Welcome to MalwareRemoval.com,
What if we told you that you could get malware removal help from experts, and that it was 100% free? MalwareRemoval.com provides free support for people with infected computers. Our help, and the tools we use are always 100% free. No hidden catch. We simply enjoy helping others. You enjoy a clean, safe computer.

Malware Removal Instructions

Need help for "EPOCLICL VIRUS" and Google-analytics

MalwareRemoval.com provides free support for people with infected computers. Using plain language that anyone can understand, our community of volunteer experts will walk you through each step.

Need help for "EPOCLICL VIRUS" and Google-analytics

Unread postby nerutosako » December 23rd, 2010, 2:26 pm

Hi, I need ur help !
I am sure that my computer is infected with the "Epoclick virus", I'm frequently redirected to websites such as epoclick.com & google-analytics.com (or similar), I also frequently get sent to all sorts of business websites.
And my WiFi internet got hax by 2 diff ip :-s (other than mine)


Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 1:06:24 AM, on 12/23/2010
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v8.00 (8.00.6001.18999)
Boot mode: Normal

Running processes:
C:\Windows\SYSTEM32\WISPTIS.EXE
C:\Program Files\Common Files\microsoft shared\ink\TabTip.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\WTablet\Pen_TabletUser.exe
C:\Program Files\Common Files\Microsoft Shared\Ink\InputPersonalization.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\ThinkPad\Utilities\EZEJMNAP.EXE
C:\Program Files\Lenovo\NPDIRECT\tpfnf7sp.exe
C:\Program Files\Lenovo\HOTKEY\TPOSDSVC.exe
C:\Program Files\Lenovo\HOTKEY\tpfnf6r.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\Common Files\Lenovo\Scheduler\scheduler_proxy.exe
C:\Program Files\ThinkVantage\PrdCtr\LPMGR.EXE
C:\Program Files\ThinkVantage\PrdCtr\LPMLCHK.EXE
C:\Program Files\Lenovo\Message Center Plus\MCPLaunch.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\Lenovo\Client Security Solution\cssauth.exe
C:\Windows\WindowsMobile\wmdSync.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Microsoft Security Essentials\msseces.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Zune\ZuneLauncher.exe
C:\Users\1\AppData\Local\Temp\Rar$EX00.575\UniKey 4.0.8 Final\UniKey.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Digital Line Detect\DLG.exe
C:\Program Files\Lenovo\HOTKEY\TPONSCR.exe
C:\Program Files\Lenovo\Zoom\TpScrex.exe
C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
C:\PROGRA~1\ThinkPad\UTILIT~1\PWMUIAux.exe
C:\Program Files\Common Files\Java\Java Update\jucheck.exe
C:\Program Files\Windows Live\Contacts\wlcomm.exe
C:\Windows\system32\wuauclt.exe
C:\Windows\system32\conime.exe
C:\Users\1\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\1\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\1\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\1\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\1\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Windows\system32\igfxsrvc.exe
C:\Users\1\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\1\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\1\Desktop\HijackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://lenovo.live.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ca.yahoo.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://ca.rd.yahoo.com/customize/ie/def ... .yahoo.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://ca.rd.yahoo.com/customize/ie/def ... .yahoo.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://ca.yahoo.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.6.5805.1910\swg.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: (no name) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - (no file)
O3 - Toolbar: (no name) - {D4027C7F-154A-4066-A1AD-4243D8127440} - (no file)
O3 - Toolbar: (no name) - {b317125e-2f10-4388-bf1f-2c31c6cd89ed} - (no file)
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [EZEJMNAP] C:\PROGRA~1\ThinkPad\UTILIT~1\EzEjMnAp.Exe
O4 - HKLM\..\Run: [TPFNF7] C:\Program Files\Lenovo\NPDIRECT\TPFNF7SP.exe /r
O4 - HKLM\..\Run: [TPHOTKEY] C:\Program Files\Lenovo\HOTKEY\TPOSDSVC.exe
O4 - HKLM\..\Run: [LENOVO.TPFNF6R] C:\Program Files\Lenovo\HOTKEY\TPFNF6R.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [TVT Scheduler Proxy] C:\Program Files\Common Files\Lenovo\Scheduler\scheduler_proxy.exe
O4 - HKLM\..\Run: [LPManager] C:\PROGRA~1\THINKV~1\PrdCtr\LPMGR.exe
O4 - HKLM\..\Run: [LPMailChecker] C:\PROGRA~1\THINKV~1\PrdCtr\LPMLCHK.exe
O4 - HKLM\..\Run: [Message Center Plus] C:\Program Files\LENOVO\Message Center Plus\MCPLaunch.exe /start
O4 - HKLM\..\Run: [PWMTRV] rundll32 C:\PROGRA~1\ThinkPad\UTILIT~1\PWMTR32V.DLL,PwrMgrBkGndMonitor
O4 - HKLM\..\Run: [BLOG] rundll32 C:\PROGRA~1\ThinkPad\UTILIT~1\BTVLogEx.DLL,StartBattLog
O4 - HKLM\..\Run: [CreateLMBCShortCut] "C:\Program Files\Lenovo\Mobile Broadband Connect\UserShortcutCreator.exe"
O4 - HKLM\..\Run: [cssauth] "C:\Program Files\Lenovo\Client Security Solution\cssauth.exe" silent
O4 - HKLM\..\Run: [Windows Mobile-based device management] %windir%\WindowsMobile\wmdSync.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [MSSE] "c:\Program Files\Microsoft Security Essentials\msseces.exe" -hide -runkey
O4 - HKLM\..\Run: [DivXUpdate] "C:\Program Files\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [Zune Launcher] "c:\Program Files\Zune\ZuneLauncher.exe"
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [UniKey] C:\Users\1\AppData\Local\Temp\Rar$EX00.575\UniKey 4.0.8 Final\UniKey.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [Google Update] "C:\Users\1\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [Software Informer] "C:\Program Files\Software Informer\softinfo.exe" -autorun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O4 - Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Startup: IMVU.lnk = C:\Users\1\AppData\Roaming\IMVUClient\IMVUQualityAgent.exe
O4 - Startup: ViiKiiDesktopPlugin.lnk = C:\Program Files\ViiKiiDesktopPlugin\ViiKiiDesktopPlugin.exe
O4 - Global Startup: Digital Line Detect.lnk = C:\Program Files\Digital Line Detect\DLG.exe
O8 - Extra context menu item: &Search - ?p=GRman000
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office12\EXCEL.EXE/3000
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~1\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {F4F55DC8-0B69-4DFE-BA94-CB677B88B2A3} - C:\Program Files\Lenovo\Client Security Solution\tvtpwm_ie_com.dll
O9 - Extra 'Tools' menuitem: Lenovo Password Manager... - {F4F55DC8-0B69-4DFE-BA94-CB677B88B2A3} - C:\Program Files\Lenovo\Client Security Solution\tvtpwm_ie_com.dll
O15 - Trusted Zone: http://*.pps.tv
O15 - Trusted Zone: http://*.ppstream.com
O15 - Trusted Zone: http://*.webscache.com
O15 - ESC Trusted Zone: http://*.pps.tv
O15 - ESC Trusted Zone: http://*.ppstream.com
O15 - ESC Trusted Zone: http://*.webscache.com
O17 - HKLM\System\CCS\Services\Tcpip\..\{EC0A971B-7CB0-46F3-B7CA-97DA7111CC45}: NameServer = 0.0.0.0
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O23 - Service: Ac Profile Manager Service (AcPrfMgrSvc) - Lenovo - C:\Program Files\ThinkPad\ConnectUtilities\AcPrfMgrSvc.exe
O23 - Service: Access Connections Main Service (AcSvc) - Lenovo - C:\Program Files\ThinkPad\ConnectUtilities\AcSvc.exe
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Ati External Event Utility - ATI Technologies Inc. - C:\Windows\system32\Ati2evxx.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: ThinkPad PM Service (IBMPMSVC) - Lenovo - C:\Windows\system32\ibmpmsvc.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: IviRegMgr - InterVideo - C:\Program Files\Common Files\InterVideo\RegMgr\iviRegMgr.exe
O23 - Service: Lenovo Microphone Mute (LENOVO.MICMUTE) - Lenovo Group Limited - C:\Program Files\LENOVO\HOTKEY\MICMUTE.exe
O23 - Service: Wireless PAN DHCP Server (MyWiFiDHCPDNS) - Unknown owner - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: Power Manager DBC Service - Lenovo - C:\Program Files\ThinkPad\Utilities\PWMDBSVC.EXE
O23 - Service: Intel® PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: RoxMediaDB10 - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\10.0\SharedCOM\RoxMediaDB10.exe
O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe
O23 - Service: System Update (SUService) - Lenovo Group Limited - c:\Program Files\Lenovo\System Update\SUService.exe
O23 - Service: TabletServicePen - Wacom Technology, Corp. - C:\Windows\system32\Pen_Tablet.exe
O23 - Service: TeamViewer 6 (TeamViewer6) - TeamViewer GmbH - C:\Program Files\TeamViewer\Version6\TeamViewer_Service.exe
O23 - Service: ThinkVantage Registry Monitor Service - Lenovo Group Limited - c:\Program Files\Common Files\Lenovo\tvt_reg_monitor_svc.exe
O23 - Service: ThinkPad HDD APS Logging Service (TPHDEXLGSVC) - Lenovo. - C:\Windows\System32\TPHDEXLG.exe
O23 - Service: On Screen Display (TPHKSVC) - Lenovo Group Limited - C:\Program Files\LENOVO\HOTKEY\TPHKSVC.exe
O23 - Service: TSS Core Service (TSSCoreService) - Lenovo - C:\Program Files\Lenovo\Client Security Solution\tvttcsd.exe
O23 - Service: TVT Backup Protection Service - Unknown owner - C:\Program Files\Lenovo\Rescue and Recovery\rrpservice.exe
O23 - Service: TVT Backup Service - Lenovo Group Limited - C:\Program Files\Lenovo\Rescue and Recovery\rrservice.exe
O23 - Service: TVT Scheduler - Lenovo Group Limited - c:\Program Files\Common Files\Lenovo\Scheduler\tvtsched.exe
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe
O23 - Service: Yahoo! Updater (YahooAUService) - Yahoo! Inc. - C:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe

--
End of file - 13721 bytes



2007 Microsoft Office system
Access Help
Acrobat.com
Acrobat.com
Adobe AIR
Adobe AIR
Adobe Bridge 1.0
Adobe Common File Installer
Adobe Flash Player 10 ActiveX
Adobe Flash Player 10 Plugin
Adobe Help Center 1.0
Adobe Photoshop CS2
Adobe Reader 9.4.1
Adobe Shockwave Player 11.5
Adobe Stock Photos 1.0
Apple Mobile Device Support
AT&T Service Activation
ATI Uninstaller
BitTorrent
Bonjour
Business Contact Manager for Outlook 2007 SP2
Business Contact Manager for Outlook 2007 SP2
Catalyst Control Center - Branding
CCleaner
Client Security - Password Manager
Conexant 20561 SmartAudio HD
Drag-to-Disc
GDR 4053 for SQL Server Database Services 2005 ENU (KB970892)
Google Toolbar for Internet Explorer
Google Toolbar for Internet Explorer
Google Update Helper
Help Center
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)
Intel PROSet Wireless
Intel(R) Management Engine Interface
InterVideo WinDVD
Java(TM) 6 Update 20
L&H TTS3000 Français
Le Petit Robert 2009
Lenovo Registration
Lenovo System Interface Driver
Lenovo ThinkVantage Toolbox
Lenovo Welcome
Logiciel d'archivage WinRAR
Malwarebytes' Anti-Malware
Message Center
Message Center Plus
Microsoft .NET Framework 3.5 SP1
Microsoft .NET Framework 3.5 SP1
Microsoft .NET Framework 4 Client Profile
Microsoft .NET Framework 4 Client Profile
Microsoft Antimalware
Microsoft Antimalware Service FR-FR Language Pack
Microsoft Choice Guard
Microsoft Games for Windows - LIVE
Microsoft Games for Windows - LIVE Redistributable
Microsoft Games for Windows - LIVE Redistributable
Microsoft Office 2003 Web Components
Microsoft Office 2007 Primary Interop Assemblies
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office Access MUI (English) 2007
Microsoft Office Access Setup Metadata MUI (English) 2007
Microsoft Office Enterprise 2007
Microsoft Office Enterprise 2007
Microsoft Office Excel MUI (English) 2007
Microsoft Office Groove MUI (English) 2007
Microsoft Office Groove Setup Metadata MUI (English) 2007
Microsoft Office InfoPath MUI (English) 2007
Microsoft Office Live Add-in 1.5
Microsoft Office OneNote MUI (English) 2007
Microsoft Office Outlook MUI (English) 2007
Microsoft Office PowerPoint MUI (English) 2007
Microsoft Office Professional Hybrid 2007
Microsoft Office Proof (English) 2007
Microsoft Office Proof (French) 2007
Microsoft Office Proof (Spanish) 2007
Microsoft Office Proofing (English) 2007
Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
Microsoft Office Publisher MUI (English) 2007
Microsoft Office Shared MUI (English) 2007
Microsoft Office Shared Setup Metadata MUI (English) 2007
Microsoft Office Small Business Connectivity Components
Microsoft Office Suite Activation Assistant
Microsoft Office Word MUI (English) 2007
Microsoft Search Enhancement Pack
Microsoft Security Essentials
Microsoft Security Essentials
Microsoft Silverlight
Microsoft SQL Server 2005
Microsoft SQL Server 2005 Express Edition (MSSMLBIZ)
Microsoft SQL Server Native Client
Microsoft SQL Server Setup Support Files (English)
Microsoft SQL Server VSS Writer
Microsoft Sync Framework Runtime Native v1.0 (x86)
Microsoft Sync Framework Services Native v1.0 (x86)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
Mobile Broadband Connect
Mozilla Firefox (3.5.12)
MSVCRT
MSXML 4.0 SP2 (KB954430)
MSXML 4.0 SP2 (KB973688)
MySQL Connector/ODBC 3.51
On Screen Display
PaintTool SAI Ver.1
Pen Tablet
Presentation Director
Product Recovery Disc Burning Utility
Productivity Center Supplement for ThinkPad
PunkBuster Services
QuickTime
RealPlayer
RealUpgrade 1.0
Registry patch for Windows Vista USB S3 PM Enablement
Registry patch of Changing Timing of IDLE IRP by Finger Print Driver for Windows Vista
Registry Patch of Enabling Device Initiated Power Management(DIPM) on SATA for Windows Vista
Registry patch to improve USB device detection on resume from sleep for Windows Vista
Rescue and Recovery
RICOH R5C83x/84x Flash Media Controller Driver Ver.3.54.02
RICOH R5U230 Media Driver ver.2.02.02.01
Roxio Activation Module
Roxio Central Audio
Roxio Central Copy
Roxio Central Core
Roxio Central Data
Roxio Central Tools
Roxio Creator Business Edition
Roxio Creator Business Edition
Roxio Express Labeler 3
Security Update for 2007 Microsoft Office System (KB969559)
Security Update for 2007 Microsoft Office System (KB969559)
Security Update for 2007 Microsoft Office System (KB976321)
Security Update for 2007 Microsoft Office System (KB976321)
Security Update for 2007 Microsoft Office System (KB982312)
Security Update for 2007 Microsoft Office System (KB982312)
Security Update for 2007 Microsoft Office System (KB982331)
Security Update for 2007 Microsoft Office System (KB982331)
Security Update for Microsoft .NET Framework 3.5 SP1 (KB2416473)
Security Update for Microsoft Office Excel 2007 (KB982308)
Security Update for Microsoft Office Excel 2007 (KB982308)
Security Update for Microsoft Office InfoPath 2007 (KB979441)
Security Update for Microsoft Office InfoPath 2007 (KB979441)
Security Update for Microsoft Office InfoPath 2007 (KB979441)
Security Update for Microsoft Office Outlook 2007 (KB972363)
Security Update for Microsoft Office Outlook 2007 (KB972363)
Security Update for Microsoft Office PowerPoint 2007 (KB982158)
Security Update for Microsoft Office PowerPoint 2007 (KB982158)
Security Update for Microsoft Office Publisher 2007 (KB982124)
Security Update for Microsoft Office Publisher 2007 (KB982124)
Security Update for Microsoft Office system 2007 (972581)
Security Update for Microsoft Office system 2007 (972581)
Security Update for Microsoft Office system 2007 (KB969613)
Security Update for Microsoft Office system 2007 (KB969613)
Security Update for Microsoft Office system 2007 (KB974234)
Security Update for Microsoft Office system 2007 (KB974234)
Security Update for Microsoft Office Visio Viewer 2007 (KB973709)
Security Update for Microsoft Office Visio Viewer 2007 (KB973709)
Security Update for Microsoft Office Word 2007 (KB982135)
Security Update for Microsoft Office Word 2007 (KB982135)
Skype™ 4.2
Sonic CinePlayer Decoder Pack
Sonic Icons for Lenovo
Starcraft-BroodWar(svn)
System Requirements Lab
System Requirements Lab
System Update
TeamViewer 6
ThinkPad EasyEject Utility
ThinkPad FullScreen Magnifier
ThinkPad Mobility Center Customization
ThinkPad Modem Adapter
ThinkPad Power Management Driver
ThinkPad Power Manager
ThinkPad UltraNav Driver
ThinkPad UltraNav Utility
ThinkVantage Access Connections
ThinkVantage Active Protection System
ThinkVantage Productivity Center
ThinkVantage Status Gadget
Update for 2007 Microsoft Office System (KB967642)
Update for 2007 Microsoft Office System (KB967642)
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)
Update for Microsoft Office 2007 Help for Common Features (KB963673)
Update for Microsoft Office Access 2007 Help (KB963663)
Update for Microsoft Office Excel 2007 Help (KB963678)
Update for Microsoft Office Infopath 2007 Help (KB963662)
Update for Microsoft Office OneNote 2007 (KB980729)
Update for Microsoft Office OneNote 2007 Help (KB963670)
Update for Microsoft Office Outlook 2007 Help (KB963677)
Update for Microsoft Office Powerpoint 2007 Help (KB963669)
Update for Microsoft Office Publisher 2007 Help (KB963667)
Update for Microsoft Office Script Editor Help (KB963671)
Update for Microsoft Office Word 2007 Help (KB963665)
Update for Outlook 2007 Junk Email Filter (kb2279264)
Update for Outlook 2007 Junk Email Filter (kb983486)
Verizon Wireless Mobile Broadband Self Activation
VietFun Font Toolkits
Vista Codec Package
Wallpapers
Windows 7 Upgrade Advisor
Windows Driver Package - Intel (e1yexpress) Net (08/22/2008 9.52.10.1001)
Windows Driver Package - Intel (iaStor) hdc (02/11/2009 8.8.0.1009)
Windows Driver Package - Intel hdc (02/20/2008 6.9.1.1001)
Windows Driver Package - Intel System (01/30/2008 8.6.1.1001)
Windows Driver Package - Intel System (02/20/2008 8.6.1.1002)
Windows Driver Package - Intel System (02/20/2008 8.7.0.1007)
Windows Driver Package - Intel System (09/15/2006 7.0.0.1011)
Windows Driver Package - Intel USB (02/05/2007 8.3.0.1011)
Windows Driver Package - Lenovo 1.53 (03/19/2009 1.53)
Windows Driver Package - Ricoh Company MMC Host Controller (02/15/2008 6.00.03.05)
Windows Driver Package - Ricoh Company MS Host Controller (07/30/2007 6.00.01.11)
Windows Driver Package - Ricoh Company xD Host Controller (07/30/2007 6.00.01.13)
Windows Live Call
Windows Live Communications Platform
Windows Live Essentials
Windows Live Essentials
Windows Live ID Sign-in Assistant
Windows Live Messenger
Windows Live OneCare safety scanner
Windows Live OneCare safety scanner
Windows Live Toolbar
Windows Live Upload Tool
Windows Mobile Device Updater Component
Yahoo! Messenger
Yahoo! Search Protection
Yahoo! Software Update
Zune
Zune
Zune Language Pack (DEU)
Zune Language Pack (ESP)
Zune Language Pack (FRA)
Zune Language Pack (ITA)
Zune Language Pack (NLD)
Zune Language Pack (PTB)
Zune Language Pack (PTG)


Plz help !!!
nerutosako
Regular Member
 
Posts: 26
Joined: December 23rd, 2010, 2:22 pm
Advertisement
Register to Remove

Re: Need help for "EPOCLICL VIRUS" and Google-analytics

Unread postby Airscape » December 25th, 2010, 5:54 pm

Hello and welcome to the forum.
My name is Airscape and I'll be helping you with your malware issues.
The logs can take a while to research. Please be patient with me.

Take note of the following before we begin.
  • Post to this thread only and please stick to it until I say your pc is clean.
  • The instructions I give are for This computer only and should not be used on any other pc.
  • Do NOT run any tools/scans unless I instruct you to.
  • Try not to install/uninstall any programs while we work. This will add extra time researching your logs.
  • If you have found assistance elsewhere and no longer require our help, please say so, and this topic will be closed.
  • If you have any problems, please stop and ask before proceeding with any fixes.
  • ALL USERS OF THIS FORUM MUST READ THIS FIRST

Note: As I'm still in training, everything I post must be checked by a teacher first. So there may be a slight delay in between posts.

Important:
Please be aware that removing Malware is a hazardous undertaking. I will take care not to knowingly suggest courses of action that might damage your computer. However it is impossible for me to foresee all interactions that may happen between the software on your computer and those we'll use to clear you of infection, and I cannot guarantee the safety of your system. It is possible that we might encounter situations where the only recourse is to re-format and re-install your operating system, or to necessitate you taking your computer to a repair shop.

In light of this it would be wise for you to back up any important files and folders that you don't want to lose before we start.

Thanks
User avatar
Airscape
Regular Member
 
Posts: 1858
Joined: November 1st, 2008, 11:06 pm

Re: Need help for "EPOCLICL VIRUS" and Google-analytics

Unread postby nerutosako » December 25th, 2010, 10:11 pm

thanks u, i will be waiting
nerutosako
Regular Member
 
Posts: 26
Joined: December 23rd, 2010, 2:22 pm

Re: Need help for "EPOCLICL VIRUS" and Google-analytics

Unread postby Airscape » December 27th, 2010, 12:56 pm

Hello,

Remove P2P programs
IMPORTANT I notice there are signs of one or more P2P (Person to Person) File Sharing Programs on your computer.

BitTorrent

Please read: Refusal to remove Peer-to-Peer (P2P) programmes
You can remove the above program/s via Start > Control Panel > Programs and Features
Also take note that remnants of the above program/s and any other P2P program found will be removed when cleaning.

-----------------------------------------------------------

Punkbuster warning

I see you have Punkbuster installed.( read the section on Published features) This is spyware. Punkbuster can take control over various aspects of your computer, and some gaming tools not unlike Punkbuster also hinder their removals. By the definition we handle here, Punkbuster is actual spyware. Therefore, I now ask you to decide the following:
  • Either we try to leave Punkbuster alone but there is no guarantee a spyware component doesn't 'accidentally' get taken out; so Punkbuster might break.
    This will, of course, also break your ability to play games using Punkbuster enabled servers.
  • Or we can just remove Punkbuster. You can reinstall it afterwards if you wish, but please keep in mind that It is spyware.
  • Another option is to not clean this computer at all. This ensures Punkbuster will continue to function.
Please let me know what you would like to do.

-------------------------------------------------------------

Please download This Tool and save it to your desktop.
Right click MGADiag.exe and select Run as Administrator.
Click Continue. The program will run, please be patient.
Click Resolve Now (if available) and follow the prompts.
Once done, click on Copy then Paste the contents into your next reply.

---------------------------------------------------------

Download and Run CKScanner
Download CKScanner from here: http://downloads.malwareremoval.com/CKScanner.exe
Important - Save it to your desktop.
Right-click CKScanner.exe, select Run as Administrator, and click Search For Files.
After a very short time, when the cursor hourglass disappears, click Save List To File.
A message box will verify the file saved.
Double-click the CKFiles.txt icon on your desktop and copy/paste the contents in your next reply.

------------------------------------------------------

Post the following in your next reply:
  • Punkbuster decision
  • MGADiag log
  • CKScanner log

Also, are you aware of this NameServer?
O17 - HKLM\System\CCS\Services\Tcpip\..\{EC0A971B-7CB0-46F3-B7CA-97DA7111CC45}: NameServer = 0.0.0.0
User avatar
Airscape
Regular Member
 
Posts: 1858
Joined: November 1st, 2008, 11:06 pm

Re: Need help for "EPOCLICL VIRUS" and Google-analytics

Unread postby nerutosako » December 28th, 2010, 1:32 am

Punkbuster warning

I decide to just remove Punkbuster.


Diagnostic Report (1.9.0027.0):
-----------------------------------------
Windows Validation Data-->
Validation Status: Genuine
Validation Code: 0
Cached Online Validation Code: N/A, hr = 0xc004f012
Windows Product Key: *****-*****-FRJ4T-BKD6B-C47PP
Windows Product Key Hash: h84FlI5BStAbDjCJPyURCinXnx8=
Windows Product ID: 89576-OEM-7332141-00143
Windows Product ID Type: 2
Windows License Type: OEM SLP
Windows OS version: 6.0.6002.2.00010100.2.0.006
ID: {01EF96C7-3DA7-47AE-A343-01BAA07AB21E}(1)
Is Admin: Yes
TestCab: 0x0
LegitcheckControl ActiveX: N/A, hr = 0x80070002
Signed By: N/A, hr = 0x80070002
Product Name: Windows Vista (TM) Business
Architecture: 0x00000000
Build lab: 6002.vistasp2_gdr.100608-0458
TTS Error:
Validation Diagnostic:
Resolution Status: N/A

Vista WgaER Data-->
ThreatID(s): N/A, hr = 0x80070002
Version: N/A, hr = 0x80070002

Windows XP Notifications Data-->
Cached Result: N/A, hr = 0x80070002
File Exists: No
Version: N/A, hr = 0x80070002
WgaTray.exe Signed By: N/A, hr = 0x80070002
WgaLogon.dll Signed By: N/A, hr = 0x80070002

OGA Notifications Data-->
Cached Result: N/A, hr = 0x80070002
Version: N/A, hr = 0x80070002
OGAExec.exe Signed By: N/A, hr = 0x80070002
OGAAddin.dll Signed By: N/A, hr = 0x80070002

OGA Data-->
Office Status: 100 Genuine
Microsoft Office Enterprise 2007 - 100 Genuine
2007 Microsoft Office system - 100 Genuine
OGA Version: N/A, 0x80070002
Signed By: N/A, hr = 0x80070002
Office Diagnostics: 77F760FE-153-80070002_7E90FEE8-175-80070002_77F760FE-153-80070002_7E90FEE8-175-80070002_025D1FF3-364-80041010_025D1FF3-229-80041010_025D1FF3-230-1_025D1FF3-517-80040154_025D1FF3-237-80040154_025D1FF3-238-2_025D1FF3-244-80070002_025D1FF3-258-3_E2AD56EA-765-d003_E2AD56EA-766-0_E2AD56EA-134-80004005_B4D0AA8B-920-80070057

Browser Data-->
Proxy settings: N/A
User Agent: Mozilla/4.0 (compatible; MSIE 8.0; Win32)
Default Browser: C:\Users\1\AppData\Local\Google\Chrome\Application\chrome.exe
Download signed ActiveX controls: Prompt
Download unsigned ActiveX controls: Disabled
Run ActiveX controls and plug-ins: Allowed
Initialize and script ActiveX controls not marked as safe: Disabled
Allow scripting of Internet Explorer Webbrowser control: Disabled
Active scripting: Allowed
Script ActiveX controls marked as safe for scripting: Allowed

File Scan Data-->

Other data-->
Office Details: <GenuineResults><MachineData><UGUID>{01EF96C7-3DA7-47AE-A343-01BAA07AB21E}</UGUID><Version>1.9.0027.0</Version><OS>6.0.6002.2.00010100.2.0.006</OS><Architecture>x32</Architecture><PKey>*****-*****-*****-*****-C47PP</PKey><PID>89576-OEM-7332141-00143</PID><PIDType>2</PIDType><SID>S-1-5-21-282280619-2309682589-2335125919</SID><SYSTEM><Manufacturer>LENOVO</Manufacturer><Model>2081CTO</Model></SYSTEM><BIOS><Manufacturer>LENOVO</Manufacturer><Version>7VET66WW (2.16 )</Version><SMBIOSVersion major="2" minor="4"/><Date>20090422000000.000000+000</Date></BIOS><HWID>A1300500018400F8</HWID><UserLCID>0409</UserLCID><SystemLCID>0409</SystemLCID><TimeZone>Pacific Standard Time(GMT-08:00)</TimeZone><iJoin>0</iJoin><SBID><stat>3</stat><msppid></msppid><name></name><model></model></SBID><OEM><OEMID>LENOVO</OEMID><OEMTableID>TP-7V </OEMTableID></OEM><GANotification/></MachineData><Software><Office><Result>100</Result><Products><Product GUID="{90120000-0030-0000-0000-0000000FF1CE}"><LegitResult>100</LegitResult><Name>Microsoft Office Enterprise 2007</Name><Ver>12</Ver><Val>94436407C3F2586</Val><Hash>Nh+O7p+E5Ha5+8Lxn9JfFULj9GM=</Hash><Pid>89388-707-9845457-65068</Pid><PidType>14</PidType></Product><Product GUID="{91120000-0031-0000-0000-0000000FF1CE}"><LegitResult>100</LegitResult><Name>2007 Microsoft Office system</Name><Ver>12</Ver><PidType>19</PidType></Product></Products><Applications><App Id="15" Version="12" Result="100"/><App Id="16" Version="12" Result="100"/><App Id="18" Version="12" Result="100"/><App Id="19" Version="12" Result="100"/><App Id="1A" Version="12" Result="100"/><App Id="1B" Version="12" Result="100"/><App Id="44" Version="12" Result="100"/><App Id="A1" Version="12" Result="100"/><App Id="BA" Version="12" Result="100"/></Applications></Office></Software></GenuineResults>

Spsys.log Content: 0x80070002

Licensing Data-->
Software licensing service version: 6.0.6002.18005
Name: Windows(TM) Vista, Business edition
Description: Windows Operating System - Vista, OEM_SLP channel
Activation ID: fd3bcb98-5c55-4b2d-ae32-a4515e3c17a3
Application ID: 55c92734-d682-4d71-983e-d6ec3f16059f
Extended PID: 89576-00146-321-400143-02-1033-6001.0000-2382009
Installation ID: 014444327066410743194622478501658474508721359103241074
Processor Certificate URL: http://go.microsoft.com/fwlink/?LinkID=43473
Machine Certificate URL: http://go.microsoft.com/fwlink/?LinkID=43474
Use License URL: http://go.microsoft.com/fwlink/?LinkID=43476
Product Key Certificate URL: http://go.microsoft.com/fwlink/?LinkID=43475
Partial Product Key: C47PP
License Status: Licensed

Windows Activation Technologies-->
N/A

HWID Data-->
HWID Hash Current: OAAAAAAABAABAAIAAQABAAAABAABAAEAJJTipICFsFQuCOQsBA5y/eqj8vSEu3wGPJmsVjTrRso=

OEM Activation 1.0 Data-->
N/A

OEM Activation 2.0 Data-->
BIOS valid for OA 2.0: yes
Windows marker version: 0x20000
OEMID and OEMTableID Consistent: yes
BIOS Information:
ACPI Table Name OEMID Value OEMTableID Value
APIC LENOVO TP-7V
FACP LENOVO TP-7V
HPET LENOVO TP-7V
BOOT LENOVO TP-7V
MCFG LENOVO TP-7V
SSDT LENOVO TP-7V
ECDT LENOVO TP-7V
SLIC LENOVO TP-7V
SSDT LENOVO TP-7V
TCPA
SSDT LENOVO TP-7V
SSDT LENOVO TP-7V
SSDT LENOVO TP-7V

-------------------------------------------------------------------

CKScanner - Additional Security Risks - These are not necessarily bad
c:\program files\adobe\adobe photoshop cs2\presets\brushes\crackeddeskset_1-14.abr
c:\users\1\desktop\games\sc2cracker - shortcut.lnk
c:\users\1\desktop\games\sc2cracker.exe
scanner sequence 3.AB.11
----- EOF -----


---------------------------------------------------------------------
I have no idea about NAMESERVER ...
what ever is that i dont know ...
Im not good with computer in general
nerutosako
Regular Member
 
Posts: 26
Joined: December 23rd, 2010, 2:22 pm

Re: Need help for "EPOCLICL VIRUS" and Google-analytics

Unread postby Airscape » December 28th, 2010, 6:08 pm

That's ok, if there's anything you don't understand, please ask.


1- Uninstall PunkBuster
Please download PBSVC Setup Program. Save it to your desktop.

  1. Right click on pbsvc.exe and select Run as Admin to start it... then click Uninstall.

----------------------------------------------------------

2 - Random's System Information Tool (RSIT)
  • Please download RSIT by random/random from here or here and save it to your desktop.
  • Right-click on RSIT.exe and select Run as Admin to run RSIT.
  • Click Continue at the disclaimer screen.
  • Once it has finished, two text files will open.
  • Please post the contents of both log.txt (<<will be maximized) and info.txt (<<will be minimized)

Note: both logs can be found in the C:\rsit folder if you lose them.

--------------------------------------------------------

3 - GMER Rootkit Scanner
Please download GMER Rootkit Scanner from Here to you desktop.
  • Right click the .exe file and select Run as Admin. If asked to allow gmer.sys driver to load, please consent
  • If it gives you a warning about rootkit activity and asks if you want to run scan...click on NO
  • In the right panel, you will see several boxes that have been checked. Uncheck the following ...
    • IAT/EAT
    • Drives/Partition other than Systemdrive (Leave C:\ Checked)
    • Show All (don't miss this one)
    See image below
    Image
  • Then click the Scan button & wait for it to finish
  • Once done click on the [Save..] button, and in the File name area, type in "Gmer.txt" or it will save as a .log file
  • Save it where you can easily find it, such as your desktop, and post it in your next reply.
**Caution**
Rootkit scans often produce false positives. Do NOT take any action on any "<--- ROOKIT" entries

Note: Do not run any programs while Gmer is running.

If GMER has problem running (blue screens, crashes) let me know, do not run it again.

---------------------------------------------------

Post the following logs in your next reply:
(you can post the logs for each step as you complete it in a seperate post if you need to)
  • Both RSIT logs
  • Gmer log
User avatar
Airscape
Regular Member
 
Posts: 1858
Joined: November 1st, 2008, 11:06 pm

Re: Need help for "EPOCLICL VIRUS" and Google-analytics

Unread postby nerutosako » December 29th, 2010, 12:22 am

Info :

