Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 05-07-2015 Ran by Dom (administrator) on DOM-PC on 08-07-2015 17:53:30 Running from C:\Users\Dom\Downloads Loaded Profiles: Dom (Available Profiles: Dom) Platform: Microsoft Windows 7 Home Premium (X86) OS Language: Polski (Polska) Internet Explorer Version 9 (Default browser: FF) Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (AMD) C:\Windows\System32\atiesrxx.exe (AMD) C:\Windows\System32\atieclxx.exe (Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avguard.exe (Sun Microsystems, Inc.) C:\Program Files\Common Files\Java\Java Update\jusched.exe (Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avgnt.exe (Brother Industries, Ltd.) C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe (Brother Industries, Ltd.) C:\Program Files\Brother\ControlCenter3\BrccMCtl.exe () C:\Windows\System32\PnkBstrA.exe (Avira Operations GmbH & Co. KG) C:\Program Files\Avira\Launcher\Avira.ServiceHost.exe (Advanced Micro Devices Inc.) C:\Program Files\AMD\ATI.ACE\Core-Static\MOM.exe (ATI Technologies Inc.) C:\Program Files\AMD\ATI.ACE\Core-Static\CCC.exe (Brother Industries, Ltd.) C:\Program Files\Brother\Brmfcmon\BrMfcMon.exe (Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Avira Operations GmbH & Co. KG) C:\Program Files\Avira\Launcher\Avira.Systray.exe (Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avshadow.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\plugin-container.exe (Adobe Systems, Inc.) C:\Windows\System32\Macromed\Flash\FlashPlayerPlugin_17_0_0_190.exe (Adobe Systems, Inc.) C:\Windows\System32\Macromed\Flash\FlashPlayerPlugin_17_0_0_190.exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [] => [X] HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [252848 2012-07-03] (Sun Microsystems, Inc.) HKLM\...\Run: [Adobe Reader Speed Launcher] => C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [37296 2012-01-03] (Adobe Systems Incorporated) HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [843712 2012-01-02] (Adobe Systems Incorporated) HKLM\...\Run: [avgnt] => C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [730416 2015-06-10] (Avira Operations GmbH & Co. KG) HKLM\...\Run: [StartCCC] => C:\Program Files\AMD\ATI.ACE\Core-Static\x86\CLIStart.exe [748232 2014-11-20] (Advanced Micro Devices, Inc.) HKLM\...\Run: [Raptr] => C:\Program Files\Raptr\raptrstub.exe [55568 2015-05-15] (Raptr, Inc) HKLM\...\Run: [BrMfcWnd] => C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe [1159168 2009-05-26] (Brother Industries, Ltd.) HKLM\...\Run: [ControlCenter3] => C:\Program Files\Brother\ControlCenter3\brctrcen.exe [114688 2008-12-24] (Brother Industries, Ltd.) HKLM\...\Run: [Avira Systray] => C:\Program Files\Avira\Launcher\Avira.Systray.exe [134368 2015-06-02] (Avira Operations GmbH & Co. KG) HKU\S-1-5-21-620759806-2564684941-1707045063-1001\...\Run: [DAEMON Tools Lite] => C:\Program Files\DAEMON Tools Lite\DTLite.exe [3671904 2012-08-28] (DT Soft Ltd) HKU\S-1-5-21-620759806-2564684941-1707045063-1001\...\Run: [GoogleChromeAutoLaunch_37A1ADC75161A07D9371AD16BB42ED95] => C:\Program Files\Google\Chrome\Application\chrome.exe [813896 2015-07-07] (Google Inc.) HKU\S-1-5-21-620759806-2564684941-1707045063-1001\...\Run: [GoogleChromeAutoLaunch_B45CF322C3DDAB17738CEB2CDE894577] => "C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe" --no-startup-window HKU\S-1-5-21-620759806-2564684941-1707045063-1001\...\MountPoints2: {45dd4083-a2a4-11e2-8c9d-20cf30bfa71c} - G:\LGAutoRun.exe HKU\S-1-5-21-620759806-2564684941-1707045063-1001\...\MountPoints2: {4eccfa95-57fb-11e2-a39a-20cf30bfa71c} - C:\Windows\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL G:\autorun.bat HKU\S-1-5-21-620759806-2564684941-1707045063-1001\...\MountPoints2: {b1c8f8dd-4095-11e4-8ab1-20cf30bfa71c} - N:\LG_PC_Programs.exe BootExecute: autocheck autochk * ROBoot \??\C:\Windows\system32\ASOROSet.bin ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\.DEFAULT -> {483830EE-A4CD-4b71-B0A3-3D82E62A6909} URL = SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = BHO: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-01-03] (Adobe Systems Incorporated) BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll [2012-10-29] (Oracle Corporation) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll [2012-10-29] (Oracle Corporation) DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll [2014-05-02] (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 192.168.1.1 Tcpip\..\Interfaces\{400E3454-71C5-4399-8059-7919A5B1006B}: [DhcpNameServer] 192.168.1.1 192.168.1.1 StartMenuInternet: IEXPLORE.EXE - iexplore.exe FireFox: ======== FF ProfilePath: C:\Users\Dom\AppData\Roaming\Mozilla\Firefox\Profiles\uh21o4fd.default FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_17_0_0_190.dll [2015-06-23] () FF Plugin: @java.com/DTPlugin,version=10.9.2 -> C:\Windows\system32\npDeployJava1.dll [2012-10-29] (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.9.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll [2012-10-29] (Oracle Corporation) FF Plugin: @microsoft.com/GENUINE -> disabled No File FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll [2013-09-13] ( Microsoft Corporation) FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-07-04] (Google Inc.) FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-07-04] (Google Inc.) FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll [2012-01-03] (Adobe Systems Inc.) FF Extension: Avira Browser Safety - C:\Users\Dom\AppData\Roaming\Mozilla\Firefox\Profiles\uh21o4fd.default\Extensions\abs@avira.com [2015-07-02] FF Extension: AdBan - C:\Users\Dom\AppData\Roaming\Mozilla\Firefox\Profiles\uh21o4fd.default\Extensions\adban@ad-ban.appspot.com.xpi [2013-11-01] FF Extension: Adblock Plus - C:\Users\Dom\AppData\Roaming\Mozilla\Firefox\Profiles\uh21o4fd.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2013-11-02] Chrome: ======= CHR Profile: C:\Users\Dom\AppData\Local\Google\Chrome\User Data\Default CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - https://clients2.google.com/service/update2/crx StartMenuInternet: Google Chrome - Chrome.exe ========================== Services (Whitelisted) ================= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) S2 AntiVirMailService; C:\Program Files\Avira\AntiVir Desktop\avmailc7.exe [827184 2015-06-10] (Avira Operations GmbH & Co. KG) R2 AntiVirSchedulerService; C:\Program Files\Avira\AntiVir Desktop\sched.exe [450808 2015-06-10] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [450808 2015-06-10] (Avira Operations GmbH & Co. KG) S2 AntiVirWebService; C:\Program Files\Avira\AntiVir Desktop\AVWEBGRD.EXE [1187336 2015-06-10] (Avira Operations GmbH & Co. KG) R2 Avira.ServiceHost; C:\Program Files\Avira\Launcher\Avira.ServiceHost.exe [217280 2015-06-02] (Avira Operations GmbH & Co. KG) S2 MBAMService; D:\Malwarebytes Anti-Malware\mbamservice.exe [1133880 2015-06-18] (Malwarebytes Corporation) R2 PnkBstrA; C:\Windows\system32\PnkBstrA.exe [76152 2014-08-13] () S2 SkypeUpdate; D:\Skype\Updater\Updater.exe [315488 2015-02-18] (Skype Technologies) S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2009-07-14] (Microsoft Corporation) ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) S2 atksgt; C:\Windows\System32\DRIVERS\atksgt.sys [278984 2014-02-26] () R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [108448 2015-06-10] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [136728 2015-06-10] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [37896 2015-05-07] (Avira Operations GmbH & Co. KG) R2 avnetflt; C:\Windows\System32\DRIVERS\avnetflt.sys [37896 2015-03-10] (Avira Operations GmbH & Co. KG) R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [242240 2012-09-09] (DT Soft Ltd) S3 KMWDFILTERx86; C:\Windows\System32\DRIVERS\KMWDFILTER.sys [25088 2009-04-29] (Windows (R) Codename Longhorn DDK provider) R2 lirsgt; C:\Windows\System32\DRIVERS\lirsgt.sys [25416 2014-02-26] () S3 LVUSBSta; C:\Windows\System32\drivers\LVUSBSta.sys [41752 2008-07-26] (Logitech Inc.) R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [23256 2015-06-18] (Malwarebytes Corporation) S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [51928 2015-06-18] (Malwarebytes Corporation) R3 MTsensor; C:\Windows\System32\DRIVERS\ASACPI.sys [13216 2009-07-16] () S3 PID_PEPI; C:\Windows\System32\DRIVERS\LV302V32.SYS [2570520 2008-07-26] (Logitech Inc.) R0 sptd; C:\Windows\System32\Drivers\sptd.sys [477240 2012-08-10] (Duplex Secure Ltd.) R1 ssmdrv; C:\Windows\System32\DRIVERS\ssmdrv.sys [31848 2015-06-10] (Avira Operations GmbH & Co. KG) R3 vhidmini; C:\Windows\System32\DRIVERS\vjoy.sys [11168 2009-10-06] (Headsoft) [File not signed] U3 acbntcwa; C:\Windows\system32\Drivers\acbntcwa.sys [0 ] (Advanced Micro Devices) <==== ATTENTION (zero byte File/Folder) S3 AndNetDiag; system32\DRIVERS\lgandnetdiag.sys [X] S3 ANDNetModem; system32\DRIVERS\lgandnetmodem.sys [X] S3 EagleXNt; \??\C:\Windows\system32\drivers\EagleXNt.sys [X] S3 xhunter1; \??\C:\Windows\xhunter1.sys [X] ========================== Drivers MD5 ======================= C:\Windows\system32\DRIVERS\1394ohci.sys 6D2ACA41739BFE8CB86EE8E85F29697D C:\Windows\System32\DRIVERS\ACPI.sys ==> MD5 is legit C:\Windows\system32\DRIVERS\acpipmi.sys ==> MD5 is legit C:\Windows\system32\DRIVERS\adp94xx.sys ==> MD5 is legit C:\Windows\system32\DRIVERS\adpahci.sys ==> MD5 is legit C:\Windows\system32\DRIVERS\adpu320.sys ==> MD5 is legit C:\Windows\system32\drivers\afd.sys ==> MD5 is legit C:\Windows\system32\DRIVERS\agp440.sys ==> MD5 is legit C:\Windows\system32\DRIVERS\djsvs.sys ==> MD5 is legit C:\Windows\system32\DRIVERS\aliide.sys ==> MD5 is legit C:\Windows\system32\DRIVERS\amdagp.sys ==> MD5 is legit C:\Windows\system32\DRIVERS\amdide.sys ==> MD5 is legit C:\Windows\system32\DRIVERS\amdk8.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\atikmdag.sys 83240DBD6E44CC207B95D1EBB085E3A7 C:\Windows\System32\DRIVERS\atikmpag.sys B6DB3BDF2CF56C60ED497104653B8A5C C:\Windows\system32\DRIVERS\amdppm.sys ==> MD5 is legit C:\Windows\system32\drivers\amdsata.sys ==> MD5 is legit C:\Windows\system32\DRIVERS\amdsbs.sys ==> MD5 is legit C:\Windows\System32\drivers\amdxata.sys ==> MD5 is legit C:\Windows\system32\drivers\appid.sys ==> MD5 is legit C:\Windows\system32\DRIVERS\arc.sys ==> MD5 is legit C:\Windows\system32\DRIVERS\arcsas.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\asyncmac.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\atapi.sys ==> MD5 is legit C:\Windows\System32\drivers\AtihdW73.sys 04F1A13265313C0E0A4F9D8C2CDC0F76 C:\Windows\System32\DRIVERS\atksgt.sys 3C4B9850A2631C2263507400D029057B C:\Windows\System32\DRIVERS\avgntflt.sys 18FB1022DAFC9036ADA9ECF432FAFD06 C:\Windows\System32\DRIVERS\avipbb.sys 062494C204553210FFC0FC33EA58EB36 C:\Windows\System32\DRIVERS\avkmgr.sys F80F5DCA8A5D9D93CC5BE933D20CAF05 C:\Windows\System32\DRIVERS\avnetflt.sys 3303FB85532093FC6723632B5947E8C4 C:\Windows\system32\DRIVERS\bxvbdx.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\b57nd60x.sys ==> MD5 is legit C:\Windows\system32\Drivers\Beep.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\blbdrive.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\bowser.sys ==> MD5 is legit C:\Windows\system32\DRIVERS\BrFiltLo.sys ==> MD5 is legit C:\Windows\system32\DRIVERS\BrFiltUp.sys ==> MD5 is legit C:\Windows\System32\Drivers\Brserid.sys ==> MD5 is legit C:\Windows\System32\Drivers\BrSerWdm.sys ==> MD5 is legit C:\Windows\System32\Drivers\BrUsbMdm.sys ==> MD5 is legit C:\Windows\System32\Drivers\BrUsbSer.sys ==> MD5 is legit C:\Windows\system32\DRIVERS\bthmodem.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\cdfs.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\cdrom.sys ==> MD5 is legit C:\Windows\system32\DRIVERS\circlass.sys ==> MD5 is legit C:\Windows\System32\CLFS.sys ==> MD5 is legit C:\Windows\system32\DRIVERS\CmBatt.sys ==> MD5 is legit C:\Windows\system32\DRIVERS\cmdide.sys ==> MD5 is legit C:\Windows\System32\Drivers\cng.sys DB5E008B3744DD60C8498CBBF2A1CFA6 C:\Windows\system32\DRIVERS\compbatt.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\CompositeBus.sys ==> MD5 is legit C:\Windows\system32\DRIVERS\crcdisk.sys ==> MD5 is legit C:\Windows\System32\Drivers\dfsc.sys ==> MD5 is legit C:\Windows\System32\drivers\discache.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\disk.sys ==> MD5 is legit C:\Windows\System32\drivers\drmkaud.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\dtsoftbus01.sys 687AF6BB383885FF6A64071B189A7F3E C:\Windows\System32\drivers\dxgkrnl.sys ==> MD5 is legit C:\Windows\system32\DRIVERS\evbdx.sys ==> MD5 is legit C:\Windows\system32\DRIVERS\elxstor.sys ==> MD5 is legit C:\Windows\system32\DRIVERS\errdev.sys ==> MD5 is legit C:\Windows\system32\Drivers\exfat.sys ==> MD5 is legit C:\Windows\system32\Drivers\fastfat.sys ==> MD5 is legit C:\Windows\system32\DRIVERS\fdc.sys ==> MD5 is legit C:\Windows\System32\drivers\fileinfo.sys ==> MD5 is legit C:\Windows\System32\drivers\filetrace.sys ==> MD5 is legit C:\Windows\system32\DRIVERS\flpydisk.sys ==> MD5 is legitB C:\Windows\System32\drivers\fltmgr.sys ==> MD5 is legit C:\Windows\System32\drivers\FsDepends.sys ==> MD5 is legit C:\Windows\system32\Drivers\Fs_Rec.sys 500A9814FD9446A8126858A5A7F7D273 C:\Windows\System32\DRIVERS\fvevol.sys ==> MD5 is legit C:\Windows\system32\DRIVERS\gagp30kx.sys ==> MD5 is legit C:\Windows\system32\drivers\hcw85cir.sys ==> MD5 is legit C:\Windows\System32\drivers\HdAudio.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\HDAudBus.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\HECI.sys ==> MD5 is legit C:\Windows\system32\DRIVERS\HidBatt.sys ==> MD5 is legit C:\Windows\system32\DRIVERS\hidbth.sys ==> MD5 is legit C:\Windows\system32\DRIVERS\hidir.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\hidusb.sys ==> MD5 is legit C:\Windows\system32\DRIVERS\HpSAMD.sys ==> MD5 is legit C:\Windows\System32\drivers\HTTP.sys ==> MD5 is legit C:\Windows\System32\drivers\hwpolicy.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\i8042prt.sys ==> MD5 is legit C:\Windows\system32\drivers\iaStorV.sys ==> MD5 is legit C:\Windows\system32\DRIVERS\iirsp.sys ==> MD5 is legit C:\Windows\system32\DRIVERS\intelide.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\intelppm.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\ipfltdrv.sys ==> MD5 is legit C:\Windows\system32\DRIVERS\IPMIDrv.sys ==> MD5 is legit C:\Windows\System32\drivers\ipnat.sys ==> MD5 is legit C:\Windows\System32\drivers\irenum.sys ==> MD5 is legit C:\Windows\system32\DRIVERS\isapnp.sys ==> MD5 is legit C:\Windows\system32\DRIVERS\msiscsi.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\kbdclass.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\kbdhid.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\KMWDFILTER.sys 4476FE98AAF505ACDCD3EE6360AABEC1 C:\Windows\System32\Drivers\ksecdd.sys 52FC17C8589F11747D01D3CF592673D0 C:\Windows\System32\Drivers\ksecpkg.sys 3E5474B03568CFAB834DA3C38E8C9EFA C:\Windows\System32\DRIVERS\lirsgt.sys 4127E8B6DDB4090E815C1F8852C277D3 C:\Windows\System32\DRIVERS\lltdio.sys ==> MD5 is legit C:\Windows\system32\DRIVERS\lsi_fc.sys ==> MD5 is legit C:\Windows\system32\DRIVERS\lsi_sas.sys ==> MD5 is legit C:\Windows\system32\DRIVERS\lsi_sas2.sys ==> MD5 is legit C:\Windows\system32\DRIVERS\lsi_scsi.sys ==> MD5 is legit C:\Windows\system32\drivers\luafv.sys ==> MD5 is legit C:\Windows\System32\drivers\LVUSBSta.sys 23F8EF78BB9553E465A476F3CEE5CA18 C:\Windows\system32\drivers\mbam.sys B4CD87E78A01562E3DA67FE1C2779204 C:\Windows\system32\drivers\mwac.sys 490F0F3ED8A970E2BAA38F719242B8F7 C:\Windows\system32\DRIVERS\megasas.sys ==> MD5 is legit C:\Windows\system32\DRIVERS\MegaSR.sys ==> MD5 is legit C:\Windows\System32\drivers\modem.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\monitor.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\mouclass.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\mouhid.sys ==> MD5 is legit C:\Windows\System32\drivers\mountmgr.sys ==> MD5 is legit C:\Windows\system32\DRIVERS\mpio.sys ==> MD5 is legit C:\Windows\System32\drivers\mpsdrv.sys ==> MD5 is legit C:\Windows\system32\drivers\mrxdav.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\mrxsmb.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\mrxsmb10.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\mrxsmb20.sys ==> MD5 is legit C:\Windows\system32\DRIVERS\msahci.sys ==> MD5 is legit C:\Windows\system32\DRIVERS\msdsm.sys ==> MD5 is legit C:\Windows\system32\Drivers\Msfs.sys ==> MD5 is legit C:\Windows\System32\drivers\mshidkmdf.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\msisadrv.sys ==> MD5 is legit C:\Windows\System32\drivers\MSKSSRV.sys ==> MD5 is legit C:\Windows\System32\drivers\MSPCLOCK.sys ==> MD5 is legit C:\Windows\System32\drivers\MSPQM.sys ==> MD5 is legit C:\Windows\system32\Drivers\MsRPC.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\mssmbios.sys ==> MD5 is legit C:\Windows\System32\drivers\MSTEE.sys ==> MD5 is legit C:\Windows\system32\DRIVERS\MTConfig.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\ASACPI.sys CBE71C122434805CB73FFB6619F60598 C:\Windows\System32\Drivers\mup.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\nwifi.sys ==> MD5 is legit C:\Windows\System32\drivers\ndis.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\ndiscap.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\ndistapi.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\ndisuio.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\ndiswan.sys ==> MD5 is legit C:\Windows\system32\Drivers\NDProxy.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\netbios.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\netbt.sys ==> MD5 is legit C:\Windows\system32\DRIVERS\nfrd960.sys ==> MD5 is legit C:\Windows\system32\Drivers\Npfs.sys ==> MD5 is legit C:\Windows\System32\drivers\nsiproxy.sys ==> MD5 is legit C:\Windows\system32\Drivers\Ntfs.sys ==> MD5 is legit C:\Windows\system32\Drivers\Null.sys ==> MD5 is legit C:\Windows\system32\drivers\nvraid.sys ==> MD5 is legit C:\Windows\system32\drivers\nvstor.sys ==> MD5 is legit C:\Windows\system32\DRIVERS\nv_agp.sys ==> MD5 is legit C:\Windows\system32\DRIVERS\ohci1394.sys ==> MD5 is legit C:\Windows\system32\DRIVERS\parport.sys ==> MD5 is legit C:\Windows\System32\drivers\partmgr.sys 66D3415C159741ADE7038A277EFFF99F C:\Windows\system32\DRIVERS\parvdm.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\pci.sys C858CB77C577780ECC456A892E7E7D0F C:\Windows\System32\DRIVERS\pciide.sys ==> MD5 is legit C:\Windows\system32\DRIVERS\pcmcia.sys ==> MD5 is legit C:\Windows\System32\drivers\pcw.sys ==> MD5 is legit C:\Windows\System32\drivers\peauth.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\LV302V32.SYS 4BB5AC2DD485B8EEFCCB977EE66A68AD C:\Windows\System32\DRIVERS\raspptp.sys ==> MD5 is legit C:\Windows\system32\DRIVERS\processr.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\pacer.sys ==> MD5 is legit C:\Windows\system32\DRIVERS\ql2300.sys ==> MD5 is legit C:\Windows\system32\DRIVERS\ql40xx.sys ==> MD5 is legit C:\Windows\system32\drivers\qwavedrv.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\rasacd.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\AgileVpn.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\rasl2tp.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\raspppoe.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\rassstp.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\rdbss.sys 835D7E81BF517A3B72384BDCC85E1CE6 C:\Windows\system32\DRIVERS\rdpbus.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\RDPCDD.sys 1E016846895B15A99F9A176A05029075 C:\Windows\System32\drivers\rdpencdd.sys ==> MD5 is legit C:\Windows\System32\drivers\rdprefmp.sys ==> MD5 is legit C:\Windows\system32\Drivers\RDPWD.sys C5B8D47A4688DE9D335204EA757C2240 C:\Windows\System32\drivers\rdyboost.sys 4EA225BF1CF05E158853F30A99CA29A7 C:\Windows\System32\DRIVERS\rspndr.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\Rt86win7.sys 05C2613F661584190C752F6184D1C8EF C:\Windows\system32\DRIVERS\sbp2port.sys 34EE0C44B724E3E4CE2EFF29126DE5B5 C:\Windows\System32\DRIVERS\scfilter.sys A95C54B2AC3CC9C73FCDF9E51A1D6B51 C:\Windows\system32\Drivers\secdrv.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\serenum.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\serial.sys ==> MD5 is legit C:\Windows\system32\DRIVERS\sermouse.sys ==> MD5 is legit C:\Windows\system32\DRIVERS\sffdisk.sys ==> MD5 is legit C:\Windows\system32\DRIVERS\sffp_mmc.sys ==> MD5 is legit C:\Windows\system32\DRIVERS\sffp_sd.sys 4F1E5B0FE7C8050668DBFADE8999AEFB C:\Windows\system32\DRIVERS\sfloppy.sys ==> MD5 is legit C:\Windows\system32\DRIVERS\sisagp.sys ==> MD5 is legit C:\Windows\system32\DRIVERS\SiSRaid2.sys ==> MD5 is legit C:\Windows\system32\DRIVERS\sisraid4.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\smb.sys ==> MD5 is legit C:\Windows\system32\Drivers\spldr.sys ==> MD5 is legit C:\Windows\System32\Drivers\sptd.sys 0022CFFF1A41E5CE3A764050A7DDF22A C:\Windows\System32\DRIVERS\srv.sys C4A027B8C0BD3FC0699F41FA5E9E0C87 C:\Windows\System32\DRIVERS\srv2.sys 414BB592CAD8A79649D01F9D94318FB3 C:\Windows\System32\DRIVERS\srvnet.sys FF207D67700AA18242AAF985D3E7D8F4 C:\Windows\System32\DRIVERS\ssmdrv.sys 424566865D82AA4BD8D6546C1F2065FA C:\Windows\system32\DRIVERS\stexstor.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\swenum.sys ==> MD5 is legit C:\Windows\System32\drivers\tcpip.sys 55E9965552741F3850CB22CBBA9671ED C:\Windows\System32\DRIVERS\tcpip.sys 55E9965552741F3850CB22CBBA9671ED C:\Windows\System32\drivers\tcpipreg.sys E64444523ADD154F86567C469BC0B17F C:\Windows\System32\drivers\tdpipe.sys 1875C1490D99E70E449E3AFAE9FCBADF C:\Windows\System32\drivers\tdtcp.sys 7156308896D34EA75A582F9A09E50C17 C:\Windows\System32\DRIVERS\tdx.sys CB39E896A2A83702D1737BFD402B3542 C:\Windows\System32\DRIVERS\termdd.sys C36F41EE20E6999DBF4B0425963268A5 C:\Windows\System32\DRIVERS\tssecsrv.sys 98AE6FA07D12CB4EC5CF4A9BFA5F4242 C:\Windows\System32\DRIVERS\tunnel.sys 3E461D890A97F9D4C168F5FDA36E1D00 C:\Windows\system32\DRIVERS\uagp35.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\udfs.sys 09CC3E16F8E5EE7168E01CF8FCBE061A C:\Windows\system32\DRIVERS\uliagpkx.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\umbus.sys 049B3A50B3D646BAEEEE9EEC9B0668DC C:\Windows\system32\DRIVERS\umpass.sys ==> MD5 is legit C:\Windows\System32\drivers\usbaudio.sys 2436A42AAB4AD48A9B714E5B0F344627 C:\Windows\System32\DRIVERS\usbccgp.sys C31AE588E403042632DC796CF09E30B0 C:\Windows\system32\DRIVERS\usbcir.sys ==> MD5 is legit C:\Windows\system32\drivers\usbehci.sys E4C436D914768CE965D5E659BA7EEBD8 C:\Windows\System32\DRIVERS\usbhub.sys BDCD7156EC37448F08633FD899823620 C:\Windows\system32\drivers\usbohci.sys EB2D819A639015253C871CDA09D91D58 C:\Windows\System32\DRIVERS\usbprint.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\usbscan.sys 576096CCBC07E7C4EA4F5E6686D6888F C:\Windows\System32\DRIVERS\USBSTOR.SYS 1C4287739A93594E57E2A9E6A3ED7353 C:\Windows\system32\drivers\usbuhci.sys 22480BF4E5A09192E5E30BA4DDE79FA4 C:\Windows\System32\DRIVERS\vdrvroot.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\vgapnp.sys ==> MD5 is legit C:\Windows\System32\drivers\vga.sys ==> MD5 is legit C:\Windows\system32\DRIVERS\vhdmp.sys 3BE6E1F3A4F1AFEC8CEE0D7883F93583 C:\Windows\System32\DRIVERS\vjoy.sys 7F62C4ADFBC6E653D740A5E93B0DC446 C:\Windows\system32\DRIVERS\viaagp.sys ==> MD5 is legit C:\Windows\system32\DRIVERS\viac7.sys ==> MD5 is legit C:\Windows\system32\DRIVERS\viaide.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\volmgr.sys 384E5A2AA49934295171E499F86BA6F3 C:\Windows\System32\drivers\volmgrx.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\volsnap.sys 58DF9D2481A56EDDE167E51B334D44FD C:\Windows\system32\DRIVERS\vsmraid.sys ==> MD5 is legit C:\Windows\System32\drivers\vwifibus.sys ==> MD5 is legit C:\Windows\system32\DRIVERS\wacompen.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\wanarp.sys 692A712062146E96D28BA0B7D75DE31B C:\Windows\System32\DRIVERS\wanarp.sys 692A712062146E96D28BA0B7D75DE31B C:\Windows\system32\DRIVERS\wd.sys ==> MD5 is legit C:\Windows\System32\drivers\Wdf01000.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\wfplwf.sys ==> MD5 is legit C:\Windows\System32\drivers\wimmount.sys ==> MD5 is legit C:\Windows\System32\DRIVERS\WinUsb.sys 30FC6E5448D0CBAAA95280EEEF7FEDAE C:\Windows\system32\DRIVERS\wmiacpi.sys ==> MD5 is legit C:\Windows\system32\drivers\ws2ifsl.sys ==> MD5 is legit C:\Windows\System32\drivers\WudfPf.sys 6F9B6C0C93232CFF47D0F72D6DB1D21E C:\Windows\System32\DRIVERS\WUDFRd.sys F91FF1E51FCA30B3C3981DB7D5924252 C:\Windows\system32\Drivers\acbntcwa.sys ==================== NetSvcs (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ==================== Three Months Created files and folders ======== (If an entry is included in the fixlist, the file/folder will be moved.) 2015-07-08 17:44 - 2015-07-08 17:47 - 00000000 ____D C:\AdwCleaner 2015-07-08 17:43 - 2015-07-08 17:43 - 02244096 _____ C:\Users\Dom\Downloads\adwcleaner_4.207.exe 2015-07-08 17:40 - 2015-07-08 17:40 - 00033740 _____ C:\Users\Dom\Downloads\GMER.TXT.txt 2015-07-08 17:07 - 2015-07-08 17:07 - 00380416 _____ C:\Users\Dom\Downloads\62c1o1p2.exe 2015-07-08 17:04 - 2015-07-08 17:04 - 00027227 _____ C:\Users\Dom\Downloads\Shortcut.txt 2015-07-08 17:02 - 2015-07-08 17:04 - 00040697 _____ C:\Users\Dom\Downloads\Addition.txt 2015-07-08 17:01 - 2015-07-08 17:53 - 00027692 _____ C:\Users\Dom\Downloads\FRST.txt 2015-07-08 17:01 - 2015-07-08 17:53 - 00000000 ____D C:\FRST 2015-07-08 16:59 - 2015-07-08 16:59 - 01636352 _____ (Farbar) C:\Users\Dom\Downloads\FRST.exe 2015-07-08 16:24 - 2015-07-08 16:24 - 00000000 ____D C:\Program Files\Enigma Software Group 2015-07-08 16:13 - 2015-07-08 16:13 - 00001648 _____ C:\Windows\system32\ASOROSet.bin 2015-07-08 16:13 - 2015-07-08 16:13 - 00000000 ____D C:\Windows\system32\config\RCCBakup 2015-07-08 15:48 - 2015-07-08 16:05 - 00000000 ____D C:\Program Files\c706a493-9ba1-4d1d-938e-c0eafe1e2b48 2015-07-08 15:47 - 2015-07-08 15:47 - 00000004 _____ C:\Windows\system32\029B560A371F4E00AB32838EBC01B9E7 2015-07-08 15:46 - 2015-07-08 15:46 - 00000000 _____ C:\Windows\prleth.sys 2015-07-08 15:46 - 2015-07-08 15:46 - 00000000 _____ C:\Windows\hgfs.sys 2015-07-08 15:45 - 2015-07-08 16:05 - 00000000 ____D C:\Users\Dom\AppData\Local\15093 2015-07-08 15:40 - 2015-07-08 15:42 - 00098520 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2015-07-08 15:40 - 2015-07-08 15:40 - 00000613 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk 2015-07-08 15:40 - 2015-06-18 08:41 - 00094936 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys 2015-07-08 15:40 - 2015-06-18 08:41 - 00051928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys 2015-07-08 15:40 - 2015-06-18 08:41 - 00023256 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2015-07-08 15:14 - 2015-07-08 15:15 - 24345872 _____ (Malwarebytes Corporation ) C:\Users\Dom\Downloads\mbam-setup-2.1.8.1057.exe 2015-07-08 15:11 - 2009-06-10 23:39 - 00000824 _____ C:\Windows\system32\Drivers\etc\hp.bak 2015-07-08 14:59 - 2015-07-08 15:00 - 00000000 ____D C:\Users\Dom\AppData\Roaming\Opera Software 2015-07-08 14:59 - 2015-07-08 15:00 - 00000000 ____D C:\Users\Dom\AppData\Local\Opera Software 2015-07-08 14:59 - 2015-07-08 14:59 - 00000000 ____D C:\Users\Dom\AppData\Roaming\Shortcut 2015-07-07 15:14 - 2015-07-07 15:14 - 00000565 _____ C:\Users\Dom\Desktop\CABAL2 (US).lnk 2015-07-07 15:14 - 2015-07-07 15:14 - 00000565 _____ C:\Users\Dom\AppData\Roaming\Microsoft\Windows\Start Menu\CABAL2 (US).lnk 2015-07-07 15:14 - 2015-07-07 15:14 - 00000000 ____D C:\Users\Dom\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CABAL2 (US) 2015-07-07 15:08 - 2015-07-07 15:08 - 26008008 _____ C:\Users\Dom\Downloads\cabal2en_setup.exe 2015-07-06 21:38 - 2015-07-06 21:38 - 00000000 ____D C:\Windows\system32\IPM 2015-07-05 18:44 - 2015-07-06 21:18 - 00000000 ____D C:\Program Files\Mozilla Firefox 2015-07-04 09:30 - 2015-07-08 17:47 - 00001250 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2015-07-04 09:30 - 2015-07-08 17:47 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome 2015-07-04 09:29 - 2015-07-08 17:48 - 00001026 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2015-07-04 09:29 - 2015-07-08 17:34 - 00001030 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2015-07-04 09:29 - 2015-07-04 09:30 - 00000000 ____D C:\Program Files\Google 2015-06-30 20:35 - 2015-06-30 20:35 - 00000074 _____ C:\Users\Dom\Desktop\trade.txt 2015-05-30 09:13 - 2015-05-30 09:13 - 00000000 ____D C:\Users\Dom\Downloads\Różne 2015-05-28 19:55 - 2015-05-28 19:55 - 00000000 ____D C:\Users\Dom\Tracing 2015-05-28 19:55 - 2015-05-28 19:55 - 00000000 ____D C:\Program Files\Skype 2015-05-12 19:55 - 2015-05-12 19:55 - 00002086 _____ C:\Users\Public\Desktop\Brother Creative Center.lnk 2015-05-12 19:55 - 2015-05-12 19:55 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brother 2015-05-12 19:54 - 2015-05-12 19:54 - 00000404 _____ C:\Windows\BRWMARK.INI 2015-05-12 19:54 - 2015-05-12 19:54 - 00000027 _____ C:\Windows\BRPP2KA.INI 2015-05-12 19:52 - 2015-05-12 19:52 - 00000050 _____ C:\Windows\system32\bridf08b.dat 2015-05-12 19:51 - 2015-05-12 19:51 - 00000000 ____D C:\Users\Dom\AppData\Roaming\InstallShield 2015-05-12 19:51 - 2015-05-12 19:51 - 00000000 ____D C:\Program Files\Brother 2015-05-12 19:51 - 2008-06-17 15:33 - 00167936 ____N (brother) C:\Windows\system32\NSSearch.dll 2015-05-12 19:51 - 2007-12-13 22:16 - 00073728 ____N (Brother Industries Ltd.) C:\Windows\system32\BrDctF2.dll 2015-05-12 19:51 - 2007-12-13 22:16 - 00004608 ____N (Brother Industries Ltd.) C:\Windows\system32\BrDctF2L.dll 2015-05-12 19:51 - 2007-12-13 22:16 - 00003072 ____N (Brother Industries Ltd.) C:\Windows\system32\BrDctF2S.dll 2015-05-12 19:51 - 2006-12-28 13:39 - 00176128 ____N (Brother Industries, Ltd.) C:\Windows\system32\BroSNMP.dll 2015-05-12 19:47 - 2015-05-12 19:49 - 00000000 ____D C:\sterowniki 2015-04-28 11:45 - 2015-04-28 11:45 - 00000000 ____D C:\Users\Dom\AppData\Roaming\Tibia 2015-04-27 19:23 - 2015-04-27 19:23 - 00000818 _____ C:\Users\Dom\Desktop\MKKE — skrót.lnk 2015-04-27 14:58 - 2015-04-27 14:58 - 00000000 ____D C:\Users\Dom\AppData\Roaming\MKKE 2015-04-27 14:57 - 2015-04-27 14:57 - 00000000 ____D C:\ProgramData\Steam ==================== Three Months Modified files and folders ======== (If an entry is included in the fixlist, the file/folder will be moved.) 2015-07-08 17:52 - 2012-07-03 11:39 - 02085485 _____ C:\Windows\WindowsUpdate.log 2015-07-08 17:48 - 2014-05-10 10:11 - 00000000 ____D C:\Users\Dom\AppData\Roaming\Raptr 2015-07-08 17:48 - 2009-07-14 06:53 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2015-07-08 17:48 - 2009-07-14 06:39 - 00215659 _____ C:\Windows\setupact.log 2015-07-08 17:47 - 2012-09-15 12:59 - 00001019 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk 2015-07-08 17:29 - 2012-09-15 13:58 - 00000930 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2015-07-08 16:54 - 2012-07-03 14:00 - 01191266 _____ C:\Windows\PFRO.log 2015-07-08 16:08 - 2012-07-03 11:37 - 00001421 _____ C:\Users\Dom\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2015-07-08 16:07 - 2009-07-14 06:53 - 00032604 _____ C:\Windows\Tasks\SCHEDLGU.TXT 2015-07-08 16:07 - 2009-07-14 04:37 - 00000000 ____D C:\Windows\AppCompat 2015-07-08 16:05 - 2014-05-08 14:13 - 00000000 ____D C:\Program Files\AGEIA Technologies 2015-07-07 15:14 - 2012-08-09 18:24 - 00000000 ____D C:\Windows\system32\directx 2015-07-07 14:24 - 2014-05-10 10:01 - 00000000 ____D C:\ProgramData\Package Cache 2015-07-07 14:24 - 2013-08-25 18:24 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira 2015-07-07 14:24 - 2013-08-25 18:24 - 00000000 ____D C:\Program Files\Avira 2015-07-06 21:18 - 2012-09-15 12:59 - 00000000 ____D C:\Program Files\Mozilla Maintenance Service 2015-07-04 09:30 - 2012-07-03 11:40 - 00000000 ____D C:\Users\Dom\AppData\Local\Google 2015-06-30 20:32 - 2014-11-06 17:18 - 00000000 ____D C:\Users\Dom\AppData\Roaming\TS3Client 2015-06-23 21:29 - 2012-09-15 13:58 - 00778416 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe 2015-06-23 21:29 - 2012-09-15 13:58 - 00142512 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl 2015-06-16 16:18 - 2012-07-03 12:58 - 00000000 ____D C:\ProgramData\Avira 2015-06-10 15:36 - 2014-04-11 17:16 - 00000000 ____D C:\Users\Dom\Desktop\Różne 2015-06-10 14:38 - 2013-08-25 18:24 - 00136728 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys 2015-06-10 14:38 - 2013-08-25 18:24 - 00108448 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys 2015-06-10 14:38 - 2013-08-25 18:24 - 00031848 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\ssmdrv.sys 2015-06-08 16:09 - 2013-04-14 17:54 - 00000000 ____D C:\Program Files\Common Files\Steam ==================== Files in the root of some directories ======= 2012-07-10 13:10 - 2014-08-13 18:24 - 0138904 _____ () C:\Users\Dom\AppData\Roaming\PnkBstrK.sys 2014-08-16 23:00 - 2014-08-16 15:04 - 0000028 _____ () C:\Users\Dom\AppData\Roaming\tbi61.dll 2012-09-16 20:15 - 2012-11-21 21:53 - 0004608 _____ () C:\Users\Dom\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini ZeroAccess: C:\Users\Dom\AppData\Local\Temp C:\Users\Dom\AppData\Local\Temp\06f612f567634451ec37d8419a4074f0.dll C:\Users\Dom\AppData\Local\Temp\31d6e07d87ca5eaf6b2447c07a6c1365.dll C:\Users\Dom\AppData\Local\Temp\3dm2B1.sogp C:\Users\Dom\AppData\Local\Temp\3dm426C.sogp C:\Users\Dom\AppData\Local\Temp\3dm7994.sogp C:\Users\Dom\AppData\Local\Temp\3dmA092.sogp C:\Users\Dom\AppData\Local\Temp\3dmA43F.sogp C:\Users\Dom\AppData\Local\Temp\3dmC6AE.sogp C:\Users\Dom\AppData\Local\Temp\3dmDC3F.sogp C:\Users\Dom\AppData\Local\Temp\3dmE39B.sogp C:\Users\Dom\AppData\Local\Temp\3dmF8CF.sogp C:\Users\Dom\AppData\Local\Temp\4B90.tmp C:\Users\Dom\AppData\Local\Temp\4B90.tmp.txt C:\Users\Dom\AppData\Local\Temp\64E9.tmp C:\Users\Dom\AppData\Local\Temp\A515C5D987BB30484B8E567D328E6002.ini C:\Users\Dom\AppData\Local\Temp\AdobeARM.log C:\Users\Dom\AppData\Local\Temp\adwcleaner.db C:\Users\Dom\AppData\Local\Temp\AdwCleaner.jpg C:\Users\Dom\AppData\Local\Temp\au-descriptor-1.8.0_45-b15.xml C:\Users\Dom\AppData\Local\Temp\Avira_20140812095815.log C:\Users\Dom\AppData\Local\Temp\Avira_20140812095815_1_Id.Avira.OE.Setup.Msi.log C:\Users\Dom\AppData\Local\Temp\awhC208.tmp C:\Users\Dom\AppData\Local\Temp\b8f514f1-3076-493a-beb2-c6c7a772ca5d.dmp C:\Users\Dom\AppData\Local\Temp\bedgchdbbe.ebbdhcgd C:\Users\Dom\AppData\Local\Temp\BsSndRpt.ini C:\Users\Dom\AppData\Local\Temp\bugsplat.log C:\Users\Dom\AppData\Local\Temp\chrome_installer.log C:\Users\Dom\AppData\Local\Temp\Cleaning.ico C:\Users\Dom\AppData\Local\Temp\CProgram FilesOpera30.0.1835.88opera_autoupdate.download.lock C:\Users\Dom\AppData\Local\Temp\CProgram FilesOpera30.0.1835.88opera_autoupdate.metrics.lock C:\Users\Dom\AppData\Local\Temp\dd_vcredist_x86_20140813182304.log C:\Users\Dom\AppData\Local\Temp\dd_vcredist_x86_20140813182304_0_vcRuntimeMinimum_x86.log C:\Users\Dom\AppData\Local\Temp\dd_vcredist_x86_20140813182304_1_vcRuntimeAdditional_x86.log C:\Users\Dom\AppData\Local\Temp\dd_vcredist_x86_20140813182338.log C:\Users\Dom\AppData\Local\Temp\dd_vcredist_x86_20141015071815.log C:\Users\Dom\AppData\Local\Temp\dd_vcredist_x86_20141015071815_0_vcRuntimeMinimum_x86.log C:\Users\Dom\AppData\Local\Temp\dd_vcredist_x86_20141015071815_1_vcRuntimeAdditional_x86.log C:\Users\Dom\AppData\Local\Temp\DEL9E9F.tmp C:\Users\Dom\AppData\Local\Temp\DMI6A56.tmp C:\Users\Dom\AppData\Local\Temp\DMIDF69.tmp C:\Users\Dom\AppData\Local\Temp\Dom.bmp C:\Users\Dom\AppData\Local\Temp\Donate.ico C:\Users\Dom\AppData\Local\Temp\E6408BC9.TMP C:\Users\Dom\AppData\Local\Temp\ebbdhcgd.zip C:\Users\Dom\AppData\Local\Temp\etilqs_2SAnF3mQal6i7R7 C:\Users\Dom\AppData\Local\Temp\etilqs_34e4bOqdfRUpzFZ C:\Users\Dom\AppData\Local\Temp\etilqs_3jcuEVHl9yYdjvx C:\Users\Dom\AppData\Local\Temp\etilqs_4MsCtirbiSa61m9 C:\Users\Dom\AppData\Local\Temp\etilqs_4qGOyIBUbemnsoo C:\Users\Dom\AppData\Local\Temp\etilqs_Dbmbo0GylgLEADtrAHmt C:\Users\Dom\AppData\Local\Temp\etilqs_dJDUZRwiU4C9D5Q C:\Users\Dom\AppData\Local\Temp\etilqs_dP0iE1VMhrVQcro C:\Users\Dom\AppData\Local\Temp\etilqs_EKLdZfnQFfeVYgA C:\Users\Dom\AppData\Local\Temp\etilqs_g7CQbeqOcnc4KBG C:\Users\Dom\AppData\Local\Temp\etilqs_HjtFyq59cCEXznv C:\Users\Dom\AppData\Local\Temp\etilqs_K3otnvkXtVgerAS C:\Users\Dom\AppData\Local\Temp\etilqs_krkhmszLlLqaA9h C:\Users\Dom\AppData\Local\Temp\etilqs_L6xaBwwEihhmiEO C:\Users\Dom\AppData\Local\Temp\etilqs_LKeYkbIijxDfI8e C:\Users\Dom\AppData\Local\Temp\etilqs_NpK6CQ9gklFB8x6 C:\Users\Dom\AppData\Local\Temp\etilqs_nVzQBdoJiDCzufj C:\Users\Dom\AppData\Local\Temp\etilqs_O3ERYTbcIGR2Ed7 C:\Users\Dom\AppData\Local\Temp\etilqs_oFkp6RNvYhNuHyG C:\Users\Dom\AppData\Local\Temp\etilqs_P2Av1B2ELXytYma C:\Users\Dom\AppData\Local\Temp\etilqs_qyXmQgzcNe6UJCu C:\Users\Dom\AppData\Local\Temp\etilqs_ri0LJWsrg21XHKK C:\Users\Dom\AppData\Local\Temp\etilqs_uuQmCCKJSuGmMNf C:\Users\Dom\AppData\Local\Temp\etilqs_WIW2EfaruAzN00s C:\Users\Dom\AppData\Local\Temp\etilqs_wxEuBbCZH53wsic C:\Users\Dom\AppData\Local\Temp\etilqs_z1I3T8OfWbkDpH5 C:\Users\Dom\AppData\Local\Temp\EULA.txt C:\Users\Dom\AppData\Local\Temp\eulem1276.tmp C:\Users\Dom\AppData\Local\Temp\eulgq1276.tmp C:\Users\Dom\AppData\Local\Temp\eulUh1276.tmp C:\Users\Dom\AppData\Local\Temp\eulYa1276.tmp C:\Users\Dom\AppData\Local\Temp\F518.tmp C:\Users\Dom\AppData\Local\Temp\F71C.tmp C:\Users\Dom\AppData\Local\Temp\FBFDE863-3C17-4B82-A5D1-9B8ED5BE6B40.tmp C:\Users\Dom\AppData\Local\Temp\fsd3BD7.tmp C:\Users\Dom\AppData\Local\Temp\FXSAPIDebugLogFile.txt C:\Users\Dom\AppData\Local\Temp\gch30E0.tmp C:\Users\Dom\AppData\Local\Temp\gch30E2.tmp C:\Users\Dom\AppData\Local\Temp\heu39T.nss C:\Users\Dom\AppData\Local\Temp\HomePage.dat C:\Users\Dom\AppData\Local\Temp\jusched.log C:\Users\Dom\AppData\Local\Temp\LGAutoRun_C.Log C:\Users\Dom\AppData\Local\Temp\LGAutoRun_N.Log C:\Users\Dom\AppData\Local\Temp\LoLPatcher97CP5HD3.dmp C:\Users\Dom\AppData\Local\Temp\LoLPatcherDOU11RV7.dmp C:\Users\Dom\AppData\Local\Temp\LOL_PublicOPQL4T97.dmp C:\Users\Dom\AppData\Local\Temp\manHp1276.tmp C:\Users\Dom\AppData\Local\Temp\manNl1276.tmp C:\Users\Dom\AppData\Local\Temp\mfi30DF.tmp C:\Users\Dom\AppData\Local\Temp\mfi30E1.tmp C:\Users\Dom\AppData\Local\Temp\Microsoft Visual C++ 2010 x64 Redistributable Setup_20150520_141734127.html C:\Users\Dom\AppData\Local\Temp\Microsoft Visual C++ 2010 x86 Redistributable Setup_20140827_161307842.html C:\Users\Dom\AppData\Local\Temp\Microsoft Visual C++ 2010 x86 Redistributable Setup_20141117_184221260-MSI_vc_red.msi.txt C:\Users\Dom\AppData\Local\Temp\Microsoft Visual C++ 2010 x86 Redistributable Setup_20141117_184221260.html C:\Users\Dom\AppData\Local\Temp\nsc9962.tmp C:\Users\Dom\AppData\Local\Temp\nseEA86.tmp C:\Users\Dom\AppData\Local\Temp\nsg324A.tmp C:\Users\Dom\AppData\Local\Temp\nsg346C.tmp C:\Users\Dom\AppData\Local\Temp\nsgEC49.tmp C:\Users\Dom\AppData\Local\Temp\nsh9849.tmp C:\Users\Dom\AppData\Local\Temp\nsp267F.tmp C:\Users\Dom\AppData\Local\Temp\nspD9B2.tmp C:\Users\Dom\AppData\Local\Temp\nsw39AB.tmp C:\Users\Dom\AppData\Local\Temp\nsw405B.tmp C:\Users\Dom\AppData\Local\Temp\odt1A9A.tmp C:\Users\Dom\AppData\Local\Temp\odt5E08.tmp C:\Users\Dom\AppData\Local\Temp\odt5E67.tmp C:\Users\Dom\AppData\Local\Temp\odt5EB6.tmp C:\Users\Dom\AppData\Local\Temp\odt5F14.tmp C:\Users\Dom\AppData\Local\Temp\odt5F54.tmp C:\Users\Dom\AppData\Local\Temp\odt5FA3.tmp C:\Users\Dom\AppData\Local\Temp\odt5FB3.tmp C:\Users\Dom\AppData\Local\Temp\opera_crashreporter.log C:\Users\Dom\AppData\Local\Temp\others C:\Users\Dom\AppData\Local\Temp\PCW6FEA.tmp C:\Users\Dom\AppData\Local\Temp\PCW6FEA.xml C:\Users\Dom\AppData\Local\Temp\PCWBAE5.tmp C:\Users\Dom\AppData\Local\Temp\PCWBAE5.xml C:\Users\Dom\AppData\Local\Temp\PCWBF22.tmp C:\Users\Dom\AppData\Local\Temp\PCWBF22.xml C:\Users\Dom\AppData\Local\Temp\PCWE5BC.tmp C:\Users\Dom\AppData\Local\Temp\PCWE5BC.xml C:\Users\Dom\AppData\Local\Temp\PCWE5EC.tmp C:\Users\Dom\AppData\Local\Temp\PCWE5EC.xml C:\Users\Dom\AppData\Local\Temp\PCWE81.tmp C:\Users\Dom\AppData\Local\Temp\PCWE81.xml C:\Users\Dom\AppData\Local\Temp\PMBUninst.log C:\Users\Dom\AppData\Local\Temp\Przeszłość to dzis. Klasa 1, część 1. Podręcznik dla liceum i technikum 2012.pdf C:\Users\Dom\AppData\Local\Temp\Quarantine.exe C:\Users\Dom\AppData\Local\Temp\raptrpatch.exe C:\Users\Dom\AppData\Local\Temp\raptr_stub.exe C:\Users\Dom\AppData\Local\Temp\Report.ico C:\Users\Dom\AppData\Local\Temp\Scan.ico C:\Users\Dom\AppData\Local\Temp\serial.exe C:\Users\Dom\AppData\Local\Temp\set1FFE.tmp C:\Users\Dom\AppData\Local\Temp\set240A.tmp C:\Users\Dom\AppData\Local\Temp\set9AE9.tmp C:\Users\Dom\AppData\Local\Temp\setB2E1.tmp C:\Users\Dom\AppData\Local\Temp\setB971.tmp C:\Users\Dom\AppData\Local\Temp\setC7B7.tmp C:\Users\Dom\AppData\Local\Temp\setEAFF.tmp C:\Users\Dom\AppData\Local\Temp\setFCA.tmp C:\Users\Dom\AppData\Local\Temp\Skype.msi C:\Users\Dom\AppData\Local\Temp\SkypeSetup.exe C:\Users\Dom\AppData\Local\Temp\sonarinst.exe C:\Users\Dom\AppData\Local\Temp\sqlite3.dll C:\Users\Dom\AppData\Local\Temp\tbi61.dll C:\Users\Dom\AppData\Local\Temp\tmp04leac C:\Users\Dom\AppData\Local\Temp\tmp0znb7z C:\Users\Dom\AppData\Local\Temp\tmp18ufb1 C:\Users\Dom\AppData\Local\Temp\tmp3ewuew C:\Users\Dom\AppData\Local\Temp\tmp3o62ii C:\Users\Dom\AppData\Local\Temp\tmp3rsaut C:\Users\Dom\AppData\Local\Temp\tmp41kjlo C:\Users\Dom\AppData\Local\Temp\tmp5icur6 C:\Users\Dom\AppData\Local\Temp\tmp5zjltz C:\Users\Dom\AppData\Local\Temp\tmp6ocdai C:\Users\Dom\AppData\Local\Temp\tmp6vwntt C:\Users\Dom\AppData\Local\Temp\tmp8pwlfr C:\Users\Dom\AppData\Local\Temp\tmp8vanuz C:\Users\Dom\AppData\Local\Temp\tmp9701.exe C:\Users\Dom\AppData\Local\Temp\tmp98tgyk C:\Users\Dom\AppData\Local\Temp\tmp9hms42 C:\Users\Dom\AppData\Local\Temp\tmp9m0iyp C:\Users\Dom\AppData\Local\Temp\tmpa6mbbf C:\Users\Dom\AppData\Local\Temp\tmpah50cx C:\Users\Dom\AppData\Local\Temp\tmpamokiq C:\Users\Dom\AppData\Local\Temp\tmpas87hc C:\Users\Dom\AppData\Local\Temp\tmpasqkl3 C:\Users\Dom\AppData\Local\Temp\tmpavpqnq C:\Users\Dom\AppData\Local\Temp\tmpavurmn C:\Users\Dom\AppData\Local\Temp\tmpbf3olh C:\Users\Dom\AppData\Local\Temp\tmpbgy_w8 C:\Users\Dom\AppData\Local\Temp\tmpbjupzj C:\Users\Dom\AppData\Local\Temp\tmpbo_ebg C:\Users\Dom\AppData\Local\Temp\tmpbpeqiz C:\Users\Dom\AppData\Local\Temp\tmpc8jcos C:\Users\Dom\AppData\Local\Temp\tmpcpklt3 C:\Users\Dom\AppData\Local\Temp\tmpcwnpix C:\Users\Dom\AppData\Local\Temp\tmpD864.exe C:\Users\Dom\AppData\Local\Temp\tmpdclgww C:\Users\Dom\AppData\Local\Temp\tmpdmmid0 C:\Users\Dom\AppData\Local\Temp\tmpdvqge6 C:\Users\Dom\AppData\Local\Temp\tmpdxxgxy C:\Users\Dom\AppData\Local\Temp\tmpemffya C:\Users\Dom\AppData\Local\Temp\tmpep12a9 C:\Users\Dom\AppData\Local\Temp\tmpepoduw C:\Users\Dom\AppData\Local\Temp\tmpf2pugb C:\Users\Dom\AppData\Local\Temp\tmpfqrbs9 C:\Users\Dom\AppData\Local\Temp\tmpfuhsmw C:\Users\Dom\AppData\Local\Temp\tmpgg4z5e C:\Users\Dom\AppData\Local\Temp\tmpgnm5zy C:\Users\Dom\AppData\Local\Temp\tmpgpbswh C:\Users\Dom\AppData\Local\Temp\tmpgtkzlv C:\Users\Dom\AppData\Local\Temp\tmph5g9kj.txt C:\Users\Dom\AppData\Local\Temp\tmpi1pxaw C:\Users\Dom\AppData\Local\Temp\tmpilcysy C:\Users\Dom\AppData\Local\Temp\tmpilph2a C:\Users\Dom\AppData\Local\Temp\tmpirtbqq C:\Users\Dom\AppData\Local\Temp\tmpjz6za_ C:\Users\Dom\AppData\Local\Temp\tmpkf6ula C:\Users\Dom\AppData\Local\Temp\tmpknchkn C:\Users\Dom\AppData\Local\Temp\tmpkqgm9v C:\Users\Dom\AppData\Local\Temp\tmpkr1_vq C:\Users\Dom\AppData\Local\Temp\tmpkuekhg C:\Users\Dom\AppData\Local\Temp\tmpkzmrww C:\Users\Dom\AppData\Local\Temp\tmpl0j0xz C:\Users\Dom\AppData\Local\Temp\tmpl9rt6e C:\Users\Dom\AppData\Local\Temp\tmpljq6re C:\Users\Dom\AppData\Local\Temp\tmplkchtk C:\Users\Dom\AppData\Local\Temp\tmplvpzou C:\Users\Dom\AppData\Local\Temp\tmplwavpo C:\Users\Dom\AppData\Local\Temp\tmplwdww9 C:\Users\Dom\AppData\Local\Temp\tmplxphhg C:\Users\Dom\AppData\Local\Temp\tmpmgeku3 C:\Users\Dom\AppData\Local\Temp\TMPMOVGI.SWF C:\Users\Dom\AppData\Local\Temp\tmpmxziaf C:\Users\Dom\AppData\Local\Temp\tmpmzysbh C:\Users\Dom\AppData\Local\Temp\tmpndqknm C:\Users\Dom\AppData\Local\Temp\tmpngkqnd C:\Users\Dom\AppData\Local\Temp\tmpnmcrhp C:\Users\Dom\AppData\Local\Temp\tmpnmtjt0 C:\Users\Dom\AppData\Local\Temp\tmpnroeke C:\Users\Dom\AppData\Local\Temp\tmpnrubhh C:\Users\Dom\AppData\Local\Temp\tmpoq3hvk C:\Users\Dom\AppData\Local\Temp\tmpoqaido C:\Users\Dom\AppData\Local\Temp\tmporaxg0 C:\Users\Dom\AppData\Local\Temp\tmpozjhw1 C:\Users\Dom\AppData\Local\Temp\tmppgwpdg C:\Users\Dom\AppData\Local\Temp\tmppjtv79 C:\Users\Dom\AppData\Local\Temp\tmppvqclb C:\Users\Dom\AppData\Local\Temp\tmppx9013.txt C:\Users\Dom\AppData\Local\Temp\tmpq0zjuz C:\Users\Dom\AppData\Local\Temp\tmpq4f4dg C:\Users\Dom\AppData\Local\Temp\tmpqgqvqf C:\Users\Dom\AppData\Local\Temp\tmpqmrktq C:\Users\Dom\AppData\Local\Temp\tmpqulm6o C:\Users\Dom\AppData\Local\Temp\tmpr9ndk7 C:\Users\Dom\AppData\Local\Temp\tmprdsduu C:\Users\Dom\AppData\Local\Temp\tmprf22iq C:\Users\Dom\AppData\Local\Temp\tmprkmkkb C:\Users\Dom\AppData\Local\Temp\tmprlhhht C:\Users\Dom\AppData\Local\Temp\tmprn07va C:\Users\Dom\AppData\Local\Temp\tmpryd0yf C:\Users\Dom\AppData\Local\Temp\tmpshkyuj C:\Users\Dom\AppData\Local\Temp\tmpsn1aep C:\Users\Dom\AppData\Local\Temp\tmpsspcrh C:\Users\Dom\AppData\Local\Temp\tmpsxtdf2 C:\Users\Dom\AppData\Local\Temp\tmptoogrk C:\Users\Dom\AppData\Local\Temp\tmptssv54 C:\Users\Dom\AppData\Local\Temp\tmptvdf0b C:\Users\Dom\AppData\Local\Temp\tmpt_ecug C:\Users\Dom\AppData\Local\Temp\tmpu4bt3t C:\Users\Dom\AppData\Local\Temp\tmpu7wko3 C:\Users\Dom\AppData\Local\Temp\tmpuof0ud C:\Users\Dom\AppData\Local\Temp\tmpvby29_ C:\Users\Dom\AppData\Local\Temp\tmpvoy5rd C:\Users\Dom\AppData\Local\Temp\tmpwckope C:\Users\Dom\AppData\Local\Temp\tmpwdvce2 C:\Users\Dom\AppData\Local\Temp\tmpxxm3rh C:\Users\Dom\AppData\Local\Temp\tmpy1qtzm C:\Users\Dom\AppData\Local\Temp\tmpyqen6e C:\Users\Dom\AppData\Local\Temp\tmpysk9yo C:\Users\Dom\AppData\Local\Temp\tmpyswmft C:\Users\Dom\AppData\Local\Temp\tmpzdpiyc C:\Users\Dom\AppData\Local\Temp\tmpzfxbst C:\Users\Dom\AppData\Local\Temp\tmpzlzfm2 C:\Users\Dom\AppData\Local\Temp\tmpz_uoqj C:\Users\Dom\AppData\Local\Temp\tmp_5wf2j C:\Users\Dom\AppData\Local\Temp\TWAIN.LOG C:\Users\Dom\AppData\Local\Temp\Twain001.Mtx C:\Users\Dom\AppData\Local\Temp\Twunk001.MTX C:\Users\Dom\AppData\Local\Temp\Twunk002.MTX C:\Users\Dom\AppData\Local\Temp\ubi6F37.tmp.exe C:\Users\Dom\AppData\Local\Temp\Uninstall.exe C:\Users\Dom\AppData\Local\Temp\Uninstall.ico C:\Users\Dom\AppData\Local\Temp\v3init2.log C:\Users\Dom\AppData\Local\Temp\WebDataJs C:\Users\Dom\AppData\Local\Temp\Wideo0000[1].3gp C:\Users\Dom\AppData\Local\Temp\wmplog00.sqm C:\Users\Dom\AppData\Local\Temp\wmsetup.log C:\Users\Dom\AppData\Local\Temp\wop17FD.tmp C:\Users\Dom\AppData\Local\Temp\wop180D.tmp C:\Users\Dom\AppData\Local\Temp\wop181E.tmp C:\Users\Dom\AppData\Local\Temp\wop2C50.tmp C:\Users\Dom\AppData\Local\Temp\wop2CED.tmp C:\Users\Dom\AppData\Local\Temp\wop2D9A.tmp C:\Users\Dom\AppData\Local\Temp\wop4435.tmp C:\Users\Dom\AppData\Local\Temp\wop44A4.tmp C:\Users\Dom\AppData\Local\Temp\wop44C4.tmp C:\Users\Dom\AppData\Local\Temp\wop44D4.tmp C:\Users\Dom\AppData\Local\Temp\wop517D.tmp C:\Users\Dom\AppData\Local\Temp\wop519D.tmp C:\Users\Dom\AppData\Local\Temp\wop5794.tmp C:\Users\Dom\AppData\Local\Temp\wop57D4.tmp C:\Users\Dom\AppData\Local\Temp\wop57F4.tmp C:\Users\Dom\AppData\Local\Temp\wop5FEE.tmp C:\Users\Dom\AppData\Local\Temp\wop5FFE.tmp C:\Users\Dom\AppData\Local\Temp\wop5FFF.tmp C:\Users\Dom\AppData\Local\Temp\wop9272.tmp C:\Users\Dom\AppData\Local\Temp\wop9273.tmp C:\Users\Dom\AppData\Local\Temp\wop9284.tmp C:\Users\Dom\AppData\Local\Temp\wop92A4.tmp C:\Users\Dom\AppData\Local\Temp\wop92A5.tmp C:\Users\Dom\AppData\Local\Temp\wop92D5.tmp C:\Users\Dom\AppData\Local\Temp\wop92E5.tmp C:\Users\Dom\AppData\Local\Temp\wop92F6.tmp C:\Users\Dom\AppData\Local\Temp\wop9306.tmp C:\Users\Dom\AppData\Local\Temp\wop9317.tmp C:\Users\Dom\AppData\Local\Temp\wop9376.tmp C:\Users\Dom\AppData\Local\Temp\wop9386.tmp C:\Users\Dom\AppData\Local\Temp\wop959A.tmp C:\Users\Dom\AppData\Local\Temp\wop95AA.tmp C:\Users\Dom\AppData\Local\Temp\wop95BB.tmp C:\Users\Dom\AppData\Local\Temp\wop95BC.tmp C:\Users\Dom\AppData\Local\Temp\wop95CC.tmp C:\Users\Dom\AppData\Local\Temp\wop95CD.tmp C:\Users\Dom\AppData\Local\Temp\wopB1F0.tmp C:\Users\Dom\AppData\Local\Temp\wopB230.tmp C:\Users\Dom\AppData\Local\Temp\wopB240.tmp C:\Users\Dom\AppData\Local\Temp\wopB2CE.tmp C:\Users\Dom\AppData\Local\Temp\wopB2CF.tmp C:\Users\Dom\AppData\Local\Temp\wopB2EF.tmp C:\Users\Dom\AppData\Local\Temp\wopB30F.tmp C:\Users\Dom\AppData\Local\Temp\wopB32F.tmp C:\Users\Dom\AppData\Local\Temp\wopB340.tmp C:\Users\Dom\AppData\Local\Temp\wopB351.tmp C:\Users\Dom\AppData\Local\Temp\wopB3AF.tmp C:\Users\Dom\AppData\Local\Temp\wopB3C0.tmp C:\Users\Dom\AppData\Local\Temp\wopB53B.tmp C:\Users\Dom\AppData\Local\Temp\wopB556.tmp C:\Users\Dom\AppData\Local\Temp\wopB586.tmp C:\Users\Dom\AppData\Local\Temp\wopB587.tmp C:\Users\Dom\AppData\Local\Temp\wopB59A.tmp C:\Users\Dom\AppData\Local\Temp\wopB5A7.tmp C:\Users\Dom\AppData\Local\Temp\wopB5B8.tmp C:\Users\Dom\AppData\Local\Temp\wopB5C9.tmp C:\Users\Dom\AppData\Local\Temp\wopB5D9.tmp C:\Users\Dom\AppData\Local\Temp\wopB6C4.tmp C:\Users\Dom\AppData\Local\Temp\wopB6F4.tmp C:\Users\Dom\AppData\Local\Temp\wopB714.tmp C:\Users\Dom\AppData\Local\Temp\wopB7E0.tmp C:\Users\Dom\AppData\Local\Temp\wopB82F.tmp C:\Users\Dom\AppData\Local\Temp\wopB88E.tmp C:\Users\Dom\AppData\Local\Temp\wopB8BE.tmp C:\Users\Dom\AppData\Local\Temp\wopBC28.tmp C:\Users\Dom\AppData\Local\Temp\wopBC77.tmp C:\Users\Dom\AppData\Local\Temp\wopC732.tmp C:\Users\Dom\AppData\Local\Temp\wopC752.tmp C:\Users\Dom\AppData\Local\Temp\wopC772.tmp C:\Users\Dom\AppData\Local\Temp\wopC792.tmp C:\Users\Dom\AppData\Local\Temp\wopC7A3.tmp C:\Users\Dom\AppData\Local\Temp\wopC7B4.tmp C:\Users\Dom\AppData\Local\Temp\wopC91.tmp C:\Users\Dom\AppData\Local\Temp\wopCD0.tmp C:\Users\Dom\AppData\Local\Temp\wopCE1.tmp C:\Users\Dom\AppData\Local\Temp\wopD11.tmp C:\Users\Dom\AppData\Local\Temp\wopD50.tmp C:\Users\Dom\AppData\Local\Temp\wopE03B.tmp C:\Users\Dom\AppData\Local\Temp\wopE04B.tmp C:\Users\Dom\AppData\Local\Temp\wopE05C.tmp C:\Users\Dom\AppData\Local\Temp\wopF8F3.tmp C:\Users\Dom\AppData\Local\Temp\wopF8F4.tmp C:\Users\Dom\AppData\Local\Temp\wopF914.tmp C:\Users\Dom\AppData\Local\Temp\wopF925.tmp C:\Users\Dom\AppData\Local\Temp\~6344.tmp C:\Users\Dom\AppData\Local\Temp\~B155.tmp C:\Users\Dom\AppData\Local\Temp\{F02C7D85-4B74-448F-86AE-949282C2FAC0}\fpb.tmp C:\Users\Dom\AppData\Local\Temp\{B7E519AA-8BA8-4A6A-9CA6-B3004D201733}\fpb.tmp C:\Users\Dom\AppData\Local\Temp\{AABCCE51-A569-4904-A63B-C8686310481D}\fpb.tmp C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\BrC3Rgin.exe C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\BrCCMdl.ini C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\CC3BrModel.ccr C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\difxapi.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\MSVCP60.DLL C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\Drivers\BrScnFlt.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\ControlCenter\brAutCrp.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\ControlCenter\brccbul.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\ControlCenter\brccchn.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\ControlCenter\brcccht.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\ControlCenter\brcccze.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\ControlCenter\brccdan.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\ControlCenter\brccDCtl.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\ControlCenter\brccdut.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\ControlCenter\brcceng.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\ControlCenter\brccFCtl.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\ControlCenter\brccfile.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\ControlCenter\brccfin.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\ControlCenter\brccfre.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\ControlCenter\brccger.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\ControlCenter\brcchun.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\ControlCenter\brccimg.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\ControlCenter\brccita.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\ControlCenter\brccjpn.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\ControlCenter\BrccMCtl.exe C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\ControlCenter\brccnor.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\ControlCenter\brccpol.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\ControlCenter\brccpor.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\ControlCenter\brccptb.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\ControlCenter\brccrom.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\ControlCenter\brccrus.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\ControlCenter\brccspa.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\ControlCenter\brccsrch.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\ControlCenter\brccsvk.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\ControlCenter\brccswe.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\ControlCenter\brcctrk.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\ControlCenter\brcctwn.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\ControlCenter\brccusa.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\ControlCenter\brccwia.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\ControlCenter\BrCtrCen.exe C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\ControlCenter\BrDbgOut.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\ControlCenter\BrImgPDF.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\ControlCenter\lfawd12n.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\ControlCenter\lfbmp12n.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\ControlCenter\LFCMP12n.DLL C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\ControlCenter\lfeps12n.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\ControlCenter\lffax12n.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\ControlCenter\lflma12n.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\ControlCenter\lflmb12n.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\ControlCenter\lfmsp12n.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\ControlCenter\lfpcx12n.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\ControlCenter\Lfpng12n.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\ControlCenter\LFPNM12n.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\ControlCenter\lftif12n.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\ControlCenter\lfwfx12n.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\ControlCenter\lfwmf12n.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\ControlCenter\lfwpg12n.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\ControlCenter\LTDIS12n.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\ControlCenter\ltefx12n.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\ControlCenter\ltfil12n.DLL C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\ControlCenter\ltimg12n.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\ControlCenter\ltkrn12n.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\ControlCenter\lttwn12n.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\ControlCenter\LTWND12n.DLL C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\ControlCenter\RLACMPCAPI.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\ContrlCenter\maxutil.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\ContrlCenter\pperr.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\Brmfcmon_NotUninstall\BRMFCWNDBUL.chm C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\Brmfcmon_NotUninstall\BrmfcwndBul.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\Brmfcmon_NotUninstall\BRMFCWNDCHN.chm C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\Brmfcmon_NotUninstall\BrmfcwndChn.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\Brmfcmon_NotUninstall\BRMFCWNDCHT.chm C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\Brmfcmon_NotUninstall\BrmfcwndCht.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\Brmfcmon_NotUninstall\BRMFCWNDCZE.chm C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\Brmfcmon_NotUninstall\BrmfcwndCze.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\Brmfcmon_NotUninstall\BRMFCWNDDAN.chm C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\Brmfcmon_NotUninstall\BrmfcwndDan.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\Brmfcmon_NotUninstall\BRMFCWNDDUT.chm C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\Brmfcmon_NotUninstall\BrmfcwndDut.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\Brmfcmon_NotUninstall\BRMFCWNDENG.chm C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\Brmfcmon_NotUninstall\BrmfcwndEng.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\Brmfcmon_NotUninstall\BRMFCWNDFIN.chm C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\Brmfcmon_NotUninstall\BrmfcwndFin.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\Brmfcmon_NotUninstall\BRMFCWNDFRC.chm C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\Brmfcmon_NotUninstall\BrmfcwndFrc.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\Brmfcmon_NotUninstall\BRMFCWNDFRE.chm C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\Brmfcmon_NotUninstall\BrmfcwndFre.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\Brmfcmon_NotUninstall\BRMFCWNDGER.chm C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\Brmfcmon_NotUninstall\BrmfcwndGer.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\Brmfcmon_NotUninstall\BRMFCWNDHUN.chm C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\Brmfcmon_NotUninstall\BrmfcwndHun.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\Brmfcmon_NotUninstall\BRMFCWNDITA.chm C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\Brmfcmon_NotUninstall\BrmfcwndIta.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\Brmfcmon_NotUninstall\BRMFCWNDJPN.chm C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\Brmfcmon_NotUninstall\BrmfcwndJpn.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\Brmfcmon_NotUninstall\BRMFCWNDNOR.chm C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\Brmfcmon_NotUninstall\BrmfcwndNor.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\Brmfcmon_NotUninstall\BRMFCWNDPOL.chm C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\Brmfcmon_NotUninstall\BrmfcwndPol.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\Brmfcmon_NotUninstall\BRMFCWNDPOR.chm C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\Brmfcmon_NotUninstall\BrmfcwndPor.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\Brmfcmon_NotUninstall\BRMFCWNDPTB.chm C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\Brmfcmon_NotUninstall\BrmfcwndPtb.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\Brmfcmon_NotUninstall\BRMFCWNDROM.chm C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\Brmfcmon_NotUninstall\BrmfcwndRom.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\Brmfcmon_NotUninstall\BRMFCWNDRUS.chm C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\Brmfcmon_NotUninstall\BrmfcwndRus.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\Brmfcmon_NotUninstall\BRMFCWNDSPA.chm C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\Brmfcmon_NotUninstall\BrmfcwndSpa.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\Brmfcmon_NotUninstall\BRMFCWNDSVK.chm C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\Brmfcmon_NotUninstall\BrmfcwndSvk.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\Brmfcmon_NotUninstall\BRMFCWNDSWE.chm C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\Brmfcmon_NotUninstall\BrmfcwndSwe.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\Brmfcmon_NotUninstall\BRMFCWNDTRK.chm C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\Brmfcmon_NotUninstall\BrmfcwndTrk.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\Brmfcmon_NotUninstall\BRMFCWNDUSA.chm C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\Brmfcmon_NotUninstall\BrmfcwndUsa.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\Brmfcmon_NotUninstall\BroSNMP.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\Brmfcmon_NotUninstall\BrWeb.ini C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\Brmfcmon\BrDbgOut.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\Brmfcmon\BrFirmUpdateCheck.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\Brmfcmon\BRHOOK.DLL C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\Brmfcmon\brif03a.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\Brmfcmon\brlm03a.dll C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\Brmfcmon\BRLMW03A.DLL C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\Brmfcmon\BRLMW03A.INI C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\Brmfcmon\BrMfcMon.exe C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\Brmfcmon\BrMfcWnd.exe C:\Users\Dom\AppData\Local\Temp\{A540E556-E651-4172-9D4B-D2E677D84E36}\{48D082B9-18F6-4426-AFAC-8B6A3E7021B1}\Brmfcmon\BrMfimon.exe C:\Users\Dom\AppData\Local\Temp\{9FDF949F-5E42-4582-B36B-E089FF03A343}\fpb.tmp C:\Users\Dom\AppData\Local\Temp\{9D7D18A4-6C0A-4FEF-AE2D-09876370FAD9}\fpb.tmp C:\Users\Dom\AppData\Local\Temp\{8AE1EFA1-1682-47E9-B674-A6AEA1BB65A9}\fpb.tmp C:\Users\Dom\AppData\Local\Temp\{875E110C-523A-400B-9398-3C9105017A5E}\fpb.tmp C:\Users\Dom\AppData\Local\Temp\{8317119F-09FD-4CA7-8502-B72A3EEEE770}\fpb.tmp C:\Users\Dom\AppData\Local\Temp\{83119398-4107-40B3-9ED0-61A6F0F715EF}\setup.exe C:\Users\Dom\AppData\Local\Temp\{6647FA4E-AE57-447A-AF49-AA07D0C746AA}\fpb.tmp C:\Users\Dom\AppData\Local\Temp\{5DAC38EA-4BC8-4AE1-BEB6-5A8938FC36A0}\fpb.tmp C:\Users\Dom\AppData\Local\Temp\{5316DE9F-4633-43C2-887B-3C7B69D2150D}\fpb.tmp C:\Users\Dom\AppData\Local\Temp\{1D479C7D-FE8C-46D8-9B57-B0397B54CB19}\fpb.tmp C:\Users\Dom\AppData\Local\Temp\{02D5CA07-0D15-4E87-86F9-CE5BBCE8B457}\fpb.tmp C:\Users\Dom\AppData\Local\Temp\_ir_sf_temp_0\irsetup.exe C:\Users\Dom\AppData\Local\Temp\_ir_sf_temp_0\lua5.1.dll C:\Users\Dom\AppData\Local\Temp\Temporary Internet Files\Content.IE5\desktop.ini C:\Users\Dom\AppData\Local\Temp\Temporary Internet Files\Content.IE5\index.dat C:\Users\Dom\AppData\Local\Temp\Temporary Internet Files\Content.IE5\WHHM4J6O\125[1].jpg C:\Users\Dom\AppData\Local\Temp\Temporary Internet Files\Content.IE5\WHHM4J6O\ads-in-client[2].js C:\Users\Dom\AppData\Local\Temp\Temporary Internet Files\Content.IE5\WHHM4J6O\allScripts[2].js C:\Users\Dom\AppData\Local\Temp\Temporary Internet Files\Content.IE5\WHHM4J6O\avatar[1].jpg C:\Users\Dom\AppData\Local\Temp\Temporary Internet Files\Content.IE5\WHHM4J6O\avatar[2].jpg C:\Users\Dom\AppData\Local\Temp\Temporary Internet Files\Content.IE5\WHHM4J6O\avatar[3].jpg C:\Users\Dom\AppData\Local\Temp\Temporary Internet Files\Content.IE5\WHHM4J6O\config[1].txt C:\Users\Dom\AppData\Local\Temp\Temporary Internet Files\Content.IE5\WHHM4J6O\countrycode[1] C:\Users\Dom\AppData\Local\Temp\Temporary Internet