Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 02-09-2013 Ran by dom (administrator) on DOM-PC on 02-09-2013 00:28:36 Running from C:\Users\dom Microsoft® Windows Vista™ Home Premium Service Pack 2 (X86) OS Language: Polish Internet Explorer Version 9 Boot Mode: Normal ==================== Processes (Whitelisted) =================== (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe (Microsoft Corporation) C:\Windows\system32\SLsvc.exe (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (Team H2O) C:\Program Files\Syncrosoft\POS\H2O\cledx.exe (Microsoft Corporation) C:\Windows\WindowsMobile\wmdSync.exe (Microsoft Corporation) C:\Windows\ehome\ehtray.exe (Microsoft Corporation) C:\Program Files\Windows Media Player\wmpnscfg.exe () C:\Program Files\Pando Networks\Media Booster\PMB.exe (Microsoft Corporation) C:\Windows\ehome\ehmsas.exe (Apple Computer, Inc.) C:\Program Files\Bonjour\mDNSResponder.exe () D:\Program Files\Autodesk\3ds Max 2012\mentalimages\satellite\raysat_3dsmax2012_32server.exe (Nero AG) C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe () C:\Windows\system32\PnkBstrA.exe (Realtek) C:\Program Files\TP-LINK\TP-LINK Wireless Client Utility\RtlService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe () C:\Program Files\TP-LINK\TP-LINK Wireless Client Utility\RtWlan.exe (Microsoft Corporation) C:\Program Files\Microsoft Security Client\NisSrv.exe (Microsoft Corporation) C:\Windows\system32\wuauclt.exe (Microsoft Corporation) C:\Windows\system32\conime.exe (Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe (Adobe Systems Incorporated) C:\Windows\system32\Macromed\Flash\FlashUtil32_11_8_800_94_ActiveX.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [MSC] - C:\Program Files\Microsoft Security Client\msseces.exe [995176 2013-06-20] (Microsoft Corporation) HKLM\...\Run: [CanonSolutionMenu] - C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe [644696 2007-05-15] (CANON INC.) HKLM\...\Run: [Windows Defender] - C:\Program Files\Windows Defender\MSASCui.exe [1008184 2008-01-21] (Microsoft Corporation) HKLM\...\Run: [] - [x] HKLM\...\Run: [H2O] - C:\Program Files\SyncroSoft\Pos\H2O\cledx.exe [385024 2005-10-23] (Team H2O) HKLM\...\Run: [PrivitizeVPN] - C:\Program Files\PrivitizeVPN\PrivitizeVPN.exe [196784 2012-09-10] (OOO Industry) HKLM\...\Run: [Windows Mobile-based device management] - C:\Windows\WindowsMobile\wmdSync.exe [215552 2008-01-21] (Microsoft Corporation) HKLM\...\Run: [StereoLinksInstall] - C:\Program Files\NVIDIA Corporation\3D Vision\nvstlink.exe [521832 2010-06-07] (NVIDIA Corporation) HKCU\...\Run: [ehTray.exe] - C:\Windows\ehome\ehTray.exe [125952 2008-01-21] (Microsoft Corporation) HKCU\...\Run: [WMPNSCFG] - C:\Program Files\Windows Media Player\WMPNSCFG.exe [202240 2008-01-21] (Microsoft Corporation) HKCU\...\Run: [Pando Media Booster] - C:\Program Files\Pando Networks\Media Booster\PMB.exe [4284976 2013-05-17] () MountPoints2: {4c7ee4c1-19e7-11e2-b511-001a4d3a465b} - F:\Startme.exe MountPoints2: {ee33251b-0ea0-11e0-9239-001a4d3a465b} - M:\AutoRunMorrowind.exe MountPoints2: {ee33251d-0ea0-11e0-9239-001a4d3a465b} - L:\Setup.exe MountPoints2: {efc22894-4b49-11e1-8299-001a4d3a465b} - J:\starter.exe hw.ini HKU\Default\...\Run: [WindowsWelcomeCenter] - C:\Windows\System32\oobefldr.dll [ 2009-04-11] (Microsoft Corporation) HKU\Default User\...\Run: [WindowsWelcomeCenter] - C:\Windows\System32\oobefldr.dll [ 2009-04-11] (Microsoft Corporation) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.pl/ SearchScopes: HKLM - DefaultScope value is missing. SearchScopes: HKLM - {80c554b9-c7f8-4a21-9471-06d606da78a2} URL = ${SEARCH_URL}{searchTerms} SearchScopes: HKCU - ToolbarSearchProviderProgress {96bd48dd-741b-41ae-ac4a-aff96ba00f7e} SearchScopes: HKCU - {41A9D399-8957-4D2A-B67A-5BD8189A24F7} URL = http://search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&ilc=12&type=937811&p={searchTerms} SearchScopes: HKCU - {6E0D3B48-294C-4C8A-A662-67D397A12EE6} URL = http://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSSE SearchScopes: HKCU - {7BCFBE45-C1C7-4429-808B-8933AE2A611A} URL = http://websearch.ask.com/redirect?client=ie&tb=ORJ&o=&src=kw&q={searchTerms}&locale=&apn_ptnrs=&apn_dtid=OSJ000&apn_uid=2A2DB687-76FA-4271-8E9D-48D4050AC7D9&apn_sauid=CF24F8FD-8F46-4A20-A43C-EB4527B6F520 SearchScopes: HKCU - {80c554b9-c7f8-4a21-9471-06d606da78a2} URL = http://searchab.com/?aff=7&uid=e9638150-6e45-11e2-8046-001a4d3a465b&q={searchTerms} SearchScopes: HKCU - {BBBAEB8B-8876-4F5C-98F8-1EF4512710BD} URL = http://start.funmoods.com/results.php?f=4&a=ironto&q={searchTerms} BHO: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated) BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\ssv.dll (Oracle Corporation) BHO: Sueearcho-NewTab - {81CA7226-C39F-A516-3D0A-C753606FC9DB} - C:\ProgramData\Sueearcho-NewTab\5182303e60993.dll No File BHO: continueotiossave - {81EB8223-3C5A-3C5D-E696-D34F4CD43D83} - C:\ProgramData\continueotiossave\51822ffa02527.dll No File BHO: sayfEE osyAve - {CEC1280B-2F1F-FFD4-6658-9223BB2E948D} - C:\ProgramData\sayfEE osyAve\51dac3eb662a5.dll No File BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\jp2ssv.dll (Oracle Corporation) BHO: SearchNewTab - {F9A35743-9FA3-4705-5952-DCC4DD98C0F3} - C:\ProgramData\SearchNewTab\51dac41dcd7c1.dll No File Toolbar: HKLM - Babylon Toolbar - {41B62AD3-5D43-40D1-9D43-F3539C1DB452} - C:\Program Files\Babylon Toolbar\tbcore3.dll () DPF: {1E54D648-B804-468d-BC78-4AFFED8E262F} http://www.nvidia.com/content/DriverDownload/srl/3.0.0.4/srl_bin/sysreqlab_nvd.cab DPF: {784797A8-342D-4072-9486-03C8D0F2F0A1} https://www.battlefieldheroes.com/static/updater/BFHUpdater_5.0.31.0.cab DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_32-windows-i586.cab DPF: {CAFEEFAC-0016-0000-0032-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_32-windows-i586.cab DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_32-windows-i586.cab DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab DPF: {E705A591-DA3C-4228-B0D5-A356DBA42FBF} http://ccfiles.creative.com/Web/softwareupdate/su2/ocx/20015/CTSUEng.cab DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} http://ccfiles.creative.com/Web/softwareupdate/ocx/110926/CTPID.cab Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - D:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies) Winsock: Catalog5 07 C:\Program Files\Bonjour\mdnsNSP.dll [94208] (Apple Computer, Inc.) Chrome: ======= CHR DefaultSearchURL: (Google) - {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}{google:omniboxStartMarginParameter}ie={inputEncoding} CHR DefaultSuggestURL: (Google) - {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&q={searchTerms}&{google:cursorPosition}{google:zeroPrefixUrl}sugkey={google:suggestAPIKeyParameter} CHR Plugin: (Shockwave Flash) - C:\Program Files\Google\Chrome\Application\29.0.1547.62\PepperFlash\pepflashplayer.dll () CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer CHR Plugin: (Native Client) - C:\Program Files\Google\Chrome\Application\29.0.1547.62\ppGoogleNaClPluginChrome.dll () CHR Plugin: (Chrome PDF Viewer) - C:\Program Files\Google\Chrome\Application\29.0.1547.62\pdf.dll () CHR Plugin: (Google Earth Plugin) - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google) CHR Plugin: (Google Update) - C:\Program Files\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.) CHR Plugin: (NVIDIA 3D Vision) - C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) CHR Plugin: (NVIDIA 3D VISION) - C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) CHR Plugin: (Java(TM) Platform SE 7 U5) - C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\plugin2\npjp2.dll (Oracle Corporation) CHR Plugin: (Pando Web Plugin) - C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks) CHR Plugin: (Facebook Video Calling Plugin) - C:\Users\dom\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited) CHR Plugin: (Windows Presentation Foundation) - C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) CHR Plugin: (Shockwave Flash) - C:\Windows\system32\Macromed\Flash\NPSWF32_11_4_402_287.dll () CHR Plugin: (Java Deployment Toolkit 7.0.210.11) - C:\Windows\system32\npDeployJava1.dll (Oracle Corporation) CHR Plugin: (Adobe Acrobat) - D:\Program Files\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) CHR Extension: (Google Docs) - C:\Users\dom\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0 CHR Extension: (Google Drive) - C:\Users\dom\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0 CHR Extension: (YouTube) - C:\Users\dom\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0 CHR Extension: (Google Search) - C:\Users\dom\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0 CHR Extension: (Chrome In-App Payments service) - C:\Users\dom\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0 CHR Extension: (Gmail) - C:\Users\dom\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1 CHR HKLM\...\Chrome\Extension: [ifohbjbgfchkkfhphahclmkpgejiplfo] - C:\Users\dom\AppData\Local\Google\Chrome\User Data\Default\Extensions\newtab.crx CHR HKLM\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - D:\Program Files\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx ========================== Services (Whitelisted) ================= S4 Creative ALchemy AL6 Licensing Service; C:\Program Files\Common Files\Creative Labs Shared\Service\AL6Licensing.exe [79360 2012-08-10] (Creative Labs) S3 FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [1044816 2012-05-31] (Flexera Software, Inc.) S4 Hamachi2Svc; D:\Program Files\LogMeIn Hamachi\hamachi-2.exe [1435568 2012-11-15] (LogMeIn Inc.) R2 mi-raysat_3dsmax2012_32; D:\Program Files\Autodesk\3ds Max 2012\mentalimages\satellite\raysat_3dsmax2012_32server.exe [86016 2011-02-23] () R2 MsMpSvc; C:\Program Files\Microsoft Security Client\MsMpEng.exe [22208 2013-06-20] (Microsoft Corporation) R3 NisSrv; C:\Program Files\Microsoft Security Client\NisSrv.exe [295376 2013-06-20] (Microsoft Corporation) S3 npggsvc; C:\Windows\system32\GameMon.des [4137464 2011-05-03] (INCA Internet Co., Ltd.) R2 PnkBstrA; C:\Windows\system32\PnkBstrA.exe [75136 2010-12-20] () R2 Realtek11nSU; C:\Program Files\TP-LINK\TP-LINK Wireless Client Utility\RtlService.exe [45056 2010-08-05] (Realtek) S4 Skype C2C Service; C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe [3064000 2012-10-02] (Skype Technologies S.A.) S4 SkypeUpdate; D:\Program Files\Skype\Updater\Updater.exe [162408 2013-06-03] (Skype Technologies) S3 Sony PC Companion; C:\Program Files\Sony\Sony PC Companion\PCCService.exe [155320 2012-01-18] (Avanquest Software) S4 vToolbarUpdater13.2.0; C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\13.2.0\ToolbarUpdater.exe [x] ==================== Drivers (Whitelisted) ==================== R2 atksgt; C:\Windows\System32\DRIVERS\atksgt.sys [281760 2011-12-25] () R1 avgtp; C:\Windows\system32\drivers\avgtpx86.sys [26984 2012-11-08] (AVG Technologies) R3 CLEDX; C:\Windows\System32\DRIVERS\cledx.sys [33792 2005-05-09] (Team H2O) R0 CLFS; C:\Windows\System32\CLFS.sys [245736 2009-04-11] (Microsoft Corporation) R3 hamachi; C:\Windows\System32\DRIVERS\hamachi.sys [25280 2013-04-12] (LogMeIn, Inc.) R2 lirsgt; C:\Windows\System32\DRIVERS\lirsgt.sys [25888 2011-12-25] () R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [211560 2013-06-18] (Microsoft Corporation) R1 MpKsl2a42aab1; C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{F1823AE7-1721-4BDC-A2BC-72058EC54971}\MpKsl2a42aab1.sys [29904 2013-09-01] (Microsoft Corporation) R0 sfvfs02; C:\Windows\System32\drivers\sfvfs02.sys [83320 2007-02-08] (Protection Technology (StarForce)) S3 XENfiltv; C:\Windows\System32\drivers\XENfiltv.sys [17920 2009-07-31] (Creative Technology Ltd.) S3 xnacc; C:\Windows\System32\DRIVERS\xnacc.sys [521216 2008-01-21] (Microsoft Corporation) S3 EagleXNt; \??\C:\Windows\system32\drivers\EagleXNt.sys [x] S3 IpInIp; system32\DRIVERS\ipinip.sys [x] S3 NwlnkFlt; system32\DRIVERS\nwlnkflt.sys [x] S3 NwlnkFwd; system32\DRIVERS\nwlnkfwd.sys [x] S4 sptd; \SystemRoot\System32\Drivers\sptd.sys [x] U3 uwldapow; \??