CloseProcesses: DisableService: dtsoftbus01 DisableService: sptd S2 BrowserProtect; C:\ProgramData\BrowserProtect\2.6.1339.144\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserProtect.exe [3085264 2013-06-03] () R2 ddservice; C:\Windows\update.7.1\svchostdriver.exe [378880 2011-11-30] () [File not signed] S2 globalUpdate; C:\Program Files\globalUpdate\Update\GoogleUpdate.exe [68608 2014-06-15] (globalUpdate) [File not signed] S3 globalUpdatem; C:\Program Files\globalUpdate\Update\GoogleUpdate.exe [68608 2014-06-15] (globalUpdate) [File not signed] R2 IBUpdaterService; C:\Windows\system32\dmwu.exe [2375984 2014-08-21] () R2 IePluginServices; C:\ProgramData\IePluginServices\PluginService.exe [761968 2014-06-12] (Cherished Technololgy LIMITED) R2 MobogenieService; C:\Program Files\Mobogenie3\MobogenieService.exe [113344 2014-09-23] (Mobogenie.com) S2 ProtectMonitor; C:\Program Files\PCDApp\StartHelp.exe [77705 2014-06-09] () [File not signed] <==== ATTENTION S2 QuestBasic Service; C:\Program Files\QuestBasic\questbasic.exe [23040 2012-04-18] () [File not signed] R2 srvbtcclient; C:\Windows\update.5.0\svchost.exe [351744 2011-11-14] () [File not signed] R2 srviecheck; C:\Windows\update.2\svchost.exe [1945088 2011-10-31] () [File not signed] R2 srvsysdriver32; C:\Windows\sysdriver32.exe [262656 2011-11-02] () [File not signed] R2 SrvUpdater; C:\Program Files\SoftwareUpdater\UpdaterService.exe [31744 2013-02-18] () [File not signed] R2 TBSrv; C:\Program Files\Tbccint\ToolbarService\ToolbarService.exe [350528 2014-04-10] (ClientConnect Ltd.) R2 TorchCrashHandler; C:\Users\Oko.iBOX-Desktop.000\AppData\Local\Torch\Update\TorchCrashHandler.exe [1205088 2013-07-08] (TorchMedia Inc.) [File not signed] <==== ATTENTION R2 Windows Internet Name Service; C:\Windows\system32\config\systemprofile\AppData\Local\Windows Internet Name Service\wins.exe [2692608 2013-09-14] () [File not signed] R2 WindowsProtectManger; C:\ProgramData\WindowsProtectManger\wprotectmanager.exe [591776 2014-06-12] (Fuyu LIMITED) <==== ATTENTION R2 winzipersvc; C:\Program Files\WinZipper\winzipersvc.exe [425104 2014-02-26] (Taiwan Shui Mu Chih Ching Technology Limited.) <==== ATTENTION R2 Wpm; C:\ProgramData\WPM\wprotectmanager.exe [540304 2014-06-11] (Cherished Technololgy LIMITED) R2 wxpdrivers; C:\Windows\update.1\svchost.exe [1208832 2011-10-31] (Cronosoft) [File not signed] U3 .blbdrive; \* [0 2014-07-26] () [File not signed] U3 .cdrom; \* [0 2014-07-26] () [File not signed] U3 .dtsoftbus01; \* [0 2014-07-26] () [File not signed] R1 avgtp; C:\Windows\system32\drivers\avgtpx86.sys [42272 2014-04-14] (AVG Technologies) S3 cpuz134; \??\C:\Users\Nowa Era\AppData\Local\Temp\cpuz134\cpuz134_x32.sys [X] S3 EagleNT; \??\C:\Windows\system32\drivers\EagleNT.sys [X] S3 EagleXNt; \??\C:\Windows\system32\drivers\EagleXNt.sys [X] HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\wxpdrivers => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\wxpdrivers => ""="Service" HKLM\...\Run: [PrivitizeVPN] => C:\Program Files\PrivitizeVPN\PrivitizeVPN.exe [196784 2013-07-16] (OOO Industry) HKLM\...\Run: [BasicScan Service] => C:\Program Files\BasicScan\basicscan.exe [23040 2012-10-23] () HKLM\...\Run: [vProt] => C:\Program Files\AVG Secure Search\vprot.exe [2544664 2014-04-14] () HKLM\...\Run: [fst_pl_131] => C:\Program Files\fst_pl_131\fst_pl_131.exe [3980280 2014-06-13] () HKU\S-1-5-21-1495774856-1328017135-2697362928-1019\...\Run: [Akamai NetSession Interface] => C:\Users\Nowa Era\AppData\Local\Akamai\netsession_win.exe [4672920 2014-04-17] (Akamai Technologies, Inc.) HKU\S-1-5-21-1495774856-1328017135-2697362928-1019\...\Run: [NextLive] => C:\Windows\system32\rundll32.exe "C:\Users\Nowa Era\AppData\Roaming\newnext.me\nengine.dll",EntryPoint -m l HKU\S-1-5-21-1495774856-1328017135-2697362928-1019\...\Run: [APISupport] => "C:\Windows\system32\Rundll32.exe" "C:\Users\Nowa Era\AppData\Local\TB\APISupport\APISupport.dll",DLLRunAPISupport <===== ATTENTION HKU\S-1-5-21-1495774856-1328017135-2697362928-1019\...\Run: [lptaeaej] => c:\users\nowa era\appdata\local\lptaeaej.exe [1839104 2014-07-11] () HKU\S-1-5-21-1495774856-1328017135-2697362928-1019\...\Run: [NvidiaHostStart] => C:\Users\Nowa Era\AppData\Local\NVIDIA Corporation\nvsync.exe [55296 2014-08-09] () HKU\S-1-5-21-1495774856-1328017135-2697362928-1019\...\Winlogon: [Shell] C:\Users\Nowa Era\AppData\Local\5e981d0d\X [58368 2014-02-19] () <==== ATTENTION AppInit_DLLs: C:\PROGRA~1\SupTab\SearchProtect32.dll => C:\Program Files\SupTab\SearchProtect32.dll [91248 2014-05-08] (Skytech Co., Ltd.) IFEO: [Debugger] svchost.exe IFEO\a.exe: [Debugger] svchost.exe IFEO\aAvgApi.exe: [Debugger] svchost.exe IFEO\AAWTray.exe: [Debugger] svchost.exe IFEO\About.exe: [Debugger] svchost.exe IFEO\ackwin32.exe: [Debugger] svchost.exe IFEO\Ad-Aware.exe: [Debugger] svchost.exe IFEO\adaware.exe: [Debugger] svchost.exe IFEO\advxdwin.exe: [Debugger] svchost.exe IFEO\AdwarePrj.exe: [Debugger] svchost.exe IFEO\agentsvr.exe: [Debugger] svchost.exe IFEO\agentw.exe: [Debugger] svchost.exe IFEO\alertsvc.exe: [Debugger] svchost.exe IFEO\alevir.exe: [Debugger] svchost.exe IFEO\alogserv.exe: [Debugger] svchost.exe IFEO\AlphaAV: [Debugger] svchost.exe IFEO\AlphaAV.exe: [Debugger] svchost.exe IFEO\AluSchedulerSvc.exe: [Debugger] svchost.exe IFEO\amon9x.exe: [Debugger] svchost.exe IFEO\anti-trojan.exe: [Debugger] svchost.exe IFEO\Anti-Virus Professional.exe: [Debugger] svchost.exe IFEO\AntispywarXP2009.exe: [Debugger] svchost.exe IFEO\antivirus.exe: [Debugger] svchost.exe IFEO\AntivirusPlus: [Debugger] svchost.exe IFEO\AntivirusPlus.exe: [Debugger] svchost.exe IFEO\AntivirusPro_2010.exe: [Debugger] svchost.exe IFEO\AntivirusXP: [Debugger] svchost.exe IFEO\AntivirusXP.exe: [Debugger] svchost.exe IFEO\antivirusxppro2009.exe: [Debugger] svchost.exe IFEO\AntiVirus_Pro.exe: [Debugger] svchost.exe IFEO\ants.exe: [Debugger] svchost.exe IFEO\apimonitor.exe: [Debugger] svchost.exe IFEO\aplica32.exe: [Debugger] svchost.exe IFEO\apvxdwin.exe: [Debugger] svchost.exe IFEO\arr.exe: [Debugger] svchost.exe IFEO\Arrakis3.exe: [Debugger] svchost.exe IFEO\ashAvast.exe: [Debugger] svchost.exe IFEO\ashBug.exe: [Debugger] svchost.exe IFEO\ashChest.exe: [Debugger] svchost.exe IFEO\ashCnsnt.exe: [Debugger] svchost.exe IFEO\ashDisp.exe: [Debugger] svchost.exe IFEO\ashLogV.exe: [Debugger] svchost.exe IFEO\ashMaiSv.exe: [Debugger] svchost.exe IFEO\ashPopWz.exe: [Debugger] svchost.exe IFEO\ashQuick.exe: [Debugger] svchost.exe IFEO\ashServ.exe: [Debugger] svchost.exe IFEO\ashSimp2.exe: [Debugger] svchost.exe IFEO\ashSimpl.exe: [Debugger] svchost.exe IFEO\ashSkPcc.exe: [Debugger] svchost.exe IFEO\ashSkPck.exe: [Debugger] svchost.exe IFEO\ashUpd.exe: [Debugger] svchost.exe IFEO\ashWebSv.exe: [Debugger] svchost.exe IFEO\aswChLic.exe: [Debugger] svchost.exe IFEO\aswRegSvr.exe: [Debugger] svchost.exe IFEO\aswRunDll.exe: [Debugger] svchost.exe IFEO\aswUpdSv.exe: [Debugger] svchost.exe IFEO\atcon.exe: [Debugger] svchost.exe IFEO\atguard.exe: [Debugger] svchost.exe IFEO\atro55en.exe: [Debugger] svchost.exe IFEO\atupdater.exe: [Debugger] svchost.exe IFEO\atwatch.exe: [Debugger] svchost.exe IFEO\au.exe: [Debugger] svchost.exe IFEO\aupdate.exe: [Debugger] svchost.exe IFEO\auto-protect.nav80try.exe: [Debugger] svchost.exe IFEO\autodown.exe: [Debugger] svchost.exe IFEO\autotrace.exe: [Debugger] svchost.exe IFEO\autoupdate.exe: [Debugger] svchost.exe IFEO\av360.exe: [Debugger] svchost.exe IFEO\avadmin.exe: [Debugger] svchost.exe IFEO\AVCare.exe: [Debugger] svchost.exe IFEO\avcenter.exe: [Debugger] svchost.exe IFEO\avciman.exe: [Debugger] svchost.exe IFEO\avconfig.exe: [Debugger] svchost.exe IFEO\avconsol.exe: [Debugger] svchost.exe IFEO\ave32.exe: [Debugger] svchost.exe IFEO\AVENGINE.EXE: [Debugger] svchost.exe IFEO\avgcc32.exe: [Debugger] svchost.exe IFEO\avgchk.exe: [Debugger] svchost.exe IFEO\avgcmgr.exe: [Debugger] svchost.exe IFEO\avgcsrvx.exe: [Debugger] svchost.exe IFEO\avgctrl.exe: [Debugger] svchost.exe IFEO\avgdumpx.exe: [Debugger] svchost.exe IFEO\avgemc.exe: [Debugger] svchost.exe IFEO\avgiproxy.exe: [Debugger] svchost.exe IFEO\avgnsx.exe: [Debugger] svchost.exe IFEO\avgnt.exe: [Debugger] svchost.exe IFEO\avgrsx.exe: [Debugger] svchost.exe IFEO\avgscanx.exe: [Debugger] svchost.exe IFEO\avgserv.exe: [Debugger] svchost.exe IFEO\avgserv9.exe: [Debugger] svchost.exe IFEO\avgsrmax.exe: [Debugger] svchost.exe IFEO\avgtray.exe: [Debugger] svchost.exe IFEO\avgui.exe: [Debugger] svchost.exe IFEO\avgupd.exe: [Debugger] svchost.exe IFEO\avgw.exe: [Debugger] svchost.exe IFEO\avgwdsvc.exe: [Debugger] svchost.exe IFEO\avkpop.exe: [Debugger] svchost.exe IFEO\avkserv.exe: [Debugger] svchost.exe IFEO\avkservice.exe: [Debugger] svchost.exe IFEO\avkwctl9.exe: [Debugger] svchost.exe IFEO\avltmain.exe: [Debugger] svchost.exe IFEO\avmailc.exe: [Debugger] svchost.exe IFEO\avmcdlg.exe: [Debugger] svchost.exe IFEO\avnotify.exe: [Debugger] svchost.exe IFEO\avnt.exe: [Debugger] svchost.exe IFEO\avp32.exe: [Debugger] svchost.exe IFEO\avpcc.exe: [Debugger] svchost.exe IFEO\avpdos32.exe: [Debugger] svchost.exe IFEO\avpm.exe: [Debugger] svchost.exe IFEO\avptc32.exe: [Debugger] svchost.exe IFEO\avpupd.exe: [Debugger] svchost.exe IFEO\avsched32.exe: [Debugger] svchost.exe IFEO\avsynmgr.exe: [Debugger] svchost.exe IFEO\avupgsvc.exe: [Debugger] svchost.exe IFEO\AVWEBGRD.EXE: [Debugger] svchost.exe IFEO\avwin.exe: [Debugger] svchost.exe IFEO\avwin95.exe: [Debugger] svchost.exe IFEO\avwinnt.exe: [Debugger] svchost.exe IFEO\avwsc.exe: [Debugger] svchost.exe IFEO\avwupd.exe: [Debugger] svchost.exe IFEO\avwupd32.exe: [Debugger] svchost.exe IFEO\avwupsrv.exe: [Debugger] svchost.exe