Files\Content.IE5\WHHM4J6O\countrycode[2] C:\Users\Dom\AppData\Local\Temp\Temporary Internet Files\Content.IE5\WHHM4J6O\countrycode[3] C:\Users\Dom\AppData\Local\Temp\Temporary Internet Files\Content.IE5\WHHM4J6O\dapmsn-8.0[1].js C:\Users\Dom\AppData\Local\Temp\Temporary Internet Files\Content.IE5\WHHM4J6O\data[1].xml C:\Users\Dom\AppData\Local\Temp\Temporary Internet Files\Content.IE5\WHHM4J6O\desktop.ini C:\Users\Dom\AppData\Local\Temp\Temporary Internet Files\Content.IE5\WHHM4J6O\jquery-1.11.0.min[1].js C:\Users\Dom\AppData\Local\Temp\Temporary Internet Files\Content.IE5\WHHM4J6O\JSAdservingSP[1].js C:\Users\Dom\AppData\Local\Temp\Temporary Internet Files\Content.IE5\WHHM4J6O\microsoft.advertising.web.admanager[1].js C:\Users\Dom\AppData\Local\Temp\Temporary Internet Files\Content.IE5\WHHM4J6O\rexdot[1].js C:\Users\Dom\AppData\Local\Temp\Temporary Internet Files\Content.IE5\WHHM4J6O\rexdot[2].js C:\Users\Dom\AppData\Local\Temp\Temporary Internet Files\Content.IE5\U882M051\445[1].jpg C:\Users\Dom\AppData\Local\Temp\Temporary Internet Files\Content.IE5\U882M051\AdChoices[1].js C:\Users\Dom\AppData\Local\Temp\Temporary Internet Files\Content.IE5\U882M051\AdLoader[1].htm C:\Users\Dom\AppData\Local\Temp\Temporary Internet Files\Content.IE5\U882M051\ads-minified-v2[1].js C:\Users\Dom\AppData\Local\Temp\Temporary Internet Files\Content.IE5\U882M051\avatar[2].jpg C:\Users\Dom\AppData\Local\Temp\Temporary Internet Files\Content.IE5\U882M051\avatar[3].jpg C:\Users\Dom\AppData\Local\Temp\Temporary Internet Files\Content.IE5\U882M051\cfc800a5074f411b80226d481a39d307[1].gif C:\Users\Dom\AppData\Local\Temp\Temporary Internet Files\Content.IE5\U882M051\chatadwidget[1].htm C:\Users\Dom\AppData\Local\Temp\Temporary Internet Files\Content.IE5\U882M051\collapser[1].js C:\Users\Dom\AppData\Local\Temp\Temporary Internet Files\Content.IE5\U882M051\configW7[1].xml C:\Users\Dom\AppData\Local\Temp\Temporary Internet Files\Content.IE5\U882M051\countrycode[1] C:\Users\Dom\AppData\Local\Temp\Temporary Internet Files\Content.IE5\U882M051\desktop.ini C:\Users\Dom\AppData\Local\Temp\Temporary Internet Files\Content.IE5\U882M051\frame-hider[1].htm C:\Users\Dom\AppData\Local\Temp\Temporary Internet Files\Content.IE5\U882M051\JSAdservingSP[1].js C:\Users\Dom\AppData\Local\Temp\Temporary Internet Files\Content.IE5\U882M051\pl[1].json C:\Users\Dom\AppData\Local\Temp\Temporary Internet Files\Content.IE5\U882M051\xgemius[1].js C:\Users\Dom\AppData\Local\Temp\Temporary Internet Files\Content.IE5\S9KUPD4H\996[1].jpg C:\Users\Dom\AppData\Local\Temp\Temporary Internet Files\Content.IE5\S9KUPD4H\AdLoader-3b8e790904fffcf74f96367cd382e261.min[1].js C:\Users\Dom\AppData\Local\Temp\Temporary Internet Files\Content.IE5\S9KUPD4H\AdLoader[1].htm C:\Users\Dom\AppData\Local\Temp\Temporary Internet Files\Content.IE5\S9KUPD4H\AdLoader[2].htm C:\Users\Dom\AppData\Local\Temp\Temporary Internet Files\Content.IE5\S9KUPD4H\allScripts[1].js C:\Users\Dom\AppData\Local\Temp\Temporary Internet Files\Content.IE5\S9KUPD4H\avatar[1].jpg C:\Users\Dom\AppData\Local\Temp\Temporary Internet Files\Content.IE5\S9KUPD4H\countrycode[1] C:\Users\Dom\AppData\Local\Temp\Temporary Internet Files\Content.IE5\S9KUPD4H\countrycode[2] C:\Users\Dom\AppData\Local\Temp\Temporary Internet Files\Content.IE5\S9KUPD4H\dapmsn_iaf[1].js C:\Users\Dom\AppData\Local\Temp\Temporary Internet Files\Content.IE5\S9KUPD4H\desktop.ini C:\Users\Dom\AppData\Local\Temp\Temporary Internet Files\Content.IE5\S9KUPD4H\fpdata[1].js C:\Users\Dom\AppData\Local\Temp\Temporary Internet Files\Content.IE5\S9KUPD4H\index-b3367b62ff386d02ac735dc86db90f0c.min[1].css C:\Users\Dom\AppData\Local\Temp\Temporary Internet Files\Content.IE5\S9KUPD4H\inscreen_lib[1].js C:\Users\Dom\AppData\Local\Temp\Temporary Internet Files\Content.IE5\S9KUPD4H\rexdot[1].js C:\Users\Dom\AppData\Local\Temp\Temporary Internet Files\Content.IE5\S9KUPD4H\small[1].png C:\Users\Dom\AppData\Local\Temp\Temporary Internet Files\Content.IE5\S9KUPD4H\xml[2].xml C:\Users\Dom\AppData\Local\Temp\Temporary Internet Files\Content.IE5\7B5V4ND3\59bedd592eb34e17a410d0bbf5cfe849[1].jpg C:\Users\Dom\AppData\Local\Temp\Temporary Internet Files\Content.IE5\7B5V4ND3\AdLoader-0ee9685baf8ff395a7119d551063e2d4.min[1].js C:\Users\Dom\AppData\Local\Temp\Temporary Internet Files\Content.IE5\7B5V4ND3\AdLoader-a5fa12058ddb9a8919d6906ba95d7c57.min[1].js C:\Users\Dom\AppData\Local\Temp\Temporary Internet Files\Content.IE5\7B5V4ND3\Admeta[1].js C:\Users\Dom\AppData\Local\Temp\Temporary Internet Files\Content.IE5\7B5V4ND3\avatar[1].jpg C:\Users\Dom\AppData\Local\Temp\Temporary Internet Files\Content.IE5\7B5V4ND3\avatar[2].jpg C:\Users\Dom\AppData\Local\Temp\Temporary Internet Files\Content.IE5\7B5V4ND3\countrycode[1] C:\Users\Dom\AppData\Local\Temp\Temporary Internet Files\Content.IE5\7B5V4ND3\desktop.ini C:\Users\Dom\AppData\Local\Temp\Temporary Internet Files\Content.IE5\7B5V4ND3\flextag[1].htm C:\Users\Dom\AppData\Local\Temp\Temporary Internet Files\Content.IE5\7B5V4ND3\index-3de5e084c21dd78e4afed58519856c27.min[1].js C:\Users\Dom\AppData\Local\Temp\Temporary Internet Files\Content.IE5\7B5V4ND3\lsget[1].htm C:\Users\Dom\AppData\Local\Temp\Temporary Internet Files\Content.IE5\7B5V4ND3\mstag.1003102000[2].js C:\Users\Dom\AppData\Local\Temp\Temporary Internet Files\Content.IE5\7B5V4ND3\mstag[1].js C:\Users\Dom\AppData\Local\Temp\Temporary Internet Files\Content.IE5\7B5V4ND3\rexdot[1].js C:\Users\Dom\AppData\Local\Temp\Skype\gilasterr.log C:\Users\Dom\AppData\Local\Temp\scoped_dir6812\Default\Cookies C:\Users\Dom\AppData\Local\Temp\scoped_dir6812\Default\Web Data C:\Users\Dom\AppData\Local\Temp\scoped_dir6812\Default\Web Data-journal C:\Users\Dom\AppData\Local\Temp\scoped_dir6812\Default\Cache\data_0 C:\Users\Dom\AppData\Local\Temp\scoped_dir6812\Default\Cache\data_1 C:\Users\Dom\AppData\Local\Temp\scoped_dir6812\Default\Cache\data_2 C:\Users\Dom\AppData\Local\Temp\scoped_dir6812\Default\Cache\data_3 C:\Users\Dom\AppData\Local\Temp\scoped_dir6812\Default\Cache\index C:\Users\Dom\AppData\Local\Temp\scoped_dir11511\Default\Cookies C:\Users\Dom\AppData\Local\Temp\scoped_dir11511\Default\Favicons C:\Users\Dom\AppData\Local\Temp\scoped_dir11511\Default\History C:\Users\Dom\AppData\Local\Temp\scoped_dir11511\Default\Preferences C:\Users\Dom\AppData\Local\Temp\scoped_dir11511\Default\Web Data C:\Users\Dom\AppData\Local\Temp\scoped_dir11511\Default\Cache\data_0 C:\Users\Dom\AppData\Local\Temp\scoped_dir11511\Default\Cache\data_1 C:\Users\Dom\AppData\Local\Temp\scoped_dir11511\Default\Cache\data_2 C:\Users\Dom\AppData\Local\Temp\scoped_dir11511\Default\Cache\data_3 C:\Users\Dom\AppData\Local\Temp\scoped_dir11511\Default\Cache\index C:\Users\Dom\AppData\Local\Temp\plugtmp-16\plugin-crossdomain-1.xml C:\Users\Dom\AppData\Local\Temp\plugtmp-16\plugin-crossdomain.xml C:\Users\Dom\AppData\Local\Temp\Opera Installer\opera_installer_20150708145804.log C:\Users\Dom\AppData\Local\Temp\Opera Installer\opera_installer_20150708145855.log C:\Users\Dom\AppData\Local\Temp\Opera Installer\opera_installer_20150708150019.log C:\Users\Dom\AppData\Local\Temp\Opera Installer\opera_installer_20150708150023.log C:\Users\Dom\AppData\Local\Temp\nsuE35D.tmp\blowfish.dll C:\Users\Dom\AppData\Local\Temp\nsuE35D.tmp\FirstResult.txt C:\Users\Dom\AppData\Local\Temp\nsuE35D.tmp\GetVersion.dll C:\Users\Dom\AppData\Local\Temp\nsuE35D.tmp\header.bmp C:\Users\Dom\AppData\Local\Temp\nsuE35D.tmp\img12_1.jpg C:\Users\Dom\AppData\Local\Temp\nsuE35D.tmp\inner.png C:\Users\Dom\AppData\Local\Temp\nsuE35D.tmp\manlib.dll C:\Users\Dom\AppData\Local\Temp\nsuE35D.tmp\Math.dll C:\Users\Dom\AppData\Local\Temp\nsuE35D.tmp\nsDialogs.dll C:\Users\Dom\AppData\Local\Temp\nsuE35D.tmp\nsisunz.dll C:\Users\Dom\AppData\Local\Temp\nsuE35D.tmp\Offer1.zip C:\Users\Dom\AppData\Local\Temp\nsuE35D.tmp\Offer2.zip C:\Users\Dom\AppData\Local\Temp\nsuE35D.tmp\OfferScreen_12.html C:\Users\Dom\AppData\Local\Temp\nsuE35D.tmp\OfferScreen_460.html C:\Users\Dom\AppData\Local\Temp\nsuE35D.tmp\registry.dll C:\Users\Dom\AppData\Local\Temp\nsuE35D.tmp\SecondResult.txt C:\Users\Dom\AppData\Local\Temp\nsuE35D.tmp\serlib.dll C:\Users\Dom\AppData\Local\Temp\nsuE35D.tmp\ShopTime_result.txt C:\Users\Dom\AppData\Local\Temp\nsuE35D.tmp\System.dll C:\Users\Dom\AppData\Local\Temp\nsuE35D.tmp\UserInfo.dll C:\Users\Dom\AppData\Local\Temp\nst144C.tmp\dqninzh.dll C:\Users\Dom\AppData\Local\Temp\nst144C.tmp\ZipDLL.dll C:\Users\Dom\AppData\Local\Temp\nslD931.tmp\flush-inetc.dll C:\Users\Dom\AppData\Local\Temp\nslD931.tmp\inetc.dll C:\Users\Dom\AppData\Local\Temp\nslD931.tmp\nsis-progressbar.dll C:\Users\Dom\AppData\Local\Temp\nslD931.tmp\ProcessKiller.dll C:\Users\Dom\AppData\Local\Temp\nslD931.tmp\System.dll C:\Users\Dom\AppData\Local\Temp\nslD931.tmp\UserInfo.dll C:\Users\Dom\AppData\Local\Temp\nslD931.tmp\WmiInspector.dll C:\Users\Dom\AppData\Local\Temp\nsl360F.tmp\inetc.dll C:\Users\Dom\AppData\Local\Temp\nseC8EC.tmp\inetc.dll C:\Users\Dom\AppData\Local\Temp\nseC8EC.tmp\IpConfig.dll C:\Users\Dom\AppData\Local\Temp\nseC8EC.tmp\System.dll C:\Users\Dom\AppData\Local\Temp\nseC8EC.tmp\WmiInspector.dll C:\Users\Dom\AppData\Local\Temp\nsdF53D.tmp\avcodec-54.dll C:\Users\Dom\AppData\Local\Temp\nsdF53D.tmp\avformat-54.dll C:\Users\Dom\AppData\Local\Temp\nsdF53D.tmp\avutil-51.dll C:\Users\Dom\AppData\Local\Temp\nsdF53D.tmp\CrypticError.exe C:\Users\Dom\AppData\Local\Temp\nsdF53D.tmp\dbghelp.dll C:\Users\Dom\AppData\Local\Temp\nsdF53D.tmp\debug.log C:\Users\Dom\AppData\Local\Temp\nsdF53D.tmp\icudt.dll C:\Users\Dom\AppData\Local\Temp\nsdF53D.tmp\libcef.dll C:\Users\Dom\AppData\Local\Temp\nsdF53D.tmp\pcl.log C:\Users\Dom\AppData\Local\Temp\nsdF53D.tmp\localdata\GamePrefs.pref C:\Users\Dom\AppData\Local\Temp\nsdF53D.tmp\localdata\_SWMWindowPosList.txt C:\Users\Dom\AppData\Local\Temp\nsdF53D.tmp\cef_cache\Cookies C:\Users\Dom\AppData\Local\Temp\nsdF53D.tmp\cef_cache\Cookies-journal C:\Users\Dom\AppData\Local\Temp\nsdF53D.tmp\cef_cache\data_0 C:\Users\Dom\AppData\Local\Temp\nsdF53D.tmp\cef_cache\data_1 C:\Users\Dom\AppData\Local\Temp\nsdF53D.tmp\cef_cache\data_2 C:\Users\Dom\AppData\Local\Temp\nsdF53D.tmp\cef_cache\data_3 C:\Users\Dom\AppData\Local\Temp\nsdF53D.tmp\cef_cache\f_000001 C:\Users\Dom\AppData\Local\Temp\nsdF53D.tmp\cef_cache\f_000002 C:\Users\Dom\AppData\Local\Temp\nsdF53D.tmp\cef_cache\f_000003 C:\Users\Dom\AppData\Local\Temp\nsdF53D.tmp\cef_cache\f_000004 C:\Users\Dom\AppData\Local\Temp\nsdF53D.tmp\cef_cache\f_000005 C:\Users\Dom\AppData\Local\Temp\nsdF53D.tmp\cef_cache\f_000006 C:\Users\Dom\AppData\Local\Temp\nsdF53D.tmp\cef_cache\f_000007 C:\Users\Dom\AppData\Local\Temp\nsdF53D.tmp\cef_cache\f_000008 