info.txt logfile of random's system information tool 1.08 2010-12-28 10:46:14

======Uninstall list======

-->C:\Program Files\Conexant\SAII\SETUP.EXE -U -ISAII -SM=SmartAudio.EXE,1801
-->C:\Program Files\InstallShield Installation Information\{3F92ABBB-6BBF-11D5-B229-002078017FBF}\SETUP.exe -l0x0009 -removeonly
-->C:\Program Files\InstallShield Installation Information\{69333A04-5134-40A5-A055-9166A7AA1EC8}\setup.exe -runfromtemp -l0x0009 -removeonly
-->C:\Program Files\InstallShield Installation Information\{E646DCF0-5A68-11D5-B229-002078017FBF}\SETUP.exe -l0x0009 -removeonly
2007 Microsoft Office system-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall PROHYBRIDR /dll OSETUP.DLL
Access Help-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{C6FA39A7-26B1-480A-BC74-6D17531AC222}\Setup.exe" -l0x9 UNINSTALL
Acrobat.com-->msiexec /qb /x {77DCDCE3-2DED-62F3-8154-05E745472D07}
Acrobat.com-->MsiExec.exe /I{77DCDCE3-2DED-62F3-8154-05E745472D07}
Adobe AIR-->c:\Program Files\Common Files\Adobe AIR\Versions\1.0\Resources\Adobe AIR Updater.exe -arp:uninstall
Adobe AIR-->MsiExec.exe /I{A2BCA9F1-566C-4805-97D1-7FDC93386723}
Adobe Bridge 1.0-->MsiExec.exe /I{B74D4E10-1033-0000-0000-000000000001}
Adobe Common File Installer-->MsiExec.exe /I{8EDBA74D-0686-4C99-BFDD-F894678E5B39}
Adobe Flash Player 10 ActiveX-->C:\Windows\system32\Macromed\Flash\FlashUtil10k_ActiveX.exe -maintain activex
Adobe Flash Player 10 Plugin-->C:\Windows\system32\Macromed\Flash\FlashUtil10l_Plugin.exe -maintain plugin
Adobe Help Center 1.0-->MsiExec.exe /I{E9787678-1033-0000-8E67-000000000001}
Adobe Photoshop CS2-->msiexec /I {236BB7C4-4419-42FD-0409-1E257A25E34D}
Adobe Reader 9.4.1-->MsiExec.exe /I{AC76BA86-7AD7-1033-7B44-A94000000001}
Adobe Shockwave Player 11.5-->"C:\Windows\system32\Adobe\Shockwave 11\uninstaller.exe"
Adobe Stock Photos 1.0-->MsiExec.exe /I{786C5747-1033-0000-B58E-000000000001}
Apple Mobile Device Support-->MsiExec.exe /I{AADEA55D-C834-4BCB-98A3-4B8D1C18F4EE}
AT&T Service Activation-->MsiExec.exe /X{D81486A1-2371-4059-AC70-1AB894AC96E6}
ATI Uninstaller-->C:\Program Files\ATI\CIM\Bin\Atisetup.exe -uninstall all
Bonjour-->MsiExec.exe /I{07287123-B8AC-41CE-8346-3D777245C35B}
Business Contact Manager for Outlook 2007 SP2-->"C:\Program Files\Microsoft Small Business\Business Contact Manager\SetupBootstrap\Setup.exe" /remove {B32C4059-6E7A-41EF-AD20-56DF1872B923}
Business Contact Manager for Outlook 2007 SP2-->MsiExec.exe /X{B32C4059-6E7A-41EF-AD20-56DF1872B923}
Catalyst Control Center - Branding-->MsiExec.exe /I{9FCE66F0-EE03-43BD-916E-66EDF0DBC18C}
CCleaner-->"C:\Program Files\CCleaner\uninst.exe"
Client Security - Password Manager-->MsiExec.exe /X{44E9D4C2-946C-4378-9354-558803C47A68}
Conexant 20561 SmartAudio HD-->C:\Program Files\CONEXANT\CNXT_AUDIO_HDA\UIU32a.exe -U -ITPUNHERz.INF
Drag-to-Disc-->MsiExec.exe /I{2F4C24E6-CBD4-4AAC-B56F-C9FD44DE5668}
GDR 4053 for SQL Server Database Services 2005 ENU (KB970892)-->C:\Windows\SQL9_KB970892_ENU\Hotfix.exe /Uninstall
Google Toolbar for Internet Explorer-->"C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarManager_AC0049E063DE2AEA.exe" /uninstall
Google Toolbar for Internet Explorer-->MsiExec.exe /I{18455581-E099-4BA8-BC6B-F34B2F06600C}
Google Update Helper-->MsiExec.exe /I{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
Help Center-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{986F64DC-FF15-449D-998F-EE3BCEC6666A}\Setup.exe" -l0x9 -AddRemove
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)-->C:\Windows\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall /qb+ REBOOTPROMPT=""
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)-->C:\Windows\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {A7EEA2F2-BFCD-4A54-A575-7B81A786E658} /qb+ REBOOTPROMPT=""
Intel PROSet Wireless-->Intel PROSet Wireless
Intel(R) Management Engine Interface-->C:\Windows\system32\heciudlg.exe -uninstall
InterVideo WinDVD-->"C:\Program Files\InstallShield Installation Information\{91810AFC-A4F8-4EBA-A5AA-B198BBC81144}\setup.exe" REMOVEALL
Java(TM) 6 Update 20-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216020FF}
L&H TTS3000 Français-->RunDll32 advpack.dll,LaunchINFSection C:\Windows\INF\LHTTSFRF.inf, Uninstall
Le Petit Robert 2009-->"C:\Program Files\Le Robert\Le Petit Robert 2009\Uninstall.exe"
Lenovo Registration-->C:\Program Files\Lenovo Registration\uninstall.exe
Lenovo System Interface Driver-->RunDll32.exe setupapi.dll,InstallHinfSection DefaultUninstall.NTx86 130 C:\Program Files\Lenovo\SMIIF\lnvsmi.inf
Lenovo ThinkVantage Toolbox-->C:\Program Files\PC-Doctor\uninst.exe
Lenovo Welcome-->"C:\Program Files\Lenovo\Lenovo Welcome\unins000.exe"
Logiciel d'archivage WinRAR-->C:\Program Files\WinRAR\uninstall.exe
Malwarebytes' Anti-Malware-->"C:\Program Files\Malwarebytes' Anti-Malware\unins000.exe"
Message Center Plus-->MsiExec.exe /X{FD331A3B-F7A5-4C31-B8D4-DF413C85AF7A}
Message Center-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{E7E836B8-4BDD-454F-82E6-5FEA17C83AD4}\Setup.exe" -l0x9 -AddRemove
Microsoft .NET Framework 3.5 SP1-->c:\Windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setup.exe
Microsoft .NET Framework 3.5 SP1-->MsiExec.exe /I{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}
Microsoft .NET Framework 4 Client Profile-->C:\Windows\Microsoft.NET\Framework\v4.0.30319\SetupCache\Client\Setup.exe /repair /x86 /parameterfolder Client
Microsoft .NET Framework 4 Client Profile-->MsiExec.exe /X{3C3901C5-3455-3E0A-A214-0B093A5070A6}
Microsoft Antimalware Service FR-FR Language Pack-->MsiExec.exe /X{A4526B5A-89C0-4F4B-9E6E-4F883374D5F9}
Microsoft Antimalware-->MsiExec.exe /X{E62A1F01-07B7-4541-A835-EE5B0BF064C2}
Microsoft Choice Guard-->MsiExec.exe /X{F0E12BBA-AD66-4022-A453-A1C8A0C4D570}
Microsoft Games for Windows - LIVE Redistributable-->MsiExec.exe /X{1FDA5A37-B22D-43FF-B582-B8964050DC13}
Microsoft Games for Windows - LIVE Redistributable-->MsiExec.exe /X{8FB1B528-E260-451E-9B55-E9152F94B80B}
Microsoft Games for Windows - LIVE-->MsiExec.exe /X{86A4C6D9-29EE-4719-AFA1-BA3341862B83}
Microsoft Office 2003 Web Components-->MsiExec.exe /I{90A40409-6000-11D3-8CFE-0150048383C9}
Microsoft Office 2007 Primary Interop Assemblies-->MsiExec.exe /X{50120000-1105-0000-0000-0000000FF1CE}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0015-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0016-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0018-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0019-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001A-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001B-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0044-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-006E-0409-0000-0000000FF1CE} /uninstall {DE5A002D-8122-4278-A7EE-3121E7EA254E}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-00A1-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-00BA-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0114-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0115-0409-0000-0000000FF1CE} /uninstall {DE5A002D-8122-4278-A7EE-3121E7EA254E}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-0117-0409-0000-0000000FF1CE} /uninstall {2FC4457D-409E-466F-861F-FB0CB796B53E}
Microsoft Office 2007 Service Pack 2 (SP2)-->msiexec /package {91120000-0031-0000-0000-0000000FF1CE} /uninstall {0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}
Microsoft Office Access MUI (English) 2007-->MsiExec.exe /X{90120000-0015-0409-0000-0000000FF1CE}
Microsoft Office Access Setup Metadata MUI (English) 2007-->MsiExec.exe /X{90120000-0117-0409-0000-0000000FF1CE}
Microsoft Office Enterprise 2007-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall ENTERPRISE /dll OSETUP.DLL
Microsoft Office Enterprise 2007-->MsiExec.exe /X{90120000-0030-0000-0000-0000000FF1CE}
Microsoft Office Excel MUI (English) 2007-->MsiExec.exe /X{90120000-0016-0409-0000-0000000FF1CE}
Microsoft Office Groove MUI (English) 2007-->MsiExec.exe /X{90120000-00BA-0409-0000-0000000FF1CE}
Microsoft Office Groove Setup Metadata MUI (English) 2007-->MsiExec.exe /X{90120000-0114-0409-0000-0000000FF1CE}
Microsoft Office InfoPath MUI (English) 2007-->MsiExec.exe /X{90120000-0044-0409-0000-0000000FF1CE}
Microsoft Office Live Add-in 1.5-->MsiExec.exe /I{F40BBEC7-C2A4-4A00-9B24-7A055A2C5262}
Microsoft Office OneNote MUI (English) 2007-->MsiExec.exe /X{90120000-00A1-0409-0000-0000000FF1CE}
Microsoft Office Outlook MUI (English) 2007-->MsiExec.exe /X{90120000-001A-0409-0000-0000000FF1CE}
Microsoft Office PowerPoint MUI (English) 2007-->MsiExec.exe /X{90120000-0018-0409-0000-0000000FF1CE}
Microsoft Office Professional Hybrid 2007-->MsiExec.exe /X{91120000-0031-0000-0000-0000000FF1CE}
Microsoft Office Proof (English) 2007-->MsiExec.exe /X{90120000-001F-0409-0000-0000000FF1CE}
Microsoft Office Proof (French) 2007-->MsiExec.exe /X{90120000-001F-040C-0000-0000000FF1CE}
Microsoft Office Proof (Spanish) 2007-->MsiExec.exe /X{90120000-001F-0C0A-0000-0000000FF1CE}
Microsoft Office Proofing (English) 2007-->MsiExec.exe /X{90120000-002C-0409-0000-0000000FF1CE}
Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0409-0000-0000000FF1CE} /uninstall {ABDDE972-355B-4AF1-89A8-DA50B7B5C045}
Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-040C-0000-0000000FF1CE} /uninstall {F580DDD5-8D37-4998-968E-EBB76BB86787}
Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)-->msiexec /package {90120000-001F-0C0A-0000-0000000FF1CE} /uninstall {187308AB-5FA7-4F14-9AB9-D290383A10D9}
Microsoft Office Publisher MUI (English) 2007-->MsiExec.exe /X{90120000-0019-0409-0000-0000000FF1CE}
Microsoft Office Shared MUI (English) 2007-->MsiExec.exe /X{90120000-006E-0409-0000-0000000FF1CE}
Microsoft Office Shared Setup Metadata MUI (English) 2007-->MsiExec.exe /X{90120000-0115-0409-0000-0000000FF1CE}
Microsoft Office Small Business Connectivity Components-->MsiExec.exe /X{A939D341-5A04-4E0A-BB55-3E65B386432D}
Microsoft Office Suite Activation Assistant-->MsiExec.exe /X{E50AE784-FABE-46DA-A1F8-7B6B56DCB22E}
Microsoft Office Word MUI (English) 2007-->MsiExec.exe /X{90120000-001B-0409-0000-0000000FF1CE}
Microsoft Search Enhancement Pack-->MsiExec.exe /X{4CBA3D4C-8F51-4D60-B27E-F6B641C571E7}
Microsoft Security Essentials-->C:\Program Files\Microsoft Security Essentials\setup.exe /x
Microsoft Security Essentials-->MsiExec.exe /I{EF98A02A-1748-4762-9B7D-5ED1600520D5}
Microsoft Silverlight-->MsiExec.exe /X{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
Microsoft SQL Server 2005 Express Edition (MSSMLBIZ)-->MsiExec.exe /I{2AFFFDD7-ED85-4A90-8C52-5DA9EBDC9B8F}
Microsoft SQL Server 2005-->"c:\Program Files\Microsoft SQL Server\90\Setup Bootstrap\ARPWrapper.exe" /Remove
Microsoft SQL Server Native Client-->MsiExec.exe /I{BD68F46D-8A82-4664-8E68-F87C55BDEFD4}
Microsoft SQL Server Setup Support Files (English)-->MsiExec.exe /X{53F5C3EE-05ED-4830-994B-50B2F0D50FCE}
Microsoft SQL Server VSS Writer-->MsiExec.exe /I{56B4002F-671C-49F4-984C-C760FE3806B5}
Microsoft Sync Framework Runtime Native v1.0 (x86)-->MsiExec.exe /I{8A74E887-8F0F-4017-AF53-CBA42211AAA5}
Microsoft Sync Framework Services Native v1.0 (x86)-->MsiExec.exe /I{BD64AF4A-8C80-4152-AD77-FCDDF05208AB}
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053-->MsiExec.exe /X{770657D0-A123-3C07-8E44-1C83EC895118}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{837b34e3-7c30-493c-8f6a-2b0f04e2912c}
Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148-->MsiExec.exe /X{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17-->MsiExec.exe /X{9A25302D-30C0-39D9-BD6F-21E6EC160475}
Mobile Broadband Connect-->MsiExec.exe /I{97BBF90F-A852-4AA0-872B-42D13AA22D94}
Mozilla Firefox (3.5.12)-->C:\Program Files\Mozilla Firefox\uninstall\helper.exe
MSVCRT-->MsiExec.exe /I{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}
MSXML 4.0 SP2 (KB954430)-->MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
MSXML 4.0 SP2 (KB973688)-->MsiExec.exe /I{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}
MySQL Connector/ODBC 3.51-->MsiExec.exe /I{0CB3C535-1171-4A20-B549-E2CB5DEB9723}
On Screen Display-->rundll32.exe "C:\Program Files\Lenovo\HOTKEY\cleanup.dll",InfUninstall DefaultUninstall.LH 132 C:\Program Files\Lenovo\HOTKEY\tphk_tp.inf
PaintTool SAI Ver.1-->C:\PaintToolSAI\PaintToolSAI\uninst.exe
Pen Tablet-->C:\Program Files\Tablet\Pen\Remove.exe /u
Presentation Director-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{65706020-7B6F-41F2-8047-FC69579E386A}\Setup.exe" -l0x9 -AddRemove
Product Recovery Disc Burning Utility-->MsiExec.exe /X{FA62B4C2-6CFD-462F-9B59-68A730001AB3}
Productivity Center Supplement for ThinkPad-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{D728E945-256D-4477-B377-6BBA693714AC}\SETUP.EXE" -l0x9 -AddRemove
QuickTime-->MsiExec.exe /I{1451DE6B-ABE1-4F62-BE9A-B363A17588A2}
RealPlayer-->C:\Program Files\Common Files\Real\Update_OB\r1puninst.exe RealNetworks|RealPlayer|12.0
RealUpgrade 1.0-->MsiExec.exe /I{F4F4F84E-804F-4E9A-84D7-C34283F0088F}
Registry patch for Windows Vista USB S3 PM Enablement-->Rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 130 C:\Program Files\Lenovo\USBPMon\USBPMon.inf
Registry patch of Changing Timing of IDLE IRP by Finger Print Driver for Windows Vista -->Rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 130 C:\Program Files\Lenovo\FPIRPOn\FPIRPOn.inf
Registry Patch of Enabling Device Initiated Power Management(DIPM) on SATA for Windows Vista-->Rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 130 C:\Program Files\Lenovo\Dipmon\Dipmon.inf
Registry patch to improve USB device detection on resume from sleep for Windows Vista-->MsiExec.exe /X{4AB5764A-3894-49A2-BAA8-C4665F74CD4C}
Rescue and Recovery-->MsiExec.exe /X{7E4C16B8-8F76-4940-8505-98E93C00BF19}
RICOH R5C83x/84x Flash Media Controller Driver Ver.3.54.02-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{59F6A514-9813-47A3-948C-8A155460CC2A}\setup.exe" -l0x9 anything
RICOH R5U230 Media Driver ver.2.02.02.01-->"C:\Program Files\InstallShield Installation Information\{022CBB38-CEF0-42BA-906A-A49BEFAE0BEE}\setup.exe" -runfromtemp -l0x0009 anything -removeonly
Roxio Activation Module-->MsiExec.exe /I{EC877639-07AB-495C-BFD1-D63AF9140810}
Roxio Central Audio-->MsiExec.exe /I{73A4F29F-31AC-4EBD-AA1B-0CC5F18C8F83}
Roxio Central Copy-->MsiExec.exe /I{B6A26DE5-F2B5-4D58-9570-4FC760E00FCD}
Roxio Central Core-->MsiExec.exe /I{ED439A64-F018-4DD4-8BA5-328D85AB09AB}
Roxio Central Data-->MsiExec.exe /I{08E81ABD-79F7-49C2-881F-FD6CB0975693}
Roxio Central Tools-->MsiExec.exe /I{1F54DAFA-9261-4A62-B59D-6C9F26B48FE4}
Roxio Creator Business Edition-->C:\ProgramData\Uninstall\{537BF16E-7412-448C-95D8-846E85A1D817}\setup.exe /x {537BF16E-7412-448C-95D8-846E85A1D817}
Roxio Creator Business Edition-->MsiExec.exe /I{B05B22B8-72AE-4DC3-8D6F-FBC2233CAF41}
Roxio Express Labeler 3-->MsiExec.exe /I{6675CA7F-E51B-4F6A-99D4-F8F0124C6EAA}
Security Update for 2007 Microsoft Office System (KB969559)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {69F52148-9BF6-4CDC-BF76-103DEAF3DD08}
Security Update for 2007 Microsoft Office System (KB969559)-->msiexec /package {91120000-0031-0000-0000-0000000FF1CE} /uninstall {69F52148-9BF6-4CDC-BF76-103DEAF3DD08}
Security Update for 2007 Microsoft Office System (KB976321)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {7F207DCA-3399-40CB-A968-6E5991B1421A}
Security Update for 2007 Microsoft Office System (KB976321)-->msiexec /package {91120000-0031-0000-0000-0000000FF1CE} /uninstall {7F207DCA-3399-40CB-A968-6E5991B1421A}
Security Update for 2007 Microsoft Office System (KB982312)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {B0EC5722-241F-4CDA-83B4-AA5846B6F9F4}
Security Update for 2007 Microsoft Office System (KB982312)-->msiexec /package {91120000-0031-0000-0000-0000000FF1CE} /uninstall {B0EC5722-241F-4CDA-83B4-AA5846B6F9F4}
Security Update for 2007 Microsoft Office System (KB982331)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {E8766951-2B6C-4022-86E8-80D2D1762B76}
Security Update for 2007 Microsoft Office System (KB982331)-->msiexec /package {91120000-0031-0000-0000-0000000FF1CE} /uninstall {E8766951-2B6C-4022-86E8-80D2D1762B76}
Security Update for Microsoft .NET Framework 3.5 SP1 (KB2416473)-->C:\Windows\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {A8894F19-59C8-38D2-8A75-36C0CCE56A5B} /qb+ REBOOTPROMPT=""
Security Update for Microsoft Office Excel 2007 (KB982308)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {C3F9A0DC-A5D1-4BB6-870E-2953E5A2487B}
Security Update for Microsoft Office Excel 2007 (KB982308)-->msiexec /package {91120000-0031-0000-0000-0000000FF1CE} /uninstall {C3F9A0DC-A5D1-4BB6-870E-2953E5A2487B}
Security Update for Microsoft Office InfoPath 2007 (KB979441)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {1109D0B3-EFA3-4553-AAED-4C3E9AD130E8}
Security Update for Microsoft Office InfoPath 2007 (KB979441)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {8CCB781A-CF6B-4FCB-B6D8-59C64DF5C6DB}
Security Update for Microsoft Office InfoPath 2007 (KB979441)-->msiexec /package {91120000-0031-0000-0000-0000000FF1CE} /uninstall {8CCB781A-CF6B-4FCB-B6D8-59C64DF5C6DB}
Security Update for Microsoft Office Outlook 2007 (KB972363)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {120BE9A0-9B09-4855-9E0C-7DEE45CB03C0}
Security Update for Microsoft Office Outlook 2007 (KB972363)-->msiexec /package {91120000-0031-0000-0000-0000000FF1CE} /uninstall {120BE9A0-9B09-4855-9E0C-7DEE45CB03C0}
Security Update for Microsoft Office PowerPoint 2007 (KB982158)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {F5B70033-E79C-4569-90BF-BC9B4E4F3F46}
Security Update for Microsoft Office PowerPoint 2007 (KB982158)-->msiexec /package {91120000-0031-0000-0000-0000000FF1CE} /uninstall {F5B70033-E79C-4569-90BF-BC9B4E4F3F46}
Security Update for Microsoft Office Publisher 2007 (KB982124)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {289FA8BC-6A8E-4341-B194-EB26B49E9F5D}
Security Update for Microsoft Office Publisher 2007 (KB982124)-->msiexec /package {91120000-0031-0000-0000-0000000FF1CE} /uninstall {289FA8BC-6A8E-4341-B194-EB26B49E9F5D}
Security Update for Microsoft Office system 2007 (972581)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {3D019598-7B59-447A-80AE-815B703B84FF}
Security Update for Microsoft Office system 2007 (972581)-->msiexec /package {91120000-0031-0000-0000-0000000FF1CE} /uninstall {3D019598-7B59-447A-80AE-815B703B84FF}
Security Update for Microsoft Office system 2007 (KB969613)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {5ECEB317-CBE9-4E08-AB10-756CB6F0FB6C}
Security Update for Microsoft Office system 2007 (KB969613)-->msiexec /package {91120000-0031-0000-0000-0000000FF1CE} /uninstall {5ECEB317-CBE9-4E08-AB10-756CB6F0FB6C}
Security Update for Microsoft Office system 2007 (KB974234)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {FCD742B9-7A55-44BC-A776-F795F21FEDDC}
Security Update for Microsoft Office system 2007 (KB974234)-->msiexec /package {91120000-0031-0000-0000-0000000FF1CE} /uninstall {FCD742B9-7A55-44BC-A776-F795F21FEDDC}
Security Update for Microsoft Office Visio Viewer 2007 (KB973709)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {71127777-8B2C-4F97-AF7A-6CF8CAC8224D}
Security Update for Microsoft Office Visio Viewer 2007 (KB973709)-->msiexec /package {91120000-0031-0000-0000-0000000FF1CE} /uninstall {71127777-8B2C-4F97-AF7A-6CF8CAC8224D}
Security Update for Microsoft Office Word 2007 (KB982135)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {0112C750-A06F-4F92-9C40-E5C1EA9A70EB}
Security Update for Microsoft Office Word 2007 (KB982135)-->msiexec /package {91120000-0031-0000-0000-0000000FF1CE} /uninstall {0112C750-A06F-4F92-9C40-E5C1EA9A70EB}
Skype™ 4.2-->MsiExec.exe /X{D103C4BA-F905-437A-8049-DB24763BBE36}
Sonic CinePlayer Decoder Pack-->MsiExec.exe /I{8D337F77-BE7F-41A2-A7CB-D5A63FD7049B}
Sonic Icons for Lenovo-->MsiExec.exe /I{B334D9AE-1393-423E-97C0-3BDC3360E692}
Starcraft-BroodWar(svn)-->"C:\Windows\Starcraft-BroodWar(svn)\uninstall.exe" "/U:C:\Program Files\Starcraft-BroodWar(svn)\Uninstall\uninstall.xml"
System Requirements Lab-->C:\Program Files\SystemRequirementsLab\Uninstall.exe
System Requirements Lab-->MsiExec.exe /I{9E1BAB75-EB78-440D-94C0-A3857BE2E733}
System Update-->MsiExec.exe /X{8675339C-128C-44DD-83BF-0A5D6ABD8297}
TeamViewer 6-->C:\Program Files\TeamViewer\Version6\uninstall.exe
ThinkPad EasyEject Utility -->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{1297C681-92D7-40EF-93BF-03F66EC5105C}\SETUP.EXE" -l0x9 -AddRemove
ThinkPad FullScreen Magnifier-->rundll32.exe "C:\Program Files\Lenovo\ZOOM\cleanup.dll",InfUninstall DefaultUninstall 132 C:\Program Files\Lenovo\Zoom\TpScrex.inf
ThinkPad Mobility Center Customization-->MsiExec.exe /X{90FABD40-E741-446F-839D-CEAE905D63BE}
ThinkPad Modem Adapter-->C:\Program Files\CONEXANT\CNXT_MODEM_HDA_HSF\UIU32m.exe -U -AWB -ITkp5051z.INF
ThinkPad Power Management Driver-->RunDll32.exe tpinspm.dll,Uninstall
ThinkPad Power Manager-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{DAC01CEE-5BAE-42D5-81FC-B687E84E8405}\SETUP.EXE" -l0x9 -AddRemove
ThinkPad UltraNav Driver-->rundll32.exe "C:\Program Files\Synaptics\SynTP\SynISDLL.dll",standAloneUninstall
ThinkPad UltraNav Utility-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{17CBC505-D1AE-459D-B445-3D2000A85842}\Setup.exe" -l0x9 UNINSTALL
ThinkVantage Access Connections-->MsiExec.exe /X{4BD295B9-0190-4C54-B08E-33A6ECA922DF}
ThinkVantage Active Protection System-->MsiExec.exe /X{46A84694-59EC-48F0-964C-7E76E9F8A2ED}
ThinkVantage Productivity Center-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{CF5737AF-8550-4546-A69B-0EA9EF5A9B55}\Setup.exe" -l0x9 -AddRemove
ThinkVantage Status Gadget-->MsiExec.exe /X{D22E6706-136E-4810-AF2E-359AE30A7323}
Update for 2007 Microsoft Office System (KB967642)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {C444285D-5E4F-48A4-91DD-47AAAA68E92D}
Update for 2007 Microsoft Office System (KB967642)-->msiexec /package {91120000-0031-0000-0000-0000000FF1CE} /uninstall {C444285D-5E4F-48A4-91DD-47AAAA68E92D}
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)-->C:\Windows\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {B2AE9C82-DC7B-3641-BFC8-87275C4F3607} /qb+ REBOOTPROMPT=""
Update for Microsoft Office 2007 Help for Common Features (KB963673)-->msiexec /package {90120000-006E-0409-0000-0000000FF1CE} /uninstall {AB365889-0395-4FAD-B702-CA5985D53D42}
Update for Microsoft Office Access 2007 Help (KB963663)-->msiexec /package {90120000-0015-0409-0000-0000000FF1CE} /uninstall {6B76A18A-AA1E-42AB-A7AD-6C84BBB43987}
Update for Microsoft Office Excel 2007 Help (KB963678)-->msiexec /package {90120000-0016-0409-0000-0000000FF1CE} /uninstall {199DF7B6-169C-448C-B511-1054101BE9C9}
Update for Microsoft Office Infopath 2007 Help (KB963662)-->msiexec /package {90120000-0044-0409-0000-0000000FF1CE} /uninstall {716B81B8-B13C-41DF-8EAC-7A2F656CAB63}
Update for Microsoft Office OneNote 2007 (KB980729)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {329050A9-EF80-40F9-B633-74508F54C1FF}
Update for Microsoft Office OneNote 2007 Help (KB963670)-->msiexec /package {90120000-00A1-0409-0000-0000000FF1CE} /uninstall {2744EF05-38E1-4D5D-B333-E021EDAEA245}
Update for Microsoft Office Outlook 2007 Help (KB963677)-->msiexec /package {90120000-001A-0409-0000-0000000FF1CE} /uninstall {0451F231-E3E3-4943-AB9F-58EB96171784}
Update for Microsoft Office Powerpoint 2007 Help (KB963669)-->msiexec /package {90120000-0018-0409-0000-0000000FF1CE} /uninstall {397B1D4F-ED7B-4ACA-A637-43B670843876}
Update for Microsoft Office Publisher 2007 Help (KB963667)-->msiexec /package {90120000-0019-0409-0000-0000000FF1CE} /uninstall {2E40DE55-B289-4C8B-8901-5D369B16814F}
Update for Microsoft Office Script Editor Help (KB963671)-->msiexec /package {90120000-006E-0409-0000-0000000FF1CE} /uninstall {CD11C6A2-FFC6-4271-8EAB-79C3582F505C}
Update for Microsoft Office Word 2007 Help (KB963665)-->msiexec /package {90120000-001B-0409-0000-0000000FF1CE} /uninstall {80E762AA-C921-4839-9D7D-DB62A72C0726}
Update for Outlook 2007 Junk Email Filter (kb2279264)-->msiexec /package {90120000-0030-0000-0000-0000000FF1CE} /uninstall {01D475AB-57B1-44CC-8A8F-3A6B0FA4989F}
Update for Outlook 2007 Junk Email Filter (kb983486)-->msiexec /package {91120000-0031-0000-0000-0000000FF1CE} /uninstall {913DFE19-32EC-4099-89AC-27FC493A7A2E}
Verizon Wireless Mobile Broadband Self Activation-->MsiExec.exe /I{7A408D56-A9CF-4219-9F78-23E6B48A1C0D}
VietFun Font Toolkits-->C:\Windows\iun3405.exe C:\VietFun
Vista Codec Package-->MsiExec.exe /I{F9FD80CE-0448-4D4F-8BCD-77FC514C3F99}
Wallpapers-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{DB71210F-8314-4AE3-B7A7-EBAF85BD30E9}\Setup.exe" -l0x9 UNINSTALL
Windows 7 Upgrade Advisor-->MsiExec.exe /I{AB05F2C8-F608-403b-95E1-FD8ADFACD31E}
Windows Driver Package - Intel (e1yexpress) Net (08/22/2008 9.52.10.1001)-->C:\PROGRA~1\DIFX\7F01D4C0B2897E27\DPInst.exe /u C:\Windows\System32\DriverStore\FileRepository\e1y6032.inf_bd1f1c34\e1y6032.inf
Windows Driver Package - Intel (iaStor) hdc (02/11/2009 8.8.0.1009)-->C:\PROGRA~1\DIFX\7F01D4C0B2897E27\DPInst.exe /u C:\Windows\System32\DriverStore\FileRepository\iaahci.inf_9d4a7637\iaahci.inf
Windows Driver Package - Intel hdc (02/20/2008 6.9.1.1001)-->C:\PROGRA~1\DIFX\7F01D4C0B2897E27\DPInst.exe /u C:\Windows\System32\DriverStore\FileRepository\ich9ahci.inf_d87119a4\ich9ahci.inf
Windows Driver Package - Intel System (01/30/2008 8.6.1.1001)-->C:\PROGRA~1\DIFX\7F01D4C0B2897E27\DPInst.exe /u C:\Windows\System32\DriverStore\FileRepository\ich9smb.inf_09afaeee\ich9smb.inf
Windows Driver Package - Intel System (02/20/2008 8.6.1.1002)-->C:\PROGRA~1\DIFX\7F01D4C0B2897E27\DPInst.exe /u C:\Windows\System32\DriverStore\FileRepository\ich9core.inf_6922e6b0\ich9core.inf
Windows Driver Package - Intel System (02/20/2008 8.7.0.1007)-->C:\PROGRA~1\DIFX\7F01D4C0B2897E27\DPInst.exe /u C:\Windows\System32\DriverStore\FileRepository\pm45gm45.inf_3ae2734e\pm45gm45.inf
Windows Driver Package - Intel System (09/15/2006 7.0.0.1011)-->C:\PROGRA~1\DIFX\7F01D4C0B2897E27\DPInst.exe /u C:\Windows\System32\DriverStore\FileRepository\dmi_pci.inf_0e65d7c6\dmi_pci.inf
Windows Driver Package - Intel USB (02/05/2007 8.3.0.1011)-->C:\PROGRA~1\DIFX\7F01D4C0B2897E27\DPInst.exe /u C:\Windows\System32\DriverStore\FileRepository\ich9usb.inf_8d553827\ich9usb.inf
Windows Driver Package - Lenovo 1.53 (03/19/2009 1.53)-->C:\PROGRA~1\DIFX\7F01D4C0B2897E27\DPInst.exe /u C:\Windows\System32\DriverStore\FileRepository\ibmpmdrv.inf_29ee24ee\ibmpmdrv.inf
Windows Driver Package - Ricoh Company MMC Host Controller (02/15/2008 6.00.03.05)-->C:\PROGRA~1\DIFX\7F01D4C0B2897E27\DPInst.exe /u C:\Windows\System32\DriverStore\FileRepository\rimmptsk.inf_f2ae11fa\rimmptsk.inf
Windows Driver Package - Ricoh Company MS Host Controller (07/30/2007 6.00.01.11)-->C:\PROGRA~1\DIFX\7F01D4C0B2897E27\DPInst.exe /u C:\Windows\System32\DriverStore\FileRepository\rimsptsk.inf_8826e972\rimsptsk.inf
Windows Driver Package - Ricoh Company xD Host Controller (07/30/2007 6.00.01.13)-->C:\PROGRA~1\DIFX\7F01D4C0B2897E27\DPInst.exe /u C:\Windows\System32\DriverStore\FileRepository\rixdptsk.inf_41a97d5f\rixdptsk.inf
Windows Live Call-->MsiExec.exe /I{F6BD194C-4190-4D73-B1B1-C48C99921BFE}
Windows Live Communications Platform-->MsiExec.exe /I{3B4E636E-9D65-4D67-BA61-189800823F52}
Windows Live Essentials-->C:\Program Files\Windows Live\Installer\wlarp.exe
Windows Live Essentials-->MsiExec.exe /I{81128EE8-8EAD-4DB0-85C6-17C2CE50FF71}
Windows Live ID Sign-in Assistant-->MsiExec.exe /X{0840B4D6-7DD1-4187-8523-E6FC0007EFB7}
Windows Live Messenger-->MsiExec.exe /X{A85FD55B-891B-4314-97A5-EA96C0BD80B5}
Windows Live OneCare safety scanner-->"C:\Program Files\Windows Live Safety Center\UnInstall.exe"
Windows Live OneCare safety scanner-->MsiExec.exe /X{FE0646A7-19D0-41B4-A2BB-2C35D644270D}
Windows Live Toolbar-->MsiExec.exe /X{995F1E2E-F542-4310-8E1D-9926F5A279B3}
Windows Live Upload Tool-->MsiExec.exe /I{205C6BDD-7B73-42DE-8505-9A093F35A238}
Windows Mobile Device Updater Component-->MsiExec.exe /X{2C4E2E4E-A7C9-4CCB-BF03-FE6EBD5D4AB7}
Yahoo! Messenger-->C:\PROGRA~1\Yahoo!\MESSEN~1\UNWISE.EXE /U C:\PROGRA~1\Yahoo!\MESSEN~1\INSTALL.LOG
Yahoo! Search Protection-->C:\PROGRA~1\Yahoo!\SEARCH~1\UNINST~1.EXE
Yahoo! Software Update-->C:\PROGRA~1\Yahoo!\SOFTWA~1\UNINST~1.EXE
Zune Language Pack (DEU)-->MsiExec.exe /X{BE236D9A-52EC-4A17-82DA-84B5EAD31E3E}
Zune Language Pack (ESP)-->MsiExec.exe /X{6B33492E-FBBC-4EC3-8738-09E16E395A10}
Zune Language Pack (FRA)-->MsiExec.exe /X{C68D33B1-0204-4EBE-BC45-A6E432B1D13A}
Zune Language Pack (ITA)-->MsiExec.exe /X{C5D37FFA-7483-410B-982B-91E93FD3B7DA}
Zune Language Pack (NLD)-->MsiExec.exe /X{6740BCB0-5863-47F4-80F4-44F394DE4FE2}
Zune Language Pack (PTB)-->MsiExec.exe /X{07EEE598-5F21-4B57-B40B-46592625B3D9}
Zune Language Pack (PTG)-->MsiExec.exe /X{5C93E291-A1CC-4E51-85C6-E194209FCDB4}
Zune-->c:\Program Files\Zune\ZuneSetup.exe /x
Zune-->MsiExec.exe /X{7006ED29-58F2-40C3-AE87-039287AD20B6}

======Hosts File======

127.0.0.1 www.007guard.com
127.0.0.1 007guard.com
127.0.0.1 008i.com
127.0.0.1 www.008k.com
127.0.0.1 008k.com
127.0.0.1 www.00hq.com
127.0.0.1 00hq.com
127.0.0.1 010402.com
127.0.0.1 www.032439.com
127.0.0.1 032439.com

======Security center information======

AS: Windows Defender

======System event log======

Computer Name: 1-PC
Event Code: 20
Message: Installation Failure: Windows failed to install the following update with error 0x80070643: Update for Microsoft Office Outlook 2007 Junk Email Filter (KB983486).
Record Number: 96823
Source Name: Microsoft-Windows-WindowsUpdateClient
Time Written: 20100628100259.980000-000
Event Type: Error
User: NT AUTHORITY\SYSTEM

Computer Name: 1-PC
Event Code: 20
Message: Installation Failure: Windows failed to install the following update with error 0x80070643: Security Update for Microsoft Office Word 2007 (KB982135).
Record Number: 96822
Source Name: Microsoft-Windows-WindowsUpdateClient
Time Written: 20100628100223.596000-000
Event Type: Error
User: NT AUTHORITY\SYSTEM

Computer Name: 1-PC
Event Code: 20
Message: Installation Failure: Windows failed to install the following update with error 0x80070643: Security Update for the 2007 Microsoft Office System (KB982331).
Record Number: 96821
Source Name: Microsoft-Windows-WindowsUpdateClient
Time Written: 20100628100147.330000-000
Event Type: Error
User: NT AUTHORITY\SYSTEM

Computer Name: 1-PC
Event Code: 7
Message: The speed of processor 1 is being limited by system firmware. The processor has been in this reduced performance state for 75608 seconds since the last report.
Record Number: 96779
Source Name: Microsoft-Windows-Kernel-Processor-Power
Time Written: 20100628110524.420000-000
Event Type: Warning
User: NT AUTHORITY\SYSTEM

Computer Name: 1-PC
Event Code: 7
Message: The speed of processor 0 is being limited by system firmware. The processor has been in this reduced performance state for 75608 seconds since the last report.
Record Number: 96778
Source Name: Microsoft-Windows-Kernel-Processor-Power
Time Written: 20100628110524.388000-000
Event Type: Warning
User: NT AUTHORITY\SYSTEM

=====Application event log=====

Computer Name: 1-PC
Event Code: 0
Message:
Record Number: 144
Source Name: AtBroker
Time Written: 20090910065708.000000-000
Event Type: Warning
User:

Computer Name: 1-PC
Event Code: 6004
Message: The winlogon notification subscriber <TrustedInstaller> failed a critical notification event.
Record Number: 80
Source Name: Microsoft-Windows-Winlogon
Time Written: 20090910040000.000000-000
Event Type: Warning
User:

Computer Name: 1-PC
Event Code: 10
Message: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.
Record Number: 76
Source Name: Microsoft-Windows-WMI
Time Written: 20090910035951.000000-000
Event Type: Error
User:

Computer Name: 1-PC
Event Code: 1530
Message: Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards.

DETAIL -
13 user registry handles leaked from \Registry\User\S-1-5-21-282280619-2309682589-2335125919-1003:
Process 4200 (\Device\HarddiskVolume2\Program Files\Common Files\Lenovo\tvt_reg_monitor_svc.exe) has opened key \REGISTRY\USER\S-1-5-21-282280619-2309682589-2335125919-1003
Process 4200 (\Device\HarddiskVolume2\Program Files\Common Files\Lenovo\tvt_reg_monitor_svc.exe) has opened key \REGISTRY\USER\S-1-5-21-282280619-2309682589-2335125919-1003
Process 4200 (\Device\HarddiskVolume2\Program Files\Common Files\Lenovo\tvt_reg_monitor_svc.exe) has opened key \REGISTRY\USER\S-1-5-21-282280619-2309682589-2335125919-1003
Process 4200 (\Device\HarddiskVolume2\Program Files\Common Files\Lenovo\tvt_reg_monitor_svc.exe) has opened key \REGISTRY\USER\S-1-5-21-282280619-2309682589-2335125919-1003
Process 4200 (\Device\HarddiskVolume2\Program Files\Common Files\Lenovo\tvt_reg_monitor_svc.exe) has opened key \REGISTRY\USER\S-1-5-21-282280619-2309682589-2335125919-1003
Process 4200 (\Device\HarddiskVolume2\Program Files\Common Files\Lenovo\tvt_reg_monitor_svc.exe) has opened key \REGISTRY\USER\S-1-5-21-282280619-2309682589-2335125919-1003
Process 4200 (\Device\HarddiskVolume2\Program Files\Common Files\Lenovo\tvt_reg_monitor_svc.exe) has opened key \REGISTRY\USER\S-1-5-21-282280619-2309682589-2335125919-1003
Process 4200 (\Device\Hardd


-------------------------------------------------------------------------------------------------------------------

Log :


Logfile of random's system information tool 1.08 (written by random/random)
Run by 1 at 2010-12-28 10:51:36
Microsoft® Windows Vista™ Business Service Pack 2
System drive C: has 24 GB (11%) free of 227 GB
Total RAM: 1975 MB (23% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 10:51:52 AM, on 12/28/2010
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v8.00 (8.00.6001.18999)
Boot mode: Normal

Running processes:
C:\Windows\SYSTEM32\WISPTIS.EXE
C:\Program Files\Common Files\microsoft shared\ink\TabTip.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\WTablet\Pen_TabletUser.exe
C:\Program Files\Common Files\Microsoft Shared\Ink\InputPersonalization.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\ThinkPad\Utilities\EZEJMNAP.EXE
C:\Program Files\Lenovo\NPDIRECT\tpfnf7sp.exe
C:\Program Files\Lenovo\HOTKEY\TPOSDSVC.exe
C:\Program Files\Lenovo\HOTKEY\tpfnf6r.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\Common Files\Lenovo\Scheduler\scheduler_proxy.exe
C:\Program Files\ThinkVantage\PrdCtr\LPMGR.EXE
C:\Program Files\ThinkVantage\PrdCtr\LPMLCHK.EXE
C:\Program Files\Lenovo\Message Center Plus\MCPLaunch.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\Lenovo\Client Security Solution\cssauth.exe
C:\Windows\WindowsMobile\wmdSync.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Microsoft Security Essentials\msseces.exe
C:\Program Files\Zune\ZuneLauncher.exe
C:\Users\1\AppData\Local\Temp\Rar$EX00.575\UniKey 4.0.8 Final\UniKey.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Digital Line Detect\DLG.exe
C:\Program Files\Lenovo\HOTKEY\TPONSCR.exe
C:\Program Files\Lenovo\Zoom\TpScrex.exe
C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
C:\PROGRA~1\ThinkPad\UTILIT~1\PWMUIAux.exe
C:\Program Files\Common Files\Java\Java Update\jucheck.exe
C:\Program Files\Windows Live\Contacts\wlcomm.exe
C:\Windows\system32\conime.exe
C:\Users\1\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\1\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Windows\system32\igfxsrvc.exe
C:\Windows\system32\wuauclt.exe
C:\Users\1\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\1\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Users\1\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\1\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\1\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\1\Desktop\RSIT.exe
C:\Program Files\trend micro\1.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://lenovo.live.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ca.yahoo.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://ca.rd.yahoo.com/customize/ie/def ... .yahoo.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://ca.rd.yahoo.com/customize/ie/def ... .yahoo.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://ca.yahoo.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.6.5805.1910\swg.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: (no name) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - (no file)
O3 - Toolbar: (no name) - {D4027C7F-154A-4066-A1AD-4243D8127440} - (no file)
O3 - Toolbar: (no name) - {b317125e-2f10-4388-bf1f-2c31c6cd89ed} - (no file)
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [EZEJMNAP] C:\PROGRA~1\ThinkPad\UTILIT~1\EzEjMnAp.Exe
O4 - HKLM\..\Run: [TPFNF7] C:\Program Files\Lenovo\NPDIRECT\TPFNF7SP.exe /r
O4 - HKLM\..\Run: [TPHOTKEY] C:\Program Files\Lenovo\HOTKEY\TPOSDSVC.exe
O4 - HKLM\..\Run: [LENOVO.TPFNF6R] C:\Program Files\Lenovo\HOTKEY\TPFNF6R.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [TVT Scheduler Proxy] C:\Program Files\Common Files\Lenovo\Scheduler\scheduler_proxy.exe
O4 - HKLM\..\Run: [LPManager] C:\PROGRA~1\THINKV~1\PrdCtr\LPMGR.exe
O4 - HKLM\..\Run: [LPMailChecker] C:\PROGRA~1\THINKV~1\PrdCtr\LPMLCHK.exe
O4 - HKLM\..\Run: [Message Center Plus] C:\Program Files\LENOVO\Message Center Plus\MCPLaunch.exe /start
O4 - HKLM\..\Run: [PWMTRV] rundll32 C:\PROGRA~1\ThinkPad\UTILIT~1\PWMTR32V.DLL,PwrMgrBkGndMonitor
O4 - HKLM\..\Run: [BLOG] rundll32 C:\PROGRA~1\ThinkPad\UTILIT~1\BTVLogEx.DLL,StartBattLog
O4 - HKLM\..\Run: [CreateLMBCShortCut] "C:\Program Files\Lenovo\Mobile Broadband Connect\UserShortcutCreator.exe"
O4 - HKLM\..\Run: [cssauth] "C:\Program Files\Lenovo\Client Security Solution\cssauth.exe" silent
O4 - HKLM\..\Run: [Windows Mobile-based device management] %windir%\WindowsMobile\wmdSync.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [MSSE] "c:\Program Files\Microsoft Security Essentials\msseces.exe" -hide -runkey
O4 - HKLM\..\Run: [DivXUpdate] "C:\Program Files\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [Zune Launcher] "c:\Program Files\Zune\ZuneLauncher.exe"
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [UniKey] C:\Users\1\AppData\Local\Temp\Rar$EX00.575\UniKey 4.0.8 Final\UniKey.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [Google Update] "C:\Users\1\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [Software Informer] "C:\Program Files\Software Informer\softinfo.exe" -autorun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O4 - Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Startup: IMVU.lnk = C:\Users\1\AppData\Roaming\IMVUClient\IMVUQualityAgent.exe
O4 - Startup: ViiKiiDesktopPlugin.lnk = C:\Program Files\ViiKiiDesktopPlugin\ViiKiiDesktopPlugin.exe
O4 - Global Startup: Digital Line Detect.lnk = C:\Program Files\Digital Line Detect\DLG.exe
O8 - Extra context menu item: &Search - ?p=GRman000
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office12\EXCEL.EXE/3000
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~1\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {F4F55DC8-0B69-4DFE-BA94-CB677B88B2A3} - C:\Program Files\Lenovo\Client Security Solution\tvtpwm_ie_com.dll
O9 - Extra 'Tools' menuitem: Lenovo Password Manager... - {F4F55DC8-0B69-4DFE-BA94-CB677B88B2A3} - C:\Program Files\Lenovo\Client Security Solution\tvtpwm_ie_com.dll
O15 - Trusted Zone: http://*.pps.tv
O15 - Trusted Zone: http://*.ppstream.com
O15 - Trusted Zone: http://*.webscache.com
O15 - ESC Trusted Zone: http://*.pps.tv
O15 - ESC Trusted Zone: http://*.ppstream.com
O15 - ESC Trusted Zone: http://*.webscache.com
O17 - HKLM\System\CCS\Services\Tcpip\..\{EC0A971B-7CB0-46F3-B7CA-97DA7111CC45}: NameServer = 0.0.0.0
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O23 - Service: Ac Profile Manager Service (AcPrfMgrSvc) - Lenovo - C:\Program Files\ThinkPad\ConnectUtilities\AcPrfMgrSvc.exe
O23 - Service: Access Connections Main Service (AcSvc) - Lenovo - C:\Program Files\ThinkPad\ConnectUtilities\AcSvc.exe
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Ati External Event Utility - ATI Technologies Inc. - C:\Windows\system32\Ati2evxx.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: ThinkPad PM Service (IBMPMSVC) - Lenovo - C:\Windows\system32\ibmpmsvc.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: IviRegMgr - InterVideo - C:\Program Files\Common Files\InterVideo\RegMgr\iviRegMgr.exe
O23 - Service: Lenovo Microphone Mute (LENOVO.MICMUTE) - Lenovo Group Limited - C:\Program Files\LENOVO\HOTKEY\MICMUTE.exe
O23 - Service: Wireless PAN DHCP Server (MyWiFiDHCPDNS) - Unknown owner - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
O23 - Service: Power Manager DBC Service - Lenovo - C:\Program Files\ThinkPad\Utilities\PWMDBSVC.EXE
O23 - Service: Intel® PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: RoxMediaDB10 - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\10.0\SharedCOM\RoxMediaDB10.exe
O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe
O23 - Service: System Update (SUService) - Lenovo Group Limited - c:\Program Files\Lenovo\System Update\SUService.exe
O23 - Service: TabletServicePen - Wacom Technology, Corp. - C:\Windows\system32\Pen_Tablet.exe
O23 - Service: TeamViewer 6 (TeamViewer6) - TeamViewer GmbH - C:\Program Files\TeamViewer\Version6\TeamViewer_Service.exe
O23 - Service: ThinkVantage Registry Monitor Service - Lenovo Group Limited - c:\Program Files\Common Files\Lenovo\tvt_reg_monitor_svc.exe
O23 - Service: ThinkPad HDD APS Logging Service (TPHDEXLGSVC) - Lenovo. - C:\Windows\System32\TPHDEXLG.exe
O23 - Service: On Screen Display (TPHKSVC) - Lenovo Group Limited - C:\Program Files\LENOVO\HOTKEY\TPHKSVC.exe
O23 - Service: TSS Core Service (TSSCoreService) - Lenovo - C:\Program Files\Lenovo\Client Security Solution\tvttcsd.exe
O23 - Service: TVT Backup Protection Service - Unknown owner - C:\Program Files\Lenovo\Rescue and Recovery\rrpservice.exe
O23 - Service: TVT Backup Service - Lenovo Group Limited - C:\Program Files\Lenovo\Rescue and Recovery\rrservice.exe
O23 - Service: TVT Scheduler - Lenovo Group Limited - c:\Program Files\Common Files\Lenovo\Scheduler\tvtsched.exe
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe
O23 - Service: Yahoo! Updater (YahooAUService) - Yahoo! Inc. - C:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe

--
End of file - 13665 bytes

======Scheduled tasks folder======

C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-282280619-2309682589-2335125919-1003Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-282280619-2309682589-2335125919-1003UA.job
C:\Windows\tasks\PCDoctorBackgroundMonitorTask-Delay.job
C:\Windows\tasks\PCDoctorBackgroundMonitorTask.job
C:\Windows\tasks\SystemToolsDailyTest.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-09-22 75200]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3049C3E9-B461-4BC5-8870-4C09146192CA}]
RealPlayer Download and Record Plugin for Internet Explorer - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll [2010-04-14 341600]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18 403840]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2010-11-29 297648]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.6.5805.1910\swg.dll [2010-11-29 843832]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2010-05-28 41760]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{21FA44EF-376D-4D53-9B0F-8A89D3229068} - &Windows Live Toolbar - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904]
{CCC7A320-B3CA-4199-B1A6-9F516DD69829}
{D4027C7F-154A-4066-A1AD-4243D8127440}
{b317125e-2f10-4388-bf1f-2c31c6cd89ed}
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2010-11-29 297648]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-20 1008184]
"EZEJMNAP"=C:\PROGRA~1\ThinkPad\UTILIT~1\EzEjMnAp.Exe [2008-10-07 256576]
"TPFNF7"=C:\Program Files\Lenovo\NPDIRECT\TPFNF7SP.exe [2009-05-28 61728]
""= []
"TPHOTKEY"=C:\Program Files\Lenovo\HOTKEY\TPOSDSVC.exe [2009-03-13 68976]
"LENOVO.TPFNF6R"=C:\Program Files\Lenovo\HOTKEY\TPFNF6R.exe [2009-04-14 15136]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2009-02-19 1434920]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2008-06-12 170520]
"Persistence"=C:\Windows\system32\igfxpers.exe [2008-06-12 145944]
"StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2008-01-21 61440]
"TVT Scheduler Proxy"=C:\Program Files\Common Files\Lenovo\Scheduler\scheduler_proxy.exe [2008-05-24 487424]
"LPManager"=C:\PROGRA~1\THINKV~1\PrdCtr\LPMGR.exe [2009-01-28 185688]
"LPMailChecker"=C:\PROGRA~1\THINKV~1\PrdCtr\LPMLCHK.exe [2009-01-28 124248]
"Message Center Plus"=C:\Program Files\LENOVO\Message Center Plus\MCPLaunch.exe [2009-05-27 49976]
"PWMTRV"=rundll32 C:\PROGRA~1\ThinkPad\UTILIT~1\PWMTR32V.DLL,PwrMgrBkGndMonitor []
"BLOG"=rundll32 C:\PROGRA~1\ThinkPad\UTILIT~1\BTVLogEx.DLL,StartBattLog []
"CreateLMBCShortCut"=C:\Program Files\Lenovo\Mobile Broadband Connect\UserShortcutCreator.exe [2009-05-15 40960]
"cssauth"=C:\Program Files\Lenovo\Client Security Solution\cssauth.exe [2009-03-04 3093816]
"Windows Mobile-based device management"=C:\Windows\WindowsMobile\wmdSync.exe [2008-01-20 215552]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2010-02-18 248040]
"MSSE"=c:\Program Files\Microsoft Security Essentials\msseces.exe [2010-09-15 1094224]
"DivXUpdate"=C:\Program Files\DivX\DivX Update\DivXUpdate.exe /CHECKNOW []
"TkBellExe"=C:\Program Files\Common Files\Real\Update_OB\realsched.exe [2010-04-14 202256]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2010-09-23 35760]
"Adobe ARM"=C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2010-09-20 932288]
"Zune Launcher"=c:\Program Files\Zune\ZuneLauncher.exe [2010-11-11 159472]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Skype"=C:\Program Files\Skype\\Phone\Skype.exe [2010-05-13 26192168]
"UniKey"=C:\Users\1\AppData\Local\Temp\Rar$EX00.575\UniKey 4.0.8 Final\UniKey.exe [2010-03-18 618496]
"msnmsgr"=C:\Program Files\Windows Live\Messenger\msnmsgr.exe [2009-07-26 3883856]
"Google Update"=C:\Users\1\AppData\Local\Google\Update\GoogleUpdate.exe [2010-08-31 136176]
"Software Informer"=C:\Program Files\Software Informer\softinfo.exe -autorun []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2010-09-20 932288]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GrooveMonitor]
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2008-10-25 31072]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Le Petit Robert V3 Hyperappel]
C:\Program Files\Le Robert\Le Petit Robert 2009\RobertHA.exe [2008-07-14 251152]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Messenger (Yahoo!)]
C:\PROGRA~1\Yahoo!\MESSEN~1\YahooMessenger.exe [2009-11-10 5244216]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\msnmsgr]
C:\Program Files\Windows Live\Messenger\msnmsgr.exe [2009-07-26 3883856]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
C:\Program Files\QuickTime\QTTask.exe [2009-11-10 417792]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RoxioDragToDisc]
C:\Program Files\Lenovo\Drag-to-Disc\DrgToDsc.exe [2007-03-13 1116920]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Search Protection]
C:\Program Files\Yahoo!\Search Protection\SearchProtection.exe [2009-02-23 111856]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TkBellExe]
C:\Program Files\Common Files\Real\Update_OB\realsched.exe [2010-04-14 202256]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TpShocks]
C:\Windows\system32\TpShocks.exe [2009-02-02 181536]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\YSearchProtection]
C:\Program Files\Yahoo!\Search Protection\SearchProtection.exe [2009-02-23 111856]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Digital Line Detect.lnk - C:\Program Files\Digital Line Detect\DLG.exe

C:\Users\1\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Adobe Gamma.lnk - C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
IMVU.lnk - C:\Users\1\AppData\Roaming\IMVUClient\IMVUQualityAgent.exe
ViiKiiDesktopPlugin.lnk - C:\Program Files\ViiKiiDesktopPlugin\ViiKiiDesktopPlugin.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2008-06-12 208896]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-12 2217848]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"notification packages"=scecli
ACGina

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcmscsvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfPf]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfRd]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mcmscsvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MpfService]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"BindDirectlyToPropertySetStorage"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 months======

2010-12-28 10:45:29 ----D---- C:\Program Files\trend micro
2010-12-28 10:45:28 ----D---- C:\rsit
2010-12-27 12:25:48 ----D---- C:\MGADiagToolOutput
2010-12-27 12:17:42 ----D---- C:\ProgramData\Office Genuine Advantage
2010-12-15 23:24:57 ----A---- C:\Windows\system32\win32k.sys
2010-12-15 23:24:55 ----A---- C:\Windows\system32\schedsvc.dll
2010-12-15 23:24:54 ----A---- C:\Windows\system32\taskschd.dll
2010-12-15 23:24:51 ----A---- C:\Windows\system32\wmicmiplugin.dll
2010-12-15 23:24:51 ----A---- C:\Windows\system32\taskeng.exe
2010-12-15 23:24:50 ----A---- C:\Windows\system32\TMM.dll
2010-12-15 23:24:50 ----A---- C:\Windows\system32\taskcomp.dll
2010-12-15 23:24:46 ----A---- C:\Windows\system32\consent.exe
2010-12-15 23:24:44 ----A---- C:\Windows\system32\atmfd.dll
2010-12-15 23:24:43 ----A---- C:\Windows\system32\fontsub.dll
2010-12-15 23:24:43 ----A---- C:\Windows\system32\atmlib.dll
2010-12-15 23:24:39 ----A---- C:\Windows\system32\iertutil.dll
2010-12-15 23:24:38 ----A---- C:\Windows\system32\mstime.dll
2010-12-15 23:24:38 ----A---- C:\Windows\system32\mshtml.dll
2010-12-15 23:24:37 ----A---- C:\Windows\system32\ieframe.dll
2010-12-15 23:24:36 ----A---- C:\Windows\system32\wininet.dll
2010-12-15 23:24:36 ----A---- C:\Windows\system32\urlmon.dll
2010-12-15 23:24:36 ----A---- C:\Windows\system32\msfeeds.dll
2010-12-15 23:24:36 ----A---- C:\Windows\system32\ie4uinit.exe
2010-12-15 23:24:35 ----A---- C:\Windows\system32\msfeedssync.exe
2010-12-15 23:24:35 ----A---- C:\Windows\system32\iedkcs32.dll
2010-12-15 23:24:33 ----A---- C:\Windows\system32\occache.dll
2010-12-15 23:24:33 ----A---- C:\Windows\system32\ieUnatt.exe
2010-12-15 23:24:33 ----A---- C:\Windows\system32\ieui.dll
2010-12-15 23:24:32 ----A---- C:\Windows\system32\mshtmled.dll
2010-12-15 23:24:32 ----A---- C:\Windows\system32\msfeedsbs.dll
2010-12-15 23:24:32 ----A---- C:\Windows\system32\licmgr10.dll
2010-12-15 23:24:32 ----A---- C:\Windows\system32\iesysprep.dll
2010-12-15 23:24:32 ----A---- C:\Windows\system32\iesetup.dll
2010-12-15 23:24:32 ----A---- C:\Windows\system32\iepeers.dll
2010-12-15 23:24:31 ----A---- C:\Windows\system32\jsproxy.dll
2010-12-15 23:24:31 ----A---- C:\Windows\system32\iernonce.dll
2010-12-15 23:24:22 ----A---- C:\Windows\system32\tzres.dll
2010-12-02 15:45:15 ----D---- C:\Users\1\AppData\Roaming\inkscape
2010-11-29 03:50:58 ----D---- C:\ProgramData\TVU Networks
2010-11-29 03:43:26 ----D---- C:\ProgramData\Google
2010-11-29 03:43:26 ----D---- C:\Program Files\Google
2010-11-29 03:42:57 ----D---- C:\Users\1\AppData\Roaming\PPStream

