Welcome to Tech Support Forum home to more then 136,000 problems solved. Issues have included: Spyware, Malware, Virus Issues, Windows, Microsoft, Linux, Networking, Security, Hardware, and Gaming Getting your problem solved is as easy as:
1. Registering for a free account
2. Asking your question
3. Receiving an answer

Registered members:
* Get free support
* Communicate privately with other members (PM).
* Removal of this message
* See fewer ads.
* And much more..

 




Tip: Click here to scan for System Errors and Optimize PC performance
[ Sponsored Link ]

Want to know how to post a question? click here Having problems with spyware and pop-ups? First Steps
Go Back   Tech Support Forum > Security Center > Virus/Trojan/Spyware Help > Resolved HJT Threads
User Name
Password
Site Map Register Donate Rules Blogs Mark Forums Read


Resolved HJT Threads Resolved spyware and popup issues.

 
 
LinkBack Thread Tools
Old 12-14-2006, 04:15 PM   #1 (permalink)
Registered User
 
Christ84opher's Avatar
 
Join Date: Dec 2006
Location: ny
Posts: 13
OS: xp


Send a message via AIM to Christ84opher Send a message via Yahoo to Christ84opher
outerinfo oin pop-ups

hey guys i need some help i have run adaware se, spybot, and my ez trust antivirus program to try and get rid of this outerinfo adware crap. i also did a disk cleanup and that got rid of the outerinfo stuff for about 2 hours then it just comes back. i get pop up ads even when im not in my internet browser. here is a hjt logfile. thanks in advance.


Logfile of HijackThis v1.99.1
Scan saved at 6:12:21 PM, on 12/14/2006
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\System32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\CA\eTrust EZ Armor\eTrust EZ Anti-Spam\QSP-2.1.212.0\QOELoader.exe
C:\PROGRA~1\CA\ETRUST~1\ETRUST~2\VetTray.exe
C:\Program Files\Java\jre1.5.0_02\bin\jusched.exe
C:\WINDOWS\System32\Rundll32.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\PROGRA~1\YSTEM~1\scanregw.exe
C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe
C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
C:\Program Files\VentSrv\ventrilo_svc.exe
C:\Program Files\VentSrv\ventrilo_srv.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Documents and Settings\chris\Desktop\JoyToKey.exe
C:\Program Files\Google\GoogleToolbarNotifier\1.2.908.5008\GoogleToolbarNotifier.exe
C:\WINDOWS\explorer.exe
C:\WINDOWS\system32\T?sks\?ttrib.exe
C:\PROGRA~1\CA\ETRUST~1\ETRUST~2\VetMsg.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\AIM\aim.exe
C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Hijackthis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.fasturd.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.yahoo.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/...ch/search.html
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = http://www.mrfindalot.com/search.asp?si=
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page_bak = www.myfunstart.com/index.cfm?pc=bdhp
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - {F1B64D7D-AAE0-B247-C9FE-F2FA36DF3A9B} - C:\WINDOWS\System32\ayttz.dll
R3 - URLSearchHook: (no name) - _{CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file)
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn2\yt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn2\yt.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: Malicious Scripts Scanner - {55EA1964-F5E4-4D6A-B9B2-125B37655FCB} - C:\Documents and Settings\All Users.WINDOWS\Application Data\Prevx\pxbho.dll
O2 - BHO: Yahoo! IE Services Button - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O2 - BHO: (no name) - {9138FEF8-D339-8F51-83E5-DDF048189E36} - C:\WINDOWS\Vflnpzkt.dll (file missing)
O2 - BHO: Wfpmj Class - {A5AD8FF3-64A3-4A07-BE7E-A7E6C197DF73} - C:\WINDOWS\System32\vm7cmapox.dll (file missing)
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar4.dll
O2 - BHO: (no name) - {F1B64D7D-AAE0-B247-C9FE-F2FA36DF3A9B} - C:\WINDOWS\System32\ayttz.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn2\yt.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar4.dll
O4 - HKLM\..\Run: [QOELOADER] "C:\Program Files\CA\eTrust EZ Armor\eTrust EZ Anti-Spam\QSP-2.1.212.0\QOELoader.exe"
O4 - HKLM\..\Run: [VetTray] C:\PROGRA~1\CA\ETRUST~1\ETRUST~2\VetTray.exe
O4 - HKLM\..\Run: [Zone Labs Client] C:\PROGRA~1\CA\ETRUST~1\ETRUST~3\ca.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_02\bin\jusched.exe
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [P17Helper] Rundll32 P17.dll,P17Helper
O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\cli.exe" runtime -Delay
O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Program Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe"
O4 - HKLM\..\Run: [keyboard] C:\\kybrdff_8.exe
O4 - HKLM\..\Run: [oimc79d4] RUNDLL32.EXE w5b2922a.dll,n 002c79d20000000a5b2922a
O4 - HKLM\..\Run: [newname] C:\\nwnmff_8.exe
O4 - HKLM\..\Run: [defender] C:\\dfndrff_8.exe
O4 - HKLM\..\Run: [PrevxOne] "C:\Program Files\Prevx1\PXConsole.exe"
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKCU\..\Run: [Yahoo! Pager] "C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe" -quiet
O4 - HKCU\..\Run: [Free Download Manager] C:\Program Files\Free Download Manager\fdm.exe -autorun
O4 - HKCU\..\Run: [Nnru] "C:\PROGRA~1\YSTEM~1\scanregw.exe" -vt yazr
O4 - HKCU\..\Run: [Liism] C:\WINDOWS\system32\T?sks\?ttrib.exe
O4 - HKCU\..\Run: [qqzo] C:\PROGRA~1\COMMON~1\qqzo\qqzom.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
O8 - Extra context menu item: &Yahoo! Search - file:///C:\Program Files\Yahoo!\Common/ycsrch.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Yahoo! &Dictionary - file:///C:\Program Files\Yahoo!\Common/ycdict.htm
O8 - Extra context menu item: Yahoo! &Maps - file:///C:\Program Files\Yahoo!\Common/ycmap.htm
O8 - Extra context menu item: Yahoo! &SMS - file:///C:\Program Files\Yahoo!\Common/ycsms.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll
O9 - Extra button: (no name) - {120E090D-9136-4b78-8258-F0B44B4BD2AC} - C:\WINDOWS\System32\ms.exe (file missing)
O9 - Extra 'Tools' menuitem: MaxSpeed - {120E090D-9136-4b78-8258-F0B44B4BD2AC} - C:\WINDOWS\System32\ms.exe (file missing)
O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
O9 - Extra 'Tools' menuitem: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
O9 - Extra button: (no name) - {0CDAF688-CEBC-41FD-99FC-BF9088A8C0D5} - (no file) (HKCU)
O9 - Extra button: (no name) - {66703F63-14D4-4779-B7CE-C852B02B6165} - C:\WINDOWS\System32\lmrt920g.dll (file missing) (HKCU)
O9 - Extra button: (no name) - {6948D398-2959-4B6E-BB84-A4AC22F863BA} - C:\WINDOWS\System32\dpmodemx179t.dll (file missing) (HKCU)
O9 - Extra button: (no name) - {766772B9-A746-408D-B09D-0ABFF3E9D52B} - (no file) (HKCU)
O9 - Extra button: (no name) - {9F101A58-28D5-46E7-B4FC-B9AF87EB0483} - C:\WINDOWS\System32\mprmsg712w.dll (file missing) (HKCU)
O9 - Extra button: (no name) - {B9619A7D-D552-4178-B380-0F2FFB39E53E} - C:\WINDOWS\System32\vcdex426a.dll (file missing) (HKCU)
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {2E28242B-A689-11D4-80F2-0040266CBB8D} (KX-HCM10 Control) - http://hvmmarinacam.viewnetcam.com:8080/kxhcm10.ocx
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {63DF43C2-469A-41F3-B119-17B1ACE8BB34} (Sony SNC-RZ30 Image Viewer) - http://66.208.222.163/home/SonySncRz30View.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsu...?1132181825796
O16 - DPF: {745395C8-D0E1-4227-8586-624CA9A10A8D} (AxisMediaControl Class) - http://198.189.234.9/activex/AMC.cab
O16 - DPF: {8A0DCBDB-6E20-489C-9041-C1E8A0352E75} - http://awbeta.net-nucleus.com/FIX/WinATS.cab
O16 - DPF: {A364AF35-0CDF-41E8-8F3B-E0E55E15EBA1} (Zenturi Active Programs Control) - http://www.programchecker.com/dll/nixon.cab
O16 - DPF: {A90A5822-F108-45AD-8482-9BC8B12DD539} (Crucial cpcScan) - http://www.crucial.com/controls/cpcScanner.cab
O16 - DPF: {C5E28B9D-0A68-4B50-94E9-E8F6B4697514} (NsvPlayX Control) - http://www.nullsoft.com/nsv/embed/nsvplayx_vp3_mp3.cab
O16 - DPF: {DE625294-70E6-45ED-B895-CFFA13AEB044} (AxisMediaControlEmb Class) - http://69.66.104.110/activex/AMC.cab
O16 - DPF: {E3E02F12-2ADB-478C-8742-5F0819F9F0F4} (Quantum Streaming IE VersionManager Class) - http://qmedia.xlontech.net/100170/sd...ie06041001.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{A276BDA0-D097-4C4F-9E74-E63DA476C4DF}: NameServer = 192.168.1.1
O20 - Winlogon Notify: SideBySide - C:\WINDOWS\system32\sImlib.dll (file missing)
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\System32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: Autodesk Licensing Service - Unknown owner - C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Prevx Agent (PREVXAgent) - Unknown owner - C:\Program Files\Prevx1\PXAgent.exe" -f (file missing)
O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
O23 - Service: Ventrilo - Unknown owner - C:\Program Files\VentSrv\ventrilo_svc.exe
O23 - Service: VET Message Service (VETMSGNT) - Computer Associates International, Inc. - C:\PROGRA~1\CA\ETRUST~1\ETRUST~2\VetMsg.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs Inc. - C:\WINDOWS\system32\ZoneLabs\vsmon.exe
Christ84opher is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Reddit!
Important Information
Join the #1 Tech Support Forum Today - It's Totally Free!