IFEO\avxmonitor9x.exe: [Debugger] svchost.exe IFEO\avxmonitornt.exe: [Debugger] svchost.exe IFEO\avxquar.exe: [Debugger] svchost.exe IFEO\b.exe: [Debugger] svchost.exe IFEO\backweb.exe: [Debugger] svchost.exe IFEO\bargains.exe: [Debugger] svchost.exe IFEO\bdagent.exe: [Debugger] svchost.exe IFEO\bdfvcl.exe: [Debugger] svchost.exe IFEO\bdfvwiz.exe: [Debugger] svchost.exe IFEO\BDInProcPatch.exe: [Debugger] svchost.exe IFEO\bdmcon.exe: [Debugger] svchost.exe IFEO\BDMsnScan.exe: [Debugger] svchost.exe IFEO\bdreinit.exe: [Debugger] svchost.exe IFEO\bdsubwiz.exe: [Debugger] svchost.exe IFEO\BDSurvey.exe: [Debugger] svchost.exe IFEO\bdtkexec.exe: [Debugger] svchost.exe IFEO\bdwizreg.exe: [Debugger] svchost.exe IFEO\bd_professional.exe: [Debugger] svchost.exe IFEO\beagle.exe: [Debugger] svchost.exe IFEO\belt.exe: [Debugger] svchost.exe IFEO\bidef.exe: [Debugger] svchost.exe IFEO\bidserver.exe: [Debugger] svchost.exe IFEO\bipcp.exe: [Debugger] svchost.exe IFEO\bipcpevalsetup.exe: [Debugger] svchost.exe IFEO\bisp.exe: [Debugger] svchost.exe IFEO\bitguard.exe: [Debugger] tasklist.exe IFEO\blackd.exe: [Debugger] svchost.exe IFEO\blackice.exe: [Debugger] svchost.exe IFEO\blink.exe: [Debugger] svchost.exe IFEO\blss.exe: [Debugger] svchost.exe IFEO\bootconf.exe: [Debugger] svchost.exe IFEO\bootwarn.exe: [Debugger] svchost.exe IFEO\borg2.exe: [Debugger] svchost.exe IFEO\bpc.exe: [Debugger] svchost.exe IFEO\bprotect.exe: [Debugger] tasklist.exe IFEO\bpsvc.exe: [Debugger] tasklist.exe IFEO\brasil.exe: [Debugger] svchost.exe IFEO\brastk.exe: [Debugger] svchost.exe IFEO\browserdefender.exe: [Debugger] tasklist.exe IFEO\browserprotect.exe: [Debugger] tasklist.exe IFEO\browsersafeguard.exe: [Debugger] tasklist.exe IFEO\brw.exe: [Debugger] svchost.exe IFEO\bs120.exe: [Debugger] svchost.exe IFEO\bspatch.exe: [Debugger] svchost.exe IFEO\bundle.exe: [Debugger] svchost.exe IFEO\bvt.exe: [Debugger] svchost.exe IFEO\c.exe: [Debugger] svchost.exe IFEO\cavscan.exe: [Debugger] svchost.exe IFEO\ccapp.exe: [Debugger] svchost.exe IFEO\ccevtmgr.exe: [Debugger] svchost.exe IFEO\ccpxysvc.exe: [Debugger] svchost.exe IFEO\cdp.exe: [Debugger] svchost.exe IFEO\cfd.exe: [Debugger] svchost.exe IFEO\cfgwiz.exe: [Debugger] svchost.exe IFEO\cfiadmin.exe: [Debugger] svchost.exe IFEO\cfiaudit.exe: [Debugger] svchost.exe IFEO\cfinet.exe: [Debugger] svchost.exe IFEO\cfinet32.exe: [Debugger] svchost.exe IFEO\cfp.exe: [Debugger] svchost.exe IFEO\cfpconfg.exe: [Debugger] svchost.exe IFEO\cfplogvw.exe: [Debugger] svchost.exe IFEO\cfpupdat.exe: [Debugger] svchost.exe IFEO\Cl.exe: [Debugger] svchost.exe IFEO\claw95.exe: [Debugger] svchost.exe IFEO\claw95cf.exe: [Debugger] svchost.exe IFEO\clean.exe: [Debugger] svchost.exe IFEO\cleaner.exe: [Debugger] svchost.exe IFEO\cleaner3.exe: [Debugger] svchost.exe IFEO\cleanIELow.exe: [Debugger] svchost.exe IFEO\cleanpc.exe: [Debugger] svchost.exe IFEO\click.exe: [Debugger] svchost.exe IFEO\cmd32.exe: [Debugger] svchost.exe IFEO\cmdagent.exe: [Debugger] svchost.exe IFEO\cmesys.exe: [Debugger] svchost.exe IFEO\cmgrdian.exe: [Debugger] svchost.exe IFEO\cmon016.exe: [Debugger] svchost.exe IFEO\connectionmonitor.exe: [Debugger] svchost.exe IFEO\control: [Debugger] svchost.exe IFEO\cpd.exe: [Debugger] svchost.exe IFEO\cpf9x206.exe: [Debugger] svchost.exe IFEO\cpfnt206.exe: [Debugger] svchost.exe IFEO\crashrep.exe: [Debugger] svchost.exe IFEO\csc.exe: [Debugger] svchost.exe IFEO\cssconfg.exe: [Debugger] svchost.exe IFEO\cssupdat.exe: [Debugger] svchost.exe IFEO\cssurf.exe: [Debugger] svchost.exe IFEO\ctrl.exe: [Debugger] svchost.exe IFEO\cv.exe: [Debugger] svchost.exe IFEO\cwnb181.exe: [Debugger] svchost.exe IFEO\cwntdwmo.exe: [Debugger] svchost.exe IFEO\d.exe: [Debugger] svchost.exe IFEO\datemanager.exe: [Debugger] svchost.exe IFEO\dcomx.exe: [Debugger] svchost.exe IFEO\defalert.exe: [Debugger] svchost.exe IFEO\defscangui.exe: [Debugger] svchost.exe IFEO\defwatch.exe: [Debugger] svchost.exe IFEO\deloeminfs.exe: [Debugger] svchost.exe IFEO\deputy.exe: [Debugger] svchost.exe IFEO\divx.exe: [Debugger] svchost.exe IFEO\dllcache.exe: [Debugger] svchost.exe IFEO\dllreg.exe: [Debugger] svchost.exe IFEO\doors.exe: [Debugger] svchost.exe IFEO\dop.exe: [Debugger] svchost.exe IFEO\dpf.exe: [Debugger] svchost.exe IFEO\dpfsetup.exe: [Debugger] svchost.exe IFEO\dpps2.exe: [Debugger] svchost.exe IFEO\dprotectsvc.exe: [Debugger] tasklist.exe IFEO\driverctrl.exe: [Debugger] svchost.exe IFEO\drwatson.exe: [Debugger] svchost.exe IFEO\drweb32.exe: [Debugger] svchost.exe IFEO\drwebupw.exe: [Debugger] svchost.exe IFEO\dssagent.exe: [Debugger] svchost.exe IFEO\dvp95.exe: [Debugger] svchost.exe IFEO\dvp95_0.exe: [Debugger] svchost.exe IFEO\ecengine.exe: [Debugger] svchost.exe IFEO\efpeadm.exe: [Debugger] svchost.exe IFEO\egui.exe: [Debugger] svchost.exe IFEO\ekrn.exe: [Debugger] svchost.exe IFEO\emsw.exe: [Debugger] svchost.exe IFEO\ent.exe: [Debugger] svchost.exe IFEO\esafe.exe: [Debugger] svchost.exe IFEO\escanhnt.exe: [Debugger] svchost.exe IFEO\escanv95.exe: [Debugger] svchost.exe IFEO\espwatch.exe: [Debugger] svchost.exe IFEO\ethereal.exe: [Debugger] svchost.exe IFEO\etrustcipe.exe: [Debugger] svchost.exe IFEO\evpn.exe: [Debugger] svchost.exe IFEO\exantivirus-cnet.exe: [Debugger] svchost.exe IFEO\exe.avxw.exe: [Debugger] svchost.exe IFEO\expert.exe: [Debugger] svchost.exe IFEO\explore.exe: [Debugger] svchost.exe IFEO\f-agnt95.exe: [Debugger] svchost.exe IFEO\f-prot.exe: [Debugger] svchost.exe IFEO\f-prot95.exe: [Debugger] svchost.exe IFEO\f-stopw.exe: [Debugger] svchost.exe IFEO\fact.exe: [Debugger] svchost.exe IFEO\fameh32.exe: [Debugger] svchost.exe IFEO\fast.exe: [Debugger] svchost.exe IFEO\fch32.exe: [Debugger] svchost.exe IFEO\fih32.exe: [Debugger] svchost.exe IFEO\findviru.exe: [Debugger] svchost.exe IFEO\firewall.exe: [Debugger] svchost.exe IFEO\fixcfg.exe: [Debugger] svchost.exe IFEO\fixfp.exe: [Debugger] svchost.exe IFEO\fnrb32.exe: [Debugger] svchost.exe IFEO\fp-win.exe: [Debugger] svchost.exe IFEO\fp-win_trial.exe: [Debugger] svchost.exe IFEO\fprot.exe: [Debugger] svchost.exe IFEO\frmwrk32.exe: [Debugger] svchost.exe IFEO\frw.exe: [Debugger] svchost.exe IFEO\fsaa.exe: [Debugger] svchost.exe IFEO\fsav.exe: [Debugger] svchost.exe IFEO\fsav32.exe: [Debugger] svchost.exe IFEO\fsav530stbyb.exe: [Debugger] svchost.exe IFEO\fsav530wtbyb.exe: [Debugger] svchost.exe IFEO\fsav95.exe: [Debugger] svchost.exe IFEO\fsgk32.exe: [Debugger] svchost.exe IFEO\fsm32.exe: [Debugger] svchost.exe IFEO\fsma32.exe: [Debugger] svchost.exe IFEO\fsmb32.exe: [Debugger] svchost.exe IFEO\gator.exe: [Debugger] svchost.exe IFEO\gav.exe: [Debugger] svchost.exe IFEO\gbmenu.exe: [Debugger] svchost.exe IFEO\gbn976rl.exe: [Debugger] svchost.exe IFEO\gbpoll.exe: [Debugger] svchost.exe IFEO\generics.exe: [Debugger] svchost.exe IFEO\gmt.exe: [Debugger] svchost.exe IFEO\guard.exe: [Debugger] svchost.exe IFEO\guarddog.exe: [Debugger] svchost.exe IFEO\guardgui.exe: [Debugger] svchost.exe IFEO\hacktracersetup.exe: [Debugger] svchost.exe IFEO\hbinst.exe: [Debugger] svchost.exe IFEO\hbsrv.exe: [Debugger] svchost.exe IFEO\History.exe: [Debugger] svchost.exe IFEO\homeav2010.exe: [Debugger] svchost.exe IFEO\hotactio.exe: [Debugger] svchost.exe IFEO\hotpatch.exe: [Debugger] svchost.exe IFEO\htlog.exe: [Debugger] svchost.exe IFEO\htpatch.exe: [Debugger] svchost.exe IFEO\hwpe.exe: [Debugger] svchost.exe IFEO\hxdl.exe: [Debugger] svchost.exe IFEO\hxiul.exe: [Debugger] svchost.exe IFEO\iamapp.exe: [Debugger] svchost.exe IFEO\iamserv.exe: [Debugger] svchost.exe IFEO\iamstats.exe: [Debugger] svchost.exe IFEO\ibmasn.exe: [Debugger] svchost.exe IFEO\ibmavsp.exe: [Debugger] svchost.exe IFEO\icload95.exe: [Debugger] svchost.exe IFEO\icloadnt.exe: [Debugger] svchost.exe IFEO\icmon.exe: [Debugger] svchost.exe IFEO\icsupp95.exe: [Debugger] svchost.exe IFEO\icsuppnt.exe: [Debugger] svchost.exe IFEO\Identity.exe: [Debugger] svchost.exe IFEO\idle.exe: [Debugger] svchost.exe IFEO\iedll.exe: [Debugger] svchost.exe IFEO\iedriver.exe: [Debugger] svchost.exe IFEO\IEShow.exe: [Debugger] svchost.exe IFEO\iface.exe: [Debugger] svchost.exe IFEO\ifw2000.exe: [Debugger] svchost.exe IFEO\inetlnfo.exe: [Debugger] svchost.exe IFEO\infus.exe: [Debugger] svchost.exe IFEO\infwin.exe: [Debugger] svchost.exe IFEO\init.exe: [Debugger] svchost.exe IFEO\init32.exe : [Debugger] svchost.exe IFEO\install.exe: [Debugger] svchost.exe IFEO\install[1].exe: [Debugger] svchost.exe IFEO\install[2].exe: [Debugger] svchost.exe IFEO\install[3].exe: [Debugger] svchost.exe IFEO\install[4].exe: [Debugger] svchost.exe IFEO\install[5].exe: [Debugger] svchost.exe IFEO\intdel.exe: [Debugger] svchost.exe IFEO\intren.exe: [Debugger] svchost.exe IFEO\iomon98.exe: [Debugger] svchost.exe IFEO\istsvc.exe: [Debugger] svchost.exe IFEO\jammer.exe: [Debugger] svchost.exe IFEO\jdbgmrg.exe: [Debugger] svchost.exe IFEO\jedi.exe: [Debugger] svchost.exe IFEO\JsRcGen.exe: [Debugger] svchost.exe IFEO\jumpflip: [Debugger] tasklist.exe IFEO\kavlite40eng.exe: [Debugger] svchost.exe IFEO\kavpers40eng.exe: [Debugger] svchost.exe IFEO\kavpf.exe: [Debugger] svchost.exe IFEO\kazza.exe: [Debugger] svchost.exe IFEO\keenvalue.exe: [Debugger] svchost.exe IFEO\kerio-pf-213-en-win.exe: [Debugger] svchost.exe IFEO\kerio-wrl-421-en-win.exe: [Debugger] svchost.exe IFEO\kerio-wrp-421-en-win.exe: [Debugger] svchost.exe IFEO\killprocesssetup161.exe: [Debugger] svchost.exe IFEO\ldnetmon.exe: [Debugger] svchost.exe IFEO\ldpro.exe: [Debugger] svchost.exe IFEO\ldpromenu.exe: [Debugger] svchost.exe IFEO\ldscan.exe: [Debugger] svchost.exe IFEO\licmgr.exe: [Debugger] svchost.exe IFEO\livesrv.exe: [Debugger] svchost.exe IFEO\lnetinfo.exe: [Debugger] svchost.exe IFEO\loader.exe: [Debugger] svchost.exe IFEO\localnet.exe: [Debugger] svchost.exe IFEO\lockdown.exe: [Debugger] svchost.exe IFEO\lockdown2000.exe: [Debugger] svchost.exe IFEO\lookout.exe: [Debugger] svchost.exe IFEO\lordpe.exe: [Debugger] svchost.exe IFEO\lsetup.exe: [Debugger] svchost.exe IFEO\luall.exe: [Debugger] svchost.exe IFEO\luau.exe: [Debugger] svchost.exe IFEO\lucomserver.exe: [Debugger] svchost.exe IFEO\luinit.exe: [Debugger] svchost.exe IFEO\luspt.exe: [Debugger] svchost.exe IFEO\MalwareRemoval.exe: [Debugger] svchost.exe IFEO\mapisvc32.exe: [Debugger] svchost.exe IFEO\mcagent.exe: [Debugger] svchost.exe IFEO\mcmnhdlr.exe: [Debugger] svchost.exe IFEO\mcmscsvc.exe: [Debugger] svchost.exe IFEO\mcnasvc.exe: [Debugger] svchost.exe IFEO\mcproxy.exe: [Debugger] svchost.exe IFEO\McSACore.exe: [Debugger] svchost.exe IFEO\mcshell.exe: [Debugger] svchost.exe IFEO\mcshield.exe: [Debugger] svchost.exe IFEO\mcsysmon.exe: [Debugger] svchost.exe IFEO\mctool.exe: [Debugger] svchost.exe IFEO\mcupdate.exe: [Debugger] svchost.exe IFEO\mcvsrte.exe: [Debugger] svchost.exe IFEO\mcvsshld.exe: [Debugger] svchost.exe IFEO\md.exe: [Debugger] svchost.exe IFEO\mfin32.exe: [Debugger] svchost.exe IFEO\mfw2en.exe: [Debugger] svchost.exe IFEO\mfweng3.02d30.exe: [Debugger] svchost.exe IFEO\mgavrtcl.exe: [Debugger] svchost.exe IFEO\mgavrte.exe: [Debugger] svchost.exe IFEO\mghtml.exe: [Debugger] svchost.exe IFEO\mgui.exe: [Debugger] svchost.exe IFEO\minilog.exe: [Debugger] svchost.exe IFEO\mmod.exe: [Debugger] svchost.exe IFEO\monitor.exe: [Debugger] svchost.exe IFEO\moolive.exe: [Debugger] svchost.exe IFEO\mostat.exe: [Debugger] svchost.exe IFEO\mpfagent.exe: [Debugger] svchost.exe IFEO\mpfservice.exe: [Debugger] svchost.exe IFEO\MPFSrv.exe: [Debugger] svchost.exe IFEO\mpftray.exe: [Debugger] svchost.exe IFEO\mrflux.exe: [Debugger] svchost.exe IFEO\mrt.exe: [Debugger] svchost.exe IFEO\msa.exe: [Debugger] svchost.exe IFEO\msapp.exe: [Debugger] svchost.exe IFEO\MSASCui.exe: [Debugger] svchost.exe IFEO\msbb.exe: [Debugger] svchost.exe IFEO\msblast.exe: [Debugger] svchost.exe IFEO\mscache.exe: [Debugger] svchost.exe IFEO\msccn32.exe: [Debugger] svchost.exe IFEO\mscman.exe: [Debugger] svchost.exe IFEO\msconfig: [Debugger] svchost.exe IFEO\msdm.exe: [Debugger] svchost.exe IFEO\msdos.exe: [Debugger] svchost.exe IFEO\msiexec16.exe: [Debugger] svchost.exe IFEO\mslaugh.exe: [Debugger] svchost.exe IFEO\msmgt.exe: [Debugger] svchost.exe IFEO\msmsgri32.exe: [Debugger] svchost.exe IFEO\msseces.exe: [Debugger] svchost.exe IFEO\mssmmc32.exe: [Debugger] svchost.exe IFEO\mssys.exe: [Debugger] svchost.exe IFEO\msvxd.exe: [Debugger] svchost.exe IFEO\mu0311ad.exe: [Debugger] svchost.exe IFEO\mwatch.exe: [Debugger] svchost.exe IFEO\n32scanw.exe: [Debugger] svchost.exe IFEO\nav.exe: [Debugger] svchost.exe IFEO\navap.navapsvc.exe: [Debugger] svchost.exe IFEO\navapsvc.exe: [Debugger] svchost.exe IFEO\navapw32.exe: [Debugger] svchost.exe IFEO\navdx.exe: [Debugger] svchost.exe IFEO\navlu32.exe: [Debugger] svchost.exe IFEO\navnt.exe: [Debugger] svchost.exe IFEO\navstub.exe: [Debugger] svchost.exe IFEO\nc2000.exe: [Debugger] svchost.exe IFEO\ncinst4.exe: [Debugger] svchost.exe IFEO\ndd32.exe: [Debugger] svchost.exe IFEO\neomonitor.exe: [Debugger] svchost.exe IFEO\neowatchlog.exe: [Debugger] svchost.exe IFEO\netarmor.exe: [Debugger] svchost.exe IFEO\netd32.exe: [Debugger] svchost.exe IFEO\netinfo.exe: [Debugger] svchost.exe IFEO\netmon.exe: [Debugger] svchost.exe IFEO\netscanpro.exe: [Debugger] svchost.exe IFEO\netspyhunter-1.2.exe: [Debugger] svchost.exe IFEO\netutils.exe: [Debugger] svchost.exe IFEO\nisserv.exe: [Debugger] svchost.exe IFEO\nisum.exe: [Debugger] svchost.exe IFEO\nmain.exe: [Debugger] svchost.exe IFEO\nod32.exe: [Debugger] svchost.exe IFEO\normist.exe: [Debugger] svchost.exe IFEO\norton_internet_secu_3.0_407.exe: [Debugger] svchost.exe IFEO\notstart.exe: [Debugger] svchost.exe IFEO\npf40_tw_98_nt_me_2k.exe: [Debugger] svchost.exe IFEO\npfmessenger.exe: [Debugger] svchost.exe IFEO\nprotect.exe: [Debugger] svchost.exe IFEO\npscheck.exe: [Debugger] svchost.exe IFEO\npssvc.exe: [Debugger] svchost.exe IFEO\nsched32.exe: [Debugger] svchost.exe IFEO\nssys32.exe: [Debugger] svchost.exe IFEO\nstask32.exe: [Debugger] svchost.exe IFEO\nsupdate.exe: [Debugger] svchost.exe IFEO\nt.exe: [Debugger] svchost.exe IFEO\ntrtscan.exe: [Debugger] svchost.exe IFEO\ntvdm.exe: [Debugger] svchost.exe IFEO\ntxconfig.exe: [Debugger] svchost.exe IFEO\nui.exe: [Debugger] svchost.exe IFEO\nupgrade.exe: [Debugger] svchost.exe IFEO\nvarch16.exe: [Debugger] svchost.exe IFEO\nvc95.exe: [Debugger] svchost.exe IFEO\nvsvc32.exe: [Debugger] svchost.exe IFEO\nwinst4.exe: [Debugger] svchost.exe IFEO\nwservice.exe: [Debugger] svchost.exe IFEO\nwtool16.exe: [Debugger] svchost.exe IFEO\OAcat.exe: [Debugger] svchost.exe IFEO\OAhlp.exe: [Debugger] svchost.exe IFEO\OAReg.exe: [Debugger] svchost.exe IFEO\oasrv.exe: [Debugger] svchost.exe IFEO\oaui.exe: [Debugger] svchost.exe IFEO\oaview.exe: [Debugger] svchost.exe IFEO\ODSW.exe: [Debugger] svchost.exe IFEO\ollydbg.exe: [Debugger] svchost.exe IFEO\OLT.exe: [Debugger] svchost.exe IFEO\onsrvr.exe: [Debugger] svchost.exe IFEO\optimize.exe: [Debugger] svchost.exe IFEO\ostronet.exe: [Debugger] svchost.exe IFEO\otfix.exe: [Debugger] svchost.exe IFEO\outpost.exe: [Debugger] svchost.exe IFEO\outpostinstall.exe: [Debugger] svchost.exe IFEO\outpostproinstall.exe: [Debugger] svchost.exe IFEO\ozn695m5.exe: [Debugger] svchost.exe IFEO\padmin.exe: [Debugger] svchost.exe IFEO\panixk.exe: [Debugger] svchost.exe IFEO\patch.exe: [Debugger] svchost.exe IFEO\pav.exe: [Debugger] svchost.exe IFEO\pavcl.exe: [Debugger] svchost.exe IFEO\PavFnSvr.exe: [Debugger] svchost.exe IFEO\pavproxy.exe: [Debugger] svchost.exe IFEO\pavprsrv.exe: [Debugger] svchost.exe IFEO\pavsched.exe: [Debugger] svchost.exe IFEO\pavsrv51.exe: [Debugger] svchost.exe IFEO\pavw.exe: [Debugger] svchost.exe IFEO\pc.exe: [Debugger] svchost.exe IFEO\pccwin98.exe: [Debugger] svchost.exe IFEO\pcfwallicon.exe: [Debugger] svchost.exe IFEO\pcip10117_0.exe: [Debugger] svchost.exe IFEO\pcscan.exe: [Debugger] svchost.exe IFEO\pctsAuxs.exe: [Debugger] svchost.exe IFEO\pctsGui.exe: [Debugger] svchost.exe IFEO\pctsSvc.exe: [Debugger] svchost.exe IFEO\pctsTray.exe: [Debugger] svchost.exe IFEO\PC_Antispyware2010.exe: [Debugger] svchost.exe IFEO\pdfndr.exe: [Debugger] svchost.exe IFEO\pdsetup.exe: [Debugger] svchost.exe IFEO\PerAvir.exe: [Debugger] svchost.exe IFEO\periscope.exe: [Debugger] svchost.exe IFEO\persfw.exe: [Debugger] svchost.exe IFEO\personalguard: [Debugger] svchost.exe IFEO\personalguard.exe: [Debugger] svchost.exe IFEO\perswf.exe: [Debugger] svchost.exe IFEO\pf2.exe: [Debugger] svchost.exe IFEO\pfwadmin.exe: [Debugger] svchost.exe IFEO\pgmonitr.exe: [Debugger] svchost.exe IFEO\pingscan.exe: [Debugger] svchost.exe IFEO\platin.exe: [Debugger] svchost.exe IFEO\pop3trap.exe: [Debugger] svchost.exe IFEO\poproxy.exe: [Debugger] svchost.exe IFEO\popscan.exe: [Debugger] svchost.exe IFEO\portdetective.exe: [Debugger] svchost.exe IFEO\portmonitor.exe: [Debugger] svchost.exe IFEO\powerscan.exe: [Debugger] svchost.exe IFEO\ppinupdt.exe: [Debugger] svchost.exe IFEO\pptbc.exe: [Debugger] svchost.exe IFEO\ppvstop.exe: [Debugger] svchost.exe IFEO\prizesurfer.exe: [Debugger] svchost.exe IFEO\prmt.exe: [Debugger] svchost.exe IFEO\prmvr.exe: [Debugger] svchost.exe IFEO\procdump.exe: [Debugger] svchost.exe IFEO\processmonitor.exe: [Debugger] svchost.exe IFEO\procexplorerv1.0.exe: [Debugger] svchost.exe IFEO\programauditor.exe: [Debugger] svchost.exe IFEO\proport.exe: [Debugger] svchost.exe IFEO\protectedsearch.exe: [Debugger] tasklist.exe IFEO\protector.exe: [Debugger] svchost.exe IFEO\protectx.exe: [Debugger] svchost.exe IFEO\PSANCU.exe: [Debugger] svchost.exe IFEO\PSANHost.exe: [Debugger] svchost.exe IFEO\PSANToManager.exe: [Debugger] svchost.exe IFEO\PsCtrls.exe: [Debugger] svchost.exe IFEO\PsImSvc.exe: [Debugger] svchost.exe IFEO\PskSvc.exe: [Debugger] svchost.exe IFEO\pspf.exe: [Debugger] svchost.exe IFEO\PSUNMain.exe: [Debugger] svchost.exe IFEO\purge.exe: [Debugger] svchost.exe IFEO\qconsole.exe: [Debugger] svchost.exe IFEO\qh.exe: [Debugger] svchost.exe IFEO\qserver.exe: [Debugger] svchost.exe IFEO\Quick Heal.exe: [Debugger] svchost.exe IFEO\QuickHealCleaner.exe: [Debugger] svchost.exe IFEO\rapapp.exe: [Debugger] svchost.exe IFEO\rav7.exe: [Debugger] svchost.exe IFEO\rav7win.exe: [Debugger] svchost.exe IFEO\rav8win32eng.exe: [Debugger] svchost.exe IFEO\ray.exe: [Debugger] svchost.exe IFEO\rb32.exe: [Debugger] svchost.exe IFEO\rcsync.exe: [Debugger] svchost.exe IFEO\realmon.exe: [Debugger] svchost.exe IFEO\reged.exe: [Debugger] svchost.exe IFEO\regedt32.exe: [Debugger] svchost.exe IFEO\rescue.exe: [Debugger] svchost.exe IFEO\rescue32.exe: [Debugger] svchost.exe IFEO\rrguard.exe: [Debugger] svchost.exe IFEO\rscdwld.exe: [Debugger] svchost.exe IFEO\rshell.exe: [Debugger] svchost.exe IFEO\rtvscan.exe: [Debugger] svchost.exe IFEO\rtvscn95.exe: [Debugger] svchost.exe IFEO\rulaunch.exe: [Debugger] svchost.exe IFEO\rwg: [Debugger] svchost.exe IFEO\rwg.exe: [Debugger] svchost.exe IFEO\SafetyKeeper.exe: [Debugger] svchost.exe IFEO\safeweb.exe: [Debugger] svchost.exe IFEO\sahagent.exe: [Debugger] svchost.exe IFEO\Save.exe: [Debugger] svchost.exe IFEO\SaveArmor.exe: [Debugger] svchost.exe IFEO\SaveDefense.exe: [Debugger] svchost.exe IFEO\SaveKeep.exe: [Debugger] svchost.exe IFEO\savenow.exe: [Debugger] svchost.exe IFEO\sbserv.exe: [Debugger] svchost.exe IFEO\sc.exe: [Debugger] svchost.exe IFEO\scam32.exe: [Debugger] svchost.exe IFEO\scan32.exe: [Debugger] svchost.exe IFEO\scan95.exe: [Debugger] svchost.exe IFEO\scanpm.exe: [Debugger] svchost.exe IFEO\scrscan.exe: [Debugger] svchost.exe IFEO\searchinstaller.exe: [Debugger] tasklist.exe IFEO\searchprotection.exe: [Debugger] tasklist.exe IFEO\searchprotector.exe: [Debugger] tasklist.exe IFEO\searchsettings.exe: [Debugger] tasklist.exe IFEO\searchsettings64.exe: [Debugger] tasklist.exe IFEO\seccenter.exe: [Debugger] svchost.exe IFEO\Secure Veteran.exe: [Debugger] svchost.exe IFEO\secureveteran.exe: [Debugger] svchost.exe IFEO\Security Center.exe: [Debugger] svchost.exe IFEO\SecurityFighter.exe: [Debugger] svchost.exe IFEO\securitysoldier.exe: [Debugger] svchost.exe IFEO\serv95.exe: [Debugger] svchost.exe IFEO\setloadorder.exe: [Debugger] svchost.exe IFEO\setupvameeval.exe: [Debugger] svchost.exe IFEO\setup_flowprotector_us.exe: [Debugger] svchost.exe IFEO\sgssfw32.exe: [Debugger] svchost.exe IFEO\sh.exe: [Debugger] svchost.exe IFEO\shellspyinstall.exe: [Debugger] svchost.exe IFEO\shield.exe: [Debugger] svchost.exe IFEO\shn.exe: [Debugger] svchost.exe IFEO\showbehind.exe: [Debugger] svchost.exe IFEO\signcheck.exe: [Debugger] svchost.exe IFEO\smart.exe: [Debugger] svchost.exe IFEO\smartprotector.exe: [Debugger] svchost.exe IFEO\smc.exe: [Debugger] svchost.exe IFEO\smrtdefp.exe: [Debugger] svchost.exe IFEO\sms.exe: [Debugger] svchost.exe IFEO\smss32.exe: [Debugger] svchost.exe IFEO\snapdo.exe: [Debugger] tasklist.exe IFEO\snetcfg.exe: [Debugger] svchost.exe IFEO\soap.exe: [Debugger] svchost.exe IFEO\sofi.exe: [Debugger] svchost.exe IFEO\SoftSafeness.exe: [Debugger] svchost.exe IFEO\sperm.exe: [Debugger] svchost.exe IFEO\spf.exe: [Debugger] svchost.exe IFEO\sphinx.exe: [Debugger] svchost.exe IFEO\spoler.exe: [Debugger] svchost.exe IFEO\spoolcv.exe: [Debugger] svchost.exe IFEO\spoolsv32.exe: [Debugger] svchost.exe IFEO\spywarexpguard.exe: [Debugger] svchost.exe IFEO\spyxx.exe: [Debugger] svchost.exe IFEO\srexe.exe: [Debugger] svchost.exe IFEO\srng.exe: [Debugger] svchost.exe IFEO\ss3edit.exe: [Debugger] svchost.exe IFEO\ssgrate.exe: [Debugger] svchost.exe IFEO\ssg_4104.exe: [Debugger] svchost.exe IFEO\st2.exe: [Debugger] svchost.exe IFEO\start.exe: [Debugger] svchost.exe IFEO\stcloader.exe: [Debugger] svchost.exe IFEO\stinst32.exe: [Debugger] tasklist.exe IFEO\stinst64.exe: [Debugger] tasklist.exe IFEO\supftrl.exe: [Debugger] svchost.exe IFEO\support.exe: [Debugger] svchost.exe IFEO\supporter5.exe: [Debugger] svchost.exe IFEO\svc.exe: [Debugger] svchost.exe IFEO\svchostc.exe: [Debugger] svchost.exe IFEO\svchosts.exe: [Debugger] svchost.exe IFEO\svshost.exe: [Debugger] svchost.exe IFEO\sweep95.exe: [Debugger] svchost.exe IFEO\sweepnet.sweepsrv.sys.swnetsup.exe: [Debugger] svchost.exe IFEO\symlcsvc.exe: [Debugger] svchost.exe IFEO\symproxysvc.exe: [Debugger] svchost.exe IFEO\symtray.exe: [Debugger] svchost.exe IFEO\system.exe: [Debugger] svchost.exe IFEO\system32.exe: [Debugger] svchost.exe IFEO\sysupd.exe: [Debugger] svchost.exe IFEO\tapinstall.exe: [Debugger] svchost.exe IFEO\taskmgr.exe: [Debugger] svchost.exe IFEO\taumon.exe: [Debugger] svchost.exe IFEO\tbscan.exe: [Debugger] svchost.exe IFEO\tc.exe: [Debugger] svchost.exe IFEO\tca.exe: [Debugger] svchost.exe IFEO\tcm.exe: [Debugger] svchost.exe IFEO\tds-3.exe: [Debugger] svchost.exe IFEO\tds2-98.exe: [Debugger] svchost.exe IFEO\tds2-nt.exe: [Debugger] svchost.exe IFEO\teekids.exe: [Debugger] svchost.exe IFEO\tfak.exe: [Debugger] svchost.exe IFEO\tfak5.exe: [Debugger] svchost.exe IFEO\tgbob.exe: [Debugger] svchost.exe IFEO\titanin.exe: [Debugger] svchost.exe IFEO\titaninxp.exe: [Debugger] svchost.exe IFEO\TPSrv.exe: [Debugger] svchost.exe IFEO\trickler.exe: [Debugger] svchost.exe IFEO\trjscan.exe: [Debugger] svchost.exe IFEO\trjsetup.exe: [Debugger] svchost.exe IFEO\trojantrap3.exe: [Debugger] svchost.exe IFEO\TrustWarrior.exe: [Debugger] svchost.exe IFEO\tsadbot.exe: [Debugger] svchost.exe IFEO\tsc.exe: [Debugger] svchost.exe IFEO\tvmd.exe: [Debugger] svchost.exe IFEO\tvtmd.exe: [Debugger] svchost.exe IFEO\uiscan.exe: [Debugger] svchost.exe IFEO\umbrella.exe: [Debugger] tasklist.exe IFEO\undoboot.exe: [Debugger] svchost.exe IFEO\updat.exe: [Debugger] svchost.exe IFEO\upgrad.exe: [Debugger] svchost.exe IFEO\upgrepl.exe: [Debugger] svchost.exe IFEO\utiljumpflip.exe: [Debugger] tasklist.exe IFEO\utpost.exe: [Debugger] svchost.exe IFEO\vbcmserv.exe: [Debugger] svchost.exe IFEO\vbcons.exe: [Debugger] svchost.exe IFEO\vbust.exe: [Debugger] svchost.exe IFEO\vbwin9x.exe: [Debugger] svchost.exe IFEO\vbwinntw.exe: [Debugger] svchost.exe IFEO\vcsetup.exe: [Debugger] svchost.exe IFEO\vet32.exe: [Debugger] svchost.exe IFEO\vet95.exe: [Debugger] svchost.exe IFEO\vettray.exe: [Debugger] svchost.exe IFEO\vfsetup.exe: [Debugger] svchost.exe IFEO\vir-help.exe: [Debugger] svchost.exe IFEO\virusmdpersonalfirewall.exe: [Debugger] svchost.exe IFEO\VisthAux.exe: [Debugger] svchost.exe IFEO\VisthLic.exe: [Debugger] svchost.exe IFEO\VisthUpd.exe: [Debugger] svchost.exe IFEO\vnlan300.exe: [Debugger] svchost.exe IFEO\vnpc3000.exe: [Debugger] svchost.exe IFEO\volaro: [Debugger] tasklist.exe IFEO\vonteera: [Debugger] tasklist.exe IFEO\vpc32.exe: [Debugger] svchost.exe IFEO\vpc42.exe: [Debugger] svchost.exe IFEO\vpfw30s.exe: [Debugger] svchost.exe IFEO\vptray.exe: [Debugger] svchost.exe IFEO\vscan40.exe: [Debugger] svchost.exe IFEO\vscenu6.02d30.exe: [Debugger] svchost.exe IFEO\vsched.exe: [Debugger] svchost.exe IFEO\vsecomr.exe: [Debugger] svchost.exe IFEO\vshwin32.exe: [Debugger] svchost.exe IFEO\vsisetup.exe: [Debugger] svchost.exe IFEO\vsmain.exe: [Debugger] svchost.exe IFEO\vsmon.exe: [Debugger] svchost.exe IFEO\vsserv.exe: [Debugger] svchost.exe IFEO\vsstat.exe: [Debugger] svchost.exe IFEO\vswin9xe.exe: [Debugger] svchost.exe IFEO\vswinntse.exe: [Debugger] svchost.exe IFEO\vswinperse.exe: [Debugger] svchost.exe IFEO\w32dsm89.exe: [Debugger] svchost.exe IFEO\W3asbas.exe: [Debugger] svchost.exe IFEO\w9x.exe: [Debugger] svchost.exe IFEO\watchdog.exe: [Debugger] svchost.exe IFEO\webdav.exe: [Debugger] svchost.exe IFEO\WebProxy.exe: [Debugger] svchost.exe IFEO\webscanx.exe: [Debugger] svchost.exe IFEO\websteroids.exe: [Debugger] tasklist.exe IFEO\websteroidsservice.exe: [Debugger] tasklist.exe IFEO\webtrap.exe: [Debugger] svchost.exe IFEO\wfindv32.exe: [Debugger] svchost.exe IFEO\whoswatchingme.exe: [Debugger] svchost.exe IFEO\wimmun32.exe: [Debugger] svchost.exe IFEO\win-bugsfix.exe: [Debugger] svchost.exe IFEO\win32.exe: [Debugger] svchost.exe IFEO\win32us.exe: [Debugger] svchost.exe IFEO\winactive.exe: [Debugger] svchost.exe IFEO\winav.exe: [Debugger] svchost.exe IFEO\windll32.exe: [Debugger] svchost.exe IFEO\window.exe: [Debugger] svchost.exe IFEO\windows Police Pro.exe: [Debugger] svchost.exe IFEO\windows.exe: [Debugger] svchost.exe IFEO\wininetd.exe: [Debugger] svchost.exe IFEO\wininitx.exe: [Debugger] svchost.exe IFEO\winlogin.exe: [Debugger] svchost.exe IFEO\winmain.exe: [Debugger] svchost.exe IFEO\winppr32.exe: [Debugger] svchost.exe IFEO\winrecon.exe: [Debugger] svchost.exe IFEO\winservn.exe: [Debugger] svchost.exe IFEO\winssk32.exe: [Debugger] svchost.exe IFEO\winstart.exe: [Debugger] svchost.exe IFEO\winstart001.exe: [Debugger] svchost.exe IFEO\wintsk32.exe: [Debugger] svchost.exe IFEO\winupdate.exe: [Debugger] svchost.exe IFEO\wkufind.exe: [Debugger] svchost.exe IFEO\wnad.exe: [Debugger] svchost.exe IFEO\wnt.exe: [Debugger] svchost.exe IFEO\wradmin.exe: [Debugger] svchost.exe IFEO\wrctrl.exe: [Debugger] svchost.exe IFEO\wsbgate.exe: [Debugger] svchost.exe IFEO\wscfxas.exe: [Debugger] svchost.exe IFEO\wscfxav.exe: [Debugger] svchost.exe IFEO\wscfxfw.exe: [Debugger] svchost.exe IFEO\wsctool.exe: [Debugger] svchost.exe IFEO\wupdater.exe: [Debugger] svchost.exe IFEO\wupdt.exe: [Debugger] svchost.exe IFEO\wyvernworksfirewall.exe: [Debugger] svchost.exe IFEO\xpdeluxe.exe: [Debugger] svchost.exe IFEO\xpf202en.exe: [Debugger] svchost.exe IFEO\xp_antispyware.exe: [Debugger] svchost.exe IFEO\zapro.exe: [Debugger] svchost.exe IFEO\zapsetup3001.exe: [Debugger] svchost.exe IFEO\zatutor.exe: [Debugger] svchost.exe IFEO\zonalm2601.exe: [Debugger] svchost.exe IFEO\zonealarm.exe: [Debugger] svchost.exe IFEO\_avp32.exe: [Debugger] svchost.exe IFEO\_avpcc.exe: [Debugger] svchost.exe IFEO\_avpm.exe: [Debugger] svchost.exe IFEO\~1.exe: [Debugger] svchost.exe IFEO\~2.exe: [Debugger] svchost.exe Startup: C:\Users\Hasło!!\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\IMVU.lnk Startup: C:\Users\Nowa Era\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\lptaeaej.lnk HKLM\...\AppCertDlls: [x64] -> c:\program files\browser tab search by ask\safetynut\x64\safetycrt.dll HKLM\...