\C:\Users\dom\AppData\Local\Temp\uwldapow.sys [x] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-09-02 00:19 - 2013-09-02 00:19 - 00008759 _____ C:\Users\dom\Documents\gmer.log 2013-09-02 00:14 - 2013-09-02 00:14 - 00093654 _____ C:\Users\dom\Extras.Txt 2013-09-02 00:11 - 2013-09-02 00:11 - 00496408 _____ C:\Users\dom\OTL.Txt 2013-09-01 17:21 - 2013-09-01 17:21 - 00377856 _____ C:\Users\dom\37ly26fe.exe 2013-09-01 17:05 - 2013-08-31 21:20 - 00094208 _____ C:\Users\dom\Downloads\Extras - Kopia.Txt 2013-09-01 17:05 - 2013-08-31 21:02 - 00112075 _____ C:\Users\dom\Downloads\FRST - Kopia.txt 2013-09-01 17:05 - 2013-08-31 21:02 - 00032088 _____ C:\Users\dom\Downloads\Addition - Kopia.txt 2013-08-31 21:47 - 2013-08-31 21:47 - 00377856 _____ C:\Users\dom\h4euum1c.exe 2013-08-31 21:18 - 2013-08-31 21:18 - 00496026 _____ C:\Users\dom\Downloads\OTL.Txt 2013-08-31 20:57 - 2013-08-31 20:33 - 00111084 _____ C:\Users\dom\Desktop\FRST.txt 2013-08-31 20:57 - 2013-08-31 20:33 - 00031161 _____ C:\Users\dom\Desktop\Addition.txt 2013-08-31 20:50 - 2013-08-31 20:50 - 00000000 _____ C:\Users\dom\Desktop\Nowy dokument tekstowy (2).txt 2013-08-31 20:44 - 2013-08-31 20:44 - 00602112 _____ (OldTimer Tools) C:\Users\dom\OTL.exe 2013-08-31 20:29 - 2013-08-31 20:29 - 00000000 ____D C:\FRST 2013-08-31 19:05 - 2013-08-31 19:05 - 00663128 _____ (Duplex Secure Ltd.) C:\Users\dom\Downloads\SPTDinst-v183-x86.exe 2013-08-31 12:20 - 2013-08-31 12:24 - 00000000 ____D C:\Windows\system32\MRT 2013-08-31 12:08 - 2013-07-25 04:40 - 12334080 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-08-31 12:08 - 2013-07-25 04:32 - 01800704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-08-31 12:08 - 2013-07-25 04:30 - 09738752 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-08-31 12:08 - 2013-07-25 04:26 - 01129472 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-08-31 12:08 - 2013-07-25 04:26 - 01104384 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-08-31 12:08 - 2013-07-25 04:25 - 01427968 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2013-08-31 12:08 - 2013-07-25 04:24 - 00231936 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2013-08-31 12:08 - 2013-07-25 04:24 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-08-31 12:08 - 2013-07-25 04:23 - 01796096 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-08-31 12:08 - 2013-07-25 04:23 - 00717824 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-08-31 12:08 - 2013-07-25 04:23 - 00607744 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-08-31 12:08 - 2013-07-25 04:23 - 00420864 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2013-08-31 12:08 - 2013-07-25 04:23 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2013-08-31 12:08 - 2013-07-25 04:22 - 02382848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-08-31 12:08 - 2013-07-25 04:22 - 00176640 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2013-08-31 12:08 - 2013-07-25 04:22 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2013-08-31 12:06 - 2013-08-02 06:09 - 01548288 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL 2013-08-31 12:06 - 2013-07-17 21:41 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll 2013-08-31 12:06 - 2013-07-10 11:47 - 00783360 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll 2013-08-31 12:06 - 2013-07-09 14:10 - 01205168 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2013-08-31 12:06 - 2013-07-08 06:55 - 03603904 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlpa.exe 2013-08-31 12:06 - 2013-07-08 06:55 - 03551680 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2013-08-31 12:06 - 2013-07-05 05:20 - 00914880 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2013-08-31 12:06 - 2013-07-05 03:43 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpipreg.sys 2013-08-31 12:06 - 2013-06-15 15:22 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\icaapi.dll 2013-08-31 12:06 - 2013-06-15 13:23 - 00024064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys 2013-08-31 12:05 - 2013-07-08 06:20 - 00172544 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll 2013-08-31 12:05 - 2013-07-08 06:16 - 00992768 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll 2013-08-31 12:05 - 2013-07-08 06:16 - 00133120 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll 2013-08-31 12:05 - 2013-07-08 06:16 - 00098304 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll 2013-08-30 19:23 - 2013-08-30 19:23 - 00001971 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2013-08-27 15:26 - 2013-09-01 16:48 - 00036725 _____ C:\ProgramData\nvModes.dat 2013-08-27 15:26 - 2013-09-01 16:48 - 00036725 _____ C:\ProgramData\nvModes.001 2013-08-27 15:15 - 2013-09-01 00:43 - 00000000 ____D C:\AdwCleaner 2013-08-27 15:14 - 2013-08-27 15:14 - 00994642 _____ C:\Users\dom\Downloads\AdwCleaner_www.INSTALKI.pl.exe 2013-08-25 18:48 - 2013-08-25 18:48 - 00000923 _____ C:\Users\Public\Desktop\Twierdza Krzyżowiec Extreme.lnk 2013-08-25 18:48 - 2013-08-25 18:48 - 00000883 _____ C:\Users\Public\Desktop\Twierdza Krzyżowiec.lnk 2013-08-25 17:34 - 2013-08-25 17:48 - 00095729 _____ C:\Users\dom\Documents\sztylet1.blend 2013-08-25 17:34 - 2013-08-25 17:37 - 00095853 _____ C:\Users\dom\Documents\sztylet1.blend1 2013-08-25 17:34 - 2013-08-25 17:34 - 00095748 _____ C:\Users\dom\Documents\sztylet1.blend2 2013-08-25 16:43 - 2013-08-25 16:43 - 00094258 _____ C:\Users\dom\Documents\sztylet.blend 2013-08-25 14:28 - 2013-08-25 14:28 - 00090288 _____ C:\Users\dom\Documents\sztylecik2.blend 2013-08-24 23:11 - 2013-08-24 23:39 - 00087975 _____ C:\Users\dom\Documents\sztylecik1.blend 2013-08-24 23:11 - 2013-08-24 23:11 - 00088014 _____ C:\Users\dom\Documents\sztylecik1.blend1 2013-08-22 22:52 - 2013-08-28 00:10 - 00000000 ____D C:\Users\dom\Documents\GTA3 User Files 2013-08-22 20:12 - 2013-08-22 22:45 - 00000000 ____D C:\Users\dom\Downloads\GrandTheftAuto3-DEVIANCE 2013-08-22 17:50 - 2013-08-22 19:30 - 825088187 _____ C:\Users\dom\Downloads\GrandTheftAuto3-DEVIANCE.rar 2013-08-22 16:53 - 2013-08-22 16:53 - 00084467 _____ C:\Users\dom\Documents\sztylecik.blend 2013-08-19 18:06 - 2013-08-19 18:06 - 00085293 _____ C:\Users\dom\Documents\domek.blend 2013-08-19 18:06 - 2013-08-19 18:06 - 00000000 ____D C:\Users\dom\Documents\domek 2013-08-19 01:30 - 2013-08-19 01:30 - 00094575 _____ C:\Users\dom\Documents\untitled.blend 2013-08-18 23:10 - 2013-08-18 23:10 - 00000000 ____D C:\Users\dom\AppData\Roaming\Blender Foundation 2013-08-17 20:21 - 2013-08-17 20:21 - 00000893 _____ C:\Users\Public\Desktop\Blender.lnk 2013-08-15 13:41 - 2013-08-15 13:41 - 00000000 ____D C:\NVIDIA 2013-08-15 13:41 - 2010-06-08 01:57 - 15764072 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv32.dll 2013-08-15 13:41 - 2010-06-08 01:57 - 10888168 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2013-08-15 13:41 - 2010-06-08 01:57 - 10263144 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2013-08-15 13:41 - 2010-06-08 01:57 - 09712744 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dum.dll 2013-08-15 13:41 - 2010-06-08 01:57 - 04967528 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2um.dll 2013-08-15 13:41 - 2010-06-08 01:57 - 04513384 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2013-08-15 13:41 - 2010-06-08 01:57 - 02632296 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll 2013-08-15 13:41 - 2010-06-08 01:57 - 02145896 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2013-08-15 13:41 - 2010-06-08 01:57 - 01592424 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi.dll 2013-08-15 13:41 - 2010-06-08 01:57 - 00232040 _____ (NVIDIA Corporation) C:\Windows\system32\nvcod1921.dll 2013-08-15 13:41 - 2010-06-08 01:57 - 00232040 _____ (NVIDIA Corporation) C:\Windows\system32\nvcod.dll 2013-08-15 13:41 - 2010-06-08 01:57 - 00056936 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll 2013-08-15 13:41 - 2010-06-08 01:57 - 00010920 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvBridge.kmd 2013-08-15 13:39 - 2013-08-15 13:39 - 131453256 _____ (NVIDIA Corporation) C:\Users\dom\Downloads\257.21_desktop_win7_winvista_32bit_international_whql.exe 2013-08-11 22:52 - 2013-08-11 22:52 - 00100434 _____ C:\Users\dom\Downloads\Poradnik_-_Jak_zarabiac_na_PPA.rar 2013-08-11 22:52 - 2013-08-11 22:52 - 00000000 ____D C:\Users\dom\Downloads\Poradnik_-_Jak_zarabiac_na_PPA 2013-08-10 14:01 - 2013-08-10 14:01 - 00000000 ____D C:\ProgramData\NVIDIA Corporation 2013-08-09 14:33 - 2013-08-09 14:33 - 00000000 ____D C:\Users\dom\AppData\Roaming\NVIDIA 2013-08-09 13:51 - 2013-08-09 13:51 - 00138616 _____ C:\Windows\Minidump\Mini080913-02.dmp 2013-08-09 13:34 - 2013-08-09 13:34 - 00000754 _____ C:\Users\dom\Desktop\Driver Cleaner 3.lnk 2013-08-09 13:34 - 2013-08-09 13:34 - 00000000 ____D C:\Users\dom\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Driver Cleaner 3 2013-08-09 13:26 - 2013-08-09 13:51 - 249924978 _____ C:\Windows\MEMORY.DMP 2013-08-09 13:26 - 2013-08-09 13:51 - 00000000 ____D C:\Windows\Minidump 2013-08-09 13:26 - 2013-08-09 13:27 - 00175928 _____ C:\Windows\Minidump\Mini080913-01.dmp 2013-08-08 21:49 - 2013-08-08 21:49 - 00000000 ____D C:\Windows\Registration 2013-08-08 20:24 - 2013-08-08 20:24 - 00000552 _____ C:\Users\dom\AppData\Local\d3d8caps.dat ==================== One Month Modified Files and Folders ======= 2013-09-02 00:28 - 2013-09-02 00:27 - 01085759 _____ (Farbar) C:\Users\dom\FRST.exe 2013-09-02 00:27 - 2010-08-18 15:10 - 00000000 ____D C:\Users\dom 2013-09-02 00:19 - 2013-09-02 00:19 - 00008759 _____ C:\Users\dom\Documents\gmer.log 2013-09-02 00:14 - 2013-09-02 00:14 - 00093654 _____ C:\Users\dom\Extras.Txt 2013-09-02 00:11 - 2013-09-02 00:11 - 00496408 _____ C:\Users\dom\OTL.Txt 2013-09-02 00:10 - 2012-08-07 17:41 - 00000930 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2013-09-01 23:44 - 2011-04-02 00:21 - 00001030 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2013-09-01 23:39 - 2009-04-11 14:37 - 02068675 _____ C:\Windows\WindowsUpdate.log 2013-09-01 23:38 - 2012-06-25 20:28 - 00001070 _____ C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-4158280346-899413847-2228821682-1000UA.job 2013-09-01 23:38 - 2012-06-25 20:28 - 00001048 _____ C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-4158280346-899413847-2228821682-1000Core.job 2013-09-01 22:48 - 2006-11-02 14:47 - 00003760 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0 2013-09-01 22:48 - 2006-11-02 14:47 - 00003760 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0 2013-09-01 17:21 - 2013-09-01 17:21 - 00377856 _____ C:\Users\dom\37ly26fe.exe 2013-09-01 16:48 - 2013-08-27 15:26 - 00036725 _____ C:\ProgramData\nvModes.dat 2013-09-01 16:48 - 2013-08-27 15:26 - 00036725 _____ C:\ProgramData\nvModes.001 2013-09-01 16:48 - 2013-05-02 11:21 - 00000412 ____H C:\Windows\Tasks\schedule!3036567561.job 2013-09-01 16:48 - 2011-04-02 00:21 - 00001026 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2013-09-01 16:48 - 2010-08-19 13:09 - 00000000 ____D C:\ProgramData\NVIDIA 2013-09-01 16:48 - 2006-11-02 15:01 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2013-09-01 01:29 - 2006-11-02 15:01 - 00032594 _____ C:\Windows\Tasks\SCHEDLGU.TXT 2013-09-01 00:43 - 2013-08-27 15:15 - 00000000 ____D C:\AdwCleaner 2013-09-01 00:03 - 2010-08-18 15:10 - 00001356 _____ C:\Users\dom\AppData\Local\d3d9caps.dat 2013-08-31 21:47 - 2013-08-31 21:47 - 00377856 _____ C:\Users\dom\h4euum1c.exe 2013-08-31 21:20 - 2013-09-01 17:05 - 00094208 _____ C:\Users\dom\Downloads\Extras - Kopia.Txt 2013-08-31 21:18 - 2013-08-31 21:18 - 00496026 _____ C:\Users\dom\Downloads\OTL.Txt 2013-08-31 21:02 - 2013-09-01 17:05 - 00112075 _____ C:\Users\dom\Downloads\FRST - Kopia.txt 2013-08-31 21:02 - 2013-09-01 17:05 - 00032088 _____ C:\Users\dom\Downloads\Addition - Kopia.txt 2013-08-31 20:50 - 2013-08-31 20:50 - 00000000 _____ C:\Users\dom\Desktop\Nowy dokument tekstowy (2).txt 2013-08-31 20:44 - 2013-08-31 20:44 - 00602112 _____ (OldTimer Tools) C:\Users\dom\OTL.exe 2013-08-31 20:33 - 2013-08-31 20:57 - 00111084 _____ C:\Users\dom\Desktop\FRST.txt 2013-08-31 20:33 - 2013-08-31 20:57 - 00031161 _____ C:\Users\dom\Desktop\Addition.txt 2013-08-31 20:29 - 2013-08-31 20:29 - 00000000 ____D C:\FRST 2013-08-31 19:05 - 2013-08-31 19:05 - 00663128 _____ (Duplex Secure Ltd.) C:\Users\dom\Downloads\SPTDinst-v183-x86.exe 2013-08-31 18:53 - 2008-01-21 04:47 - 00150982 _____ C:\Windows\PFRO.log 2013-08-31 14:11 - 2006-11-02 13:18 - 00000000 ____D C:\Windows\Microsoft.NET 2013-08-31 12:43 - 2006-11-02 13:18 - 00000000 ____D C:\Windows\rescache 2013-08-31 12:25 - 2006-11-02 13:18 - 00000000 ____D C:\Windows\system32\pl-PL 2013-08-31 12:24 - 2013-08-31 12:20 - 00000000 ____D C:\Windows\system32\MRT 2013-08-31 12:20 - 2006-11-02 12:24 - 75778376 _____ (Microsoft Corporation) C:\Windows\system32\mrt.exe 2013-08-31 12:19 - 2012-08-07 17:47 - 00001912 _____ C:\Windows\epplauncher.mif 2013-08-31 12:19 - 2012-08-07 17:47 - 00000000 ____D C:\Program Files\Microsoft Security Client 2013-08-31 12:13 - 2010-10-25 18:35 - 00000000 ____D C:\ProgramData\Microsoft Help 2013-08-31 12:10 - 2009-04-13 10:02 - 01629432 _____ C:\Windows\system32\PerfStringBackup.INI 2013-08-31 12:10 - 2009-04-13 10:01 - 00711974 _____ C:\Windows\system32\perfh015.dat 2013-08-31 12:10 - 2009-04-13 10:01 - 00149960 _____ C:\Windows\system32\perfc015.dat 2013-08-30 19:23 - 2013-08-30 19:23 - 00001971 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2013-08-30 19:23 - 2011-04-02 00:21 - 00000000 ____D C:\Program Files\Google 2013-08-30 19:23 - 2010-08-24 20:50 - 00000000 ____D C:\Users\dom\AppData\Local\Google 2013-08-30 19:20 - 2012-12-15 22:27 - 00000000 ____D C:\Program Files\Mozilla Firefox 2013-08-30 15:21 - 2011-02-02 17:20 - 00000000 ____D C:\Users\dom\Documents\Stronghold Crusader 2013-08-28 00:10 - 2013-08-22 22:52 - 00000000 ____D C:\Users\dom\Documents\GTA3 User Files 2013-08-27 15:54 - 2012-11-02 18:00 - 00000000 ____D C:\Users\dom\AppData\Roaming\Guitar Pro 6 2013-08-27 15:23 - 2010-08-18 15:10 - 00000985 _____ C:\Users\dom\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2013-08-27 15:14 - 2013-08-27 15:14 - 00994642 _____ C:\Users\dom\Downloads\AdwCleaner_www.INSTALKI.pl.exe 2013-08-27 10:32 - 2010-08-19 13:07 - 00000000 ____D C:\Program Files\NVIDIA Corporation 2013-08-27 10:32 - 2006-11-02 13:18 - 00000000 ____D C:\Windows\Help 2013-08-25 18:48 - 2013-08-25 18:48 - 00000923 _____ C:\Users\Public\Desktop\Twierdza Krzyżowiec Extreme.lnk 2013-08-25 18:48 - 2013-08-25 18:48 - 00000883 _____ C:\Users\Public\Desktop\Twierdza Krzyżowiec.lnk 2013-08-25 18:46 - 2010-08-19 12:09 - 00000000 ___HD C:\Program Files\InstallShield Installation Information 2013-08-25 17:48 - 2013-08-25 17:34 - 00095729 _____ C:\Users\dom\Documents\sztylet1.blend 2013-08-25 17:37 - 2013-08-25 17:34 - 00095853 _____ C:\Users\dom\Documents\sztylet1.blend1 2013-08-25 17:34 - 2013-08-25 17:34 - 00095748 _____ C:\Users\dom\Documents\sztylet1.blend2 2013-08-25 16:43 - 2013-08-25 16:43 - 00094258 _____ C:\Users\dom\Documents\sztylet.blend 2013-08-25 14:28 - 