OTL Extras logfile created on: 2012-07-03 09:50:07 - Run 2 OTL by OldTimer - Version 3.2.21.0 Folder = C:\Users\KRIS\Desktop Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation Internet Explorer (Version = 9.0.8112.16421) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 2,00 Gb Total Physical Memory | 1,00 Gb Available Physical Memory | 61,00% Memory free 4,00 Gb Paging File | 4,00 Gb Available in Paging File | 86,00% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 97,66 Gb Total Space | 7,12 Gb Free Space | 7,30% Space Free | Partition Type: NTFS Drive D: | 7,06 Gb Total Space | 2,05 Gb Free Space | 29,03% Space Free | Partition Type: NTFS Drive F: | 274,95 Gb Total Space | 87,34 Gb Free Space | 31,76% Space Free | Partition Type: NTFS Drive G: | 24,42 Gb Total Space | 5,41 Gb Free Space | 22,13% Space Free | Partition Type: NTFS Computer Name: MODERN | User Name: KRIS | Logged in as Administrator. Boot Mode: SafeMode with Networking | Scan Mode: Current user Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation) .hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation) [HKEY_CURRENT_USER\SOFTWARE\Classes\] .html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [ChomikBox.Upload] -- "C:\Program Files\ChomikBox\\ChomikBox.exe" -u"%1" () Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L (Microsoft Corporation) Folder [explore] -- %SystemRoot%\Explorer.exe /separate,/e,/idlist,%I,%L (Microsoft Corporation) Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 "AntiVirusOverride" = 1 "AntiVirusDisableNotify" = 1 "FirewallDisableNotify" = 1 "FirewallOverride" = 1 "UpdatesDisableNotify" = 1 "UacDisableNotify" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus] "DisableMonitoring" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 "VistaSp1" = Reg Error: Unknown registry data type -- File not found "VistaSp2" = Reg Error: Unknown registry data type -- File not found [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 1 "EnableFirewall" = 1 "DoNotAllowExceptions" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] "C:\Program Files\Livebox\Connectivity\ConnectivityManager.exe" = C:\Program Files\Livebox\Connectivity\ConnectivityManager.exe:*:enabled:CSS -- (France Telecom SA) "C:\Windows\system32\TVWSetup.exe" = C:\Windows\system32\TVWSetup.exe:*:Enabled:ipsec -- (Intel(R) Corporation) "C:\Windows\Explorer.EXE" = C:\Windows\Explorer.EXE:*:Enabled:ipsec -- (Microsoft Corporation) "C:\Program Files\PC Connectivity Solution\NclInstaller.exe" = C:\Program Files\PC Connectivity Solution\NclInstaller.exe:*:Enabled:ipsec -- (Nokia) "C:\Windows\System32\FLSDEVCP.EXE" = C:\Windows\System32\FLSDEVCP.EXE:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winfbbwmw.exe" = C:\Users\KRIS\AppData\Local\Temp\winfbbwmw.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\osjtw.exe" = C:\Users\KRIS\AppData\Local\Temp\osjtw.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winhuvu.exe" = C:\Users\KRIS\AppData\Local\Temp\winhuvu.exe:*:Enabled:ipsec "C:\Windows\TEMP\winrjwg.exe" = C:\Windows\TEMP\winrjwg.exe:*:Enabled:ipsec "F:\Programy\Alcohol 52\AxShlExHlper.exe" = F:\Programy\Alcohol 52\AxShlExHlper.exe:*:Enabled:ipsec -- (Alcohol Soft Development Team) "C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe" = C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe:*:Enabled:ipsec "C:\Windows\TEMP\winkody.exe" = C:\Windows\TEMP\winkody.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winduxnd.exe" = C:\Users\KRIS\AppData\Local\Temp\winduxnd.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winnkmchr.exe" = C:\Users\KRIS\AppData\Local\Temp\winnkmchr.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\lvuxoa.exe" = C:\Users\KRIS\AppData\Local\Temp\lvuxoa.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winkjju.exe" = C:\Users\KRIS\AppData\Local\Temp\winkjju.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\hvec.exe" = C:\Users\KRIS\AppData\Local\Temp\hvec.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winmfojm.exe" = C:\Users\KRIS\AppData\Local\Temp\winmfojm.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winrcqypj.exe" = C:\Users\KRIS\AppData\Local\Temp\winrcqypj.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\jkoa.exe" = C:\Users\KRIS\AppData\Local\Temp\jkoa.exe:*:Enabled:ipsec "C:\Program Files\Google\Update\1.2.183.39\GoogleCrashHandler.exe" = C:\Program Files\Google\Update\1.2.183.39\GoogleCrashHandler.exe:*:Enabled:ipsec -- (Google Inc.) "C:\Users\KRIS\AppData\Local\Temp\kxdvec.exe" = C:\Users\KRIS\AppData\Local\Temp\kxdvec.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winwbjj.exe" = C:\Users\KRIS\AppData\Local\Temp\winwbjj.exe:*:Enabled:ipsec "C:\Program Files\Windows Defender\MSASCui.exe" = C:\Program Files\Windows Defender\MSASCui.exe:*:Enabled:ipsec -- (Microsoft Corporation) "C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe" = C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe:*:Enabled:ipsec -- (Nokia) "C:\Users\KRIS\AppData\Local\Temp\winwocnwn.exe" = C:\Users\KRIS\AppData\Local\Temp\winwocnwn.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\ioyhuh.exe" = C:\Users\KRIS\AppData\Local\Temp\ioyhuh.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\ubmkk.exe" = C:\Users\KRIS\AppData\Local\Temp\ubmkk.exe:*:Enabled:ipsec "C:\Windows\TEMP\celo.exe" = C:\Windows\TEMP\celo.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winuodmnx.exe" = C:\Users\KRIS\AppData\Local\Temp\winuodmnx.exe:*:Enabled:ipsec "C:\Windows\TEMP\rkxkie.exe" = C:\Windows\TEMP\rkxkie.exe:*:Enabled:ipsec "C:\Windows\TEMP\ayae.exe" = C:\Windows\TEMP\ayae.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winwvjkxy.exe" = C:\Users\KRIS\AppData\Local\Temp\winwvjkxy.exe:*:Enabled:ipsec "C:\Windows\TEMP\lads.exe" = C:\Windows\TEMP\lads.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winimxaj.exe" = C:\Users\KRIS\AppData\Local\Temp\winimxaj.exe:*:Enabled:ipsec "C:\Windows\TEMP\memwf.exe" = C:\Windows\TEMP\memwf.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winpttd.exe" = C:\Users\KRIS\AppData\Local\Temp\winpttd.exe:*:Enabled:ipsec "C:\Windows\TEMP\winljwgh.exe" = C:\Windows\TEMP\winljwgh.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\koqt.exe" = C:\Users\KRIS\AppData\Local\Temp\koqt.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winyhuf.exe" = C:\Users\KRIS\AppData\Local\Temp\winyhuf.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winyfgy.exe" = C:\Users\KRIS\AppData\Local\Temp\winyfgy.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\iyldu.exe" = C:\Users\KRIS\AppData\Local\Temp\iyldu.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winanyvol.exe" = C:\Users\KRIS\AppData\Local\Temp\winanyvol.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winejbiyr.exe" = C:\Users\KRIS\AppData\Local\Temp\winejbiyr.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winyxbkc.exe" = C:\Users\KRIS\AppData\Local\Temp\winyxbkc.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winsvdhcc.exe" = C:\Users\KRIS\AppData\Local\Temp\winsvdhcc.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winxvqu.exe" = C:\Users\KRIS\AppData\Local\Temp\winxvqu.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\avlmc.exe" = C:\Users\KRIS\AppData\Local\Temp\avlmc.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winyycn.exe" = C:\Users\KRIS\AppData\Local\Temp\winyycn.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\qahxi.exe" = C:\Users\KRIS\AppData\Local\Temp\qahxi.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\qtmts.exe" = C:\Users\KRIS\AppData\Local\Temp\qtmts.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\xhwml.exe" = C:\Users\KRIS\AppData\Local\Temp\xhwml.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winqbjqa.exe" = C:\Users\KRIS\AppData\Local\Temp\winqbjqa.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\nmmdi.exe" = C:\Users\KRIS\AppData\Local\Temp\nmmdi.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winsuvf.exe" = C:\Users\KRIS\AppData\Local\Temp\winsuvf.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\vjqgkc.exe" = C:\Users\KRIS\AppData\Local\Temp\vjqgkc.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\mkeuk.exe" = C:\Users\KRIS\AppData\Local\Temp\mkeuk.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\wintynswv.exe" = C:\Users\KRIS\AppData\Local\Temp\wintynswv.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\kiaqv.exe" = C:\Users\KRIS\AppData\Local\Temp\kiaqv.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winuavun.exe" = C:\Users\KRIS\AppData\Local\Temp\winuavun.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winsvvdtw.exe" = C:\Users\KRIS\AppData\Local\Temp\winsvvdtw.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winkpdvv.exe" = C:\Users\KRIS\AppData\Local\Temp\winkpdvv.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\jrdud.exe" = C:\Users\KRIS\AppData\Local\Temp\jrdud.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\oeea.exe" = C:\Users\KRIS\AppData\Local\Temp\oeea.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\jqesvg.exe" = C:\Users\KRIS\AppData\Local\Temp\jqesvg.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winwvvjr.exe" = C:\Users\KRIS\AppData\Local\Temp\winwvvjr.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\posbf.exe" = C:\Users\KRIS\AppData\Local\Temp\posbf.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\gwpsqq.exe" = C:\Users\KRIS\AppData\Local\Temp\gwpsqq.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\umkt.exe" = C:\Users\KRIS\AppData\Local\Temp\umkt.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\kkax.exe" = C:\Users\KRIS\AppData\Local\Temp\kkax.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\akre.exe" = C:\Users\KRIS\AppData\Local\Temp\akre.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winrydu.exe" = C:\Users\KRIS\AppData\Local\Temp\winrydu.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winfloj.exe" = C:\Users\KRIS\AppData\Local\Temp\winfloj.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\vqqure.exe" = C:\Users\KRIS\AppData\Local\Temp\vqqure.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winhmswy.exe" = C:\Users\KRIS\AppData\Local\Temp\winhmswy.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winlvwaku.exe" = C:\Users\KRIS\AppData\Local\Temp\winlvwaku.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\wingwbpfj.exe" = C:\Users\KRIS\AppData\Local\Temp\wingwbpfj.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winrnnur.exe" = C:\Users\KRIS\AppData\Local\Temp\winrnnur.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\mchai.exe" = C:\Users\KRIS\AppData\Local\Temp\mchai.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\ikoupp.exe" = C:\Users\KRIS\AppData\Local\Temp\ikoupp.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winewdbo.exe" = C:\Users\KRIS\AppData\Local\Temp\winewdbo.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\mjun.exe" = C:\Users\KRIS\AppData\Local\Temp\mjun.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\yfliw.exe" = C:\Users\KRIS\AppData\Local\Temp\yfliw.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winvngf.exe" = C:\Users\KRIS\AppData\Local\Temp\winvngf.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\rypeb.exe" = C:\Users\KRIS\AppData\Local\Temp\rypeb.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winwuaeur.exe" = C:\Users\KRIS\AppData\Local\Temp\winwuaeur.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\xhwfh.exe" = C:\Users\KRIS\AppData\Local\Temp\xhwfh.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\xneq.exe" = C:\Users\KRIS\AppData\Local\Temp\xneq.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\osiujx.exe" = C:\Users\KRIS\AppData\Local\Temp\osiujx.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winnhgm.exe" = C:\Users\KRIS\AppData\Local\Temp\winnhgm.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\mqbg.exe" = C:\Users\KRIS\AppData\Local\Temp\mqbg.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\wingegsw.exe" = C:\Users\KRIS\AppData\Local\Temp\wingegsw.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\qjias.exe" = C:\Users\KRIS\AppData\Local\Temp\qjias.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winehmym.exe" = C:\Users\KRIS\AppData\Local\Temp\winehmym.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\rals.exe" = C:\Users\KRIS\AppData\Local\Temp\rals.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\asnow.exe" = C:\Users\KRIS\AppData\Local\Temp\asnow.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\nxtji.exe" = C:\Users\KRIS\AppData\Local\Temp\nxtji.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\ekwld.exe" = C:\Users\KRIS\AppData\Local\Temp\ekwld.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\beew.exe" = C:\Users\KRIS\AppData\Local\Temp\beew.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\rrnv.exe" = C:\Users\KRIS\AppData\Local\Temp\rrnv.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\xiww.exe" = C:\Users\KRIS\AppData\Local\Temp\xiww.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winrklyyf.exe" = C:\Users\KRIS\AppData\Local\Temp\winrklyyf.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\ldeqc.exe" = C:\Users\KRIS\AppData\Local\Temp\ldeqc.