• بادئ الموضوع بادئ الموضوع ammj
  • تاريخ البدء تاريخ البدء

ammj

زيزوومى مبدع
إنضم
9 ديسمبر 2008
المشاركات
1,727
مستوى التفاعل
5
النقاط
670
غير متصل
السلام عليكم ورحمة الله وبركاته

اريد ان اسئلكم اخواني عن

هذا الاسم هل هو فايروس

flec006
وجدةمشغل نفسة في جدار الحماية للوندوز


اولاً الجهاز بدأ من اسبوع عند تشغيلة يعطي رسالة ان البيتافندر غير مشغل واقوم بتشغيلة
وكان يغلق وانا لا اعلم
قبل يومين النورثن انتر نت سيكورتي يرسل لي رسالة بأنه هناك هاك يجب اعادة تشغيل الجهاز وكنت اطنش ثم اخر مرة طلب مني اعادة التشغيل قمت بإخراصة ووقفت جميع الحماية التي بداخل النورثن((لاني كنت اقوم بعمل والنورث يقفل علي فأحببت ايقافه لفترة ساعة))

عندها لاحظت اختفاء علامة النورثن ثم لحق به الادوير وتلاشت ايقونته هو الاخر
قمت احاول اعادة تشغيل النورثن لا يظهر لي شيء على الشاشة ولا كأني فعلت شئ
احاول تشغيل الادوير يعطيني رسالة انه التطبيق خاطئ
اردت تشغيل البيتافندر ايضاً يعطي اشارة بالخطأ بالتطبيق
...............................................................................................
(دخلت على الخدمات عن طريق لوحة التحكم) وجدة انه تحديث الوندز معطل وايضاً النورثن والسيكورتي سنتر والبيتافندر والادوير
جميعها معطله
اعدة تشغيلها ووضعتهاتلقائي ومرة يدوي ايضاً لا فائده اجدها عادة الى التعطيل

حاولت اعد تحميل النورثن طلب مني ازالت الاول فوافقت على الازالة وجلس يفر ويفر بلا فائدة
نزلت من موقعنا زيزوم Alfa Autorun Killer 2.0 وعند تشغيله تطلع الشاشه الزرقاء وانه هناك خطأ طبعاً هناك كتابات وارقام تعد توصل لـ100 ثم اقوم بإعادة تشغيل الجهاز من الزر الرئيسي
من موقعنا دخلت على( افحص جهازك من هنا ) قمت بمحاولة فحص الجهاز اونلاين مع النورث ولكن بلافائدة يطلب ان يكون لديا متصفح اكسبلور وانا حاذفه من اسبوعين او اكثر كذلك الكاسبر والبقيه
الوحيد الذي قام بتحميل نفسة هو البيتا فندر واصبح على شكل ايقونه مثبته في اسفل المتصفح اضغط عليه يعطيني تقرير من ضمنها الاسم الذي وضعته بالاعلى flec006 اضغط عليه يمين وينتهي
ابحث من جدي بنفس الوقت اجده عاد اكثر من واحد وهكذا
نزلت Win32Sality Remover 1.1.0.153 ولام يفيد معي ,, حملت الايفرا وعند محاولت تنصيبة Cannot create basicavarkt.dll

حملت برنامج المكافي Zyzoom.org.McAfee
Engine Version
Engine Load Time : 16287 milliseconds
AV DAT Version : 5492.00 4888 detections Built Sunday, January 11, 2009
Extra DAT : 0 detections

Memory : Clean
Please wait ... building list of critical files to scanCritical : Clean
Scanning the computer's cookie directories
Cookies : Clean
c:\pagefile.sys : Scan Failed
c:\Boot\BCD : Scan Failed
c:\Boot\BCD.LOG : Scan Failed
c:\Documents and Settings\All Users\Microsoft\Search\Data\Applications\Windows\MSS.log : Scan Failed
c:\Documents and Settings\All Users\Microsoft\Search\Data\Applications\Windows\MSStmp.log : Scan Failed
c:\Documents and Settings\All Users\Microsoft\Search\Data\Applications\Windows\tmp.edb : Scan Failed
c:\Documents and Settings\All Users\Microsoft\Search\Data\Applications\Windows\Windows.edb : Scan Failed
c:\Documents and Settings\All Users\Microsoft\Windows Defender\Definition Updates\Default\MpEngine.dll : Scan Failed
c:\Documents and Settings\ap-c\NTUSER.DAT : Scan Failed
c:\Documents and Settings\ap-c\ntuser.dat.LOG1 : Scan Failed
c:\Documents and Settings\ap-c\ntuser.dat.LOG2 : Scan Failed
....................................................................................................
....................................................................................................
طبعاً الفضل لله اولاً واخراً

عندي برنامج Ad-Aware SE Personal موجود على الدي d لم انصبه بعد ,,, فقمت بتنصيبة انظر الصورة
طلع لي بلاوي علماً ان اخر تحديث له من 2005

ad-Aware_SE_Personal.JPG.html

هذي نبذه من الادوير

2]=File : C:\Users\ap-c\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\GLK2607.tmp
obj[43]=File : C:\Users\ap-c\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\GLK2607.tmp
obj[44]=File : C:\Users\ap-c\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\GLK2607.tmp
obj[45]=File : C:\Users\ap-c\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\GLK2607.tmp
obj[46]=File : C:\Users\ap-c\Local Settings\Application Data\Application Data\Application Data\Application Data\Temp\GLK2607.tmp
obj[47]=File : C:\Users\ap-c\Local Settings\Application Data\Application Data\Application Data\Temp\GLK2607.tmp
obj[48]=File : C:\Users\ap-c\Local Settings\Application Data\Application Data\Temp\GLK2607.tmp
obj[49]=File : C:\Users\ap-c\Local Settings\Application Data\Temp\GLK2607.tmp
obj[50]=File : C:\Users\ap-c\Local Settings\Temp\GLK2607.tmp
هل هذا اسم لفايروس ايضاً
.................................................................................................................................................................
الان الوضع انحل معاي والنورثن شغال زي الحلاوة والحمد لله واكتشف انظر الصورة 133 فايروس و3تروجان

norto.JPG.html


اسف اذا طولت الموضوع
والسلام عليكم
 

توقيع : ammj
طيب يالغلا الحين هاجيك جديد
 

توقيع : KoNaMi
ابشر :d:

وهذا التقرير مسدوح امامك

ComboFix 09-04-25.A3 - ap-c 04/26/2009 7:26.1 - NTFSx86
Microsoft® Windows Vista™ Home Premium 6.0.6001.1.1256.966.1033.15.2038.1082 [GMT 3:00]
Running from: c:\users\ap-c\Desktop\ComboFix.exe
AV: Protector Plus Anti-virus Software *On-access scanning disabled* (Updated)
* Created a new restore point
.

((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.

