Hey Thanks alot man, Your a life saver. At the very least I have IE back. There are one or two entries in my latest Hijack This log that concern me however. I have the marked with an * below. Tell me what you think of them. I also forgot to get a log from panda but it said my box was clean. Thanks again for your help. You are too kind
New Hijack This log
Logfile of HijackThis v1.99.1
Scan saved at 6:11:05 PM, on 7/3/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Symantec AntiVirus\DefWatch.exe
C:\Program Files\ewido\security suite\ewidoctrl.exe
C:\Program Files\Ahead\InCD\InCDsrv.exe
C:\Program Files\Symantec AntiVirus\SavRoam.exe
C:\Program Files\Symantec AntiVirus\Rtvscan.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\WINDOWS\system32\wwSecure.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\WINDOWS\system32\igfxtray.exe
C:\WINDOWS\system32\hkcmd.exe
C:\Program Files\Ahead\InCD\InCD.exe
C:\Program Files\Adobe\Acrobat 7.0\Distillr\Acrotray.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\PROGRA~1\SYMANT~1\VPTray.exe
C:\Program Files\Microsoft AntiSpyware\gcasServ.exe
C:\Program Files\Java\jre1.5.0_03\bin\jusched.exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\Program Files\Microsoft AntiSpyware\gcasDtServ.exe
C:\Program Files\Yahoo!\Messenger\ymsgr_tray.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Documents and Settings\Administrator\Desktop\Hijack\HijackThis.exe
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: UberButton Class - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O2 - BHO: YahooTaggedBM Class - {65D886A2-7CA7-479B-BB95-14D1EFB7946A} - C:\Program Files\Yahoo!\Common\YIeTagBm.dll
*O2 - BHO: Class - {8C7413DD-6325-E43D-BD47-63DEDEF0FC7C} - C:\WINDOWS\system32\iehj.dll (file missing)
O2 - BHO: AcroIEToolbarHelper Class - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
*O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
*O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [InCD] C:\Program Files\Ahead\InCD\InCD.exe
O4 - HKLM\..\Run: [Acrobat Assistant 7.0] "C:\Program Files\Adobe\Acrobat 7.0\Distillr\Acrotray.exe"
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [vptray] C:\PROGRA~1\SYMANT~1\VPTray.exe
O4 - HKLM\..\Run: [gcasServ] "C:\Program Files\Microsoft AntiSpyware\gcasServ.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_03\bin\jusched.exe
O4 - HKLM\..\Run: [Zone Labs Client] C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
O4 - HKCU\..\Run: [Window Washer] C:\Program Files\Webroot\Washer\wwDisp.exe
O4 - HKCU\..\Run: [Yahoo! Pager] C:\Program Files\Yahoo!\Messenger\ypager.exe -quiet
O4 - Global Startup: Adobe Acrobat Speed Launcher.lnk = ?
O8 - Extra context menu item: &Yahoo! Search - file:///C:\Program Files\Yahoo!\Common/ycsrch.htm
O8 - Extra context menu item: Convert link target to Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convert link target to existing PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convert selected links to Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
O8 - Extra context menu item: Convert selected links to existing PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
O8 - Extra context menu item: Convert selection to Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convert selection to existing PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convert to Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convert to existing PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Yahoo! &Dictionary - file:///C:\Program Files\Yahoo!\Common/ycdict.htm
O8 - Extra context menu item: Yahoo! &Maps - file:///C:\Program Files\Yahoo!\Common/ycmap.htm
O8 - Extra context menu item: Yahoo! &SMS - file:///C:\Program Files\Yahoo!\Common/ycsms.htm
O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) -
http://www.pandasoft...free/asinst.cabO20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: Symantec AntiVirus Definition Watcher (DefWatch) - Symantec Corporation - C:\Program Files\Symantec AntiVirus\DefWatch.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido\security suite\ewidoctrl.exe
O23 - Service: InCD File System Service (InCDsrv) - AHEAD Software - C:\Program Files\Ahead\InCD\InCDsrv.exe
O23 - Service: MATLAB Server (matlabserver) - Unknown owner - C:\MATLAB6p1\webserver\bin\win32\matlabserver.exe
O23 - Service: SAVRoam (SavRoam) - symantec - C:\Program Files\Symantec AntiVirus\SavRoam.exe
O23 - Service: Sygate Personal Firewall (SmcService) - Sygate Technologies, Inc. - C:\Program Files\Sygate\SPF\smc.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec AntiVirus - Symantec Corporation - C:\Program Files\Symantec AntiVirus\Rtvscan.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe
O23 - Service: Washer Security Access (wwSecSvc) - Webroot Software, Inc. - C:\WINDOWS\system32\wwSecure.exe
Here is My Ewido Log
---------------------------------------------------------
ewido security suite - Scan report
---------------------------------------------------------
+ Created on: 5:51:18 PM, 7/3/2005
+ Report-Checksum: FC994C53
+ Scan result:
HKLM\SOFTWARE\Classes\CLSID\{1D232F9D-941D-5CD9-732F-8F6EC1977CF2} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{2A97DB56-E2B4-967C-AF9F-07FDF74289C2} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{38EA95B6-06DF-844E-6763-813A152D6F74} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{43372D0D-6EAD-977A-99EE-8DFB043153ED} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{5F1C7FC6-359E-6D58-42B3-3E410DB4CADB} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{6A389597-708B-6F9D-B6EC-8D1A3EC9DFAF} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{6D793FE9-8675-897B-589B-5BCAB9D3CFEF} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{763FC5CF-92D8-A8BE-597E-1C53C8D18D56} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{7658C68E-7ED4-8476-AC96-729091012307} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{7868EC16-8C67-1DBD-6D5A-EBB325881BD9} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{7E2B347A-52AA-597F-9371-80822A8D1263} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{83F01EC6-1966-280C-39C0-52CF1BB626F6} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{85F1C7FC-7359-D6D5-C42B-F3E410DB4CAD} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{8A71C47B-9917-B588-625B-79254D40A325} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{90DEE38B-0DB3-A3CA-6F69-126542AD0FA1} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{96EEA21B-4AA3-4627-EA0A-176241DBD1A4} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{A01394EE-8B14-B1D4-AE65-22E7424A71D0} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{B33C5B98-F4B9-B550-C81A-4EE9720874BF} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{B6233EB3-872F-7898-F4A8-3F6A3BAA6D57} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{BD00AB82-F105-58F8-2B31-B600383177E6} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{BD757058-7180-2CE5-E5B6-8C70AEF236CC} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{BE5DCDBC-54D3-95EA-B258-2D53BD817431} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{C2E5E32B-0FD0-16A5-10FE-EDA2D4478683} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{D46A242B-6194-E7D0-7207-4CC5FFB11ADE} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{E4FD490D-A46F-95DB-EFF2-CF0215363020} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{F1B10CDC-1975-EC0C-C522-2571525E92CF} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D46A242B-6194-E7D0-7207-4CC5FFB11ADE} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E4FD490D-A46F-95DB-EFF2-CF0215363020} -> Spyware.CoolWebSearch : Cleaned with backup
HKU\S-1-5-21-299502267-688789844-725345543-500\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{7C559105-9ECF-42B8-B3F7-832E75EDD959} -> Spyware.ISTBar : Cleaned with backup
HKU\S-1-5-21-299502267-688789844-725345543-500\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{83F01EC6-1966-280C-39C0-52CF1BB626F6} -> Spyware.CoolWebSearch : Cleaned with backup
HKU\S-1-5-21-299502267-688789844-725345543-500\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D46A242B-6194-E7D0-7207-4CC5FFB11ADE} -> Spyware.CoolWebSearch : Cleaned with backup
HKU\S-1-5-21-299502267-688789844-725345543-500\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{E4FD490D-A46F-95DB-EFF2-CF0215363020} -> Spyware.CoolWebSearch : Cleaned with backup
C:\Programming\cracksearcher.exe -> Not-A-Virus.HackTool.CrackSearch.a : Cleaned with backup