C:\Users\Dom\AppData\Local\Temp\nsdF53D.tmp\cef_cache\f_000009 C:\Users\Dom\AppData\Local\Temp\nsdF53D.tmp\cef_cache\f_00000a C:\Users\Dom\AppData\Local\Temp\nsdF53D.tmp\cef_cache\index C:\Users\Dom\AppData\Local\Temp\N\config.ini C:\Users\Dom\AppData\Local\Temp\N\LG_PC_Programs.exe C:\Users\Dom\AppData\Local\Temp\N\P5_LGPsLvDlChk.dll C:\Users\Dom\AppData\Local\Temp\N\Progress.avi C:\Users\Dom\AppData\Local\Temp\N\SendScsiCmd.dll C:\Users\Dom\AppData\Local\Temp\N\tools\LGUnitedMobileDriver_S50MAN310AP22_ML_WHQL_Ver_3.10.1.msi C:\Users\Dom\AppData\Local\Temp\msohtml1\01\clip_image001.png C:\Users\Dom\AppData\Local\Temp\msohtml1\01\clip_image002.gif C:\Users\Dom\AppData\Local\Temp\msohtml1\01\clip_image003.png C:\Users\Dom\AppData\Local\Temp\msohtml1\01\clip_image004.gif C:\Users\Dom\AppData\Local\Temp\msohtml1\01\clip_image005.png C:\Users\Dom\AppData\Local\Temp\msohtml1\01\clip_image006.gif C:\Users\Dom\AppData\Local\Temp\msohtml1\01\clip_image007.wmz C:\Users\Dom\AppData\Local\Temp\msohtml1\01\clip_image008.gif C:\Users\Dom\AppData\Local\Temp\msohtml1\01\clip_image009.png C:\Users\Dom\AppData\Local\Temp\msohtml1\01\clip_image010.gif C:\Users\Dom\AppData\Local\Temp\msohtml1\01\clip_image011.png C:\Users\Dom\AppData\Local\Temp\msohtml1\01\clip_image012.gif C:\Users\Dom\AppData\Local\Temp\msohtml1\01\clip_image013.png C:\Users\Dom\AppData\Local\Temp\msohtml1\01\clip_image014.jpg C:\Users\Dom\AppData\Local\Temp\msohtml1\01\clip_oledata.mso C:\Users\Dom\AppData\Local\Temp\MozUpdater\bgupdate\updater.exe C:\Users\Dom\AppData\Local\Temp\MozUpdater\bgupdate\updater.ini C:\Users\Dom\AppData\Local\Temp\is884241418\0EAFD9EE_stp.CIS C:\Users\Dom\AppData\Local\Temp\is884241418\0EAFD9EE_stp.CIS.part C:\Users\Dom\AppData\Local\Temp\is884241418\0FE8FC1B_stp.EXE C:\Users\Dom\AppData\Local\Temp\is884241418\0FE8FC1B_stp.EXE.part C:\Users\Dom\AppData\Local\Temp\is884241418\22ED1CAA_stp.CIS C:\Users\Dom\AppData\Local\Temp\is884241418\22ED1CAA_stp.CIS.part C:\Users\Dom\AppData\Local\Temp\is884241418\517A37F4_stp.EXE C:\Users\Dom\AppData\Local\Temp\is884241418\517A37F4_stp.EXE.part C:\Users\Dom\AppData\Local\Temp\is884241418\7F13E51E_stp.CIS C:\Users\Dom\AppData\Local\Temp\is884241418\7F13E51E_stp.CIS.part C:\Users\Dom\AppData\Local\Temp\is884241418\7F13E51E_stp\getSerialNumber.vbs C:\Users\Dom\AppData\Local\Temp\is884241418\22ED1CAA_stp\CreateShortcut.dll C:\Users\Dom\AppData\Local\Temp\is884241418\0EAFD9EE_stp\TaskScheduler.dll C:\Users\Dom\AppData\Local\Temp\is45637729\1950614_stp.CIS C:\Users\Dom\AppData\Local\Temp\is45637729\1950614_stp.CIS.part C:\Users\Dom\AppData\Local\Temp\is45637729\1950673_stp.CIS C:\Users\Dom\AppData\Local\Temp\is45637729\1950673_stp.CIS.part C:\Users\Dom\AppData\Local\Temp\is45637729\1950765_stp.CIS C:\Users\Dom\AppData\Local\Temp\is45637729\1950765_stp.CIS.part C:\Users\Dom\AppData\Local\Temp\is45637729\1950765_stp\sqlite3.dll C:\Users\Dom\AppData\Local\Temp\is45637729\1950673_stp\RAM.dll C:\Users\Dom\AppData\Local\Temp\is45637729\1950614_stp\gvstb.exe C:\Users\Dom\AppData\Local\Temp\is-NRUAS.tmp\innocallback.dll C:\Users\Dom\AppData\Local\Temp\is-NRUAS.tmp\isskin.dll C:\Users\Dom\AppData\Local\Temp\is-NRUAS.tmp\itdownload.dll C:\Users\Dom\AppData\Local\Temp\is-NRUAS.tmp\itd_fr.ini C:\Users\Dom\AppData\Local\Temp\is-NRUAS.tmp\myxmlconffile.xml C:\Users\Dom\AppData\Local\Temp\is-NRUAS.tmp\ShowModalImage2.bmp C:\Users\Dom\AppData\Local\Temp\is-NRUAS.tmp\ShowModalImagebuttonok.bmp C:\Users\Dom\AppData\Local\Temp\is-NRUAS.tmp\w8white.cjstyles C:\Users\Dom\AppData\Local\Temp\is-NRUAS.tmp\_isetup\_shfoldr.dll C:\Users\Dom\AppData\Local\Temp\is-N0B7D.tmp\itdownload.dll C:\Users\Dom\AppData\Local\Temp\is-N0B7D.tmp\_isetup\_shfoldr.dll C:\Users\Dom\AppData\Local\Temp\is-CE2L4.tmp\cmd.bat C:\Users\Dom\AppData\Local\Temp\is-CE2L4.tmp\_isetup\_shfoldr.dll C:\Users\Dom\AppData\Local\Temp\HSUN\HSTempUn.exe C:\Users\Dom\AppData\Local\Temp\History\History.IE5\desktop.ini C:\Users\Dom\AppData\Local\Temp\History\History.IE5\index.dat C:\Users\Dom\AppData\Local\Temp\G\config.ini C:\Users\Dom\AppData\Local\Temp\G\LGAutoRun.exe C:\Users\Dom\AppData\Local\Temp\G\P5_LGPsLvDlChk.dll C:\Users\Dom\AppData\Local\Temp\G\Progress.avi C:\Users\Dom\AppData\Local\Temp\G\SendScsiCmd.dll C:\Users\Dom\AppData\Local\Temp\G\tools\LGUnitedMobileDriver_S4981MAN36AP22_ML_WHQL_Ver_3.6.msi C:\Users\Dom\AppData\Local\Temp\Cookies\4FJ257XY.txt C:\Users\Dom\AppData\Local\Temp\Cookies\index.dat C:\Users\Dom\AppData\Local\Temp\Cookies\Y8GFKLC7.txt C:\Users\Dom\AppData\Local\Temp\avgnt.exe\Avira.OE.ExtApi.dll C:\Users\Dom\AppData\Local\Temp\Adobe_ADMLogs\Adobe_ADM.log C:\Users\Dom\AppData\Local\Temp\Adobe_ADMLogs\Adobe_GDE.log C:\Users\Dom\AppData\Local\Temp\acro_rd_dir\FAP238A.tmp C:\Users\Dom\AppData\Local\Temp\acro_rd_dir\FAP34C9.tmp C:\Users\Dom\AppData\Local\Temp\acro_rd_dir\FAP7245.tmp C:\Users\Dom\AppData\Local\Temp\acro_rd_dir\FAP8088.tmp C:\Users\Dom\AppData\Local\Temp\acro_rd_dir\FAP85C5.tmp C:\Users\Dom\AppData\Local\Temp\acro_rd_dir\FAP8806.tmp C:\Users\Dom\AppData\Local\Temp\acro_rd_dir\FAP996.tmp C:\Users\Dom\AppData\Local\Temp\acro_rd_dir\FAPCBF7.tmp C:\Users\Dom\AppData\Local\Temp\acro_rd_dir\FAPD0E8.tmp C:\Users\Dom\AppData\Local\Temp\acro_rd_dir\FAPF3A2.tmp C:\Users\Dom\AppData\Local\Temp\acro_rd_dir\flaAB30.tmp C:\Users\Dom\AppData\Local\Temp\acro_rd_dir\Temporary Internet Files\Content.IE5\desktop.ini C:\Users\Dom\AppData\Local\Temp\acro_rd_dir\Temporary Internet Files\Content.IE5\index.dat C:\Users\Dom\AppData\Local\Temp\acro_rd_dir\Temporary Internet Files\Content.IE5\LDEH34RG\desktop.ini C:\Users\Dom\AppData\Local\Temp\acro_rd_dir\Temporary Internet Files\Content.IE5\JH2D09XM\desktop.ini C:\Users\Dom\AppData\Local\Temp\acro_rd_dir\Temporary Internet Files\Content.IE5\DEOV165H\desktop.ini C:\Users\Dom\AppData\Local\Temp\acro_rd_dir\Temporary Internet Files\Content.IE5\0BY14E6P\desktop.ini C:\Users\Dom\AppData\Local\Temp\acro_rd_dir\History\History.IE5\desktop.ini C:\Users\Dom\AppData\Local\Temp\acro_rd_dir\History\History.IE5\index.dat C:\Users\Dom\AppData\Local\Temp\acro_rd_dir\Cookies\index.dat C:\Users\Dom\AppData\Local\Temp\81436361027\1P1M8L01STw==2.exe C:\Users\Dom\AppData\Local\Temp\81436361027\Sk08L01STw==28388.exe Some files in TEMP: ==================== C:\Users\Dom\AppData\Local\Temp\06f612f567634451ec37d8419a4074f0.dll C:\Users\Dom\AppData\Local\Temp\31d6e07d87ca5eaf6b2447c07a6c1365.dll C:\Users\Dom\AppData\Local\Temp\avgnt.exe C:\Users\Dom\AppData\Local\Temp\Quarantine.exe C:\Users\Dom\AppData\Local\Temp\raptrpatch.exe C:\Users\Dom\AppData\Local\Temp\raptr_stub.exe C:\Users\Dom\AppData\Local\Temp\serial.exe C:\Users\Dom\AppData\Local\Temp\SkypeSetup.exe C:\Users\Dom\AppData\Local\Temp\sonarinst.exe C:\Users\Dom\AppData\Local\Temp\sqlite3.dll C:\Users\Dom\AppData\Local\Temp\tbi61.dll C:\Users\Dom\AppData\Local\Temp\tmp9701.exe C:\Users\Dom\AppData\Local\Temp\tmpD864.exe C:\Users\Dom\AppData\Local\Temp\ubi6F37.tmp.exe C:\Users\Dom\AppData\Local\Temp\Uninstall.exe ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\explorer.exe => File is digitally signed C:\Windows\system32\winlogon.exe => File is digitally signed C:\Windows\system32\wininit.exe => File is digitally signed C:\Windows\system32\svchost.exe => File is digitally signed C:\Windows\system32\services.exe => File is digitally signed C:\Windows\system32\User32.dll => MD5 is legit C:\Windows\system32\userinit.exe => File is digitally signed C:\Windows\system32\rpcss.dll => File is digitally signed C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed ==================== BCD ================================ Menedľer rozruchu systemu Windows --------------------------------- Identyfikator {bootmgr} device partition=C: description Windows Boot Manager locale pl-PL inherit {globalsettings} default {current} resumeobject {c23b71cc-c545-11e1-ad4f-c23e8be98cf3} displayorder {current} toolsdisplayorder {memdiag} timeout 30 Moduˆ ˆadujĄcy rozruchu systemu Windows --------------------------------------- Identyfikator {current} device partition=C: path \Windows\system32\winload.exe description Windows 7 locale pl-PL inherit {bootloadersettings} recoverysequence {c23b71ce-c545-11e1-ad4f-c23e8be98cf3} recoveryenabled Yes osdevice partition=C: systemroot \Windows resumeobject {c23b71cc-c545-11e1-ad4f-c23e8be98cf3} nx OptIn Moduˆ ˆadujĄcy rozruchu systemu Windows --------------------------------------- Identyfikator {c23b71ce-c545-11e1-ad4f-c23e8be98cf3} device ramdisk=[C:]\Recovery\c23b71ce-c545-11e1-ad4f-c23e8be98cf3\Winre.wim,{c23b71cf-c545-11e1-ad4f-c23e8be98cf3} path \windows\system32\winload.exe description Windows Recovery Environment inherit {bootloadersettings} osdevice ramdisk=[C:]\Recovery\c23b71ce-c545-11e1-ad4f-c23e8be98cf3\Winre.wim,{c23b71cf-c545-11e1-ad4f-c23e8be98cf3} systemroot \windows nx OptIn winpe Yes Wznawianie ze stanu hibernacji ------------------------------ Identyfikator {c23b71cc-c545-11e1-ad4f-c23e8be98cf3} device partition=C: path \Windows\system32\winresume.exe description Windows Resume Application locale pl-PL inherit {resumeloadersettings} filedevice partition=C: filepath \hiberfil.sys pae Yes debugoptionenabled No Moduˆ testujĄcy pami©† systemu Windows -------------------------------------- Identyfikator {memdiag} device partition=C: path \boot\memtest.exe description Windows Memory Diagnostic locale pl-PL inherit {globalsettings} badmemoryaccess Yes Ustawienia usˆug EMS -------------------- Identyfikator {emssettings} bootems Yes Ustawienia debugera ------------------- Identyfikator {dbgsettings} debugtype Serial debugport 1 baudrate 115200 Uszkodzenia pami©ci RAM ----------------------- Identyfikator {badmemory} Ustawienia globalne ------------------- Identyfikator {globalsettings} inherit {dbgsettings} {emssettings} {badmemory} Ustawienia moduˆu ˆadujĄcego rozruchu ------------------------------------- Identyfikator {bootloadersettings} inherit {globalsettings} {hypervisorsettings} Ustawienia funkcji hypervisor ----------------------------- Identyfikator {hypervisorsettings} hypervisordebugtype Serial hypervisordebugport 1 hypervisorbaudrate 115200 Ustawienia moduˆu ˆadujĄcego wznawiania --------------------------------------- Identyfikator {resumeloadersettings} inherit {globalsettings} Opcje urzĄdzenia ---------------- Identyfikator {c23b71cf-c545-11e1-ad4f-c23e8be98cf3} description Ramdisk Options ramdisksdidevice partition=C: ramdisksdipath \Recovery\c23b71ce-c545-11e1-ad4f-c23e8be98cf3\boot.sdi LastRegBack: 2015-07-03 08:54 ==================== End of log ============================