and begin scanning your computer. Please be patient as this can take some time.
  • When the scan completes, push esetListThreats.png
  • Click esetExport.png, and save the file to your desktop using a unique name, such as ESETScan.
    Include the contents of this report in your next reply.
  • Click the esetBack.png button.
  • Click esetFinish.png
A log file will be saved here: C:\Program Files\ESET\ESET Online Scanner\log.txt

Note:
As you are running a 64bit system:
The ESET Online Scanner is a 32-bit application, which means it must be run through the 32-bit version of Internet Explorer, and as an Administrator. To do so, right-click on the Internet Explorer (32-bit) icon in the Start Menu and select "Run as administrator" from the context menu.

BBPP6nz.png


#14 internetaccess

internetaccess
  • Topic Starter

  • Members
  • 9 posts
  • OFFLINE
  •  
  • Local time:04:15 AM

Posted 20 August 2013 - 01:42 PM

Thanks again, it took me a while to scan the whole drive, but here's the ESET report.

 


C:\Program Files (x86)\PDFReader\Uninstall\Uninstall.exe a variant of Win32/InstallCore.AX application cleaned by deleting - quarantined
C:\Program Files (x86)\v9Soft\v9ins.exe a variant of Win32/ELEX application cleaned by deleting - quarantined
C:\Program Files (x86)\VideoConverter\VideoConverter.exe a variant of Win32/InstallCore.A application cleaned by deleting - quarantined
C:\Users\Jola\AppData\Local\Google\Chrome\User Data\Default\Extensions\niapdbllcanepiiimjjndipklodoedlc\1.0.3_0\yl.js JS/Adware.Yontoo.A application cleaned by deleting - quarantined
C:\Users\Julia\AppData\Roaming\Video Converter Packages\uninstaller.exe a variant of Win32/InstallCore.AZ application cleaned by deleting - quarantined
C:\Users\Julia\Downloads\Bejbi.Blues.FilmPL.2013.rar.exe Win32/InstalleRex.I application cleaned by deleting - quarantined
C:\Users\Julia\Downloads\druhny__bridesmaids_-2011-_[dvdriprmvbmrboss]_[lektor_pl]_[ekipa_tnt].exe a variant of Win32/MediaGet application cleaned by deleting - quarantined
C:\Users\Julia\Downloads\iLividSetupV1.exe Win32/Toolbar.SearchSuite application cleaned by deleting - quarantined
C:\Users\Julia\Downloads\jak_ona_to_robi__i_dont_know_how_she_does_it__-2011-_[r5rip_xvidrmvbstarky]_[eng]_[tnttorrent].exe a variant of Win32/MediaGet application cleaned by deleting - quarantined
C:\Users\Julia\Downloads\PDFReaderSetup (1).exe a variant of Win32/InstallCore.M application cleaned by deleting - quarantined
C:\Users\Julia\Downloads\PDFReaderSetup (2).exe a variant of Win32/InstallCore.AX application cleaned by deleting - quarantined
C:\Users\Julia\Downloads\PDFReaderSetup.exe a variant of Win32/InstallCore.G application deleted - quarantined
C:\Users\Julia\Downloads\Photoscape_Downloader.exe a variant of Win32/ELEX application cleaned by deleting - quarantined
C:\Users\Julia\Downloads\SoftonicDownloader_for_safari.exe Win32/SoftonicDownloader.E application cleaned by deleting - quarantined
C:\Users\Julia\Downloads\SweetImSetup.exe a variant of Win32/SweetIM.C application cleaned by deleting - quarantined
