Nate
about:blank
trek blue error nuker
Logfile of HijackThis v1.99.1
Scan saved at 11:28:50 AM, on 8/17/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINNT\System32\smss.exe
C:\WINNT\system32\winlogon.exe
C:\WINNT\system32\services.exe
C:\WINNT\system32\lsass.exe
C:\WINNT\system32\svchost.exe
C:\WINNT\System32\svchost.exe
C:\WINNT\system32\spoolsv.exe
C:\PROGRA~1\SYMANT~1\SYMANT~1\DefWatch.exe
C:\Program Files\ewido\security suite\ewidoctrl.exe
C:\Program Files\ewido\security suite\ewidoguard.exe
C:\PROGRA~1\SYMANT~1\SYMANT~1\Rtvscan.exe
C:\WINNT\System32\wltrysvc.exe
C:\WINNT\system32\wuauclt.exe
C:\WINNT\system32\wscntfy.exe
C:\WINNT\System32\bcmwltry.exe
C:\WINNT\Explorer.EXE
C:\WINNT\System32\hkcmd.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\ltmoh\Ltmoh.exe
C:\Program Files\Roxio\Easy CD Creator 5\DirectCD\DirectCD.exe
C:\Program Files\Common Files\Microsoft Shared\Works Shared\WkUFind.exe
C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Common Files\Channel 13 First Alert Weather Wizard\TrueWeather.exe
C:\DOCUME~1\STEVER~1\LOCALS~1\Temp\Temporary Directory 1 for hijackthis.zip\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = res://C:\WINNT\idwed.dll/sp.html#37049
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = res://C:\WINNT\idwed.dll/sp.html#37049
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = res://C:\WINNT\idwed.dll/sp.html#37049
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = res://C:\WINNT\idwed.dll/sp.html#37049
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = res://C:\WINNT\idwed.dll/sp.html#37049
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = res://C:\WINNT\idwed.dll/sp.html#37049
R3 - Default URLSearchHook is missing
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Class - {CAB91F49-1795-46EF-8F3E-BA3991BA7D51} - C:\WINNT\d3df32.dll
O2 - BHO: Class - {DD628CAC-5521-53A0-B511-FD483C169D76} - C:\WINNT\system32\ipkv32.dll
O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\01.02.3000.1001\en-us\msntb.dll
O4 - HKLM\..\Run: [IgfxTray] C:\WINNT\System32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINNT\System32\hkcmd.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [LtMoh] C:\Program Files\ltmoh\Ltmoh.exe
O4 - HKLM\..\Run: [AdaptecDirectCD] "C:\Program Files\Roxio\Easy CD Creator 5\DirectCD\DirectCD.exe"
O4 - HKLM\..\Run: [Microsoft Works Update Detection] C:\Program Files\Common Files\Microsoft Shared\Works Shared\WkUFind.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [Media Gateway] C:\Program Files\Media Gateway\MediaGateway.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Channel 13 First Alert Weather Wizard.lnk = C:\Program Files\Common Files\Channel 13 First Alert Weather Wizard\TrueWeather.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O8 - Extra context menu item: &Add animation to IncrediMail Style Box - C:\PROGRA~1\INCRED~1\bin\resources\WebMenuImg.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_04\bin\npjpi150_04.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_04\bin\npjpi150_04.dll
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINNT\System32\Shdocvw.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O16 - DPF: {04047354-D353-11D2-B3EB-0060B03C5581} - https://dealerconnec...ugin/hpBrSn.cab
O16 - DPF: {05D44720-58E3-49E6-BDF6-D00330E511D3} (StagingUI Object) - http://zone.msn.com/...UI.cab34120.cab
O16 - DPF: {15AD6789-CDB4-47E1-A9DA-992EE8E6BAD6} - http://static.windup.../bridge-c18.cab
O16 - DPF: {2B323CD9-50E3-11D3-9466-00A0C9700498} (Yahoo! Audio Conferencing) - http://us.chat1.yimg...v45/yacscom.cab
O16 - DPF: {3BB54395-5982-4788-8AF4-B5388FFDD0D8} (ZoneBuddy Class) - http://zone.msn.com/...dy.cab32846.cab
O16 - DPF: {5736C456-EA94-4AAC-BB08-917ABDD035B3} (ZonePAChat Object) - http://zone.msn.com/...at.cab32846.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://v5.windowsupd...b?1110831134640
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai...all/xscan53.cab
O16 - DPF: {7D1E9C49-BD6A-11D3-87A8-009027A35D73} (Yahoo! Audio UI1) - http://chat.yahoo.com/cab/yacsui.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://zone.msn.com/...ro.cab34246.cab
O16 - DPF: {C5E28B9D-0A68-4B50-94E9-E8F6B4697514} (NsvPlayX Control) - http://www.nullsoft....ayx_vp3_mp3.cab
O16 - DPF: {CAC181B0-4D70-402D-B571-C596A47D0CE0} (CBankshotZoneCtrl Class) - http://zone.msn.com/...ol.cab36107.cab
O16 - DPF: {DA2AA6CF-5C7A-4B71-BC3B-C771BB369937} (StadiumProxy Class) - http://zone.msn.com/...xy.cab35645.cab
O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} (PopCapLoader Object) - http://zone.msn.com/...aploader_v6.cab
O16 - DPF: {E504EE6E-47C6-11D5-B8AB-00D0B78F3D48} (Yahoo! Webcam Viewer Wrapper) - http://chat.yahoo.com/cab/yvwrctl.cab
O20 - Winlogon Notify: igfxcui - C:\WINNT\SYSTEM32\igfxsrvc.dll
O20 - Winlogon Notify: NavLogon - C:\WINNT\System32\NavLogon.dll
O23 - Service: DefWatch - Symantec Corporation - C:\PROGRA~1\SYMANT~1\SYMANT~1\DefWatch.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido\security suite\ewidoctrl.exe
O23 - Service: ewido security suite guard - ewido networks - C:\Program Files\ewido\security suite\ewidoguard.exe
O23 - Service: iPod Service (iPodService) - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Intel NCS NetService (NetSvc) - Intel® Corporation - C:\Program Files\Intel\NCS\Sync\NetSvc.exe
O23 - Service: Symantec AntiVirus Client (Norton AntiVirus Server) - Symantec Corporation - C:\PROGRA~1\SYMANT~1\SYMANT~1\Rtvscan.exe
O23 - Service: WLTRYSVC - Unknown owner - C:\WINNT\System32\wltrysvc.exe
---------------------------------------------------------
ewido security suite - Scan report
---------------------------------------------------------
+ Created on: 11:13:42 AM, 8/17/2005
+ Report-Checksum: 5F8ADA2B
+ Scan result:
HKLM\SOFTWARE\Classes\CLSID\{7E562404-C395-FEAE-9587-21D1288BA8BF} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{CC44E07F-082C-7D47-DCF3-83E7E2E38EAB} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{D33A173B-427D-4405-D32C-0441257CC0CE} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{F61C6A80-6232-DD79-A5DA-0C16D4A99041} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SE -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SW -> Spyware.CoolWebSearch : Cleaned with backup
C:\Documents and Settings\Steve Richey\Application Data\Earthlink\6.0\[email protected]\Cookies\steve richey@-1shz2prbmdj6wvny-1sez2pra2dj6wfkoapcjckow-1dj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Steve Richey\Application Data\Earthlink\6.0\[email protected]\Cookies\steve [email protected][1].txt -> Spyware.Cookie.2o7 : Cleaned with backup
C:\Documents and Settings\Steve Richey\Application Data\Earthlink\6.0\[email protected]\Cookies\steve richey@abetterinternet[1].txt -> Spyware.Cookie.Abetterinternet : Cleaned with backup
C:\Documents and Settings\Steve Richey\Application Data\Earthlink\6.0\[email protected]\Cookies\steve [email protected][2].txt -> Spyware.Cookie.Liveperson : Cleaned with backup
C:\Documents and Settings\Steve Richey\Application Data\Earthlink\6.0\[email protected]\Cookies\steve richey@specificpop[1].txt -> Spyware.Cookie.Specificpop : Cleaned with backup
C:\Documents and Settings\Steve Richey\Application Data\Earthlink\6.0\[email protected]\Cookies\steve [email protected][1].txt -> Spyware.Cookie.X10 : Cleaned with backup
C:\Documents and Settings\Steve Richey\Application Data\Earthlink\6.0\[email protected]\Cookies\steve richey@y-1shz2prbmdj6wvny-1sez2pra2dj6wfkiwoc5cfowsdj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Steve Richey\Application Data\Earthlink\6.0\[email protected]\Cookies\steve richey@y-1shz2prbmdj6wvny-1sez2pra2dj6wfkocjd5whqqsdj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Steve Richey\Application Data\Earthlink\6.0\[email protected]\Cookies\steve richey@y-1shz2prbmdj6wvny-1sez2pra2dj6wfkyuodjwkowmdj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Steve Richey\Application Data\Earthlink\6.0\[email protected]\Cookies\steve richey@y-1shz2prbmdj6wvny-1sez2pra2dj6wjk4eocjkcpwydj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Steve Richey\Application Data\Earthlink\6.0\[email protected]\Cookies\steve richey@y-1shz2prbmdj6wvny-1sez2pra2dj6wjk4eodzecpaudj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Steve Richey\Application Data\Earthlink\6.0\[email protected]\Cookies\steve richey@y-1shz2prbmdj6wvny-1sez2pra2dj6wjk4ogajaepasdj6x9ny-1seq-2-2.stats.esomniture[1].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Steve Richey\Application Data\Earthlink\6.0\[email protected]\Cookies\steve richey@y-1shz2prbmdj6wvny-1sez2pra2dj6wjk4ogcjokogsdj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Steve Richey\Application Data\Earthlink\6.0\[email protected]\Cookies\steve richey@y-1shz2prbmdj6wvny-1sez2pra2dj6wjk4ondzehqqwdj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Steve Richey\Application Data\Earthlink\6.0\[email protected]\Cookies\steve richey@y-1shz2prbmdj6wvny-1sez2pra2dj6wjkocjd5keowidj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Steve Richey\Application Data\Earthlink\6.0\[email protected]\Cookies\steve richey@y-1shz2prbmdj6wvny-1sez2pra2dj6wjkocnd5clpqidj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Steve Richey\Application Data\Earthlink\6.0\[email protected]\Cookies\steve richey@y-1shz2prbmdj6wvny-1sez2pra2dj6wjkooocpaepqudj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Steve Richey\Application Data\Earthlink\6.0\[email protected]\Cookies\steve richey@y-1shz2prbmdj6wvny-1sez2pra2dj6wjkygmazogoqydj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Steve Richey\Application Data\Earthlink\6.0\[email protected]\Cookies\steve richey@y-1shz2prbmdj6wvny-1sez2pra2dj6wjkyooazodpgwdj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Steve Richey\Application Data\Earthlink\6.0\[email protected]\Cookies\steve richey@y-1shz2prbmdj6wvny-1sez2pra2dj6wjkywgczkdog2dj6x9ny-1seq-2-2.stats.esomniture[1].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Steve Richey\Application Data\Earthlink\6.0\[email protected]\Cookies\steve richey@y-1shz2prbmdj6wvny-1sez2pra2dj6wjl4qmdzwcpwsdj6x9ny-1seq-2-2.stats.esomniture[1].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Steve Richey\Application Data\Earthlink\6.0\[email protected]\Cookies\steve richey@y-1shz2prbmdj6wvny-1sez2pra2dj6wjl4wjd5ehpg2dj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Steve Richey\Application Data\Earthlink\6.0\[email protected]\Cookies\steve richey@y-1shz2prbmdj6wvny-1sez2pra2dj6wjliaodzgcogwdj6x9ny-1seq-2-2.stats.esomniture[1].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Steve Richey\Application Data\Earthlink\6.0\[email protected]\Cookies\steve richey@y-1shz2prbmdj6wvny-1sez2pra2dj6wjloejdpkkogydj6x9ny-1seq-2-2.stats.esomniture[1].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Steve Richey\Application Data\Earthlink\6.0\[email protected]\Cookies\steve richey@y-1shz2prbmdj6wvny-1sez2pra2dj6wjlosjcziaogidj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Steve Richey\Application Data\Earthlink\6.0\[email protected]\Cookies\steve richey@y-1shz2prbmdj6wvny-1sez2pra2dj6wjlosjczwaqqmdj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Steve Richey\Application Data\Earthlink\6.0\[email protected]\Cookies\steve richey@y-1shz2prbmdj6wvny-1sez2pra2dj6wjlouodzkaoa6dj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Steve Richey\Application Data\Earthlink\6.0\[email protected]\Cookies\steve richey@y-1shz2prbmdj6wvny-1sez2pra2dj6wjlyalajcepwwdj6x9ny-1seq-2-2.stats.esomniture[1].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Steve Richey\Application Data\Earthlink\6.0\[email protected]\Cookies\steve richey@y-1shz2prbmdj6wvny-1sez2pra2dj6wjlyeiajakpqydj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Steve Richey\Application Data\Earthlink\6.0\[email protected]\Cookies\steve richey@y-1shz2prbmdj6wvny-1sez2pra2dj6wjlyghdzagoqidj6x9ny-1seq-2-2.stats.esomniture[1].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Steve Richey\Application Data\Earthlink\6.0\[email protected]\Cookies\steve richey@y-1shz2prbmdj6wvny-1sez2pra2dj6wjlyqmcpgdpgqdj6x9ny-1seq-2-2.stats.esomniture[1].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Steve Richey\Application Data\Earthlink\6.0\[email protected]\Cookies\steve richey@y-1shz2prbmdj6wvny-1sez2pra2dj6wjnyciczekpgqdj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Steve Richey\Application Data\Earthlink\6.0\[email protected]\Cookies\steve richey@y-1shz2prbmdj6wvny-1sez2pra2dj6wjnyelcjihpamdj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Steve Richey\Application Data\Earthlink\6.0\[email protected]\Cookies\steve richey@y-1shz2prbmdj6wvny-1sez2pra2dj6wjnyogazgloqmdj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Steve Richey\Application Data\Earthlink\6.0\[email protected]\Cookies\steve richey@y-1shz2prbmdj6wvny-1sez2pra2dj6wjnyojdzokqqmdj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Steve Richey\Application Data\Earthlink\6.0\[email protected]\Cookies\steve richey@y-1shz2prbmdj6wvny-1sez2pra2dj6wjnysicpagowwdj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Steve Richey\Application Data\Earthlink\6.0\[email protected]\Cookies\steve richey@y-1shz2prbmdj6wvny-1sez2pra2dj6wjnyskdjkgpq2dj6x9ny-1seq-2-2.stats.esomniture[1].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Steve Richey\Application Data\Earthlink\6.0\[email protected]\Cookies\steve richey@y-1shz2prbmdj6wvny-1sez2pra2dj6wjnywjcpefoqydj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Steve Richey\Cookies\steve richey@statcounter[2].txt -> Spyware.Cookie.Statcounter : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP431\A0040687.exe -> Trojan.Small.ev : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP432\A0040691.pif:dponyy -> Spyware.SearchPage : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP432\A0040691.pif:etiin -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP432\A0040691.pif:jseat -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP432\A0040691.pif:mlqkm -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP432\A0040691.pif:qujrc -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP432\A0040691.pif:rrmvz -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP432\A0040691.pif:xtzmh -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP432\A0040691.pif:ymuet -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP433\A0040721.pif:dponyy -> Spyware.SearchPage : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP433\A0040721.pif:etiin -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP433\A0040721.pif:fliwlj -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP433\A0040721.pif:hbcwzr -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP433\A0040721.pif:jseat -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP433\A0040721.pif:kftfq -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP433\A0040721.pif:mlqkm -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP433\A0040721.pif:oonpac -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP433\A0040721.pif:qujrc -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP433\A0040721.pif:rrmvz -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP433\A0040721.pif:trzsx -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP433\A0040721.pif:xtzmh -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP433\A0040721.pif:ymuet -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP433\A0040721.pif:zcubb -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP433\A0040727.pif:dponyy -> Spyware.SearchPage : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP433\A0040727.pif:etiin -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP433\A0040727.pif:fliwlj -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP433\A0040727.pif:hbcwzr -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP433\A0040727.pif:jseat -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP433\A0040727.pif:kftfq -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP433\A0040727.pif:lcsci -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP433\A0040727.pif:mlqkm -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP433\A0040727.pif:oonpac -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP433\A0040727.pif:qujrc -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP433\A0040727.pif:rrmvz -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP433\A0040727.pif:trzsx -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP433\A0040727.pif:xtzmh -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP433\A0040727.pif:ymuet -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP433\A0040727.pif:zcubb -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP434\A0040732.pif:aeard -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP434\A0040732.pif:dponyy -> Spyware.SearchPage : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP434\A0040732.pif:etiin -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP434\A0040732.pif:fliwlj -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP434\A0040732.pif:gospx -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP434\A0040732.pif:hbcwzr -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP434\A0040732.pif:hyllv -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP434\A0040732.pif:jseat -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP434\A0040732.pif:jxyxaq -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP434\A0040732.pif:kftfq -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP434\A0040732.pif:lcsci -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP434\A0040732.pif:mlqkm -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP434\A0040732.pif:oamuw -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP434\A0040732.pif:oohcv -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP434\A0040732.pif:oonpac -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP434\A0040732.pif:qujrc -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP434\A0040732.pif:rrmvz -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP434\A0040732.pif:trzsx -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP434\A0040732.pif:xtzmh -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP434\A0040732.pif:ymuet -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP434\A0040732.pif:zcubb -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP434\A0040732.pif:ztybq -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040755.pif:aeard -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040755.pif:dponyy -> Spyware.SearchPage : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040755.pif:etiin -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040755.pif:fliwlj -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040755.pif:gospx -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040755.pif:hbcwzr -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040755.pif:hngnbw -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040755.pif:hyllv -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040755.pif:jbtsf -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040755.pif:jseat -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040755.pif:jxyxaq -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040755.pif:kftfq -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040755.pif:kzugn -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040755.pif:lcsci -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040755.pif:mlqkm -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040755.pif:mngbf -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040755.pif:ndvum -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040755.pif:oamuw -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040755.pif:oohcv -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040755.pif:ooisz -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040755.pif:oonpac -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040755.pif:oskyns -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040755.pif:qjizq -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040755.pif:qujrc -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040755.pif:rrmvz -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040755.pif:sfxpt -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040755.pif:trzsx -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040755.pif:uzsxr -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040755.pif:xtzmh -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040755.pif:ymuet -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040755.pif:zcubb -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040755.pif:zoqsdg -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040755.pif:ztvije -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040755.pif:ztybq -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040764.old:ulkux -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040765.prx:gbwus -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040773.pif:aeard -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040773.pif:aqprm -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040773.pif:bdowt -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040773.pif:bdpkv -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040773.pif:byektq -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040773.pif:cjyvl -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040773.pif:coloc -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040773.pif:dbcjj -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040773.pif:dkekq -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040773.pif:dponyy -> Spyware.SearchPage : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040773.pif:dpungq -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040773.pif:dqkqu -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040773.pif:dzhli -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040773.pif:elsau -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040773.pif:epqmv -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040773.pif:eqwhq -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040773.pif:etiin -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040773.pif:ewpfu -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040773.pif:exedz -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040773.pif:fliwlj -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040773.pif:gefrz -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040773.pif:gospx -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040773.pif:gqvqj -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040773.pif:hbcwzr -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040773.pif:hngnbw -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040773.pif:hyllv -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040773.pif:iylwq -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040773.pif:iyuls -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040773.pif:jbtsf -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040773.pif:jseat -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040773.pif:jxyxaq -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040773.pif:kbozu -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040773.pif:kftfq -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040773.pif:klyav -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040773.pif:kzugn -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040773.pif:lcsci -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040773.pif:ldkjn -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040773.pif:mlqkm -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040773.pif:mngbf -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040773.pif:ndvum -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040773.pif:nehbk -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040773.pif:nljdx -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040773.pif:oamuw -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040773.pif:oohcv -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040773.pif:ooisz -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040773.pif:oonpac -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040773.pif:oskyns -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040773.pif:oypul -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040773.pif:pgvqbk -> Spyware.SearchPage : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040773.pif:qjizq -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040773.pif:qujrc -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040773.pif:qzfre -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040773.pif:rlbwta -> Spyware.SearchPage : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040773.pif:rrksb -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040773.pif:rrmvz -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040776.exe -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040782.pif:aeard -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040782.pif:aqprm -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040782.pif:bdowt -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040782.pif:bdpkv -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040782.pif:byektq -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040782.pif:cjyvl -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040782.pif:coloc -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040782.pif:dbcjj -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040782.pif:dkekq -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040782.pif:dponyy -> Spyware.SearchPage : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040782.pif:dpungq -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040782.pif:dqkqu -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040782.pif:dzhli -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040782.pif:elsau -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040782.pif:epqmv -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040782.pif:eqwhq -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040782.pif:etiin -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040782.pif:ewpfu -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040782.pif:exedz -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040782.pif:fliwlj -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040782.pif:gefrz -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040782.pif:gospx -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040782.pif:gqvqj -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040782.pif:hbcwzr -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040782.pif:hngnbw -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040782.pif:hyllv -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040782.pif:iylwq -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040782.pif:iyuls -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040782.pif:jbtsf -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040782.pif:jseat -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040782.pif:jxyxaq -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040782.pif:kbozu -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040782.pif:kftfq -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040782.pif:klyav -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040782.pif:kzugn -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040782.pif:lcsci -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040782.pif:ldkjn -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040782.pif:mlqkm -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040782.pif:mngbf -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040782.pif:ndvum -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040782.pif:nehbk -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040782.pif:nljdx -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040782.pif:oamuw -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040782.pif:oohcv -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040782.pif:ooisz -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040782.pif:oonpac -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040782.pif:oskyns -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040782.pif:oypul -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040782.pif:pgvqbk -> Spyware.SearchPage : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040782.pif:qjizq -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040782.pif:qujrc -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040782.pif:qzfre -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040782.pif:rlbwta -> Spyware.SearchPage : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040782.pif:rrksb -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP436\A0040782.pif:rrmvz -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP437\A0040790.pif:aeard -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP437\A0040790.pif:aqprm -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP437\A0040790.pif:bdowt -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP437\A0040790.pif:bdpkv -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP437\A0040790.pif:bidik -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP437\A0040790.pif:byektq -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP437\A0040790.pif:cjyvl -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP437\A0040790.pif:coloc -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP437\A0040790.pif:dbcjj -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP437\A0040790.pif:dkekq -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP437\A0040790.pif:dponyy -> Spyware.SearchPage : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP437\A0040790.pif:dpungq -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP437\A0040790.pif:dqkqu -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP437\A0040790.pif:dzhli -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP437\A0040790.pif:elsau -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP437\A0040790.pif:epqmv -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP437\A0040790.pif:eqwhq -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP437\A0040790.pif:etiin -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP437\A0040790.pif:ewpfu -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP437\A0040790.pif:exedz -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP437\A0040790.pif:fliwlj -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP437\A0040790.pif:fxmvw -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP437\A0040790.pif:gefrz -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP437\A0040790.pif:gospx -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP437\A0040790.pif:gqvqj -> TrojanDownloader.Agent.bq : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP437\A0040790.pif:hbcwzr -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{657CAD57-1780-47DF-A227-8D19F3156604}\RP437\A0040790.pif:hngnbw -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_re