TechSupportForum.com is a leading support website for your computer needs. We offer free, friendly and personalized computer support. Why pay to have your computer fixed when you can do it for free.

Join TechSupportforum.com Today - Click Here

Old 12-15-2006, 10:38 PM   #2 (permalink)
TSF Enthusiast
 
src2206's Avatar
 
Join Date: Apr 2006
Location: Kolkata, India
Posts: 2,068
OS: WinXP Pro SP3

My System

Send a message via Yahoo to src2206
Hi and welcome to TSF.

I am currently reviewing your log. Please note that this is under the supervision of an expert analyst, and I will be back with a fix for your problem as soon as possible.

You may wish to Subscribe to this thread (Thread Tools) so that you are notified when you receive a reply.

Please be patient with me during this time.
__________________
Registered Linux user #426065
src2206 is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Reddit!
Old 12-16-2006, 11:34 PM   #3 (permalink)
TSF Enthusiast
 
src2206's Avatar
 
Join Date: Apr 2006
Location: Kolkata, India
Posts: 2,068
OS: WinXP Pro SP3

My System

Send a message via Yahoo to src2206
Post

Hello Christopher and welcome to TSF .

Please print out or copy this page to Notepad in order to assist you when carrying out the following instructions. If there's anything that you don't understand, ask your question(s) before proceeding with the fixes. You should 'not' have any open browsers when you are following the procedures below.

You may like to subscribe to this thread to get immediate notification of replies as soon as they are posted. To do this click Thread Tools located near the top of this page, then click Subscribe to this Thread. Make sure it is set to Instant email Notification, then click Subscribe.
________________________________________________

Multiple AV

It appears that you are running two antivirus programs, namely, Prevex1 and EZTrust Internet Security simultaneously. It does not provide you with any extra protection though it may seem so. On the contrary these two programs may interfere with each other creating serious problems regarding security vulnerability as well as system stability. I suggest that you uninstall Prevex1 and keep EZTrust Internet Security as EZTrust Internet Security provides a more complete protection package including an Anti Virus and Firewall.

It appears that you have some traces of Norton AntiVirus present in your system. Did you uninstalled Norton some times back? If you do not intend to use Norton then the traces left by it should be removed as that consumes system resources unnecessarily and can also come in conflict with your present Anti Virus creating critical system instability. If you need I shall help you out in removing Norton after your system is completely clean.
________________________________________________________________

Downloads

1. Please download Cleanup! and install it. You will use this later. Do not install if you are using the 64 bit version of windows. If you're unsure please do not run it! If you don't already know, you're probably not using XP64, but you can download & run this tool to find out for sure.....http://www.kellys-korner-xp.com/regs...p_whichcpu.exe

*NOTE* Cleanup deletes EVERYTHING out of temporary folders and does not make backups.

The following is the alternate download location for CleanUp!. Please download the program from this link if the main link is out of service:

http://www.stevengould.org/downloads...CleanUp452.exe


2. Download AVG Anti Spyware

Use the link at the bottom of the page under "AVG Anti-Spyware Free for Windows"

  • Install AVG Anti Spyware
  • Double-click the icon on Desktop to launch AVG
  • On the top of the main screen click Shield
  • Click the word active to change it to inactive
  • On the top of the main screen click Update.
  • Then click on Start Update. The update will start and a progress bar will show the updates being installed.
  • Once the update has completed select the "Scanner" icon at the top of the screen, then select the "Settings" tab.
  • Once in the Settings screen click on "Recommended actions" and then select "Quarantine".
  • Under "Reports"
    • Select "Automatically generate report after every scan"
    • Un-Select "Only if threats were found"
When you have finished updating, EXIT AVG Anti Spyware. Do Not run a scan just yet, we will shortly.


3. Please download Brute Force Uninstaller to your desktop.
  • Right click the BFU folder on your desktop, and choose Extract All
  • Click "Next"
  • In the box to choose where to extract the files to,
  • Click "Browse"
  • Click on the + sign next to "My Computer"
  • Click on "Local Disk (C:) or whatever your primary drive is
  • Click "Make New Folder"
  • Type in BFU
  • Click "Next", and Uncheck the "Show Extracted Files" box and then click "Finish".
RIGHT-CLICK HERE and choose "Save As" (in IE it's "Save Target As") in order to download Alcra PLUS Remover.
Save it in the same folder you made earlier (c:BFU).

Do not do anything with these yet!


4. Download combofix from one of these locations: **Save it to your desktop**

Go to <<Start>> then <<Run>> then paste in the single line command then click OK

"%userprofile%\desktop\combofix.exe" /v ayttz



When finished, it shall produce a log for you. Post that log in your next reply
________________________________________________

Show Hidden Files and Folders

Go to My Computer >Tools >Folder Options >View tab and select Show hidden files and folders. Uncheck the Hide protected operating system files (recommended) option. Also make sure there is no checkmark beside Hide file extensions for known file types. Click OK.
________________________________________________________________________________

Fix

Restart your computer and boot into Safe Mode by tapping the F8 key repeatedly until a menu shows up (and choose Safe Mode from the list). In some systems, this may be the F5 key, so try that if F8 doesn't work. Login on your usual account. Make sure to close any open browsers.

Click > Start > Control Panel > Add / Remove Programs and uninstall the following programs (if they exist):

YSTEM~1 [Remove any add/remove entry which starts with the 5 letters YSTEM in the exact given order].