C:\Users\Julia\Downloads\VideoConverterSetup.exe a variant of Win32/InstallCore.BF application cleaned by deleting - quarantined
C:\Users\Julia\Downloads\your_file_download (1).exe a variant of Win32/Adware.MediaFinder.F application cleaned by deleting - quarantined
C:\Users\Julia\Downloads\your_file_download.exe a variant of Win32/Adware.MediaFinder.F application cleaned by deleting - quarantined
C:\_OTL\MovedFiles\08192013_192958\C_Users\Julia\AppData\Local\Temp\105575517.Uninstall\Uninstall.exe a variant of Win32/InstallCore.M application cleaned by deleting - quarantined
C:\_OTL\MovedFiles\08192013_192958\C_Users\Julia\AppData\Local\Temp\3543937.Uninstall\uninstaller.exe a variant of Win32/InstallCore.AZ application cleaned by deleting - quarantined
C:\_OTL\MovedFiles\08192013_192958\C_Users\Julia\AppData\Local\Temp\440B482D-BAB0-7891-BF16-261CEE457CD9\BExternal.dll a variant of Win32/Toolbar.Babylon.F application cleaned by deleting - quarantined
C:\_OTL\MovedFiles\08192013_192958\C_Users\Julia\AppData\Local\Temp\440B482D-BAB0-7891-BF16-261CEE457CD9\IECookieLow.dll a variant of Win32/Toolbar.Babylon.E application cleaned by deleting - quarantined
C:\_OTL\MovedFiles\08192013_192958\C_Users\Julia\AppData\Local\Temp\440B482D-BAB0-7891-BF16-261CEE457CD9\MyBabylonTB.exe Win32/Toolbar.Babylon application cleaned by deleting - quarantined
C:\_OTL\MovedFiles\08192013_192958\C_Users\Julia\AppData\Local\Temp\440B482D-BAB0-7891-BF16-261CEE457CD9\Setup.exe a variant of Win32/Toolbar.Babylon.H application cleaned by deleting - quarantined
C:\_OTL\MovedFiles\08192013_192958\C_Users\Julia\AppData\Local\Temp\64D6A427-BAB0-7891-8ACB-50ADD263E9E6\Latest\BExternal.dll a variant of Win32/Toolbar.Babylon.F application cleaned by deleting - quarantined
C:\_OTL\MovedFiles\08192013_192958\C_Users\Julia\AppData\Local\Temp\64D6A427-BAB0-7891-8ACB-50ADD263E9E6\Latest\IEHelper.dll Win32/Toolbar.Babylon.E application cleaned by deleting - quarantined
C:\_OTL\MovedFiles\08192013_192958\C_Users\Julia\AppData\Local\Temp\64D6A427-BAB0-7891-8ACB-50ADD263E9E6\Latest\Setup.exe a variant of Win32/Toolbar.Babylon.H application cleaned by deleting - quarantined
C:\_OTL\MovedFiles\08192013_192958\C_Users\Julia\AppData\Local\Temp\7ZipSfx.000\v9ht.exe a variant of Win32/ELEX application cleaned by deleting - quarantined
C:\_OTL\MovedFiles\08192013_192958\C_Users\Julia\AppData\Local\Temp\C6C9C434-BAB0-7891-819F-26C848F3C0EC\Setup.exe a variant of Win32/Toolbar.Babylon.H application cleaned by deleting - quarantined
C:\_OTL\MovedFiles\08192013_192958\C_Users\Julia\AppData\Local\Temp\C6C9C434-BAB0-7891-819F-26C848F3C0EC\Latest\IECookieLow.dll a variant of Win32/Toolbar.Babylon.E application cleaned by deleting - quarantined
C:\_OTL\MovedFiles\08192013_192958\C_Users\Julia\AppData\Local\Temp\C6C9C434-BAB0-7891-819F-26C848F3C0EC\Latest\IEHelper.dll a variant of Win32/Toolbar.Babylon.E application cleaned by deleting - quarantined
C:\_OTL\MovedFiles\08192013_192958\C_Users\Julia\AppData\Local\Temp\C6C9C434-BAB0-7891-819F-26C848F3C0EC\Latest\MyBabylonTB.exe a variant of Win32/Toolbar.Babylon application cleaned by deleting - quarantined