c:\users\ap-c\AppData\Roaming\drivers\downld
c:\users\ap-c\AppData\Roaming\drivers\downld\1001588.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\100339.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1004131.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\100495.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1006378.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1007626.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1007641.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1008686.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1009825.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1009981.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1011026.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1012290.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\101275.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\101338.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\101509.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\101681.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\102211.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\102664.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\102679.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1028592.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1030573.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1031073.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\103506.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\103537.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1038202.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1040620.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1040698.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1041540.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1043022.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1043038.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1043818.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1043958.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\104957.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\105331.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1059137.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1061181.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1061976.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\106533.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\106626.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1066376.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1068918.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1071305.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1071321.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1073318.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\107515.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\107656.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\107671.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1080603.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1083426.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\108358.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1087248.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1087436.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1088325.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1089838.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1092677.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1093660.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1096016.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1096390.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1097654.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1099307.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1099463.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1102537.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1106203.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1107919.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1108090.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1108839.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1109993.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1111132.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1112021.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1116436.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1116452.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1117856.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1119962.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1120321.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\112336.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\112367.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\112461.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\113053.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\113475.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1141771.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1143502.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\114894.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1149056.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1149508.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\115955.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\116236.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\116470.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\116485.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\116626.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1169586.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1172690.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1174266.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1177167.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1178899.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1180007.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\119184.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\119668.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\119824.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\120167.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1202876.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1204577.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1204936.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\120775.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\120791.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\121415.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\121446.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\121680.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\122226.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\122242.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\122679.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\122772.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\122881.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1231783.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1234045.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1234373.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1234763.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\123583.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1236370.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\124363.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\125003.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\125019.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1253343.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1253483.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1253499.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1253608.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1253951.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1253967.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1254092.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1254310.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1254326.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1254513.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1254762.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1254981.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1255090.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1255386.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1255418.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1255558.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1255808.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1255823.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1257071.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\125892.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\126033.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1261548.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1261782.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1262157.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1264419.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\126860.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1273529.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\127546.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\127562.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\127671.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\127967.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\127983.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1280003.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1280846.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\128888.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1301859.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\130198.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1304667.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1305229.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1306087.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1307413.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1308380.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1308754.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1310002.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\131009.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1311937.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1312015.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1312389.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1312576.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\131399.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1313996.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1317880.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1317896.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1325025.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1327740.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1327755.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1337053.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\133739.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1339954.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1342326.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1342638.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1342716.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1343995.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\135112.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\135393.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\135424.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1354650.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\135783.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\135798.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1358175.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1358550.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\135954.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1362091.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1364665.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1364681.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1365024.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1365944.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1366709.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1366943.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1367177.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1367208.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1367925.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1371108.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\137156.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\137171.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\137296.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1373230.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\137733.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\137858.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\138622.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\138872.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1393432.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\139605.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\140010.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1401294.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1403603.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1403837.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1404164.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1404601.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1405397.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1405413.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\140650.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1409032.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1409515.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1411419.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1411434.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1411809.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1414523.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\141617.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1417830.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\141976.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\141992.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1420420.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\142740.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\143676.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\144144.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1441808.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\144316.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1444725.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1446441.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1447034.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1449576.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1449592.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\144971.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\145361.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\145626.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\145954.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\145970.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\146391.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\146625.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\147327.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1480184.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\148840.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1491338.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1492586.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1495737.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1498202.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1498842.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1499762.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1501509.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1501821.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1502866.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1502882.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1511259.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1512086.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1512102.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\152116.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\152740.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\153224.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1532943.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1540650.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\154160.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\154191.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\154347.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\154737.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1553847.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1555485.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\155595.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\155610.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\156625.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1566718.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1569962.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1570040.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1570352.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\157046.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1572271.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\157280.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1573160.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1573441.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1574736.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\157498.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1575329.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1576265.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\157810.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\158029.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\158107.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\158294.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\159043.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\159089.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\159183.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1605047.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1607262.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\160759.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1607621.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\160774.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\160790.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\161071.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\16168146.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\16170034.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\16170049.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\161929.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\162022.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\162116.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\162131.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\16249422.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\16252917.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\16254742.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\16267862.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\16276411.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\162787.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\16279499.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\163239.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1635530.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\163957.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\164097.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1641192.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1641988.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1642986.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1644390.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\164596.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\164612.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\16531316.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\16534077.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\16534093.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\16547353.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\16549709.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\16552642.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\165548.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\165735.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\165891.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\16703495.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\16705289.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\16711794.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\16713619.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\16713635.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\16717613.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\16719344.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\16778983.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\16782291.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\16784365.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\16787251.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\16788671.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\16790091.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\169011.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1705512.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1705995.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1708444.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1708803.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1716479.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1716603.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\171944.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\171975.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\172037.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\172739.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\172989.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\17303974.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\17311820.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\17311898.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\173909.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\174674.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\174799.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\174939.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\17526712.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\17532546.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\175391.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\175688.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\175797.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\175813.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\175969.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1762624.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1764792.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1765120.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1765478.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\176671.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1767007.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1767257.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1767272.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\17709576.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\17714896.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\17715598.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\17716409.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\17718858.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\17718874.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1772654.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1772998.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1773762.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\177513.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1776133.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1776508.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\178995.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1792451.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1794557.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\179900.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\180961.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1821405.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\182302.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1823916.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1824197.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1824650.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1826038.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\183098.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\185703.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\186499.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1868221.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\186935.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1870670.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1870919.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1871247.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1872854.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1876411.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\188449.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\188714.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\188886.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1897798.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1899234.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\190071.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\190274.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\190383.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\191787.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\192286.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\196046.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\197700.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\198261.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\1994925.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\199634.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\2004222.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\2004878.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\200851.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\203269.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\204189.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\205234.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\205297.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\205468.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\206358.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\206701.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\206888.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\207340.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\208152.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\208230.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\208323.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\208370.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\208698.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\209010.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\209041.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\209166.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\209961.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\210086.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\210211.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\210991.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\211022.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\211147.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\2118306.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\212176.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\212223.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\2123048.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\2123282.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\212348.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\2123626.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\2124936.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\214095.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\215125.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\215640.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\216669.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\218151.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\219961.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\222473.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\223845.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\223939.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\225062.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\225078.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\225140.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\225203.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\225249.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\226201.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\226263.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\226435.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\226778.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\227043.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\227075.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\227184.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\227371.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\227402.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\227605.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\227886.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\228135.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\228369.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\228603.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\228619.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\228697.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\228713.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\228744.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\229056.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\229134.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\247776.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\255826.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\256793.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\280552.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\287806.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\304919.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\305933.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\307009.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\307711.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\3090504.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\3091144.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\3091159.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\3147959.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\315262.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\3159519.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\3160159.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\3171437.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\3176554.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\3177927.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\324918.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\325074.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\325090.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\343092.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\3438620.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\3441085.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\3441101.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\346415.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\346462.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\3479742.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\3480522.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\3481053.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\351548.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\354075.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\354325.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\354340.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\354652.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\354668.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\354683.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\357117.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\357164.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\3603685.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\3605058.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\3605354.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\367538.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\3685882.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\368661.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\3687426.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\369410.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\369659.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\371516.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\371625.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\371641.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\372530.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\373700.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\376352.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\378630.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\379004.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\380174.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\392077.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\393184.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\395571.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\396866.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\396944.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\404728.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\405664.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\407287.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\407895.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\408457.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\408847.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\409518.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\409533.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\409986.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\410048.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\410891.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\411327.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\412092.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\412248.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\417552.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\417864.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\417942.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\418925.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\419486.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\420407.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\420797.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\421717.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\422169.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\424088.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\424416.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\424899.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\427083.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\427099.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\429486.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\430235.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\431046.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\431576.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\432356.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\434571.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\436755.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\437286.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\437770.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\441919.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\442044.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\444852.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\445289.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\447145.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\452824.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\454025.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\454040.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\456287.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\456365.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\456380.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\457894.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\458128.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\458237.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\460046.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\460312.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\462698.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\464976.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\467098.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\473213.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\473260.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\473338.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\473385.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\473400.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\475085.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\476926.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\480779.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\481575.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\482370.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\485631.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\487284.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\487362.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\489141.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\489156.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\491153.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\497658.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\498688.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\498750.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\498813.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\499343.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\499889.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\499905.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\501683.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\503961.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\504819.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\515411.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\515552.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\515895.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\521012.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\521651.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\522806.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\524522.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\526737.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\526955.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\529202.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\529358.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\530965.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\531214.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\531542.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\533414.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\534662.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\535114.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\535442.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\535489.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\535629.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\536955.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\537797.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\537813.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\538733.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\538811.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\538983.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\540527.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\541042.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\541058.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\543881.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\544817.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\544911.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\544927.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\554521.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\556221.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\556237.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\561135.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\561322.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\562882.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\562898.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\571135.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\573553.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\574770.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\575955.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\577390.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\578857.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\579325.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\579668.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\580916.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\581727.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\581899.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\582336.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\582523.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\583303.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\583334.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\584223.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\584379.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\585456.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\586844.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\587156.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\587250.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\588404.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\588482.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\588934.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\592335.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\600307.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\604067.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\604597.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\605330.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\606937.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\607280.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\609152.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\610322.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\612444.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\613130.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\615049.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\617280.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\617311.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\617545.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\617623.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\618419.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\618512.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\620727.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\620743.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\620759.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\621351.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\622506.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\622677.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\622693.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\623894.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\623925.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\623941.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\625735.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\626250.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\626266.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\627264.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\627342.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\627358.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\628278.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\628294.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\631757.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\631913.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\633270.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\633301.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\634175.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\634190.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\635938.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\637669.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\639385.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\639604.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\640430.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\640883.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\640930.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\640976.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\641398.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\642037.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\642318.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\642724.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\643753.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\644892.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\644908.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\644970.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\645890.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\647201.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\649042.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\649400.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\653300.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\655032.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\655516.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\655890.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\656857.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\656873.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\657013.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\657091.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\657263.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\657279.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\657996.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\658027.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\659010.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\659307.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\660383.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\660679.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\661147.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\661678.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\661709.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\662458.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\680554.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\682020.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\684298.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\685000.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\685281.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\686607.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\686622.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\687558.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\688510.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\689696.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\690351.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\690491.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\690585.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\691630.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\691677.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\692769.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\693783.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\694188.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\694688.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\696918.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\698541.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\701474.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\702753.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\704157.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\705155.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\706715.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\707948.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\708057.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\712628.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\714000.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\714188.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\719414.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\71947.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\724640.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\725576.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\725872.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\730209.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\730240.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\730256.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\731894.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\734905.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\735014.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\735029.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\73507.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\736184.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\736199.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\73679.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\73772.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\73788.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\739366.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\742221.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\742751.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\744701.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\74818.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\74849.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\74864.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\750146.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\752704.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\755606.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\76050.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\763936.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\76471.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\766464.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\766900.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\767946.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\768211.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\769131.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\770114.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\770582.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\770613.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\770629.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\775246.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\778148.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\778164.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\780145.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\780800.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\783140.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\784092.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\785059.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\785652.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\788210.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\791159.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\792797.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\792812.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\793124.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\801657.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\803529.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\80465.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\80824.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\81120.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\81479.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\81604.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\818942.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\82165.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\822484.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\823248.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\826664.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\82789.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\82883.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\830502.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\83320.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\833326.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\834620.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\83507.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\838770.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\839176.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\83944.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\83975.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\840860.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\84193.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\842311.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\843809.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\84396.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\844995.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\845447.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\84614.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\846399.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\847194.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\84802.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\848957.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\84926.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\849955.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\85270.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\85363.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\85644.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\858317.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\860329.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\86206.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\86346.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\86440.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\866055.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\86908.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\871327.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\87235.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\87485.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\87797.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\878472.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\880625.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\881109.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\88530.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\885368.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\886912.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\886928.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\88951.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\890672.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\891015.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\892388.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\892497.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\89419.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\89575.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\89872.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\899470.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\90371.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\907691.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\90839.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\90995.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\912075.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\91276.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\912980.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\91385.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\914649.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\914711.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\915897.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\91666.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\91712.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\917176.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\91806.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\918393.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\919563.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\92056.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\92165.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\92461.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\931669.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\93444.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\93569.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\93881.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\94505.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\94614.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\947284.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\94926.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\95644.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\961137.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\962182.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\964881.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\96564.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\965833.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\97266.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\973040.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\976410.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\976597.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\97719.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\978188.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\979062.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\980825.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\98358.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\98374.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\99138.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\992821.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\99559.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\995723.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\996487.exe
c:\users\ap-c\AppData\Roaming\drivers\downld\99981.exe
c:\windows\system32\ban_list.txt
c:\windows\system32\x64