2013-08-25 14:28 - 00090288 _____ C:\Users\dom\Documents\sztylecik2.blend 2013-08-24 23:39 - 2013-08-24 23:11 - 00087975 _____ C:\Users\dom\Documents\sztylecik1.blend 2013-08-24 23:11 - 2013-08-24 23:11 - 00088014 _____ C:\Users\dom\Documents\sztylecik1.blend1 2013-08-22 22:45 - 2013-08-22 20:12 - 00000000 ____D C:\Users\dom\Downloads\GrandTheftAuto3-DEVIANCE 2013-08-22 19:30 - 2013-08-22 17:50 - 825088187 _____ C:\Users\dom\Downloads\GrandTheftAuto3-DEVIANCE.rar 2013-08-22 16:53 - 2013-08-22 16:53 - 00084467 _____ C:\Users\dom\Documents\sztylecik.blend 2013-08-22 13:21 - 2011-06-11 01:58 - 00773800 _____ (Microsoft Corporation) C:\Windows\system32\msvcr100.dll 2013-08-22 13:21 - 2011-06-11 01:58 - 00421032 _____ (Microsoft Corporation) C:\Windows\system32\msvcp100.dll 2013-08-22 00:29 - 2011-09-20 15:58 - 00000000 ____D C:\Users\dom\Desktop\Might and Magic VI 2013-08-21 12:13 - 2013-04-17 14:26 - 17139080 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerInstaller.exe 2013-08-21 12:13 - 2012-08-07 17:41 - 00692104 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe 2013-08-21 12:13 - 2011-05-18 11:51 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl 2013-08-19 18:06 - 2013-08-19 18:06 - 00085293 _____ C:\Users\dom\Documents\domek.blend 2013-08-19 18:06 - 2013-08-19 18:06 - 00000000 ____D C:\Users\dom\Documents\domek 2013-08-19 01:30 - 2013-08-19 01:30 - 00094575 _____ C:\Users\dom\Documents\untitled.blend 2013-08-18 23:10 - 2013-08-18 23:10 - 00000000 ____D C:\Users\dom\AppData\Roaming\Blender Foundation 2013-08-17 20:51 - 2010-12-11 17:38 - 00000000 ____D C:\Users\dom\.thumbnails 2013-08-17 20:21 - 2013-08-17 20:21 - 00000893 _____ C:\Users\Public\Desktop\Blender.lnk 2013-08-16 00:45 - 2010-12-20 20:44 - 00000000 ____D C:\Users\dom\AppData\Roaming\Skype 2013-08-15 16:44 - 2012-10-28 18:33 - 00000000 ____D C:\ProgramData\Rosetta Stone 2013-08-15 16:44 - 2010-12-26 14:47 - 00000000 ____D C:\ProgramData\FLEXnet 2013-08-15 13:41 - 2013-08-15 13:41 - 00000000 ____D C:\NVIDIA 2013-08-15 13:39 - 2013-08-15 13:39 - 131453256 _____ (NVIDIA Corporation) C:\Users\dom\Downloads\257.21_desktop_win7_winvista_32bit_international_whql.exe 2013-08-11 22:52 - 2013-08-11 22:52 - 00100434 _____ C:\Users\dom\Downloads\Poradnik_-_Jak_zarabiac_na_PPA.rar 2013-08-11 22:52 - 2013-08-11 22:52 - 00000000 ____D C:\Users\dom\Downloads\Poradnik_-_Jak_zarabiac_na_PPA 2013-08-10 14:01 - 2013-08-10 14:01 - 00000000 ____D C:\ProgramData\NVIDIA Corporation 2013-08-09 14:33 - 2013-08-09 14:33 - 00000000 ____D C:\Users\dom\AppData\Roaming\NVIDIA 2013-08-09 13:51 - 2013-08-09 13:51 - 00138616 _____ C:\Windows\Minidump\Mini080913-02.dmp 2013-08-09 13:51 - 2013-08-09 13:26 - 249924978 _____ C:\Windows\MEMORY.DMP 2013-08-09 13:51 - 2013-08-09 13:26 - 00000000 ____D C:\Windows\Minidump 2013-08-09 13:34 - 2013-08-09 13:34 - 00000754 _____ C:\Users\dom\Desktop\Driver Cleaner 3.lnk 2013-08-09 13:34 - 2013-08-09 13:34 - 00000000 ____D C:\Users\dom\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Driver Cleaner 3 2013-08-09 13:27 - 2013-08-09 13:26 - 00175928 _____ C:\Windows\Minidump\Mini080913-01.dmp 2013-08-08 21:49 - 2013-08-08 21:49 - 00000000 ____D C:\Windows\Registration 2013-08-08 21:35 - 2006-11-02 12:22 - 71565312 _____ C:\Windows\system32\config\system_previous 2013-08-08 21:35 - 2006-11-02 12:22 - 50855936 _____ C:\Windows\system32\config\software_previous 2013-08-08 21:35 - 2006-11-02 12:22 - 28049408 _____ C:\Windows\system32\config\components_previous 2013-08-08 21:35 - 2006-11-02 12:22 - 00524288 _____ C:\Windows\system32\config\default_previous 2013-08-08 21:35 - 2006-11-02 12:22 - 00262144 _____ C:\Windows\system32\config\security_previous 2013-08-08 21:35 - 2006-11-02 12:22 - 00262144 _____ C:\Windows\system32\config\sam_previous 2013-08-08 21:34 - 2012-12-26 16:03 - 00000000 ____D C:\Users\dom\Documents\Gothic3ForsakenGods 2013-08-08 21:34 - 2012-12-01 23:21 - 00000000 ____D C:\Users\dom\Documents\Amnesia 2013-08-08 21:34 - 2012-11-20 20:14 - 00000000 ____D C:\Users\dom\Documents\Penumbra 2013-08-08 21:34 - 2012-05-04 15:48 - 00000000 ___RD C:\Users\dom\Documents\Almost Human 2013-08-08 21:34 - 2012-05-03 14:23 - 00000000 ____D C:\Program Files\Java 2013-08-08 21:34 - 2012-03-18 01:21 - 00000000 ____D C:\Users\dom\Documents\THE SETTLERS - Rise of an Empire 2013-08-08 21:34 - 2012-03-17 21:01 - 00000000 ____D C:\Users\dom\Documents\NeocoreGames 2013-08-08 21:34 - 2012-02-16 20:30 - 00000000 ____D C:\Users\dom\Documents\Penumbra Overture 2013-08-08 21:34 - 2011-11-19 23:11 - 00000000 ____D C:\Users\dom\Documents\gothic3 2013-08-08 21:34 - 2011-11-08 17:25 - 00000000 ____D C:\Users\dom\Documents\StepMania CVS 2013-08-08 21:34 - 2011-06-18 23:52 - 00000000 ____D C:\Users\dom\Documents\Electronic Arts 2013-08-08 21:34 - 2011-05-09 12:08 - 00000000 ___SD C:\Users\dom\Documents\Passwords Database 2013-08-08 21:34 - 2010-12-29 18:40 - 00000000 ____D C:\Users\dom\Documents\Dane gry Powrót Króla tm 2013-08-08 21:34 - 2010-12-26 02:02 - 00000000 ____D C:\Program Files\Bonjour 2013-08-08 21:34 - 2010-12-26 02:01 - 00000000 ____D C:\Program Files\Adobe 2013-08-08 21:34 - 2010-12-09 13:56 - 00000000 ____D C:\Program Files\Common Files\Adobe 2013-08-08 21:34 - 2010-08-21 12:46 - 00000000 ____D C:\Users\dom\Documents\SaveGames 2013-08-08 21:34 - 2006-11-02 13:18 - 00000000 ____D C:\Windows\system32\spool 2013-08-08 21:34 - 2006-11-02 13:18 - 00000000 ____D C:\Windows\system32\Msdtc 2013-08-08 20:24 - 2013-08-08 20:24 - 00000552 _____ C:\Users\dom\AppData\Local\d3d8caps.dat 2013-08-06 19:22 - 2010-08-26 13:51 - 00000000 ____D C:\ProgramData\Adobe 2013-08-06 19:21 - 2010-08-19 11:29 - 00000000 ____D C:\Users\dom\AppData\Roaming\Adobe Files to move or delete: ==================== C:\ProgramData\hash.dat C:\ProgramData\nvModes.dat C:\Users\dom\37ly26fe.exe C:\Users\dom\FRST.exe C:\Users\dom\h4euum1c.exe C:\Users\dom\OTL.exe C:\Users\dom\AppData\Local\Temp\AcDeltree.exe C:\Users\dom\AppData\Local\Temp\APNStub.exe C:\Users\dom\AppData\Local\Temp\app.exe C:\Users\dom\AppData\Local\Temp\AutoRun.exe C:\Users\dom\AppData\Local\Temp\AutoRunGUI.dll C:\Users\dom\AppData\Local\Temp\avguidx.dll C:\Users\dom\AppData\Local\Temp\cacaonew0a51ce.exe C:\Users\dom\AppData\Local\Temp\cacaonew11255a.exe C:\Users\dom\AppData\Local\Temp\cacaonew11fc99.exe C:\Users\dom\AppData\Local\Temp\cacaonew1e4440.exe C:\Users\dom\AppData\Local\Temp\cacaonew25aa67.exe C:\Users\dom\AppData\Local\Temp\cacaonew29be1d.exe C:\Users\dom\AppData\Local\Temp\cacaonew30ba17.exe C:\Users\dom\AppData\Local\Temp\cacaonew3a87e4.exe C:\Users\dom\AppData\Local\Temp\cacaonew458f30.exe C:\Users\dom\AppData\Local\Temp\cacaonew4aaed4.exe C:\Users\dom\AppData\Local\Temp\cacaonew4c2901.exe C:\Users\dom\AppData\Local\Temp\cacaonew4f99da.exe C:\Users\dom\AppData\Local\Temp\cacaonew5179ff.exe C:\Users\dom\AppData\Local\Temp\cacaonew5a9047.exe C:\Users\dom\AppData\Local\Temp\cacaonew5ebeae.exe C:\Users\dom\AppData\Local\Temp\cacaonew6133c3.exe C:\Users\dom\AppData\Local\Temp\cacaonew6810c0.exe C:\Users\dom\AppData\Local\Temp\cacaonew729bf1.exe C:\Users\dom\AppData\Local\Temp\cacaonew7e7c5f.exe C:\Users\dom\AppData\Local\Temp\cacaonew81ca9d.exe C:\Users\dom\AppData\Local\Temp\cacaonew85db8f.exe C:\Users\dom\AppData\Local\Temp\cacaonew8ab454.exe C:\Users\dom\AppData\Local\Temp\cacaonew8ad994.exe C:\Users\dom\AppData\Local\Temp\cacaonew8e154b.exe C:\Users\dom\AppData\Local\Temp\cacaonew945e7a.exe C:\Users\dom\AppData\Local\Temp\cacaonew95bdd6.exe C:\Users\dom\AppData\Local\Temp\cacaonew966c04.exe C:\Users\dom\AppData\Local\Temp\cacaonew9defc2.exe C:\Users\dom\AppData\Local\Temp\cacaonew9f0300.exe C:\Users\dom\AppData\Local\Temp\cacaonew9f5147.exe C:\Users\dom\AppData\Local\Temp\cacaonewa16d5c.exe C:\Users\dom\AppData\Local\Temp\cacaonewa285c2.exe C:\Users\dom\AppData\Local\Temp\cacaonewa2afc1.exe C:\Users\dom\AppData\Local\Temp\cacaonewaaad82.exe C:\Users\dom\AppData\Local\Temp\cacaonewae9c2f.exe C:\Users\dom\AppData\Local\Temp\cacaonewb099e1.exe C:\Users\dom\AppData\Local\Temp\cacaonewb3d853.exe C:\Users\dom\AppData\Local\Temp\cacaonewc2032f.exe C:\Users\dom\AppData\Local\Temp\cacaonewd0edc9.exe C:\Users\dom\AppData\Local\Temp\cacaonewd56863.exe C:\Users\dom\AppData\Local\Temp\cacaonewe9015b.exe C:\Users\dom\AppData\Local\Temp\cacaoneweb4197.exe C:\Users\dom\AppData\Local\Temp\cacaonewedc728.exe C:\Users\dom\AppData\Local\Temp\cacaonewee02c1.exe C:\Users\dom\AppData\Local\Temp\cacaonewee0cda.exe C:\Users\dom\AppData\Local\Temp\cacaonewee2cb8.exe C:\Users\dom\AppData\Local\Temp\CmdLineExt03.dll C:\Users\dom\AppData\Local\Temp\CommonInstaller.exe C:\Users\dom\AppData\Local\Temp\drm_dialogs.dll C:\Users\dom\AppData\Local\Temp\drm_dyndata_7330005.dll C:\Users\dom\AppData\Local\Temp\drm_dyndata_7350007.dll C:\Users\dom\AppData\Local\Temp\drm_dyndata_7360011.dll C:\Users\dom\AppData\Local\Temp\drm_dyndata_7370014.dll C:\Users\dom\AppData\Local\Temp\drm_dyndata_7380009.dll C:\Users\dom\AppData\Local\Temp\drm_dyndata_7400005.dll C:\Users\dom\AppData\Local\Temp\drm_dyndata_7400009.dll C:\Users\dom\AppData\Local\Temp\EAD1074.exe C:\Users\dom\AppData\Local\Temp\EAD1110.exe C:\Users\dom\AppData\Local\Temp\EAD115E.exe C:\Users\dom\AppData\Local\Temp\EAD11AC.exe C:\Users\dom\AppData\Local\Temp\EAD11EA.exe C:\Users\dom\AppData\Local\Temp\EAD139F.exe C:\Users\dom\AppData\Local\Temp\EAD13CE.exe C:\Users\dom\AppData\Local\Temp\EAD141C.exe C:\Users\dom\AppData\Local\Temp\EAD142C.exe C:\Users\dom\AppData\Local\Temp\EAD1582.exe C:\Users\dom\AppData\Local\Temp\EAD15F4.exe C:\Users\dom\AppData\Local\Temp\EAD16CE.exe C:\Users\dom\AppData\Local\Temp\EAD170A.exe C:\Users\dom\AppData\Local\Temp\EAD186.exe C:\Users\dom\AppData\Local\Temp\EAD1880.exe C:\Users\dom\AppData\Local\Temp\EAD1CA4.exe C:\Users\dom\AppData\Local\Temp\EAD1E78.exe C:\Users\dom\AppData\Local\Temp\EAD21F1.exe C:\Users\dom\AppData\Local\Temp\EAD2386.exe C:\Users\dom\AppData\Local\Temp\EAD23D4.exe C:\Users\dom\AppData\Local\Temp\EAD241.exe C:\Users\dom\AppData\Local\Temp\EAD24FD.exe C:\Users\dom\AppData\Local\Temp\EAD24FE.exe C:\Users\dom\AppData\Local\Temp\EAD250.exe C:\Users\dom\AppData\Local\Temp\EAD256A.exe C:\Users\dom\AppData\Local\Temp\EAD2654.exe C:\Users\dom\AppData\Local\Temp\EAD273E.exe C:\Users\dom\AppData\Local\Temp\EAD28D4.exe C:\Users\dom\AppData\Local\Temp\EAD29CD.exe C:\Users\dom\AppData\Local\Temp\EAD2AE.exe C:\Users\dom\AppData\Local\Temp\EAD2BC0.exe C:\Users\dom\AppData\Local\Temp\EAD2C0E.exe C:\Users\dom\AppData\Local\Temp\EAD2D27.exe C:\Users\dom\AppData\Local\Temp\EAD2DD.exe C:\Users\dom\AppData\Local\Temp\EAD2DE2.exe C:\Users\dom\AppData\Local\Temp\EAD2E.exe C:\Users\dom\AppData\Local\Temp\EAD2E11.exe C:\Users\dom\AppData\Local\Temp\EAD2EC.exe C:\Users\dom\AppData\Local\Temp\EAD2FC.exe C:\Users\dom\AppData\Local\Temp\EAD321B.exe C:\Users\dom\AppData\Local\Temp\EAD344D.exe C:\Users\dom\AppData\Local\Temp\EAD379E.exe C:\Users\dom\AppData\Local\Temp\EAD383E.exe C:\Users\dom\AppData\Local\Temp\EAD386D.exe C:\Users\dom\AppData\Local\Temp\EAD3A8.exe C:\Users\dom\AppData\Local\Temp\EAD3ACE.exe C:\Users\dom\AppData\Local\Temp\EAD3B4A.exe C:\Users\dom\AppData\Local\Temp\EAD3D7C.exe C:\Users\dom\AppData\Local\Temp\EAD3E48.exe C:\Users\dom\AppData\Local\Temp\EAD3E95.exe C:\Users\dom\AppData\Local\Temp\EAD4137.exe C:\Users\dom\AppData\Local\Temp\EAD4172.exe C:\Users\dom\AppData\Local\Temp\EAD453D.exe C:\Users\dom\AppData\Local\Temp\EAD46B2.exe C:\Users\dom\AppData\Local\Temp\EAD4910.exe C:\Users\dom\AppData\Local\Temp\EAD4B03.exe C:\Users\dom\AppData\Local\Temp\EAD4D0.exe C:\Users\dom\AppData\Local\Temp\EAD4D7B.exe C:\Users\dom\AppData\Local\Temp\EAD4EAB.exe C:\Users\dom\AppData\Local\Temp\EAD509E.exe C:\Users\dom\AppData\Local\Temp\EAD50CE.exe C:\Users\dom\AppData\Local\Temp\EAD5340.exe C:\Users\dom\AppData\Local\Temp\EAD53D9.exe C:\Users\dom\AppData\Local\Temp\EAD56BC.exe C:\Users\dom\AppData\Local\Temp\EAD57A7.exe C:\Users\dom\AppData\Local\Temp\EAD57EE.exe C:\Users\dom\AppData\Local\Temp\EAD58B.exe C:\Users\dom\AppData\Local\Temp\EAD58E8.exe C:\Users\dom\AppData\Local\Temp\EAD5B39.exe C:\Users\dom\AppData\Local\Temp\EAD5C01.exe C:\Users\dom\AppData\Local\Temp\EAD6279.exe C:\Users\dom\AppData\Local\Temp\EAD64E9.exe C:\Users\dom\AppData\Local\Temp\EAD6759.exe C:\Users\dom\AppData\Local\Temp\EAD68A1.exe C:\Users\dom\AppData\Local\Temp\EAD68D0.exe C:\Users\dom\AppData\Local\Temp\EAD6A56.exe C:\Users\dom\AppData\Local\Temp\EAD6A75.exe C:\Users\dom\AppData\Local\Temp\EAD6B7E.exe C:\Users\dom\AppData\Local\Temp\EAD6B7F.exe C:\Users\dom\AppData\Local\Temp\EAD6B8E.exe C:\Users\dom\AppData\Local\Temp\EAD6C0A.exe C:\Users\dom\AppData\Local\Temp\EAD6C87.exe C:\Users\dom\AppData\Local\Temp\EAD6CA6.exe C:\Users\dom\AppData\Local\Temp\EAD6CA7.exe C:\Users\dom\AppData\Local\Temp\EAD6CB6.exe C:\Users\dom\AppData\Local\Temp\EAD6CF4.exe C:\Users\dom\AppData\Local\Temp\EAD6D62.exe C:\Users\dom\AppData\Local\Temp\EAD6DBF.exe C:\Users\dom\AppData\Local\Temp\EAD6DCF.exe C:\Users\dom\AppData\Local\Temp\EAD6DEE.exe C:\Users\dom\AppData\Local\Temp\EAD6DFE.exe C:\Users\dom\AppData\Local\Temp\EAD6E4C.exe C:\Users\dom\AppData\Local\Temp\EAD6E74.exe C:\Users\dom\AppData\Local\Temp\EAD6EB9.exe C:\Users\dom\AppData\Local\Temp\EAD6EBA.exe C:\Users\dom\AppData\Local\Temp\EAD6EC9.exe C:\Users\dom\AppData\Local\Temp\EAD6F45.exe C:\Users\dom\AppData\Local\Temp\EAD6FE1.exe C:\Users\dom\AppData\Local\Temp\EAD6FF1.exe C:\Users\dom\AppData\Local\Temp\EAD7000.exe C:\Users\dom\AppData\Local\Temp\EAD7001.exe C:\Users\dom\AppData\Local\Temp\EAD702F.exe C:\Users\dom\AppData\Local\Temp\EAD703F.exe C:\Users\dom\AppData\Local\Temp\EAD706E.exe C:\Users\dom\AppData\Local\Temp\EAD707D.exe C:\Users\dom\AppData\Local\Temp\EAD708D.exe C:\Users\dom\AppData\Local\Temp\EAD70AC.exe C:\Users\dom\AppData\Local\Temp\EAD70CB.exe C:\Users\dom\AppData\Local\Temp\EAD70FA.exe C:\Users\dom\AppData\Local\Temp\EAD712D.exe C:\Users\dom\AppData\Local\Temp\EAD7148.exe C:\Users\dom\AppData\Local\Temp\EAD7177.exe C:\Users\dom\AppData\Local\Temp\EAD71A6.exe C:\Users\dom\AppData\Local\Temp\EAD71B5.exe C:\Users\dom\AppData\Local\Temp\EAD7232.exe C:\Users\dom\AppData\Local\Temp\EAD7261.exe C:\Users\dom\AppData\Local\Temp\EAD7290.exe C:\Users\dom\AppData\Local\Temp\EAD72CE.exe C:\Users\dom\AppData\Local\Temp\EAD72ED.exe C:\Users\dom\AppData\Local\Temp\EAD72FD.exe C:\Users\dom\AppData\Local\Temp\EAD730C.exe C:\Users\dom\AppData\Local\Temp\EAD730D.exe C:\Users\dom\AppData\Local\Temp\EAD732C.exe C:\Users\dom\AppData\Local\Temp\EAD733B.exe C:\Users\dom\AppData\Local\Temp\EAD734B.exe C:\Users\dom\AppData\Local\Temp\EAD734C.exe C:\Users\dom\AppData\Local\Temp\EAD73A8.exe C:\Users\dom\AppData\Local\Temp\EAD73B8.exe C:\Users\dom\AppData\Local\Temp\EAD73D7.exe C:\Users\dom\AppData\Local\Temp\EAD73D8.exe C:\Users\dom\AppData\Local\Temp\EAD7416.exe C:\Users\dom\AppData\Local\Temp\EAD7417.exe C:\Users\dom\AppData\Local\Temp\EAD7444.exe C:\Users\dom\AppData\Local\Temp\EAD7445.exe C:\Users\dom\AppData\Local\Temp\EAD7446.exe C:\Users\dom\AppData\Local\Temp\EAD7454.exe C:\Users\dom\AppData\Local\Temp\EAD7464.exe C:\Users\dom\AppData\Local\Temp\EAD7465.exe C:\Users\dom\AppData\Local\Temp\EAD7473.exe C:\Users\dom\AppData\Local\Temp\EAD74A2.exe C:\Users\dom\AppData\Local\Temp\EAD74A3.exe C:\Users\dom\AppData\Local\Temp\EAD753E.exe C:\Users\dom\AppData\Local\Temp\EAD753F.exe C:\Users\dom\AppData\Local\Temp\EAD755D.exe C:\Users\dom\AppData\Local\Temp\EAD756D.exe C:\Users\dom\AppData\Local\Temp\EAD756E.exe C:\Users\dom\AppData\Local\Temp\EAD75AB.exe C:\Users\dom\AppData\Local\Temp\EAD75AE.exe C:\Users\dom\AppData\Local\Temp\EAD75BB.exe C:\Users\dom\AppData\Local\Temp\EAD75CA.exe C:\Users\dom\AppData\Local\Temp\EAD75DA.exe C:\Users\dom\AppData\Local\Temp\EAD7618.exe C:\Users\dom\AppData\Local\Temp\EAD7647.exe C:\Users\dom\AppData\Local\Temp\EAD7657.exe C:\Users\dom\AppData\Local\Temp\EAD7666.exe C:\Users\dom\AppData\Local\Temp\EAD7667.exe C:\Users\dom\AppData\Local\Temp\EAD7676.exe C:\Users\dom\AppData\Local\Temp\EAD7686.exe C:\Users\dom\AppData\Local\Temp\EAD76C4.exe C:\Users\dom\AppData\Local\Temp\EAD7712.exe C:\Users\dom\AppData\Local\Temp\EAD7750.exe C:\Users\dom\AppData\Local\Temp\EAD77CD.exe C:\Users\dom\AppData\Local\Temp\EAD77EC.exe C:\Users\dom\AppData\Local\Temp\EAD77ED.exe C:\Users\dom\AppData\Local\Temp\EAD77EE.exe C:\Users\dom\AppData\Local\Temp\EAD77FC.exe C:\Users\dom\AppData\Local\Temp\EAD77FD.exe C:\Users\dom\AppData\Local\Temp\EAD782B.exe C:\Users\dom\AppData\Local\Temp\EAD782C.exe C:\Users\dom\AppData\Local\Temp\EAD782D.exe C:\Users\dom\AppData\Local\Temp\EAD785A.exe C:\Users\dom\AppData\Local\Temp\EAD785B.exe C:\Users\dom\AppData\Local\Temp\EAD7879.exe C:\Users\dom\AppData\Local\Temp\EAD7888.exe C:\Users\dom\AppData\Local\Temp\EAD78B7.exe C:\Users\dom\AppData\Local\Temp\EAD78D6.exe C:\Users\dom\AppData\Local\Temp\EAD78F6.exe C:\Users\dom\AppData\Local\Temp\EAD7905.exe C:\Users\dom\AppData\Local\Temp\EAD7924.exe C:\Users\dom\AppData\Local\Temp\EAD7925.exe C:\Users\dom\AppData\Local\Temp\EAD7926.exe C:\Users\dom\AppData\Local\Temp\EAD7934.exe C:\Users\dom\AppData\Local\Temp\EAD7944.exe C:\Users\dom\AppData\Local\Temp\EAD7945.exe C:\Users\dom\AppData\Local\Temp\EAD7982.exe C:\Users\dom\AppData\Local\Temp\EAD7983.exe C:\Users\dom\AppData\Local\Temp\EAD7992.exe C:\Users\dom\AppData\Local\Temp\EAD79C0.exe C:\Users\dom\AppData\Local\Temp\EAD79D0.exe C:\Users\dom\AppData\Local\Temp\EAD79E0.exe C:\Users\dom\AppData\Local\Temp\EAD79E1.exe C:\Users\dom\AppData\Local\Temp\EAD79EF.exe C:\Users\dom\AppData\Local\Temp\EAD7A0F.exe C:\Users\dom\AppData\Local\Temp\EAD7A2E.exe C:\Users\dom\AppData\Local\Temp\EAD7A3D.exe C:\Users\dom\AppData\Local\Temp\EAD7A6C.exe C:\Users\dom\AppData\Local\Temp\EAD7A7C.exe C:\Users\dom\AppData\Local\Temp\EAD7A9B.exe C:\Users\dom\AppData\Local\Temp\EAD7AAB.exe C:\Users\dom\AppData\Local\Temp\EAD7AD9.exe C:\Users\dom\AppData\Local\Temp\EAD7AF9.exe C:\Users\dom\AppData\Local\Temp\EAD7B18.exe C:\Users\dom\AppData\Local\Temp\EAD7B37.exe C:\Users\dom\AppData\Local\Temp\EAD7B38.exe C:\Users\dom\AppData\Local\Temp\EAD7B56.exe C:\Users\dom\AppData\Local\Temp\EAD7B57.exe C:\Users\dom\AppData\Local\Temp\EAD7B66.exe C:\Users\dom\AppData\Local\Temp\EAD7B75.exe C:\Users\dom\AppData\Local\Temp\EAD7BC3.exe C:\Users\dom\AppData\Local\Temp\EAD7C02.exe C:\Users\dom\AppData\Local\Temp\EAD7C31.exe C:\Users\dom\AppData\Local\Temp\EAD7C5F.exe C:\Users\dom\AppData\Local\Temp\EAD7C7F.exe C:\Users\dom\AppData\Local\Temp\EAD7C8E.exe C:\Users\dom\AppData\Local\Temp\EAD7CCD.exe C:\Users\dom\AppData\Local\Temp\EAD7CCE.exe C:\Users\dom\AppData\Local\Temp\EAD7CCF.exe C:\Users\dom\AppData\Local\Temp\EAD7CEC.exe C:\Users\dom\AppData\Local\Temp\EAD7D49.exe C:\Users\dom\AppData\Local\Temp\EAD7D4A.exe C:\Users\dom\AppData\Local\Temp\EAD7D4B.exe C:\Users\dom\AppData\Local\Temp\EAD7D59.exe C:\Users\dom\AppData\Local\Temp\EAD7D5A.exe C:\Users\dom\AppData\Local\Temp\EAD7D88.exe C:\Users\dom\AppData\Local\Temp\EAD7D97.exe C:\Users\dom\AppData\Local\Temp\EAD7DA7.exe C:\Users\dom\AppData\Local\Temp\EAD7DB7.exe C:\Users\dom\AppData\Local\Temp\EAD7DC6.exe C:\Users\dom\AppData\Local\Temp\EAD7DC7.exe C:\Users\dom\AppData\Local\Temp\EAD7DE5.exe C:\Users\dom\AppData\Local\Temp\EAD7DF5.exe C:\Users\dom\AppData\Local\Temp\EAD7E14.exe C:\Users\dom\AppData\Local\Temp\EAD7E33.exe C:\Users\dom\AppData\Local\Temp\EAD7E81.exe C:\Users\dom\AppData\Local\Temp\EAD7E82.exe C:\Users\dom\AppData\Local\Temp\EAD7E91.exe C:\Users\dom\AppData\Local\Temp\EAD7EA1.exe C:\Users\dom\AppData\Local\Temp\EAD7EA2.exe C:\Users\dom\AppData\Local\Temp\EAD7EB0.exe C:\Users\dom\AppData\Local\Temp\EAD7EB1.exe C:\Users\dom\AppData\Local\Temp\EAD7EC.exe C:\Users\dom\AppData\Local\Temp\EAD7EC0.exe C:\Users\dom\AppData\Local\Temp\EAD7ECF.exe C:\Users\dom\AppData\Local\Temp\EAD7EEF.exe C:\Users\dom\AppData\Local\Temp\EAD7F0E.exe C:\Users\dom\AppData\Local\Temp\EAD7F0F.exe C:\Users\dom\AppData\Local\Temp\EAD7F3D.exe C:\Users\dom\AppData\Local\Temp\EAD7F6B.exe C:\Users\dom\AppData\Local\Temp\EAD7F80.exe C:\Users\dom\AppData\Local\Temp\EAD7F8B.exe C:\Users\dom\AppData\Local\Temp\EAD7FC9.exe C:\Users\dom\AppData\Local\Temp\EAD7FD9.exe C:\Users\dom\AppData\Local\Temp\EAD7FF8.exe C:\Users\dom\AppData\Local\Temp\EAD8007.exe C:\Users\dom\AppData\Local\Temp\EAD8017.exe C:\Users\dom\AppData\Local\Temp\EAD8027.exe C:\Users\dom\AppData\Local\Temp\EAD8036.exe C:\Users\dom\AppData\Local\Temp\EAD8075.exe C:\Users\dom\AppData\Local\Temp\EAD80B3.exe C:\Users\dom\AppData\Local\Temp\EAD80E2.exe C:\Users\dom\AppData\Local\Temp\EAD80E3.exe C:\Users\dom\AppData\Local\Temp\EAD8101.exe C:\Users\dom\AppData\Local\Temp\EAD8120.exe C:\Users\dom\AppData\Local\Temp\EAD8121.exe C:\Users\dom\AppData\Local\Temp\EAD8122.exe C:\Users\dom\AppData\Local\Temp\EAD814A.exe C:\Users\dom\AppData\Local\Temp\EAD815F.exe C:\Users\dom\AppData\Local\Temp\EAD81EB.exe C:\Users\dom\AppData\Local\Temp\EAD820A.exe C:\Users\dom\AppData\Local\Temp\EAD821A.exe C:\Users\dom\AppData\Local\Temp\EAD8229.exe C:\Users\dom\AppData\Local\Temp\EAD8239.exe C:\Users\dom\AppData\Local\Temp\EAD823A.exe C:\Users\dom\AppData\Local\Temp\EAD8249.exe C:\Users\dom\AppData\Local\Temp\EAD8258.exe C:\Users\dom\AppData\Local\Temp\EAD8287.exe C:\Users\dom\AppData\Local\Temp\EAD8297.exe C:\Users\dom\AppData\Local\Temp\EAD82A6.exe C:\Users\dom\AppData\Local\Temp\EAD82A7.exe C:\Users\dom\AppData\Local\Temp\EAD82B6.exe C:\Users\dom\AppData\Local\Temp\EAD82C5.exe C:\Users\dom\AppData\Local\Temp\EAD82E5.exe C:\Users\dom\AppData\Local\Temp\EAD82E6.exe C:\Users\dom\AppData\Local\Temp\EAD8323.exe C:\Users\dom\AppData\Local\Temp\EAD8333.exe C:\Users\dom\AppData\Local\Temp\EAD8342.exe C:\Users\dom\AppData\Local\Temp\EAD8343.exe C:\Users\dom\AppData\Local\Temp\EAD8361.exe C:\Users\dom\AppData\Local\Temp\EAD8371.exe C:\Users\dom\AppData\Local\Temp\EAD8372.exe C:\Users\dom\AppData\Local\Temp\EAD8373.exe C:\Users\dom\AppData\Local\Temp\EAD8390.exe C:\Users\dom\AppData\Local\Temp\EAD83AF.exe C:\Users\dom\AppData\Local\Temp\EAD83FD.exe C:\Users\dom\AppData\Local\Temp\EAD841D.exe C:\Users\dom\AppData\Local\Temp\EAD841E.exe C:\Users\dom\AppData\Local\Temp\EAD844B.exe C:\Users\dom\AppData\Local\Temp\EAD844C.exe C:\Users\dom\AppData\Local\Temp\EAD848A.exe C:\Users\dom\AppData\Local\Temp\EAD8499.exe C:\Users\dom\AppData\Local\Temp\EAD849A.exe C:\Users\dom\AppData\Local\Temp\EAD84C8.exe C:\Users\dom\AppData\Local\Temp\EAD8526.exe C:\Users\dom\AppData\Local\Temp\EAD8535.exe C:\Users\dom\AppData\Local\Temp\EAD8545.exe C:\Users\dom\AppData\Local\Temp\EAD85A3.exe C:\Users\dom\AppData\Local\Temp\EAD85A4.exe C:\Users\dom\AppData\Local\Temp\EAD85C2.exe C:\Users\dom\AppData\Local\Temp\EAD85D1.exe C:\Users\dom\AppData\Local\Temp\EAD85D2.exe C:\Users\dom\AppData\Local\Temp\EAD862F.exe C:\Users\dom\AppData\Local\Temp\EAD868D.exe C:\Users\dom\AppData\Local\Temp\EAD86AC.exe C:\Users\dom\AppData\Local\Temp\EAD86BB.exe C:\Users\dom\AppData\Local\Temp\EAD86FA.exe C:\Users\dom\AppData\Local\Temp\EAD8796.exe C:\Users\dom\AppData\Local\Temp\EAD8813.exe C:\Users\dom\AppData\Local\Temp\EAD8814.exe C:\Users\dom\AppData\Local\Temp\EAD8851.exe C:\Users\dom\AppData\Local\Temp\EAD8870.exe C:\Users\dom\AppData\Local\Temp\EAD888.exe C:\Users\dom\AppData\Local\Temp\EAD889F.exe C:\Users\dom\AppData\Local\Temp\EAD88A0.exe C:\Users\dom\AppData\Local\Temp\EAD88A1.exe C:\Users\dom\AppData\Local\Temp\EAD88AF.exe C:\Users\dom\AppData\Local\Temp\EAD88CE.exe C:\Users\dom\AppData\Local\Temp\EAD88CF.exe C:\Users\dom\AppData\Local\Temp\EAD88DD.exe C:\Users\dom\AppData\Local\Temp\EAD891C.exe C:\Users\dom\AppData\Local\Temp\EAD893B.exe C:\Users\dom\AppData\Local\Temp\EAD894B.exe C:\Users\dom\AppData\Local\Temp\EAD8999.exe C:\Users\dom\AppData\Local\Temp\EAD89B8.exe C:\Users\dom\AppData\Local\Temp\EAD89B9.exe C:\Users\dom\AppData\Local\Temp\EAD89D7.exe C:\Users\dom\AppData\Local\Temp\EAD8A54.exe C:\Users\dom\AppData\Local\Temp\EAD8A63.exe C:\Users\dom\AppData\Local\Temp\EAD8AA2.exe C:\Users\dom\AppData\Local\Temp\EAD8AC1.exe C:\Users\dom\AppData\Local\Temp\EAD8AD1.exe C:\Users\dom\AppData\Local\Temp\EAD8AF0.exe C:\Users\dom\AppData\Local\Temp\EAD8B0F.exe C:\Users\dom\AppData\Local\Temp\EAD8B1F.exe C:\Users\dom\AppData\Local\Temp\EAD8BAB.exe C:\Users\dom\AppData\Local\Temp\EAD8BF9.exe C:\Users\dom\AppData\Local\Temp\EAD8C28.exe C:\Users\dom\AppData\Local\Temp\EAD8CD3.exe C:\Users\dom\AppData\Local\Temp\EAD8D6F.exe C:\Users\dom\AppData\Local\Temp\EAD8D9E.exe C:\Users\dom\AppData\Local\Temp\EAD8D9F.exe C:\Users\dom\AppData\Local\Temp\EAD8DBD.exe C:\Users\dom\AppData\Local\Temp\EAD8DFC.exe C:\Users\dom\AppData\Local\Temp\EAD8E1.exe C:\Users\dom\AppData\Local\Temp\EAD8E1B.exe C:\Users\dom\AppData\Local\Temp\EAD8E69.exe C:\Users\dom\AppData\Local\Temp\EAD8ED6.exe C:\Users\dom\AppData\Local\Temp\EAD8F15.exe C:\Users\dom\AppData\Local\Temp\EAD8F24.exe C:\Users\dom\AppData\Local\Temp\EAD8F34.exe C:\Users\dom\AppData\Local\Temp\EAD8F43.exe C:\Users\dom\AppData\Local\Temp\EAD8FB1.exe C:\Users\dom\AppData\Local\Temp\EAD8FFF.exe C:\Users\dom\AppData\Local\Temp\EAD9000.exe C:\Users\dom\AppData\Local\Temp\EAD903D.exe C:\Users\dom\AppData\Local\Temp\EAD9185.exe C:\Users\dom\AppData\Local\Temp\EAD91D3.exe C:\Users\dom\AppData\Local\Temp\EAD91D4.exe C:\Users\dom\AppData\Local\Temp\EAD9230.exe C:\Users\dom\AppData\Local\Temp\EAD924.exe C:\Users\dom\AppData\Local\Temp\EAD9240.exe C:\Users\dom\AppData\Local\Temp\EAD928E.exe C:\Users\dom\AppData\Local\Temp\EAD9378.exe C:\Users\dom\AppData\Local\Temp\EAD9380.exe C:\Users\dom\AppData\Local\Temp\EAD93A7.exe C:\Users\dom\AppData\Local\Temp\EAD9404.exe C:\Users\dom\AppData\Local\Temp\EAD94C4.exe C:\Users\dom\AppData\Local\Temp\EAD94EE.exe C:\Users\dom\AppData\Local\Temp\EAD952D.exe C:\Users\dom\AppData\Local\Temp\EAD953C.exe C:\Users\dom\AppData\Local\Temp\EAD95D.exe C:\Users\dom\AppData\Local\Temp\EAD95D8.exe C:\Users\dom\AppData\Local\Temp\EAD9684.exe C:\Users\dom\AppData\Local\Temp\EAD96C2.exe C:\Users\dom\AppData\Local\Temp\EAD974F.exe C:\Users\dom\AppData\Local\Temp\EAD978D.exe C:\Users\dom\AppData\Local\Temp\EAD9819.exe C:\Users\dom\AppData\Local\Temp\EAD9867.exe C:\Users\dom\AppData\Local\Temp\EAD9868.exe C:\Users\dom\AppData\Local\Temp\EAD98D5.exe C:\Users\dom\AppData\Local\Temp\EAD991E.exe C:\Users\dom\AppData\Local\Temp\EAD9942.exe C:\Users\dom\AppData\Local\Temp\EAD99D2.exe C:\Users\dom\AppData\Local\Temp\EAD9B06.exe C:\Users\dom\AppData\Local\Temp\EAD9B16.exe C:\Users\dom\AppData\Local\Temp\EAD9BF0.exe C:\Users\dom\AppData\Local\Temp\EAD9C3E.exe C:\Users\dom\AppData\Local\Temp\EAD9D86.exe C:\Users\dom\AppData\Local\Temp\EAD9E22.exe C:\Users\dom\AppData\Local\Temp\EAD9E9F.exe C:\Users\dom\AppData\Local\Temp\EADA005.exe C:\Users\dom\AppData\Local\Temp\EADA015.exe C:\Users\dom\AppData\Local\Temp\EADA0A1.exe C:\Users\dom\AppData\Local\Temp\EADA0EF.exe C:\Users\dom\AppData\Local\Temp\EADA1F9.exe C:\Users\dom\AppData\Local\Temp\EADA237.exe C:\Users\dom\AppData\Local\Temp\EADA247.exe C:\Users\dom\AppData\Local\Temp\EADA266.exe C:\Users\dom\AppData\Local\Temp\EADA35F.exe C:\Users\dom\AppData\Local\Temp\EADA3AD.exe C:\Users\dom\AppData\Local\Temp\EADA433.exe C:\Users\dom\AppData\Local\Temp\EADA43A.exe C:\Users\dom\AppData\Local\Temp\EADA497.exe C:\Users\dom\AppData\Local\Temp\EADA4A7.exe C:\Users\dom\AppData\Local\Temp\EADA62D.exe C:\Users\dom\AppData\Local\Temp\EADA67B.exe C:\Users\dom\AppData\Local\Temp\EADA67E.exe C:\Users\dom\AppData\Local\Temp\EADA746.exe C:\Users\dom\AppData\Local\Temp\EADA755.exe C:\Users\dom\AppData\Local\Temp\EADA85F.exe C:\Users\dom\AppData\Local\Temp\EADA86E.exe C:\Users\dom\AppData\Local\Temp\EADA8A.exe C:\Users\dom\AppData\Local\Temp\EADA997.exe C:\Users\dom\AppData\Local\Temp\EADA9B6.exe C:\Users\dom\AppData\Local\Temp\EADAA04.exe C:\Users\dom\AppData\Local\Temp\EADAA33.exe C:\Users\dom\AppData\Local\Temp\EADAB3C.exe C:\Users\dom\AppData\Local\Temp\EADAB5B.exe C:\Users\dom\AppData\Local\Temp\EADAC07.exe C:\Users\dom\AppData\Local\Temp\EADAC64.exe C:\Users\dom\AppData\Local\Temp\EADAC83.exe C:\Users\dom\AppData\Local\Temp\EADAC9B.exe C:\Users\dom\AppData\Local\Temp\EADACB2.exe C:\Users\dom\AppData\Local\Temp\EADAD1F.exe C:\Users\dom\AppData\Local\Temp\EADAD2F.exe C:\Users\dom\AppData\Local\Temp\EADAD4E.exe C:\Users\dom\AppData\Local\Temp\EADADBB.exe C:\Users\dom\AppData\Local\Temp\EADADDB.exe C:\Users\dom\AppData\Local\Temp\EADAEE4.exe C:\Users\dom\AppData\Local\Temp\EADAF8.exe C:\Users\dom\AppData\Local\Temp\EADAFB2.exe C:\Users\dom\AppData\Local\Temp\EADAFBE.exe C:\Users\dom\AppData\Local\Temp\EADB089.exe C:\Users\dom\AppData\Local\Temp\EADB092.exe C:\Users\dom\AppData\Local\Temp\EADB0A8.exe C:\Users\dom\AppData\Local\Temp\EADB0D7.exe C:\Users\dom\AppData\Local\Temp\EADB106.exe C:\Users\dom\AppData\Local\Temp\EADB1B1.exe C:\Users\dom\AppData\Local\Temp\EADB1D1.exe C:\Users\dom\AppData\Local\Temp\EADB22E.exe C:\Users\dom\AppData\Local\Temp\EADB24D.exe C:\Users\dom\AppData\Local\Temp\EADB27C.exe C:\Users\dom\AppData\Local\Temp\EADB28C.exe C:\Users\dom\AppData\Local\Temp\EADB328.exe C:\Users\dom\AppData\Local\Temp\EADB337.exe C:\Users\dom\AppData\Local\Temp\EADB347.exe C:\Users\dom\AppData\Local\Temp\EADB3A5.exe C:\Users\dom\AppData\Local\Temp\EADB46F.exe C:\Users\dom\AppData\Local\Temp\EADB49E.exe C:\Users\dom\AppData\Local\Temp\EADB4CD.exe C:\Users\dom\AppData\Local\Temp\EADB569.exe C:\Users\dom\AppData\Local\Temp\EADB5B7.exe C:\Users\dom\AppData\Local\Temp\EADB624.exe C:\Users\dom\AppData\Local\Temp\EADB625.exe C:\Users\dom\AppData\Local\Temp\EADB71E.exe C:\Users\dom\AppData\Local\Temp\EADB762.exe C:\Users\dom\AppData\Local\Temp\EADB79B.exe C:\Users\dom\AppData\Local\Temp\EADB7F8.exe C:\Users\dom\AppData\Local\Temp\EADB856.exe C:\Users\dom\AppData\Local\Temp\EADB901.exe C:\Users\dom\AppData\Local\Temp\EADB98E.exe C:\Users\dom\AppData\Local\Temp\EADB9DC.exe C:\Users\dom\AppData\Local\Temp\EADBA0B.exe C:\Users\dom\AppData\Local\Temp\EADBA87.exe C:\Users\dom\AppData\Local\Temp\EADBAF5.exe C:\Users\dom\AppData\Local\Temp\EADBB04.exe C:\Users\dom\AppData\Local\Temp\EADBB33.exe C:\Users\dom\AppData\Local\Temp\EADBC0D.exe C:\Users\dom\AppData\Local\Temp\EADBC2D.exe C:\Users\dom\AppData\Local\Temp\EADBC2E.exe C:\Users\dom\AppData\Local\Temp\EADBC7B.exe C:\Users\dom\AppData\Local\Temp\EADBCD8.exe C:\Users\dom\AppData\Local\Temp\EADBD87.exe C:\Users\dom\AppData\Local\Temp\EADBDB3.exe C:\Users\dom\AppData\Local\Temp\EADBE4F.exe C:\Users\dom\AppData\Local\Temp\EADBE6E.exe C:\Users\dom\AppData\Local\Temp\EADBE7D.exe C:\Users\dom\AppData\Local\Temp\EADBF0A.exe C:\Users\dom\AppData\Local\Temp\EADBF29.exe C:\Users\dom\AppData\Local\Temp\EADC013.exe C:\Users\dom\AppData\Local\Temp\EADC023.exe C:\Users\dom\AppData\Local\Temp\EADC071.exe C:\Users\dom\AppData\Local\Temp\EADC122.exe C:\Users\dom\AppData\Local\Temp\EADC15B.exe C:\Users\dom\AppData\Local\Temp\EADC16A.exe C:\Users\dom\AppData\Local\Temp\EADC17A.exe C:\Users\dom\AppData\Local\Temp\EADC254.exe C:\Users\dom\AppData\Local\Temp\EADC293.exe C:\Users\dom\AppData\Local\Temp\EADC38C.exe C:\Users\dom\AppData\Local\Temp\EADC3EA.exe C:\Users\dom\AppData\Local\Temp\EADC3F.exe C:\Users\dom\AppData\Local\Temp\EADC409.exe C:\Users\dom\AppData\Local\Temp\EADC419.exe C:\Users\dom\AppData\Local\Temp\EADC41A.exe C:\Users\dom\AppData\Local\Temp\EADC428.exe C:\Users\dom\AppData\Local\Temp\EADC467.exe C:\Users\dom\AppData\Local\Temp\EADC476.exe C:\Users\dom\AppData\Local\Temp\EADC4A5.exe C:\Users\dom\AppData\Local\Temp\EADC4E3.exe C:\Users\dom\AppData\Local\Temp\EADC4F3.exe C:\Users\dom\AppData\Local\Temp\EADC4F4.exe C:\Users\dom\AppData\Local\Temp\EADC4FA.exe C:\Users\dom\AppData\Local\Temp\EADC522.exe C:\Users\dom\AppData\Local\Temp\EADC560.exe C:\Users\dom\AppData\Local\Temp\EADC561.exe C:\Users\dom\AppData\Local\Temp\EADC56A.exe C:\Users\dom\AppData\Local\Temp\EADC5FC.exe C:\Users\dom\AppData\Local\Temp\EADC698.exe C:\Users\dom\AppData\Local\Temp\EADC6B7.exe C:\Users\dom\AppData\Local\Temp\EADC6F6.exe C:\Users\dom\AppData\Local\Temp\EADC715.exe C:\Users\dom\AppData\Local\Temp\EADC773.exe C:\Users\dom\AppData\Local\Temp\EADC774.exe C:\Users\dom\AppData\Local\Temp\EADC7FF.exe C:\Users\dom\AppData\Local\Temp\EADC82E.exe C:\Users\dom\AppData\Local\Temp\EADC83D.exe C:\Users\dom\AppData\Local\Temp\EADC937.exe C:\Users\dom\AppData\Local\Temp\EADC956.exe C:\Users\dom\AppData\Local\Temp\EADCA02.exe C:\Users\dom\AppData\Local\Temp\EADCA03.exe C:\Users\dom\AppData\Local\Temp\EADCA6F.exe C:\Users\dom\AppData\Local\Temp\EADCABD.exe C:\Users\dom\AppData\Local\Temp\EADCAEC.exe C:\Users\dom\AppData\Local\Temp\EADCB2A.exe C:\Users\dom\AppData\Local\Temp\EADCC53.exe C:\Users\dom\AppData\Local\Temp\EADCC91.exe C:\Users\dom\AppData\Local\Temp\EADCF30.exe C:\Users\dom\AppData\Local\Temp\EADCF5F.exe C:\Users\dom\AppData\Local\Temp\EADD087.exe C:\Users\dom\AppData\Local\Temp\EADD0A6.exe C:\Users\dom\AppData\Local\Temp\EADD0D5.exe C:\Users\dom\AppData\Local\Temp\EADD0E5.exe C:\Users\dom\AppData\Local\Temp\EADD0F0.exe C:\Users\dom\AppData\Local\Temp\EADD190.exe C:\Users\dom\AppData\Local\Temp\EADD211.exe C:\Users\dom\AppData\Local\Temp\EADD28A.exe C:\Users\dom\AppData\Local\Temp\EADD39.exe C:\Users\dom\AppData\Local\Temp\EADD393.exe C:\Users\dom\AppData\Local\Temp\EADD3D1.exe C:\Users\dom\AppData\Local\Temp\EADD42F.exe C:\Users\dom\AppData\Local\Temp\EADD4DB.exe C:\Users\dom\AppData\Local\Temp\EADD59.exe C:\Users\dom\AppData\Local\Temp\EADD5D4.exe C:\Users\dom\AppData\Local\Temp\EADD5E4.exe C:\Users\dom\AppData\Local\Temp\EADD5E5.exe C:\Users\dom\AppData\Local\Temp\EADD613.exe C:\Users\dom\AppData\Local\Temp\EADD68F.exe C:\Users\dom\AppData\Local\Temp\EADD690.exe C:\Users\dom\AppData\Local\Temp\EADD69F.exe C:\Users\dom\AppData\Local\Temp\EADD7E7.exe C:\Users\dom\AppData\Local\Temp\EADD844.exe C:\Users\dom\AppData\Local\Temp\EADD91F.exe C:\Users\dom\AppData\Local\Temp\EADD94D.exe C:\Users\dom\AppData\Local\Temp\EADD98C.exe C:\Users\dom\AppData\Local\Temp\EADDA18.exe C:\Users\dom\AppData\Local\Temp\EADDA57.exe C:\Users\dom\AppData\Local\Temp\EADDA66.exe C:\Users\dom\AppData\Local\Temp\EADDB31.exe C:\Users\dom\AppData\Local\Temp\EADDB61.exe C:\Users\dom\AppData\Local\Temp\EADDBCD.exe C:\Users\dom\AppData\Local\Temp\EADDBFC.exe C:\Users\dom\AppData\Local\Temp\EADDC0B.exe C:\Users\dom\AppData\Local\Temp\EADDC3A.exe C:\Users\dom\AppData\Local\Temp\EADDC5.exe C:\Users\dom\AppData\Local\Temp\EADDCA7.exe C:\Users\dom\AppData\Local\Temp\EADDD53.exe C:\Users\dom\AppData\Local\Temp\EADDDC0.exe C:\Users\dom\AppData\Local\Temp\EADDDDF.exe C:\Users\dom\AppData\Local\Temp\EADDED9.exe C:\Users\dom\AppData\Local\Temp\EADDEE9.exe C:\Users\dom\AppData\Local\Temp\EADDF65.exe C:\Users\dom\AppData\Local\Temp\EADDFF2.exe C:\Users\dom\AppData\Local\Temp\EADE021.exe C:\Users\dom\AppData\Local\Temp\EADE030.exe C:\Users\dom\AppData\Local\Temp\EADE08E.exe C:\Users\dom\AppData\Local\Temp\EADE11A.exe C:\Users\dom\AppData\Local\Temp\EADE1B6.exe C:\Users\dom\AppData\Local\Temp\EADE262.exe C:\Users\dom\AppData\Local\Temp\EADE392.exe C:\Users\dom\AppData\Local\Temp\EADE39B.exe C:\Users\dom\AppData\Local\Temp\EADE455.exe C:\Users\dom\AppData\Local\Temp\EADE465.exe C:\Users\dom\AppData\Local\Temp\EADE4F1.exe C:\Users\dom\AppData\Local\Temp\EADE54F.exe C:\Users\dom\AppData\Local\Temp\EADE5EB.exe C:\Users\dom\AppData\Local\Temp\EADE687.exe C:\Users\dom\AppData\Local\Temp\EADE761.exe C:\Users\dom\AppData\Local\Temp\EADE79F.exe C:\Users\dom\AppData\Local\Temp\EADE7BF.exe C:\Users\dom\AppData\Local\Temp\EADE7ED.exe C:\Users\dom\AppData\Local\Temp\EADE86A.exe C:\Users\dom\AppData\Local\Temp\EADE8D7.exe C:\Users\dom\AppData\Local\Temp\EADE993.exe C:\Users\dom\AppData\Local\Temp\EADEAEA.exe C:\Users\dom\AppData\Local\Temp\EADEB38.exe C:\Users\dom\AppData\Local\Temp\EADEBF3.exe C:\Users\dom\AppData\Local\Temp\EADEBF4.exe C:\Users\dom\AppData\Local\Temp\EADEBF5.exe C:\Users\dom\AppData\Local\Temp\EADECAE.exe C:\Users\dom\AppData\Local\Temp\EADECED.exe C:\Users\dom\AppData\Local\Temp\EADED1B.exe C:\Users\dom\AppData\Local\Temp\EADEDE6.exe C:\Users\dom\AppData\Local\Temp\EADEDE7.exe C:\Users\dom\AppData\Local\Temp\EADEEE.exe C:\Users\dom\AppData\Local\Temp\EADEEFF.exe C:\Users\dom\AppData\Local\Temp\EADEF8B.exe C:\Users\dom\AppData\Local\Temp\EADEF8C.exe C:\Users\dom\AppData\Local\Temp\EADF0F2.exe C:\Users\dom\AppData\Local\Temp\EADF111.exe C:\Users\dom\AppData\Local\Temp\EADF353.exe C:\Users\dom\AppData\Local\Temp\EADF362.exe C:\Users\dom\AppData\Local\Temp\EADF3A1.exe C:\Users\dom\AppData\Local\Temp\EADF40E.exe C:\Users\dom\AppData\Local\Temp\EADF40F.exe C:\Users\dom\AppData\Local\Temp\EADF53D.exe C:\Users\dom\AppData\Local\Temp\EADF5D9.exe C:\Users\dom\AppData\Local\Temp\EADF5F2.exe C:\Users\dom\AppData\Local\Temp\EADF6DC.exe C:\Users\dom\AppData\Local\Temp\EADF833.exe C:\Users\dom\AppData\Local\Temp\EADF9D.exe C:\Users\dom\AppData\Local\Temp\EADF9E1.exe C:\Users\dom\AppData\Local\Temp\EADFA26.exe C:\Users\dom\AppData\Local\Temp\EADFAB6.exe C:\Users\dom\AppData\Local\Temp\EADFB6E.exe C:\Users\dom\AppData\Local\Temp\EADFD13.exe C:\Users\dom\AppData\Local\Temp\EADFD22.exe C:\Users\dom\AppData\Local\Temp\EADFD67.exe C:\Users\dom\AppData\Local\Temp\EADFD80.exe C:\Users\dom\AppData\Local\Temp\EADFE0C.exe C:\Users\dom\AppData\Local\Temp\EADFEDA.exe C:\Users\dom\AppData\Local\Temp\EAInstall.dll C:\Users\dom\AppData\Local\Temp\eauninstall.exe C:\Users\dom\AppData\Local\Temp\FastDownload.exe C:\Users\dom\AppData\Local\Temp\First15.exe C:\Users\dom\AppData\Local\Temp\FlashPlayerUpdate.exe C:\Users\dom\AppData\Local\Temp\FlashPlayerUpdate01.exe C:\Users\dom\AppData\Local\Temp\GameuxInstallHelper.dll C:\Users\dom\AppData\Local\Temp\gg10_upgr_to_11999_from_11790.exe C:\Users\dom\AppData\Local\Temp\gg10_upgr_to_12096_from_11790.exe C:\Users\dom\AppData\Local\Temp\htmlayout.dll C:\Users\dom\AppData\Local\Temp\i4jdel0.exe C:\Users\dom\AppData\Local\Temp\i4jdel1.exe C:\Users\dom\AppData\Local\Temp\ICReinstall_PDFWriterSetup.exe C:\Users\dom\AppData\Local\Temp\installerdll1486627.dll C:\Users\dom\AppData\Local\Temp\installerdll172427.dll C:\Users\dom\AppData\Local\Temp\installerdll176140.dll C:\Users\dom\AppData\Local\Temp\installerdll182209.dll C:\Users\dom\AppData\Local\Temp\installerdll188667.dll C:\Users\dom\AppData\Local\Temp\installerdll191304.dll C:\Users\dom\AppData\Local\Temp\installerdll192115.dll C:\Users\dom\AppData\Local\Temp\installerdll194455.dll C:\Users\dom\AppData\Local\Temp\installerdll195266.dll C:\Users\dom\AppData\Local\Temp\installerdll1991633.dll C:\Users\dom\AppData\Local\Temp\installerdll200632.dll C:\Users\dom\AppData\Local\Temp\installerdll200788.dll C:\Users\dom\AppData\Local\Temp\installerdll203378.dll C:\Users\dom\AppData\Local\Temp\installerdll209197.dll C:\Users\dom\AppData\Local\Temp\installerdll215328.dll C:\Users\dom\AppData\Local\Temp\installerdll215406.dll C:\Users\dom\AppData\Local\Temp\installerdll223908.dll C:\Users\dom\AppData\Local\Temp\installerdll228759.dll C:\Users\dom\AppData\Local\Temp\installerdll232316.dll C:\Users\dom\AppData\Local\Temp\installerdll235155.dll C:\Users\dom\AppData\Local\Temp\installerdll2392056.dll C:\Users\dom\AppData\Local\Temp\installerdll256886.dll C:\Users\dom\AppData\Local\Temp\installerdll277744.dll C:\Users\dom\AppData\Local\Temp\installerdll280255.dll C:\Users\dom\AppData\Local\Temp\installerdll286293.dll C:\Users\dom\AppData\Local\Temp\installerdll296557.dll C:\Users\dom\AppData\Local\Temp\installerdll301331.dll C:\Users\dom\AppData\Local\Temp\installerdll303593.dll C:\Users\dom\AppData\Local\Temp\installerdll305387.dll C:\Users\dom\AppData\Local\Temp\installerdll311315.dll C:\Users\dom\AppData\Local\Temp\installerdll326026.dll C:\Users\dom\AppData\Local\Temp\installerdll335464.dll C:\Users\dom\AppData\Local\Temp\installerdll337492.dll C:\Users\dom\AppData\Local\Temp\installerdll337913.dll C:\Users\dom\AppData\Local\Temp\installerdll340394.dll C:\Users\dom\AppData\Local\Temp\installerdll363825.dll C:\Users\dom\AppData\Local\Temp\installerdll367288.dll C:\Users\dom\AppData\Local\Temp\installerdll372592.dll C:\Users\dom\AppData\Local\Temp\installerdll373622.dll C:\Users\dom\AppData\Local\Temp\installerdll377397.dll C:\Users\dom\AppData\Local\Temp\installerdll3799575.dll C:\Users\dom\AppData\Local\Temp\installerdll395649.dll C:\Users\dom\AppData\Local\Temp\installerdll399705.dll C:\Users\dom\AppData\Local\Temp\installerdll406928.dll C:\Users\dom\AppData\Local\Temp\installerdll419143.dll C:\Users\dom\AppData\Local\Temp\installerdll495318.dll C:\Users\dom\AppData\Local\Temp\installerdll587780.dll C:\Users\dom\AppData\Local\Temp\iplC9BB.tmp.exe C:\Users\dom\AppData\Local\Temp\iplEB7.tmp.exe C:\Users\dom\AppData\Local\Temp\iplEF09.tmp.exe C:\Users\dom\AppData\Local\Temp\jre-6u26-windows-i586-iftw-rv.exe C:\Users\dom\AppData\Local\Temp\jre-6u32-windows-i586-iftw.exe C:\Users\dom\AppData\Local\Temp\jre-7u7-windows-i586-iftw.exe C:\Users\dom\AppData\Local\Temp\LOCKv2.34.exe C:\Users\dom\AppData\Local\Temp\LOTR The Return of the King tm_uninst.exe C:\Users\dom\AppData\Local\Temp\MachineIdCreator.exe C:\Users\dom\AppData\Local\Temp\mgsqlite3.dll C:\Users\dom\AppData\Local\Temp\nvSCPAPI.dll C:\Users\dom\AppData\Local\Temp\nvSCPAPISvr.exe C:\Users\dom\AppData\Local\Temp\nvStereoApiI.dll C:\Users\dom\AppData\Local\Temp\nvStInst.exe C:\Users\dom\AppData\Local\Temp\oi_{63BD0577-C174-45BC-B6FC-13FF56E29AC3}.exe C:\Users\dom\AppData\Local\Temp\ose00000.exe C:\Users\dom\AppData\Local\Temp\rotk_uninst.exe C:\Users\dom\AppData\Local\Temp\Shortcut_SweetImSetup.exe C:\Users\dom\AppData\Local\Temp\simbo.exe C:\Users\dom\AppData\Local\Temp\SIMEEIInstaller.exe C:\Users\dom\AppData\Local\Temp\SkypeSetup.exe C:\Users\dom\AppData\Local\Temp\SweetIESetup.exe C:\Users\dom\AppData\Local\Temp\SweetIMSetup.exe C:\Users\dom\AppData\Local\Temp\swt-win32-3349.dll C:\Users\dom\AppData\Local\Temp\swt-win32-3740.dll C:\Users\dom\AppData\Local\Temp\toolbar8068980.exe C:\Users\dom\AppData\Local\Temp\ToolbarInstaller.exe C:\Users\dom\AppData\Local\Temp\ubiE7B2.tmp.exe C:\Users\dom\AppData\Local\Temp\VP6Install.exe C:\Users\dom\AppData\Local\Temp\VP6VFW.dll C:\Users\dom\AppData\Local\Temp\wmpfirefoxplugin.exe C:\Users\dom\AppData\Local\Temp\_is12F6.exe C:\Users\dom\AppData\Local\Temp\_is1D6F.exe C:\Users\dom\AppData\Local\Temp\_is1FCF.exe C:\Users\dom\AppData\Local\Temp\_is2FBD.exe C:\Users\dom\AppData\Local\Temp\_is3100.exe C:\Users\dom\AppData\Local\Temp\_is3362.exe C:\Users\dom\AppData\Local\Temp\_is3458.exe C:\Users\dom\AppData\Local\Temp\_is37BC.exe C:\Users\dom\AppData\Local\Temp\_is3CCB.exe C:\Users\dom\AppData\Local\Temp\_is3DFA.exe C:\Users\dom\AppData\Local\Temp\_is3F16.exe C:\Users\dom\AppData\Local\Temp\_is4F7A.exe C:\Users\dom\AppData\Local\Temp\_is55A2.exe C:\Users\dom\AppData\Local\Temp\_is5816.exe C:\Users\dom\AppData\Local\Temp\_is5A76.exe C:\Users\dom\AppData\Local\Temp\_is5F00.exe C:\Users\dom\AppData\Local\Temp\_is6482.exe C:\Users\dom\AppData\Local\Temp\_is66B1.exe C:\Users\dom\AppData\Local\Temp\_is6B71.exe C:\Users\dom\AppData\Local\Temp\_is6D81.exe C:\Users\dom\AppData\Local\Temp\_is7227.exe C:\Users\dom\AppData\Local\Temp\_is733.exe C:\Users\dom\AppData\Local\Temp\_is788B.exe C:\Users\dom\AppData\Local\Temp\_is7CFF.exe C:\Users\dom\AppData\Local\Temp\_is8387.exe C:\Users\dom\AppData\Local\Temp\_is8CD.exe C:\Users\dom\AppData\Local\Temp\_is9031.exe C:\Users\dom\AppData\Local\Temp\_is937B.exe C:\Users\dom\AppData\Local\Temp\_is96C9.exe C:\Users\dom\AppData\Local\Temp\_isA508.exe C:\Users\dom\AppData\Local\Temp\_isA871.exe C:\Users\dom\AppData\Local\Temp\_isAFB7.exe C:\Users\dom\AppData\Local\Temp\_isB108.exe C:\Users\dom\AppData\Local\Temp\_isC0F2.exe C:\Users\dom\AppData\Local\Temp\_isC61E.exe C:\Users\dom\AppData\Local\Temp\_isCA37.exe C:\Users\dom\AppData\Local\Temp\_isCDF9.exe C:\Users\dom\AppData\Local\Temp\_isCF9D.exe C:\Users\dom\AppData\Local\Temp\_isD185.exe C:\Users\dom\AppData\Local\Temp\_isD1A7.exe C:\Users\dom\AppData\Local\Temp\_isE071.exe C:\Users\dom\AppData\Local\Temp\_isE13A.exe C:\Users\dom\AppData\Local\Temp\_isE13C.exe C:\Users\dom\AppData\Local\Temp\_isE34D.exe C:\Users\dom\AppData\Local\Temp\_isEE45.exe C:\Users\dom\AppData\Local\Temp\_isEFD0.exe C:\Users\dom\AppData\Local\Temp\_isF2D9.exe C:\Users\dom\AppData\Local\Temp\_isFA4D.exe C:\Users\dom\AppData\Local\Temp\{ITE_AWSetup}.exe C:\Users\dom\AppData\Local\Temp\{FFA96E72-2DD7-487F-A6D6-8EC2AA1AD82C}\ISSetup.dll C:\Users\dom\AppData\Local\Temp\{FFA96E72-2DD7-487F-A6D6-8EC2AA1AD82C}\_Setup.dll C:\Users\dom\AppData\Local\Temp\{F9BC3C61-7365-4C2E-9E34-464812B07C4B}\ISSetup.dll C:\Users\dom\AppData\Local\Temp\{F9BC3C61-7365-4C2E-9E34-464812B07C4B}\_Setup.dll C:\Users\dom\AppData\Local\Temp\{F7B9E565-233A-47C4-AD06-96B42D2B4979}\ISSetup.dll C:\Users\dom\AppData\Local\Temp\{F7B9E565-233A-47C4-AD06-96B42D2B4979}\_Setup.dll C:\Users\dom\AppData\Local\Temp\{F23B6E6B-BEE3-4577-81E6-A0A052063F82}\ISSetup.dll C:\Users\dom\AppData\Local\Temp\{F23B6E6B-BEE3-4577-81E6-A0A052063F82}\_Setup.dll C:\Users\dom\AppData\Local\Temp\{F1B6275E-D2A2-46C9-87AC-140E6F7E2C6C}\ISSetup.dll C:\Users\dom\AppData\Local\Temp\{F1B6275E-D2A2-46C9-87AC-140E6F7E2C6C}\_Setup.dll C:\Users\dom\AppData\Local\Temp\{E97B773E-7286-4652-BD99-647511E0E151}\ISSetup.dll C:\Users\dom\AppData\Local\Temp\{E97B773E-7286-4652-BD99-647511E0E151}\_Setup.dll C:\Users\dom\AppData\Local\Temp\{E85F898C-CB46-4FE9-8356-ED23C1558DDB}\ISSetup.dll C:\Users\dom\AppData\Local\Temp\{E85F898C-CB46-4FE9-8356-ED23C1558DDB}\_Setup.dll C:\Users\dom\AppData\Local\Temp\{E678D072-D76A-40A9-AD86-D7A6D6F8A5EB}\ISSetup.dll C:\Users\dom\AppData\Local\Temp\{E678D072-D76A-40A9-AD86-D7A6D6F8A5EB}\_Setup.dll C:\Users\dom\AppData\Local\Temp\{DD89FD14-05E2-4DA0-ADA2-56E780C866C0}\dotnetinstaller.exe C:\Users\dom\AppData\Local\Temp\{DD89FD14-05E2-4DA0-ADA2-56E780C866C0}\{02B244A2-7F6A-42E8-A36F-8C385D7A1625}\DrvSetup.exe C:\Users\dom\AppData\Local\Temp\{DD89FD14-05E2-4DA0-ADA2-56E780C866C0}\{02B244A2-7F6A-42E8-A36F-8C385D7A1625}\DrvSetup_x64.exe C:\Users\dom\AppData\Local\Temp\{DD89FD14-05E2-4DA0-ADA2-56E780C866C0}\{02B244A2-7F6A-42E8-A36F-8C385D7A1625}\isrt.dll C:\Users\dom\AppData\Local\Temp\{DD89FD14-05E2-4DA0-ADA2-56E780C866C0}\{02B244A2-7F6A-42E8-A36F-8C385D7A1625}\vcredist_x86.exe C:\Users\dom\AppData\Local\Temp\{DD89FD14-05E2-4DA0-ADA2-56E780C866C0}\{02B244A2-7F6A-42E8-A36F-8C385D7A1625}\xfire_installer.exe C:\Users\dom\AppData\Local\Temp\{DD89FD14-05E2-4DA0-ADA2-56E780C866C0}\{02B244A2-7F6A-42E8-A36F-8C385D7A1625}\_IsRes.dll C:\Users\dom\AppData\Local\Temp\{DD89FD14-05E2-4DA0-ADA2-56E780C866C0}\{02B244A2-7F6A-42E8-A36F-8C385D7A1625}\_ISUser.dll C:\Users\dom\AppData\Local\Temp\{D08F2530-CF32-45E7-912F-AF238E6C0B29}\ISSetup.dll C:\Users\dom\AppData\Local\Temp\{D08F2530-CF32-45E7-912F-AF238E6C0B29}\_Setup.dll C:\Users\dom\AppData\Local\Temp\{CE415A22-CB23-4120-9F7E-D845AEA0D43E}\ISSetup.dll C:\Users\dom\AppData\Local\Temp\{CE415A22-CB23-4120-9F7E-D845AEA0D43E}\_Setup.dll C:\Users\dom\AppData\Local\Temp\{CE2E263A-3EDC-4D80-B7B1-E29F03152FA4}\ISSetup.dll C:\Users\dom\AppData\Local\Temp\{CE2E263A-3EDC-4D80-B7B1-E29F03152FA4}\_Setup.dll C:\Users\dom\AppData\Local\Temp\{CCB58046-2102-472A-8BF6-A7B4A4C8FD0B}\setup.exe C:\Users\dom\AppData\Local\Temp\{C7762896-2047-4109-8EF3-9671E7A14FC0}\{8CD7AC19-8199-47C9-ABB7-C67995BB0167}\Common.dll C:\Users\dom\AppData\Local\Temp\{C7762896-2047-4109-8EF3-9671E7A14FC0}\{8CD7AC19-8199-47C9-ABB7-C67995BB0167}\CTCabEx.DLL C:\Users\dom\AppData\Local\Temp\{C7762896-2047-4109-8EF3-9671E7A14FC0}\{8CD7AC19-8199-47C9-ABB7-C67995BB0167}\InstHelp.exe C:\Users\dom\AppData\Local\Temp\{C7762896-2047-4109-8EF3-9671E7A14FC0}\{8CD7AC19-8199-47C9-ABB7-C67995BB0167}\nlsdl.x86.exe C:\Users\dom\AppData\Local\Temp\{C7762896-2047-4109-8EF3-9671E7A14FC0}\{8CD7AC19-8199-47C9-ABB7-C67995BB0167}\RegEdit.dll C:\Users\dom\AppData\Local\Temp\{C7762896-2047-4109-8EF3-9671E7A14FC0}\{8CD7AC19-8199-47C9-ABB7-C67995BB0167}\RTFUtil.dll C:\Users\dom\AppData\Local\Temp\{C7762896-2047-4109-8EF3-9671E7A14FC0}\{8CD7AC19-8199-47C9-ABB7-C67995BB0167}\_ISUSER.DLL C:\Users\dom\AppData\Local\Temp\{C7762896-2047-4109-8EF3-9671E7A14FC0}\{8CD7AC19-8199-47C9-ABB7-C67995BB0167}\_setup.dll C:\Users\dom\AppData\Local\Temp\{C7762896-2047-4109-8EF3-9671E7A14FC0}\{8CD7AC19-8199-47C9-ABB7-C67995BB0167}\MUI\TChinese\_IsUser.dll C:\Users\dom\AppData\Local\Temp\{C7762896-2047-4109-8EF3-9671E7A14FC0}\{8CD7AC19-8199-47C9-ABB7-C67995BB0167}\MUI\Spanish\_IsUser.dll C:\Users\dom\AppData\Local\Temp\{C7762896-2047-4109-8EF3-9671E7A14FC0}\{8CD7AC19-8199-47C9-ABB7-C67995BB0167}\MUI\Russian\_IsUser.dll C:\Users\dom\AppData\Local\Temp\{C7762896-2047-4109-8EF3-9671E7A14FC0}\{8CD7AC19-8199-47C9-ABB7-C67995BB0167}\MUI\Polish\_IsUser.dll C:\Users\dom\AppData\Local\Temp\{C7762896-2047-4109-8EF3-9671E7A14FC0}\{8CD7AC19-8199-47C9-ABB7-C67995BB0167}\MUI\PChinese\_IsUser.dll C:\Users\dom\AppData\Local\Temp\{C7762896-2047-4109-8EF3-9671E7A14FC0}\{8CD7AC19-8199-47C9-ABB7-C67995BB0167}\MUI\Korean\_IsUser.dll C:\Users\dom\AppData\Local\Temp\{C7762896-2047-4109-8EF3-9671E7A14FC0}\{8CD7AC19-8199-47C9-ABB7-C67995BB0167}\MUI\Japanese\_IsUser.dll C:\Users\dom\AppData\Local\Temp\{C7762896-2047-4109-8EF3-9671E7A14FC0}\{8CD7AC19-8199-47C9-ABB7-C67995BB0167}\MUI\Italian\_IsUser.dll C:\Users\dom\AppData\Local\Temp\{C7762896-2047-4109-8EF3-9671E7A14FC0}\{8CD7AC19-8199-47C9-ABB7-C67995BB0167}\MUI\German\_IsUser.dll C:\Users\dom\AppData\Local\Temp\{C7762896-2047-4109-8EF3-9671E7A14FC0}\{8CD7AC19-8199-47C9-ABB7-C67995BB0167}\MUI\French\_IsUser.dll C:\Users\dom\AppData\Local\Temp\{C7762896-2047-4109-8EF3-9671E7A14FC0}\{8CD7AC19-8199-47C9-ABB7-C67995BB0167}\MUI\English\_IsUser.dll C:\Users\dom\AppData\Local\Temp\{C7762896-2047-4109-8EF3-9671E7A14FC0}\{8CD7AC19-8199-47C9-ABB7-C67995BB0167}\MUI\Dutch\_IsUser.dll C:\Users\dom\AppData\Local\Temp\{C7762896-2047-4109-8EF3-9671E7A14FC0}\{8CD7AC19-8199-47C9-ABB7-C67995BB0167}\MUI\Brazil\_IsUser.dll C:\Users\dom\AppData\Local\Temp\{C4B6B2C7-670C-4D67-A4B0-44D35FB90C2B}\_Setup.dll C:\Users\dom\AppData\Local\Temp\{C0669FB3-780A-487E-A00E-9C1AF8375A96}\ISSetup.dll C:\Users\dom\AppData\Local\Temp\{C0669FB3-780A-487E-A00E-9C1AF8375A96}\_Setup.dll C:\Users\dom\AppData\Local\Temp\{B08E314F-6AF4-43AC-9447-39EF8ADC6EFF}\ISSetup.dll C:\Users\dom\AppData\Local\Temp\{B08E314F-6AF4-43AC-9447-39EF8ADC6EFF}\_Setup.dll C:\Users\dom\AppData\Local\Temp\{AF06E912-5E0E-4CC1-B1CF-BF4EA97723ED}\ISSetup.dll C:\Users\dom\AppData\Local\Temp\{AF06E912-5E0E-4CC1-B1CF-BF4EA97723ED}\_Setup.dll C:\Users\dom\AppData\Local\Temp\{AB991C55-0239-4074-9C4F-4D54BD932CB7}\ISSetup.dll C:\Users\dom\AppData\Local\Temp\{AB991C55-0239-4074-9C4F-4D54BD932CB7}\_Setup.dll C:\Users\dom\AppData\Local\Temp\{AB615709-9C26-4A4B-8583-9622499957FC}\ISSetup.dll C:\Users\dom\AppData\Local\Temp\{AB615709-9C26-4A4B-8583-9622499957FC}\_Setup.dll C:\Users\dom\AppData\Local\Temp\{AB561C4B-348D-4D43-8FF1-E1AB7D9F7068}\GoogleCrashHandler.exe C:\Users\dom\AppData\Local\Temp\{AB561C4B-348D-4D43-8FF1-E1AB7D9F7068}\GoogleUpdate.exe C:\Users\dom\AppData\Local\Temp\{AB561C4B-348D-4D43-8FF1-E1AB7D9F7068}\goopdate.dll C:\Users\dom\AppData\Local\Temp\{AB561C4B-348D-4D43-8FF1-E1AB7D9F7068}\GoopdateBho.dll C:\Users\dom\AppData\Local\Temp\{AB561C4B-348D-4D43-8FF1-E1AB7D9F7068}\goopdateres_ar.dll C:\Users\dom\AppData\Local\Temp\{AB561C4B-348D-4D43-8FF1-E1AB7D9F7068}\goopdateres_bg.dll C:\Users\dom\AppData\Local\Temp\{AB561C4B-348D-4D43-8FF1-E1AB7D9F7068}\goopdateres_bn.dll C:\Users\dom\AppData\Local\Temp\{AB561C4B-348D-4D43-8FF1-E1AB7D9F7068}\goopdateres_ca.dll C:\Users\dom\AppData\Local\Temp\{AB561C4B-348D-4D43-8FF1-E1AB7D9F7068}\goopdateres_cs.dll C:\Users\dom\AppData\Local\Temp\{AB561C4B-348D-4D43-8FF1-E1AB7D9F7068}\goopdateres_da.dll C:\Users\dom\AppData\Local\Temp\{AB561C4B-348D-4D43-8FF1-E1AB7D9F7068}\goopdateres_de.dll C:\Users\dom\AppData\Local\Temp\{AB561C4B-348D-4D43-8FF1-E1AB7D9F7068}\goopdateres_el.dll C:\Users\dom\AppData\Local\Temp\{AB561C4B-348D-4D43-8FF1-E1AB7D9F7068}\goopdateres_en-GB.dll C:\Users\dom\AppData\Local\Temp\{AB561C4B-348D-4D43-8FF1-E1AB7D9F7068}\goopdateres_en.dll C:\Users\dom\AppData\Local\Temp\{AB561C4B-348D-4D43-8FF1-E1AB7D9F7068}\goopdateres_es-419.dll C:\Users\dom\AppData\Local\Temp\{AB561C4B-348D-4D43-8FF1-E1AB7D9F7068}\goopdateres_es.dll C:\Users\dom\AppData\Local\Temp\{AB561C4B-348D-4D43-8FF1-E1AB7D9F7068}\goopdateres_et.dll C:\Users\dom\AppData\Local\Temp\{AB561C4B-348D-4D43-8FF1-E1AB7D9F7068}\goopdateres_fa.dll C:\Users\dom\AppData\Local\Temp\{AB561C4B-348D-4D43-8FF1-E1AB7D9F7068}\goopdateres_fi.dll C:\Users\dom\AppData\Local\Temp\{AB561C4B-348D-4D43-8FF1-E1AB7D9F7068}\goopdateres_fil.dll C:\Users\dom\AppData\Local\Temp\{AB561C4B-348D-4D43-8FF1-E1AB7D9F7068}\goopdateres_fr.dll C:\Users\dom\AppData\Local\Temp\{AB561C4B-348D-4D43-8FF1-E1AB7D9F7068}\goopdateres_gu.dll C:\Users\dom\AppData\Local\Temp\{AB561C4B-348D-4D43-8FF1-E1AB7D9F7068}\goopdateres_hi.dll C:\Users\dom\AppData\Local\Temp\{AB561C4B-348D-4D43-8FF1-E1AB7D9F7068}\goopdateres_hr.dll C:\Users\dom\AppData\Local\Temp\{AB561C4B-348D-4D43-8FF1-E1AB7D9F7068}\goopdateres_hu.dll C:\Users\dom\AppData\Local\Temp\{AB561C4B-348D-4D43-8FF1-E1AB7D9F7068}\goopdateres_id.dll C:\Users\dom\AppData\Local\Temp\{AB561C4B-348D-4D43-8FF1-E1AB7D9F7068}\goopdateres_is.dll C:\Users\dom\AppData\Local\Temp\{AB561C4B-348D-4D43-8FF1-E1AB7D9F7068}\goopdateres_it.dll C:\Users\dom\AppData\Local\Temp\{AB561C4B-348D-4D43-8FF1-E1AB7D9F7068}\goopdateres_iw.dll C:\Users\dom\AppData\Local\Temp\{AB561C4B-348D-4D43-8FF1-E1AB7D9F7068}\goopdateres_ja.dll C:\Users\dom\AppData\Local\Temp\{AB561C4B-348D-4D43-8FF1-E1AB7D9F7068}\goopdateres_kn.dll C:\Users\dom\AppData\Local\Temp\{AB561C4B-348D-4D43-8FF1-E1AB7D9F7068}\goopdateres_ko.dll C:\Users\dom\AppData\Local\Temp\{AB561C4B-348D-4D43-8FF1-E1AB7D9F7068}\goopdateres_lt.dll C:\Users\dom\AppData\Local\Temp\{AB561C4B-348D-4D43-8FF1-E1AB7D9F7068}\goopdateres_lv.dll C:\Users\dom\AppData\Local\Temp\{AB561C4B-348D-4D43-8FF1-E1AB7D9F7068}\goopdateres_ml.dll C:\Users\dom\AppData\Local\Temp\{AB561C4B-348D-4D43-8FF1-E1AB7D9F7068}\goopdateres_mr.dll C:\Users\dom\AppData\Local\Temp\{AB561C4B-348D-4D43-8FF1-E1AB7D9F7068}\goopdateres_ms.dll C:\Users\dom\AppData\Local\Temp\{AB561C4B-348D-4D43-8FF1-E1AB7D9F7068}\goopdateres_nl.dll C:\Users\dom\AppData\Local\Temp\{AB561C4B-348D-4D43-8FF1-E1AB7D9F7068}\goopdateres_no.dll C:\Users\dom\AppData\Local\Temp\{AB561C4B-348D-4D43-8FF1-E1AB7D9F7068}\goopdateres_or.dll C:\Users\dom\AppData\Local\Temp\{AB561C4B-348D-4D43-8FF1-E1AB7D9F7068}\goopdateres_pl.dll C:\Users\dom\AppData\Local\Temp\{AB561C4B-348D-4D43-8FF1-E1AB7D9F7068}\goopdateres_pt-BR.dll C:\Users\dom\AppData\Local\Temp\{AB561C4B-348D-4D43-8FF1-E1AB7D9F7068}\goopdateres_pt-PT.dll C:\Users\dom\AppData\Local\Temp\{AB561C4B-348D-4D43-8FF1-E1AB7D9F7068}\goopdateres_ro.dll C:\Users\dom\AppData\Local\Temp\{AB561C4B-348D-4D43-8FF1-E1AB7D9F7068}\goopdateres_ru.dll C:\Users\dom\AppData\Local\Temp\{AB561C4B-348D-4D43-8FF1-E1AB7D9F7068}\goopdateres_sk.dll C:\Users\dom\AppData\Local\Temp\{AB561C4B-348D-4D43-8FF1-E1AB7D9F7068}\goopdateres_sl.dll C:\Users\dom\AppData\Local\Temp\{AB561C4B-348D-4D43-8FF1-E1AB7D9F7068}\goopdateres_sr.dll C:\Users\dom\AppData\Local\Temp\{AB561C4B-348D-4D43-8FF1-E1AB7D9F7068}\goopdateres_sv.dll C:\Users\dom\AppData\Local\Temp\{AB561C4B-348D-4D43-8FF1-E1AB7D9F7068}\goopdateres_ta.dll C:\Users\dom\AppData\Local\Temp\{AB561C4B-348D-4D43-8FF1-E1AB7D9F7068}\goopdateres_te.dll C:\Users\dom\AppData\Local\Temp\{AB561C4B-348D-4D43-8FF1-E1AB7D9F7068}\goopdateres_th.dll C:\Users\dom\AppData\Local\Temp\{AB561C4B-348D-4D43-8FF1-E1AB7D9F7068}\goopdateres_tr.dll C:\Users\dom\AppData\Local\Temp\{AB561C4B-348D-4D43-8FF1-E1AB7D9F7068}\goopdateres_uk.dll C:\Users\dom\AppData\Local\Temp\{AB561C4B-348D-4D43-8FF1-E1AB7D9F7068}\goopdateres_ur.dll C:\Users\dom\AppData\Local\Temp\{AB561C4B-348D-4D43-8FF1-E1AB7D9F7068}\goopdateres_vi.dll C:\Users\dom\AppData\Local\Temp\{AB561C4B-348D-4D43-8FF1-E1AB7D9F7068}\goopdateres_zh-CN.dll C:\Users\dom\AppData\Local\Temp\{AB561C4B-348D-4D43-8FF1-E1AB7D9F7068}\goopdateres_zh-TW.dll C:\Users\dom\AppData\Local\Temp\{AB561C4B-348D-4D43-8FF1-E1AB7D9F7068}\npGoogleOneClick8.dll C:\Users\dom\AppData\Local\Temp\{A8BF0CBF-7AC2-48BA-931D-95A0586D62E0}\ISSetup.dll C:\Users\dom\AppData\Local\Temp\{A8BF0CBF-7AC2-48BA-931D-95A0586D62E0}\_Setup.dll C:\Users\dom\AppData\Local\Temp\{A8A151E5-24C9-4CCB-A127-07041B7EC254}\ISSetup.dll C:\Users\dom\AppData\Local\Temp\{A8A151E5-24C9-4CCB-A127-07041B7EC254}\_Setup.dll C:\Users\dom\AppData\Local\Temp\{9EB71547-904F-4BA5-81DB-76CD4D9025E4}\ISSetup.dll C:\Users\dom\AppData\Local\Temp\{9EB71547-904F-4BA5-81DB-76CD4D9025E4}\_Setup.dll C:\Users\dom\AppData\Local\Temp\{9E417BA7-5D64-466E-8E8C-65E6FDA23818}\ISSetup.dll C:\Users\dom\AppData\Local\Temp\{9E417BA7-5D64-466E-8E8C-65E6FDA23818}\_Setup.dll C:\Users\dom\AppData\Local\Temp\{991E0D26-8C96-44AE-916B-EB329B033704}\ISSetup.dll C:\Users\dom\AppData\Local\Temp\{991E0D26-8C96-44AE-916B-EB329B033704}\_Setup.dll C:\Users\dom\AppData\Local\Temp\{95CBF43C-4866-43E5-AAD0-1C4C5BFC95BA}\ISSetup.dll C:\Users\dom\AppData\Local\Temp\{95CBF43C-4866-43E5-AAD0-1C4C5BFC95BA}\_Setup.dll C:\Users\dom\AppData\Local\Temp\{887ECD87-03F7-4E82-BCD9-6307F8F7DB86}\ISSetup.dll C:\Users\dom\AppData\Local\Temp\{887ECD87-03F7-4E82-BCD9-6307F8F7DB86}\_Setup.dll C:\Users\dom\AppData\Local\Temp\{84B7CCA5-6D88-48E2-AC4A-D65096902494}\GoogleCrashHandler.exe C:\Users\dom\AppData\Local\Temp\{84B7CCA5-6D88-48E2-AC4A-D65096902494}\GoogleCrashHandler64.exe C:\Users\dom\AppData\Local\Temp\{84B7CCA5-6D88-48E2-AC4A-D65096902494}\GoogleUpdate.exe C:\Users\dom\AppData\Local\Temp\{84B7CCA5-6D88-48E2-AC4A-D65096902494}\GoogleUpdateBroker.exe C:\Users\dom\AppData\Local\Temp\{84B7CCA5-6D88-48E2-AC4A-D65096902494}\GoogleUpdateOnDemand.exe C:\Users\dom\AppData\Local\Temp\{84B7CCA5-6D88-48E2-AC4A-D65096902494}\GoogleUpdateSetup.exe C:\Users\dom\AppData\Local\Temp\{84B7CCA5-6D88-48E2-AC4A-D65096902494}\goopdate.dll C:\Users\dom\AppData\Local\Temp\{84B7CCA5-6D88-48E2-AC4A-D65096902494}\goopdateres_am.dll C:\Users\dom\AppData\Local\Temp\{84B7CCA5-6D88-48E2-AC4A-D65096902494}\goopdateres_ar.dll C:\Users\dom\AppData\Local\Temp\{84B7CCA5-6D88-48E2-AC4A-D65096902494}\goopdateres_bg.dll C:\Users\dom\AppData\Local\Temp\{84B7CCA5-6D88-48E2-AC4A-D65096902494}\goopdateres_bn.dll C:\Users\dom\AppData\Local\Temp\{84B7CCA5-6D88-48E2-AC4A-D65096902494}\goopdateres_ca.dll C:\Users\dom\AppData\Local\Temp\{84B7CCA5-6D88-48E2-AC4A-D65096902494}\goopdateres_cs.dll C:\Users\dom\AppData\Local\Temp\{84B7CCA5-6D88-48E2-AC4A-D65096902494}\goopdateres_da.dll C:\Users\dom\AppData\Local\Temp\{84B7CCA5-6D88-48E2-AC4A-D65096902494}\goopdateres_de.dll C:\Users\dom\AppData\Local\Temp\{84B7CCA5-6D88-48E2-AC4A-D65096902494}\goopdateres_el.dll C:\Users\dom\AppData\Local\Temp\{84B7CCA5-6D88-48E2-AC4A-D65096902494}\goopdateres_en-GB.dll C:\Users\dom\AppData\Local\Temp\{84B7CCA5-6D88-48E2-AC4A-D65096902494}\goopdateres_en.dll C:\Users\dom\AppData\Local\Temp\{84B7CCA5-6D88-48E2-AC4A-D65096902494}\goopdateres_es-419.dll C:\Users\dom\AppData\Local\Temp\{84B7CCA5-6D88-48E2-AC4A-D65096902494}\goopdateres_es.dll C:\Users\dom\AppData\Local\Temp\{84B7CCA5-6D88-48E2-AC4A-D65096902494}\goopdateres_et.dll C:\Users\dom\AppData\Local\Temp\{84B7CCA5-6D88-48E2-AC4A-D65096902494}\goopdateres_fa.dll C:\Users\dom\AppData\Local\Temp\{84B7CCA5-6D88-48E2-AC4A-D65096902494}\goopdateres_fi.dll C:\Users\dom\AppData\Local\Temp\{84B7CCA5-6D88-48E2-AC4A-D65096902494}\goopdateres_fil.dll C:\Users\dom\AppData\Local\Temp\{84B7CCA5-6D88-48E2-AC4A-D65096902494}\goopdateres_fr.dll C:\Users\dom\AppData\Local\Temp\{84B7CCA5-6D88-48E2-AC4A-D65096902494}\goopdateres_gu.dll C:\Users\dom\AppData\Local\Temp\{84B7CCA5-6D88-48E2-AC4A-D65096902494}\goopdateres_hi.dll C:\Users\dom\AppData\Local\Temp\{84B7CCA5-6D88-48E2-AC4A-D65096902494}\goopdateres_hr.dll C:\Users\dom\AppData\Local\Temp\{84B7CCA5-6D88-48E2-AC4A-D65096902494}\goopdateres_hu.dll C:\Users\dom\AppData\Local\Temp\{84B7CCA5-6D88-48E2-AC4A-D65096902494}\goopdateres_id.dll C:\Users\dom\AppData\Local\Temp\{84B7CCA5-6D88-48E2-AC4A-D65096902494}\goopdateres_is.dll C:\Users\dom\AppData\Local\Temp\{84B7CCA5-6D88-48E2-AC4A-D65096902494}\goopdateres_it.dll C:\Users\dom\AppData\Local\Temp\{84B7CCA5-6D88-48E2-AC4A-D65096902494}\goopdateres_iw.dll C:\Users\dom\AppData\Local\Temp\{84B7CCA5-6D88-48E2-AC4A-D65096902494}\goopdateres_ja.dll C:\Users\dom\AppData\Local\Temp\{84B7CCA5-6D88-48E2-AC4A-D65096902494}\goopdateres_kn.dll C:\Users\dom\AppData\Local\Temp\{84B7CCA5-6D88-48E2-AC4A-D65096902494}\goopdateres_ko.dll C:\Users\dom\AppData\Local\Temp\{84B7CCA5-6D88-48E2-AC4A-D65096902494}\goopdateres_lt.dll C:\Users\dom\AppData\Local\Temp\{84B7CCA5-6D88-48E2-AC4A-D65096902494}\goopdateres_lv.dll C:\Users\dom\AppData\Local\Temp\{84B7CCA5-6D88-48E2-AC4A-D65096902494}\goopdateres_ml.dll C:\Users\dom\AppData\Local\Temp\{84B7CCA5-6D88-48E2-AC4A-D65096902494}\goopdateres_mr.dll C:\Users\dom\AppData\Local\Temp\{84B7CCA5-6D88-48E2-AC4A-D65096902494}\goopdateres_ms.dll C:\Users\dom\AppData\Local\Temp\{84B7CCA5-6D88-48E2-AC4A-D65096902494}\goopdateres_nl.dll C:\Users\dom\AppData\Local\Temp\{84B7CCA5-6D88-48E2-AC4A-D65096902494}\goopdateres_no.dll C:\Users\dom\AppData\Local\Temp\{84B7CCA5-6D88-48E2-AC4A-D65096902494}\goopdateres_pl.dll C:\Users\dom\AppData\Local\Temp\{84B7CCA5-6D88-48E2-AC4A-D65096902494}\goopdateres_pt-BR.dll C:\Users\dom\AppData\Local\Temp\{84B7CCA5-6D88-48E2-AC4A-D65096902494}\goopdateres_pt-PT.dll C:\Users\dom\AppData\Local\Temp\{84B7CCA5-6D88-48E2-AC4A-D65096902494}\goopdateres_ro.dll C:\Users\dom\AppData\Local\Temp\{84B7CCA5-6D88-48E2-AC4A-D65096902494}\goopdateres_ru.dll C:\Users\dom\AppData\Local\Temp\{84B7CCA5-6D88-48E2-AC4A-D65096902494}\goopdateres_sk.dll C:\Users\dom\AppData\Local\Temp\{84B7CCA5-6D88-48E2-AC4A-D65096902494}\goopdateres_sl.dll C:\Users\dom\AppData\Local\Temp\{84B7CCA5-6D88-48E2-AC4A-D65096902494}\goopdateres_sr.dll C:\Users\dom\AppData\Local\Temp\{84B7CCA5-6D88-48E2-AC4A-D65096902494}\goopdateres_sv.dll C:\Users\dom\AppData\Local\Temp\{84B7CCA5-6D88-48E2-AC4A-D65096902494}\goopdateres_sw.dll C:\Users\dom\AppData\Local\Temp\{84B7CCA5-6D88-48E2-AC4A-D65096902494}\goopdateres_ta.dll C:\Users\dom\AppData\Local\Temp\{84B7CCA5-6D88-48E2-AC4A-D65096902494}\goopdateres_te.dll C:\Users\dom\AppData\Local\Temp\{84B7CCA5-6D88-48E2-AC4A-D65096902494}\goopdateres_th.dll C:\Users\dom\AppData\Local\Temp\{84B7CCA5-6D88-48E2-AC4A-D65096902494}\goopdateres_tr.dll C:\Users\dom\AppData\Local\Temp\{84B7CCA5-6D88-48E2-AC4A-D65096902494}\goopdateres_uk.dll C:\Users\dom\AppData\Local\Temp\{84B7CCA5-6D88-48E2-AC4A-D65096902494}\goopdateres_ur.dll C:\Users\dom\AppData\Local\Temp\{84B7CCA5-6D88-48E2-AC4A-D65096902494}\goopdateres_vi.dll C:\Users\dom\AppData\Local\Temp\{84B7CCA5-6D88-48E2-AC4A-D65096902494}\goopdateres_zh-CN.dll C:\Users\dom\AppData\Local\Temp\{84B7CCA5-6D88-48E2-AC4A-D65096902494}\goopdateres_zh-TW.dll C:\Users\dom\AppData\Local\Temp\{84B7CCA5-6D88-48E2-AC4A-D65096902494}\npGoogleUpdate3.dll C:\Users\dom\AppData\Local\Temp\{84B7CCA5-6D88-48E2-AC4A-D65096902494}\psmachine.dll C:\Users\dom\AppData\Local\Temp\{84B7CCA5-6D88-48E2-AC4A-D65096902494}\psuser.dll C:\Users\dom\AppData\Local\Temp\{81B915EC-E710-48E6-853C-AAD66EC6055A}\ISSetup.dll C:\Users\dom\AppData\Local\Temp\{81B915EC-E710-48E6-853C-AAD66EC6055A}\_Setup.dll C:\Users\dom\AppData\Local\Temp\{8007A3BD-36A8-445A-9F36-FB9F53C5DBA6}\ISSetup.dll C:\Users\dom\AppData\Local\Temp\{8007A3BD-36A8-445A-9F36-FB9F53C5DBA6}\_Setup.dll C:\Users\dom\AppData\Local\Temp\{7FE9AF00-E15C-4ECB-A031-1E3C87722409}\ISSetup.dll C:\Users\dom\AppData\Local\Temp\{7FE9AF00-E15C-4ECB-A031-1E3C87722409}\_Setup.dll C:\Users\dom\AppData\Local\Temp\{7F2F6006-216A-481A-99FF-CCDCAD81D2E5}\ISSetup.dll C:\Users\dom\AppData\Local\Temp\{7F2F6006-216A-481A-99FF-CCDCAD81D2E5}\_Setup.dll C:\Users\dom\AppData\Local\Temp\{77DB5E4B-1F19-4230-9856-EFC2A474B7F8}\ISSetup.dll C:\Users\dom\AppData\Local\Temp\{77DB5E4B-1F19-4230-9856-EFC2A474B7F8}\_Setup.dll C:\Users\dom\AppData\Local\Temp\{71666AD1-5CA2-480C-BEF4-FABA41064307}\ISSetup.dll C:\Users\dom\AppData\Local\Temp\{71666AD1-5CA2-480C-BEF4-FABA41064307}\_Setup.dll C:\Users\dom\AppData\Local\Temp\{6AA6ACFB-BB4E-4951-A08C-DF451A4326EB}\ISSetup.dll C:\Users\dom\AppData\Local\Temp\{6AA6ACFB-BB4E-4951-A08C-DF451A4326EB}\_Setup.dll C:\Users\dom\AppData\Local\Temp\{5C96F6E9-1A7E-4BDB-B93D-241463458DD5}\ISSetup.dll C:\Users\dom\AppData\Local\Temp\{5C96F6E9-1A7E-4BDB-B93D-241463458DD5}\_Setup.dll C:\Users\dom\AppData\Local\Temp\{51192196-F2D6-4F67-9957-80263AED4A4D}\ISSetup.dll C:\Users\dom\AppData\Local\Temp\{51192196-F2D6-4F67-9957-80263AED4A4D}\_Setup.dll C:\Users\dom\AppData\Local\Temp\{4ED93B8D-C85A-421B-9EB8-58E27FE10E46}\ISSetup.dll C:\Users\dom\AppData\Local\Temp\{4ED93B8D-C85A-421B-9EB8-58E27FE10E46}\_Setup.dll C:\Users\dom\AppData\Local\Temp\{4A2C373C-E84B-4EDF-A973-543666D1393E}\ISSetup.dll C:\Users\dom\AppData\Local\Temp\{4A2C373C-E84B-4EDF-A973-543666D1393E}\_Setup.dll C:\Users\dom\AppData\Local\Temp\{4853DDD3-AF4C-47DF-B3DF-4009492909AE}\ISSetup.dll C:\Users\dom\AppData\Local\Temp\{4853DDD3-AF4C-47DF-B3DF-4009492909AE}\_Setup.dll C:\Users\dom\AppData\Local\Temp\{47CE6F9B-CB72-41CA-9211-AADC62ADF2FA}\setup.exe C:\Users\dom\AppData\Local\Temp\{42A4CD18-AD3D-4570-BED5-56615DFE9C47}\ISSetup.dll C:\Users\dom\AppData\Local\Temp\{42A4CD18-AD3D-4570-BED5-56615DFE9C47}\_Setup.dll C:\Users\dom\AppData\Local\Temp\{419B642A-C343-47D1-9676-BAFB54DBD08D}\ISRT.dll C:\Users\dom\AppData\Local\Temp\{419B642A-C343-47D1-9676-BAFB54DBD08D}\setup.exe C:\Users\dom\AppData\Local\Temp\{419B642A-C343-47D1-9676-BAFB54DBD08D}\_isres.dll C:\Users\dom\AppData\Local\Temp\{419B642A-C343-47D1-9676-BAFB54DBD08D}\_isuser.dll C:\Users\dom\AppData\Local\Temp\{3A11376E-3911-49C4-BC38-D8C30EFEAEBF}\ISSetup.dll C:\Users\dom\AppData\Local\Temp\{3A11376E-3911-49C4-BC38-D8C30EFEAEBF}\_Setup.dll C:\Users\dom\AppData\Local\Temp\{37E43C37-4D60-4B57-B7CD-75A6A2A4FD46}\setup.exe C:\Users\dom\AppData\Local\Temp\{33BDA2EA-2C0E-4584-AFD7-DE55A710337D}\ISSetup.dll C:\Users\dom\AppData\Local\Temp\{33BDA2EA-2C0E-4584-AFD7-DE55A710337D}\_Setup.dll C:\Users\dom\AppData\Local\Temp\{290281D1-4C2A-47CD-8C20-ED3BACA2DF6A}\ISSetup.dll C:\Users\dom\AppData\Local\Temp\{290281D1-4C2A-47CD-8C20-ED3BACA2DF6A}\_Setup.dll C:\Users\dom\AppData\Local\Temp\{28758E1D-509B-4942-B922-D93612CB5128}\ISSetup.dll C:\Users\dom\AppData\Local\Temp\{28758E1D-509B-4942-B922-D93612CB5128}\_Setup.dll C:\Users\dom\AppData\Local\Temp\{24316EF5-B944-4422-8F03-912271FDA51D}\ISSetup.dll C:\Users\dom\AppData\Local\Temp\{24316EF5-B944-4422-8F03-912271FDA51D}\_Setup.dll C:\Users\dom\AppData\Local\Temp\{2372E05B-633E-4B34-A92A-E3590133897A}\{92606477-9366-4D3B-8AE3-6BE4B29727AB}\DSETUP.dll C:\Users\dom\AppData\Local\Temp\{2372E05B-633E-4B34-A92A-E3590133897A}\{92606477-9366-4D3B-8AE3-6BE4B29727AB}\dsetup32.dll C:\Users\dom\AppData\Local\Temp\{2372E05B-633E-4B34-A92A-E3590133897A}\{92606477-9366-4D3B-8AE3-6BE4B29727AB}\DXSETUP.exe C:\Users\dom\AppData\Local\Temp\{2231EAC7-4A4B-4BAD-A889-5CD7DCC441F6}\ISSetup.dll C:\Users\dom\AppData\Local\Temp\{2231EAC7-4A4B-4BAD-A889-5CD7DCC441F6}\_Setup.dll C:\Users\dom\AppData\Local\Temp\{200B1977-2E28-4D0D-BECC-AFBA95366BCD}\ISSetup.dll C:\Users\dom\AppData\Local\Temp\{200B1977-2E28-4D0D-BECC-AFBA95366BCD}\_Setup.dll C:\Users\dom\AppData\Local\Temp\{16C44DE6-EBD5-40E5-87F1-404C1DE32D3B}\_Setup.dll C:\Users\dom\AppData\Local\Temp\{1627060B-1072-424A-B970-657CD230AC61}\ISSetup.dll C:\Users\dom\AppData\Local\Temp\{1627060B-1072-424A-B970-657CD230AC61}\_Setup.dll C:\Users\dom\AppData\Local\Temp\{13DB68AD-1B0F-4D4F-80B7-A11D0BBDA0C2}\{88B1984E-36F0-47B8-B8DC-728966807A9C}\Common.dll C:\Users\dom\AppData\Local\Temp\{13DB68AD-1B0F-4D4F-80B7-A11D0BBDA0C2}\{88B1984E-36F0-47B8-B8DC-728966807A9C}\CTCabEx.DLL C:\Users\dom\AppData\Local\Temp\{13DB68AD-1B0F-4D4F-80B7-A11D0BBDA0C2}\{88B1984E-36F0-47B8-B8DC-728966807A9C}\InstHelp.exe C:\Users\dom\AppData\Local\Temp\{13DB68AD-1B0F-4D4F-80B7-A11D0BBDA0C2}\{88B1984E-36F0-47B8-B8DC-728966807A9C}\RegEdit.dll C:\Users\dom\AppData\Local\Temp\{13DB68AD-1B0F-4D4F-80B7-A11D0BBDA0C2}\{88B1984E-36F0-47B8-B8DC-728966807A9C}\RTFUtil.dll C:\Users\dom\AppData\Local\Temp\{13DB68AD-1B0F-4D4F-80B7-A11D0BBDA0C2}\{88B1984E-36F0-47B8-B8DC-728966807A9C}\_ISUSER.DLL C:\Users\dom\AppData\Local\Temp\{13DB68AD-1B0F-4D4F-80B7-A11D0BBDA0C2}\{88B1984E-36F0-47B8-B8DC-728966807A9C}\_setup.dll C:\Users\dom\AppData\Local\Temp\{1288D767-22BA-4F83-9477-1A451584211E}\ISSetup.dll C:\Users\dom\AppData\Local\Temp\{1288D767-22BA-4F83-9477-1A451584211E}\_Setup.dll C:\Users\dom\AppData\Local\Temp\{0D1C2AC9-AB68-4E36-B0A4-FB2C3BC064B2}\ISSetup.dll C:\Users\dom\AppData\Local\Temp\{0D1C2AC9-AB68-4E36-B0A4-FB2C3BC064B2}\_Setup.dll C:\Users\dom\AppData\Local\Temp\{037F93FC-7B76-4A92-BAA3-54E3F64A16F3}\ISSetup.dll C:\Users\dom\AppData\Local\Temp\{037F93FC-7B76-4A92-BAA3-54E3F64A16F3}\_Setup.dll C:\Users\dom\AppData\Local\Temp\{0325BF21-3960-4B71-9484-7DFECDCBC210}\_Setup.dll C:\Users\dom\AppData\Local\Temp\{0291042A-9DA0-44C5-8853-60CCA6F9543A}\ISSetup.dll C:\Users\dom\AppData\Local\Temp\{0291042A-9DA0-44C5-8853-60CCA6F9543A}\_Setup.dll C:\Users\dom\AppData\Local\Temp\{02260A9A-23C7-439D-9486-2376BB1EA37C}\setup.exe C:\Users\dom\AppData\Local\Temp\_ir_sf7_temp_0\irsetup.exe C:\Users\dom\AppData\Local\Temp\www.minecraft.net\Minecraft\natives\jinput-dx8.dll C:\Users\dom\AppData\Local\Temp\www.minecraft.net\Minecraft\natives\jinput-raw.dll C:\Users\dom\AppData\Local\Temp\www.minecraft.net\Minecraft\natives\lwjgl.dll C:\Users\dom\AppData\Local\Temp\www.minecraft.net\Minecraft\natives\lwjgl64.dll C:\Users\dom\AppData\Local\Temp\www.minecraft.net\Minecraft\natives\OpenAL32.dll C:\Users\dom\AppData\Local\Temp\www.minecraft.net\Minecraft\natives\OpenAL64.dll C:\Users\dom\AppData\Local\Temp\WLZ1C75.tmp\CddbLangPL.dll C:\Users\dom\AppData\Local\Temp\VCB\NewUI.dll C:\Users\dom\AppData\Local\Temp\VCB\Setup.exe C:\Users\dom\AppData\Local\Temp\VCB\Languages\ZHH\VCBResources.dll C:\Users\dom\AppData\Local\Temp\VCB\Languages\TRK\VCBResources.dll C:\Users\dom\AppData\Local\Temp\VCB\Languages\THA\VCBResources.dll C:\Users\dom\AppData\Local\Temp\VCB\Languages\SVE\VCBResources.dll C:\Users\dom\AppData\Local\Temp\VCB\Languages\RUS\VCBResources.dll C:\Users\dom\AppData\Local\Temp\VCB\Languages\PTG\VCBResources.dll C:\Users\dom\AppData\Local\Temp\VCB\Languages\PLK\VCBResources.dll C:\Users\dom\AppData\Local\Temp\VCB\Languages\NOR\VCBResources.dll C:\Users\dom\AppData\Local\Temp\VCB\Languages\NLD\VCBResources.dll C:\Users\dom\AppData\Local\Temp\VCB\Languages\KOR\VCBResources.dll C:\Users\dom\AppData\Local\Temp\VCB\Languages\JPN\VCBResources.dll C:\Users\dom\AppData\Local\Temp\VCB\Languages\ITA\VCBResources.dll C:\Users\dom\AppData\Local\Temp\VCB\Languages\HUN\VCBResources.dll C:\Users\dom\AppData\Local\Temp\VCB\Languages\HEB\VCBResources.dll C:\Users\dom\AppData\Local\Temp\VCB\Languages\FRC\VCBResources.dll C:\Users\dom\AppData\Local\Temp\VCB\Languages\FRA\VCBResources.dll C:\Users\dom\AppData\Local\Temp\VCB\Languages\FIN\VCBResources.dll C:\Users\dom\AppData\Local\Temp\VCB\Languages\ESP\VCBResources.dll C:\Users\dom\AppData\Local\Temp\VCB\Languages\ESM\VCBResources.dll C:\Users\dom\AppData\Local\Temp\VCB\Languages\ENU\VCBResources.dll C:\Users\dom\AppData\Local\Temp\VCB\Languages\ENG\VCBResources.dll C:\Users\dom\AppData\Local\Temp\VCB\Languages\ELL\VCBResources.dll C:\Users\dom\AppData\Local\Temp\VCB\Languages\DEU\VCBResources.dll C:\Users\dom\AppData\Local\Temp\VCB\Languages\DAN\VCBResources.dll C:\Users\dom\AppData\Local\Temp\VCB\Languages\CSY\VCBResources.dll C:\Users\dom\AppData\Local\Temp\VCB\Languages\CHT\VCBResources.dll C:\Users\dom\AppData\Local\Temp\VCB\Languages\CHS\VCBResources.dll C:\Users\dom\AppData\Local\Temp\VCB\Languages\ARB\VCBResources.dll C:\Users\dom\AppData\Local\Temp\VCB\Graphics\NewUI.dll C:\Users\dom\AppData\Local\Temp\v9_Downloader\Downloader.exe C:\Users\dom\AppData\Local\Temp\v9_Downloader\v9ht.exe C:\Users\dom\AppData\Local\Temp\SPI\unzip.exe C:\Users\dom\AppData\Local\Temp\SPI\Files\Softs\.exe C:\Users\dom\AppData\Local\Temp\SPI\Files\Softs\MyBabylonTB.exe C:\Users\dom\AppData\Local\Temp\RarSFX0\hctoolbar.exe C:\Users\dom\AppData\Local\Temp\RarSFX0\HyCam2.exe C:\Users\dom\AppData\Local\Temp\RarSFX0\MClick2.dll C:\Users\dom\AppData\Local\Temp\RarSFX0\UnHyCam2.exe C:\Users\dom\AppData\Local\Temp\PromoEngineInstaller\chutil2.dll C:\Users\dom\AppData\Local\Temp\pftE76B~tmp\Setup.exe C:\Users\dom\AppData\Local\Temp\pftE76B~tmp\_ISDel.exe C:\Users\dom\AppData\Local\Temp\pftE76B~tmp\_Setup.dll C:\Users\dom\AppData\Local\Temp\Origin\installerdll121555.dll C:\Users\dom\AppData\Local\Temp\nsv4944.tmp\Time.dll C:\Users\dom\AppData\Local\Temp\nspD7FA.tmp\InstallOptions.dll C:\Users\dom\AppData\Local\Temp\nsk3A17.tmp\Time.dll C:\Users\dom\AppData\Local\Temp\nsfDDE5.tmp\inetc.dll C:\Users\dom\AppData\Local\Temp\nsfDDE5.tmp\nsDialogs.dll C:\Users\dom\AppData\Local\Temp\nsfDDE5.tmp\nsisSlideshow.dll C:\Users\dom\AppData\Local\Temp\nsfDDE5.tmp\nsRichEdit.dll C:\Users\dom\AppData\Local\Temp\nsfDDE5.tmp\System.dll C:\Users\dom\AppData\Local\Temp\NERO1005263\ipclog.exe C:\Users\dom\AppData\Local\Temp\NERO1005263\setupx.exe C:\Users\dom\AppData\Local\Temp\NERO1005263\unit_app_75\Toolbar.exe C:\Users\dom\AppData\Local\Temp\MozUpdater-3\updater.exe C:\Users\dom\AppData\Local\Temp\MozUpdater-2\updater.exe C:\Users\dom\AppData\Local\Temp\MozUpdater-1\updater.exe C:\Users\dom\AppData\Local\Temp\MozUpdater\updater.exe C:\Users\dom\AppData\Local\Temp\ispF1A7.tmp\_Setup.dll C:\Users\dom\AppData\Local\Temp\ispF182.tmp\_Setup.dll C:\Users\dom\AppData\Local\Temp\ispE8F0.tmp\_Setup.dll C:\Users\dom\AppData\Local\Temp\ispBE58.tmp\_Setup.dll C:\Users\dom\AppData\Local\Temp\ispB7C.tmp\_Setup.dll C:\Users\dom\AppData\Local\Temp\ispB360.tmp\_Setup.dll C:\Users\dom\AppData\Local\Temp\ispA6EC.tmp\_Setup.dll C:\Users\dom\AppData\Local\Temp\isp90ED.tmp\_Setup.dll C:\Users\dom\AppData\Local\Temp\isp70C4.tmp\_Setup.dll C:\Users\dom\AppData\Local\Temp\isp524D.tmp\_Setup.dll C:\Users\dom\AppData\Local\Temp\isp4774.tmp\_Setup.dll C:\Users\dom\AppData\Local\Temp\isp45E4.tmp\_Setup.dll C:\Users\dom\AppData\Local\Temp\isp401F.tmp\_Setup.dll C:\Users\dom\AppData\Local\Temp\isp3B32.tmp\_Setup.dll C:\Users\dom\AppData\Local\Temp\isp3461.tmp\_Setup.dll C:\Users\dom\AppData\Local\Temp\is357113909\DeltaTB.exe C:\Users\dom\AppData\Local\Temp\is1988980107\Alcohol120_trial_2.0.2.3931.exe C:\Users\dom\AppData\Local\Temp\is1988980107\dealply.exe C:\Users\dom\AppData\Local\Temp\is1988980107\setup.exe C:\Users\dom\AppData\Local\Temp\is1890775716\DeltaTB.exe C:\Users\dom\AppData\Local\Temp\is1445318704\BabyFox.dll C:\Users\dom\AppData\Local\Temp\is1445318704\BabyServices.dll C:\Users\dom\AppData\Local\Temp\is1445318704\BContentServer.dll C:\Users\dom\AppData\Local\Temp\is1445318704\BException.dll C:\Users\dom\AppData\Local\Temp\is1445318704\MyBabylonTB.exe C:\Users\dom\AppData\Local\Temp\is1445318704\Setup32.exe C:\Users\dom\AppData\Local\Temp\is1438683437\MyBabylonTB.exe C:\Users\dom\AppData\Local\Temp\is1373634743\setup.exe C:\Users\dom\AppData\Local\Temp\is1373634743\V9corV2.exe C:\Users\dom\AppData\Local\Temp\is-NM3PG.tmp\_isetup\_shfoldr.dll C:\Users\dom\AppData\Local\Temp\is-HDH0N.tmp\InnoSetupHelper.dll C:\Users\dom\AppData\Local\Temp\is-B5NGK.tmp\InnoSetupHelper.dll C:\Users\dom\AppData\Local\Temp\ipla_tmp\codecpack.exe C:\Users\dom\AppData\Local\Temp\ICReinstall\VideoToMp3Setup.exe C:\Users\dom\AppData\Local\Temp\genteeFB\guig.dll C:\Users\dom\AppData\Local\Temp\Epic-e9a1ff12-2b43-4e2d-bbac-3e6e64f21d69\Redist\vcredist_x64_vs2008sp1.exe C:\Users\dom\AppData\Local\Temp\Epic-e9a1ff12-2b43-4e2d-bbac-3e6e64f21d69\Redist\vcredist_x86_vs2008sp1.exe C:\Users\dom\AppData\Local\Temp\Epic-e9a1ff12-2b43-4e2d-bbac-3e6e64f21d69\Redist\MSChart\SPInstaller.exe C:\Users\dom\AppData\Local\Temp\Epic-e9a1ff12-2b43-4e2d-bbac-3e6e64f21d69\Redist\MSChart\SPInstallerEngine.dll C:\Users\dom\AppData\Local\Temp\Epic-e9a1ff12-2b43-4e2d-bbac-3e6e64f21d69\Redist\MSChart\SPInstallerUi.dll C:\Users\dom\AppData\Local\Temp\Epic-e9a1ff12-2b43-4e2d-bbac-3e6e64f21d69\Redist\MSChart\sqmapi.dll C:\Users\dom\AppData\Local\Temp\Epic-e9a1ff12-2b43-4e2d-bbac-3e6e64f21d69\Redist\MSChart\3082\SPInstallerResources.dll C:\Users\dom\AppData\Local\Temp\Epic-e9a1ff12-2b43-4e2d-bbac-3e6e64f21d69\Redist\MSChart\2070\SPInstallerResources.dll C:\Users\dom\AppData\Local\Temp\Epic-e9a1ff12-2b43-4e2d-bbac-3e6e64f21d69\Redist\MSChart\2052\SPInstallerResources.dll C:\Users\dom\AppData\Local\Temp\Epic-e9a1ff12-2b43-4e2d-bbac-3e6e64f21d69\Redist\MSChart\1055\SPInstallerResources.dll C:\Users\dom\AppData\Local\Temp\Epic-e9a1ff12-2b43-4e2d-bbac-3e6e64f21d69\Redist\MSChart\1053\SPInstallerResources.dll C:\Users\dom\AppData\Local\Temp\Epic-e9a1ff12-2b43-4e2d-bbac-3e6e64f21d69\Redist\MSChart\1049\SPInstallerResources.dll C:\Users\dom\AppData\Local\Temp\Epic-e9a1ff12-2b43-4e2d-bbac-3e6e64f21d69\Redist\MSChart\1046\SPInstallerResources.dll C:\Users\dom\AppData\Local\Temp\Epic-e9a1ff12-2b43-4e2d-bbac-3e6e64f21d69\Redist\MSChart\1045\SPInstallerResources.dll C:\Users\dom\AppData\Local\Temp\Epic-e9a1ff12-2b43-4e2d-bbac-3e6e64f21d69\Redist\MSChart\1044\SPInstallerResources.dll C:\Users\dom\AppData\Local\Temp\Epic-e9a1ff12-2b43-4e2d-bbac-3e6e64f21d69\Redist\MSChart\1043\SPInstallerResources.dll C:\Users\dom\AppData\Local\Temp\Epic-e9a1ff12-2b43-4e2d-bbac-3e6e64f21d69\Redist\MSChart\1042\SPInstallerResources.dll C:\Users\dom\AppData\Local\Temp\Epic-e9a1ff12-2b43-4e2d-bbac-3e6e64f21d69\Redist\MSChart\1041\SPInstallerResources.dll C:\Users\dom\AppData\Local\Temp\Epic-e9a1ff12-2b43-4e2d-bbac-3e6e64f21d69\Redist\MSChart\1040\SPInstallerResources.dll C:\Users\dom\AppData\Local\Temp\Epic-e9a1ff12-2b43-4e2d-bbac-3e6e64f21d69\Redist\MSChart\1038\SPInstallerResources.dll C:\Users\dom\AppData\Local\Temp\Epic-e9a1ff12-2b43-4e2d-bbac-3e6e64f21d69\Redist\MSChart\1037\SPInstallerResources.dll C:\Users\dom\AppData\Local\Temp\Epic-e9a1ff12-2b43-4e2d-bbac-3e6e64f21d69\Redist\MSChart\1036\SPInstallerResources.dll C:\Users\dom\AppData\Local\Temp\Epic-e9a1ff12-2b43-4e2d-bbac-3e6e64f21d69\Redist\MSChart\1035\SPInstallerResources.dll C:\Users\dom\AppData\Local\Temp\Epic-e9a1ff12-2b43-4e2d-bbac-3e6e64f21d69\Redist\MSChart\1033\SPInstallerResources.dll C:\Users\dom\AppData\Local\Temp\Epic-e9a1ff12-2b43-4e2d-bbac-3e6e64f21d69\Redist\MSChart\1032\SPInstallerResources.dll C:\Users\dom\AppData\Local\Temp\Epic-e9a1ff12-2b43-4e2d-bbac-3e6e64f21d69\Redist\MSChart\1031\SPInstallerResources.dll C:\Users\dom\AppData\Local\Temp\Epic-e9a1ff12-2b43-4e2d-bbac-3e6e64f21d69\Redist\MSChart\1030\SPInstallerResources.dll C:\Users\dom\AppData\Local\Temp\Epic-e9a1ff12-2b43-4e2d-bbac-3e6e64f21d69\Redist\MSChart\1029\SPInstallerResources.dll C:\Users\dom\AppData\Local\Temp\Epic-e9a1ff12-2b43-4e2d-bbac-3e6e64f21d69\Redist\MSChart\1028\SPInstallerResources.dll C:\Users\dom\AppData\Local\Temp\Epic-e9a1ff12-2b43-4e2d-bbac-3e6e64f21d69\Redist\MSChart\1025\SPInstallerResources.dll C:\Users\dom\AppData\Local\Temp\Epic-e9a1ff12-2b43-4e2d-bbac-3e6e64f21d69\Redist\DXRedistCutdown\DSETUP.dll C:\Users\dom\AppData\Local\Temp\Epic-e9a1ff12-2b43-4e2d-bbac-3e6e64f21d69\Redist\DXRedistCutdown\dsetup32.dll C:\Users\dom\AppData\Local\Temp\Epic-e9a1ff12-2b43-4e2d-bbac-3e6e64f21d69\Redist\DXRedistCutdown\DXSETUP.exe C:\Users\dom\AppData\Local\Temp\Epic-e9a1ff12-2b43-4e2d-bbac-3e6e64f21d69\Redist\Binaries\UnSetup.exe C:\Users\dom\AppData\Local\Temp\Epic-e9a1ff12-2b43-4e2d-bbac-3e6e64f21d69\Redist\AMD\amdcpusetup.exe C:\Users\dom\AppData\Local\Temp\Epic-e9a1ff12-2b43-4e2d-bbac-3e6e64f21d69\Binaries\UnSetup.exe C:\Users\dom\AppData\Local\Temp\e4jEC8.tmp_dir\i4jdel.exe C:\Users\dom\AppData\Local\Temp\e4j5EDB.tmp_dir\i4jdel.exe C:\Users\dom\AppData\Local\Temp\e4j3E31.tmp_dir\i4jdel.exe C:\Users\dom\AppData\Local\Temp\e4j2F05.tmp_dir\i4jdel.exe C:\Users\dom\AppData\Local\Temp\e4j2AFF.tmp_dir\i4jdel.exe C:\Users\dom\AppData\Local\Temp\e4j247A.tmp_dir\i4jdel.exe C:\Users\dom\AppData\Local\Temp\e4j1D97.tmp_dir\i4jdel.exe C:\Users\dom\AppData\Local\Temp\CProgram FilesOpera\OperaUpgrader.exe C:\Users\dom\AppData\Local\Temp\CProgram FilesOpera\OUniAnsi.dll C:\Users\dom\AppData\Local\Temp\com.nvidia\NVIDIA GPU_Reader\1.3.1\GPU_Reader.dll C:\Users\dom\AppData\Local\Temp\93ABBDB9-BAB0-7891-932A-E21CCDFA69B6\Setup.exe C:\Users\dom\AppData\Local\Temp\93ABBDB9-BAB0-7891-932A-E21CCDFA69B6\sqlite3.dll C:\Users\dom\AppData\Local\Temp\2341.tmp\AntiScreenSaver.exe C:\Users\dom\AppData\Local\Temp\12301302.Uninstall\Uninstall.exe C:\Users\dom\AppData\Local\Temp\._msigeplugin60\GoogleEarth.exe C:\Users\dom\AppData\Local\Temp\._msigeplugin60\program files\Google\Google Earth\plugin\earthps.dll C:\Users\dom\AppData\Local\Temp\._msigeplugin60\program files\Google\Google Earth\plugin\geplugin.exe C:\Users\dom\AppData\Local\Temp\._msigeplugin60\program files\Google\Google Earth\plugin\ge_expat.dll C:\Users\dom\AppData\Local\Temp\._msigeplugin60\program files\Google\Google Earth\plugin\googleearth_free.dll C:\Users\dom\AppData\Local\Temp\._msigeplugin60\program files\Google\Google Earth\plugin\msvcp80.dll C:\Users\dom\AppData\Local\Temp\._msigeplugin60\program files\Google\Google Earth\plugin\msvcr80.dll C:\Users\dom\AppData\Local\Temp\._msigeplugin60\program files\Google\Google Earth\plugin\npgeplugin.dll C:\Users\dom\AppData\Local\Temp\._msigeplugin60\program files\Google\Google Earth\plugin\plugin_ax.dll ==================== Bamital & volsnap Check ================= C:\Windows\explorer.exe => MD5 is legit C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-09-01 16:54 ==================== End Of Log ============================