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winqsyah.exe" = C:\Users\KRIS\AppData\Local\Temp\winqsyah.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winmfajhs.exe" = C:\Users\KRIS\AppData\Local\Temp\winmfajhs.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winpyxkn.exe" = C:\Users\KRIS\AppData\Local\Temp\winpyxkn.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winnyrof.exe" = C:\Users\KRIS\AppData\Local\Temp\winnyrof.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winvafcw.exe" = C:\Users\KRIS\AppData\Local\Temp\winvafcw.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winxjthwt.exe" = C:\Users\KRIS\AppData\Local\Temp\winxjthwt.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\wingbnf.exe" = C:\Users\KRIS\AppData\Local\Temp\wingbnf.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winhtjbgh.exe" = C:\Users\KRIS\AppData\Local\Temp\winhtjbgh.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\yhqd.exe" = C:\Users\KRIS\AppData\Local\Temp\yhqd.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\bjnh.exe" = C:\Users\KRIS\AppData\Local\Temp\bjnh.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winipchtd.exe" = C:\Users\KRIS\AppData\Local\Temp\winipchtd.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\ntajkc.exe" = C:\Users\KRIS\AppData\Local\Temp\ntajkc.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winufslf.exe" = C:\Users\KRIS\AppData\Local\Temp\winufslf.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winrwnc.exe" = C:\Users\KRIS\AppData\Local\Temp\winrwnc.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winfshtub.exe" = C:\Users\KRIS\AppData\Local\Temp\winfshtub.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\wingrxq.exe" = C:\Users\KRIS\AppData\Local\Temp\wingrxq.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\wingmdexk.exe" = C:\Users\KRIS\AppData\Local\Temp\wingmdexk.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winbgujj.exe" = C:\Users\KRIS\AppData\Local\Temp\winbgujj.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winrunx.exe" = C:\Users\KRIS\AppData\Local\Temp\winrunx.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\qepmv.exe" = C:\Users\KRIS\AppData\Local\Temp\qepmv.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winulmvcq.exe" = C:\Users\KRIS\AppData\Local\Temp\winulmvcq.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\bvipqy.exe" = C:\Users\KRIS\AppData\Local\Temp\bvipqy.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winxgvoqf.exe" = C:\Users\KRIS\AppData\Local\Temp\winxgvoqf.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winpegcqs.exe" = C:\Users\KRIS\AppData\Local\Temp\winpegcqs.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winflqs.exe" = C:\Users\KRIS\AppData\Local\Temp\winflqs.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\poimq.exe" = C:\Users\KRIS\AppData\Local\Temp\poimq.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\wintntge.exe" = C:\Users\KRIS\AppData\Local\Temp\wintntge.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\rqbar.exe" = C:\Users\KRIS\AppData\Local\Temp\rqbar.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winfslw.exe" = C:\Users\KRIS\AppData\Local\Temp\winfslw.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\yycw.exe" = C:\Users\KRIS\AppData\Local\Temp\yycw.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\wevo.exe" = C:\Users\KRIS\AppData\Local\Temp\wevo.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\tnrae.exe" = C:\Users\KRIS\AppData\Local\Temp\tnrae.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winydyte.exe" = C:\Users\KRIS\AppData\Local\Temp\winydyte.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\hwiv.exe" = C:\Users\KRIS\AppData\Local\Temp\hwiv.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\wineshaw.exe" = C:\Users\KRIS\AppData\Local\Temp\wineshaw.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winebhv.exe" = C:\Users\KRIS\AppData\Local\Temp\winebhv.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winpvlo.exe" = C:\Users\KRIS\AppData\Local\Temp\winpvlo.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\ymtdg.exe" = C:\Users\KRIS\AppData\Local\Temp\ymtdg.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winhtbtwr.exe" = C:\Users\KRIS\AppData\Local\Temp\winhtbtwr.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winkiux.exe" = C:\Users\KRIS\AppData\Local\Temp\winkiux.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winamvbc.exe" = C:\Users\KRIS\AppData\Local\Temp\winamvbc.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winegas.exe" = C:\Users\KRIS\AppData\Local\Temp\winegas.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\qykrm.exe" = C:\Users\KRIS\AppData\Local\Temp\qykrm.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winxvbllt.exe" = C:\Users\KRIS\AppData\Local\Temp\winxvbllt.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\wineuwgse.exe" = C:\Users\KRIS\AppData\Local\Temp\wineuwgse.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\wintqlsbn.exe" = C:\Users\KRIS\AppData\Local\Temp\wintqlsbn.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winkqnuma.exe" = C:\Users\KRIS\AppData\Local\Temp\winkqnuma.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\aasugv.exe" = C:\Users\KRIS\AppData\Local\Temp\aasugv.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winnpfhs.exe" = C:\Users\KRIS\AppData\Local\Temp\winnpfhs.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\tkddqm.exe" = C:\Users\KRIS\AppData\Local\Temp\tkddqm.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\yqmns.exe" = C:\Users\KRIS\AppData\Local\Temp\yqmns.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winbbagt.exe" = C:\Users\KRIS\AppData\Local\Temp\winbbagt.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winmuyac.exe" = C:\Users\KRIS\AppData\Local\Temp\winmuyac.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\rfxg.exe" = C:\Users\KRIS\AppData\Local\Temp\rfxg.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\ejsw.exe" = C:\Users\KRIS\AppData\Local\Temp\ejsw.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winlbmon.exe" = C:\Users\KRIS\AppData\Local\Temp\winlbmon.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winsagwtq.exe" = C:\Users\KRIS\AppData\Local\Temp\winsagwtq.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\mrfddp.exe" = C:\Users\KRIS\AppData\Local\Temp\mrfddp.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\awrtqc.exe" = C:\Users\KRIS\AppData\Local\Temp\awrtqc.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winhijt.exe" = C:\Users\KRIS\AppData\Local\Temp\winhijt.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winwkls.exe" = C:\Users\KRIS\AppData\Local\Temp\winwkls.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\aibeo.exe" = C:\Users\KRIS\AppData\Local\Temp\aibeo.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winrkwivd.exe" = C:\Users\KRIS\AppData\Local\Temp\winrkwivd.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\wincgnvv.exe" = C:\Users\KRIS\AppData\Local\Temp\wincgnvv.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\yjhjup.exe" = C:\Users\KRIS\AppData\Local\Temp\yjhjup.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\oxoccw.exe" = C:\Users\KRIS\AppData\Local\Temp\oxoccw.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\bmanbw.exe" = C:\Users\KRIS\AppData\Local\Temp\bmanbw.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\faju.exe" = C:\Users\KRIS\AppData\Local\Temp\faju.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winbuim.exe" = C:\Users\KRIS\AppData\Local\Temp\winbuim.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winayewdj.exe" = C:\Users\KRIS\AppData\Local\Temp\winayewdj.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\nrytxl.exe" = C:\Users\KRIS\AppData\Local\Temp\nrytxl.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\uqjtg.exe" = C:\Users\KRIS\AppData\Local\Temp\uqjtg.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\xbqmis.exe" = C:\Users\KRIS\AppData\Local\Temp\xbqmis.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winanmw.exe" = C:\Users\KRIS\AppData\Local\Temp\winanmw.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winnmlr.exe" = C:\Users\KRIS\AppData\Local\Temp\winnmlr.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winbfht.exe" = C:\Users\KRIS\AppData\Local\Temp\winbfht.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\gddl.exe" = C:\Users\KRIS\AppData\Local\Temp\gddl.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winpfpkgg.exe" = C:\Users\KRIS\AppData\Local\Temp\winpfpkgg.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\xomp.exe" = C:\Users\KRIS\AppData\Local\Temp\xomp.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\tlomyl.exe" = C:\Users\KRIS\AppData\Local\Temp\tlomyl.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winlgblm.exe" = C:\Users\KRIS\AppData\Local\Temp\winlgblm.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\mlpkc.exe" = C:\Users\KRIS\AppData\Local\Temp\mlpkc.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\forvdj.exe" = C:\Users\KRIS\AppData\Local\Temp\forvdj.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\lqhhed.exe" = C:\Users\KRIS\AppData\Local\Temp\lqhhed.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winbjfxvf.exe" = C:\Users\KRIS\AppData\Local\Temp\winbjfxvf.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\rldq.exe" = C:\Users\KRIS\AppData\Local\Temp\rldq.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winoxfwmx.exe" = C:\Users\KRIS\AppData\Local\Temp\winoxfwmx.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\sjtk.exe" = C:\Users\KRIS\AppData\Local\Temp\sjtk.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winqxsxvy.exe" = C:\Users\KRIS\AppData\Local\Temp\winqxsxvy.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winaerm.exe" = C:\Users\KRIS\AppData\Local\Temp\winaerm.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\wincmvvh.exe" = C:\Users\KRIS\AppData\Local\Temp\wincmvvh.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winmaif.exe" = C:\Users\KRIS\AppData\Local\Temp\winmaif.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winftoeoe.exe" = C:\Users\KRIS\AppData\Local\Temp\winftoeoe.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\ntiniy.exe" = C:\Users\KRIS\AppData\Local\Temp\ntiniy.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\windwkd.exe" = C:\Users\KRIS\AppData\Local\Temp\windwkd.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\xwaa.exe" = C:\Users\KRIS\AppData\Local\Temp\xwaa.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\cmchq.exe" = C:\Users\KRIS\AppData\Local\Temp\cmchq.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winxnudp.exe" = C:\Users\KRIS\AppData\Local\Temp\winxnudp.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winnihe.exe" = C:\Users\KRIS\AppData\Local\Temp\winnihe.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winfepny.exe" = C:\Users\KRIS\AppData\Local\Temp\winfepny.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\wingjpkg.exe" = C:\Users\KRIS\AppData\Local\Temp\wingjpkg.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winfatk.exe" = C:\Users\KRIS\AppData\Local\Temp\winfatk.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winuuel.exe" = C:\Users\KRIS\AppData\Local\Temp\winuuel.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winmtnkx.exe" = C:\Users\KRIS\AppData\Local\Temp\winmtnkx.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winlonlvy.exe" = C:\Users\KRIS\AppData\Local\Temp\winlonlvy.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\qlka.exe" = C:\Users\KRIS\AppData\Local\Temp\qlka.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winffhrd.exe" = C:\Users\KRIS\AppData\Local\Temp\winffhrd.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\wingdcu.exe" = C:\Users\KRIS\AppData\Local\Temp\wingdcu.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\oxun.exe" = C:\Users\KRIS\AppData\Local\Temp\oxun.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\wineavjvo.exe" = C:\Users\KRIS\AppData\Local\Temp\wineavjvo.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winrybf.exe" = C:\Users\KRIS\AppData\Local\Temp\winrybf.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\wincfby.exe" = C:\Users\KRIS\AppData\Local\Temp\wincfby.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\mgop.exe" = C:\Users\KRIS\AppData\Local\Temp\mgop.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\ombs.exe" = C:\Users\KRIS\AppData\Local\Temp\ombs.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winukrwqe.exe" = C:\Users\KRIS\AppData\Local\Temp\winukrwqe.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winjgeyif.exe" = C:\Users\KRIS\AppData\Local\Temp\winjgeyif.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winkfhshv.exe" = C:\Users\KRIS\AppData\Local\Temp\winkfhshv.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winaemlbf.exe" = C:\Users\KRIS\AppData\Local\Temp\winaemlbf.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winwljx.exe" = C:\Users\KRIS\AppData\Local\Temp\winwljx.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\lglgkj.exe" = C:\Users\KRIS\AppData\Local\Temp\lglgkj.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winrdyumk.exe" = C:\Users\KRIS\AppData\Local\Temp\winrdyumk.