smitRem © log file
version 2.8
by noahdfear
Microsoft Windows XP [Version 5.1.2600]
The current date is: Mon 12/19/2005
The current time is: 19:31:12.12
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
checking for ShudderLTD key
ShudderLTD key not present!
checking for PSGuard.com key
PSGuard.com key not present!
spyaxe uninstaller NOT present
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Existing Pre-run Files
~~~ Program Files ~~~
~~~ Shortcuts ~~~
~~~ Favorites ~~~
~~~ system32 folder ~~~
zlbw.dll
intell32.exe
oleext.dll
logfiles
~~~ Icons in System32 ~~~
~~~ Windows directory ~~~
warnhp.html
~~~ Drive root ~~~
~~~ Miscellaneous Files/folders ~~~
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Command Line Process Viewer/Killer/Suspender for Windows NT/2000/XP V2.03
Copyright© 2002-2003
[email protected]
Killing PID 1464 'explorer.exe'
Killing PID 1464 'explorer.exe'
Starting registry repairs
Deleting files
Remaining Post-run Files
~~~ Program Files ~~~
~~~ Shortcuts ~~~
~~~ Favorites ~~~
~~~ system32 folder ~~~
~~~ Icons in System32 ~~~
~~~ Windows directory ~~~
~~~ Drive root ~~~
~~~ Miscellaneous Files/folders ~~~
~~~ Wininet.dll ~~~
CLEAN!
-------------------------------------------------------------------------------------------------
ACTIVESCAN RESULTS
Incident/Status/Location
Adware:Adware/IdeskBar Not disinfected C:\WINDOWS\SYSTEM32\IDEMLOG.EXE
Adware:adware/ideskbar Not disinfected C:\WINDOWS\SYSTEM32\DRIVERS\zpmodemnt.sys
Adware:adware/searchaid Not disinfected C:\Documents and Settings\T\Favorites\Search the web.url
Adware:adware/navipromo Not disinfected C:\WINDOWS\sdkcm32.exe
Adware:adware/sbsoft Not disinfected Windows Registry
Spyware:Spyware/Virtumonde Not disinfected C:\Documents and Settings\Administrator\Desktop\backups\backup-20051210-193353-901.dll
Spyware:Spyware/Virtumonde Not disinfected C:\Documents and Settings\Administrator\Desktop\backups\backup-20051210-193622-466.dll
Adware:Adware/SearchAid Not disinfected C:\WINDOWS\addxz.exe
Adware:Adware/SearchAid Not disinfected C:\WINDOWS\apigj.exe
Adware:Adware/SearchAid Not disinfected C:\WINDOWS\appgc.exe
Adware:Adware/SearchAid Not disinfected C:\WINDOWS\d3pa.exe
Adware:Adware/SearchAid Not disinfected C:\WINDOWS\d3ug32.exe
Adware:Adware/SearchAid Not disinfected C:\WINDOWS\ipsq.exe
Adware:Adware/SearchAid Not disinfected C:\WINDOWS\mfcrw32.exe
Adware:Adware/SearchAid Not disinfected C:\WINDOWS\msfe.exe
Adware:Adware/SearchAid Not disinfected C:\WINDOWS\ntor.exe
Adware:Adware/SearchAid Not disinfected C:\WINDOWS\sdkub32.exe
Adware:Adware/SearchAid Not disinfected C:\WINDOWS\sdkzp32.exe
Adware:Adware/SearchAid Not disinfected C:\WINDOWS\sysqz32.exe
Adware:Adware/SearchAid Not disinfected C:\WINDOWS\syssd32.exe
Adware:Adware/SearchAid Not disinfected C:\WINDOWS\system32\atlls.exe
Adware:Adware/SearchAid Not disinfected C:\WINDOWS\system32\atlzf32.exe
Adware:Adware/SearchAid Not disinfected C:\WINDOWS\system32\croo32.exe
Adware:Adware/SearchAid Not disinfected C:\WINDOWS\system32\d3dw32.exe
Adware:Adware/SearchAid Not disinfected C:\WINDOWS\system32\ipgv32.exe
Adware:Adware/SearchAid Not disinfected C:\WINDOWS\system32\ipvt32.exe
Adware:Adware/SearchAid Not disinfected C:\WINDOWS\system32\netyr.exe
Adware:Adware/SearchAid Not disinfected C:\WINDOWS\system32\ntik.exe
Adware:Adware/SearchAid Not disinfected C:\WINDOWS\system32\ntqq32.exe
Adware:Adware/SearchAid Not disinfected C:\WINDOWS\system32\sysde.exe
Adware:Adware/SearchAid Not disinfected C:\WINDOWS\system32\syspz32.exe
-----------------------------------------------------------------------------------------------------------
-----------------------------------------------------------------------------------------------------------
---------------------------------------------------------
ewido anti-malware - Scan report
---------------------------------------------------------
+ Created on: 9:32:10 PM, 12/19/2005
+ Report-Checksum: 87030502
+ Scan result:
HKLM\SOFTWARE\Classes\CLSID\{033935E4-A208-AB9E-DD2A-6A9B7E426D04} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{0ADEF183-C204-6BFB-2DA8-5C12061DE911} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{286ECE71-3F17-089B-F6BD-0E16D255AE8A} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{2B5A2313-AE67-454E-9A8B-F74070E57F1B} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{30C5202D-2CDD-8C6D-6CD3-86CBAC73988B} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{36846EB6-C1B1-A145-B3CE-F5740FA22FF8} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{4FCD2C21-6232-FD0F-36AA-4EFFC9284B2A} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{7A8EC00B-7964-C396-E2F8-621F6C9029FA} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{BF680029-9EFC-9F01-F3C3-ECC0A8DF53A1} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{C151BF9B-FE85-EC38-A53B-AE4D2044C94E} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{C2FE095E-5BA7-FBC8-5387-2878C932A44F} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{E24280F1-5872-DD80-6349-14510DFCB851} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{F22C21C3-2FA8-F0A7-72B3-7927ADEFC66E} -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{F3267BA7-14CC-4368-6BFC-E59341D01507} -> Spyware.CoolWebSearch : Cleaned with backup
[188] VM_00D60000 -> Downloader.Agent.uj : Error during cleaning
[212] VM_00BF0000 -> Downloader.Agent.uj : Error during cleaning
[556] VM_009D0000 -> Downloader.Agent.uj : Error during cleaning
C:\Documents and Settings\Administrator\Desktop\backups\backup-20051210-193353-744.dll -> Downloader.WinShow.bg : Cleaned with backup
C:\Documents and Settings\Administrator\Desktop\backups\backup-20051218-205014-502.dll -> Downloader.WinShow.bg : Cleaned with backup
C:\Documents and Settings\Administrator\Desktop\backups\backup-20051218-205014-716.dll -> Downloader.WinShow.bg : Cleaned with backup
C:\Documents and Settings\Administrator\Desktop\backups\backup-20051218-205014-842.dll -> Downloader.WinShow.bg : Cleaned with backup
C:\Documents and Settings\Administrator\Desktop\backups\backup-20051218-205015-385.dll -> Downloader.WinShow.bg : Cleaned with backup
C:\Documents and Settings\Administrator\Desktop\backups\backup-20051218-205015-685.dll -> Downloader.WinShow.bg : Cleaned with backup
C:\Documents and Settings\Administrator\Desktop\backups\backup-20051218-205015-790.dll -> Downloader.WinShow.bg : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP19\A0003841.dll -> Spyware.MyWay : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP20\A0007011.dll -> Spyware.MyWay : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP20\A0009973.dll -> Spyware.MyWay : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP20\A0010369.dll -> Spyware.MyWay : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP38\A0021421.dll -> Adware.PSGuard : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP38\A0021426.exe -> Adware.PSGuard : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP38\A0021435.dll -> Adware.SpySheriff : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP38\A0021437.dll -> Spyware.SpywareNo : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP38\A0021438.dll -> Adware.SpySheriff : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP38\A0021444.exe -> Downloader.Agent.uj : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP38\A0022444.exe -> Downloader.Agent.uj : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP38\A0022486.exe -> Downloader.Agent.uj : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP38\A0023483.exe -> Downloader.Agent.uj : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP38\A0024483.exe -> Downloader.Agent.uj : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP38\A0025483.exe -> Downloader.Agent.uj : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP38\A0026483.exe -> Downloader.Agent.uj : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP38\A0027483.exe -> Downloader.Agent.uj : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP38\A0028483.exe -> Downloader.Agent.uj : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP38\A0028485.dll -> Spyware.MyWay : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP38\A0028486.exe -> Downloader.Agent.uj : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP38\A0028497.exe -> Downloader.Agent.uj : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP38\A0028502.exe -> Downloader.Agent.uj : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP38\A0029502.exe -> Downloader.Agent.uj : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP38\A0029506.exe -> Downloader.Agent.uj : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP38\A0029525.exe -> Downloader.Agent.uj : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP38\A0029534.dll -> Downloader.WinShow.bg : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP38\A0029542.exe -> Downloader.Agent.uj : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP38\A0029565.exe -> Downloader.Agent.uj : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP38\A0029584.exe -> Downloader.Agent.uj : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP38\A0029597.exe -> Downloader.Agent.uj : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP38\A0029609.exe -> Downloader.Agent.uj : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP38\A0029615.exe -> Hijacker.Spywad.l : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP38\A0029621.exe -> Adware.SpySheriff : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP38\A0029629.exe -> Downloader.Agent.uj : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP39\A0029649.exe -> Downloader.Agent.uj : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP39\A0029690.exe -> Downloader.Agent.uj : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP39\A0029703.exe -> Downloader.Agent.uj : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP40\A0029742.exe -> Downloader.Agent.uj : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP42\A0029790.exe -> Downloader.Agent.uj : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP42\A0029818.exe -> Downloader.Agent.uj : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP42\A0029850.exe -> Downloader.Agent.uj : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP42\A0029875.exe -> Downloader.Agent.uj : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP42\A0029893.exe -> Downloader.Agent.uj : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP45\A0030012.exe -> Downloader.Agent.td : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP45\A0030019.exe -> Downloader.Agent.uj : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP45\A0030037.exe -> Downloader.Agent.uj : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP45\A0030075.exe -> Downloader.Agent.uj : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP46\A0030110.exe -> Downloader.Agent.uj : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP46\A0030122.exe -> Downloader.Agent.uj : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP46\A0030137.exe -> Downloader.Agent.uj : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP46\A0030141.exe -> Downloader.Agent.uj : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP47\A0030155.exe -> Downloader.Agent.uj : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP47\A0030158.dll -> Downloader.WinShow.bg : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP47\A0030159.dll -> Downloader.WinShow.bg : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP47\A0030160.dll -> Downloader.WinShow.bg : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP47\A0030161.dll -> Downloader.WinShow.bg : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP47\A0030162.dll -> Downloader.WinShow.bg : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP47\A0030163.dll -> Downloader.WinShow.bg : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP47\A0030164.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP47\A0030174.exe -> Downloader.Agent.uj : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP47\A0030193.exe -> Downloader.Agent.td : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP47\A0030197.exe -> Downloader.Agent.uj : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP47\A0030205.ini:eurqq -> Downloader.WinShow.bg : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP47\A0030205.ini:funyu -> Downloader.WinShow.bg : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP47\A0030205.ini:pwdbm -> Downloader.Agent.td : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP47\A0030205.ini:tquoh -> Downloader.Agent.td : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP47\A0030233.exe -> Downloader.Agent.uj : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP47\A0030237.ini:funyu -> Downloader.WinShow.bg : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP47\A0030237.ini:pwdbm -> Downloader.Agent.td : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP47\A0030237.ini:tquoh -> Downloader.Agent.td : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP47\A0030248.exe -> Downloader.Agent.uj : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP47\A0030252.ini:eurqq -> Downloader.WinShow.bg : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP47\A0030252.ini:funyu -> Downloader.WinShow.bg : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP47\A0030252.ini:pwdbm -> Downloader.Agent.td : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP47\A0030252.ini:tquoh -> Downloader.Agent.td : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP47\A0030259.exe -> Downloader.Agent.uj : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP47\A0030263.ini:eurqq -> Downloader.WinShow.bg : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP47\A0030263.ini:funyu -> Downloader.WinShow.bg : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP47\A0030263.ini:pwdbm -> Downloader.Agent.td : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP47\A0030263.ini:tquoh -> Downloader.Agent.td : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP47\A0030264.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP47\A0030265.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP47\A0030266.exe -> Downloader.Agent.td : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP47\A0030268.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP47\A0030269.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP47\A0030270.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP47\A0030271.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP47\A0030273.exe -> Backdoor.Padodor.ax : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP47\A0030274.dll -> Downloader.Small.cat : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP47\A0030275.dll -> Downloader.Small.cat : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP47\A0030276.dll -> Downloader.Small.cat : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP47\A0030277.dll -> Downloader.Small.cat : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP47\A0030278.dll -> Downloader.Small.cat : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP47\A0030279.dll -> Downloader.Small.cat : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP47\A0030280.dll -> Downloader.Small.cat : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP47\A0030281.dll -> Downloader.Small.cat : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP47\A0030282.exe -> Proxy.Lager.f : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP47\A0030283.exe -> Trojan.Inject.i : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP47\A0030284.dll -> Downloader.Agent.abe : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP47\A0030285.dll -> Backdoor.Padodor : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP47\A0030286.exe -> Downloader.Small.cat : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP47\A0030287.exe -> Trojan.Agent.bi : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP47\A0030290.dll -> Trojan.Small.ev : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP5\A0001343.dll -> Trojan.Crypt.o : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP5\A0001344.dll -> Trojan.Crypt.o : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP5\A0001345.dll -> Trojan.Crypt.o : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP5\A0001346.dll -> Trojan.Crypt.o : Cleaned with backup
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP5\A0001347.dll -> Trojan.Crypt.o : Cleaned with backup
C:\WINDOWS\addcg32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\addgj32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\addke32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addkt.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\addky32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\addlc32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\addoe.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\addph.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\addpz32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\addro.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\addwr.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\addya.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\addzx32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\apich32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\apidm.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\apiiu32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\apijb32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\apilq32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\apipb32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\apiqm32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\apisz.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\apiwe32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\apiwt32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\appfi32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\appit.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\appkf.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\appks.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\appoz.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\apprc.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\apptq32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\appum.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\appxz.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\appyo.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\atlcl.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\atled32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\atlqn.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\atlrk.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\atlsw.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\atltd32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\atlyp.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\crjg32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\crqi32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\crsh.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\crsw32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\crub.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\crum32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\crvg.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\crwv32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\crwx.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\crxd.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\crxg32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\d3cu32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\d3ee.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\d3ef32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\d3fz.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\d3gh.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\d3jc.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\d3md32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\d3mn32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\d3pa32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\d3sz.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\d3xz.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\d3zk32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\ieiz32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\iekl.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\ielf.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\iena.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\ieva.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\ievi32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\ipao.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\ipbs32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\ipee.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\iplm32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\ipuy32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\javafp.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\javahb.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\javajq.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\javami32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\javanl32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\javaoo32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\javapk.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\javapz32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\javaqs.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\javava32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\KB885836.log:cqtdo -> Downloader.WinShow.bg : Cleaned with backup
C:\WINDOWS\KB885836.log:cqtdo -> Downloader.WinShow.bg : Cleaned with backup
C:\WINDOWS\mfceb.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\mfchd.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\mfchn.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\mfchz32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\mfcic32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\mfckp32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\mfcld32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\mfcmd32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\mfcox.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\mfcqc32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\mfcsk32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\mfcue32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\mfcuz.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\mfcvl32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\mfcvs32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\mfcwu.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\mfczy32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\msdn32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\msej.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\msel.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\msjm32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\mskb32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\mskm.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\msmg32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\msoc.dll -> Downloader.WinShow.bg : Cleaned with backup
C:\WINDOWS\msqq32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\mssh.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\mstg32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\msyq32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\msyt.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\netap.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\netbx32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\netgv32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\netgx.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\nethv32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\netmm32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\netof32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\netrg.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\nettc32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\netty32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\netxa.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\ntbc.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\ntcl.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\nter.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\ntla32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\ntlu.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\ntnb.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\ntor32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\ntta32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\nttu32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\ntui32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\sdkcd32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\sdken.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\sdkex.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\sdkgz32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\sdkhx.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\sdklq32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\sdkuj32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\sdkyk32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\setuplog.del:txmqt -> Downloader.WinShow.bg : Cleaned with backup
C:\WINDOWS\syscd.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\sysfh.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\sysgw.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\sysjv32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\syssx32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system.ini:erqbp -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\addhc32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\addiu.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\addji.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\addkb.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\addlx.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\addmi32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\addms.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\addmw32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\addnz32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\addsf32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\addxu.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\apian.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\apiba32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\apidy32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\apiee32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\apijx.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\apiky32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\apimy.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\apiqo32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\apirp32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\apisd32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\apiux32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\apizz.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\appgm.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\apphr32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\appia32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\applu.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\appmb.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\appml.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\appnv.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\apppd32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\apppr.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\appta32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\apptn.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\appue.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\atlbo32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\atlct.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\atldf.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\atlev32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\atlgn32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\atllt.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\atlso.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\atlut.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\atlyz32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\crcz32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\crfo32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\crgm32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\crkx32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\crnj32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\crpv.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\crqy32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\crzs32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\d3db.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\d3fv32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\d3hi.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\d3ld.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\d3lf32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\d3rs32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\d3rw32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\d3tc.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\d3tj.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\ieew.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\iefm.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\iegy.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\ieiq32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\iejf.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\ieln32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\ielw32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\iemh.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\iemr.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\iemy32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\ienx32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\ietz.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\ieyv32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\iezn32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\ipcz32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\ipfz32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\ipga32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\ipgz32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\ipim.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\ipqh.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\ipqo32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\iprz.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\ipun.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\ipxe.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\ipzh.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\ipzw32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\javabp.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\javaed32.dll -> Downloader.WinShow.bg : Cleaned with backup
C:\WINDOWS\system32\javaef32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\javajy32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\javals32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\javamc.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\javang32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\javaqo32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\javarc.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\javauo.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\javaut.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\javava32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\javazg.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\mfcaf32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\mfcag.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\mfceb.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\mfced32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\mfclf32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\mfcmh.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\mfcos32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\mfcvj32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\mfcye32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\mfczh32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\mfczs.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\msab.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\msbt.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\mshs32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\msqz.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\msrs.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\mssv.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\msuu.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\msxm32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\mszr32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\netcf32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\nethq32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\netiv.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\netkj.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\netqi.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\netrf32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\netrk32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\nettx.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\netwe.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\netxt.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\ntbx32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\ntcg32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\ntgq32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\ntlu32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\ntnv32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\ntog.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\ntru32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\ntse32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\ntvl.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\ntzt.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\sdkbc.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\sdkeu.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\sdkgb.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\sdkge32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\system32\sdksz.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\sdktk32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\sdkuq32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\sdkwn.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\sdkxl32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\SetupCarnival.exe -> Adware.Casino : Cleaned with backup
C:\WINDOWS\system32\sysbf32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\sysfa.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\sysgc.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\sysil32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\sysim.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\sysir.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\sysiy.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\sysom.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\sysqg.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\sysxr.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\sysyd.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\syszv32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\winbm.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\winbs.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\winhd.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\winnw.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\winvm32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\system32\winvw.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\systu32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\systv.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\sysvb.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\syszx32.dll -> Downloader.WinShow.bg : Cleaned with backup
C:\WINDOWS\winba32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\winek.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\wingp32.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\wingt32.exe -> Trojan.Agent.bi : Cleaned with backup
C:\WINDOWS\winhr.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\winpg.exe -> Downloader.Agent.td : Cleaned with backup
C:\WINDOWS\winqd32.exe -> Downloade