C:\WINDOWS\addax32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addbb32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addcj.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addda32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addez32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addlp.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addmi32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addub32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addzq32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apids.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apigp32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apivz32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\apiyx.exe -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\apizn32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\appbp32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\appco32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\appfd32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\appfv32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\appho.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\appjp32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\appqw32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\appre32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\appry32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\appty32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\appup32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\appux.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\appwj32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\appyt32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\appyv32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\atlbl32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\atlds.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\atlla32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\atlqh32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\atlzm.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\Blue Lace 16.bmp:csghqi -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\Blue Lace 16.bmp:muiko -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\Blue Lace 16.bmp:nnmnh -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\Blue Lace 16.bmp:oiaat -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\Blue Lace 16.bmp:peiim -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\Blue Lace 16.bmp:vrwlw -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\Blue Lace 16.bmp:wiekd -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\bootstat.dat:hcbuo -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\bootstat.dat:mzxyf -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\bootstat.dat:wbvuy -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\bootstat.dat:yrclg -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\bootstat.dat:yyxpv -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\chipset.log:dwdsw -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\chipset.log:hihxu -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\chipset.log:plmnv -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\chipset.log:viqhmr -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\clock.avi:agywo -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\clock.avi:qhqhe -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\clock.avi:rmgwa -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\cmsetacl.log:kvckz -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\cmsetacl.log:ssugi -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\cmsetacl.log:ydesz -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\cmsetacl.log:ytzqa -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\Coffee Bean.bmp:uuhxp -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\comsetup.log:cdpmh -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\comsetup.log:vruid -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\comsetup.log:xvmvk -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\control(2).ini:crzkr -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\control(2).ini:gthvs -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\control(2).ini:pqssu -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\control(2).ini:rjdlp -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\control(2).ini:wcddd -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\control(3).ini:hvyeu -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\control(3).ini:jtned -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\control(3).ini:pqssu -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\control(3).ini:vylxb -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\control(4).ini:cgkox -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\control(4).ini:jfqov -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\control(4).ini:pqssu -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\control(4).ini:vabyc -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\control(4).ini:woxow -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\control.ini:bjtra -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\control.ini:duyye -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\control.ini:pqssu -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\crfw.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\crjj.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\crkz32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\crla32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\croj.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\crrl.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\crrp32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\crwf32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\cryg32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\d3cv.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\d3dq32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\d3ez.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\d3gn32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\d3io32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\d3kb32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\d3nw32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\d3qj32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\d3tj.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\d3tn32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\desktop.ini:fyhry -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\desktop.ini:rfbpn -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\DHCPUPG.LOG:xsfbz -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\DHCPUPG.LOG:zgpwz -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\dmtlq.txt:hdovz -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\DtcInstall.log:liboc -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\exlink.ini:bxkmp -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\exlink.ini:vpfvv -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\explorer.scf:gueqy -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\explorer.scf:hpahs -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\explorer.scf:tkovd -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\explorer.scf:vlbmc -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\FaxSetup.log:bdfvr -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\FeatherTexture.bmp:cgeik -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\FeatherTexture.bmp:cispw -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\FeatherTexture.bmp:ngsvj -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\FeatherTexture.bmp:qstjv -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\Gone Fishing.bmp:eanqb -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\Gone Fishing.bmp:hepkkh -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\Gone Fishing.bmp:kvlti -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\Gone Fishing.bmp:qlads -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\Greenstone.bmp:vutpx -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\iecv32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\iedk.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\ieha32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\iehe.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\iehz32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\ieix32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\iejr.dll -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\iejr.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\ieke.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\iekq.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\ieoa.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\ieqq32.exe -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\ieub.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\ievb32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\iis6.log:gmgtkr -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\iis6.log:pczyc -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\ipcj.