Se connecter / S'enregistrer
Votre question

infecte par srosa.sys

Tags :
  • Logiciels
  • Sécurité
Dernière réponse : dans Sécurité et virus
7 Avril 2008 03:12:06

Bonjour,

Depuis que j'ai telecharge un logiciel a chaque demarrage de mon ordinateur j'ai avast qui me crie qu'il a trouve "srosa.sys". Bien entendu je le met tout de suite en quarantaine mais apparement ca ne marche pas. Et encore le firewall d'XP est desactive et je ne peux plus lancer spybot. Que ce passe t-il ? Pouvez vous m'aider s'il vous plait ?

Merci d'avance

Autres pages sur : infecte srosa sys

7 Avril 2008 10:00:48

Salut,

Tu es infecté par Bagle.

Télécharge ELIBAGLA au bas de cette page. Il est préférable pour certains antivirus de les désactiver avant d'entâmer cette procédure !

Clique sur le Descargar Elibagla afin de télécharger le fichier, enregistre-le sur ton bureau.
Lance le en double cliquant dessus.
Vérifie que dans le menu déroulant Unidad, il y ait bien la racine de la racine de la partition où est installé Windows, généralement -> C:\
L'option Eliminar Ficheros Automaticamente doit également être cochée.
Clique sur Explorar pour lancer l'analyse.
Poste le rapport généré en fin fin d'analyse.
7 Avril 2008 13:43:04

Salut merci infiniment de m'avoir pris en charge.
Voici le rapport demande:


Mon Apr 07 13:39:17 2008
EliBagle v11.21 (c)2008 S.G.H. / Satinfo S.L.
----------------------------------------------
Lista de Acciones (por Acción Directa):
Por favor, envienos una muestra del fichero
C:\Muestras\WINTEMS.EXE.Muestra EliBagle v11.21
a "virus@satinfo.es". Gracias.
C:\WINDOWS\SYSTEM32\WINTEMS.EXE --> Bagle Renombrado a .VIR
C:\WINDOWS\SYSTEM32\BAN_LIST.TXT --> Eliminado Bagle
Por favor, envienos una muestra del fichero
C:\Muestras\HLDRRR.EXE.Muestra EliBagle v11.21
a "virus@satinfo.es". Gracias.
C:\WINDOWS\SYSTEM32\DRIVERS\HLDRRR.EXE --> Eliminado Bagle
Restaurada Clave: "SafeBoot\Minimal y Network"
Reinicie para Completar la Limpieza.

Mon Apr 07 13:39:59 2008
EliBagle v11.21 (c)2008 S.G.H. / Satinfo S.L.
----------------------------------------------
Lista de Acciones (por Exploración):
Explorando Unidad C:\

Nş Total de Directorios: 2106
Nş Total de Ficheros: 19791
Nş de Ficheros Analizados: 6074
Nş de Ficheros Infectados: 0
Nş de Ficheros Limpiados: 0
Contenus similaires
7 Avril 2008 18:55:33

Re,

Télécharge Combofix (de sUBs) sur ton Bureau. (Tuto)

Désactive temporairement toute protection résidente ! (Antivirus, antispywares..)
Double clique combofix.exe. (Clique droit->Exécuter en tant qu'administrateur si sous Vista)
Tape sur la touche 1 (Yes) pour démarrer le scan.
Lorsque le scan sera complété, un rapport apparaîtra. Poste ce rapport dans ta prochaine réponse.

Le rapport se trouve ici : C:\Combofix.txt
7 Avril 2008 20:57:53

J'ai un probleme; je n'arrive pas a lancer combofix.exe . Je double-clique dessus, une fenetre bleue apparait pendt un millieme de seconde et disparait aussitot. Pourtant j'ai bien desactive avast, firewall windows et j'ai ferme tous les programmes qui foncionnait an arriere plan. Que ce passe t-il ?
7 Avril 2008 21:01:15

Tente en mode sans échec.
7 Avril 2008 21:16:21

Rien a faire ca ne marche pas non plus.
7 Avril 2008 22:57:58

Bizarre ...
Repasse Elibagla en mode sans échec stp ;) 
7 Avril 2008 23:08:57

Voila le rapport Elibagle en mode sans echec:

Mon Apr 07 23:01:38 2008
EliBagle v11.21 (c)2008 S.G.H. / Satinfo S.L.
----------------------------------------------
Lista de Acciones (por Acción Directa):
C:\WINDOWS\SYSTEM32\WINTEMS.EXE.VIR --> Eliminado
C:\WINDOWS\SYSTEM32\BAN_LIST.TXT --> Eliminado Bagle

Mon Apr 07 23:01:46 2008
EliBagle v11.21 (c)2008 S.G.H. / Satinfo S.L.
----------------------------------------------
Lista de Acciones (por Exploración):
Explorando Unidad C:\

Nş Total de Directorios: 2153
Nş Total de Ficheros: 20128
Nş de Ficheros Analizados: 6099
Nş de Ficheros Infectados: 0
Nş de Ficheros Limpiados: 0
7 Avril 2008 23:10:23

Au fait, as-tu un rapport C:\Combofix.txt ?

Sinon on va devoir faire un nettoyage en mode sans échec :p 
7 Avril 2008 23:15:15

Non il n'y a pas de rapport "Combofix.txt" par contre j'ai un nouveau dossier C:\Combofix. Dedans il n'y a pas de document texte non plus.
7 Avril 2008 23:25:25

Sur d'autre forums j'ai vu qu'ils conseillent SDFix. Qu'en penses tu ?
7 Avril 2008 23:57:08

Cet outil n'a aucun rapport avec Bagle.
Fais un up. On tentera diverses manips pour faire partir définitivement Bagle ;) 
8 Avril 2008 00:11:38

euh j'ai pas saisi "faire un up" remonter le topic quoi ?
8 Avril 2008 06:57:37

C'est ça :) 
9 Avril 2008 23:33:29

Bon alors quelqu'un a une autre idee pour ce debarasser de ce Bagle ?
10 Avril 2008 18:06:04

Re,

Supprime Combofix.

Télécharge Combofix (de sUBs) sur ton Bureau. (Tuto)

Désactive temporairement toute protection résidente ! (Antivirus, antispywares..)
Double clique combofix.exe. (Clique droit->Exécuter en tant qu'administrateur si sous Vista)
Tape sur la touche 1 (Yes) pour démarrer le scan.
Lorsque le scan sera complété, un rapport apparaîtra. Poste ce rapport dans ta prochaine réponse.

Le rapport se trouve ici : C:\Combofix.txt

Renomme Combofix en Combo-Fix avant le téléchargement comme suit:
http://forum.pcastuces.com/sujet.asp?f=25&s=37315
11 Avril 2008 00:27:20

Mon gars t'es genial; ca a marche voici le rapport !

ComboFix 08-04-10.4 - Alex 2008-04-11 0:23:45.1 - NTFSx86
Microsoft Windows XP Professional 5.1.2600.2.1250.1.1045.18.2873 [GMT 2:00]
Running from: C:\Documents and Settings\Alex\Pulpit\Combo-Fixx.exe
* Created a new restore point

WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !!
.

((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.

C:\WINDOWS\system32\mdelk.exe
H:\Autorun.inf

.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.

-------\Legacy_SROSA


((((((((((((((((((((((((( Files Created from 2008-03-10 to 2008-04-10 )))))))))))))))))))))))))))))))
.

2008-04-10 23:13 . 2006-06-12 18:56 92,728 --a------ C:\WINDOWS\system32\bass.dll
2008-04-10 23:13 . 2007-06-10 21:29 37,057 --a------ C:\WINDOWS\system32\kbpDinput.dll
2008-04-10 23:13 . 2008-04-10 23:13 30,527 ---h----- C:\WINDOWS\system32\midwrap3402.deu
2008-04-10 23:13 . 2006-12-01 14:00 17,464 --a------ C:\WINDOWS\system32\bassmidi.dll
2008-04-10 23:13 . 2006-09-20 15:37 10,312 --a------ C:\WINDOWS\system32\bassmix.dll
2008-04-10 23:13 . 2008-04-10 23:14 44 --a------ C:\WINDOWS\Kbpiano2.ini
2008-04-10 23:10 . 2008-04-10 23:10 <DIR> d-------- C:\Documents and Settings\Alex\WINDOWS
2008-04-10 23:10 . 1998-02-06 22:37 299,520 --a------ C:\WINDOWS\uninst.exe
2008-04-08 23:59 . 2008-04-08 23:59 <DIR> d-------- C:\WINDOWS\system32\AGEIA
2008-04-08 23:59 . 2008-04-08 23:59 <DIR> d-------- C:\Program Files\Common Files\Wise Installation Wizard
2008-04-08 23:59 . 2008-04-09 00:00 <DIR> d-------- C:\Program Files\AGEIA Technologies
2008-04-08 23:44 . 2008-04-08 23:44 <DIR> d-------- C:\Documents and Settings\Alex\Dane aplikacji\DAEMON Tools
2008-04-08 22:44 . 2008-04-08 23:44 717,296 --a------ C:\WINDOWS\system32\drivers\sptd.sys
2008-04-07 23:19 . 2008-04-07 23:19 <DIR> d-------- C:\ComboFix
2008-04-07 21:05 . 2008-03-30 13:38 <DIR> d--h----- C:\Documents and Settings\Administrator\Ustawienia lokalne
2008-04-07 21:05 . 2008-03-30 13:38 <DIR> d-------- C:\Documents and Settings\Administrator\Ulubione
2008-04-07 21:05 . 2008-03-30 11:45 <DIR> d--h----- C:\Documents and Settings\Administrator\Szablony
2008-04-07 21:05 . 2008-04-11 00:19 <DIR> d-------- C:\Documents and Settings\Administrator\Pulpit
2008-04-07 21:05 . 2008-03-30 13:38 <DIR> d-------- C:\Documents and Settings\Administrator\Moje dokumenty
2008-04-07 21:05 . 2008-03-30 13:38 <DIR> dr------- C:\Documents and Settings\Administrator\Menu Start
2008-04-07 21:05 . 2008-03-30 13:38 <DIR> dr-h----- C:\Documents and Settings\Administrator\Dane aplikacji
2008-04-07 13:39 . 2008-04-07 13:39 <DIR> d-------- C:\Muestras
2008-04-07 02:32 . 2004-10-21 04:05 651,264 --a------ C:\WINDOWS\system32\drivers\mdelk.exe
2008-04-07 02:28 . 2008-04-07 03:05 <DIR> d-------- C:\WINDOWS\system32\drivers\downld
2008-04-07 00:14 . 2008-04-07 00:35 8 --a------ C:\WINDOWS\system32\SDGLYBMPWSN.SYS
2008-04-04 20:52 . 2008-04-04 20:52 <DIR> d-------- C:\Documents and Settings\All Users\Dane aplikacji\DVD Shrink
2008-04-04 07:12 . 2004-08-04 01:44 221,184 --a------ C:\WINDOWS\system32\wmpns.dll
2008-04-04 07:12 . 2008-04-10 19:06 69 --a------ C:\WINDOWS\NeroDigital.ini
2008-04-04 00:57 . 2008-04-04 00:57 <DIR> d-------- C:\WINDOWS\Sun
2008-04-04 00:54 . 2008-04-04 00:54 <DIR> d-------- C:\Program Files\AviSynth 2.5
2008-04-04 00:46 . 2000-05-22 22:58 608,448 --a------ C:\WINDOWS\system32\comctl32.ocx
2008-04-04 00:11 . 2008-04-04 00:11 <DIR> d-------- C:\WINDOWS\Mozilla
2008-04-03 23:23 . 2007-07-02 15:02 996,648 --a------ C:\WINDOWS\system32\ShellManager10E2D762.dll
2008-04-03 23:23 . 2007-07-02 14:19 638,976 --a------ C:\WINDOWS\system32\NEROINSTAEC43759.DB
2008-04-03 23:21 . 2008-04-03 23:21 <DIR> d-------- C:\Documents and Settings\All Users\Dane aplikacji\Ahead
2008-04-03 23:21 . 2008-04-03 23:25 <DIR> d-------- C:\Documents and Settings\Alex\Dane aplikacji\Ahead
2008-04-03 23:20 . 2008-04-03 23:20 <DIR> d-------- C:\Program Files\Common Files\Ahead
2008-04-03 23:20 . 2008-04-03 23:20 <DIR> d-------- C:\Documents and Settings\All Users\Dane aplikacji\Nero
2008-04-03 13:34 . 2008-04-03 13:34 <DIR> d-------- C:\WINDOWS\system32\XPSViewer
2008-04-03 13:34 . 2008-04-03 13:34 <DIR> d-------- C:\Program Files\Reference Assemblies
2008-04-03 13:34 . 2008-04-03 13:34 <DIR> d-------- C:\Program Files\MSBuild
2008-04-03 13:34 . 2006-06-29 13:07 14,048 --------- C:\WINDOWS\system32\spmsg2.dll
2008-04-03 13:33 . 2008-04-03 13:33 <DIR> d-------- C:\Program Files\MSXML 6.0
2008-04-03 12:21 . 2008-04-03 12:21 <DIR> d-------- C:\Documents and Settings\Alex\Dane aplikacji\Media Player Classic
2008-04-03 12:04 . 2008-03-05 15:56 3,786,760 --a------ C:\WINDOWS\system32\D3DX9_37.dll
2008-04-02 23:00 . 2008-04-02 23:00 <DIR> d-------- C:\Program Files\Microsoft Silverlight
2008-04-02 16:26 . 2008-04-02 16:26 <DIR> d-------- C:\Program Files\uTorrent
2008-04-02 16:26 . 2008-04-03 13:15 <DIR> d-------- C:\Documents and Settings\Alex\Dane aplikacji\uTorrent
2008-04-02 14:07 . 2008-04-02 14:07 359,040 --a------ C:\WINDOWS\system32\drivers\TCPIP.SYS.ORIGINAL
2008-04-01 14:29 . 2008-04-01 14:29 <DIR> d-------- C:\Program Files\Common Files\Hewlett-Packard
2008-04-01 14:12 . 2004-08-03 22:58 15,104 --a------ C:\WINDOWS\system32\drivers\usbscan.sys
2008-04-01 14:12 . 2004-08-03 22:58 15,104 --a--c--- C:\WINDOWS\system32\dllcache\usbscan.sys
2008-04-01 13:52 . 2004-09-29 12:12 278,584 --a------ C:\WINDOWS\system32\HPZidr12.dll
2008-04-01 13:52 . 2004-09-29 12:15 204,800 --a------ C:\WINDOWS\system32\HPZipr12.dll
2008-04-01 13:52 . 2004-09-29 12:09 94,208 --a------ C:\WINDOWS\system32\HPZipt12.dll
2008-04-01 13:52 . 2004-09-29 12:14 69,632 --a------ C:\WINDOWS\system32\HPZipm12.exe
2008-04-01 13:52 . 2004-09-29 12:08 61,440 --a------ C:\WINDOWS\system32\HPZinw12.exe
2008-04-01 13:52 . 2004-09-29 12:09 57,344 --a------ C:\WINDOWS\system32\HPZisn12.dll
2008-04-01 13:51 . 2008-04-01 13:52 <DIR> d-------- C:\Program Files\HP
2008-04-01 13:51 . 1998-10-29 16:45 306,688 --a------ C:\WINDOWS\IsUninst.exe
2008-04-01 13:51 . 2004-08-03 23:01 25,856 --a------ C:\WINDOWS\system32\drivers\usbprint.sys
2008-04-01 13:51 . 2004-08-03 23:01 25,856 --a--c--- C:\WINDOWS\system32\dllcache\usbprint.sys
2008-04-01 13:50 . 2008-04-01 13:50 <DIR> d-------- C:\temp\HP_WebRelease
2008-04-01 13:50 . 2008-04-03 23:13 <DIR> d-------- C:\temp
2008-04-01 13:50 . 2008-04-01 14:46 102,738 --a------ C:\WINDOWS\hpoins05.dat
2008-04-01 13:50 . 2005-06-22 06:50 17,505 --------- C:\WINDOWS\hpomdl07.dat
2008-03-31 21:16 . 2008-03-31 21:16 <DIR> d-------- C:\Program Files\Microsoft Works
2008-03-31 21:10 . 2008-03-31 21:10 <DIR> d-------- C:\WINDOWS\SHELLNEW
2008-03-31 21:10 . 2008-03-31 21:17 <DIR> d-------- C:\Documents and Settings\All Users\Dane aplikacji\Microsoft Help
2008-03-31 12:00 . 2008-03-31 12:00 <DIR> d-------- C:\Documents and Settings\All Users\Dane aplikacji\SiteAdvisor
2008-03-31 12:00 . 2008-03-31 12:00 <DIR> d-------- C:\Documents and Settings\All Users\Dane aplikacji\McAfee
2008-03-31 12:00 . 2008-04-11 00:22 <DIR> d-------- C:\Documents and Settings\Alex\Dane aplikacji\SiteAdvisor
2008-03-31 11:59 . 2008-03-31 11:59 <DIR> d--h----- C:\WINDOWS\$hf_mig$
2008-03-31 11:33 . 2008-04-02 15:16 <DIR> d-------- C:\Documents and Settings\Alex\Dane aplikacji\vlc
2008-03-30 22:38 . 2008-03-30 22:38 45 --a------ C:\WINDOWS\system32\initdebug.nfo
2008-03-30 21:53 . 2006-06-27 05:40 12,800 -----c--- C:\WINDOWS\system32\dllcache\WgaTray.exe
2008-03-30 21:53 . 2006-06-27 05:40 3,584 -----c--- C:\WINDOWS\system32\dllcache\WgaLogon.dll
2008-03-30 21:26 . 2008-03-30 21:26 <DIR> d-------- C:\Program Files\Common Files\Adobe
2008-03-30 21:20 . 2008-03-30 21:20 <DIR> d-------- C:\Program Files\Java
2008-03-30 21:20 . 2008-02-22 02:33 69,632 --a------ C:\WINDOWS\system32\javacpl.cpl
2008-03-30 21:17 . 2008-03-30 21:17 <DIR> d-------- C:\Program Files\Common Files\Java
2008-03-30 21:12 . 2008-04-10 23:27 <DIR> d-------- C:\Documents and Settings\Alex\Dane aplikacji\gtk-2.0
2008-03-30 21:01 . 2008-04-11 00:20 <DIR> d-------- C:\Documents and Settings\Alex\Dane aplikacji\.purple
2008-03-30 20:49 . 2008-03-30 20:53 <DIR> d-------- C:\Documents and Settings\All Users\Dane aplikacji\Spybot - Search & Destroy
2008-03-30 20:47 . 2008-03-30 20:47 <DIR> d-------- C:\Documents and Settings\Alex\Dane aplikacji\Talkback
2008-03-30 20:47 . 2008-03-30 20:47 0 --a------ C:\WINDOWS\nsreg.dat
2008-03-30 20:43 . 2008-03-30 20:43 <DIR> d-------- C:\Program Files\SAGEM
2008-03-30 12:19 . 2008-03-30 12:19 163,353 --a------ C:\WINDOWS\system32\nvapps.xml
2008-03-30 12:18 . 2008-03-30 12:18 <DIR> d-------- C:\WINDOWS\nview
2008-03-30 12:18 . 2008-03-30 12:18 <DIR> d-------- C:\NVIDIA
2008-03-30 12:18 . 2007-12-05 02:53 356,352 --a------ C:\WINDOWS\system32\NVUNINST.EXE
2008-03-30 12:18 . 2007-12-05 01:41 356,352 --a------ C:\WINDOWS\system32\nvudisp.exe
2008-03-30 12:18 . 2007-12-05 01:41 17,737 --a------ C:\WINDOWS\system32\nvdisp.nvu
2008-03-30 12:17 . 2004-08-03 23:08 26,496 --a--c--- C:\WINDOWS\system32\dllcache\usbstor.sys
2008-03-30 12:14 . 2008-03-30 12:14 <DIR> d-------- C:\WINDOWS\OPTIONS
2008-03-30 12:14 . 2008-03-30 12:14 <DIR> d-------- C:\Program Files\ASUS WiFi-AP Solo
2008-03-30 12:14 . 2006-06-16 09:30 176,128 --a------ C:\WINDOWS\system32\drivers\RTL8187.sys
2008-03-30 12:14 . 2008-03-30 12:14 21,035 --a------ C:\WINDOWS\system32\drivers\AegisP.sys
2008-03-30 12:14 . 2006-03-31 04:39 13,532 --a------ C:\WINDOWS\system32\drivers\SjyPkt.sys
2008-03-30 12:12 . 2008-03-30 12:12 <DIR> d-------- C:\Program Files\Marvell

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-04-10 22:20 --------- d-----w C:\Documents and Settings\Alex\Dane aplikacji\.purple
2008-04-02 12:07 359,040 ----a-w C:\WINDOWS\system32\drivers\TCPIP.SYS
2008-03-30 09:58 --------- d-----w C:\Program Files\Intel
2008-03-30 09:50 --------- d-----w C:\Program Files\microsoft frontpage
2008-03-30 09:48 --------- d-----w C:\Program Files\Usługi online
2008-03-29 17:35 94,544 ----a-w C:\WINDOWS\system32\drivers\aswmon2.sys
2008-03-29 17:35 20,560 ----a-w C:\WINDOWS\system32\drivers\aswFsBlk.sys
2008-03-29 17:31 75,856 ----a-w C:\WINDOWS\system32\drivers\aswSP.sys
2008-03-29 17:29 23,152 ----a-w C:\WINDOWS\system32\drivers\aswRdr.sys
2008-03-29 17:27 42,912 ----a-w C:\WINDOWS\system32\drivers\aswTdi.sys
2008-03-29 17:26 26,944 ----a-w C:\WINDOWS\system32\drivers\aavmker4.sys
2006-06-23 06:48 32,768 ----a-r C:\WINDOWS\inf\UpdateUSB.exe
2006-05-03 10:06 163,328 --sh--r C:\WINDOWS\system32\flvDX.dll
2007-02-21 11:47 31,232 --sh--r C:\WINDOWS\system32\msfDX.dll
2007-12-17 13:43 27,648 --sh--w C:\WINDOWS\system32\Smab0.dll
.

------- Sigcheck -------

2008-04-02 14:07 359040 6a603809f598332dbedd535bdbce313e C:\WINDOWS\system32\dllcache\TCPIP.SYS
2008-04-02 14:07 359040 6a603809f598332dbedd535bdbce313e C:\WINDOWS\system32\drivers\TCPIP.SYS
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-04 01:44 15360]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe" [2007-06-27 19:03 152872]
"DAEMON Tools Lite"="E:\Program Files\DAEMON Tools Lite\daemon.exe" [2008-04-01 11:39 486856]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SoundMAXPnP"="C:\Program Files\Analog Devices\Core\smax4pnp.exe" [2006-12-18 15:34 868352]
"SoundMAX"="C:\Program Files\Analog Devices\SoundMAX\Smax4.exe" [2006-07-13 07:12 729088]
"NvCplDaemon"="C:\WINDOWS\system32\NvCpl.dll" [2007-12-05 01:41 8523776]
"nwiz"="nwiz.exe" [2007-12-05 01:41 1626112 C:\WINDOWS\system32\nwiz.exe]
"NvMediaCenter"="C:\WINDOWS\system32\NvMcTray.dll" [2007-12-05 01:41 81920]
"NeroFilterCheck"="C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe" [2004-10-21 04:05 651264]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\CTFMON.EXE" [2004-08-04 01:44 15360]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sglfb.sys]
@="Driver"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\tga.sys]
@="Driver"

[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Menu Start^Programy^Autostart^ASUS WiFi-AP Solo.lnk]
path=C:\Documents and Settings\All Users\Menu Start\Programy\Autostart\ASUS WiFi-AP Solo.lnk
backup=C:\WINDOWS\pss\ASUS WiFi-AP Solo.lnkCommon Startup

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
--a------ 2007-05-11 13:06 40048 E:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SpybotSD TeaTimer]
-rahs---- 2008-01-28 11:43 2097488 E:\Program Files\Spybot - Search & Destroy\TeaTimer.exe

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"E:\\Program Files\\Mozilla Firefox\\firefox.exe"=
"C:\\Program Files\\HP\\Digital Imaging\\bin\\hpqscnvw.exe"=
"C:\\Program Files\\HP\\Digital Imaging\\bin\\hpqkygrp.exe"=
"E:\\Program Files\\eMule\\emule.exe"=
"C:\\Program Files\\uTorrent\\uTorrent.exe"=
"C:\\WINDOWS\\system32\\dpvsetup.exe"=
"C:\\WINDOWS\\system32\\rundll32.exe"=
"E:\\Program Files\\Ubisoft\\Lost Via Domus\\Yeti_Final_Win32.exe"=
"E:\\Program Files\\Ubisoft\\Lost Via Domus\\gu.exe"=
"E:\\Program Files\\Ubisoft\\Lost Via Domus\\detection\\Launcher.exe"=

R1 aswSP;avast! Self Protection;C:\WINDOWS\system32\drivers\aswSP.sys [2008-03-29 19:31]
R2 aswFsBlk;aswFsBlk;C:\WINDOWS\system32\DRIVERS\aswFsBlk.sys [2008-03-29 19:35]
R3 RTLWUSB;Realtek RTL8187 Wireless 802.11g 54Mbps USB 2.0 Network Adapter;C:\WINDOWS\system32\DRIVERS\RTL8187.sys [2006-06-16 09:30]

.
**************************************************************************

catchme 0.3.1351 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-04-11 00:25:47
Windows 5.1.2600 Dodatek Service Pack 2 NTFS

scanning hidden processes ...

scanning hidden autostart entries ...

scanning hidden files ...

scan completed successfully
hidden files: 0

**************************************************************************
.
------------------------ Other Running Processes ------------------------
.
E:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\HPZipm12.exe
C:\WINDOWS\system32\wdfmgr.exe
E:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
E:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
C:\Program Files\Common Files\Ahead\Lib\NMIndexStoreSvr.exe
.
**************************************************************************
.
Completion time: 2008-04-11 0:26:09 - machine was rebooted [Alex]
ComboFix-quarantined-files.txt 2008-04-10 22:26:05
Pre-Run: 54,917,480,448 bajtów wolnych
Post-Run: 54,855,008,256 bajt˘w wolnych
.
2008-03-31 09:59:49 --- E O F ---
11 Avril 2008 00:31:48

Juste pour info: mon centre de securite remarche et spybot se lance enfin. J'ai l'impression que le virus a ete supprime.
11 Avril 2008 07:13:55

Re,

Il y a des restes.

Copie le texte se situant dans le cadre ci-dessous :

File::
C:\WINDOWS\system32\drivers\mdelk.exe

Folder::
C:\WINDOWS\system32\drivers\downld


Ouvre le Bloc-Notes puis colle le texte copié.
(Démarrer\Tous les programmes\Accessoires\Bloc notes.)
Sauvegarde ce fichier sous le nom de CFScript.txt.

Glisse maintenant le fichier CFScript.txt dans Combofix.exe comme ci-dessous :


Cela va relancer Combofix, tape sur 1 puis valide. Après redémarrage, poste le contenu du rapport Combofix.txt.
S'il n'y a pas de rédémarrage, poste quand même le rapport.

********

Aller dans poste de travail>outils>option des dossiers>affichage>afficher les fichiers et dossiers cachés. - - > Appliquer - - > OK

Aller dans poste de travail>outils>option des dossiers>affichage>décocher masquer les fichiers protégés du système d’exploitation. - - > Appliquer - - > OK
(Tu recocheras après)

Fais analyser ces fichier sur ce site >> Virustotal <<

Clique sur Parcourir en haut, choisis Poste de travail et cherche ce fichier : C:\WINDOWS\Kbpiano2.ini
Clique maintenant sur envoyer le fichier.
Poste le rapport (De Fichier *** reçu le *** jusqu’à SHA1 : ***)
Fais la même chose avec ces fichiers : midwrap3402.deu
11 Avril 2008 09:02:49

Re,

il n'ya pas eu redemarrage voici le rapport combofix:


ComboFix 08-04-10.4 - Alex 2008-04-11 9:00:03.2 - NTFSx86
Microsoft Windows XP Professional 5.1.2600.2.1250.1.1045.18.2939 [GMT 2:00]
Running from: C:\Documents and Settings\Alex\Pulpit\Combo-Fixx.exe
Command switches used :: C:\Documents and Settings\Alex\Pulpit\CFScript.txt
* Created a new restore point

WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !!

FILE ::
C:\WINDOWS\system32\drivers\mdelk.exe
.

((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.

C:\WINDOWS\system32\drivers\downld
C:\WINDOWS\system32\drivers\downld\114031.exe
C:\WINDOWS\system32\drivers\downld\176156.exe
C:\WINDOWS\system32\drivers\downld\181281.exe
C:\WINDOWS\system32\drivers\downld\202906.exe
C:\WINDOWS\system32\drivers\downld\217078.exe
C:\WINDOWS\system32\drivers\downld\218390.exe
C:\WINDOWS\system32\drivers\downld\244156.exe
C:\WINDOWS\system32\drivers\downld\254796.exe
C:\WINDOWS\system32\drivers\downld\262281.exe
C:\WINDOWS\system32\drivers\downld\264031.exe
C:\WINDOWS\system32\drivers\downld\280859.exe
C:\WINDOWS\system32\drivers\downld\283593.exe
C:\WINDOWS\system32\drivers\downld\295421.exe
C:\WINDOWS\system32\drivers\downld\334421.exe
C:\WINDOWS\system32\drivers\mdelk.exe

.
((((((((((((((((((((((((( Files Created from 2008-03-11 to 2008-04-11 )))))))))))))))))))))))))))))))
.

2008-04-10 23:13 . 2006-06-12 18:56 92,728 --a------ C:\WINDOWS\system32\bass.dll
2008-04-10 23:13 . 2007-06-10 21:29 37,057 --a------ C:\WINDOWS\system32\kbpDinput.dll
2008-04-10 23:13 . 2008-04-10 23:13 30,527 ---h----- C:\WINDOWS\system32\midwrap3402.deu
2008-04-10 23:13 . 2006-12-01 14:00 17,464 --a------ C:\WINDOWS\system32\bassmidi.dll
2008-04-10 23:13 . 2006-09-20 15:37 10,312 --a------ C:\WINDOWS\system32\bassmix.dll
2008-04-10 23:13 . 2008-04-10 23:14 44 --a------ C:\WINDOWS\Kbpiano2.ini
2008-04-10 23:10 . 2008-04-10 23:10 <DIR> d-------- C:\Documents and Settings\Alex\WINDOWS
2008-04-10 23:10 . 1998-02-06 22:37 299,520 --a------ C:\WINDOWS\uninst.exe
2008-04-08 23:59 . 2008-04-08 23:59 <DIR> d-------- C:\WINDOWS\system32\AGEIA
2008-04-08 23:59 . 2008-04-08 23:59 <DIR> d-------- C:\Program Files\Common Files\Wise Installation Wizard
2008-04-08 23:59 . 2008-04-09 00:00 <DIR> d-------- C:\Program Files\AGEIA Technologies
2008-04-08 23:44 . 2008-04-08 23:44 <DIR> d-------- C:\Documents and Settings\Alex\Dane aplikacji\DAEMON Tools
2008-04-08 22:44 . 2008-04-08 23:44 717,296 --a------ C:\WINDOWS\system32\drivers\sptd.sys
2008-04-07 23:19 . 2008-04-07 23:19 <DIR> d-------- C:\ComboFix
2008-04-07 21:05 . 2008-04-11 00:26 <DIR> d--h----- C:\Documents and Settings\Administrator\Ustawienia lokalne
2008-04-07 21:05 . 2008-03-30 13:38 <DIR> d-------- C:\Documents and Settings\Administrator\Ulubione
2008-04-07 21:05 . 2008-03-30 11:45 <DIR> d--h----- C:\Documents and Settings\Administrator\Szablony
2008-04-07 21:05 . 2008-04-11 00:19 <DIR> d-------- C:\Documents and Settings\Administrator\Pulpit
2008-04-07 21:05 . 2008-03-30 13:38 <DIR> d-------- C:\Documents and Settings\Administrator\Moje dokumenty
2008-04-07 21:05 . 2008-03-30 13:38 <DIR> dr------- C:\Documents and Settings\Administrator\Menu Start
2008-04-07 21:05 . 2008-03-30 13:38 <DIR> dr-h----- C:\Documents and Settings\Administrator\Dane aplikacji
2008-04-07 13:39 . 2008-04-07 13:39 <DIR> d-------- C:\Muestras
2008-04-07 00:14 . 2008-04-07 00:35 8 --a------ C:\WINDOWS\system32\SDGLYBMPWSN.SYS
2008-04-04 20:52 . 2008-04-04 20:52 <DIR> d-------- C:\Documents and Settings\All Users\Dane aplikacji\DVD Shrink
2008-04-04 07:12 . 2004-08-04 01:44 221,184 --a------ C:\WINDOWS\system32\wmpns.dll
2008-04-04 07:12 . 2008-04-10 19:06 69 --a------ C:\WINDOWS\NeroDigital.ini
2008-04-04 00:57 . 2008-04-04 00:57 <DIR> d-------- C:\WINDOWS\Sun
2008-04-04 00:54 . 2008-04-04 00:54 <DIR> d-------- C:\Program Files\AviSynth 2.5
2008-04-04 00:46 . 2000-05-22 22:58 608,448 --a------ C:\WINDOWS\system32\comctl32.ocx
2008-04-04 00:11 . 2008-04-04 00:11 <DIR> d-------- C:\WINDOWS\Mozilla
2008-04-03 23:23 . 2007-07-02 15:02 996,648 --a------ C:\WINDOWS\system32\ShellManager10E2D762.dll
2008-04-03 23:23 . 2007-07-02 14:19 638,976 --a------ C:\WINDOWS\system32\NEROINSTAEC43759.DB
2008-04-03 23:21 . 2008-04-03 23:21 <DIR> d-------- C:\Documents and Settings\All Users\Dane aplikacji\Ahead
2008-04-03 23:21 . 2008-04-03 23:25 <DIR> d-------- C:\Documents and Settings\Alex\Dane aplikacji\Ahead
2008-04-03 23:20 . 2008-04-03 23:20 <DIR> d-------- C:\Program Files\Common Files\Ahead
2008-04-03 23:20 . 2008-04-03 23:20 <DIR> d-------- C:\Documents and Settings\All Users\Dane aplikacji\Nero
2008-04-03 13:34 . 2008-04-03 13:34 <DIR> d-------- C:\WINDOWS\system32\XPSViewer
2008-04-03 13:34 . 2008-04-03 13:34 <DIR> d-------- C:\Program Files\Reference Assemblies
2008-04-03 13:34 . 2008-04-03 13:34 <DIR> d-------- C:\Program Files\MSBuild
2008-04-03 13:34 . 2006-06-29 13:07 14,048 --------- C:\WINDOWS\system32\spmsg2.dll
2008-04-03 13:33 . 2008-04-03 13:33 <DIR> d-------- C:\Program Files\MSXML 6.0
2008-04-03 12:21 . 2008-04-03 12:21 <DIR> d-------- C:\Documents and Settings\Alex\Dane aplikacji\Media Player Classic
2008-04-03 12:04 . 2008-03-05 15:56 3,786,760 --a------ C:\WINDOWS\system32\D3DX9_37.dll
2008-04-02 23:00 . 2008-04-02 23:00 <DIR> d-------- C:\Program Files\Microsoft Silverlight
2008-04-02 16:26 . 2008-04-02 16:26 <DIR> d-------- C:\Program Files\uTorrent
2008-04-02 16:26 . 2008-04-03 13:15 <DIR> d-------- C:\Documents and Settings\Alex\Dane aplikacji\uTorrent
2008-04-02 14:07 . 2008-04-02 14:07 359,040 --a------ C:\WINDOWS\system32\drivers\TCPIP.SYS.ORIGINAL
2008-04-01 14:29 . 2008-04-01 14:29 <DIR> d-------- C:\Program Files\Common Files\Hewlett-Packard
2008-04-01 14:12 . 2004-08-03 22:58 15,104 --a------ C:\WINDOWS\system32\drivers\usbscan.sys
2008-04-01 14:12 . 2004-08-03 22:58 15,104 --a--c--- C:\WINDOWS\system32\dllcache\usbscan.sys
2008-04-01 13:52 . 2004-09-29 12:12 278,584 --a------ C:\WINDOWS\system32\HPZidr12.dll
2008-04-01 13:52 . 2004-09-29 12:15 204,800 --a------ C:\WINDOWS\system32\HPZipr12.dll
2008-04-01 13:52 . 2004-09-29 12:09 94,208 --a------ C:\WINDOWS\system32\HPZipt12.dll
2008-04-01 13:52 . 2004-09-29 12:14 69,632 --a------ C:\WINDOWS\system32\HPZipm12.exe
2008-04-01 13:52 . 2004-09-29 12:08 61,440 --a------ C:\WINDOWS\system32\HPZinw12.exe
2008-04-01 13:52 . 2004-09-29 12:09 57,344 --a------ C:\WINDOWS\system32\HPZisn12.dll
2008-04-01 13:51 . 2008-04-01 13:52 <DIR> d-------- C:\Program Files\HP
2008-04-01 13:51 . 1998-10-29 16:45 306,688 --a------ C:\WINDOWS\IsUninst.exe
2008-04-01 13:51 . 2004-08-03 23:01 25,856 --a------ C:\WINDOWS\system32\drivers\usbprint.sys
2008-04-01 13:51 . 2004-08-03 23:01 25,856 --a--c--- C:\WINDOWS\system32\dllcache\usbprint.sys
2008-04-01 13:50 . 2008-04-01 13:50 <DIR> d-------- C:\temp\HP_WebRelease
2008-04-01 13:50 . 2008-04-03 23:13 <DIR> d-------- C:\temp
2008-04-01 13:50 . 2008-04-01 14:46 102,738 --a------ C:\WINDOWS\hpoins05.dat
2008-04-01 13:50 . 2005-06-22 06:50 17,505 --------- C:\WINDOWS\hpomdl07.dat
2008-03-31 21:16 . 2008-03-31 21:16 <DIR> d-------- C:\Program Files\Microsoft Works
2008-03-31 21:10 . 2008-03-31 21:10 <DIR> d-------- C:\WINDOWS\SHELLNEW
2008-03-31 21:10 . 2008-03-31 21:17 <DIR> d-------- C:\Documents and Settings\All Users\Dane aplikacji\Microsoft Help
2008-03-31 12:00 . 2008-03-31 12:00 <DIR> d-------- C:\Documents and Settings\All Users\Dane aplikacji\SiteAdvisor
2008-03-31 12:00 . 2008-03-31 12:00 <DIR> d-------- C:\Documents and Settings\All Users\Dane aplikacji\McAfee
2008-03-31 12:00 . 2008-04-11 08:59 <DIR> d-------- C:\Documents and Settings\Alex\Dane aplikacji\SiteAdvisor
2008-03-31 11:59 . 2008-03-31 11:59 <DIR> d--h----- C:\WINDOWS\$hf_mig$
2008-03-31 11:33 . 2008-04-02 15:16 <DIR> d-------- C:\Documents and Settings\Alex\Dane aplikacji\vlc
2008-03-30 22:38 . 2008-03-30 22:38 45 --a------ C:\WINDOWS\system32\initdebug.nfo
2008-03-30 21:53 . 2006-06-27 05:40 12,800 -----c--- C:\WINDOWS\system32\dllcache\WgaTray.exe
2008-03-30 21:53 . 2006-06-27 05:40 3,584 -----c--- C:\WINDOWS\system32\dllcache\WgaLogon.dll
2008-03-30 21:26 . 2008-03-30 21:26 <DIR> d-------- C:\Program Files\Common Files\Adobe
2008-03-30 21:20 . 2008-03-30 21:20 <DIR> d-------- C:\Program Files\Java
2008-03-30 21:20 . 2008-02-22 02:33 69,632 --a------ C:\WINDOWS\system32\javacpl.cpl
2008-03-30 21:17 . 2008-03-30 21:17 <DIR> d-------- C:\Program Files\Common Files\Java
2008-03-30 21:12 . 2008-04-10 23:27 <DIR> d-------- C:\Documents and Settings\Alex\Dane aplikacji\gtk-2.0
2008-03-30 21:01 . 2008-04-11 00:20 <DIR> d-------- C:\Documents and Settings\Alex\Dane aplikacji\.purple
2008-03-30 20:49 . 2008-03-30 20:53 <DIR> d-------- C:\Documents and Settings\All Users\Dane aplikacji\Spybot - Search & Destroy
2008-03-30 20:47 . 2008-03-30 20:47 <DIR> d-------- C:\Documents and Settings\Alex\Dane aplikacji\Talkback
2008-03-30 20:47 . 2008-03-30 20:47 0 --a------ C:\WINDOWS\nsreg.dat
2008-03-30 20:43 . 2008-03-30 20:43 <DIR> d-------- C:\Program Files\SAGEM
2008-03-30 12:19 . 2008-03-30 12:19 163,353 --a------ C:\WINDOWS\system32\nvapps.xml
2008-03-30 12:18 . 2008-03-30 12:18 <DIR> d-------- C:\WINDOWS\nview
2008-03-30 12:18 . 2008-03-30 12:18 <DIR> d-------- C:\NVIDIA
2008-03-30 12:18 . 2007-12-05 02:53 356,352 --a------ C:\WINDOWS\system32\NVUNINST.EXE
2008-03-30 12:18 . 2007-12-05 01:41 356,352 --a------ C:\WINDOWS\system32\nvudisp.exe
2008-03-30 12:18 . 2007-12-05 01:41 17,737 --a------ C:\WINDOWS\system32\nvdisp.nvu
2008-03-30 12:17 . 2004-08-03 23:08 26,496 --a--c--- C:\WINDOWS\system32\dllcache\usbstor.sys
2008-03-30 12:14 . 2008-03-30 12:14 <DIR> d-------- C:\WINDOWS\OPTIONS
2008-03-30 12:14 . 2008-03-30 12:14 <DIR> d-------- C:\Program Files\ASUS WiFi-AP Solo
2008-03-30 12:14 . 2006-06-16 09:30 176,128 --a------ C:\WINDOWS\system32\drivers\RTL8187.sys
2008-03-30 12:14 . 2008-03-30 12:14 21,035 --a------ C:\WINDOWS\system32\drivers\AegisP.sys
2008-03-30 12:14 . 2006-03-31 04:39 13,532 --a------ C:\WINDOWS\system32\drivers\SjyPkt.sys
2008-03-30 12:12 . 2008-03-30 12:12 <DIR> d-------- C:\Program Files\Marvell
2008-03-30 12:09 . 2008-04-08 23:55 <DIR> d--h----- C:\Program Files\InstallShield Installation Information
2008-03-30 12:09 . 2008-03-30 12:10 <DIR> d-------- C:\Program Files\Analog Devices

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-04-10 22:20 --------- d-----w C:\Documents and Settings\Alex\Dane aplikacji\.purple
2008-04-02 12:07 359,040 ----a-w C:\WINDOWS\system32\drivers\TCPIP.SYS
2008-03-30 09:58 --------- d-----w C:\Program Files\Intel
2008-03-30 09:50 --------- d-----w C:\Program Files\microsoft frontpage
2008-03-30 09:48 --------- d-----w C:\Program Files\Usługi online
2008-03-29 17:45 1,146,232 ----a-w C:\WINDOWS\system32\aswBoot.exe
2008-03-29 17:35 94,544 ----a-w C:\WINDOWS\system32\drivers\aswmon2.sys
2008-03-29 17:35 20,560 ----a-w C:\WINDOWS\system32\drivers\aswFsBlk.sys
2008-03-29 17:31 75,856 ----a-w C:\WINDOWS\system32\drivers\aswSP.sys
2008-03-29 17:29 23,152 ----a-w C:\WINDOWS\system32\drivers\aswRdr.sys
2008-03-29 17:27 42,912 ----a-w C:\WINDOWS\system32\drivers\aswTdi.sys
2008-03-29 17:26 26,944 ----a-w C:\WINDOWS\system32\drivers\aavmker4.sys
2008-03-29 17:23 95,608 ----a-w C:\WINDOWS\system32\AvastSS.scr
2008-03-05 14:03 479,752 ----a-w C:\WINDOWS\system32\XAudio2_0.dll
2008-03-05 14:03 238,088 ----a-w C:\WINDOWS\system32\xactengine3_0.dll
2008-03-05 14:00 25,608 ----a-w C:\WINDOWS\system32\X3DAudio1_3.dll
2008-03-05 13:56 1,420,824 ----a-w C:\WINDOWS\system32\D3DCompiler_37.dll
2008-03-04 10:33 7,680 ----a-w C:\WINDOWS\system32\ff_vfw.dll
2008-02-07 14:15 408,576 ----a-w C:\WINDOWS\system32\Smab.dll
2008-02-05 21:07 462,864 ----a-w C:\WINDOWS\system32\d3dx10_37.dll
2006-06-23 06:48 32,768 ----a-r C:\WINDOWS\inf\UpdateUSB.exe
2006-05-03 10:06 163,328 --sh--r C:\WINDOWS\system32\flvDX.dll
2007-02-21 11:47 31,232 --sh--r C:\WINDOWS\system32\msfDX.dll
2007-12-17 13:43 27,648 --sh--w C:\WINDOWS\system32\Smab0.dll
.

------- Sigcheck -------

2008-04-02 14:07 359040 6a603809f598332dbedd535bdbce313e C:\WINDOWS\system32\dllcache\TCPIP.SYS
2008-04-02 14:07 359040 6a603809f598332dbedd535bdbce313e C:\WINDOWS\system32\drivers\TCPIP.SYS
.
((((((((((((((((((((((((((((( snapshot@2008-04-11_ 0.26.00.26 )))))))))))))))))))))))))))))))))))))))))
.
+ 2008-04-11 06:35:15 16,384 ----atw C:\WINDOWS\Temp\Perflib_Perfdata_648.dat
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-04 01:44 15360]
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe" [2007-06-27 19:03 152872]
"DAEMON Tools Lite"="E:\Program Files\DAEMON Tools Lite\daemon.exe" [2008-04-01 11:39 486856]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SoundMAXPnP"="C:\Program Files\Analog Devices\Core\smax4pnp.exe" [2006-12-18 15:34 868352]
"SoundMAX"="C:\Program Files\Analog Devices\SoundMAX\Smax4.exe" [2006-07-13 07:12 729088]
"NvCplDaemon"="C:\WINDOWS\system32\NvCpl.dll" [2007-12-05 01:41 8523776]
"nwiz"="nwiz.exe" [2007-12-05 01:41 1626112 C:\WINDOWS\system32\nwiz.exe]
"NvMediaCenter"="C:\WINDOWS\system32\NvMcTray.dll" [2007-12-05 01:41 81920]
"NeroFilterCheck"="C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe" [2004-10-21 04:05 651264]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\CTFMON.EXE" [2004-08-04 01:44 15360]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sglfb.sys]
@="Driver"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\tga.sys]
@="Driver"

[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Menu Start^Programy^Autostart^ASUS WiFi-AP Solo.lnk]
path=C:\Documents and Settings\All Users\Menu Start\Programy\Autostart\ASUS WiFi-AP Solo.lnk
backup=C:\WINDOWS\pss\ASUS WiFi-AP Solo.lnkCommon Startup

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
--a------ 2007-05-11 13:06 40048 E:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SpybotSD TeaTimer]
-rahs---- 2008-01-28 11:43 2097488 E:\Program Files\Spybot - Search & Destroy\TeaTimer.exe

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"E:\\Program Files\\Mozilla Firefox\\firefox.exe"=
"C:\\Program Files\\HP\\Digital Imaging\\bin\\hpqscnvw.exe"=
"C:\\Program Files\\HP\\Digital Imaging\\bin\\hpqkygrp.exe"=
"E:\\Program Files\\eMule\\emule.exe"=
"C:\\Program Files\\uTorrent\\uTorrent.exe"=
"C:\\WINDOWS\\system32\\dpvsetup.exe"=
"C:\\WINDOWS\\system32\\rundll32.exe"=
"E:\\Program Files\\Ubisoft\\Lost Via Domus\\Yeti_Final_Win32.exe"=
"E:\\Program Files\\Ubisoft\\Lost Via Domus\\gu.exe"=
"E:\\Program Files\\Ubisoft\\Lost Via Domus\\detection\\Launcher.exe"=

R1 aswSP;avast! Self Protection;C:\WINDOWS\system32\drivers\aswSP.sys [2008-03-29 19:31]
R2 aswFsBlk;aswFsBlk;C:\WINDOWS\system32\DRIVERS\aswFsBlk.sys [2008-03-29 19:35]
R3 RTLWUSB;Realtek RTL8187 Wireless 802.11g 54Mbps USB 2.0 Network Adapter;C:\WINDOWS\system32\DRIVERS\RTL8187.sys [2006-06-16 09:30]

.
**************************************************************************

catchme 0.3.1351 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-04-11 09:00:40
Windows 5.1.2600 Dodatek Service Pack 2 NTFS

scanning hidden processes ...

scanning hidden autostart entries ...

scanning hidden files ...

scan completed successfully
hidden files: 0

**************************************************************************
.
Completion time: 2008-04-11 9:00:51
ComboFix-quarantined-files.txt 2008-04-11 07:00:47
ComboFix2.txt 2008-04-10 22:26:10
Pre-Run: 54,835,519,488 bajtów wolnych
Post-Run: 54,825,254,912 bajtów wolnych
.
2008-03-31 09:59:49 --- E O F ---

11 Avril 2008 09:05:14

Rapport du scan du fichier "Kbpiano2.ini"

Fichier Kbpiano2.ini reçu le 2008.04.11 08:57:47 (CET)
Situation actuelle: terminé
Résultat: 0/32 (0.00%)
Formaté Formaté
Impression des résultats Impression des résultats
Antivirus Version Dernière mise à jour Résultat
AhnLab-V3 2008.4.10.2 2008.04.11 -
AntiVir 7.6.0.81 2008.04.10 -
Authentium 4.93.8 2008.04.10 -
Avast 4.8.1169.0 2008.04.10 -
AVG 7.5.0.516 2008.04.10 -
BitDefender 7.2 2008.04.11 -
CAT-QuickHeal 9.50 2008.04.10 -
ClamAV 0.92.1 2008.04.11 -
DrWeb 4.44.0.09170 2008.04.10 -
eSafe 7.0.15.0 2008.04.09 -
eTrust-Vet 31.3.5687 2008.04.10 -
Ewido 4.0 2008.04.10 -
F-Prot 4.4.2.54 2008.04.10 -
F-Secure 6.70.13260.0 2008.04.11 -
FileAdvisor 1 2008.04.11 -
Fortinet 3.14.0.0 2008.04.10 -
Ikarus T3.1.1.26.0 2008.04.11 -
Kaspersky 7.0.0.125 2008.04.11 -
McAfee 5271 2008.04.10 -
Microsoft 1.3408 2008.04.11 -
NOD32v2 3017 2008.04.10 -
Norman 5.80.02 2008.04.10 -
Panda 9.0.0.4 2008.04.10 -
Prevx1 V2 2008.04.11 -
Rising 20.39.32.00 2008.04.10 -
Sophos 4.28.0 2008.04.11 -
Sunbelt 3.0.1032.0 2008.04.08 -
Symantec 10 2008.04.11 -
TheHacker 6.2.92.273 2008.04.11 -
VBA32 3.12.6.4 2008.04.06 -
VirusBuster 4.3.26:9 2008.04.10 -
Webwasher-Gateway 6.6.2 2008.04.10 -
Information additionnelle
File size: 44 bytes
MD5...: ce61a83fdcf9f3171a2d59f40262ba7e
SHA1..: a2c635c39577bdcac3f0e3639feaa7aaa674f4b9
11 Avril 2008 09:19:47

Rapport du scan du ficher "midwrap3402.deu"

Fichier midwrap3402.deu reçu le 2008.04.11 09:16:31 (CET)
Situation actuelle: terminé
Résultat: 0/32 (0.00%)
Formaté Formaté
Impression des résultats Impression des résultats
Antivirus Version Dernière mise à jour Résultat
AhnLab-V3 2008.4.10.2 2008.04.11 -
AntiVir 7.6.0.81 2008.04.10 -
Authentium 4.93.8 2008.04.10 -
Avast 4.8.1169.0 2008.04.10 -
AVG 7.5.0.516 2008.04.10 -
BitDefender 7.2 2008.04.11 -
CAT-QuickHeal 9.50 2008.04.10 -
ClamAV None 2008.04.11 -
DrWeb 4.44.0.09170 2008.04.10 -
eSafe 7.0.15.0 2008.04.09 -
eTrust-Vet 31.3.5687 2008.04.10 -
Ewido 4.0 2008.04.10 -
F-Prot 4.4.2.54 2008.04.10 -
F-Secure 6.70.13260.0 2008.04.11 -
FileAdvisor 1 2008.04.11 -
Fortinet 3.14.0.0 2008.04.10 -
Ikarus T3.1.1.26.0 2008.04.11 -
Kaspersky 7.0.0.125 2008.04.11 -
McAfee 5271 2008.04.10 -
Microsoft 1.3408 2008.04.11 -
NOD32v2 3017 2008.04.10 -
Norman 5.80.02 2008.04.10 -
Panda 9.0.0.4 2008.04.10 -
Prevx1 V2 2008.04.11 -
Rising 20.39.32.00 2008.04.10 -
Sophos 4.28.0 2008.04.11 -
Sunbelt 3.0.1032.0 2008.04.08 -
Symantec 10 2008.04.11 -
TheHacker 6.2.92.273 2008.04.11 -
VBA32 3.12.6.4 2008.04.06 -
VirusBuster 4.3.26:9 2008.04.10 -
Webwasher-Gateway 6.6.2 2008.04.11 -
Information additionnelle
File size: 30527 bytes
MD5...: 2b02d7a5b3bb78748b5e58bf9edb942d
SHA1..: dd55149a7f79dc2bcdd898bd9bc51464a172af3f
11 Avril 2008 17:22:11

euhhh.... je n'ai pas encore poster de log hijackthis. Tu voulais parler de combofix, non ?
11 Avril 2008 18:40:37

Enfin bon voila le rapport d'HijackThis

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 18:39:24, on 2008-04-11
Platform: Windows XP Dodatek SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
E:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Analog Devices\SoundMAX\Smax4.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe
E:\Program Files\DAEMON Tools Lite\daemon.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\HPZipm12.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
E:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Common Files\Ahead\Lib\NMIndexStoreSvr.exe
E:\Program Files\Alwil Software\Avast4\ashWebSv.exe
E:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\system32\wuauclt.exe
E:\Program Files\Pidgin\pidgin.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Łącza
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - E:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe
O4 - HKLM\..\Run: [SoundMAX] "C:\Program Files\Analog Devices\SoundMAX\Smax4.exe" /tray
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [DAEMON Tools Lite] "E:\Program Files\DAEMON Tools Lite\daemon.exe" -autorun
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'USŁUGA LOKALNA')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'USŁUGA SIECIOWA')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: E&ksportuj do programu Microsoft Excel - res://E:\PROGRA~1\MICROS~1\Office12\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - E:\PROGRA~1\MICROS~1\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - E:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search && Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - E:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O17 - HKLM\System\CCS\Services\Tcpip\..\{D99FED37-C3DB-4860-B70D-666AD811BCD7}: NameServer = 192.168.1.1
O23 - Service: avast! Antivirus - ALWIL Software - E:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - E:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - E:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: NBService - Nero AG - E:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe

--
End of file - 5140 bytes
11 Avril 2008 20:26:56

Re,

Télécharge sur ton bureau : Clean (de Malekal) >Tuto<
Dézippe le sur ton bureau. Double-clic sur ce dossier clean.
Double-clic sur clean.cmd. (L’extension cmd peut ne pas apparaître) Cela va ouvrir une fenêtre noire.
Un menu va apparaître, choisis l'option 1 puis entrée. Ensuite appuies sur une touche comme il te sera demandé.
Poste le rapport se trouve ici : C:\rapport_clean.txt

Si tu obtiens un fichier C:\upload_moi.zip, merci de faire ceci.

*******


Désinstalle avast, redémarre et supprime ~~> C:\Program Files\Alwil Software

Télécharge ccleaner (>>tuto à lire !<<), tu download «the latest version » puis installe le en décochant - Ajouter la Barre d'Outils Yahoo! CCleaner
Puis lance le nettoyage, puis fais chercher des erreurs et sauvegardes si tu le souhaites.

Télécharge et installe Antivir. (tuto)
Pourquoi changer ? Avast vs Antivir
Vérifie qu’il soit bien à jour ! Ouvre Antivir; va dans l'onglet Scanner, active la recherche de rootkits via le + de rootkit search, puis dans manual selection, coche tout (tes partitions de disque dur), lance le scan. Poste moi le rapport généré (qui se trouve dans l'onglet reports).
12 Avril 2008 20:05:28

Alors avec l'outil clean j'ai eu un fichier C:\upload_moi.zip donc je l'ai envoye sur le site malekal comme demande.

J'ai fait un scan avec antivir et voici le rapport:


AntiVir PersonalEdition Classic
Report file date: 12 kwietnia 2008 17:04

Scanning for 1198942 virus strains and unwanted programs.

Licensed to: Avira AntiVir PersonalEdition Classic
Serial number: 0000149996-ADJIE-0001
Platform: Windows XP
Windows version: (Dodatek Service Pack 2) [5.1.2600]
Username: Alex
Computer name: ALEX-E7B9240F1B

Version information:
BUILD.DAT : 270 15603 Bytes 2007-09-19 13:32:00
AVSCAN.EXE : 7.0.6.1 290856 Bytes 2007-08-23 12:16:29
AVSCAN.DLL : 7.0.6.0 49192 Bytes 2007-08-16 11:23:51
LUKE.DLL : 7.0.5.3 147496 Bytes 2007-08-14 14:32:47
LUKERES.DLL : 7.0.6.1 10280 Bytes 2007-08-21 11:35:20
ANTIVIR0.VDF : 6.40.0.0 11030528 Bytes 2007-07-18 13:27:15
ANTIVIR1.VDF : 7.0.3.2 5447168 Bytes 2008-03-07 09:11:14
ANTIVIR2.VDF : 7.0.3.156 795136 Bytes 2008-04-11 09:11:14
ANTIVIR3.VDF : 7.0.3.158 61952 Bytes 2008-04-11 09:11:14
AVEWIN32.DLL : 7.6.0.85 3461632 Bytes 2008-04-12 09:11:15
AVWINLL.DLL : 1.0.0.7 14376 Bytes 2007-02-26 09:36:26
AVPREF.DLL : 7.0.2.2 25640 Bytes 2007-07-18 06:39:17
AVREP.DLL : 7.0.0.1 155688 Bytes 2007-04-16 12:16:24
AVPACK32.DLL : 7.6.0.3 360488 Bytes 2008-04-12 09:11:15
AVREG.DLL : 7.0.1.6 30760 Bytes 2007-07-18 06:17:06
AVARKT.DLL : 1.0.0.20 278568 Bytes 2007-08-28 11:26:33
AVEVTLOG.DLL : 7.0.0.20 86056 Bytes 2007-07-18 06:10:18
NETNT.DLL : 7.0.0.0 7720 Bytes 2007-03-08 10:09:42
RCIMAGE.DLL : 7.0.1.30 2342952 Bytes 2007-08-07 11:38:13
RCTEXT.DLL : 7.0.62.0 86056 Bytes 2007-08-21 11:50:37
SQLITE3.DLL : 3.3.17.1 339968 Bytes 2007-07-23 08:37:21

Configuration settings for the scan:
Jobname..........................: Complete system scan
Configuration file...............: e:\program files\avira\antivir personaledition classic\sysscan.avp
Logging..........................: medium
Primary action...................: quarantine
Secondary action.................: ignore
Scan master boot sector..........: off
Scan boot sector.................: on
Boot sectors.....................: E:,
Scan memory......................: on
Process scan.....................: on
Scan registry....................: on
Search for rootkits..............: off
Scan all files...................: Intelligent file selection
Scan archives....................: on
Recursion depth..................: 20
Smart extensions.................: on
Macro heuristic..................: on
File heuristic...................: medium

Start of the scan: 12 kwietnia 2008 17:04

The scan of running processes will be started
Scan process 'avscan.exe' - '1' Module(s) have been scanned
Scan process 'avcenter.exe' - '1' Module(s) have been scanned
Scan process 'explorer.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'lsass.exe' - '1' Module(s) have been scanned
Scan process 'services.exe' - '1' Module(s) have been scanned
Scan process 'winlogon.exe' - '1' Module(s) have been scanned
Scan process 'csrss.exe' - '1' Module(s) have been scanned
Scan process 'smss.exe' - '1' Module(s) have been scanned
11 processes with 11 modules were scanned

Start scanning boot sectors:
Boot sector 'C:\'
[NOTE] No virus was found!
Boot sector 'D:\'
[NOTE] No virus was found!
Boot sector 'E:\'
[NOTE] No virus was found!

Starting to scan the registry.
C:\Program Files\Analog Devices\Core\
C:\WINDOWS\system32\
C:\WINDOWS\system32\
C:\WINDOWS\system32\
C:\WINDOWS\system32\
C:\WINDOWS\system32\
C:\WINDOWS\system32\
C:\WINDOWS\system32\
C:\WINDOWS\system32\
C:\WINDOWS\system32\
C:\WINDOWS\system32\
C:\WINDOWS\system32\
C:\WINDOWS\system32\
C:\WINDOWS\system32\
C:\WINDOWS\system32\
C:\WINDOWS\system32\
C:\WINDOWS\system32\
C:\Documents and Settings\All Users\Menu Start\Programy\Autostart\
C:\WINDOWS\system32\
C:\WINDOWS\system32\
C:\WINDOWS\system32\
C:\WINDOWS\system32\
C:\Documents and Settings\Alex\Menu Start\Programy\Autostart\
C:\WINDOWS\system32\
C:\WINDOWS\system32\
C:\WINDOWS\system32\
C:\WINDOWS\system32\config\systemprofile\Menu Start\Programy\Autostart\
C:\WINDOWS\system32\
The registry was scanned ( '28' files ).


Starting the file scan:

Begin scan in 'C:\'
C:\
C:\pagefile.sys
[WARNING] The file could not be opened!
[WARNING] Error code: 0x000D
[WARNING] Access error/file locked!
C:\Combo-Fix\
C:\ComboFix\
C:\Documents and Settings\Administrator\
C:\Documents and Settings\Administrator\Cookies\
C:\Documents and Settings\Administrator\Dane aplikacji\
C:\Documents and Settings\Administrator\Dane aplikacji\Microsoft\Internet Explorer\
C:\Documents and Settings\Administrator\Menu Start\
C:\Documents and Settings\Administrator\Menu Start\Programy\
C:\Documents and Settings\Administrator\Menu Start\Programy\Akcesoria\
C:\Documents and Settings\Administrator\Menu Start\Programy\Akcesoria\Rozrywka\
C:\Documents and Settings\Administrator\Menu Start\Programy\Akcesoria\Ułatwienia dostępu\
C:\Documents and Settings\Administrator\Menu Start\Programy\Autostart\
C:\Documents and Settings\Administrator\SendTo\
C:\Documents and Settings\Administrator\Szablony\
C:\Documents and Settings\Administrator\Ustawienia lokalne\
C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\
C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Microsoft\Media Player\
C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Microsoft\Windows\
C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Microsoft\Windows Media\9.0\
C:\Documents and Settings\Administrator\Ustawienia lokalne\Historia\
C:\Documents and Settings\Administrator\Ustawienia lokalne\Historia\History.IE5\
C:\Documents and Settings\Administrator\Ustawienia lokalne\Temporary Internet Files\
C:\Documents and Settings\Alex\
C:\Documents and Settings\Alex\NTUSER.DAT
[WARNING] The file could not be opened!
[WARNING] Error code: 0x000D
[WARNING] Access error/file locked!
C:\Documents and Settings\Alex\ntuser.dat.LOG
[WARNING] The file could not be opened!
[WARNING] Error code: 0x000D
[WARNING] Access error/file locked!
C:\Documents and Settings\Alex\Cookies\
C:\Documents and Settings\Alex\Dane aplikacji\
C:\Documents and Settings\Alex\Dane aplikacji\.purple\
C:\Documents and Settings\Alex\Dane aplikacji\.purple\icons\
C:\Documents and Settings\Alex\Dane aplikacji\.purple\logs\gadu-gadu\8750115\10141720\
C:\Documents and Settings\Alex\Dane aplikacji\.purple\logs\gadu-gadu\8750115\1996809\
C:\Documents and Settings\Alex\Dane aplikacji\.purple\logs\gadu-gadu\8750115\2718684\
C:\Documents and Settings\Alex\Dane aplikacji\.purple\logs\gadu-gadu\8750115\3715341\
C:\Documents and Settings\Alex\Dane aplikacji\.purple\logs\gadu-gadu\8750115\3822500\
C:\Documents and Settings\Alex\Dane aplikacji\.purple\logs\gadu-gadu\8750115\3839448\
C:\Documents and Settings\Alex\Dane aplikacji\.purple\logs\gadu-gadu\8750115\4934232\
C:\Documents and Settings\Alex\Dane aplikacji\.purple\logs\gadu-gadu\8750115\7376815\
C:\Documents and Settings\Alex\Dane aplikacji\.purple\logs\gadu-gadu\8750115\8571070\
C:\Documents and Settings\Alex\Dane aplikacji\.purple\logs\gadu-gadu\8750115\890329\
C:\Documents and Settings\Alex\Dane aplikacji\.purple\logs\gadu-gadu\8750115\9976237\
C:\Documents and Settings\Alex\Dane aplikacji\.purple\logs\msn\alexchik@hotmail.fr\ainulindale@hotmail.fr\
C:\Documents and Settings\Alex\Dane aplikacji\.purple\logs\msn\alexchik@hotmail.fr\amiedusoirbonsoir@hotmail.fr\
C:\Documents and Settings\Alex\Dane aplikacji\.purple\logs\msn\alexchik@hotmail.fr\corto44@hotmail.com\
C:\Documents and Settings\Alex\Dane aplikacji\.purple\logs\msn\alexchik@hotmail.fr\m-vinh@hotmail.fr\
C:\Documents and Settings\Alex\Dane aplikacji\.purple\logs\msn\alexchik@hotmail.fr\tienhud@hotmail.fr\
C:\Documents and Settings\Alex\Dane aplikacji\Adobe\Acrobat\8.0\
C:\Documents and Settings\Alex\Dane aplikacji\Ahead\Nero Burning ROM\
C:\Documents and Settings\Alex\Dane aplikacji\Ahead\NeroVision\
C:\Documents and Settings\Alex\Dane aplikacji\DAEMON Tools\
C:\Documents and Settings\Alex\Dane aplikacji\gtk-2.0\
C:\Documents and Settings\Alex\Dane aplikacji\Macromedia\Flash Player\#SharedObjects\K36XHV7Y\www.youtube.com\
C:\Documents and Settings\Alex\Dane aplikacji\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\
C:\Documents and Settings\Alex\Dane aplikacji\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.youtube.com\
C:\Documents and Settings\Alex\Dane aplikacji\Media Player Classic\
C:\Documents and Settings\Alex\Dane aplikacji\Microsoft\CryptnetUrlCache\Content\
C:\Documents and Settings\Alex\Dane aplikacji\Microsoft\CryptnetUrlCache\MetaData\
C:\Documents and Settings\Alex\Dane aplikacji\Microsoft\Crypto\RSA\S-1-5-21-796845957-1844237615-725345543-1003\
C:\Documents and Settings\Alex\Dane aplikacji\Microsoft\Document Building Blocks\1045\
C:\Documents and Settings\Alex\Dane aplikacji\Microsoft\HTML Help\
C:\Documents and Settings\Alex\Dane aplikacji\Microsoft\Internet Explorer\
C:\Documents and Settings\Alex\Dane aplikacji\Microsoft\Internet Explorer\Quick Launch\
C:\Documents and Settings\Alex\Dane aplikacji\Microsoft\Media Player\
C:\Documents and Settings\Alex\Dane aplikacji\Microsoft\Office\
C:\Documents and Settings\Alex\Dane aplikacji\Microsoft\Office\Ostatnie\
C:\Documents and Settings\Alex\Dane aplikacji\Microsoft\Protect\
C:\Documents and Settings\Alex\Dane aplikacji\Microsoft\Protect\S-1-5-21-796845957-1844237615-725345543-1003\
C:\Documents and Settings\Alex\Dane aplikacji\Microsoft\Szablony\
C:\Documents and Settings\Alex\Dane aplikacji\Microsoft\UProof\
C:\Documents and Settings\Alex\Dane aplikacji\Microsoft\Windows\Themes\
C:\Documents and Settings\Alex\Dane aplikacji\Mozilla\Firefox\
C:\Documents and Settings\Alex\Dane aplikacji\Mozilla\Firefox\Profiles\uqce3iix.default\
C:\Documents and Settings\Alex\Dane aplikacji\Mozilla\Firefox\Profiles\uqce3iix.default\adblockplus\
C:\Documents and Settings\Alex\Dane aplikacji\Mozilla\Firefox\Profiles\uqce3iix.default\bookmarkbackups\
C:\Documents and Settings\Alex\Dane aplikacji\Mozilla\Firefox\Profiles\uqce3iix.default\chrome\
C:\Documents and Settings\Alex\Dane aplikacji\Mozilla\Firefox\Profiles\uqce3iix.default\extensions\{0538E3E3-7E9B-4d49-8831-A227C80A7AD3}\
C:\Documents and Settings\Alex\Dane aplikacji\Mozilla\Firefox\Profiles\uqce3iix.default\extensions\{0538E3E3-7E9B-4d49-8831-A227C80A7AD3}\chrome\
C:\Documents and Settings\Alex\Dane aplikacji\Mozilla\Firefox\Profiles\uqce3iix.default\extensions\{0538E3E3-7E9B-4d49-8831-A227C80A7AD3}\components\
C:\Documents and Settings\Alex\Dane aplikacji\Mozilla\Firefox\Profiles\uqce3iix.default\extensions\{0538E3E3-7E9B-4d49-8831-A227C80A7AD3}\defaults\
C:\Documents and Settings\Alex\Dane aplikacji\Mozilla\Firefox\Profiles\uqce3iix.default\extensions\{0538E3E3-7E9B-4d49-8831-A227C80A7AD3}\defaults\preferences\
C:\Documents and Settings\Alex\Dane aplikacji\Mozilla\Firefox\Profiles\uqce3iix.default\extensions\{1650a312-02bc-40ee-977e-83f158701739}\
C:\Documents and Settings\Alex\Dane aplikacji\Mozilla\Firefox\Profiles\uqce3iix.default\extensions\{1650a312-02bc-40ee-977e-83f158701739}\chrome\
C:\Documents and Settings\Alex\Dane aplikacji\Mozilla\Firefox\Profiles\uqce3iix.default\extensions\{1650a312-02bc-40ee-977e-83f158701739}\components\
C:\Documents and Settings\Alex\Dane aplikacji\Mozilla\Firefox\Profiles\uqce3iix.default\extensions\{1650a312-02bc-40ee-977e-83f158701739}\defaults\preferences\
C:\Documents and Settings\Alex\Dane aplikacji\Mozilla\Firefox\Profiles\uqce3iix.default\extensions\{1650a312-02bc-40ee-977e-83f158701739}\META-INF\
C:\Documents and Settings\Alex\Dane aplikacji\Mozilla\Firefox\Profiles\uqce3iix.default\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}\
C:\Documents and Settings\Alex\Dane aplikacji\Mozilla\Firefox\Profiles\uqce3iix.default\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}\chrome\
C:\Documents and Settings\Alex\Dane aplikacji\Mozilla\Firefox\Profiles\uqce3iix.default\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}\components\
C:\Documents and Settings\Alex\Dane aplikacji\Mozilla\Firefox\Profiles\uqce3iix.default\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}\defaults\contenthandling\
C:\Documents and Settings\Alex\Dane aplikacji\Mozilla\Firefox\Profiles\uqce3iix.default\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}\defaults\custombuttons\
C:\Documents and Settings\Alex\Dane aplikacji\Mozilla\Firefox\Profiles\uqce3iix.default\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}\defaults\preferences\
C:\Documents and Settings\Alex\Dane aplikacji\Mozilla\Firefox\Profiles\uqce3iix.default\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}\lib\
C:\Documents and Settings\Alex\Dane aplikacji\Mozilla\Firefox\Profiles\uqce3iix.default\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}\META-INF\
C:\Documents and Settings\Alex\Dane aplikacji\Mozilla\Firefox\Profiles\uqce3iix.default\extensions\{77b819fa-95ad-4f2c-ac7c-486b356188a9}\
C:\Documents and Settings\Alex\Dane aplikacji\Mozilla\Firefox\Profiles\uqce3iix.default\extensions\{77b819fa-95ad-4f2c-ac7c-486b356188a9}\chrome\
C:\Documents and Settings\Alex\Dane aplikacji\Mozilla\Firefox\Profiles\uqce3iix.default\extensions\{77b819fa-95ad-4f2c-ac7c-486b356188a9}\components\
C:\Documents and Settings\Alex\Dane aplikacji\Mozilla\Firefox\Profiles\uqce3iix.default\extensions\{77b819fa-95ad-4f2c-ac7c-486b356188a9}\defaults\preferences\
C:\Documents and Settings\Alex\Dane aplikacji\Mozilla\Firefox\Profiles\uqce3iix.default\extensions\{77b819fa-95ad-4f2c-ac7c-486b356188a9}\plugins\
C:\Documents and Settings\Alex\Dane aplikacji\Mozilla\Firefox\Profiles\uqce3iix.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}\
C:\Documents and Settings\Alex\Dane aplikacji\Mozilla\Firefox\Profiles\uqce3iix.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}\chrome\
C:\Documents and Settings\Alex\Dane aplikacji\Mozilla\Firefox\Profiles\uqce3iix.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}\components\
C:\Documents and Settings\Alex\Dane aplikacji\Mozilla\Firefox\Profiles\uqce3iix.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}\defaults\preferences\
C:\Documents and Settings\Alex\Dane aplikacji\Mozilla\Firefox\Profiles\uqce3iix.default\forecastfox\
C:\Documents and Settings\Alex\Dane aplikacji\Mozilla\Firefox\Profiles\uqce3iix.default\forecastfox\cache\
C:\Documents and Settings\Alex\Dane aplikacji\Mozilla\Firefox\Profiles\uqce3iix.default\forecastfox\errors\
C:\Documents and Settings\Alex\Dane aplikacji\Mozilla\Firefox\Profiles\uqce3iix.default\forecastfox\icons\
C:\Documents and Settings\Alex\Dane aplikacji\Mozilla\Firefox\Profiles\uqce3iix.default\GoogleToolbarData\
C:\Documents and Settings\Alex\Dane aplikacji\Mozilla\Firefox\Profiles\uqce3iix.default\GoogleToolbarData\feeds\
C:\Documents and Settings\Alex\Dane aplikacji\Mozilla\Firefox\Profiles\uqce3iix.default\searchplugins\
C:\Documents and Settings\Alex\Dane aplikacji\Mozilla\Firefox\Profiles\uqce3iix.default\searchplugins\searchplugins-backup\
C:\Documents and Settings\Alex\Dane aplikacji\SiteAdvisor\
C:\Documents and Settings\Alex\Dane aplikacji\Sun\Java\Deployment\
C:\Documents and Settings\Alex\Dane aplikacji\Sun\Java\Deployment\security\
C:\Documents and Settings\Alex\Dane aplikacji\Talkback\MozillaOrg\Firefox2\Win32\2008031114\
C:\Documents and Settings\Alex\Dane aplikacji\uTorrent\
C:\Documents and Settings\Alex\Dane aplikacji\vlc\
C:\Documents and Settings\Alex\Dane aplikacji\vlc\cache\
C:\Documents and Settings\Alex\Menu Start\
C:\Documents and Settings\Alex\Menu Start\Programy\
C:\Documents and Settings\Alex\Menu Start\Programy\Akcesoria\
C:\Documents and Settings\Alex\Menu Start\Programy\Akcesoria\Rozrywka\
C:\Documents and Settings\Alex\Menu Start\Programy\Akcesoria\Ułatwienia dostępu\
C:\Documents and Settings\Alex\Menu Start\Programy\Alarme 3.0\
C:\Documents and Settings\Alex\Menu Start\Programy\AP Tuner 3.06\
C:\Documents and Settings\Alex\Menu Start\Programy\Autostart\
C:\Documents and Settings\Alex\Menu Start\Programy\D-Fend Reloaded\
C:\Documents and Settings\Alex\Menu Start\Programy\D-Fend Reloaded\DOSBox\
C:\Documents and Settings\Alex\Menu Start\Programy\D-Fend Reloaded\DOSBox\Video\
C:\Documents and Settings\Alex\Menu Start\Programy\DOSBox-0.72\
C:\Documents and Settings\Alex\Menu Start\Programy\DOSBox-0.72\Video\
C:\Documents and Settings\Alex\Menu Start\Programy\MediaCoder\
C:\Documents and Settings\Alex\Menu Start\Programy\Pvm\
C:\Documents and Settings\Alex\Menu Start\Programy\RivaTuner v2.08\
C:\Documents and Settings\Alex\Menu Start\Programy\SpeedFan\
C:\Documents and Settings\Alex\Moje dokumenty\
C:\Documents and Settings\Alex\Moje dokumenty\ccleaner backup reg\
C:\Documents and Settings\Alex\Moje dokumenty\Downloads\Prawo Jazdy 03.2008\
C:\Documents and Settings\Alex\Moje dokumenty\Lost Via Domus\
C:\Documents and Settings\Alex\Moje dokumenty\Moja muzyka\
C:\Documents and Settings\Alex\Moje dokumenty\Moje obrazy\
C:\Documents and Settings\Alex\Pulpit\
C:\Documents and Settings\Alex\Pulpit\accordeur\
C:\Documents and Settings\Alex\Pulpit\accordeur\doc\
C:\Documents and Settings\Alex\Pulpit\Alex\Aplikacje\
C:\Documents and Settings\Alex\Pulpit\Alex\Aplikacje\CPU-Z\
C:\Documents and Settings\Alex\Pulpit\Alex\Aplikacje\Setup\
C:\Documents and Settings\Alex\Pulpit\Alex\Aplikacje\Setup\FamilyKeyLogger-setup.exe
[DETECTION] Contains detection pattern of the dropper DR/FamilyKeyLogger.302
[INFO] The file was moved to '486dcfe0.qua'!
C:\Documents and Settings\Alex\Pulpit\Alex\Aplikacje\Setup\PC-Age_Of_Empires_III_The_Asian_Dynasties.rar
[0] Archive type: RAR
--> flt-aoey.004
[1] Archive type: RAR
--> flt-aoey.bin
[INFO] Error multiple volume
[INFO] Error multiple volume
--> flt-aoey.005
[1] Archive type: RAR
--> flt-aoey.bin
[INFO] Error multiple volume
[INFO] Error multiple volume
--> flt-aoey.006
[1] Archive type: RAR
--> flt-aoey.bin
[INFO] Error multiple volume
[INFO] Error multiple volume
--> flt-aoey.007
[1] Archive type: RAR
--> flt-aoey.bin
[INFO] Error multiple volume
[INFO] Error multiple volume
--> flt-aoey.008
[1] Archive type: RAR
--> flt-aoey.bin
[INFO] Error multiple volume
[INFO] Error multiple volume
--> flt-aoey.009
[1] Archive type: RAR
--> flt-aoey.bin
[INFO] Error multiple volume
[INFO] Error multiple volume
--> flt-aoey.010
[1] Archive type: RAR
--> flt-aoey.bin
[INFO] Error multiple volume
[INFO] Error multiple volume
--> flt-aoey.011
[1] Archive type: RAR
--> flt-aoey.bin
[INFO] Error multiple volume
[INFO] Error multiple volume
--> flt-aoey.012
[1] Archive type: RAR
--> flt-aoey.bin
[INFO] Error multiple volume
[INFO] Error multiple volume
--> flt-aoey.013
[1] Archive type: RAR
--> flt-aoey.bin
[INFO] Error multiple volume
[INFO] Error multiple volume
--> flt-aoey.014
[1] Archive type: RAR
--> flt-aoey.bin
[INFO] Error multiple volume
[INFO] Error multiple volume
--> flt-aoey.015
[1] Archive type: RAR
--> flt-aoey.bin
[INFO] Error multiple volume
[INFO] Error multiple volume
--> flt-aoey.016
[1] Archive type: RAR
--> flt-aoey.bin
[INFO] Error multiple volume
[INFO] Error multiple volume
--> flt-aoey.017
[1] Archive type: RAR
--> flt-aoey.bin
[INFO] Error multiple volume
[INFO] Error multiple volume
--> flt-aoey.018
[1] Archive type: RAR
--> flt-aoey.bin
[INFO] Error multiple volume
[INFO] Error multiple volume
--> flt-aoey.019
[1] Archive type: RAR
--> flt-aoey.bin
[INFO] Error multiple volume
[INFO] Error multiple volume
--> flt-aoey.020
[1] Archive type: RAR
--> flt-aoey.bin
[INFO] Error multiple volume
[INFO] Error multiple volume
--> flt-aoey.021
[1] Archive type: RAR
--> flt-aoey.bin
[INFO] Error multiple volume
[INFO] Error multiple volume
--> flt-aoey.022
[1] Archive type: RAR
--> flt-aoey.bin
[INFO] Error multiple volume
[INFO] Error multiple volume
--> flt-aoey.023
[1] Archive type: RAR
--> flt-aoey.bin
[INFO] Error multiple volume
[INFO] Error multiple volume
--> flt-aoey.024
[1] Archive type: RAR
--> flt-aoey.bin
[INFO] Error multiple volume
[INFO] Error multiple volume
--> flt-aoey.025
[1] Archive type: RAR
--> flt-aoey.bin
[INFO] Error multiple volume
[INFO] Error multiple volume
--> flt-aoey.026
[1] Archive type: RAR
--> flt-aoey.bin
[INFO] Error multiple volume
[INFO] Error multiple volume
--> flt-aoey.027
[1] Archive type: RAR
--> flt-aoey.bin
[INFO] Error multiple volume
[INFO] Error multiple volume
--> flt-aoey.028
[1] Archive type: RAR
--> flt-aoey.bin
[INFO] Error multiple volume
[INFO] Error multiple volume
--> flt-aoey.029
[1] Archive type: RAR
--> flt-aoey.bin
[INFO] Error multiple volume
[INFO] Error multiple volume
--> flt-aoey.030
[1] Archive type: RAR
--> flt-aoey.bin
[INFO] Error multiple volume
[INFO] Error multiple volume
--> flt-aoey.031
[1] Archive type: RAR
--> flt-aoey.bin
[INFO] Error multiple volume
[INFO] Error multiple volume
--> flt-aoey.032
[1] Archive type: RAR
--> flt-aoey.bin
[INFO] Error multiple volume
[INFO] Error multiple volume
--> flt-aoey.033
[1] Archive type: RAR
--> flt-aoey.bin
[INFO] Error multiple volume
[INFO] Error multiple volume
--> flt-aoey.034
[1] Archive type: RAR
--> flt-aoey.bin
[INFO] Error multiple volume
[INFO] Error multiple volume
--> flt-aoey.035
[1] Archive type: RAR
--> flt-aoey.bin
[INFO] Error multiple volume
[INFO] Error multiple volume
--> flt-aoey.036
[1] Archive type: RAR
--> flt-aoey.bin
[INFO] Error multiple volume
[INFO] Error multiple volume
--> flt-aoey.037
[1] Archive type: RAR
--> flt-aoey.bin
[INFO] Error multiple volume
[INFO] Error multiple volume
--> flt-aoey.038
[1] Archive type: RAR
--> flt-aoey.bin
[INFO] Error multiple volume
[INFO] Error multiple volume
--> flt-aoey.039
[1] Archive type: RAR
--> flt-aoey.bin
[INFO] Error multiple volume
[INFO] Error multiple volume
--> flt-aoey.040
[1] Archive type: RAR
--> flt-aoey.bin
[INFO] Error multiple volume
[INFO] Error multiple volume
--> flt-aoey.041
[1] Archive type: RAR
--> flt-aoey.bin
[INFO] Error multiple volume
[INFO] Error multiple volume
--> flt-aoey.042
[1] Archive type: RAR
--> flt-aoey.bin
[INFO] Error multiple volume
[INFO] Error multiple volume
--> flt-aoey.043
[1] Archive type: RAR
--> flt-aoey.bin
[INFO] Error multiple volume
[INFO] Error multiple volume
--> flt-aoey.044
[1] Archive type: RAR
--> flt-aoey.bin
[INFO] Error multiple volume
[INFO] Error multiple volume
--> flt-aoey.045
[1] Archive type: RAR
--> flt-aoey.bin
[INFO] Error multiple volume
[INFO] Error multiple volume
--> flt-aoey.046
[1] Archive type: RAR
--> flt-aoey.bin
[INFO] Error multiple volume
[INFO] Error multiple volume
--> flt-aoey.047
[1] Archive type: RAR
--> flt-aoey.bin
[WARNING] Possible archive bomb: the maximum compression ratio has been exceeded.
--> flt-aoey.001
[1] Archive type: RAR
--> flt-aoey.bin
[INFO] Error multiple volume
[INFO] Error multiple volume
--> flt-aoey.002
[1] Archive type: RAR
--> flt-aoey.bin
[INFO] Error multiple volume
[INFO] Error multiple volume
--> flt-aoey.003
[1] Archive type: RAR
--> flt-aoey.bin
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\Alex\Aplikacje\Setup\daemon tools pro adv\
C:\Documents and Settings\Alex\Pulpit\Alex\Aplikacje\Setup\Guru3D.com\
C:\Documents and Settings\Alex\Pulpit\Alex\Aplikacje\Setup\Guru3D.com\Setup\
C:\Documents and Settings\Alex\Pulpit\Alex\Aplikacje\Setup\Windows Genuine in 5 seconds\
C:\Documents and Settings\Alex\Pulpit\Alex\Aplikacje\Setup\Windows Genuine in 5 seconds\Genuine_In_5_sec.rar
[0] Archive type: RAR
--> RockXP4.exe
[DETECTION] Contains detection pattern of the dropper DR/PSW.PWDump.2.13
[WARNING] Infected files in archives cannot be repaired!
[INFO] The file was moved to '486ed0cd.qua'!
C:\Documents and Settings\Alex\Pulpit\Alex\Aplikacje\Setup\[FULL CRACKED]Nero 7 Premium Reloaded 7.10.1.0 & Keygen\
C:\Documents and Settings\Alex\Pulpit\Alex\Aplikacje\Starter Windows\
C:\Documents and Settings\Alex\Pulpit\Alex\Aplikacje\Starter Windows\Data\
C:\Documents and Settings\Alex\Pulpit\Alex\Aplikacje\Sterowniki\
C:\Documents and Settings\Alex\Pulpit\Alex\Aplikacje\Video Rip\
C:\Documents and Settings\Alex\Pulpit\Alex\Download\Torrents\
C:\Documents and Settings\Alex\Pulpit\Alex\INNE\
C:\Documents and Settings\Alex\Pulpit\Alex\INNE\K550i\
C:\Documents and Settings\Alex\Pulpit\Alex\INNE\K550i\Block_Breaker_Deluxe\
C:\Documents and Settings\Alex\Pulpit\Alex\INNE\K550i\music\
C:\Documents and Settings\Alex\Pulpit\Alex\INNE\K550i\theme\
C:\Documents and Settings\Alex\Pulpit\Alex\INNE\K550i\wallpaper\
C:\Documents and Settings\Alex\Pulpit\Alex\INNE\K550i\zdjecia z aparatu\
C:\Documents and Settings\Alex\Pulpit\Alex\INNE\PAPA\
C:\Documents and Settings\Alex\Pulpit\Alex\INNE\PAPA\Librairie facture\
C:\Documents and Settings\Alex\Pulpit\Alex\INNE\PAPA\Musique Papa\
C:\Documents and Settings\Alex\Pulpit\Alex\INNE\PAPA\PAPA AU PIANO\
C:\Documents and Settings\Alex\Pulpit\Alex\INNE\PAPA\papa labo\
C:\Documents and Settings\Alex\Pulpit\Alex\INNE\PAPA\papa labo1\
C:\Documents and Settings\Alex\Pulpit\Alex\INNE\piano sheet\
C:\Documents and Settings\Alex\Pulpit\Alex\INNE\piano sheet\Europe - The Final Countdown PIANO SHEET\
C:\Documents and Settings\Alex\Pulpit\Alex\INNE\piano sheet\partitions musiques\
C:\Documents and Settings\Alex\Pulpit\Alex\Muzyka\Amy_Winehouse-Back_To_Black_(Deluxe_Edition)-2CD-2007-UKP\
C:\Documents and Settings\Alex\Pulpit\Alex\Szkoła\Informatyka\
C:\Documents and Settings\Alex\Pulpit\Alex\Szkoła\Informatyka\Strona Olka info css\
C:\Documents and Settings\Alex\Pulpit\Alex\Szkoła\Szkoła\
C:\Documents and Settings\Alex\Pulpit\Alex\Szkoła\Szkoła\pps plastyka\
C:\Documents and Settings\Alex\Pulpit\Alex\Szkoła\Szkoła\strona WEB IK\
C:\Documents and Settings\Alex\Pulpit\Alex\Szkoła\Szkoła\strona WEB IK\Kopia travail madame machin1.01\
C:\Documents and Settings\Alex\Pulpit\Alex\Szkoła\Szkoła\strona WEB IK\Strona_Pani_Kowalczyk\
C:\Documents and Settings\Alex\Pulpit\Alex\Szkoła\Szkoła\Szkola pto\
C:\Documents and Settings\Alex\Pulpit\Alex\Szkoła\Szkoła\Szkola pto\logo komeniusz\
C:\Documents and Settings\Alex\Pulpit\Alex\Szkoła\Szkoła\szkoła PTO Piastow\
C:\Documents and Settings\Alex\Pulpit\Alex\Szkoła\Szkoła\szkoła PTO Piastow\reklama pto\
C:\Documents and Settings\Alex\Pulpit\Alex\Szkoła\Szkoła\szkoła PTO Piastow\strona szkolna pto nvu\
C:\Documents and Settings\Alex\Pulpit\Alex\Szkoła\Szkoła\szkoła PTO Piastow\strona szkolna pto nvu\blog\
C:\Documents and Settings\Alex\Pulpit\Alex\Szkoła\Szkoła\szkoła PTO Piastow\strona szkolna pto nvu\forum phpbb\
C:\Documents and Settings\Alex\Pulpit\Alex\Szkoła\Szkoła\szkoła PTO Piastow\strona szkolna pto nvu\forum phpbb\frmphpbb\
C:\Documents and Settings\Alex\Pulpit\Alex\Szkoła\Szkoła\szkoła PTO Piastow\strona szkolna pto nvu\siteframe\
C:\Documents and Settings\Alex\Pulpit\Alex\Szkoła\Szkoła\szkoła PTO Piastow\strona szkolna pto nvu\test\
C:\Documents and Settings\Alex\Pulpit\Alex\Szkoła\Szkoła\szkoła PTO Piastow\strona szkolna pto nvu\travaux graphiques\
C:\Documents and Settings\Alex\Pulpit\Alex\Szkoła\Szkoła\szkoła PTO Piastow\strona szkolna pto nvu\w budowie\
C:\Documents and Settings\Alex\Pulpit\Alex\Szkoła\Szkoła1\
C:\Documents and Settings\Alex\Pulpit\Alex\Szkoła\Szkoła1\ppsy\
C:\Documents and Settings\Alex\Pulpit\clean\
C:\Documents and Settings\Alex\Pulpit\KULKI\
C:\Documents and Settings\Alex\Pulpit\KULKI\dfend\
C:\Documents and Settings\Alex\Pulpit\KULKI\dfend\Confs\
C:\Documents and Settings\Alex\Pulpit\lost\
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r00
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r01
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r02
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r03
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r04
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r05
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r06
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r07
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r08
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r09
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r10
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r11
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r12
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r13
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r14
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r15
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r16
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r17
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r18
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r19
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r20
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r21
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r22
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r23
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r24
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r25
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r26
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r27
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r28
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r29
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r30
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r31
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r32
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r33
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r34
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r35
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r36
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r37
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r38
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r39
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r40
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r41
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r42
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r43
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r44
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r45
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r46
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r47
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r48
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r49
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r50
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r51
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r52
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r53
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r54
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r55
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r56
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r57
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r58
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r59
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r60
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r61
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r62
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r63
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r64
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r65
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r66
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r67
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r68
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r69
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r70
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r71
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r72
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r73
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r74
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r75
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r76
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r77
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r78
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r79
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r80
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r81
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r82
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r83
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.r84
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
C:\Documents and Settings\Alex\Pulpit\lost\pro-lost.rar
[0] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
12 Avril 2008 20:31:18

