
RC-Thunder
Lid-
Items
9 -
Registratiedatum
-
Laatst bezocht
RC-Thunder's prestaties
-
Live Security Platinum Virus opgelopen 'HELP'
RC-Thunder reageerde op RC-Thunder's topic in Archief Bestrijding malware & virussen
Kape ontzettend bedankt 'Live Security Platinum' is verleden tijd, mijn computer is virus vrij. Probleem opgelost! -
Live Security Platinum Virus opgelopen 'HELP'
RC-Thunder reageerde op RC-Thunder's topic in Archief Bestrijding malware & virussen
Kape alvast bedankt voor je hulp Hier onder is the MBAN Logje and daar onder the nieuwe HijackThis logje. Malwarebytes Anti-Malware 1.62.0.1300 Malwarebytes : Free anti-malware download Databaseversie: v2012.08.04.03 Windows Vista Service Pack 2 x64 NTFS (Veilige modus/netwerkmogelijkheden) Internet Explorer 9.0.8112.16421 Administrator :: COMPUTER [administrator] 4-8-2012 7:11:22 mbam-log-2012-08-04 (07-11-22).txt Scantype: Snelle scan Ingeschakelde scanopties: Geheugen | Opstartitems | Register | Bestanden en mappen | Heuristiek/Extra | Heuristiek/Shuriken | PUP | PUM Uitgeschakelde scanopties: P2P Objecten gescand: 235111 Verstreken tijd: 2 minuut/minuten, 4 seconde(n) Geheugenprocessen gedetecteerd: 0 (Geen kwaadaardige objecten gedetecteerd) Geheugenmodulen gedetecteerd: 0 (Geen kwaadaardige objecten gedetecteerd) Registersleutels gedetecteerd: 1 HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Live Security Platinum (Trojan.Lameshield) -> Succesvol in quarantaine geplaatst en verwijderd. Registerwaarden gedetecteerd: 0 (Geen kwaadaardige objecten gedetecteerd) Registerdata gedetecteerd: 3 HKLM\SOFTWARE\Microsoft\Security Center|FirewallDisableNotify (PUM.Disabled.SecurityCenter) -> Slecht: (1) Goed: (0) -> Succesvol in quarantaine geplaatst en gerepareerd. HKLM\SOFTWARE\Microsoft\Security Center|AntiVirusDisableNotify (PUM.Disabled.SecurityCenter) -> Slecht: (1) Goed: (0) -> Succesvol in quarantaine geplaatst en gerepareerd. HKLM\SOFTWARE\Microsoft\Security Center|UpdatesDisableNotify (PUM.Disabled.SecurityCenter) -> Slecht: (1) Goed: (0) -> Succesvol in quarantaine geplaatst en gerepareerd. Mappen gedetecteerd: 0 (Geen kwaadaardige objecten gedetecteerd) Bestanden gedetecteerd: 5 C:\ProgramData\7531CC962B17D97915E8E28F2F3B6FDA\7531CC962B17D97915E8E28F2F3B6FDA.exe (Trojan.Lameshield) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Windows\System32\sdra64.exe (Exploit.Drop.COD) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Administrator\AppData\Local\Temp\~!#6FC3.tmp (Exploit.Drop.COD) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Windows\Installer\{86ab6ab8-e9fb-67a2-64e0-592f3a336bea}\n (Trojan.Sirefef) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Windows\SysWOW64\sdra64.exe (Spyware.Zbot) -> Succesvol in quarantaine geplaatst en verwijderd. (einde) Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 7:20:55, on 4-8-2012 Platform: Windows Vista SP2 (WinNT 6.00.1906) MSIE: Internet Explorer v9.00 (9.00.8112.16447) Boot mode: Safe mode with network support Running processes: C:\Program Files (x86)\HiJackThis\Trend Micro\HiJackThis\HiJackThis.exe O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll O3 - Toolbar: Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" O4 - HKLM\..\Run: [PWRISOVM.EXE] "C:\Program Files (x86)\PowerISO\PWRISOVM.EXE" -startup O4 - HKLM\..\Run: [KiesTrayAgent] "C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe" O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" O4 - HKLM\..\RunOnce: [Malwarebytes Anti-Malware] "C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" /install /silent O4 - HKLM\..\RunOnce: [Malwarebytes Anti-Malware (cleanup)] rundll32.exe "C:\ProgramData\Malwarebytes\Malwarebytes' Anti-Malware\cleanup.dll",ProcessCleanupScript O4 - HKCU\..\Run: [sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun O4 - HKCU\..\Run: [steam] "C:\Program Files (x86)\Steam\Steam.exe" -silent O4 - HKCU\..\Run: [VeohPlugin] "C:\Program Files (x86)\Veoh Networks\VeohWebPlayer\veohwebplayer.exe" O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files (x86)\Windows Media Player\WMPNSCFG.exe O4 - HKCU\..\Run: [KiesPDLR] C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe O8 - Extra context menu item: Download with &Media Finder - C:\Program Files (x86)\Media Finder\hook.html O10 - Unknown file in Winsock LSP: c:\program files (x86)\flyvpn\flyvpnbind.dll O10 - Unknown file in Winsock LSP: c:\program files (x86)\flyvpn\flyvpnbind.dll O10 - Unknown file in Winsock LSP: c:\program files (x86)\flyvpn\flyvpnbind.dll O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O15 - ESC Trusted Zone: http://*.update.microsoft.com O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing) O23 - Service: Dragon Age: Origins - Content Updater (DAUpdaterSvc) - BioWare - C:\Program Files (x86)\Dragon Age\bin_ship\DAUpdaterSvc.Service.exe O23 - Service: @dfsrres.dll,-101 (DFSR) - Unknown owner - C:\Windows\system32\DFSR.exe (file missing) O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing) O23 - Service: Veoh Giraffic Video Accelerator (Giraffic) - Unknown owner - C:\Program Files (x86)\Giraffic\Veoh_GirafficWatchdog.exe O23 - Service: Canon Inkjet Printer/Scanner/Fax Extended Survey Program (IJPLMSVC) - Unknown owner - C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing) O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing) O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing) O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\SLsvc.exe,-101 (slsvc) - Unknown owner - C:\Windows\system32\SLsvc.exe (file missing) O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing) O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing) O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing) O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing) O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing) O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing) O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing) O23 - Service: @%ProgramFiles%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing) -- End of file - 6697 bytes -
Live Security Platinum Virus opgelopen 'HELP'
RC-Thunder plaatste een topic in Archief Bestrijding malware & virussen
Ik heb sinds vanochtend een probleem opgelopen met 'Live Security' Ik heb het proberen te verwijderen maar het is me niet gelukt. Hoop dat jullie me verder kunnen helpen. Hier onder alvast the Hijackthis logje: Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 6:41:40, on 4-8-2012 Platform: Windows Vista SP2 (WinNT 6.00.1906) MSIE: Internet Explorer v9.00 (9.00.8112.16447) Boot mode: Safe mode with network support Running processes: C:\Program Files (x86)\Internet Explorer\iexplore.exe C:\Program Files (x86)\HiJackThis\Trend Micro\HiJackThis\HiJackThis.exe F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe,C:\Windows\system32\sdra64.exe, O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll O3 - Toolbar: Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" O4 - HKLM\..\Run: [PWRISOVM.EXE] "C:\Program Files (x86)\PowerISO\PWRISOVM.EXE" -startup O4 - HKLM\..\Run: [KiesTrayAgent] "C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe" O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" O4 - HKLM\..\Run: [Malwarebytes' Anti-Malware] "C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray O4 - HKCU\..\Run: [sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun O4 - HKCU\..\Run: [steam] "C:\Program Files (x86)\Steam\Steam.exe" -silent O4 - HKCU\..\Run: [VeohPlugin] "C:\Program Files (x86)\Veoh Networks\VeohWebPlayer\veohwebplayer.exe" O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files (x86)\Windows Media Player\WMPNSCFG.exe O4 - HKCU\..\Run: [KiesPDLR] C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe O4 - HKCU\..\Run: [Ezhukeviuz] C:\Users\Administrator\AppData\Roaming\Yzrei\uvuly.exe O4 - HKCU\..\RunOnce: [7531CC962B17D97915E8E28F2F3B6FDA] C:\ProgramData\7531CC962B17D97915E8E28F2F3B6FDA\7531CC962B17D97915E8E28F2F3B6FDA.exe O8 - Extra context menu item: Download with &Media Finder - C:\Program Files (x86)\Media Finder\hook.html O10 - Unknown file in Winsock LSP: c:\program files (x86)\flyvpn\flyvpnbind.dll O10 - Unknown file in Winsock LSP: c:\program files (x86)\flyvpn\flyvpnbind.dll O10 - Unknown file in Winsock LSP: c:\program files (x86)\flyvpn\flyvpnbind.dll O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O15 - ESC Trusted Zone: http://*.update.microsoft.com O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing) O23 - Service: Dragon Age: Origins - Content Updater (DAUpdaterSvc) - BioWare - C:\Program Files (x86)\Dragon Age\bin_ship\DAUpdaterSvc.Service.exe O23 - Service: @dfsrres.dll,-101 (DFSR) - Unknown owner - C:\Windows\system32\DFSR.exe (file missing) O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing) O23 - Service: Veoh Giraffic Video Accelerator (Giraffic) - Unknown owner - C:\Program Files (x86)\Giraffic\Veoh_GirafficWatchdog.exe O23 - Service: Canon Inkjet Printer/Scanner/Fax Extended Survey Program (IJPLMSVC) - Unknown owner - C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing) O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing) O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing) O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\SLsvc.exe,-101 (slsvc) - Unknown owner - C:\Windows\system32\SLsvc.exe (file missing) O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing) O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing) O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing) O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing) O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing) O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing) O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing) O23 - Service: @%ProgramFiles%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing) -- End of file - 7028 bytes -
Ukash 'Politie' Virus
RC-Thunder reageerde op RC-Thunder's topic in Archief Bestrijding malware & virussen
Kape, ik en mijn Computer zijn jouw dankbaar. Virus vrij en 100% werkend!!! Bedankt mijn computer guru, probleem opgelost! -
Ukash 'Politie' Virus
RC-Thunder reageerde op RC-Thunder's topic in Archief Bestrijding malware & virussen
Volgens mij zijn Ukash en enkele andere problemen opgelost Ik wacht op je volgende instructies. -
Ukash 'Politie' Virus
RC-Thunder reageerde op RC-Thunder's topic in Archief Bestrijding malware & virussen
Hier is het nieuwe ComboFix Log. ComboFix 12-07-05.04 - Administrator 06-07-2012 7:17.1.4 - x64 Microsoft® Windows Vista™ Ultimate 6.0.6002.2.1252.31.1043.18.4094.2553 [GMT 2:00] Gestart vanuit: c:\users\Administrator\Desktop\ComboFix.exe gebruikte Opdracht switches :: c:\users\Administrator\Desktop\CFScript.txt SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} . FILE :: "C:\STF850C.tmp" . . (((((((((((((((((((((((((((((((((( Andere Verwijderingen ))))))))))))))))))))))))))))))))))))))))))))))))) . . c:\program files (x86)\Conduit c:\program files (x86)\Conduit\Community Alerts\Alert.dll c:\users\ADMINI~1\AppData\Local\Temp\26b4a1dd-e07b-48af-be4e-9642b273284b\CliSecureRT.dll c:\users\Administrator\AppData\Local\Conduit c:\users\Administrator\AppData\Local\Conduit\CT2653012\Veoh_Web_PlayerAutoUpdateHelper.exe c:\users\Administrator\AppData\Local\Temp\26b4a1dd-e07b-48af-be4e-9642b273284b\CliSecureRT.dll . ---- Voorgaande Run ------- . C:\install.exe c:\users\ADMINI~1\AppData\Local\Temp\26b4a1dd-e07b-48af-be4e-9642b273284b\CliSecureRT.dll c:\users\Administrator\AppData\Local\Temp\26b4a1dd-e07b-48af-be4e-9642b273284b\CliSecureRT.dll c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (10).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (100).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (101).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (102).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (103).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (104).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (105).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (106).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (107).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (108).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (109).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (11).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (110).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (111).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (112).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (113).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (114).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (115).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (116).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (117).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (118).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (119).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (12).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (120).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (121).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (122).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (123).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (124).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (125).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (126).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (127).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (128).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (129).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (13).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (130).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (131).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (132).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (133).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (134).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (135).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (136).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (137).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (138).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (139).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (14).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (140).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (141).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (142).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (143).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (144).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (145).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (146).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (147).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (148).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (149).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (15).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (150).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (151).