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\ipii32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\ipmf.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\ipnv.dll -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\ipoc32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\iptc32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\jautoexp.dat:emros -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\jautoexp.dat:gmexy -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\javade.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\javads.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\javafw.dll -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\javafw.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\javagg32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\javahh.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\javajg.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\javaqq.dll -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\javaqq.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\javarj32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\javate32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\javawk32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\javaxl32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\javayt.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\javazy32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\KB873339.log:bigqo -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\KB873339.log:ddcmf -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\KB873339.log:yzvff -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\KB873339.log:znryfc -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\KB885250.log:adkry -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\KB885250.log:gnwim -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\KB885250.log:hbrbx -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\KB885250.log:rarso -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\KB885250.log:uwwme -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\KB885250.log:xbitz -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\KB886185.log:lqfuv -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\KB886185.log:qmhmy -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\KB886185.log:xtpks -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\KB887742.log:ebkrp -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\KB887742.log:jlokv -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\KB888113.log:icllv -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\KB888113.log:mkjbk -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\KB888302.log:qofib -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\KB890046.log:sgqpr -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\KB890859.log:mbasd -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\KB891781.log:bnkwv -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\KB891781.log:wrinr -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\KB893066.log:qvzts -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\KB893066.log:umzcs -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\KB893086.log:pcnkl -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\KB894391.log:wrazw -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\KB894391.log:wudlz -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\KB894391.log:zbczt -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\KB896422.log:oqcdj -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\KB896727.log:hqyzi -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\KB898461.log:aiwxi -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\KB898461.log:jhpfx -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\KB898461.log:lfmlx -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\KB899587.log:csxer -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\KB899587.log:gsdrs -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\KB899587.log:kvnsp -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\KB899587.log:mbajo -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\KB899587.log:mbjvg -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\KB899588.log:hrjur -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\KB899588.log:nkycj -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\KB899588.log:trgty -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\KB899588.log:zrnwf -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\KB899591.log:hogjg -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\kobkt.dat:fxbkp -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\kobkt.dat:ssbke -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\kobkt.dat:wzydt -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\MedCtrOC.log:lsdqx -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\MedCtrOC.log:qsiha -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\MedCtrOC.log:ujaqu -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\MedCtrOC.log:veqtw -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\MedCtrOC.log:vkqdr -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\MedCtrOC.log:xcmgc -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\mfcbt.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\mfcdk32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\mfcey32.dll -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\mfcey32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\mfcfl32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\mfcgh.dll -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\mfcms32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\mfcno.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\mfcnx.exe -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\mfcpd32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\mfcph.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\mfcpq.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\mfcqh.exe -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\mfcrd32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\mfcvr.dll -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\mfcvr.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\mfcvy32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\mfcwo.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\mfcxb32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\mfczz32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\mozver.dat:nuapn -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\mozver.dat:stmng -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\mozver.dat:xcdul -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\msaa.dll -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\msaj32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\msdb.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\msdfmap.ini:yjbjg -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\msgc.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\msgh32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\msgsocm.log:awshz -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\msgsocm.log:mgwfi -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\mslm.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\msmqinst.log:bifzf -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\msmqinst.log:hhjux -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\msmx32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\mssl.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\msua.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\msvs32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\msvy32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\msxd32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\msza32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\nero.INI:iymdm -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\netbd32.exe -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\neteh.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\netfxocm.log:dmkch -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\netfxocm.log:ojugi -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\netfxocm.log:ssclv -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\netfxocm.log:uacga -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\netfxocm.log:ygtmt -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\netgq32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\nethr.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\netka32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\netku.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\netme.