C:\Documents and Settings\Alex\Recent\
C:\Documents and Settings\Alex\SendTo\
C:\Documents and Settings\Alex\Szablony\
C:\Documents and Settings\Alex\Ulubione\
C:\Documents and Settings\Alex\Ulubione\Łącza\
C:\Documents and Settings\Alex\Ustawienia lokalne\
C:\Documents and Settings\Alex\Ustawienia lokalne\Dane aplikacji\
C:\Documents and Settings\Alex\Ustawienia lokalne\Dane aplikacji\Adobe\Acrobat\8.0\Cache\
C:\Documents and Settings\Alex\Ustawienia lokalne\Dane aplikacji\Adobe\Acrobat\8.0\Updater\
C:\Documents and Settings\Alex\Ustawienia lokalne\Dane aplikacji\Adobe\Color\
C:\Documents and Settings\Alex\Ustawienia lokalne\Dane aplikacji\Adobe\Updater5\
C:\Documents and Settings\Alex\Ustawienia lokalne\Dane aplikacji\Adobe\Updater5\Data\
C:\Documents and Settings\Alex\Ustawienia lokalne\Dane aplikacji\Ahead\Nero Home\
C:\Documents and Settings\Alex\Ustawienia lokalne\Dane aplikacji\Ahead\Nero Home\idx\
C:\Documents and Settings\Alex\Ustawienia lokalne\Dane aplikacji\Ahead\Nero StartSmart\cache\
C:\Documents and Settings\Alex\Ustawienia lokalne\Dane aplikacji\Microsoft\
C:\Documents and Settings\Alex\Ustawienia lokalne\Dane aplikacji\Microsoft\Internet Explorer\
C:\Documents and Settings\Alex\Ustawienia lokalne\Dane aplikacji\Microsoft\Media Player\
C:\Documents and Settings\Alex\Ustawienia lokalne\Dane aplikacji\Microsoft\Silverlight\
C:\Documents and Settings\Alex\Ustawienia lokalne\Dane aplikacji\Microsoft\Windows\
C:\Documents and Settings\Alex\Ustawienia lokalne\Dane aplikacji\Microsoft\Windows\UsrClass.dat
[WARNING] The file could not be opened!
[WARNING] Error code: 0x000D
[WARNING] Access error/file locked!
C:\Documents and Settings\Alex\Ustawienia lokalne\Dane aplikacji\Microsoft\Windows\UsrClass.dat.LOG
[WARNING] The file could not be opened!
[WARNING] Error code: 0x000D
[WARNING] Access error/file locked!
C:\Documents and Settings\Alex\Ustawienia lokalne\Dane aplikacji\Microsoft\Windows Media\10.0\
C:\Documents and Settings\Alex\Ustawienia lokalne\Dane aplikacji\Microsoft\Windows Media\9.0\
C:\Documents and Settings\Alex\Ustawienia lokalne\Dane aplikacji\Mozilla\Firefox\Profiles\uqce3iix.default\
C:\Documents and Settings\Alex\Ustawienia lokalne\Dane aplikacji\Mozilla\Firefox\Profiles\uqce3iix.default\Cache\
C:\Documents and Settings\Alex\Ustawienia lokalne\Historia\
C:\Documents and Settings\Alex\Ustawienia lokalne\Historia\History.IE5\
C:\Documents and Settings\Alex\Ustawienia lokalne\Historia\History.IE5\MSHist012008041220080413\
C:\Documents and Settings\Alex\Ustawienia lokalne\Temp\
C:\Documents and Settings\Alex\Ustawienia lokalne\Temporary Internet Files\
C:\Documents and Settings\Alex\Ustawienia lokalne\Temporary Internet Files\Content.IE5\
C:\Documents and Settings\Alex\Ustawienia lokalne\Temporary Internet Files\Content.IE5\6BE4G7RS\
C:\Documents and Settings\Alex\Ustawienia lokalne\Temporary Internet Files\Content.IE5\CLW5EV4J\
C:\Documents and Settings\Alex\Ustawienia lokalne\Temporary Internet Files\Content.IE5\FH796N6Z\
C:\Documents and Settings\Alex\Ustawienia lokalne\Temporary Internet Files\Content.IE5\YJI9ILN8\
C:\Documents and Settings\All Users\Dane aplikacji\
C:\Documents and Settings\All Users\Dane aplikacji\Adobe\Acrobat\8.0\Replicate\Security\
C:\Documents and Settings\All Users\Dane aplikacji\Adobe\Updater5\
C:\Documents and Settings\All Users\Dane aplikacji\Ahead\Nero BackItUp\Cache\
C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir PersonalEdition Classic\
C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir PersonalEdition Classic\EVENTDB\
C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir PersonalEdition Classic\IDX\
C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir PersonalEdition Classic\INFECTED\
C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir PersonalEdition Classic\JOBS\
C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir PersonalEdition Classic\LOGFILES\
C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir PersonalEdition Classic\PROFILES\
C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir PersonalEdition Classic\REPORTS\
C:\Documents and Settings\All Users\Dane aplikacji\DVD Shrink\
C:\Documents and Settings\All Users\Dane aplikacji\Google\Custom Buttons\
C:\Documents and Settings\All Users\Dane aplikacji\Microsoft\Crypto\RSA\S-1-5-18\
C:\Documents and Settings\All Users\Dane aplikacji\Microsoft\Media Player\
C:\Documents and Settings\All Users\Dane aplikacji\Microsoft\Network\Connections\Pbk\
C:\Documents and Settings\All Users\Dane aplikacji\Microsoft\Network\Downloader\
C:\Documents and Settings\All Users\Dane aplikacji\Microsoft\OFFICE\
C:\Documents and Settings\All Users\Dane aplikacji\Microsoft\OFFICE\DATA\
C:\Documents and Settings\All Users\Dane aplikacji\Microsoft\User Account Pictures\
C:\Documents and Settings\All Users\Dane aplikacji\Microsoft\User Account Pictures\Default Pictures\
C:\Documents and Settings\All Users\Dane aplikacji\Microsoft\Windows\GameExplorer\{B8E74B0E-9E0E-4DA6-BF22-3D543237386F}\PlayTasks\0\
C:\Documents and Settings\All Users\Dane aplikacji\Microsoft\Windows\GameExplorer\{B8E74B0E-9E0E-4DA6-BF22-3D543237386F}\PlayTasks\1\
C:\Documents and Settings\All Users\Dane aplikacji\Microsoft\Windows\GameExplorer\{B8E74B0E-9E0E-4DA6-BF22-3D543237386F}\PlayTasks\2\
C:\Documents and Settings\All Users\Dane aplikacji\Microsoft\Windows\GameExplorer\{B8E74B0E-9E0E-4DA6-BF22-3D543237386F}\PlayTasks\3\
C:\Documents and Settings\All Users\Dane aplikacji\Microsoft\Windows\GameExplorer\{B8E74B0E-9E0E-4DA6-BF22-3D543237386F}\SupportTasks\0\
C:\Documents and Settings\All Users\Dane aplikacji\Microsoft\Windows\GameExplorer\{B8E74B0E-9E0E-4DA6-BF22-3D543237386F}\SupportTasks\1\
C:\Documents and Settings\All Users\Dane aplikacji\Microsoft Help\
C:\Documents and Settings\All Users\Dane aplikacji\Nero\DrWeb\
C:\Documents and Settings\All Users\Dane aplikacji\Nero\Nero Container\
C:\Documents and Settings\All Users\Dane aplikacji\Spybot - Search & Destroy\
C:\Documents and Settings\All Users\Dane aplikacji\Spybot - Search & Destroy\Backups\
C:\Documents and Settings\All Users\Dane aplikacji\Spybot - Search & Destroy\Excludes\
C:\Documents and Settings\All Users\Dane aplikacji\Spybot - Search & Destroy\Logs\
C:\Documents and Settings\All Users\Dane aplikacji\Spybot - Search & Destroy\Recovery\
C:\Documents and Settings\All Users\Dane aplikacji\Spybot - Search & Destroy\Snapshots2\
C:\Documents and Settings\All Users\Dane aplikacji\Windows Genuine Advantage\data\
C:\Documents and Settings\All Users\Dokumenty\
C:\Documents and Settings\All Users\Dokumenty\Moja muzyka\
C:\Documents and Settings\All Users\Dokumenty\Moja muzyka\Przykładowa muzyka\
C:\Documents and Settings\All Users\Dokumenty\Moja muzyka\Sample Playlists\000C8245\
C:\Documents and Settings\All Users\Dokumenty\Moje obrazy\
C:\Documents and Settings\All Users\Dokumenty\Moje obrazy\Przykładowe obrazy\
C:\Documents and Settings\All Users\Dokumenty\Moje wideo\
C:\Documents and Settings\All Users\DRM\
C:\Documents and Settings\All Users\Menu Start\
C:\Documents and Settings\All Users\Menu Start\Programy\
C:\Documents and Settings\All Users\Menu Start\Programy\7-Zip\
C:\Documents and Settings\All Users\Menu Start\Programy\AGEIA\
C:\Documents and Settings\All Users\Menu Start\Programy\Akcesoria\
C:\Documents and Settings\All Users\Menu Start\Programy\Akcesoria\Komunikacja\
C:\Documents and Settings\All Users\Menu Start\Programy\Akcesoria\Narzędzia systemowe\
C:\Documents and Settings\All Users\Menu Start\Programy\Akcesoria\Rozrywka\
C:\Documents and Settings\All Users\Menu Start\Programy\Akcesoria\Ułatwienia dostępu\
C:\Documents and Settings\All Users\Menu Start\Programy\AntiVir PersonalEdition Classic\
C:\Documents and Settings\All Users\Menu Start\Programy\Aspell\
C:\Documents and Settings\All Users\Menu Start\Programy\Aspell\Aspell homepage\
C:\Documents and Settings\All Users\Menu Start\Programy\ASUS WiFi-AP Solo\
C:\Documents and Settings\All Users\Menu Start\Programy\Audio Phonics, Inc\
C:\Documents and Settings\All Users\Menu Start\Programy\Autostart\
C:\Documents and Settings\All Users\Menu Start\Programy\DAEMON Tools Lite\
C:\Documents and Settings\All Users\Menu Start\Programy\DBFrontend\
C:\Documents and Settings\All Users\Menu Start\Programy\DVD Shrink\
C:\Documents and Settings\All Users\Menu Start\Programy\DVDFab HD Decrypter\
C:\Documents and Settings\All Users\Menu Start\Programy\eMule\
C:\Documents and Settings\All Users\Menu Start\Programy\Gry\
C:\Documents and Settings\All Users\Menu Start\Programy\Gtk+\
C:\Documents and Settings\All Users\Menu Start\Programy\Guitar Pro 5\
C:\Documents and Settings\All Users\Menu Start\Programy\HijackThis\
C:\Documents and Settings\All Users\Menu Start\Programy\K-Lite Codec Pack\
C:\Documents and Settings\All Users\Menu Start\Programy\K-Lite Codec Pack\Configuration\
C:\Documents and Settings\All Users\Menu Start\Programy\K-Lite Codec Pack\Help\
C:\Documents and Settings\All Users\Menu Start\Programy\K-Lite Codec Pack\Tools\
C:\Documents and Settings\All Users\Menu Start\Programy\K-Lite Codec Pack\Uninstall\
C:\Documents and Settings\All Users\Menu Start\Programy\KB Piano 2\
C:\Documents and Settings\All Users\Menu Start\Programy\KB Piano 2\Examples\
C:\Documents and Settings\All Users\Menu Start\Programy\livebox tp\
C:\Documents and Settings\All Users\Menu Start\Programy\livebox tp\Narzędzia\
C:\Documents and Settings\All Users\Menu Start\Programy\Microsoft Office\
C:\Documents and Settings\All Users\Menu Start\Programy\Microsoft Office\Narzędzia Microsoft Office\
C:\Documents and Settings\All Users\Menu Start\Programy\Mozilla Firefox\
C:\Documents and Settings\All Users\Menu Start\Programy\Narzędzia administracyjne\
C:\Documents and Settings\All Users\Menu Start\Programy\Nero 7 Ultra Edition\
C:\Documents and Settings\All Users\Menu Start\Programy\Nero 7 Ultra Edition\audio\
C:\Documents and Settings\All Users\Menu Start\Programy\Nero 7 Ultra Edition\dane\
C:\Documents and Settings\All Users\Menu Start\Programy\Nero 7 Ultra Edition\Etykiety\
C:\Documents and Settings\All Users\Menu Start\Programy\Nero 7 Ultra Edition\Instrukcje\
C:\Documents and Settings\All Users\Menu Start\Programy\Nero 7 Ultra Edition\Narzędzia\
C:\Documents and Settings\All Users\Menu Start\Programy\Nero 7 Ultra Edition\Odtwórz\
C:\Documents and Settings\All Users\Menu Start\Programy\Nero 7 Ultra Edition\Udostępnij\
C:\Documents and Settings\All Users\Menu Start\Programy\Nero 7 Ultra Edition\Zdjęcia i wideo\
C:\Documents and Settings\All Users\Menu Start\Programy\SoundMAX\
C:\Documents and Settings\All Users\Menu Start\Programy\Spybot - Search & Destroy\
C:\Documents and Settings\All Users\Menu Start\Programy\SUPER © Version 2008.bld.30 (Mar 22, 2008)\
C:\Documents and Settings\All Users\Menu Start\Programy\Total Video Converter\
C:\Documents and Settings\All Users\Menu Start\Programy\Ubisoft\Lost Via Domus\
C:\Documents and Settings\All Users\Menu Start\Programy\VideoLAN\
C:\Documents and Settings\All Users\Menu Start\Programy\VideoLAN\Quick Settings\
C:\Documents and Settings\All Users\Menu Start\Programy\VideoLAN\Quick Settings\Audio\
C:\Documents and Settings\All Users\Menu Start\Programy\VideoLAN\Quick Settings\Interface\
C:\Documents and Settings\All Users\Menu Start\Programy\VideoLAN\Quick Settings\Video\
C:\Documents and Settings\All Users\Pulpit\
C:\Documents and Settings\Default User\
C:\Documents and Settings\Default User\Cookies\
C:\Documents and Settings\Default User\Dane aplikacji\
C:\Documents and Settings\Default User\Dane aplikacji\Microsoft\Internet Explorer\
C:\Documents and Settings\Default User\Menu Start\
C:\Documents and Settings\Default User\Menu Start\Programy\
C:\Documents and Settings\Default User\Menu Start\Programy\Akcesoria\
C:\Documents and Settings\Default User\Menu Start\Programy\Akcesoria\Rozrywka\
C:\Documents and Settings\Default User\Menu Start\Programy\Akcesoria\Ułatwienia dostępu\
C:\Documents and Settings\Default User\Menu Start\Programy\Autostart\
C:\Documents and Settings\Default User\SendTo\
C:\Documents and Settings\Default User\Szablony\
C:\Documents and Settings\Default User\Ustawienia lokalne\
C:\Documents and Settings\Default User\Ustawienia lokalne\Dane aplikacji\Microsoft\Media Player\
C:\Documents and Settings\Default User\Ustawienia lokalne\Dane aplikacji\Microsoft\Windows Media\9.0\
C:\Documents and Settings\Default User\Ustawienia lokalne\Historia\
C:\Documents and Settings\Default User\Ustawienia lokalne\Historia\History.IE5\
C:\Documents and Settings\Default User\Ustawienia lokalne\Temporary Internet Files\
C:\Documents and Settings\Default User\Ustawienia lokalne\Temporary Internet Files\Content.IE5\
C:\Documents and Settings\Default User\Ustawienia lokalne\Temporary Internet Files\Content.IE5\5BG0UHCB\
C:\Documents and Settings\Default User\Ustawienia lokalne\Temporary Internet Files\Content.IE5\81EP25CQ\
C:\Documents and Settings\Default User\Ustawienia lokalne\Temporary Internet Files\Content.IE5\BT0AWIZD\
C:\Documents and Settings\Default User\Ustawienia lokalne\Temporary Internet Files\Content.IE5\OWQUN0JO\
C:\Documents and Settings\LocalService\
C:\Documents and Settings\LocalService\Cookies\
C:\Documents and Settings\LocalService\Dane aplikacji\Adobe\Acrobat\8.0\
C:\Documents and Settings\LocalService\Ustawienia lokalne\
C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\
C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Adobe\Acrobat\8.0\Updater\
C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Adobe\Updater5\
C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Adobe\Updater5\Data\
C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Microsoft\Windows\
C:\Documents and Settings\LocalService\Ustawienia lokalne\Historia\
C:\Documents and Settings\LocalService\Ustawienia lokalne\Historia\History.IE5\
C:\Documents and Settings\LocalService\Ustawienia lokalne\Historia\History.IE5\MSHist012008041220080413\
C:\Documents and Settings\LocalService\Ustawienia lokalne\temp\Cookies\
C:\Documents and Settings\LocalService\Ustawienia lokalne\temp\Historia\History.IE5\
C:\Documents and Settings\LocalService\Ustawienia lokalne\temp\Temporary Internet Files\Content.IE5\
C:\Documents and Settings\LocalService\Ustawienia lokalne\temp\Temporary Internet Files\Content.IE5\9YI3JM3A\
C:\Documents and Settings\LocalService\Ustawienia lokalne\temp\Temporary Internet Files\Content.IE5\GHIJKLMN\
C:\Documents and Settings\LocalService\Ustawienia lokalne\temp\Temporary Internet Files\Content.IE5\K5QZKTAR\
C:\Documents and Settings\LocalService\Ustawienia lokalne\temp\Temporary Internet Files\Content.IE5\OPQRSTUV\
C:\Documents and Settings\LocalService\Ustawienia lokalne\Temporary Internet Files\
C:\Documents and Settings\LocalService\Ustawienia lokalne\Temporary Internet Files\Content.IE5\
C:\Documents and Settings\NetworkService\
C:\Documents and Settings\NetworkService\NTUSER.DAT
[WARNING] The file could not be opened!
[WARNING] Error code: 0x000D
[WARNING] Access error/file locked!
C:\Documents and Settings\NetworkService\ntuser.dat.LOG
[WARNING] The file could not be opened!
[WARNING] Error code: 0x000D
[WARNING] Access error/file locked!
C:\Documents and Settings\NetworkService\Ustawienia lokalne\
C:\Documents and Settings\NetworkService\Ustawienia lokalne\Dane aplikacji\Microsoft\Windows\
C:\Documents and Settings\NetworkService\Ustawienia lokalne\Dane aplikacji\Microsoft\Windows\UsrClass.dat
[WARNING] The file could not be opened!
[WARNING] Error code: 0x000D
[WARNING] Access error/file locked!
C:\Documents and Settings\NetworkService\Ustawienia lokalne\Dane aplikacji\Microsoft\Windows\UsrClass.dat.LOG
[WARNING] The file could not be opened!
[WARNING] Error code: 0x000D
[WARNING] Access error/file locked!
C:\Documents and Settings\NetworkService\Ustawienia lokalne\Historia\
C:\Documents and Settings\NetworkService\Ustawienia lokalne\Historia\History.IE5\
C:\Documents and Settings\NetworkService\Ustawienia lokalne\Temporary Internet Files\
C:\Intel\Logs\
C:\Muestras\
C:\Muestras\HLDRRR.EXE.Muestra EliBagle v11.21
[DETECTION] Is the Trojan horse TR/Dldr.Bagle.MQ
[INFO] The file was moved to '4844d148.qua'!
C:\Muestras\WINTEMS.EXE.Muestra EliBagle v11.21
[DETECTION] Is the Trojan horse TR/Bagle.Gen.B
[INFO] The file was moved to '484ed145.qua'!
C:\NVIDIA\Win2k\169.21\IS\
C:\Program Files\Adobe\Adobe Help Viewer\1.0\
C:\Program Files\Adobe\Adobe Help Viewer\1.0\Resources\en\
C:\Program Files\Adobe\Adobe Help Viewer\1.0\Resources\pl\
C:\Program Files\AGEIA Technologies\
C:\Program Files\AGEIA Technologies\bin\
C:\Program Files\AGEIA Technologies\driver\x86\1.1.1.14\
C:\Program Files\AGEIA Technologies\v2.3.1\
C:\Program Files\AGEIA Technologies\v2.3.2\
C:\Program Files\AGEIA Technologies\v2.3.3\
C:\Program Files\AGEIA Technologies\v2.4.0\
C:\Program Files\AGEIA Technologies\v2.4.1\
C:\Program Files\AGEIA Technologies\v2.4.4\
C:\Program Files\AGEIA Technologies\v2.5.0\
C:\Program Files\AGEIA Technologies\v2.5.1\
C:\Program Files\AGEIA Technologies\v2.5.2\
C:\Program Files\AGEIA Technologies\v2.5.3\
C:\Program Files\AGEIA Technologies\v2.5.4\
C:\Program Files\AGEIA Technologies\v2.6.0\
C:\Program Files\AGEIA Technologies\v2.6.1\
C:\Program Files\AGEIA Technologies\v2.6.2\
C:\Program Files\AGEIA Technologies\v2.6.3\
C:\Program Files\AGEIA Technologies\v2.6.4\
C:\Program Files\AGEIA Technologies\v2.7.0\
C:\Program Files\AGEIA Technologies\v2.7.0\AG1011\
C:\Program Files\AGEIA Technologies\v2.7.0\AG1021\
C:\Program Files\AGEIA Technologies\v2.7.1\
C:\Program Files\AGEIA Technologies\v2.7.1\AG1011\
C:\Program Files\AGEIA Technologies\v2.7.1\AG1021\
C:\Program Files\AGEIA Technologies\v2.7.2\
C:\Program Files\AGEIA Technologies\v2.7.2\AG1011\
C:\Program Files\AGEIA Technologies\v2.7.2\AG1021\
C:\Program Files\AGEIA Technologies\v2.7.3\
C:\Program Files\AGEIA Technologies\v2.7.3\AG1011\
C:\Program Files\AGEIA Technologies\v2.7.3\AG1021\
C:\Program Files\AGEIA Technologies\v2.7.4\
C:\Program Files\AGEIA Technologies\v2.7.4\AG1011\
C:\Program Files\AGEIA Technologies\v2.7.4\AG1021\
C:\Program Files\Analog Devices\Core\
C:\Program Files\Analog Devices\SoundMAX\
C:\Program Files\Analog Devices\SoundMAX\Help\Chm\
C:\Program Files\Analog Devices\SoundMAX\Test\
C:\Program Files\ASUS WiFi-AP Solo\
C:\Program Files\AviSynth 2.5\plugins\
C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\
C:\Program Files\Common Files\Adobe\Help\en_US\Adobe Reader\8.0\
C:\Program Files\Common Files\Adobe\Help\en_US\Adobe Reader\8.0\images\
C:\Program Files\Common Files\Adobe\Help\pl_PL\Adobe Reader\8.0\
C:\Program Files\Common Files\Adobe\Help\pl_PL\Adobe Reader\8.0\images\
C:\Program Files\Common Files\Adobe\TypeSpt\Unicode\ICU\
C:\Program Files\Common Files\Adobe\TypeSpt\Unicode\Mappings\Adobe\
C:\Program Files\Common Files\Adobe\TypeSpt\Unicode\Mappings\Mac\
C:\Program Files\Common Files\Adobe\TypeSpt\Unicode\Mappings\win\
C:\Program Files\Common Files\Adobe\Updater5\
C:\Program Files\Common Files\Ahead\AudioPlugins\
C:\Program Files\Common Files\Ahead\BackItUp\
C:\Program Files\Common Files\Ahead\DSFilter\
C:\Program Files\Common Files\Ahead\InCDReader\
C:\Program Files\Common Files\Ahead\Lib\
C:\Program Files\Common Files\Ahead\Lib\NeroPreview\
C:\Program Files\Common Files\Ahead\Lib\NeroPreview\default\
C:\Program Files\Common Files\Ahead\Lib\NeroPreview\filedlg\
C:\Program Files\Common Files\Ahead\Lib\NeroPreview\rich\black\
C:\Program Files\Common Files\Ahead\Lib\NeroPreview\rich\green\
C:\Program Files\Common Files\Ahead\Lib\NeroPreview\rich\red\
C:\Program Files\Common Files\Ahead\Lib\NeroPreview\rich\white\
C:\Program Files\Common Files\Ahead\NAS\
C:\Program Files\Common Files\Ahead\NAS\nas\
C:\Program Files\Common Files\Ahead\NAS\nas\presets\
C:\Program Files\Common Files\Ahead\Nero 7\
C:\Program Files\Common Files\Ahead\Nero 7\Eula\
C:\Program Files\Common Files\Ahead\Nero Web\
C:\Program Files\Common Files\Ahead\NeroSlideShow\
C:\Program Files\Common Files\Ahead\RemoteControl\
C:\Program Files\Common Files\Ahead\SecurDisc Viewer\
C:\Program Files\Common Files\DESIGNER\
C:\Program Files\Common Files\Hewlett-Packard\Scanjet\
C:\Program Files\Common Files\InstallShield\Driver\9\Intel 32\
C:\Program Files\Common Files\InstallShield\Engine\6\Intel 32\
C:\Program Files\Common Files\InstallShield\IScript\
C:\Program Files\Common Files\InstallShield\Professional\RunTime\
C:\Program Files\Common Files\InstallShield\Professional\RunTime\09\01\Intel32\
C:\Program Files\Common Files\InstallShield\Professional\RunTime\10\00\Intel32\
C:\Program Files\Common Files\Java\Update\Base Images\jre1.6.0.b105\
C:\Program Files\Common Files\Java\Update\Base Images\jre1.6.0.b105\patch-jre1.6.0_05.b13\
C:\Program Files\Common Files\Microsoft Shared\DAO\
C:\Program Files\Common Files\Microsoft Shared\DW\
C:\Program Files\Common Files\Microsoft Shared\DW\1025\
C:\Program Files\Common Files\Microsoft Shared\DW\1028\
C:\Program Files\Common Files\Microsoft Shared\DW\1031\
C:\Program Files\Common Files\Microsoft Shared\DW\1033\
C:\Program Files\Common Files\Microsoft Shared\DW\1036\
C:\Program Files\Common Files\Microsoft Shared\DW\1040\
C:\Program Files\Common Files\Microsoft Shared\DW\1041\
C:\Program Files\Common Files\Microsoft Shared\DW\1042\
C:\Program Files\Common Files\Microsoft Shared\DW\1045\
C:\Program Files\Common Files\Microsoft Shared\DW\2052\
C:\Program Files\Common Files\Microsoft Shared\DW\3082\
C:\Program Files\Common Files\Microsoft Shared\EQUATION\
C:\Program Files\Common Files\Microsoft Shared\EQUATION\1045\
C:\Program Files\Common Files\Microsoft Shared\EURO\
C:\Program Files\Common Files\Microsoft Shared\Filters\
C:\Program Files\Common Files\Microsoft Shared\GRPHFLT\
C:\Program Files\Common Files\Microsoft Shared\Help\
C:\Program Files\Common Files\Microsoft Shared\Help\1028\
C:\Program Files\Common Files\Microsoft Shared\Help\1031\
C:\Program Files\Common Files\Microsoft Shared\Help\1033\
C:\Program Files\Common Files\Microsoft Shared\Help\1036\
C:\Program Files\Common Files\Microsoft Shared\Help\1040\
C:\Program Files\Common Files\Microsoft Shared\Help\1041\
C:\Program Files\Common Files\Microsoft Shared\Help\1042\
C:\Program Files\Common Files\Microsoft Shared\Help\1046\
C:\Program Files\Common Files\Microsoft Shared\Help\1049\
C:\Program Files\Common Files\Microsoft Shared\Help\2052\
C:\Program Files\Common Files\Microsoft Shared\Help\3082\
C:\Program Files\Common Files\Microsoft Shared\INK\
C:\Program Files\Common Files\Microsoft Shared\MSEnv\
C:\Program Files\Common Files\Microsoft Shared\MSInfo\
C:\Program Files\Common Files\Microsoft Shared\MSORUN\
C:\Program Files\Common Files\Microsoft Shared\OFFICE11\
C:\Program Files\Common Files\Microsoft Shared\OFFICE11\1045\
C:\Program Files\Common Files\Microsoft Shared\OFFICE12\
C:\Program Files\Common Files\Microsoft Shared\OFFICE12\1045\
C:\Program Files\Common Files\Microsoft Shared\OFFICE12\Cultures\
C:\Program Files\Common Files\Microsoft Shared\OFFICE12\HTML\
C:\Program Files\Common Files\Microsoft Shared\OFFICE12\HTML\XMLLINKS\
C:\Program Files\Common Files\Microsoft Shared\OFFICE12\HTML\XMLLINKS\1045\
C:\Program Files\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\
C:\Program Files\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\Access.pl-pl\
C:\Program Files\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\ENTERPRISE\
C:\Program Files\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\Excel.pl-pl\
C:\Program Files\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\Groove.pl-pl\
C:\Program Files\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\InfoPath.pl-pl\
C:\Program Files\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\Office.pl-pl\
C:\Program Files\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\OneNote.pl-pl\
C:\Program Files\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\Outlook.pl-pl\
C:\Program Files\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\PowerPoint.pl-pl\
C:\Program Files\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\Proof.de\
C:\Program Files\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\Proof.en\
C:\Program Files\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\Proof.pl\
C:\Program Files\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\Proofing.pl-pl\
C:\Program Files\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\Publisher.pl-pl\
C:\Program Files\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\Rosebud.pl-pl\
C:\Program Files\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\Word.pl-pl\
C:\Program Files\Common Files\Microsoft Shared\OFFICE12\VS Runtime\
C:\Program Files\Common Files\Microsoft Shared\OFFICE12\VS Runtime\1045\
C:\Program Files\Common Files\Microsoft Shared\OFFICE12\VS Runtime\SCHEMAS\HTML\
C:\Program Files\Common Files\Microsoft Shared\OFFICE12\VS Runtime\SCHEMAS\XML\
C:\Program Files\Common Files\Microsoft Shared\Portal\
C:\Program Files\Common Files\Microsoft Shared\Portal\1045\
C:\Program Files\Common Files\Microsoft Shared\PROOF\
C:\Program Files\Common Files\Microsoft Shared\PROOF\1031\
C:\Program Files\Common Files\Microsoft Shared\PROOF\1033\
C:\Program Files\Common Files\Microsoft Shared\PROOF\1045\
C:\Program Files\Common Files\Microsoft Shared\Smart Tag\
C:\Program Files\Common Files\Microsoft Shared\Smart Tag\1045\
C:\Program Files\Common Files\Microsoft Shared\Smart Tag\LISTS\
C:\Program Files\Common Files\Microsoft Shared\Smart Tag\LISTS\1045\
C:\Program Files\Common Files\Microsoft Shared\Source Engine\
C:\Program Files\Common Files\Microsoft Shared\Speech\
C:\Program Files\Common Files\Microsoft Shared\Speech\1045\
C:\Program Files\Common Files\Microsoft Shared\Stationery\
C:\Program Files\Common Files\Microsoft Shared\TextConv\
C:\Program Files\Common Files\Microsoft Shared\THEMES12\
C:\Program Files\Common Files\Microsoft Shared\THEMES12\AFTRNOON\
C:\Program Files\Common Files\Microsoft Shared\THEMES12\ARCTIC\
C:\Program Files\Common Files\Microsoft Shared\THEMES12\AXIS\
C:\Program Files\Common Files\Microsoft Shared\THEMES12\BLENDS\
C:\Program Files\Common Files\Microsoft Shared\THEMES12\BLUECALM\
C:\Program Files\Common Files\Microsoft Shared\THEMES12\BLUEPRNT\
C:\Program Files\Common Files\Microsoft Shared\THEMES12\BOLDSTRI\
C:\Program Files\Common Files\Microsoft Shared\THEMES12\BREEZE\
C:\Program Files\Common Files\Microsoft Shared\THEMES12\CANYON\
C:\Program Files\Common Files\Microsoft Shared\THEMES12\CAPSULES\
C:\Program Files\Common Files\Microsoft Shared\THEMES12\CASCADE\
C:\Program Files\Common Files\Microsoft Shared\THEMES12\COMPASS\
C:\Program Files\Common Files\Microsoft Shared\THEMES12\CONCRETE\
C:\Program Files\Common Files\Microsoft Shared\THEMES12\DEEPBLUE\
C:\Program Files\Common Files\Microsoft Shared\THEMES12\ECHO\
C:\Program Files\Common Files\Microsoft Shared\THEMES12\ECLIPSE\
C:\Program Files\Common Files\Microsoft Shared\THEMES12\EDGE\
C:\Program Files\Common Files\Microsoft Shared\THEMES12\EVRGREEN\
C:\Program Files\Common Files\Microsoft Shared\THEMES12\EXPEDITN\
C:\Program Files\Common Files\Microsoft Shared\THEMES12\ICE\
C:\Program Files\Common Files\Microsoft Shared\THEMES12\INDUST\
C:\Program Files\Common Files\Microsoft Shared\THEMES12\IRIS\
C:\Program Files\Common Files\Microsoft Shared\THEMES12\JOURNAL\
C:\Program Files\Common Files\Microsoft Shared\THEMES12\LAYERS\
C:\Program Files\Common Files\Microsoft Shared\THEMES12\LEVEL\
C:\Program Files\Common Files\Microsoft Shared\THEMES12\NETWORK\
C:\Program Files\Common Files\Microsoft Shared\THEMES12\PAPYRUS\
C:\Program Files\Common Files\Microsoft Shared\THEMES12\PIXEL\
C:\Program Files\Common Files\Microsoft Shared\THEMES12\PROFILE\
C:\Program Files\Common Files\Microsoft Shared\THEMES12\QUAD\
C:\Program Files\Common Files\Microsoft Shared\THEMES12\RADIAL\
C:\Program Files\Common Files\Microsoft Shared\THEMES12\REFINED\
C:\Program Files\Common Files\Microsoft Shared\THEMES12\RICEPAPR\
C:\Program Files\Common Files\Microsoft Shared\THEMES12\RIPPLE\
C:\Program Files\Common Files\Microsoft Shared\THEMES12\RMNSQUE\
C:\Program Files\Common Files\Microsoft Shared\THEMES12\SATIN\
C:\Program Files\Common Files\Microsoft Shared\THEMES12\SKY\
C:\Program Files\Common Files\Microsoft Shared\THEMES12\SLATE\
C:\Program Files\Common Files\Microsoft Shared\THEMES12\SONORA\
C:\Program Files\Common Files\Microsoft Shared\THEMES12\SPRING\
C:\Program Files\Common Files\Microsoft Shared\THEMES12\STRTEDGE\
C:\Program Files\Common Files\Microsoft Shared\THEMES12\STUDIO\
C:\Program Files\Common Files\Microsoft Shared\THEMES12\SUMIPNTG\
C:\Program Files\Common Files\Microsoft Shared\THEMES12\WATER\
C:\Program Files\Common Files\Microsoft Shared\THEMES12\WATERMAR\
C:\Program Files\Common Files\Microsoft Shared\TRANSLAT\
C:\Program Files\Common Files\Microsoft Shared\TRANSLAT\ENGE\
C:\Program Files\Common Files\Microsoft Shared\TRANSLAT\GEEN\
C:\Program Files\Common Files\Microsoft Shared\Triedit\
C:\Program Files\Common Files\Microsoft Shared\VBA\VBA6\
C:\Program Files\Common Files\Microsoft Shared\VBA\VBA6\1033\
C:\Program Files\Common Files\Microsoft Shared\VBA\VBA6\1045\
C:\Program Files\Common Files\Microsoft Shared\VC\
C:\Program Files\Common Files\Microsoft Shared\VGX\
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\
C:\Program Files\Common Files\Microsoft Shared\Web Folders\
C:\Program Files\Common Files\Microsoft Shared\Web Folders\1045\
C:\Program Files\Common Files\Microsoft Shared\web server extensions\12\BIN\
C:\Program Files\Common Files\Microsoft Shared\web server extensions\12\BIN\1045\
C:\Program Files\Common Files\Microsoft Shared\web server extensions\40\bin\
C:\Program Files\Common Files\Microsoft Shared\web server extensions\40\bin\1045\
C:\Program Files\Common Files\MSSoap\Binaries\
C:\Program Files\Common Files\MSSoap\Binaries\Resources\1045\
C:\Program Files\Common Files\Services\
C:\Program Files\Common Files\SpeechEngines\Microsoft\
C:\Program Files\Common Files\SpeechEngines\Microsoft\Lexicon\1033\
C:\Program Files\Common Files\SpeechEngines\Microsoft\TTS\1033\
C:\Program Files\Common Files\System\
C:\Program Files\Common Files\System\ado\
C:\Program Files\Common Files\System\msadc\
C:\Program Files\Common Files\System\Ole DB\
C:\Program Files\Common Files\System\Ole DB\Cartridges\
C:\Program Files\Common Files\System\Ole DB\resources\1033\
C:\Program Files\Common Files\System\Ole DB\resources\1045\
C:\Program Files\Common Files\Wise Installation Wizard\
C:\Program Files\HP\Digital Imaging\bin\
C:\Program Files\HP\Digital Imaging\Data\
C:\Program Files\HP\Digital Imaging\Data\DefaultScanSettings\
C:\Program Files\HP\Digital Imaging\help\
C:\Program Files\HP\Digital Imaging\Skins\oov1\bc\css\
C:\Program Files\HP\Digital Imaging\Skins\oov1\bc\htc\
C:\Program Files\HP\Digital Imaging\Skins\oov1\bc\img\
C:\Program Files\HP\Digital Imaging\Skins\oov1\sc\
C:\Program Files\HP\Digital Imaging\Skins\oov1\sc\css\
C:\Program Files\HP\Digital Imaging\Skins\oov1\sc\img\
C:\Program Files\HP\Digital Imaging\Skins\oov1\sc\js\
C:\Program Files\HP\Digital Imaging\Skins\oov1\sc\loc\
C:\Program Files\HP\Digital Imaging\{49FB31C1-26EC-44c6-AB47-73C66E2BC41E}\
C:\Program Files\HP\Digital Imaging\{49FB31C1-26EC-44c6-AB47-73C66E2BC41E}\common\drivers\com_os\
C:\Program Files\HP\Digital Imaging\{49FB31C1-26EC-44c6-AB47-73C66E2BC41E}\common\drivers\win2k_xp\
C:\Program Files\HP\Digital Imaging\{49FB31C1-26EC-44c6-AB47-73C66E2BC41E}\drivers\dot4\win2000\
C:\Program Files\HP\Digital Imaging\{49FB31C1-26EC-44c6-AB47-73C66E2BC41E}\drivers\scanner\
C:\Program Files\HP\Digital Imaging\{49FB31C1-26EC-44c6-AB47-73C66E2BC41E}\met\drivers\com_lang\
C:\Program Files\HP\Digital Imaging\{49FB31C1-26EC-44c6-AB47-73C66E2BC41E}\plk\drivers\com_lang\
C:\Program Files\HP\Digital Imaging\{49FB31C1-26EC-44c6-AB47-73C66E2BC41E}\setup\
C:\Program Files\HP\Digital Imaging\{49FB31C1-26EC-44c6-AB47-73C66E2BC41E}\util\aio\
C:\Program Files\HP\Digital Imaging\{49FB31C1-26EC-44c6-AB47-73C66E2BC41E}\util\common\
C:\Program Files\HP\Non Driver CIO Components\
C:\Program Files\HP\Temp\{49FB31C1-26EC-44c6-AB47-73C66E2BC41E}\setup\
C:\Program Files\InstallShield Installation Information\{17342E3B-0818-4A6F-BFF8-99476605ADD6}\
C:\Program Files\InstallShield Installation Information\{2702B8FC-6003-4AC6-ADBC-EC65746D800A}\
C:\Program Files\InstallShield Installation Information\{8B3F4499-32E6-470D-8586-E6C03420F889}\
C:\Program Files\InstallShield Installation Information\{F0A37341-D692-11D4-A984-009027EC0A9C}\
C:\Program Files\Intel\InfInst\
C:\Program Files\Internet Explorer\
C:\Program Files\Internet Explorer\Connection Wizard\
C:\Program Files\Internet Explorer\MUI\0409\
C:\Program Files\Internet Explorer\PLUGINS\
C:\Program Files\Internet Explorer\SIGNUP\
C:\Program Files\Java\jre1.6.0_05\
C:\Program Files\Java\jre1.6.0_05\bin\
C:\Program Files\Java\jre1.6.0_05\bin\client\
C:\Program Files\Java\jre1.6.0_05\lib\
C:\Program Files\Java\jre1.6.0_05\lib\cmm\
C:\Program Files\Java\jre1.6.0_05\lib\deploy\
C:\Program Files\Java\jre1.6.0_05\lib\ext\
C:\Program Files\Java\jre1.6.0_05\lib\fonts\
C:\Program Files\Java\jre1.6.0_05\lib\i386\
C:\Program Files\Java\jre1.6.0_05\lib\im\
C:\Program Files\Java\jre1.6.0_05\lib\images\cursors\
C:\Program Files\Java\jre1.6.0_05\lib\management\
C:\Program Files\Java\jre1.6.0_05\lib\security\
C:\Program Files\Java\jre1.6.0_05\lib\servicetag\
C:\Program Files\Java\jre1.6.0_05\lib\zi\
C:\Program Files\Java\jre1.6.0_05\lib\zi\Africa\
C:\Program Files\Java\jre1.6.0_05\lib\zi\America\
C:\Program Files\Java\jre1.6.0_05\lib\zi\America\Argentina\
C:\Program Files\Java\jre1.6.0_05\lib\zi\America\Indiana\
C:\Program Files\Java\jre1.6.0_05\lib\zi\America\Kentucky\
C:\Program Files\Java\jre1.6.0_05\lib\zi\America\North_Dakota\
C:\Program Files\Java\jre1.6.0_05\lib\zi\Antarctica\
C:\Program Files\Java\jre1.6.0_05\lib\zi\Asia\
C:\Program Files\Java\jre1.6.0_05\lib\zi\Atlantic\
C:\Program Files\Java\jre1.6.0_05\lib\zi\Australia\
C:\Program Files\Java\jre1.6.0_05\lib\zi\Etc\
C:\Program Files\Java\jre1.6.0_05\lib\zi\Europe\
C:\Program Files\Java\jre1.6.0_05\lib\zi\Indian\
C:\Program Files\Java\jre1.6.0_05\lib\zi\Pacific\
C:\Program Files\Java\jre1.6.0_05\lib\zi\SystemV\
C:\Program Files\Marvell\Miniport Driver\
C:\Program Files\Messenger\
C:\Program Files\Microsoft Silverlight\2.0.30226.2\
C:\Program Files\Microsoft Silverlight\2.0.30226.2\ja\
C:\Program Files\Microsoft Silverlight\2.0.30226.2\ko\
C:\Program Files\Microsoft Visual Studio\COMMON\IDE\IDE98\
C:\Program Files\Microsoft Works\
C:\Program Files\Microsoft Works\1033\
C:\Program Files\Movie Maker\
C:\Program Files\Movie Maker\MUI\0415\
C:\Program Files\Movie Maker\Shared\
C:\Program Files\Movie Maker\Shared\Profiles\
C:\Program Files\MSBuild\Microsoft\Windows Workflow Foundation\v3.0\
C:\Program Files\MSBuild\Microsoft\Windows Workflow Foundation\v3.5\
C:\Program Files\MSN Gaming Zone\Windows\
C:\Program Files\MSXML 6.0\EULA\
C:\Program Files\NetMeeting\
C:\Program Files\Outlook Express\
C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.0\
C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.0\RedistList\
C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.5\
C:\Program Files\Reference Assemblies\Microsoft\Framework\v3.5\RedistList\
C:\Program Files\SAGEM\SAGEM F@st 3202\
C:\Program Files\Trend Micro\HijackThis\
C:\Program Files\Usługi online\
C:\Program Files\uTorrent\
C:\Program Files\Windows Media Player\
C:\Program Files\Windows Media Player\Skins\
C:\Program Files\Windows NT\
C:\Program Files\Windows NT\Accessories\
C:\Program Files\Windows NT\Pinball\
C:\QooBox\
C:\QooBox\BackEnv\
C:\QooBox\Quarantine\
C:\QooBox\Quarantine\C\WINDOWS\system32\
C:\QooBox\Quarantine\C\WINDOWS\system32\mdelk.exe.vir
[DETECTION] Is the Trojan horse TR/Bagle.Gen.B
[INFO] The file was moved to '4865d231.qua'!
C:\QooBox\Quarantine\C\WINDOWS\system32\drivers\
C:\QooBox\Quarantine\C\WINDOWS\system32\drivers\mdelk.exe.vir
[DETECTION] Is the Trojan horse TR/Dldr.Bagle.MQ
[INFO] The file was moved to '49174d82.qua'!
C:\QooBox\Quarantine\C\WINDOWS\system32\drivers\downld\
C:\QooBox\Quarantine\C\WINDOWS\system32\drivers\downld\181281.exe.vir
[DETECTION] Is the Trojan horse TR/Bagle.Gen.B
[INFO] The file was moved to '4831d205.qua'!
C:\QooBox\Quarantine\C\WINDOWS\system32\drivers\downld\218390.exe.vir
[DETECTION] Is the Trojan horse TR/Bagle.Gen.B
[INFO] The file was moved to '4838d1ff.qua'!
C:\QooBox\Quarantine\H\
C:\QooBox\Quarantine\Registry_backups\
C:\RECYCLER\S-1-5-21-796845957-1844237615-725345543-1003\
12 Avril 2008 20:33:06

C:\temp\
C:\temp\HP_WebRelease\
C:\temp\HP_WebRelease\chs\drivers\com_lang\
C:\temp\HP_WebRelease\cht\drivers\com_lang\
C:\temp\HP_WebRelease\common\drivers\com_os\
C:\temp\HP_WebRelease\common\drivers\win2k_xp\
C:\temp\HP_WebRelease\common\drivers\win9x_me\
C:\temp\HP_WebRelease\csy\drivers\com_lang\
C:\temp\HP_WebRelease\dan\drivers\com_lang\
C:\temp\HP_WebRelease\deu\drivers\com_lang\
C:\temp\HP_WebRelease\drivers\dot4\win2000\
C:\temp\HP_WebRelease\drivers\dot4\win98\
C:\temp\HP_WebRelease\drivers\dot4\winxp\
C:\temp\HP_WebRelease\drivers\dot4\wrapper\
C:\temp\HP_WebRelease\drivers\scanner\
C:\temp\HP_WebRelease\ell\drivers\com_lang\
C:\temp\HP_WebRelease\enu\drivers\com_lang\
C:\temp\HP_WebRelease\enu\drivers\win9x_me\
C:\temp\HP_WebRelease\esm\drivers\com_lang\
C:\temp\HP_WebRelease\fin\drivers\com_lang\
C:\temp\HP_WebRelease\fra\drivers\com_lang\
C:\temp\HP_WebRelease\grk\drivers\com_lang\
C:\temp\HP_WebRelease\hun\drivers\com_lang\
C:\temp\HP_WebRelease\images\
C:\temp\HP_WebRelease\ita\drivers\com_lang\
C:\temp\HP_WebRelease\jpn\drivers\com_lang\
C:\temp\HP_WebRelease\kor\drivers\com_lang\
C:\temp\HP_WebRelease\langfls\
C:\temp\HP_WebRelease\met\drivers\com_lang\
C:\temp\HP_WebRelease\met\drivers\win9x_me\
C:\temp\HP_WebRelease\nld\drivers\com_lang\
C:\temp\HP_WebRelease\nob\drivers\com_lang\
C:\temp\HP_WebRelease\non\drivers\com_lang\
C:\temp\HP_WebRelease\plk\drivers\com_lang\
C:\temp\HP_WebRelease\plk\drivers\win9x_me\
C:\temp\HP_WebRelease\ptb\drivers\com_lang\
C:\temp\HP_WebRelease\resting\
C:\temp\HP_WebRelease\resting\langfls\
C:\temp\HP_WebRelease\rus\drivers\com_lang\
C:\temp\HP_WebRelease\setup\
C:\temp\HP_WebRelease\setup\aio_scan\
C:\temp\HP_WebRelease\setup\ar\
C:\temp\HP_WebRelease\setup\ca\
C:\temp\HP_WebRelease\setup\cs\
C:\temp\HP_WebRelease\setup\da\
C:\temp\HP_WebRelease\setup\de\
C:\temp\HP_WebRelease\setup\el\
C:\temp\HP_WebRelease\setup\en\
C:\temp\HP_WebRelease\setup\es\
C:\temp\HP_WebRelease\setup\esiv\
C:\temp\HP_WebRelease\setup\fi\
C:\temp\HP_WebRelease\setup\fr\
C:\temp\HP_WebRelease\setup\he\
C:\temp\HP_WebRelease\setup\help\
C:\temp\HP_WebRelease\setup\help\images\
C:\temp\HP_WebRelease\setup\help\pl\
C:\temp\HP_WebRelease\setup\hu\
C:\temp\HP_WebRelease\setup\images\
C:\temp\HP_WebRelease\setup\it\
C:\temp\HP_WebRelease\setup\ja\
C:\temp\HP_WebRelease\setup\ko\
C:\temp\HP_WebRelease\setup\nl\
C:\temp\HP_WebRelease\setup\no\
C:\temp\HP_WebRelease\setup\pl\
C:\temp\HP_WebRelease\setup\pt\
C:\temp\HP_WebRelease\setup\qfolder\
C:\temp\HP_WebRelease\setup\redisco\
C:\temp\HP_WebRelease\setup\ru\
C:\temp\HP_WebRelease\setup\scan\
C:\temp\HP_WebRelease\setup\sipm\
C:\temp\HP_WebRelease\setup\sk\
C:\temp\HP_WebRelease\setup\sv\
C:\temp\HP_WebRelease\setup\th\
C:\temp\HP_WebRelease\setup\tr\
C:\temp\HP_WebRelease\setup\wis\Win2K_XP\
C:\temp\HP_WebRelease\setup\wis\Win9x\
C:\temp\HP_WebRelease\setup\zhcn\
C:\temp\HP_WebRelease\setup\zhtw\
C:\temp\HP_WebRelease\svc\drivers\com_lang\
C:\temp\HP_WebRelease\sve\drivers\com_lang\
C:\temp\HP_WebRelease\trk\drivers\com_lang\
C:\temp\HP_WebRelease\tur\drivers\com_lang\
C:\temp\HP_WebRelease\util\
C:\temp\HP_WebRelease\util\aio\
C:\temp\HP_WebRelease\util\ccc\
C:\temp\HP_WebRelease\util\ccc\diagnostics\
C:\temp\HP_WebRelease\util\ccc\diagnostics\loc\cz\
C:\temp\HP_WebRelease\util\ccc\diagnostics\loc\da\
C:\temp\HP_WebRelease\util\ccc\diagnostics\loc\du\
C:\temp\HP_WebRelease\util\ccc\diagnostics\loc\en\
C:\temp\HP_WebRelease\util\ccc\diagnostics\loc\fi\
C:\temp\HP_WebRelease\util\ccc\diagnostics\loc\fr\
C:\temp\HP_WebRelease\util\ccc\diagnostics\loc\ge\
C:\temp\HP_WebRelease\util\ccc\diagnostics\loc\gr\
C:\temp\HP_WebRelease\util\ccc\diagnostics\loc\hu\
C:\temp\HP_WebRelease\util\ccc\diagnostics\loc\it\
C:\temp\HP_WebRelease\util\ccc\diagnostics\loc\ja\
C:\temp\HP_WebRelease\util\ccc\diagnostics\loc\ko\
C:\temp\HP_WebRelease\util\ccc\diagnostics\loc\no\
C:\temp\HP_WebRelease\util\ccc\diagnostics\loc\po\
C:\temp\HP_WebRelease\util\ccc\diagnostics\loc\pol\
C:\temp\HP_WebRelease\util\ccc\diagnostics\loc\ru\
C:\temp\HP_WebRelease\util\ccc\diagnostics\loc\sc\
C:\temp\HP_WebRelease\util\ccc\diagnostics\loc\sp\
C:\temp\HP_WebRelease\util\ccc\diagnostics\loc\sw\
C:\temp\HP_WebRelease\util\ccc\diagnostics\loc\tc\
C:\temp\HP_WebRelease\util\ccc\diagnostics\loc\tu\
C:\temp\HP_WebRelease\util\ccc\plk\
C:\temp\HP_WebRelease\util\common\
C:\WINDOWS\
C:\WINDOWS\$hf_mig$\KB898461\
C:\WINDOWS\$hf_mig$\KB898461\update\
C:\WINDOWS\$MSI31Uninstall_KB893803v2$\
C:\WINDOWS\$MSI31Uninstall_KB893803v2$\spuninst\
C:\WINDOWS\$NtUninstallKB888111WXPSP2$\spuninst\
C:\WINDOWS\$NtUninstallKB898461$\spuninst\
C:\WINDOWS\$NtUninstallWIC$\spuninst\
C:\WINDOWS\AppPatch\
C:\WINDOWS\assembly\
C:\WINDOWS\assembly\GAC\Microsoft.DirectX\1.0.2902.0__31bf3856ad364e35\
C:\WINDOWS\assembly\GAC\Microsoft.DirectX.AudioVideoPlayback\1.0.2902.0__31bf3856ad364e35\
C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Diagnostics\1.0.2902.0__31bf3856ad364e35\
C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3D\1.0.2902.0__31bf3856ad364e35\
C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2902.0__31bf3856ad364e35\
C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2903.0__31bf3856ad364e35\
C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2904.0__31bf3856ad364e35\
C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2905.0__31bf3856ad364e35\
C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2906.0__31bf3856ad364e35\
C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2907.0__31bf3856ad364e35\
C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2908.0__31bf3856ad364e35\
C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2909.0__31bf3856ad364e35\
C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2910.0__31bf3856ad364e35\
C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2911.0__31bf3856ad364e35\
C:\WINDOWS\assembly\GAC\Microsoft.DirectX.DirectDraw\1.0.2902.0__31bf3856ad364e35\
C:\WINDOWS\assembly\GAC\Microsoft.DirectX.DirectInput\1.0.2902.0__31bf3856ad364e35\
C:\WINDOWS\assembly\GAC\Microsoft.DirectX.DirectPlay\1.0.2902.0__31bf3856ad364e35\
C:\WINDOWS\assembly\GAC\Microsoft.DirectX.DirectSound\1.0.2902.0__31bf3856ad364e35\
C:\WINDOWS\assembly\GAC_32\CustomMarshalers\2.0.0.0__b03f5f7f11d50a3a\
C:\WINDOWS\assembly\GAC_32\ISymWrapper\2.0.0.0__b03f5f7f11d50a3a\
C:\WINDOWS\assembly\GAC_32\Microsoft.Transactions.Bridge.Dtc\3.0.0.0__b03f5f7f11d50a3a\
C:\WINDOWS\assembly\GAC_32\mscorlib\2.0.0.0__b77a5c561934e089\
C:\WINDOWS\assembly\GAC_32\PresentationCore\3.0.0.0__31bf3856ad364e35\
C:\WINDOWS\assembly\GAC_32\System.Data\2.0.0.0__b77a5c561934e089\
C:\WINDOWS\assembly\GAC_32\System.Data.OracleClient\2.0.0.0__b77a5c561934e089\
C:\WINDOWS\assembly\GAC_32\System.EnterpriseServices\2.0.0.0__b03f5f7f11d50a3a\
C:\WINDOWS\assembly\GAC_32\System.Printing\3.0.0.0__31bf3856ad364e35\
C:\WINDOWS\assembly\GAC_32\System.Transactions\2.0.0.0__b77a5c561934e089\
C:\WINDOWS\assembly\GAC_32\System.Web\2.0.0.0__b03f5f7f11d50a3a\
C:\WINDOWS\assembly\GAC_MSIL\Accessibility\2.0.0.0__b03f5f7f11d50a3a\
C:\WINDOWS\assembly\GAC_MSIL\AspNetMMCExt\2.0.0.0__b03f5f7f11d50a3a\
C:\WINDOWS\assembly\GAC_MSIL\cscompmgd\8.0.0.0__b03f5f7f11d50a3a\
C:\WINDOWS\assembly\GAC_MSIL\IEExecRemote\2.0.0.0__b03f5f7f11d50a3a\
C:\WINDOWS\assembly\GAC_MSIL\IEHost\2.0.0.0__b03f5f7f11d50a3a\
C:\WINDOWS\assembly\GAC_MSIL\IIEHost\2.0.0.0__b03f5f7f11d50a3a\
C:\WINDOWS\assembly\GAC_MSIL\Microsoft.Build.Conversion.v3.5\3.5.0.0__b03f5f7f11d50a3a\
C:\WINDOWS\assembly\GAC_MSIL\Microsoft.Build.Engine\2.0.0.0__b03f5f7f11d50a3a\
C:\WINDOWS\assembly\GAC_MSIL\Microsoft.Build.Engine\3.5.0.0__b03f5f7f11d50a3a\
C:\WINDOWS\assembly\GAC_MSIL\Microsoft.Build.Framework\2.0.0.0__b03f5f7f11d50a3a\
C:\WINDOWS\assembly\GAC_MSIL\Microsoft.Build.Framework\3.5.0.0__b03f5f7f11d50a3a\
C:\WINDOWS\assembly\GAC_MSIL\Microsoft.Build.Tasks\2.0.0.0__b03f5f7f11d50a3a\
C:\WINDOWS\assembly\GAC_MSIL\Microsoft.Build.Tasks.v3.5\3.5.0.0__b03f5f7f11d50a3a\
C:\WINDOWS\assembly\GAC_MSIL\Microsoft.Build.Utilities\2.0.0.0__b03f5f7f11d50a3a\
C:\WINDOWS\assembly\GAC_MSIL\Microsoft.Build.Utilities.v3.5\3.5.0.0__b03f5f7f11d50a3a\
C:\WINDOWS\assembly\GAC_MSIL\Microsoft.JScript\8.0.0.0__b03f5f7f11d50a3a\
C:\WINDOWS\assembly\GAC_MSIL\Microsoft.Transactions.Bridge\3.0.0.0__b03f5f7f11d50a3a\
C:\WINDOWS\assembly\GAC_MSIL\Microsoft.VisualBasic\8.0.0.0__b03f5f7f11d50a3a\
C:\WINDOWS\assembly\GAC_MSIL\Microsoft.VisualBasic.Compatibility\8.0.0.0__b03f5f7f11d50a3a\
C:\WINDOWS\assembly\GAC_MSIL\Microsoft.VisualBasic.Compatibility.Data\8.0.0.0__b03f5f7f11d50a3a\
C:\WINDOWS\assembly\GAC_MSIL\Microsoft.VisualBasic.Vsa\8.0.0.0__b03f5f7f11d50a3a\
C:\WINDOWS\assembly\GAC_MSIL\Microsoft.VisualC\8.0.0.0__b03f5f7f11d50a3a\
C:\WINDOWS\assembly\GAC_MSIL\Microsoft.VisualC.STLCLR\1.0.0.0__b03f5f7f11d50a3a\
C:\WINDOWS\assembly\GAC_MSIL\Microsoft.Vsa\8.0.0.0__b03f5f7f11d50a3a\
C:\WINDOWS\assembly\GAC_MSIL\Microsoft.Vsa.Vb.CodeDOMProcessor\8.0.0.0__b03f5f7f11d50a3a\
C:\WINDOWS\assembly\GAC_MSIL\Microsoft_VsaVb\8.0.0.0__b03f5f7f11d50a3a\
C:\WINDOWS\assembly\GAC_MSIL\PresentationBuildTasks\3.0.0.0__31bf3856ad364e35\
C:\WINDOWS\assembly\GAC_MSIL\PresentationCFFRasterizer\3.0.0.0__31bf3856ad364e35\
C:\WINDOWS\assembly\GAC_MSIL\PresentationFramework\3.0.0.0__31bf3856ad364e35\
C:\WINDOWS\assembly\GAC_MSIL\PresentationFramework.Aero\3.0.0.0__31bf3856ad364e35\
C:\WINDOWS\assembly\GAC_MSIL\PresentationFramework.Classic\3.0.0.0__31bf3856ad364e35\
C:\WINDOWS\assembly\GAC_MSIL\PresentationFramework.Luna\3.0.0.0__31bf3856ad364e35\
C:\WINDOWS\assembly\GAC_MSIL\PresentationFramework.Royale\3.0.0.0__31bf3856ad364e35\
C:\WINDOWS\assembly\GAC_MSIL\PresentationUI\3.0.0.0__31bf3856ad364e35\
C:\WINDOWS\assembly\GAC_MSIL\ReachFramework\3.0.0.0__31bf3856ad364e35\
C:\WINDOWS\assembly\GAC_MSIL\SMDiagnostics\3.0.0.0__b77a5c561934e089\
C:\WINDOWS\assembly\GAC_MSIL\sysglobl\2.0.0.0__b03f5f7f11d50a3a\
C:\WINDOWS\assembly\GAC_MSIL\System\2.0.0.0__b77a5c561934e089\
C:\WINDOWS\assembly\GAC_MSIL\System.AddIn\3.5.0.0__b77a5c561934e089\
C:\WINDOWS\assembly\GAC_MSIL\System.AddIn.Contract\2.0.0.0__b03f5f7f11d50a3a\
C:\WINDOWS\assembly\GAC_MSIL\System.Configuration\2.0.0.0__b03f5f7f11d50a3a\
C:\WINDOWS\assembly\GAC_MSIL\System.Configuration.Install\2.0.0.0__b03f5f7f11d50a3a\
C:\WINDOWS\assembly\GAC_MSIL\System.Core\3.5.0.0__b77a5c561934e089\
C:\WINDOWS\assembly\GAC_MSIL\System.Data.DataSetExtensions\3.5.0.0__b77a5c561934e089\
C:\WINDOWS\assembly\GAC_MSIL\System.Data.Linq\3.5.0.0__b77a5c561934e089\
C:\WINDOWS\assembly\GAC_MSIL\System.Data.SqlXml\2.0.0.0__b77a5c561934e089\
C:\WINDOWS\assembly\GAC_MSIL\System.Deployment\2.0.0.0__b03f5f7f11d50a3a\
C:\WINDOWS\assembly\GAC_MSIL\System.Design\2.0.0.0__b03f5f7f11d50a3a\
C:\WINDOWS\assembly\GAC_MSIL\System.DirectoryServices\2.0.0.0__b03f5f7f11d50a3a\
C:\WINDOWS\assembly\GAC_MSIL\System.DirectoryServices.AccountManagement\3.5.0.0__b77a5c561934e089\
C:\WINDOWS\assembly\GAC_MSIL\System.DirectoryServices.Protocols\2.0.0.0__b03f5f7f11d50a3a\
C:\WINDOWS\assembly\GAC_MSIL\System.Drawing\2.0.0.0__b03f5f7f11d50a3a\
C:\WINDOWS\assembly\GAC_MSIL\System.Drawing.Design\2.0.0.0__b03f5f7f11d50a3a\
C:\WINDOWS\assembly\GAC_MSIL\System.IdentityModel\3.0.0.0__b77a5c561934e089\
C:\WINDOWS\assembly\GAC_MSIL\System.IdentityModel.Selectors\3.0.0.0__b77a5c561934e089\
C:\WINDOWS\assembly\GAC_MSIL\System.IO.Log\3.0.0.0__b03f5f7f11d50a3a\
C:\WINDOWS\assembly\GAC_MSIL\System.Management\2.0.0.0__b03f5f7f11d50a3a\
C:\WINDOWS\assembly\GAC_MSIL\System.Management.Instrumentation\3.5.0.0__b77a5c561934e089\
C:\WINDOWS\assembly\GAC_MSIL\System.Messaging\2.0.0.0__b03f5f7f11d50a3a\
C:\WINDOWS\assembly\GAC_MSIL\System.Net\3.5.0.0__b03f5f7f11d50a3a\
C:\WINDOWS\assembly\GAC_MSIL\System.Runtime.Remoting\2.0.0.0__b77a5c561934e089\
C:\WINDOWS\assembly\GAC_MSIL\System.Runtime.Serialization\3.0.0.0__b77a5c561934e089\
C:\WINDOWS\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap\2.0.0.0__b03f5f7f11d50a3a\
C:\WINDOWS\assembly\GAC_MSIL\System.Security\2.0.0.0__b03f5f7f11d50a3a\
C:\WINDOWS\assembly\GAC_MSIL\System.ServiceModel\3.0.0.0__b77a5c561934e089\
C:\WINDOWS\assembly\GAC_MSIL\System.ServiceModel.Install\3.0.0.0__b77a5c561934e089\
C:\WINDOWS\assembly\GAC_MSIL\System.ServiceModel.WasHosting\3.0.0.0__b77a5c561934e089\
C:\WINDOWS\assembly\GAC_MSIL\System.ServiceModel.Web\3.5.0.0__31bf3856ad364e35\
C:\WINDOWS\assembly\GAC_MSIL\System.ServiceProcess\2.0.0.0__b03f5f7f11d50a3a\
C:\WINDOWS\assembly\GAC_MSIL\System.Speech\3.0.0.0__31bf3856ad364e35\
C:\WINDOWS\assembly\GAC_MSIL\System.Web.Extensions\3.5.0.0__31bf3856ad364e35\
C:\WINDOWS\assembly\GAC_MSIL\System.Web.Extensions.Design\3.5.0.0__31bf3856ad364e35\
C:\WINDOWS\assembly\GAC_MSIL\System.Web.Mobile\2.0.0.0__b03f5f7f11d50a3a\
C:\WINDOWS\assembly\GAC_MSIL\System.Web.RegularExpressions\2.0.0.0__b03f5f7f11d50a3a\
C:\WINDOWS\assembly\GAC_MSIL\System.Web.Services\2.0.0.0__b03f5f7f11d50a3a\
C:\WINDOWS\assembly\GAC_MSIL\System.Windows.Forms\2.0.0.0__b77a5c561934e089\
C:\WINDOWS\assembly\GAC_MSIL\System.Windows.Presentation\3.5.0.0__b77a5c561934e089\
C:\WINDOWS\assembly\GAC_MSIL\System.Workflow.Activities\3.0.0.0__31bf3856ad364e35\
C:\WINDOWS\assembly\GAC_MSIL\System.Workflow.ComponentModel\3.0.0.0__31bf3856ad364e35\
C:\WINDOWS\assembly\GAC_MSIL\System.Workflow.Runtime\3.0.0.0__31bf3856ad364e35\
C:\WINDOWS\assembly\GAC_MSIL\System.WorkflowServices\3.5.0.0__31bf3856ad364e35\
C:\WINDOWS\assembly\GAC_MSIL\System.Xml\2.0.0.0__b77a5c561934e089\
C:\WINDOWS\assembly\GAC_MSIL\System.Xml.Linq\3.5.0.0__b77a5c561934e089\
C:\WINDOWS\assembly\GAC_MSIL\UIAutomationClient\3.0.0.0__31bf3856ad364e35\
C:\WINDOWS\assembly\GAC_MSIL\UIAutomationClientsideProviders\3.0.0.0__31bf3856ad364e35\
C:\WINDOWS\assembly\GAC_MSIL\UIAutomationProvider\3.0.0.0__31bf3856ad364e35\
C:\WINDOWS\assembly\GAC_MSIL\UIAutomationTypes\3.0.0.0__31bf3856ad364e35\
C:\WINDOWS\assembly\GAC_MSIL\WindowsBase\3.0.0.0__31bf3856ad364e35\
C:\WINDOWS\assembly\GAC_MSIL\WindowsFormsIntegration\3.0.0.0__31bf3856ad364e35\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Accessibility\c6772fd12a581ad3be49e3f2a80b5622\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\AspNetMMCExt\a1d353edc300e3aff0784202f68a657b\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\ComSvcConfig\bb3c2f59a821abc54f420f3a9e051d6a\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\CustomMarshalers\c10ec9b4de2b366236ec83237dc31281\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\dfsvc\837fe02bdcf637d5bf1e5ffb935ebb80\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Con#\d097b5a3c886d0c3b053f46b7a310501\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Eng#\1cfe3ed0c5b5f63d49185967fa4bfe17\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Eng#\9710a3c0d11dd264c3a6b88977699e9b\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Fra#\b853ec09162fa93757d7bbb0d5435f4e\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Fra#\e2858a45971fb30b0c0523dbb52c1d4e\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Tas#\19fcf0383bc2340da2d15e1370ef0990\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Tas#\63d69ffdf3c640d2d104a4b74e8115f8\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Uti#\11cb5418c06e30100616fbf205588489\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Uti#\da5206e4c016dbdb944957d0046d7869\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Microsoft.JScript\b3b62fe820b416515420a6ec17b247c3\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Microsoft.Transacti#\e3dce636e798c53ec2b44d1d4aadb850\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Microsoft.Transacti#\f3902a808549b40d648206c9303f2788\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Microsoft.VisualBas#\923bd55258380eae77353d36a5a1b08f\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Microsoft.Vsa\e674ba75a514e00b26329e212da938e0\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\MSBuild\aa99ebdd26e5d493fec18b1714458782\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\mscorlib\32e6f703c114f3a971cbe706586e3655\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\PresentationBuildTa#\ab2b2664932688ae7c8e0bd9d10448ef\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\PresentationCFFRast#\3df824565150953afd560ca20237b881\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\PresentationCore\011f8e31d197b4ccb6a61c2267a38e5c\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\PresentationFontCac#\4ce7fd62d4107fbe996ab305eb21ee6a\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\36c6cfd5d4e80d5c548f823b2bbf5457\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\3f18bff5107c9a8accae6c248fdf3c2e\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\60421dda88800b14dc101ed9dca422fe\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\81d2540bc1c18190d0431d9a61bee65b\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\9df61ec7aad39fe0bac82139cd84e5e5\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\PresentationUI\6d2716a55eb8ce6fc4cbf83f3ab329e3\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\ReachFramework\840c64bba900a6ed333ca39e63a9ca3b\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\ServiceModelReg\feac66e81309d67b48f7a9f4cb98f7c8\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\SMDiagnostics\169ba2fe1a4d87ede3ab8dd3d44d867e\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\SMSvcHost\a098c66aa40d958878f3f5344e6ae1a4\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System\ba0e3a22211ba7343e0116b051f2965a\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.AddIn\514e98c9aa203a2983cbf329753cb9c3\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.AddIn.Contra#\eeb4d1669350e6eb17e48b867655aeba\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Configuratio#\c46625ea87db53ccf6194fe17ee05c19\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Configuration\eee9b48577689e92db5a7b5c5de98d9b\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Core\11a9cf08e5bb06e0770b2b6bbe06df39\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Data\5f669e819da7010c1dca347a25597c42\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Data.DataSet#\c014bb2f4ee4bf27c65ce1d1d78d750c\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Data.Linq\b764aeb88006085c9cc4202662de94f6\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Data.SqlXml\e59504af41afab5e04681af951d9b302\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Deployment\c7dea4895e1fa33d65e448c03de48d26\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Design\c1e16b40e30a05c39be8aee46311841c\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.DirectorySer#\11892d4e65aaa4f475af5608b9497007\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.DirectorySer#\914668b240550f529e54bb772c6fc881\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.DirectorySer#\f11bc82c09955cb8438d3885a99c297d\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Drawing\0e83aac37b2623f1a24c70979f31dd56\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Drawing.Desi#\b974f6c17d17a533adf6e7710c5a62fa\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.EnterpriseSe#\646131eda5f21f4e6216733d49c22c56\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.IdentityMode#\492d16599426c7ab35ad2c499a9d4ae6\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.IdentityModel\bdd94a4c46e4424787dfed9381196cb3\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.IO.Log\e1e6aa5272543f1d9dad98be897b693e\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Management\29c7192327cf3999961560bf3a3995c6\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Management.I#\0c0688825a79e72951210318eef63c82\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Net\3cefb375df4f668badf6dc74f3288960\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Printing\f94fbbe7d7c6e76d02cd9fb94ee8d910\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\1f5cf8178029f5b959a9af75cb8cfedb\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\e27527e67611d8acc0d8dff6d286af23\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Security\2b5994269cc5b996231c9b21afea9a91\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.ServiceModel\350903c091629396c08742c996c1caba\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.ServiceModel#\b500bb89ae2cc514f4b1c34e5fa26d75\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.ServiceProce#\193ac978af569ad9ee45110b359961b9\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Speech\d4147c99010667b5c547fcfc56ed7bd5\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Transactions\12e0aa1030badf4524f897e3f57b037a\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Web\67cfb70213562afe2ca9b9066764af3a\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Web.Extensio#\1e0ce08988c4cd1659caa7981b4c60fc\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Web.Extensio#\e53994294a9806e82eec3da5a92df440\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Web.Mobile\37d87b3cab1c66ec4430ebb2abeaa570\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Web.RegularE#\b5b81faf46fc63c20d5339b36edd02fa\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Web.Services\38991368499e2109ea4099a0fe29c5a3\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\3d8c79c45aa674e43f075e2e66b8caf5\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Windows.Pres#\fbcb343f14b7a8940d8cd2cb41d6d23a\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Workflow.Act#\9798b3ba448ba7d5f1dd70a8a1fb7562\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Workflow.Com#\575dad1c0dc9d035acbab10846802ce0\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Workflow.Run#\9d89b57d703aefe4938b45f8b398d378\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.WorkflowServ#\4b5a5ae7e0127bc7198e25e642a93657\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Xml\c98cb65a79cfccb44ea727ebe4593ede\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Xml.Linq\0e1c79174260c4e2bf159a2cc1d77338\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\UIAutomationClient\c2e5aa36c753a605bdefb97ab83e8806\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\UIAutomationClients#\ae395b4b568f0d71fec35e3902a46a99\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\UIAutomationProvider\9e249f5c0ef3e391c5aec1f9da805519\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\UIAutomationTypes\46e3ec015dd7b25d5ddc185534458122\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\WindowsBase\0703021437c2ec71213a6b701771be86\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\WindowsFormsIntegra#\b7c202147607f93463ead99e743c78b9\
C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\WsatConfig\13f498f606b7cb97c086eea149b8c872\
C:\WINDOWS\ASUSInstAll\
C:\WINDOWS\ASUSInstAll\LangFiles\
C:\WINDOWS\ASUSInstAll\LangFiles\English\
C:\WINDOWS\ASUSInstAll\LangFiles\English\16\
C:\WINDOWS\ASUSInstAll\LangFiles\French\
C:\WINDOWS\ASUSInstAll\LangFiles\French\16\
C:\WINDOWS\ASUSInstAll\LangFiles\German\
C:\WINDOWS\ASUSInstAll\LangFiles\German\16\
C:\WINDOWS\ASUSInstAll\LangFiles\Japanese\
C:\WINDOWS\ASUSInstAll\LangFiles\Japanese\16\
C:\WINDOWS\ASUSInstAll\LangFiles\SChinese\
C:\WINDOWS\ASUSInstAll\LangFiles\SChinese\16\
C:\WINDOWS\ASUSInstAll\LangFiles\TChinese\
C:\WINDOWS\ASUSInstAll\LangFiles\TChinese\16\
C:\WINDOWS\Cursors\
C:\WINDOWS\Debug\
C:\WINDOWS\Debug\UserMode\
C:\WINDOWS\Debug\WPD\
C:\WINDOWS\Downloaded Program Files\
C:\WINDOWS\Driver Cache\i386\
C:\WINDOWS\ehome\
C:\WINDOWS\erdnt\
C:\WINDOWS\erdnt\Hiv-backup\
C:\WINDOWS\erdnt\Hiv-backup\Users\00000001\
C:\WINDOWS\erdnt\Hiv-backup\Users\00000002\
C:\WINDOWS\erdnt\Hiv-backup\Users\00000003\
C:\WINDOWS\erdnt\Hiv-backup\Users\00000004\
C:\WINDOWS\erdnt\Hiv-backup\Users\00000005\
C:\WINDOWS\erdnt\Hiv-backup\Users\00000006\
C:\WINDOWS\erdnt\subs\
C:\WINDOWS\Fonts\
C:\WINDOWS\Help\
C:\WINDOWS\Help\nvcpl\
C:\WINDOWS\Help\Tours\htmlTour\
C:\WINDOWS\Help\Tours\mmTour\
C:\WINDOWS\Help\Tours\WindowsMediaPlayer\
C:\WINDOWS\Help\Tours\WindowsMediaPlayer\Audio\
C:\WINDOWS\Help\Tours\WindowsMediaPlayer\Audio\Wav\
C:\WINDOWS\Help\Tours\WindowsMediaPlayer\Cnt\
C:\WINDOWS\Help\Tours\WindowsMediaPlayer\Css\
C:\WINDOWS\Help\Tours\WindowsMediaPlayer\Img\
C:\WINDOWS\Help\Tours\WindowsMediaPlayer\Img\Btn\
C:\WINDOWS\Help\Tours\WindowsMediaPlayer\Img\WMarks\
C:\WINDOWS\Help\Tours\WindowsMediaPlayer\Scr\
C:\WINDOWS\Help\Tours\WindowsMediaPlayer\Video\
C:\WINDOWS\ime\
C:\WINDOWS\inf\
C:\WINDOWS\Installer\
C:\WINDOWS\Installer\{0A869A65-8C94-4F7C-A5C7-972D3C8CED9E}\
C:\WINDOWS\Installer\{3248F0A8-6813-11D6-A77B-00B0D0160050}\
C:\WINDOWS\Installer\{350C9415-3D7C-4EE8-BAA9-00BCB3D54227}\
C:\WINDOWS\Installer\{847CAE64-4CD2-4B2D-AF00-978FF5431045}\
C:\WINDOWS\Installer\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}\
C:\WINDOWS\Installer\{90120000-0030-0000-0000-0000000FF1CE}\
C:\WINDOWS\Installer\{90120000-006E-0415-0000-0000000FF1CE}\
C:\WINDOWS\Installer\{95FC26FB-19FD-4A96-BBB1-B1062E8648F5}\
C:\WINDOWS\Installer\{AC76BA86-7AD7-1045-7B44-A81000000003}\
C:\WINDOWS\Installer\{C950420B-4182-49EA-850A-A6A2ABF06C6B}\
C:\WINDOWS\Media\
C:\WINDOWS\Microsoft.NET\DirectX for Managed Code\1.0.2902.0\
C:\WINDOWS\Microsoft.NET\DirectX for Managed Code\1.0.2903.0\
C:\WINDOWS\Microsoft.NET\DirectX for Managed Code\1.0.2904.0\
C:\WINDOWS\Microsoft.NET\DirectX for Managed Code\1.0.2905.0\
C:\WINDOWS\Microsoft.NET\DirectX for Managed Code\1.0.2906.0\
C:\WINDOWS\Microsoft.NET\DirectX for Managed Code\1.0.2907.0\
C:\WINDOWS\Microsoft.NET\DirectX for Managed Code\1.0.2908.0\
C:\WINDOWS\Microsoft.NET\DirectX for Managed Code\1.0.2909.0\
C:\WINDOWS\Microsoft.NET\DirectX for Managed Code\1.0.2910.0\
C:\WINDOWS\Microsoft.NET\DirectX for Managed Code\1.0.2911.0\
C:\WINDOWS\Microsoft.NET\Framework\
C:\WINDOWS\Microsoft.NET\Framework\v1.0.3705\
C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\
C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\
C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\1033\
C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\
C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\AppConfig\
C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\AppConfig\App_LocalResources\
C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\App_Code\
C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\App_Data\
C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\App_GlobalResources\
C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\App_LocalResources\
C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\Images\
C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\Providers\
C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\Providers\App_LocalResources\
C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\Security\
C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\Security\App_LocalResources\
C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\Security\Permissions\
C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\Security\Permissions\App_LocalResources\
C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\Security\Roles\
C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\Security\Roles\App_LocalResources\
C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\Security\Users\
C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\Security\Users\App_LocalResources\
C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\Security\Wizard\
C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ASP.NETWebAdminFiles\Security\Wizard\App_LocalResources\
C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\CONFIG\
C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\CONFIG\Browsers\
C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\MSBuild\
C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\MUI\0409\
C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\RedistList\
C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\
C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\MUI\0409\
C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Workflow Foundation\
C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Workflow Foundation\SQL\EN\
C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\
C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\en-us\
C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\XamlViewer\
C:\WINDOWS\Microsoft.NET\Framework\v3.5\
C:\WINDOWS\Microsoft.NET\Framework\v3.5\1033\
C:\WINDOWS\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5\
C:\WINDOWS\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5\Logs\
C:\WINDOWS\Microsoft.NET\Framework\v3.5\MOF\
C:\WINDOWS\Microsoft.NET\Framework\v3.5\MSBuild\
C:\WINDOWS\Microsoft.NET\Framework\v3.5\SQL\EN\
C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\
C:\WINDOWS\Mozilla\Firefox\
C:\WINDOWS\msagent\
C:\WINDOWS\msagent\chars\
C:\WINDOWS\msagent\intl\
C:\WINDOWS\nview\
C:\WINDOWS\Offline Web Pages\
C:\WINDOWS\OPTIONS\CABS\
C:\WINDOWS\pchealth\helpctr\binaries\
C:\WINDOWS\pchealth\helpctr\Config\
C:\WINDOWS\pchealth\helpctr\Config\Cache\
C:\WINDOWS\pchealth\helpctr\Database\
C:\WINDOWS\pchealth\helpctr\DataColl\
C:\WINDOWS\pchealth\helpctr\Indices\
C:\WINDOWS\pchealth\helpctr\Logs\
C:\WINDOWS\pchealth\helpctr\OfflineCache\
C:\WINDOWS\pchealth\helpctr\OfflineCache\Professional_32#0415\
C:\WINDOWS\pchealth\helpctr\PackageStore\
C:\WINDOWS\pchealth\helpctr\System\
C:\WINDOWS\pchealth\helpctr\System\blurbs\
C:\WINDOWS\pchealth\helpctr\System\CompatCtr\
C:\WINDOWS\pchealth\helpctr\System\css\
C:\WINDOWS\pchealth\helpctr\System\dialogs\
C:\WINDOWS\pchealth\helpctr\System\DVDUpgrd\
C:\WINDOWS\pchealth\helpctr\System\ErrMsg\
C:\WINDOWS\pchealth\helpctr\System\errors\
C:\WINDOWS\pchealth\helpctr\System\images\
C:\WINDOWS\pchealth\helpctr\System\images\16x16\
C:\WINDOWS\pchealth\helpctr\System\images\24x24\
C:\WINDOWS\pchealth\helpctr\System\images\32x32\
C:\WINDOWS\pchealth\helpctr\System\images\48x48\
C:\WINDOWS\pchealth\helpctr\System\images\Centers\
C:\WINDOWS\pchealth\helpctr\System\images\Expando\
C:\WINDOWS\pchealth\helpctr\System\NetDiag\
C:\WINDOWS\pchealth\helpctr\System\panels\
C:\WINDOWS\pchealth\helpctr\System\panels\subpanels\
C:\WINDOWS\pchealth\helpctr\System\rc\
C:\WINDOWS\pchealth\helpctr\System\Remote Assistance\
C:\WINDOWS\pchealth\helpctr\System\Remote Assistance\Common\
C:\WINDOWS\pchealth\helpctr\System\Remote Assistance\Css\
C:\WINDOWS\pchealth\helpctr\System\Remote Assistance\Interaction\Client\
C:\WINDOWS\pchealth\helpctr\System\Remote Assistance\Interaction\Common\
C:\WINDOWS\pchealth\helpctr\System\Remote Assistance\Interaction\Server\
C:\WINDOWS\pchealth\helpctr\System\scripts\
C:\WINDOWS\pchealth\helpctr\System\sysinfo\
C:\WINDOWS\pchealth\helpctr\System\sysinfo\graphics\
C:\WINDOWS\pchealth\helpctr\System\sysinfo\graphics\33x16pie\
C:\WINDOWS\pchealth\helpctr\System\sysinfo\graphics\47x24pie\
C:\WINDOWS\pchealth\helpctr\System\UpdateCtr\
C:\WINDOWS\pchealth\helpctr\Vendors\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US\
C:\WINDOWS\pchealth\helpctr\Vendors\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US\Remote Assistance\
C:\WINDOWS\pchealth\helpctr\Vendors\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US\Remote Assistance\Common\
C:\WINDOWS\pchealth\helpctr\Vendors\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US\Remote Assistance\Css\
C:\WINDOWS\pchealth\helpctr\Vendors\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US\Remote Assistance\Escalation\Common\
C:\WINDOWS\pchealth\helpctr\Vendors\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US\Remote Assistance\Escalation\Email\
C:\WINDOWS\pchealth\helpctr\Vendors\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US\Remote Assistance\Escalation\Unsolicited\
C:\WINDOWS\pchealth\UploadLB\Binaries\
C:\WINDOWS\pchealth\UploadLB\Config\
C:\WINDOWS\PeerNet\
C:\WINDOWS\Prefetch\
C:\WINDOWS\Provisioning\Schemas\
C:\WINDOWS\pss\
C:\WINDOWS\RegisteredPackages\{077ACEC7-979C-40AB-9835-435BA1511E0D}\
C:\WINDOWS\RegisteredPackages\{077ACEC7-979C-40AB-9835-435BA1511E0D}$BACKUP$\System\
C:\WINDOWS\RegisteredPackages\{30C7234B-6482-4A55-A11D-ECD9030313F2}\
C:\WINDOWS\RegisteredPackages\{30C7234B-6482-4A55-A11D-ECD9030313F2}$BACKUP$\System\
C:\WINDOWS\RegisteredPackages\{981FB688-E76B-4246-987B-92083185B90A}\
C:\WINDOWS\RegisteredPackages\{981FB688-E76B-4246-987B-92083185B90A}$BACKUP$\System\
C:\WINDOWS\RegisteredPackages\{A47B3654-48EE-48A5-B629-97D70175E58F}\
C:\WINDOWS\RegisteredPackages\{A47B3654-48EE-48A5-B629-97D70175E58F}$BACKUP$\System\
C:\WINDOWS\RegisteredPackages\{AAC1D942-0B38-4E37-9E4E-5B96A9DD2170}\
C:\WINDOWS\RegisteredPackages\{AAC1D942-0B38-4E37-9E4E-5B96A9DD2170}$BACKUP$\System\
C:\WINDOWS\RegisteredPackages\{C5B8FBE9-645E-4484-A7AA-E8DA9A70DD77}\
C:\WINDOWS\RegisteredPackages\{C5B8FBE9-645E-4484-A7AA-E8DA9A70DD77}$BACKUP$\System\
C:\WINDOWS\Registration\
C:\WINDOWS\repair\
C:\WINDOWS\Resources\Themes\
C:\WINDOWS\Resources\Themes\Luna\
C:\WINDOWS\Resources\Themes\Luna\Shell\Homestead\
C:\WINDOWS\Resources\Themes\Luna\Shell\Metallic\
C:\WINDOWS\Resources\Themes\Luna\Shell\NormalColor\
C:\WINDOWS\security\Database\
C:\WINDOWS\security\templates\
C:\WINDOWS\SHELLNEW\
C:\WINDOWS\SoftwareDistribution\
C:\WINDOWS\SoftwareDistribution\DataStore\
C:\WINDOWS\SoftwareDistribution\DataStore\Logs\
C:\WINDOWS\SoftwareDistribution\Download\
C:\WINDOWS\SoftwareDistribution\EventCache\
C:\WINDOWS\SoftwareDistribution\SelfUpdate\Default\
C:\WINDOWS\SoftwareDistribution\WuRedir\9482F4B4-E343-43B6-B170-9A65BC822C77\
C:\WINDOWS\srchasst\
C:\WINDOWS\srchasst\chars\
C:\WINDOWS\srchasst\mui\0415\
C:\WINDOWS\system\
C:\WINDOWS\system32\
C:\WINDOWS\system32\1033\
C:\WINDOWS\system32\1045\
C:\WINDOWS\system32\AGEIA\AG1011\
C:\WINDOWS\system32\AGEIA\AG1021\
C:\WINDOWS\system32\CatRoot\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}\
C:\WINDOWS\system32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\
C:\WINDOWS\system32\CatRoot2\
C:\WINDOWS\system32\CatRoot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}\
C:\WINDOWS\system32\CatRoot2\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\
C:\WINDOWS\system32\Com\
C:\WINDOWS\system32\config\
C:\WINDOWS\system32\config\default
[WARNING] The file could not be opened!
[WARNING] Error code: 0x000D
[WARNING] Access error/file locked!
C:\WINDOWS\system32\config\default.LOG
[WARNING] The file could not be opened!
[WARNING] Error code: 0x000D
[WARNING] Access error/file locked!
C:\WINDOWS\system32\config\SAM
[WARNING] The file could not be opened!
[WARNING] Error code: 0x000D
[WARNING] Access error/file locked!
C:\WINDOWS\system32\config\SAM.LOG
[WARNING] The file could not be opened!
[WARNING] Error code: 0x000D
[WARNING] Access error/file locked!
C:\WINDOWS\system32\config\SECURITY
[WARNING] The file could not be opened!
[WARNING] Error code: 0x000D
[WARNING] Access error/file locked!
C:\WINDOWS\system32\config\SECURITY.LOG
[WARNING] The file could not be opened!
[WARNING] Error code: 0x000D
[WARNING] Access error/file locked!
C:\WINDOWS\system32\config\software
[WARNING] The file could not be opened!
[WARNING] Error code: 0x000D
[WARNING] Access error/file locked!
C:\WINDOWS\system32\config\software.LOG
[WARNING] The file could not be opened!
[WARNING] Error code: 0x000D
[WARNING] Access error/file locked!
C:\WINDOWS\system32\config\system
[WARNING] The file could not be opened!
[WARNING] Error code: 0x000D
[WARNING] Access error/file locked!
C:\WINDOWS\system32\config\system.LOG
[WARNING] The file could not be opened!
[WARNING] Error code: 0x000D
[WARNING] Access error/file locked!
C:\WINDOWS\system32\config\systemprofile\
C:\WINDOWS\system32\config\systemprofile\Cookies\
C:\WINDOWS\system32\config\systemprofile\Dane aplikacji\
C:\WINDOWS\system32\config\systemprofile\Dane aplikacji\Microsoft\CryptnetUrlCache\Content\
C:\WINDOWS\system32\config\systemprofile\Dane aplikacji\Microsoft\CryptnetUrlCache\MetaData\
C:\WINDOWS\system32\config\systemprofile\Dane aplikacji\Microsoft\Internet Explorer\
C:\WINDOWS\system32\config\systemprofile\Menu Start\
C:\WINDOWS\system32\config\systemprofile\Menu Start\Programy\
C:\WINDOWS\system32\config\systemprofile\Menu Start\Programy\Akcesoria\
C:\WINDOWS\system32\config\systemprofile\Menu Start\Programy\Akcesoria\Rozrywka\
C:\WINDOWS\system32\config\systemprofile\Menu Start\Programy\Akcesoria\Ułatwienia dostępu\
C:\WINDOWS\system32\config\systemprofile\Menu Start\Programy\Autostart\
C:\WINDOWS\system32\config\systemprofile\SendTo\
C:\WINDOWS\system32\config\systemprofile\Szablony\
C:\WINDOWS\system32\config\systemprofile\Ustawienia lokalne\
C:\WINDOWS\system32\config\systemprofile\Ustawienia lokalne\Dane aplikacji\Microsoft\Media Player\
C:\WINDOWS\system32\config\systemprofile\Ustawienia lokalne\Dane aplikacji\Microsoft\Windows Media\9.0\
C:\WINDOWS\system32\config\systemprofile\Ustawienia lokalne\Historia\
C:\WINDOWS\system32\config\systemprofile\Ustawienia lokalne\Historia\History.IE5\
C:\WINDOWS\system32\config\systemprofile\Ustawienia lokalne\Historia\History.IE5\MSHist012008033020080331\
C:\WINDOWS\system32\config\systemprofile\Ustawienia lokalne\Temporary Internet Files\
C:\WINDOWS\system32\config\systemprofile\Ustawienia lokalne\Temporary Internet Files\Content.IE5\
C:\WINDOWS\system32\config\systemprofile\Ustawienia lokalne\Temporary Internet Files\Content.IE5\6HC3AN0H\
C:\WINDOWS\system32\config\systemprofile\Ustawienia lokalne\Temporary Internet Files\Content.IE5\M9WJ4FAJ\
C:\WINDOWS\system32\config\systemprofile\Ustawienia lokalne\Temporary Internet Files\Content.IE5\Q9OVCBSP\
C:\WINDOWS\system32\config\systemprofile\Ustawienia lokalne\Temporary Internet Files\Content.IE5\Y769GXOR\
C:\WINDOWS\system32\DirectX\Dinput\
C:\WINDOWS\system32\dllcache\
C:\WINDOWS\system32\drivers\
C:\WINDOWS\system32\drivers\sptd.sys
[WARNING] The file could not be opened!
[WARNING] Error code: 0x000D
[WARNING] Access error/file locked!
C:\WINDOWS\system32\drivers\etc\
C:\WINDOWS\system32\drivers\INF\
C:\WINDOWS\system32\drivers\system32\
C:\WINDOWS\system32\drivers\system32\DRIVERS\
C:\WINDOWS\system32\DRVSTORE\g33q35_2AE1E942408F2771205E27E9FA002267E13B7FC7\
C:\WINDOWS\system32\DRVSTORE\ich9core_AFB91BB22B3662D0F1939637ADFCC2DD35B705AB\
C:\WINDOWS\system32\DRVSTORE\ich9ide_A5BF58BBA71235B27EA26DC36CF8C77284CA0F00\
C:\WINDOWS\system32\DRVSTORE\ich9smb_80305DE1EE35D1C99432F00817B22742DE71933A\
C:\WINDOWS\system32\DRVSTORE\ich9usb_CEE2CC2FBC09C3D667D38F6C8FE075B85619D389\
C:\WINDOWS\system32\DRVSTORE\PhysX32_FFB51AAB1A2BF852A002A5B1138133BBA89337D4\
C:\WINDOWS\system32\en-us\
C:\WINDOWS\system32\ias\
C:\WINDOWS\system32\icsxml\
C:\WINDOWS\system32\Macromed\Flash\
C:\WINDOWS\system32\Microsoft\Protect\S-1-5-18\User\
C:\WINDOWS\system32\MsDtc\
C:\WINDOWS\system32\MsDtc\Trace\
C:\WINDOWS\system32\mui\0015\
C:\WINDOWS\system32\mui\0409\
C:\WINDOWS\system32\npp\
C:\WINDOWS\system32\oobe\
C:\WINDOWS\system32\oobe\actsetup\
C:\WINDOWS\system32\oobe\error\
C:\WINDOWS\system32\oobe\html\dslmain\
C:\WINDOWS\system32\oobe\html\iconnect\
C:\WINDOWS\system32\oobe\html\isptype\
C:\WINDOWS\system32\oobe\html\mouse\
C:\WINDOWS\system32\oobe\html\mouse\images\
C:\WINDOWS\system32\oobe\html\sconnect\
C:\WINDOWS\system32\oobe\icserror\
C:\WINDOWS\system32\oobe\images\
C:\WINDOWS\system32\oobe\isperror\
C:\WINDOWS\system32\oobe\regerror\
C:\WINDOWS\system32\oobe\setup\
C:\WINDOWS\system32\PreInstall\WinSE\wxp_x86_0415_v1\
C:\WINDOWS\system32\ras\
C:\WINDOWS\system32\ReinstallBackups\0000\DriverFiles\
C:\WINDOWS\system32\ReinstallBackups\0001\DriverFiles\
C:\WINDOWS\system32\ReinstallBackups\0001\DriverFiles\i386\
C:\WINDOWS\system32\ReinstallBackups\0002\DriverFiles\
C:\WINDOWS\system32\ReinstallBackups\0002\DriverFiles\i386\
C:\WINDOWS\system32\ReinstallBackups\0003\DriverFiles\
C:\WINDOWS\system32\ReinstallBackups\0003\DriverFiles\i386\
C:\WINDOWS\system32\ReinstallBackups\0004\DriverFiles\
C:\WINDOWS\system32\ReinstallBackups\0004\DriverFiles\i386\
C:\WINDOWS\system32\ReinstallBackups\0005\DriverFiles\
C:\WINDOWS\system32\ReinstallBackups\0005\DriverFiles\i386\
C:\WINDOWS\system32\ReinstallBackups\0006\DriverFiles\
C:\WINDOWS\system32\ReinstallBackups\0006\DriverFiles\i386\
C:\WINDOWS\system32\ReinstallBackups\0007\DriverFiles\
C:\WINDOWS\system32\ReinstallBackups\0007\DriverFiles\i386\
C:\WINDOWS\system32\ReinstallBackups\0008\DriverFiles\
C:\WINDOWS\system32\ReinstallBackups\0008\DriverFiles\i386\
C:\WINDOWS\system32\ReinstallBackups\0009\DriverFiles\
C:\WINDOWS\system32\ReinstallBackups\0009\DriverFiles\i386\
C:\WINDOWS\system32\ReinstallBackups\0010\DriverFiles\
C:\WINDOWS\system32\ReinstallBackups\0010\DriverFiles\i386\
C:\WINDOWS\system32\ReinstallBackups\0011\DriverFiles\
C:\WINDOWS\system32\ReinstallBackups\0011\DriverFiles\i386\
C:\WINDOWS\system32\ReinstallBackups\0012\DriverFiles\
C:\WINDOWS\system32\ReinstallBackups\0012\DriverFiles\i386\
C:\WINDOWS\system32\ReinstallBackups\0013\DriverFiles\
C:\WINDOWS\system32\ReinstallBackups\0013\DriverFiles\i386\
C:\WINDOWS\system32\ReinstallBackups\0014\DriverFiles\
C:\WINDOWS\system32\ReinstallBackups\0014\DriverFiles\i386\
C:\WINDOWS\system32\Restore\
C:\WINDOWS\system32\Setup\
C:\WINDOWS\system32\SoftwareDistribution\Setup\ServiceStartup\wups.dll\7.0.6000.381\
C:\WINDOWS\system32\spool\drivers\color\
C:\WINDOWS\system32\spool\drivers\w32x86\3\
C:\WINDOWS\system32\spool\drivers\w32x86\hpofficejet_5600_serd5f5\
C:\WINDOWS\system32\spool\prtprocs\w32x86\
C:\WINDOWS\system32\spool\prtprocs\x64\
C:\WINDOWS\system32\spool\XPSEP\
C:\WINDOWS\system32\spool\XPSEP\amd64\
C:\WINDOWS\system32\spool\XPSEP\amd64\amd64\
C:\WINDOWS\system32\spool\XPSEP\i386\
C:\WINDOWS\system32\spool\XPSEP\i386\i386\
C:\WINDOWS\system32\usmt\
C:\WINDOWS\system32\wbem\
C:\WINDOWS\system32\wbem\AutoRecover\
C:\WINDOWS\system32\wbem\Logs\
C:\WINDOWS\system32\wbem\Performance\
C:\WINDOWS\system32\wbem\Repository\
C:\WINDOWS\system32\wbem\Repository\FS\
C:\WINDOWS\system32\wbem\xml\
C:\WINDOWS\system32\XPSViewer\
C:\WINDOWS\system32\XPSViewer\en-us\
C:\WINDOWS\Tasks\
C:\WINDOWS\Temp\Cookies\
C:\WINDOWS\Temp\Historia\History.IE5\
C:\WINDOWS\Temp\Temporary Internet Files\Content.IE5\
C:\WINDOWS\Temp\Temporary Internet Files\Content.IE5\09L4EQGO\
C:\WINDOWS\Temp\Temporary Internet Files\Content.IE5\45ZLZS15\
C:\WINDOWS\Temp\Temporary Internet Files\Content.IE5\73957A4W\
C:\WINDOWS\Temp\Temporary Internet Files\Content.IE5\BSS0G6QV\
C:\WINDOWS\twain_32\
C:\WINDOWS\twain_32\hpsj_0000\
C:\WINDOWS\Web\
C:\WINDOWS\Web\printers\
C:\WINDOWS\Web\printers\images\
C:\WINDOWS\Web\Wallpaper\
C:\WINDOWS\WinSxS\Manifests\
C:\WINDOWS\WinSxS\MSIL_IEExecRemote_b03f5f7f11d50a3a_2.0.0.0_x-ww_6e57c34e\
C:\WINDOWS\WinSxS\Policies\x86_policy.1.0.Microsoft.Windows.GdiPlus_6595b64144ccf1df_x-ww_4e8510ac\
C:\WINDOWS\WinSxS\Policies\x86_policy.5.1.Microsoft.Windows.SystemCompatible_6595b64144ccf1df_x-ww_a0111510\
C:\WINDOWS\WinSxS\Policies\x86_policy.5.2.Microsoft.Windows.Networking.Dxmrtp_6595b64144ccf1df_x-ww_362e60dd\
C:\WINDOWS\WinSxS\Policies\x86_policy.5.2.Microsoft.Windows.Networking.Rtcdll_6595b64144ccf1df_x-ww_c7b7206f\
C:\WINDOWS\WinSxS\Policies\x86_policy.6.0.Microsoft.Windows.Common-Controls_6595b64144ccf1df_x-ww_5ddad775\
C:\WINDOWS\WinSxS\Policies\x86_policy.7.0.Microsoft.Windows.CPlusPlusRuntime_6595b64144ccf1df_x-ww_a317e4b3\
C:\WINDOWS\WinSxS\Policies\x86_policy.8.0.Microsoft.VC80.ATL_1fc8b3b9a1e18e3b_x-ww_5f0bbcff\
C:\WINDOWS\WinSxS\Policies\x86_policy.8.0.Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_x-ww_77c24773\
C:\WINDOWS\WinSxS\Policies\x86_policy.8.0.Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_x-ww_caeee150\
C:\WINDOWS\WinSxS\Policies\x86_policy.8.0.Microsoft.VC80.MFC_1fc8b3b9a1e18e3b_x-ww_0f75c32e\
C:\WINDOWS\WinSxS\Policies\x86_policy.8.0.Microsoft.VC80.OpenMP_1fc8b3b9a1e18e3b_x-ww_7d81c9f9\
C:\WINDOWS\WinSxS\Policies\x86_policy.9.0.Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_x-ww_b7353f75\
C:\WINDOWS\WinSxS\x86_Microsoft.MSXML2R_6bd6b9abf345378f_4.1.0.0_x-ww_29c3ad6a\
C:\WINDOWS\WinSxS\x86_Microsoft.MSXML2_6bd6b9abf345378f_4.20.9818.0_x-ww_8ff50c5d\
C:\WINDOWS\WinSxS\x86_Microsoft.Tools.VisualCPlusPlus.Runtime-Libraries.Resources_6595b64144ccf1df_6.0.0.0_pl-PL_70f87639\
C:\WINDOWS\WinSxS\x86_Microsoft.Tools.VisualCPlusPlus.Runtime-Libraries_6595b64144ccf1df_6.0.0.0_x-ww_ff9986d7\
C:\WINDOWS\WinSxS\x86_Microsoft.VC80.ATL_1fc8b3b9a1e18e3b_8.0.50727.42_x-ww_6e805841\
C:\WINDOWS\WinSxS\x86_Microsoft.VC80.ATL_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_cbb27474\
C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.1433_x-ww_5cf844d2\
C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.163_x-ww_681e29fb\
C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.42_x-ww_0de06acd\
C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_6b128700\
C:\WINDOWS\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.42_x-ww_3415f6d0\
C:\WINDOWS\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_91481303\
C:\WINDOWS\WinSxS\x86_Microsoft.VC80.MFC_1fc8b3b9a1e18e3b_8.0.50727.42_x-ww_dec6ddd2\
C:\WINDOWS\WinSxS\x86_Microsoft.VC80.MFC_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_3bf8fa05\
C:\WINDOWS\WinSxS\x86_Microsoft.VC80.OpenMP_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_6c18549a\
C:\WINDOWS\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.21022.8_x-ww_d08d0375\
C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.0.0_x-ww_1382d70a\
C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\
C:\WINDOWS\WinSxS\x86_Microsoft.Windows.CPlusPlusRuntime_6595b64144ccf1df_7.0.0.0_x-ww_2726e76a\
C:\WINDOWS\WinSxS\x86_Microsoft.Windows.CPlusPlusRuntime_6595b64144ccf1df_7.0.2600.2180_x-ww_b2505ed9\
C:\WINDOWS\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.0.0_x-ww_8d353f13\
C:\WINDOWS\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.2600.2180_x-ww_522f9f82\
C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Networking.Dxmrtp_6595b64144ccf1df_5.2.2.3_x-ww_468466a7\
C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Networking.RtcDll_6595b64144ccf1df_5.2.2.3_x-ww_d6bd8b95\
C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Networking.RtcRes_6595b64144ccf1df_5.2.2.3_pl_1e21c8cd\
C:\WINDOWS\WinSxS\x86_System.EnterpriseServices_b03f5f7f11d50a3a_2.0.0.0_x-ww_7d5f3790\
12 Avril 2008 20:56:36

Begin scan in 'E:\'
E:\
E:\MSOCache\All Users\{90120000-0010-0415-0000-0000000FF1CE}-E\
E:\MSOCache\All Users\{90120000-0015-0415-0000-0000000FF1CE}-E\
E:\MSOCache\All Users\{90120000-0016-0415-0000-0000000FF1CE}-E\
E:\MSOCache\All Users\{90120000-0018-0415-0000-0000000FF1CE}-E\
E:\MSOCache\All Users\{90120000-0019-0415-0000-0000000FF1CE}-E\
E:\MSOCache\All Users\{90120000-001A-0415-0000-0000000FF1CE}-E\
E:\MSOCache\All Users\{90120000-001B-0415-0000-0000000FF1CE}-E\
E:\MSOCache\All Users\{90120000-002C-0415-0000-0000000FF1CE}-E\
E:\MSOCache\All Users\{90120000-002C-0415-0000-0000000FF1CE}-E\Proof.de\
E:\MSOCache\All Users\{90120000-002C-0415-0000-0000000FF1CE}-E\Proof.en\
E:\MSOCache\All Users\{90120000-002C-0415-0000-0000000FF1CE}-E\Proof.pl\
E:\MSOCache\All Users\{90120000-0030-0000-0000-0000000FF1CE}-E\
E:\MSOCache\All Users\{90120000-0044-0415-0000-0000000FF1CE}-E\
E:\MSOCache\All Users\{90120000-006E-0415-0000-0000000FF1CE}-E\
E:\MSOCache\All Users\{90120000-006E-0415-0000-0000000FF1CE}-E\1045\
E:\MSOCache\All Users\{90120000-00A1-0415-0000-0000000FF1CE}-E\
E:\MSOCache\All Users\{90120000-00BA-0415-0000-0000000FF1CE}-E\
E:\Program Files\7-Zip\
E:\Program Files\7-Zip\Lang\
E:\Program Files\Adobe\Reader 8.0\Esl\
E:\Program Files\Adobe\Reader 8.0\Reader\
E:\Program Files\Adobe\Reader 8.0\Reader\adobe_epic\eula\
E:\Program Files\Adobe\Reader 8.0\Reader\adobe_epic\eula\en_US\
E:\Program Files\Adobe\Reader 8.0\Reader\adobe_epic\eula\pl_PL\
E:\Program Files\Adobe\Reader 8.0\Reader\AIR\
E:\Program Files\Adobe\Reader 8.0\Reader\AMT\
E:\Program Files\Adobe\Reader 8.0\Reader\BeyondReader\ENU\Onramp\
E:\Program Files\Adobe\Reader 8.0\Reader\BeyondReader\POL\Onramp\
E:\Program Files\Adobe\Reader 8.0\Reader\Browser\
E:\Program Files\Adobe\Reader 8.0\Reader\HowTo\ENU\
E:\Program Files\Adobe\Reader 8.0\Reader\HowTo\ENU\Images\
E:\Program Files\Adobe\Reader 8.0\Reader\HowTo\POL\
E:\Program Files\Adobe\Reader 8.0\Reader\HowTo\POL\Images\
E:\Program Files\Adobe\Reader 8.0\Reader\IDTemplates\ENU\
E:\Program Files\Adobe\Reader 8.0\Reader\IDTemplates\POL\
E:\Program Files\Adobe\Reader 8.0\Reader\Javascripts\
E:\Program Files\Adobe\Reader 8.0\Reader\Legal\en_US\
E:\Program Files\Adobe\Reader 8.0\Reader\Legal\pl_PL\
E:\Program Files\Adobe\Reader 8.0\Reader\Optional\
E:\Program Files\Adobe\Reader 8.0\Reader\plug_ins\
E:\Program Files\Adobe\Reader 8.0\Reader\plug_ins\AcroForm\
E:\Program Files\Adobe\Reader 8.0\Reader\plug_ins\AcroForm\PMP\
E:\Program Files\Adobe\Reader 8.0\Reader\plug_ins\Annotations\Stamps\
E:\Program Files\Adobe\Reader 8.0\Reader\plug_ins\Annotations\Stamps\ENU\
E:\Program Files\Adobe\Reader 8.0\Reader\plug_ins\Annotations\Stamps\POL\
E:\Program Files\Adobe\Reader 8.0\Reader\plug_ins\ImageViewer\
E:\Program Files\Adobe\Reader 8.0\Reader\plug_ins\ImageViewer\en_US\
E:\Program Files\Adobe\Reader 8.0\Reader\plug_ins\ImageViewer\pl_PL\
E:\Program Files\Adobe\Reader 8.0\Reader\plug_ins\Multimedia\MPP\
E:\Program Files\Adobe\Reader 8.0\Reader\plug_ins\VDKHome\
E:\Program Files\Adobe\Reader 8.0\Reader\plug_ins\VDKHome\ENU\
E:\Program Files\Adobe\Reader 8.0\Reader\plug_ins\VDKHome\POL\
E:\Program Files\Adobe\Reader 8.0\Reader\plug_ins3d\
E:\Program Files\Adobe\Reader 8.0\Reader\plug_ins3d\prc\
E:\Program Files\Adobe\Reader 8.0\Reader\SPPlugins\
E:\Program Files\Adobe\Reader 8.0\Reader\Tracker\
E:\Program Files\Adobe\Reader 8.0\Resource\
E:\Program Files\Adobe\Reader 8.0\Resource\CMap\
E:\Program Files\Adobe\Reader 8.0\Resource\Font\
E:\Program Files\Adobe\Reader 8.0\Resource\Font\PFM\
E:\Program Files\Adobe\Reader 8.0\Resource\Linguistics\LanguageNames\
E:\Program Files\Adobe\Reader 8.0\Resource\Linguistics\Providers\Proximity\
E:\Program Files\Adobe\Reader 8.0\Setup Files\{AC76BA86-7AD7-1045-7B44-A81000000003}\
E:\Program Files\Alarme 30\
E:\Program Files\AP Tuner\AP Tuner 3.06\
E:\Program Files\Aspell\
E:\Program Files\Aspell\bin\
E:\Program Files\Aspell\data\
E:\Program Files\Aspell\dict\
E:\Program Files\Aspell\doc\
E:\Program Files\Aspell\doc\html\
E:\Program Files\Aspell\doc\text\
E:\Program Files\Audio Phonics, Inc\AP Guitar Tuner 1.02\
E:\Program Files\Avira\AntiVir PersonalEdition Classic\
E:\Program Files\CCleaner\
E:\Program Files\Common Files\GTK\2.0\
E:\Program Files\Common Files\GTK\2.0\bin\
E:\Program Files\Common Files\GTK\2.0\etc\fonts\
E:\Program Files\Common Files\GTK\2.0\etc\fonts\conf.avail\
E:\Program Files\Common Files\GTK\2.0\etc\fonts\conf.d\
E:\Program Files\Common Files\GTK\2.0\etc\gtk-2.0\
E:\Program Files\Common Files\GTK\2.0\etc\pango\
E:\Program Files\Common Files\GTK\2.0\lib\
E:\Program Files\Common Files\GTK\2.0\lib\gtk-2.0\2.10.0\engines\
E:\Program Files\Common Files\GTK\2.0\lib\gtk-2.0\2.10.0\immodules\
E:\Program Files\Common Files\GTK\2.0\lib\gtk-2.0\2.10.0\loaders\
E:\Program Files\Common Files\GTK\2.0\share\gtkthemeselector\pixmaps\
E:\Program Files\Common Files\GTK\2.0\share\locale\af\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\am\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\ang\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\ar\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\as\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\az\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\az_IR\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\be\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\be@latin\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\bg\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\bn\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\bn_IN\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\br\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\bs\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\ca\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\cs\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\cy\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\da\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\de\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\dz\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\el\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\en_CA\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\en_GB\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\eo\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\es\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\et\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\eu\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\fa\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\fi\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\fr\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\ga\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\gl\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\gu\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\he\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\hi\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\hr\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\hu\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\hy\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\ia\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\id\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\io\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\is\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\it\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\ja\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\ka\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\kn\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\ko\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\ku\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\li\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\lt\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\lv\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\mg\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\mi\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\mk\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\ml\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\mn\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\mr\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\ms\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\nb\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\ne\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\nl\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\nn\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\nso\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\oc\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\or\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\pa\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\pl\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\pt\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\pt_BR\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\ro\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\ru\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\rw\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\si\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\sk\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\sl\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\sq\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\sr\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\sr@ije\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\sr@Latn\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\sv\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\ta\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\te\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\th\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\tk\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\tl\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\tr\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\tt\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\ug\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\uk\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\ur\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\uz\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\uz@cyrillic\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\vi\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\wa\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\xh\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\yi\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\zh_CN\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\zh_HK\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\locale\zh_TW\LC_MESSAGES\
E:\Program Files\Common Files\GTK\2.0\share\themes\Bluecurve\gtk-2.0\
E:\Program Files\Common Files\GTK\2.0\share\themes\Clearlooks\gtk-2.0\
E:\Program Files\Common Files\GTK\2.0\share\themes\Crux\gtk-2.0\
E:\Program Files\Common Files\GTK\2.0\share\themes\Default\gtk-2.0-key\
E:\Program Files\Common Files\GTK\2.0\share\themes\Emacs\gtk-2.0-key\
E:\Program Files\Common Files\GTK\2.0\share\themes\Industrial\gtk-2.0\
E:\Program Files\Common Files\GTK\2.0\share\themes\Lighthouseblue\gtk-2.0\
E:\Program Files\Common Files\GTK\2.0\share\themes\Mist\gtk-2.0\
E:\Program Files\Common Files\GTK\2.0\share\themes\MS-Windows\gtk-2.0\
E:\Program Files\Common Files\GTK\2.0\share\themes\Raleigh\gtk-2.0\
E:\Program Files\Common Files\GTK\2.0\share\themes\ThinIce\gtk-2.0\
E:\Program Files\D-Fend Reloaded\
E:\Program Files\D-Fend Reloaded\Capture\DOSBox DOS\
E:\Program Files\D-Fend Reloaded\Confs\
E:\Program Files\D-Fend Reloaded\DosBox\
E:\Program Files\D-Fend Reloaded\DosBox\zmbv\
E:\Program Files\D-Fend Reloaded\IconLibrary\
E:\Program Files\D-Fend Reloaded\Lang\
E:\Program Files\D-Fend Reloaded\Templates\
E:\Program Files\D-Fend Reloaded\VirtualHD\FREEDOS\
E:\Program Files\D-Fend Reloaded\VirtualHD\FREEDOS\CPI\
E:\Program Files\D-Fend Reloaded\VirtualHD\FREEDOS\EN\
E:\Program Files\D-Fend Reloaded\VirtualHD\FREEDOS\EN\HHSTNDRD\
E:\Program Files\DAEMON Tools Lite\
E:\Program Files\DAEMON Tools Lite\Icons\
E:\Program Files\DAEMON Tools Lite\Lang\
E:\Program Files\DAEMON Tools Lite\Plugins\Images\
E:\Program Files\DBFrontend\
E:\Program Files\DBFrontend\lang\
E:\Program Files\DBFrontend\snaps\
E:\Program Files\DOSBox-0.72\
E:\Program Files\DOSBox-0.72\zmbv\
E:\Program Files\DVD Shrink\
E:\Program Files\DVD Shrink\Still Images\
E:\Program Files\DVD Shrink\Web\
E:\Program Files\DVD Shrink\Web\Images\
E:\Program Files\DVDFab HD Decrypter 4\
E:\Program Files\DVDFab HD Decrypter 4\CGP\
E:\Program Files\DVDFab HD Decrypter 4\Language\
E:\Program Files\eMule\
E:\Program Files\eMule\config\
E:\Program Files\eMule\Incoming\
E:\Program Files\eMule\Incoming\PC-Lost_Via_Domus.rar
[0] Archive type: RAR
--> pro-lost.r02
[1] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
--> pro-lost.r03
[1] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
--> pro-lost.r04
[1] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
--> pro-lost.r05
[1] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
--> pro-lost.r06
[1] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
--> pro-lost.r07
[1] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
--> pro-lost.r08
[1] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
--> pro-lost.r09
[1] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
--> pro-lost.r10
[1] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
--> pro-lost.r11
[1] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
--> pro-lost.r12
[1] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
--> pro-lost.r13
[1] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
--> pro-lost.r14
[1] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
--> pro-lost.r15
[1] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
--> pro-lost.r16
[1] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
--> pro-lost.r17
[1] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
--> pro-lost.r18
[1] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
--> pro-lost.r19
[1] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
--> pro-lost.r20
[1] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
--> pro-lost.r21
[1] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
--> pro-lost.r22
[1] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
--> pro-lost.r23
[1] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
--> pro-lost.r24
[1] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
--> pro-lost.r25
[1] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
--> pro-lost.r26
[1] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
--> pro-lost.r27
[1] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
--> pro-lost.r28
[1] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
--> pro-lost.r29
[1] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
--> pro-lost.r30
[1] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
--> pro-lost.r31
[1] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
--> pro-lost.r32
[1] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
--> pro-lost.r33
[1] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
--> pro-lost.r34
[1] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
--> pro-lost.r35
[1] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
--> pro-lost.r36
[1] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
--> pro-lost.r37
[1] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
--> pro-lost.r38
[1] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
--> pro-lost.r39
[1] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
--> pro-lost.r40
[1] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
--> pro-lost.r41
[1] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
--> pro-lost.r42
[1] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
--> pro-lost.r43
[1] Archive type: RAR
--> unknown0
[INFO] Error multiple volume
[INFO] Error multiple volume
E:\Program Files\eMule\lang\
E:\Program Files\eMule\webserver\
E:\Program Files\eRightSoft\SUPER\
E:\Program Files\eRightSoft\SUPER\audiences\
E:\Program Files\eRightSoft\SUPER\License\
E:\Program Files\eRightSoft\SUPER\mencoder\
E:\Program Files\eRightSoft\SUPER\mencoder\mplayer\
E:\Program Files\eRightSoft\SUPER\Mp_root\100anv01\
E:\Program Files\eRightSoft\SUPER\Mp_root\100mnv01\
E:\Program Files\eRightSoft\SUPER\OutPut\
E:\Program Files\eRightSoft\SUPER\Profiles\
E:\Program Files\eRightSoft\SUPER\spk\
E:\Program Files\Guitar Pro 5\
E:\Program Files\Guitar Pro 5\data\
E:\Program Files\Guitar Pro 5\Demo Files\
E:\Program Files\Guitar Pro 5\Demo Files\Acoustic\
E:\Program Files\Guitar Pro 5\Demo Files\Blues\
E:\Program Files\Guitar Pro 5\Demo Files\Hard\
E:\Program Files\Guitar Pro 5\Demo Files\Jazz\
E:\Program Files\Guitar Pro 5\Demo Files\Rock\
E:\Program Files\Guitar Pro 5\Demo Files\Wah-Wah\
E:\Program Files\Guitar Pro 5\gpl\
E:\Program Files\Guitar Pro 5\gpp\
E:\Program Files\Guitar Pro 5\Help\
E:\Program Files\Guitar Pro 5\skins\Default\
E:\Program Files\Guitar Pro 5\skins\GP3-like\
E:\Program Files\Guitar Pro 5\skins\GP4-like\
E:\Program Files\Guitar Pro 5\tmp\
E:\Program Files\K-Lite Codec Pack\
E:\Program Files\K-Lite Codec Pack\ffdshow\
E:\Program Files\K-Lite Codec Pack\ffdshow\custom matrices\
E:\Program Files\K-Lite Codec Pack\ffdshow\languages\
E:\Program Files\K-Lite Codec Pack\Filters\
E:\Program Files\K-Lite Codec Pack\Filters\Haali\
E:\Program Files\K-Lite Codec Pack\Icons\
E:\Program Files\K-Lite Codec Pack\Info\
E:\Program Files\K-Lite Codec Pack\Media Player Classic\
E:\Program Files\K-Lite Codec Pack\Tools\
E:\Program Files\K-Lite Codec Pack\Tools\gspot\
E:\Program Files\K-Lite Codec Pack\Tools\XvidQuantMatrices\
E:\Program Files\KB Piano 2\
E:\Program Files\KB Piano 2\config\
E:\Program Files\KB Piano 2\config\keyboard\
E:\Program Files\KB Piano 2\Data\
E:\Program Files\KB Piano 2\Examples\
E:\Program Files\KB Piano 2\help\
E:\Program Files\KB Piano 2\help\mc\
E:\Program Files\KB Piano 2\Patterns\
E:\Program Files\KB Piano 2\Patterns\Bass\
E:\Program Files\KB Piano 2\Patterns\Drums\
E:\Program Files\KB Piano 2\Patterns\FingerPick\
E:\Program Files\KB Piano 2\Patterns\GuitarDist\
E:\Program Files\KB Piano 2\Temp\
E:\Program Files\KB Piano 2\Templates\
E:\Program Files\KB Piano 2\Templates\Channels\
E:\Program Files\MediaCoder\
E:\Program Files\MediaCoder\codecs\
E:\Program Files\MediaCoder\codecs\mplayer\
E:\Program Files\MediaCoder\codecs\mplayer\font\
E:\Program Files\MediaCoder\extensions\
E:\Program Files\MediaCoder\extensions\_css\
E:\Program Files\MediaCoder\extensions\_images\
E:\Program Files\MediaCoder\extensions\_include\
E:\Program Files\MediaCoder\htdocs\
E:\Program Files\MediaCoder\htdocs\img\
E:\Program Files\MediaCoder\htdocs\prefs\
E:\Program Files\MediaCoder\htdocs\sys\
E:\Program Files\MediaCoder\htdocs\wmcfg\
E:\Program Files\MediaCoder\htdocs\xslt\
E:\Program Files\MediaCoder\lang\
E:\Program Files\MediaCoder\plugins\
E:\Program Files\MediaCoder\presets\Audio Presets\
E:\Program Files\MediaCoder\presets\EasyCoder Presets\
E:\Program Files\MediaCoder\presets\Video Presets\
E:\Program Files\MediaCoder\tools\
E:\Program Files\MediaCoder\xulapp\
E:\Program Files\MediaCoder\xulapp\Application Data\Mozilla\Firefox\
E:\Program Files\MediaCoder\xulapp\Application Data\Mozilla\Firefox\Profiles\MediaCoder.default\
E:\Program Files\MediaCoder\xulapp\Application Data\Mozilla\Firefox\Profiles\MediaCoder.default\chrome\
E:\Program Files\MediaCoder\xulapp\chrome\
E:\Program Files\MediaCoder\xulapp\chrome\xulapp\content\xulapp\
E:\Program Files\MediaCoder\xulapp\Dane aplikacji\Mozilla\Firefox\
E:\Program Files\MediaCoder\xulapp\Dane aplikacji\Mozilla\Firefox\Profiles\81t77c6t.default\
E:\Program Files\MediaCoder\xulapp\Dane aplikacji\Mozilla\Firefox\Profiles\81t77c6t.default\bookmarkbackups\
E:\Program Files\MediaCoder\xulapp\Dane aplikacji\Mozilla\Firefox\Profiles\81t77c6t.default\Cache\
E:\Program Files\MediaCoder\xulapp\Dane aplikacji\Mozilla\Firefox\Profiles\81t77c6t.default\chrome\
E:\Program Files\MediaCoder\xulapp\Dane aplikacji\Talkback\MozillaOrg\Firefox2\Win32\2008031114\
E:\Program Files\MediaCoder\xulapp\defaults\preferences\
E:\Program Files\MediaCoder\xulapp\Ulubione\
E:\Program Files\Microsoft Office\Document Themes 12\
E:\Program Files\Microsoft Office\Document Themes 12\Theme Colors\
E:\Program Files\Microsoft Office\Document Themes 12\Theme Effects\
E:\Program Files\Microsoft Office\Document Themes 12\Theme Fonts\
E:\Program Files\Microsoft Office\MEDIA\CAGCAT10\
E:\Program Files\Microsoft Office\MEDIA\CAGCAT10\1045\
E:\Program Files\Microsoft Office\MEDIA\OFFICE12\
E:\Program Files\Microsoft Office\MEDIA\OFFICE12\1045\
E:\Program Files\Microsoft Office\MEDIA\OFFICE12\AUTOSHAP\
E:\Program Files\Microsoft Office\MEDIA\OFFICE12\BULLETS\
E:\Program Files\Microsoft Office\MEDIA\OFFICE12\LINES\
E:\Program Files\Microsoft Office\Office12\
E:\Program Files\Microsoft Office\Office12\1031\
E:\Program Files\Microsoft Office\Office12\1033\
E:\Program Files\Microsoft Office\Office12\1045\
E:\Program Files\Microsoft Office\Office12\1045\Bibliography\
E:\Program Files\Microsoft Office\Office12\1045\DataServices\
E:\Program Files\Microsoft Office\Office12\1045\QuickStyles\
E:\Program Files\Microsoft Office\Office12\ADDINS\
E:\Program Files\Microsoft Office\Office12\Bibliography\
E:\Program Files\Microsoft Office\Office12\Bibliography\Sort\
E:\Program Files\Microsoft Office\Office12\Bibliography\Style\
E:\Program Files\Microsoft Office\Office12\BORDERS\
E:\Program Files\Microsoft Office\Office12\Document Parts\1045\
E:\Program Files\Microsoft Office\Office12\Library\
E:\Program Files\Microsoft Office\Office12\MEDIA\
E:\Program Files\Microsoft Office\Office12\PAGESIZE\
E:\Program Files\Microsoft Office\Office12\QUERIES\
E:\Program Files\Microsoft Office\Office12\SAMPLES\
E:\Program Files\Microsoft Office\Templates\1045\
E:\Program Files\Microsoft Office\Templates\1045\FAX\
E:\Program Files\Microsoft Office\Templates\12\MseNewFileItems\
E:\Program Files\Microsoft Office\Templates\Presentation Designs\
E:\Program Files\Mozilla Firefox\
E:\Program Files\Mozilla Firefox\chrome\
E:\Program Files\Mozilla Firefox\components\
E:\Program Files\Mozilla Firefox\defaults\autoconfig\
E:\Program Files\Mozilla Firefox\defaults\pref\
E:\Program Files\Mozilla Firefox\defaults\profile\
E:\Program Files\Mozilla Firefox\defaults\profile\chrome\
E:\Program Files\Mozilla Firefox\dictionaries\
E:\Program Files\Mozilla Firefox\extensions\inspector@mozilla.org\
E:\Program Files\Mozilla Firefox\extensions\inspector@mozilla.org\chrome\
E:\Program Files\Mozilla Firefox\extensions\inspector@mozilla.org\chrome\icons\default\
E:\Program Files\Mozilla Firefox\extensions\inspector@mozilla.org\components\
E:\Program Files\Mozilla Firefox\extensions\inspector@mozilla.org\defaults\preferences\
E:\Program Files\Mozilla Firefox\extensions\talkback@mozilla.org\
E:\Program Files\Mozilla Firefox\extensions\talkback@mozilla.org\components\
E:\Program Files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}\
E:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA}\
E:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA}\chrome\content\ffjcext\
E:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA}\chrome\locale\de-DE\ffjcext\
E:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA}\chrome\locale\en-US\ffjcext\
E:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA}\chrome\locale\es-ES\ffjcext\
E:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA}\chrome\locale\fr-FR\ffjcext\
E:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA}\chrome\locale\it-IT\ffjcext\
E:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA}\chrome\locale\ja-JP\ffjcext\
E:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA}\chrome\locale\ko-KR\ffjcext\
E:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA}\chrome\locale\sv-SE\ffjcext\
E:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA}\chrome\locale\zh-CN\ffjcext\
E:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA}\chrome\locale\zh-TW\ffjcext\
E:\Program Files\Mozilla Firefox\greprefs\
E:\Program Files\Mozilla Firefox\plugins\
E:\Program Files\Mozilla Firefox\res\
E:\Program Files\Mozilla Firefox\res\dtd\
E:\Program Files\Mozilla Firefox\res\entityTables\
E:\Program Files\Mozilla Firefox\res\fonts\
E:\Program Files\Mozilla Firefox\res\html\
E:\Program Files\Mozilla Firefox\searchplugins\
E:\Program Files\Mozilla Firefox\uninstall\
E:\Program Files\Nero\Nero 7\Adobe\
E:\Program Files\Nero\Nero 7\Core\
E:\Program Files\Nero\Nero 7\Core\CDI\
E:\Program Files\Nero\Nero 7\Core\SecurDisc\
E:\Program Files\Nero\Nero 7\Nero\Uninstall\
E:\Program Files\Nero\Nero 7\Nero BackItUp\
E:\Program Files\Nero\Nero 7\Nero BackItUp\BackItUp_ImageTool\
E:\Program Files\Nero\Nero 7\Nero BackItUp\BackItUp_ImageTool\root.img
[0] Archive type: GZ
--> root.img
[WARNING] Possible archive bomb: the maximum compression ratio has been exceeded.
E:\Program Files\Nero\Nero 7\Nero BackItUp\NeroFiles\
E:\Program Files\Nero\Nero 7\Nero CoverDesigner\
E:\Program Files\Nero\Nero 7\Nero CoverDesigner\Templates\
E:\Program Files\Nero\Nero 7\Nero Fast CD-DVD Burning Plug-in\
E:\Program Files\Nero\Nero 7\Nero Home\
E:\Program Files\Nero\Nero 7\Nero Home\Menu Templates\
E:\Program Files\Nero\Nero 7\Nero Home\Menu Templates\Thumbnails\
E:\Program Files\Nero\Nero 7\Nero Home\Skins\Horizon Sphere\Graphics\
E:\Program Files\Nero\Nero 7\Nero Home\Skins\Horizon Sphere\Graphics\Backgrounds\
E:\Program Files\Nero\Nero 7\Nero Home\Skins\Horizon Sphere\Graphics\Backgrounds_Others\
E:\Program Files\Nero\Nero 7\Nero Home\Skins\Horizon Sphere\Graphics\BG_Content_BigListView\
E:\Program Files\Nero\Nero 7\Nero Home\Skins\Horizon Sphere\Graphics\BG_Content_IconView\
E:\Program Files\Nero\Nero 7\Nero Home\Skins\Horizon Sphere\Graphics\BG_Content_ListView\
E:\Program Files\Nero\Nero 7\Nero Home\Skins\Horizon Sphere\Graphics\BG_Content_ListViewItem\
E:\Program Files\Nero\Nero 7\Nero Home\Skins\Horizon Sphere\Graphics\BG_Handlers\
E:\Program Files\Nero\Nero 7\Nero Home\Skins\Horizon Sphere\Graphics\BG_InfoPanel\
E:\Program Files\Nero\Nero 7\Nero Home\Skins\Horizon Sphere\Graphics\BG_MenuItems\
E:\Program Files\Nero\Nero 7\Nero Home\Skins\Horizon Sphere\Graphics\BG_OSD\
E:\Program Files\Nero\Nero 7\Nero Home\Skins\Horizon Sphere\Graphics\BG_PlayerControls\
E:\Program Files\Nero\Nero 7\Nero Home\Skins\Horizon Sphere\Graphics\BG_Settings\
E:\Program Files\Nero\Nero 7\Nero Home\Skins\Horizon Sphere\Graphics\BG_SetupWizard\
E:\Program Files\Nero\Nero 7\Nero Home\Skins\Horizon Sphere\Graphics\BG_Specials\
E:\Program Files\Nero\Nero 7\Nero Home\Skins\Horizon Sphere\Graphics\Icons_Content\
E:\Program Files\Nero\Nero 7\Nero Home\Skins\Horizon Sphere\Graphics\Icons_FileTypes\
E:\Program Files\Nero\Nero 7\Nero Home\Skins\Horizon Sphere\Graphics\Icons_Handlers\
E:\Program Files\Nero\Nero 7\Nero Home\Skins\Horizon Sphere\Graphics\Icons_InfoPanel\
E:\Program Files\Nero\Nero 7\Nero Home\Skins\Horizon Sphere\Graphics\Icons_MediaCategory\
E:\Program Files\Nero\Nero 7\Nero Home\Skins\Horizon Sphere\Graphics\Icons_MenuItems\
E:\Program Files\Nero\Nero 7\Nero Home\Skins\Horizon Sphere\Graphics\Icons_Notifications\
E:\Program Files\Nero\Nero 7\Nero Home\Skins\Horizon Sphere\Graphics\Icons_OSD\
E:\Program Files\Nero\Nero 7\Nero Home\Skins\Horizon Sphere\Graphics\Icons_PlayerControls\
E:\Program Files\Nero\Nero 7\Nero Home\Skins\Horizon Sphere\Graphics\Icons_Settings\
E:\Program Files\Nero\Nero 7\Nero Home\Skins\Horizon Sphere\Graphics\Icons_SetupWizard\
E:\Program Files\Nero\Nero 7\Nero Home\Skins\Horizon Sphere\Graphics\Icons_State\
E:\Program Files\Nero\Nero 7\Nero Home\Skins\Horizon Sphere\Graphics\Logo\
E:\Program Files\Nero\Nero 7\Nero Home\Skins\Horizon Sphere\Graphics\SelectionControl\
E:\Program Files\Nero\Nero 7\Nero Home\Skins\Horizon Sphere\Graphics\VirtualKeyboard\
E:\Program Files\Nero\Nero 7\Nero Home\Skins\Horizon Sphere\XML\
E:\Program Files\Nero\Nero 7\Nero Home\Skins\Spin\Graphics\
E:\Program Files\Nero\Nero 7\Nero Home\Skins\Spin\Graphics\Backgrounds\
E:\Program Files\Nero\Nero 7\Nero Home\Skins\Spin\Graphics\BG_Content_IconView\
E:\Program Files\Nero\Nero 7\Nero Home\Skins\Spin\Graphics\BG_Content_ListView\
E:\Program Files\Nero\Nero 7\Nero Home\Skins\Spin\Graphics\BG_Content_ListViewItem\
E:\Program Files\Nero\Nero 7\Nero Home\Skins\Spin\Graphics\BG_InfoPanel\
E:\Program Files\Nero\Nero 7\Nero Home\Skins\Spin\Graphics\BG_Notifications\
E:\Program Files\Nero\Nero 7\Nero Home\Skins\Spin\Graphics\BG_OSD\
E:\Program Files\Nero\Nero 7\Nero Home\Skins\Spin\Graphics\BG_PlayerControls\
E:\Program Files\Nero\Nero 7\Nero Home\Skins\Spin\Graphics\BG_Settings\
E:\Program Files\Nero\Nero 7\Nero Home\Skins\Spin\Graphics\BG_SetupWizard\
E:\Program Files\Nero\Nero 7\Nero Home\Skins\Spin\Graphics\BG_Specials\
E:\Program Files\Nero\Nero 7\Nero Home\Skins\Spin\Graphics\Icons_Content\
E:\Program Files\Nero\Nero 7\Nero Home\Skins\Spin\Graphics\Icons_FileTypes\
E:\Program Files\Nero\Nero 7\Nero Home\Skins\Spin\Graphics\Icons_Handlers\
E:\Program Files\Nero\Nero 7\Nero Home\Skins\Spin\Graphics\Icons_InfoPanel\
E:\Program Files\Nero\Nero 7\Nero Home\Skins\Spin\Graphics\Icons_MediaCategory\
E:\Program Files\Nero\Nero 7\Nero Home\Skins\Spin\Graphics\Icons_MenuItems\
E:\Program Files\Nero\Nero 7\Nero Home\Skins\Spin\Graphics\Icons_OSD\
E:\Program Files\Nero\Nero 7\Nero Home\Skins\Spin\Graphics\Icons_PlayerControls\
E:\Program Files\Nero\Nero 7\Nero Home\Skins\Spin\Graphics\Icons_Settings\
E:\Program Files\Nero\Nero 7\Nero Home\Skins\Spin\Graphics\Icons_SetupWizard\
E:\Program Files\Nero\Nero 7\Nero Home\Skins\Spin\Graphics\Icons_State\
E:\Program Files\Nero\Nero 7\Nero Home\Skins\Spin\Graphics\Logo\
E:\Program Files\Nero\Nero 7\Nero Home\Skins\Spin\Graphics\SelectionControl\
E:\Program Files\Nero\Nero 7\Nero Home\Skins\Spin\Graphics\VirtualKeyboard\
E:\Program Files\Nero\Nero 7\Nero Home\Skins\Spin\XML\
E:\Program Files\Nero\Nero 7\Nero ImageDrive\
E:\Program Files\Nero\Nero 7\Nero MediaHome\
E:\Program Files\Nero\Nero 7\Nero Mobile\
E:\Program Files\Nero\Nero 7\Nero Mobile\SP2003\
E:\Program Files\Nero\Nero 7\Nero Mobile\SP5\
E:\Program Files\Nero\Nero 7\Nero Mobile\WM2003\
E:\Program Files\Nero\Nero 7\Nero Mobile\WM5\
E:\Program Files\Nero\Nero 7\Nero PhotoSnap\
E:\Program Files\Nero\Nero 7\Nero Recode\
E:\Program Files\Nero\Nero 7\Nero ScratchBox\Loops\
E:\Program Files\Nero\Nero 7\Nero ScratchBox\Samples\
E:\Program Files\Nero\Nero 7\Nero ShowTime\
E:\Program Files\Nero\Nero 7\Nero ShowTime\Logos\
E:\Program Files\Nero\Nero 7\Nero ShowTime\Skins\
E:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\808\
E:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\Acoustic\
E:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\Funk\
E:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\Hiphop\
E:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\House\
E:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\Industrial\
E:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\Jazz\
E:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\Rock\
E:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\Synth\
E:\Program Files\Nero\Nero 7\Nero SoundBox\Drums\Techno\
E:\Program Files\Nero\Nero 7\Nero SoundBox\Samples\Concert\
E:\Program Files\Nero\Nero 7\Nero SoundBox\Samples\Farm\
E:\Program Files\Nero\Nero 7\Nero SoundBox\Samples\Horror\
E:\Program Files\Nero\Nero 7\Nero SoundBox\Samples\Jungle\
E:\Program Files\Nero\Nero 7\Nero SoundBox\Samples\Office\
E:\Program Files\Nero\Nero 7\Nero SoundBox\Samples\Party\
E:\Program Files\Nero\Nero 7\Nero SoundBox\Samples\Sequencer\
E:\Program Files\Nero\Nero 7\Nero SoundBox\Samples\Stadion\
E:\Program Files\Nero\Nero 7\Nero SoundBox\Samples\Traffic\
E:\Program Files\Nero\Nero 7\Nero SoundBox\Samples\Vehicles\
E:\Program Files\Nero\Nero 7\Nero SoundBox\Samples\Weather\
E:\Program Files\Nero\Nero 7\Nero SoundBox\Templates\
E:\Program Files\Nero\Nero 7\Nero SoundTrax\
E:\Program Files\Nero\Nero 7\Nero StartSmart\
E:\Program Files\Nero\Nero 7\Nero Toolkit\
E:\Program Files\Nero\Nero 7\Nero Vision\
E:\Program Files\Nero\Nero 7\Nero Vision\3DAnimations\Menus\16_9\AbstractBricks\
E:\Program Files\Nero\Nero 7\Nero Vision\3DAnimations\Menus\16_9\AbstractCircle\
E:\Program Files\Nero\Nero 7\Nero Vision\3DAnimations\Menus\16_9\AbstractFrames\
E:\Program Files\Nero\Nero 7\Nero Vision\3DAnimations\Menus\16_9\BabyBoom\
E:\Program Files\Nero\Nero 7\Nero Vision\3DAnimations\Menus\16_9\Cube\
E:\Program Files\Nero\Nero 7\Nero Vision\3DAnimations\Menus\16_9\Floating\
E:\Program Files\Nero\Nero 7\Nero Vision\3DAnimations\Menus\16_9\JellyBalloons\
E:\Program Files\Nero\Nero 7\Nero Vision\3DAnimations\Menus\16_9\Lattice\
E:\Program Files\Nero\Nero 7\Nero Vision\3DAnimations\Menus\16_9\Monitors\
E:\Program Files\Nero\Nero 7\Nero Vision\3DAnimations\Menus\16_9\RoomCubes\
E:\Program Files\Nero\Nero 7\Nero Vision\3DAnimations\Menus\16_9\ScreenBows\
E:\Program Files\Nero\Nero 7\Nero Vision\3DAnimations\Menus\16_9\Towers\
E:\Program Files\Nero\Nero 7\Nero Vision\3DAnimations\Menus\16_9\ToyTrucks\
E:\Program Files\Nero\Nero 7\Nero Vision\3DAnimations\Menus\16_9\Wanderlust\
E:\Program Files\Nero\Nero 7\Nero Vision\3DAnimations\Menus\16_9\Wobble\
E:\Program Files\Nero\Nero 7\Nero Vision\3DAnimations\Menus\4_3\AbstractBricks\
E:\Program Files\Nero\Nero 7\Nero Vision\3DAnimations\Menus\4_3\AbstractCircle\
E:\Program Files\Nero\Nero 7\Nero Vision\3DAnimations\Menus\4_3\AbstractFrames\
E:\Program Files\Nero\Nero 7\Nero Vision\3DAnimations\Menus\4_3\BabyBoom\
E:\Program Files\Nero\Nero 7\Nero Vision\3DAnimations\Menus\4_3\Cube\
E:\Program Files\Nero\Nero 7\Nero Vision\3DAnimations\Menus\4_3\Floating\
E:\Program Files\Nero\Nero 7\Nero Vision\3DAnimations\Menus\4_3\JellyBalloons\
E:\Program Files\Nero\Nero 7\Nero Vision\3DAnimations\Menus\4_3\Lattice\
E:\Program Files\Nero\Nero 7\Nero Vision\3DAnimations\Menus\4_3\Monitors\
E:\Program Files\Nero\Nero 7\Nero Vision\3DAnimations\Menus\4_3\RoomCubes\
E:\Program Files\Nero\Nero 7\Nero Vision\3DAnimations\Menus\4_3\ScreenBows\
E:\Program Files\Nero\Nero 7\Nero Vision\3DAnimations\Menus\4_3\Towers\
E:\Program Files\Nero\Nero 7\Nero Vision\3DAnimations\Menus\4_3\ToyTrucks\
E:\Program Files\Nero\Nero 7\Nero Vision\3DAnimations\Menus\4_3\Wanderlust\
E:\Program Files\Nero\Nero 7\Nero Vision\3DAnimations\Menus\4_3\Wobble\
E:\Program Files\Nero\Nero 7\Nero Vision\Buttons\
E:\Program Files\Nero\Nero 7\Nero Vision\MenuTemplates\
E:\Program Files\Nero\Nero 7\Nero Vision\MenuTemplates\HD\Buttons\
E:\Program Files\Nero\Nero 7\Nero Vision\MenuTemplates\HD\Pictures\
E:\Program Files\Nero\Nero 7\Nero Vision\MenuTemplates\Pictures\
E:\Program Files\Nero\Nero 7\Nero Vision\Pictures\
E:\Program Files\Nero\Nero 7\Nero Vision\Video\
E:\Program Files\Nero\Nero 7\Nero WaveEditor\
E:\Program Files\NFO viewer\
E:\Program Files\nLite\
E:\Program Files\Pidgin\
E:\Program Files\Pidgin\ca-certs\
E:\Program Files\Pidgin\locale\af\LC_MESSAGES\
E:\Program Files\Pidgin\locale\am\LC_MESSAGES\
E:\Program Files\Pidgin\locale\ar\LC_MESSAGES\
E:\Program Files\Pidgin\locale\az\LC_MESSAGES\
E:\Program Files\Pidgin\locale\be@latin\LC_MESSAGES\
E:\Program Files\Pidgin\locale\bg\LC_MESSAGES\
E:\Program Files\Pidgin\locale\bn\LC_MESSAGES\
E:\Program Files\Pidgin\locale\bs\LC_MESSAGES\
E:\Program Files\Pidgin\locale\ca\LC_MESSAGES\
E:\Program Files\Pidgin\locale\ca@valencia\LC_MESSAGES\
E:\Program Files\Pidgin\locale\cs\LC_MESSAGES\
E:\Program Files\Pidgin\locale\da\LC_MESSAGES\
E:\Program Files\Pidgin\locale\de\LC_MESSAGES\
E:\Program Files\Pidgin\locale\dz\LC_MESSAGES\
E:\Program Files\Pidgin\locale\el\LC_MESSAGES\
E:\Program Files\Pidgin\locale\en_AU\LC_MESSAGES\
E:\Program Files\Pidgin\locale\en_CA\LC_MESSAGES\
E:\Program Files\Pidgin\locale\en_GB\LC_MESSAGES\
E:\Program Files\Pidgin\locale\eo\LC_MESSAGES\
E:\Program Files\Pidgin\locale\es\LC_MESSAGES\
E:\Program Files\Pidgin\locale\et\LC_MESSAGES\
E:\Program Files\Pidgin\locale\eu\LC_MESSAGES\
E:\Program Files\Pidgin\locale\fa\LC_MESSAGES\
E:\Program Files\Pidgin\locale\fi\LC_MESSAGES\
E:\Program Files\Pidgin\locale\fr\LC_MESSAGES\
E:\Program Files\Pidgin\locale\gl\LC_MESSAGES\
E:\Program Files\Pidgin\locale\gu\LC_MESSAGES\
E:\Program Files\Pidgin\locale\he\LC_MESSAGES\
E:\Program Files\Pidgin\locale\hi\LC_MESSAGES\
E:\Program Files\Pidgin\locale\hu\LC_MESSAGES\
E:\Program Files\Pidgin\locale\id\LC_MESSAGES\
E:\Program Files\Pidgin\locale\it\LC_MESSAGES\
E:\Program Files\Pidgin\locale\ja\LC_MESSAGES\
E:\Program Files\Pidgin\locale\ka\LC_MESSAGES\
E:\Program Files\Pidgin\locale\kn\LC_MESSAGES\
E:\Program Files\Pidgin\locale\ko\LC_MESSAGES\
E:\Program Files\Pidgin\locale\ku\LC_MESSAGES\
E:\Program Files\Pidgin\locale\lo\LC_MESSAGES\
E:\Program Files\Pidgin\locale\lt\LC_MESSAGES\
E:\Program Files\Pidgin\locale\mk\LC_MESSAGES\
E:\Program Files\Pidgin\locale\my_MM\LC_MESSAGES\
E:\Program Files\Pidgin\locale\nb\LC_MESSAGES\
E:\Program Files\Pidgin\locale\ne\LC_MESSAGES\
E:\Program Files\Pidgin\locale\nl\LC_MESSAGES\
E:\Program Files\Pidgin\locale\nn\LC_MESSAGES\
E:\Program Files\Pidgin\locale\pa\LC_MESSAGES\
E:\Program Files\Pidgin\locale\pl\LC_MESSAGES\
E:\Program Files\Pidgin\locale\ps\LC_MESSAGES\
E:\Program Files\Pidgin\locale\pt\LC_MESSAGES\
E:\Program Files\Pidgin\locale\pt_BR\LC_MESSAGES\
E:\Program Files\Pidgin\locale\ro\LC_MESSAGES\
E:\Program Files\Pidgin\locale\ru\LC_MESSAGES\
E:\Program Files\Pidgin\locale\si\LC_MESSAGES\
E:\Program Files\Pidgin\locale\sk\LC_MESSAGES\
E:\Program Files\Pidgin\locale\sl\LC_MESSAGES\
E:\Program Files\Pidgin\locale\sq\LC_MESSAGES\
E:\Program Files\Pidgin\locale\sr\LC_MESSAGES\
E:\Program Files\Pidgin\locale\sr@latin\LC_MESSAGES\
E:\Program Files\Pidgin\locale\sv\LC_MESSAGES\
E:\Program Files\Pidgin\locale\ta\LC_MESSAGES\
E:\Program Files\Pidgin\locale\te\LC_MESSAGES\
E:\Program Files\Pidgin\locale\th\LC_MESSAGES\
E:\Program Files\Pidgin\locale\tr\LC_MESSAGES\
E:\Program Files\Pidgin\locale\uk\LC_MESSAGES\
E:\Program Files\Pidgin\locale\ur\LC_MESSAGES\
E:\Program Files\Pidgin\locale\vi\LC_MESSAGES\
E:\Program Files\Pidgin\locale\xh\LC_MESSAGES\
E:\Program Files\Pidgin\locale\zh_CN\LC_MESSAGES\
E:\Program Files\Pidgin\locale\zh_HK\LC_MESSAGES\
E:\Program Files\Pidgin\locale\zh_TW\LC_MESSAGES\
E:\Program Files\Pidgin\perlmod\
E:\Program Files\Pidgin\perlmod\auto\Purple\
E:\Program Files\Pidgin\pixmaps\pidgin\
E:\Program Files\Pidgin\pixmaps\pidgin\animations\16\
E:\Program Files\Pidgin\pixmaps\pidgin\buttons\
E:\Program Files\Pidgin\pixmaps\pidgin\dialogs\16\
E:\Program Files\Pidgin\pixmaps\pidgin\dialogs\64\
E:\Program Files\Pidgin\pixmaps\pidgin\emblems\16\
E:\Program Files\Pidgin\pixmaps\pidgin\emotes\default\
E:\Program Files\Pidgin\pixmaps\pidgin\emotes\none\
E:\Program Files\Pidgin\pixmaps\pidgin\protocols\16\
E:\Program Files\Pidgin\pixmaps\pidgin\protocols\22\
E:\Program Files\Pidgin\pixmaps\pidgin\protocols\48\
E:\Program Files\Pidgin\pixmaps\pidgin\status\11\
E:\Program Files\Pidgin\pixmaps\pidgin\status\11\rtl\
E:\Program Files\Pidgin\pixmaps\pidgin\status\16\
E:\Program Files\Pidgin\pixmaps\pidgin\status\16\rtl\
E:\Program Files\Pidgin\pixmaps\pidgin\status\22\
E:\Program Files\Pidgin\pixmaps\pidgin\status\22\rtl\
E:\Program Files\Pidgin\pixmaps\pidgin\status\32\
E:\Program Files\Pidgin\pixmaps\pidgin\status\32\rtl\
E:\Program Files\Pidgin\pixmaps\pidgin\status\48\
E:\Program Files\Pidgin\pixmaps\pidgin\status\48\rtl\
E:\Program Files\Pidgin\pixmaps\pidgin\toolbar\16\
E:\Program Files\Pidgin\pixmaps\pidgin\toolbar\22\
E:\Program Files\Pidgin\pixmaps\pidgin\tray\16\
E:\Program Files\Pidgin\pixmaps\pidgin\tray\22\
E:\Program Files\Pidgin\pixmaps\pidgin\tray\32\
E:\Program Files\Pidgin\pixmaps\pidgin\tray\48\
E:\Program Files\Pidgin\pixmaps\purple\buddy_icons\qq\
E:\Program Files\Pidgin\plugins\
E:\Program Files\Pidgin\sasl2\
E:\Program Files\Pidgin\sounds\purple\
E:\Program Files\Pidgin\TmpInstall\
E:\Program Files\Pidgin\TmpInstall\data\
E:\Program Files\Pidgin\TmpInstall\dict\
E:\Program Files\Pvm\
E:\Program Files\Pvm\Samples\
E:\Program Files\RivaTuner v2.08\
E:\Program Files\RivaTuner v2.08\Databases\NVIDIA\W2K\
E:\Program Files\RivaTuner v2.08\Databases\NVIDIA\W9X\
E:\Program Files\RivaTuner v2.08\Doc\
E:\Program Files\RivaTuner v2.08\Graphics\LCD\
E:\Program Files\RivaTuner v2.08\Graphics\Tray\
E:\Program Files\RivaTuner v2.08\Graphics\Watermark\
E:\Program Files\RivaTuner v2.08\Help\Databases\
E:\Program Files\RivaTuner v2.08\Help\Databases\RivaTuner\
E:\Program Files\RivaTuner v2.08\Help\Databases\RivaTuner\NVStrap\
E:\Program Files\RivaTuner v2.08\Help\PatchScripts\
E:\Program Files\RivaTuner v2.08\Help\Plugins\Monitoring\
E:\Program Files\RivaTuner v2.08\Help\Updates\
E:\Program Files\RivaTuner v2.08\Localization\Rus\
E:\Program Files\RivaTuner v2.08\Localization\Rus\Doc\
E:\Program Files\RivaTuner v2.08\Localization\Rus\Help\Databases\
E:\Program Files\RivaTuner v2.08\Localization\Rus\Help\Databases\RivaTuner\
E:\Program Files\RivaTuner v2.08\Localization\Rus\Help\Databases\RivaTuner\NVStrap\
E:\Program Files\RivaTuner v2.08\Localization\Rus\Help\PatchScripts\
E:\Program Files\RivaTuner v2.08\Localization\Rus\Help\Plugins\Monitoring\
E:\Program Files\RivaTuner v2.08\Localization\Rus\Help\Updates\
E:\Program Files\RivaTuner v2.08\Localization\Rus\Translation\Databases\NVIDIA\w2k\
E:\Program Files\RivaTuner v2.08\Localization\Rus\Translation\Localization\Deu\
E:\Program Files\RivaTuner v2.08\Localization\Rus\Translation\Localization\Eng\
E:\Program Files\RivaTuner v2.08\Localization\Rus\Translation\Localization\Ita\
E:\Program Files\RivaTuner v2.08\Localization\Rus\Translation\Localization\Rus\
E:\Program Files\RivaTuner v2.08\Localization\Rus\Translation\PatchScripts\ATI\SoftFireGL\
E:\Program Files\RivaTuner v2.08\Localization\Rus\Translation\PatchScripts\ATI\SoftR9x00\
E:\Program Files\RivaTuner v2.08\Localization\Rus\Translation\PatchScripts\NVIDIA\NV4xBIOSSwUnitsMaskEliminator\
E:\Program Files\RivaTuner v2.08\Localization\Rus\Translation\PatchScripts\NVIDIA\S3TCFixPack\Q3S3TCFix\
E:\Program Files\RivaTuner v2.08\Localization\Rus\Translation\PatchScripts\NVIDIA\S3TCFixPack\UniS3TCFix\
E:\Program Files\RivaTuner v2.08\Localization\Rus\Translation\Plugins\Monitoring\ADT7473.dll\
E:\Program Files\RivaTuner v2.08\Localization\Rus\Translation\Plugins\Monitoring\CPU.dll\
E:\Program Files\RivaTuner v2.08\Localization\Rus\Translation\Plugins\Monitoring\Everest.dll\
E:\Program Files\RivaTuner v2.08\Localization\Rus\Translation\Plugins\Monitoring\F75373S.dll\
E:\Program Files\RivaTuner v2.08\Localization\Rus\Translation\Plugins\Monitoring\LM63.dll\
E:\Program Files\RivaTuner v2.08\Localization\Rus\Translation\Plugins\Monitoring\LM89.dll\
E:\Program Files\RivaTuner v2.08\Localization\Rus\Translation\Plugins\Monitoring\MAX6648.dll\
E:\Program Files\RivaTuner v2.08\Localization\Rus\Translation\Plugins\Monitoring\NVHwAccel.dll\
E:\Program Files\RivaTuner v2.08\Localization\Rus\Translation\Plugins\Monitoring\NVSU.dll\
E:\Program Files\RivaTuner v2.08\Localization\Rus\Translation\Plugins\Monitoring\NVThermalDiode.dll\
E:\Program Files\RivaTuner v2.08\Localization\Rus\Translation\Plugins\Monitoring\SMART.dll\
E:\Program Files\RivaTuner v2.08\Localization\Rus\Translation\Plugins\Monitoring\SysMem.dll\
E:\Program Files\RivaTuner v2.08\Localization\Rus\Translation\Plugins\Monitoring\VidMem.dll\
E:\Program Files\RivaTuner v2.08\Localization\Rus\Translation\Plugins\Monitoring\VT1103.dll\
E:\Program Files\RivaTuner v2.08\Localization\Rus\Translation\Plugins\Monitoring\W83L785R.dll\
E:\Program Files\RivaTuner v2.08\Localization\Rus\Translation\RivaTuner.cfg\
E:\Program Files\RivaTuner v2.08\Localization\Rus\Translation\RivaTuner.exe\
E:\Program Files\RivaTuner v2.08\Localization\Rus\Translation\RivaTuner.rtd\
E:\Program Files\RivaTuner v2.08\Localization\Rus\Translation\Tools\D3DOverrider\
E:\Program Files\RivaTuner v2.08\PatchScripts\ATI\ATIOverclockingAntiprotection\
E:\Program Files\RivaTuner v2.08\PatchScripts\ATI\ATIOverclockingAntiprotectionRuntime\
E:\Program Files\RivaTuner v2.08\PatchScripts\ATI\SoftFireGL\1021\
E:\Program Files\RivaTuner v2.08\PatchScripts\ATI\SoftFireGL\1024+\
E:\Program Files\RivaTuner v2.08\PatchScripts\ATI\SoftFireGL\1024+\Antiprotection\
E:\Program Files\RivaTuner v2.08\PatchScripts\ATI\SoftFireGL\Unified\
E:\Program Files\RivaTuner v2.08\PatchScripts\ATI\SoftFireGL\Unified\Antiprotection\Driver\
E:\Program Files\RivaTuner v2.08\PatchScripts\ATI\SoftFireGL\Unified\Antiprotection\FGLMax\
E:\Program Files\RivaTuner v2.08\PatchScripts\ATI\SoftFireGL\Unified\Antiprotection\FGLPanel\
E:\Program Files\RivaTuner v2.08\PatchScripts\ATI\SoftR9x00\
E:\Program Files\RivaTuner v2.08\PatchScripts\Common\
E:\Program Files\RivaTuner v2.08\PatchScripts\NVIDIA\AnisoBooster\
E:\Program Files\RivaTuner v2.08\PatchScripts\NVIDIA\DetonatorFXAntiprotection\
E:\Program Files\RivaTuner v2.08\PatchScripts\NVIDIA\DetonatorFXDecoder\
E:\Program Files\RivaTuner v2.08\PatchScripts\NVIDIA\ForceWareAntiprotection\
E:\Program Files\RivaTuner v2.08\PatchScripts\NVIDIA\ImageSharpeningBugfix\
E:\Program Files\RivaTuner v2.08\PatchScripts\NVIDIA\LODBiasFix\
E:\Program Files\RivaTuner v2.08\PatchScripts\NVIDIA\NV25AALines\
E:\Program Files\RivaTuner v2.08\PatchScripts\NVIDIA\NV40BIOSHwUnitsMaskElimintor\
E:\Program Files\RivaTuner v2.08\PatchScripts\NVIDIA\NV4xBIOSSwUnitsMaskElimintor\
E:\Program Files\RivaTuner v2.08\PatchScripts\NVIDIA\NVStrapAntiprotection\
E:\Program Files\RivaTuner v2.08\PatchScripts\NVIDIA\NvXTInitFix\
E:\Program Files\RivaTuner v2.08\PatchScripts\NVIDIA\RTPatchFix\
E:\Program Files\RivaTuner v2.08\PatchScripts\NVIDIA\S3TCFixPack\
E:\Program Files\RivaTuner v2.08\PatchScripts\NVIDIA\S3TCFixPack\UniS3TCFix\
E:\Program Files\RivaTuner v2.08\PatchScripts\NVIDIA\SoftQuadro4\
E:\Program Files\RivaTuner v2.08\PlugIns\Monitoring\
E:\Program Files\RivaTuner v2.08\PlugIns\RTS\
E:\Program Files\RivaTuner v2.08\Presets\NVIDIA\W2K\Games\
E:\Program Files\RivaTuner v2.08\Presets\NVIDIA\W9X\Games\
E:\Program Files\RivaTuner v2.08\SDK\
E:\Program Files\RivaTuner v2.08\SDK\Drivers\
E:\Program Files\RivaTuner v2.08\SDK\Include\
E:\Program Files\RivaTuner v2.08\SDK\Samples\Host\MonitoringHostSample\
E:\Program Files\RivaTuner v2.08\SDK\Samples\Host\MonitoringHostSample\Release\
E:\Program Files\RivaTuner v2.08\SDK\Samples\Host\MonitoringHostSample\res\
E:\Program Files\RivaTuner v2.08\SDK\Samples\Plugins\LCDHype\RivaTuner\
E:\Program Files\RivaTuner v2.08\SDK\Samples\Plugins\LCDHype\RivaTuner\Release\
E:\Program Files\RivaTuner v2.08\SDK\Samples\Plugins\LCDHype\RivaTuner\res\
E:\Program Files\RivaTuner v2.08\SDK\Samples\Plugins\Monitoring\ADT7473\
E:\Program Files\RivaTuner v2.08\SDK\Samples\Plugins\Monitoring\ADT7473\Release\
E:\Program Files\RivaTuner v2.08\SDK\Samples\Plugins\Monitoring\ADT7473\res\
E:\Program Files\RivaTuner v2.08\SDK\Samples\Plugins\Monitoring\CPU\
E:\Program Files\RivaTuner v2.08\SDK\Samples\Plugins\Monitoring\CPU\Release\
E:\Program Files\RivaTuner v2.08\SDK\Samples\Plugins\Monitoring\CPU\res\
E:\Program Files\RivaTuner v2.08\SDK\Samples\Plugins\Monitoring\Everest\
E:\Program Files\RivaTuner v2.08\SDK\Samples\Plugins\Monitoring\Everest\Release\
E:\Program Files\RivaTuner v2.08\SDK\Samples\Plugins\Monitoring\Everest\res\
E:\Program Files\RivaTuner v2.08\SDK\Samples\Plugins\Monitoring\F75373S\
E:\Program Files\RivaTuner v2.08\SDK\Samples\Plugins\Monitoring\F75373S\Release\
E:\Program Files\RivaTuner v2.08\SDK\Samples\Plugins\Monitoring\F75373S\res\
E:\Program Files\RivaTuner v2.08\SDK\Samples\Plugins\Monitoring\GPUProbe\
E:\Program Files\RivaTuner v2.08\SDK\Samples\Plugins\Monitoring\GPUProbe\Release\
E:\Program Files\RivaTuner v2.08\SDK\Samples\Plugins\Monitoring\GPUProbe\res\
E:\Program Files\RivaTuner v2.08\SDK\Samples\Plugins\Monitoring\LM63\
E:\Program Files\RivaTuner v2.08\SDK\Samples\Plugins\Monitoring\LM63\Release\
E:\Program Files\RivaTuner v2.08\SDK\Samples\Plugins\Monitoring\LM63\res\
E:\Program Files\RivaTuner v2.08\SDK\Samples\Plugins\Monitoring\LM89\
E:\Program Files\RivaTuner v2.08\SDK\Samples\Plugins\Monitoring\LM89\Release\
E:\Program Files\RivaTuner v2.08\SDK\Samples\Plugins\Monitoring\LM89\res\
E:\Program Files\RivaTuner v2.08\SDK\Samples\Plugins\Monitoring\MAX6648\
E:\Program Files\RivaTuner v2.08\SDK\Samples\Plugins\Monitoring\MAX6648\Release\
E:\Program Files\RivaTuner v2.08\SDK\Samples\Plugins\Monitoring\MAX6648\res\
E:\Program Files\RivaTuner v2.08\SDK\Samples\Plugins\Monitoring\NVHwAccel\
E:\Program Files\RivaTuner v2.08\SDK\Samples\Plugins\Monitoring\NVHwAccel\Release\
E:\Program Files\RivaTuner v2.08\SDK\Samples\Plugins\Monitoring\NVHwAccel\res\
E:\Program Files\RivaTuner v2.08\SDK\Samples\Plugins\Monitoring\NVSU\
E:\Program Files\RivaTuner v2.08\SDK\Samples\Plugins\Monitoring\NVSU\Release\
E:\Program Files\RivaTuner v2.08\SDK\Samples\Plugins\Monitoring\NVSU\res\
E:\Program Files\RivaTuner v2.08\SDK\Samples\Plugins\Monitoring\NVThermalDiode\
E:\Program Files\RivaTuner v2.08\SDK\Samples\Plugins\Monitoring\NVThermalDiode\Release\
E:\Program Files\RivaTuner v2.08\SDK\Samples\Plugins\Monitoring\NVThermalDiode\res\
E:\Program Files\RivaTuner v2.08\SDK\Samples\Plugins\Monitoring\SMART\
E:\Program Files\RivaTuner v2.08\SDK\Samples\Plugins\Monitoring\SMART\Release\
E:\Program Files\RivaTuner v2.08\SDK\Samples\Plugins\Monitoring\SMART\res\
E:\Program Files\RivaTuner v2.08\SDK\Samples\Plugins\Monitoring\SysMem\
E:\Program Files\RivaTuner v2.08\SDK\Samples\Plugins\Monitoring\SysMem\Release\
E:\Program Files\RivaTuner v2.08\SDK\Samples\Plugins\Monitoring\SysMem\res\
E:\Program Files\RivaTuner v2.08\SDK\Samples\Plugins\Monitoring\VidMem\
E:\Program Files\RivaTuner v2.08\SDK\Samples\Plugins\Monitoring\VidMem\Release\
E:\Program Files\RivaTuner v2.08\SDK\Samples\Plugins\Monitoring\VidMem\res\
E:\Program Files\RivaTuner v2.08\SDK\Samples\Plugins\Monitoring\VT1103\
E:\Program Files\RivaTuner v2.08\SDK\Samples\Plugins\Monitoring\VT1103\Release\
E:\Program Files\RivaTuner v2.08\SDK\Samples\Plugins\Monitoring\VT1103\res\
E:\Program Files\RivaTuner v2.08\SDK\Samples\Plugins\Monitoring\W83L785R\
E:\Program Files\RivaTuner v2.08\SDK\Samples\Plugins\Monitoring\W83L785R\Release\
E:\Program Files\RivaTuner v2.08\SDK\Samples\Plugins\Monitoring\W83L785R\res\
E:\Program Files\RivaTuner v2.08\SDK\Samples\Plugins\RTS\BIOSChecksumGenerator\
E:\Program Files\RivaTuner v2.08\SDK\Samples\Plugins\RTS\BIOSChecksumGenerator\Release\
E:\Program Files\RivaTuner v2.08\SDK\Samples\Plugins\RTS\BIOSChecksumGenerator\res\
E:\Program Files\RivaTuner v2.08\SDK\Samples\SharedMemory\RTEQSharedMemorySample\
E:\Program Files\RivaTuner v2.08\SDK\Samples\SharedMemory\RTEQSharedMemorySample\Release\
E:\Program Files\RivaTuner v2.08\SDK\Samples\SharedMemory\RTEQSharedMemorySample\res\
E:\Program Files\RivaTuner v2.08\SDK\Samples\SharedMemory\RTHMSharedMemorySample\
E:\Program Files\RivaTuner v2.08\SDK\Samples\SharedMemory\RTHMSharedMemorySample\Release\
E:\Program Files\RivaTuner v2.08\SDK\Samples\SharedMemory\RTHMSharedMemorySample\res\
E:\Program Files\RivaTuner v2.08\SDK\Samples\SharedMemory\RTSSSharedMemorySample\
E:\Program Files\RivaTuner v2.08\SDK\Samples\SharedMemory\RTSSSharedMemorySample\Release\
E:\Program Files\RivaTuner v2.08\SDK\Samples\SharedMemory\RTSSSharedMemorySample\res\
E:\Program Files\RivaTuner v2.08\SDK\Updates\
E:\Program Files\RivaTuner v2.08\Tools\D3DOverrider\
E:\Program Files\RivaTuner v2.08\Tools\NVStrap\
E:\Program Files\RivaTuner v2.08\Tools\NVXML\
E:\Program Files\RivaTuner v2.08\Tools\NVXML\Include\
E:\Program Files\RivaTuner v2.08\Tools\RivaTunerStatisticsServer\
E:\Program Files\SpeedFan\
E:\Program Files\Spybot - Search & Destroy\
E:\Program Files\Spybot - Search & Destroy\Dummies\
E:\Program Files\Spybot - Search & Destroy\Help\
E:\Program Files\Spybot - Search & Destroy\Includes\
E:\Program Files\Spybot - Search & Destroy\Languages\
E:\Program Files\Spybot - Search & Destroy\Plugins\
E:\Program Files\Spybot - Search & Destroy\Skins\
E:\Program Files\Spybot - Search & Destroy\Updates\
E:\Program Files\Total Video Converter\
E:\Program Files\Total Video Converter\Converted\
E:\Program Files\Total Video Converter\ini\
E:\Program Files\Total Video Converter\plugins\
E:\Program Files\Total Video Converter\Skins\DefaultSkin\
E:\Program Files\Ubisoft\Lost Via Domus\
E:\Program Files\Ubisoft\Lost Via Domus\detection\
E:\Program Files\Ubisoft\Lost Via Domus\detection\localization\DEU\
E:\Program Files\Ubisoft\Lost Via Domus\detection\localization\EN\
E:\Program Files\Ubisoft\Lost Via Domus\detection\localization\ESM\
E:\Program Files\Ubisoft\Lost Via Domus\detection\localization\FR\
E:\Program Files\Ubisoft\Lost Via Domus\detection\localization\ITA\
E:\Program Files\Ubisoft\Lost Via Domus\Resources\de\
E:\Program Files\Ubisoft\Lost Via Domus\Resources\es\
E:\Program Files\Ubisoft\Lost Via Domus\Resources\fr\
E:\Program Files\Ubisoft\Lost Via Domus\Resources\it\
E:\Program Files\Ubisoft\Lost Via Domus\Resources\nl\
E:\Program Files\Ubisoft\Lost Via Domus\Resources\uk\
E:\Program Files\Ubisoft\Lost Via Domus\Resources\us\
E:\Program Files\Ubisoft\Lost Via Domus\Sound_Bin_PC\
E:\Program Files\Ubisoft\Lost Via Domus\Support\Manual\
E:\Program Files\Ubisoft\Lost Via Domus\Support\ReadMe\
E:\Program Files\Ubisoft\Lost Via Domus\videos\
E:\Program Files\VideoLAN\VLC\
E:\Program Files\VideoLAN\VLC\http\
E:\Program Files\VideoLAN\VLC\http\dialogs\
E:\Program Files\VideoLAN\VLC\http\images\
E:\Program Files\VideoLAN\VLC\http\js\
E:\Program Files\VideoLAN\VLC\http\old\
E:\Program Files\VideoLAN\VLC\http\old\admin\
E:\Program Files\VideoLAN\VLC\http\old\vlm\
E:\Program Files\VideoLAN\VLC\http\requests\
E:\Program Files\VideoLAN\VLC\locale\af\LC_MESSAGES\
E:\Program Files\VideoLAN\VLC\locale\ar\LC_MESSAGES\
E:\Program Files\VideoLAN\VLC\locale\ca\LC_MESSAGES\
E:\Program Files\VideoLAN\VLC\locale\co\LC_MESSAGES\
E:\Program Files\VideoLAN\VLC\locale\cs\LC_MESSAGES\
E:\Program Files\VideoLAN\VLC\locale\da\LC_MESSAGES\
E:\Program Files\VideoLAN\VLC\locale\de\LC_MESSAGES\
E:\Program Files\VideoLAN\VLC\locale\en_GB\LC_MESSAGES\
E:\Program Files\VideoLAN\VLC\locale\es\LC_MESSAGES\
E:\Program Files\VideoLAN\VLC\locale\eu\LC_MESSAGES\
E:\Program Files\VideoLAN\VLC\locale\fa\LC_MESSAGES\
E:\Program Files\VideoLAN\VLC\locale\fr\LC_MESSAGES\
E:\Program Files\VideoLAN\VLC\locale\fur\LC_MESSAGES\
E:\Program Files\VideoLAN\VLC\locale\gl\LC_MESSAGES\
E:\Program Files\VideoLAN\VLC\locale\he\LC_MESSAGES\
E:\Program Files\VideoLAN\VLC\locale\hi\LC_MESSAGES\
E:\Program Files\VideoLAN\VLC\locale\hu\LC_MESSAGES\
E:\Program Files\VideoLAN\VLC\locale\it\LC_MESSAGES\
E:\Program Files\VideoLAN\VLC\locale\ja\LC_MESSAGES\
E:\Program Files\VideoLAN\VLC\locale\ka\LC_MESSAGES\
E:\Program Files\VideoLAN\VLC\locale\ko\LC_MESSAGES\
E:\Program Files\VideoLAN\VLC\locale\lt\LC_MESSAGES\
E:\Program Files\VideoLAN\VLC\locale\lv\LC_MESSAGES\
E:\Program Files\VideoLAN\VLC\locale\ms\LC_MESSAGES\
E:\Program Files\VideoLAN\VLC\locale\nb\LC_MESSAGES\
E:\Program Files\VideoLAN\VLC\locale\ne\LC_MESSAGES\
E:\Program Files\VideoLAN\VLC\locale\nl\LC_MESSAGES\
E:\Program Files\VideoLAN\VLC\locale\nn\LC_MESSAGES\
E:\Program Files\VideoLAN\VLC\locale\oc\LC_MESSAGES\
E:\Program Files\VideoLAN\VLC\locale\pa\LC_MESSAGES\
E:\Program Files\VideoLAN\VLC\locale\pl\LC_MESSAGES\
E:\Program Files\VideoLAN\VLC\locale\pt_BR\LC_MESSAGES\
E:\Program Files\VideoLAN\VLC\locale\ro\LC_MESSAGES\
E:\Program Files\VideoLAN\VLC\locale\ru\LC_MESSAGES\
E:\Program Files\VideoLAN\VLC\locale\sk\LC_MESSAGES\
E:\Program Files\VideoLAN\VLC\locale\sl\LC_MESSAGES\
E:\Program Files\VideoLAN\VLC\locale\sq\LC_MESSAGES\
E:\Program Files\VideoLAN\VLC\locale\sv\LC_MESSAGES\
E:\Program Files\VideoLAN\VLC\locale\th\LC_MESSAGES\
E:\Program Files\VideoLAN\VLC\locale\tr\LC_MESSAGES\
E:\Program Files\VideoLAN\VLC\locale\zh_CN\LC_MESSAGES\
E:\Program Files\VideoLAN\VLC\locale\zh_TW\LC_MESSAGES\
E:\Program Files\VideoLAN\VLC\osdmenu\
E:\Program Files\VideoLAN\VLC\osdmenu\default\
E:\Program Files\VideoLAN\VLC\osdmenu\default\selected\
E:\Program Files\VideoLAN\VLC\osdmenu\default\selection\
E:\Program Files\VideoLAN\VLC\osdmenu\default\volume\
E:\Program Files\VideoLAN\VLC\osdmenu\dvd\selected\
E:\Program Files\VideoLAN\VLC\osdmenu\dvd\selection\
E:\Program Files\VideoLAN\VLC\osdmenu\dvd\unselect\
E:\Program Files\VideoLAN\VLC\osdmenu\dvd\volume\
E:\Program Files\VideoLAN\VLC\plugins\
E:\Program Files\VideoLAN\VLC\skins\
E:\Program Files\VideoLAN\VLC\skins\fonts\
E:\RECYCLER\S-1-5-21-796845957-1844237615-725345543-1003\


End of the scan: 12 kwietnia 2008 17:45
Used time: 41:39 min

The scan has been done completely.

3540 Scanning directories
169048 Files were scanned
8 viruses and/or unwanted programs were found
0 Files were classified as suspicious:
0 files were deleted
0 files were repaired
8 files were moved to quarantine
0 files were renamed
20 Files cannot be scanned
169040 Files not concerned
2685 Archives were scanned
23 Warnings
522 Notes

12 Avril 2008 21:28:39

Euh c'est pas le bon rapport ..
Dans le bon rapport, le début et le même ainsi que la fin, mais le contenu ne montre que les virus trouvés et objets lockés.
Alors que là :p 
13 Avril 2008 13:49:18

Voila c'est le bon j'espere



AntiVir PersonalEdition Classic
Report file date: 13 kwietnia 2008 12:58

Scanning for 1198942 virus strains and unwanted programs.

Licensed to: Avira AntiVir PersonalEdition Classic
Serial number: 0000149996-ADJIE-0001
Platform: Windows XP
Windows version: (Dodatek Service Pack 2) [5.1.2600]
Username: Alex
Computer name: ALEX-E7B9240F1B

Version information:
BUILD.DAT : 270 15603 Bytes 2007-09-19 13:32:00
AVSCAN.EXE : 7.0.6.1 290856 Bytes 2007-08-23 12:16:29
AVSCAN.DLL : 7.0.6.0 49192 Bytes 2007-08-16 11:23:51
LUKE.DLL : 7.0.5.3 147496 Bytes 2007-08-14 14:32:47
LUKERES.DLL : 7.0.6.1 10280 Bytes 2007-08-21 11:35:20
ANTIVIR0.VDF : 6.40.0.0 11030528 Bytes 2007-07-18 13:27:15
ANTIVIR1.VDF : 7.0.3.2 5447168 Bytes 2008-03-07 09:11:14
ANTIVIR2.VDF : 7.0.3.156 795136 Bytes 2008-04-11 09:11:14
ANTIVIR3.VDF : 7.0.3.158 61952 Bytes 2008-04-11 09:11:14
AVEWIN32.DLL : 7.6.0.85 3461632 Bytes 2008-04-12 09:11:15
AVWINLL.DLL : 1.0.0.7 14376 Bytes 2007-02-26 09:36:26
AVPREF.DLL : 7.0.2.2 25640 Bytes 2007-07-18 06:39:17
AVREP.DLL : 7.0.0.1 155688 Bytes 2007-04-16 12:16:24
AVPACK32.DLL : 7.6.0.3 360488 Bytes 2008-04-12 09:11:15
AVREG.DLL : 7.0.1.6 30760 Bytes 2007-07-18 06:17:06
AVARKT.DLL : 1.0.0.20 278568 Bytes 2007-08-28 11:26:33
AVEVTLOG.DLL : 7.0.0.20 86056 Bytes 2007-07-18 06:10:18
NETNT.DLL : 7.0.0.0 7720 Bytes 2007-03-08 10:09:42
RCIMAGE.DLL : 7.0.1.30 2342952 Bytes 2007-08-07 11:38:13
RCTEXT.DLL : 7.0.62.0 86056 Bytes 2007-08-21 11:50:37
SQLITE3.DLL : 3.3.17.1 339968 Bytes 2007-07-23 08:37:21

Configuration settings for the scan:
Jobname..........................: Manual Selection
Configuration file...............: C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir PersonalEdition Classic\PROFILES\folder.avp
Logging..........................: low
Primary action...................: interactive
Secondary action.................: ignore
Scan master boot sector..........: off
Scan boot sector.................: on
Boot sectors.....................: E:,
Scan memory......................: on
Process scan.....................: on
Scan registry....................: on
Search for rootkits..............: off
Scan all files...................: Intelligent file selection
Scan archives....................: on
Recursion depth..................: 20
Smart extensions.................: on
Macro heuristic..................: on
File heuristic...................: medium

Start of the scan: 13 kwietnia 2008 12:58

The scan of running processes will be started
Scan process 'avscan.exe' - '1' Module(s) have been scanned
Scan process 'avcenter.exe' - '1' Module(s) have been scanned
Scan process 'explorer.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'lsass.exe' - '1' Module(s) have been scanned
Scan process 'services.exe' - '1' Module(s) have been scanned
Scan process 'winlogon.exe' - '1' Module(s) have been scanned
Scan process 'csrss.exe' - '1' Module(s) have been scanned
Scan process 'smss.exe' - '1' Module(s) have been scanned
11 processes with 11 modules were scanned

Start scanning boot sectors:
Boot sector 'C:\'
[NOTE] No virus was found!
Boot sector 'E:\'
[NOTE] No virus was found!

Starting to scan the registry.
The registry was scanned ( '28' files ).


Starting the file scan:

Begin scan in 'C:\'
C:\pagefile.sys
[WARNING] The file could not be opened!
C:\WINDOWS\system32\drivers\sptd.sys
[WARNING] The file could not be opened!
Begin scan in 'E:\'


End of the scan: 13 kwietnia 2008 13:40
Used time: 42:48 min

The scan has been done completely.

3543 Scanning directories
169046 Files were scanned
0 viruses and/or unwanted programs were found
0 Files were classified as suspicious:
0 files were deleted
0 files were repaired
0 files were moved to quarantine
0 files were renamed
2 Files cannot be scanned
169046 Files not concerned
2683 Archives were scanned
2 Warnings
174 Notes

14 Avril 2008 22:25:09

Houhou ? Il y a quelqu'un ?
17 Avril 2008 20:23:54

J'ai l'impression que XmichouX n'est plus la... quelqu'un d'autre pourrait m'aider ?
19 Avril 2008 17:42:52

Re,

Désolé, j'étais parti en vacances.

C'est le bon rapport, plus de dysfonctionnements?

Poste le rapport Clean stp.
19 Avril 2008 18:56:26

Ah ok c'est bon c'est pas grave !

2008-04-11 a 20:46:35,04

*** Recherche C:

*** Recherche C:\WINDOWS\

*** Recherche C:\WINDOWS\system32

*** Recherche C:\Program Files
*** End of the report !


Effectivement mon pc fonctionne normalement !
19 Avril 2008 20:22:48

Reposte un HIjackThis ;) 
19 Avril 2008 20:57:17

Voila

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 20:57:21, on 2008-04-19
Platform: Windows XP Dodatek SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
E:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Analog Devices\Core\smax4pnp.exe
C:\Program Files\Analog Devices\SoundMAX\Smax4.exe
C:\WINDOWS\system32\RUNDLL32.EXE
E:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe
E:\Program Files\DAEMON Tools Lite\daemon.exe
E:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
C:\Program Files\Common Files\Ahead\Lib\NMIndexStoreSvr.exe
E:\Program Files\Pidgin\pidgin.exe
E:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Windows Live\Messenger\usnsvc.exe
E:\Program Files\eMule\emule.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Łącza
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - E:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe
O4 - HKLM\..\Run: [SoundMAX] "C:\Program Files\Analog Devices\SoundMAX\Smax4.exe" /tray
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [avgnt] "E:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [DAEMON Tools Lite] "E:\Program Files\DAEMON Tools Lite\daemon.exe" -autorun
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'USŁUGA LOKALNA')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'USŁUGA SIECIOWA')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: E&ksportuj do programu Microsoft Excel - res://E:\PROGRA~1\MICROS~1\Office12\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - E:\PROGRA~1\MICROS~1\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - E:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search && Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - E:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://webscanner.kaspersky.fr/kavwebscan_unicode.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{D99FED37-C3DB-4860-B70D-666AD811BCD7}: NameServer = 192.168.1.1
O23 - Service: AntiVir PersonalEdition Classic Scheduler (AntiVirScheduler) - Avira GmbH - E:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: AntiVir PersonalEdition Classic Guard (AntiVirService) - Avira GmbH - E:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: NBService - Nero AG - E:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe

--
End of file - 5604 bytes
19 Avril 2008 23:23:26

Re,

Relance HiJackThis (clique droit -> lancer en tant qu'adminstrateur sous Vista), do a system scan only, coche ces lignes (si toujours présentes) :
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe"

Ferme toutes les applications en cours (particulièrement ton navigateur Internet).
Puis Fix Checked!

*****

Télécharge ToolsCleaner2( de A.Rothstein)

Installe le sur ton Bureau
Clique sur [Recherche] pour lancer le scan
Clique sur [Supprimer] pour nettoyer les outils utilisés
Clique sur [Quitter],
Poste ce rapport ~>C:\TCleaner.txt<~

Garde ccleaner, avg et antivir si nous les avons installé..
Désactive-réactive la restauration système
Rapporte ton infection sur Malware Complaints >Tuto<
Ton(tes) infection(s) : Bagle
Si tu ne la trouves pas dans la liste, poste dans Autres infections,

Mets ton ordi correctement à jour >ici<

Puis regarde ces dossiers :

Sécurité/Prévention
Conséquences de la multi-protection
Toolbars : Inutilité et ralentissements

Bonne journée/soirée :) 
30 Avril 2008 10:29:50


Wed Apr 02 09:49:44 2008
EliBagle v11.32 (c)2008 S.G.H. / Satinfo S.L.
----------------------------------------------
Lista de Acciones (por Acción Directa):
C:\WINDOWS\SYSTEM32\DRIVERS\HLDRRR.EXE --> Eliminado Bagle.dldr
Restaurada Clave: "SafeBoot\Minimal y Network"

Wed Apr 02 09:51:13 2008
EliBagle v11.32 (c)2008 S.G.H. / Satinfo S.L.
----------------------------------------------
Lista de Acciones (por Exploración):
Explorando Unidad C:\
C:\Program Files\Toshiba\TOSCDSPD\TOSCDSPD.EXE --> Eliminado Bagle.dldr
C:\WINDOWS\system32\drivers\MDELK.EXE --> Eliminado Bagle.dldr

Nº Total de Directorios: 7800
Nº Total de Ficheros: 100805
Nº de Ficheros Analizados: 12925
Nº de Ficheros Infectados: 2
Nº de Ficheros Limpiados: 2

Wed Apr 02 10:21:38 2008
EliBagle v11.32 (c)2008 S.G.H. / Satinfo S.L.
----------------------------------------------
Lista de Acciones (por Acción Directa):
j'ai eu le meme probleme et voila le rapport de ELIBAGLA

Wed Apr 02 10:21:40 2008
EliBagle v11.32 (c)2008 S.G.H. / Satinfo S.L.
----------------------------------------------
Lista de Acciones (por Exploración):
Explorando Unidad C:\
Tom's guide dans le monde
  • Allemagne
  • Italie
  • Irlande
  • Royaume Uni
  • Etats Unis
Suivre Tom's Guide
Inscrivez-vous à la Newsletter
  • ajouter à twitter
  • ajouter à facebook
  • ajouter un flux RSS