======List of files/folders modified in the last 1 months======

2010-12-28 10:51:34 ----D---- C:\Windows\Temp
2010-12-28 10:50:58 ----D---- C:\Windows\Prefetch
2010-12-28 10:45:29 ----RD---- C:\Program Files
2010-12-28 10:45:29 ----D---- C:\Windows\tracing
2010-12-28 10:44:22 ----D---- C:\Windows\system32\drivers
2010-12-28 10:44:22 ----D---- C:\Windows\System32
2010-12-27 12:17:42 ----HD---- C:\ProgramData
2010-12-27 10:34:07 ----SHD---- C:\System Volume Information
2010-12-27 03:08:31 ----SHD---- C:\Windows\Installer
2010-12-26 03:01:23 ----D---- C:\Windows\system32\catroot2
2010-12-22 11:11:06 ----D---- C:\Program Files\TeamViewer
2010-12-22 10:27:45 ----D---- C:\Windows
2010-12-22 01:27:02 ----D---- C:\Users\1\AppData\Roaming\WTablet
2010-12-22 01:26:35 ----D---- C:\WTablet
2010-12-21 01:56:59 ----D---- C:\Windows\inf
2010-12-21 01:56:59 ----A---- C:\Windows\system32\PerfStringBackup.INI
2010-12-17 01:27:42 ----D---- C:\Windows\rescache
2010-12-17 01:24:03 ----D---- C:\Windows\winsxs
2010-12-17 01:00:37 ----D---- C:\Program Files\Microsoft Silverlight
2010-12-17 01:00:33 ----D---- C:\Program Files\Common Files\Blizzard Entertainment
2010-12-17 00:55:44 ----D---- C:\Program Files\Windows Mail
2010-12-17 00:55:42 ----D---- C:\Windows\system32\migration
2010-12-17 00:55:42 ----D---- C:\Program Files\Internet Explorer
2010-12-17 00:37:32 ----D---- C:\Users\1\AppData\Roaming\Skype
2010-12-17 00:36:20 ----D---- C:\Windows\Debug
2010-12-17 00:27:18 ----D---- C:\Windows\system32\Tasks
2010-12-17 00:27:02 ----D---- C:\ProgramData\Blizzard Entertainment
2010-12-17 00:25:56 ----D---- C:\Windows\system32\drivers\etc
2010-12-17 00:01:40 ----D---- C:\Users\1\AppData\Roaming\skypePM
2010-12-16 03:09:09 ----D---- C:\Windows\system32\en-US
2010-12-16 03:07:22 ----D---- C:\Windows\system32\catroot
2010-12-16 03:02:57 ----A---- C:\Windows\system32\mrt.exe
2010-12-03 06:15:27 ----AD---- C:\ProgramData\TEMP
2010-12-02 18:44:09 ----D---- C:\Windows\Microsoft.NET
2010-12-02 12:00:09 ----D---- C:\SWShare
2010-12-02 03:16:02 ----D---- C:\Windows\system32\pt-PT
2010-12-02 03:16:02 ----D---- C:\Windows\system32\pt-BR
2010-12-02 03:16:02 ----D---- C:\Windows\system32\nl-NL
2010-12-02 03:16:02 ----D---- C:\Windows\system32\it-IT
2010-12-02 03:16:02 ----D---- C:\Windows\system32\fr-FR
2010-12-02 03:16:02 ----D---- C:\Windows\system32\es-ES
2010-12-02 03:16:02 ----D---- C:\Windows\system32\de-DE
2010-12-02 03:16:01 ----D---- C:\Windows\system32\drivers\UMDF
2010-12-02 03:15:45 ----D---- C:\Program Files\Zune
2010-12-02 03:15:17 ----RSD---- C:\Windows\assembly
2010-12-02 03:13:22 ----SD---- C:\ProgramData\Microsoft
2010-11-29 05:25:52 ----D---- C:\Downloads
2010-11-29 03:43:58 ----D---- C:\Windows\Tasks

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 DRVMCDB;DRVMCDB; C:\Windows\System32\Drivers\DRVMCDB.SYS [2007-03-12 99848]
R0 iaStor;Intel AHCI Controller; C:\Windows\system32\DRIVERS\iaStor.sys [2009-02-11 329752]
R0 PxHelp20;PxHelp20; C:\Windows\System32\Drivers\PxHelp20.sys [2010-04-27 45648]
R0 Shockprf;Shockprf; C:\Windows\System32\DRIVERS\Apsx86.sys [2009-01-28 117800]
R0 TPDIGIMN;TPDIGIMN; C:\Windows\System32\DRIVERS\ApsHM86.sys [2009-01-28 20520]
R1 DLACDBHM;DLACDBHM; C:\Windows\System32\Drivers\DLACDBHM.SYS [2007-02-08 12856]
R1 DLARTL_M;DLARTL_M; C:\Windows\System32\Drivers\DLARTL_M.SYS [2007-02-08 28120]
R1 lenovo.smi;Lenovo System Interface Driver; C:\Windows\system32\DRIVERS\smiif32.sys [2008-05-12 13480]
R1 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2010-03-25 151216]
R1 TPPWRIF;TPPWRIF; C:\Windows\System32\drivers\Tppwr32v.sys [2009-04-15 11552]
R2 DLABMFSM;DLABMFSM; C:\Windows\System32\DLA\DLABMFSM.SYS [2007-06-18 35064]
R2 DLABOIOM;DLABOIOM; C:\Windows\System32\DLA\DLABOIOM.SYS [2007-06-18 32472]
R2 DLADResM;DLADResM; C:\Windows\System32\DLA\DLADResM.SYS [2007-06-18 9400]
R2 DLAIFS_M;DLAIFS_M; C:\Windows\System32\DLA\DLAIFS_M.SYS [2007-06-18 105048]
R2 DLAOPIOM;DLAOPIOM; C:\Windows\System32\DLA\DLAOPIOM.SYS [2007-06-18 26744]
R2 DLAPoolM;DLAPoolM; C:\Windows\System32\DLA\DLAPoolM.SYS [2007-06-18 14520]
R2 DLAUDF_M;DLAUDF_M; C:\Windows\System32\DLA\DLAUDF_M.SYS [2007-06-18 98136]
R2 DLAUDFAM;DLAUDFAM; C:\Windows\System32\DLA\DLAUDFAM.SYS [2007-06-18 93752]
R2 DRVNDDM;DRVNDDM; C:\Windows\System32\Drivers\DRVNDDM.SYS [2007-02-09 51768]
R2 mdmxsdk;mdmxsdk; C:\Windows\system32\DRIVERS\mdmxsdk.sys [2008-04-09 12672]
R2 rimmptsk;rimmptsk; C:\Windows\system32\DRIVERS\rimmptsk.sys [2008-02-15 46592]
R2 rimsptsk;rimsptsk; C:\Windows\system32\DRIVERS\rimsptsk.sys [2007-07-29 43008]
R2 rismxdp;Ricoh xD-Picture Card Driver; C:\Windows\system32\DRIVERS\rixdptsk.sys [2007-07-29 38400]
R2 tvtfilter;tvtfilter; C:\Windows\system32\DRIVERS\tvtfilter.sys [2009-08-04 33536]
R2 XAudio;XAudio; C:\Windows\system32\DRIVERS\xaudio.sys [2007-10-17 8704]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2008-09-18 3881472]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2008-09-18 54784]
R3 CnxtHdAudService;Conexant UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\CHDRT32.sys [2009-10-27 460800]
R3 e1yexpress;Intel(R) Gigabit Network Connections Driver; C:\Windows\system32\DRIVERS\e1y6032.sys [2009-08-14 220152]
R3 HECI;Intel(R) Management Engine Interface; C:\Windows\system32\DRIVERS\HECI.sys [2008-03-25 40832]
R3 HSF_DPV;HSF_DPV; C:\Windows\system32\DRIVERS\HSX_DPV.sys [2008-03-24 980992]
R3 HSXHWAZL;HSXHWAZL; C:\Windows\system32\DRIVERS\HSXHWAZL.sys [2008-03-24 207872]
R3 IBMPMDRV;IBMPMDRV; C:\Windows\system32\DRIVERS\ibmpmdrv.sys [2009-03-19 25000]
R3 intelkmd;intelkmd; C:\Windows\system32\DRIVERS\igdkmd32.sys [2008-06-12 2381312]
R3 MpNWMon;Microsoft Malware Protection Network Driver; C:\Windows\system32\DRIVERS\MpNWMon.sys [2010-03-25 42368]
R3 MUXMP;My WiFi PAN MUX-IM Virtual Miniport Driver; C:\Windows\system32\DRIVERS\mux.sys [2009-02-09 29232]
R3 NETw5v32;Intel(R) Wireless WiFi Link Adapter Driver for Windows Vista 32 Bit ; C:\Windows\system32\DRIVERS\NETw5v32.sys [2009-02-09 3715072]
R3 psadd;Lenovo Parties Service Access Device Driver; C:\Windows\system32\DRIVERS\psadd.sys [2009-08-04 30144]
R3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2009-04-10 89088]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2009-02-19 205232]
R3 TPM;TPM; C:\Windows\system32\drivers\tpm.sys [2008-01-20 45624]
R3 TVTI2C;Lenovo SM bus driver; C:\Windows\system32\DRIVERS\Tvti2c.sys [2008-02-22 37312]
R3 wacommousefilter;Wacom Mouse Filter Driver; C:\Windows\system32\DRIVERS\wacommousefilter.sys [2007-02-16 11312]
R3 wacomvhid;Wacom Virtual Hid Driver; C:\Windows\system32\DRIVERS\wacomvhid.sys [2008-08-18 13352]
R3 WacomVKHid;Virtual Keyboard Driver; C:\Windows\system32\DRIVERS\WacomVKHid.sys [2007-02-15 11440]
R3 winachsf;winachsf; C:\Windows\system32\DRIVERS\HSX_CNXT.sys [2008-03-24 661504]
R3 WudfPf;User Mode Driver Frameworks Platform Driver; C:\Windows\system32\drivers\WudfPf.sys [2009-07-14 92672]
S1 tvtumon;tvtumon; C:\Windows\system32\DRIVERS\tvtumon.sys [2008-07-10 48192]
S3 CamDrL;Logitech QuickCam Pro 3000(CamDrl); C:\Windows\system32\DRIVERS\Camdrl.sys [2007-02-03 1075360]
S3 drmkaud;Microsoft Kernel DRM Audio Descrambler; C:\Windows\system32\drivers\drmkaud.sys [2008-01-20 5632]
S3 e1express;Intel(R) PRO/1000 PCI Express Network Connection Driver; C:\Windows\system32\DRIVERS\e1e6032.sys [2008-01-20 220672]
S3 EagleNT;EagleNT; \??\C:\Windows\system32\drivers\EagleNT.sys []
S3 HdAudAddService;Microsoft 1.1 UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\HdAudio.sys [2006-11-01 235520]
S3 HSFHWAZL;HSFHWAZL; C:\Windows\system32\DRIVERS\VSTAZL3.SYS [2008-01-20 200704]
S3 LVUSBSta;Logitech USB Monitor Filter; C:\Windows\system32\drivers\LVUSBSta.sys [2007-05-09 41888]
S3 mcdbus;Driver for MagicISO SCSI Host Controller; C:\Windows\system32\DRIVERS\mcdbus.sys []
S3 MSKSSRV;Microsoft Streaming Service Proxy; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-20 8192]
S3 MSPCLOCK;Microsoft Streaming Clock Proxy; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-20 5888]
S3 MSPQM;Microsoft Streaming Quality Manager Proxy; C:\Windows\system32\drivers\MSPQM.sys [2008-01-20 5504]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\Windows\system32\drivers\MSTEE.sys [2008-01-20 6016]
S3 MUXP;My WiFi PAN Mux-IM Protocol Driver; C:\Windows\system32\DRIVERS\mux.sys [2009-02-09 29232]
S3 PcdrNdisuio;PCDRNDISUIO Usermode I/O Protocol; C:\Windows\system32\DRIVERS\pcdrndisuio.sys []
S3 PCDSRVC{3037D694-FD904ACA-06020000}_0;PCDSRVC{3037D694-FD904ACA-06020000}_0 - PCDR Kernel Mode Service Helper Driver; \??\c:\program files\pc-doctor\pcdsrvc.pkms [2010-05-07 21360]
S3 PID_PEPI;Logitech QuickCam IM(PID_PEPI); C:\Windows\system32\DRIVERS\LV302V32.SYS [2007-05-09 1276832]
S3 usb_rndisx;USB RNDIS Adapter; C:\Windows\system32\DRIVERS\usb8023x.sys [2009-04-10 15872]
S3 USBAAPL;Apple Mobile USB Driver; C:\Windows\System32\Drivers\usbaapl.sys [2009-08-28 40448]
S3 usbaudio;USB Audio Driver (WDM); C:\Windows\system32\drivers\usbaudio.sys [2009-04-10 73216]
S3 usbvideo;USB Video Device (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2008-01-20 134016]
S3 wacmoumonitor;Wacom Mode Helper; C:\Windows\system32\DRIVERS\wacmoumonitor.sys [2008-10-06 15656]
S3 WimFltr;WimFltr; C:\Windows\system32\DRIVERS\wimfltr.sys [2009-01-04 128104]
S3 WinUSB;WinUSB; C:\Windows\system32\DRIVERS\WinUSB.sys [2009-04-10 31616]
S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2009-09-30 40448]
S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2009-07-14 132224]
S4 ErrDev;Microsoft Hardware Error Device Driver; C:\Windows\system32\drivers\errdev.sys [2008-01-20 6656]
S4 MegaSR;MegaSR; C:\Windows\system32\drivers\megasr.sys [2008-01-20 386616]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AcPrfMgrSvc;Ac Profile Manager Service; C:\Program Files\ThinkPad\ConnectUtilities\AcPrfMgrSvc.exe [2009-07-10 124192]
R2 AcSvc;Access Connections Main Service; C:\Program Files\ThinkPad\ConnectUtilities\AcSvc.exe [2009-07-10 238880]
R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe [2009-08-28 144672]
R2 Ati External Event Utility;Ati External Event Utility; C:\Windows\system32\Ati2evxx.exe [2008-09-18 700416]
R2 BcmSqlStartupSvc;Business Contact Manager SQL Server Startup Service; C:\Program Files\Microsoft Small Business\Business Contact Manager\BcmSqlStartupSvc.exe [2008-01-11 30312]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2008-12-12 238888]
R2 IBMPMSVC;ThinkPad PM Service; C:\Windows\system32\ibmpmsvc.exe [2009-03-19 38176]
R2 IviRegMgr;IviRegMgr; C:\Program Files\Common Files\InterVideo\RegMgr\iviRegMgr.exe [2007-01-04 112152]
R2 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Essentials\MsMpEng.exe [2010-03-25 17904]
R2 Power Manager DBC Service;Power Manager DBC Service; C:\Program Files\ThinkPad\Utilities\PWMDBSVC.EXE [2009-04-15 66848]
R2 RapiMgr;@%windir%\WindowsMobile\rapimgr.dll,-104; C:\Windows\system32\svchost.exe [2008-01-20 21504]
R2 RegSrvc;Intel® PROSet/Wireless Registry Service; C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [2009-02-11 466944]
R2 SeaPort;SeaPort; C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe [2009-05-19 240512]
R2 SQLBrowser;SQL Server Browser; c:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe [2008-11-24 239968]
R2 SQLWriter;SQL Server VSS Writer; c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe [2008-11-24 87904]
R2 SUService;System Update; c:\Program Files\Lenovo\System Update\SUService.exe [2008-11-04 28672]
R2 TabletServicePen;TabletServicePen; C:\Windows\system32\Pen_Tablet.exe [2008-12-11 2749736]
R2 TeamViewer6;TeamViewer 6; C:\Program Files\TeamViewer\Version6\TeamViewer_Service.exe [2010-12-07 2228008]
R2 ThinkVantage Registry Monitor Service;ThinkVantage Registry Monitor Service; c:\Program Files\Common Files\Lenovo\tvt_reg_monitor_svc.exe [2009-03-04 750904]
R2 TPHDEXLGSVC;ThinkPad HDD APS Logging Service; C:\Windows\System32\TPHDEXLG.exe [2009-01-28 39976]
R2 TPHKSVC;On Screen Display; C:\Program Files\LENOVO\HOTKEY\TPHKSVC.exe [2009-05-21 62320]
R2 TSSCoreService;TSS Core Service; C:\Program Files\Lenovo\Client Security Solution\tvttcsd.exe [2009-03-04 779576]
R2 TVT Backup Protection Service;TVT Backup Protection Service; C:\Program Files\Lenovo\Rescue and Recovery\rrpservice.exe [2008-05-24 520192]
R2 TVT Backup Service;TVT Backup Service; C:\Program Files\Lenovo\Rescue and Recovery\rrservice.exe [2008-05-24 950272]
R2 TVT Scheduler;TVT Scheduler; c:\Program Files\Common Files\Lenovo\Scheduler\tvtsched.exe [2008-05-24 1155072]
R2 WcesComm;@%windir%\WindowsMobile\wcescomm.dll,-40079; C:\Windows\system32\svchost.exe [2008-01-20 21504]
R2 wlidsvc;Windows Live ID Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2009-08-18 1529728]
R2 XAudioService;XAudioService; C:\Windows\system32\DRIVERS\xaudio.exe [2007-10-17 386560]
R2 YahooAUService;Yahoo! Updater; C:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe [2008-11-09 602392]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 gupdate;Google Update Service (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2010-11-29 136176]
S2 LENOVO.MICMUTE;Lenovo Microphone Mute; C:\Program Files\LENOVO\HOTKEY\MICMUTE.exe [2009-05-21 45424]
S3 Adobe LM Service;Adobe LM Service; C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe [2010-02-20 72704]
S3 FontCache;@%systemroot%\system32\FntCache.dll,-100; C:\Windows\system32\svchost.exe [2008-01-20 21504]
S3 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2010-11-29 182768]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe [2004-10-22 73728]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2008-10-25 65888]
S3 MSSQL$MSSMLBIZ;SQL Server (MSSMLBIZ); c:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe [2009-05-27 29262680]
S3 MyWiFiDHCPDNS;Wireless PAN DHCP Server; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [2009-02-11 204800]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 RoxMediaDB10;RoxMediaDB10; C:\Program Files\Common Files\Roxio Shared\10.0\SharedCOM\RoxMediaDB10.exe [2008-04-25 1120752]
S3 stllssvr;stllssvr; C:\Program Files\Common Files\SureThing Shared\stllssvr.exe [2008-03-24 74384]
S3 WMZuneComm;Zune Windows Mobile Connectivity Service; c:\Program Files\Zune\WMZuneComm.exe [2010-11-11 268528]
S3 WPFFontCache_v0400;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe,-100; C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2010-03-18 753504]
S4 EvtEng;Intel® PROSet/Wireless Event Log; C:\Program Files\Intel\WiFi\bin\EvtEng.exe [2009-02-11 864256]
S4 MSSQLServerADHelper;SQL Server Active Directory Helper; c:\Program Files\Microsoft SQL Server\90\Shared\sqladhlp90.exe [2008-11-24 45408]
S4 TVT_UpdateMonitor;TVT Windows Update Monitor; C:\Program Files\Lenovo\Rescue and Recovery\UpdateMonitor.exe [2008-10-09 360448]

-----------------EOF-----------------


GMER - i got a crash once then when i try 2 run it again - its not working ... before i notice the line :"If GMER has problem running (blue screens, crashes) let me know, do not run it again."
:P Its something bad ?
nerutosako
Regular Member
 
Posts: 26
Joined: December 23rd, 2010, 2:22 pm

Re: Need help for "EPOCLICL VIRUS" and Google-analytics

Unread postby nerutosako » December 29th, 2010, 12:23 am

i got double post :p
sozzy
nerutosako
Regular Member
 
Posts: 26
Joined: December 23rd, 2010, 2:22 pm

Re: Need help for "EPOCLICL VIRUS" and Google-analytics

Unread postby Airscape » December 29th, 2010, 2:37 pm

Is this computer related to business/company/work?

try this scan instead of Gmer:

Scan with RKUnhooker
Please download Rootkit Unhooker and save it to your desktop.
  • Right-click RKUnhookerLE.exe and select Run as Administrator.
  • Click the Report tab, then click Scan
  • Check Drivers, Stealth Code, Files, and Code Hooks
  • Uncheck the rest, then click OK
  • When prompted to Select Disks for Scan, make sure C:\ is checked and click OK
  • Wait till the scanner has finished then go File > Save Report
  • Save the report somewhere you can find it. Click Close
  • Copy the entire contents of the report and paste it in your next reply.

------------------------------------------------------------

I need you to also run this tool:

MBRCheck
Please download MBRCheck from here or here and save it to your desktop.
  • Right click on MBRCheck.exe and select " Run as administrator " to run it.
  • A window similar to this should open on your desktop:

Image

  • If you are prompted with options, enter N at the prompt and press Enter
  • Press Enter again.
  • A log will open on your Desktop ...... MBRCheck_mm.dd.yy_hh.mm.ss.txt (where mm.dd.yy_hh.mm.ss are the date and time the scan was run)
  • Please post the contents of the log in your next reply.
User avatar
Airscape
Regular Member
 
Posts: 1858
Joined: November 1st, 2008, 11:06 pm

Re: Need help for "EPOCLICL VIRUS" and Google-analytics

Unread postby nerutosako » December 30th, 2010, 12:58 pm

Nope this my personal laptop ! (well I have my homework on it)
---------------------------------------------------------------
RKUnhooker report :