Open HijackThis and click on 'Do a System Scan Only'. Check the following entries (If they still exist, make sure you do not miss any)

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page_bak = www.myfunstart.com/index.cfm?pc=bdhp
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - {F1B64D7D-AAE0-B247-C9FE-F2FA36DF3A9B} - C:\WINDOWS\System32\ayttz.dll
R3 - URLSearchHook: (no name) - _{CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file)
O2 - BHO: (no name) - {9138FEF8-D339-8F51-83E5-DDF048189E36} - C:\WINDOWS\Vflnpzkt.dll (file missing)
O2 - BHO: Wfpmj Class - {A5AD8FF3-64A3-4A07-BE7E-A7E6C197DF73} - C:\WINDOWS\System32\vm7cmapox.dll (file missing)
O4 - HKLM\..\Run: [oimc79d4] RUNDLL32.EXE w5b2922a.dll,n 002c79d20000000a5b2922a
O4 - HKCU\..\Run: [Nnru] "C:\PROGRA~1\YSTEM~1\scanregw.exe" -vt yazr
O4 - HKCU\..\Run: [Liism] C:\WINDOWS\system32\T?sks\?ttrib.exe
O4 - HKCU\..\Run: [qqzo] C:\PROGRA~1\COMMON~1\qqzo\qqzom.exe
O9 - Extra button: (no name) - {120E090D-9136-4b78-8258-F0B44B4BD2AC} - C:\WINDOWS\System32\ms.exe (file missing)
O9 - Extra 'Tools' menuitem: MaxSpeed - {120E090D-9136-4b78-8258-F0B44B4BD2AC} - C:\WINDOWS\System32\ms.exe (file missing)
O9 - Extra button: (no name) - {0CDAF688-CEBC-41FD-99FC-BF9088A8C0D5} - (no file) (HKCU)
O9 - Extra button: (no name) - {66703F63-14D4-4779-B7CE-C852B02B6165} - C:\WINDOWS\System32\lmrt920g.dll (file missing) (HKCU)
O9 - Extra button: (no name) - {6948D398-2959-4B6E-BB84-A4AC22F863BA} - C:\WINDOWS\System32\dpmodemx179t.dll (file missing) (HKCU)
O9 - Extra button: (no name) - {766772B9-A746-408D-B09D-0ABFF3E9D52B} - (no file) (HKCU)
O9 - Extra button: (no name) - {9F101A58-28D5-46E7-B4FC-B9AF87EB0483} - C:\WINDOWS\System32\mprmsg712w.dll (file missing) (HKCU)
O9 - Extra button: (no name) - {B9619A7D-D552-4178-B380-0F2FFB39E53E} - C:\WINDOWS\System32\vcdex426a.dll (file missing) (HKCU)
O16 - DPF: {2E28242B-A689-11D4-80F2-0040266CBB8D} (KX-HCM10 Control) - http://hvmmarinacam.viewnetcam.com:8080/kxhcm10.ocx
O16 - DPF: {8A0DCBDB-6E20-489C-9041-C1E8A0352E75} - http://awbeta.net-nucleus.com/FIX/WinATS.cab
O20 - Winlogon Notify: SideBySide - C:\WINDOWS\system32\sImlib.dll (file missing)


Please remember to close all other windows, including browsers then click Fix checked.

Delete the following Files indicated in RED and Folders indicated in BLUE if they still exist.

C:\Program Files\Common Files\ qqzo
w5b2922a.dll- Find this file using START>SEARCH.
_________________________________________________________________

Cleanup!

Open Cleanup! by double-clicking the icon on your desktop (or from the Start > All Programs menu).
Set the program up as follows:

Click "Options..."
Move the arrow down to "Custom CleanUp!"
Put a check next to the following (Make sure nothing else is checked!):
  • Empty Recycle Bins
  • Delete Cookies
  • Delete Prefetch files (if present)
  • Cleanup! All Users
  • Click on the Temporary Files tab and uncheck the box for Scan drives for files matching if it’s checked.
Click OK
Press the CleanUp! button to start the program.

Do not logoff or reboot when prompted.

AVG Anti-Spyware

Run AVG Anti-Spyware with it's updated definitions:(...it's important that all windows must be closed)
  • Click Scanner
  • Click on the Scan tab
  • Click Complete System Scan to begin scanning.
    Once the scan is complete do the following:
  • If you have any infections you will prompted, then select "Apply all actions"
  • Once finished, click the Save report button, then click Save Report As and save it to your desktop. (make sure to remember where you saved that file, this is important).


BFU

please go to Start > My Computer and navigate to the C:BFU folder.
  • Start the Brute Force Uninstaller by doubleclicking BFU.exe
  • Behind the scriptline to execute field click the folder icon and select alcanshorty.bfu
  • Press Execute and let the program do it’s job. (You ought to see a progress bar if you did this correctly.)
  • Wait for the complete script execution box to pop up and press OK.
  • Press exit to terminate the BFU program.

Reboot your system in Normal Mode.
_________________________________________________________________

ComboFix

Please run ComboFix.exe again and post the contents of the the log it produces.
________________________________________________________________

Online Scan

Perform an online scan with Internet Explorer with Panda ActiveScan
  1. Click on located at the bottom of the page.
  2. A "pop up" window will appear. * Please ensure that your pop up blocker doesn't block it *
  3. Enter your e-mail address, country, and state & click "Free Online Scan" * The download of the 8 MB Panda's ActiveX control will take place *
Begin the scan by selecting
  • If it finds any malware, it will offer you a report.
  • Please ignore any entry it finds and the offer to buy the program to remove the entry, as we will address this later.
  • Click on then click
* You needn't remain online while it's doing the scan but you have to re-connect after it has finished to see the report.
* Turn off the real time scanner of any existing antivirus program while performing the online scan


Please provide the following logs in the given order with your next post:

Combofix2.txt
AVG Anti-Spyware
Panda Scan
Combofix.txt
HijackThis (A fresh one)


Please let me know about your systems overall behaviour .
__________________
Registered Linux user #426065
src2206 is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Reddit!
Old 12-16-2006, 11:59 PM   #4 (permalink)
Registered User
 
Christ84opher's Avatar
 
Join Date: Dec 2006
Location: ny
Posts: 13
OS: xp


Send a message via AIM to Christ84opher Send a message via Yahoo to Christ84opher
thanks for helping me out. its getting late tonite and i have to work tomorrow so im gonna try and tackle most of this project tomorrow night. as far as multiple anti-virus programs go ez trust is the only 1 i use for my computer i just uninstalled prevx1 that was just a 30 day free trail thing anyways. Norton you said i had traces of on my computer 2 and i looked on the add/remove programs list and i didnt see anything named norton there but i see the folder in the program files list. so would it be ok if i just delete the norton folder from the program files list since i havent even been using norton on my computer in probably over 2 years now.

-Chris
Christ84opher is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Reddit!
Old 12-17-2006, 12:24 AM   #5 (permalink)
TSF Enthusiast
 
src2206's Avatar
 
Join Date: Apr 2006
Location: Kolkata, India
Posts: 2,068
OS: WinXP Pro SP3

My System

Send a message via Yahoo to src2206
Hello Chris

Regarding the multiple AV issue, w will tackle that after I see the result of the first round of battle with the malwares.

Take your time but I suggest try to remain offline as much as you can. That will reduce the chances of reinfection in the intermediate stage of our fix.