.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.

-------\Legacy_SK9OU0S
-------\Legacy_SROSA
-------\Service_srosa


((((((((((((((((((((((((( Files Created from 2009-05-26 to 2009-4-26 )))))))))))))))))))))))))))))))
.

2009-04-25 03:59 . 2009-04-25 03:48 15688 ----a-w c:\windows\system32\lsdelete.exe
2009-04-25 03:48 . 2009-04-25 03:46 64160 ----a-w c:\windows\system32\drivers\Lbd.sys
2009-04-25 03:23 . 2009-04-25 03:23 -------- dc-h--w c:\users\All Users\{7972B2E5-3E09-4E5E-81B7-FE5819D6772F}
2009-04-25 03:23 . 2009-04-25 03:23 -------- dc-h--w c:\programdata\{7972B2E5-3E09-4E5E-81B7-FE5819D6772F}
2009-04-25 03:23 . 2009-04-25 03:23 -------- d-----w c:\program files\Lavasoft
2009-04-24 21:25 . 2009-04-24 21:25 -------- d-----w c:\users\ap-c\AppData\Roaming\Intel
2009-04-24 21:25 . 2009-04-24 21:25 -------- d-----w c:\users\Public\Roaming
2009-04-24 21:25 . 2009-04-24 21:25 -------- d-----w c:\users\Default\Roaming
2009-04-24 21:25 . 2009-04-24 21:25 -------- d-----w c:\users\ap-c\Roaming
2009-04-24 21:25 . 2009-04-24 21:25 -------- d-----w c:\users\All Users\Roaming
2009-04-24 21:25 . 2009-04-24 21:25 -------- d-----w c:\programdata\Roaming
2009-04-24 21:24 . 2009-04-24 21:24 -------- d-----w c:\program files\Cisco
2009-04-24 21:24 . 2009-04-24 21:24 -------- d-----w c:\program files\Common Files\Intel
2009-04-24 21:24 . 2009-04-24 21:24 -------- d-----w c:\users\All Users\Intel
2009-04-24 21:24 . 2009-04-24 21:24 -------- d-----w c:\programdata\Intel
2009-04-24 21:20 . 2009-04-26 03:44 -------- d-----w C:\Protector Plus
2009-04-24 19:13 . 2009-04-24 19:13 -------- d-----w c:\users\All Users\Office Genuine Advantage
2009-04-24 19:13 . 2009-04-24 19:13 -------- d-----w c:\programdata\Office Genuine Advantage
2009-04-24 18:41 . 2008-06-20 01:14 105016 ----a-w c:\windows\system32\PresentationCFFRasterizerNative_v0300.dll
2009-04-24 18:41 . 2008-06-20 01:14 97800 ----a-w c:\windows\system32\infocardapi.dll
2009-04-24 18:41 . 2008-06-20 01:14 43544 ----a-w c:\windows\system32\PresentationHostProxy.dll
2009-04-24 18:41 . 2008-06-20 01:14 37384 ----a-w c:\windows\system32\infocardcpl.cpl
2009-04-24 18:41 . 2008-06-20 01:14 11264 ----a-w c:\windows\system32\icardres.dll
2009-04-24 18:41 . 2008-06-20 01:14 622080 ----a-w c:\windows\system32\icardagt.exe
2009-04-24 18:41 . 2008-06-20 01:14 781344 ----a-w c:\windows\system32\PresentationNative_v0300.dll
2009-04-24 18:41 . 2008-06-20 01:14 326160 ----a-w c:\windows\system32\PresentationHost.exe
2009-04-24 18:34 . 2008-07-27 18:03 96760 ----a-w c:\windows\system32\dfshim.dll
2009-04-24 18:34 . 2008-07-27 18:03 282112 ----a-w c:\windows\system32\mscoree.dll
2009-04-24 18:34 . 2008-07-27 18:03 41984 ----a-w c:\windows\system32\netfxperf.dll
2009-04-24 18:33 . 2008-07-27 18:03 158720 ----a-w c:\windows\system32\mscorier.dll
2009-04-24 18:33 . 2008-07-27 18:03 83968 ----a-w c:\windows\system32\mscories.dll
2009-04-24 17:21 . 2009-04-26 04:06 -------- d-----w c:\users\All Users\Lavasoft
2009-04-24 17:21 . 2009-04-26 04:06 -------- d-----w c:\programdata\Lavasoft
2009-04-24 05:41 . 2004-08-04 05:00 506368 ----a-w c:\windows\system32\msxml.dll
2009-04-24 04:37 . 2009-04-24 04:37 45056 ----a-w c:\windows\system32\_PPCXM_.DLL
2009-04-24 04:37 . 2009-04-24 21:20 29360 ----a-w c:\windows\_SETUPD_.EXE
2009-04-24 01:05 . 2009-04-24 15:32 231925505 ----a-w c:\windows\MEMORY.DMP
2009-04-23 21:47 . 2009-04-23 21:47 -------- d-----w c:\program files\Yamicsoft
2009-04-23 05:13 . 2008-07-08 11:54 148496 ----a-w c:\windows\system32\drivers\84004954.sys
2009-04-22 15:58 . 2009-04-22 15:58 -------- d-----w c:\users\ap-c\AppData\Roaming\Uniblue
2009-04-22 11:42 . 2008-07-08 11:54 148496 ----a-w c:\windows\system32\drivers\16819938.sys
2009-04-22 11:40 . 2008-07-08 11:54 148496 ----a-w c:\windows\system32\drivers\90359797.sys
2009-04-22 11:39 . 2009-04-24 00:45 27795488 --sha-w c:\windows\system32\drivers\fidbox.dat
2009-04-22 11:39 . 2009-04-23 19:02 280052 --sha-w c:\windows\system32\drivers\fidbox.idx
2009-04-22 11:39 . 2008-07-08 11:54 148496 ----a-w c:\windows\system32\drivers\43236117.sys
2009-04-21 18:48 . 2009-04-21 18:48 -------- d-sh--w c:\windows\system32\%APPDATA%
2009-04-21 16:21 . 2009-04-21 16:21 -------- d-----w c:\users\All Users\Avira
2009-04-21 16:21 . 2009-04-21 16:21 -------- d-----w c:\programdata\Avira
2009-04-21 01:29 . 2009-04-21 01:29 -------- d-----w c:\windows\system32\msmq
2009-04-21 01:29 . 2009-04-21 01:29 -------- d-----w c:\program files\MSBuild
2009-04-20 19:08 . 2009-04-20 19:08 -------- d-----w c:\users\ap-c\AppData\Roaming\Malwarebytes
2009-04-20 19:08 . 2009-04-06 12:32 15504 ----a-w c:\windows\system32\drivers\mbam.sys
2009-04-20 19:08 . 2009-04-06 12:32 38496 ----a-w c:\windows\system32\drivers\mbamswissarmy.sys
2009-04-20 19:08 . 2009-04-20 19:11 -------- d-----w c:\program files\Malwarebytes' Anti-Malware
2009-04-20 19:08 . 2009-04-20 19:08 -------- d-----w c:\users\All Users\Malwarebytes
2009-04-20 19:08 . 2009-04-20 19:08 -------- d-----w c:\programdata\Malwarebytes
2009-04-20 14:09 . 2009-04-20 14:09 -------- d-----w c:\users\ap-c\AppData\Local\Mozilla
2009-04-20 12:35 . 2009-04-21 09:32 -------- dc-h--w c:\users\All Users\{83C91755-2546-441D-AC40-9A6B4B860800}
2009-04-20 12:35 . 2009-04-21 09:32 -------- dc-h--w c:\programdata\{83C91755-2546-441D-AC40-9A6B4B860800}
2009-04-19 18:33 . 2009-04-25 03:23 -------- d-----w c:\program files\Common Files\Wise Installation Wizard
2009-04-19 12:19 . 2009-04-19 19:26 805 ----a-w c:\windows\system32\drivers\SYMEVENT.INF
2009-04-19 12:19 . 2009-04-19 19:26 7386 ----a-w c:\windows\system32\drivers\SYMEVENT.CAT
2009-04-18 23:25 . 2009-04-19 11:32 46640 ----a-w c:\windows\system32\msln.exe
2009-04-18 04:09 . 2009-04-18 04:09 -------- d-----w C:\MFT 56287
2009-04-18 04:09 . 2009-04-18 04:09 -------- d-----w C:\MFT 33744
2009-04-18 00:33 . 2009-04-26 03:16 -------- d-----w c:\users\ap-c\AppData\Roaming\QuickScan
2009-04-17 16:39 . 2009-04-17 16:39 240128 ----a-w c:\users\ap-c\AppData\Local\royal86.sys
2009-04-16 19:41 . 2008-06-06 03:27 38912 ----a-w c:\windows\system32\xolehlp.dll
2009-04-16 19:41 . 2008-06-06 03:27 562176 ----a-w c:\windows\system32\msdtcprx.dll
2009-04-16 19:41 . 2008-12-06 04:42 376832 ----a-w c:\windows\system32\winhttp.dll
2009-04-15 12:45 . 2009-04-15 12:50 -------- d-----w c:\users\All Users\Arcade Lab
2009-04-15 12:45 . 2009-04-15 12:50 -------- d-----w c:\programdata\Arcade Lab
2009-04-14 19:24 . 2009-04-14 19:24 -------- d-----w c:\windows\Sun
2009-04-14 13:08 . 2009-04-26 04:32 -------- d--h--w c:\users\ap-c\AppData\Roaming\drivers
2009-04-09 13:29 . 2009-04-18 04:08 -------- d-----w C:\MFT 103516
2009-04-07 14:30 . 2009-04-21 16:58 -------- d-----w c:\users\All Users\Hold Trust Amok Mode
2009-04-07 14:30 . 2009-04-21 16:58 -------- d-----w c:\programdata\Hold Trust Amok Mode
2009-04-07 12:04 . 2009-04-20 19:42 -------- d-----w c:\program files\GooglePlusVideos
2009-04-07 12:03 . 2009-04-07 12:03 -------- d-----w c:\program files\Conduit
2009-04-05 12:12 . 2009-04-05 12:12 360192 ----a-w c:\windows\system32\TuneUpDefragService.exe
2009-04-05 12:12 . 2008-12-11 12:31 17152 ----a-w c:\windows\system32\authuitu.dll
2009-04-05 12:12 . 2008-12-11 12:31 27904 ----a-w c:\windows\system32\uxtuneup.dll
2009-04-01 13:15 . 2009-04-01 13:15 -------- d-----w c:\program files\Common Files\xing shared

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-04-26 04:33 . 2009-01-23 18:31 58123 ----a-w C:\aaw7boot.log
2009-04-26 03:44 . 2008-11-27 04:05 -------- d-----w c:\users\ap-c\AppData\Roaming\Nokia
2009-04-26 03:44 . 2009-01-18 20:48 -------- d-----w c:\program files\FinalUninstaller
2009-04-24 23:44 . 2009-01-23 02:02 -------- d-----w c:\program files\Microsoft
2009-04-24 21:25 . 2006-11-02 10:25 51200 ----a-w c:\windows\Inf\infpub.dat
2009-04-24 21:25 . 2006-11-02 10:25 143360 ----a-w c:\windows\Inf\infstrng.dat
2009-04-24 21:25 . 2006-11-02 10:25 86016 ----a-w c:\windows\Inf\infstor.dat
2009-04-24 21:24 . 2008-02-06 00:40 -------- d-----w c:\program files\Intel
2009-04-24 21:15 . 2008-11-20 01:17 -------- d-----w c:\program files\BitComet
2009-04-24 04:56 . 2008-02-06 01:31 -------- d-----w c:\programdata\CyberLink
2009-04-24 04:56 . 2008-11-24 13:15 -------- d-----w c:\program files\QuickTime
2009-04-24 04:46 . 2009-02-15 07:54 36628 ----a-w c:\windows\System32\perfc001.dat
2009-04-24 04:46 . 2009-02-15 07:54 107828 ----a-w c:\windows\System32\perfh001.dat
2009-04-24 00:24 . 2008-11-15 19:05 68128 ----a-w c:\users\ap-c\AppData\Local\GDIPFONTCACHEV1.DAT
2009-04-23 23:24 . 2008-11-27 04:05 -------- d-----w c:\programdata\PC Suite
2009-04-23 23:24 . 2008-02-06 00:40 -------- d-----w c:\programdata\NVIDIA
2009-04-23 23:24 . 2008-11-27 05:15 -------- d-----w c:\programdata\Nokia
2009-04-23 23:24 . 2008-11-27 04:03 -------- d-----w c:\program files\Nokia
2009-04-23 23:24 . 2008-11-24 15:53 -------- d-----w c:\program files\MpcStar
2009-04-23 23:24 . 2008-11-24 19:35 -------- d-----w c:\program files\CometBird
2009-04-23 23:24 . 2008-11-15 19:04 -------- d-----w c:\program files\Acer Inc
2009-04-22 01:13 . 2009-03-19 03:14 -------- d-----w c:\program files\TuneUp Utilities 2009
2009-04-21 23:07 . 2008-02-06 01:55 -------- d-----w c:\program files\Common Files\Symantec Shared
2009-04-21 01:29 . 2006-11-02 12:37 -------- d-----w c:\program files\Windows Journal
2009-04-16 20:10 . 2006-11-02 11:18 -------- d-----w c:\program files\Windows Mail
2009-04-16 19:55 . 2008-02-06 01:45 -------- d-----w c:\programdata\Microsoft Help
2009-04-09 14:27 . 2008-02-06 01:47 -------- d-----w c:\program files\Microsoft Works
2009-04-05 12:12 . 2009-03-19 03:15 603904 ----a-w c:\windows\System32\TUProgSt.exe
2009-04-01 13:15 . 2008-11-19 21:05 -------- d-----w c:\program files\Common Files\Real
2009-03-23 19:43 . 2008-02-06 02:07 -------- d-----w c:\program files\Yahoo!
2009-03-19 03:15 . 2009-03-19 03:15 -------- d-----w c:\users\ap-c\AppData\Roaming\TuneUp Software
2009-03-19 03:14 . 2009-03-19 03:14 -------- d-----w c:\programdata\TuneUp Software
2009-03-19 03:13 . 2009-03-19 03:13 -------- d-sh--w c:\programdata\{55A29068-F2CE-456C-9148-C869879E2357}
2009-03-18 08:27 . 2009-03-18 08:27 -------- d-----w c:\programdata\Yahoo!
2009-03-18 08:15 . 2009-03-18 08:15 152 ----a-w C:\YServer.txt
2009-03-17 03:38 . 2009-04-16 19:43 40960 ----a-w c:\windows\AppPatch\apihex86.dll
2009-03-17 03:38 . 2009-04-16 19:43 13824 ----a-w c:\windows\System32\apilogen.dll
2009-03-17 03:38 . 2009-04-16 19:43 24064 ----a-w c:\windows\System32\amxread.dll
2009-03-15 09:54 . 2008-11-15 21:07 680 ----a-w c:\users\ap-c\AppData\Local\d3d9caps.dat
2009-03-08 11:34 . 2009-03-26 14:48 914944 ----a-w c:\windows\System32\wininet.dll
2009-03-08 11:34 . 2009-03-26 14:49 43008 ----a-w c:\windows\System32\licmgr10.dll
2009-03-08 11:33 . 2009-03-26 14:49 18944 ----a-w c:\windows\System32\corpol.dll
2009-03-08 11:33 . 2009-03-26 14:49 109056 ----a-w c:\windows\System32\iesysprep.dll
2009-03-08 11:33 . 2009-03-26 14:49 109568 ----a-w c:\windows\System32\PDMSetup.exe
2009-03-08 11:33 . 2009-03-26 14:49 132608 ----a-w c:\windows\System32\ieUnatt.exe
2009-03-08 11:33 . 2009-03-26 14:49 107520 ----a-w c:\windows\System32\RegisterIEPKEYs.exe
2009-03-08 11:33 . 2009-03-26 14:49 107008 ----a-w c:\windows\System32\SetIEInstalledDate.exe
2009-03-08 11:33 . 2009-03-26 14:49 103936 ----a-w c:\windows\System32\SetDepNx.exe
2009-03-08 11:33 . 2009-03-26 14:49 420352 ----a-w c:\windows\System32\vbscript.dll
2009-03-08 11:32 . 2009-03-26 14:49 72704 ----a-w c:\windows\System32\admparse.dll
2009-03-08 11:32 . 2009-03-26 14:49 71680 ----a-w c:\windows\System32\iesetup.dll
2009-03-08 11:32 . 2009-03-26 14:49 66560 ----a-w c:\windows\System32\wextract.exe
2009-03-08 11:32 . 2009-03-26 14:49 169472 ----a-w c:\windows\System32\iexpress.exe
2009-03-08 11:31 . 2009-03-26 14:49 34816 ----a-w c:\windows\System32\imgutil.dll
2009-03-08 11:31 . 2009-03-26 14:49 48128 ----a-w c:\windows\System32\mshtmler.dll
2009-03-08 11:31 . 2009-03-26 14:49 45568 ----a-w c:\windows\System32\mshta.exe
2009-03-08 11:22 . 2009-03-26 14:49 156160 ----a-w c:\windows\System32\msls31.dll
2009-03-03 04:46 . 2009-04-16 19:43 3599328 ----a-w c:\windows\System32\ntkrnlpa.exe
2009-03-03 04:46 . 2009-04-16 19:43 3547632 ----a-w c:\windows\System32\ntoskrnl.exe
2009-03-03 04:39 . 2009-04-16 19:43 183296 ----a-w c:\windows\System32\sdohlp.dll
2009-03-03 04:39 . 2009-04-16 19:43 551424 ----a-w c:\windows\System32\rpcss.dll
2009-03-03 04:39 . 2009-04-16 19:43 26112 ----a-w c:\windows\System32\printfilterpipelineprxy.dll
2009-03-03 04:37 . 2009-04-16 19:43 98304 ----a-w c:\windows\System32\iasrecst.dll
2009-03-03 04:37 . 2009-04-16 19:43 54784 ----a-w c:\windows\System32\iasads.dll
2009-03-03 04:37 . 2009-04-16 19:43 44032 ----a-w c:\windows\System32\iasdatastore.dll
2009-03-03 03:04 . 2009-04-16 19:43 666624 ----a-w c:\windows\System32\printfilterpipelinesvc.exe
2009-03-03 02:38 . 2009-04-16 19:43 17408 ----a-w c:\windows\System32\iashost.exe
2009-02-22 07:27 . 2009-02-22 07:27 357768 ----a-w c:\windows\System32\SymXPep2.dll
2009-02-22 07:25 . 2009-02-22 07:25 115 ----a-w C:\FtpCmd.txt
2009-02-13 08:49 . 2009-04-16 19:43 72704 ----a-w c:\windows\System32\secur32.dll
2009-02-13 08:49 . 2009-04-16 19:43 1255936 ----a-w c:\windows\System32\lsasrv.dll
2009-02-09 03:10 . 2009-03-11 10:37 2033152 ----a-w c:\windows\System32\win32k.sys
2009-02-06 15:52 . 2009-02-06 15:52 49504 ----a-w c:\windows\System32\sirenacm.dll
2009-01-27 18:10 . 2008-11-25 23:25 9019 ----a-w C:\is.html
.

((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\egisPSDP]
@="{30A0A3F6-38AC-4C53-BB8B-0D95238E25BA}"
[HKEY_CLASSES_ROOT\CLSID\{30A0A3F6-38AC-4C53-BB8B-0D95238E25BA}]
2008-01-03 10:00 39472 ----a-w c:\acer\Empowering Technology\eDataSecurity\x86\PSDProtect.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Protector Plus Taskbar Control"="c:\protec~1\PPTbc.EXE" [2009-04-24 1278640]
"Protector Plus InstaUpdate"="c:\protec~1\PPInupdt.exe" [2009-04-24 1159856]
"Ad-Watch"="c:\program files\Lavasoft\Ad-Aware\AAWTray.exe" [2009-04-25 516440]

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"PromptOnSecureDesktop"= 0 (0x0)
"EnableUIADesktopToggle"= 0 (0x0)

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\YamicsoftDisabled]
2008-02-11 15:46 204800 ----a-w c:\windows\System32\igfxdev.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Lavasoft Ad-Aware Service]
@="Service"
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Flaw Else

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-]
"SunJavaUpdateSched"="c:\program files\Java\jre6\bin\jusched.exe"
"TkBellExe"="c:\program files\Common Files\Real\Update_OB\realsched.exe" -osboot
"PLFSet"=rundll32.exe c:\windows\PLFSet.dll,PLFDefSetting
"NvMediaCenter"=RUNDLL32.EXE c:\windows\system32\NvMcTray.dll,NvTaskbarInit
"HotKeysCmds"=c:\windows\system32\hkcmd.exe
"IgfxTray"=c:\windows\system32\igfxtray.exe
"Persistence"=c:\windows\system32\igfxpers.exe
"SynTPStart"=c:\program files\Synaptics\SynTP\SynTPStart.exe

[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"InternetSettingsDisableNotify"=dword:00000001
"AutoUpdateDisableNotify"=dword:00000001

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring]
"DisableMonitoring"=dword:00000001

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc\S-1-5-21-1558076486-623733560-8183397-1000]
"EnableNotificationsRef"=dword:00000021

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\DomainProfile]
"EnableFirewall"= 0 (0x0)