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\dyesy.exe" = C:\Users\KRIS\AppData\Local\Temp\dyesy.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\wincntt.exe" = C:\Users\KRIS\AppData\Local\Temp\wincntt.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winvxig.exe" = C:\Users\KRIS\AppData\Local\Temp\winvxig.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\uqnbij.exe" = C:\Users\KRIS\AppData\Local\Temp\uqnbij.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winsdohil.exe" = C:\Users\KRIS\AppData\Local\Temp\winsdohil.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\wincfee.exe" = C:\Users\KRIS\AppData\Local\Temp\wincfee.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winrisj.exe" = C:\Users\KRIS\AppData\Local\Temp\winrisj.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winkdvjja.exe" = C:\Users\KRIS\AppData\Local\Temp\winkdvjja.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\wintulxup.exe" = C:\Users\KRIS\AppData\Local\Temp\wintulxup.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winbjhb.exe" = C:\Users\KRIS\AppData\Local\Temp\winbjhb.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winybrqjg.exe" = C:\Users\KRIS\AppData\Local\Temp\winybrqjg.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\dckgee.exe" = C:\Users\KRIS\AppData\Local\Temp\dckgee.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\idpli.exe" = C:\Users\KRIS\AppData\Local\Temp\idpli.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winmjvawr.exe" = C:\Users\KRIS\AppData\Local\Temp\winmjvawr.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\qoijau.exe" = C:\Users\KRIS\AppData\Local\Temp\qoijau.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winfxdm.exe" = C:\Users\KRIS\AppData\Local\Temp\winfxdm.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winooxndf.exe" = C:\Users\KRIS\AppData\Local\Temp\winooxndf.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\eqyp.exe" = C:\Users\KRIS\AppData\Local\Temp\eqyp.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\lold.exe" = C:\Users\KRIS\AppData\Local\Temp\lold.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\ejpop.exe" = C:\Users\KRIS\AppData\Local\Temp\ejpop.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winyjpkrb.exe" = C:\Users\KRIS\AppData\Local\Temp\winyjpkrb.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winiusnp.exe" = C:\Users\KRIS\AppData\Local\Temp\winiusnp.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\qfnhfr.exe" = C:\Users\KRIS\AppData\Local\Temp\qfnhfr.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\bnsj.exe" = C:\Users\KRIS\AppData\Local\Temp\bnsj.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\yrxo.exe" = C:\Users\KRIS\AppData\Local\Temp\yrxo.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\wincdemr.exe" = C:\Users\KRIS\AppData\Local\Temp\wincdemr.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winheolnj.exe" = C:\Users\KRIS\AppData\Local\Temp\winheolnj.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winyajdpd.exe" = C:\Users\KRIS\AppData\Local\Temp\winyajdpd.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winwieq.exe" = C:\Users\KRIS\AppData\Local\Temp\winwieq.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winmjsn.exe" = C:\Users\KRIS\AppData\Local\Temp\winmjsn.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winvirn.exe" = C:\Users\KRIS\AppData\Local\Temp\winvirn.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\wingndi.exe" = C:\Users\KRIS\AppData\Local\Temp\wingndi.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\lotfb.exe" = C:\Users\KRIS\AppData\Local\Temp\lotfb.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winxaayad.exe" = C:\Users\KRIS\AppData\Local\Temp\winxaayad.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winlvek.exe" = C:\Users\KRIS\AppData\Local\Temp\winlvek.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winpciypk.exe" = C:\Users\KRIS\AppData\Local\Temp\winpciypk.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winijqp.exe" = C:\Users\KRIS\AppData\Local\Temp\winijqp.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\kmui.exe" = C:\Users\KRIS\AppData\Local\Temp\kmui.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winwdgrgw.exe" = C:\Users\KRIS\AppData\Local\Temp\winwdgrgw.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winnrml.exe" = C:\Users\KRIS\AppData\Local\Temp\winnrml.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winaypnmn.exe" = C:\Users\KRIS\AppData\Local\Temp\winaypnmn.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\kvyvpm.exe" = C:\Users\KRIS\AppData\Local\Temp\kvyvpm.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winwmvkna.exe" = C:\Users\KRIS\AppData\Local\Temp\winwmvkna.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winwjbowt.exe" = C:\Users\KRIS\AppData\Local\Temp\winwjbowt.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\kquur.exe" = C:\Users\KRIS\AppData\Local\Temp\kquur.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\jssn.exe" = C:\Users\KRIS\AppData\Local\Temp\jssn.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\wincxvb.exe" = C:\Users\KRIS\AppData\Local\Temp\wincxvb.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winppsa.exe" = C:\Users\KRIS\AppData\Local\Temp\winppsa.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winpaxg.exe" = C:\Users\KRIS\AppData\Local\Temp\winpaxg.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winvpuocs.exe" = C:\Users\KRIS\AppData\Local\Temp\winvpuocs.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winymfrfq.exe" = C:\Users\KRIS\AppData\Local\Temp\winymfrfq.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\fhxykt.exe" = C:\Users\KRIS\AppData\Local\Temp\fhxykt.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\igub.exe" = C:\Users\KRIS\AppData\Local\Temp\igub.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\dnmh.exe" = C:\Users\KRIS\AppData\Local\Temp\dnmh.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winwaxhmh.exe" = C:\Users\KRIS\AppData\Local\Temp\winwaxhmh.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winsfel.exe" = C:\Users\KRIS\AppData\Local\Temp\winsfel.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\hwjwu.exe" = C:\Users\KRIS\AppData\Local\Temp\hwjwu.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winafxg.exe" = C:\Users\KRIS\AppData\Local\Temp\winafxg.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winfwfadi.exe" = C:\Users\KRIS\AppData\Local\Temp\winfwfadi.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\qwup.exe" = C:\Users\KRIS\AppData\Local\Temp\qwup.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winduehe.exe" = C:\Users\KRIS\AppData\Local\Temp\winduehe.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winophxk.exe" = C:\Users\KRIS\AppData\Local\Temp\winophxk.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winpoddw.exe" = C:\Users\KRIS\AppData\Local\Temp\winpoddw.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winsmju.exe" = C:\Users\KRIS\AppData\Local\Temp\winsmju.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winusahor.exe" = C:\Users\KRIS\AppData\Local\Temp\winusahor.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winsyxue.exe" = C:\Users\KRIS\AppData\Local\Temp\winsyxue.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\stvgk.exe" = C:\Users\KRIS\AppData\Local\Temp\stvgk.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winylir.exe" = C:\Users\KRIS\AppData\Local\Temp\winylir.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\sisi.exe" = C:\Users\KRIS\AppData\Local\Temp\sisi.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\bmcfgr.exe" = C:\Users\KRIS\AppData\Local\Temp\bmcfgr.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\lvihma.exe" = C:\Users\KRIS\AppData\Local\Temp\lvihma.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\stqcn.exe" = C:\Users\KRIS\AppData\Local\Temp\stqcn.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winjqkw.exe" = C:\Users\KRIS\AppData\Local\Temp\winjqkw.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winykabcd.exe" = C:\Users\KRIS\AppData\Local\Temp\winykabcd.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\uxbov.exe" = C:\Users\KRIS\AppData\Local\Temp\uxbov.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winpmuvrp.exe" = C:\Users\KRIS\AppData\Local\Temp\winpmuvrp.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winqhkpgc.exe" = C:\Users\KRIS\AppData\Local\Temp\winqhkpgc.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\xgsg.exe" = C:\Users\KRIS\AppData\Local\Temp\xgsg.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winbjaclx.exe" = C:\Users\KRIS\AppData\Local\Temp\winbjaclx.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winymuapd.exe" = C:\Users\KRIS\AppData\Local\Temp\winymuapd.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\mswbnc.exe" = C:\Users\KRIS\AppData\Local\Temp\mswbnc.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\nmba.exe" = C:\Users\KRIS\AppData\Local\Temp\nmba.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winswwo.exe" = C:\Users\KRIS\AppData\Local\Temp\winswwo.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winalbhx.exe" = C:\Users\KRIS\AppData\Local\Temp\winalbhx.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winsvmt.exe" = C:\Users\KRIS\AppData\Local\Temp\winsvmt.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winyhtxw.exe" = C:\Users\KRIS\AppData\Local\Temp\winyhtxw.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\wingmfuj.exe" = C:\Users\KRIS\AppData\Local\Temp\wingmfuj.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winrmcv.exe" = C:\Users\KRIS\AppData\Local\Temp\winrmcv.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\myxm.exe" = C:\Users\KRIS\AppData\Local\Temp\myxm.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winykhxpm.exe" = C:\Users\KRIS\AppData\Local\Temp\winykhxpm.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\wincoqa.exe" = C:\Users\KRIS\AppData\Local\Temp\wincoqa.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winhbfjt.exe" = C:\Users\KRIS\AppData\Local\Temp\winhbfjt.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\mjkdb.exe" = C:\Users\KRIS\AppData\Local\Temp\mjkdb.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winmpaew.exe" = C:\Users\KRIS\AppData\Local\Temp\winmpaew.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\kbaoa.exe" = C:\Users\KRIS\AppData\Local\Temp\kbaoa.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winjvisbo.exe" = C:\Users\KRIS\AppData\Local\Temp\winjvisbo.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winjplnm.exe" = C:\Users\KRIS\AppData\Local\Temp\winjplnm.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\bjqcfu.exe" = C:\Users\KRIS\AppData\Local\Temp\bjqcfu.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winarderm.exe" = C:\Users\KRIS\AppData\Local\Temp\winarderm.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winbpjs.exe" = C:\Users\KRIS\AppData\Local\Temp\winbpjs.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\qbax.exe" = C:\Users\KRIS\AppData\Local\Temp\qbax.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winjbnh.exe" = C:\Users\KRIS\AppData\Local\Temp\winjbnh.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\qypqq.exe" = C:\Users\KRIS\AppData\Local\Temp\qypqq.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\ftwps.exe" = C:\Users\KRIS\AppData\Local\Temp\ftwps.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winvowya.exe" = C:\Users\KRIS\AppData\Local\Temp\winvowya.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winqsva.exe" = C:\Users\KRIS\AppData\Local\Temp\winqsva.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winqsoyx.exe" = C:\Users\KRIS\AppData\Local\Temp\winqsoyx.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\ucqy.exe" = C:\Users\KRIS\AppData\Local\Temp\ucqy.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\spxnhg.exe" = C:\Users\KRIS\AppData\Local\Temp\spxnhg.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winraqgi.exe" = C:\Users\KRIS\AppData\Local\Temp\winraqgi.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\vfsb.exe" = C:\Users\KRIS\AppData\Local\Temp\vfsb.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\tkwrii.exe" = C:\Users\KRIS\AppData\Local\Temp\tkwrii.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winlbmrh.exe" = C:\Users\KRIS\AppData\Local\Temp\winlbmrh.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\qnrqvg.exe" = C:\Users\KRIS\AppData\Local\Temp\qnrqvg.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\wingrejb.exe" = C:\Users\KRIS\AppData\Local\Temp\wingrejb.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winwoyeit.exe" = C:\Users\KRIS\AppData\Local\Temp\winwoyeit.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\wineppnkm.exe" = C:\Users\KRIS\AppData\Local\Temp\wineppnkm.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winxbjy.exe" = C:\Users\KRIS\AppData\Local\Temp\winxbjy.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winijcpvt.exe" = C:\Users\KRIS\AppData\Local\Temp\winijcpvt.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winqilq.exe" = C:\Users\KRIS\AppData\Local\Temp\winqilq.