Thank you.
__________________
Registered Linux user #426065
src2206 is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Reddit!
Old 12-19-2006, 09:08 PM   #6 (permalink)
Registered User
 
Christ84opher's Avatar
 
Join Date: Dec 2006
Location: ny
Posts: 13
OS: xp


Send a message via AIM to Christ84opher Send a message via Yahoo to Christ84opher
ok im finally all done doing all of the instructions listed above. i actually had to basically do the process twice. the 1st time i checked all the boxs that needed to be checked on the hijackthis program and pushed the fix button. when i was doing the last step of the fix doing a fresh hijackthis log i noticed that all of the bad entries that needed to be deleted were still there. so everything but the very 1st time i ran combofix i had to do a 2nd time. here are the results.


chris - 06-12-17 16:51:49.51 Service Pack 1
ComboFix 06.12.01W - Running from: "C:\Documents and Settings\chris\desktop"
Command switches used :: /v ayttz

((((((((((((((((((((((((((((((((((((((((((((( Look2Me's Log ))))))))))))))))))))))))))))))))))))))))))))))))))

REGISTRY ENTRIES REMOVED:
Windows Registry Editor Version 5.00

[HKEY_CLASSES_ROOT\clsid\{e7f46981-f5d3-4940-8db8-5e53440caf32}]
@=""
"IDEx"="ADDR"

[HKEY_CLASSES_ROOT\clsid\{e7f46981-f5d3-4940-8db8-5e53440caf32}\Implemented Categories]
@=""

[HKEY_CLASSES_ROOT\clsid\{e7f46981-f5d3-4940-8db8-5e53440caf32}\Implemented Categories\{00021492-0000-0000-C000-000000000046}]
@=""

[HKEY_CLASSES_ROOT\clsid\{e7f46981-f5d3-4940-8db8-5e53440caf32}\InprocServer32]
@="C:\\WINDOWS\\system32\\sImlib.dll"
"ThreadingModel"="Apartment"

* * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * *




(((((((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))


C:\WINDOWS\MirarSetup_876075.exe
C:\WINDOWS\system32\aaa00000.sys
C:\WINDOWS\system32\WinNB58.dll
C:\Program Files\Inetget2
C:\Program Files\TheSearchAccelerator
C:\Program Files\Common Files\{0CE8F833-0574-1033-0314-020504140001}

~ ~ ~ ~ ~ ~ ~ ~ ~ ~ ~ ~ ~ ~ Purity ~ ~ ~ ~ ~ ~ ~ ~~ ~ ~ ~ ~ ~ ~ ~ ~ ~ ~ ~

Folders Quarantined:

C:\qoobox\purity\Documents and Settings\chris\Application Data\APPATC~1
C:\qoobox\purity\Documents and Settings\chris\Application Data\MCROSO~1
C:\qoobox\purity\Documents and Settings\chris\My Documents\CROSOF~1
C:\qoobox\purity\Documents and Settings\chris\My Documents\ICROSO~1
C:\qoobox\purity\Program Files\ICROSO~1.NET
C:\qoobox\purity\Program Files\YSTEM~1
C:\qoobox\purity\Program Files\Common Files\CROSOF~1
C:\qoobox\purity\Program Files\Common Files\ICROSO~1
C:\qoobox\purity\Program Files\Common Files\MANTEC~1
C:\qoobox\purity\Program Files\YSTEM~1\scanregw.exe
C:\qoobox\purity\Program Files\YSTEM~1\YSTEM~1
C:\qoobox\purity\WINDOWS\SMBOLS~1
C:\qoobox\purity\WINDOWS\system32\TSKS~1
C:\qoobox\purity\WINDOWS\system32\TSKS~1\?ttrib.exe


((((((((((((((((((((((((((((((( Files Created from 2006-11-17 to 2006-12-17 ))))))))))))))))))))))))))))))))))


2006-12-17 17:03 <DIR> d-------- C:\WINDOWS\erdnt
2006-12-17 16:31 <DIR> d-------- C:\bfu
2006-12-17 16:20 3,968 --a------ C:\WINDOWS\system32\drivers\AvgAsCln.sys
2006-12-17 16:19 <DIR> d-------- C:\Program Files\Grisoft
2006-12-17 16:15 <DIR> d-------- C:\Program Files\CleanUp!
2006-12-16 22:59 58,880 --a------ C:\WINDOWS\system32\jwmvq.dll
2006-12-16 20:05 5,248 --a------ C:\WINDOWS\system32\drivers\vax347s.sys
2006-12-16 20:05 159,616 --a------ C:\WINDOWS\system32\drivers\vax347b.sys
2006-12-16 20:05 <DIR> d-------- C:\Program Files\Alcohol Soft
2006-12-16 20:02 <DIR> d-------- C:\Program Files\Alcoholer
2006-12-16 17:56 <DIR> d-------- C:\WINDOWS\çasks
2006-12-11 18:55 991,232 --a------ C:\WINDOWS\system32\esent.dll
2006-12-09 01:22 <DIR> d-------- C:\Program Files\Hijackthis
2006-12-09 00:41 <DIR> d-------- C:\Documents and Settings\All Users.WINDOWS\Application Data\Zenturi
2006-12-03 16:46 <DIR> d-------- C:\WINDOWS\qqzo
2006-12-03 16:46 <DIR> d-------- C:\Program Files\Common Files\qqzo
2006-12-03 16:12 2 --a------ C:\WINDOWS\system32\wtstr.exe
2006-12-03 16:12 131 --a-s---- C:\WINDOWS\test.bat


(((((((((((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))))))


2006-12-17 17:03 -------- d-a------ C:\Program Files\Common Files
2006-12-17 16:01 -------- d-------- C:\Program Files\Mozilla Firefox
2006-12-16 13:10 -------- d-------- C:\Program Files\NRTV
2006-12-11 19:12 -------- d-------- C:\Program Files\Outlook Express
2006-12-11 19:12 -------- d-------- C:\Program Files\Common Files\System
2006-12-11 19:11 -------- d-------- C:\Program Files\Windows Media Player
2006-12-01 19:32 -------- d-------- C:\Program Files\rFactor1150
2006-11-30 22:06 -------- d-------- C:\Program Files\Axis Communications
2006-11-30 12:05 -------- d-------- C:\Program Files\Common Files\Microsoft Shared
2006-11-13 21:47 -------- d-------- C:\Program Files\Ventrilo
2006-11-13 21:47 -------- d-------- C:\Program Files\Common Files\Wise Installation Wizard
2006-11-05 02:34 -------- d-------- C:\Program Files\Teamspeak2_RC2
2006-09-29 15:22 56 -r-hs---- C:\WINDOWS\system32\E67C4BEBB8.sys
2006-09-29 15:22 3350 --ahs---- C:\WINDOWS\system32\KGyGaAvL.sys


(((((((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))

*Note* empty entries are not shown

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run]
"Start WingMan Profiler"=""
"Yahoo! Pager"="\"C:\\PROGRA~1\\Yahoo!\\MESSEN~1\\YAHOOM~1.EXE\" -quiet"
"Free Download Manager"="C:\\Program Files\\Free Download Manager\\fdm.exe -autorun"
"Nnru"="\"C:\\PROGRA~1\\YSTEM~1\\scanregw.exe\" -vt yazr"
"Liism"="C:\\WINDOWS\\system32\\T?sks\\?ttrib.exe"
"qqzo"="C:\\PROGRA~1\\COMMON~1\\qqzo\\qqzom.exe"

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run]
"QOELOADER"="\"C:\\Program Files\\CA\\eTrust EZ Armor\\eTrust EZ Anti-Spam\\QSP-2.1.212.0\\QOELoader.exe\""
"VetTray"="C:\\PROGRA~1\\CA\\ETRUST~1\\ETRUST~2\\VetTray.exe"
"Zone Labs Client"="C:\\PROGRA~1\\CA\\ETRUST~1\\ETRUST~3\\ca.exe"
"QuickTime Task"="\"C:\\Program Files\\QuickTime\\qttask.exe\" -atboottime"
"SunJavaUpdateSched"="C:\\Program Files\\Java\\jre1.5.0_02\\bin\\jusched.exe"
"ATIPTA"="C:\\Program Files\\ATI Technologies\\ATI Control Panel\\atiptaxx.exe"
"TkBellExe"="\"C:\\Program Files\\Common Files\\Real\\Update_OB\\realsched.exe\" -osboot"
"P17Helper"="Rundll32 P17.dll,P17Helper"
"ATICCC"="\"C:\\Program Files\\ATI Technologies\\ATI.ACE\\cli.exe\" runtime -Delay"
"Adobe Photo Downloader"="\"C:\\Program Files\\Adobe\\Photoshop Album Starter Edition\\3.0\\Apps\\apdproxy.exe\""
"oimc79d4"="RUNDLL32.EXE w5b2922a.dll,n 002c79d20000000a5b2922a"
"KernelFaultCheck"=hex(2):25,73,79,73,74,65,6d,72,6f,6f,74,25,5c,73,79,73,74,\
65,6d,33,32,5c,64,75,6d,70,72,65,70,20,30,20,2d,6b,00
"!AVG Anti-Spyware"="\"C:\\Program Files\\Grisoft\\AVG Anti-Spyware 7.5\\avgas.exe\" /minimized"

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents]

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\IMAIL]
"Installed"="1"

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MAPI]
"Installed"="1"
"NoChange"="1"

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MSFS]
"Installed"="1"

[HKEY_CURRENT_USER\software\microsoft\internet explorer\desktop\components]
"DeskHtmlVersion"=dword:00000110
"DeskHtmlMinorVersion"=dword:00000005
"Settings"=dword:00000001
"GeneralFlags"=dword:00000001

[HKEY_CURRENT_USER\software\microsoft\internet explorer\desktop\components\0]
"Source"="About:Home"
"SubscribedURL"="About:Home"
"FriendlyName"="My Current Home Page"
"Flags"=dword:00000002
"Position"=hex:2c,00,00,00,cc,00,00,00,00,00,00,00,34,03,00,00,e2,02,00,00,00,\
00,00,00,01,00,00,00,01,00,00,00,01,00,00,00,00,00,00,00,00,00,00,00
"CurrentState"=hex:04,00,00,40
"OriginalStateInfo"=hex:18,00,00,00,a0,00,00,00,00,00,00,00,80,02,00,00,3a,02,\
00,00,04,00,00,40
"RestoredStateInfo"=hex:18,00,00,00,a0,00,00,00,00,00,00,00,80,02,00,00,3a,02,\
00,00,01,00,00,00

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\sharedtaskscheduler]
"{438755C2-A8BA-11D1-B96B-00A0C90312E1}"="Browseui preloader"
"{8C7461EF-2B13-11d2-BE35-3078302C2030}"="Component Categories cache daemon"

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shellexecutehooks]
"{AEB6717E-7E19-11d0-97EE-00C04FD91972}"=""
"{57B86673-276A-48B2-BAE7-C6DBB3020EB8}"="AVG Anti-Spyware 7.5"