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\FirewallRules]
"{E30DF3D6-05B6-456F-9555-A796A7ED5D3D}"= UDP:25466:BitComet 25466 TCP(ED2K)
"{DBB35A59-A94A-4A3A-9509-535D567ED52C}"= TCP:25466:BitComet 25466 UDP(ED2K)
"TCP Query User{4ECC6365-B1A3-4847-9C88-7F7F47E51C1E}c:\\program files\\bitcomet\\bitcomet.exe"= UDP:c:\program files\bitcomet\bitcomet.exe:BitComet - a BitTorrent Client
"UDP Query User{C9716FF3-422C-4111-8D64-8CABC449E363}c:\\program files\\bitcomet\\bitcomet.exe"= TCP:c:\program files\bitcomet\bitcomet.exe:BitComet - a BitTorrent Client
"{ED1CB44F-82AE-4B90-8040-C38F24D65DCB}"= UDP:c:\program files\Malwarebytes' Anti-Malware\mbam.exe:Malwarebytes' Anti-Malware
"{88690250-CE0B-4842-8D1D-047EAF36B396}"= TCP:c:\program files\Malwarebytes' Anti-Malware\mbam.exe:Malwarebytes' Anti-Malware
"{1851CE23-E0FC-475B-93C7-D94734EA4420}"= UDP:c:\program files\Windows Defender\MSASCui.exe:Windows Defender
"{1300BF81-9D6E-46DC-BDFF-C01DC9566FD5}"= TCP:c:\program files\Windows Defender\MSASCui.exe:Windows Defender
"{A9D4C5C9-C6F0-4957-A945-60E7CADBB8CD}"= UDP:c:\program files\Lavasoft\Ad-Aware\Ad-Aware.exe:Ad-Aware
"{32A49E31-66D5-4F77-BBDE-3608BB7E8F88}"= TCP:c:\program files\Lavasoft\Ad-Aware\Ad-Aware.exe:Ad-Aware
"{765E18B3-1179-4F4E-A3EC-913E58251948}"= UDP:c:\program files\Yamicsoft\Vista Manager\LiveUpdate.exe:Live Update
"{E3D30F86-25D0-4C10-9C04-89F6BDA88792}"= TCP:c:\program files\Yamicsoft\Vista Manager\LiveUpdate.exe:Live Update
"{EEF478E5-4787-449C-BCA5-110B36E9D62F}"= UDP:c:\program files\Lavasoft\Ad-Aware\lsupdatemanager.exe:Software update
"{410A1AB6-FD8F-4F34-B594-C468DFD19BE9}"= TCP:c:\program files\Lavasoft\Ad-Aware\lsupdatemanager.exe:Software update
"{90E0DFCC-36D8-4056-AC61-4C74E630B4F7}"= UDP:c:\program files\Yamicsoft\Vista Manager\VistaManager.exe:Vista Manager
"{FD08CDC8-1231-430A-9ED1-3DA8ACF02E8C}"= TCP:c:\program files\Yamicsoft\Vista Manager\VistaManager.exe:Vista Manager

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\PublicProfile]
"EnableFirewall"= 0 (0x0)

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\RestrictedServices\Static\System]
"SNMP-1"= TCP:%SystemRoot%\system32\snmp.exe|Svc=SNMP:@%SystemRoot%\system32\snmp.exe,-5|

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\StandardProfile]
"EnableFirewall"= 0 (0x0)

R0 OemBiosDevice;Royalty OEM Bios Extension;c:\windows\System32\drivers\royal.sys [2009-01-18 240128]
R3 AsAudioDevice_351;AsAudioDevice_351;c:\windows\system32\drivers\AsAudioDevice_351.sys [2008-12-25 16640]
R3 nmwcdnsu;Nokia USB Flashing Phone Parent;c:\windows\system32\drivers\nmwcdnsu.sys [2008-02-01 138112]
R3 nmwcdnsuc;Nokia USB Flashing Generic;c:\windows\system32\drivers\nmwcdnsuc.sys [2008-02-01 8320]
R3 WMSvc;Web Management Service;c:\windows\system32\inetsrv\wmsvc.exe [2008-01-21 11264]
S0 Lbd;Lbd;c:\windows\system32\DRIVERS\Lbd.sys [2009-04-25 64160]
S2 {49DE1C67-83F8-4102-99E0-C16DCC7EEC796};{49DE1C67-83F8-4102-99E0-C16DCC7EEC796};c:\program files\Acer Arcade Deluxe\Play Movie\000.fcl [2008-01-24 21:41 41456]
S2 Lavasoft Ad-Aware Service;Lavasoft Ad-Aware Service;c:\program files\Lavasoft\Ad-Aware\AAWService.exe [2009-04-25 953168]
S2 ProtectorPlusAVMonitor;Protector Plus Anti-virus Monitor Service;c:\protector plus\PPAVMon.exe [2009-04-24 62128]
S2 ProtectorPlusService;Protector Plus Service;c:\protector plus\PPServ.exe [2009-04-24 78512]
S2 RS_Service;Raw Socket Service;c:\program files\Acer\Acer VCM\RS_Service.exe [2007-09-28 233472]
S2 TuneUp.ProgramStatisticsSvc;TuneUp Program Statistics Service;c:\windows\System32\TUProgSt.exe [2009-04-05 603904]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0;c:\windows\system32\DRIVERS\b57nd60x.sys [2008-01-24 179712]
S3 NETw5v32;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 32 Bit;c:\windows\system32\DRIVERS\NETw5v32.sys [2008-11-17 3668480]
S3 PPDrv;Protector Plus Driver;c:\protector plus\PPDrv.sys [2009-04-24 703792]
S3 PPEMSCAN;Protector Plus Email Scan Driver;c:\protector plus\PPEMSCAN.sys [2009-04-24 19272]
S3 winbondcir;Winbond IR Transceiver;c:\windows\system32\DRIVERS\winbondcir.sys [2008-01-24 43008]


[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
bthsvcs REG_MULTI_SZ BthServ
LPDService REG_MULTI_SZ LPDSVC

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs
UxTuneUp

[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\>{60B49E34-C7CC-11D0-8953-00A0C90347FF}]
"c:\windows\System32\rundll32.exe" "c:\windows\System32\iedkcs32.dll",BrandIEActiveSetup SIGNUP
.
Contents of the 'Scheduled Tasks' folder

2009-04-26 c:\windows\Tasks\1-Click Maintenance.job
- c:\program files\TuneUp Utilities 2009\OneClickStarter.exe [2008-12-11 20:36]

2009-04-25 c:\windows\Tasks\Ad-Aware Update (Weekly).job
- c:\program files\Lavasoft\Ad-Aware\Ad-AwareAdmin.exe [2009-03-09 03:45]

2009-04-26 c:\windows\Tasks\RegCure Program Check.job
- c:\program files\RegCure\RegCure.exe [2008-11-27 19:23]

2009-04-16 c:\windows\Tasks\RegCure.job
- c:\program files\RegCure\RegCure.exe [2008-11-27 19:23]

2009-04-26 c:\windows\Tasks\User_Feed_Synchronization-{56A906CC-FA65-4A2B-B8A4-3C8EF4B80CA4}.job
- c:\windows\system32\msfeedssync.exe [2009-03-26 11:31]
.
- - - - ORPHANS REMOVED - - - -

WebBrowser-{B8A5B62C-517F-42A5-85AE-29B5497FB15F} - (no file)


.
------- Supplementary Scan -------
.
uStart Page = about:blank
mStart Page = hxxp://en.us.acer.yahoo.com
IE: &D&ownload &with BitComet - c:\program files\BitComet\BitComet.exe/AddLink.htm
IE: &D&ownload all video with BitComet - c:\program files\BitComet\BitComet.exe/AddVideo.htm
IE: &D&ownload all with BitComet - c:\program files\BitComet\BitComet.exe/AddAllLink.htm
IE: &Links to this page - c:\programdata\TuneUp Software\TuneUp Utilities\Web\gbacklinks.htm
IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
IE: Send image to &Bluetooth Device... - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
IE: Send page to &Bluetooth Device... - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
FF - ProfilePath - c:\users\ap-c\AppData\Roaming\Mozilla\Firefox\Profiles\xyzplw1o.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.zyzoom.org/vb/index.php?
FF - component: c:\program files\Nokia\Nokia PC Suite 7\bkmrksync\components\BkMrkExt.dll
FF - component: c:\program files\Real\RealPlayer\browserrecord\components\nprpbrowserrecordplugin.dll
FF - component: c:\users\ap-c\AppData\Roaming\Mozilla\Firefox\Profiles\xyzplw1o.default\extensions\{e001c731-5e37-4538-a5cb-8168736a2360}\components\bdqscan.dll
FF - plugin: c:\program files\Microsoft\Office Live\npOLW.dll
FF - plugin: c:\users\ap-c\AppData\Roaming\Mozilla\Firefox\Profiles\xyzplw1o.default\extensions\{e001c731-5e37-4538-a5cb-8168736a2360}\plugins\npqscan.dll

---- FIREFOX POLICIES ----
FF - user.js: dom.disable_window_open_feature.minimizable - false
FF - user.js: network.http.pipelining - true
FF - user.js: network.http.proxy.pipelining - true
FF - user.js: network.http.pipelining.ssl - true
FF - user.js: network.http.pipelining.maxrequests - 8
.

**************************************************************************

catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,

يجب عليك تسجيل الدخول أو التسجيل لمشاهدة الرابط المخفي


Rootkit scan 2009-04-26 07:36
Windows 6.0.6001 Service Pack 1 NTFS

scanning hidden processes ...

scanning hidden autostart entries ...

scanning hidden files ...

scan completed successfully
hidden files: 0

**************************************************************************

[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\{49DE1C67-83F8-4102-99E0-C16DCC7EEC796}]
"ImagePath"="\??\c:\program files\Acer Arcade Deluxe\Play Movie\000.fcl"
.
--------------------- LOCKED REGISTRY KEYS ---------------------

[HKEY_LOCAL_MACHINE\System\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000

[HKEY_LOCAL_MACHINE\System\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000

[HKEY_LOCAL_MACHINE\System\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0002\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000

[HKEY_LOCAL_MACHINE\System\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0003\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000

[HKEY_LOCAL_MACHINE\System\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0004\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000

[HKEY_LOCAL_MACHINE\System\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0006\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
--------------------- DLLs Loaded Under Running Processes ---------------------

- - - - - - - > 'Explorer.exe'(924)
c:\acer\Empowering Technology\eDataSecurity\x86\PSDProtect.dll
c:\acer\Empowering Technology\eDataSecurity\x86\sysenv.dll
c:\windows\system32\btncopy.dll
c:\program files\Nokia\Nokia PC Suite 7\PhoneBrowser.dll
c:\program files\Nokia\Nokia PC Suite 7\NGSCM.DLL
c:\program files\Nokia\Nokia PC Suite 7\Lang\PhoneBrowser_ara.nlr
c:\program files\Nokia\Nokia PC Suite 7\Resource\PhoneBrowser_Nokia.ngr
.
------------------------ Other Running Processes ------------------------
.
c:\windows\System32\audiodg.exe
c:\windows\System32\CISVC.EXE
c:\acer\Empowering Technology\eDataSecurity\x86\eDSService.exe
c:\windows\ehome\ehrecvr.exe
c:\acer\Empowering Technology\eNet\eNet Service.exe
c:\program files\Intel\WiFi\bin\EvtEng.exe
c:\program files\Intel\Intel Matrix Storage Manager\IAANTmon.exe
c:\program files\Common Files\LightScribe\LSSrvc.exe
c:\acer\Mobility Center\MobilityService.exe
c:\windows\System32\mqsvc.exe
c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
c:\program files\Common Files\Intel\WirelessCommon\RegSrvc.exe
c:\program files\CyberLink\Shared Files\RichVideo.exe
c:\windows\System32\TCPSVCS.EXE
c:\windows\System32\snmp.exe
c:\windows\System32\TuneUpDefragService.exe
c:\windows\System32\drivers\XAudio.exe
c:\acer\Empowering Technology\eRecovery\eRecoveryService.exe
c:\acer\Empowering Technology\eSettings\Service\capuserv.exe
c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
c:\acer\Empowering Technology\ePower\ePowerSvc.exe
c:\windows\System32\wbem\unsecapp.exe
c:\windows\System32\conime.exe
c:\protector plus\PPTBC.EXE
c:\protector plus\PPINUPDT.EXE
c:\protector plus\POPSCAN.EXE
c:\windows\System32\wbem\WMIADAP.exe
.
**************************************************************************
.
Completion time: 2009-04-26 7:39 - machine was rebooted
ComboFix-quarantined-files.txt 2009-04-26 04:39

Pre-Run: 27,744,456,704 bytes free
Post-Run: 27,237,847,040 bytes free

1395 --- E O F --- 2009-04-26 03:05
 
توقيع : ammj
هاجيك لاهنت جديد اسدحه هنا
 
توقيع : KoNaMi
هذا تقرير الهاجيك

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 8:18:24 AM, on 4/26/2009
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Unable to get Internet Explorer version!
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe
C:\Protector Plus\PPTBC.EXE
C:\Protector Plus\PPINUPDT.EXE
C:\Protector Plus\POPSCAN.EXE
C:\Windows\Explorer.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Users\ap-c\Desktop\Zyzoom_HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =

يجب عليك تسجيل الدخول أو التسجيل لمشاهدة الرابط المخفي


R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =

يجب عليك تسجيل الدخول أو التسجيل لمشاهدة الرابط المخفي


R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =

يجب عليك تسجيل الدخول أو التسجيل لمشاهدة الرابط المخفي


R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =

يجب عليك تسجيل الدخول أو التسجيل لمشاهدة الرابط المخفي


R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: BitComet ClickCapture - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - C:\Program Files\BitComet\tools\BitCometBHO_1.3.3.2.dll
O2 - BHO: Click-to-Call BHO - {5C255C8A-E604-49b4-9D64-90988571CECB} - C:\Program Files\Windows Live\Messenger\wlchtc.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: ??C?I E???? C?II?? ??? Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O3 - Toolbar: Acer eDataSecurity Management - {5CBE3B7C-1E47-477e-A7DD-396DB0476E29} - C:\Acer\Empowering Technology\eDataSecurity\x86\eDStoolbar.dll
O4 - HKLM\..\Run: [Protector Plus Taskbar Control] C:\PROTEC~1\PPTbc.EXE
O4 - HKLM\..\Run: [Protector Plus InstaUpdate] C:\PROTEC~1\PPInupdt.exe
O4 - HKLM\..\Run: [Ad-Watch] C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O8 - Extra context menu item: &D&ownload &with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddLink.htm
O8 - Extra context menu item: &D&ownload all video with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddVideo.htm
O8 - Extra context menu item: &D&ownload all with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddAllLink.htm
O8 - Extra context menu item: &Links to this page - C:\ProgramData\TuneUp Software\TuneUp Utilities\Web\gbacklinks.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Send image to &Bluetooth Device... - c:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Send page to &Bluetooth Device... - c:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: EI??? ??C ?? C??I??E - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &EI??? ??C ?? Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O13 - Gopher Prefix:
O16 - DPF: {80AEEC0E-A2BE-4B8D-985F-350FE869DC40} (HPDDClientExec Class) -

يجب عليك تسجيل الدخول أو التسجيل لمشاهدة الرابط المخفي


O18 - Protocol: symres - {AA1061FE-6C41-421F-9344-69640C9732AB} - (no file)
O20 - Winlogon Notify: YamicsoftDisabled - C:\Windows\
O23 - Service: eDataSecurity Service - Egis Incorporated - C:\Acer\Empowering Technology\eDataSecurity\x86\eDSService.exe
O23 - Service: eLock Service (eLockService) - Acer Inc. - C:\Acer\Empowering Technology\eLock\Service\eLockServ.exe
O23 - Service: eNet Service - Acer Inc. - C:\Acer\Empowering Technology\eNet\eNet Service.exe
O23 - Service: eRecovery Service (eRecoveryService) - Acer Inc. - C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe
O23 - Service: eSettings Service (eSettingsService) - Unknown owner - C:\Acer\Empowering Technology\eSettings\Service\capuserv.exe
O23 - Service: Intel® PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: Lavasoft Ad-Aware Service - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: MobilityService - Unknown owner - C:\Acer\Mobility Center\MobilityService.exe
O23 - Service: Protector Plus Anti-virus Monitor Service (ProtectorPlusAVMonitor) - Proland Software - C:\Protector Plus\PPAVMon.exe
O23 - Service: Protector Plus Service (ProtectorPlusService) - Proland Software - C:\Protector Plus\PPServ.exe
O23 - Service: Intel® PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe
O23 - Service: Raw Socket Service (RS_Service) - Acer Inc. - C:\Program Files\Acer\Acer VCM\RS_Service.exe
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: TuneUp Drive Defrag Service (TuneUp.Defrag) - TuneUp Software - C:\Windows\System32\TuneUpDefragService.exe
O23 - Service: @%SystemRoot%\System32\TUProgSt.exe,-1 (TuneUp.ProgramStatisticsSvc) - TuneUp Software - C:\Windows\System32\TUProgSt.exe
O23 - Service: ePower Service (WMIService) - acer - C:\Acer\Empowering Technology\ePower\ePowerSvc.exe
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe

--
End of file - 7058 bytes
 
توقيع : ammj
السلام عليكم ورحمة الله وبركاته

الله يجزاكم خير جميعاً ويعطيكم الف الف عافيه


وش رايكم بهذا التقرير إخواني ان شاء الله تمام

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 4:34:32 AM, on 4/27/2009
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Unable to get Internet Explorer version!
Boot mode: Normal

Running processes:
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Protector Plus\PPTBC.EXE
C:\Protector Plus\PPINUPDT.EXE
C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe
C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe
C:\Protector Plus\POPSCAN.EXE
C:\Users\ap-c\Desktop\Zyzoom_HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =

يجب عليك تسجيل الدخول أو التسجيل لمشاهدة الرابط المخفي


R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =

يجب عليك تسجيل الدخول أو التسجيل لمشاهدة الرابط المخفي


R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =

يجب عليك تسجيل الدخول أو التسجيل لمشاهدة الرابط المخفي


R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: BitComet ClickCapture - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - C:\Program Files\BitComet\tools\BitCometBHO_1.3.3.2.dll
O2 - BHO: IEVkbdBHO - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\ievkbd.dll
O2 - BHO: Click-to-Call BHO - {5C255C8A-E604-49b4-9D64-90988571CECB} - C:\Program Files\Windows Live\Messenger\wlchtc.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: ??C?I E???? C?II?? ??? Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O3 - Toolbar: Acer eDataSecurity Management - {5CBE3B7C-1E47-477e-A7DD-396DB0476E29} - C:\Acer\Empowering Technology\eDataSecurity\x86\eDStoolbar.dll
O4 - HKLM\..\Run: [Protector Plus Taskbar Control] C:\PROTEC~1\PPTbc.EXE
O4 - HKLM\..\Run: [Protector Plus InstaUpdate] C:\PROTEC~1\PPInupdt.exe
O4 - HKLM\..\Run: [Ad-Watch] C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe
O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe"
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O8 - Extra context menu item: &D&ownload &with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddLink.htm
O8 - Extra context menu item: &D&ownload all video with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddVideo.htm
O8 - Extra context menu item: &D&ownload all with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddAllLink.htm
O8 - Extra context menu item: &Links to this page - C:\ProgramData\TuneUp Software\TuneUp Utilities\Web\gbacklinks.htm
O8 - Extra context menu item: Add to Banner Ad Blocker - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\ie_banner_deny.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Send image to &Bluetooth Device... - c:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Send page to &Bluetooth Device... - c:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: Web traffic protection statistics - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\SCIEPlgn.dll
O9 - Extra button: EI??? ??C ?? C??I??E - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &EI??? ??C ?? Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: BitComet - {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} - res://C:\Program Files\BitComet\tools\BitCometBHO_1.3.3.2.dll/206 (file missing)
O13 - Gopher Prefix:
O16 - DPF: {80AEEC0E-A2BE-4B8D-985F-350FE869DC40} (HPDDClientExec Class) -

يجب عليك تسجيل الدخول أو التسجيل لمشاهدة الرابط المخفي


O18 - Protocol: symres - {AA1061FE-6C41-421F-9344-69640C9732AB} - (no file)
O20 - AppInit_DLLs: C:\PROGRA~1\KASPER~1\KASPER~1\mzvkbd.dll,C:\PROGRA~1\KASPER~1\KASPER~1\mzvkbd3.dll,C:\PROGRA~1\KASPER~1\KASPER~1\adialhk.dll,C:\PROGRA~1\KASPER~1\KASPER~1\kloehk.dll
O20 - Winlogon Notify: YamicsoftDisabled - C:\Windows\
O23 - Service: Kaspersky Internet Security (AVP) - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe
O23 - Service: eDataSecurity Service - Egis Incorporated - C:\Acer\Empowering Technology\eDataSecurity\x86\eDSService.exe
O23 - Service: eLock Service (eLockService) - Acer Inc. - C:\Acer\Empowering Technology\eLock\Service\eLockServ.exe
O23 - Service: eNet Service - Acer Inc. - C:\Acer\Empowering Technology\eNet\eNet Service.exe
O23 - Service: eRecovery Service (eRecoveryService) - Acer Inc. - C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe
O23 - Service: eSettings Service (eSettingsService) - Unknown owner - C:\Acer\Empowering Technology\eSettings\Service\capuserv.exe
O23 - Service: Intel® PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: Lavasoft Ad-Aware Service - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: MobilityService - Unknown owner - C:\Acer\Mobility Center\MobilityService.exe
O23 - Service: Protector Plus Anti-virus Monitor Service (ProtectorPlusAVMonitor) - Proland Software - C:\Protector Plus\PPAVMon.exe
O23 - Service: Protector Plus Service (ProtectorPlusService) - Proland Software - C:\Protector Plus\PPServ.exe
O23 - Service: Intel® PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe
O23 - Service: Raw Socket Service (RS_Service) - Acer Inc. - C:\Program Files\Acer\Acer VCM\RS_Service.exe
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: TuneUp Drive Defrag Service (TuneUp.Defrag) - TuneUp Software - C:\Windows\System32\TuneUpDefragService.exe
O23 - Service: @%SystemRoot%\System32\TUProgSt.exe,-1 (TuneUp.ProgramStatisticsSvc) - TuneUp Software - C:\Windows\System32\TUProgSt.exe
O23 - Service: ePower Service (WMIService) - acer - C:\Acer\Empowering Technology\ePower\ePowerSvc.exe
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe

--
End of file - 7999 bytes


بصراحة الواحد مايدري وش يقول

الله يبارك فيكم بالدنيا والاخرة
رحم الله والديكم



 
توقيع : ammj
كيف الاوضاع عندك
وايش باقي مشاكل ؟
 
توقيع : KoNaMi
الاوضاع عال العال ولله الحمد الجو مطر :d:

الحين الحمد لله اي برنامج يثبت معاي تمام مافيش مشاكل :ok:

باقي مشكلة الانتر نت اكسبلور واليتافندر ( الاكسبلور حذفتة بجميع الطرق وطريقة ازالة تثبيت التحديث 8 يرجع الجهاز بعد الانتظار يقول فشل التحديثات سوف يعاد الى تكويناته يعني ماقدر يرجع السابع فسوف يعاد الى الاكسبلور 8..

الاكسبلور 8 اذا اردة تثبيتة بعد حذفه من البرامج يعطين هل الرسالة

134610028.jpg


واذا ضغطة على الايقونة الي في سطح المكتب تجيني هالرسالة

699567551.jpg



والفندر بيتا عطيته كرت احمر من الجهاز :mad: لانه هو اول برنامج كان مايشتغل




هذا الوضع الحالي

الله يعطيكم العافيه ما قصرتوا ,,,


 
توقيع : ammj
بالنسبه للاكسبلورر 8 احذفه بهذا البرنامج

يجب عليك تسجيل الدخول أو التسجيل لمشاهدة الرابط المخفي



حمل الاكسبلورر السابع من هنا

رابط تحميل الاكسبلورر 7

يجب عليك تسجيل الدخول أو التسجيل لمشاهدة الرابط المخفي



رابط التعريب

يجب عليك تسجيل الدخول أو التسجيل لمشاهدة الرابط المخفي



طريقة التعريب
اغلق الاكسبلورر بعد التثبيت ثم دبل كلك على ملف التعريب وثبت بشكل عادي


وبعدين بما انك اديت البتديفندر كرت احمر :hh:

انا انصحك بالكاسبر 2009

بالتوفيق

 
توقيع : KoNaMi
الله يعطيك العافيه

يشتغل على الفيستا

ابشرك كاسبر 2009 موجود الان
 
توقيع : ammj
يعني الحين مافي اي مشآكل يابعدي ؟؟؟ >> قول لاتستحي :hh:
 
توقيع : KoNaMi
الله لا يجيب المشاكل

اسئلك عن الاكسبلورر 7 الي في الرابط هل يعمل على الوندوز فستا او خاص للاكس بي xp
 
توقيع : ammj
اي نعم يشتغل
 
توقيع : KoNaMi
اوكي زين لانه تم تحميلة من الاول :hh:
 
توقيع : ammj
عودة
أعلى