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\gyfdmd.exe" = C:\Users\KRIS\AppData\Local\Temp\gyfdmd.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\lvwwjs.exe" = C:\Users\KRIS\AppData\Local\Temp\lvwwjs.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winbpxx.exe" = C:\Users\KRIS\AppData\Local\Temp\winbpxx.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\dhyq.exe" = C:\Users\KRIS\AppData\Local\Temp\dhyq.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winclpw.exe" = C:\Users\KRIS\AppData\Local\Temp\winclpw.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\yewikj.exe" = C:\Users\KRIS\AppData\Local\Temp\yewikj.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\ligb.exe" = C:\Users\KRIS\AppData\Local\Temp\ligb.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\oqhqso.exe" = C:\Users\KRIS\AppData\Local\Temp\oqhqso.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winrhyb.exe" = C:\Users\KRIS\AppData\Local\Temp\winrhyb.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\windvfab.exe" = C:\Users\KRIS\AppData\Local\Temp\windvfab.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\obyw.exe" = C:\Users\KRIS\AppData\Local\Temp\obyw.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\shwhx.exe" = C:\Users\KRIS\AppData\Local\Temp\shwhx.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\aqhyw.exe" = C:\Users\KRIS\AppData\Local\Temp\aqhyw.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winrway.exe" = C:\Users\KRIS\AppData\Local\Temp\winrway.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\wttt.exe" = C:\Users\KRIS\AppData\Local\Temp\wttt.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winhnfhdt.exe" = C:\Users\KRIS\AppData\Local\Temp\winhnfhdt.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winvxxdt.exe" = C:\Users\KRIS\AppData\Local\Temp\winvxxdt.exe:*:Enabled:ipsec "C:\Windows\TEMP\ckfyw.exe" = C:\Windows\TEMP\ckfyw.exe:*:Enabled:ipsec "C:\Windows\TEMP\winrpyvva.exe" = C:\Windows\TEMP\winrpyvva.exe:*:Enabled:ipsec "C:\Windows\TEMP\tvpogj.exe" = C:\Windows\TEMP\tvpogj.exe:*:Enabled:ipsec "C:\Windows\TEMP\winxpollb.exe" = C:\Windows\TEMP\winxpollb.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\sqoce.exe" = C:\Users\KRIS\AppData\Local\Temp\sqoce.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winxsdxi.exe" = C:\Users\KRIS\AppData\Local\Temp\winxsdxi.exe:*:Enabled:ipsec "C:\Windows\TEMP\ksfbab.exe" = C:\Windows\TEMP\ksfbab.exe:*:Enabled:ipsec "C:\Windows\TEMP\mntth.exe" = C:\Windows\TEMP\mntth.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\wintrmpr.exe" = C:\Users\KRIS\AppData\Local\Temp\wintrmpr.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\uwwgcd.exe" = C:\Users\KRIS\AppData\Local\Temp\uwwgcd.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winhpcoi.exe" = C:\Users\KRIS\AppData\Local\Temp\winhpcoi.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\moer.exe" = C:\Users\KRIS\AppData\Local\Temp\moer.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winedeh.exe" = C:\Users\KRIS\AppData\Local\Temp\winedeh.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winuvajj.exe" = C:\Users\KRIS\AppData\Local\Temp\winuvajj.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\ubnlgj.exe" = C:\Users\KRIS\AppData\Local\Temp\ubnlgj.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winfvthr.exe" = C:\Users\KRIS\AppData\Local\Temp\winfvthr.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\gqyro.exe" = C:\Users\KRIS\AppData\Local\Temp\gqyro.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winbijr.exe" = C:\Users\KRIS\AppData\Local\Temp\winbijr.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\moiumc.exe" = C:\Users\KRIS\AppData\Local\Temp\moiumc.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\kisdjf.exe" = C:\Users\KRIS\AppData\Local\Temp\kisdjf.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\raerq.exe" = C:\Users\KRIS\AppData\Local\Temp\raerq.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\hmoxxq.exe" = C:\Users\KRIS\AppData\Local\Temp\hmoxxq.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winugfha.exe" = C:\Users\KRIS\AppData\Local\Temp\winugfha.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winoexe.exe" = C:\Users\KRIS\AppData\Local\Temp\winoexe.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\oatka.exe" = C:\Users\KRIS\AppData\Local\Temp\oatka.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winophr.exe" = C:\Users\KRIS\AppData\Local\Temp\winophr.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\nyhsg.exe" = C:\Users\KRIS\AppData\Local\Temp\nyhsg.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winxfbm.exe" = C:\Users\KRIS\AppData\Local\Temp\winxfbm.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winimgg.exe" = C:\Users\KRIS\AppData\Local\Temp\winimgg.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\wincfwq.exe" = C:\Users\KRIS\AppData\Local\Temp\wincfwq.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winfyfpg.exe" = C:\Users\KRIS\AppData\Local\Temp\winfyfpg.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winbwysuw.exe" = C:\Users\KRIS\AppData\Local\Temp\winbwysuw.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\tssnsx.exe" = C:\Users\KRIS\AppData\Local\Temp\tssnsx.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winnwiuq.exe" = C:\Users\KRIS\AppData\Local\Temp\winnwiuq.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winkacwdc.exe" = C:\Users\KRIS\AppData\Local\Temp\winkacwdc.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\xqbuuy.exe" = C:\Users\KRIS\AppData\Local\Temp\xqbuuy.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winmsqt.exe" = C:\Users\KRIS\AppData\Local\Temp\winmsqt.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\jlphqy.exe" = C:\Users\KRIS\AppData\Local\Temp\jlphqy.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\xluhp.exe" = C:\Users\KRIS\AppData\Local\Temp\xluhp.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\icua.exe" = C:\Users\KRIS\AppData\Local\Temp\icua.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\hoqgwf.exe" = C:\Users\KRIS\AppData\Local\Temp\hoqgwf.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winnmpp.exe" = C:\Users\KRIS\AppData\Local\Temp\winnmpp.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winrnguxv.exe" = C:\Users\KRIS\AppData\Local\Temp\winrnguxv.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\rbmknl.exe" = C:\Users\KRIS\AppData\Local\Temp\rbmknl.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\dgmed.exe" = C:\Users\KRIS\AppData\Local\Temp\dgmed.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\sjembt.exe" = C:\Users\KRIS\AppData\Local\Temp\sjembt.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winwqbljl.exe" = C:\Users\KRIS\AppData\Local\Temp\winwqbljl.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winhpmul.exe" = C:\Users\KRIS\AppData\Local\Temp\winhpmul.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\huywcy.exe" = C:\Users\KRIS\AppData\Local\Temp\huywcy.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winctwljt.exe" = C:\Users\KRIS\AppData\Local\Temp\winctwljt.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\ujxym.exe" = C:\Users\KRIS\AppData\Local\Temp\ujxym.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\sudrcp.exe" = C:\Users\KRIS\AppData\Local\Temp\sudrcp.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\tufcd.exe" = C:\Users\KRIS\AppData\Local\Temp\tufcd.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\vmajcw.exe" = C:\Users\KRIS\AppData\Local\Temp\vmajcw.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\wintedjw.exe" = C:\Users\KRIS\AppData\Local\Temp\wintedjw.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winwrmw.exe" = C:\Users\KRIS\AppData\Local\Temp\winwrmw.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\yckb.exe" = C:\Users\KRIS\AppData\Local\Temp\yckb.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winofdo.exe" = C:\Users\KRIS\AppData\Local\Temp\winofdo.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\vwtw.exe" = C:\Users\KRIS\AppData\Local\Temp\vwtw.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winmiuu.exe" = C:\Users\KRIS\AppData\Local\Temp\winmiuu.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\wintuic.exe" = C:\Users\KRIS\AppData\Local\Temp\wintuic.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winuevy.exe" = C:\Users\KRIS\AppData\Local\Temp\winuevy.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\fxcjkk.exe" = C:\Users\KRIS\AppData\Local\Temp\fxcjkk.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\swxsrs.exe" = C:\Users\KRIS\AppData\Local\Temp\swxsrs.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winyvkpvf.exe" = C:\Users\KRIS\AppData\Local\Temp\winyvkpvf.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winjgdb.exe" = C:\Users\KRIS\AppData\Local\Temp\winjgdb.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winyxfuxn.exe" = C:\Users\KRIS\AppData\Local\Temp\winyxfuxn.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\lkeiw.exe" = C:\Users\KRIS\AppData\Local\Temp\lkeiw.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winpirj.exe" = C:\Users\KRIS\AppData\Local\Temp\winpirj.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winrdlu.exe" = C:\Users\KRIS\AppData\Local\Temp\winrdlu.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\qxkate.exe" = C:\Users\KRIS\AppData\Local\Temp\qxkate.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winvgcmg.exe" = C:\Users\KRIS\AppData\Local\Temp\winvgcmg.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winnmacg.exe" = C:\Users\KRIS\AppData\Local\Temp\winnmacg.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winfkip.exe" = C:\Users\KRIS\AppData\Local\Temp\winfkip.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\oepahi.exe" = C:\Users\KRIS\AppData\Local\Temp\oepahi.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winnxkks.exe" = C:\Users\KRIS\AppData\Local\Temp\winnxkks.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winbrfdkt.exe" = C:\Users\KRIS\AppData\Local\Temp\winbrfdkt.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\wineqcjcq.exe" = C:\Users\KRIS\AppData\Local\Temp\wineqcjcq.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\wintbnef.exe" = C:\Users\KRIS\AppData\Local\Temp\wintbnef.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winptmbq.exe" = C:\Users\KRIS\AppData\Local\Temp\winptmbq.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\pcjr.exe" = C:\Users\KRIS\AppData\Local\Temp\pcjr.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\ntudo.exe" = C:\Users\KRIS\AppData\Local\Temp\ntudo.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winqbvjxg.exe" = C:\Users\KRIS\AppData\Local\Temp\winqbvjxg.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winnmuino.exe" = C:\Users\KRIS\AppData\Local\Temp\winnmuino.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winilumv.exe" = C:\Users\KRIS\AppData\Local\Temp\winilumv.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\wtweve.exe" = C:\Users\KRIS\AppData\Local\Temp\wtweve.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\bgbu.exe" = C:\Users\KRIS\AppData\Local\Temp\bgbu.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winbkyvpf.exe" = C:\Users\KRIS\AppData\Local\Temp\winbkyvpf.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winmplkcq.exe" = C:\Users\KRIS\AppData\Local\Temp\winmplkcq.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winxjqe.exe" = C:\Users\KRIS\AppData\Local\Temp\winxjqe.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\lvwi.exe" = C:\Users\KRIS\AppData\Local\Temp\lvwi.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winqefkk.exe" = C:\Users\KRIS\AppData\Local\Temp\winqefkk.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winsjjwk.exe" = C:\Users\KRIS\AppData\Local\Temp\winsjjwk.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winrpxsyc.exe" = C:\Users\KRIS\AppData\Local\Temp\winrpxsyc.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\ckxgti.exe" = C:\Users\KRIS\AppData\Local\Temp\ckxgti.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winruahlw.exe" = C:\Users\KRIS\AppData\Local\Temp\winruahlw.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winywjvf.exe" = C:\Users\KRIS\AppData\Local\Temp\winywjvf.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winkdfmuc.exe" = C:\Users\KRIS\AppData\Local\Temp\winkdfmuc.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\lbbgpo.exe" = C:\Users\KRIS\AppData\Local\Temp\lbbgpo.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winpgbl.exe" = C:\Users\KRIS\AppData\Local\Temp\winpgbl.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\sgoudu.exe" = C:\Users\KRIS\AppData\Local\Temp\sgoudu.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\wintnoxi.exe" = C:\Users\KRIS\AppData\Local\Temp\wintnoxi.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\ulvdl.exe" = C:\Users\KRIS\AppData\Local\Temp\ulvdl.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winbotmjj.exe" = C:\Users\KRIS\AppData\Local\Temp\winbotmjj.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winmpbip.exe" = C:\Users\KRIS\AppData\Local\Temp\winmpbip.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\xklwsw.exe" = C:\Users\KRIS\AppData\Local\Temp\xklwsw.