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\neton32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\netpo32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\netqt.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\netsh32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\netzg.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\nqevq.log:gmtno -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\nqevq.log:tfrkw -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\nqevq.log:wugju -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\nsreg.dat:bwcqy -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\nsreg.dat:jleuc -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\nsreg.dat:pwyzm -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\ntbc.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\ntbtlog.txt:jbuem -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\ntbtlog.txt:lyvrn -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\ntbtlog.txt:vccyr -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\ntbtlog.txt:whzye -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\ntdtcsetup.log:dcbpy -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\ntdtcsetup.log:murwy -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\ntga.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\ntjj.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\ntmu32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\ntpj32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\ntrt32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\ntsp.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\nttg.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\nttp32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\ntwi32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\NuNinst.cfg:bdbsl -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\NuNinst.cfg:jkmav -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\NuNinst.cfg:mjjsc -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\nxqji.dat:fbnyw -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\nxqji.dat:gkcjd -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\n_ldigeg.log -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\ocgen.log:exfbu -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\ocmsn.log:gvfrn -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\ODBC.INI:ctqud -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\ODBC.INI:tcfwj -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\ODBC.INI:wvuhu -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\ODBCINST.INI:tczbi -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\ODBCINST.INI:tqpyp -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\ODBCINST.INI:zkfqe -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\OEWABLog.txt:anzay -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\OEWABLog.txt:axbsj -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\OEWABLog.txt:gfkap -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\OEWABLog.txt:mmxts -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\OEWABLog.txt:oweam -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\OEWABLog.txt:usmsw -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\pibsz.txt:cjnvj -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\pibsz.txt:ujhtz -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\Prairie Wind.bmp:ektql -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\Prairie Wind.bmp:jofel -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\Prairie Wind.bmp:zpvoh -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\pss\system.ini.backup:vzayg -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\pss\win.ini.backup:ljivu -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\REGLOCS(2).OLD:fxxqb -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\REGLOCS(2).OLD:hffxv -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\REGLOCS(2).OLD:kambr -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\REGLOCS(3).OLD:lmsdtb -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\REGLOCS(3).OLD:yxvsv -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\REGLOCS.OLD:lmsdtb -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\REGLOCS.OLD:nvtnz -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\regopt.log:igybf -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\regopt.log:lucuy -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\Rhododendron.bmp:jllxl -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\Rhododendron.bmp:nkqff -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\Rhododendron.bmp:slrvf -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\River Sumida.bmp:fhjpj -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\rrlhz.log:kqyyd -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\rrlhz.log:uqqoi -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\Santa Fe Stucco.bmp:oyvov -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\Santa Fe Stucco.bmp:vbyln -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\sdkcg.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\sdkec32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\sdkfd.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\sdkfi.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\sdkhn.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\sdkiu.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\sdkjf32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\sdkjn.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\sdkjz.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\sdkkh.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\sdklo.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\sdkmk.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\sdkot32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\sdkph.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\sdkqo32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\sdkrz.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\sdksc32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\sdksl32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\sdksm32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\sessmgr.setup.log:cqiwwx -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\sessmgr.setup.log:etssh -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\sessmgr.setup.log:hhpemh -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\sessmgr.setup.log:vfvop -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\sessmgr.setup.log:vvfnv -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\setupact.log:cmugc -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\setupact.log:dirzg -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\setupact.log:iyxdw -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\setupact.log:qjmif -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\setupact.log:tqhpo -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\setupapi.log:nsnee -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\setupapi.log:ufohh -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\setuperr.log:gzoir -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\setuplog.txt:ikfni -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\siebc.log:zayzs -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\Sti_Trace.log:crukj -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\Sti_Trace.log:ersil -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\Sti_Trace.log:hznmfs -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\Sti_Trace.log:pvvkd -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\Sti_Trace.log:taavt -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\svcpack.log:exmqy -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\syscs32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\syscv.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\sysdl32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\sysdy32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\sysja32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\sysjt.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\syskj.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\syslw.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\sysoo32.dll -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\sysoo32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\sysqu.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32:hjaa.dll -> TrojanDownloader.Small.azk : Cleaned with backup