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (152).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (153).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (154).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (155).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (156).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (157).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (158).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (159).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (16).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (160).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (161).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (162).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (163).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (164).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (165).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (166).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (167).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (168).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (169).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (17).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (170).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (171).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (172).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (173).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (174).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (175).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (176).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (177).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (178).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (179).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (18).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (180).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (181).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (182).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (183).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (184).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (185).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (186).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (187).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (188).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (189).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (19).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (190).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (191).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (192).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (193).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (194).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (195).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (196).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (197).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (198).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (199).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (2).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (20).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (200).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (201).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (202).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (203).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (204).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (205).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (206).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (207).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (208).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (209).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (21).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (210).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (211).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (212).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (213).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (214).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (215).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (216).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (217).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (218).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (219).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (22).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (220).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (221).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (222).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (223).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (224).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (225).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (226).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (227).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (228).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (229).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (23).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (230).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (231).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (232).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (233).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (234).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (235).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (236).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (237).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (238).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (239).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (24).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (240).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (241).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (242).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (243).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (244).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (245).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (246).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (247).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (248).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (249).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (25).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (250).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (251).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (252).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (253).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (254).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (255).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (256).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (257).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (258).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (259).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (26).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (260).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (261).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (262).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (263).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (264).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (265).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (266).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (267).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (268).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (269).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (27).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (270).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (271).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (272).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (273).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (274).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (275).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (276).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (277).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (278).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (279).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (28).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (280).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (281).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (282).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (283).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (284).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (285).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (286).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (287).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (288).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (289).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (29).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (290).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (291).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (292).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (293).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (294).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (295).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (296).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (297).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (298).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (299).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (3).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (30).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (300).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (301).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (302).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (303).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (304).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (305).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (306).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (307).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (308).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (309).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (31).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (310).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (311).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (312).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (313).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (314).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (315).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (316).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (317).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (318).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (319).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (32).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (320).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (321).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (322).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (323).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (324).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (325).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (326).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (327).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (328).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (329).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (33).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (330).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (331).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (332).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (333).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (334).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (335).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (336).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (337).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (338).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (339).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (34).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (340).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (341).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (342).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (343).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (344).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (345).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (346).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (347).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (348).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (349).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (35).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (350).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (351).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (352).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (353).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (354).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (355).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (356).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (357).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (358).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (359).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (36).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (360).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (361).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (362).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (363).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (364).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (365).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (366).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (367).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (368).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (369).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (37).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (370).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (371).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (372).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (373).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (374).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (375).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (376).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (377).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (378).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (379).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (38).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (380).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (381).