C:\_OTL\MovedFiles\08192013_192958\C_Users\Julia\AppData\Local\Temp\C6C9C434-BAB0-7891-819F-26C848F3C0EC\Latest\Setup.exe a variant of Win32/Toolbar.Babylon.H application cleaned by deleting - quarantined
C:\_OTL\MovedFiles\08192013_192958\C_Users\Julia\AppData\Local\Temp\is-6M8GG.tmp\setup.exe a variant of Win32/Adware.MediaFinder.F application cleaned by deleting - quarantined
C:\_OTL\MovedFiles\08192013_192958\C_Users\Julia\AppData\Local\Temp\is-L256E.tmp\PromoSpeedTB.exe Win32/SpeedUpMyPC application cleaned by deleting - quarantined
C:\_OTL\MovedFiles\08192013_192958\C_Users\Julia\AppData\Local\Temp\is-L256E.tmp\setup.exe a variant of Win32/Adware.MediaFinder.F application cleaned by deleting - quarantined
C:\_OTL\MovedFiles\08192013_192958\C_Users\Julia\AppData\Local\Temp\is1373634743\dp.exe multiple threats cleaned by deleting - quarantined
C:\_OTL\MovedFiles\08192013_192958\C_Users\Julia\AppData\Local\Temp\is1373634743\MyBabylonTB.exe a variant of Win32/Toolbar.Babylon.A application cleaned by deleting - quarantined
C:\_OTL\MovedFiles\08192013_192958\C_Users\Julia\AppData\Local\Temp\is1373634743\setup.exe Win32/Toolbar.Funmoods application cleaned by deleting - quarantined
C:\_OTL\MovedFiles\08192013_192958\C_Users\Julia\AppData\Local\Temp\is1438683437\dealply.exe multiple threats cleaned by deleting - quarantined
C:\_OTL\MovedFiles\08192013_192958\C_Users\Julia\AppData\Local\Temp\is1438683437\MyBabylonTB.exe Win32/Toolbar.Babylon application cleaned by deleting - quarantined
C:\_OTL\MovedFiles\08192013_192958\C_Users\Julia\AppData\Local\Temp\is1590112554\uninstaller.exe a variant of Win32/InstallCore.AZ application cleaned by deleting - quarantined
C:\_OTL\MovedFiles\08192013_192958\C_Users\Julia\AppData\Local\Temp\is1590112554\yontoo-c2.exe multiple threats cleaned by deleting - quarantined
C:\_OTL\MovedFiles\08192013_192958\C_Users\Julia\AppData\Local\Temp\OfferID15\wssetup.exe Win32/SweetIM.E application cleaned by deleting - quarantined
C:\_OTL\MovedFiles\08192013_192958\C_Users\Julia\AppData\Local\Temp\OfferID9000\bundlesweetimsetup.exe a variant of Win32/SweetIM.C application cleaned by deleting - quarantined
C:\_OTL\MovedFiles\08192013_192958\C_Users\Julia\AppData\Local\Temp\OfferID9001\bundlesweetimsetup.exe a variant of Win32/SweetIM.C application cleaned by deleting - quarantined
C:\_OTL\MovedFiles\08192013_192958\C_Users\Julia\AppData\Local\Temp\OfferID9999\bundlesweetimsetup.exe a variant of Win32/SweetIM.C application cleaned by deleting - quarantined
C:\_OTL\MovedFiles\08192013_192958\C_Users\Julia\AppData\Roaming\mozilla\Firefox\Profiles\8kg6a5z5.default\extensions\oicqk@lmjlqlaxla.com\content\bg.js Win32/Adware.MultiPlug.H application cleaned by deleting - quarantined
 


#15 Starbuck

Starbuck

    'r Brudiwr


  • Malware Response Team
  • 4,149 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Midlands, UK
  • Local time:03:15 AM

Posted 20 August 2013 - 02:53 PM

Hi internetaccess

How is the system running now?
Any problems?

BBPP6nz.png





0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users