\AppCertDlls: [x86] -> C:\Program Files\Movies Toolbar\Datamngr\apcrtldr.dll <===== ATTENTION ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => No File AlternateShell: services32.exe Task: {0903703F-B3FC-4287-8A19-C9D9C788FF09} - System32\Tasks\DLL-files.com Fixer_MONTHLY => C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe [2012-12-04] (Dll-FIles.Com) Task: {0C56EFDD-EAEC-4B44-A689-D2743B676925} - System32\Tasks\YourFile Update => C:\Program Files\YourFileDownloader\YourFileUpdater.exe <==== ATTENTION Task: {0F845BBC-F141-4678-BECD-5FFA3307BF08} - System32\Tasks\task120791 => C:\Users\iBOX\AppData\Roaming\Best Antivirus Software\ScanDisk_.exe Task: {197FEA17-D5C2-4EAE-934C-4175E00AC7CA} - System32\Tasks\586f69c1-a224-4045-bacd-9a2247fe80b3-5 => C:\Program Files\TheTorntv V10\586f69c1-a224-4045-bacd-9a2247fe80b3-5.exe [2014-09-21] (esc) <==== ATTENTION Task: {1A70B462-513A-4E04-9E4E-32AB062FE300} - System32\Tasks\242955c1-bb96-411e-9979-c474af47ea5f => C:\Program Files\TheTorntv V10\242955c1-bb96-411e-9979-c474af47ea5f.exe [2014-09-21] () <==== ATTENTION Task: {1C11890E-CD1E-4563-85E9-EFD03FC5BED6} - System32\Tasks\8bbbf7b1-3b68-4dc9-a4c7-b883a278e825-11 => C:\Program Files\TheGoPhoto.it V10\8bbbf7b1-3b68-4dc9-a4c7-b883a278e825-11.exe <==== ATTENTION Task: {1E5DC1BC-C7B0-46C3-9ED0-0537422F6C94} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-1495774856-1328017135-2697362928-1000UA => C:\Users\iBOX\AppData\Local\Facebook\Update\FacebookUpdate.exe Task: {1F5DB59B-44FE-447B-BA55-7D8855DE15FF} - System32\Tasks\Desk 365 RunAsStdUser => C:\Program Files\Desk 365\desk365.exe <==== ATTENTION Task: {2215F4FE-37C4-4052-AEB8-4A31EEEEDB45} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-1495774856-1328017135-2697362928-1005UA => C:\Users\oko\AppData\Local\Facebook\Update\FacebookUpdate.exe Task: {2B268541-F0D7-40F4-8F4F-C2A789953801} - System32\Tasks\globalUpdateUpdateTaskMachineCore => C:\Program Files\globalUpdate\Update\GoogleUpdate.exe [2014-06-15] (globalUpdate) <==== ATTENTION Task: {30F34253-7555-4BCB-93A0-01AEC7198CCC} - System32\Tasks\1b1d9b86-fa7e-48f6-8ad3-9db6717d0ec7-1 => C:\Program Files\Plus-HD-9.4\Plus-HD-9.4-codedownloader.exe [2014-06-15] (Plus HD) Task: {3D0A325D-EC02-4995-AAC5-810FB1820ABE} - System32\Tasks\globalUpdateUpdateTaskMachineUA => C:\Program Files\globalUpdate\Update\GoogleUpdate.exe [2014-06-15] (globalUpdate) <==== ATTENTION Task: {40559FEC-0F1A-4A5C-B858-11EBFBE11BD7} - System32\Tasks\fac95ffd-789a-48b7-97cc-cfa9f6fe59bd => C:\Program Files\TheGoPhoto.it V10\fac95ffd-789a-48b7-97cc-cfa9f6fe59bd.exe <==== ATTENTION Task: {4155B328-6361-4934-B31F-69B95C09D81F} - System32\Tasks\586f69c1-a224-4045-bacd-9a2247fe80b3-6 => C:\Program Files\TheTorntv V10\586f69c1-a224-4045-bacd-9a2247fe80b3-6.exe [2014-09-21] (esc) <==== ATTENTION Task: {42D60CF4-D2BF-4EA8-B285-4C27AAC97241} - System32\Tasks\{BAB6E2AE-8A69-46DC-89CE-1B43152F26E6} => D:\game\King Arthur II Dead Legions\KingArthurII.exe Task: {4C04D238-57E1-4E9B-BFCE-4D38FBD979DD} - System32\Tasks\8bbbf7b1-3b68-4dc9-a4c7-b883a278e825-7 => C:\Program Files\TheGoPhoto.it V10\8bbbf7b1-3b68-4dc9-a4c7-b883a278e825-7.exe <==== ATTENTION Task: {4D09EEFD-3A9A-4202-9A11-5167A79DBC8F} - System32\Tasks\1b1d9b86-fa7e-48f6-8ad3-9db6717d0ec7-4 => C:\Program Files\Plus-HD-9.4\1b1d9b86-fa7e-48f6-8ad3-9db6717d0ec7-4.exe [2014-06-15] (Plus HD) Task: {51E66149-2AAA-4DD9-9335-7FEBEB0F6AA4} - System32\Tasks\Norton WSC Integration => C:\Program Files\Norton AntiVirus\Engine\19.1.1.3\WSCStub.exe Task: {5841F8B6-B2FC-4E88-9B72-A5D2F52784B9} - System32\Tasks\{193C0DA0-A688-48AB-AF0A-377F30D12DA3} => D:\game\King Arthur II Dead Legions\KingArthurII.exe Task: {5B82E2D3-A075-4547-AC0B-66A062EFF29E} - System32\Tasks\RunAsStdUser Task => C:\Users\Nowa Era\AppData\Local\Oxy\Application\oxy.exe [2013-12-10] (Escolade Solutions LTD) <==== ATTENTION Task: {5D22AFF8-8BEC-4B2E-84BA-9DD2F43D9AF6} - System32\Tasks\1b1d9b86-fa7e-48f6-8ad3-9db6717d0ec7-7 => C:\Program Files\Plus-HD-9.4\Plus-HD-9.4-nova.exe [2014-06-15] (Plus HD) Task: {5DBB7DA9-75BA-41D3-AC93-7CF487903873} - System32\Tasks\DealPlyUpdate => C:\Program <==== ATTENTION Task: {5EC4EB37-EA2F-4545-83A5-99A51839A0AD} - System32\Tasks\GoforFilesUpdate => C:\Program Files\GoforFiles\GFFUpdater.exe <==== ATTENTION Task: {64E31734-AB4F-4084-8BFA-B97F2E0AF852} - System32\Tasks\1b1d9b86-fa7e-48f6-8ad3-9db6717d0ec7-5 => C:\Program Files\Plus-HD-9.4\1b1d9b86-fa7e-48f6-8ad3-9db6717d0ec7-5.exe [2014-06-15] (Plus HD) Task: {6C3801F3-F823-4AA0-8408-D50774CA5662} - System32\Tasks\337_wallpaper_schedule_update => C:\Users\oko\AppData\Roaming\337\337 Wallpaper\plusapp.exe Task: {6DD2D84C-EF4C-47B0-8FFB-B2E8F84642A3} - System32\Tasks\586f69c1-a224-4045-bacd-9a2247fe80b3-7 => C:\Program Files\TheTorntv V10\586f69c1-a224-4045-bacd-9a2247fe80b3-7.exe [2014-09-21] (esc) <==== ATTENTION Task: {6FE95652-AAB5-4B20-88EF-906246EC65F1} - System32\Tasks\Only-search => C:\Users\Nowa Era\AppData\Local\onlysearch\onlysearch\1.3.12.9\onlysearch.exe [2014-09-21] (Pay By Ads LTD) Task: {70764AD7-033F-4D88-A565-22C1D2B19554} - System32\Tasks\8bbbf7b1-3b68-4dc9-a4c7-b883a278e825-4 => C:\Program Files\TheGoPhoto.it V10\8bbbf7b1-3b68-4dc9-a4c7-b883a278e825-4.exe <==== ATTENTION Task: {761B72BC-566B-4BF0-AD26-3E5936F9B0CB} - System32\Tasks\SpeedUpMyPC => C:\Program Files\Uniblue\SpeedUpMyPC\sump.exe [2013-01-08] (Uniblue Systems Ltd) <==== ATTENTION Task: {7BCB54FC-25C7-4DFE-8F30-F5F34D5C5EEB} - System32\Tasks\RunAsStdUser => C:\Program Files\Desk 365\desk365.exe <==== ATTENTION Task: {7BEA5776-2C0F-45D2-B92D-345A9F2948FB} - System32\Tasks\GinyasBrowserCompanion Stats Report => C:\ProgramData\GinyasBrowserCompanion\tbhcn.exe [2013-02-18] (Blabbers Communications Ltd) <==== ATTENTION Task: {7DE10E07-16DE-4079-BE65-D2CC1569EE15} - System32\Tasks\EPUpdater => C:\Users\hory jesteś\AppData\Roaming\BabSolution\Shared\BabMaint.exe <==== ATTENTION Task: {82E4365A-CF61-4E97-8389-80E077F24A50} - System32\Tasks\SomotoUpdateCheckerAutoStart => C:\Users\Nowa Era\AppData\Local\FilesFrog Update Checker\update_checker.exe [2013-10-17] (Somoto) <==== ATTENTION Task: {83CE8C64-C4F8-45E0-B2CB-3B259DD9F668} - System32\Tasks\7cd83429-cbcb-4042-80d5-a7ac55a54735 => C:\Program Files\TheGoPhoto.it V10\7cd83429-cbcb-4042-80d5-a7ac55a54735.exe <==== ATTENTION Task: {858CD69E-5441-4799-A7DC-2C4323A4890B} - System32\Tasks\586f69c1-a224-4045-bacd-9a2247fe80b3-4 => C:\Program Files\TheTorntv V10\586f69c1-a224-4045-bacd-9a2247fe80b3-4.exe [2014-09-21] (esc) <==== ATTENTION Task: {8955393A-3FB0-4067-82BE-B07CB0B1785D} - System32\Tasks\8bbbf7b1-3b68-4dc9-a4c7-b883a278e825-5 => C:\Program Files\TheGoPhoto.it V10\8bbbf7b1-3b68-4dc9-a4c7-b883a278e825-5.exe <==== ATTENTION Task: {89B5E500-41C3-46E6-87A3-C960F6B78704} - System32\Tasks\586f69c1-a224-4045-bacd-9a2247fe80b3-2 => C:\Program Files\TheTorntv V10\586f69c1-a224-4045-bacd-9a2247fe80b3-2.exe [2014-09-21] (esc) <==== ATTENTION Task: {93BBD3C1-A07E-4751-90A7-80A367DC11A9} - System32\Tasks\Updater36928.exe => C:\Users\hory Task: {950C7DCB-FC1E-4633-8CAC-DD23AE0363E0} - System32\Tasks\DealPly => C:\Users\hory <==== ATTENTION Task: {97F0C298-FACF-4EA6-8B72-9E5670F371B0} - System32\Tasks\Oxy Updater => C:\Users\Nowa Era\AppData\Roaming\Oxy\Loader.exe [2014-10-16] (SOFTWARE AGILITY LIMITED) <==== ATTENTION Task: {9BF51325-E520-4602-9964-92DC5ECA3AD0} - System32\Tasks\8bbbf7b1-3b68-4dc9-a4c7-b883a278e825-5_user => C:\Program Files\TheGoPhoto.it V10\8bbbf7b1-3b68-4dc9-a4c7-b883a278e825-5.exe <==== ATTENTION Task: {9FF3CDCB-9018-4A49-91B1-ECEE05F47A8C} - System32\Tasks\GinyasBrowserCompanion FireFox Watcher => C:\ProgramData\GinyasBrowserCompanion\tbhcn.exe [2013-02-18] (Blabbers Communications Ltd) <==== ATTENTION Task: {A06653D8-CAEB-4A7A-BDB8-1A7206BD1672} - System32\Tasks\Norton AntiVirus\Norton Error Analyzer => C:\Program Files\Norton AntiVirus\Engine\19.1.1.3\SymErr.exe Task: {A1365421-38EE-4018-A581-4956F5338FE7} - System32\Tasks\Only-search Udpater => C:\Users\Nowa Era\AppData\Local\onlysearch\onlysearch\1.3.12.9\onlysetup.exe [2014-09-21] (Pay By Ads LTD) Task: {A2E01666-2341-485D-BF89-27A0AD0E6A66} - System32\Tasks\GinyasBrowserCompanion Runner => C:\ProgramData\GinyasBrowserCompanion\tbhcn.exe [2013-02-18] (Blabbers Communications Ltd) <==== ATTENTION Task: {A42129E8-A5BC-48C4-A669-BB60F0A1B129} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-1495774856-1328017135-2697362928-1000Core => C:\Users\iBOX\AppData\Local\Facebook\Update\FacebookUpdate.exe Task: {A7BE1506-4FB6-4137-BCC5-14B044BB9289} - System32\Tasks\GinyasBrowserCompanion Chrome Watcher => C:\ProgramData\GinyasBrowserCompanion\tbhcn.exe [2013-02-18] (Blabbers Communications Ltd) <==== ATTENTION Task: {A82BBE74-03FF-4CD7-B348-A3D7CDD20932} - System32\Tasks\1b1d9b86-fa7e-48f6-8ad3-9db6717d0ec7-2 => C:\Program Files\Plus-HD-9.4\1b1d9b86-fa7e-48f6-8ad3-9db6717d0ec7-2.exe [2014-06-15] (Plus HD) Task: {A8A5C0B8-36C8-48E2-980C-F942026C5812} - System32\Tasks\1b1d9b86-fa7e-48f6-8ad3-9db6717d0ec7-11 => C:\Program Files\Plus-HD-9.4\1b1d9b86-fa7e-48f6-8ad3-9db6717d0ec7-11.exe [2014-06-15] (Plus HD) Task: {ADC12109-B66A-4F41-9F08-E0354518CFC2} - \Program aktualizacji online firmy Adobe. No Task File <==== ATTENTION Task: {B5866B6A-0F41-4540-9B8B-E71DDACF61AB} - System32\Tasks\{7E99F292-5604-4846-836B-CE5F0F8FED9A} => D:\game\King Arthur II Dead Legions\KingArthurII.exe Task: {B6194EC1-E0DB-48E6-B8E4-C354A908EA8A} - System32\Tasks\8bbbf7b1-3b68-4dc9-a4c7-b883a278e825-6 => C:\Program Files\TheGoPhoto.it V10\8bbbf7b1-3b68-4dc9-a4c7-b883a278e825-6.exe <==== ATTENTION Task: {B655E61D-7B4F-450B-9697-D79EB4ACE4DF} - System32\Tasks\BrowserProtect => Sc.exe start BrowserProtect <==== ATTENTION Task: {B7E25877-2030-4C36-8AA3-56AB8C825A30} - System32\Tasks\Windows Updater => C:\Users\Nowa Era\AppData\Roaming\Oxy\Updater.exe [2014-02-14] () <==== ATTENTION Task: {BA19058A-89BA-4B95-BAF4-82BACF867D18} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-1495774856-1328017135-2697362928-1005Core => C:\Users\oko\AppData\Local\Facebook\Update\FacebookUpdate.exe Task: {BF740A4D-A4D9-46C6-8C77-50A2FDEA1ACA} - System32\Tasks\GinyasBrowserCompanion Update Checker => C:\ProgramData\GinyasBrowserCompanion\tbhcn.exe [2013-02-18] (Blabbers Communications Ltd) <==== ATTENTION Task: {C1C161DD-4A97-4444-8F47-3D6A84E5916D} - System32\Tasks\1b1d9b86-fa7e-48f6-8ad3-9db6717d0ec7-3 => C:\Program Files\Plus-HD-9.4\1b1d9b86-fa7e-48f6-8ad3-9db6717d0ec7-3.exe [2014-06-15] (Plus HD) Task: {C5682AA7-3BCF-4AA2-BA74-6054B4AC2371} - System32\Tasks\Oxy => C:\Users\Nowa Era\AppData\Roaming\Oxy\Updater.exe [2014-02-14] () <==== ATTENTION Task: {C85B8673-A31F-4622-B873-83CD45FBCBB4} - System32\Tasks\eb94b16e-1067-4ff7-bf7a-66a081b38643 => C:\Program Files\TheTorntv V10\eb94b16e-1067-4ff7-bf7a-66a081b38643.exe [2014-09-21] (esc) <==== ATTENTION Task: {C90ABDE7-CBB2-427D-B743-01CC3163209D} - System32\Tasks\Funmoods => C:\Users\Colin\AppData\Roaming\Funmoods\UpdateProc\UpdateTask.exe <==== ATTENTION Task: {D7D4D263-447A-4298-8DDC-AED8C1739E7C} - System32\Tasks\586f69c1-a224-4045-bacd-9a2247fe80b3-5_user => C:\Program Files\TheTorntv V10\586f69c1-a224-4045-bacd-9a2247fe80b3-5.exe [2014-09-21] (esc) <==== ATTENTION Task: {D885331F-BB3A-43F8-A028-CDF8FEF82513} - System32\Tasks\{224B1F8C-B31F-4343-A7F3-2F6440623B6E} => C:\Program Files\Skype\Phone\Skype.exe Task: {E09B8AEC-A74A-450B-B117-9878E8550769} - System32\Tasks\8bbbf7b1-3b68-4dc9-a4c7-b883a278e825-2 => C:\Program Files\TheGoPhoto.it V10\8bbbf7b1-3b68-4dc9-a4c7-b883a278e825-2.exe <==== ATTENTION Task: {E3C1B144-D0F1-45D2-8DE2-709AC74F11A1} - System32\Tasks\8bbbf7b1-3b68-4dc9-a4c7-b883a278e825-3 => C:\Program Files\TheGoPhoto.it V10\8bbbf7b1-3b68-4dc9-a4c7-b883a278e825-3.exe <==== ATTENTION Task: {E4A62C9F-8EFA-44EE-ACB1-8862688F88E1} - System32\Tasks\CPU Grid Computing => C:\Windows\system32\dfrg\runner.exe [2013-09-19] () Task: {E4A93EA3-0971-4428-A236-FD729CE5B7B9} - System32\Tasks\spmonitor => C:\Program Files\Uniblue\SpeedUpMyPC\spmonitor.exe [2013-01-08] (Uniblue Systems Ltd) Task: {E9553C8B-E3E6-4271-9DE3-DF16EA7FBD72} - System32\Tasks\Express Files Updater => C:\Program Files\ExpressFiles\EFupdater.exe [2012-12-13] (http://www.express-files.com/) <==== ATTENTION Task: {EC625F33-7302-45D7-9450-7FA61522C2BF} - System32\Tasks\Opera scheduled Autoupdate 1389461820 => C:\Program Files\Opera\launcher.exe [2014-10-15] (Opera Software) Task: {F0B0D802-6D2F-484E-8BE6-313C6E02FD78} - System32\Tasks\8bbbf7b1-3b68-4dc9-a4c7-b883a278e825-1 => C:\Program Files\TheGoPhoto.it V10\TheGoPhoto.it V10-codedownloader.exe <==== ATTENTION Task: {F0EC6B16-22FE-4F22-AE36-72C3AB9504A6} - System32\Tasks\{B3D49D43-A4FE-4342-A302-3E064128F131} => D:\game\King Arthur II Dead Legions\KingArthurII.exe Task: {F34D18E6-61E4-4F9F-8311-4EFAF6180E20} - System32\Tasks\586f69c1-a224-4045-bacd-9a2247fe80b3-11 => C:\Program Files\TheTorntv V10\586f69c1-a224-4045-bacd-9a2247fe80b3-11.exe [2014-09-21] (esc) <==== ATTENTION Task: {F37E98B2-5C12-4735-B3FA-D2626DE77040} - System32\Tasks\586f69c1-a224-4045-bacd-9a2247fe80b3-3 => C:\Program Files\TheTorntv V10\586f69c1-a224-4045-bacd-9a2247fe80b3-3.exe [2014-09-21] (esc) <==== ATTENTION Task: {F484331C-15A4-46B2-8800-B8AB6C91AB62} - System32\Tasks\Protected Search\Protected Search => C:\Program Files\Protected Search\ProtectedSearch.exe [2012-08-19] (Simplygen) <==== ATTENTION Task: {F6F158C3-EB85-4B60-BA97-23FE480804E6} - System32\Tasks\DLL-files.com Fixer_UPDATES => C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe [2012-12-04] (Dll-FIles.Com) Task: {F95634B3-7ABD-4FF4-8FA1-3EC4A7D6C5DE} - System32\Tasks\1b1d9b86-fa7e-48f6-8ad3-9db6717d0ec7-6 => C:\Program Files\Plus-HD-9.4\Plus-HD-9.4-novainstaller.exe [2014-06-15] (Plus HD) Task: {FB60DADD-6FB3-474A-9AFB-14E6A46B7A71} - System32\Tasks\586f69c1-a224-4045-bacd-9a2247fe80b3-1 => C:\Program Files\TheTorntv V10\TheTorntv V10-codedownloader.exe [2014-09-21] (esc) <==== ATTENTION Task: {FFBFB072-E1C3-40E5-9A4A-91657F953117} - System32\Tasks\Norton AntiVirus\Norton Error Processor => C:\Program Files\Norton AntiVirus\Engine\19.1.1.3\SymErr.exe Task: {FFED7164-F0A8-433D-8BCE-34F31FD886D1} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe Task: C:\Windows\Tasks\1b1d9b86-fa7e-48f6-8ad3-9db6717d0ec7-1.job => C:\Program Files\Plus-HD-9.4\Plus-HD-9.4-codedownloader.exe <==== ATTENTION Task: C:\Windows\Tasks\1b1d9b86-fa7e-48f6-8ad3-9db6717d0ec7-11.job => C:\Program Files\Plus-HD-9.4\1b1d9b86-fa7e-48f6-8ad3-9db6717d0ec7-11.exe <==== ATTENTION Task: C:\Windows\Tasks\1b1d9b86-fa7e-48f6-8ad3-9db6717d0ec7-2.job => C:\Program Files\Plus-HD-9.4\1b1d9b86-fa7e-48f6-8ad3-9db6717d0ec7-2.exe <==== ATTENTION Task: C:\Windows\Tasks\1b1d9b86-fa7e-48f6-8ad3-9db6717d0ec7-3.job => C:\Program Files\Plus-HD-9.4\1b1d9b86-fa7e-48f6-8ad3-9db6717d0ec7-3.exe <==== ATTENTION Task: C:\Windows\Tasks\1b1d9b86-fa7e-48f6-8ad3-9db6717d0ec7-4.job => C:\Program Files\Plus-HD-9.4\1b1d9b86-fa7e-48f6-8ad3-9db6717d0ec7-4.exe <==== ATTENTION Task: C:\Windows\Tasks\1b1d9b86-fa7e-48f6-8ad3-9db6717d0ec7-5.job => C:\Program Files\Plus-HD-9.4\1b1d9b86-fa7e-48f6-8ad3-9db6717d0ec7-5.exe <==== ATTENTION Task: C:\Windows\Tasks\1b1d9b86-fa7e-48f6-8ad3-9db6717d0ec7-6.job => C:\Program Files\Plus-HD-9.4\Plus-HD-9.4-novainstaller.exe <==== ATTENTION Task: C:\Windows\Tasks\1b1d9b86-fa7e-48f6-8ad3-9db6717d0ec7-7.job => C:\Program Files\Plus-HD-9.4\Plus-HD-9.4-nova.exe <==== ATTENTION Task: C:\Windows\Tasks\242955c1-bb96-411e-9979-c474af47ea5f.job => C:\Program Files\TheTorntv V10\242955c1-bb96-411e-9979-c474af47ea5f.exe <==== ATTENTION Task: C:\Windows\Tasks\586f69c1-a224-4045-bacd-9a2247fe80b3-1.job => C:\Program Files\TheTorntv V10\TheTorntv V10-codedownloader.exe <==== ATTENTION Task: C:\Windows\Tasks\586f69c1-a224-4045-bacd-9a2247fe80b3-11.job => C:\Program Files\TheTorntv V10\586f69c1-a224-4045-bacd-9a2247fe80b3-11.exe <==== ATTENTION Task: C:\Windows\Tasks\586f69c1-a224-4045-bacd-9a2247fe80b3-2.job => C:\Program Files\TheTorntv V10\586f69c1-a224-4045-bacd-9a2247fe80b3-2.exe <==== ATTENTION Task: C:\Windows\Tasks\586f69c1-a224-4045-bacd-9a2247fe80b3-3.job => C:\Program Files\TheTorntv V10\586f69c1-a224-4045-bacd-9a2247fe80b3-3.exe <==== ATTENTION Task: C:\Windows\Tasks\586f69c1-a224-4045-bacd-9a2247fe80b3-4.job => C:\Program Files\TheTorntv V10\586f69c1-a224-4045-bacd-9a2247fe80b3-4.exe <==== ATTENTION Task: C:\Windows\Tasks\586f69c1-a224-4045-bacd-9a2247fe80b3-5.job => C:\Program Files\TheTorntv V10\586f69c1-a224-4045-bacd-9a2247fe80b3-5.exe <==== ATTENTION Task: C:\Windows\Tasks\586f69c1-a224-4045-bacd-9a2247fe80b3-5_user.job => C:\Program Files\TheTorntv V10\586f69c1-a224-4045-bacd-9a2247fe80b3-5.exe <==== ATTENTION Task: C:\Windows\Tasks\586f69c1-a224-4045-bacd-9a2247fe80b3-6.job => C:\Program Files\TheTorntv V10\586f69c1-a224-4045-bacd-9a2247fe80b3-6.exe <==== ATTENTION Task: C:\Windows\Tasks\586f69c1-a224-4045-bacd-9a2247fe80b3-7.job => C:\Program Files\TheTorntv V10\586f69c1-a224-4045-bacd-9a2247fe80b3-7.exe <==== ATTENTION Task: C:\Windows\Tasks\7cd83429-cbcb-4042-80d5-a7ac55a54735.job => C:\Program Files\TheGoPhoto.it V10\7cd83429-cbcb-4042-80d5-a7ac55a54735.exe <==== ATTENTION Task: C:\Windows\Tasks\8bbbf7b1-3b68-4dc9-a4c7-b883a278e825-1.job => C:\Program Files\TheGoPhoto.it V10\TheGoPhoto.it V10-codedownloader.exe <==== ATTENTION Task: C:\Windows\Tasks\8bbbf7b1-3b68-4dc9-a4c7-b883a278e825-11.job => C:\Program Files\TheGoPhoto.it V10\8bbbf7b1-3b68-4dc9-a4c7-b883a278e825-11.exe <==== ATTENTION Task: C:\Windows\Tasks\8bbbf7b1-3b68-4dc9-a4c7-b883a278e825-2.job => C:\Program Files\TheGoPhoto.it V10\8bbbf7b1-3b68-4dc9-a4c7-b883a278e825-2.exe <==== ATTENTION Task: C:\Windows\Tasks\8bbbf7b1-3b68-4dc9-a4c7-b883a278e825-3.job => C:\Program Files\TheGoPhoto.it V10\8bbbf7b1-3b68-4dc9-a4c7-b883a278e825-3.exe <==== ATTENTION Task: C:\Windows\Tasks\8bbbf7b1-3b68-4dc9-a4c7-b883a278e825-4.job => C:\Program Files\TheGoPhoto.it V10\8bbbf7b1-3b68-4dc9-a4c7-b883a278e825-4.exe <==== ATTENTION Task: C:\Windows\Tasks\8bbbf7b1-3b68-4dc9-a4c7-b883a278e825-5.job => C:\Program Files\TheGoPhoto.it V10\8bbbf7b1-3b68-4dc9-a4c7-b883a278e825-5.exe <==== ATTENTION Task: C:\Windows\Tasks\8bbbf7b1-3b68-4dc9-a4c7-b883a278e825-5_user.job => C:\Program Files\TheGoPhoto.it V10\8bbbf7b1-3b68-4dc9-a4c7-b883a278e825-5.exe <==== ATTENTION Task: C:\Windows\Tasks\8bbbf7b1-3b68-4dc9-a4c7-b883a278e825-6.job => C:\Program Files\TheGoPhoto.it V10\8bbbf7b1-3b68-4dc9-a4c7-b883a278e825-6.exe <==== ATTENTION Task: C:\Windows\Tasks\8bbbf7b1-3b68-4dc9-a4c7-b883a278e825-7.job => C:\Program Files\TheGoPhoto.it V10\8bbbf7b1-3b68-4dc9-a4c7-b883a278e825-7.exe <==== ATTENTION Task: C:\Windows\Tasks\DLL-Files.Com Fixer_MONTHLY.job => C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe Task: C:\Windows\Tasks\DLL-Files.Com Fixer_Updates.job => C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe Task: C:\Windows\Tasks\eb94b16e-1067-4ff7-bf7a-66a081b38643.job => C:\Program Files\TheTorntv V10\eb94b16e-1067-4ff7-bf7a-66a081b38643.exe <==== ATTENTION Task: C:\Windows\Tasks\fac95ffd-789a-48b7-97cc-cfa9f6fe59bd.job => C:\Program Files\TheGoPhoto.it V10\fac95ffd-789a-48b7-97cc-cfa9f6fe59bd.exe <==== ATTENTION Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1495774856-1328017135-2697362928-1000Core.job => C:\Users\iBOX\AppData\Local\Facebook\Update\FacebookUpdate.exe Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1495774856-1328017135-2697362928-1000UA.job => C:\Users\iBOX\AppData\Local\Facebook\Update\FacebookUpdate.exe Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1495774856-1328017135-2697362928-1005Core.job => C:\Users\oko\AppData\Local\Facebook\Update\FacebookUpdate.exe Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1495774856-1328017135-2697362928-1005UA.job => C:\Users\oko\AppData\Local\Facebook\Update\FacebookUpdate.exe Task: C:\Windows\Tasks\GinyasBrowserCompanion Chrome Watcher.job => C:\ProgramData\GinyasBrowserCompanion\tbhcn.exe <==== ATTENTION Task: C:\Windows\Tasks\GinyasBrowserCompanion FireFox Watcher.job => C:\ProgramData\GinyasBrowserCompanion\tbhcn.exe <==== ATTENTION Task: C:\Windows\Tasks\GinyasBrowserCompanion Runner.job => C:\ProgramData\GinyasBrowserCompanion\tbhcn.exe <==== ATTENTION Task: C:\Windows\Tasks\GinyasBrowserCompanion Stats Report.job => C:\ProgramData\GinyasBrowserCompanion\tbhcn.exe <==== ATTENTION Task: C:\Windows\Tasks\GinyasBrowserCompanion Update Checker.job => C:\ProgramData\GinyasBrowserCompanion\tbhcn.exe <==== ATTENTION Task: C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job => C:\Program Files\globalUpdate\Update\GoogleUpdate.exe <==== ATTENTION Task: C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job => C:\Program Files\globalUpdate\Update\GoogleUpdate.exe <==== ATTENTION Task: C:\Windows\Tasks\SpeedUpMyPC.job => C:\Program Files\Uniblue\SpeedUpMyPC\sump.exe <==== ATTENTION Task: C:\Windows\Tasks\spmonitor.job => C:\Program Files\Uniblue\SpeedUpMyPC\spmonitor.exe CHR HKCU\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://search.delta-homes.com/web/?utm_source=b&utm_medium=wpm0226&utm_campaign=installer&utm_content=ds&from=wpm0226&uid=WDCXWD5000AAKS-00V0A0_WD-WCAWFC35827658276&ts=1393439438&type=default&q={searchTerms} HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.gazeta.pl/0,0.html?p=181&d=20141007 HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://istart.webssearches.com/?type=hp&ts=1402845752&from=amt&uid=WDCXWD5000AAKS-00V0A0_WD-WCAWFC35827658276 HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://search.delta-homes.com/web/?utm_source=b&utm_medium=wpm0226&utm_campaign=installer&utm_content=ds&from=wpm0226&uid=WDCXWD5000AAKS-00V0A0_WD-WCAWFC35827658276&ts=1393439438&type=default&q={searchTerms} HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.gazeta.pl/0,0.html?p=181&d=20141007 HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://istart.webssearches.com/?type=hp&ts=1402845752&from=amt&uid=WDCXWD5000AAKS-00V0A0_WD-WCAWFC35827658276 HKLM\Software\Microsoft\Internet Explorer\Main,Start Default_Page_URL = http://search.certified-toolbar.com?si=41516&home=true&tid=553 HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://istart.webssearches.com/web/?type=ds&ts=1402845752&from=amt&uid=WDCXWD5000AAKS-00V0A0_WD-WCAWFC35827658276&q={searchTerms} HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://search.certified-toolbar.com?si=41516&tid=553&bs=true&q= HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://istart.webssearches.com/web/?type=ds&ts=1402845752&from=amt&uid=WDCXWD5000AAKS-00V0A0_WD-WCAWFC35827658276&q={searchTerms} URLSearchHook: HKLM - (No Name) - {c86eb8a9-ccc2-4b6c-b75d-73576ed591bf} - No File URLSearchHook: HKLM - (No Name) - {707db484-2428-402d-afb5-d85b387544c7} - No File URLSearchHook: HKLM - (No Name) - {90b49673-5506-483e-b92b-ca0265bd9ca8} - No File URLSearchHook: HKLM - (No Name) - {09ec805c-cb2e-4d53-b0d3-a75a428b81c7} - No File URLSearchHook: HKLM - (No Name) - {8532a8b7-c06a-41bb-936a-8ce73e4711ed} - No File URLSearchHook: HKLM - Begin-download FLV Toolbar - {84452a8c-bc09-4187-ad3b-b275b98eb939} - C:\Users\Nowa Era\AppData\LocalLow\Begin-download_FLV\prxtbBeg2.dll (ClientConnect Ltd.) URLSearchHook: HKLM - (No Name) - {f2e99efd-72dc-4c5d-9f7c-219133ff8e40} - No File URLSearchHook: HKLM - uTorrentControl_v6 Toolbar - {96f454ea-9d38-474f-b504-56193e00c1a5} - C:\Users\Nowa Era\AppData\LocalLow\uTorrentControl_v6\prxtbuTo2.dll (ClientConnect Ltd.) URLSearchHook: HKCU - (No Name) - {f2e99efd-72dc-4c5d-9f7c-219133ff8e40} - No File URLSearchHook: HKCU - uTorrentControl_v6 Toolbar - {96f454ea-9d38-474f-b504-56193e00c1a5} - C:\Users\Nowa Era\AppData\LocalLow\uTorrentControl_v6\prxtbuTo2.dll (ClientConnect Ltd.) StartMenuInternet: IEXPLORE.EXE - C:\Program Files\Internet Explorer\iexplore.exe http://www.22find.com/?utm_source=b&utm_medium=cor&from=cor&uid=WDCXWD5000AAKS-00V0A0_WD-WCAWFC35827658276&ts=1361627390 SearchScopes: HKLM - DefaultScope {F8DA724C-B79D-4DAA-A38F-74104154D700} URL = SearchScopes: HKLM - Software URL = SearchScopes: HKLM - {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = SearchScopes: HKLM - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://istart.webssearches.com/web/?type=ds&ts=1402845752&from=amt&uid=WDCXWD5000AAKS-00V0A0_WD-WCAWFC35827658276&q={searchTerms} SearchScopes: HKLM - {64B3B655-3FDC-49BB-933C-2BF0324CB28D} URL = http://search.sweetim.com/search.asp?src=6&st=17&q={searchTerms}&barid={BBCD3C31-A2E2-11E0-B033-001E741B774D} SearchScopes: HKLM - {95B7759C-8C7F-4BF1-B163-73684A933233} URL = SearchScopes: HKLM - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = http://dts.search.ask.com/sr?src=ieb&gct=ds&appid=484&systemid=406&v=a12281-116&apn_uid=8362438165114751&apn_dtid=BND406&o=APN10645&apn_ptnrs=AG6&q={searchTerms} SearchScopes: HKLM - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2488} URL = http://dts.search.ask.com/sr?src=ieb&gct=ds&appid=210&systemid=488&v=a13277-348&apn_uid=2090850645444295&apn_dtid=TCH001&o=APN11459&apn_ptnrs=AG1&q={searchTerms} SearchScopes: HKLM - {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = http://search.sweetim.com/search.asp?src=6&q={searchTerms}&crg=3.1010000.10011&barid={BBCD3C31-A2E2-11E0-B033-001E741B774D} SearchScopes: HKLM - {B7971660-A1CE-4FDD-B9E0-2C37D77AFB0B} URL = SearchScopes: HKLM - {BB74DE59-BC4C-4172-9AC4-73315F71CFFE} URL = http://websearch.helpmefindyour.info/?l=1&q={searchTerms}&pid=729&r=2013/03/20&hid=2431064110&lg=EN&cc=PL SearchScopes: HKLM - {E88E0043-C9D4-4e33-8555-FEE4F5B63060} URL = SearchScopes: HKLM - {EEE6C360-6118-11DC-9C72-001320C79847} URL = http://search.sweetim.com/search.asp?src=6&q={searchTerms}&st=6&barid={BBCD3C31-A2E2-11E0-B033-001E741B774D} SearchScopes: HKCU - DefaultScope {F8DA724C-B79D-4DAA-A38F-74104154D700} URL = http://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT3291853&CUI=UN42863740122395332&UM=1 SearchScopes: HKCU - 977D59E3DD524889B5839BF7B858BF7E URL = SearchScopes: HKCU - Software URL = SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKCU - {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = http://www.only-search.com/?q={searchTerms}&babsrc=SP_ss&mntrId=9E09001E741B774D&affID=129300&tt=020914_onst&tsp=5378 SearchScopes: HKCU - {1F6F23C0-FC33-42D2-A70F-AB0DCBC3628B} URL = http://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT3289075&CUI=UN40803136227522240&UM=1 SearchScopes: HKCU - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://istart.webssearches.com/web/?type=ds&ts=1402845752&from=amt&uid=WDCXWD5000AAKS-00V0A0_WD-WCAWFC35827658276&q={searchTerms} SearchScopes: HKCU - {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = SearchScopes: HKCU - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = http://dts.search.ask.com/sr?src=ieb&gct=ds&appid=484&systemid=406&v=a12281-116&apn_uid=8362438165114751&apn_dtid=BND406&o=APN10645&apn_ptnrs=AG6&q={searchTerms} SearchScopes: HKCU - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2488} URL = http://dts.search.ask.com/sr?src=ieb&gct=ds&appid=210&systemid=488&v=a13277-348&apn_uid=2090850645444295&apn_dtid=TCH001&o=APN11459&apn_ptnrs=AG1&q={searchTerms} SearchScopes: HKCU - {AFDBDDAA-5D3F-42EE-B79C-185A7020515B} URL = SearchScopes: HKCU - {CFF4DB9B-135F-47c0-9269-B4C6572FD61A} URL = http://mystart.incredibar.com/?a=6R9qdDtmtB&loc=skw&search={searchTerms}&i=26 SearchScopes: HKCU - {F8DA724C-B79D-4DAA-A38F-74104154D700} URL = http://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT3291853&CUI=UN42863740122395332&UM=1 BHO: Ginyas Browser Companion -> {00cbb66b-1d3b-46d3-9577-323a336acb50} -> C:\Program Files\BrowserCompanion\jsloader.dll ( ) BHO: Browse2save -> {0AB53DF7-BA36-E491-5E6F-B6670CC544A2} -> C:\ProgramData\Browse2save\5127a6cebde64.dll () BHO: Plus-HD-9.4 -> {11111111-1111-1111-1111-110511311164} -> C:\Program Files\Plus-HD-9.4\Plus-HD-9.4-bho.dll (Plus HD) BHO: IETabPage Class -> {3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C} -> C:\Program Files\SupTab\SupTab.dll (Thinknice Co. Limited) BHO: DealPly Shopping -> {4B6ACEA2-308A-4876-AD36-57CEC5B4FCC7} -> C:\Program Files\DealPly\DealPlyIE.dll (DealPly) BHO: Search-NewTab -> {4D987F1E-EAB4-EEAF-46C0-407CB3B69257} -> C:\ProgramData\Search-NewTab\5126321f54bcb.dll () BHO: Norton Vulnerability Protection -> {6D53EC84-6AAE-4787-AEEE-F4628F01010C} -> No File BHO: Search-NewTAb -> {78B417AF-A373-75B2-AB7F-CC7E6A61BCF2} -> C:\ProgramData\Search-NewTAb\5149b2d8241d4.dll () BHO: Breowsse2isavee -> {84E491D5-AC07-C077-F726-D5BBCC374607} -> C:\ProgramData\Breowsse2isavee\5149b2b6993b5.dll () BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> No File BHO: ValueApps -> {93DBF2BB-A2B3-4683-A92E-57E60751F346} -> C:\Program Files\Conduit\ValueApps\IE\ValueAppsLoader.dll (Conduit Ltd.) BHO: Ginyas Browser Companion Verifier -> {963B125B-8B21-49A2-A3A8-E37092276531} -> C:\Program Files\BrowserCompanion\updatebhoWin32.dll (Blabbers Communications Ltd) BHO: uTorrentControl_v6 Toolbar -> {96f454ea-9d38-474f-b504-56193e00c1a5} -> C:\Users\Nowa Era\AppData\LocalLow\uTorrentControl_v6\prxtbuTo2.dll (ClientConnect Ltd.) BHO: DealPly -> {A6174F27-1FFF-E1D6-A93F-BA48AD5DD448} -> C:\Program Files\DealPly\DealPlyIE.dll (DealPly) BHO: Search-NewTab -> {A658777E-DB18-6628-63EB-84BBD74422AB} -> C:\ProgramData\Search-NewTab\5127a6e860769.dll () BHO: Browse2save -> {BF29262A-804F-7D7F-F24B-E186BD1FCF73} -> C:\ProgramData\Browse2save\5126320ad5635.dll () Toolbar: HKLM - No Name - {46897C77-E7A6-4c33-BFFB-E9C2E2718942} - No File Toolbar: HKLM - Begin-download FLV Toolbar - {84452a8c-bc09-4187-ad3b-b275b98eb939} - C:\Users\Nowa Era\AppData\LocalLow\Begin-download_FLV\prxtbBeg2.dll (ClientConnect Ltd.) Toolbar: HKLM - No Name - {ec2bae47-25af-4ce9-9e78-10627a49c9ea} - No File Toolbar: HKLM - No Name - {90b49673-5506-483e-b92b-ca0265bd9ca8} - No File Toolbar: HKLM - No Name - {f2e99efd-72dc-4c5d-9f7c-219133ff8e40} - No File Toolbar: HKLM - uTorrentControl_v6 Toolbar - {96f454ea-9d38-474f-b504-56193e00c1a5} - C:\Users\Nowa