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (382).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (383).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (384).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (385).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (386).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (387).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (388).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (389).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (39).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (390).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (391).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (392).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (393).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (394).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (395).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (396).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (397).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (398).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (399).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (4).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (40).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (400).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (401).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (402).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (403).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (404).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (405).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (406).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (407).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (408).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (409).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (41).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (410).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (411).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (412).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (413).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (414).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (415).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (416).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (417).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (418).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (419).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (42).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (420).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (421).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (422).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (423).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (424).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (425).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (426).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (427).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (428).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (429).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (43).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (430).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (431).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (432).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (433).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (434).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (435).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (436).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (437).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (438).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (439).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (44).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (440).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (441).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (442).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (443).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (444).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (445).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (446).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (447).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (448).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (449).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (45).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (450).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (451).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (452).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (453).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (454).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (455).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (456).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (457).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (458).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (459).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (46).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (460).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (461).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (462).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (463).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (464).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (465).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (466).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (467).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (468).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (469).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (47).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (470).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (471).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (472).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (473).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (474).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (475).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (476).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (477).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (478).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (479).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (48).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (480).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (481).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (482).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (483).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (484).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (485).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (486).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (487).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (488).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (489).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (49).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (490).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (491).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (492).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (493).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (494).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (495).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (496).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (497).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (498).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (499).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (5).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (50).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (500).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (501).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (502).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (503).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (504).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (505).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (506).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (507).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (508).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (509).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (51).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (510).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (511).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (512).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (513).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (514).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (515).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (516).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (517).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (518).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (519).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (52).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (520).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (521).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (522).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (523).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (524).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (525).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (526).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (527).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (528).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (529).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (53).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (530).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (531).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (532).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (533).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (534).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (535).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (536).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (537).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (538).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (539).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (54).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (540).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (541).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (542).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (543).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (544).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (545).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (546).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (547).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (548).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (549).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (55).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (550).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (551).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (552).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (553).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (554).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (555).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (556).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (557).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (558).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (559).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (56).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (560).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (561).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (562).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (563).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (564).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (565).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (566).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (567).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (568).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (569).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (57).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (570).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (571).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (572).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (573).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (574).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (575).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (576).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (577).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (578).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (579).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (58).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (580).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (581).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (582).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (583).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (584).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (585).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (586).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (587).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (588).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (589).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (59).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (590).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (591).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (592).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (593).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (594).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (595).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (596).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (597).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (598).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (599).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (6).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (60).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (600).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (61).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (62).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (63).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (64).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (65).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (66).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (67).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (68).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (69).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (7).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (70).