RkU Version: 3.8.388.590, Type LE (SR2)
==============================================
OS Name: Windows Vista
Version 6.0.6002 (Service Pack 2)
Number of processors #2
==============================================
>Drivers
==============================================
0x8CA0A000 C:\Windows\system32\DRIVERS\igdkmd32.sys 7225344 bytes (Intel Corporation, Intel Graphics Kernel Mode Driver)
0x8C400000 C:\Windows\system32\DRIVERS\atikmdag.sys 5898240 bytes (ATI Technologies Inc., ATI Radeon Kernel Mode Driver)
0x8223A000 C:\Windows\system32\ntkrnlpa.exe 3903488 bytes (Microsoft Corporation, NT Kernel & System)
0x8223A000 PnpManager 3903488 bytes
0x8223A000 RAW 3903488 bytes
0x8223A000 WMIxWDM 3903488 bytes
0x8D201000 C:\Windows\system32\DRIVERS\NETw5v32.sys 3756032 bytes (Intel Corporation, Intel® Wireless WiFi Link Driver)
0x81AA0000 Win32k 2109440 bytes
0x81AA0000 C:\Windows\System32\win32k.sys 2109440 bytes (Microsoft Corporation, Multi-User Win32 Driver)
0x87E08000 C:\Windows\System32\Drivers\Ntfs.sys 1114112 bytes (Microsoft Corporation, NT File System Driver)
0x82E0D000 C:\Windows\system32\drivers\ndis.sys 1093632 bytes (Microsoft Corporation, NDIS 6.0 wrapper driver)
0x90A0A000 C:\Windows\system32\DRIVERS\HSX_DPV.sys 1056768 bytes (Conexant Systems, Inc., HSF_DP driver)
0x90C00000 C:\Windows\System32\drivers\tcpip.sys 958464 bytes (Microsoft Corporation, TCP/IP Driver)
0x804D1000 C:\Windows\system32\CI.dll 917504 bytes (Microsoft Corporation, Code Integrity Module)
0xAF47B000 C:\Windows\system32\drivers\peauth.sys 909312 bytes (Microsoft Corporation, Protected Environment Authentication and Authorization Export Driver)
0x90E8D000 C:\Windows\System32\Drivers\dump_iaStor.sys 897024 bytes
0x82C0A000 C:\Windows\system32\DRIVERS\iaStor.sys 897024 bytes (Intel Corporation, Intel Matrix Storage Manager driver - ia32)
0x90B0C000 C:\Windows\system32\DRIVERS\HSX_CNXT.sys 741376 bytes (Conexant Systems, Inc., HSF_CNXT driver)
0x8C009000 C:\Windows\system32\drivers\spsys.sys 720896 bytes (Microsoft Corporation, security processor)
0x8D0EE000 C:\Windows\System32\drivers\dxgkrnl.sys 659456 bytes (Microsoft Corporation, DirectX Graphics Kernel)
0x8C11A000 C:\Windows\system32\DRIVERS\HDAudBus.sys 577536 bytes (Microsoft Corporation, High Definition Audio Bus Driver)
0x8D8C3000 C:\Windows\system32\DRIVERS\rdpdr.sys 561152 bytes (Microsoft Corporation, Microsoft RDP Device redirector)
0x90823000 C:\Windows\system32\drivers\CHDRT32.sys 479232 bytes (Conexant Systems Inc., High Definition Audio Function Driver)
0x82D86000 C:\Windows\System32\Drivers\ksecdd.sys 462848 bytes (Microsoft Corporation, Kernel Security Support Provider Interface)
0x80603000 C:\Windows\system32\drivers\Wdf01000.sys 462848 bytes (Microsoft Corporation, Kernel Mode Driver Framework Runtime)
0x80407000 C:\Windows\system32\mcupdate_GenuineIntel.dll 458752 bytes (Microsoft Corporation, Intel Microcode Update Library)
0xADE47000 C:\Windows\system32\drivers\HTTP.sys 446464 bytes (Microsoft Corporation, HTTP Protocol Stack)
0x90E0E000 C:\Windows\system32\drivers\csc.sys 372736 bytes (Microsoft Corporation, Windows Client Side Caching Driver)
0x8C1A7000 C:\Windows\system32\DRIVERS\rixdptsk.sys 335872 bytes (REDC, RICOH XD SM Driver)
0x8D80E000 C:\Windows\system32\DRIVERS\mux.sys 323584 bytes (Intel© Corporation, My WiFi PAN Intermediate Miniport Driver)
0xAF408000 C:\Windows\System32\DRIVERS\srv.sys 319488 bytes (Microsoft Corporation, Server driver)
0x8072B000 C:\Windows\System32\drivers\volmgrx.sys 303104 bytes (Microsoft Corporation, Volume Manager Extension Driver)
0x90D61000 C:\Windows\system32\drivers\afd.sys 294912 bytes (Microsoft Corporation, Ancillary Function Driver for WinSock)
0x80682000 C:\Windows\system32\drivers\acpi.sys 286720 bytes (Microsoft Corporation, ACPI Driver for NT)
0x80490000 C:\Windows\system32\CLFS.SYS 266240 bytes (Microsoft Corporation, Common Log File System Driver)
0x805B1000 C:\Windows\system32\DRIVERS\storport.sys 266240 bytes (Microsoft Corporation, Microsoft Storage Port Driver)
0x8C9A0000 C:\Windows\system32\DRIVERS\USBPORT.SYS 253952 bytes (Microsoft Corporation, USB 1.1 & 2.0 Port Driver)
0x908EA000 C:\Windows\system32\DRIVERS\HSXHWAZL.sys 249856 bytes (Conexant Systems, Inc., HSF_HWAZL WDM driver)
0x9098C000 C:\Windows\system32\DRIVERS\rdbss.sys 245760 bytes (Microsoft Corporation, Redirected Drive Buffering SubSystem Driver)
0x82F43000 C:\Windows\system32\drivers\NETIO.SYS 241664 bytes (Microsoft Corporation, Network I/O Subsystem)
0x8D1B8000 C:\Windows\system32\DRIVERS\e1y6032.sys 237568 bytes (Intel Corporation, Intel(R) Gigabit Network Connection NDIS 6 deserialized driver)
0xADF3F000 C:\Windows\system32\DRIVERS\mrxsmb10.sys 233472 bytes (Microsoft Corporation, Longhorn SMB Downlevel SubRdr)
0x87F18000 C:\Windows\system32\drivers\volsnap.sys 233472 bytes (Microsoft Corporation, Volume Shadow Copy Driver)
0x8D9AD000 C:\Windows\system32\DRIVERS\usbhub.sys 217088 bytes (Microsoft Corporation, Default Hub Driver for USB)
0x82207000 ACPI_HAL 208896 bytes
0x82207000 C:\Windows\system32\hal.dll 208896 bytes (Microsoft Corporation, Hardware Abstraction Layer DLL)
0x82D23000 C:\Windows\system32\drivers\fltmgr.sys 204800 bytes (Microsoft Corporation, Microsoft Filesystem Filter Manager)
0x90D2F000 C:\Windows\System32\DRIVERS\netbt.sys 204800 bytes (Microsoft Corporation, MBT Transport driver)
0x82F7E000 C:\Windows\system32\DRIVERS\SynTP.sys 200704 bytes (Synaptics Incorporated, Synaptics Touchpad Driver)
0x807B2000 C:\Windows\system32\DRIVERS\msiscsi.sys 192512 bytes (Microsoft Corporation, Microsoft iSCSI Initiator Driver)
0x80775000 C:\Windows\system32\DRIVERS\pcmcia.sys 184320 bytes (Microsoft Corporation, PCMCIA Bus Driver)
0x90898000 C:\Windows\system32\drivers\portcls.sys 184320 bytes (Microsoft Corporation, Port Class (Class Driver for Port/Miniport Devices))
0x82F18000 C:\Windows\system32\drivers\msrpc.sys 176128 bytes (Microsoft Corporation, Kernel Remote Procedure Call Provider)
0x8D96C000 C:\Windows\system32\DRIVERS\ks.sys 172032 bytes (Microsoft Corporation, Kernel CSA Library)
0xADE00000 C:\Windows\system32\DRIVERS\nwifi.sys 172032 bytes (Microsoft Corporation, NativeWiFi Miniport Driver)
0xADF90000 C:\Windows\System32\DRIVERS\srv2.sys 163840 bytes (Microsoft Corporation, Smb 2.0 Server driver)
0x87F91000 C:\Windows\System32\drivers\ecache.sys 159744 bytes (Microsoft Corporation, Special Memory Device Cache)
0x806D9000 C:\Windows\system32\drivers\pci.sys 159744 bytes (Microsoft Corporation, NT Plug and Play PCI Enumerator)
0x908C5000 C:\Windows\system32\drivers\drmk.sys 151552 bytes (Microsoft Corporation, Microsoft Kernel DRM Descrambler Filter)
0x90BCE000 C:\Windows\system32\DRIVERS\MpFilter.sys 143360 bytes (Microsoft Corporation, Microsoft antimalware file system filter driver)
0x8D868000 C:\Windows\system32\DRIVERS\ndiswan.sys 143360 bytes (Microsoft Corporation, MS PPP Framing Driver (Strong Encryption))
0x87FC9000 C:\Windows\system32\drivers\CLASSPNP.SYS 135168 bytes (Microsoft Corporation, SCSI Class System Dll)
0xADEFF000 C:\Windows\system32\drivers\mrxdav.sys 135168 bytes (Microsoft Corporation, Windows NT WebDav Minirdr)
0x90939000 C:\Windows\System32\drivers\VIDEOPRT.SYS 135168 bytes (Microsoft Corporation, Video Port Driver)
0x87F62000 C:\Windows\System32\DRIVERS\Apsx86.sys 131072 bytes (Lenovo., Shockproof Disk Driver)
0xADF20000 C:\Windows\system32\DRIVERS\mrxsmb.sys 126976 bytes (Microsoft Corporation, Windows NT SMB Minirdr)
0x82CED000 C:\Windows\system32\drivers\ataport.SYS 122880 bytes (Microsoft Corporation, ATAPI Driver Extension)
0xADEB4000 C:\Windows\System32\DRIVERS\srvnet.sys 118784 bytes (Microsoft Corporation, Server Network driver)
0x90CEA000 C:\Windows\System32\drivers\fwpkclnt.sys 110592 bytes (Microsoft Corporation, FWP/IPsec Kernel-Mode API)
0x90F81000 C:\Windows\system32\drivers\luafv.sys 110592 bytes (Microsoft Corporation, LUA File Virtualization Filter Driver)
0x8D5B4000 C:\Windows\system32\DRIVERS\sdbus.sys 106496 bytes (Microsoft Corporation, SecureDigital Bus Driver)
0x90FD0000 C:\Windows\system32\drivers\WudfPf.sys 106496 bytes (Microsoft Corporation, Windows Driver Foundation - User-mode Driver Framework Platform Driver)
0xADED1000 C:\Windows\system32\DRIVERS\bowser.sys 102400 bytes (Microsoft Corporation, NT Lan Manager Datagram Receiver Driver)
0x90FB1000 C:\Windows\System32\DLA\DLAIFS_M.SYS 98304 bytes (Roxio, Drive Letter Access Component)
0xADF78000 C:\Windows\system32\DRIVERS\mrxsmb20.sys 98304 bytes (Microsoft Corporation, Longhorn SMB 2.0 Redirector)
0xAF58D000 C:\Users\1\AppData\Local\Temp\ugrdqpoc.sys 98304 bytes
0x90E69000 C:\Windows\System32\Drivers\dfsc.sys 94208 bytes (Microsoft Corporation, DFS Namespace Client Driver)
0x909DE000 C:\Windows\System32\DLA\DLAUDF_M.SYS 94208 bytes (Roxio, Drive Letter Access Component)
0x82D65000 C:\Windows\System32\Drivers\DRVMCDB.SYS 94208 bytes (Sonic Solutions, Device Driver)
0x807E1000 C:\Windows\system32\DRIVERS\rasl2tp.sys 94208 bytes (Microsoft Corporation, RAS L2TP mini-port/call-manager driver)
0xAF577000 C:\Windows\system32\DRIVERS\cdfs.sys 90112 bytes (Microsoft Corporation, CD-ROM File System Driver)
0x909C8000 C:\Windows\System32\DLA\DLAUDFAM.SYS 90112 bytes (Roxio, Drive Letter Access Component)
0x90DA9000 C:\Windows\system32\DRIVERS\pacer.sys 90112 bytes (Microsoft Corporation, QoS Packet Scheduler)
0x90D05000 C:\Windows\system32\DRIVERS\tdx.sys 90112 bytes (Microsoft Corporation, TDI Translation Driver)
0xADEEA000 C:\Windows\System32\drivers\mpsdrv.sys 86016 bytes (Microsoft Corporation, Microsoft Protection Service Driver)
0x8D8AE000 C:\Windows\system32\DRIVERS\rassstp.sys 86016 bytes (Microsoft Corporation, RAS SSTP Miniport Call Manager)
0x8D89A000 C:\Windows\system32\DRIVERS\raspptp.sys 81920 bytes (Microsoft Corporation, Peer-to-Peer Tunneling Protocol)
0x8D5DF000 C:\Windows\system32\DRIVERS\rimsptsk.sys 81920 bytes (REDC, RICOH MS Driver)
0x90D1B000 C:\Windows\system32\DRIVERS\smb.sys 81920 bytes (Microsoft Corporation, SMB Transport driver)
0x8D19B000 C:\Windows\system32\DRIVERS\atikmpag.sys 77824 bytes (Advanced Micro Devices, Inc., AMD multi-vendor Miniport Driver)
0x8C9ED000 C:\Windows\system32\DRIVERS\i8042prt.sys 77824 bytes (Microsoft Corporation, i8042 Port Driver)
0xADE34000 C:\Windows\system32\DRIVERS\rspndr.sys 77824 bytes (Microsoft Corporation, Link-Layer Topology Responder Driver for NDIS 6)
0x90DCD000 C:\Windows\system32\DRIVERS\wanarp.sys 77824 bytes (Microsoft Corporation, MS Remote Access and Routing ARP Driver)
0x87FB8000 C:\Windows\system32\drivers\disk.sys 69632 bytes (Microsoft Corporation, PnP Disk Driver)
0x90809000 C:\Windows\System32\Drivers\NDProxy.SYS 69632 bytes (Microsoft Corporation, NDIS Proxy)
0x80477000 C:\Windows\system32\PSHED.dll 69632 bytes (Microsoft Corporation, Platform Specific Hardware Error Driver)
0x8D5CE000 C:\Windows\system32\DRIVERS\rimmptsk.sys 69632 bytes (REDC, RICOH SD Driver)
0x82D55000 C:\Windows\system32\drivers\fileinfo.sys 65536 bytes (Microsoft Corporation, FileInfo Filter Driver)
0x82FD5000 C:\Windows\system32\DRIVERS\HIDCLASS.SYS 65536 bytes (Microsoft Corporation, Hid Class Library)
0x8C0B9000 C:\Windows\system32\DRIVERS\lltdio.sys 65536 bytes (Microsoft Corporation, Link-Layer Topology Mapper I/O Driver)
0x807A2000 C:\Windows\System32\drivers\mountmgr.sys 65536 bytes (Microsoft Corporation, Mount Point Manager)
0x8D596000 C:\Windows\system32\DRIVERS\ohci1394.sys 65536 bytes (Microsoft Corporation, 1394 OpenHCI Port Driver)
0x8D94C000 C:\Windows\system32\DRIVERS\termdd.sys 65536 bytes (Microsoft Corporation, Terminal Server Driver)
0x8C0F8000 C:\Windows\system32\DRIVERS\intelppm.sys 61440 bytes (Microsoft Corporation, Processor Device Driver)
0x90F72000 C:\Windows\system32\DRIVERS\monitor.sys 61440 bytes (Microsoft Corporation, Monitor Driver)
0x87F82000 C:\Windows\System32\Drivers\mup.sys 61440 bytes (Microsoft Corporation, Multiple UNC Provider driver)
0x80700000 C:\Windows\System32\drivers\partmgr.sys 61440 bytes (Microsoft Corporation, Partition Management Driver)
0x8D88B000 C:\Windows\system32\DRIVERS\raspppoe.sys 61440 bytes (Microsoft Corporation, RAS PPPoE mini-port/call-manager driver)
0x8C9DE000 C:\Windows\system32\DRIVERS\usbehci.sys 61440 bytes (Microsoft Corporation, EHCI eUSB Miniport Driver)
0x8071C000 C:\Windows\system32\drivers\volmgr.sys 61440 bytes (Microsoft Corporation, Volume Manager Driver)
0x8D5A6000 C:\Windows\system32\DRIVERS\1394BUS.SYS 57344 bytes (Microsoft Corporation, 1394 Bus Device Driver)
0x81CF0000 C:\Windows\System32\cdd.dll 57344 bytes (Microsoft Corporation, Canonical Display Driver)
0x90DBF000 C:\Windows\system32\DRIVERS\netbios.sys 57344 bytes (Microsoft Corporation, NetBIOS interface driver)
0x90975000 C:\Windows\System32\Drivers\Npfs.SYS 57344 bytes (Microsoft Corporation, NPFS Driver)
0x82D15000 C:\Windows\system32\drivers\PCIIDEX.SYS 57344 bytes (Microsoft Corporation, PCI IDE Bus Driver Extension)
0x82FAF000 C:\Windows\system32\drivers\tpm.sys 57344 bytes (Microsoft Corporation, TPM Device Driver)
0x80674000 C:\Windows\system32\drivers\WDFLDR.SYS 57344 bytes (Microsoft Corporation, Kernel Mode Driver Framework Loader)
0x90E80000 C:\Windows\System32\Drivers\crashdmp.sys 53248 bytes (Microsoft Corporation, Crash Dump Driver)
0x90BC1000 C:\Windows\system32\drivers\modem.sys 53248 bytes (Microsoft Corporation, Modem Device Driver)
0x8D9A0000 C:\Windows\system32\DRIVERS\umbus.sys 53248 bytes (Microsoft Corporation, User-Mode Bus Enumerator)
0xAF563000 C:\Windows\System32\drivers\tcpipreg.sys 49152 bytes (Microsoft Corporation, TCP/IP Registry Compatibility Driver)
0x9092D000 C:\Windows\System32\drivers\vga.sys 49152 bytes (Microsoft Corporation, VGA/Super VGA Video Driver)
0x8D18F000 C:\Windows\System32\drivers\watchdog.sys 49152 bytes (Microsoft Corporation, Watchdog Driver)
0x90FA5000 C:\Windows\System32\Drivers\DRVNDDM.SYS 45056 bytes (Roxio, Device Driver Manager)
0x8D5F3000 C:\Windows\system32\DRIVERS\kbdclass.sys 45056 bytes (Microsoft Corporation, Keyboard Class Driver)
0x8C107000 C:\Windows\system32\DRIVERS\mouclass.sys 45056 bytes (Microsoft Corporation, Mouse Class Driver)
0x9096A000 C:\Windows\System32\Drivers\Msfs.SYS 45056 bytes (Microsoft Corporation, Mailslot driver)
0x8D85D000 C:\Windows\system32\DRIVERS\ndistapi.sys 45056 bytes (Microsoft Corporation, NDIS 3.0 connection wrapper driver)
0x82FE5000 C:\Windows\system32\DRIVERS\TDI.SYS 45056 bytes (Microsoft Corporation, TDI Wrapper)
0x8C0E4000 C:\Windows\system32\DRIVERS\tunnel.sys 45056 bytes (Microsoft Corporation, Microsoft Tunnel Interface Driver)
0x8D1F2000 C:\Windows\system32\DRIVERS\usbuhci.sys 45056 bytes (Microsoft Corporation, UHCI USB Miniport Driver)
0x80712000 C:\Windows\system32\DRIVERS\BATTC.SYS 40960 bytes (Microsoft Corporation, Battery Class Driver)
0x90F68000 C:\Windows\System32\drivers\Dxapi.sys 40960 bytes (Microsoft Corporation, DirectX API Driver)
0x8D1AE000 C:\Windows\system32\DRIVERS\HECI.sys 40960 bytes (Intel Corporation, Intel(R) Management Engine Interface)
0x82D0B000 C:\Windows\system32\drivers\msahci.sys 40960 bytes (Microsoft Corporation, MS AHCI 1.0 Standard Driver)
0x8D996000 C:\Windows\system32\DRIVERS\mssmbios.sys 40960 bytes (Microsoft Corporation, System Management BIOS Driver)
0xADE2A000 C:\Windows\system32\DRIVERS\ndisuio.sys 40960 bytes (Microsoft Corporation, NDIS User mode I/O driver)
0x90DE7000 C:\Windows\system32\drivers\nsiproxy.sys 40960 bytes (Microsoft Corporation, NSI Proxy)
0x82D7C000 C:\Windows\System32\Drivers\PxHelp20.sys 40960 bytes (Sonic Solutions, Px Engine Device Driver for Windows 2000/XP)
0xAF559000 C:\Windows\System32\Drivers\secdrv.SYS 40960 bytes (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K., Macrovision SECURITY Driver)
0x87F51000 C:\Windows\System32\DRIVERS\ApsHM86.sys 36864 bytes (Lenovo., ThinkVantage Active Protection System HID Digitizer Activity Monitor Driver)
0x87FEA000 C:\Windows\system32\drivers\crcdisk.sys 36864 bytes (Microsoft Corporation, Disk Block Verification Filter Driver)
0x90A00000 C:\Windows\System32\Drivers\Fs_Rec.SYS 36864 bytes (Microsoft Corporation, File System Recognizer Driver)
0x8D9F2000 C:\Windows\system32\DRIVERS\kbdhid.sys 36864 bytes (Microsoft Corporation, HID Keyboard Filter Driver)
0xAF46E000 C:\Windows\system32\DRIVERS\MpNWMon.sys 36864 bytes (Microsoft Corporation, Network monitor driver)
0xAF5D5000 C:\Windows\System32\Drivers\Normandy.SYS 36864 bytes (RKU Driver)
0x90983000 C:\Windows\System32\DRIVERS\rasacd.sys 36864 bytes (Microsoft Corporation, RAS Automatic Connection Driver)
0x81CC0000 C:\Windows\System32\TSDDD.dll 36864 bytes (Microsoft Corporation, Framebuffer Display Driver)
0x8C0EF000 C:\Windows\system32\DRIVERS\tunmp.sys 36864 bytes (Microsoft Corporation, Microsoft Tunnel Interface Driver)
0x90F9C000 C:\Windows\system32\DRIVERS\tvtfilter.sys 36864 bytes (Lenovo, Rescue and Recovery filter driver)
0x8C000000 C:\Windows\system32\DRIVERS\wmiacpi.sys 36864 bytes (Microsoft Corporation, Windows Management Interface for ACPI)
0x806C8000 C:\Windows\system32\drivers\WMILIB.SYS 36864 bytes (Microsoft Corporation, WMILIB WMI support library Dll)
0x82CE5000 C:\Windows\system32\drivers\atapi.sys 32768 bytes (Microsoft Corporation, ATAPI IDE Miniport Driver)
0x80488000 C:\Windows\system32\BOOTVID.dll 32768 bytes (Microsoft Corporation, VGA Boot Driver)
0x8D9E2000 C:\Windows\system32\DRIVERS\mouhid.sys 32768 bytes (Microsoft Corporation, HID Mouse Filter Driver)
0x806D1000 C:\Windows\system32\drivers\msisadrv.sys 32768 bytes (Microsoft Corporation, ISA Driver)
0x9095A000 C:\Windows\System32\DRIVERS\RDPCDD.sys 32768 bytes (Microsoft Corporation, RDP Miniport)
0x90962000 C:\Windows\system32\drivers\rdpencdd.sys 32768 bytes (Microsoft Corporation, RDP Miniport)
0x87F5A000 C:\Windows\System32\Drivers\spldr.sys 32768 bytes (Microsoft Corporation, loader for security processor)
0x8D962000 C:\Windows\system32\DRIVERS\Tvti2c.sys 32768 bytes (Lenovo (United States) Inc., SMBUS Driver)
0x8D9EA000 C:\Windows\system32\DRIVERS\wacommousefilter.sys 32768 bytes (Wacom Technology, Wacom Mouse Filter Driver)
0xAF56F000 C:\Windows\system32\DRIVERS\xaudio.sys 32768 bytes (Conexant Systems, Inc., Modem Audio Device Driver)
0x90BF8000 C:\Windows\System32\Drivers\Beep.SYS 28672 bytes (Microsoft Corporation, BEEP Driver)
0x90FEA000 C:\Windows\System32\DLA\DLABMFSM.SYS 28672 bytes (Roxio, Drive Letter Access Component)
0x90FF1000 C:\Windows\System32\DLA\DLABOIOM.SYS 28672 bytes (Roxio, Drive Letter Access Component)
0x8C1F9000 C:\Windows\system32\DRIVERS\HIDPARSE.SYS 28672 bytes (Microsoft Corporation, Hid Parsing Library)
0x80400000 C:\Windows\system32\kdcom.dll 28672 bytes (Microsoft Corporation, Kernel Debugger HW Extension DLL)
0x90BF1000 C:\Windows\System32\Drivers\Null.SYS 28672 bytes (Microsoft Corporation, NULL Driver)
0x90DE0000 C:\Windows\System32\drivers\Tppwr32v.sys 28672 bytes (Lenovo Group Limited, Power Manager)
0x90927000 C:\Windows\System32\Drivers\DLARTL_M.SYS 24576 bytes (Roxio, Shared Driver Component)
0x8D95C000 C:\Windows\system32\DRIVERS\psadd.sys 24576 bytes (Lenovo (United States) Inc., SMBIOS Driver)
0x90FC9000 C:\Windows\System32\DLA\DLAOPIOM.SYS 20480 bytes (Roxio, Drive Letter Access Component)
0x8CA04000 C:\Windows\system32\DRIVERS\ibmpmdrv.sys 20480 bytes (Lenovo., ThinkPad Power Management Driver)
0x8CA00000 C:\Windows\system32\DRIVERS\CmBatt.sys 16384 bytes (Microsoft Corporation, Control Method Battery Driver)
0xAF477000 C:\Windows\system32\DRIVERS\mdmxsdk.sys 16384 bytes (Conexant, Diagnostic Interface x86 Driver)
0x8070F000 C:\Windows\system32\DRIVERS\compbatt.sys 12288 bytes (Microsoft Corporation, Composite Battery Driver)
0x8D1FD000 C:\Windows\System32\Drivers\DLACDBHM.SYS 8192 bytes (Roxio, Shared Driver Component)
0x90FCE000 C:\Windows\System32\DLA\DLAPoolM.SYS 8192 bytes (Roxio, Drive Letter Access Component)
0x90DF1000 C:\Windows\system32\DRIVERS\smiif32.sys 8192 bytes (Lenovo Group Limited, SMI Driver for Lenovo system)
0x8D96A000 C:\Windows\system32\DRIVERS\swenum.sys 8192 bytes (Microsoft Corporation, Plug and Play Software Device Enumerator)
0x8D5FE000 C:\Windows\system32\DRIVERS\USBD.SYS 8192 bytes (Microsoft Corporation, Universal Serial Bus Driver)
0x8C112000 C:\Windows\system32\DRIVERS\wacomvhid.sys 8192 bytes (Wacom Technology, Virtual Hid Device)
0x8C114000 C:\Windows\system32\DRIVERS\WacomVKHid.sys 8192 bytes (Wacom Technology, Virtual Hid Device)
0x90FB0000 C:\Windows\System32\DLA\DLADResM.SYS 4096 bytes (Roxio, Drive Letter Access Component)
==============================================
>Stealth
==============================================
0x07440000 Hidden Image-->CLI.Component.Dashboard.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 1011712 bytes
0x07B70000 Hidden Image-->CLI.Aspect.Radeon3D.Graphics.Wizard.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 102400 bytes
0x00850000 Hidden Image-->MOM.Implementation.DLL [ EPROCESS 0x86023D90 ] PID: 3460, 118784 bytes
0x00920000 Hidden Image-->MOM.Implementation.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 118784 bytes
0x07420000 Hidden Image-->CLI.Aspect.DisplaysOptions.Graphics.Dashboard.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 126976 bytes
0x073A0000 Hidden Image-->CLI.Aspect.Welcome.Graphics.Dashboard.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 143360 bytes
0x08130000 Hidden Image-->CLI.Aspect.PowerPlayDPPE.Graphics.Dashboard.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 159744 bytes
0x085C0000 Hidden Image-->CLI.Aspect.DisplaysManager.Graphics.Wizard.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 1699840 bytes
0x04F70000 Hidden Image-->PWMUICtl.DLL [ EPROCESS 0x84FB9B48 ] PID: 2912, 1818624 bytes
0x07F60000 Hidden Image-->CLI.Aspect.InfoCentre.Graphics.Wizard.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 217088 bytes
0x073D0000 Hidden Image-->CLI.Aspect.InfoCentre.Graphics.Dashboard.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 233472 bytes
0x05B50000 Hidden Image-->CLI.Caste.Graphics.Runtime.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 274432 bytes
0x00A90000 Hidden Image-->MOM.Foundation.DLL [ EPROCESS 0x86023D90 ] PID: 3460, 28672 bytes
0x00BE0000 Hidden Image-->LOG.Foundation.Implementation.Private.DLL [ EPROCESS 0x86023D90 ] PID: 3460, 28672 bytes
0x00790000 Hidden Image-->MOM.Foundation.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 28672 bytes
0x00890000 Hidden Image-->LOG.Foundation.Implementation.Private.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 28672 bytes
0x010A0000 Hidden Image-->CLI.Component.Runtime.Shared.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 28672 bytes
0x03FA0000 Hidden Image-->LOCALIZATION.Foundation.Private.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 28672 bytes
0x03F90000 Hidden Image-->AEM.Server.Shared.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 28672 bytes
0x04090000 Hidden Image-->AEM.Plugin.WinMessages.Shared.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 28672 bytes
0x04070000 Hidden Image-->AEM.Plugin.Hotkeys.Shared.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 28672 bytes
0x04000000 Hidden Image-->AEM.Plugin.DPPE.Shared.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 28672 bytes
0x04D20000 Hidden Image-->DEM.Foundation.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 28672 bytes
0x04F30000 Hidden Image-->DEM.Graphics.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 28672 bytes
0x056F0000 Hidden Image-->DEM.OS.I0602.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 28672 bytes
0x05BB0000 Hidden Image-->DEM.Graphics.I0709.dll [ EPROCESS 0x84E74020 ] PID: 4476, 28672 bytes
0x05BA0000 Hidden Image-->DEM.OS.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 28672 bytes
0x05CD0000 Hidden Image-->AEM.Plugin.GD.Shared.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 28672 bytes
0x05F30000 Hidden Image-->AEM.Actions.CCAA.Shared.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 28672 bytes
0x05F50000 Hidden Image-->DEM.Graphics.I0804.dll [ EPROCESS 0x84E74020 ] PID: 4476, 28672 bytes
0x05FA0000 Hidden Image-->CLI.Aspect.HotkeysHandling.Graphics.Runtime.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 28672 bytes
0x05FD0000 Hidden Image-->CLI.Aspect.HotkeysHandling.Graphics.Shared.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 28672 bytes
0x06020000 Hidden Image-->CLI.Caste.Graphics.Runtime.Shared.Private.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 28672 bytes
0x06070000 Hidden Image-->DEM.Graphics.I0706.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 28672 bytes
0x06060000 Hidden Image-->DEM.Graphics.I0805.dll [ EPROCESS 0x84E74020 ] PID: 4476, 28672 bytes
0x064E0000 Hidden Image-->DEM.Graphics.I0712.dll [ EPROCESS 0x84E74020 ] PID: 4476, 28672 bytes
0x06610000 Hidden Image-->APM.Foundation.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 28672 bytes
0x06850000 Hidden Image-->AEM.Plugin.EEU.Shared.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 28672 bytes
0x06840000 Hidden Image-->CLI.Component.Runtime.Extension.EEU.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 28672 bytes
0x06880000 Hidden Image-->CLI.Component.Client.Shared.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 28672 bytes
0x068B0000 Hidden Image-->CLI.Component.Wizard.Shared.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 28672 bytes
0x06E40000 Hidden Image-->Branding.dll [ EPROCESS 0x84E74020 ] PID: 4476, 28672 bytes
0x07120000 Hidden Image-->CLI.Caste.Graphics.Wizard.Shared.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 28672 bytes
0x07350000 Hidden Image-->CLI.Component.Dashboard.Shared.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 28672 bytes
0x07360000 Hidden Image-->CLI.Component.Dashboard.Shared.Private.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 28672 bytes
0x07390000 Hidden Image-->CLI.Caste.Graphics.Dashboard.Shared.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 28672 bytes
0x07BD0000 Hidden Image-->atixclib.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 28672 bytes
0x072C0000 Hidden Image-->CLI.Aspect.DeviceLCD.Graphics.Wizard.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 315392 bytes
0x07A70000 Hidden Image-->CLI.Aspect.Radeon3D.Graphics.Dashboard.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 364544 bytes
0x03DC0000 Hidden Image-->NEWAEM.Foundation.DLL [ EPROCESS 0x86023D90 ] PID: 3460, 36864 bytes
0x03DB0000 Hidden Image-->CCC.Implementation.DLL [ EPROCESS 0x86023D90 ] PID: 3460, 36864 bytes
0x00750000 Hidden Image-->CCC.Implementation.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 36864 bytes
0x00E30000 Hidden Image-->CLI.Foundation.XManifest.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 36864 bytes
0x03FB0000 Hidden Image-->AxInterop.WBOCXLib.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 36864 bytes
0x03FD0000 Hidden Image-->NEWAEM.Foundation.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 36864 bytes
0x05460000 Hidden Image-->Interop.WBOCXLib.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 36864 bytes
0x056E0000 Hidden Image-->ACE.Graphics.DisplaysManager.Shared.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 36864 bytes
0x05CE0000 Hidden Image-->LOCALIZATION.Foundation.Implementation.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 36864 bytes
0x06040000 Hidden Image-->CLI.Aspect.CustomFormats.Graphics.Shared.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 36864 bytes
0x062F0000 Hidden Image-->CLI.Aspect.DisplaysColour2.Graphics.Shared.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 36864 bytes
0x06320000 Hidden Image-->CLI.Aspect.DisplaysOptions.Graphics.Shared.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 36864 bytes
0x06380000 Hidden Image-->CLI.Aspect.DeviceLCD.Graphics.Shared.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 36864 bytes
0x065F0000 Hidden Image-->CLI.Aspect.PowerPlayDPPE.Graphics.Shared.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 36864 bytes
0x06F50000 Hidden Image-->CLI.Aspect.PowerXpress.Graphics.Shared.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 36864 bytes
0x070D0000 Hidden Image-->CLI.Component.Wizard.Shared.Private.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 36864 bytes
0x075B0000 Hidden Image-->CLI.Aspect.DeviceCRT.Graphics.Dashboard.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 389120 bytes
0x07060000 Hidden Image-->CLI.Component.Wizard.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 405504 bytes
0x07250000 Hidden Image-->CLI.Aspect.MMVideo.Graphics.Wizard.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 413696 bytes
0x07940000 Hidden Image-->CLI.Aspect.DeviceLCD.Graphics.Dashboard.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 413696 bytes
0x06DD0000 Hidden Image-->CLI.Component.Systemtray.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 430080 bytes
0x07540000 Hidden Image-->CLI.Aspect.DisplaysManager.Graphics.Dashboard.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 446464 bytes
0x00880000 Hidden Image-->LOG.Foundation.DLL [ EPROCESS 0x86023D90 ] PID: 3460, 45056 bytes
0x008A0000 Hidden Image-->LOG.Foundation.Private.DLL [ EPROCESS 0x86023D90 ] PID: 3460, 45056 bytes
0x00780000 Hidden Image-->LOG.Foundation.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 45056 bytes
0x008D0000 Hidden Image-->LOG.Foundation.Private.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 45056 bytes
0x010B0000 Hidden Image-->ATICCCom.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 45056 bytes
0x06050000 Hidden Image-->CLI.Aspect.DeviceProperty.Graphics.Runtime.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 45056 bytes
0x06080000 Hidden Image-->CLI.Aspect.DeviceProperty.Graphics.Shared.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 45056 bytes
0x06310000 Hidden Image-->CLI.Aspect.DisplaysOptions.Graphics.Runtime.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 45056 bytes
0x06370000 Hidden Image-->CLI.Aspect.DeviceLCD.Graphics.Runtime.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 45056 bytes
0x079B0000 Hidden Image-->CLI.Aspect.DeviceDFP.Graphics.Dashboard.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 462848 bytes
0x080B0000 Hidden Image-->CLI.Aspect.TransCode.Graphics.Wizard.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 495616 bytes
0x04E50000 Hidden Image-->msvcm80.dll [ EPROCESS 0x84FB9B48 ] PID: 2912, 507904 bytes
0x01050000 Hidden Image-->CLI.Foundation.Private.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 53248 bytes
0x01040000 Hidden Image-->CLI.Component.Runtime.Shared.Private.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 53248 bytes
0x03FE0000 Hidden Image-->AEM.Plugin.Source.Kit.Server.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 53248 bytes
0x03FC0000 Hidden Image-->AEM.Server.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 53248 bytes
0x041D0000 Hidden Image-->DEM.Graphics.I0601.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 53248 bytes
0x06030000 Hidden Image-->CLI.Aspect.DeviceCV.Graphics.Shared.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 53248 bytes
0x06340000 Hidden Image-->CLI.Aspect.DeviceCRT.Graphics.Runtime.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 53248 bytes
0x062E0000 Hidden Image-->CLI.Aspect.DisplaysColour2.Graphics.Runtime.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 53248 bytes
0x065E0000 Hidden Image-->CLI.Aspect.PowerPlayDPPE.Graphics.Runtime.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 53248 bytes
0x06870000 Hidden Image-->CLI.Component.Client.Shared.Private.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 53248 bytes
0x070E0000 Hidden Image-->CLI.Caste.Graphics.Wizard.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 53248 bytes
0x07930000 Hidden Image-->CLI.Aspect.TransCode.Graphics.Shared.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 53248 bytes
0x07AD0000 Hidden Image-->CLI.Aspect.DisplaysColour2.Graphics.Dashboard.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 593920 bytes
0x00880000 Hidden Image-->CLI.Foundation.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 61440 bytes
0x00E20000 Hidden Image-->CLI.Component.SkinFactory.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 61440 bytes
0x01030000 Hidden Image-->CLI.Component.Runtime.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 61440 bytes
0x056C0000 Hidden Image-->CLI.Caste.Graphics.Shared.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 61440 bytes
0x06360000 Hidden Image-->CLI.Aspect.DeviceCRT.Graphics.Shared.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 61440 bytes
0x063A0000 Hidden Image-->CLI.Aspect.DeviceDFP.Graphics.Shared.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 61440 bytes
0x06540000 Hidden Image-->CLI.Aspect.Radeon3D.Graphics.Shared.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 61440 bytes
0x065A0000 Hidden Image-->CLI.Aspect.MMVideo.Graphics.Shared.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 61440 bytes
0x00A70000 Hidden Image-->LOG.Foundation.Implementation.DLL [ EPROCESS 0x86023D90 ] PID: 3460, 69632 bytes
0x008A0000 Hidden Image-->LOG.Foundation.Implementation.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 69632 bytes
0x063C0000 Hidden Image-->CLI.Aspect.DeviceDFP.Graphics.Runtime.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 69632 bytes
0x06520000 Hidden Image-->CLI.Aspect.Radeon3D.Graphics.Runtime.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 69632 bytes
0x06820000 Hidden Image-->APM.Server.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 69632 bytes
0x05F00000 Hidden Image-->ATIDEMOS.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 77824 bytes
0x05FF0000 Hidden Image-->CLI.Aspect.DeviceCV.Graphics.Runtime.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 77824 bytes
0x062C0000 Hidden Image-->CLI.Aspect.DeviceTV.Graphics.Shared.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 77824 bytes
0x08860000 Hidden Image-->CLI.Aspect.MMVideo.Graphics.Dashboard.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 823296 bytes
0x06090000 Hidden Image-->CLI.Aspect.DeviceTV.Graphics.Runtime.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 86016 bytes
0x06580000 Hidden Image-->CLI.Aspect.MMVideo.Graphics.Runtime.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 86016 bytes
0x07370000 Hidden Image-->CLI.Caste.Graphics.Dashboard.DLL [ EPROCESS 0x84E74020 ] PID: 4476, 86016 bytes
0x009D0000 Hidden Image-->PWMUIAux.resources.dll [ EPROCESS 0x84FB9B48 ] PID: 2912, 94208 bytes
==============================================
>Files
==============================================
!-->[Hidden] C:\ProgramData\Real\setup\config.ini::$DATA
!-->[Hidden] C:\RRbackups\common\backups.dat
!-->[Hidden] C:\RRbackups\common\bmgrmode.dat
!-->[Hidden] C:\RRbackups\common\bt0.dat
!-->[Hidden] C:\RRbackups\common\bt1.dat
!-->[Hidden] C:\RRbackups\common\bt2.dat
!-->[Hidden] C:\RRbackups\common\bt3.dat
!-->[Hidden] C:\RRbackups\common\css.dat
!-->[Hidden] C:\RRbackups\common\hints.dat
!-->[Hidden] C:\RRbackups\common\mnd.dat
!-->[Hidden] C:\RRbackups\common\regcerts.dat
!-->[Hidden] C:\RRbackups\common\restore.log
!-->[Hidden] C:\RRbackups\common\rr.log
!-->[Hidden] C:\RRbackups\common\rr_bcdenum.dat
!-->[Hidden] C:\RRbackups\common\SAM
!-->[Hidden] C:\RRbackups\common\seccache.dat
!-->[Hidden] C:\RRbackups\common\secpolicy.dat
!-->[Hidden] C:\RRbackups\common\settings.dat
!-->[Hidden] C:\RRbackups\common\system.dat
!-->[Hidden] C:\RRbackups\common\tvtcmn.dat
!-->[Hidden] C:\RRbackups\common\tvtns.bin
!-->[Hidden] C:\RRbackups\common\usersids.dat
!-->[Hidden] C:\RRbackups\C\0\Data0
!-->[Hidden] C:\RRbackups\C\0\Data1
!-->[Hidden] C:\RRbackups\C\0\Data10
!-->[Hidden] C:\RRbackups\C\0\Data100
!-->[Hidden] C:\RRbackups\C\0\Data101
!-->[Hidden] C:\RRbackups\C\0\Data102
!-->[Hidden] C:\RRbackups\C\0\Data103
!-->[Hidden] C:\RRbackups\C\0\Data104
!-->[Hidden] C:\RRbackups\C\0\Data105
!-->[Hidden] C:\RRbackups\C\0\Data106
!-->[Hidden] C:\RRbackups\C\0\Data107
!-->[Hidden] C:\RRbackups\C\0\Data108
!-->[Hidden] C:\RRbackups\C\0\Data109
!-->[Hidden] C:\RRbackups\C\0\Data11
!-->[Hidden] C:\RRbackups\C\0\Data110
!-->[Hidden] C:\RRbackups\C\0\Data111
!-->[Hidden] C:\RRbackups\C\0\Data112
!-->[Hidden] C:\RRbackups\C\0\Data113
!-->[Hidden] C:\RRbackups\C\0\Data114
!-->[Hidden] C:\RRbackups\C\0\Data115
!-->[Hidden] C:\RRbackups\C\0\Data116
!-->[Hidden] C:\RRbackups\C\0\Data117
!-->[Hidden] C:\RRbackups\C\0\Data118
!-->[Hidden] C:\RRbackups\C\0\Data119
!-->[Hidden] C:\RRbackups\C\0\Data12
!-->[Hidden] C:\RRbackups\C\0\Data120
!-->[Hidden] C:\RRbackups\C\0\Data121
!-->[Hidden] C:\RRbackups\C\0\Data122
!-->[Hidden] C:\RRbackups\C\0\Data123
!-->[Hidden] C:\RRbackups\C\0\Data124
!-->[Hidden] C:\RRbackups\C\0\Data125
!-->[Hidden] C:\RRbackups\C\0\Data126
!-->[Hidden] C:\RRbackups\C\0\Data127
!-->[Hidden] C:\RRbackups\C\0\Data128
!-->[Hidden] C:\RRbackups\C\0\Data129
!-->[Hidden] C:\RRbackups\C\0\Data13
!-->[Hidden] C:\RRbackups\C\0\Data130
!-->[Hidden] C:\RRbackups\C\0\Data131
!-->[Hidden] C:\RRbackups\C\0\Data132
!-->[Hidden] C:\RRbackups\C\0\Data133
!-->[Hidden] C:\RRbackups\C\0\Data134
!-->[Hidden] C:\RRbackups\C\0\Data135
!-->[Hidden] C:\RRbackups\C\0\Data136
!-->[Hidden] C:\RRbackups\C\0\Data137
!-->[Hidden] C:\RRbackups\C\0\Data138
!-->[Hidden] C:\RRbackups\C\0\Data139
!-->[Hidden] C:\RRbackups\C\0\Data14
!-->[Hidden] C:\RRbackups\C\0\Data140
!-->[Hidden] C:\RRbackups\C\0\Data141
!-->[Hidden] C:\RRbackups\C\0\Data142
!-->[Hidden] C:\RRbackups\C\0\Data143
!-->[Hidden] C:\RRbackups\C\0\Data144
!-->[Hidden] C:\RRbackups\C\0\Data145
!-->[Hidden] C:\RRbackups\C\0\Data146
!-->[Hidden] C:\RRbackups\C\0\Data147
!-->[Hidden] C:\RRbackups\C\0\Data148
!-->[Hidden] C:\RRbackups\C\0\Data149
!-->[Hidden] C:\RRbackups\C\0\Data15
!-->[Hidden] C:\RRbackups\C\0\Data150
!-->[Hidden] C:\RRbackups\C\0\Data151
!-->[Hidden] C:\RRbackups\C\0\Data152
!-->[Hidden] C:\RRbackups\C\0\Data153
!-->[Hidden] C:\RRbackups\C\0\Data154
!-->[Hidden] C:\RRbackups\C\0\Data155
!-->[Hidden] C:\RRbackups\C\0\Data156
!-->[Hidden] C:\RRbackups\C\0\Data157
!-->[Hidden] C:\RRbackups\C\0\Data158
!-->[Hidden] C:\RRbackups\C\0\Data159
!-->[Hidden] C:\RRbackups\C\0\Data16
!-->[Hidden] C:\RRbackups\C\0\Data160
!-->[Hidden] C:\RRbackups\C\0\Data161
!-->[Hidden] C:\RRbackups\C\0\Data162
!-->[Hidden] C:\RRbackups\C\0\Data163
!-->[Hidden] C:\RRbackups\C\0\Data164
!-->[Hidden] C:\RRbackups\C\0\Data165
!-->[Hidden] C:\RRbackups\C\0\Data166
!-->[Hidden] C:\RRbackups\C\0\Data167
!-->[Hidden] C:\RRbackups\C\0\Data168
!-->[Hidden] C:\RRbackups\C\0\Data169
!-->[Hidden] C:\RRbackups\C\0\Data17
!-->[Hidden] C:\RRbackups\C\0\Data170
!-->[Hidden] C:\RRbackups\C\0\Data171
!-->[Hidden] C:\RRbackups\C\0\Data172
!-->[Hidden] C:\RRbackups\C\0\Data173
!-->[Hidden] C:\RRbackups\C\0\Data174
!-->[Hidden] C:\RRbackups\C\0\Data175
!-->[Hidden] C:\RRbackups\C\0\Data176
!-->[Hidden] C:\RRbackups\C\0\Data177
!-->[Hidden] C:\RRbackups\C\0\Data178
!-->[Hidden] C:\RRbackups\C\0\Data18
!-->[Hidden] C:\RRbackups\C\0\Data19
!-->[Hidden] C:\RRbackups\C\0\Data2
!-->[Hidden] C:\RRbackups\C\0\Data20
!-->[Hidden] C:\RRbackups\C\0\Data21
!-->[Hidden] C:\RRbackups\C\0\Data22
!-->[Hidden] C:\RRbackups\C\0\Data23
!-->[Hidden] C:\RRbackups\C\0\Data24
!-->[Hidden] C:\RRbackups\C\0\Data25
!-->[Hidden] C:\RRbackups\C\0\Data26
!-->[Hidden] C:\RRbackups\C\0\Data27
!-->[Hidden] C:\RRbackups\C\0\Data28