Era\AppData\LocalLow\uTorrentControl_v6\prxtbuTo2.dll (ClientConnect Ltd.) Toolbar: HKCU - Begin-download FLV Toolbar - {84452A8C-BC09-4187-AD3B-B275B98EB939} - C:\Users\Nowa Era\AppData\LocalLow\Begin-download_FLV\prxtbBeg2.dll (ClientConnect Ltd.) Toolbar: HKCU - No Name - {90B49673-5506-483E-B92B-CA0265BD9CA8} - No File Toolbar: HKCU - No Name - {F2E99EFD-72DC-4C5D-9F7C-219133FF8E40} - No File Toolbar: HKCU - uTorrentControl_v6 Toolbar - {96F454EA-9D38-474F-B504-56193E00C1A5} - C:\Users\Nowa Era\AppData\LocalLow\uTorrentControl_v6\prxtbuTo2.dll (ClientConnect Ltd.) DPF: {CAFEEFAC-0016-0000-0027-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_27-windows-i586.cab DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_27-windows-i586.cab Handler: base64 - {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - C:\Program Files\BrowserCompanion\tdataprotocol.dll (Blabbers Communications Ltd) Handler: chrome - {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - C:\Program Files\BrowserCompanion\tdataprotocol.dll (Blabbers Communications Ltd) Handler: prox - {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - C:\Program Files\BrowserCompanion\tdataprotocol.dll (Blabbers Communications Ltd) Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - No File Handler: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files\Common Files\AVG Secure Search\ViProtocolInstaller\18.0.5\ViProtocol.dll (AVG Secure Search) Winsock: Catalog5 01 mswsock.dll File Not found () ATTENTION: The LibraryPath should be "%SystemRoot%\system32\NLAapi.dll" Winsock: Catalog5 05 mswsock.dll File Not found () ATTENTION: The LibraryPath should be "%SystemRoot%\System32\mswsock.dll" CustomCLSID: HKU\S-1-5-21-1495774856-1328017135-2697362928-1019_Classes\CLSID\{66E8DCC7-97D2-4A89-8E08-D0610FF0878C}\InprocServer32 -> C:\Users\Nowa Era\AppData\Local\Conduit\Community Alerts\Aler0.dll (ClientConnect Ltd.) CustomCLSID: HKU\S-1-5-21-1495774856-1328017135-2697362928-1019_Classes\CLSID\{84452a8c-bc09-4187-ad3b-b275b98eb939}\InprocServer32 -> C:\Users\Nowa Era\AppData\LocalLow\Begin-download_FLV\prxtbBeg2.dll (ClientConnect Ltd.) CustomCLSID: HKU\S-1-5-21-1495774856-1328017135-2697362928-1019_Classes\CLSID\{90411930-787D-4D61-8E42-123CDFFFF663}\InprocServer32 -> C:\Users\Nowa Era\AppData\LocalLow\Begin-download_FLV\prxtbBeg2.dll (ClientConnect Ltd.) CustomCLSID: HKU\S-1-5-21-1495774856-1328017135-2697362928-1019_Classes\CLSID\{96f454ea-9d38-474f-b504-56193e00c1a5}\InprocServer32 -> C:\Users\Nowa Era\AppData\LocalLow\uTorrentControl_v6\prxtbuTo2.dll (ClientConnect Ltd.) CustomCLSID: HKU\S-1-5-21-1495774856-1328017135-2697362928-1019_Classes\CLSID\{A75BE48D-BF58-4A8B-B96C-F9A09DFB9844}\InprocServer32 -> %LOCALAPPDATA%\Pokki\ocdeskband_0.dll No File CustomCLSID: HKU\S-1-5-21-1495774856-1328017135-2697362928-1019_Classes\CLSID\{CD90659F-D5B2-4104-9504-7CA36E6532DF}\InprocServer32 -> C:\Users\Nowa Era\AppData\LocalLow\uTorrentControl_v6\prxtbuTo2.dll (ClientConnect Ltd.) CHR Extension: (No Name) - C:\Users\Nowa Era\AppData\Local\Google\Chrome\User Data\Default\Extensions\ajbfjlbjonnckokbmkeiammcgkdciial [2014-01-23] CHR Extension: (IMVU Inc) - C:\Users\Nowa Era\AppData\Local\Google\Chrome\User Data\Default\Extensions\bcfjehbfanfhgoehogmbiebedkidedjb [2014-01-23] CHR Extension: (Browser Companion Helper) - C:\Users\Nowa Era\AppData\Local\Google\Chrome\User Data\Default\Extensions\bodddioamolcibagionmmobehnbhiakf [2014-09-07] CHR Extension: (Plus-HD-9.4) - C:\Users\Nowa Era\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf [2014-08-17] CHR Extension: (Complitly plugin for chrome) - C:\Users\Nowa Era\AppData\Local\Google\Chrome\User Data\Default\Extensions\dlfienamagdnkekbbbocojppncdambda [2014-09-07] CHR Extension: (TheTorntv V10) - C:\Users\Nowa Era\AppData\Local\Google\Chrome\User Data\Default\Extensions\fdbaidolhfnecgiloehbailojonjaloa [2014-09-27] CHR Extension: (Lightning Newtab) - C:\Users\Nowa Era\AppData\Local\Google\Chrome\User Data\Default\Extensions\ifohbjbgfchkkfhphahclmkpgejiplfo [2014-10-18] CHR Extension: (No Name) - C:\Users\Nowa Era\AppData\Local\Google\Chrome\User Data\Default\Extensions\ikjmiflhmilhiofcgfomcfjihfdcmecc [2014-01-23] CHR Extension: (ilfjhacjjbcdmimjeaakpnlhdcloijcg) - C:\Users\Nowa Era\AppData\Local\Google\Chrome\User Data\Default\Extensions\ilfjhacjjbcdmimjeaakpnlhdcloijcg [2014-09-27] CHR Extension: (Mail.Ru) - C:\Users\Nowa Era\AppData\Local\Google\Chrome\User Data\Default\Extensions\jggbjbmnfmipgcanidamjfpechdeekoi [2014-10-18] CHR Extension: (mppflflkbbafeopeoeigkbbdjdbeifni) - C:\Users\Nowa Era\AppData\Local\Google\Chrome\User Data\Default\Extensions\mppflflkbbafeopeoeigkbbdjdbeifni [2014-10-06] CHR Extension: (Extended Protection) - C:\Users\Nowa Era\AppData\Local\Google\Chrome\User Data\Default\Extensions\ogfjmhfnldnajmfaofeiaepghjenbgjo [2014-09-07] CHR Extension: (Quick start) - C:\Users\Nowa Era\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma [2014-10-18] DeleteKey: HKCU\Software\Google\Chrome\Extensions DeleteKey: HKCU\Software\Mozilla DeleteKey: HKCU\Software\MozillaPlugins DeleteKey: HKLM\SOFTWARE\Google\Chrome\Extensions DeleteKey: HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{898EA8C8-E7FF-479B-8935-AEC46303B9E5} DeleteKey: HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{d9288080-1baa-4bc4-9cf8-a92d743db949} DeleteKey: HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder DeleteKey: HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg DeleteKey: HKLM\SOFTWARE\Mozilla DeleteKey: HKLM\SOFTWARE\mozilla.org DeleteKey: HKLM\SOFTWARE\MozillaPlugins C:\Program Files\1ClickDownload C:\Program Files\AVG Secure Search C:\Program Files\CertifiedToolsToolbar C:\Program Files\Desk 365 C:\Program Files\Funmoods C:\Program Files\Gophoto.it C:\Program Files\globalUpdate C:\Program Files\Mozilla Firefox C:\Program Files\Mozilla Firefox.bak C:\Program Files\Tbccint C:\ProgramData\hash.dat C:\ProgramData\hpe81CD.dll C:\ProgramData\AVG Secure Search C:\ProgramData\d34654 C:\ProgramData\DSearchLink C:\ProgramData\Guard.Mail.Ru C:\ProgramData\Mozilla C:\ProgramData\Premium C:\ProgramData\TEMP C:\ProgramData\TorchCrashHandler C:\ProgramData\Microsoft\Windows\Start Menu\YourFileDownloader C:\ProgramData\Microsoft\Windows\Start Menu\Programs\888casino C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iLivid C:\Users\bbbb\AppData\Local\*.exe C:\Users\bbbb\AppData\Local\Conduit C:\Users\bbbb\AppData\Local\Google\Chrome\User Data\Default\Preferences C:\Users\bbbb\AppData\Local\Google\Chrome\User Data\Default\Extensions\cckahkoimnbpflhhobnanhfdihegpedf C:\Users\bbbb\AppData\Local\Google\Chrome\User Data\Default\Extensions\fdbaidolhfnecgiloehbailojonjaloa C:\Users\bbbb\AppData\Local\Mail.Ru C:\Users\bbbb\AppData\Local\Mozilla C:\Users\bbbb\AppData\Roaming\*.exe C:\Users\bbbb\AppData\Roaming\Browser Tab Search by Ask C:\Users\bbbb\AppData\Roaming\Desk 365 C:\Users\bbbb\AppData\Roaming\eCyber C:\Users\bbbb\AppData\Roaming\iSafe C:\Users\bbbb\AppData\Roaming\Mozilla C:\Users\bbbb\AppData\Roaming\Systweak C:\Users\Gość\AppData\Local\*.exe C:\Users\Gość\AppData\Roaming\*.exe C:\Users\Nowa Era\AppData\Local\*.exe C:\Users\Nowa Era\AppData\Local\lptaeaej.gdb C:\Users\Nowa Era\AppData\Local\lptaeaej.gss C:\Users\Nowa Era\AppData\Local\5e981d0d C:\Users\Nowa Era\AppData\Local\CRE C:\Users\Nowa Era\AppData\Local\FilesFrog Update Checker C:\Users\Nowa Era\AppData\Local\Google\Chrome\User Data\Default\Preferences C:\Users\Nowa Era\AppData\Local\Google\Chrome\User Data\Default\Extensions\*.crx C:\Users\Nowa Era\AppData\Local\Mail.Ru C:\Users\Nowa Era\AppData\Local\Mozilla C:\Users\Nowa Era\AppData\Local\TB C:\Users\Nowa Era\AppData\Local\NVIDIA Corporation\nvsync.exe C:\Users\Nowa Era\AppData\Roaming\*.exe C:\Users\Nowa Era\AppData\Roaming\BabSolution C:\Users\Nowa Era\AppData\Roaming\IMVUClient C:\Users\Nowa Era\AppData\Roaming\Mozilla C:\Users\Nowa Era\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup-Disabled C:\Users\Nowa Era\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TornTV.com C:\Users\Nowa Era\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VOPackage C:\Users\Nowa Era\Documents\Mobogenie C:\Users\Hasło!!\AppData\Local\Akamai C:\Users\Hasło!!\AppData\Roaming\IMVU C:\Users\Hasło!!\AppData\Roaming\Mozilla C:\Windows\sysdriver32.exe C:\Windows\btc_client_iplist.txt C:\Windows\iecheck_iplist.txt C:\Windows\iplist.txt C:\Windows\proc_list1.log C:\Windows\av_ico C:\Windows\update.1 C:\Windows\update.2 C:\Windows\update.5.0 C:\Windows\update.7.1 C:\Windows\update.tray-7-0 C:\Windows\update.tray-14-0 C:\Windows\system32\cache.00 C:\Windows\system32\queries-02.cache C:\Windows\system32\dmwu.exe C:\Windows\system32\AI_RecycleBin C:\Windows\System32\config\systemprofile\AppData\Local\5e981d0d C:\Windows\system32\config\systemprofile\AppData\Local\Windows Internet Name Service C:\Windows\system32\dfrg C:\Windows\system32\Drivers\avgtpx86.sys C:\Windows\system32\Drivers\etc\hîsts C:\Windows\System32\jmdp C:\Windows\System32\mjcm Hosts: RemoveDirectory: C:\Users\oko RemoveDirectory: C:\Users\Oko.iBOX-Desktop.000 Unlock: C:\Windows\$NtUninstallKB48234$ CMD: fsutil reparsepoint delete C:\Windows\$NtUninstallKB48234$ Folder: C:\Windows\ShellNew Folder: C:\Users\Nowa Era\AppData\Local\NVIDIA Corporation Folder: C:\Users\Nowa Era\AppData\Roaming\Opera Software\Opera Stable\Extensions CMD: type "C:\Users\Nowa Era\AppData\Roaming\Opera Software\Opera Stable\Preferences" Reg: reg query "HKLM\SOFTWARE\Clients\StartMenuInternet\OperaStable\shell\open\command" /s CMD: dir /a C:\Users CMD: sc query EventLog CMD: netsh advfirewall reset EmptyTemp: