Welcome to MalwareRemoval.com,
What if we told you that you could get malware removal help from experts, and that it was 100% free? MalwareRemoval.com provides free support for people with infected computers. Our help, and the tools we use are always 100% free. No hidden catch. We simply enjoy helping others. You enjoy a clean, safe computer.

Malware Removal Instructions

Please Help me

MalwareRemoval.com provides free support for people with infected computers. Using plain language that anyone can understand, our community of volunteer experts will walk you through each step.

Please Help me

Unread postby bober » November 11th, 2005, 8:35 pm

My computer has slowed down and my Internet explorer homepage has changed... here's my hijack this log. hope you can help. I'm currently using firefox.

Logfile of HijackThis v1.99.1
Scan saved at 7:34:37 PM, on 11/11/2005
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
C:\Program Files\ewido\security suite\ewidoctrl.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\QuickTime\qttask.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
C:\WINDOWS\System32\wuauclt.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\System32\wuauclt.exe
C:\Hijack THis newest\HijackThis.exe

O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: Class - {147AEAAC-E372-85C1-B570-2194BA47D985} - C:\WINDOWS\javaxs.dll (file missing)
O2 - BHO: Class - {4CF3F22B-5DA9-5DE0-5DEB-EE4100912572} - C:\WINDOWS\netka32.dll (file missing)
O2 - BHO: Class - {8C70ABA6-D9B7-D043-9FBD-C653704D8236} - C:\WINDOWS\system32\ipdw.dll (file missing)
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] C:\Program Files\iTunes\iTunesHelper.exe
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
O8 - Extra context menu item: &Google Search - res://c:\program files\google\GoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: &Translate English Word - res://c:\program files\google\GoogleToolbar1.dll/cmwordtrans.html
O8 - Extra context menu item: Backward Links - res://c:\program files\google\GoogleToolbar1.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://c:\program files\google\GoogleToolbar1.dll/cmcache.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Similar Pages - res://c:\program files\google\GoogleToolbar1.dll/cmsimilar.html
O8 - Extra context menu item: Translate Page into English - res://c:\program files\google\GoogleToolbar1.dll/cmtrans.html
O16 - DPF: {62475759-9E84-458E-A1AB-5D2C442ADFDE} - http://a1540.g.akamai.net/7/1540/52/200 ... taller.exe
O16 - DPF: {D719897A-B07A-4C0C-AEA9-9B663A28DFCB} (iTunesDetector Class) - http://ax.phobos.apple.com.edgesuite.ne ... tector.cab
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido\security suite\ewidoctrl.exe
O23 - Service: iPod Service (iPodService) - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
bober
Active Member
 
Posts: 10
Joined: November 7th, 2005, 8:04 pm
Advertisement
Register to Remove

Unread postby amateur » November 12th, 2005, 8:36 am

Hi Bober,

Welcome to MRU. :) I would like to help you. Researching the items in a HJT log takes a considerable time. Please be patient. I would also be getting the approval of my "guru" for any fixes I propose which would mean further delay but that's for your benefit. You will be receiving the best care. If you have any questions, please come back to this thread and post it. I'll be notified by email. See you soon.
User avatar
amateur
MRU Master
MRU Master
 
Posts: 2545
Joined: September 25th, 2005, 1:13 pm
Location: RI, USA

Unread postby amateur » November 12th, 2005, 1:25 pm

Hi Bober :) ,

I'll start with a few questions. You have Ewido installed on your computer which suggests to me that you have carried out some scans. Can you please tell me what kind of scans you did and when? What did the scan report? If you have saved copies, please post them. Your internet Explorer home page may have changed as a result of these scans, and probably for a good reason. What's your IE page now?

There is no evidence of any firewall on your computer. Use a Firewall - I can not stress how important it is that you use a Firewall on your computer. Without a firewall your computer is susceptible to being hacked and taken over. Simply using a Firewall in its default configuration can lower your risk greatly. For an article on Firewalls and a listing of some available ones see the link below:
Computer Safety On line - Software Firewalls

You also need to update your Windows, but not now. Let's make sure that the computer is clean first. If we update it before we make sure that it's clean, it may unstabilize the computer. Later, I'll be giving you the links for all that.

For now,

Download

Ccleaner Do Not Use it Yet.

CWShredder. The same page has all the information you need about it.

Please run CWShredder.

Please run HijackThis again. Close all other windows except HijackThis. Put a checkmark agains the following entries, if still there:


O2 - BHO: Class - {147AEAAC-E372-85C1-B570-2194BA47D985} - C:\WINDOWS\javaxs.dll (file missing)
62475759-9E84-458E-A1AB-5D2C442ADFDE
O2 - BHO: Class - {4CF3F22B-5DA9-5DE0-5DEB-EE4100912572} - C:\WINDOWS\netka32.dll (file missing)
O2 - BHO: Class - {8C70ABA6-D9B7-D043-9FBD-C653704D8236} - C:\WINDOWS\system32\ipdw.dll (file missing)


Run Ccleaner

Click on Options, Select Advanced Now UNCHECK "Only delete files in Windows Temp folders older than 48 hours"
Make sure the Cleaner block on the left is selected. (Do not use the "Issues" block) Choose the Windows tab.
Check everything EXCEPT cookies, the Autocomplete Form History and the Advanced part of the Menu.
Choose Run Cleaner. This process could take a while.
When CCleaner shows how much has been removed, cleaning is finished. Click Exit.

Please Reboot and run these online scans, rebooting between each:

Panda and
Kaspersky

Post a new HijackThis log and the results of the online scans. Please also let me know if you are still getting hijacked, and if so, what page are you getting hijacked to?
User avatar
amateur
MRU Master
MRU Master
 
Posts: 2545
Joined: September 25th, 2005, 1:13 pm
Location: RI, USA

Unread postby bober » November 25th, 2005, 10:22 am

I'm sorry i took so long... I've been REALLY busy over the past few days... When i try to download CWS shredder it won't launch when i click it. It just says something about the application failed to start because WININET.dll was not found. what does this mean?
bober
Active Member
 
Posts: 10
Joined: November 7th, 2005, 8:04 pm

Unread postby amateur » November 25th, 2005, 12:24 pm

Please skip the downloading of CWShredder and continue with the rest of the instructions.
User avatar
amateur
MRU Master
MRU Master
 
Posts: 2545
Joined: September 25th, 2005, 1:13 pm
Location: RI, USA

Unread postby bober » November 27th, 2005, 5:21 pm

Ok. I've gotten up to the online scans. I've gotta use Internet explorer for those right? I'm kind of hesitant to use it becasue before whenever i opened it, the names of the malicious files would change and reappear. Should i continue anyway?
bober
Active Member
 
Posts: 10
Joined: November 7th, 2005, 8:04 pm

Unread postby amateur » November 27th, 2005, 5:57 pm

This is a new information. I need to do some consulting. Please wait for instructions. I may need to prepare a different fix.
User avatar
amateur
MRU Master
MRU Master
 
Posts: 2545
Joined: September 25th, 2005, 1:13 pm
Location: RI, USA

Unread postby amateur » November 28th, 2005, 7:53 am

Hi Bober,

Let's solve your missing wininet file first. You can download wininet.dll here. After you unzip it, drag wininet.dll to the c:\windows\system32\dllcache\wininet.dll. Then copy that to
c:\windows\system32. You can do all this in Safe Mode.

Then, run CWShredder.

Run the online scans suggested in my last post. Reboot. Run HijackThis again and post the new HijackThis log and the online scan reports.
User avatar
amateur
MRU Master
MRU Master
 
Posts: 2545
Joined: September 25th, 2005, 1:13 pm
Location: RI, USA

Unread postby bober » November 29th, 2005, 10:03 pm

wow... Aparantly wininet.dll was missing from system32
Anyway im on the panda scan and it's aksing me to select a device to scan. Which one should i choose
My computer
Local disks
Floppy disks (makes no sense really... my floppy drive was broken a while ago)
My documents
email
other media
bober
Active Member
 
Posts: 10
Joined: November 7th, 2005, 8:04 pm

Unread postby amateur » November 29th, 2005, 10:30 pm

Select My computer, please.
User avatar
amateur
MRU Master
MRU Master
 
Posts: 2545
Joined: September 25th, 2005, 1:13 pm
Location: RI, USA

Unread postby bober » December 1st, 2005, 9:04 pm

Now what should i select? (Kaspersky)
Critical Areas
My Computer
My Email
folders
A file
bober
Active Member
 
Posts: 10
Joined: November 7th, 2005, 8:04 pm

Unread postby amateur » December 1st, 2005, 9:13 pm

Same again, select "My computer". We want them to scan the whole computer. :)
User avatar
amateur
MRU Master
MRU Master
 
Posts: 2545
Joined: September 25th, 2005, 1:13 pm
Location: RI, USA

Unread postby bober » December 1st, 2005, 9:58 pm

AVG (my virus scanner) keeps detecting things while Kasparsky online is running (yup it's still goin) What should i do? It's finding something about a trojan... The options are continue info heal delete file move to vault and enable access

EDIT I think i know why now... Kaspersky's scanning my system restore files... i have some restore points made by spybot that has the infection still present
bober
Active Member
 
Posts: 10
Joined: November 7th, 2005, 8:04 pm

Unread postby bober » December 1st, 2005, 11:01 pm

Well here's the grand list. Here's Hijack this.

Logfile of HijackThis v1.99.1
Scan saved at 9:58:24 PM, on 12/1/2005
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
C:\Program Files\ewido\security suite\ewidoctrl.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\System32\wuauclt.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Hijack THis newest\HijackThis.exe

O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] C:\Program Files\iTunes\iTunesHelper.exe
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
O8 - Extra context menu item: &Google Search - res://c:\program files\google\GoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: &Translate English Word - res://c:\program files\google\GoogleToolbar1.dll/cmwordtrans.html
O8 - Extra context menu item: Backward Links - res://c:\program files\google\GoogleToolbar1.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://c:\program files\google\GoogleToolbar1.dll/cmcache.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Similar Pages - res://c:\program files\google\GoogleToolbar1.dll/cmsimilar.html
O8 - Extra context menu item: Translate Page into English - res://c:\program files\google\GoogleToolbar1.dll/cmtrans.html
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://www.kaspersky.com/downloads/kws/ ... nicode.cab
O16 - DPF: {62475759-9E84-458E-A1AB-5D2C442ADFDE} - http://a1540.g.akamai.net/7/1540/52/200 ... taller.exe
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan ... asinst.cab
O16 - DPF: {D719897A-B07A-4C0C-AEA9-9B663A28DFCB} (iTunesDetector Class) - http://ax.phobos.apple.com.edgesuite.ne ... tector.cab
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido\security suite\ewidoctrl.exe
O23 - Service: iPod Service (iPodService) - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe

Now for panda


Incident Status Location

Adware:adware/navipromo Not disinfected C:\WINDOWS\SYSTEM32\sdkaa32.exe
Spyware:spyware/petro-line Not disinfected C:\Documents and Settings\Ryan Andrew Chang\Favorites\SITES ABOUT\Ab scissor.url
Adware:adware/searchaid Not disinfected C:\Documents and Settings\Ryan Andrew Chang\Favorites\Only sex website.url
Adware:Adware/Secure32 Not disinfected C:\WINDOWS\system32\secure33.txt
and now Kasparsky

-------------------------------------------------------------------------------
KASPERSKY ON-LINE SCANNER REPORT
Thursday, December 01, 2005 21:57:27
Operating System: Microsoft Windows XP Professional, Service Pack 1 (Build 2600)
Kaspersky On-line Scanner version: 5.0.67.0
Kaspersky Anti-Virus database last update: 2/12/2005
Kaspersky Anti-Virus database records: 152890
-------------------------------------------------------------------------------

Scan Settings:
Scan using the following antivirus database: standard
Scan Archives: true
Scan Mail Bases: true

Scan Target - My Computer:
A:\
C:\
D:\

Scan Statistics:
Total number of scanned objects: 32083
Number of viruses found: 8
Number of infected objects: 1676
Number of suspicious objects: 0
Duration of the scan process: 5998 sec

Infected Object Name - Virus Name
C:\Documents and Settings\Ryan Andrew Chang\Local Settings\Temp\27.tmp Infected: Trojan-Downloader.Win32.WinShow.be
C:\Documents and Settings\Ryan Andrew Chang\Local Settings\Temp\2A.tmp Infected: Trojan-Downloader.Win32.WinShow.be
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP348\A0137857.exe Infected: Trojan.Win32.Agent.bi
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP348\A0137861.pif:acjjm:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP348\A0137861.pif:aulnw:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP348\A0137861.pif:bfhirk:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP348\A0137861.pif:bjuuib:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP348\A0137861.pif:bkavuf:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP348\A0137861.pif:dqqckm:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP348\A0137861.pif:dunge:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP348\A0137861.pif:ehiobx:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP348\A0137861.pif:ekyvm:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP348\A0137861.pif:filce:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP348\A0137861.pif:fmwxj:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP348\A0137861.pif:fmyzoy:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP348\A0137861.pif:fnoudd:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP348\A0137861.pif:fshnq:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP348\A0137861.pif:fwyzap:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP348\A0137861.pif:fytbrr:$DATA Infected: Trojan-Downloader.Win32.Agent.uo
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP348\A0137861.pif:ggjbq:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP348\A0137861.pif:gqxyw:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP348\A0137861.pif:hcffw:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP348\A0137861.pif:ichav:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP348\A0137861.pif:imodxa:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP348\A0137861.pif:iycitv:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP348\A0137861.pif:jayxwx:$DATA Infected: Trojan.Win32.Agent.bi
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP348\A0137861.pif:jbtwy:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP348\A0137861.pif:kdpxo:$DATA Infected: Trojan-Downloader.Win32.Agent.uo
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP348\A0137861.pif:kfmkn:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP348\A0137861.pif:ksgch:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP348\A0137861.pif:lnnqt:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP348\A0137861.pif:mdsps:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP348\A0137861.pif:mgbtm:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP348\A0137861.pif:nsihq:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP348\A0137861.pif:pfwhp:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP348\A0137861.pif:ptadz:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP348\A0137861.pif:qjthy:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP348\A0137861.pif:qmaut:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP348\A0137861.pif:rzfscn:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP348\A0137861.pif:sqxwqb:$DATA Infected: Trojan.Win32.Agent.iu
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP348\A0137861.pif:tlpfw:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP348\A0137861.pif:ucmacd:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP348\A0137861.pif:umrnd:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP348\A0137861.pif:vesqk:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP348\A0137861.pif:vobmh:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP348\A0137861.pif:vwtihq:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP348\A0137861.pif:wbnvel:$DATA Infected: Trojan.Win32.Agent.bi
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP348\A0137861.pif:wpqjp:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP348\A0137861.pif:ximmi:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP348\A0137861.pif:ynhafo:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP348\A0137861.pif:zdbzz:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP348\A0137861.pif:zzpgf:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP349\A0137862.pif:acjjm:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP349\A0137862.pif:aulnw:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP349\A0137862.pif:bfhirk:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP349\A0137862.pif:bjuuib:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP349\A0137862.pif:bkavuf:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP349\A0137862.pif:dqqckm:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP349\A0137862.pif:dtlrt:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP349\A0137862.pif:dunge:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP349\A0137862.pif:ehiobx:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP349\A0137862.pif:ekyvm:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP349\A0137862.pif:filce:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP349\A0137862.pif:fmwxj:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP349\A0137862.pif:fmyzoy:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP349\A0137862.pif:fnoudd:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP349\A0137862.pif:fshnq:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP349\A0137862.pif:fwyzap:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP349\A0137862.pif:fytbrr:$DATA Infected: Trojan-Downloader.Win32.Agent.uo
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP349\A0137862.pif:ggjbq:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP349\A0137862.pif:gqxyw:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP349\A0137862.pif:hcffw:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP349\A0137862.pif:ichav:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP349\A0137862.pif:imodxa:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP349\A0137862.pif:iycitv:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP349\A0137862.pif:jayxwx:$DATA Infected: Trojan.Win32.Agent.bi
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP349\A0137862.pif:jbtwy:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP349\A0137862.pif:kdpxo:$DATA Infected: Trojan-Downloader.Win32.Agent.uo
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP349\A0137862.pif:kfmkn:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP349\A0137862.pif:ksgch:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP349\A0137862.pif:lnnqt:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP349\A0137862.pif:mdsps:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP349\A0137862.pif:mgbtm:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP349\A0137862.pif:nsihq:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP349\A0137862.pif:pfwhp:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP349\A0137862.pif:ptadz:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP349\A0137862.pif:qjthy:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP349\A0137862.pif:qmaut:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP349\A0137862.pif:rzfscn:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP349\A0137862.pif:sqxwqb:$DATA Infected: Trojan.Win32.Agent.iu
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP349\A0137862.pif:tlpfw:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP349\A0137862.pif:ucmacd:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP349\A0137862.pif:umrnd:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP349\A0137862.pif:vesqk:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP349\A0137862.pif:vobmh:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP349\A0137862.pif:vwtihq:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP349\A0137862.pif:wbnvel:$DATA Infected: Trojan.Win32.Agent.bi
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP349\A0137862.pif:wpqjp:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP349\A0137862.pif:ximmi:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP349\A0137862.pif:ynhafo:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP349\A0137862.pif:zdbzz:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP349\A0137862.pif:zyctv:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP349\A0137862.pif:zzpgf:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP349\A0137869.OLD:ncijnn:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP350\A0137870.OLD:ncijnn:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP350\A0137870.OLD:wcmzf:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP350\A0137876.pif:acjjm:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP350\A0137876.pif:aulnw:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP350\A0137876.pif:bfhirk:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP350\A0137876.pif:bjuuib:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP350\A0137876.pif:bkavuf:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP350\A0137876.pif:dqqckm:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP350\A0137876.pif:dtlrt:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP350\A0137876.pif:dunge:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP350\A0137876.pif:ehiobx:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP350\A0137876.pif:ekyvm:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP350\A0137876.pif:filce:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP350\A0137876.pif:fmwxj:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP350\A0137876.pif:fmyzoy:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP350\A0137876.pif:fnoudd:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP350\A0137876.pif:fshnq:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP350\A0137876.pif:fwyzap:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP350\A0137876.pif:fytbrr:$DATA Infected: Trojan-Downloader.Win32.Agent.uo
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP350\A0137876.pif:ggjbq:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP350\A0137876.pif:gqxyw:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP350\A0137876.pif:hcffw:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP350\A0137876.pif:ichav:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP350\A0137876.pif:imodxa:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP350\A0137876.pif:iycitv:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP350\A0137876.pif:jayxwx:$DATA Infected: Trojan.Win32.Agent.bi
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP350\A0137876.pif:jbtwy:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP350\A0137876.pif:kdpxo:$DATA Infected: Trojan-Downloader.Win32.Agent.uo
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP350\A0137876.pif:kfmkn:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP350\A0137876.pif:ksgch:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP350\A0137876.pif:lnnqt:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP350\A0137876.pif:mdsps:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP350\A0137876.pif:meksu:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP350\A0137876.pif:mgbtm:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP350\A0137876.pif:nsihq:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP350\A0137876.pif:pfwhp:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP350\A0137876.pif:ptadz:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP350\A0137876.pif:qjthy:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP350\A0137876.pif:qmaut:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP350\A0137876.pif:rzfscn:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP350\A0137876.pif:sqxwqb:$DATA Infected: Trojan.Win32.Agent.iu
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP350\A0137876.pif:tlpfw:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP350\A0137876.pif:ucmacd:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP350\A0137876.pif:umrnd:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP350\A0137876.pif:vesqk:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP350\A0137876.pif:vobmh:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP350\A0137876.pif:vwtihq:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP350\A0137876.pif:wbnvel:$DATA Infected: Trojan.Win32.Agent.bi
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP350\A0137876.pif:wpqjp:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP350\A0137876.pif:ximmi:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP350\A0137876.pif:ynhafo:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP350\A0137876.pif:zdbzz:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP350\A0137876.pif:zyctv:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP350\A0137876.pif:zzpgf:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP350\A0137877.OLD:ncijnn:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP350\A0137877.OLD:wcmzf:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP351\A0137879.OLD:ncijnn:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP351\A0137879.OLD:wcmzf:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP351\A0137885.pif:acjjm:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP351\A0137885.pif:aulnw:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP351\A0137885.pif:bfhirk:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP351\A0137885.pif:bjuuib:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP351\A0137885.pif:bkavuf:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP351\A0137885.pif:dqqckm:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP351\A0137885.pif:dtlrt:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP351\A0137885.pif:dunge:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP351\A0137885.pif:ehiobx:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP351\A0137885.pif:ekyvm:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP351\A0137885.pif:filce:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP351\A0137885.pif:fmwxj:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP351\A0137885.pif:fmyzoy:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP351\A0137885.pif:fnoudd:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP351\A0137885.pif:fshnq:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP351\A0137885.pif:fwyzap:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP351\A0137885.pif:fytbrr:$DATA Infected: Trojan-Downloader.Win32.Agent.uo
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP351\A0137885.pif:ggjbq:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP351\A0137885.pif:gqxyw:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP351\A0137885.pif:hcffw:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP351\A0137885.pif:ichav:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP351\A0137885.pif:imodxa:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP351\A0137885.pif:iycitv:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP351\A0137885.pif:jayxwx:$DATA Infected: Trojan.Win32.Agent.bi
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP351\A0137885.pif:jbtwy:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP351\A0137885.pif:kdpxo:$DATA Infected: Trojan-Downloader.Win32.Agent.uo
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP351\A0137885.pif:kfmkn:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP351\A0137885.pif:ksgch:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP351\A0137885.pif:lnnqt:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP351\A0137885.pif:mdsps:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP351\A0137885.pif:meksu:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP351\A0137885.pif:mgbtm:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP351\A0137885.pif:nsihq:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP351\A0137885.pif:pfwhp:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP351\A0137885.pif:ptadz:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP351\A0137885.pif:qjthy:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP351\A0137885.pif:qmaut:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP351\A0137885.pif:rzfscn:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP351\A0137885.pif:sqxwqb:$DATA Infected: Trojan.Win32.Agent.bi
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP351\A0137885.pif:tlpfw:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP351\A0137885.pif:ucmacd:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP351\A0137885.pif:umrnd:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP351\A0137885.pif:vesqk:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP351\A0137885.pif:vobmh:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP351\A0137885.pif:vwtihq:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP351\A0137885.pif:wbnvel:$DATA Infected: Trojan.Win32.Agent.bi
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP351\A0137885.pif:wpqjp:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP351\A0137885.pif:ximmi:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP351\A0137885.pif:ynhafo:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP351\A0137885.pif:zdbzz:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP351\A0137885.pif:zyctv:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP351\A0137885.pif:zzpgf:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP351\A0137886.exe Infected: Trojan.Win32.Agent.bi
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137891.pif:acjjm:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137891.pif:aulnw:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137891.pif:bfhirk:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137891.pif:bjuuib:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137891.pif:bkavuf:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137891.pif:dqqckm:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137891.pif:dtlrt:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137891.pif:dunge:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137891.pif:ehiobx:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137891.pif:ekyvm:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137891.pif:filce:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137891.pif:fmwxj:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137891.pif:fmyzoy:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137891.pif:fnoudd:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137891.pif:fshnq:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137891.pif:fwyzap:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137891.pif:fytbrr:$DATA Infected: Trojan-Downloader.Win32.Agent.uo
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137891.pif:ggjbq:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137891.pif:gqxyw:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137891.pif:hcffw:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137891.pif:ichav:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137891.pif:imodxa:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137891.pif:iycitv:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137891.pif:jayxwx:$DATA Infected: Trojan.Win32.Agent.bi
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137891.pif:jbtwy:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137891.pif:kdpxo:$DATA Infected: Trojan-Downloader.Win32.Agent.uo
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137891.pif:kfmkn:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137891.pif:ksgch:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137891.pif:lnnqt:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137891.pif:mdsps:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137891.pif:meksu:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137891.pif:mgbtm:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137891.pif:nsihq:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137891.pif:pfwhp:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137891.pif:ptadz:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137891.pif:qjthy:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137891.pif:qmaut:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137891.pif:rzfscn:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137891.pif:sqxwqb:$DATA Infected: Trojan.Win32.Agent.bi
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137891.pif:tlpfw:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137891.pif:ucmacd:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137891.pif:umrnd:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137891.pif:vesqk:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137891.pif:vobmh:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137891.pif:vwtihq:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137891.pif:wbnvel:$DATA Infected: Trojan.Win32.Agent.bi
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137891.pif:wpqjp:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137891.pif:ximmi:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137891.pif:ynhafo:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137891.pif:zdbzz:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137891.pif:zyctv:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137891.pif:zzpgf:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137892.pif:acjjm:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137892.pif:aulnw:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137892.pif:bfhirk:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137892.pif:bjuuib:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137892.pif:bkavuf:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137892.pif:dqqckm:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137892.pif:dtlrt:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137892.pif:dunge:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137892.pif:ehiobx:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137892.pif:ekyvm:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137892.pif:filce:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137892.pif:fmwxj:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137892.pif:fmyzoy:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137892.pif:fnoudd:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137892.pif:fshnq:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137892.pif:fwyzap:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137892.pif:fytbrr:$DATA Infected: Trojan-Downloader.Win32.Agent.uo
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137892.pif:ggjbq:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137892.pif:gqxyw:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137892.pif:hcffw:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137892.pif:ichav:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137892.pif:imodxa:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137892.pif:iycitv:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137892.pif:jayxwx:$DATA Infected: Trojan.Win32.Agent.bi
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137892.pif:jbtwy:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137892.pif:kdpxo:$DATA Infected: Trojan-Downloader.Win32.Agent.uo
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137892.pif:kfmkn:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137892.pif:ksgch:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137892.pif:lnnqt:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137892.pif:mdsps:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137892.pif:meksu:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137892.pif:mgbtm:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137892.pif:nsihq:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137892.pif:pfwhp:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137892.pif:ptadz:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137892.pif:qjthy:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137892.pif:qmaut:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137892.pif:rzfscn:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137892.pif:sqxwqb:$DATA Infected: Trojan.Win32.Agent.bi
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137892.pif:tlpfw:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137892.pif:ucmacd:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137892.pif:umrnd:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137892.pif:vesqk:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137892.pif:vobmh:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137892.pif:vwtihq:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137892.pif:wbnvel:$DATA Infected: Trojan.Win32.Agent.bi
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137892.pif:wpqjp:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137892.pif:ximmi:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137892.pif:ynhafo:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137892.pif:zdbzz:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137892.pif:zyctv:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP353\A0137892.pif:zzpgf:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP354\A0137895.exe Infected: Trojan.Win32.Agent.bi
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP355\A0137901.pif:acjjm:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP355\A0137901.pif:aulnw:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP355\A0137901.pif:bfhirk:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP355\A0137901.pif:bjuuib:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP355\A0137901.pif:bkavuf:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP355\A0137901.pif:dqqckm:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP355\A0137901.pif:dtlrt:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP355\A0137901.pif:dunge:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP355\A0137901.pif:ehiobx:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP355\A0137901.pif:ekyvm:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP355\A0137901.pif:filce:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP355\A0137901.pif:fmwxj:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP355\A0137901.pif:fmyzoy:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP355\A0137901.pif:fnoudd:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP355\A0137901.pif:fshnq:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP355\A0137901.pif:fwyzap:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP355\A0137901.pif:fytbrr:$DATA Infected: Trojan-Downloader.Win32.Agent.uo
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP355\A0137901.pif:ggjbq:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP355\A0137901.pif:gqxyw:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP355\A0137901.pif:hcffw:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP355\A0137901.pif:ichav:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP355\A0137901.pif:imodxa:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP355\A0137901.pif:iycitv:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP355\A0137901.pif:jayxwx:$DATA Infected: Trojan.Win32.Agent.bi
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP355\A0137901.pif:jbtwy:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP355\A0137901.pif:kdpxo:$DATA Infected: Trojan-Downloader.Win32.Agent.uo
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP355\A0137901.pif:kfmkn:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP355\A0137901.pif:ksgch:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP355\A0137901.pif:lnnqt:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP355\A0137901.pif:mdsps:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP355\A0137901.pif:meksu:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP355\A0137901.pif:mgbtm:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP355\A0137901.pif:mxywe:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP355\A0137901.pif:nsihq:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP355\A0137901.pif:pfwhp:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP355\A0137901.pif:ptadz:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP355\A0137901.pif:qjthy:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP355\A0137901.pif:qmaut:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP355\A0137901.pif:rzfscn:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP355\A0137901.pif:sqxwqb:$DATA Infected: Trojan.Win32.Agent.bi
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP355\A0137901.pif:tlpfw:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP355\A0137901.pif:ucmacd:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP355\A0137901.pif:umrnd:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP355\A0137901.pif:vesqk:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP355\A0137901.pif:vobmh:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP355\A0137901.pif:vwtihq:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP355\A0137901.pif:wbnvel:$DATA Infected: Trojan.Win32.Agent.bi
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP355\A0137901.pif:wpqjp:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP355\A0137901.pif:ximmi:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP355\A0137901.pif:xyjoa:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP355\A0137901.pif:ynhafo:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP355\A0137901.pif:zdbzz:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP355\A0137901.pif:zyctv:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP355\A0137901.pif:zzpgf:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP355\A0137902.pif:acjjm:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP355\A0137902.pif:aulnw:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP355\A0137902.pif:bfhirk:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP355\A0137902.pif:bjuuib:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP355\A0137902.pif:bkavuf:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP355\A0137902.pif:dqqckm:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP355\A0137902.pif:dtlrt:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP355\A0137902.pif:dunge:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP355\A0137902.pif:ehiobx:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP355\A0137902.pif:ekyvm:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP355\A0137902.pif:filce:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP355\A0137902.pif:fmwxj:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP355\A0137902.pif:fmyzoy:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP355\A0137902.pif:fnoudd:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP355\A0137902.pif:fshnq:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP355\A0137902.pif:fwyzap:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP355\A0137902.pif:fytbrr:$DATA Infected: Trojan-Downloader.Win32.Agent.uo
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP355\A0137902.pif:ggjbq:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP355\A0137902.pif:gqxyw:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP355\A0137902.pif:hcffw:$DATA Infected: Trojan-Downloader.Win32.Agent.bc
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP355\A0137902.pif:ichav:$DATA Infected: Trojan-Downloader.Win32.Agent.bq
C:\System Volume Information\_restore{B5844A15-2EA5-4C27-BEA1-6D063C3DCB93}\RP355\A0137902.pif:
bober
Active Member
 
Posts: 10
Joined: November 7th, 2005, 8:04 pm

Unread postby bober » December 1st, 2005, 11:03 pm

Can i shut down my computer now?
bober
Active Member
 
Posts: 10
Joined: November 7th, 2005, 8:04 pm
Advertisement
Register to Remove

Next

Return to Infected? Virus, malware, adware, ransomware, oh my!



Who is online

Users browsing this forum: No registered users and 119 guests

Contact us:

Advertisements do not imply our endorsement of that product or service. Register to remove all ads. The forum is run by volunteers who donate their time and expertise. We make every attempt to ensure that the help and advice posted is accurate and will not cause harm to your computer. However, we do not guarantee that they are accurate and they are to be used at your own risk. All trademarks are the property of their respective owners.

Member site: UNITE Against Malware