C:\WINDOWS\system32\addcv.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\addeg.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\addgc32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\addhf32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\addip.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\addkg.dll -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\system32\addkg.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\addlu32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\addml.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\addqr.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\apiat32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\apidu32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\apiem32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\apifr.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\apihv32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\apihy.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\apilj.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\apity.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\apiuf.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\apiyl.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\apizv.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\apizy.exe -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\system32\appco32.dll -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\system32\appcp32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\appdd32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\appjm.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\appjz32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\appki32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\applw32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\appny32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\appqo32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\atldl32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\atldw.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\atlgy32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\atlhj.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\atljb.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\atljc.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\atlpr.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\crci.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\crdt32.exe -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\system32\cret32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\crij.exe -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\system32\crkb32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\crma.exe -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\system32\crsm32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\cryd.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\crzc32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\crzo.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\d3bb.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\d3fq32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\d3ke.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\d3pf32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\d3pk32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\d3rr.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\iedl.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\ieed32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\iefm.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\ieft32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\iejn32.exe -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\system32\iemi32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\iemn32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\iemx.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\ieva.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\ievd.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\iexa32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\ieyk.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\ieyx32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\ipch.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\ipdh32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\ipls.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\ipog32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\iprd.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\iprn.dll -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\system32\iprn.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\ipsa.dll -> TrojanDownloader.Agent.bc : Cleaned with backup
C:\WINDOWS\system32\ipwo32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\ipxe32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\javabc.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\javagz.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\javajl32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\javale32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\javamc32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\javamh32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\javask.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\javasn32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\javaul32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\javauo32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\javaxs32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\javayy32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\javazu32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\mfckl32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\mfcpx.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\mfcsl.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\mfcva32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\mfcyr32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\msar.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\mscw.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\msed32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\mset.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\msin.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\msjj32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\msmp.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\mspb32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\msvj32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\mswi32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\mswn.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\msxe.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\netaq.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\neten32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\nethd.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\netin.exe -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\system32\netio.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\netjj.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\netrr.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\nettc32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\ntgn.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\ntgx.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\ntgy32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\ntku.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\ntnl32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\ntnm32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\ntpq32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\ntqa32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\ntsq.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\ntxm.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\sdkid32.exe -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\system32\sdkjl32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\sdkko32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\sdkkv.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\sdklr.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\sdknq32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\sdkns.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\sdkpj32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\sdkqj32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\sdkuj.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\sdkwx32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\sysam.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\syshz32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\sysps.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\sysvb.exe -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\WINDOWS\system32\sysym32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\sysyq32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\winaq32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\winav.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\wincn32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\winco.exe -> Trojan.Agent.bi : Cleaned with backup
C: