Nettiselaimet eivät reagoi mihinkään

Discussion in 'Virukset ja haittaohjelmat - HijackThis -logit' started by habbala, Dec 21, 2008.

Thread Status:
Not open for further replies.
  1. habbala

    habbala Guest

    Ongelmana sellanen, että nettiselaimet (Firefox, Chrome, IE) eivät tee mitään, kun yritän selailla netti. Esim. jos yritän mennä google.comiin, niin selain lataa sivua ehkä 0,1 sekuntia, jonka jälkeen se näyttää alapalkissa "valmis", mutta sivu on silti täysin valkoinen. Sama tapahtuu kaikilla muillakin sivuilla (tosin cachessa olleet sivut näkyvät..)

    Myöskään oikeen muut ohjelmat eivät saa yhteyttä(Msn, ICQ, Antivir) nettiin. Mutta vikasieto tilassa netti pelittää varsin hyvin... tämänkin viestin kirjoitin vikasiedossa.

    Tällä koneella vika on ollut jo pidempään (viikko - kaks?), mutta juuri äskettäin sama ongelma ilmeni myös läppärilläni.

    ----------------------

    HT-logi tässä:

    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 9:38:33, on 13.12.2008
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
    Boot mode: Normal

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
    C:\WINDOWS\Explorer.EXE
    C:\Program Files\TortoiseSVN\bin\TSVNCache.exe
    C:\WINDOWS\system32\CTHELPER.EXE
    C:\Program Files\AntiVir PersonalEdition Classic\avgnt.exe
    C:\Program Files\Java\jre6\bin\jusched.exe
    C:\Program Files\DAEMON Tools\daemon.exe
    C:\Program Files\Microsoft IntelliPoint\point32.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\Program Files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe
    C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe
    C:\Program Files\Logitech\QuickCam10\QuickCam10.exe
    C:\Program Files\AntiVir PersonalEdition Classic\sched.exe
    C:\Program Files\AntiVir PersonalEdition Classic\avguard.exe
    C:\PROGRA~1\POSTGR~1\ENTERP~1\apache\bin\httpd.exe
    C:\PROGRA~1\Nokia\NOKIAP~1\LAUNCH~1.EXE
    C:\Program Files\Nero\Nero 7\InCD\NBHGui.exe
    C:\Program Files\Nero\Nero 7\InCD\InCD.exe
    C:\WINDOWS\system32\RUNDLL32.EXE
    C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe
    C:\Program Files\Chameleon Clock\ChamClock.exe
    C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe
    C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe
    C:\Program Files\Java\jre6\bin\jqs.exe
    C:\Documents and Settings\Alatalo\Local Settings\Application Data\Google\Update\GoogleUpdate.exe
    C:\Program Files\Kerio\Personal Firewall 4\kpf4ss.exe
    C:\Program Files\SSH Communications Security\SSH Accession Lite\ssh_accession.exe
    C:\Program Files\Yahoo!\Widgets\YahooWidgets.exe
    C:\Program Files\OpenOffice.org 3\program\soffice.exe
    C:\Program Files\Common Files\LightScribe\LSSrvc.exe
    C:\Program Files\OpenOffice.org 3\program\soffice.bin
    C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe
    C:\Program Files\Kerio\Personal Firewall 4\kpf4gui.exe
    C:\WINDOWS\system32\nvsvc32.exe
    C:\PROGRA~1\POSTGR~1\ENTERP~1\apache\bin\httpd.exe
    C:\Program Files\SiSoftware\SiSoftware Sandra Lite XII.SP2c\RpcAgentSrv.exe
    C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Program Files\Canon\CAL\CALMAIN.exe
    C:\Program Files\Common Files\PCSuite\Services\ServiceLayer.exe
    C:\PROGRA~1\COMMON~1\Nokia\MPAPI\MPAPI3s.exe
    C:\Program Files\Kerio\Personal Firewall 4\kpf4gui.exe
    C:\WINDOWS\system32\wscntfy.exe
    C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe
    C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
    C:\Program Files\Common Files\Ahead\Lib\NMIndexStoreSvr.exe
    C:\Program Files\Common Files\Logishrd\LQCVFX\COCIManager.exe
    C:\Documents and Settings\Alatalo\Työpöytä\HiJackThis-202.exe

    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Linkit
    O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
    O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
    O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
    O2 - BHO: Windows Liven kirjautumisapuohjelma - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
    O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
    O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
    O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
    O4 - HKLM\..\Run: [WINDVDPatch] CTHELPER.EXE
    O4 - HKLM\..\Run: [avgnt] "C:\Program Files\AntiVir PersonalEdition Classic\avgnt.exe" /min
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
    O4 - HKLM\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
    O4 - HKLM\..\Run: [IntelliPoint] "C:\Program Files\Microsoft IntelliPoint\point32.exe"
    O4 - HKLM\..\Run: [LogitechCommunicationsManager] "C:\Program Files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe"
    O4 - HKLM\..\Run: [LogitechQuickCamRibbon] "C:\Program Files\Logitech\QuickCam10\QuickCam10.exe" /hide
    O4 - HKLM\..\Run: [NVMixerTray] "C:\Program Files\NVIDIA Corporation\NvMixer\NVMixerTray.exe"
    O4 - HKLM\..\Run: [PCSuiteTrayApplication] C:\PROGRA~1\Nokia\NOKIAP~1\LAUNCH~1.EXE -startup
    O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
    O4 - HKLM\..\Run: [SecurDisc] C:\Program Files\Nero\Nero 7\InCD\NBHGui.exe
    O4 - HKLM\..\Run: [InCD] C:\Program Files\Nero\Nero 7\InCD\InCD.exe
    O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime Alternative\qttask.exe" -atboottime
    O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
    O4 - HKCU\..\Run: [HomeAlarm] C:\Program Files\Chameleon Clock\ChamClock.exe
    O4 - HKCU\..\Run: [PcSync] C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog
    O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe"
    O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\Alatalo\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c
    O4 - HKUS\S-1-5-21-1177238915-299502267-839522115-1009\..\RunOnce: [NeroHomeFirstStart] C:\Program Files\Common Files\Ahead\Lib\NMFirstStart.exe (User 'postgres')
    O4 - HKUS\S-1-5-18\..\RunOnce: [WUAppSetup] C:\Program Files\Common Files\logishrd\WUApp32.exe -v 0x046d -p 0x08d9 -f video -m logitech -d 10.5.1.2023 (User 'SYSTEM')
    O4 - HKUS\.DEFAULT\..\RunOnce: [WUAppSetup] C:\Program Files\Common Files\logishrd\WUApp32.exe -v 0x046d -p 0x08d9 -f video -m logitech -d 10.5.1.2023 (User 'Default user')
    O4 - Startup: OpenOffice.org 3.0.lnk = C:\Program Files\OpenOffice.org 3\program\quickstart.exe
    O4 - Startup: Yahoo! Widgets.lnk = C:\Program Files\Yahoo!\Widgets\YahooWidgets.exe
    O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
    O4 - Global Startup: SSH Accession.lnk = ?
    O9 - Extra button: ICQ Pro - {6224f700-cba3-4071-b251-47cb894244cd} - C:\Program Files\ICQ\ICQ.exe
    O9 - Extra 'Tools' menuitem: ICQ - {6224f700-cba3-4071-b251-47cb894244cd} - C:\Program Files\ICQ\ICQ.exe
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (file missing)
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (file missing)
    O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/win...ls/en/x86/client/wuweb_site.cab?1190041284656
    O23 - Service: Lavasoft Ad-Aware Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
    O23 - Service: Adobe LM Service - Unknown owner - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
    O23 - Service: AntiVir PersonalEdition Classic Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\AntiVir PersonalEdition Classic\sched.exe
    O23 - Service: AntiVir PersonalEdition Classic Guard (AntiVirService) - Avira GmbH - C:\Program Files\AntiVir PersonalEdition Classic\avguard.exe
    O23 - Service: Canon Camera Access Library 8 (CCALib8) - Canon Inc. - C:\Program Files\Canon\CAL\CALMAIN.exe
    O23 - Service: EnterpriseDB ApachePHP (EnterpriseDBApachePHP) - Apache Software Foundation - C:\PROGRA~1\POSTGR~1\ENTERP~1\apache\bin\httpd.exe
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
    O23 - Service: InCD Helper (InCDsrv) - Nero AG - C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe
    O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
    O23 - Service: Kerio Personal Firewall 4 (KPF4) - Kerio Technologies - C:\Program Files\Kerio\Personal Firewall 4\kpf4ss.exe
    O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
    O23 - Service: LVCOMSer - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe
    O23 - Service: Process Monitor (LVPrcSrv) - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe
    O23 - Service: LVSrvLauncher - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\SrvLnch\SrvLnch.exe
    O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
    O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
    O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
    O23 - Service: PostgreSQL Database Server 8.3 (pgsql-8.3) - PostgreSQL Global Development Group - C:\Program Files\PostgreSQL\8.3\bin\pg_ctl.exe
    O23 - Service: SiSoftware Deployment Agent Service (SandraAgentSrv) - SiSoftware - C:\Program Files\SiSoftware\SiSoftware Sandra Lite XII.SP2c\RpcAgentSrv.exe
    O23 - Service: ServiceLayer - Nokia. - C:\Program Files\Common Files\PCSuite\Services\ServiceLayer.exe
    O23 - Service: StarWind iSCSI Service (StarWindService) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe

    --
    End of file - 10057 bytes

    -------------------------------------------------------

    Ja tässä SDFIX logi


    SDFix: Version 1.240
    Run by Alatalo on ke 10.12.2008 at 00:51

    Microsoft Windows XP [versio 5.1.2600]
    Running From: C:\SDFix

    Checking Services :


    Restoring Default Security Values
    Restoring Default Hosts File

    Rebooting


    Checking Files :

    Trojan Files Found:

    C:\WINDOWS\system32\i - Deleted





    Removing Temp Files

    ADS Check :



    Final Check :

    catchme 0.3.1361.2 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
    Rootkit scan 2008-12-10 01:57:07
    Windows 5.1.2600 Service Pack 2 NTFS

    scanning hidden processes ...

    scanning hidden services & system hive ...

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sptd\Cfg]
    "s1"=dword:6bcbdbd4
    "s2"=dword:16c99d7f
    "h0"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4]
    "h0"=dword:00000000
    "khjeh"=hex:29,34,e3,1c,b8,c7,a3,fa,3e,9b,c3,dd,e0,27,68,1c,66,5b,0e,56,42,..
    "p0"="C:\Program Files\DAEMON Tools\"

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001]
    "a0"=hex:20,01,00,00,48,4e,bd,a8,29,ce,58,b3,80,ac,83,b6,ac,40,79,7e,0e,..
    "khjeh"=hex:fc,ab,bf,c2,a3,04,91,5f,f3,c9,44,89,c9,ce,6c,aa,39,01,73,e4,72,..

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf40]
    "khjeh"=hex:4e,c2,0b,4d,fd,98,b9,72,c3,44,75,55,87,69,c1,91,6e,17,80,b1,a9,..
    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Vax347s\Config\jdgg40]
    "ujdew"=hex:20,02,00,00,0b,80,0a,14,40,5c,05,9e,f7,e4,01,99,dc,0f,13,ca,33,..
    "ljej40"=hex:d0,e6,52,c8,58,b9,17,ed,f6,42,04,be,a7,53,2b,2e,05,bc,0e,1b,d1,..
    "ljej41"=hex:19,e6,52,c8,20,b9,17,ed,f7,42,05,be,a6,53,2b,2e,05,bc,0e,1b,9c,..
    "ljej42"=hex:19,e6,52,c8,20,b9,17,ed,f7,42,05,be,a6,53,2b,2e,05,bc,0e,1b,9c,..
    "ljej43"=hex:19,e6,52,c8,20,b9,17,ed,f7,42,05,be,a6,53,2b,2e,05,bc,0e,1b,9c,..
    "ljej44"=hex:19,e6,52,c8,20,b9,17,ed,f7,42,05,be,a6,53,2b,2e,05,bc,0e,1b,9c,..
    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4]
    "h0"=dword:00000000
    "khjeh"=hex:29,34,e3,1c,b8,c7,a3,fa,3e,9b,c3,dd,e0,27,68,1c,66,5b,0e,56,42,..
    "p0"="C:\Program Files\DAEMON Tools\"

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001]
    "a0"=hex:20,01,00,00,48,4e,bd,a8,29,ce,58,b3,80,ac,83,b6,ac,40,79,7e,0e,..
    "khjeh"=hex:fc,ab,bf,c2,a3,04,91,5f,f3,c9,44,89,c9,ce,6c,aa,39,01,73,e4,72,..

    [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf40]
    "khjeh"=hex:4e,c2,0b,4d,fd,98,b9,72,c3,44,75,55,87,69,c1,91,6e,17,80,b1,a9,..

    scanning hidden registry entries ...

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{E9F81423-211E-46B6-9AE0-38568BC5CF6F}]
    "DisplayName"="Alcohol 120%"
    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\{33D528EB-EDAD-6C20-6EB1-B3464571ADA7}]
    "iapbnhdnlagmcjajaa"=hex:69,61,6e,6b,67,63,6d,61,61,6e,6b,68,6b,6f,6c,62,65,68,00,00
    "hafdlnfiaonlphde"=hex:69,61,6e,6b,67,63,6d,61,61,6e,6b,68,6b,6f,6c,62,65,68,00,00
    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\{9E6392EC-6743-48CF-7CAA-F25A325B979A}]
    "oajffaimglpcpfojahbodggjncffno"=hex:64,61,6a,6c,66,6f,61,6d,00,80
    "oangfgickgkkjdhmmjimkdgphhalne"=hex:6b,61,6a,6c,69,6f,61,6f,6f,66,64,61,66,61,65,67,65,66,62,62,6d,..
    "nahghkmggkjbhkogaifkkpnpfajp"=hex:69,61,70,6b,66,6f,64,70,6c,69,69,63,6c,62,70,66,6e,62,00,00
    "eafhfmliap"=hex:6f,61,6d,68,63,66,6f,6a,67,6e,62,6a,63,68,6a,62,62,6f,62,63,62,..
    "caifbk"=hex:6c,62,6e,6c,66,6f,63,62,6e,66,64,70,6b,6e,66,62,6c,63,65,67,68,..

    scanning hidden files ...

    scan completed successfully
    hidden processes: 0
    hidden services: 0
    hidden files: 0


    Remaining Services :




    Authorized Application Key Export:

    [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
    "%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:mad:xpsp2res.dll,-22019"
    "C:\\Program Files\\Messenger\\msmsgs.exe"="C:\\Program Files\\Messenger\\msmsgs.exe:*:Enabled:Windows Messenger"
    "C:\\Program Files\\iTunes\\iTunes.exe"="C:\\Program Files\\iTunes\\iTunes.exe:*:Enabled:iTunes"
    "C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\wingfmho¾.exe"="C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\wingfmho¾.exe:*:Enabled:ipsec"
    "C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winsuyh….exe"="C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winsuyh….exe:*:Enabled:ipsec"
    "C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winywput¾.exe"="C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winywput¾.exe:*:Enabled:ipsec"
    "C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winmmnoic®.exe"="C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winmmnoic®.exe:*:Enabled:ipsec"
    "C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\wintvff….exe"="C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\wintvff….exe:*:Enabled:ipsec"
    "C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winmkouxwŸ.exe"="C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winmkouxwŸ.exe:*:Enabled:ipsec"
    "C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winanba….exe"="C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winanba….exe:*:Enabled:ipsec"
    "C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\wintexp….exe"="C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\wintexp….exe:*:Enabled:ipsec"
    "C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\wingmbj….exe"="C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\wingmbj….exe:*:Enabled:ipsec"
    "C:\\Program Files\\DAEMON Tools\\daemon.exe"="C:\\Program Files\\DAEMON Tools\\daemon.exe:*:Enabled:ipsec"
    "C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\windxjoqmŸ.exe"="C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\windxjoqmŸ.exe:*:Enabled:ipsec"
    "C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winrmanx¾.exe"="C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winrmanx¾.exe:*:Enabled:ipsec"
    "C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winrqis….exe"="C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winrqis….exe:*:Enabled:ipsec"
    "C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winmcrv….exe"="C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winmcrv….exe:*:Enabled:ipsec"
    "C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\windmol….exe"="C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\windmol….exe:*:Enabled:ipsec"
    "C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winbipur¾.exe"="C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winbipur¾.exe:*:Enabled:ipsec"
    "C:\\Program Files\\Mozilla Firefox\\firefox.exe"="C:\\Program Files\\Mozilla Firefox\\firefox.exe:*:Enabled:ipsec"
    "C:\\WINDOWS\\Explorer.EXE"="C:\\WINDOWS\\Explorer.EXE:*:Enabled:ipsec"
    "C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\wingvlro¾.exe"="C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\wingvlro¾.exe:*:Enabled:ipsec"
    "C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winodcrm¾.exe"="C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winodcrm¾.exe:*:Enabled:ipsec"
    "C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winvlsayo÷.exe"="C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winvlsayo÷.exe:*:Enabled:ipsec"
    "C:\\WINDOWS\\SOUNDMAN.EXE"="C:\\WINDOWS\\SOUNDMAN.EXE:*:Enabled:ipsec"
    "C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\wintltt….exe"="C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\wintltt….exe:*:Enabled:ipsec"
    "C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winvysh….exe"="C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winvysh….exe:*:Enabled:ipsec"
    "C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winoqio….exe"="C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winoqio….exe:*:Enabled:ipsec"
    "C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winwfof….exe"="C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winwfof….exe:*:Enabled:ipsec"
    "C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winsljvg¾.exe"="C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winsljvg¾.exe:*:Enabled:ipsec"
    "C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winhrhafd÷.exe"="C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winhrhafd÷.exe:*:Enabled:ipsec"
    "C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\wintjvdmn÷.exe"="C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\wintjvdmn÷.exe:*:Enabled:ipsec"
    "C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\wineinimm÷.exe"="C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\wineinimm÷.exe:*:Enabled:ipsec"
    "C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winjhvlv¾.exe"="C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winjhvlv¾.exe:*:Enabled:ipsec"
    "C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winnsfe….exe"="C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winnsfe….exe:*:Enabled:ipsec"
    "C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winuscmd¾.exe"="C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winuscmd¾.exe:*:Enabled:ipsec"
    "C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winihoaa¾.exe"="C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winihoaa¾.exe:*:Enabled:ipsec"
    "C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winwpxr….exe"="C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winwpxr….exe:*:Enabled:ipsec"
    "C:\\WINDOWS\\system32\\RunDLL32.exe"="C:\\WINDOWS\\system32\\RunDLL32.exe:*:Enabled:ipsec"
    "C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winfeudmv÷.exe"="C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winfeudmv÷.exe:*:Enabled:ipsec"
    "C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winsgcikr÷.exe"="C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winsgcikr÷.exe:*:Enabled:ipsec"
    "C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winnojh….exe"="C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winnojh….exe:*:Enabled:ipsec"
    "C:\\WINDOWS\\system32\\CTHELPER.EXE"="C:\\WINDOWS\\system32\\CTHELPER.EXE:*:Enabled:ipsec"
    "C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winksrd….exe"="C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winksrd….exe:*:Enabled:ipsec"
    "C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\wingyvag¾.exe"="C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\wingyvag¾.exe:*:Enabled:ipsec"
    "C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winhahmgm÷.exe"="C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winhahmgm÷.exe:*:Enabled:ipsec"
    "C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winfqhja¾.exe"="C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winfqhja¾.exe:*:Enabled:ipsec"
    "C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winqyyjx¾.exe"="C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winqyyjx¾.exe:*:Enabled:ipsec"
    "C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winyvvy….exe"="C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winyvvy….exe:*:Enabled:ipsec"
    "C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winsbbpm¾.exe"="C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winsbbpm¾.exe:*:Enabled:ipsec"
    "C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winouhira÷.exe"="C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winouhira÷.exe:*:Enabled:ipsec"
    "C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winyajir¾.exe"="C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winyajir¾.exe:*:Enabled:ipsec"
    "C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winlxmva¾.exe"="C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winlxmva¾.exe:*:Enabled:ipsec"
    "C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winixapyn÷.exe"="C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winixapyn÷.exe:*:Enabled:ipsec"
    "C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\wingbjqde÷.exe"="C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\wingbjqde÷.exe:*:Enabled:ipsec"
    "C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\windxar….exe"="C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\windxar….exe:*:Enabled:ipsec"
    "C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winkinxd¾.exe"="C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winkinxd¾.exe:*:Enabled:ipsec"
    "C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winalcolt÷.exe"="C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winalcolt÷.exe:*:Enabled:ipsec"
    "C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winwhpq….exe"="C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winwhpq….exe:*:Enabled:ipsec"
    "C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winiirtywˆ.exe"="C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winiirtywˆ.exe:*:Enabled:ipsec"
    "C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winlqqougˆ.exe"="C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winlqqougˆ.exe:*:Enabled:ipsec"
    "C:\\Program Files\\Kerio\\Personal Firewall 4\\kpf4gui.exe"="C:\\Program Files\\Kerio\\Personal Firewall 4\\kpf4gui.exe:*:Enabled:ipsec"
    "C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\wineroxr¾.exe"="C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\wineroxr¾.exe:*:Enabled:ipsec"
    "C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winvwphq¾.exe"="C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winvwphq¾.exe:*:Enabled:ipsec"
    "C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winbgqkuhˆ.exe"="C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winbgqkuhˆ.exe:*:Enabled:ipsec"
    "C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\wintnxq….exe"="C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\wintnxq….exe:*:Enabled:ipsec"
    "C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winhdwg….exe"="C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winhdwg….exe:*:Enabled:ipsec"
    "C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winwwofir.exe"="C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winwwofir.exe:*:Enabled:ipsec"
    "C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winwsjja¾.exe"="C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winwsjja¾.exe:*:Enabled:ipsec"
    "C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\wineaax….exe"="C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\wineaax….exe:*:Enabled:ipsec"
    "C:\\Program Files\\IntCodec\\pmsngr.exe"="C:\\Program Files\\IntCodec\\pmsngr.exe:*:Enabled:ipsec"
    "C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winxhldl¾.exe"="C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winxhldl¾.exe:*:Enabled:ipsec"
    "C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winuyqut¾.exe"="C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winuyqut¾.exe:*:Enabled:ipsec"
    "C:\\PROGRA~1\\MOZILL~1\\FIREFOX.EXE"="C:\\PROGRA~1\\MOZILL~1\\FIREFOX.EXE:*:Enabled:Internet Explorer"
    "C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winuhcsqr.exe"="C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winuhcsqr.exe:*:Enabled:ipsec"
    "C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winqldpig.exe"="C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winqldpig.exe:*:Enabled:ipsec"
    "C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winihqmw¾.exe"="C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winihqmw¾.exe:*:Enabled:ipsec"
    "C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\wincvrdy¾.exe"="C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\wincvrdy¾.exe:*:Enabled:ipsec"
    "C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\wintnfk….exe"="C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\wintnfk….exe:*:Enabled:ipsec"
    "C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winnnef….exe"="C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winnnef….exe:*:Enabled:ipsec"
    "C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\wingetrm¾.exe"="C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\wingetrm¾.exe:*:Enabled:ipsec"
    "C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winmuxcb¾.exe"="C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winmuxcb¾.exe:*:Enabled:ipsec"
    "C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winrtyo….exe"="C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winrtyo….exe:*:Enabled:ipsec"
    "C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winfalcv¾.exe"="C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winfalcv¾.exe:*:Enabled:ipsec"
    "C:\\Program Files\\QuickTime\\qttask.exe"="C:\\Program Files\\QuickTime\\qttask.exe:*:Enabled:ipsec"
    "C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winioodx¾.exe"="C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winioodx¾.exe:*:Enabled:ipsec"
    "C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winhxnri¾.exe"="C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winhxnri¾.exe:*:Enabled:ipsec"
    "C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winbpbb….exe"="C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winbpbb….exe:*:Enabled:ipsec"
    "C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winocsaksç.exe"="C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winocsaksç.exe:*:Enabled:ipsec"
    "C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winqtbrbqç.exe"="C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winqtbrbqç.exe:*:Enabled:ipsec"
    "C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\wintynkm¾.exe"="C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\wintynkm¾.exe:*:Enabled:ipsec"
    "C:\\Program Files\\Microsoft Office\\Office\\EXCEL.EXE"="C:\\Program Files\\Microsoft Office\\Office\\EXCEL.EXE:*:Enabled:ipsec"
    "C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\windtldtj#.exe"="C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\windtldtj#.exe:*:Enabled:ipsec"
    "C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winqegtf¾.exe"="C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winqegtf¾.exe:*:Enabled:ipsec"
    "C:\\Program Files\\AntiVir PersonalEdition Classic\\avgnt.exe"="C:\\Program Files\\AntiVir PersonalEdition Classic\\avgnt.exe:*:Enabled:ipsec"
    "C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winmesh….exe"="C:\\DOCUME~1\\Alatalo\\LOCALS~1\\Temp\\winmesh….exe:*:Enabled:ipsec"
    "C:\\WINDOWS\\TEMP\\winrtxqoa?.exe"="C:\\WINDOWS\\TEMP\\winrtxqoa?.exe:*:Enabled:ipsec"
    @=":*:Enabled:Internet Explorer"
    "D:\\Pelit\\NWN2\\nwn2main.exe"="D:\\Pelit\\NWN2\\nwn2main.exe:*:Enabled:Neverwinter Nights 2 Main"
    "D:\\Pelit\\NWN2\\nwn2main_amdxp.exe"="D:\\Pelit\\NWN2\\nwn2main_amdxp.exe:*:Enabled:Neverwinter Nights 2 AMD"
    "D:\\Pelit\\NWN2\\nwupdate.exe"="D:\\Pelit\\NWN2\\nwupdate.exe:*:Enabled:Neverwinter Nights 2 Updater"
    "D:\\Pelit\\NWN2\\nwn2server.exe"="D:\\Pelit\\NWN2\\nwn2server.exe:*:Enabled:Neverwinter Nights 2 Server"
    "D:\\Pelit\\Supreme Commander\\Supreme Commander\\bin\\SupremeCommander.exe"="D:\\Pelit\\Supreme Commander\\Supreme Commander\\bin\\SupremeCommander.exe:*:Enabled:Supreme Commander"
    "D:\\Pelit\\Supreme Commander\\GPGNet\\GPG.Multiplayer.Client.exe"="D:\\Pelit\\Supreme Commander\\GPGNet\\GPG.Multiplayer.Client.exe:*:Enabled:GPGNet - Supreme Commander"
    "C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"="C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger"
    "C:\\Program Files\\Windows Live\\Messenger\\livecall.exe"="C:\\Program Files\\Windows Live\\Messenger\\livecall.exe:*:Enabled:Windows Live Messenger (Phone)"
    "G:\\Pelit\\Sins of a solar empire DEMO\\Sins of a Solar Empire.exe"="G:\\Pelit\\Sins of a solar empire DEMO\\Sins of a Solar Empire.exe:*:Enabled:Sins of a Solar Empire Demo"
    "C:\\pelit\\Soase\\Sins of a Solar Empire.exe"="C:\\pelit\\Soase\\Sins of a Solar Empire.exe:*:Enabled:Sins of a Solar Empire"
    "C:\\Program Files\\Skype\\Phone\\Skype.exe"="C:\\Program Files\\Skype\\Phone\\Skype.exe:*:Enabled:Skype"
    "C:\\Program Files\\SiSoftware\\SiSoftware Sandra Lite XII.SP2c\\RpcAgentSrv.exe"="C:\\Program Files\\SiSoftware\\SiSoftware Sandra Lite XII.SP2c\\RpcAgentSrv.exe:*:Enabled:SiSoftware Deployment Agent Service"
    "C:\\Program Files\\SiSoftware\\SiSoftware Sandra Lite XII.SP2c\\WNt500x86\\RpcSandraSrv.exe"="C:\\Program Files\\SiSoftware\\SiSoftware Sandra Lite XII.SP2c\\WNt500x86\\RpcSandraSrv.exe:*:Enabled:SiSoftware Sandra Agent Service"
    "G:\\Pelit\\Mass Effect\\Binaries\\MassEffect.exe"="G:\\Pelit\\Mass Effect\\Binaries\\MassEffect.exe:*:Enabled:Mass Effect Game"
    "G:\\Pelit\\Mass Effect\\MassEffectLauncher.exe"="G:\\Pelit\\Mass Effect\\MassEffectLauncher.exe:*:Enabled:Mass Effect Launcher"

    [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
    "%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:mad:xpsp2res.dll,-22019"
    "C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"="C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger"
    "C:\\Program Files\\Windows Live\\Messenger\\livecall.exe"="C:\\Program Files\\Windows Live\\Messenger\\livecall.exe:*:Enabled:Windows Live Messenger (Phone)"

    Remaining Files :


    File Backups: - C:\SDFix\backups\backups.zip

    Files with Hidden Attributes :

    Thu 6 Apr 2006 4,348 A.SH. --- "C:\Documents and Settings\All Users\DRM\DRMv1.bak"
    Wed 22 Aug 2007 61,440 A..H. --- "C:\Program Files\MySQL\MySQL Connector Net 1.0.10.1\installtools.dll"
    Fri 11 May 2007 0 A.SH. --- "C:\Documents and Settings\All Users\DRM\Cache\Indiv05.tmp"
    Sat 13 Nov 2004 37,376 ...H. --- "C:\Program Files\Common Files\Adobe\ESD\DLMCleanup.exe"
    Mon 24 Nov 2008 7,382 ...HR --- "C:\Documents and Settings\Alatalo\Application Data\SecuROM\UserData\securom_v7_01.bak"
    Thu 6 Apr 2006 4,348 ...H. --- "C:\Documents and Settings\Alatalo\Omat tiedostot\Omat musiikkitiedostot\K„ytt”oikeuden varmuuskopio\drmv1key.bak"
    Wed 21 Jun 2006 20 A..H. --- "C:\Documents and Settings\Alatalo\Omat tiedostot\Omat musiikkitiedostot\K„ytt”oikeuden varmuuskopio\drmv1lic.bak"
    Thu 11 May 2006 400 A.SH. --- "C:\Documents and Settings\Alatalo\Omat tiedostot\Omat musiikkitiedostot\K„ytt”oikeuden varmuuskopio\drmv2key.bak"
    Mon 10 Nov 2008 10,398,632 A..H. --- "C:\Documents and Settings\Alatalo\Application Data\Sun\Java\jre1.6.0_11\BIT5.tmp"
    Fri 5 Dec 2008 209,300 A..H. --- "C:\Documents and Settings\Alatalo\Application Data\Sun\Java\jre1.6.0_11\BIT6.tmp"
    Thu 24 Feb 2005 22,016 A..H. --- "C:\Documents and Settings\Alatalo\Ty”p”yt„\temppi\OOPE\Harj6\~WRL1523.tmp"
    Thu 24 Feb 2005 21,504 A..H. --- "C:\Documents and Settings\Alatalo\Ty”p”yt„\temppi\OOPE\Harj6\~WRL1768.tmp"
    Thu 24 Feb 2005 21,504 A..H. --- "C:\Documents and Settings\Alatalo\Ty”p”yt„\temppi\OOPE\Harj6\~WRL1936.tmp"
    Thu 24 Feb 2005 22,016 A..H. --- "C:\Documents and Settings\Alatalo\Ty”p”yt„\temppi\OOPE\Harj6\~WRL2679.tmp"
    Thu 24 Feb 2005 19,968 A..H. --- "C:\Documents and Settings\Alatalo\Ty”p”yt„\temppi\OOPE\Harj6\~WRL3295.tmp"
    Thu 24 Feb 2005 20,992 A..H. --- "C:\Documents and Settings\Alatalo\Ty”p”yt„\temppi\OOPE\Harj6\~WRL3821.tmp"

    Finished!

     
    Last edited by a moderator: Dec 21, 2008
Thread Status:
Not open for further replies.

Share This Page