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]
"NoDriveTypeAutoRun"=dword:00000091
"DriveConfiguration"=hex:2e,55,a9,07,cf,ff,47,95,2e,0c,e9,9d,8e,c1,89,be,64,d2,\
de,66,b9,32,de,42,d0,2a,81,f9,09,a8,c9,19,05,da,ff,51,0b,fc,3f,e2,aa,6f,36,\
50,a0,0a,2b,5d,fb,b4,3c,37,7e,33,eb,f1,46,3f,d9,30,ad,db,d0,27,6f,e5,07,c5,\
0b,eb,a2,2c,6d,40,79,66,e9,4f,1a,53,ca,30,11,e6,ec,79,67,91,26,57,68,fe,cd,\
dd,a9,00,b5,9b,4a,c9,99,73,79,5d,bd,a8,37,46,d1,38,5f,8a,19,6c,e4,da,cb,ad,\
5a,0c,b8,99,b8,cb,2f,56,5c,8e,1f,26,4f,c6,7b,3c,cb,5c,e3,ce,fa,5a,80,6c,01,\
e8,30,90,3d,7b,e3,76,cc,49,44,a9,50,00,9c,ef,ef,b7,f4,ae,9e,25,7a,ef,a0,11,\
27,dc,49,09,9e,94,08,57,56,c5,a4,31,fb,7d,c6,30,12,3d,b8,03,dc,4f,6c,65,7e,\
5a,c0,4c,5e,34,00,64,d0,f7,ad,bb,f2,57,7d,be,d4,33,a2,64,dd,69,4f,a9,6a,ef,\
79,3e,b7,20,da,7f,03,53,3c,a5,ef,b2,fb,3d,28,49,ad,d8,45,5e,67,05,f2,01,be,\
7c,4f,e3,70,9c,93,6c,1a,18,f5,07,42,ed,cc,c1,9a,97,f5,12,83,84,75,fa,d1,c9,\
5f,50,ce,13,f8,57,81,e1,1a,93,30,f1,d6,db,23,f8,5d,ae,ab,96,21,ca,63,89,37,\
fb,b6,21,00,32,a1,f4,08,d6,ba,d2,2e,5f,72,fe,06,20,97,90,7b,64,1c,48,b9,bd,\
1d,64,49,99,1e,e5,7e,16,94,fc,11,18,a6,c2,08,98,34,29,dc,3e,19,33,da,33,ad,\
62,ca,30,8e,6f,cf,dc,a1,3e,8e,54,53,12,92,0b,25,fd,ef,d4,67,9b,26,3d,43,00,\
49,1f,fe,ef,60,73,7b,4d,0a,67,01,d5,67,b1,3d,0c,ac,24,8b,78,3b,81,71,0d,e4,\
8f,6c,e8,2b,6e,f0,40,be,28,aa,99,5e,89,08,3a,85,31,fb,e2,4b,e7,fb,b7,8a,30,\
4c,7f,41,20,81,12,36,71,3e,0f,e0,d2,42,cf,83,81,a4,97,9d,1c,5c,12,81,b4,06,\
fe,42,24,e3,25,d2,a1,21,8f,6b,92,5c,f6,2e,a1,64,7a,0a,9d,41,96,e0,53,74,53,\
e5,d5,80,bb,47,1b,a9,91,13,10,fc,3f,56,9e,8f,10,82,7c,0a,9f,14,48,66,8f,74,\
d5,f5,7d,1d,c6,a3,33,fd,5c,7b,1f,1f,8c,6d,03,87,55,4e,ed,5d,50,20,6a,4f,89,\
94,f7,30,8d,cd,b8,e5,c4,67,6d,81,01,b8,a1,af,58,55,24,50,2f,ef,bc,66,98,e1,\
18,31,de,5b,05,97,5e,01,e4,c9,99,20,5c,24,87,9e,4c,55,2d,3b,04,c1,71,17,b4,\
24,2e,74,24,78,84,be,a6,18,71,c8,49,25,a6,59,50,29,93,e7,e3,fa,c5,a2,03,e1,\
71,b4,c3,fc,51,c8,b6,e1,ae,c9,a4,84,be,ec,81,5b,31,f0,9f,c0,07,a4,a4,96,a4,\
ab,b4,2f,26,7c,7b,6d,f6,ac,48,28,9d,70,12,d0,da,5d,a2,54,f1,73,8f,42,45,5a,\
6d,2f,29,eb,42,59,f4,f2,39,8b,53,33,9b,41,e4,ab,fa,0d,00,17,af,39,d7,bb,87,\
ae,c3,5c,ba,14,d6,8e,1d,3b,b5,36,98,ba,aa,47,d9,d6,f4,cf,4a,a5,62,37,41,c5,\
20,c6,77,64,d0,68,bc,5b,dc,ae,e9,1b,0b,15,15,ac,53,8b,0c,00,ee,2f,fc,d7,b0,\
59,72,e0,98,da,85,21,a5,85,51,98,eb,ed,a8,23,e5,71,03,9d,0d,76,bf,4a,aa,f4,\
86,75,ea,34,0a,57,30,d8,fa,3b,af,1b,2e,e0,38,5a,25,1f,50,d3,b2,cd,86,ad,f2,\
e3,97,39,81,dc,63,78,ee,5f,c3,dd,6c,1e,1c,54,ca,fe,cf,82,a5,78,81,4f,dc,3f,\
28,a2,44,23,66,6b,9d,35,16,e7,c5,2c,25,1f,2c,07,a4,b2,88,f4,1b,d5,ca,71,1f,\
98,50,b1,27,6b,5c,41,9b,e0,c5,eb,2e,b3,ec,da,6e,07,f2,00,99,f2,28,b5,b3,3c,\
c7,a1,d5,bf,e2,db,c8,e4,98,52,d2,b6,8e,6d,d0,17,9c,ee,85,8b,c7,1c,32,21,70,\
21,67,f8,ca,b1,18,02,91,ec,f3,08,fa,86,f1,ef,e5,25,2c,39,5a,0a,f0,ce,33,f4,\
14,fd,16,41,8b,be,a7,57,36,3a,fb,42,fc,8d,4f,9e,1d,ca,fa,b8,c3,3f,a0,f0,da,\
fb,a9,62,22,8e,fa,c5,83,10,c1,92,a0,65,ff,69,ae,be,a1,b1,87,63,67,7f,fa,b0,\
ca,ba,66,5e,2f,7c,87,04,61,bb,8f,de,3e,28,79,cc,b0,57,9a,9e,e0,21,79,8e,a6,\
47,e0,0e,43,57,33,c5,52,d4,01,d4,fc,91,d9,5d,6c,5e,5f,46,82,e6,9e,3a,cc,d8,\
a0,f1,b2,45,3c,b2,f0,b4,30,16,49,ee,6f,0e,7a,4d,bc,27,6e,f6,78,0d,b0,93,b9,\
4e,25,c7,9b,61,fb,5c,db,e7,dd,9e,a2,30,69,02,9e,01,e3,0c,57,95,2b,6f,c1,e1,\
ec,75,0d,1c,17,a1,c5,7f,90,93,18,4a,26,2d,72,07,c9,f4,50,12,f7,b9,53,59,78,\
78,93,61,4b,80,35,89,e0,d4,b0,93,87,d2,ac,60,29,12,bc,fb,36,91,8e,d9,de,0f,\
f1,60,84,b5,76,a5,70,fb,ca,7a,c4,c9,43,a8,b1,dc,b8,79,ea,6c,96,7a,59,0c,30,\
7e,11,d1,57,e6,85,b6,2b,20,f7,3f,30,6e,33,5d,a5,e9,7c,92,11,c5,c7,55,1e,d6,\
27,b8,aa,53,89,48,1c,db,a1,35,f4,e1,24,b3,a6,5c,38,9f,a9,3b,28,66,cb,b5,5d,\
23,c7,68,8a,07,19,b3,26,fe,11,75,1f,8f,27,18,cd,04,8e,cf,24,cc,0b,1b,2f,1d,\
08,94,b9,dd,e4,e6,4d,c3,8e,1a,62,ba,52,17,cf,86,f3,68,85,a9,f9,3f,7c,88,4c,\
ba,ee,ca,02,66,c4,01,76,01,4d,8c,9a,85,ac,bb,8e,61,b7,35,71,0a,0a,97,76,b2,\
21,5e,3b,57,98,07,57,00,e9,74,32,44,df,92,1a,0b,4d,39,93,98,ff,54,ee,c8,f1,\
41,1d,94,bf,7a,c5,dd,5d,76,95,69,08,ca,d6,28,7c,94,44,bd,68,19,1d,39,1f,ad,\
77,2a,90,d3,d6,d4,78,a6,fe,be,d6,78,06,71,9f,e2,ae,7c,b4,19,f2,bb,11,f0,e0,\
d9,47,de,a6,14,2c,b0,ef,40,d1,83,70,0f,b4,2c,bd,8f,37,d7,62,f4,51,ed,2f,98,\
84,3c,d3,40,0f,52,ac,a1,64,29,de,23,dc,0a,a3,e4,aa,ab,e1,00,0d,9a,02,10,ca,\
df,00,f0,da,dd,bf,c5,60,7a,a0,3f,dd,80,53,1c,a7,42,f8,ee,98,82,3a,1d,03,92,\