!-->[Hidden] C:\RRbackups\C\0\Data29
!-->[Hidden] C:\RRbackups\C\0\Data3
!-->[Hidden] C:\RRbackups\C\0\Data30
!-->[Hidden] C:\RRbackups\C\0\Data31
!-->[Hidden] C:\RRbackups\C\0\Data32
!-->[Hidden] C:\RRbackups\C\0\Data33
!-->[Hidden] C:\RRbackups\C\0\Data34
!-->[Hidden] C:\RRbackups\C\0\Data35
!-->[Hidden] C:\RRbackups\C\0\Data36
!-->[Hidden] C:\RRbackups\C\0\Data37
!-->[Hidden] C:\RRbackups\C\0\Data38
!-->[Hidden] C:\RRbackups\C\0\Data39
!-->[Hidden] C:\RRbackups\C\0\Data4
!-->[Hidden] C:\RRbackups\C\0\Data40
!-->[Hidden] C:\RRbackups\C\0\Data41
!-->[Hidden] C:\RRbackups\C\0\Data42
!-->[Hidden] C:\RRbackups\C\0\Data43
!-->[Hidden] C:\RRbackups\C\0\Data44
!-->[Hidden] C:\RRbackups\C\0\Data45
!-->[Hidden] C:\RRbackups\C\0\Data46
!-->[Hidden] C:\RRbackups\C\0\Data47
!-->[Hidden] C:\RRbackups\C\0\Data48
!-->[Hidden] C:\RRbackups\C\0\Data49
!-->[Hidden] C:\RRbackups\C\0\Data5
!-->[Hidden] C:\RRbackups\C\0\Data50
!-->[Hidden] C:\RRbackups\C\0\Data51
!-->[Hidden] C:\RRbackups\C\0\Data52
!-->[Hidden] C:\RRbackups\C\0\Data53
!-->[Hidden] C:\RRbackups\C\0\Data54
!-->[Hidden] C:\RRbackups\C\0\Data55
!-->[Hidden] C:\RRbackups\C\0\Data56
!-->[Hidden] C:\RRbackups\C\0\Data57
!-->[Hidden] C:\RRbackups\C\0\Data58
!-->[Hidden] C:\RRbackups\C\0\Data59
!-->[Hidden] C:\RRbackups\C\0\Data6
!-->[Hidden] C:\RRbackups\C\0\Data60
!-->[Hidden] C:\RRbackups\C\0\Data61
!-->[Hidden] C:\RRbackups\C\0\Data62
!-->[Hidden] C:\RRbackups\C\0\Data63
!-->[Hidden] C:\RRbackups\C\0\Data64
!-->[Hidden] C:\RRbackups\C\0\Data65
!-->[Hidden] C:\RRbackups\C\0\Data66
!-->[Hidden] C:\RRbackups\C\0\Data67
!-->[Hidden] C:\RRbackups\C\0\Data68
!-->[Hidden] C:\RRbackups\C\0\Data69
!-->[Hidden] C:\RRbackups\C\0\Data7
!-->[Hidden] C:\RRbackups\C\0\Data70
!-->[Hidden] C:\RRbackups\C\0\Data71
!-->[Hidden] C:\RRbackups\C\0\Data72
!-->[Hidden] C:\RRbackups\C\0\Data73
!-->[Hidden] C:\RRbackups\C\0\Data74
!-->[Hidden] C:\RRbackups\C\0\Data75
!-->[Hidden] C:\RRbackups\C\0\Data76
!-->[Hidden] C:\RRbackups\C\0\Data77
!-->[Hidden] C:\RRbackups\C\0\Data78
!-->[Hidden] C:\RRbackups\C\0\Data79
!-->[Hidden] C:\RRbackups\C\0\Data8
!-->[Hidden] C:\RRbackups\C\0\Data80
!-->[Hidden] C:\RRbackups\C\0\Data81
!-->[Hidden] C:\RRbackups\C\0\Data82
!-->[Hidden] C:\RRbackups\C\0\Data83
!-->[Hidden] C:\RRbackups\C\0\Data84
!-->[Hidden] C:\RRbackups\C\0\Data85
!-->[Hidden] C:\RRbackups\C\0\Data86
!-->[Hidden] C:\RRbackups\C\0\Data87
!-->[Hidden] C:\RRbackups\C\0\Data88
!-->[Hidden] C:\RRbackups\C\0\Data89
!-->[Hidden] C:\RRbackups\C\0\Data9
!-->[Hidden] C:\RRbackups\C\0\Data90
!-->[Hidden] C:\RRbackups\C\0\Data91
!-->[Hidden] C:\RRbackups\C\0\Data92
!-->[Hidden] C:\RRbackups\C\0\Data93
!-->[Hidden] C:\RRbackups\C\0\Data94
!-->[Hidden] C:\RRbackups\C\0\Data95
!-->[Hidden] C:\RRbackups\C\0\Data96
!-->[Hidden] C:\RRbackups\C\0\Data97
!-->[Hidden] C:\RRbackups\C\0\Data98
!-->[Hidden] C:\RRbackups\C\0\Data99
!-->[Hidden] C:\RRbackups\C\0\EFSFile
!-->[Hidden] C:\RRbackups\C\0\HashFile
!-->[Hidden] C:\RRbackups\C\0\Info
!-->[Hidden] C:\RRbackups\C\0\TOCFile
!-->[Hidden] C:\RRbackups\C\0\~EFSFile
!-->[Hidden] C:\RRbackups\C\0\~HashFile
!-->[Hidden] C:\RRbackups\C\0\~TOCFile
!-->[Hidden] C:\RRbackups\C\1\Data0
!-->[Hidden] C:\RRbackups\C\1\Data1
!-->[Hidden] C:\RRbackups\C\1\Data10
!-->[Hidden] C:\RRbackups\C\1\Data100
!-->[Hidden] C:\RRbackups\C\1\Data101
!-->[Hidden] C:\RRbackups\C\1\Data102
!-->[Hidden] C:\RRbackups\C\1\Data103
!-->[Hidden] C:\RRbackups\C\1\Data104
!-->[Hidden] C:\RRbackups\C\1\Data105
!-->[Hidden] C:\RRbackups\C\1\Data106
!-->[Hidden] C:\RRbackups\C\1\Data107
!-->[Hidden] C:\RRbackups\C\1\Data108
!-->[Hidden] C:\RRbackups\C\1\Data109
!-->[Hidden] C:\RRbackups\C\1\Data11
!-->[Hidden] C:\RRbackups\C\1\Data110
!-->[Hidden] C:\RRbackups\C\1\Data111
!-->[Hidden] C:\RRbackups\C\1\Data112
!-->[Hidden] C:\RRbackups\C\1\Data113
!-->[Hidden] C:\RRbackups\C\1\Data114
!-->[Hidden] C:\RRbackups\C\1\Data115
!-->[Hidden] C:\RRbackups\C\1\Data116
!-->[Hidden] C:\RRbackups\C\1\Data117
!-->[Hidden] C:\RRbackups\C\1\Data118
!-->[Hidden] C:\RRbackups\C\1\Data119
!-->[Hidden] C:\RRbackups\C\1\Data12
!-->[Hidden] C:\RRbackups\C\1\Data120
!-->[Hidden] C:\RRbackups\C\1\Data121
!-->[Hidden] C:\RRbackups\C\1\Data122
!-->[Hidden] C:\RRbackups\C\1\Data123
!-->[Hidden] C:\RRbackups\C\1\Data124
!-->[Hidden] C:\RRbackups\C\1\Data125
!-->[Hidden] C:\RRbackups\C\1\Data126
!-->[Hidden] C:\RRbackups\C\1\Data127
!-->[Hidden] C:\RRbackups\C\1\Data128
!-->[Hidden] C:\RRbackups\C\1\Data129
!-->[Hidden] C:\RRbackups\C\1\Data13
!-->[Hidden] C:\RRbackups\C\1\Data130
!-->[Hidden] C:\RRbackups\C\1\Data131
!-->[Hidden] C:\RRbackups\C\1\Data132
!-->[Hidden] C:\RRbackups\C\1\Data133
!-->[Hidden] C:\RRbackups\C\1\Data134
!-->[Hidden] C:\RRbackups\C\1\Data135
!-->[Hidden] C:\RRbackups\C\1\Data136
!-->[Hidden] C:\RRbackups\C\1\Data137
!-->[Hidden] C:\RRbackups\C\1\Data138
!-->[Hidden] C:\RRbackups\C\1\Data139
!-->[Hidden] C:\RRbackups\C\1\Data14
!-->[Hidden] C:\RRbackups\C\1\Data140
!-->[Hidden] C:\RRbackups\C\1\Data141
!-->[Hidden] C:\RRbackups\C\1\Data142
!-->[Hidden] C:\RRbackups\C\1\Data143
!-->[Hidden] C:\RRbackups\C\1\Data144
!-->[Hidden] C:\RRbackups\C\1\Data145
!-->[Hidden] C:\RRbackups\C\1\Data146
!-->[Hidden] C:\RRbackups\C\1\Data147
!-->[Hidden] C:\RRbackups\C\1\Data148
!-->[Hidden] C:\RRbackups\C\1\Data149
!-->[Hidden] C:\RRbackups\C\1\Data15
!-->[Hidden] C:\RRbackups\C\1\Data150
!-->[Hidden] C:\RRbackups\C\1\Data151
!-->[Hidden] C:\RRbackups\C\1\Data152
!-->[Hidden] C:\RRbackups\C\1\Data153
!-->[Hidden] C:\RRbackups\C\1\Data154
!-->[Hidden] C:\RRbackups\C\1\Data155
!-->[Hidden] C:\RRbackups\C\1\Data156
!-->[Hidden] C:\RRbackups\C\1\Data157
!-->[Hidden] C:\RRbackups\C\1\Data158
!-->[Hidden] C:\RRbackups\C\1\Data159
!-->[Hidden] C:\RRbackups\C\1\Data16
!-->[Hidden] C:\RRbackups\C\1\Data160
!-->[Hidden] C:\RRbackups\C\1\Data161
!-->[Hidden] C:\RRbackups\C\1\Data162
!-->[Hidden] C:\RRbackups\C\1\Data163
!-->[Hidden] C:\RRbackups\C\1\Data164
!-->[Hidden] C:\RRbackups\C\1\Data165
!-->[Hidden] C:\RRbackups\C\1\Data166
!-->[Hidden] C:\RRbackups\C\1\Data167
!-->[Hidden] C:\RRbackups\C\1\Data168
!-->[Hidden] C:\RRbackups\C\1\Data169
!-->[Hidden] C:\RRbackups\C\1\Data17
!-->[Hidden] C:\RRbackups\C\1\Data170
!-->[Hidden] C:\RRbackups\C\1\Data171
!-->[Hidden] C:\RRbackups\C\1\Data172
!-->[Hidden] C:\RRbackups\C\1\Data173
!-->[Hidden] C:\RRbackups\C\1\Data174
!-->[Hidden] C:\RRbackups\C\1\Data175
!-->[Hidden] C:\RRbackups\C\1\Data176
!-->[Hidden] C:\RRbackups\C\1\Data177
!-->[Hidden] C:\RRbackups\C\1\Data178
!-->[Hidden] C:\RRbackups\C\1\Data179
!-->[Hidden] C:\RRbackups\C\1\Data18
!-->[Hidden] C:\RRbackups\C\1\Data180
!-->[Hidden] C:\RRbackups\C\1\Data181
!-->[Hidden] C:\RRbackups\C\1\Data182
!-->[Hidden] C:\RRbackups\C\1\Data183
!-->[Hidden] C:\RRbackups\C\1\Data184
!-->[Hidden] C:\RRbackups\C\1\Data185
!-->[Hidden] C:\RRbackups\C\1\Data186
!-->[Hidden] C:\RRbackups\C\1\Data187
!-->[Hidden] C:\RRbackups\C\1\Data188
!-->[Hidden] C:\RRbackups\C\1\Data189
!-->[Hidden] C:\RRbackups\C\1\Data19
!-->[Hidden] C:\RRbackups\C\1\Data190
!-->[Hidden] C:\RRbackups\C\1\Data191
!-->[Hidden] C:\RRbackups\C\1\Data192
!-->[Hidden] C:\RRbackups\C\1\Data193
!-->[Hidden] C:\RRbackups\C\1\Data194
!-->[Hidden] C:\RRbackups\C\1\Data195
!-->[Hidden] C:\RRbackups\C\1\Data196
!-->[Hidden] C:\RRbackups\C\1\Data197
!-->[Hidden] C:\RRbackups\C\1\Data198
!-->[Hidden] C:\RRbackups\C\1\Data199
!-->[Hidden] C:\RRbackups\C\1\Data2
!-->[Hidden] C:\RRbackups\C\1\Data20
!-->[Hidden] C:\RRbackups\C\1\Data200
!-->[Hidden] C:\RRbackups\C\1\Data201
!-->[Hidden] C:\RRbackups\C\1\Data202
!-->[Hidden] C:\RRbackups\C\1\Data203
!-->[Hidden] C:\RRbackups\C\1\Data204
!-->[Hidden] C:\RRbackups\C\1\Data205
!-->[Hidden] C:\RRbackups\C\1\Data206
!-->[Hidden] C:\RRbackups\C\1\Data207
!-->[Hidden] C:\RRbackups\C\1\Data208
!-->[Hidden] C:\RRbackups\C\1\Data209
!-->[Hidden] C:\RRbackups\C\1\Data21
!-->[Hidden] C:\RRbackups\C\1\Data210
!-->[Hidden] C:\RRbackups\C\1\Data211
!-->[Hidden] C:\RRbackups\C\1\Data212
!-->[Hidden] C:\RRbackups\C\1\Data213
!-->[Hidden] C:\RRbackups\C\1\Data214
!-->[Hidden] C:\RRbackups\C\1\Data215
!-->[Hidden] C:\RRbackups\C\1\Data216
!-->[Hidden] C:\RRbackups\C\1\Data217
!-->[Hidden] C:\RRbackups\C\1\Data218
!-->[Hidden] C:\RRbackups\C\1\Data219
!-->[Hidden] C:\RRbackups\C\1\Data22
!-->[Hidden] C:\RRbackups\C\1\Data220
!-->[Hidden] C:\RRbackups\C\1\Data221
!-->[Hidden] C:\RRbackups\C\1\Data222
!-->[Hidden] C:\RRbackups\C\1\Data223
!-->[Hidden] C:\RRbackups\C\1\Data224
!-->[Hidden] C:\RRbackups\C\1\Data225
!-->[Hidden] C:\RRbackups\C\1\Data226
!-->[Hidden] C:\RRbackups\C\1\Data227
!-->[Hidden] C:\RRbackups\C\1\Data228
!-->[Hidden] C:\RRbackups\C\1\Data229
!-->[Hidden] C:\RRbackups\C\1\Data23
!-->[Hidden] C:\RRbackups\C\1\Data230
!-->[Hidden] C:\RRbackups\C\1\Data231
!-->[Hidden] C:\RRbackups\C\1\Data232
!-->[Hidden] C:\RRbackups\C\1\Data233
!-->[Hidden] C:\RRbackups\C\1\Data234
!-->[Hidden] C:\RRbackups\C\1\Data235
!-->[Hidden] C:\RRbackups\C\1\Data236
!-->[Hidden] C:\RRbackups\C\1\Data237
!-->[Hidden] C:\RRbackups\C\1\Data238
!-->[Hidden] C:\RRbackups\C\1\Data239
!-->[Hidden] C:\RRbackups\C\1\Data24
!-->[Hidden] C:\RRbackups\C\1\Data240
!-->[Hidden] C:\RRbackups\C\1\Data241
!-->[Hidden] C:\RRbackups\C\1\Data242
!-->[Hidden] C:\RRbackups\C\1\Data243
!-->[Hidden] C:\RRbackups\C\1\Data244
!-->[Hidden] C:\RRbackups\C\1\Data245
!-->[Hidden] C:\RRbackups\C\1\Data246
!-->[Hidden] C:\RRbackups\C\1\Data247
!-->[Hidden] C:\RRbackups\C\1\Data248
!-->[Hidden] C:\RRbackups\C\1\Data249
!-->[Hidden] C:\RRbackups\C\1\Data25
!-->[Hidden] C:\RRbackups\C\1\Data250
!-->[Hidden] C:\RRbackups\C\1\Data251
!-->[Hidden] C:\RRbackups\C\1\Data252
!-->[Hidden] C:\RRbackups\C\1\Data253
!-->[Hidden] C:\RRbackups\C\1\Data254
!-->[Hidden] C:\RRbackups\C\1\Data255
!-->[Hidden] C:\RRbackups\C\1\Data256
!-->[Hidden] C:\RRbackups\C\1\Data257
!-->[Hidden] C:\RRbackups\C\1\Data258
!-->[Hidden] C:\RRbackups\C\1\Data259
!-->[Hidden] C:\RRbackups\C\1\Data26
!-->[Hidden] C:\RRbackups\C\1\Data260
!-->[Hidden] C:\RRbackups\C\1\Data261
!-->[Hidden] C:\RRbackups\C\1\Data262
!-->[Hidden] C:\RRbackups\C\1\Data263
!-->[Hidden] C:\RRbackups\C\1\Data264
!-->[Hidden] C:\RRbackups\C\1\Data265
!-->[Hidden] C:\RRbackups\C\1\Data266
!-->[Hidden] C:\RRbackups\C\1\Data267
!-->[Hidden] C:\RRbackups\C\1\Data268
!-->[Hidden] C:\RRbackups\C\1\Data269
!-->[Hidden] C:\RRbackups\C\1\Data27
!-->[Hidden] C:\RRbackups\C\1\Data270
!-->[Hidden] C:\RRbackups\C\1\Data271
!-->[Hidden] C:\RRbackups\C\1\Data272
!-->[Hidden] C:\RRbackups\C\1\Data273
!-->[Hidden] C:\RRbackups\C\1\Data274
!-->[Hidden] C:\RRbackups\C\1\Data275
!-->[Hidden] C:\RRbackups\C\1\Data276
!-->[Hidden] C:\RRbackups\C\1\Data277
!-->[Hidden] C:\RRbackups\C\1\Data278
!-->[Hidden] C:\RRbackups\C\1\Data279
!-->[Hidden] C:\RRbackups\C\1\Data28
!-->[Hidden] C:\RRbackups\C\1\Data280
!-->[Hidden] C:\RRbackups\C\1\Data281
!-->[Hidden] C:\RRbackups\C\1\Data282
!-->[Hidden] C:\RRbackups\C\1\Data283
!-->[Hidden] C:\RRbackups\C\1\Data284
!-->[Hidden] C:\RRbackups\C\1\Data285
!-->[Hidden] C:\RRbackups\C\1\Data286
!-->[Hidden] C:\RRbackups\C\1\Data287
!-->[Hidden] C:\RRbackups\C\1\Data288
!-->[Hidden] C:\RRbackups\C\1\Data289
!-->[Hidden] C:\RRbackups\C\1\Data29
!-->[Hidden] C:\RRbackups\C\1\Data290
!-->[Hidden] C:\RRbackups\C\1\Data291
!-->[Hidden] C:\RRbackups\C\1\Data292
!-->[Hidden] C:\RRbackups\C\1\Data293
!-->[Hidden] C:\RRbackups\C\1\Data294
!-->[Hidden] C:\RRbackups\C\1\Data295
!-->[Hidden] C:\RRbackups\C\1\Data296
!-->[Hidden] C:\RRbackups\C\1\Data297
!-->[Hidden] C:\RRbackups\C\1\Data298
!-->[Hidden] C:\RRbackups\C\1\Data299
!-->[Hidden] C:\RRbackups\C\1\Data3
!-->[Hidden] C:\RRbackups\C\1\Data30
!-->[Hidden] C:\RRbackups\C\1\Data300
!-->[Hidden] C:\RRbackups\C\1\Data301
!-->[Hidden] C:\RRbackups\C\1\Data302
!-->[Hidden] C:\RRbackups\C\1\Data303
!-->[Hidden] C:\RRbackups\C\1\Data304
!-->[Hidden] C:\RRbackups\C\1\Data305
!-->[Hidden] C:\RRbackups\C\1\Data306
!-->[Hidden] C:\RRbackups\C\1\Data307
!-->[Hidden] C:\RRbackups\C\1\Data308
!-->[Hidden] C:\RRbackups\C\1\Data309
!-->[Hidden] C:\RRbackups\C\1\Data31
!-->[Hidden] C:\RRbackups\C\1\Data310
!-->[Hidden] C:\RRbackups\C\1\Data311
!-->[Hidden] C:\RRbackups\C\1\Data312
!-->[Hidden] C:\RRbackups\C\1\Data313
!-->[Hidden] C:\RRbackups\C\1\Data314
!-->[Hidden] C:\RRbackups\C\1\Data315
!-->[Hidden] C:\RRbackups\C\1\Data316
!-->[Hidden] C:\RRbackups\C\1\Data317
!-->[Hidden] C:\RRbackups\C\1\Data318
!-->[Hidden] C:\RRbackups\C\1\Data319
!-->[Hidden] C:\RRbackups\C\1\Data32
!-->[Hidden] C:\RRbackups\C\1\Data320
!-->[Hidden] C:\RRbackups\C\1\Data321
!-->[Hidden] C:\RRbackups\C\1\Data322
!-->[Hidden] C:\RRbackups\C\1\Data323
!-->[Hidden] C:\RRbackups\C\1\Data324
!-->[Hidden] C:\RRbackups\C\1\Data325
!-->[Hidden] C:\RRbackups\C\1\Data326
!-->[Hidden] C:\RRbackups\C\1\Data327
!-->[Hidden] C:\RRbackups\C\1\Data328
!-->[Hidden] C:\RRbackups\C\1\Data329
!-->[Hidden] C:\RRbackups\C\1\Data33
!-->[Hidden] C:\RRbackups\C\1\Data330
!-->[Hidden] C:\RRbackups\C\1\Data331
!-->[Hidden] C:\RRbackups\C\1\Data332
!-->[Hidden] C:\RRbackups\C\1\Data333
!-->[Hidden] C:\RRbackups\C\1\Data334
!-->[Hidden] C:\RRbackups\C\1\Data335
!-->[Hidden] C:\RRbackups\C\1\Data336
!-->[Hidden] C:\RRbackups\C\1\Data337
!-->[Hidden] C:\RRbackups\C\1\Data338
!-->[Hidden] C:\RRbackups\C\1\Data339
!-->[Hidden] C:\RRbackups\C\1\Data34
!-->[Hidden] C:\RRbackups\C\1\Data340
!-->[Hidden] C:\RRbackups\C\1\Data341
!-->[Hidden] C:\RRbackups\C\1\Data342
!-->[Hidden] C:\RRbackups\C\1\Data343
!-->[Hidden] C:\RRbackups\C\1\Data344
!-->[Hidden] C:\RRbackups\C\1\Data345
!-->[Hidden] C:\RRbackups\C\1\Data346
!-->[Hidden] C:\RRbackups\C\1\Data347
!-->[Hidden] C:\RRbackups\C\1\Data348
!-->[Hidden] C:\RRbackups\C\1\Data349
!-->[Hidden] C:\RRbackups\C\1\Data35
!-->[Hidden] C:\RRbackups\C\1\Data350
!-->[Hidden] C:\RRbackups\C\1\Data351
!-->[Hidden] C:\RRbackups\C\1\Data352
!-->[Hidden] C:\RRbackups\C\1\Data353
!-->[Hidden] C:\RRbackups\C\1\Data354
!-->[Hidden] C:\RRbackups\C\1\Data355
!-->[Hidden] C:\RRbackups\C\1\Data356
!-->[Hidden] C:\RRbackups\C\1\Data357
!-->[Hidden] C:\RRbackups\C\1\Data358
!-->[Hidden] C:\RRbackups\C\1\Data359
!-->[Hidden] C:\RRbackups\C\1\Data36
!-->[Hidden] C:\RRbackups\C\1\Data360
!-->[Hidden] C:\RRbackups\C\1\Data361
!-->[Hidden] C:\RRbackups\C\1\Data362
!-->[Hidden] C:\RRbackups\C\1\Data363
!-->[Hidden] C:\RRbackups\C\1\Data364
!-->[Hidden] C:\RRbackups\C\1\Data365
!-->[Hidden] C:\RRbackups\C\1\Data366
!-->[Hidden] C:\RRbackups\C\1\Data367
!-->[Hidden] C:\RRbackups\C\1\Data368
!-->[Hidden] C:\RRbackups\C\1\Data369
!-->[Hidden] C:\RRbackups\C\1\Data37
!-->[Hidden] C:\RRbackups\C\1\Data370
!-->[Hidden] C:\RRbackups\C\1\Data371
!-->[Hidden] C:\RRbackups\C\1\Data372
!-->[Hidden] C:\RRbackups\C\1\Data373
!-->[Hidden] C:\RRbackups\C\1\Data374
!-->[Hidden] C:\RRbackups\C\1\Data375
!-->[Hidden] C:\RRbackups\C\1\Data376
!-->[Hidden] C:\RRbackups\C\1\Data377
!-->[Hidden] C:\RRbackups\C\1\Data378
!-->[Hidden] C:\RRbackups\C\1\Data379
!-->[Hidden] C:\RRbackups\C\1\Data38
!-->[Hidden] C:\RRbackups\C\1\Data380
!-->[Hidden] C:\RRbackups\C\1\Data381
!-->[Hidden] C:\RRbackups\C\1\Data382
!-->[Hidden] C:\RRbackups\C\1\Data383
!-->[Hidden] C:\RRbackups\C\1\Data384
!-->[Hidden] C:\RRbackups\C\1\Data385
!-->[Hidden] C:\RRbackups\C\1\Data386
!-->[Hidden] C:\RRbackups\C\1\Data387
!-->[Hidden] C:\RRbackups\C\1\Data388
!-->[Hidden] C:\RRbackups\C\1\Data389
!-->[Hidden] C:\RRbackups\C\1\Data39
!-->[Hidden] C:\RRbackups\C\1\Data390
!-->[Hidden] C:\RRbackups\C\1\Data391
!-->[Hidden] C:\RRbackups\C\1\Data392
!-->[Hidden] C:\RRbackups\C\1\Data393
!-->[Hidden] C:\RRbackups\C\1\Data394
!-->[Hidden] C:\RRbackups\C\1\Data395
!-->[Hidden] C:\RRbackups\C\1\Data396
!-->[Hidden] C:\RRbackups\C\1\Data397
!-->[Hidden] C:\RRbackups\C\1\Data398
!-->[Hidden] C:\RRbackups\C\1\Data399
!-->[Hidden] C:\RRbackups\C\1\Data4
!-->[Hidden] C:\RRbackups\C\1\Data40
!-->[Hidden] C:\RRbackups\C\1\Data400
!-->[Hidden] C:\RRbackups\C\1\Data401
!-->[Hidden] C:\RRbackups\C\1\Data402
!-->[Hidden] C:\RRbackups\C\1\Data403
!-->[Hidden] C:\RRbackups\C\1\Data404
!-->[Hidden] C:\RRbackups\C\1\Data405
!-->[Hidden] C:\RRbackups\C\1\Data406
!-->[Hidden] C:\RRbackups\C\1\Data407
!-->[Hidden] C:\RRbackups\C\1\Data408
!-->[Hidden] C:\RRbackups\C\1\Data409
!-->[Hidden] C:\RRbackups\C\1\Data41
!-->[Hidden] C:\RRbackups\C\1\Data410
!-->[Hidden] C:\RRbackups\C\1\Data411
!-->[Hidden] C:\RRbackups\C\1\Data412
!-->[Hidden] C:\RRbackups\C\1\Data413
!-->[Hidden] C:\RRbackups\C\1\Data414
!-->[Hidden] C:\RRbackups\C\1\Data415
!-->[Hidden] C:\RRbackups\C\1\Data416
!-->[Hidden] C:\RRbackups\C\1\Data417
!-->[Hidden] C:\RRbackups\C\1\Data418
!-->[Hidden] C:\RRbackups\C\1\Data419
!-->[Hidden] C:\RRbackups\C\1\Data42
!-->[Hidden] C:\RRbackups\C\1\Data420
!-->[Hidden] C:\RRbackups\C\1\Data421
!-->[Hidden] C:\RRbackups\C\1\Data422
!-->[Hidden] C:\RRbackups\C\1\Data423
!-->[Hidden] C:\RRbackups\C\1\Data424
!-->[Hidden] C:\RRbackups\C\1\Data425
!-->[Hidden] C:\RRbackups\C\1\Data426
!-->[Hidden] C:\RRbackups\C\1\Data427
!-->[Hidden] C:\RRbackups\C\1\Data428
!-->[Hidden] C:\RRbackups\C\1\Data429
!-->[Hidden] C:\RRbackups\C\1\Data43
!-->[Hidden] C:\RRbackups\C\1\Data430
!-->[Hidden] C:\RRbackups\C\1\Data431
!-->[Hidden] C:\RRbackups\C\1\Data432
!-->[Hidden] C:\RRbackups\C\1\Data433
!-->[Hidden] C:\RRbackups\C\1\Data434
!-->[Hidden] C:\RRbackups\C\1\Data435
!-->[Hidden] C:\RRbackups\C\1\Data436
!-->[Hidden] C:\RRbackups\C\1\Data437
!-->[Hidden] C:\RRbackups\C\1\Data438
!-->[Hidden] C:\RRbackups\C\1\Data439
!-->[Hidden] C:\RRbackups\C\1\Data44
!-->[Hidden] C:\RRbackups\C\1\Data440
!-->[Hidden] C:\RRbackups\C\1\Data441
!-->[Hidden] C:\RRbackups\C\1\Data442
!-->[Hidden] C:\RRbackups\C\1\Data443
!-->[Hidden] C:\RRbackups\C\1\Data444
!-->[Hidden] C:\RRbackups\C\1\Data445
!-->[Hidden] C:\RRbackups\C\1\Data446
!-->[Hidden] C:\RRbackups\C\1\Data447
!-->[Hidden] C:\RRbackups\C\1\Data448
!-->[Hidden] C:\RRbackups\C\1\Data449
!-->[Hidden] C:\RRbackups\C\1\Data45
!-->[Hidden] C:\RRbackups\C\1\Data450
!-->[Hidden] C:\RRbackups\C\1\Data451
!-->[Hidden] C:\RRbackups\C\1\Data452
!-->[Hidden] C:\RRbackups\C\1\Data453
!-->[Hidden] C:\RRbackups\C\1\Data454
!-->[Hidden] C:\RRbackups\C\1\Data455
!-->[Hidden] C:\RRbackups\C\1\Data456
!-->[Hidden] C:\RRbackups\C\1\Data457
!-->[Hidden] C:\RRbackups\C\1\Data458
!-->[Hidden] C:\RRbackups\C\1\Data459
!-->[Hidden] C:\RRbackups\C\1\Data46
!-->[Hidden] C:\RRbackups\C\1\Data460
!-->[Hidden] C:\RRbackups\C\1\Data461
!-->[Hidden] C:\RRbackups\C\1\Data462
!-->[Hidden] C:\RRbackups\C\1\Data463
!-->[Hidden] C:\RRbackups\C\1\Data464
!-->[Hidden] C:\RRbackups\C\1\Data465
!-->[Hidden] C:\RRbackups\C\1\Data466
!-->[Hidden] C:\RRbackups\C\1\Data467
!-->[Hidden] C:\RRbackups\C\1\Data468
!-->[Hidden] C:\RRbackups\C\1\Data469
!-->[Hidden] C:\RRbackups\C\1\Data47
!-->[Hidden] C:\RRbackups\C\1\Data470
!-->[Hidden] C:\RRbackups\C\1\Data471
!-->[Hidden] C:\RRbackups\C\1\Data472
!-->[Hidden] C:\RRbackups\C\1\Data473
!-->[Hidden] C:\RRbackups\C\1\Data474
!-->[Hidden] C:\RRbackups\C\1\Data475
!-->[Hidden] C:\RRbackups\C\1\Data476
!-->[Hidden] C:\RRbackups\C\1\Data477
!-->[Hidden] C:\RRbackups\C\1\Data478
!-->[Hidden] C:\RRbackups\C\1\Data479
!-->[Hidden] C:\RRbackups\C\1\Data48
!-->[Hidden] C:\RRbackups\C\1\Data480
!-->[Hidden] C:\RRbackups\C\1\Data481
!-->[Hidden] C:\RRbackups\C\1\Data482
!-->[Hidden] C:\RRbackups\C\1\Data483
!-->[Hidden] C:\RRbackups\C\1\Data484
!-->[Hidden] C:\RRbackups\C\1\Data485
!-->[Hidden] C:\RRbackups\C\1\Data486
!-->[Hidden] C:\RRbackups\C\1\Data487
!-->[Hidden] C:\RRbackups\C\1\Data488
!-->[Hidden] C:\RRbackups\C\1\Data49
!-->[Hidden] C:\RRbackups\C\1\Data5
!-->[Hidden] C:\RRbackups\C\1\Data50
!-->[Hidden] C:\RRbackups\C\1\Data51
!-->[Hidden] C:\RRbackups\C\1\Data52
!-->[Hidden] C:\RRbackups\C\1\Data53
!-->[Hidden] C:\RRbackups\C\1\Data54
!-->[Hidden] C:\RRbackups\C\1\Data55
!-->[Hidden] C:\RRbackups\C\1\Data56
!-->[Hidden] C:\RRbackups\C\1\Data57
!-->[Hidden] C:\RRbackups\C\1\Data58
!-->[Hidden] C:\RRbackups\C\1\Data59
!-->[Hidden] C:\RRbackups\C\1\Data6
!-->[Hidden] C:\RRbackups\C\1\Data60
!-->[Hidden] C:\RRbackups\C\1\Data61
!-->[Hidden] C:\RRbackups\C\1\Data62
!-->[Hidden] C:\RRbackups\C\1\Data63
!-->[Hidden] C:\RRbackups\C\1\Data64
!-->[Hidden] C:\RRbackups\C\1\Data65
!-->[Hidden] C:\RRbackups\C\1\Data66
!-->[Hidden] C:\RRbackups\C\1\Data67
!-->[Hidden] C:\RRbackups\C\1\Data68
!-->[Hidden] C:\RRbackups\C\1\Data69
!-->[Hidden] C:\RRbackups\C\1\Data7
!-->[Hidden] C:\RRbackups\C\1\Data70
!-->[Hidden] C:\RRbackups\C\1\Data71
!-->[Hidden] C:\RRbackups\C\1\Data72
!-->[Hidden] C:\RRbackups\C\1\Data73
!-->[Hidden] C:\RRbackups\C\1\Data74
!-->[Hidden] C:\RRbackups\C\1\Data75
!-->[Hidden] C:\RRbackups\C\1\Data76
!-->[Hidden] C:\RRbackups\C\1\Data77
!-->[Hidden] C:\RRbackups\C\1\Data78
!-->[Hidden] C:\RRbackups\C\1\Data79
!-->[Hidden] C:\RRbackups\C\1\Data8
!-->[Hidden] C:\RRbackups\C\1\Data80
!-->[Hidden] C:\RRbackups\C\1\Data81
!-->[Hidden] C:\RRbackups\C\1\Data82
!-->[Hidden] C:\RRbackups\C\1\Data83
!-->[Hidden] C:\RRbackups\C\1\Data84
!-->[Hidden] C:\RRbackups\C\1\Data85
!-->[Hidden] C:\RRbackups\C\1\Data86
!-->[Hidden] C:\RRbackups\C\1\Data87
!-->[Hidden] C:\RRbackups\C\1\Data88
!-->[Hidden] C:\RRbackups\C\1\Data89
!-->[Hidden] C:\RRbackups\C\1\Data9
!-->[Hidden] C:\RRbackups\C\1\Data90
!-->[Hidden] C:\RRbackups\C\1\Data91
!-->[Hidden] C:\RRbackups\C\1\Data92
!-->[Hidden] C:\RRbackups\C\1\Data93
!-->[Hidden] C:\RRbackups\C\1\Data94
!-->[Hidden] C:\RRbackups\C\1\Data95
!-->[Hidden] C:\RRbackups\C\1\Data96
!-->[Hidden] C:\RRbackups\C\1\Data97
!-->[Hidden] C:\RRbackups\C\1\Data98
!-->[Hidden] C:\RRbackups\C\1\Data99
!-->[Hidden] C:\RRbackups\C\1\EFSFile
!-->[Hidden] C:\RRbackups\C\1\HashFile
!-->[Hidden] C:\RRbackups\C\1\Info
!-->[Hidden] C:\RRbackups\C\1\TOCFile
!-->[Hidden] C:\RRbackups\C\1\~EFSFile
!-->[Hidden] C:\RRbackups\C\1\~HashFile
!-->[Hidden] C:\RRbackups\C\1\~TOCFile
!-->[Hidden] C:\RRbackups\C\2\Data0
!-->[Hidden] C:\RRbackups\C\2\Data1
!-->[Hidden] C:\RRbackups\C\2\Data10
!-->[Hidden] C:\RRbackups\C\2\Data100
!-->[Hidden] C:\RRbackups\C\2\Data101
!-->[Hidden] C:\RRbackups\C\2\Data102
!-->[Hidden] C:\RRbackups\C\2\Data103
!-->[Hidden] C:\RRbackups\C\2\Data104
!-->[Hidden] C:\RRbackups\C\2\Data105
!-->[Hidden] C:\RRbackups\C\2\Data106
!-->[Hidden] C:\RRbackups\C\2\Data107
!-->[Hidden] C:\RRbackups\C\2\Data108
!-->[Hidden] C:\RRbackups\C\2\Data109
!-->[Hidden] C:\RRbackups\C\2\Data11
!-->[Hidden] C:\RRbackups\C\2\Data110
!-->[Hidden] C:\RRbackups\C\2\Data111
!-->[Hidden] C:\RRbackups\C\2\Data112
!-->[Hidden] C:\RRbackups\C\2\Data113
!-->[Hidden] C:\RRbackups\C\2\Data114
!-->[Hidden] C:\RRbackups\C\2\Data115
!-->[Hidden] C:\RRbackups\C\2\Data116
!-->[Hidden] C:\RRbackups\C\2\Data117
!-->[Hidden] C:\RRbackups\C\2\Data118
!-->[Hidden] C:\RRbackups\C\2\Data119
!-->[Hidden] C:\RRbackups\C\2\Data12
!-->[Hidden] C:\RRbackups\C\2\Data120
!-->[Hidden] C:\RRbackups\C\2\Data121
!-->[Hidden] C:\RRbackups\C\2\Data122
!-->[Hidden] C:\RRbackups\C\2\Data123
!-->[Hidden] C:\RRbackups\C\2\Data124
!-->[Hidden] C:\RRbackups\C\2\Data125
!-->[Hidden] C:\RRbackups\C\2\Data126
!-->[Hidden] C:\RRbackups\C\2\Data127
!-->[Hidden] C:\RRbackups\C\2\Data128
!-->[Hidden] C:\RRbackups\C\2\Data129
!-->[Hidden] C:\RRbackups\C\2\Data13
!-->[Hidden] C:\RRbackups\C\2\Data130
!-->[Hidden] C:\RRbackups\C\2\Data131
!-->[Hidden] C:\RRbackups\C\2\Data132
!-->[Hidden] C:\RRbackups\C\2\Data133
!-->[Hidden] C:\RRbackups\C\2\Data134
!-->[Hidden] C:\RRbackups\C\2\Data135
!-->[Hidden] C:\RRbackups\C\2\Data136
!-->[Hidden] C:\RRbackups\C\2\Data137
!-->[Hidden] C:\RRbackups\C\2\Data138
!-->[Hidden] C:\RRbackups\C\2\Data139
!-->[Hidden] C:\RRbackups\C\2\Data14
!-->[Hidden] C:\RRbackups\C\2\Data140
!-->[Hidden] C:\RRbackups\C\2\Data141
!-->[Hidden] C:\RRbackups\C\2\Data142
!-->[Hidden] C:\RRbackups\C\2\Data143
!-->[Hidden] C:\RRbackups\C\2\Data144
!-->[Hidden] C:\RRbackups\C\2\Data145
!-->[Hidden] C:\RRbackups\C\2\Data146
!-->[Hidden] C:\RRbackups\C\2\Data147
!-->[Hidden] C:\RRbackups\C\2\Data148
!-->[Hidden] C:\RRbackups\C\2\Data149
!-->[Hidden] C:\RRbackups\C\2\Data15
!-->[Hidden] C:\RRbackups\C\2\Data150
!-->[Hidden] C:\RRbackups\C\2\Data151
!-->[Hidden] C:\RRbackups\C\2\Data152
!-->[Hidden] C:\RRbackups\C\2\Data153
!-->[Hidden] C:\RRbackups\C\2\Data154
!-->[Hidden] C:\RRbackups\C\2\Data155
!-->[Hidden] C:\RRbackups\C\2\Data156
!-->[Hidden] C:\RRbackups\C\2\Data157
!-->[Hidden] C:\RRbackups\C\2\Data158
!-->[Hidden] C:\RRbackups\C\2\Data159
!-->[Hidden] C:\RRbackups\C\2\Data16
!-->[Hidden] C:\RRbackups\C\2\Data160
!-->[Hidden] C:\RRbackups\C\2\Data161
!-->[Hidden] C:\RRbackups\C\2\Data162
!-->[Hidden] C:\RRbackups\C\2\Data163
!-->[Hidden] C:\RRbackups\C\2\Data164
!-->[Hidden] C:\RRbackups\C\2\Data165
!-->[Hidden] C:\RRbackups\C\2\Data166
!-->[Hidden] C:\RRbackups\C\2\Data167
!-->[Hidden] C:\RRbackups\C\2\Data168
!-->[Hidden] C:\RRbackups\C\2\Data169
!-->[Hidden] C:\RRbackups\C\2\Data17
!-->[Hidden] C:\RRbackups\C\2\Data170
!-->[Hidden] C:\RRbackups\C\2\Data171
!-->[Hidden] C:\RRbackups\C\2\Data172
!-->[Hidden] C:\RRbackups\C\2\Data173
!-->[Hidden] C:\RRbackups\C\2\Data174
!-->[Hidden] C:\RRbackups\C\2\Data175
!-->[Hidden] C:\RRbackups\C\2\Data176
!-->[Hidden] C:\RRbackups\C\2\Data177
!-->[Hidden] C:\RRbackups\C\2\Data178
!-->[Hidden] C:\RRbackups\C\2\Data179
!-->[Hidden] C:\RRbackups\C\2\Data18
!-->[Hidden] C:\RRbackups\C\2\Data180
!-->[Hidden] C:\RRbackups\C\2\Data181
!-->[Hidden] C:\RRbackups\C\2\Data182
!-->[Hidden] C:\RRbackups\C\2\Data183
!-->[Hidden] C:\RRbackups\C\2\Data184
!-->[Hidden] C:\RRbackups\C\2\Data185
!-->[Hidden] C:\RRbackups\C\2\Data186
!-->[Hidden] C:\RRbackups\C\2\Data187
!-->[Hidden] C:\RRbackups\C\2\Data188
!-->[Hidden] C:\RRbackups\C\2\Data189
!-->[Hidden] C:\RRbackups\C\2\Data19
!-->[Hidden] C:\RRbackups\C\2\Data190
!-->[Hidden] C:\RRbackups\C\2\Data191
!-->[Hidden] C:\RRbackups\C\2\Data192
!-->[Hidden] C:\RRbackups\C\2\Data193
!-->[Hidden] C:\RRbackups\C\2\Data194
!-->[Hidden] C:\RRbackups\C\2\Data195
!-->[Hidden] C:\RRbackups\C\2\Data196
!-->[Hidden] C:\RRbackups\C\2\Data197
!-->[Hidden] C:\RRbackups\C\2\Data198
!-->[Hidden] C:\RRbackups\C\2\Data199
!-->[Hidden] C:\RRbackups\C\2\Data2
!-->[Hidden] C:\RRbackups\C\2\Data20
!-->[Hidden] C:\RRbackups\C\2\Data200
!-->[Hidden] C:\RRbackups\C\2\Data201
!-->[Hidden] C:\RRbackups\C\2\Data202
!-->[Hidden] C:\RRbackups\C\2\Data203
!-->[Hidden] C:\RRbackups\C\2\Data204
!-->[Hidden] C:\RRbackups\C\2\Data205
!-->[Hidden] C:\RRbackups\C\2\Data206
!-->[Hidden] C:\RRbackups\C\2\Data207
!-->[Hidden] C:\RRbackups\C\2\Data208
!-->[Hidden] C:\RRbackups\C\2\Data209
!-->[Hidden] C:\RRbackups\C\2\Data21
!-->[Hidden] C:\RRbackups\C\2\Data210
!-->[Hidden] C:\RRbackups\C\2\Data211
!-->[Hidden] C:\RRbackups\C\2\Data212
!-->[Hidden] C:\RRbackups\C\2\Data213
!-->[Hidden] C:\RRbackups\C\2\Data214
!-->[Hidden] C:\RRbackups\C\2\Data215
!-->[Hidden] C:\RRbackups\C\2\Data216
!-->[Hidden] C:\RRbackups\C\2\Data217
!-->[Hidden] C:\RRbackups\C\2\Data218
!-->[Hidden] C:\RRbackups\C\2\Data22
!-->[Hidden] C:\RRbackups\C\2\Data23
!-->[Hidden] C:\RRbackups\C\2\Data24
!-->[Hidden] C:\RRbackups\C\2\Data25
!-->[Hidden] C:\RRbackups\C\2\Data26
!-->[Hidden] C:\RRbackups\C\2\Data27
!-->[Hidden] C:\RRbackups\C\2\Data28
!-->[Hidden] C:\RRbackups\C\2\Data29
!-->[Hidden] C:\RRbackups\C\2\Data3
!-->[Hidden] C:\RRbackups\C\2\Data30
!-->[Hidden] C:\RRbackups\C\2\Data31
!-->[Hidden] C:\RRbackups\C\2\Data32
!-->[Hidden] C:\RRbackups\C\2\Data33
!-->[Hidden] C:\RRbackups\C\2\Data34
!-->[Hidden] C:\RRbackups\C\2\Data35
!-->[Hidden] C:\RRbackups\C\2\Data36
!-->[Hidden] C:\RRbackups\C\2\Data37
!-->[Hidden] C:\RRbackups\C\2\Data38
!-->[Hidden] C:\RRbackups\C\2\Data39
!-->[Hidden] C:\RRbackups\C\2\Data4
!-->[Hidden] C:\RRbackups\C\2\Data40
!-->[Hidden] C:\RRbackups\C\2\Data41
!-->[Hidden] C:\RRbackups\C\2\Data42
!-->[Hidden] C:\RRbackups\C\2\Data43
!-->[Hidden] C:\RRbackups\C\2\Data44
!-->[Hidden] C:\RRbackups\C\2\Data45
!-->[Hidden] C:\RRbackups\C\2\Data46
!-->[Hidden] C:\RRbackups\C\2\Data47
!-->[Hidden] C:\RRbackups\C\2\Data48
!-->[Hidden] C:\RRbackups\C\2\Data49
!-->[Hidden] C:\RRbackups\C\2\Data5
!-->[Hidden] C:\RRbackups\C\2\Data50
!-->[Hidden] C:\RRbackups\C\2\Data51
!-->[Hidden] C:\RRbackups\C\2\Data52
!-->[Hidden] C:\RRbackups\C\2\Data53
!-->[Hidden] C:\RRbackups\C\2\Data54
!-->[Hidden] C:\RRbackups\C\2\Data55
!-->[Hidden] C:\RRbackups\C\2\Data56
!-->[Hidden] C:\RRbackups\C\2\Data57
!-->[Hidden] C:\RRbackups\C\2\Data58
!-->[Hidden] C:\RRbackups\C\2\Data59
!-->[Hidden] C:\RRbackups\C\2\Data6
!-->[Hidden] C:\RRbackups\C\2\Data60
!-->[Hidden] C:\RRbackups\C\2\Data61
!-->[Hidden] C:\RRbackups\C\2\Data62
!-->[Hidden] C:\RRbackups\C\2\Data63
!-->[Hidden] C:\RRbackups\C\2\Data64
!-->[Hidden] C:\RRbackups\C\2\Data65
!-->[Hidden] C:\RRbackups\C\2\Data66
!-->[Hidden] C:\RRbackups\C\2\Data67
!-->[Hidden] C:\RRbackups\C\2\Data68
!-->[Hidden] C:\RRbackups\C\2\Data69
!-->[Hidden] C:\RRbackups\C\2\Data7
!-->[Hidden] C:\RRbackups\C\2\Data70
!-->[Hidden] C:\RRbackups\C\2\Data71
!-->[Hidden] C:\RRbackups\C\2\Data72
!-->[Hidden] C:\RRbackups\C\2\Data73
!-->[Hidden] C:\RRbackups\C\2\Data74
!-->[Hidden] C:\RRbackups\C\2\Data75
!-->[Hidden] C:\RRbackups\C\2\Data76
!-->[Hidden] C:\RRbackups\C\2\Data77
!-->[Hidden] C:\RRbackups\C\2\Data78
!-->[Hidden] C:\RRbackups\C\2\Data79
!-->[Hidden] C:\RRbackups\C\2\Data8
!-->[Hidden] C:\RRbackups\C\2\Data80
!-->[Hidden] C:\RRbackups\C\2\Data81
!-->[Hidden] C:\RRbackups\C\2\Data82
!-->[Hidden] C:\RRbackups\C\2\Data83
!-->[Hidden] C:\RRbackups\C\2\Data84
!-->[Hidden] C:\RRbackups\C\2\Data85
!-->[Hidden] C:\RRbackups\C\2\Data86
!-->[Hidden] C:\RRbackups\C\2\Data87
!-->[Hidden] C:\RRbackups\C\2\Data88
!-->[Hidden] C:\RRbackups\C\2\Data89
!-->[Hidden] C:\RRbackups\C\2\Data9
!-->[Hidden] C:\RRbackups\C\2\Data90
!-->[Hidden] C:\RRbackups\C\2\Data91
!-->[Hidden] C:\RRbackups\C\2\Data92
!-->[Hidden] C:\RRbackups\C\2\Data93
!-->[Hidden] C:\RRbackups\C\2\Data94
!-->[Hidden] C:\RRbackups\C\2\Data95
!-->[Hidden] C:\RRbackups\C\2\Data96
!-->[Hidden] C:\RRbackups\C\2\Data97
!-->[Hidden] C:\RRbackups\C\2\Data98
!-->[Hidden] C:\RRbackups\C\2\Data99
!-->[Hidden] C:\RRbackups\C\2\EFSFile
!-->[Hidden] C:\RRbackups\C\2\HashFile
!-->[Hidden] C:\RRbackups\C\2\Info
!-->[Hidden] C:\RRbackups\C\2\TOCFile
!-->[Hidden] C:\RRbackups\C\2\~EFSFile
!-->[Hidden] C:\RRbackups\C\2\~HashFile
!-->[Hidden] C:\RRbackups\C\2\~TOCFile
!-->[Hidden] C:\RRbackups\C\3\Data0
!-->[Hidden] C:\RRbackups\C\3\Data1
!-->[Hidden] C:\RRbackups\C\3\Data10
!-->[Hidden] C:\RRbackups\C\3\Data100
!-->[Hidden] C:\RRbackups\C\3\Data1000
!-->[Hidden] C:\RRbackups\C\3\Data1001
!-->[Hidden] C:\RRbackups\C\3\Data1002
!-->[Hidden] C:\RRbackups\C\3\Data1003
!-->[Hidden] C:\RRbackups\C\3\Data1004
!-->[Hidden] C:\RRbackups\C\3\Data1005
!-->[Hidden] C:\RRbackups\C\3\Data1006
!-->[Hidden] C:\RRbackups\C\3\Data1007
!-->[Hidden] C:\RRbackups\C\3\Data1008
!-->[Hidden] C:\RRbackups\C\3\Data1009
!-->[Hidden] C:\RRbackups\C\3\Data101
!-->[Hidden] C:\RRbackups\C\3\Data1010
!-->[Hidden] C:\RRbackups\C\3\Data1011
!-->[Hidden] C:\RRbackups\C\3\Data1012
!-->[Hidden] C:\RRbackups\C\3\Data1013
!-->[Hidden] C:\RRbackups\C\3\Data1014
!-->[Hidden] C:\RRbackups\C\3\Data1015
!-->[Hidden] C:\RRbackups\C\3\Data1016
!-->[Hidden] C:\RRbackups\C\3\Data1017
!-->[Hidden] C:\RRbackups\C\3\Data1018
!-->[Hidden] C:\RRbackups\C\3\Data1019
!-->[Hidden] C:\RRbackups\C\3\Data102
!-->[Hidden] C:\RRbackups\C\3\Data1020
!-->[Hidden] C:\RRbackups\C\3\Data1021
!-->[Hidden] C:\RRbackups\C\3\Data1022
!-->[Hidden] C:\RRbackups\C\3\Data1023
!-->[Hidden] C:\RRbackups\C\3\Data1024
!-->[Hidden] C:\RRbackups\C\3\Data1025
!-->[Hidden] C:\RRbackups\C\3\Data1026
!-->[Hidden] C:\RRbackups\C\3\Data1027
!-->[Hidden] C:\RRbackups\C\3\Data1028
!-->[Hidden] C:\RRbackups\C\3\Data1029
!-->[Hidden] C:\RRbackups\C\3\Data103
!-->[Hidden] C:\RRbackups\C\3\Data1030
!-->[Hidden] C:\RRbackups\C\3\Data1031
!-->[Hidden] C:\RRbackups\C\3\Data1032
!-->[Hidden] C:\RRbackups\C\3\Data1033
!-->[Hidden] C:\RRbackups\C\3\Data1034
!-->[Hidden] C:\RRbackups\C\3\Data1035
!-->[Hidden] C:\RRbackups\C\3\Data1036
!-->[Hidden] C:\RRbackups\C\3\Data1037
!-->[Hidden] C:\RRbackups\C\3\Data1038
!-->[Hidden] C:\RRbackups\C\3\Data1039
!-->[Hidden] C:\RRbackups\C\3\Data104
!-->[Hidden] C:\RRbackups\C\3\Data1040
!-->[Hidden] C:\RRbackups\C\3\Data1041
!-->[Hidden] C:\RRbackups\C\3\Data1042
!-->[Hidden] C:\RRbackups\C\3\Data1043
!-->[Hidden] C:\RRbackups\C\3\Data1044
!-->[Hidden] C:\RRbackups\C\3\Data1045
!-->[Hidden] C:\RRbackups\C\3\Data1046
!-->[Hidden] C:\RRbackups\C\3\Data1047
!-->[Hidden] C:\RRbackups\C\3\Data1048
!-->[Hidden] C:\RRbackups\C\3\Data1049
!-->[Hidden] C:\RRbackups\C\3\Data105
!-->[Hidden] C:\RRbackups\C\3\Data1050
!-->[Hidden] C:\RRbackups\C\3\Data1051
!-->[Hidden] C:\RRbackups\C\3\Data1052
!-->[Hidden] C:\RRbackups\C\3\Data1053
!-->[Hidden] C:\RRbackups\C\3\Data1054
!-->[Hidden] C:\RRbackups\C\3\Data1055
!-->[Hidden] C:\RRbackups\C\3\Data1056
!-->[Hidden] C:\RRbackups\C\3\Data1057
!-->[Hidden] C:\RRbackups\C\3\Data106
!-->[Hidden] C:\RRbackups\C\3\Data107
!-->[Hidden] C:\RRbackups\C\3\Data108
!-->[Hidden] C:\RRbackups\C\3\Data109
!-->[Hidden] C:\RRbackups\C\3\Data11
!-->[Hidden] C:\RRbackups\C\3\Data110
!-->[Hidden] C:\RRbackups\C\3\Data111
!-->[Hidden] C:\RRbackups\C\3\Data112
!-->[Hidden] C:\RRbackups\C\3\Data113
!-->[Hidden] C:\RRbackups\C\3\Data114
!-->[Hidden] C:\RRbackups\C\3\Data115
!-->[Hidden] C:\RRbackups\C\3\Data116
!-->[Hidden] C:\RRbackups\C\3\Data117
!-->[Hidden] C:\RRbackups\C\3\Data118
!-->[Hidden] C:\RRbackups\C\3\Data119
!-->[Hidden] C:\RRbackups\C\3\Data12
!-->[Hidden] C:\RRbackups\C\3\Data120
!-->[Hidden] C:\RRbackups\C\3\Data121
!-->[Hidden] C:\RRbackups\C\3\Data122
!-->[Hidden] C:\RRbackups\C\3\Data123
!-->[Hidden] C:\RRbackups\C\3\Data124
!-->[Hidden] C:\RRbackups\C\3\Data125
!-->[Hidden] C:\RRbackups\C\3\Data126
!-->[Hidden] C:\RRbackups\C\3\Data127
!-->[Hidden] C:\RRbackups\C\3\Data128
!-->[Hidden] C:\RRbackups\C\3\Data129
!-->[Hidden] C:\RRbackups\C\3\Data13
!-->[Hidden] C:\RRbackups\C\3\Data130
!-->[Hidden] C:\RRbackups\C\3\Data131
!-->[Hidden] C:\RRbackups\C\3\Data132
!-->[Hidden] C:\RRbackups\C\3\Data133
!-->[Hidden] C:\RRbackups\C\3\Data134
!-->[Hidden] C:\RRbackups\C\3\Data135
!-->[Hidden] C:\RRbackups\C\3\Data136
!-->[Hidden] C:\RRbackups\C\3\Data137
!-->[Hidden] C:\RRbackups\C\3\Data138
!-->[Hidden] C:\RRbackups\C\3\Data139
!-->[Hidden] C:\RRbackups\C\3\Data14
!-->[Hidden] C:\RRbackups\C\3\Data140
!-->[Hidden] C:\RRbackups\C\3\Data141
!-->[Hidden] C:\RRbackups\C\3\Data142
!-->[Hidden] C:\RRbackups\C\3\Data143
!-->[Hidden] C:\RRbackups\C\3\Data144
!-->[Hidden] C:\RRbackups\C\3\Data145
!-->[Hidden] C:\RRbackups\C\3\Data146
!-->[Hidden] C:\RRbackups\C\3\Data147
!-->[Hidden] C:\RRbackups\C\3\Data148
!-->[Hidden] C:\RRbackups\C\3\Data149
!-->[Hidden] C:\RRbackups\C\3\Data15
!-->[Hidden] C:\RRbackups\C\3\Data150
!-->[Hidden] C:\RRbackups\C\3\Data151
!-->[Hidden] C:\RRbackups\C\3\Data152
!-->[Hidden] C:\RRbackups\C\3\Data153
!-->[Hidden] C:\RRbackups\C\3\Data154
!-->[Hidden] C:\RRbackups\C\3\Data155
!-->[Hidden] C:\RRbackups\C\3\Data156
!-->[Hidden] C:\RRbackups\C\3\Data157
!-->[Hidden] C:\RRbackups\C\3\Data158
!-->[Hidden] C:\RRbackups\C\3\Data159
!-->[Hidden] C:\RRbackups\C\3\Data16
!-->[Hidden] C:\RRbackups\C\3\Data160
!-->[Hidden] C:\RRbackups\C\3\Data161
!-->[Hidden] C:\RRbackups\C\3\Data162
!-->[Hidden] C:\RRbackups\C\3\Data163
!-->[Hidden] C:\RRbackups\C\3\Data164
!-->[Hidden] C:\RRbackups\C\3\Data165
!-->[Hidden] C:\RRbackups\C\3\Data166
!-->[Hidden] C:\RRbackups\C\3\Data167
!-->[Hidden] C:\RRbackups\C\3\Data168
!-->[Hidden] C:\RRbackups\C\3\Data169
!-->[Hidden] C:\RRbackups\C\3\Data17
!-->[Hidden] C:\RRbackups\C\3\Data170
!-->[Hidden] C:\RRbackups\C\3\Data171
!-->[Hidden] C:\RRbackups\C\3\Data172
!-->[Hidden] C:\RRbackups\C\3\Data173
!-->[Hidden] C:\RRbackups\C\3\Data174
!-->[Hidden] C:\RRbackups\C\3\Data175
!-->[Hidden] C:\RRbackups\C\3\Data176
!-->[Hidden] C:\RRbackups\C\3\Data177
!-->[Hidden] C:\RRbackups\C\3\Data178
!-->[Hidden] C:\RRbackups\C\3\Data179
!-->[Hidden] C:\RRbackups\C\3\Data18
!-->[Hidden] C:\RRbackups\C\3\Data180
!-->[Hidden] C:\RRbackups\C\3\Data181
!-->[Hidden] C:\RRbackups\C\3\Data182
!-->[Hidden] C:\RRbackups\C\3\Data183
!-->[Hidden] C:\RRbackups\C\3\Data184
!-->[Hidden] C:\RRbackups\C\3\Data185
!-->[Hidden] C:\RRbackups\C\3\Data186
!-->[Hidden] C:\RRbackups\C\3\Data187
!-->[Hidden] C:\RRbackups\C\3\Data188
!-->[Hidden] C:\RRbackups\C\3\Data189
!-->[Hidden] C:\RRbackups\C\3\Data19
!-->[Hidden] C:\RRbackups\C\3\Data190
!-->[Hidden] C:\RRbackups\C\3\Data191
!-->[Hidden] C:\RRbackups\C\3\Data192
!-->[Hidden] C:\RRbackups\C\3\Data193
!-->[Hidden] C:\RRbackups\C\3\Data194
!-->[Hidden] C:\RRbackups\C\3\Data195
!-->[Hidden] C:\RRbackups\C\3\Data196
!-->[Hidden] C:\RRbackups\C\3\Data197
!-->[Hidden] C:\RRbackups\C\3\Data198
!-->[Hidden] C:\RRbackups\C\3\Data199
!-->[Hidden] C:\RRbackups\C\3\Data2
!-->[Hidden] C:\RRbackups\C\3\Data20
!-->[Hidden] C:\RRbackups\C\3\Data200
!-->[Hidden] C:\RRbackups\C\3\Data201
!-->[Hidden] C:\RRbackups\C\3\Data202
!-->[Hidden] C:\RRbackups\C\3\Data203
!-->[Hidden] C:\RRbackups\C\3\Data204
!-->[Hidden] C:\RRbackups\C\3\Data205
!-->[Hidden] C:\RRbackups\C\3\Data206
!-->[Hidden] C:\RRbackups\C\3\Data207
!-->[Hidden] C:\RRbackups\C\3\Data208
!-->[Hidden] C:\RRbackups\C\3\Data209
!-->[Hidden] C:\RRbackups\C\3\Data21
!-->[Hidden] C:\RRbackups\C\3\Data210
!-->[Hidden] C:\RRbackups\C\3\Data211
!-->[Hidden] C:\RRbackups\C\3\Data212
!-->[Hidden] C:\RRbackups\C\3\Data213
!-->[Hidden] C:\RRbackups\C\3\Data214
!-->[Hidden] C:\RRbackups\C\3\Data215
!-->[Hidden] C:\RRbackups\C\3\Data216
!-->[Hidden] C:\RRbackups\C\3\Data217
!-->[Hidden] C:\RRbackups\C\3\Data218
!-->[Hidden] C:\RRbackups\C\3\Data219
!-->[Hidden] C:\RRbackups\C\3\Data22
!-->[Hidden] C:\RRbackups\C\3\Data220
!-->[Hidden] C:\RRbackups\C\3\Data221
!-->[Hidden] C:\RRbackups\C\3\Data222
!-->[Hidden] C:\RRbackups\C\3\Data223
!-->[Hidden] C:\RRbackups\C\3\Data224
!-->[Hidden] C:\RRbackups\C\3\Data225
!-->[Hidden] C:\RRbackups\C\3\Data226
!-->[Hidden] C:\RRbackups\C\3\Data227
!-->[Hidden] C:\RRbackups\C\3\Data228
!-->[Hidden] C:\RRbackups\C\3\Data229
!-->[Hidden] C:\RRbackups\C\3\Data23
!-->[Hidden] C:\RRbackups\C\3\Data230
!-->[Hidden] C:\RRbackups\C\3\Data231
!-->[Hidden] C:\RRbackups\C\3\Data232
!-->[Hidden] C:\RRbackups\C\3\Data233
!-->[Hidden] C:\RRbackups\C\3\Data234
!-->[Hidden] C:\RRbackups\C\3\Data235
!-->[Hidden] C:\RRbackups\C\3\Data236
!-->[Hidden] C:\RRbackups\C\3\Data237
!-->[Hidden] C:\RRbackups\C\3\Data238
!-->[Hidden] C:\RRbackups\C\3\Data239
!-->[Hidden] C:\RRbackups\C\3\Data24
!-->[Hidden] C:\RRbackups\C\3\Data240
!-->[Hidden] C:\RRbackups\C\3\Data241
!-->[Hidden] C:\RRbackups\C\3\Data242
!-->[Hidden] C:\RRbackups\C\3\Data243
!-->[Hidden] C:\RRbackups\C\3\Data244
!-->[Hidden] C:\RRbackups\C\3\Data245
!-->[Hidden] C:\RRbackups\C\3\Data246
!-->[Hidden] C:\RRbackups\C\3\Data247
!-->[Hidden] C:\RRbackups\C\3\Data248
!-->[Hidden] C:\RRbackups\C\3\Data249
!-->[Hidden] C:\RRbackups\C\3\Data25
!-->[Hidden] C:\RRbackups\C\3\Data250
!-->[Hidden] C:\RRbackups\C\3\Data251
!-->[Hidden] C:\RRbackups\C\3\Data252
!-->[Hidden] C:\RRbackups\C\3\Data253
!-->[Hidden] C:\RRbackups\C\3\Data254
!-->[Hidden] C:\RRbackups\C\3\Data255
!-->[Hidden] C:\RRbackups\C\3\Data256
!-->[Hidden] C:\RRbackups\C\3\Data257
!-->[Hidden] C:\RRbackups\C\3\Data258
!-->[Hidden] C:\RRbackups\C\3\Data259
!-->[Hidden] C:\RRbackups\C\3\Data26



The report was too long, i will post in 2 post
nerutosako
Regular Member
 
Posts: 26
Joined: December 23rd, 2010, 2:22 pm

Re: Need help for "EPOCLICL VIRUS" and Google-analytics

Unread postby nerutosako » December 30th, 2010, 1:02 pm

!-->[Hidden] C:\RRbackups\C\3\Data260
!-->[Hidden] C:\RRbackups\C\3\Data261
!-->[Hidden] C:\RRbackups\C\3\Data262
!-->[Hidden] C:\RRbackups\C\3\Data263
!-->[Hidden] C:\RRbackups\C\3\Data264
!-->[Hidden] C:\RRbackups\C\3\Data265
!-->[Hidden] C:\RRbackups\C\3\Data266
!-->[Hidden] C:\RRbackups\C\3\Data267
!-->[Hidden] C:\RRbackups\C\3\Data268
!-->[Hidden] C:\RRbackups\C\3\Data269
!-->[Hidden] C:\RRbackups\C\3\Data27
!-->[Hidden] C:\RRbackups\C\3\Data270
!-->[Hidden] C:\RRbackups\C\3\Data271
!-->[Hidden] C:\RRbackups\C\3\Data272
!-->[Hidden] C:\RRbackups\C\3\Data273
!-->[Hidden] C:\RRbackups\C\3\Data274
!-->[Hidden] C:\RRbackups\C\3\Data275
!-->[Hidden] C:\RRbackups\C\3\Data276
!-->[Hidden] C:\RRbackups\C\3\Data277
!-->[Hidden] C:\RRbackups\C\3\Data278
!-->[Hidden] C:\RRbackups\C\3\Data279
!-->[Hidden] C:\RRbackups\C\3\Data28
!-->[Hidden] C:\RRbackups\C\3\Data280
!-->[Hidden] C:\RRbackups\C\3\Data281
!-->[Hidden] C:\RRbackups\C\3\Data282
!-->[Hidden] C:\RRbackups\C\3\Data283
!-->[Hidden] C:\RRbackups\C\3\Data284
!-->[Hidden] C:\RRbackups\C\3\Data285
!-->[Hidden] C:\RRbackups\C\3\Data286
!-->[Hidden] C:\RRbackups\C\3\Data287
!-->[Hidden] C:\RRbackups\C\3\Data288
!-->[Hidden] C:\RRbackups\C\3\Data289
!-->[Hidden] C:\RRbackups\C\3\Data29
!-->[Hidden] C:\RRbackups\C\3\Data290
!-->[Hidden] C:\RRbackups\C\3\Data291
!-->[Hidden] C:\RRbackups\C\3\Data292
!-->[Hidden] C:\RRbackups\C\3\Data293
!-->[Hidden] C:\RRbackups\C\3\Data294
!-->[Hidden] C:\RRbackups\C\3\Data295
!-->[Hidden] C:\RRbackups\C\3\Data296
!-->[Hidden] C:\RRbackups\C\3\Data297
!-->[Hidden] C:\RRbackups\C\3\Data298
!-->[Hidden] C:\RRbackups\C\3\Data299
!-->[Hidden] C:\RRbackups\C\3\Data3
!-->[Hidden] C:\RRbackups\C\3\Data30
!-->[Hidden] C:\RRbackups\C\3\Data300
!-->[Hidden] C:\RRbackups\C\3\Data301
!-->[Hidden] C:\RRbackups\C\3\Data302
!-->[Hidden] C:\RRbackups\C\3\Data303
!-->[Hidden] C:\RRbackups\C\3\Data304
!-->[Hidden] C:\RRbackups\C\3\Data305
!-->[Hidden] C:\RRbackups\C\3\Data306
!-->[Hidden] C:\RRbackups\C\3\Data307
!-->[Hidden] C:\RRbackups\C\3\Data308
!-->[Hidden] C:\RRbackups\C\3\Data309
!-->[Hidden] C:\RRbackups\C\3\Data31
!-->[Hidden] C:\RRbackups\C\3\Data310
!-->[Hidden] C:\RRbackups\C\3\Data311
!-->[Hidden] C:\RRbackups\C\3\Data312
!-->[Hidden] C:\RRbackups\C\3\Data313
!-->[Hidden] C:\RRbackups\C\3\Data314
!-->[Hidden] C:\RRbackups\C\3\Data315
!-->[Hidden] C:\RRbackups\C\3\Data316
!-->[Hidden] C:\RRbackups\C\3\Data317
!-->[Hidden] C:\RRbackups\C\3\Data318
!-->[Hidden] C:\RRbackups\C\3\Data319
!-->[Hidden] C:\RRbackups\C\3\Data32
!-->[Hidden] C:\RRbackups\C\3\Data320
!-->[Hidden] C:\RRbackups\C\3\Data321
!-->[Hidden] C:\RRbackups\C\3\Data322
!-->[Hidden] C:\RRbackups\C\3\Data323
!-->[Hidden] C:\RRbackups\C\3\Data324
!-->[Hidden] C:\RRbackups\C\3\Data325
!-->[Hidden] C:\RRbackups\C\3\Data326
!-->[Hidden] C:\RRbackups\C\3\Data327
!-->[Hidden] C:\RRbackups\C\3\Data328
!-->[Hidden] C:\RRbackups\C\3\Data329
!-->[Hidden] C:\RRbackups\C\3\Data33
!-->[Hidden] C:\RRbackups\C\3\Data330
!-->[Hidden] C:\RRbackups\C\3\Data331
!-->[Hidden] C:\RRbackups\C\3\Data332
!-->[Hidden] C:\RRbackups\C\3\Data333
!-->[Hidden] C:\RRbackups\C\3\Data334
!-->[Hidden] C:\RRbackups\C\3\Data335
!-->[Hidden] C:\RRbackups\C\3\Data336
!-->[Hidden] C:\RRbackups\C\3\Data337
!-->[Hidden] C:\RRbackups\C\3\Data338
!-->[Hidden] C:\RRbackups\C\3\Data339
!-->[Hidden] C:\RRbackups\C\3\Data34
!-->[Hidden] C:\RRbackups\C\3\Data340
!-->[Hidden] C:\RRbackups\C\3\Data341
!-->[Hidden] C:\RRbackups\C\3\Data342
!-->[Hidden] C:\RRbackups\C\3\Data343
!-->[Hidden] C:\RRbackups\C\3\Data344
!-->[Hidden] C:\RRbackups\C\3\Data345
!-->[Hidden] C:\RRbackups\C\3\Data346
!-->[Hidden] C:\RRbackups\C\3\Data347
!-->[Hidden] C:\RRbackups\C\3\Data348
!-->[Hidden] C:\RRbackups\C\3\Data349
!-->[Hidden] C:\RRbackups\C\3\Data35
!-->[Hidden] C:\RRbackups\C\3\Data350
!-->[Hidden] C:\RRbackups\C\3\Data351
!-->[Hidden] C:\RRbackups\C\3\Data352
!-->[Hidden] C:\RRbackups\C\3\Data353
!-->[Hidden] C:\RRbackups\C\3\Data354
!-->[Hidden] C:\RRbackups\C\3\Data355
!-->[Hidden] C:\RRbackups\C\3\Data356
!-->[Hidden] C:\RRbackups\C\3\Data357
!-->[Hidden] C:\RRbackups\C\3\Data358
!-->[Hidden] C:\RRbackups\C\3\Data359
!-->[Hidden] C:\RRbackups\C\3\Data36
!-->[Hidden] C:\RRbackups\C\3\Data360
!-->[Hidden] C:\RRbackups\C\3\Data361
!-->[Hidden] C:\RRbackups\C\3\Data362
!-->[Hidden] C:\RRbackups\C\3\Data363
!-->[Hidden] C:\RRbackups\C\3\Data364
!-->[Hidden] C:\RRbackups\C\3\Data365
!-->[Hidden] C:\RRbackups\C\3\Data366
!-->[Hidden] C:\RRbackups\C\3\Data367
!-->[Hidden] C:\RRbackups\C\3\Data368
!-->[Hidden] C:\RRbackups\C\3\Data369
!-->[Hidden] C:\RRbackups\C\3\Data37
!-->[Hidden] C:\RRbackups\C\3\Data370
!-->[Hidden] C:\RRbackups\C\3\Data371
!-->[Hidden] C:\RRbackups\C\3\Data372
!-->[Hidden] C:\RRbackups\C\3\Data373
!-->[Hidden] C:\RRbackups\C\3\Data374
!-->[Hidden] C:\RRbackups\C\3\Data375
!-->[Hidden] C:\RRbackups\C\3\Data376
!-->[Hidden] C:\RRbackups\C\3\Data377
!-->[Hidden] C:\RRbackups\C\3\Data378
!-->[Hidden] C:\RRbackups\C\3\Data379
!-->[Hidden] C:\RRbackups\C\3\Data38
!-->[Hidden] C:\RRbackups\C\3\Data380
!-->[Hidden] C:\RRbackups\C\3\Data381
!-->[Hidden] C:\RRbackups\C\3\Data382
!-->[Hidden] C:\RRbackups\C\3\Data383
!-->[Hidden] C:\RRbackups\C\3\Data384
!-->[Hidden] C:\RRbackups\C\3\Data385
!-->[Hidden] C:\RRbackups\C\3\Data386
!-->[Hidden] C:\RRbackups\C\3\Data387
!-->[Hidden] C:\RRbackups\C\3\Data388
!-->[Hidden] C:\RRbackups\C\3\Data389
!-->[Hidden] C:\RRbackups\C\3\Data39
!-->[Hidden] C:\RRbackups\C\3\Data390
!-->[Hidden] C:\RRbackups\C\3\Data391
!-->[Hidden] C:\RRbackups\C\3\Data392
!-->[Hidden] C:\RRbackups\C\3\Data393
!-->[Hidden] C:\RRbackups\C\3\Data394
!-->[Hidden] C:\RRbackups\C\3\Data395
!-->[Hidden] C:\RRbackups\C\3\Data396
!-->[Hidden] C:\RRbackups\C\3\Data397
!-->[Hidden] C:\RRbackups\C\3\Data398
!-->[Hidden] C:\RRbackups\C\3\Data399
!-->[Hidden] C:\RRbackups\C\3\Data4
!-->[Hidden] C:\RRbackups\C\3\Data40
!-->[Hidden] C:\RRbackups\C\3\Data400
!-->[Hidden] C:\RRbackups\C\3\Data401
!-->[Hidden] C:\RRbackups\C\3\Data402
!-->[Hidden] C:\RRbackups\C\3\Data403
!-->[Hidden] C:\RRbackups\C\3\Data404
!-->[Hidden] C:\RRbackups\C\3\Data405
!-->[Hidden] C:\RRbackups\C\3\Data406
!-->[Hidden] C:\RRbackups\C\3\Data407
!-->[Hidden] C:\RRbackups\C\3\Data408
!-->[Hidden] C:\RRbackups\C\3\Data409
!-->[Hidden] C:\RRbackups\C\3\Data41
!-->[Hidden] C:\RRbackups\C\3\Data410
!-->[Hidden] C:\RRbackups\C\3\Data411
!-->[Hidden] C:\RRbackups\C\3\Data412
!-->[Hidden] C:\RRbackups\C\3\Data413
!-->[Hidden] C:\RRbackups\C\3\Data414
!-->[Hidden] C:\RRbackups\C\3\Data415
!-->[Hidden] C:\RRbackups\C\3\Data416
!-->[Hidden] C:\RRbackups\C\3\Data417
!-->[Hidden] C:\RRbackups\C\3\Data418
!-->[Hidden] C:\RRbackups\C\3\Data419
!-->[Hidden] C:\RRbackups\C\3\Data42
!-->[Hidden] C:\RRbackups\C\3\Data420
!-->[Hidden] C:\RRbackups\C\3\Data421
!-->[Hidden] C:\RRbackups\C\3\Data422
!-->[Hidden] C:\RRbackups\C\3\Data423
!-->[Hidden] C:\RRbackups\C\3\Data424
!-->[Hidden] C:\RRbackups\C\3\Data425
!-->[Hidden] C:\RRbackups\C\3\Data426
!-->[Hidden] C:\RRbackups\C\3\Data427
!-->[Hidden] C:\RRbackups\C\3\Data428
!-->[Hidden] C:\RRbackups\C\3\Data429
!-->[Hidden] C:\RRbackups\C\3\Data43
!-->[Hidden] C:\RRbackups\C\3\Data430
!-->[Hidden] C:\RRbackups\C\3\Data431
!-->[Hidden] C:\RRbackups\C\3\Data432
!-->[Hidden] C:\RRbackups\C\3\Data433
!-->[Hidden] C:\RRbackups\C\3\Data434
!-->[Hidden] C:\RRbackups\C\3\Data435
!-->[Hidden] C:\RRbackups\C\3\Data436
!-->[Hidden] C:\RRbackups\C\3\Data437
!-->[Hidden] C:\RRbackups\C\3\Data438
!-->[Hidden] C:\RRbackups\C\3\Data439
!-->[Hidden] C:\RRbackups\C\3\Data44
!-->[Hidden] C:\RRbackups\C\3\Data440
!-->[Hidden] C:\RRbackups\C\3\Data441
!-->[Hidden] C:\RRbackups\C\3\Data442
!-->[Hidden] C:\RRbackups\C\3\Data443
!-->[Hidden] C:\RRbackups\C\3\Data444
!-->[Hidden] C:\RRbackups\C\3\Data445
!-->[Hidden] C:\RRbackups\C\3\Data446
!-->[Hidden] C:\RRbackups\C\3\Data447
!-->[Hidden] C:\RRbackups\C\3\Data448
!-->[Hidden] C:\RRbackups\C\3\Data449
!-->[Hidden] C:\RRbackups\C\3\Data45
!-->[Hidden] C:\RRbackups\C\3\Data450
!-->[Hidden] C:\RRbackups\C\3\Data451
!-->[Hidden] C:\RRbackups\C\3\Data452
!-->[Hidden] C:\RRbackups\C\3\Data453
!-->[Hidden] C:\RRbackups\C\3\Data454
!-->[Hidden] C:\RRbackups\C\3\Data455
!-->[Hidden] C:\RRbackups\C\3\Data456
!-->[Hidden] C:\RRbackups\C\3\Data457
!-->[Hidden] C:\RRbackups\C\3\Data458
!-->[Hidden] C:\RRbackups\C\3\Data459
!-->[Hidden] C:\RRbackups\C\3\Data46
!-->[Hidden] C:\RRbackups\C\3\Data460
!-->[Hidden] C:\RRbackups\C\3\Data461
!-->[Hidden] C:\RRbackups\C\3\Data462
!-->[Hidden] C:\RRbackups\C\3\Data463
!-->[Hidden] C:\RRbackups\C\3\Data464
!-->[Hidden] C:\RRbackups\C\3\Data465
!-->[Hidden] C:\RRbackups\C\3\Data466
!-->[Hidden] C:\RRbackups\C\3\Data467
!-->[Hidden] C:\RRbackups\C\3\Data468
!-->[Hidden] C:\RRbackups\C\3\Data469
!-->[Hidden] C:\RRbackups\C\3\Data47
!-->[Hidden] C:\RRbackups\C\3\Data470
!-->[Hidden] C:\RRbackups\C\3\Data471
!-->[Hidden] C:\RRbackups\C\3\Data472
!-->[Hidden] C:\RRbackups\C\3\Data473
!-->[Hidden] C:\RRbackups\C\3\Data474
!-->[Hidden] C:\RRbackups\C\3\Data475
!-->[Hidden] C:\RRbackups\C\3\Data476
!-->[Hidden] C:\RRbackups\C\3\Data477
!-->[Hidden] C:\RRbackups\C\3\Data478
!-->[Hidden] C:\RRbackups\C\3\Data479
!-->[Hidden] C:\RRbackups\C\3\Data48
!-->[Hidden] C:\RRbackups\C\3\Data480
!-->[Hidden] C:\RRbackups\C\3\Data481
!-->[Hidden] C:\RRbackups\C\3\Data482
!-->[Hidden] C:\RRbackups\C\3\Data483
!-->[Hidden] C:\RRbackups\C\3\Data484
!-->[Hidden] C:\RRbackups\C\3\Data485
!-->[Hidden] C:\RRbackups\C\3\Data486
!-->[Hidden] C:\RRbackups\C\3\Data487
!-->[Hidden] C:\RRbackups\C\3\Data488
!-->[Hidden] C:\RRbackups\C\3\Data489
!-->[Hidden] C:\RRbackups\C\3\Data49
!-->[Hidden] C:\RRbackups\C\3\Data490
!-->[Hidden] C:\RRbackups\C\3\Data491
!-->[Hidden] C:\RRbackups\C\3\Data492
!-->[Hidden] C:\RRbackups\C\3\Data493
!-->[Hidden] C:\RRbackups\C\3\Data494
!-->[Hidden] C:\RRbackups\C\3\Data495
!-->[Hidden] C:\RRbackups\C\3\Data496
!-->[Hidden] C:\RRbackups\C\3\Data497
!-->[Hidden] C:\RRbackups\C\3\Data498
!-->[Hidden] C:\RRbackups\C\3\Data499
!-->[Hidden] C:\RRbackups\C\3\Data5
!-->[Hidden] C:\RRbackups\C\3\Data50
!-->[Hidden] C:\RRbackups\C\3\Data500
!-->[Hidden] C:\RRbackups\C\3\Data501
!-->[Hidden] C:\RRbackups\C\3\Data502
!-->[Hidden] C:\RRbackups\C\3\Data503
!-->[Hidden] C:\RRbackups\C\3\Data504
!-->[Hidden] C:\RRbackups\C\3\Data505
!-->[Hidden] C:\RRbackups\C\3\Data506
!-->[Hidden] C:\RRbackups\C\3\Data507
!-->[Hidden] C:\RRbackups\C\3\Data508
!-->[Hidden] C:\RRbackups\C\3\Data509
!-->[Hidden] C:\RRbackups\C\3\Data51
!-->[Hidden] C:\RRbackups\C\3\Data510
!-->[Hidden] C:\RRbackups\C\3\Data511
!-->[Hidden] C:\RRbackups\C\3\Data512
!-->[Hidden] C:\RRbackups\C\3\Data513
!-->[Hidden] C:\RRbackups\C\3\Data514
!-->[Hidden] C:\RRbackups\C\3\Data515
!-->[Hidden] C:\RRbackups\C\3\Data516
!-->[Hidden] C:\RRbackups\C\3\Data517
!-->[Hidden] C:\RRbackups\C\3\Data518
!-->[Hidden] C:\RRbackups\C\3\Data519
!-->[Hidden] C:\RRbackups\C\3\Data52
!-->[Hidden] C:\RRbackups\C\3\Data520
!-->[Hidden] C:\RRbackups\C\3\Data521
!-->[Hidden] C:\RRbackups\C\3\Data522
!-->[Hidden] C:\RRbackups\C\3\Data523
!-->[Hidden] C:\RRbackups\C\3\Data524
!-->[Hidden] C:\RRbackups\C\3\Data525
!-->[Hidden] C:\RRbackups\C\3\Data526
!-->[Hidden] C:\RRbackups\C\3\Data527
!-->[Hidden] C:\RRbackups\C\3\Data528
!-->[Hidden] C:\RRbackups\C\3\Data529
!-->[Hidden] C:\RRbackups\C\3\Data53
!-->[Hidden] C:\RRbackups\C\3\Data530
!-->[Hidden] C:\RRbackups\C\3\Data531
!-->[Hidden] C:\RRbackups\C\3\Data532
!-->[Hidden] C:\RRbackups\C\3\Data533
!-->[Hidden] C:\RRbackups\C\3\Data534
!-->[Hidden] C:\RRbackups\C\3\Data535
!-->[Hidden] C:\RRbackups\C\3\Data536
!-->[Hidden] C:\RRbackups\C\3\Data537
!-->[Hidden] C:\RRbackups\C\3\Data538
!-->[Hidden] C:\RRbackups\C\3\Data539
!-->[Hidden] C:\RRbackups\C\3\Data54
!-->[Hidden] C:\RRbackups\C\3\Data540
!-->[Hidden] C:\RRbackups\C\3\Data541
!-->[Hidden] C:\RRbackups\C\3\Data542
!-->[Hidden] C:\RRbackups\C\3\Data543
!-->[Hidden] C:\RRbackups\C\3\Data544
!-->[Hidden] C:\RRbackups\C\3\Data545
!-->[Hidden] C:\RRbackups\C\3\Data546
!-->[Hidden] C:\RRbackups\C\3\Data547
!-->[Hidden] C:\RRbackups\C\3\Data548
!-->[Hidden] C:\RRbackups\C\3\Data549
!-->[Hidden] C:\RRbackups\C\3\Data55
!-->[Hidden] C:\RRbackups\C\3\Data550
!-->[Hidden] C:\RRbackups\C\3\Data551
!-->[Hidden] C:\RRbackups\C\3\Data552
!-->[Hidden] C:\RRbackups\C\3\Data553
!-->[Hidden] C:\RRbackups\C\3\Data554
!-->[Hidden] C:\RRbackups\C\3\Data555
!-->[Hidden] C:\RRbackups\C\3\Data556
!-->[Hidden] C:\RRbackups\C\3\Data557
!-->[Hidden] C:\RRbackups\C\3\Data558
!-->[Hidden] C:\RRbackups\C\3\Data559
!-->[Hidden] C:\RRbackups\C\3\Data56
!-->[Hidden] C:\RRbackups\C\3\Data560
!-->[Hidden] C:\RRbackups\C\3\Data561
!-->[Hidden] C:\RRbackups\C\3\Data562
!-->[Hidden] C:\RRbackups\C\3\Data563
!-->[Hidden] C:\RRbackups\C\3\Data564
!-->[Hidden] C:\RRbackups\C\3\Data565
!-->[Hidden] C:\RRbackups\C\3\Data566
!-->[Hidden] C:\RRbackups\C\3\Data567
!-->[Hidden] C:\RRbackups\C\3\Data568
!-->[Hidden] C:\RRbackups\C\3\Data569
!-->[Hidden] C:\RRbackups\C\3\Data57
!-->[Hidden] C:\RRbackups\C\3\Data570
!-->[Hidden] C:\RRbackups\C\3\Data571
!-->[Hidden] C:\RRbackups\C\3\Data572
!-->[Hidden] C:\RRbackups\C\3\Data573
!-->[Hidden] C:\RRbackups\C\3\Data574
!-->[Hidden] C:\RRbackups\C\3\Data575
!-->[Hidden] C:\RRbackups\C\3\Data576
!-->[Hidden] C:\RRbackups\C\3\Data577
!-->[Hidden] C:\RRbackups\C\3\Data578
!-->[Hidden] C:\RRbackups\C\3\Data579
!-->[Hidden] C:\RRbackups\C\3\Data58
!-->[Hidden] C:\RRbackups\C\3\Data580
!-->[Hidden] C:\RRbackups\C\3\Data581
!-->[Hidden] C:\RRbackups\C\3\Data582
!-->[Hidden] C:\RRbackups\C\3\Data583
!-->[Hidden] C:\RRbackups\C\3\Data584
!-->[Hidden] C:\RRbackups\C\3\Data585
!-->[Hidden] C:\RRbackups\C\3\Data586
!-->[Hidden] C:\RRbackups\C\3\Data587
!-->[Hidden] C:\RRbackups\C\3\Data588
!-->[Hidden] C:\RRbackups\C\3\Data589
!-->[Hidden] C:\RRbackups\C\3\Data59
!-->[Hidden] C:\RRbackups\C\3\Data590
!-->[Hidden] C:\RRbackups\C\3\Data591
!-->[Hidden] C:\RRbackups\C\3\Data592
!-->[Hidden] C:\RRbackups\C\3\Data593
!-->[Hidden] C:\RRbackups\C\3\Data594
!-->[Hidden] C:\RRbackups\C\3\Data595
!-->[Hidden] C:\RRbackups\C\3\Data596
!-->[Hidden] C:\RRbackups\C\3\Data597
!-->[Hidden] C:\RRbackups\C\3\Data598
!-->[Hidden] C:\RRbackups\C\3\Data599
!-->[Hidden] C:\RRbackups\C\3\Data6
!-->[Hidden] C:\RRbackups\C\3\Data60
!-->[Hidden] C:\RRbackups\C\3\Data600
!-->[Hidden] C:\RRbackups\C\3\Data601
!-->[Hidden] C:\RRbackups\C\3\Data602
!-->[Hidden] C:\RRbackups\C\3\Data603
!-->[Hidden] C:\RRbackups\C\3\Data604
!-->[Hidden] C:\RRbackups\C\3\Data605
!-->[Hidden] C:\RRbackups\C\3\Data606
!-->[Hidden] C:\RRbackups\C\3\Data607
!-->[Hidden] C:\RRbackups\C\3\Data608
!-->[Hidden] C:\RRbackups\C\3\Data609
!-->[Hidden] C:\RRbackups\C\3\Data61
!-->[Hidden] C:\RRbackups\C\3\Data610
!-->[Hidden] C:\RRbackups\C\3\Data611
!-->[Hidden] C:\RRbackups\C\3\Data612
!-->[Hidden] C:\RRbackups\C\3\Data613
!-->[Hidden] C:\RRbackups\C\3\Data614
!-->[Hidden] C:\RRbackups\C\3\Data615
!-->[Hidden] C:\RRbackups\C\3\Data616
!-->[Hidden] C:\RRbackups\C\3\Data617
!-->[Hidden] C:\RRbackups\C\3\Data618
!-->[Hidden] C:\RRbackups\C\3\Data619
!-->[Hidden] C:\RRbackups\C\3\Data62
!-->[Hidden] C:\RRbackups\C\3\Data620
!-->[Hidden] C:\RRbackups\C\3\Data621
!-->[Hidden] C:\RRbackups\C\3\Data622
!-->[Hidden] C:\RRbackups\C\3\Data623
!-->[Hidden] C:\RRbackups\C\3\Data624
!-->[Hidden] C:\RRbackups\C\3\Data625
!-->[Hidden] C:\RRbackups\C\3\Data626
!-->[Hidden] C:\RRbackups\C\3\Data627
!-->[Hidden] C:\RRbackups\C\3\Data628
!-->[Hidden] C:\RRbackups\C\3\Data629
!-->[Hidden] C:\RRbackups\C\3\Data63
!-->[Hidden] C:\RRbackups\C\3\Data630
!-->[Hidden] C:\RRbackups\C\3\Data631
!-->[Hidden] C:\RRbackups\C\3\Data632
!-->[Hidden] C:\RRbackups\C\3\Data633
!-->[Hidden] C:\RRbackups\C\3\Data634
!-->[Hidden] C:\RRbackups\C\3\Data635
!-->[Hidden] C:\RRbackups\C\3\Data636
!-->[Hidden] C:\RRbackups\C\3\Data637
!-->[Hidden] C:\RRbackups\C\3\Data638
!-->[Hidden] C:\RRbackups\C\3\Data639
!-->[Hidden] C:\RRbackups\C\3\Data64
!-->[Hidden] C:\RRbackups\C\3\Data640
!-->[Hidden] C:\RRbackups\C\3\Data641
!-->[Hidden] C:\RRbackups\C\3\Data642
!-->[Hidden] C:\RRbackups\C\3\Data643
!-->[Hidden] C:\RRbackups\C\3\Data644
!-->[Hidden] C:\RRbackups\C\3\Data645
!-->[Hidden] C:\RRbackups\C\3\Data646
!-->[Hidden] C:\RRbackups\C\3\Data647
!-->[Hidden] C:\RRbackups\C\3\Data648
!-->[Hidden] C:\RRbackups\C\3\Data649
!-->[Hidden] C:\RRbackups\C\3\Data65
!-->[Hidden] C:\RRbackups\C\3\Data650
!-->[Hidden] C:\RRbackups\C\3\Data651
!-->[Hidden] C:\RRbackups\C\3\Data652
!-->[Hidden] C:\RRbackups\C\3\Data653
!-->[Hidden] C:\RRbackups\C\3\Data654
!-->[Hidden] C:\RRbackups\C\3\Data655
!-->[Hidden] C:\RRbackups\C\3\Data656
!-->[Hidden] C:\RRbackups\C\3\Data657
!-->[Hidden] C:\RRbackups\C\3\Data658
!-->[Hidden] C:\RRbackups\C\3\Data659
!-->[Hidden] C:\RRbackups\C\3\Data66
!-->[Hidden] C:\RRbackups\C\3\Data660
!-->[Hidden] C:\RRbackups\C\3\Data661
!-->[Hidden] C:\RRbackups\C\3\Data662
!-->[Hidden] C:\RRbackups\C\3\Data663
!-->[Hidden] C:\RRbackups\C\3\Data664
!-->[Hidden] C:\RRbackups\C\3\Data665
!-->[Hidden] C:\RRbackups\C\3\Data666
!-->[Hidden] C:\RRbackups\C\3\Data667
!-->[Hidden] C:\RRbackups\C\3\Data668
!-->[Hidden] C:\RRbackups\C\3\Data669
!-->[Hidden] C:\RRbackups\C\3\Data67
!-->[Hidden] C:\RRbackups\C\3\Data670
!-->[Hidden] C:\RRbackups\C\3\Data671
!-->[Hidden] C:\RRbackups\C\3\Data672
!-->[Hidden] C:\RRbackups\C\3\Data673
!-->[Hidden] C:\RRbackups\C\3\Data674
!-->[Hidden] C:\RRbackups\C\3\Data675
!-->[Hidden] C:\RRbackups\C\3\Data676
!-->[Hidden] C:\RRbackups\C\3\Data677
!-->[Hidden] C:\RRbackups\C\3\Data678
!-->[Hidden] C:\RRbackups\C\3\Data679
!-->[Hidden] C:\RRbackups\C\3\Data68
!-->[Hidden] C:\RRbackups\C\3\Data680
!-->[Hidden] C:\RRbackups\C\3\Data681
!-->[Hidden] C:\RRbackups\C\3\Data682
!-->[Hidden] C:\RRbackups\C\3\Data683
!-->[Hidden] C:\RRbackups\C\3\Data684
!-->[Hidden] C:\RRbackups\C\3\Data685
!-->[Hidden] C:\RRbackups\C\3\Data686
!-->[Hidden] C:\RRbackups\C\3\Data687
!-->[Hidden] C:\RRbackups\C\3\Data688
!-->[Hidden] C:\RRbackups\C\3\Data689
!-->[Hidden] C:\RRbackups\C\3\Data69
!-->[Hidden] C:\RRbackups\C\3\Data690
!-->[Hidden] C:\RRbackups\C\3\Data691
!-->[Hidden] C:\RRbackups\C\3\Data692
!-->[Hidden] C:\RRbackups\C\3\Data693
!-->[Hidden] C:\RRbackups\C\3\Data694
!-->[Hidden] C:\RRbackups\C\3\Data695
!-->[Hidden] C:\RRbackups\C\3\Data696
!-->[Hidden] C:\RRbackups\C\3\Data697
!-->[Hidden] C:\RRbackups\C\3\Data698
!-->[Hidden] C:\RRbackups\C\3\Data699
!-->[Hidden] C:\RRbackups\C\3\Data7
!-->[Hidden] C:\RRbackups\C\3\Data70
!-->[Hidden] C:\RRbackups\C\3\Data700
!-->[Hidden] C:\RRbackups\C\3\Data701
!-->[Hidden] C:\RRbackups\C\3\Data702
!-->[Hidden] C:\RRbackups\C\3\Data703
!-->[Hidden] C:\RRbackups\C\3\Data704
!-->[Hidden] C:\RRbackups\C\3\Data705
!-->[Hidden] C:\RRbackups\C\3\Data706
!-->[Hidden] C:\RRbackups\C\3\Data707
!-->[Hidden] C:\RRbackups\C\3\Data708
!-->[Hidden] C:\RRbackups\C\3\Data709
!-->[Hidden] C:\RRbackups\C\3\Data71
!-->[Hidden] C:\RRbackups\C\3\Data710
!-->[Hidden] C:\RRbackups\C\3\Data711
!-->[Hidden] C:\RRbackups\C\3\Data712
!-->[Hidden] C:\RRbackups\C\3\Data713
!-->[Hidden] C:\RRbackups\C\3\Data714
!-->[Hidden] C:\RRbackups\C\3\Data715
!-->[Hidden] C:\RRbackups\C\3\Data716
!-->[Hidden] C:\RRbackups\C\3\Data717
!-->[Hidden] C:\RRbackups\C\3\Data718
!-->[Hidden] C:\RRbackups\C\3\Data719
!-->[Hidden] C:\RRbackups\C\3\Data72
!-->[Hidden] C:\RRbackups\C\3\Data720
!-->[Hidden] C:\RRbackups\C\3\Data721
!-->[Hidden] C:\RRbackups\C\3\Data722
!-->[Hidden] C:\RRbackups\C\3\Data723
!-->[Hidden] C:\RRbackups\C\3\Data724
!-->[Hidden] C:\RRbackups\C\3\Data725
!-->[Hidden] C:\RRbackups\C\3\Data726
!-->[Hidden] C:\RRbackups\C\3\Data727
!-->[Hidden] C:\RRbackups\C\3\Data728
!-->[Hidden] C:\RRbackups\C\3\Data729
!-->[Hidden] C:\RRbackups\C\3\Data73
!-->[Hidden] C:\RRbackups\C\3\Data730
!-->[Hidden] C:\RRbackups\C\3\Data731
!-->[Hidden] C:\RRbackups\C\3\Data732
!-->[Hidden] C:\RRbackups\C\3\Data733
!-->[Hidden] C:\RRbackups\C\3\Data734
!-->[Hidden] C:\RRbackups\C\3\Data735
!-->[Hidden] C:\RRbackups\C\3\Data736
!-->[Hidden] C:\RRbackups\C\3\Data737
!-->[Hidden] C:\RRbackups\C\3\Data738
!-->[Hidden] C:\RRbackups\C\3\Data739
!-->[Hidden] C:\RRbackups\C\3\Data74
!-->[Hidden] C:\RRbackups\C\3\Data740
!-->[Hidden] C:\RRbackups\C\3\Data741
!-->[Hidden] C:\RRbackups\C\3\Data742
!-->[Hidden] C:\RRbackups\C\3\Data743
!-->[Hidden] C:\RRbackups\C\3\Data744
!-->[Hidden] C:\RRbackups\C\3\Data745
!-->[Hidden] C:\RRbackups\C\3\Data746
!-->[Hidden] C:\RRbackups\C\3\Data747
!-->[Hidden] C:\RRbackups\C\3\Data748
!-->[Hidden] C:\RRbackups\C\3\Data749
!-->[Hidden] C:\RRbackups\C\3\Data75
!-->[Hidden] C:\RRbackups\C\3\Data750
!-->[Hidden] C:\RRbackups\C\3\Data751
!-->[Hidden] C:\RRbackups\C\3\Data752
!-->[Hidden] C:\RRbackups\C\3\Data753
!-->[Hidden] C:\RRbackups\C\3\Data754
!-->[Hidden] C:\RRbackups\C\3\Data755
!-->[Hidden] C:\RRbackups\C\3\Data756
!-->[Hidden] C:\RRbackups\C\3\Data757
!-->[Hidden] C:\RRbackups\C\3\Data758
!-->[Hidden] C:\RRbackups\C\3\Data759
!-->[Hidden] C:\RRbackups\C\3\Data76
!-->[Hidden] C:\RRbackups\C\3\Data760
!-->[Hidden] C:\RRbackups\C\3\Data761
!-->[Hidden] C:\RRbackups\C\3\Data762
!-->[Hidden] C:\RRbackups\C\3\Data763
!-->[Hidden] C:\RRbackups\C\3\Data764
!-->[Hidden] C:\RRbackups\C\3\Data765
!-->[Hidden] C:\RRbackups\C\3\Data766
!-->[Hidden] C:\RRbackups\C\3\Data767
!-->[Hidden] C:\RRbackups\C\3\Data768
!-->[Hidden] C:\RRbackups\C\3\Data769
!-->[Hidden] C:\RRbackups\C\3\Data77
!-->[Hidden] C:\RRbackups\C\3\Data770
!-->[Hidden] C:\RRbackups\C\3\Data771
!-->[Hidden] C:\RRbackups\C\3\Data772
!-->[Hidden] C:\RRbackups\C\3\Data773
!-->[Hidden] C:\RRbackups\C\3\Data774
!-->[Hidden] C:\RRbackups\C\3\Data775
!-->[Hidden] C:\RRbackups\C\3\Data776
!-->[Hidden] C:\RRbackups\C\3\Data777
!-->[Hidden] C:\RRbackups\C\3\Data778
!-->[Hidden] C:\RRbackups\C\3\Data779
!-->[Hidden] C:\RRbackups\C\3\Data78
!-->[Hidden] C:\RRbackups\C\3\Data780
!-->[Hidden] C:\RRbackups\C\3\Data781
!-->[Hidden] C:\RRbackups\C\3\Data782
!-->[Hidden] C:\RRbackups\C\3\Data783
!-->[Hidden] C:\RRbackups\C\3\Data784
!-->[Hidden] C:\RRbackups\C\3\Data785
!-->[Hidden] C:\RRbackups\C\3\Data786
!-->[Hidden] C:\RRbackups\C\3\Data787
!-->[Hidden] C:\RRbackups\C\3\Data788
!-->[Hidden] C:\RRbackups\C\3\Data789
!-->[Hidden] C:\RRbackups\C\3\Data79
!-->[Hidden] C:\RRbackups\C\3\Data790
!-->[Hidden] C:\RRbackups\C\3\Data791
!-->[Hidden] C:\RRbackups\C\3\Data792
!-->[Hidden] C:\RRbackups\C\3\Data793
!-->[Hidden] C:\RRbackups\C\3\Data794
!-->[Hidden] C:\RRbackups\C\3\Data795
!-->[Hidden] C:\RRbackups\C\3\Data796
!-->[Hidden] C:\RRbackups\C\3\Data797
!-->[Hidden] C:\RRbackups\C\3\Data798
!-->[Hidden] C:\RRbackups\C\3\Data799
!-->[Hidden] C:\RRbackups\C\3\Data8
!-->[Hidden] C:\RRbackups\C\3\Data80
!-->[Hidden] C:\RRbackups\C\3\Data800
!-->[Hidden] C:\RRbackups\C\3\Data801
!-->[Hidden] C:\RRbackups\C\3\Data802
!-->[Hidden] C:\RRbackups\C\3\Data803
!-->[Hidden] C:\RRbackups\C\3\Data804
!-->[Hidden] C:\RRbackups\C\3\Data805
!-->[Hidden] C:\RRbackups\C\3\Data806
!-->[Hidden] C:\RRbackups\C\3\Data807
!-->[Hidden] C:\RRbackups\C\3\Data808
!-->[Hidden] C:\RRbackups\C\3\Data809
!-->[Hidden] C:\RRbackups\C\3\Data81
!-->[Hidden] C:\RRbackups\C\3\Data810
!-->[Hidden] C:\RRbackups\C\3\Data811
!-->[Hidden] C:\RRbackups\C\3\Data812
!-->[Hidden] C:\RRbackups\C\3\Data813
!-->[Hidden] C:\RRbackups\C\3\Data814
!-->[Hidden] C:\RRbackups\C\3\Data815
!-->[Hidden] C:\RRbackups\C\3\Data816
!-->[Hidden] C:\RRbackups\C\3\Data817
!-->[Hidden] C:\RRbackups\C\3\Data818
!-->[Hidden] C:\RRbackups\C\3\Data819
!-->[Hidden] C:\RRbackups\C\3\Data82
!-->[Hidden] C:\RRbackups\C\3\Data820
!-->[Hidden] C:\RRbackups\C\3\Data821
!-->[Hidden] C:\RRbackups\C\3\Data822
!-->[Hidden] C:\RRbackups\C\3\Data823
!-->[Hidden] C:\RRbackups\C\3\Data824
!-->[Hidden] C:\RRbackups\C\3\Data825
!-->[Hidden] C:\RRbackups\C\3\Data826
!-->[Hidden] C:\RRbackups\C\3\Data827
!-->[Hidden] C:\RRbackups\C\3\Data828
!-->[Hidden] C:\RRbackups\C\3\Data829
!-->[Hidden] C:\RRbackups\C\3\Data83
!-->[Hidden] C:\RRbackups\C\3\Data830
!-->[Hidden] C:\RRbackups\C\3\Data831
!-->[Hidden] C:\RRbackups\C\3\Data832
!-->[Hidden] C:\RRbackups\C\3\Data833
!-->[Hidden] C:\RRbackups\C\3\Data834
!-->[Hidden] C:\RRbackups\C\3\Data835
!-->[Hidden] C:\RRbackups\C\3\Data836
!-->[Hidden] C:\RRbackups\C\3\Data837
!-->[Hidden] C:\RRbackups\C\3\Data838
!-->[Hidden] C:\RRbackups\C\3\Data839
!-->[Hidden] C:\RRbackups\C\3\Data84
!-->[Hidden] C:\RRbackups\C\3\Data840
!-->[Hidden] C:\RRbackups\C\3\Data841
!-->[Hidden] C:\RRbackups\C\3\Data842
!-->[Hidden] C:\RRbackups\C\3\Data843
!-->[Hidden] C:\RRbackups\C\3\Data844
!-->[Hidden] C:\RRbackups\C\3\Data845
!-->[Hidden] C:\RRbackups\C\3\Data846
!-->[Hidden] C:\RRbackups\C\3\Data847
!-->[Hidden] C:\RRbackups\C\3\Data848
!-->[Hidden] C:\RRbackups\C\3\Data849
!-->[Hidden] C:\RRbackups\C\3\Data85
!-->[Hidden] C:\RRbackups\C\3\Data850
!-->[Hidden] C:\RRbackups\C\3\Data851
!-->[Hidden] C:\RRbackups\C\3\Data852
!-->[Hidden] C:\RRbackups\C\3\Data853
!-->[Hidden] C:\RRbackups\C\3\Data854
!-->[Hidden] C:\RRbackups\C\3\Data855
!-->[Hidden] C:\RRbackups\C\3\Data856
!-->[Hidden] C:\RRbackups\C\3\Data857
!-->[Hidden] C:\RRbackups\C\3\Data858
!-->[Hidden] C:\RRbackups\C\3\Data859
!-->[Hidden] C:\RRbackups\C\3\Data86
!-->[Hidden] C:\RRbackups\C\3\Data860
!-->[Hidden] C:\RRbackups\C\3\Data861
!-->[Hidden] C:\RRbackups\C\3\Data862
!-->[Hidden] C:\RRbackups\C\3\Data863
!-->[Hidden] C:\RRbackups\C\3\Data864
!-->[Hidden] C:\RRbackups\C\3\Data865
!-->[Hidden] C:\RRbackups\C\3\Data866
!-->[Hidden] C:\RRbackups\C\3\Data867
!-->[Hidden] C:\RRbackups\C\3\Data868
!-->[Hidden] C:\RRbackups\C\3\Data869
!-->[Hidden] C:\RRbackups\C\3\Data87
!-->[Hidden] C:\RRbackups\C\3\Data870
!-->[Hidden] C:\RRbackups\C\3\Data871
!-->[Hidden] C:\RRbackups\C\3\Data872
!-->[Hidden] C:\RRbackups\C\3\Data873
!-->[Hidden] C:\RRbackups\C\3\Data874
!-->[Hidden] C:\RRbackups\C\3\Data875
!-->[Hidden] C:\RRbackups\C\3\Data876
!-->[Hidden] C:\RRbackups\C\3\Data877
!-->[Hidden] C:\RRbackups\C\3\Data878
!-->[Hidden] C:\RRbackups\C\3\Data879
!-->[Hidden] C:\RRbackups\C\3\Data88
!-->[Hidden] C:\RRbackups\C\3\Data880
!-->[Hidden] C:\RRbackups\C\3\Data881
!-->[Hidden] C:\RRbackups\C\3\Data882
!-->[Hidden] C:\RRbackups\C\3\Data883
!-->[Hidden] C:\RRbackups\C\3\Data884
!-->[Hidden] C:\RRbackups\C\3\Data885
!-->[Hidden] C:\RRbackups\C\3\Data886
!-->[Hidden] C:\RRbackups\C\3\Data887
!-->[Hidden] C:\RRbackups\C\3\Data888
!-->[Hidden] C:\RRbackups\C\3\Data889
!-->[Hidden] C:\RRbackups\C\3\Data89
!-->[Hidden] C:\RRbackups\C\3\Data890
!-->[Hidden] C:\RRbackups\C\3\Data891
!-->[Hidden] C:\RRbackups\C\3\Data892
!-->[Hidden] C:\RRbackups\C\3\Data893
!-->[Hidden] C:\RRbackups\C\3\Data894
!-->[Hidden] C:\RRbackups\C\3\Data895
!-->[Hidden] C:\RRbackups\C\3\Data896
!-->[Hidden] C:\RRbackups\C\3\Data897
!-->[Hidden] C:\RRbackups\C\3\Data898
!-->[Hidden] C:\RRbackups\C\3\Data899
!-->[Hidden] C:\RRbackups\C\3\Data9
!-->[Hidden] C:\RRbackups\C\3\Data90
!-->[Hidden] C:\RRbackups\C\3\Data900
!-->[Hidden] C:\RRbackups\C\3\Data901
!-->[Hidden] C:\RRbackups\C\3\Data902
!-->[Hidden] C:\RRbackups\C\3\Data903
!-->[Hidden] C:\RRbackups\C\3\Data904
!-->[Hidden] C:\RRbackups\C\3\Data905
!-->[Hidden] C:\RRbackups\C\3\Data906
!-->[Hidden] C:\RRbackups\C\3\Data907
!-->[Hidden] C:\RRbackups\C\3\Data908
!-->[Hidden] C:\RRbackups\C\3\Data909
!-->[Hidden] C:\RRbackups\C\3\Data91
!-->[Hidden] C:\RRbackups\C\3\Data910
!-->[Hidden] C:\RRbackups\C\3\Data911
!-->[Hidden] C:\RRbackups\C\3\Data912
!-->[Hidden] C:\RRbackups\C\3\Data913
!-->[Hidden] C:\RRbackups\C\3\Data914
!-->[Hidden] C:\RRbackups\C\3\Data915
!-->[Hidden] C:\RRbackups\C\3\Data916
!-->[Hidden] C:\RRbackups\C\3\Data917
!-->[Hidden] C:\RRbackups\C\3\Data918
!-->[Hidden] C:\RRbackups\C\3\Data919
!-->[Hidden] C:\RRbackups\C\3\Data92
!-->[Hidden] C:\RRbackups\C\3\Data920
!-->[Hidden] C:\RRbackups\C\3\Data921
!-->[Hidden] C:\RRbackups\C\3\Data922
!-->[Hidden] C:\RRbackups\C\3\Data923
!-->[Hidden] C:\RRbackups\C\3\Data924
!-->[Hidden] C:\RRbackups\C\3\Data925
!-->[Hidden] C:\RRbackups\C\3\Data926
!-->[Hidden] C:\RRbackups\C\3\Data927
!-->[Hidden] C:\RRbackups\C\3\Data928
!-->[Hidden] C:\RRbackups\C\3\Data929
!-->[Hidden] C:\RRbackups\C\3\Data93
!-->[Hidden] C:\RRbackups\C\3\Data930
!-->[Hidden] C:\RRbackups\C\3\Data931
!-->[Hidden] C:\RRbackups\C\3\Data932
!-->[Hidden] C:\RRbackups\C\3\Data933
!-->[Hidden] C:\RRbackups\C\3\Data934
!-->[Hidden] C:\RRbackups\C\3\Data935
!-->[Hidden] C:\RRbackups\C\3\Data936
!-->[Hidden] C:\RRbackups\C\3\Data937
!-->[Hidden] C:\RRbackups\C\3\Data938
!-->[Hidden] C:\RRbackups\C\3\Data939
!-->[Hidden] C:\RRbackups\C\3\Data94
!-->[Hidden] C:\RRbackups\C\3\Data940
!-->[Hidden] C:\RRbackups\C\3\Data941
!-->[Hidden] C:\RRbackups\C\3\Data942
!-->[Hidden] C:\RRbackups\C\3\Data943
!-->[Hidden] C:\RRbackups\C\3\Data944
!-->[Hidden] C:\RRbackups\C\3\Data945
!-->[Hidden] C:\RRbackups\C\3\Data946
!-->[Hidden] C:\RRbackups\C\3\Data947
!-->[Hidden] C:\RRbackups\C\3\Data948
!-->[Hidden] C:\RRbackups\C\3\Data949
!-->[Hidden] C:\RRbackups\C\3\Data95
!-->[Hidden] C:\RRbackups\C\3\Data950
!-->[Hidden] C:\RRbackups\C\3\Data951
!-->[Hidden] C:\RRbackups\C\3\Data952
!-->[Hidden] C:\RRbackups\C\3\Data953
!-->[Hidden] C:\RRbackups\C\3\Data954
!-->[Hidden] C:\RRbackups\C\3\Data955
!-->[Hidden] C:\RRbackups\C\3\Data956
!-->[Hidden] C:\RRbackups\C\3\Data957
!-->[Hidden] C:\RRbackups\C\3\Data958
!-->[Hidden] C:\RRbackups\C\3\Data959
!-->[Hidden] C:\RRbackups\C\3\Data96
!-->[Hidden] C:\RRbackups\C\3\Data960
!-->[Hidden] C:\RRbackups\C\3\Data961
!-->[Hidden] C:\RRbackups\C\3\Data962
!-->[Hidden] C:\RRbackups\C\3\Data963
!-->[Hidden] C:\RRbackups\C\3\Data964
!-->[Hidden] C:\RRbackups\C\3\Data965
!-->[Hidden] C:\RRbackups\C\3\Data966
!-->[Hidden] C:\RRbackups\C\3\Data967
!-->[Hidden] C:\RRbackups\C\3\Data968
!-->[Hidden] C:\RRbackups\C\3\Data969
!-->[Hidden] C:\RRbackups\C\3\Data97
!-->[Hidden] C:\RRbackups\C\3\Data970
!-->[Hidden] C:\RRbackups\C\3\Data971
!-->[Hidden] C:\RRbackups\C\3\Data972
!-->[Hidden] C:\RRbackups\C\3\Data973
!-->[Hidden] C:\RRbackups\C\3\Data974
!-->[Hidden] C:\RRbackups\C\3\Data975
!-->[Hidden] C:\RRbackups\C\3\Data976
!-->[Hidden] C:\RRbackups\C\3\Data977
!-->[Hidden] C:\RRbackups\C\3\Data978
!-->[Hidden] C:\RRbackups\C\3\Data979
!-->[Hidden] C:\RRbackups\C\3\Data98
!-->[Hidden] C:\RRbackups\C\3\Data980
!-->[Hidden] C:\RRbackups\C\3\Data981
!-->[Hidden] C:\RRbackups\C\3\Data982
!-->[Hidden] C:\RRbackups\C\3\Data983
!-->[Hidden] C:\RRbackups\C\3\Data984
!-->[Hidden] C:\RRbackups\C\3\Data985
!-->[Hidden] C:\RRbackups\C\3\Data986
!-->[Hidden] C:\RRbackups\C\3\Data987
!-->[Hidden] C:\RRbackups\C\3\Data988
!-->[Hidden] C:\RRbackups\C\3\Data989
!-->[Hidden] C:\RRbackups\C\3\Data99
!-->[Hidden] C:\RRbackups\C\3\Data990
!-->[Hidden] C:\RRbackups\C\3\Data991
!-->[Hidden] C:\RRbackups\C\3\Data992
!-->[Hidden] C:\RRbackups\C\3\Data993
!-->[Hidden] C:\RRbackups\C\3\Data994
!-->[Hidden] C:\RRbackups\C\3\Data995
!-->[Hidden] C:\RRbackups\C\3\Data996
!-->[Hidden] C:\RRbackups\C\3\Data997
!-->[Hidden] C:\RRbackups\C\3\Data998
!-->[Hidden] C:\RRbackups\C\3\Data999
!-->[Hidden] C:\RRbackups\C\3\EFSFile
!-->[Hidden] C:\RRbackups\C\3\HashFile
!-->[Hidden] C:\RRbackups\C\3\Info
!-->[Hidden] C:\RRbackups\C\3\TOCFile
!-->[Hidden] C:\RRbackups\Documents and Settings\1\AppData\Roaming\Lenovo\Client Security Solution\hibernation.dat
!-->[Hidden] C:\RRbackups\Documents and Settings\1\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-282280619-2309682589-2335125919-1003\62a45886e06c7d046ea8b819bec0598a_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\1\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-282280619-2309682589-2335125919-1003\8f71098770f72c7a67cd8f1151619865_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\1\AppData\Roaming\Microsoft\Protect\CREDHIST
!-->[Hidden] C:\RRbackups\Documents and Settings\1\AppData\Roaming\Microsoft\Protect\S-1-5-21-282280619-2309682589-2335125919-1003\bc6e192d-b1c0-40bb-bbde-9ba6489af58e
!-->[Hidden] C:\RRbackups\Documents and Settings\1\AppData\Roaming\Microsoft\Protect\S-1-5-21-282280619-2309682589-2335125919-1003\Preferred
!-->[Hidden] C:\RRbackups\Documents and Settings\1\Application Data\Lenovo\Client Security Solution\hibernation.dat
!-->[Hidden] C:\RRbackups\Documents and Settings\1\Application Data\Microsoft\Crypto\RSA\S-1-5-21-282280619-2309682589-2335125919-1003\3296d406cb9bdcc9f9aeae626bba1296_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\1\Application Data\Microsoft\Crypto\RSA\S-1-5-21-282280619-2309682589-2335125919-1003\3310a4fa6cb9c60504498d7eea986fc2_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\1\Application Data\Microsoft\Crypto\RSA\S-1-5-21-282280619-2309682589-2335125919-1003\62a45886e06c7d046ea8b819bec0598a_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\1\Application Data\Microsoft\Crypto\RSA\S-1-5-21-282280619-2309682589-2335125919-1003\6b29ae44e85efac3c72ff4d1865d73f1_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\1\Application Data\Microsoft\Crypto\RSA\S-1-5-21-282280619-2309682589-2335125919-1003\83aa4cc77f591dfc2374580bbd95f6ba_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\1\Application Data\Microsoft\Crypto\RSA\S-1-5-21-282280619-2309682589-2335125919-1003\8f71098770f72c7a67cd8f1151619865_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\1\Application Data\Microsoft\Crypto\RSA\S-1-5-21-282280619-2309682589-2335125919-1003\caa182795f5ba9ee749146544c4c543e_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\1\Application Data\Microsoft\Crypto\RSA\S-1-5-21-282280619-2309682589-2335125919-1003\ceb3a46c239abd72d54e52cb704c7ffb_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\1\Application Data\Microsoft\Crypto\RSA\S-1-5-21-282280619-2309682589-2335125919-1003\d730ca267c4100c89a1ac5652c74dda6_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\1\Application Data\Microsoft\Protect\CREDHIST
!-->[Hidden] C:\RRbackups\Documents and Settings\1\Application Data\Microsoft\Protect\S-1-5-21-282280619-2309682589-2335125919-1003\3ffe208a-814c-4481-a640-6e5d0b421d8e
!-->[Hidden] C:\RRbackups\Documents and Settings\1\Application Data\Microsoft\Protect\S-1-5-21-282280619-2309682589-2335125919-1003\75bf2428-444b-4536-b618-4006d5124d2b
!-->[Hidden] C:\RRbackups\Documents and Settings\1\Application Data\Microsoft\Protect\S-1-5-21-282280619-2309682589-2335125919-1003\7e5c0359-b4a1-42ef-b542-c1de727f3a6e
!-->[Hidden] C:\RRbackups\Documents and Settings\1\Application Data\Microsoft\Protect\S-1-5-21-282280619-2309682589-2335125919-1003\a9bad88f-ea69-477e-8527-a5a6938c3590
!-->[Hidden] C:\RRbackups\Documents and Settings\1\Application Data\Microsoft\Protect\S-1-5-21-282280619-2309682589-2335125919-1003\accbd024-ad34-43e9-a54e-a9a2cde7f635
!-->[Hidden] C:\RRbackups\Documents and Settings\1\Application Data\Microsoft\Protect\S-1-5-21-282280619-2309682589-2335125919-1003\bc6e192d-b1c0-40bb-bbde-9ba6489af58e
!-->[Hidden] C:\RRbackups\Documents and Settings\1\Application Data\Microsoft\Protect\S-1-5-21-282280619-2309682589-2335125919-1003\ebef93fc-ccb2-4462-8ac5-d3dc9fa70e75
!-->[Hidden] C:\RRbackups\Documents and Settings\1\Application Data\Microsoft\Protect\S-1-5-21-282280619-2309682589-2335125919-1003\Preferred
!-->[Hidden] C:\RRbackups\Documents and Settings\Administrator\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-282280619-2309682589-2335125919-500\83aa4cc77f591dfc2374580bbd95f6ba_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\Administrator\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-282280619-2309682589-2335125919-500\a18ca4003deb042bbee7a40f15e1970b_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\Administrator\AppData\Roaming\Microsoft\Protect\CREDHIST
!-->[Hidden] C:\RRbackups\Documents and Settings\Administrator\AppData\Roaming\Microsoft\Protect\S-1-5-21-282280619-2309682589-2335125919-500\7d9090ff-33a3-4348-9b48-bbd93883046e
!-->[Hidden] C:\RRbackups\Documents and Settings\Administrator\AppData\Roaming\Microsoft\Protect\S-1-5-21-282280619-2309682589-2335125919-500\Preferred
!-->[Hidden] C:\RRbackups\Documents and Settings\Administrator\AppData\Roaming\Microsoft\Protect\S-1-5-21-946592493-3211520402-3949043191-500\1e617109-803e-4be7-9818-0d7338a89cf9
!-->[Hidden] C:\RRbackups\Documents and Settings\Administrator\AppData\Roaming\Microsoft\Protect\S-1-5-21-946592493-3211520402-3949043191-500\Preferred
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Lenovo\Client Security Solution\cspContainer.dat
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\00be46601e6b46c8e593f233dd5cd29b_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\01424a7a517cefd7797633a3842aceb9_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\018700512778d0c31aab19ef1b2f5c26_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\02c9a31b0393f39785f6ca4d0ec1fefd_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\02d5e0993643f4470c3c6b0f659cff96_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\02ea2a95b8d2464f4a844afe2576e5a9_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\059f9e79acb9e472e5f6c75bac5d8e73_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\072524748730b5c204b075fa86a54aa4_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\08a125e1aa2ad3dfa02b5285198a39ab_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\08b8357478baacf58d0207414714869a_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\09554132e5ea9862cc15eceebf02f39f_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\09abc024070b7f3010f4aff747859f0b_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\0a0c840571fe1114b3f0911d43efa4b5_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\0a0f5c7ca7bcad93085fa23e2d91711f_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\0be7c1100cbb74db6d5f66a7e67b1e93_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\0eb05b59f583f81840f3ba499848969d_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\0fd3bf474f5cfeaf47e07d64fef02905_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\101dd7f3da900af5a3a8656f2daa7bc8_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\108a99e8988828551a1b7d65252e0f06_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\10a741b5fad67f57f7b94b804d587310_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\15ec171b61331ce67c6bb4c60c30ecfd_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\16c439e8708d491a0a00d01186ada5d4_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\179af7b78dc8921718e70e2d9e14f1ba_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\180676c6a768a2701bc9ddab275f0114_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\184f7a51d0eb64f376f093224f14e6ee_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\1bc8bc005aca4d9397f4e148a1beacbb_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\1c1eacb08854d9916e3154a130bfd621_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\207965120c67c51ed53e64565cee262a_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\209b262ab66221ac23ae7b1bb877527a_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\20f6597b4c179e83d9ad006e3760517f_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\2201a11ad5953568ffc389eb139fbe58_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\222f19254179bc0e7f7324ab66538208_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\234370c5cf0d0c17ac57986c327e8eac_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\25776108df57f1f5192f4db5fc2a95be_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\257a7d48df07a33b495cf1a3773d2095_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\25d662b346b36302fcd3a42fd84b1ca6_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\2644a8402e68cade8a17587028b1f6aa_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\28ea7df1edb5d32b625ac385248b687b_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\29cab73722e2e9083a35a2505849f727_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\29fa3b848e22916e5935ecbcc7605491_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\2c9012abc4de6e016d71568e0d12be92_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\2d5c50ce27292d68358a9c5801e3772a_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\2e6e0ee8abb9eaa5c30056633e5291ad_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\2f894d00db5fa65a616bdfe2a937a089_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\3026c1d5f477169790ff3dbf2029d744_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\311cdaefb97e02bccc6879987923652e_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\3168a6bb96c3531757c11b851d8d9d4e_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\31de3383eb8e0cccdd8fa42e64313fa7_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\32ec05cfdbe96d4447cd2f0d1b0b1822_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\33ae80bd1effbe2bb5ba375160e8d674_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\342c2cfaf29030ae4d05a026d8df35c4_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\348c67a37fab7256e44929e091855c99_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\350b63b54f25e85e63b3ff6c849aadba_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\371c48a1fe61e676a87d0dcf26cb9211_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\377326b9ba727aaa9f9c626a3e483269_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\37e346b153eb58d58199f59201451201_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\383edef8da811a5d960069b0da2a0e00_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\38854ccc0ef7146c18449a5b1c725b95_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\39dc775bd626c0a0000c744bb412ec74_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\39eeb05989e17e6f124af9c7934ae17c_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\3bdf1097e2b214a380a8a4d8b933162d_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\3ca28867fd26ae017c58219aadc3ae93_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\3dd33fedd8ed61ea8a6b51538fc8881e_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\3edf33dfc5b295f6dea637665409e536_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\3ef0d1ac8768ddf9457e3058b7971f50_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\404b466b6bfefd5de0c0a19f33336d46_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\41376a273c5b101104db280245e68c4d_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\4208801637f2ab2636492771c8a28381_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\429e647f74342b46c3b12cbe80d45fb2_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\43a614790595ecb5c573f5ba6386bfb5_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\44e492429de81dac0c6a190c59f13677_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\45e3668e7788f28d2d5ce1ee8d1a6062_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\46e65aa180b7e553971a806ac71ddb7d_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\4a250e988987a059f6dca73ff4c77193_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\4a7d4cb58045b6484c88488c2b5ec4a1_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\4b992271845e9140dd0d78bf2f1ed9a6_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\4c0204834facb7f9f5d1a840bead7b71_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\4c05de482aad21e1df2117a1a8a22c2b_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\4c5a107ca60f82c8799f3ebe96568ddf_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\4d1b243b9f56892c2d7e1ec06c2d0988_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\4d621d339b83da81b2032c814acf42ee_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\4d793a8519e7cacf8f2b63f30ead1d95_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\4ee101672311ea34d386e9b5288935ed_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\4ef0f8092563268a8b47ca157766632f_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\5068f42743ad95fd39fa807be8f037dd_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\5073701593e3af5cafcdeab120efdc65_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\52b442fd618f911e074e89ef14783199_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\5447e1d833539598eca25c946c863272_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\5515c57eb2cc4fea3df8747029b2d433_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\56011bcec72fbaf08f87ade48d89286d_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\576c0fc3b64b7c32deeaebeaf90b20fd_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\57a52547903add7c34928775104fc5f5_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\5864b82b9a4df00ac436713a1ba7a51a_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\599f481157d4574a1a0d8f6afc443ce9_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\5ac53a91f668f06d9bd77f639f18ac76_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\5ae267082de14be78e941f2c0fdb9e11_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\5b9a34a5fc457dcf08f9034c4c25cb1a_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\5bce1a5eae55554d0750fb6aecebab29_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\5bfe712585681d1c1ced00f816e59314_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\5c8a9af7137f7325a3cb95f656490824_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\5d0e4e561ebab5136cdeb97346be1cd4_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\5d8b03d60db5571fcce3be7a8b44430c_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\60a3b59bf3c9c9efb3fe92e3786c3d80_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\60b7e727989c1b03a6226143e86eff09_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\6198dc64578bad939ca893e5abb1582f_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\624efc68bfd16d5d2c7c93d3ccf0df69_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\62a8d372b21af6e248edc6a5905e408a_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\633740e77d5ff372ef633798d0395746_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\64909875952612daab71f92dfdd1691d_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\64f70b6f170b195a4b415309566172f2_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\6544e35d6fdfef97ea4cfe3dbee22bca_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\6615eb8cf5c32b9eac7e0e6bbb50c2c6_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\6678f6906ea66db7c06d2158e42afdf9_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\673fb1dd603f612d522bcc02a1a4e2f0_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\6745f9889424cc1463e729cd37b671b6_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\6766e9797601fa50772828bc629bca14_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\6a9e1fddcfa6f51763cf292702480444_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\6aa23685ff85e119300b860ad4e35a91_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\6b5187d6f445ab49ccd86c07c77d39f2_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\6c8d48fc5701f06cf399901928195273_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\6cfa976b154a4f5636f33862eb01d0ec_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\6d7621e7f356fe23c506a6c426d9e729_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\70127e6a1f6db0b9c7a5c0cc9bbc3ca3_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\70464e994c31a4c144339b7812e170ad_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\7231da7eef6340f255fee235081353f2_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\72a8c20157ac291dd85662cddb0678d6_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\72b7cf03b4d8783d1b6e529224b46d79_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\72e431ef5b3c7c5faaa4f1da92da36bb_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\73dfd03e05b6739869a0d6a78902dffa_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\758f1234d40213fd3527db50fc4e58c0_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\774d4348418b2343aeef7093f73342e8_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\780f0bea4d3902dd038572d54725db76_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\78632e9788d01a3eee1dca2fdc05129f_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\794a23f3652a8165f20bd6523de5a788_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\7b8b7e7eb9781f030a8611bfd6f439eb_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\7b9a9be9aeef0fa4638da3f2192fd34b_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\7be952605ecee435a9e5e8497b3e4356_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\7c7e6e5c64e8e5ef0003e77017df7742_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\7cda3a4491f33aef57331c6a891b9ae8_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\7d575c048e1f71a009ef54ad58ba7018_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\7d70ffa173ee35bd1006a91c82b84c29_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\7e45bfa2de3b4cfed803623e85c34fc6_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\806d92d400d0406c1ddd924d8220a20f_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\807cfe7acea2e32dbc3806546b9b1133_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\812772e60d40c5d9423479ffdf2d8a47_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\819c2d834b192e9eadf4f12d42b0b9d0_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\826e6d38d0733b171bebb1759dec9a78_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\84c5845a8468498cb9765cf332d97312_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\873408d6ec2d370ddef3b0f887596af7_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\87de59450d2f8f05c7622f4e6ba46df9_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\8955159612c2e3b600e7a9fae05618bd_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\89d4ab78f892f18b140f34b2163baf51_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\8b3530653ca6e2bbf7665d8732979005_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\8ed7da084f78cca83a0e4d6a13f45196_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\8f66802b58490c966f477d636b2a21a3_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\90ef3b35c7f9bd2901146c71e4048167_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\917ba1cb6f25bb9801587c67abf45f47_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\91c4f518c95f171f0a0143fc40bfc7ef_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\927658369e8bc57f8cc4f5f342a7edb3_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\930f9639c3e5232f72f8551d33692573_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\967b15f5a2cff0ed3abdafaa1f4010e9_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\969bf41ebe83ced9e80d6cede1b61405_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\96d5d93718c7667c8179f2f49ed9b070_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\96f01385c8b63be6664c3fa99ef96cb7_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\9702221026c70f88793a8b178abe747c_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\98e4f65af4257a63f36f9a97add80eda_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\98f2ddea8bbc85a2055c5fc4580f650b_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\9c9116da6bad29f62f0fe49f0366716b_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\9e3eab5a48fe4da8c20ef82f5dfc2858_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\9e49050fd6c2e420d3f5f97fdc624df5_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\9edbb2ace0570c95f8730e002d16a877_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\9edf062fb07f511e141bf34aa8cca7b7_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\9fd161838df2c3cf34612cc5393262a2_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\a2424988ef338c7b000504bb173c258e_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\a2473475ce6a988200a92d401ab8a239_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\a277d1e4967acea9c7cd854139fad349_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\a280d4d20fddeac0e54b413e81496dd2_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\a39b317899e34367d7f74cef99a58dc3_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\a3ad9cee7f682934a985de75ee6daef5_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\a51f96b5ac0289d2a9006b5d19ba680c_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\a68e4b1d551f5fb8f2f837d85acaf403_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\a74c85061e6147b4868102f162727346_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\a763152f61fb70211b1184fa5e34acac_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\a9d5791723e79226c54cb4462c039f28_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\aa0c3da18cca1f650bf541670a2ebfe2_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\abf26655cf0330229bfaff934c0d072d_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\ace3643dc4d3e43a448b81c8f57b8a01_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\af39dcf6eea778efe40dabac58d23e4b_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\afaf996a536c4c83e5a46c81b1a5d4b4_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\afb830ada37e737d7335b07b31470169_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\b02bc460fe3bb26f211ddd4e73febbe4_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\b112611c698cebdfd934a90bc3197545_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\b141a3e8f0fc051f7a7c2bd609889b67_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\b261163dfb5e8872e0c7375924e1af24_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\b295f59c2bba9f871687b84c79f33524_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\b2c53470a041900f4c1c0290eedc56dc_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\b41e9a28c51526c677ff210a43270cf8_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\b41f1db03140b2f54734ddefd3fcdf2b_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\b43368294658870f97bd535cd216502b_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\b4bd1b89238935ceef802f7b41d2da66_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\b6c243463d8a747af0f33704fcd10d09_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\b7f2c5a5040f21bc7d47d264f26f0442_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\b82e2b2b5f74b7fa525b52f743fa5dd8_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\b97d9537c362442ff9006bb5aa405cf0_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\b9a1fc01b229831078b55405ebe0e43e_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\ba893c92c06094ae4e92cfd61fd58e9f_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\bb10e7c4fe0ed1a31211747427b16f51_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\bc41ce502f1e28f3b3782e00165cf86b_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\befa50fca8a4140d5e977082f334b306_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\bf97ee7af922a80aa7160bf7115d9b6e_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\c06cd588132f0abd4c80c5d325e63eae_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\c29f276ff6471d1b05895c6e595b9cb9_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\c2a4f8b50e7c0e1cc2bc824caa5fa8bf_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\c569838dba423b8cbd8f5fe7085f9db1_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\c590d3d71870a43665056897016cd14f_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\c5ec55a7b4870125704672289cbbe8ac_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\c6b935c7ad671ce5f1311410d71fc448_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\c78506434559e0cd6a2905a70f5f2baa_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\ca4c211db914eae2903e8326cb7736f1_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\ca9ed6f4b6f7ca7e2aed0e0fbb30ec83_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\cb39e4a0158f8deeb038adf0586bda46_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\cbb64af595b8988537c3fc9364dff340_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\cc857f5c8a284b7a16f796eab3a643e3_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\cce09a93dcdbebd08b033c0c44c8b345_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\ceb80388f4d4f71f1e012bb564d229ba_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\d0a7ae8fe52d06a55d00ebc9cd4a969c_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\d13616e39f4f7ea692bb28a9f1878056_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\d17ee7fe363fc477d752f35bca8424a7_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\d19e38eb735fb8484668acb49276ed14_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\d1fa9493d3e232703c53f6443e555179_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\d220246b6e538db9a88c5f26e1fb5897_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\d3798fd8fcbe6e54776499e31d028911_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\d5772614c5bc2c4b55e262fb4f6540ac_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\d71bee4f0d7379064542216452737d5b_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\d76ae10a5d16958284f7e8293a2c165c_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\d7dc64531b5bce1e55227fb323d882bc_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\d7eb91b20846988d093fcc655eff8073_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\d7ee20dbda3fdf15d614a9042f33a42d_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\d7f6177dbcc92697104b99e2d3337b28_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\d83718e458c3a5f836638aa85ed7efdb_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\d8b0e6ec1d45b1cbd32a98e72aa8a9cd_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\db34938f5792731075e1445d6f847afd_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\dba20e36a50065bb62a66acb6e0494ff_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\dbe530cf45a0fdc192995d367cc46c27_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\de7a0c66153591a9fe92edef3c47380a_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\def7d7a643d7cdab83fe11cb54017324_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\dfe88a8ab34c7fd75d50f84695880003_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\e1dfde6c9f5ff5b10fdb76d223b7cbd0_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\e255b2047e627ca03bd08a9c59336d34_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\e26270eb4ddc45966a4f9d7153a3742a_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\e4bf528f41171987c166a91876a2ccdf_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\e504a9306a9e4b1a7791117cc2a3b055_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\e529886cdca620eedf9ee3552ba7aa4e_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\e5c1defc3a2f195f050b26778494e366_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\e6279c84c430ae314864412aeb99ad8f_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\e6d4b95e8118e986a608c9a69caabb8e_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\e6fb5b7f00eac825e77110e83569d278_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\e73fc5c309c84be95b917b260e436869_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\e761f9c4df378b5d18a2b53a3288c3fa_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\e7e90166408f74101c6676b68c337083_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\e8b7d90c90ceed5f4ac02f504292827c_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\ead455316c1ac196532ba256e28245d7_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\ee7cb80a912d67712c6654f250414f6e_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\ee989f080bc527a87b479fa4dd891110_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\ef77eff7d4a0ff486831aa4c89f3df6f_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\f042ab7d15165cc376112c94bdaf5937_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\f0ff47a71643f7c9a2552b4dfd02659b_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\f13343af2af9d5da5a685420ced95d98_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\f1659f93cc286d2090edb551c60af114_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\f2aef29fbf79c77c97bd63eed3fe8f21_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\f3efb1b39102cbf62074abcee18581f1_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\f46b4ed29473f6ebf3ff00738138abb4_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\f4e897620b60078b3f15b6b873cdbf5c_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\f9b5f302c44e20d9897f5fd987e29a0b_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\fa6c89f6450ef4b6c135c0fe99d327bf_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\fa7b27932749b538022626e648d59685_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\faec85d22947147e53ef6dabe2052579_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\fb0cb752620c4bcc14ed0c05e705a2f8_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\fbd7c0ec7f08733ca2278e30d54e5417_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\fc1e3851f429ea606d6ff1e01a5229f1_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\ff242dbe99d1b50f0af98170aefb8390_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\ff7d06bfb0d5a68acb88bbe6843bdf97_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\S-1-5-18\4a83060920cae32caf902bed48d1fdd9_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\S-1-5-18\62a45886e06c7d046ea8b819bec0598a_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\S-1-5-18\6d14e4b1d8ca773bab785d1be032546e_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\S-1-5-18\8f71098770f72c7a67cd8f1151619865_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\S-1-5-18\94348ade95b67e8f2e884ed7b348b833_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\S-1-5-18\d42cc0c3858a58db2db37658219e6400_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Documents and Settings\Guest\Application Data\Lenovo\Client Security Solution\hibernation.dat
!-->[Hidden] C:\RRbackups\Documents and Settings\Guest\Application Data\Microsoft\Protect\CREDHIST
!-->[Hidden] C:\RRbackups\Documents and Settings\Guest\Application Data\Microsoft\Protect\S-1-5-21-282280619-2309682589-2335125919-501\2fec43d8-db19-4177-91ec-e51bbe7ec311
!-->[Hidden] C:\RRbackups\Documents and Settings\Guest\Application Data\Microsoft\Protect\S-1-5-21-282280619-2309682589-2335125919-501\871791a3-ec8f-45d5-beac-061e5f434a55
!-->[Hidden] C:\RRbackups\Documents and Settings\Guest\Application Data\Microsoft\Protect\S-1-5-21-282280619-2309682589-2335125919-501\Preferred
!-->[Hidden] C:\RRbackups\ProgramData\Lenovo\Client Security Solution\cspContainer.dat
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\00be46601e6b46c8e593f233dd5cd29b_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\01424a7a517cefd7797633a3842aceb9_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\018700512778d0c31aab19ef1b2f5c26_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\02c9a31b0393f39785f6ca4d0ec1fefd_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\02d5e0993643f4470c3c6b0f659cff96_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\02ea2a95b8d2464f4a844afe2576e5a9_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\059f9e79acb9e472e5f6c75bac5d8e73_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\072524748730b5c204b075fa86a54aa4_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\08a125e1aa2ad3dfa02b5285198a39ab_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\08b8357478baacf58d0207414714869a_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\09554132e5ea9862cc15eceebf02f39f_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\09abc024070b7f3010f4aff747859f0b_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\0a0c840571fe1114b3f0911d43efa4b5_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\0a0f5c7ca7bcad93085fa23e2d91711f_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\0be7c1100cbb74db6d5f66a7e67b1e93_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\0eb05b59f583f81840f3ba499848969d_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\0fd3bf474f5cfeaf47e07d64fef02905_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden]
nerutosako
Regular Member
 
Posts: 26
Joined: December 23rd, 2010, 2:22 pm

Re: Need help for "EPOCLICL VIRUS" and Google-analytics

Unread postby nerutosako » December 30th, 2010, 1:04 pm

C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\101dd7f3da900af5a3a8656f2daa7bc8_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\108a99e8988828551a1b7d65252e0f06_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\10a741b5fad67f57f7b94b804d587310_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\15ec171b61331ce67c6bb4c60c30ecfd_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\16c439e8708d491a0a00d01186ada5d4_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\179af7b78dc8921718e70e2d9e14f1ba_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\180676c6a768a2701bc9ddab275f0114_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\184f7a51d0eb64f376f093224f14e6ee_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\1bc8bc005aca4d9397f4e148a1beacbb_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\1c1eacb08854d9916e3154a130bfd621_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\207965120c67c51ed53e64565cee262a_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\209b262ab66221ac23ae7b1bb877527a_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\20f6597b4c179e83d9ad006e3760517f_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\2201a11ad5953568ffc389eb139fbe58_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\222f19254179bc0e7f7324ab66538208_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\234370c5cf0d0c17ac57986c327e8eac_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\25776108df57f1f5192f4db5fc2a95be_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\257a7d48df07a33b495cf1a3773d2095_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\25d662b346b36302fcd3a42fd84b1ca6_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\2644a8402e68cade8a17587028b1f6aa_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\28ea7df1edb5d32b625ac385248b687b_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\29cab73722e2e9083a35a2505849f727_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\29fa3b848e22916e5935ecbcc7605491_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\2c9012abc4de6e016d71568e0d12be92_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\2d5c50ce27292d68358a9c5801e3772a_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\2e6e0ee8abb9eaa5c30056633e5291ad_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\2f894d00db5fa65a616bdfe2a937a089_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\3026c1d5f477169790ff3dbf2029d744_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\311cdaefb97e02bccc6879987923652e_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\3168a6bb96c3531757c11b851d8d9d4e_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\31de3383eb8e0cccdd8fa42e64313fa7_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\32ec05cfdbe96d4447cd2f0d1b0b1822_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\33ae80bd1effbe2bb5ba375160e8d674_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\342c2cfaf29030ae4d05a026d8df35c4_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\348c67a37fab7256e44929e091855c99_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\350b63b54f25e85e63b3ff6c849aadba_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\371c48a1fe61e676a87d0dcf26cb9211_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\377326b9ba727aaa9f9c626a3e483269_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\37e346b153eb58d58199f59201451201_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\383edef8da811a5d960069b0da2a0e00_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\38854ccc0ef7146c18449a5b1c725b95_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\39dc775bd626c0a0000c744bb412ec74_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\39eeb05989e17e6f124af9c7934ae17c_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\3bdf1097e2b214a380a8a4d8b933162d_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\3ca28867fd26ae017c58219aadc3ae93_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\3dd33fedd8ed61ea8a6b51538fc8881e_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\3edf33dfc5b295f6dea637665409e536_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\3ef0d1ac8768ddf9457e3058b7971f50_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\404b466b6bfefd5de0c0a19f33336d46_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\41376a273c5b101104db280245e68c4d_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\4208801637f2ab2636492771c8a28381_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\429e647f74342b46c3b12cbe80d45fb2_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\43a614790595ecb5c573f5ba6386bfb5_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\44e492429de81dac0c6a190c59f13677_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden]
C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\45e3668e7788f28d2d5ce1ee8d1a6062_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\46e65aa180b7e553971a806ac71ddb7d_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\4a250e988987a059f6dca73ff4c77193_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\4a7d4cb58045b6484c88488c2b5ec4a1_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\4b992271845e9140dd0d78bf2f1ed9a6_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\4c0204834facb7f9f5d1a840bead7b71_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\4c05de482aad21e1df2117a1a8a22c2b_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\4c5a107ca60f82c8799f3ebe96568ddf_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\4d1b243b9f56892c2d7e1ec06c2d0988_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\4d621d339b83da81b2032c814acf42ee_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\4d793a8519e7cacf8f2b63f30ead1d95_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\4ee101672311ea34d386e9b5288935ed_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\4ef0f8092563268a8b47ca157766632f_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\5068f42743ad95fd39fa807be8f037dd_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\5073701593e3af5cafcdeab120efdc65_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\52b442fd618f911e074e89ef14783199_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\5447e1d833539598eca25c946c863272_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\5515c57eb2cc4fea3df8747029b2d433_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\56011bcec72fbaf08f87ade48d89286d_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\576c0fc3b64b7c32deeaebeaf90b20fd_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\57a52547903add7c34928775104fc5f5_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\5864b82b9a4df00ac436713a1ba7a51a_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\599f481157d4574a1a0d8f6afc443ce9_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\5ac53a91f668f06d9bd77f639f18ac76_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\5ae267082de14be78e941f2c0fdb9e11_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\5b9a34a5fc457dcf08f9034c4c25cb1a_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\5bce1a5eae55554d0750fb6aecebab29_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\5bfe712585681d1c1ced00f816e59314_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\5c8a9af7137f7325a3cb95f656490824_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\5d0e4e561ebab5136cdeb97346be1cd4_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\5d8b03d60db5571fcce3be7a8b44430c_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\60a3b59bf3c9c9efb3fe92e3786c3d80_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\60b7e727989c1b03a6226143e86eff09_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\6198dc64578bad939ca893e5abb1582f_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\624efc68bfd16d5d2c7c93d3ccf0df69_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\62a8d372b21af6e248edc6a5905e408a_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\633740e77d5ff372ef633798d0395746_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\64909875952612daab71f92dfdd1691d_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\64f70b6f170b195a4b415309566172f2_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\6544e35d6fdfef97ea4cfe3dbee22bca_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\6615eb8cf5c32b9eac7e0e6bbb50c2c6_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\6678f6906ea66db7c06d2158e42afdf9_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\673fb1dd603f612d522bcc02a1a4e2f0_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\6745f9889424cc1463e729cd37b671b6_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\6766e9797601fa50772828bc629bca14_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\6a9e1fddcfa6f51763cf292702480444_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\6aa23685ff85e119300b860ad4e35a91_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\6b5187d6f445ab49ccd86c07c77d39f2_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\6c8d48fc5701f06cf399901928195273_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\6cfa976b154a4f5636f33862eb01d0ec_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\6d7621e7f356fe23c506a6c426d9e729_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\70127e6a1f6db0b9c7a5c0cc9bbc3ca3_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\70464e994c31a4c144339b7812e170ad_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\7231da7eef6340f255fee235081353f2_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\72a8c20157ac291dd85662cddb0678d6_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\72b7cf03b4d8783d1b6e529224b46d79_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\72e431ef5b3c7c5faaa4f1da92da36bb_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\73dfd03e05b6739869a0d6a78902dffa_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\758f1234d40213fd3527db50fc4e58c0_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\774d4348418b2343aeef7093f73342e8_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\780f0bea4d3902dd038572d54725db76_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\78632e9788d01a3eee1dca2fdc05129f_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\794a23f3652a8165f20bd6523de5a788_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\7b8b7e7eb9781f030a8611bfd6f439eb_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\7b9a9be9aeef0fa4638da3f2192fd34b_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\7be952605ecee435a9e5e8497b3e4356_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\7c7e6e5c64e8e5ef0003e77017df7742_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\7cda3a4491f33aef57331c6a891b9ae8_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\7d575c048e1f71a009ef54ad58ba7018_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\7d70ffa173ee35bd1006a91c82b84c29_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\7e45bfa2de3b4cfed803623e85c34fc6_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\806d92d400d0406c1ddd924d8220a20f_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\807cfe7acea2e32dbc3806546b9b1133_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\812772e60d40c5d9423479ffdf2d8a47_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\819c2d834b192e9eadf4f12d42b0b9d0_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\826e6d38d0733b171bebb1759dec9a78_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\84c5845a8468498cb9765cf332d97312_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\873408d6ec2d370ddef3b0f887596af7_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\87de59450d2f8f05c7622f4e6ba46df9_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\8955159612c2e3b600e7a9fae05618bd_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\89d4ab78f892f18b140f34b2163baf51_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\8b3530653ca6e2bbf7665d8732979005_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\8ed7da084f78cca83a0e4d6a13f45196_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\8f66802b58490c966f477d636b2a21a3_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\90ef3b35c7f9bd2901146c71e4048167_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\917ba1cb6f25bb9801587c67abf45f47_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\91c4f518c95f171f0a0143fc40bfc7ef_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\927658369e8bc57f8cc4f5f342a7edb3_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\930f9639c3e5232f72f8551d33692573_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\967b15f5a2cff0ed3abdafaa1f4010e9_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\969bf41ebe83ced9e80d6cede1b61405_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\96d5d93718c7667c8179f2f49ed9b070_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\96f01385c8b63be6664c3fa99ef96cb7_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\9702221026c70f88793a8b178abe747c_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\98e4f65af4257a63f36f9a97add80eda_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\98f2ddea8bbc85a2055c5fc4580f650b_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\9c9116da6bad29f62f0fe49f0366716b_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\9e3eab5a48fe4da8c20ef82f5dfc2858_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\9e49050fd6c2e420d3f5f97fdc624df5_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\9edbb2ace0570c95f8730e002d16a877_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\9edf062fb07f511e141bf34aa8cca7b7_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\9fd161838df2c3cf34612cc5393262a2_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\a2424988ef338c7b000504bb173c258e_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\a2473475ce6a988200a92d401ab8a239_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\a277d1e4967acea9c7cd854139fad349_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\a280d4d20fddeac0e54b413e81496dd2_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\a39b317899e34367d7f74cef99a58dc3_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\a3ad9cee7f682934a985de75ee6daef5_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\a51f96b5ac0289d2a9006b5d19ba680c_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\a68e4b1d551f5fb8f2f837d85acaf403_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\a74c85061e6147b4868102f162727346_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\a763152f61fb70211b1184fa5e34acac_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\a9d5791723e79226c54cb4462c039f28_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\aa0c3da18cca1f650bf541670a2ebfe2_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\abf26655cf0330229bfaff934c0d072d_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\ace3643dc4d3e43a448b81c8f57b8a01_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\af39dcf6eea778efe40dabac58d23e4b_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\afaf996a536c4c83e5a46c81b1a5d4b4_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\afb830ada37e737d7335b07b31470169_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\b02bc460fe3bb26f211ddd4e73febbe4_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\b112611c698cebdfd934a90bc3197545_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\b141a3e8f0fc051f7a7c2bd609889b67_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\b261163dfb5e8872e0c7375924e1af24_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\b295f59c2bba9f871687b84c79f33524_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\b2c53470a041900f4c1c0290eedc56dc_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\b41e9a28c51526c677ff210a43270cf8_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\b41f1db03140b2f54734ddefd3fcdf2b_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\b43368294658870f97bd535cd216502b_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\b4bd1b89238935ceef802f7b41d2da66_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\b6c243463d8a747af0f33704fcd10d09_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\b7f2c5a5040f21bc7d47d264f26f0442_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\b82e2b2b5f74b7fa525b52f743fa5dd8_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\b97d9537c362442ff9006bb5aa405cf0_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\b9a1fc01b229831078b55405ebe0e43e_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\ba893c92c06094ae4e92cfd61fd58e9f_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\bb10e7c4fe0ed1a31211747427b16f51_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\bc41ce502f1e28f3b3782e00165cf86b_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\befa50fca8a4140d5e977082f334b306_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\bf97ee7af922a80aa7160bf7115d9b6e_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\c06cd588132f0abd4c80c5d325e63eae_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\c29f276ff6471d1b05895c6e595b9cb9_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\c2a4f8b50e7c0e1cc2bc824caa5fa8bf_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\c569838dba423b8cbd8f5fe7085f9db1_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\c590d3d71870a43665056897016cd14f_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\c5ec55a7b4870125704672289cbbe8ac_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\c6b935c7ad671ce5f1311410d71fc448_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\c78506434559e0cd6a2905a70f5f2baa_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\ca4c211db914eae2903e8326cb7736f1_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\ca9ed6f4b6f7ca7e2aed0e0fbb30ec83_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\cb39e4a0158f8deeb038adf0586bda46_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\cbb64af595b8988537c3fc9364dff340_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\cc857f5c8a284b7a16f796eab3a643e3_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\cce09a93dcdbebd08b033c0c44c8b345_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\ceb80388f4d4f71f1e012bb564d229ba_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\d0a7ae8fe52d06a55d00ebc9cd4a969c_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\d13616e39f4f7ea692bb28a9f1878056_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\d17ee7fe363fc477d752f35bca8424a7_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\d19e38eb735fb8484668acb49276ed14_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\d1fa9493d3e232703c53f6443e555179_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\d220246b6e538db9a88c5f26e1fb5897_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\d3798fd8fcbe6e54776499e31d028911_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\d5772614c5bc2c4b55e262fb4f6540ac_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\d71bee4f0d7379064542216452737d5b_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\d76ae10a5d16958284f7e8293a2c165c_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\d7dc64531b5bce1e55227fb323d882bc_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\d7eb91b20846988d093fcc655eff8073_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\d7ee20dbda3fdf15d614a9042f33a42d_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\d7f6177dbcc92697104b99e2d3337b28_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden]
nerutosako
Regular Member
 
Posts: 26
Joined: December 23rd, 2010, 2:22 pm

Re: Need help for "EPOCLICL VIRUS" and Google-analytics

Unread postby nerutosako » December 30th, 2010, 1:05 pm

C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\d83718e458c3a5f836638aa85ed7efdb_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\d8b0e6ec1d45b1cbd32a98e72aa8a9cd_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\db34938f5792731075e1445d6f847afd_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\dba20e36a50065bb62a66acb6e0494ff_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\dbe530cf45a0fdc192995d367cc46c27_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\de7a0c66153591a9fe92edef3c47380a_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\def7d7a643d7cdab83fe11cb54017324_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\dfe88a8ab34c7fd75d50f84695880003_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\e1dfde6c9f5ff5b10fdb76d223b7cbd0_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\e255b2047e627ca03bd08a9c59336d34_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\e26270eb4ddc45966a4f9d7153a3742a_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\e4bf528f41171987c166a91876a2ccdf_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\e504a9306a9e4b1a7791117cc2a3b055_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\e529886cdca620eedf9ee3552ba7aa4e_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\e5c1defc3a2f195f050b26778494e366_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\e6279c84c430ae314864412aeb99ad8f_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\e6d4b95e8118e986a608c9a69caabb8e_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\e6fb5b7f00eac825e77110e83569d278_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\e73fc5c309c84be95b917b260e436869_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\e761f9c4df378b5d18a2b53a3288c3fa_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\e7e90166408f74101c6676b68c337083_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\e8b7d90c90ceed5f4ac02f504292827c_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\ead455316c1ac196532ba256e28245d7_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\ee7cb80a912d67712c6654f250414f6e_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\ee989f080bc527a87b479fa4dd891110_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\ef77eff7d4a0ff486831aa4c89f3df6f_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f042ab7d15165cc376112c94bdaf5937_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f0ff47a71643f7c9a2552b4dfd02659b_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f13343af2af9d5da5a685420ced95d98_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f1659f93cc286d2090edb551c60af114_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f2aef29fbf79c77c97bd63eed3fe8f21_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f3efb1b39102cbf62074abcee18581f1_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f46b4ed29473f6ebf3ff00738138abb4_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f4e897620b60078b3f15b6b873cdbf5c_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\f9b5f302c44e20d9897f5fd987e29a0b_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\fa6c89f6450ef4b6c135c0fe99d327bf_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\fa7b27932749b538022626e648d59685_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\faec85d22947147e53ef6dabe2052579_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\fb0cb752620c4bcc14ed0c05e705a2f8_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\fbd7c0ec7f08733ca2278e30d54e5417_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\fc1e3851f429ea606d6ff1e01a5229f1_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\ff242dbe99d1b50f0af98170aefb8390_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\MachineKeys\ff7d06bfb0d5a68acb88bbe6843bdf97_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\S-1-5-18\4a83060920cae32caf902bed48d1fdd9_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\S-1-5-18\62a45886e06c7d046ea8b819bec0598a_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\S-1-5-18\6d14e4b1d8ca773bab785d1be032546e_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\S-1-5-18\8f71098770f72c7a67cd8f1151619865_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\S-1-5-18\94348ade95b67e8f2e884ed7b348b833_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\ProgramData\Microsoft\Crypto\RSA\S-1-5-18\d42cc0c3858a58db2db37658219e6400_1000d5bf-6ac5-4fc8-93da-97cd1b94548a
!-->[Hidden] C:\RRbackups\Q\0\Data0
!-->[Hidden] C:\RRbackups\Q\0\Data1
!-->[Hidden] C:\RRbackups\Q\0\Data2
!-->[Hidden] C:\RRbackups\Q\0\Data3
!-->[Hidden] C:\RRbackups\Q\0\Data4
!-->[Hidden] C:\RRbackups\Q\0\Data5
!-->[Hidden] C:\RRbackups\Q\0\EFSFile
!-->[Hidden] C:\RRbackups\Q\0\HashFile
!-->[Hidden] C:\RRbackups\Q\0\Info
!-->[Hidden] C:\RRbackups\Q\0\TOCFile
!-->[Hidden] C:\RRbackups\Q\1\Data0
!-->[Hidden] C:\RRbackups\Q\1\EFSFile
!-->[Hidden] C:\RRbackups\Q\1\HashFile
!-->[Hidden] C:\RRbackups\Q\1\Info
!-->[Hidden] C:\RRbackups\Q\1\TOCFile
!-->[Hidden] C:\RRbackups\Q\2\Data0
!-->[Hidden] C:\RRbackups\Q\2\EFSFile
!-->[Hidden] C:\RRbackups\Q\2\HashFile
!-->[Hidden] C:\RRbackups\Q\2\Info
!-->[Hidden] C:\RRbackups\Q\2\TOCFile
!-->[Hidden] C:\RRbackups\Q\3\Data0
!-->[Hidden] C:\RRbackups\Q\3\EFSFile
!-->[Hidden] C:\RRbackups\Q\3\HashFile
!-->[Hidden] C:\RRbackups\Q\3\Info
!-->[Hidden] C:\RRbackups\Q\3\TOCFile
!-->[Hidden] C:\RRbackups\S\0\Data0
!-->[Hidden] C:\RRbackups\S\0\Data1
!-->[Hidden] C:\RRbackups\S\0\Data10
!-->[Hidden] C:\RRbackups\S\0\Data11
!-->[Hidden] C:\RRbackups\S\0\Data2
!-->[Hidden] C:\RRbackups\S\0\Data3
!-->[Hidden] C:\RRbackups\S\0\Data4
!-->[Hidden] C:\RRbackups\S\0\Data5
!-->[Hidden] C:\RRbackups\S\0\Data6
!-->[Hidden] C:\RRbackups\S\0\Data7
!-->[Hidden] C:\RRbackups\S\0\Data8
!-->[Hidden] C:\RRbackups\S\0\Data9
!-->[Hidden] C:\RRbackups\S\0\EFSFile
!-->[Hidden] C:\RRbackups\S\0\HashFile
!-->[Hidden] C:\RRbackups\S\0\Info
!-->[Hidden] C:\RRbackups\S\0\TOCFile
!-->[Hidden] C:\RRbackups\S\1\Data0
!-->[Hidden] C:\RRbackups\S\1\EFSFile
!-->[Hidden] C:\RRbackups\S\1\HashFile
!-->[Hidden] C:\RRbackups\S\1\Info
!-->[Hidden] C:\RRbackups\S\1\TOCFile
!-->[Hidden] C:\RRbackups\S\2\Data0
!-->[Hidden] C:\RRbackups\S\2\EFSFile
!-->[Hidden] C:\RRbackups\S\2\HashFile
!-->[Hidden] C:\RRbackups\S\2\Info
!-->[Hidden] C:\RRbackups\S\2\TOCFile
!-->[Hidden] C:\RRbackups\S\3\Data0
!-->[Hidden] C:\RRbackups\S\3\EFSFile
!-->[Hidden] C:\RRbackups\S\3\HashFile
!-->[Hidden] C:\RRbackups\S\3\Info
!-->[Hidden] C:\RRbackups\S\3\TOCFile
!-->[Hidden] C:\Users\1\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\A4C1370976EA5CBCD83ED4662793FEEA_1763E0D9B475021E95D53935BAA25692
!-->[Hidden] C:\Users\1\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\A4C1370976EA5CBCD83ED4662793FEEA_1763E0D9B475021E95D53935BAA25692
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a4d
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a4e
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a4f
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a50
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a51
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a52
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a53
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a54
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a55
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a56
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a57
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a58
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a59
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a5a
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a5b
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a5c
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a5d
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a5e
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a5f
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a60
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a61
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a62
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a63
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a64
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a65
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a66
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a67
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a68
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a69
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a6a
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a6b
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a6c
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a6d
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a6e
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a6f
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a70
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a71
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a72
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a73
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a74
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a75
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a76
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a77
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a78
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a79
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a7a
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a7b
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a7c
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a7d
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a7e
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a7f
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a80
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a81
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a82
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a83
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a84
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a85
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a86
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a87
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a88
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a89
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a8a
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a8b
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a8c
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a8d
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a8e
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a8f
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a90
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a91
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a92
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a93
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a94
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a95
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a96
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a97
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a98
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a99
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a9a
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a9b
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a9c
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a9d
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a9e
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000a9f
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000aa0
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000aa1
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000aa2
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000aa3
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000aa4
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000aa5
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000aa6
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000aa7
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000aa8
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000aa9
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000aaa
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000aab
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000aac
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000aad
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000aae
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000aaf
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000ab0
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000ab1
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000ab2
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000ab3
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000ab4
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000ab5
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000ab6
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000ab7
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000ab8
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000ab9
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000aba
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000abb
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000abc
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000abd
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000abe
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000abf
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000ac0
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000ac1
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000ac2
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000ac3
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000ac4
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000ac5
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000ac6
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000ac7
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000ac8
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000ac9
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000aca
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000acb
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000acc
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000acd
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000ace
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000acf
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000ad0
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000ad1
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000ad2
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000ad3
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000ad4
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000ad5
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000ad6
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000ad7
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000ad8
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000ad9
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000ada
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000adb
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000adc
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000add
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000ade
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000adf
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000ae0
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000ae1
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000ae2
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000ae3
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000ae4
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000ae6
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000ae9
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000aea
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000aeb
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000aec
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000aed
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000aee
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000aef
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000af0
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000af1
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000af2
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000af3
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000af4
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000af5
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000af6
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000af7
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000af8
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000af9
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000afa
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000afb
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000afc
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000afd
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000afe
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000aff
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000b00
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000b01
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000b02
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000b03
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000b04
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000b05
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000b06
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000b07
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000b08
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000b09
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000b0a
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000b0b
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000b0c
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000b0d
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000b0e
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000b0f
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000b10
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000b11
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000b12
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000b14
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000b16
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000b17
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000b18
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000b19
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000b1a
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000b1b
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000b1c
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000b1d
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000b1e
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000b1f
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000b20
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000b21
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000b22
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000b23
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000b24
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000b25
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000b26
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000b27
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000b28
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000b29
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000b2a
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000b2b
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000b2c
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000b2d
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000b2e
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000b2f
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000b30
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000b31
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000b32
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000b34
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000b35
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000b36
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000b37
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000b38
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000b39
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000b3a
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000b3b
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000b3c
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000b3d
!-->[Hidden] C:\Users\1\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000b3e
!-->[Hidden] C:\Windows\Temp\TMP000003BDF4A5E353B4128920
==============================================
>Hooks
==============================================
ntkrnlpa.exe+0x000A87AA, Type: Inline - RelativeJump 0x822E27AA-->822E27B1 [ntkrnlpa.exe]
[1172]rundll32.exe-->advapi32.dll-->kernel32.dll-->GetProcAddress, Type: IAT modification 0x77C814BC-->00000000 [shimeng.dll]
[1172]rundll32.exe-->gdi32.dll-->kernel32.dll-->GetProcAddress, Type: IAT modification 0x77B61170-->00000000 [shimeng.dll]
[1172]rundll32.exe-->shell32.dll-->kernel32.dll-->GetProcAddress, Type: IAT modification 0x768E1414-->00000000 [shimeng.dll]
[1172]rundll32.exe-->user32.dll-->kernel32.dll-->GetProcAddress, Type: IAT modification 0x77D51300-->00000000 [shimeng.dll]
[1172]rundll32.exe-->ws2_32.dll-->kernel32.dll-->GetProcAddress, Type: IAT modification 0x4B0D11E8-->00000000 [shimeng.dll]
[2156]ZuneLauncher.exe-->advapi32.dll-->kernel32.dll-->GetProcAddress, Type: IAT modification 0x77C814BC-->00000000 [shimeng.dll]
[2156]ZuneLauncher.exe-->gdi32.dll-->kernel32.dll-->GetProcAddress, Type: IAT modification 0x77B61170-->00000000 [shimeng.dll]
[2156]ZuneLauncher.exe-->shell32.dll-->kernel32.dll-->GetProcAddress, Type: IAT modification 0x768E1414-->00000000 [shimeng.dll]
[2156]ZuneLauncher.exe-->user32.dll-->kernel32.dll-->GetProcAddress, Type: IAT modification 0x77D51300-->00000000 [shimeng.dll]
[3048]YahooAUService.exe-->advapi32.dll-->CreateServiceW, Type: IAT modification 0x00467054-->00000000 [AcGenral.dll]
[3048]YahooAUService.exe-->advapi32.dll-->kernel32.dll-->CopyFileW, Type: IAT modification 0x77C8151C-->00000000 [AcGenral.dll]
[3048]YahooAUService.exe-->advapi32.dll-->kernel32.dll-->CreateFileW, Type: IAT modification 0x77C816D0-->00000000 [AcGenral.dll]
[3048]YahooAUService.exe-->advapi32.dll-->kernel32.dll-->DeleteFileW, Type: IAT modification 0x77C81664-->00000000 [AcGenral.dll]
[3048]YahooAUService.exe-->advapi32.dll-->kernel32.dll-->GetProcAddress, Type: IAT modification 0x77C814BC-->00000000 [shimeng.dll]
[3048]YahooAUService.exe-->advapi32.dll-->kernel32.dll-->MoveFileW, Type: IAT modification 0x77C81668-->00000000 [AcGenral.dll]
[3048]YahooAUService.exe-->advapi32.dll-->kernel32.dll-->OpenFile, Type: IAT modification 0x77C81514-->00000000 [AcGenral.dll]
[3048]YahooAUService.exe-->advapi32.dll-->RegCreateKeyExW, Type: IAT modification 0x00467088-->00000000 [AcGenral.dll]
[3048]YahooAUService.exe-->advapi32.dll-->RegDeleteValueW, Type: IAT modification 0x00467090-->00000000 [AcGenral.dll]
[3048]YahooAUService.exe-->advapi32.dll-->RegOpenKeyExA, Type: IAT modification 0x00467004-->00000000 [AcGenral.dll]
[3048]YahooAUService.exe-->advapi32.dll-->RegOpenKeyExW, Type: IAT modification 0x00467084-->00000000 [AcGenral.dll]
[3048]YahooAUService.exe-->advapi32.dll-->RegSetValueExW, Type: IAT modification 0x0046707C-->00000000 [AcGenral.dll]
[3048]YahooAUService.exe-->gdi32.dll-->kernel32.dll-->CopyFileW, Type: IAT modification 0x77B61130-->00000000 [AcGenral.dll]
[3048]YahooAUService.exe-->gdi32.dll-->kernel32.dll-->CreateFileW, Type: IAT modification 0x77B6119C-->00000000 [AcGenral.dll]
[3048]YahooAUService.exe-->gdi32.dll-->kernel32.dll-->DeleteFileW, Type: IAT modification 0x77B611BC-->00000000 [AcGenral.dll]
[3048]YahooAUService.exe-->gdi32.dll-->kernel32.dll-->GetProcAddress, Type: IAT modification 0x77B61170-->00000000 [shimeng.dll]
[3048]YahooAUService.exe-->kernel32.dll-->CreateFileA, Type: IAT modification 0x00467138-->00000000 [AcGenral.dll]
[3048]YahooAUService.exe-->kernel32.dll-->CreateFileW, Type: IAT modification 0x004670C8-->00000000 [AcGenral.dll]
[3048]YahooAUService.exe-->kernel32.dll-->CreateProcessW, Type: IAT modification 0x004670D8-->00000000 [AcGenral.dll]
[3048]YahooAUService.exe-->kernel32.dll-->DeleteFileA, Type: IAT modification 0x00467250-->00000000 [AcGenral.dll]
[3048]YahooAUService.exe-->kernel32.dll-->DeleteFileW, Type: IAT modification 0x004670AC-->00000000 [AcGenral.dll]
[3048]YahooAUService.exe-->kernel32.dll-->GetFileAttributesW, Type: IAT modification 0x00467108-->00000000 [AcGenral.dll]
[3048]YahooAUService.exe-->kernel32.dll-->GetProcAddress, Type: IAT modification 0x004670F0-->00000000 [shimeng.dll]
[3048]YahooAUService.exe-->kernel32.dll-->MoveFileA, Type: IAT modification 0x00467254-->00000000 [AcGenral.dll]
[3048]YahooAUService.exe-->mswsock.dll-->advapi32.dll-->RegCreateKeyExW, Type: IAT modification 0x6D641258-->00000000 [AcGenral.dll]
[3048]YahooAUService.exe-->mswsock.dll-->advapi32.dll-->RegOpenKeyExA, Type: IAT modification 0x6D641268-->00000000 [AcGenral.dll]
[3048]YahooAUService.exe-->mswsock.dll-->advapi32.dll-->RegOpenKeyExW, Type: IAT modification 0x6D641274-->00000000 [AcGenral.dll]
[3048]YahooAUService.exe-->mswsock.dll-->advapi32.dll-->RegSetValueExA, Type: IAT modification 0x6D641254-->00000000 [AcGenral.dll]
[3048]YahooAUService.exe-->mswsock.dll-->advapi32.dll-->RegSetValueExW, Type: IAT modification 0x6D64125C-->00000000 [AcGenral.dll]
[3048]YahooAUService.exe-->mswsock.dll-->kernel32.dll-->GetProcAddress, Type: IAT modification 0x6D64123C-->00000000 [shimeng.dll]
[3048]YahooAUService.exe-->shell32.dll-->advapi32.dll-->AccessCheck, Type: IAT modification 0x768E1C04-->00000000 [AcGenral.dll]
[3048]YahooAUService.exe-->shell32.dll-->advapi32.dll-->RegCreateKeyExW, Type: IAT modification 0x768E1B34-->00000000 [AcGenral.dll]
[3048]YahooAUService.exe-->shell32.dll-->advapi32.dll-->RegCreateKeyW, Type: IAT modification 0x768E1CB8-->00000000 [AcGenral.dll]
[3048]YahooAUService.exe-->shell32.dll-->advapi32.dll-->RegDeleteValueW, Type: IAT modification 0x768E1B54-->00000000 [AcGenral.dll]
[3048]YahooAUService.exe-->shell32.dll-->advapi32.dll-->RegOpenKeyExA, Type: IAT modification 0x768E1CFC-->00000000 [AcGenral.dll]
[3048]YahooAUService.exe-->shell32.dll-->advapi32.dll-->RegOpenKeyExW, Type: IAT modification 0x768E1B2C-->00000000 [AcGenral.dll]
[3048]YahooAUService.exe-->shell32.dll-->advapi32.dll-->RegSetValueExW, Type: IAT modification 0x768E1B30-->00000000 [AcGenral.dll]
[3048]YahooAUService.exe-->shell32.dll-->advapi32.dll-->RegSetValueW, Type: IAT modification 0x768E1B74-->00000000 [AcGenral.dll]
[3048]YahooAUService.exe-->shell32.dll-->advapi32.dll-->SetFileSecurityW, Type: IAT modification 0x768E1CC8-->00000000 [AcGenral.dll]
[3048]YahooAUService.exe-->shell32.dll-->kernel32.dll-->CopyFileW, Type: IAT modification 0x768E125C-->00000000 [AcGenral.dll]
[3048]YahooAUService.exe-->shell32.dll-->kernel32.dll-->CreateFileW, Type: IAT modification 0x768E1460-->00000000 [AcGenral.dll]
[3048]YahooAUService.exe-->shell32.dll-->kernel32.dll-->DeleteFileW, Type: IAT modification 0x768E13B4-->00000000 [AcGenral.dll]
[3048]YahooAUService.exe-->shell32.dll-->kernel32.dll-->GetProcAddress, Type: IAT modification 0x768E1414-->00000000 [shimeng.dll]
[3048]YahooAUService.exe-->shell32.dll-->kernel32.dll-->MoveFileExW, Type: IAT modification 0x768E13C0-->00000000 [AcGenral.dll]
[3048]YahooAUService.exe-->shell32.dll-->kernel32.dll-->MoveFileW, Type: IAT modification 0x768E130C-->00000000 [AcGenral.dll]
[3048]YahooAUService.exe-->shell32.dll-->kernel32.dll-->SetFileAttributesW, Type: IAT modification 0x768E13B8-->00000000 [AcGenral.dll]
[3048]YahooAUService.exe-->user32.dll-->advapi32.dll-->RegCreateKeyExW, Type: IAT modification 0x77D51548-->00000000 [AcGenral.dll]
[3048]YahooAUService.exe-->user32.dll-->advapi32.dll-->RegOpenKeyExW, Type: IAT modification 0x77D51528-->00000000 [AcGenral.dll]
[3048]YahooAUService.exe-->user32.dll-->advapi32.dll-->RegSetValueExW, Type: IAT modification 0x77D51550-->00000000 [AcGenral.dll]
[3048]YahooAUService.exe-->user32.dll-->kernel32.dll-->CopyFileW, Type: IAT modification 0x77D511A8-->00000000 [AcGenral.dll]
[3048]YahooAUService.exe-->user32.dll-->kernel32.dll-->CreateFileW, Type: IAT modification 0x77D512B8-->00000000 [AcGenral.dll]
[3048]YahooAUService.exe-->user32.dll-->kernel32.dll-->DeleteFileW, Type: IAT modification 0x77D511B0-->00000000 [AcGenral.dll]
[3048]YahooAUService.exe-->user32.dll-->kernel32.dll-->GetProcAddress, Type: IAT modification 0x77D51300-->00000000 [shimeng.dll]
[3048]YahooAUService.exe-->user32.dll-->kernel32.dll-->MoveFileW, Type: IAT modification 0x77D511AC-->00000000 [AcGenral.dll]
[3048]YahooAUService.exe-->ws2_32.dll-->advapi32.dll-->RegCreateKeyExA, Type: IAT modification 0x4B0D1104-->00000000 [AcGenral.dll]
[3048]YahooAUService.exe-->ws2_32.dll-->advapi32.dll-->RegOpenKeyExA, Type: IAT modification 0x4B0D110C-->00000000 [AcGenral.dll]
[3048]YahooAUService.exe-->ws2_32.dll-->advapi32.dll-->RegSetValueExA, Type: IAT modification 0x4B0D1114-->00000000 [AcGenral.dll]
[3048]YahooAUService.exe-->ws2_32.dll-->advapi32.dll-->RegSetValueExW, Type: IAT modification 0x4B0D1110-->00000000 [AcGenral.dll]
[3048]YahooAUService.exe-->ws2_32.dll-->kernel32.dll-->GetProcAddress, Type: IAT modification 0x4B0D11E8-->00000000 [shimeng.dll]
[3536]MCPLaunch.exe-->advapi32.dll-->kernel32.dll-->GetProcAddress, Type: IAT modification 0x77C814BC-->00000000 [shimeng.dll]
[3536]MCPLaunch.exe-->gdi32.dll-->kernel32.dll-->GetProcAddress, Type: IAT modification 0x77B61170-->00000000 [shimeng.dll]
[3536]MCPLaunch.exe-->shell32.dll-->kernel32.dll-->GetProcAddress, Type: IAT modification 0x768E1414-->00000000 [shimeng.dll]
[3536]MCPLaunch.exe-->user32.dll-->kernel32.dll-->GetProcAddress, Type: IAT modification 0x77D51300-->00000000 [shimeng.dll]
[5976]SUService.exe-->advapi32.dll-->kernel32.dll-->CopyFileW, Type: IAT modification 0x77C8151C-->00000000 [AcGenral.dll]
[5976]SUService.exe-->advapi32.dll-->kernel32.dll-->CreateFileW, Type: IAT modification 0x77C816D0-->00000000 [AcGenral.dll]
[5976]SUService.exe-->advapi32.dll-->kernel32.dll-->DeleteFileW, Type: IAT modification 0x77C81664-->00000000 [AcGenral.dll]
[5976]SUService.exe-->advapi32.dll-->kernel32.dll-->GetProcAddress, Type: IAT modification 0x77C814BC-->00000000 [shimeng.dll]
[5976]SUService.exe-->advapi32.dll-->kernel32.dll-->MoveFileW, Type: IAT modification 0x77C81668-->00000000 [AcGenral.dll]
[5976]SUService.exe-->advapi32.dll-->kernel32.dll-->OpenFile, Type: IAT modification 0x77C81514-->00000000 [AcGenral.dll]
[5976]SUService.exe-->gdi32.dll-->kernel32.dll-->CopyFileW, Type: IAT modification 0x77B61130-->00000000 [AcGenral.dll]
[5976]SUService.exe-->gdi32.dll-->kernel32.dll-->CreateFileW, Type: IAT modification 0x77B6119C-->00000000 [AcGenral.dll]
[5976]SUService.exe-->gdi32.dll-->kernel32.dll-->DeleteFileW, Type: IAT modification 0x77B611BC-->00000000 [AcGenral.dll]
[5976]SUService.exe-->gdi32.dll-->kernel32.dll-->GetProcAddress, Type: IAT modification 0x77B61170-->00000000 [shimeng.dll]
[5976]SUService.exe-->shell32.dll-->advapi32.dll-->AccessCheck, Type: IAT modification 0x768E1C04-->00000000 [AcGenral.dll]
[5976]SUService.exe-->shell32.dll-->advapi32.dll-->RegCreateKeyExW, Type: IAT modification 0x768E1B34-->00000000 [AcGenral.dll]
[5976]SUService.exe-->shell32.dll-->advapi32.dll-->RegCreateKeyW, Type: IAT modification 0x768E1CB8-->00000000 [AcGenral.dll]
[5976]SUService.exe-->shell32.dll-->advapi32.dll-->RegDeleteValueW, Type: IAT modification 0x768E1B54-->00000000 [AcGenral.dll]
[5976]SUService.exe-->shell32.dll-->advapi32.dll-->RegOpenKeyExA, Type: IAT modification 0x768E1CFC-->00000000 [AcGenral.dll]
[5976]SUService.exe-->shell32.dll-->advapi32.dll-->RegOpenKeyExW, Type: IAT modification 0x768E1B2C-->00000000 [AcGenral.dll]
[5976]SUService.exe-->shell32.dll-->advapi32.dll-->RegSetValueExW, Type: IAT modification 0x768E1B30-->00000000 [AcGenral.dll]
[5976]SUService.exe-->shell32.dll-->advapi32.dll-->RegSetValueW, Type: IAT modification 0x768E1B74-->00000000 [AcGenral.dll]
[5976]SUService.exe-->shell32.dll-->advapi32.dll-->SetFileSecurityW, Type: IAT modification 0x768E1CC8-->00000000 [AcGenral.dll]
[5976]SUService.exe-->shell32.dll-->kernel32.dll-->CopyFileW, Type: IAT modification 0x768E125C-->00000000 [AcGenral.dll]
[5976]SUService.exe-->shell32.dll-->kernel32.dll-->CreateFileW, Type: IAT modification 0x768E1460-->00000000 [AcGenral.dll]
[5976]SUService.exe-->shell32.dll-->kernel32.dll-->DeleteFileW, Type: IAT modification 0x768E13B4-->00000000 [AcGenral.dll]
[5976]SUService.exe-->shell32.dll-->kernel32.dll-->GetProcAddress, Type: IAT modification 0x768E1414-->00000000 [shimeng.dll]
[5976]SUService.exe-->shell32.dll-->kernel32.dll-->MoveFileExW, Type: IAT modification 0x768E13C0-->00000000 [AcGenral.dll]
[5976]SUService.exe-->shell32.dll-->kernel32.dll-->MoveFileW, Type: IAT modification 0x768E130C-->00000000 [AcGenral.dll]
[5976]SUService.exe-->shell32.dll-->kernel32.dll-->SetFileAttributesW, Type: IAT modification 0x768E13B8-->00000000 [AcGenral.dll]
[5976]SUService.exe-->user32.dll-->advapi32.dll-->RegCreateKeyExW, Type: IAT modification 0x77D51548-->00000000 [AcGenral.dll]
[5976]SUService.exe-->user32.dll-->advapi32.dll-->RegOpenKeyExW, Type: IAT modification 0x77D51528-->00000000 [AcGenral.dll]
[5976]SUService.exe-->user32.dll-->advapi32.dll-->RegSetValueExW, Type: IAT modification 0x77D51550-->00000000 [AcGenral.dll]
[5976]SUService.exe-->user32.dll-->kernel32.dll-->CopyFileW, Type: IAT modification 0x77D511A8-->00000000 [AcGenral.dll]
[5976]SUService.exe-->user32.dll-->kernel32.dll-->CreateFileW, Type: IAT modification 0x77D512B8-->00000000 [AcGenral.dll]
[5976]SUService.exe-->user32.dll-->kernel32.dll-->DeleteFileW, Type: IAT modification 0x77D511B0-->00000000 [AcGenral.dll]
[5976]SUService.exe-->user32.dll-->kernel32.dll-->GetProcAddress, Type: IAT modification 0x77D51300-->00000000 [shimeng.dll]
[5976]SUService.exe-->user32.dll-->kernel32.dll-->MoveFileW, Type: IAT modification 0x77D511AC-->00000000 [AcGenral.dll]
[5976]SUService.exe-->ws2_32.dll-->advapi32.dll-->RegCreateKeyExA, Type: IAT modification 0x4B0D1104-->00000000 [AcGenral.dll]
[5976]SUService.exe-->ws2_32.dll-->advapi32.dll-->RegOpenKeyExA, Type: IAT modification 0x4B0D110C-->00000000 [AcGenral.dll]
[5976]SUService.exe-->ws2_32.dll-->advapi32.dll-->RegSetValueExA, Type: IAT modification 0x4B0D1114-->00000000 [AcGenral.dll]
[5976]SUService.exe-->ws2_32.dll-->advapi32.dll-->RegSetValueExW, Type: IAT modification 0x4B0D1110-->00000000 [AcGenral.dll]
[5976]SUService.exe-->ws2_32.dll-->kernel32.dll-->GetProcAddress, Type: IAT modification 0x4B0D11E8-->00000000 [shimeng.dll]
[6496]chrome.exe-->kernel32.dll+0x000C0DF8, Type: Inline - PushRet 0x774F0DF8-->00000000 [unknown_code_page]
[6496]chrome.exe-->ntdll.dll-->NtOpenProcessToken, Type: Inline - RelativeCall 0x77AB4C4A-->00000000 [shell32.dll]
[6496]chrome.exe-->ntdll.dll-->NtOpenThreadTokenEx, Type: Inline - RelativeCall 0x77AB4CCA-->00000000 [shell32.dll]
[6496]chrome.exe-->ntdll.dll-->NtQueryFullAttributesFile, Type: Inline - RelativeCall 0x77AB4E0A-->00000000 [shell32.dll]
--------------------------------------------------------------------------------------------------------------------
nerutosako
Regular Member
 
Posts: 26
Joined: December 23rd, 2010, 2:22 pm

Re: Need help for "EPOCLICL VIRUS" and Google-analytics

Unread postby nerutosako » December 30th, 2010, 1:06 pm

MRBcheck report :

MBRCheck, version 1.2.3
(c) 2010, AD

Command-line:
Windows Version: Windows Vista Business Edition
Windows Information: Service Pack 2 (build 6002), 32-bit
Base Board Manufacturer: LENOVO
BIOS Manufacturer: LENOVO
System Manufacturer: LENOVO
System Product Name: 2081CTO
Logical Drives Mask: 0x00050004

Kernel Drivers (total 180):
0x8223A000 \SystemRoot\system32\ntkrnlpa.exe
0x82207000 \SystemRoot\system32\hal.dll
0x80400000 \SystemRoot\system32\kdcom.dll
0x80407000 \SystemRoot\system32\mcupdate_GenuineIntel.dll
0x80477000 \SystemRoot\system32\PSHED.dll
0x80488000 \SystemRoot\system32\BOOTVID.dll
0x80490000 \SystemRoot\system32\CLFS.SYS
0x804D1000 \SystemRoot\system32\CI.dll
0x80603000 \SystemRoot\system32\drivers\Wdf01000.sys
0x80674000 \SystemRoot\system32\drivers\WDFLDR.SYS
0x80682000 \SystemRoot\system32\drivers\acpi.sys
0x806C8000 \SystemRoot\system32\drivers\WMILIB.SYS
0x806D1000 \SystemRoot\system32\drivers\msisadrv.sys
0x806D9000 \SystemRoot\system32\drivers\pci.sys
0x80700000 \SystemRoot\System32\drivers\partmgr.sys
0x8070F000 \SystemRoot\system32\DRIVERS\compbatt.sys
0x80712000 \SystemRoot\system32\DRIVERS\BATTC.SYS
0x8071C000 \SystemRoot\system32\drivers\volmgr.sys
0x8072B000 \SystemRoot\System32\drivers\volmgrx.sys
0x80775000 \SystemRoot\system32\DRIVERS\pcmcia.sys
0x807A2000 \SystemRoot\System32\drivers\mountmgr.sys
0x82C0A000 \SystemRoot\system32\DRIVERS\iaStor.sys
0x82CE5000 \SystemRoot\system32\drivers\atapi.sys
0x82CED000 \SystemRoot\system32\drivers\ataport.SYS
0x82D0B000 \SystemRoot\system32\drivers\msahci.sys
0x82D15000 \SystemRoot\system32\drivers\PCIIDEX.SYS
0x82D23000 \SystemRoot\system32\drivers\fltmgr.sys
0x82D55000 \SystemRoot\system32\drivers\fileinfo.sys
0x82D65000 \SystemRoot\System32\Drivers\DRVMCDB.SYS
0x82D7C000 \SystemRoot\System32\Drivers\PxHelp20.sys
0x82D86000 \SystemRoot\System32\Drivers\ksecdd.sys
0x82E0D000 \SystemRoot\system32\drivers\ndis.sys
0x82F18000 \SystemRoot\system32\drivers\msrpc.sys
0x82F43000 \SystemRoot\system32\drivers\NETIO.SYS
0x87E08000 \SystemRoot\System32\Drivers\Ntfs.sys
0x87F18000 \SystemRoot\system32\drivers\volsnap.sys
0x87F51000 \SystemRoot\System32\DRIVERS\ApsHM86.sys
0x87F5A000 \SystemRoot\System32\Drivers\spldr.sys
0x87F62000 \SystemRoot\System32\DRIVERS\Apsx86.sys
0x87F82000 \SystemRoot\System32\Drivers\mup.sys
0x87F91000 \SystemRoot\System32\drivers\ecache.sys
0x87FB8000 \SystemRoot\system32\drivers\disk.sys
0x87FC9000 \SystemRoot\system32\drivers\CLASSPNP.SYS
0x87FEA000 \SystemRoot\system32\drivers\crcdisk.sys
0x8C0E4000 \SystemRoot\system32\DRIVERS\tunnel.sys
0x8C0EF000 \SystemRoot\system32\DRIVERS\tunmp.sys
0x8C0F8000 \SystemRoot\system32\DRIVERS\intelppm.sys
0x8C400000 \SystemRoot\system32\DRIVERS\atikmdag.sys
0x8CA0A000 \SystemRoot\system32\DRIVERS\igdkmd32.sys
0x8D0EE000 \SystemRoot\System32\drivers\dxgkrnl.sys
0x8D18F000 \SystemRoot\System32\drivers\watchdog.sys
0x8D19B000 \SystemRoot\system32\DRIVERS\atikmpag.sys
0x8D1AE000 \SystemRoot\system32\DRIVERS\HECI.sys
0x8D1B8000 \SystemRoot\system32\DRIVERS\e1y6032.sys
0x8D1F2000 \SystemRoot\system32\DRIVERS\usbuhci.sys
0x8C9A0000 \SystemRoot\system32\DRIVERS\USBPORT.SYS
0x8C9DE000 \SystemRoot\system32\DRIVERS\usbehci.sys
0x8C11A000 \SystemRoot\system32\DRIVERS\HDAudBus.sys
0x8D201000 \SystemRoot\system32\DRIVERS\NETw5v32.sys
0x8D596000 \SystemRoot\system32\DRIVERS\ohci1394.sys
0x8D5A6000 \SystemRoot\system32\DRIVERS\1394BUS.SYS
0x8D5B4000 \SystemRoot\system32\DRIVERS\sdbus.sys
0x8D5CE000 \SystemRoot\system32\DRIVERS\rimmptsk.sys
0x8D5DF000 \SystemRoot\system32\DRIVERS\rimsptsk.sys
0x8C1A7000 \SystemRoot\system32\DRIVERS\rixdptsk.sys
0x8C9ED000 \SystemRoot\system32\DRIVERS\i8042prt.sys
0x8D5F3000 \SystemRoot\system32\DRIVERS\kbdclass.sys
0x82F7E000 \SystemRoot\system32\DRIVERS\SynTP.sys
0x8D5FE000 \SystemRoot\system32\DRIVERS\USBD.SYS
0x8C107000 \SystemRoot\system32\DRIVERS\mouclass.sys
0x82FAF000 \SystemRoot\system32\drivers\tpm.sys
0x8CA00000 \SystemRoot\system32\DRIVERS\CmBatt.sys
0x8CA04000 \SystemRoot\system32\DRIVERS\ibmpmdrv.sys
0x8D1FD000 \SystemRoot\System32\Drivers\DLACDBHM.SYS
0x8C000000 \SystemRoot\system32\DRIVERS\wmiacpi.sys
0x8C112000 \SystemRoot\system32\DRIVERS\wacomvhid.sys
0x82FD5000 \SystemRoot\system32\DRIVERS\HIDCLASS.SYS
0x8C1F9000 \SystemRoot\system32\DRIVERS\HIDPARSE.SYS
0x8C114000 \SystemRoot\system32\DRIVERS\WacomVKHid.sys
0x807B2000 \SystemRoot\system32\DRIVERS\msiscsi.sys
0x805B1000 \SystemRoot\system32\DRIVERS\storport.sys
0x82FE5000 \SystemRoot\system32\DRIVERS\TDI.SYS
0x807E1000 \SystemRoot\system32\DRIVERS\rasl2tp.sys
0x8D80E000 \SystemRoot\system32\DRIVERS\mux.sys
0x8D85D000 \SystemRoot\system32\DRIVERS\ndistapi.sys
0x8D868000 \SystemRoot\system32\DRIVERS\ndiswan.sys
0x8D88B000 \SystemRoot\system32\DRIVERS\raspppoe.sys
0x8D89A000 \SystemRoot\system32\DRIVERS\raspptp.sys
0x8D8AE000 \SystemRoot\system32\DRIVERS\rassstp.sys
0x8D8C3000 \SystemRoot\system32\DRIVERS\rdpdr.sys
0x8D94C000 \SystemRoot\system32\DRIVERS\termdd.sys
0x8D95C000 \SystemRoot\system32\DRIVERS\psadd.sys
0x8D962000 \SystemRoot\system32\DRIVERS\Tvti2c.sys
0x8D96A000 \SystemRoot\system32\DRIVERS\swenum.sys
0x8D96C000 \SystemRoot\system32\DRIVERS\ks.sys
0x8D996000 \SystemRoot\system32\DRIVERS\mssmbios.sys
0x8D9A0000 \SystemRoot\system32\DRIVERS\umbus.sys
0x8D9AD000 \SystemRoot\system32\DRIVERS\usbhub.sys
0x8D9E2000 \SystemRoot\system32\DRIVERS\mouhid.sys
0x8D9EA000 \SystemRoot\system32\DRIVERS\wacommousefilter.sys
0x8D9F2000 \SystemRoot\system32\DRIVERS\kbdhid.sys
0x90809000 \SystemRoot\System32\Drivers\NDProxy.SYS
0x90823000 \SystemRoot\system32\drivers\CHDRT32.sys
0x90898000 \SystemRoot\system32\drivers\portcls.sys
0x908C5000 \SystemRoot\system32\drivers\drmk.sys
0x908EA000 \SystemRoot\system32\DRIVERS\HSXHWAZL.sys
0x90A0A000 \SystemRoot\system32\DRIVERS\HSX_DPV.sys
0x90B0C000 \SystemRoot\system32\DRIVERS\HSX_CNXT.sys
0x90BC1000 \SystemRoot\system32\drivers\modem.sys
0x90BCE000 \SystemRoot\system32\DRIVERS\MpFilter.sys
0x90A00000 \SystemRoot\System32\Drivers\Fs_Rec.SYS
0x90BF1000 \SystemRoot\System32\Drivers\Null.SYS
0x90BF8000 \SystemRoot\System32\Drivers\Beep.SYS
0x90927000 \SystemRoot\System32\Drivers\DLARTL_M.SYS
0x9092D000 \SystemRoot\System32\drivers\vga.sys
0x90939000 \SystemRoot\System32\drivers\VIDEOPRT.SYS
0x9095A000 \SystemRoot\System32\DRIVERS\RDPCDD.sys
0x90962000 \SystemRoot\system32\drivers\rdpencdd.sys
0x9096A000 \SystemRoot\System32\Drivers\Msfs.SYS
0x90975000 \SystemRoot\System32\Drivers\Npfs.SYS
0x90983000 \SystemRoot\System32\DRIVERS\rasacd.sys
0x90C00000 \SystemRoot\System32\drivers\tcpip.sys
0x90CEA000 \SystemRoot\System32\drivers\fwpkclnt.sys
0x90D05000 \SystemRoot\system32\DRIVERS\tdx.sys
0x90D1B000 \SystemRoot\system32\DRIVERS\smb.sys
0x90D2F000 \SystemRoot\System32\DRIVERS\netbt.sys
0x90D61000 \SystemRoot\system32\drivers\afd.sys
0x90DA9000 \SystemRoot\system32\DRIVERS\pacer.sys
0x90DBF000 \SystemRoot\system32\DRIVERS\netbios.sys
0x90DCD000 \SystemRoot\system32\DRIVERS\wanarp.sys
0x90DE0000 \SystemRoot\System32\drivers\Tppwr32v.sys
0x9098C000 \SystemRoot\system32\DRIVERS\rdbss.sys
0x90DE7000 \SystemRoot\system32\drivers\nsiproxy.sys
0x90DF1000 \SystemRoot\system32\DRIVERS\smiif32.sys
0x90E0E000 \SystemRoot\system32\drivers\csc.sys
0x90E69000 \SystemRoot\System32\Drivers\dfsc.sys
0x90E80000 \SystemRoot\System32\Drivers\crashdmp.sys
0x90E8D000 \SystemRoot\System32\Drivers\dump_iaStor.sys
0x81AA0000 \SystemRoot\System32\win32k.sys
0x90F68000 \SystemRoot\System32\drivers\Dxapi.sys
0x90F72000 \SystemRoot\system32\DRIVERS\monitor.sys
0x81CC0000 \SystemRoot\System32\TSDDD.dll
0x90F81000 \SystemRoot\system32\drivers\luafv.sys
0x90F9C000 \SystemRoot\system32\DRIVERS\tvtfilter.sys
0x90FA5000 \SystemRoot\System32\Drivers\DRVNDDM.SYS
0x90FB0000 \SystemRoot\System32\DLA\DLADResM.SYS
0x90FB1000 \SystemRoot\System32\DLA\DLAIFS_M.SYS
0x90FC9000 \SystemRoot\System32\DLA\DLAOPIOM.SYS
0x90FCE000 \SystemRoot\System32\DLA\DLAPoolM.SYS
0x90FD0000 \SystemRoot\system32\drivers\WudfPf.sys
0x90FEA000 \SystemRoot\System32\DLA\DLABMFSM.SYS
0x90FF1000 \SystemRoot\System32\DLA\DLABOIOM.SYS
0x909C8000 \SystemRoot\System32\DLA\DLAUDFAM.SYS
0x909DE000 \SystemRoot\System32\DLA\DLAUDF_M.SYS
0x8C009000 \SystemRoot\system32\drivers\spsys.sys
0x8C0B9000 \SystemRoot\system32\DRIVERS\lltdio.sys
0xADE00000 \SystemRoot\system32\DRIVERS\nwifi.sys
0xADE2A000 \SystemRoot\system32\DRIVERS\ndisuio.sys
0xADE34000 \SystemRoot\system32\DRIVERS\rspndr.sys
0xADE47000 \SystemRoot\system32\drivers\HTTP.sys
0xADEB4000 \SystemRoot\System32\DRIVERS\srvnet.sys
0xADED1000 \SystemRoot\system32\DRIVERS\bowser.sys
0xADEEA000 \SystemRoot\System32\drivers\mpsdrv.sys
0xADEFF000 \SystemRoot\system32\drivers\mrxdav.sys
0xADF20000 \SystemRoot\system32\DRIVERS\mrxsmb.sys
0xADF3F000 \SystemRoot\system32\DRIVERS\mrxsmb10.sys
0xADF78000 \SystemRoot\system32\DRIVERS\mrxsmb20.sys
0xADF90000 \SystemRoot\System32\DRIVERS\srv2.sys
0xAF408000 \SystemRoot\System32\DRIVERS\srv.sys
0xAF46E000 \SystemRoot\system32\DRIVERS\MpNWMon.sys
0xAF477000 \SystemRoot\system32\DRIVERS\mdmxsdk.sys
0xAF47B000 \SystemRoot\system32\drivers\peauth.sys
0xAF559000 \SystemRoot\System32\Drivers\secdrv.SYS
0xAF563000 \SystemRoot\System32\drivers\tcpipreg.sys
0xAF56F000 \SystemRoot\system32\DRIVERS\xaudio.sys
0x81CF0000 \SystemRoot\System32\cdd.dll
0xAF577000 \SystemRoot\system32\DRIVERS\cdfs.sys
0xAF58D000 \??\C:\Users\1\AppData\Local\Temp\ugrdqpoc.sys
0xAF5D5000 \SystemRoot\System32\Drivers\Normandy.SYS
0x77A50000 \Windows\System32\ntdll.dll

Processes (total 112):
0 System Idle Process
4 System
556 C:\Windows\System32\smss.exe
676 csrss.exe
712 C:\Windows\System32\wininit.exe
732 csrss.exe
764 C:\Windows\System32\services.exe
776 C:\Windows\System32\lsass.exe
784 C:\Windows\System32\lsm.exe
872 C:\Windows\System32\winlogon.exe
976 C:\Windows\System32\svchost.exe
1040 C:\Windows\System32\ibmpmsvc.exe
1100 C:\Windows\System32\svchost.exe
1152 C:\Program Files\Microsoft Security Essentials\MsMpEng.exe
1320 C:\Windows\System32\svchost.exe
1372 C:\Windows\System32\svchost.exe
1384 C:\Windows\System32\svchost.exe
1524 C:\Windows\System32\audiodg.exe
1548 C:\Windows\System32\svchost.exe
1592 C:\Windows\System32\SLsvc.exe
1636 C:\Windows\System32\svchost.exe
1796 C:\Windows\System32\wisptis.exe
1808 C:\Program Files\Common Files\microsoft shared\ink\TabTip.exe
1928 C:\Windows\System32\svchost.exe
420 C:\Windows\System32\wlanext.exe
648 C:\Windows\System32\spoolsv.exe
816 C:\Windows\System32\svchost.exe
2092 C:\Program Files\Lenovo\HOTKEY\TPHKSVC.exe
2188 C:\Program Files\ThinkPad\ConnectUtilities\AcPrfMgrSvc.exe
2264 C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
2276 C:\Program Files\Microsoft Small Business\Business Contact Manager\BcmSqlStartupSvc.exe
2296 C:\Program Files\Bonjour\mDNSResponder.exe
2324 C:\Windows\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
2524 C:\Windows\System32\svchost.exe
2540 C:\Program Files\ThinkPad\Utilities\PWMDBSVC.exe
2632 C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
2648 C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
2684 C:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe
2716 C:\Windows\System32\svchost.exe
2788 C:\Windows\System32\Pen_Tablet.exe
2820 C:\Program Files\TeamViewer\Version6\TeamViewer_Service.exe
2848 C:\Program Files\Lenovo\Client Security Solution\tvttcsd.exe
2872 C:\Windows\System32\svchost.exe
2888 C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVC.EXE
2956 C:\Windows\System32\SearchIndexer.exe
3016 C:\Windows\System32\drivers\XAudio.exe
3048 C:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe
3132 C:\Program Files\ThinkPad\ConnectUtilities\AcSvc.exe
3448 C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVCM.EXE
3620 C:\Program Files\ThinkPad\ConnectUtilities\SvcGuiHlpr.exe
3972 C:\Windows\System32\wisptis.exe
3980 C:\Windows\System32\taskeng.exe
3992 C:\Program Files\Common Files\microsoft shared\ink\TabTip.exe
4052 C:\Windows\System32\dwm.exe
2240 C:\Windows\explorer.exe
2220 C:\Windows\System32\taskeng.exe
3432 C:\Windows\System32\WTablet\Pen_TabletUser.exe
3444 C:\Windows\System32\Pen_Tablet.exe
2120 C:\Program Files\ThinkPad\Utilities\EZEJMNAP.EXE
2184 C:\Program Files\Lenovo\NPDIRECT\tpfnf7sp.exe
1356 C:\Program Files\Lenovo\HOTKEY\TPOSDSVC.exe
1728 C:\Program Files\Lenovo\HOTKEY\tpfnf6r.exe
3708 C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
2088 C:\Windows\System32\Ati2evxx.exe
1296 C:\Windows\System32\Ati2evxx.exe
3772 C:\Windows\System32\igfxpers.exe
3460 C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
2932 C:\Program Files\Common Files\Lenovo\Scheduler\scheduler_proxy.exe
3336 C:\Program Files\ThinkVantage\PrdCtr\LPMGR.EXE
3896 C:\Program Files\ThinkVantage\PrdCtr\LPMLCHK.EXE
3536 C:\Program Files\Lenovo\Message Center Plus\MCPLaunch.exe
1304 C:\Program Files\Lenovo\HOTKEY\TPONSCR.exe
1172 C:\Windows\System32\rundll32.exe
1352 C:\Program Files\Lenovo\Client Security Solution\cssauth.exe
124 C:\Windows\WindowsMobile\wmdSync.exe
416 C:\Program Files\Common Files\Java\Java Update\jusched.exe
2676 C:\Program Files\Microsoft Security Essentials\msseces.exe
2156 C:\Program Files\Zune\ZuneLauncher.exe
4024 C:\Program Files\Lenovo\ZOOM\TpScrex.exe
4172 C:\Users\1\AppData\Local\Temp\Rar$EX00.575\UniKey 4.0.8 Final\UniKey.exe
4184 C:\Program Files\Windows Live\Messenger\msnmsgr.exe
4236 C:\Program Files\Digital Line Detect\DLG.exe
4524 C:\Windows\System32\wbem\unsecapp.exe
4560 C:\Windows\System32\svchost.exe
4612 WmiPrvSE.exe
5116 C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
5800 C:\Program Files\Common Files\InterVideo\RegMgr\iviRegMgr.exe
5896 C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
5976 C:\Program Files\Lenovo\System Update\SUService.exe
1292 C:\Program Files\Common Files\microsoft shared\ink\InputPersonalization.exe
4476 C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
2928 C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
4924 C:\Program Files\Common Files\Lenovo\tvt_reg_monitor_svc.exe
5024 C:\Windows\System32\TPHDEXLG.exe
4672 C:\Program Files\Lenovo\Rescue and Recovery\rrpservice.exe
5296 C:\Program Files\Lenovo\Rescue and Recovery\rrservice.exe
3332 C:\Program Files\Common Files\Lenovo\Scheduler\tvtsched.exe
2912 C:\PROGRA~1\ThinkPad\UTILIT~1\PWMUIAux.EXE
5384 C:\Users\1\AppData\Local\Google\Chrome\Application\chrome.exe
3032 C:\Windows\System32\wuauclt.exe
5780 C:\Windows\System32\igfxsrvc.exe
616 C:\Users\1\AppData\Local\Google\Chrome\Application\chrome.exe
6496 C:\Users\1\AppData\Local\Google\Chrome\Application\chrome.exe
6692 C:\Program Files\Common Files\Real\Update_OB\realsched.exe
6332 RKUnhookerLE.EXE
4340 C:\Users\1\AppData\Local\Google\Chrome\Application\chrome.exe
7728 C:\Windows\System32\SearchProtocolHost.exe
6700 C:\Windows\System32\SearchFilterHost.exe
7572 dllhost.exe
5532 dllhost.exe
6456 C:\Users\1\Desktop\MBRCheck.exe
4696 C:\Windows\System32\conime.exe

\\.\C: --> \\.\PhysicalDrive0 at offset 0x00000000`5dd00000 (NTFS)
\\.\Q: --> \\.\PhysicalDrive0 at offset 0x00000037`c7a00000 (NTFS)
\\.\S: --> \\.\PhysicalDrive0 at offset 0x00000000`00100000 (NTFS)

PhysicalDrive0 Model Number: WDCWD2500BEVS-08VAT2, Rev: 14.01A14

Size Device Name MBR Status
--------------------------------------------
232 GB \\.\PhysicalDrive0 Unknown MBR code
SHA1: C8D9927AC27E1B307B2C14EF6832939FBAEA3800


Found non-standard or infected MBR.
Enter 'Y' and hit ENTER for more options, or 'N' to exit:

Done!
nerutosako
Regular Member
 
Posts: 26
Joined: December 23rd, 2010, 2:22 pm

Re: Need help for "EPOCLICL VIRUS" and Google-analytics

Unread postby Airscape » December 30th, 2010, 3:45 pm

Hello,

MBRBackup
Download MBRBackup to your Desktop.
http://www.misec.net/products/MBRBackup.exe
  • Right-click MBRBackup.exe and select " Run as administrator " to run it.
  • Click SaveMBR (top left corner) and save the backup file to your Desktop.
  • It will have a name similar to MBR_2010-10-06.bin where the numbers correspond to the date the backup was made.
  • Exit the program.
-------------------------------------------------
Analyze file(s).
Please visit Virustotal.

Click on browse > navigate to the MBR_2010-xx-xx.bin backup file > Click Open:

  • Press Send File - this will submit the file for testing.
  • Please wait for all the scanners to finish then copy and paste the permalink (web address) in your next response.
Example of web address :
Image
User avatar
Airscape
Regular Member
 
Posts: 1858
Joined: November 1st, 2008, 11:06 pm
Advertisement
Register to Remove

Next

  • Similar Topics
    Replies
    Views
    Last post

Return to Infected? Virus, malware, adware, ransomware, oh my!



Who is online

Users browsing this forum: No registered users and 29 guests

Contact us:

Advertisements do not imply our endorsement of that product or service. Register to remove all ads. The forum is run by volunteers who donate their time and expertise. We make every attempt to ensure that the help and advice posted is accurate and will not cause harm to your computer. However, we do not guarantee that they are accurate and they are to be used at your own risk. All trademarks are the property of their respective owners.

Member site: UNITE Against Malware