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (71).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (72).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (73).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (74).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (75).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (76).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (77).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (78).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (79).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (8).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (80).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (81).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (82).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (83).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (84).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (85).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (86).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (87).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (88).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (89).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (9).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (90).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (91).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (92).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (93).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (94).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (95).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (96).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (97).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (98).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (99).exe c:\users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie.exe D:\AUTORUN.INF . . (((((((((((((((((((( Bestanden Gemaakt van 2012-06-06 to 2012-07-06 )))))))))))))))))))))))))))))) . . 2012-07-06 05:26 . 2012-07-06 05:26 -------- d-----w- c:\users\UpdatusUser\AppData\Local\temp 2012-07-06 05:26 . 2012-07-06 05:26 -------- d-----w- c:\users\Default\AppData\Local\temp 2012-07-04 23:19 . 2012-07-04 23:28 -------- d-----w- c:\program files\CCleaner 2012-07-04 23:12 . 2012-07-04 23:12 -------- d-----w- c:\users\Administrator\AppData\Roaming\Malwarebytes 2012-07-04 23:11 . 2012-07-04 23:11 -------- d-----w- c:\program files (x86)\Malwarebytes' Anti-Malware 2012-07-04 23:11 . 2012-07-04 23:11 -------- d-----w- c:\programdata\Malwarebytes 2012-07-04 23:11 . 2012-04-04 13:56 24904 ----a-w- c:\windows\system32\drivers\mbam.sys 2012-07-04 23:11 . 2012-07-04 23:11 388096 ----a-r- c:\users\Administrator\AppData\Roaming\Microsoft\Installer\{45A66726-69BC-466B-A7A4-12FCBA4883D7}\HiJackThis.exe 2012-07-02 11:57 . 2012-07-02 11:57 -------- d-----w- C:\Temp 2012-07-02 11:56 . 2012-07-02 11:56 -------- d-----w- c:\windows\SysWow64\System32 2012-07-02 11:55 . 2012-07-02 11:55 -------- d-----w- c:\users\Administrator\AppData\Local\Samsung 2012-07-01 23:22 . 2012-07-01 23:47 -------- d-----w- c:\program files (x86)\Dead Space 2 2012-07-01 23:00 . 2012-07-01 23:00 -------- d-----w- c:\users\Administrator\AppData\Local\EA Games 2012-06-24 21:25 . 2012-06-24 21:25 -------- d-----w- c:\program files (x86)\Kamidori 2012-06-24 18:13 . 2012-06-24 21:31 -------- d-----w- c:\users\Administrator\AppData\Local\Eushully 2012-06-24 00:04 . 2012-07-01 21:48 282696 ----a-w- c:\windows\SysWow64\PnkBstrB.exe 2012-06-24 00:04 . 2012-07-01 21:43 282696 ----a-w- c:\windows\SysWow64\PnkBstrB.ex0 2012-06-24 00:04 . 2012-07-01 21:48 282696 ----a-w- c:\windows\SysWow64\PnkBstrB.xtr 2012-06-24 00:04 . 2012-06-24 00:04 76888 ----a-w- c:\windows\SysWow64\PnkBstrA.exe 2012-06-24 00:04 . 2012-06-24 00:04 -------- d-----w- c:\users\Administrator\AppData\Roaming\Ubisoft 2012-06-24 00:04 . 2012-06-24 00:04 -------- d-----w- c:\users\Administrator\AppData\Local\PunkBuster 2012-06-24 00:00 . 2012-06-24 00:00 -------- d-----w- c:\program files (x86)\Ubisoft 2012-06-23 22:17 . 2012-06-23 22:17 -------- d-----w- c:\program files (x86)\Black_Box 2012-06-18 22:14 . 2012-06-19 07:57 -------- d-----w- c:\users\TEMP 2012-06-15 17:33 . 2012-06-15 17:33 -------- d-----w- c:\users\AppData 2012-06-15 17:33 . 2012-07-05 13:29 -------- d-----w- c:\program files (x86)\Veoh_Web_Player 2012-06-15 16:31 . 2012-06-15 16:31 -------- d-----w- c:\programdata\Blizzard Entertainment 2012-06-15 16:00 . 2012-06-15 16:00 -------- d-----w- c:\programdata\Battle.net 2012-06-15 15:46 . 2012-06-15 15:46 -------- d-----w- c:\program files (x86)\System.Data.SQLite 2012-06-15 15:40 . 2012-06-15 15:40 -------- d-----w- c:\program files (x86)\Microsoft SQL Server 2012-06-15 15:39 . 2012-06-15 15:39 -------- d-----w- c:\program files\Microsoft Synchronization Services 2012-06-15 15:39 . 2012-06-15 15:39 -------- d-----w- c:\program files\Microsoft SQL Server Compact Edition 2012-06-15 15:39 . 2012-06-15 15:39 -------- d-----w- c:\program files (x86)\Microsoft Synchronization Services 2012-06-15 15:39 . 2012-06-15 15:39 -------- d-----w- c:\program files (x86)\Microsoft SQL Server Compact Edition 2012-06-15 15:39 . 2012-06-15 15:40 188128 ----a-w- c:\programdata\Microsoft\VCSExpress\10.0\1033\ResourceCache.dll 2012-06-15 15:37 . 2012-06-15 15:40 -------- d-----w- c:\program files (x86)\Microsoft Visual Studio 10.0 2012-06-15 15:37 . 2012-06-15 15:37 -------- d-----w- c:\windows\symbols 2012-06-15 15:37 . 2012-06-15 15:37 -------- d-----w- c:\program files\Microsoft Visual Studio 10.0 2012-06-15 15:37 . 2012-06-15 15:37 -------- d-----w- c:\program files\Microsoft Help Viewer 2012-06-15 15:37 . 2012-06-15 15:37 -------- d-----w- c:\program files (x86)\Microsoft SDKs 2012-06-15 15:36 . 2012-06-15 15:36 -------- d-----w- c:\windows\PCHEALTH 2012-06-14 12:08 . 2012-05-01 14:29 209920 ----a-w- c:\windows\system32\drivers\rdpwd.sys 2012-06-14 12:08 . 2012-05-15 20:15 2767360 ----a-w- c:\windows\system32\win32k.sys 2012-06-14 12:08 . 2012-04-23 16:25 174592 ----a-w- c:\windows\system32\cryptsvc.dll 2012-06-14 12:08 . 2012-04-23 16:25 132096 ----a-w- c:\windows\system32\cryptnet.dll 2012-06-14 12:08 . 2012-04-23 16:25 1267200 ----a-w- c:\windows\system32\crypt32.dll 2012-06-14 12:08 . 2012-04-23 16:00 984064 ----a-w- c:\windows\SysWow64\crypt32.dll 2012-06-14 12:08 . 2012-04-23 16:00 98304 ----a-w- c:\windows\SysWow64\cryptnet.dll 2012-06-14 12:08 . 2012-04-23 16:00 133120 ----a-w- c:\windows\SysWow64\cryptsvc.dll 2012-06-12 07:12 . 2012-06-12 07:12 -------- d-----w- c:\users\Administrator\AppData\Local\Macromedia 2012-06-09 22:34 . 2012-06-09 22:34 -------- d-----w- c:\users\Administrator\AppData\Roaming\Trine2 2012-06-09 21:29 . 2012-06-09 21:29 -------- d-----w- c:\program files (x86)\Frozenbyte 2012-06-08 22:26 . 2012-06-08 22:26 -------- d-----w- c:\users\Administrator\AppData\Roaming\dvdcss 2012-06-06 17:56 . 2012-06-06 17:56 421200 ----a-w- c:\program files (x86)\Mozilla Firefox\msvcp100.dll 2012-06-06 17:56 . 2012-06-06 17:56 770384 ----a-w- c:\program files (x86)\Mozilla Firefox\msvcr100.dll . . . ((((((((((((((((((((((((((((((((((((((( Find3M Rapport )))))))))))))))))))))))))))))))))))))))))))))))))))) . 2012-07-04 19:04 . 2012-04-09 12:07 426184 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe 2012-07-04 19:04 . 2012-01-20 18:05 70344 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl 2012-05-31 04:04 . 2012-07-03 16:02 9013136 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{77538A52-0C87-46DD-89A9-BCA954457CC6}\mpengine.dll 2012-05-29 23:17 . 2012-05-29 23:18 772552 ----a-w- c:\windows\SysWow64\npDeployJava1.dll 2012-05-29 23:17 . 2012-01-20 18:55 687560 ----a-w- c:\windows\SysWow64\deployJava1.dll 2012-05-29 07:38 . 2011-12-23 19:58 330240 ----a-w- c:\windows\MASetupCaller.dll 2012-05-15 16:37 . 2012-05-15 16:37 955848 ----a-w- c:\windows\system32\npDeployJava1.dll 2012-05-15 16:37 . 2012-05-15 16:37 839112 ----a-w- c:\windows\system32\deployJava1.dll 2012-05-13 08:52 . 2012-01-20 19:26 18960 ----a-w- c:\windows\system32\drivers\LNonPnP.sys 2012-05-05 22:45 . 2012-05-05 22:45 3954 ----a-w- C:\STF850C.tmp 2012-05-05 18:56 . 2012-04-16 11:56 8744608 ----a-w- c:\windows\SysWow64\FlashPlayerInstaller.exe 2012-04-21 12:39 . 2012-04-21 12:39 283200 ----a-w- c:\windows\system32\drivers\dtsoftbus01.sys . . ((((((((((((((((((((((((((((((((((((( Reg Opstartpunten ))))))))))))))))))))))))))))))))))))))))))))))))))) . . *Nota* lege verwijzingen & legitieme standaard verwijzingen worden niet getoond REGEDIT4 . [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2009-04-11 1555968] "Steam"="c:\program files (x86)\Steam\Steam.exe" [2012-01-20 1242448] "KiesHelper"="c:\program files (x86)\Samsung\Kies\KiesHelper.exe" [bU] "PlayNC Launcher"="" [bU] "Media Finder"="c:\program files (x86)\Media Finder\MF.exe" [bU] "VeohPlugin"="c:\program files (x86)\Veoh Networks\VeohWebPlayer\veohwebplayer.exe" [2012-06-11 4692840] "DAEMON Tools Lite"="c:\program files (x86)\DAEMON Tools Lite\DTLite.exe" [2012-04-17 3671872] "uTorrent"="c:\program files (x86)\uTorrent\uTorrent.exe" [2012-05-11 880496] "KiesPDLR"="c:\program files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe" [2012-06-08 21432] "WMPNSCFG"="c:\program files (x86)\Windows Media Player\WMPNSCFG.exe" [bU] . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run] "Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-01-03 843712] "PWRISOVM.EXE"="c:\program files (x86)\PowerISO\PWRISOVM.EXE" [2011-06-15 307200] "KiesTrayAgent"="c:\program files (x86)\Samsung\Kies\KiesTrayAgent.exe" [2012-06-08 3521464] "SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2012-01-17 252296] "Malwarebytes' Anti-Malware"="c:\program files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" [2012-04-04 462408] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "EnableUIADesktopToggle"= 0 (0x0) . S2 AdobeARMservice;Adobe Acrobat Update Service;c:\program files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-01-03 63928] . . HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs Themes . . --------- X64 Entries ----------- . . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Windows Defender"="c:\program files (x86)\Windows Defender\MSASCui.exe" [bU] "Launch LCore"="c:\program files\Logitech Gaming Software\LCore.exe" [2011-12-07 5889816] "EvtMgr6"="c:\program files\Logitech\SetPointP\SetPoint.exe" [2011-10-07 1744152] "CanonMyPrinter"="c:\program files\Canon\MyPrinter\BJMyPrt.exe" [2009-03-24 2184520] "CanonSolutionMenu"="c:\program files (x86)\Canon\SolutionMenu\CNSLMAIN.exe" [2009-03-18 767312] . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] "LoadAppInit_DLLs"=0x0 . ------- Bijkomende Scan ------- . uLocal Page = c:\windows\system32\blank.htm mLocal Page = c:\windows\SysWOW64\blank.htm IE: Download with &Media Finder - c:\program files (x86)\Media Finder\hook.html LSP: c:\program files (x86)\FlyVPN\FlyVPNBind.dll TCP: DhcpNameServer = 212.54.35.25 212.54.40.25 CLSID: {603d3801-bd81-11d0-a3a5-00c04fd706ec} - %SystemRoot%\SysWow64\browseui.dll FF - ProfilePath - c:\users\Administrator\AppData\Roaming\Mozilla\Firefox\Profiles\iw0pp2xe.default\ FF - prefs.js: browser.startup.homepage - hxxp://www.google.nl/ FF - user.js: network.cookie.cookieBehavior - 0 FF - user.js: privacy.clearOnShutdown.cookies - false FF - user.js: security.warn_viewing_mixed - false FF - user.js: security.warn_viewing_mixed.show_once - false FF - user.js: security.warn_submit_insecure - false FF - user.js: security.warn_submit_insecure.show_once - false . - - - - ORPHANS VERWIJDERD - - - - . WebBrowser-{CD90BF73-20F6-44EF-993D-BB920303BD2E} - (no file) . . . --------------------- VERGRENDELDE REGISTER SLEUTELS --------------------- . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_2_202_235_ActiveX.exe,-101" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation] "Enabled"=dword:00000001 . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_2_202_235_ActiveX.exe" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Shockwave Flash Object" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_2_202_235.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus] @="0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID] @="ShockwaveFlash.ShockwaveFlash.11" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_2_202_235.ocx, 1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="ShockwaveFlash.ShockwaveFlash" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Macromedia Flash Factory Object" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_2_202_235.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID] @="FlashFactory.FlashFactory.1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_2_202_235.ocx, 1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="FlashFactory.FlashFactory" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}] @Denied: (A 2) (Everyone) @="IFlashBroker4" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\TypeLib\{D27CDB6B-AE6D-11CF-96B8-444553540000}] @Denied: (A 2) (Everyone) . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\TypeLib\{D27CDB6B-AE6D-11CF-96B8-444553540000}\1.0] @="Shockwave Flash" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\TypeLib\{FAB3E735-69C7-453B-A446-B6823C6DF1C9}] @Denied: (A 2) (Everyone) @="" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\TypeLib\{FAB3E735-69C7-453B-A446-B6823C6DF1C9}\1.0] @="FlashBroker" . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes] "SymbolicLinkValue"=hex(6):5c,00,52,00,45,00,47,00,49,00,53,00,54,00,52,00,59, 00,5c,00,4d,00,41,00,43,00,48,00,49,00,4e,00,45,00,5c,00,53,00,4f,00,46,00,\ . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . ------------------------ Andere Aktieve Processen ------------------------ . c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe c:\program files (x86)\Giraffic\Veoh_GirafficWatchdog.exe c:\program files (x86)\Canon\IJPLM\IJPLMSVC.EXE c:\windows\SysWOW64\PnkBstrA.exe c:\program files (x86)\Giraffic\Veoh_Giraffic.exe c:\program files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe c:\program files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe . ************************************************************************** . Voltooingstijd: 2012-07-06 07:37:57 - machine werd herstart ComboFix-quarantined-files.txt 2012-07-06 05:37 . Pre-Run: 303.518.904.320 bytes beschikbaar Post-Run: 303.796.563.968 bytes beschikbaar . - - End Of File - - D1206E3F0C265E6BA1FDFA42BA2FD1A9 -
Ukash 'Politie' Virus
RC-Thunder reageerde op RC-Thunder's topic in Archief Bestrijding malware & virussen