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winbcdmnt.exe" = C:\Users\KRIS\AppData\Local\Temp\winbcdmnt.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winikaa.exe" = C:\Users\KRIS\AppData\Local\Temp\winikaa.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\bsnku.exe" = C:\Users\KRIS\AppData\Local\Temp\bsnku.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winrhakvy.exe" = C:\Users\KRIS\AppData\Local\Temp\winrhakvy.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winvsqmqn.exe" = C:\Users\KRIS\AppData\Local\Temp\winvsqmqn.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\itnyvm.exe" = C:\Users\KRIS\AppData\Local\Temp\itnyvm.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winnmcgq.exe" = C:\Users\KRIS\AppData\Local\Temp\winnmcgq.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\ygchjo.exe" = C:\Users\KRIS\AppData\Local\Temp\ygchjo.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\wjbk.exe" = C:\Users\KRIS\AppData\Local\Temp\wjbk.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winhbdsi.exe" = C:\Users\KRIS\AppData\Local\Temp\winhbdsi.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\mfxbo.exe" = C:\Users\KRIS\AppData\Local\Temp\mfxbo.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\vrcocr.exe" = C:\Users\KRIS\AppData\Local\Temp\vrcocr.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winhabcbl.exe" = C:\Users\KRIS\AppData\Local\Temp\winhabcbl.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winjeqq.exe" = C:\Users\KRIS\AppData\Local\Temp\winjeqq.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winldkfqr.exe" = C:\Users\KRIS\AppData\Local\Temp\winldkfqr.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winhckg.exe" = C:\Users\KRIS\AppData\Local\Temp\winhckg.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winyuap.exe" = C:\Users\KRIS\AppData\Local\Temp\winyuap.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\cgvq.exe" = C:\Users\KRIS\AppData\Local\Temp\cgvq.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winwteja.exe" = C:\Users\KRIS\AppData\Local\Temp\winwteja.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\hify.exe" = C:\Users\KRIS\AppData\Local\Temp\hify.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\crjhal.exe" = C:\Users\KRIS\AppData\Local\Temp\crjhal.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\fgml.exe" = C:\Users\KRIS\AppData\Local\Temp\fgml.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\gnql.exe" = C:\Users\KRIS\AppData\Local\Temp\gnql.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\windyhjvf.exe" = C:\Users\KRIS\AppData\Local\Temp\windyhjvf.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\wingceg.exe" = C:\Users\KRIS\AppData\Local\Temp\wingceg.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\hwacql.exe" = C:\Users\KRIS\AppData\Local\Temp\hwacql.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\wingjhjcj.exe" = C:\Users\KRIS\AppData\Local\Temp\wingjhjcj.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winmrqre.exe" = C:\Users\KRIS\AppData\Local\Temp\winmrqre.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winmntoc.exe" = C:\Users\KRIS\AppData\Local\Temp\winmntoc.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\usdf.exe" = C:\Users\KRIS\AppData\Local\Temp\usdf.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winqettjv.exe" = C:\Users\KRIS\AppData\Local\Temp\winqettjv.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winqimvr.exe" = C:\Users\KRIS\AppData\Local\Temp\winqimvr.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winotuptw.exe" = C:\Users\KRIS\AppData\Local\Temp\winotuptw.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winqcmgm.exe" = C:\Users\KRIS\AppData\Local\Temp\winqcmgm.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winaukvyk.exe" = C:\Users\KRIS\AppData\Local\Temp\winaukvyk.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\wingipb.exe" = C:\Users\KRIS\AppData\Local\Temp\wingipb.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\ckeeup.exe" = C:\Users\KRIS\AppData\Local\Temp\ckeeup.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\mhdkc.exe" = C:\Users\KRIS\AppData\Local\Temp\mhdkc.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\odyl.exe" = C:\Users\KRIS\AppData\Local\Temp\odyl.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winedqlif.exe" = C:\Users\KRIS\AppData\Local\Temp\winedqlif.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winwyyms.exe" = C:\Users\KRIS\AppData\Local\Temp\winwyyms.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\mfngr.exe" = C:\Users\KRIS\AppData\Local\Temp\mfngr.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winkeljt.exe" = C:\Users\KRIS\AppData\Local\Temp\winkeljt.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winibcvy.exe" = C:\Users\KRIS\AppData\Local\Temp\winibcvy.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\oayjp.exe" = C:\Users\KRIS\AppData\Local\Temp\oayjp.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\fyreqk.exe" = C:\Users\KRIS\AppData\Local\Temp\fyreqk.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winkurs.exe" = C:\Users\KRIS\AppData\Local\Temp\winkurs.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\wincqasj.exe" = C:\Users\KRIS\AppData\Local\Temp\wincqasj.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\vmvba.exe" = C:\Users\KRIS\AppData\Local\Temp\vmvba.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winpwydqd.exe" = C:\Users\KRIS\AppData\Local\Temp\winpwydqd.exe:*:Enabled:ipsec "C:\Users\KRIS\AppData\Local\Temp\winmrpnrn.exe" = C:\Users\KRIS\AppData\Local\Temp\winmrpnrn.exe:*:Enabled:ipsec [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{0B50B7B0-769F-4DDF-95FD-2BCEAB926873}" = lport=139 | protocol=6 | dir=in | app=system | "{12C8B0D1-B2F2-450A-9BD1-A52C21735DE2}" = rport=138 | protocol=17 | dir=out | app=system | "{1AE81C56-BD9A-4D3A-A8CF-9D9D0D266D3C}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{1DE42CA2-EF3A-442F-B422-7EB0449CB1E4}" = lport=445 | protocol=6 | dir=in | app=system | "{2AF7EC04-3D9C-4E75-8ED3-A4B45DA6C806}" = lport=3702 | protocol=17 | dir=in | svc=fdphost | app=%systemroot%\system32\svchost.exe | "{2EE01B61-2F62-4BAF-8AB8-03625ADD2092}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{43B28B16-77F7-4C01-88DF-99F4F5EE9BA3}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{4666B64A-2E0D-4A40-95B8-55E405C89E32}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{48252040-0A60-4D24-BF59-E30570192F29}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{4C8C20A2-6242-4C18-83EB-9964025BCCEF}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{4CD571C4-CD36-4206-96C9-A1AEBFCF5CF6}" = rport=10243 | protocol=6 | dir=out | app=system | "{5BE67217-0B98-4A05-A9CC-EF09C3418697}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{60F2D1EB-03C7-4282-9353-D4A9ED91E0EA}" = lport=137 | protocol=17 | dir=in | app=system | "{6B12B352-3F40-4651-8EA6-598F9F0C36F3}" = rport=137 | protocol=17 | dir=out | app=system | "{6C23C35C-D908-4418-BEED-6E048970632F}" = lport=3702 | protocol=17 | dir=in | svc=fdrespub | app=%systemroot%\system32\svchost.exe | "{71521F8F-9C2E-48BD-92C7-87038235F801}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{786F2750-D0A7-4E2B-ADE3-94632323E1B3}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{7C12F3BF-A8FF-4952-A675-39697E2DAC23}" = rport=139 | protocol=6 | dir=out | app=system | "{7E3A5DF7-0273-48FA-BA5F-BA4F0E0E7C19}" = rport=3702 | protocol=17 | dir=out | svc=fdphost | app=%systemroot%\system32\svchost.exe | "{85FDCA20-A454-4FE6-8840-60E69E612132}" = lport=138 | protocol=17 | dir=in | app=system | "{9FAEE201-EA41-4DDE-8C3D-20FA897F8D18}" = rport=445 | protocol=6 | dir=out | app=system | "{9FD3A885-31E8-4A0C-B9F0-BB176D77EB46}" = lport=10243 | protocol=6 | dir=in | app=system | "{B26DA903-5996-4231-AFC6-C02E55B7B532}" = lport=2869 | protocol=6 | dir=in | app=system | "{C2099EBE-5255-4954-A267-351CD7091575}" = rport=3702 | protocol=17 | dir=out | svc=fdrespub | app=%systemroot%\system32\svchost.exe | "{F06E7F4A-682E-4FDC-850D-FB7E3464AF96}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{F1B15EA3-F359-443C-B4F5-7902A461E529}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{FB088137-C53E-490C-AC69-45BDCD7560A4}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{039CA141-2F56-4F7C-867D-8A767F358F37}" = protocol=17 | dir=in | app=f:\tunngle\tunngle.exe | "{04210BCA-987F-4B5F-BFC4-05D50501EA23}" = protocol=17 | dir=in | app=c:\program files\pando networks\media booster\pmb.exe | "{1415CBF3-E5CB-4CE2-9922-E62B1C5D1B7F}" = protocol=17 | dir=in | app=f:\tunngle\tnglctrl.exe | "{153E879E-886B-4B9D-A26A-65C0318D8C1D}" = protocol=6 | dir=in | app=f:\valve\steam\steamapps\zielu1337\day of defeat\hl.exe | "{1CB076AD-FD9A-493B-B1C2-8C47F6B82405}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{1CC164BE-35D4-48F0-A825-464424CE70F8}" = protocol=17 | dir=in | app=c:\program files\dyyno\dyyno broadcaster\dgcsrv.exe | "{2442B3DA-BDC2-4C0D-978D-D2BE34F806D5}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{2A02544C-61BB-47C7-8490-765F5CD4449F}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{2A28EADC-4DB2-4BAE-8DAC-2BFEAC02D0B6}" = protocol=6 | dir=in | app=c:\users\kris\appdata\local\google\google talk plugin\googletalkplugin.exe | "{2CB27E5C-9B6F-415C-96B7-186F921180A5}" = protocol=6 | dir=in | app=f:\valve\steam\steamapps\zielu1337\counter-strike\hl.exe | "{2FE2E6AA-1767-41DB-B585-5DC065594F15}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{3B7A6072-547C-4FC0-ACBF-E0480D89AE55}" = protocol=17 | dir=in | app=c:\users\kris\appdata\local\google\google talk plugin\googletalkplugin.exe | "{41B4C13F-572C-432F-802B-AA39C05C2657}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe | "{41DEDD4A-456E-4AA3-B9D9-CF3B4CADF2A4}" = protocol=17 | dir=in | app=f:\valve\steam\steam.exe | "{42D531B7-E817-4224-9374-934A2D485AC4}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{4E5CB9C6-0CED-4DA2-8BC4-BDA469F822D7}" = protocol=17 | dir=in | app=f:\combat\combat arms eu\nmservice.exe | "{54A2786D-EEF0-4884-89C6-B376EB89C351}" = protocol=17 | dir=in | app=c:\programdata\nexoneu\ngm\ngm.exe | "{54AFD575-3A40-491A-9F52-8AFFE4E3A406}" = protocol=6 | dir=in | app=c:\windows\system32\lxbccoms.exe | "{55C09BEF-6A27-47A7-87AB-F381F27C0DEF}" = protocol=17 | dir=in | app=c:\windows\system32\lxbccoms.exe | "{5CF6E6A9-FE16-48DB-AA6A-7D7C39128900}" = protocol=17 | dir=in | app=f:\valve\steam\steamapps\common\realm of the mad god\realm of the mad god.exe | "{5D84E8D0-F14E-4F9A-A563-56073EB87D0D}" = protocol=6 | dir=in | app=c:\program files\pando networks\media booster\pmb.exe | "{5F6C93E9-994A-44ED-8D66-9B09FC2C26E7}" = protocol=17 | dir=in | app=c:\program files\pando networks\media booster\pmb.exe | "{61BB906E-04D5-435B-9391-8A6CF49E56BC}" = protocol=6 | dir=in | app=f:\valve\steam\steamapps\zielu1337\ricochet\hl.exe | "{63986778-52BD-4E7A-95C0-131F825EDCCB}" = protocol=6 | dir=in | app=f:\tunngle\tnglctrl.exe | "{6B04E024-F6E3-43C4-8DA2-5AA62C932196}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{7672EA8F-7427-4C11-B82B-75B62C837697}" = protocol=6 | dir=in | app=c:\programdata\nexoneu\ngm\ngm.exe | "{79DF76E2-04C4-4F6D-944F-EE74092C07E2}" = protocol=17 | dir=in | app=f:\pacsteamt\steamapps\hcwd1234\counter-strike\hl.exe | "{7AEC5EC8-382D-4DBE-A04C-830F2E72C079}" = dir=in | app=f:\programy\itunes\itunes.exe | "{7B8047AD-DB9D-4F37-9BF4-5420DD4F5BCF}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{7BF984DF-3A0E-4452-A602-3C60F6FF4108}" = protocol=6 | dir=out | app=system | "{844DDD57-A34B-4DD2-87A2-ABFEE783E7CD}" = protocol=17 | dir=in | app=c:\program files\dyyno\dyyno broadcaster\dppm_source.exe | "{880B8BD2-C216-44CA-96AD-F511BB952A1D}" = protocol=6 | dir=in | app=c:\program files\pando networks\media booster\pmb.exe | "{8F2652B4-1F18-4FEE-99A7-1AFF8500B34D}" = protocol=6 | dir=in | app=f:\pacsteamt\steamapps\hcwd1234\counter-strike\hl.exe | "{8F272B2A-B4A5-4580-8B86-3C772E97E3EC}" = protocol=6 | dir=in | app=c:\windows\system32\spool\drivers\w32x86\3\lxbcpswx.exe | "{96FC3CC1-45E7-435D-BA1A-12AAFC11CDB8}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{9978B9A3-E139-46FE-876C-6D215B38663F}" = protocol=17 | dir=in | app=f:\valve\steam\steamapps\zielu1337\condition zero\hl.exe | "{9A599D4E-1B0B-42CA-8F63-7070CADB0B99}" = protocol=6 | dir=in | app=c:\program files\dyyno\dyyno broadcaster\dgcsrv.exe | "{9FC6E11A-35BD-4B10-99F0-B5AEC8F1ACF5}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{A44C5CA3-79EF-4FE7-AEF5-B5C5A16055DA}" = protocol=17 | dir=in | app=c:\windows\system32\muzapp.exe | "{A68A417E-BD2C-403A-B4DA-0A32B68E6C91}" = protocol=6 | dir=in | app=f:\tunngle\tunngle.exe | "{AB901E60-441E-489C-AB87-0BD60F7EDE2E}" = dir=in | app=f:\programy\skype\phone\skype.exe | "{AF1006A7-1A03-4C5F-9331-369C1594F059}" = protocol=17 | dir=in | app=f:\valve\steam\steamapps\zielu1337\counter-strike\hl.exe | "{B3203E5E-1BD1-429D-BCE7-D6D8D0D1A17B}" = dir=in | app=c:\program files\common files\apple\apple application support\webkit2webprocess.exe | "{B43823F6-5318-4F80-88C7-C24B70AB4F53}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{B5B25527-A42B-4BFF-B12A-D5A3B0247483}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{BBB8CA79-E7FB-4376-8F94-7F799644BFA8}" = protocol=6 | dir=in | app=f:\combat\combat arms eu\nmservice.exe | "{C014B1E1-6580-48C5-A79E-3E69C10B465F}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{C377CD0F-6BE9-4BE7-A92B-4294F7D22656}" = protocol=6 | dir=in | app=c:\windows\system32\muzapp.exe | "{C452D43A-6B4F-4702-A04F-3DA748872502}" = protocol=17 | dir=in | app=f:\valve\steam\steamapps\zielu1337\day of defeat\hl.exe | "{C461B0FC-B0EB-49A8-AE1A-7A98D8317767}" = protocol=6 | dir=in | app=f:\valve\steam\steam.exe | "{C95915AF-A4D8-4D72-8A66-DAA7BCE82248}" = protocol=17 | dir=in | app=f:\valve\steam\steamapps\zielu1337\condition zero\hl.exe | "{CDBF2809-A6CE-4D3B-B0DE-1D527F4DEEAF}" = protocol=6 | dir=in | app=f:\valve\steam\steamapps\common\realm of the mad god\realm of the mad god.exe | "{D16E91B4-AD96-45FF-BC8F-3819FECC0212}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{D1B648A2-E99F-4231-B68A-B35B2984A360}" = protocol=17 | dir=in | app=f:\valve\steam\steamapps\zielu1337\ricochet\hl.exe | "{D3203E22-92B0-4B99-9D1E-3CF62F28EA61}" = dir=in | app=f:\brickforce\brickforce.exe | "{D888D1C2-196D-4634-BAF5-F7FB0764404C}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{DCDFB749-2B92-4557-A006-69714D0DFC87}" = protocol=6 | dir=in | app=f:\valve\steam\steamapps\zielu1337\condition zero\hl.exe | "{DEBDE08F-5BD4-4C21-8DE9-D6964E611C97}" = dir=in | app=f:\brickforce\bflauncher.exe | "{E51A2476-2834-405F-AE15-AF8BA6E64634}" = dir=in | app=c:\program files\pando networks\media booster\pmb.exe | "{EEF4E55A-D9ED-40E5-ABD1-8CC7A918EDD3}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{F1DA7A57-6810-4088-8D6A-AC45F2540580}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{F4840270-9459-4430-B5B5-1A7939FDBA3D}" = protocol=6 | dir=in | app=f:\valve\steam\steamapps\zielu1337\condition zero\hl.exe | "{F79ABC82-1DF1-4DDA-A8F3-B8453734A0ED}" = protocol=17 | dir=in | app=c:\windows\system32\spool\drivers\w32x86\3\lxbcpswx.exe | "{FA1D6E5E-4AB9-4839-8DFD-A9A04F06CCF8}" = protocol=6 | dir=in | app=c:\program files\dyyno\dyyno broadcaster\dppm_source.exe | "{FEEAFF9A-9D35-4CC7-926F-FEF5D0A40BB5}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe | "TCP Query User{0121E657-3C08-4BE1-BCA4-35D5DA927F00}C:\program files\java\jre6\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files\java\jre6\bin\javaw.exe | "TCP Query User{0409CE13-E8D3-4A19-B0E2-ED5A97AAF85E}C:\windows\system32\java.exe" = protocol=6 | dir=in | app=c:\windows\system32\java.exe | "TCP Query User{04809B65-F02F-417A-8887-48C340820A2E}C:\windows\system32\taskeng.exe" = protocol=6 | dir=in | app=c:\windows\system32\taskeng.exe | "TCP Query User{04BD05B3-AB56-4CB8-B3EA-19908849F830}F:\gry\soldat\soldat.exe" = protocol=6 | dir=in | app=f:\gry\soldat\soldat.exe | "TCP Query User{0BE081A8-E220-4BE5-937F-BCB3C11A890D}C:\windows\explorer.exe" = protocol=6 | dir=in | app=c:\windows\explorer.exe | "TCP Query User{0BF3797D-4FC5-46BF-ACD4-7EDAE1ECB052}C:\windows\explorer.exe" = protocol=6 | dir=in | app=c:\windows\explorer.exe | "TCP Query User{0E66BB0A-BDEC-4C23-89CC-41A4938EB93D}F:\gry\beat hazard ultra\beathazard.exe" = protocol=6 | dir=in | app=f:\gry\beat hazard ultra\beathazard.exe | "TCP Query User{126770CF-B4E2-4495-8D09-462F947820D1}F:\gry\ea games\need for speed underground 2\speed2.exe" = protocol=6 | dir=in | app=f:\gry\ea games\need for speed underground 2\speed2.exe | "TCP Query User{141A5CF8-B5A0-4ADE-ADA7-7BD3A278CE64}C:\windows\system32\igfxsrvc.exe" = protocol=6 | dir=in | app=c:\windows\system32\igfxsrvc.exe | "TCP Query User{14F411D1-B4FB-45FB-8A9A-5FAE0BBD3561}F:\programy\skype\phone\skype.exe" = protocol=6 | dir=in | app=f:\programy\skype\phone\skype.exe | "TCP Query User{1558CE29-8AFB-4D67-8B0A-3E54E0D21224}F:\programy\gadu-gadu 10\gg.exe" = protocol=6 | dir=in | app=f:\programy\gadu-gadu 10\gg.exe | "TCP Query User{1E5E7846-9D64-47D2-BB55-12F89F7B7F8D}E:\metin\jspmt2.exe" = protocol=6 | dir=in | app=e:\metin\jspmt2.exe | "TCP Query User{204AF163-F7A4-44BD-B6B7-F9ACC20B3BB0}F:\programy\nowe gadu-gadu\gg.exe" = protocol=6 | dir=in | app=f:\programy\nowe gadu-gadu\gg.exe | "TCP Query User{264B4B5F-8EF1-40E4-9C66-FA720C83962F}F:\gry\soldat\soldat.exe" = protocol=6 | dir=in | app=f:\gry\soldat\soldat.exe | "TCP Query User{361F2120-668B-43B9-A2A8-5DCC63CC1C54}E:\metin\luncher xlast.exe" = protocol=6 | dir=in | app=e:\metin\luncher xlast.exe | "TCP Query User{3756A2E0-25D2-4B17-B447-9D559233F2AC}C:\windows\system32\wuauclt.exe" = protocol=6 | dir=in | app=c:\windows\system32\wuauclt.exe | "TCP Query User{3D2B9CB4-D309-447A-BC77-3D42786B6E6D}F:\programy\ares\ares.exe" = protocol=6 | dir=in | app=f:\programy\ares\ares.exe | "TCP Query User{3F91A75B-3978-4973-8920-2796699A4B62}F:\programy\strongdc++\strongdc.exe" = protocol=6 | dir=in | app=f:\programy\strongdc++\strongdc.exe | "TCP Query User{4495F880-3369-4FDB-80E2-C3433D809666}C:\windows\system32\tvwsetup.exe" = protocol=6 | dir=in | app=c:\windows\system32\tvwsetup.exe | "TCP Query User{469049F7-9C38-4E79-903D-4DE0D27AF8C9}F:\programy\mozilla firefox\firefox.exe" = protocol=6 | dir=in | app=f:\programy\mozilla firefox\firefox.exe | "TCP Query User{4E1194A2-A10F-41FD-AB4B-E03A6F6B82C9}C:\program files\google\google earth\plugin\geplugin.exe" = protocol=6 | dir=in | app=c:\program files\google\google earth\plugin\geplugin.exe | "TCP Query User{5212AAD7-06A6-4FA8-9515-7225EFFD306B}F:\gry\triadica metin2 priv\triadica\triadica.bin" = protocol=6 | dir=in | app=f:\gry\triadica metin2 priv\triadica\triadica.bin | "TCP Query User{54513170-3BA0-4122-BF3B-3DDEEAC60F1D}C:\windows\system32\dwm.exe" = protocol=6 | dir=in | app=c:\windows\system32\dwm.exe | "TCP Query User{591A6680-9E0A-47CA-A632-D33FA25D76FD}C:\windows\system32\hkcmd.exe" = protocol=6 | dir=in | app=c:\windows\system32\hkcmd.exe | "TCP Query User{5C5C0CD2-A5C0-4276-94BF-79F9149B6A12}E:\metin\avalonmt2.exe" = protocol=6 | dir=in | app=e:\metin\avalonmt2.exe | "TCP Query User{60768073-FBF2-497F-9F13-AB4BF885BFD6}E:\metin\xeom2.exe" = protocol=6 | dir=in | app=e:\metin\xeom2.exe | "TCP Query User{63F2E0FD-07EA-4C84-A5A3-2D4CFFC1AAA8}C:\program files\metin2_pl\metin2.bin" = protocol=6 | dir=in | app=c:\program files\metin2_pl\metin2.bin | "TCP Query User{64367486-6CD8-40DB-AE27-7FA7F2D340D6}C:\windows\system32\userinit.exe" = protocol=6 | dir=in | app=c:\windows\system32\userinit.exe | "TCP Query User{6D5E7698-7A88-4DE9-8EF0-A10C06580399}F:\programy\gadu-gadu 10\gg.exe" = protocol=6 | dir=in | app=f:\programy\gadu-gadu 10\gg.exe | "TCP Query User{7010FFAC-0CAB-4189-8AAD-9386F17C6B4A}G:\mt2\lecimynamaxamt2_www.przeklej.pl.exe" = protocol=6 | dir=in | app=g:\mt2\lecimynamaxamt2_www.przeklej.pl.exe | "TCP Query User{7CCE2C39-E433-4437-A022-CFC842DDED86}C:\windows\system32\igfxpers.exe" = protocol=6 | dir=in | app=c:\windows\system32\igfxpers.exe | "TCP Query User{854383CA-EDCA-4EE5-A196-CF896D816A49}F:\programy\virtualdj 7\virtualdj_pro.exe" = protocol=6 | dir=in | app=f:\programy\virtualdj 7\virtualdj_pro.exe | "TCP Query User{85AF0D3F-5D94-4880-A999-AE446A592D0B}F:\gry\csasfsaaf\hl.exe" = protocol=6 | dir=in | app=f:\gry\csasfsaaf\hl.exe | "TCP Query User{8804FE7F-7357-49E5-8B22-2AC28398938A}C:\program files\internet explorer\iexplore.exe" = protocol=6 | dir=in | app=c:\program files\internet explorer\iexplore.exe | "TCP Query User{8FFE99AC-0014-4453-9251-4F02DBDF6074}F:\gry\ea games\need for speed underground 2\speed2.exe" = protocol=6 | dir=in | app=f:\gry\ea games\need for speed underground 2\speed2.exe | "TCP Query User{9B2694D9-40D3-44A6-84DD-58BE75221B9F}C:\program files\google\google earth\client\googleearth.exe" = protocol=6 | dir=in | app=c:\program files\google\google earth\client\googleearth.exe | "TCP Query User{9F8E7878-CB20-4C43-8FB5-52DCB7E9D12E}F:\gry\csasfsaaf\hl.exe" = protocol=6 | dir=in | app=f:\gry\csasfsaaf\hl.exe | "TCP Query User{A8A1F1FB-9673-4E49-A2BB-9B6D50E8DFFB}C:\windows\system32\dwm.exe" = protocol=6 | dir=in | app=c:\windows\system32\dwm.exe | "TCP Query User{B6B48FB5-196B-479A-A42A-82469C866872}F:\gry\need for speed™ most wanted\speed.exe" = protocol=6 | dir=in | app=f:\gry\need for speed™ most wanted\speed.exe | "TCP Query User{B7F5FFD5-38E5-4BE7-8884-E6E4058552CF}C:\windows\system32\mobsync.exe" = protocol=6 | dir=in | app=c:\windows\system32\mobsync.exe | "TCP Query User{BF58A5C0-BF58-4E0D-9049-24A531A6ADF4}E:\metin\yitian2.exe" = protocol=6 | dir=in | app=e:\metin\yitian2.exe | "TCP Query User{C1D51B28-941C-42D1-9EF2-00EEBB8AA5B0}G:\lecimy\lecimynamaxamt2_www.przeklej.pl.exe" = protocol=6 | dir=in | app=g:\lecimy\lecimynamaxamt2_www.przeklej.pl.exe | "TCP Query User{C433BC7B-A410-4776-84AC-B85F66019BF7}F:\programy\skype\phone\skype.exe" = protocol=6 | dir=in | app=f:\programy\skype\phone\skype.exe | "TCP Query User{C883DE53-F35F-4B99-8746-F98A7FA695BA}F:\gry\ea sports\fifa 10\support\earegister.exe" = protocol=6 | dir=in | app=f:\gry\ea sports\fifa 10\support\earegister.exe | "TCP Query User{C95BEC0E-032F-463B-9551-BF3CD1C46A6C}G:\lecimy\metin2mod.bin" = protocol=6 | dir=in | app=g:\lecimy\metin2mod.bin | "TCP Query User{CBAFB419-F693-43F5-ACF8-0DB0DAC8C673}C:\program files\nokia\nokia pc suite 7\pcsuite.exe" = protocol=6 | dir=in | app=c:\program files\nokia\nokia pc suite 7\pcsuite.exe | "TCP Query User{E18305AF-B051-42F6-88C7-0B3608255FBC}F:\programy\microsoft worldwide telescope\wwtexplorer.exe" = protocol=6 | dir=in | app=f:\programy\microsoft worldwide telescope\wwtexplorer.exe | "TCP Query User{E381B6F3-8D8F-421D-B9AF-7D5243388EED}F:\gry\csasfsaaf\hlds.exe" = protocol=6 | dir=in | app=f:\gry\csasfsaaf\hlds.exe | "TCP Query User{ECA1BA39-1A5E-4135-BD4F-6A7B265D3E9A}C:\program files\metin2_pl\luncher xlast.exe" = protocol=6 | dir=in | app=c:\program files\metin2_pl\luncher xlast.exe | "TCP Query User{EF148315-AA2A-4470-B36E-7BD40381E8BF}C:\windows\system32\mobsync.exe" = protocol=6 | dir=in | app=c:\windows\system32\mobsync.exe | "TCP Query User{EF3905FA-D90E-4469-BAB7-958438C04156}C:\program files\windows defender\msascui.exe" = protocol=6 | dir=in | app=c:\program files\windows defender\msascui.exe | "TCP Query User{EFF0906E-A181-4198-940B-408858255FAA}F:\valve\steam\steamapps\hcwd1234\team fortress 2\hl2.exe" = protocol=6 | dir=in | app=f:\valve\steam\steamapps\hcwd1234\team fortress 2\hl2.exe | "TCP Query User{EFF68173-49B7-4518-81C1-BA0E9E623B1B}F:\programy\dbpoweramp\getpopupinfo.exe" = protocol=6 | dir=in | app=f:\programy\dbpoweramp\getpopupinfo.exe | "TCP Query User{F8E8B8F6-577A-4142-9493-41A6080B6959}F:\valve\steam\steamapps\zielu1337\condition zero deleted scenes\hl.exe" = protocol=6 | dir=in | app=f:\valve\steam\steamapps\zielu1337\condition zero deleted scenes\hl.exe | "TCP Query User{FFDE2C11-461F-4FD3-AB89-E1C3CBA5E336}E:\metin\belenus.exe" = protocol=6 | dir=in | app=e:\metin\belenus.exe | "UDP Query User{07735A85-584F-45D2-945F-03DF27D48E29}F:\programy\skype\phone\skype.exe" = protocol=17 | dir=in | app=f:\programy\skype\phone\skype.exe | "UDP Query User{08561976-805A-4706-B21B-1AD1FC63D81F}C:\windows\explorer.exe" = protocol=17 | dir=in | app=c:\windows\explorer.exe | "UDP Query User{0D857524-B57F-4E33-B7D5-419B0B3747F4}F:\gry\csasfsaaf\hl.exe" = protocol=17 | dir=in | app=f:\gry\csasfsaaf\hl.exe | "UDP Query User{0E11F558-689B-452B-A346-DEE770AA9DA0}F:\gry\triadica metin2 priv\triadica\triadica.bin" = protocol=17 | dir=in | app=f:\gry\triadica metin2 priv\triadica\triadica.bin | "UDP Query User{0EF1B83D-2A14-464E-9424-52641A8AFB83}F:\gry\soldat\soldat.exe" = protocol=17 | dir=in | app=f:\gry\soldat\soldat.exe | "UDP Query User{121BDE1A-48CF-4E9B-99C4-75D254002C07}F:\gry\soldat\soldat.exe" = protocol=17 | dir=in | app=f:\gry\soldat\soldat.exe | "UDP Query User{12510231-6D7B-444E-A96C-D3D6BAEBA5CB}E:\metin\belenus.exe" = protocol=17 | dir=in | app=e:\metin\belenus.exe | "UDP Query User{12BD8D90-C3EF-4247-BF38-8281C66BE19F}C:\program files\metin2_pl\luncher xlast.exe" = protocol=17 | dir=in | app=c:\program files\metin2_pl\luncher xlast.exe | "UDP Query User{15FE33B0-DD77-4CEB-A796-BAF42B583E3B}F:\gry\ea games\need for speed underground 2\speed2.exe" = protocol=17 | dir=in | app=f:\gry\ea games\need for speed underground 2\speed2.exe | "UDP Query User{1FDBD56C-548A-4F81-85A2-E55BFF1D1174}C:\program files\metin2_pl\metin2.bin" = protocol=17 | dir=in | app=c:\program files\metin2_pl\metin2.bin | "UDP Query User{2383F419-BE80-451E-98F5-94FC22BAF6C2}F:\programy\virtualdj 7\virtualdj_pro.exe" = protocol=17 | dir=in | app=f:\programy\virtualdj 7\virtualdj_pro.exe | "UDP Query User{29493346-B461-4DF1-9A29-DCC70F19CA12}F:\programy\gadu-gadu 10\gg.exe" = protocol=17 | dir=in | app=f:\programy\gadu-gadu 10\gg.exe | "UDP Query User{2E789F96-F899-4FFC-953E-3966E32A6232}C:\program files\nokia\nokia pc suite 7\pcsuite.exe" = protocol=17 | dir=in | app=c:\program files\nokia\nokia pc suite 7\pcsuite.exe | "UDP Query User{324F91CE-1980-4403-825E-CE9F1AADFAB0}G:\mt2\lecimynamaxamt2_www.przeklej.pl.exe" = protocol=17 | dir=in | app=g:\mt2\lecimynamaxamt2_www.przeklej.pl.exe | "UDP Query User{33952D9B-6A69-4B32-B5BD-CFAA2F0E725D}E:\metin\jspmt2.exe" = protocol=17 | dir=in | app=e:\metin\jspmt2.exe | "UDP Query User{3619EBEA-B4D5-4DD0-A034-718ADE52398E}C:\windows\system32\igfxpers.exe" = protocol=17 | dir=in | app=c:\windows\system32\igfxpers.exe | "UDP Query User{3E71F2B1-70AD-4355-8AF5-29664E9B812D}F:\gry\need for speed™ most wanted\speed.exe" = protocol=17 | dir=in | app=f:\gry\need for speed™ most wanted\speed.exe | "UDP Query User{41057E5D-C582-4080-ACA6-789AF9548124}C:\windows\system32\igfxsrvc.exe" = protocol=17 | dir=in | app=c:\windows\system32\igfxsrvc.exe | "UDP Query User{44AF865E-2A04-41E1-99B4-A1118EBC503C}F:\programy\ares\ares.exe" = protocol=17 | dir=in | app=f:\programy\ares\ares.exe | "UDP Query User{506BC2E7-0436-40BF-9071-E84FCFF619CC}C:\windows\system32\java.exe" = protocol=17 | dir=in | app=c:\windows\system32\java.exe | "UDP Query User{51E50840-32D9-4975-8AC4-0884029464AC}C:\windows\system32\dwm.exe" = protocol=17 | dir=in | app=c:\windows\system32\dwm.exe | "UDP Query User{526698B9-2CB2-4D10-AC8A-46D6F2902EC0}F:\gry\ea games\need for speed underground 2\speed2.exe" = protocol=17 | dir=in | app=f:\gry\ea games\need for speed underground 2\speed2.exe | "UDP Query User{52CCC013-35CC-4453-AA3B-7C7D80C8C2FF}C:\program files\internet explorer\iexplore.exe" = protocol=17 | dir=in | app=c:\program files\internet explorer\iexplore.exe | "UDP Query User{55232E96-E797-44DF-9010-F7FD2C32CE0A}C:\program files\windows defender\msascui.exe" = protocol=17 | dir=in | app=c:\program files\windows defender\msascui.exe | "UDP Query User{55EE1380-388E-4672-918E-D2AFF3A72DA8}F:\valve\steam\steamapps\zielu1337\condition zero deleted scenes\hl.exe" = protocol=17 | dir=in | app=f:\valve\steam\steamapps\zielu1337\condition zero deleted scenes\hl.exe | "UDP Query User{5A34AB43-B52E-4779-A390-7A72B7B35D28}C:\windows\system32\wuauclt.exe" = protocol=17 | dir=in | app=c:\windows\system32\wuauclt.exe | "UDP Query User{5CCAF545-BAC7-4B70-B1C8-A415069CCAC1}F:\programy\strongdc++\strongdc.exe" = protocol=17 | dir=in | app=f:\programy\strongdc++\strongdc.exe | "UDP Query User{5F40D8D8-A853-4718-8888-065F247B8218}F:\gry\csasfsaaf\hl.exe" = protocol=17 | dir=in | app=f:\gry\csasfsaaf\hl.exe | "UDP Query User{5FA750F2-B9B0-4D0B-8C03-3585FE7876EC}C:\windows\system32\mobsync.exe" = protocol=17 | dir=in | app=c:\windows\system32\mobsync.exe | "UDP Query User{69CC83FA-3DD9-4425-A538-322D217AE636}E:\metin\luncher xlast.exe" = protocol=17 | dir=in | app=e:\metin\luncher xlast.exe | "UDP Query User{70D2FEBC-96CC-488A-B55E-7DA29AF10B37}C:\windows\system32\dwm.exe" = protocol=17 | dir=in | app=c:\windows\system32\dwm.exe | "UDP Query User{74E0DD6D-D0EA-411F-BE19-946526406673}F:\gry\csasfsaaf\hlds.exe" = protocol=17 | dir=in | app=f:\gry\csasfsaaf\hlds.exe | "UDP Query User{75CEB342-4F6B-4AA1-A69B-6B0ABDACDC03}F:\programy\nowe gadu-gadu\gg.exe" = protocol=17 | dir=in | app=f:\programy\nowe gadu-gadu\gg.exe | "UDP Query User{7D9CA757-2ECC-49D6-B23A-47AACBC00DA9}F:\programy\dbpoweramp\getpopupinfo.exe" = protocol=17 | dir=in | app=f:\programy\dbpoweramp\getpopupinfo.exe | "UDP Query User{7DFD8328-6DA5-4717-A139-612344B8209E}C:\windows\system32\hkcmd.exe" = protocol=17 | dir=in | app=c:\windows\system32\hkcmd.exe | "UDP Query User{918181B0-AB77-4879-97C3-AD14C1CDFE6C}C:\windows\system32\userinit.exe" = protocol=17 | dir=in | app=c:\windows\system32\userinit.exe | "UDP Query User{98267943-7F16-45AB-920C-CBEAFAA849AF}F:\valve\steam\steamapps\hcwd1234\team fortress 2\hl2.exe" = protocol=17 | dir=in | app=f:\valve\steam\steamapps\hcwd1234\team fortress 2\hl2.exe | "UDP Query User{9A66002F-9CB2-46E4-9BDB-BCB1BB3A94E1}C:\program files\java\jre6\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files\java\jre6\bin\javaw.exe | "UDP Query User{9C683EED-969F-41C5-BB20-52E4FA9386E0}G:\lecimy\lecimynamaxamt2_www.przeklej.pl.exe" = protocol=17 | dir=in | app=g:\lecimy\lecimynamaxamt2_www.przeklej.pl.exe | "UDP Query User{9D3B0AD8-8972-4B67-8A4B-46D1844045D0}F:\gry\ea sports\fifa 10\support\earegister.exe" = protocol=17 | dir=in | app=f:\gry\ea sports\fifa 10\support\earegister.exe | "UDP Query User{AC493497-3525-4560-B023-1A673B2066B8}F:\programy\mozilla firefox\firefox.exe" = protocol=17 | dir=in | app=f:\programy\mozilla firefox\firefox.exe | "UDP Query User{AF0834FF-F56B-412B-B23E-7C17E48B1AE1}G:\lecimy\metin2mod.bin" = protocol=17 | dir=in | app=g:\lecimy\metin2mod.bin | "UDP Query User{B77D3E5D-FB4E-470F-9101-6510768C619B}F:\programy\gadu-gadu 10\gg.exe" = protocol=17 | dir=in | app=f:\programy\gadu-gadu 10\gg.exe | "UDP Query User{B7D5BADD-12DE-410C-8864-8C29106C698C}C:\program files\google\google earth\client\googleearth.exe" = protocol=17 | dir=in | app=c:\program files\google\google earth\client\googleearth.exe | "UDP Query User{BB51B11C-D5BC-4ABC-8900-EB02F9C9F154}C:\windows\system32\mobsync.exe" = protocol=17 | dir=in | app=c:\windows\system32\mobsync.exe | "UDP Query User{C034F515-5550-40E0-9E85-2CA92026C6D1}F:\gry\beat hazard ultra\beathazard.exe" = protocol=17 | dir=in | app=f:\gry\beat hazard ultra\beathazard.exe | "UDP Query User{C072F043-A975-40DC-81FB-CD91895659FB}C:\program files\google\google earth\plugin\geplugin.exe" = protocol=17 | dir=in | app=c:\program files\google\google earth\plugin\geplugin.exe | "UDP Query User{C1F0D00D-7BE8-4A85-AEDB-5B0642A7EF74}C:\windows\explorer.exe" = protocol=17 | dir=in | app=c:\windows\explorer.exe | "UDP Query User{C31BA71E-B775-4E8D-B365-10B0C6B0BFC2}E:\metin\xeom2.exe" = protocol=17 | dir=in | app=e:\metin\xeom2.exe | "UDP Query User{CD64A7EE-D3E7-4A15-9F2E-BE0749C2BA82}E:\metin\avalonmt2.exe" = protocol=17 | dir=in | app=e:\metin\avalonmt2.exe | "UDP Query User{D4F5C5E2-9433-4B46-822F-9B3E9E71CEAF}C:\windows\system32\taskeng.exe" = protocol=17 | dir=in | app=c:\windows\system32\taskeng.exe | "UDP Query User{D582E983-F694-44ED-ABEA-B69CD43CBD7E}F:\programy\skype\phone\skype.exe" = protocol=17 | dir=in | app=f:\programy\skype\phone\skype.exe | "UDP Query User{E2DCEBB4-1B65-4B64-9187-107DA3D0E613}C:\windows\system32\tvwsetup.exe" = protocol=17 | dir=in | app=c:\windows\system32\tvwsetup.exe | "UDP Query User{F054F80C-C578-4BBC-8916-68CF91319F6A}F:\programy\microsoft worldwide telescope\wwtexplorer.exe" = protocol=17 | dir=in | app=f:\programy\microsoft worldwide telescope\wwtexplorer.exe | "UDP Query User{FEF4EF29-DDC6-482D-92CD-FE1A25ACC051}E:\metin\yitian2.exe" = protocol=17 | dir=in | app=e:\metin\yitian2.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}" = Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 "{033E378E-6AD3-4AD5-BDEB-CBD69B31046C}" = Microsoft_VC90_ATL_x86 "{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam(TM) "{089DD780-DB3F-4CDB-A0C2-111360247298}" = PC Connectivity Solution "{08D2E121-7F6A-43EB-97FD-629B44903403}" = Microsoft_VC90_CRT_x86 "{0B7C79A5-5CB2-4ABD-A9C1-92A6213CE8DD}_is1" = MSI Kombustor 2.3.0 "{0B8565BA-BAD5-4732-B122-5FD78EFC50A9}" = Native Instruments Service Center "{0CE1A6C0-F3F7-49E6-8F9D-2431F9827441}" = Guitar Hero III "{11202615-E557-4ECF-9B86-F59C81E52909}" = FIFA 10 "{18455581-E099-4BA8-BC6B-F34B2F06600C}" = Google Toolbar for Internet Explorer "{196BB40D-1578-3D01-B289-BEFC77A11A1E}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 "{1A6A6531-08FC-47AD-BAC4-C41497E71045}" = Nero 7 Essentials "{1B9B5B3B-28E7-4E59-A80D-D670AA984514}" = Nokia Connectivity Cable Driver "{1C4C5C53-D960-4E1C-96A6-F6B52EA43A45}" = ACID Xpress 7.0 "{212748BB-0DA5-46DE-82A1-403736DC9F27}" = MSVC80_x86 "{225DB4AA-3CFF-47E8-B3C8-6DAD713E986E}" = Nokia PC Suite "{2318C2B1-4965-11d4-9B18-009027A5CD4F}" = Google Toolbar for Internet Explorer "{23289F5E-22A4-4A09-B6F3-66651EE4A765}_is1" = OxyCube "{2333DDAB-5981-494E-838C-BDDDD7428E35}" = Action! "{235B7B98-EAC3-4953-AE2C-EABCE1CD65C9}_is1" = GBoost "{23B8A91D-680B-462B-87AD-3D70F7341731}" = iTunes "{245F6C7A-0C22-4DE0-8202-2AAA620A1D3A}" = Microsoft XNA Framework Redistributable 2.0 "{259C0ABB-A3B2-4D70-008F-BF7EE491B70B}" = Need for Speed™ Carbon "{26A24AE4-039D-4CA4-87B4-2F83216026FF}" = Java(TM) 6 Update 26 "{26A24AE4-039D-4CA4-87B4-2F83217003FF}" = Java(TM) 7 Update 3 "{289AC7E0-0AEE-4a7b-913C-709D9803D23E}" = Nexon Game Manager "{28C2DED6-325B-4CC7-983A-1777C8F7FBAB}" = RealUpgrade 1.1 "{2A0A6470-FD0F-4F45-9B11-85F3167DB943}" = Nokia Flashing Cable Driver "{2A42871B-A6C5-44EA-BBE0-4E701F610BB4}" = GhostMaster "{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}" = Microsoft XNA Framework Redistributable 4.0 "{2F28B3C9-2C89-4206-8B33-8ADC9577C49B}" = Scan "{321320E1-0E5A-36CB-9E52-F3B201B8C4D4}" = Microsoft .NET Framework 4 Client Profile PLK Language Pack "{32364CEA-7855-4A3C-B674-53D8E9B97936}" = TuneUp Utilities 2012 "{343737F4-C04D-49F4-BE58-C7EAA8EBA57A}" = Need for Speed™ ProStreet "{3521BDBD-D453-5D9F-AA55-44B75D214629}" = Adobe Community Help "{36068588-9992-48E9-B223-5BEBB0C7A322}" = Playlist Editor "{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile "{4286E640-B5FB-11DF-AC4B-005056C00008}" = Google Earth "{43E7798A-248E-4A3D-9969-FEA63543A462}" = Native Instruments Kontakt 4 "{45364B56-2366-4891-9FB1-216453C7E9B9}" = Style Converter 3 "{456450CE-6673-4A06-A633-801480FA5841}" = Premier Manager 08 "{45E557D6-2271-4F13-8101-C620B4285AB0}" = Kaspersky Anti-Virus 2012 "{491DF203-7B61-4F0E-BDCB-A1218C4DAFE9}" = Native Instruments Massive "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{4CB0307C-565E-4441-86BE-0DF2E4FB828C}" = Microsoft Games for Windows Marketplace "{4DFF1415-4C29-44A8-BFD4-2BCE249C4991}" = SpPhones "{521AAD14-5030-44BB-8B0E-5CE65FCE57E0}" = InterVideo DeviceService "{5236C5F0-9539-49DB-829A-D2C964F455D3}" = Ableton Live 8 "{560F47F7-EB23-44B1-AAFC-667F1CD8FE5C}" = Sp5 "{5628829F-3318-4DDA-988D-D301832F1611}" = Singles "{56C049BE-79E9-4502-BEA7-9754A3E60F9B}" = neroxml "{5D90E53A-BD7C-8F32-9B82-7733D0F0BC8E}" = Adobe Download Assistant "{5DB0E798-674E-45D7-9DAE-E62E66D38D82}_is1" = DJet MAXXX 1.1 "{5E09FA7C-4B4A-46FB-A554-B7A88E8D7B62}" = Melodyne 3.2 "{635FED5B-2C6D-49BE-87E6-7A6FCD22BC5A}" = Microsoft_VC90_MFC_x86 "{64CAA486-3CA5-4C81-8DAE-5D7D18E1956C}" = ChomikBox "{6C3959C6-943E-44B3-BAAD-570B04B134E5}" = SpCommon "{6D3245B1-8DB8-4A23-9CD2-2C90F40ABAF6}" = MSVC80_x86_v2 "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable "{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable "{758C8301-2696-4855-AF45-534B1200980A}" = Samsung Kies "{7770E71B-2D43-4800-9CB3-5B6CAAEBEBEA}" = RealNetworks - Microsoft Visual C++ 2008 Runtime "{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update "{79155F2B-9895-49D7-8612-D92580E0DE5B}" = Bonjour "{7978920A-27A6-43D4-A441-502FDCBA67D4}" = Nokia Service Tool Drivers "{7F6D7FD9-648D-4DD9-BB6E-3990C675ECA4}" = NVIDIA PhysX "{7FB413C8-3CAD-49F7-A67C-6EFEB4B04050}" = LogMeIn Hamachi "{832D9DE0-8AFC-4689-9819-4DBBDEBD3E4F}" = Microsoft Games for Windows - LIVE Redistributable "{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek 8169 PCI, 8168 and 8101E PCIe Ethernet Network Card Driver for Windows Vista "{886EDF51-C894-4AF2-844C-FFC365B3C1A2}" = PIT pro 2012 "{88704942-56A8-4EEC-A121-77687677DEE5}" = Microsoft WorldWide Telescope "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{8C9DDCAA-91E1-4DAA-BC65-68BD80546B98}}_is1" = PIT-OPP 2011 "{909F8EBC-EC7F-48FF-0085-475D818F0F31}" = Need for Speed Underground 2 "{910F5E0D-7C6D-40B9-AC43-11573C5305A4}" = PDF Manual NW-A1000 Series NW-A3000 Series "{918A9082-6287-4D25-9002-5E5D5E4971CB}" = League of Legends "{95120000-003F-0409-0000-0000000FF1CE}" = Microsoft Office Excel Viewer "{975C3A93-2491-3D44-A071-F6CBF153E46D}" = Google Talk Plugin "{97602D0D-33C4-4F29-9C73-231C43674788}" = Samplitude 11 Silver "{980A182F-E0A2-4A40-94C1-AE0C1235902E}" = Pando Media Booster "{98681EE5-AF69-46CD-8D49-A1FD6FC7BCA2}" = Action! "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{9ABFB92D-93DA-49EE-8ABF-F8195DE45CA9}" = Counter-Strike 1.6 "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 "{9D623E1A-30E1-4E55-BD80-5C1359DB120B}" = Melodyne 3.1 "{9EFDFBA8-9174-3C61-8645-28376C5CA994}" = Microsoft .NET Framework 3.5 Language Pack SP1 - plk "{A0EB195B-5876-48E6-879D-33D4B2102610}" = SonicStage 4.3 "{A1F143D1-1F0D-44FB-A44B-71D4367D16DE}" = Melodyne 3.2 "{A48B9CD8-C2BA-4EC9-0081-7260D238C7CF}" = Need for Speed™ Most Wanted "{A8DE8C34-7F51-4cc8-B326-C425793EE741}" = Kroniki Riddicka: Ucieczka z Butcher Bay "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{AC76BA86-7AD7-1045-7B44-A94000000001}" = Adobe Reader 9.4.1 - Polish "{AE46ABD3-D625-467F-B5A7-8D3FFF077F0D}" = Realtek 8139 and 8139C+ Ethernet Network Card Driver for Windows Vista "{AEA6A4C2-7C4E-48F9-A770-879DE2EDEE1B}" = OpenMG Secure Module 5.4.00 "{AF7FC1CA-79DF-43c3-90A3-33EFEB9294CE}" = AIO_Scan "{B2C61EBB-F47C-48ba-B375-27A40F8F48F7}" = HP Deskjet All-In-One Software 9.0 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision" = NVIDIA Sterownik 3D Vision 285.62 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = Panel sterowania NVIDIA 285.62 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Sterownik graficzny 285.62 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB" = NVIDIA Sterownik kontrolera 3D Vision 285.62 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX" = NVIDIA Oprogramowanie systemu PhysX 9.11.0621 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update" = Aktualizacje NVIDIA 1.5.20 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVIDIA.Update" = NVIDIA Update Components "{B395BC1D-CC06-425E-9049-4CD985EFF004}" = LightScribe 1.8.15.1 "{B4F35A00-24FD-4fb3-BF5E-413D5423434D}" = DJ_AIO_Software_min "{B6CF2967-C81E-40C0-9815-C05774FEF120}" = Skype Click to Call "{B6D38690-755E-4F40-A35A-23F8BC2B86AC}" = Microsoft_VC90_MFCLOC_x86 "{C0613613-D7B8-4D09-BFA4-0738622C5C4B}_is1" = Paintball eXtreme "{C5DA59CF-2BB8-48D5-8E5B-17F2E0F0FEE4}" = System Requirements Lab for Intel "{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}" = Microsoft .NET Framework 1.1 "{CC7F0FAA-9768-4CE2-B133-72C66492EC06}" = LS-USBMX1/2/3 Steering... "{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1 "{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}" = SAMSUNG USB Driver for Mobile Phones "{D417C96A-FCC7-4590-A1BB-FAF73F5BC98E}" = GTA San Andreas "{D5B1535A-FDFC-4B40-B2E2-21DA83D9CB57}" = Adobe Audition CS5.5 "{D7DE93E1-A0B3-40FE-907E-F89BB0A2AA31}_is1" = Pearl Harbor II Drugie Uderzenie "{DA22A6BB-10B5-4595-BD59-1AD4023C8536}" = Virtual Sound Canvas VST "{E0F07676-2C60-4465-A727-20DE3BFCABAC}" = Tony Hawks Pro Skater 4 "{E3F2803C-B6FA-4D36-8CFE-A8AE92683E92}" = XSplit "{E415C943-37E5-473F-8BAE-043C56734124}" = Sp5TTInt "{E9C18EBD-85BE-47D0-AA73-3FEDCC976B04}" = Toolbox "{EB879750-CCBD-4013-BFD5-0294D4DA5BD0}" = Apple Application Support "{EC9E8EAA-2F25-4265-A77B-DA3AE3FF8EC3}" = ESET NOD32 Antivirus "{EE7257A2-39A2-4D2F-9DAC-F9F25B8AE1D8}" = Skype™ 5.10 "{EFC04D3F-A152-47E7-8517-EE0F6201AFEF}" = Apple Mobile Device Support "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "{F161A0DD-AAA9-4938-A741-ED491F77D034}" = TuneUp Utilities Language Pack (pl-PL) "{F1E63043-54FC-429B-AB2C-31AF9FBA4BC7}" = 32 Bit HP CIO Components Installer "{F86B5FF0-E0C0-41AA-9FD3-5E9090FED323}" = Mumble 1.2.3 "{F99F9E24-EE2F-47FD-AEB0-FDB82859B5C9}" = VideoStudio "{F9FD80CE-0448-4D4F-8BCD-77FC514C3F99}" = Vista Codec Package "{FD4B33E1-24AE-4535-AA7B-162B30FB57CD}" = Sp5Intl "{FDB3B167-F4FA-461D-976F-286304A57B2A}" = Adobe AIR "{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 "{ORAHSS}.UninstallSuite" = Livebox "34EA302E7F4CBD17A19E33BBCB72363234956D7E" = Pakiet sterowników systemu Windows - Nokia Modem (06/09/2010 4.5) "504244733D18C8F63FF584AEB290E3904E791693" = Pakiet sterowników systemu Windows - Nokia pccsmcfd (08/22/2008 7.0.0.0) "Activision_THPS2UninstallKey" = Tony Hawk's Pro Skater 2 "Adobe AIR" = Adobe AIR "Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin "Adobe Shockwave Player" = Adobe Shockwave Player 11.5 "Afterburner" = MSI Afterburner 2.2.2 "AIMP2" = AIMP2 "ALLPlayer_is1" = ALLPlayer V4.X "Ares" = Ares 2.1.6 "AstroPop Deluxe 1.0" = AstroPop Deluxe 1.0 "Audacity_is1" = Audacity 1.2.6 "Bandicam" = Bandicam "BandiMPEG1" = Bandisoft MPEG-1 Decoder "Bersirc" = Bersirc 2.2.14 "blueconnect" = blueconnect "BreakQuest_is1" = BreakQuest "BrickForce" = BrickForce 1.4.40 "CBF192A85B624E32B8D19ADEEF2DCFC5BC3AA73A" = Pakiet sterowników systemu Windows - Nokia Modem (03/05/2008 3.7) "CCleaner" = CCleaner "chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Community Help "com.adobe.downloadassistant.AdobeDownloadAssistant" = Adobe Download Assistant "Combat Arms EU" = Combat Arms EU "Dance eJay 5" = Dance eJay 5 - Deinstallation "dBpoweramp DSP Effects" = dBpoweramp DSP Effects "dBpoweramp m4a Codec" = dBpoweramp m4a Codec "dBpoweramp Music Converter" = dBpoweramp Music Converter "DESkey DK2 Uninstall" = DK2 DESkey Drivers v7.14.0.25 "Diablo II" = Diablo II "DreamStation DXi" = DreamStation DXi "DrTaxPL_Lite_2010" = Dr. Tax Light - PIT 2010 10.2.25 "Drumaxx" = Drumaxx "DrumStation DT-010" = DrumStation DT-010 "Dyyno Broadcaster" = Dyyno Broadcaster "E092B2EBF2FFE83E896F8F7F829A7B5D7D1B2F9D" = Pakiet sterowników systemu Windows - Nokia Modem (03/13/2008 6.86.0.1) "EEEE705096F837B7907659F100C9FE6DA001970F" = Pakiet sterowników systemu Windows - Nokia Modem (06/09/2010 7.01.0.7) "Euro Truck Simulator_is1" = Euro Truck Simulator "EVEREST Ultimate Edition_is1" = EVEREST Ultimate Edition v5.01 "ffdshow_is1" = ffdshow [rev 3154] [2009-12-09] "FL Studio 10" = FL Studio 10 "foobar2000" = foobar2000 v1.1.7 "FotoMorph" = Digital Photo Software FotoMorph 13,0 "Fraps" = Fraps (remove only) "fxpansion!DR005" = fxpansion!DR005 "Game Booster_is1" = Game Booster 3 "GameGain_is1" = GameGain "GameHike_is1" = GameHike "GameSpy Arcade" = GameSpy Arcade "GoldWave v5.58" = GoldWave v5.58 "Google Chrome" = Google Chrome "HDMI" = Intel(R) Graphics Media Accelerator Driver "Heroes of Might and Magic III - Złota Edycja_is1" = Heroes of Might and Magic III - Złota Edycja "IL Download Manager" = IL Download Manager "InstallShield_{758C8301-2696-4855-AF45-534B1200980A}" = Samsung Kies "InstallShield_{AEA6A4C2-7C4E-48F9-A770-879DE2EDEE1B}" = OpenMG Secure Module 5.4.00 "InstallShield_{F99F9E24-EE2F-47FD-AEB0-FDB82859B5C9}" = Ulead VideoStudio 11 "InstallWIX_{45E557D6-2271-4F13-8101-C620B4285AB0}" = Kaspersky Anti-Virus 2012 "iZotope Ozone 5 Advanced_is1" = iZotope Ozone 5 Advanced "KrolestwoMaciusiaTogoPogo_Polish" = Król Maciuś Pierwszy. Wyspa Togo-Pogo "Lexmark Z500-Z600 Series" = Lexmark Z500-Z600 Series "LibUSB-Win32_is1" = LibUSB-Win32-0.1.10.1 "LinPlug SaxLab VSTi v1.0" = LinPlug SaxLab VSTi v1.0 "LogMeIn Hamachi" = LogMeIn Hamachi "MAGIX_MSI_sam11silver" = Samplitude 11 Silver "Maxthon2" = Maxthon2 "Microsoft .NET Framework 1.1 (1033)" = Microsoft .NET Framework 1.1 "Microsoft .NET Framework 3.5 Language Pack SP1 - plk" = Pakiet językowy programu Microsoft .NET Framework 3.5 z dodatkiem SP1 — PLK "Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1 "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Client Profile PLK Language Pack" = Polski pakiet językowy dla programu Microsoft .NET Framework 4 Client Profile "Motocross Madness 2" = Microsoft Motocross Madness 2 "Mozilla Firefox 14.0 (x86 pl)" = Mozilla Firefox 14.0 (x86 pl) "MozillaMaintenanceService" = Mozilla Maintenance Service "MSTTS" = Microsoft Text-to-Speech Engine 4.0 (English) "Native Instruments Kontakt 4" = Native Instruments Kontakt 4 "Native Instruments Massive" = Native Instruments Massive "Native Instruments Reaktor 5" = Native Instruments Reaktor 5 "Native Instruments Service Center" = Native Instruments Service Center "Niezbędnik CD_is1" = Niezbędnik CD "Nokia PC Suite" = Nokia PC Suite "NVIDIAStereo" = NVIDIA Stereoscopic 3D Driver "Oberheim OB-Tune" = Oberheim OB-Tune "oggcodecs" = oggcodecs 0.69.8924 "Ohmygod VST2" = OhmForce Ohmygod VST2 "PacSteamT" = PacSteamT "PIT Format 2011_is1" = PIT Format 2011 "PITy 2009_is1" = PITy 2009 dla Windows kompilacja:1.1.2.4 "Pity Format 2010_is1" = Pity Format 2010 "PLAY ONLINE" = PLAY ONLINE "Rainbow VST" = Rainbow VST "RealPlayer 12.0" = RealPlayer "REAPER" = REAPER "reFX Nexus_is1" = reFX Nexus VSTi RTAS v2.2.0 "rk_pol_is1" = Redneck Kentucky "RSO Vocal Magic Pro VST" = RSO Vocal Magic Pro VST "Samplitude 10 Download version US" = Samplitude 10 Download version 10.1.0.0 (US) "School Tycoon_is1" = School Tycoon "Singles2" = Singles2 "Soldat_is1" = Soldat 1.4.2 "SoMud DB Toolbar" = SoMud DB Toolbar "Spy Hunter/PL-Polish_is1" = Spy Hunter "Steam App 10" = Counter-Strike "Steam App 105600" = Terraria "Steam App 12900" = Audiosurf "Steam App 200210" = Realm of the Mad God "Steam App 30" = Day of Defeat "Steam App 40" = Deathmatch Classic "Steam App 40990" = Mafia "Steam App 49600" = Beat Hazard "Steam App 60" = Ricochet "Steam App 63710" = BIT.TRIP RUNNER "stepmania.com1.0" = stepmania.com "StrongDC++" = StrongDC++ 2.40 "Super Mario 3 : Mario Forever" = Super Mario 3 : Mario Forever "Sweet Home 3D_is1" = Sweet Home 3D version 1.4 "Sylenth1_is1" = Sylenth1 v2.20 "SynapsePluckedString_is1" = Plucked String VSTi/DXi v4.0 "TeamSpeak 3 Client" = TeamSpeak 3 Client "The Games Factory 2" = The Games Factory 2 "Tony Hawk's Pro Skater 3_is1" = Tony Hawk's Pro Skater 3 v1.01 "Tunatic" = Tunatic "TuneUp Utilities 2012" = TuneUp Utilities 2012 "Tunngle beta_is1" = Tunngle beta "Tytus, Romek i A'tomek_is1" = Tytus, Romek i A'tomek "V9Software" = Deinstalator Strony V9 "Virtual DJ Pro Full - Atomix Productions" = Virtual DJ Pro Full - Atomix Productions "Voxengo Vintage Modulator VST" = Voxengo Vintage Modulator VST 1.2 "Voxengo Voxformer VST" = Voxengo Voxformer VST 1.6 "Waves Vocal Bundle v1.1" = Waves Vocal Bundle v1.1 "WinGimp-2.0_is1" = Gimp 2.6.1 "WinRAR archiver" = Archiwizator WinRAR [color=#E56717]========== HKEY_CURRENT_USER Uninstall List ==========[/color] [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "Diablo II" = Diablo II "Flux" = F.lux "KalydoPlayer" = Kalydo Player 4.06.00 [color=#E56717]========== Last 10 Event Log Errors ==========[/color] [ Application Events ] Error - 2011-06-05 03:37:51 | Computer Name = MODERN | Source = Application Hang | ID = 1002 Description = Program firefox.exe w wersji 1.9.2.3667 zatrzymał interakcję z systemem Windows i został zamknięty. Aby zobaczyć, czy jest dostępnych więcej informacji dotyczących tego problemu, sprawdź historię problemu w panelu sterowania raportami i rozwiązaniami problemów. Identyfikator procesu: e54 Godzina rozpoczęcia: 01cc235362905d3c Godzina zakończenia: 14 Error - 2011-06-05 09:30:20 | Computer Name = MODERN | Source = Application Error | ID = 1000 Description = Aplikacja powodująca błąd GH3.exe, wersja 1.3.1.1719, sygnatura czasowa 0x48220341, moduł powodujący błąd IntelLaptopGaming.dll, wersja 6.0.6002.18327, sygnatura czasowa 0x4cb73436, kod wyjątku 0xc0000135, przesunięcie błędu 0x00009f7d, identyfikator procesu 0xa6c, godzina rozpoczęcia aplikacji 0x01cc2384b5f036fb. Error - 2011-06-06 02:29:49 | Computer Name = MODERN | Source = Application Error | ID = 1000 Description = Aplikacja powodująca błąd gimp-2.6.exe, wersja 0.0.0.0, sygnatura czasowa 0x48ee7b2a, moduł powodujący błąd msvcrt.dll, wersja 7.0.6002.18005, sygnatura czasowa 0x49e0379e, kod wyjątku 0xc0000005, przesunięcie błędu 0x0000eb6a, identyfikator procesu 0x668, godzina rozpoczęcia aplikacji 0x01cc2413036298f6. Error - 2011-06-06 02:29:49 | Computer Name = MODERN | Source = Application Error | ID = 1000 Description = Aplikacja powodująca błąd gimp-2.6.exe, wersja 0.0.0.0, sygnatura czasowa 0x48ee7b2a, moduł powodujący błąd msvcrt.dll, wersja 7.0.6002.18005, sygnatura czasowa 0x49e0379e, kod wyjątku 0xc0000005, przesunięcie błędu 0x0000eb6a, identyfikator procesu 0xfc4, godzina rozpoczęcia aplikacji 0x01cc2413019504e6. Error - 2011-06-06 02:29:49 | Computer Name = MODERN | Source = Application Error | ID = 1000 Description = Aplikacja powodująca błąd gimp-2.6.exe, wersja 0.0.0.0, sygnatura czasowa 0x48ee7b2a, moduł powodujący błąd msvcrt.dll, wersja 7.0.6002.18005, sygnatura czasowa 0x49e0379e, kod wyjątku 0xc0000005, przesunięcie błędu 0x0000eb6a, identyfikator procesu 0x914, godzina rozpoczęcia aplikacji 0x01cc2413019504e6. Error - 2011-06-06 02:30:19 | Computer Name = MODERN | Source = Windows Search Service | ID = 3013 Description = Error - 2011-06-06 02:30:19 | Computer Name = MODERN | Source = Windows Search Service | ID = 3013 Description = Error - 2011-06-06 13:12:10 | Computer Name = MODERN | Source = System Restore | ID = 8193 Description = Error - 2011-06-10 05:18:48 | Computer Name = MODERN | Source = Application Error | ID = 1000 Description = Aplikacja powodująca błąd gta_sa.exe, wersja 0.0.0.0, sygnatura czasowa 0x427101ca, moduł powodujący błąd gta_sa.exe, wersja 0.0.0.0, sygnatura czasowa 0x427101ca, kod wyjątku 0xc0000005, przesunięcie błędu 0x00346929, identyfikator procesu 0xfa0, godzina rozpoczęcia aplikacji 0x01cc274f4f09f383. Error - 2011-06-11 05:49:24 | Computer Name = MODERN | Source = Application Error | ID = 1000 Description = Aplikacja powodująca błąd gta_sa.exe, wersja 0.0.0.0, sygnatura czasowa 0x427101ca, moduł powodujący błąd gta_sa.exe, wersja 0.0.0.0, sygnatura czasowa 0x427101ca, kod wyjątku 0xc0000005, przesunięcie błędu 0x002ff35b, identyfikator procesu 0x780, godzina rozpoczęcia aplikacji 0x01cc281c650e2fb5. [ System Events ] Error - 2012-07-02 16:20:00 | Computer Name = MODERN | Source = DCOM | ID = 10010 Description = Error - 2012-07-03 03:29:58 | Computer Name = MODERN | Source = sptd | ID = 262148 Description = Sterownik wykrył błąd wewnętrzny w swoich strukturach danych dla . Error - 2012-07-03 03:30:50 | Computer Name = MODERN | Source = DCOM | ID = 10005 Description = Error - 2012-07-03 03:30:59 | Computer Name = MODERN | Source = DCOM | ID = 10005 Description = Error - 2012-07-03 03:31:02 | Computer Name = MODERN | Source = DCOM | ID = 10005 Description = Error - 2012-07-03 03:31:06 | Computer Name = MODERN | Source = DCOM | ID = 10005 Description = Error - 2012-07-03 03:31:07 | Computer Name = MODERN | Source = DCOM | ID = 10005 Description = Error - 2012-07-03 03:31:14 | Computer Name = MODERN | Source = Service Control Manager | ID = 7001 Description = Error - 2012-07-03 03:31:14 | Computer Name = MODERN | Source = Service Control Manager | ID = 7026 Description = Error - 2012-07-03 03:50:45 | Computer Name = MODERN | Source = DCOM | ID = 10005 Description = < End of report >