Hier is het ComboFix Logje. Nu even een vraagje na dat ik ComboFix gebruikte is mijn Windows Defender uitgeschakeld, en kan i hem niet meer aanzetten is did normaal? ComboFix 12-07-05.04 - Administrator 05-07-2012 22:01:25.1.4 - x64 Microsoft® Windows Vista™ Ultimate 6.0.6002.2.1252.31.1043.18.4094.2243 [GMT 2:00] Gestart vanuit: C:\Users\Administrator\Desktop\ComboFix.exe SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} (((((((((((((((((((((((((((((((((( Andere Verwijderingen ))))))))))))))))))))))))))))))))))))))))))))))))) C:\install.exe C:\Users\ADMINI~1\AppData\Local\Temp\26b4a1dd-e07b-48af-be4e-9642b273284b\CliSecureRT.dll C:\Users\Administrator\AppData\Local\assembly\tmp C:\Users\Administrator\AppData\Local\Temp\26b4a1dd-e07b-48af-be4e-9642b273284b\CliSecureRT.dll C:\Users\Administrator\AppData\Roaming\.# C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (10).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (100).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (101).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (102).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (103).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (104).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (105).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (106).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (107).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (108).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (109).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (11).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (110).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (111).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (112).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (113).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (114).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (115).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (116).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (117).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (118).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (119).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (12).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (120).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (121).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (122).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (123).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (124).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (125).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (126).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (127).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (128).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (129).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (13).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (130).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (131).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (132).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (133).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (134).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (135).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (136).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (137).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (138).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (139).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (14).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (140).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (141).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (142).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (143).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (144).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (145).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (146).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (147).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (148).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (149).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (15).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (150).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (151).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (152).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (153).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (154).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (155).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (156).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (157).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (158).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (159).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (16).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (160).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (161).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (162).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (163).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (164).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (165).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (166).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (167).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (168).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (169).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (17).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (170).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (171).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (172).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (173).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (174).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (175).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (176).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (177).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (178).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (179).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (18).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (180).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (181).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (182).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (183).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (184).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (185).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (186).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (187).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (188).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (189).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (19).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (190).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (191).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (192).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (193).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (194).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (195).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (196).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (197).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (198).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (199).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (2).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (20).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (200).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (201).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (202).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (203).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (204).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (205).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (206).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (207).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (208).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (209).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (21).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (210).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (211).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (212).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (213).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (214).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (215).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (216).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (217).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (218).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (219).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (22).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (220).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (221).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (222).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (223).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (224).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (225).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (226).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (227).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (228).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (229).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (23).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (230).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (231).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (232).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (233).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (234).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (235).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (236).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (237).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (238).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (239).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (24).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (240).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (241).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (242).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (243).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (244).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (245).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (246).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (247).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (248).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (249).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (25).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (250).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (251).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (252).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (253).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (254).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (255).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (256).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (257).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (258).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (259).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (26).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (260).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (261).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (262).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (263).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (264).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (265).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (266).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (267).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (268).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (269).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (27).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (270).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (271).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (272).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (273).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (274).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (275).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (276).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (277).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (278).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (279).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (28).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (280).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (281).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (282).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (283).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (284).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (285).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (286).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (287).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (288).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (289).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (29).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (290).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (291).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (292).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (293).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (294).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (295).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (296).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (297).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (298).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (299).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (3).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (30).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (300).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (301).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (302).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (303).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (304).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (305).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (306).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (307).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (308).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (309).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (31).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (310).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (311).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (312).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (313).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (314).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (315).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (316).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (317).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (318).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (319).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (32).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (320).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (321).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (322).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (323).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (324).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (325).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (326).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (327).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (328).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (329).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (33).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (330).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (331).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (332).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (333).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (334).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (335).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (336).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (337).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (338).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (339).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (34).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (340).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (341).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (342).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (343).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (344).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (345).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (346).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (347).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (348).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (349).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (35).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (350).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (351).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (352).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (353).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (354).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (355).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (356).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (357).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (358).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (359).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (36).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (360).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (361).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (362).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (363).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (364).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (365).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (366).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (367).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (368).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (369).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (37).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (370).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (371).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (372).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (373).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (374).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (375).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (376).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (377).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (378).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (379).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (38).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (380).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (381).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (382).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (383).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (384).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (385).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (386).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (387).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (388).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (389).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (39).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (390).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (391).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (392).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (393).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (394).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (395).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (396).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (397).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (398).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (399).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (4).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (40).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (400).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (401).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (402).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (403).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (404).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (405).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (406).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (407).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (408).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (409).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (41).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (410).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (411).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (412).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (413).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (414).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (415).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (416).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (417).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (418).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (419).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (42).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (420).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (421).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (422).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (423).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (424).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (425).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (426).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (427).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (428).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (429).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (43).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (430).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (431).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (432).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (433).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (434).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (435).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (436).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (437).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (438).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (439).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (44).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (440).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (441).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (442).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (443).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (444).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (445).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (446).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (447).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (448).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (449).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (45).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (450).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (451).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (452).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (453).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (454).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (455).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (456).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (457).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (458).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (459).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (46).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (460).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (461).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (462).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (463).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (464).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (465).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (466).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (467).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (468).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (469).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (47).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (470).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (471).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (472).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (473).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (474).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (475).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (476).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (477).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (478).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (479).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (48).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (480).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (481).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (482).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (483).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (484).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (485).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (486).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (487).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (488).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (489).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (49).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (490).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (491).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (492).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (493).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (494).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (495).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (496).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (497).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (498).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (499).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (5).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (50).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (500).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (501).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (502).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (503).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (504).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (505).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (506).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (507).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (508).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (509).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (51).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (510).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (511).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (512).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (513).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (514).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (515).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (516).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (517).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (518).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (519).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (52).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (520).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (521).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (522).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (523).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (524).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (525).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (526).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (527).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (528).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (529).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (53).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (530).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (531).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (532).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (533).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (534).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (535).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (536).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (537).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (538).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (539).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (54).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (540).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (541).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (542).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (543).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (544).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (545).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (546).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (547).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (548).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (549).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (55).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (550).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (551).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (552).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (553).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (554).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (555).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (556).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (557).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (558).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (559).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (56).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (560).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (561).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (562).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (563).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (564).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (565).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (566).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (567).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (568).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (569).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (57).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (570).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (571).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (572).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (573).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (574).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (575).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (576).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (577).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (578).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (579).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (58).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (580).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (581).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (582).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (583).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (584).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (585).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (586).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (587).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (588).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (589).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (59).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (590).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (591).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (592).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (593).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (594).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (595).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (596).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (597).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (598).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (599).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (6).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (60).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (600).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (61).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (62).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (63).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (64).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (65).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (66).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (67).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (68).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (69).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (7).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (70).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (71).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (72).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (73).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (74).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (75).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (76).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (77).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (78).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (79).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (8).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (80).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (81).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (82).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (83).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (84).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (85).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (86).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (87).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (88).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (89).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (9).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (90).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (91).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (92).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (93).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (94).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (95).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (96).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (97).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (98).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie (99).exe C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server - kopie.exe D:\AUTORUN.INF (((((((((((((((((((( Bestanden Gemaakt van 2012-06-05 to 2012-07-05 )))))))))))))))))))))))))))))) 2012-07-04 23:19:34 . 2012-07-04 23:28:47 -------- d-----w- C:\Program Files\CCleaner 2012-07-04 23:12:08 . 2012-07-04 23:12:08 -------- d-----w- C:\Users\Administrator\AppData\Roaming\Malwarebytes 2012-07-04 23:11:44 . 2012-07-04 23:11:46 -------- d-----w- C:\Program Files (x86)\Malwarebytes' Anti-Malware 2012-07-04 23:11:44 . 2012-07-04 23:11:44 -------- d-----w- C:\ProgramData\Malwarebytes 2012-07-04 23:11:44 . 2012-04-04 13:56:40 24904 ----a-w- C:\Windows\system32\drivers\mbam.sys 2012-07-04 23:11:14 . 2012-07-04 23:11:14 388096 ----a-r- C:\Users\Administrator\AppData\Roaming\Microsoft\Installer\{45A66726-69BC-466B-A7A4-12FCBA4883D7}\HiJackThis.exe 2012-07-03 16:02:33 . 2012-05-31 04:04:02 9013136 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{77538A52-0C87-46DD-89A9-BCA954457CC6}\mpengine.dll 2012-07-02 11:57:19 . 2012-07-02 11:57:19 -------- d-----w- C:\Temp 2012-07-02 11:56:36 . 2012-07-02 11:56:37 -------- d-----w- C:\Windows\SysWow64\System32 2012-07-02 11:55:20 . 2012-07-02 11:55:20 -------- d-----w- C:\Users\Administrator\AppData\Local\Samsung 2012-07-01 23:22:40 . 2012-07-01 23:47:13 -------- d-----w- C:\Program Files (x86)\Dead Space 2 2012-07-01 23:00:54 . 2012-07-01 23:00:54 -------- d-----w- C:\Users\Administrator\AppData\Local\EA Games 2012-06-24 21:25:09 . 2012-06-24 21:25:09 -------- d-----w- C:\Program Files (x86)\Kamidori 2012-06-24 18:13:53 . 2012-06-24 21:31:57 -------- d-----w- C:\Users\Administrator\AppData\Local\Eushully 2012-06-24 00:04:27 . 2012-07-01 21:48:58 282696 ----a-w- C:\Windows\SysWow64\PnkBstrB.exe 2012-06-24 00:04:27 . 2012-07-01 21:43:29 282696 ----a-w- C:\Windows\SysWow64\PnkBstrB.ex0 2012-06-24 00:04:24 . 2012-07-01 21:48:58 282696 ----a-w- C:\Windows\SysWow64\PnkBstrB.xtr 2012-06-24 00:04:17 . 2012-06-24 00:04:17 76888 ----a-w- C:\Windows\SysWow64\PnkBstrA.exe 2012-06-24 00:04:15 . 2012-06-24 00:04:15 -------- d-----w- C:\Users\Administrator\AppData\Roaming\Ubisoft 2012-06-24 00:04:15 . 2012-06-24 00:04:15 -------- d-----w- C:\Users\Administrator\AppData\Local\PunkBuster 2012-06-24 00:00:20 . 2012-06-24 00:00:20 -------- d-----w- C:\Program Files (x86)\Ubisoft 2012-06-23 22:17:07 . 2012-06-23 22:17:07 -------- d-----w- C:\Program Files (x86)\Black_Box 2012-06-18 22:14:15 . 2012-06-19 07:57:21 -------- d-----w- C:\Users\TEMP 2012-06-15 17:33:11 . 2012-06-15 17:33:12 -------- d-----w- C:\Users\AppData 2012-06-15 17:33:10 . 2012-06-15 17:33:10 -------- d-----w- C:\Program Files (x86)\Conduit 2012-06-15 17:33:03 . 2012-06-15 17:33:03 -------- d-----w- C:\Users\Administrator\AppData\Local\Conduit 2012-06-15 17:33:02 . 2012-07-05 13:29:15 -------- d-----w- C:\Program Files (x86)\Veoh_Web_Player 2012-06-15 16:31:06 . 2012-06-15 16:31:06 -------- d-----w- C:\ProgramData\Blizzard Entertainment 2012-06-15 16:00:47 . 2012-06-15 16:00:53 -------- d-----w- C:\ProgramData\Battle.net 2012-06-15 15:46:01 . 2012-06-15 15:46:01 -------- d-----w- C:\Program Files (x86)\System.Data.SQLite 2012-06-15 15:40:17 . 2012-06-15 15:40:17 -------- d-----w- C:\Program Files (x86)\Microsoft SQL Server 2012-06-15 15:39:49 . 2012-06-15 15:39:49 -------- d-----w- C:\Program Files\Microsoft Synchronization Services 2012-06-15 15:39:49 . 2012-06-15 15:39:49 -------- d-----w- C:\Program Files\Microsoft SQL Server Compact Edition 2012-06-15 15:39:32 . 2012-06-15 15:39:32 -------- d-----w- C:\Program Files (x86)\Microsoft Synchronization Services 2012-06-15 15:39:31 . 2012-06-15 15:39:31 -------- d-----w- C:\Program Files (x86)\Microsoft SQL Server Compact Edition 2012-06-15 15:39:03 . 2012-06-15 15:40:59 188128 ----a-w- C:\ProgramData\Microsoft\VCSExpress\10.0\1033\ResourceCache.dll 2012-06-15 15:37:59 . 2012-06-15 15:40:50 -------- d-----w- C:\Program Files (x86)\Microsoft Visual Studio 10.0 2012-06-15 15:37:01 . 2012-06-15 15:37:01 -------- d-----w- C:\Windows\symbols 2012-06-15 15:37:01 . 2012-06-15 15:37:01 -------- d-----w- C:\Program Files\Microsoft Visual Studio 10.0 2012-06-15 15:37:01 . 2012-06-15 15:37:01 -------- d-----w- C:\Program Files\Microsoft Help Viewer 2012-06-15 15:37:01 . 2012-06-15 15:37:01 -------- d-----w- C:\Program Files (x86)\Microsoft SDKs 2012-06-15 15:36:14 . 2012-06-15 15:36:14 -------- d-----w- C:\Windows\PCHEALTH 2012-06-14 12:08:31 . 2012-05-01 14:29:44 209920 ----a-w- C:\Windows\system32\drivers\rdpwd.sys 2012-06-14 12:08:29 . 2012-05-15 20:15:08 2767360 ----a-w- C:\Windows\system32\win32k.sys 2012-06-14 12:08:22 . 2012-04-23 16:25:30 174592 ----a-w- C:\Windows\system32\cryptsvc.dll 2012-06-14 12:08:22 . 2012-04-23 16:25:30 132096 ----a-w- C:\Windows\system32\cryptnet.dll 2012-06-14 12:08:22 . 2012-04-23 16:25:30 1267200 ----a-w- C:\Windows\system32\crypt32.dll 2012-06-14 12:08:22 . 2012-04-23 16:00:53 984064 ----a-w- C:\Windows\SysWow64\crypt32.dll 2012-06-14 12:08:22 . 2012-04-23 16:00:53 98304 ----a-w- C:\Windows\SysWow64\cryptnet.dll 2012-06-14 12:08:22 . 2012-04-23 16:00:53 133120 ----a-w- C:\Windows\SysWow64\cryptsvc.dll 2012-06-12 07:12:17 . 2012-06-12 07:12:17 -------- d-----w- C:\Users\Administrator\AppData\Local\Macromedia 2012-06-09 22:34:36 . 2012-06-09 22:34:36 -------- d-----w- C:\Users\Administrator\AppData\Roaming\Trine2 2012-06-09 21:29:18 . 2012-06-09 21:29:18 -------- d-----w- C:\Program Files (x86)\Frozenbyte 2012-06-08 22:26:48 . 2012-06-08 22:26:48 -------- d-----w- C:\Users\Administrator\AppData\Roaming\dvdcss 2012-06-06 17:56:04 . 2012-06-06 17:56:05 421200 ----a-w- C:\Program Files (x86)\Mozilla Firefox\msvcp100.dll 2012-06-06 17:56:04 . 2012-06-06 17:56:04 770384 ----a-w- C:\Program Files (x86)\Mozilla Firefox\msvcr100.dll . ((((((((((((((((((((((((((((((((((((((( Find3M Rapport )))))))))))))))))))))))))))))))))))))))))))))))))))) 2012-07-04 19:04:45 . 2012-04-09 12:07:02 426184 ----a-w- C:\Windows\SysWow64\FlashPlayerApp.exe 2012-07-04 19:04:45 . 2012-01-20 18:05:17 70344 ----a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl 2012-05-29 23:17:36 . 2012-05-29 23:18:15 772552 ----a-w- C:\Windows\SysWow64\npDeployJava1.dll 2012-05-29 23:17:36 . 2012-01-20 18:55:30 687560 ----a-w- C:\Windows\SysWow64\deployJava1.dll 2012-05-29 07:38:50 . 2011-12-23 19:58:28 330240 ----a-w- C:\Windows\MASetupCaller.dll 2012-05-15 16:37:20 . 2012-05-15 16:37:46 955848 ----a-w- C:\Windows\system32\npDeployJava1.dll 2012-05-15 16:37:20 . 2012-05-15 16:37:46 839112 ----a-w- C:\Windows\system32\deployJava1.dll 2012-05-13 08:52:33 . 2012-01-20 19:26:37 18960 ----a-w- C:\Windows\system32\drivers\LNonPnP.sys 2012-05-05 22:45:13 . 2012-05-05 22:45:13 3954 ----a-w- C:\STF850C.tmp 2012-05-05 18:56:23 . 2012-04-16 11:56:02 8744608 ----a-w- C:\Windows\SysWow64\FlashPlayerInstaller.exe 2012-04-21 12:39:03 . 2012-04-21 12:39:02 283200 ----a-w- C:\Windows\system32\drivers\dtsoftbus01.sys ((((((((((((((((((((((((((((((((((((( Reg Opstartpunten ))))))))))))))))))))))))))))))))))))))))))))))))))) *Nota* lege verwijzingen & legitieme standaard verwijzingen worden niet getoond REGEDIT4 [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Sidebar"="C:\Program Files\Windows Sidebar\sidebar.exe" [2009-04-11 16:23:20 1555968] "Steam"="C:\Program Files (x86)\Steam\Steam.exe" [2012-01-20 18:31:32 1242448] "VeohPlugin"="C:\Program Files (x86)\Veoh Networks\VeohWebPlayer\veohwebplayer.exe" [2012-06-11 11:24:28 4692840] "DAEMON Tools Lite"="C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" [2012-04-17 15:19:40 3671872] "uTorrent"="C:\Program Files (x86)\uTorrent\uTorrent.exe" [2012-05-11 12:45:21 880496] "KiesPDLR"="C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe" [2012-06-08 11:02:10 21432] [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run] "Adobe ARM"="C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-01-03 07:37:53 843712] "PWRISOVM.EXE"="C:\Program Files (x86)\PowerISO\PWRISOVM.EXE" [2011-06-15 06:19:14 307200] "KiesTrayAgent"="C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe" [2012-06-08 11:02:02 3521464] "SunJavaUpdateSched"="C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" [2012-01-17 09:07:54 252296] "Malwarebytes' Anti-Malware"="C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" [2012-04-04 13:56:38 462408] [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "EnableUIADesktopToggle"= 0 (0x0) S2 AdobeARMservice;Adobe Acrobat Update Service;C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-01-03 13:10:42 63928] --- Andere Services/Drivers In Geheugen --- *NewlyCreated* - WS2IFSL HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs Themes --------- X64 Entries ----------- [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Launch LCore"="C:\Program Files\Logitech Gaming Software\LCore.exe" [2011-12-07 20:11:30 5889816] "EvtMgr6"="C:\Program Files\Logitech\SetPointP\SetPoint.exe" [2011-10-07 09:38:38 1744152] "CanonMyPrinter"="C:\Program Files\Canon\MyPrinter\BJMyPrt.exe" [2009-03-24 02:00:00 2184520] "CanonSolutionMenu"="C:\Program Files (x86)\Canon\SolutionMenu\CNSLMAIN.exe" [2009-03-18 01:40:00 767312] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] "LoadAppInit_DLLs"=0x0 ------- Bijkomende Scan ------- uLocal Page = C:\Windows\system32\blank.htm uStart Page = hxxp://search.conduit.com?SearchSource=10&ctid=CT2653012 mLocal Page = C:\Windows\SysWOW64\blank.htm IE: Download with &Media Finder - C:\Program Files (x86)\Media Finder\hook.html LSP: C:\Program Files (x86)\FlyVPN\FlyVPNBind.dll TCP: DhcpNameServer = 212.54.35.25 212.54.40.25 CLSID: {603d3801-bd81-11d0-a3a5-00c04fd706ec} - %SystemRoot%\SysWow64\browseui.dll FF - ProfilePath - C:\Users\Administrator\AppData\Roaming\Mozilla\Firefox\Profiles\iw0pp2xe.default\ FF - prefs.js: browser.search.defaulturl - hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2653012&SearchSource=3&q={searchTerms} FF - prefs.js: browser.startup.homepage - hxxp://www.google.nl/ FF - user.js: network.cookie.cookieBehavior - 0 FF - user.js: privacy.clearOnShutdown.cookies - false FF - user.js: security.warn_viewing_mixed - false FF - user.js: security.warn_viewing_mixed.show_once - false FF - user.js: security.warn_submit_insecure - false FF - user.js: security.warn_submit_insecure.show_once - false - - - - ORPHANS VERWIJDERD - - - - Wow6432Node-HKCU-Run-KiesHelper - C:\Program Files (x86)\Samsung\Kies\KiesHelper.exe Wow6432Node-HKCU-Run-PlayNC Launcher - (no file) Wow6432Node-HKCU-Run-Media Finder - C:\Program Files (x86)\Media Finder\MF.exe Wow6432Node-HKCU-Run-WMPNSCFG - C:\Program Files (x86)\Windows Media Player\WMPNSCFG.exe WebBrowser-{CD90BF73-20F6-44EF-993D-BB920303BD2E} - (no file) HKLM-Run-Windows Defender - C:\Program Files (x86)\Windows Defender\MSASCui.exe AddRemove-{6D87CAD9-9B94-4421-A439-B25F8DE14575} - C:\Program Files (x86)\InstallShield Installation Information\{6D87CAD9-9B94-4421-A439-B25F8DE14575}\setup.exe AddRemove-majikoi - C:\Program Files\Majikoi\????!\Uninstall.exe -
Ukash 'Politie' Virus
RC-Thunder reageerde op RC-Thunder's topic in Archief Bestrijding malware & virussen
Bedankt, Kape, je ben een held. Ik ben weer baas over mijn pc. Hieronder de logfile van MBAM en daaronder de nieuwe logfile van HijackThis. Logfile MBAM: Malwarebytes Anti-Malware (-evaluatieversie-) 1.61.0.1400 Malwarebytes : Free anti-malware, anti-virus and spyware removal download Databaseversie: v2012.07.05.05 Windows Vista Service Pack 2 x64 NTFS (Veilige modus/netwerkmogelijkheden) Internet Explorer 9.0.8112.16421 Administrator :: COMPUTER [administrator] Realtime bescherming: Uitgeschakeld 5-7-2012 15:31:03 mbam-log-2012-07-05 (15-31-03).txt Scantype: Snelle scan Ingeschakelde scanopties: Geheugen | Opstartitems | Register | Bestanden en mappen | Heuristiek/Extra | Heuristiek/Shuriken | PUP | PUM Uitgeschakelde scanopties: P2P Objecten gescand: 253191 Verstreken tijd: 11 minuut/minuten, 49 seconde(n) Geheugenprocessen gedetecteerd: 0 (Geen kwaadaardige objecten gedetecteerd) Geheugenmodulen gedetecteerd: 0 (Geen kwaadaardige objecten gedetecteerd) Registersleutels gedetecteerd: 2 HKCU\Software\VB and VBA Program Settings\SrvID (Malware.Trace) -> Succesvol in quarantaine geplaatst en verwijderd. HKLM\SOFTWARE\Google\chrome\Extensions\fdloijijlkoblmigdofommgnheckmaki (PUP.Funmoods) -> Succesvol in quarantaine geplaatst en verwijderd. Registerwaarden gedetecteerd: 2 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|Graphic Driver (Trojan.MSIL.Gen) -> Data: C:\Users\Administrator\AppData\Roaming\sKtTdj69HR0z.exe -> Succesvol in quarantaine geplaatst en verwijderd. HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|Audio Device (Trojan.MSIL.Gen) -> Data: C:\Users\Administrator\AppData\Roaming\sKtTdj69HR0z.exe -> Succesvol in quarantaine geplaatst en verwijderd. Registerdata gedetecteerd: 0 (Geen kwaadaardige objecten gedetecteerd) Mappen gedetecteerd: 0 (Geen kwaadaardige objecten gedetecteerd) Bestanden gedetecteerd: 8 C:\Users\Administrator\AppData\Roaming\sKtTdj69HR0z.exe (Trojan.MSIL.Gen) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Administrator\AppData\Roaming\WinLogon.exe (Trojan.MSIL.Gen) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Administrator\AppData\Roaming\Ucesmaa\rafayr.exe (Trojan.Agent) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Administrator\AppData\Local\Temp\roper0dun.exe (Trojan.Agent) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Administrator\Downloads\SoftonicDownloader_voor_utorrent.exe (PUP.BundleOffer.Downloader.S) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Administrator\AppData\Roaming\data.dat (Stolen.Data) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server.exe (Trojan.Agent) -> Succesvol in quarantaine geplaatst en verwijderd. C:\Users\Administrator\AppData\Local\Temp\Secure-Soft Bot\Persistance.exe (Trojan.Agent) -> Succesvol in quarantaine geplaatst en verwijderd. (einde) Logfile HijackThis: Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 16:14:49, on 5-7-2012 Platform: Windows Vista SP2 (WinNT 6.00.1906) MSIE: Internet Explorer v9.00 (9.00.8112.16446) Boot mode: Normal Running processes: C:\Program Files (x86)\uTorrent\uTorrent.exe C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe C:\Program Files (x86)\PowerISO\PWRISOVM.EXE C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe C:\Program Files (x86)\Veoh Networks\VeohWebPlayer\veohwebplayer.exe C:\Windows\SysWOW64\conime.exe C:\Program Files (x86)\Mozilla Firefox\firefox.exe C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbam.exe C:\Program Files (x86)\HiJackThis\Trend Micro\HiJackThis\HiJackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = Bing R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = Zoeken R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = Hotmail, Messenger, het laatste nieuws en entertainment | MSN.NL R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = Hotmail, Messenger, het laatste nieuws en entertainment | MSN.NL R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm F2 - REG:system.ini: UserInit=userinit.exe, O1 - Hosts: ::1 localhost O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll O3 - Toolbar: Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll O3 - Toolbar: (no name) - {cd90bf73-20f6-44ef-993d-bb920303bd2e} - (no file) O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" O4 - HKLM\..\Run: [PWRISOVM.EXE] "C:\Program Files (x86)\PowerISO\PWRISOVM.EXE" -startup O4 - HKLM\..\Run: [KiesTrayAgent] "C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe" O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" O4 - HKLM\..\Run: [Malwarebytes' Anti-Malware] "C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray O4 - HKCU\..\Run: [sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun O4 - HKCU\..\Run: [steam] "C:\Program Files (x86)\Steam\Steam.exe" -silent O4 - HKCU\..\Run: [KiesHelper] C:\Program Files (x86)\Samsung\Kies\KiesHelper.exe /s O4 - HKCU\..\Run: [Media Finder] "C:\Program Files (x86)\Media Finder\MF.exe" /opentotray O4 - HKCU\..\Run: [VeohPlugin] "C:\Program Files (x86)\Veoh Networks\VeohWebPlayer\veohwebplayer.exe" O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun O4 - HKCU\..\Run: [uTorrent] "C:\Program Files (x86)\uTorrent\uTorrent.exe" /MINIMIZED O4 - HKCU\..\Run: [KiesPDLR] C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files (x86)\Windows Media Player\WMPNSCFG.exe O4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE') O8 - Extra context menu item: Download with &Media Finder - C:\Program Files (x86)\Media Finder\hook.html O10 - Unknown file in Winsock LSP: c:\program files (x86)\flyvpn\flyvpnbind.dll O10 - Unknown file in Winsock LSP: c:\program files (x86)\flyvpn\flyvpnbind.dll O10 - Unknown file in Winsock LSP: c:\program files (x86)\flyvpn\flyvpnbind.dll O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing) O23 - Service: Dragon Age: Origins - Content Updater (DAUpdaterSvc) - BioWare - C:\Program Files (x86)\Dragon Age\bin_ship\DAUpdaterSvc.Service.exe O23 - Service: @dfsrres.dll,-101 (DFSR) - Unknown owner - C:\Windows\system32\DFSR.exe (file missing) O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing) O23 - Service: Veoh Giraffic Video Accelerator (Giraffic) - Unknown owner - C:\Program Files (x86)\Giraffic\Veoh_GirafficWatchdog.exe O23 - Service: Canon Inkjet Printer/Scanner/Fax Extended Survey Program (IJPLMSVC) - Unknown owner - C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing) O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing) O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing) O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\SLsvc.exe,-101 (slsvc) - Unknown owner - C:\Windows\system32\SLsvc.exe (file missing) O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing) O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing) O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing) O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing) O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing) O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing) O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing) O23 - Service: @%ProgramFiles%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing) -- End of file - 8833 bytes -
Hallo, ik heb sinds gisteren een probleem met Ukash opgelopen. Zoals bij de andere discussies te lezen is, heb ik als eerste maatregel mijn pc in de veilige modus opgestart, HijackThis v2.0.4 uitgevoerd en de logfile hieronder geplaatst. Ik hoop dat iemand mij verder kan helpen om het probleem op te lossen, waarvoor al vast hartelieke dank! Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 14:32:36, on 5-7-2012 Platform: Windows Vista SP2 (WinNT 6.00.1906) MSIE: Internet Explorer v9.00 (9.00.8112.16446) Boot mode: Safe mode with network support Running processes: C:\Program Files (x86)\Mozilla Firefox\firefox.exe C:\Program Files (x86)\HiJackThis\Trend Micro\HiJackThis\HiJackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = Bing R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = Zoeken R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = Hotmail, Messenger, het laatste nieuws en entertainment | MSN.NL R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Bing R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Bing R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = Hotmail, Messenger, het laatste nieuws en entertainment | MSN.NL R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = R3 - URLSearchHook: Veoh Web Player Toolbar - {cd90bf73-20f6-44ef-993d-bb920303bd2e} - C:\Program Files (x86)\Veoh_Web_Player\prxtbVeoh.dll F2 - REG:system.ini: UserInit=userinit.exe O1 - Hosts: ::1 localhost O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll O2 - BHO: Veoh Web Player - {cd90bf73-20f6-44ef-993d-bb920303bd2e} - C:\Program Files (x86)\Veoh_Web_Player\prxtbVeoh.dll O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll O3 - Toolbar: Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll O3 - Toolbar: Veoh Web Player Toolbar - {cd90bf73-20f6-44ef-993d-bb920303bd2e} - C:\Program Files (x86)\Veoh_Web_Player\prxtbVeoh.dll O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" O4 - HKLM\..\Run: [PWRISOVM.EXE] "C:\Program Files (x86)\PowerISO\PWRISOVM.EXE" -startup O4 - HKLM\..\Run: [KiesTrayAgent] "C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe" O4 - HKLM\..\Run: [Graphic Driver] C:\Users\Administrator\AppData\Roaming\sKtTdj69HR0z.exe O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" O4 - HKLM\..\Run: [Malwarebytes' Anti-Malware] "C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray O4 - HKLM\..\RunOnce: [Malwarebytes Anti-Malware] "C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" /install /silent O4 - HKCU\..\Run: [sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun O4 - HKCU\..\Run: [steam] "C:\Program Files (x86)\Steam\Steam.exe" -silent O4 - HKCU\..\Run: [KiesHelper] C:\Program Files (x86)\Samsung\Kies\KiesHelper.exe /s O4 - HKCU\..\Run: [Audio Device] C:\Users\Administrator\AppData\Roaming\sKtTdj69HR0z.exe O4 - HKCU\..\Run: [updateswindows] C:\Users\Administrator\AppData\Roaming\WindowsUpdates\winupdates.exe O4 - HKCU\..\Run: [server.exe] C:\Users\Administrator\AppData\Roaming\Secure-Soft Bot\Server.exe O4 - HKCU\..\Run: [Persistance.exe] C:\Users\ADMINI~1\AppData\Local\Temp\Secure-Soft Bot\Persistance.exe O4 - HKCU\..\Run: [Media Finder] "C:\Program Files (x86)\Media Finder\MF.exe" /opentotray O4 - HKCU\..\Run: [{37A382FE-B1D9-80A9-2AA7-FECBF9F8819E}] C:\Users\Administrator\AppData\Roaming\Ucesmaa\rafayr.exe O4 - HKCU\..\Run: [VeohPlugin] "C:\Program Files (x86)\Veoh Networks\VeohWebPlayer\veohwebplayer.exe" O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun O4 - HKCU\..\Run: [uTorrent] "C:\Program Files (x86)\uTorrent\uTorrent.exe" /MINIMIZED O4 - HKCU\..\Run: [KiesPDLR] C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files (x86)\Windows Media Player\WMPNSCFG.exe O4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE') O4 - Startup: ctfmon.lnk = C:\Windows\System32\rundll32.exe O8 - Extra context menu item: Download with &Media Finder - C:\Program Files (x86)\Media Finder\hook.html O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - (no file) O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - (no file) O10 - Unknown file in Winsock LSP: c:\program files (x86)\flyvpn\flyvpnbind.dll O10 - Unknown file in Winsock LSP: c:\program files (x86)\flyvpn\flyvpnbind.dll O10 - Unknown file in Winsock LSP: c:\program files (x86)\flyvpn\flyvpnbind.dll O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing) O23 - Service: Dragon Age: Origins - Content Updater (DAUpdaterSvc) - BioWare - C:\Program Files (x86)\Dragon Age\bin_ship\DAUpdaterSvc.Service.exe O23 - Service: @dfsrres.dll,-101 (DFSR) - Unknown owner - C:\Windows\system32\DFSR.exe (file missing) O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing) O23 - Service: Veoh Giraffic Video Accelerator (Giraffic) - Unknown owner - C:\Program Files (x86)\Giraffic\Veoh_GirafficWatchdog.exe O23 - Service: Canon Inkjet Printer/Scanner/Fax Extended Survey Program (IJPLMSVC) - Unknown owner - C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing) O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing) O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing) O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\SLsvc.exe,-101 (slsvc) - Unknown owner - C:\Windows\system32\SLsvc.exe (file missing) O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing) O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing) O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing) O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing) O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing) O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing) O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing) O23 - Service: @%ProgramFiles%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing) -- End of file - 9725 bytes Ik hoop dat jullie me kunnen helpen dit oplossen.

OVER ONS
PC Helpforum helpt GRATIS computergebruikers sinds juli 2006. Ons team geeft via het forum professioneel antwoord op uw vragen en probeert uw pc problemen zo snel mogelijk op te lossen. Word lid vandaag, plaats je vraag online en het PC Helpforum-team helpt u graag verder!