54,2f,ec,ba,74,47,78,da,09,ec,a2,50,07,0c,30,1c,82,41,e5,42,7b,52,f9,70,fa,\
fd,c6,e1,5c,f4,c4,81,ef,25,b7,52,bc,3e,27,0e,a4,71,11,0e,af,74,dc,6a,a0,cd,\
8e,62,cd,4c,40,fd,2d,d9,cf,ef,b3,6f,d5,c0,da,69,d8,2b,81,fe,c0,c4,fa,06,8f,\
de,5e,06,4c,ac,23,6b,40,a6,f0,11,65,2f,af,09,1c,74,e4,99,1e,97,3e,83,b5,0d,\
6c,8a,2c,44,32,33,84,8a,bc,c9,68,2a,32,a3,63,d8,8c,a9,51,4f,a8,15,14,38,9a,\
77,88,4e,43,fc,b8,c0,25,ef,52,d6,75,80,58,d8,72,c5,19,2c,f6,fe,bd,be,4b,1d,\
eb,a4,3f,86,1e,02,7b,13,f9,2c,10,5b,48,0b,53,34,19,c2,eb,76,73,91,28,02,45,\
f9,96,03,9d,21,d3,74,1a,78,9d,e2,a4,9c,2f,74,5a,7a,ce,28,cc,b7,9f,5f,6b,4f,\
bb,9c,3d,7d,85,89,d6,da,3b,3b,83,c8,cc,b6,c8,11,ea,b4,0d,cc,5f,a2,94,cb,a4,\
ec,ae,8c,b0,7a,2f,c7,0e,7a,1f,63,32,61,b2,17,0d,2c,7a,7d,df,ec,dc,b8,4d,81,\
c1,5b,b3,a6,8d,86,bb,2d,55,52,2f,8c,4c,70,0b,99,7f,0c,d7,92,c3,f8,33,60,eb,\
06,b3,1d,3e,b5,ee,d3,27,11,d2,87,2f,d4,3a,76,29,d1,c3,9e,ac,93,db,80,c7,41,\
a1,25,ef,c4,d6,5f,3c,2c,f2,51,d5,50,f6,31,a9,b5,65,4d,61,b2,4a,4c,92,d1,15,\
b7,36,77,a5,b7,5d,c8,a6,21,20,c5,1d,af,d7,b7,41,90,8b,d1,8d,24,ae,11,13,00,\
0a,67,13,39,f8,19,cc,df,d2,66,92,c7,ab,69,21,8e,3d,41,31,da,22,6f,4a,e3,47,\
7f,da,ab,9f,eb,85,a9,14,3c,bc,c4,c3,72,91,1e,68,a6,ca,37,17,ee,34,74,2e,81,\
39,68,87,1c,b5,51,f2,a4,06,e6,e2,0c,62,50,66,79,6e,76,5b,a4,0c,7d,e0,80,74,\
8f,0b,1d,86,dc,da,cd,5e,df,6d,85,2a,e3,72,86,38,c5,e0,3c,53,fb,e8,66,50,d5,\
28,77,e4,03,a4,3c,b8,58,ee,c0,c0,cd,2b,6d,c8,c9,3b,73,50,a0,b0,6d,99,59,01,\
42,00,b4,82,4a,8b,6b,93,b3,c2,b9,17,22,c0,19,28,9d,89,50,08,a8,9e,ad,5b,ae,\
cf,90,94,a3,51,29,ae,e8,10,82,1c,6f,46,c0,02,1f,4d,a5,a5,7a,b1,5a,20,7d,8a,\
6c,59,c7,09,14,34,ff,50,bb,07,6f,87,bd,4d,f4,2c,6e,9e,1b,aa,5a,de,84,2e,d1,\
b5,8b,b6,a4,40,27,6a,29,07,12,30,85,2e,2b,7b,2a,ef,18,63,9e,47,2f,fb,7e,f0,\
97,df,c3,90,aa,0c,45,30,9e,f5,7d,ef,65,d2,8f,f8,d1,3c,88,b1,fc,f7,e4,35,e7,\
0f,53,05,61,26,bc,fa,2b,9b,83,7f,59,90,08,fc,fb,96,70,95,fd,6a,a7,15,4c,54,\
a5,25,3a,6d,f1,c2,24,b0,64,ee,52,54,30,a5,1e,59,20,12,59,61,21,03,ea,c2,02,\
9b,b8,d9,78,46,cb,a1,65,f2,ad,84,5a,7d,17,71,5a,69,c9,2e,e1,d7,ba,f0,24,b3,\
71,29,9b,2c,b3,a1,bd,67,5e,c8,9a,74,95,4a,4f,81,1d,e5,26,4d,07,77,bc,e0,90,\
5c,d7,79,45,f6,17,c9,6b,8d,7b,5e,9d,5a,28,62,b7,de,66,85,f3,78,ec,38,52,37,\
5d,1c,3e,ed,12,ba,6d,85,1a,74,08,96,7f,bb,0d,37,cb,83,f1,16,cb,f4,8a,c4,93,\
63,2d,53,c2,80,13,23,08,d1,02,f9,e5,bd,29,51,b3,ae,4b,f6,e6,f3,20,cf,93,82,\
f8,fc,2f,86,a1,21,99,f4,8b,02,5b,c2,2a,51,2d,53,9c,c3,bb,36,8c,69,a9,11,56,\
3e,d3,d8,6b,fc,d9,43,f7,35,db,7e,c2,9e,81,22,54,ae,3f,64,5d,68,d7,8c,54,74,\
1f,a9,5d,75,04,84,70,97,cf,d2,b8,67,a7,ae,ad,e8,57,46,b6,e3,52,d4,d2,7e,f4,\
d0,75,10,0b,63,71,34,96,1f,66,1c,cc,ee,e2,29,61,49,cd,b8,04,ab,05,3e,2c,44,\
45,97,14,f1,4b,9b,04,6c,3a,f3,d3,c0,3d,2a,aa,01,6d,07,0a,39,f5,1b,11,a5,73,\
96,f9,22,a2,5e,e1,e2,36,63,d0,63,08,2c,f7,a2,73,e1,36,8b,fe,7f,e2,b5,3b,de,\
c6,4c,ee,95,67,4e,72,a9,8c,fb,59,72,fe,86,53,ee,8d,11,51,5a,53,d8,ea,04,3d,\
ad,fd,5b,c6,a4,98,48,06,0f,18,c1,ec,ad,92,9a,c7,1e,72,9f,0c,9a,62,e1,53,e3,\
6e,4d,a2,78,65,83,ee,0c,82,e4,df,36,4b,ed,d4,6a,ba,c4,a6,28,9b,11,b2,73,35,\
0f,92,85,2c,e3,2a,c1,a6,2c,6b,e9,ad,db,53,91,d4,45,b4,d4,1e,76,37,45,1b,c9,\
a0,28,54,b5,54,e3,e9,ea,18,af,79,9d,1b,93,42,20,37,93,8a,b5,74,24,3d,a4,ce,\
e4,d7,8b,38,88,84,f6,e0,16,86,2f,b5,54,d8,57,26,80,11,b6,2d,b1,8a,50,8d,de,\
c3,b9,57,ae,03,2a,b3,cf,3f,d3,dd,1b,3d,73,6e,58,f9,27,dd,af,48,7f,45,60,bb,\
d7,69,b3,c6,e5,f5,32,22,8e,06,15,6f,fe,ed,fe,1e,f7,30,e7,8e,69,d2,58,75,44,\
d5,dd,82,8a,fc,b7,41,a8,d5,d2,3e,06,f7,f7,6d,dd,89,43,c9,48,04,d8,ae,9f,39,\
d2,bf,00,95,7c,c2,2e,a4,c4,ce,9f,d4,ed,69,d0,7c,84,3a,dc,1c,95,6d,4d,e6,1e,\
59,32,7e,c4,60,71,ff,c5,17,5f,3e,2e,a7,8e,52,4e,73,e6,54,6a,fc,f8,63,b2,01,\
8e,eb,74,ea,87,27,90,66,e2,e5,2c,54,18,8a,a9,df,af,55,d5,ee,0c,e8,62,bb,ce,\
04,96,c1,c7,94,45,dc,45,ed,fd,ac,32,54,80,3a,80,c0,77,de,3a,e2,64,60,17,63,\
d9,5d,4f,6d,e7,ec,ad,6c,da,82,e6,16,23,13,29,a8,96,7a,f7,73,d6,1b,35,98,0d,\
c7,80,10,e0,df,c0,ef,a1,bd,00,e9,c7,4f,7c,15,9c,05,fc,f1,36,ee,61,a6,a8,1d,\
7e,d1,79,52,29,f4,56,d6,91,1b,03,a7,d1,81,97,d5,c6,64,e9,2c,1e,86,46,13,b2,\
2d,65,b4,16,6f,9c,5e,6e,ac,53,27,83,5c,b9,d5,16,0b,b7,ff,73,a1,22,6f,4a,e7,\
35,cb,bb,47,3e,74,b0,d3,97,af,6f,89,d8,03,6f,d6,4b,e1,6b,58,a1,8a,b6,e8,e3,\
2e,ce,d8,dc,51,33,79,93,73,7a,e1,ee,f0,9d,eb,b6,25,95,7e,c6,d4,2b,13,49,ca,\
0b,71,73,bf,1a,bb,6e,7d,09,ad,98,44,2a,23,eb,6e,83,db,bc,4f,21,7b,a9,5f,af,\
d6,cd,9b,47,6b,35,28,88,2e,98,3a,e9,8c,42,34,4d,a9,52,10,d7,ec,25,02,ff,bd,\
12,58,e6,8d,58,da,e6,17,54,1e,6e,e6,f8,44,0d,18,78,c4,cc,61,46,9b,c1,52,41,\
7d,e1,dc,29,78,16,10,57,d4,91,28,ab,3f,62,cb,c5,26,46,8d,78,66,c0,b5,7b,24,\
6b,44,62,f9,8e,33,cd,53,f1,fb,e0,18,ef,5a,f3,8c,cd,55,8a,74,4a,79,87,7b,77,\
67,9e,d6,c9,90,0a,24,c3,3c,7e,98,db,d1,5f,59,ae,52,30,29,b3,26,4d,45,40,1b,\
dd,8d,c7,aa,02,e5,aa,7c,52,db,51,2e,8b,8a,7a,51,82,be,d1,b6,5d,58,c1,e8,02,\
f5,89,f9,cf,ca,92,82,8c,d2,00,e5,9e,2c,87,d5,7d,be,80,19,68,1f,3c,8c,57,b4,\
98,69,31,19,d1,c5,3f,c2,9a,94,5d,e0,e2,6c,92,7f,8b,1e,b2,c3,17,b5,79,05,c8,\
7d,d8,07,ab,58,f4,e3,c2,57,72,41,61,87,f2,cd,d9,0e,d9,e8,54,76,54,9e,00,48,\
99,d9,70,dd,70,d4,3e,71,f3,d2,f6,79,92,0f,2f,36,5a,f7,fb,8b,76,96,82,0c,f6,\
50,e9,57,cf,d2,79,a7,23,48,fd,a6,e6,d0,6b,83,f2,2f,c7,45,6c,c3,45,5f,a7,b9,\
ae,84,59,80,04,bc,3a,7e,69,b8,0b,01,3d,62,d7,78,87,b9,79,e3,96,dc,5e,88,e7,\
64,8d,e8,4a,f7,e4,f1,41,1a,a4,75,a9,47,2f,db,9c,40,11,15,95,a2,3e,d1,d5,bd,\
9a,f4,06,a3,bf,44,1f,7f,fa,64,87,29,96,98,7d,f7,5e,5c,b7,d5,5d,cf,49,98,e8,\
f4,c9,8f,de,bc,b1,5b,2f,ea,04,01,9b,cb,35,3e,bc,21,44,1a,47,60,2a,c0,8f,1d,\
77,8d,4b,c3,3a,67,98,88,21,50,42,9f,e1,3b,3f,af,d8,1e,7c,85,f1,48,dc,05,c9,\
f5,7e,67,10,20,3f,a0,31,98,81,1d,35,56,2a,b7,f4,0e,ef,e4,2e,04,d2,2a,ca,21,\
e9,da,1d,46,62,fa,5d,e0,c4,83,f6,bd,77,cc,2d,1d,87,47,03,0d,a5,6b,5c,f0,6f,\
f1,60,5f,f0,43,22,33,6b,32,7f,df,54,e7,49,03,a0,1c,a5,3f,3e,8b,b2,45,e6,a7,\
6c,33,11,8b,cf,1f,48,30,3f,f3,a2,e2,27,7b,89,f5,e1,e4,bc,b4,d6,88,9a,9a,e6,\
4f,9d,c5,09,38,25,a7,37,70,77,ff,86,c2,05,07,92,69,ef,ef,22,22,cb,8b,09,84,\
a1,48,49,94,3a,65,7f,95,9b,60,7b,1d,cc,ae,2e,6e,de,ae,c9,02,2b,e0,23,68,e0,\
52,5b,4f,b9,5c,bf,e0,0c,8d,ed,52,09,e5,38,b8,40,45,4e,1d,bf,23,17,d2,4e,82,\
e0,07,44,22,b8,99,7c,f4,1a,2b,dc,d0,cd,78,04,6a,09,e7,8e,83,db,60,94,5c,ca,\
5f,73,70,bb,47,cf,62,12,f8,d8,35,1a,a3,cb,bb,a7,dd,bb,50,fa,f3,91,c7,e4,7e,\
51,a5,2e,37,a0,8d,39,0c,83,fc,e2,73,6a,36,a8,fe,6d,81,11,2f,d5,d1,49,8e,de,\
42,0d,fa,bb,8d,c7,3d,db,b4,fb,e2,6b,c1,e1,4b,1c,2f,53,fe,26,e7,ea,40,8d,6d,\
65,e5,a3,5c,4a,66,ce,10,cf,34,8b,a2,fa,4c,b3,19,08,0c,fd,de,0c,45,c5,71,d8,\
91,0c,5b,20,e7,bf,63,dd,6c,3c,05,f0,8c,12,20,08,4a,08,ef,c5,d4,61,3a,a2,5b,\
5f,ce,00,21,06,2a,37,d4,22,7b,92,1a,8c,cb,42,6d,a8,75,84,29,32,dc,7f,e3,3b,\
5c,70,fd,6e,81,04,77,98,77,05,08,67,c2,39,6e,72,2f,88,02,7a,0b,5c,8f,f0,92,\
4d,64,b7,aa,fe,a8,2a,d2,42,ee,61,55,84,09,b0,c3,65,22,71,a1,a6,07,04,60,49,\
e8,13,8c,f3,7b,1b,46,95,66,28,f4,4b,41,df,37,84,d0,c2,1d,64,b9,b0,99,66,96,\
ab,30,46,49,de,f4,1e,8f,df,b6,cf,d8,31,78,a2,57,0d,21,2f,55,62,74,7f,ca,1a,\
43,6d,2e,9f,e0,52,8d,9e,d5,e1,da,0a,d5,4f,85,65,f2,b7,4f,3b,0f,be,5d,ef,99,\
72,8c,e2,72,78,05,f0,2e,67,11,85,82,6f,2e,d0,f9,3e,62,90,e9,24,cf,2d,a6,75,\
88,3f,f5,2f,a3,54,c4,dc,8f,ee,18,ba,a8,cc,46,1a,09,6b,66,06,a2,cb,05,26,8a,\
76,1a,e4,96,bf,3b,cf,2a,48,11,3d,4f,c7,0a,35,06,09,4d,8c,dc,36,f3,4d,bf,58,\
74,5e,10,17,bd,61,f9,c6,4f,d9,01,a4,1a,8e,de,5b,4b,32,8a,cd,d3,44,99,10,fb,\
35,c9,b7,9d,ca,db,54,94,c1,a1,3a,71,b7,59,88,6f,49,39,63,a9,7a,4b,82,8b,54,\
7b,f0,87,d2,ee,0d,09,fe,96,d6,ac,57,04,67,ae,75,7d,be,a1,f0,4f,c2,64,7d,65,\
84,52,5a,1a,c4,b9,f8,4b,b7,8e,a7,b0,07,5f,2f,6c,1c,88,bd,e2,9a,aa,c3,cb,2b,\
59,d3,85,7e,15,bd,ae,8f,7c,f7,f2,2a,bd,43,21,aa,50,8b,85,07,e5,10,72,10,9a,\
c3,1e,f4,70,f3,b3,07,00,29,a3,c3,6a,51,3c,0d,8f,1a,7c,ba,80,9e,26,52,35,46,\
15,14,83,e8,d1,3a,48,33,bd,7d,e8,4d,5f,dc,fe,ba,50,9a,4b,80,36,86,f2,89,5f,\
7e,e8,48,82,36,a6,9f,09,36,21,01,b0,22,fb,d4,4f,3e,fb,19,f4,31,bb,4e,35,09,\
a0,93,c5,80,0f,0d,44,7e,de,88,5c,df,09,60,09,75,a7,a1,38,51,1c,6d,94,3e,8f,\
9e,9d,8f,9e,ad,fa,1b,51,d2,10,cd,4d,6d,d3,c1,4b,a5,dc,d3,c8,4f,bc,da,fd,11,\
91,4e,11,c7,d6,86,8e,25,80,7d,11,9e,46,d5,46,85,40,1c,14,73,b3,4f,15,e8,2b,\
9c,49,35,cb,6c,0b,99,e2,a1,44,aa,be,1c,de,f6,c5,83,7c,eb,c1,41,68,f4,7c,ce,\
cc,e5,8d,30,26,99,71,c2,f6,d9,de,34,e2,80,53,d3,1b,dd,f4,0a,69,59,95,29,45,\
5a,15,66,9d,67,ed,21,dd,8c,08,6d,64,00,d5,cb,35,05,9b,38,f0,10,0e,6b,00,2a,\
1f,58,15,96,18,f8,d5,b4,e7,4c,ce,25,ba,9f,b0,30,cd,0c,b9,64,80,41,70,7f,ad,\
82,96,8f,38,f1,5a,57,e8,0c,cc,f4,75,77,94,e5,e2,fc,e4,77,0c,d0,ab,99,83,18,\
0c,0f,9a,ab,0e,10,ba,1a,95,46,fc,ed,91,2d,f6,30,75,bc,d4,2f,ea,48,ab,7d,c5,\
a5,0b,3b,37,8e,d3,96,44,47,4a,92,77,80,6b,06,d3,7d,7f,e8,0c,74,f2,cb,f7,37,\
5f,a6,40,12,ed,d7,5b,f7,de,68,bd,d8,65,90,4b,55,e2,7d,13,97,67,50,3a,7c,ec,\
6a,35,f4,83,e6,3c,aa,3c,66,fc,e8,4e,13,8d,b4,ae,df,a3,3f,e0,0d,08,81,0d,f4,\
4a,1d,57,00,b0,8a,69,f9,73,74,52,88,2b,60,93,f7,88,90,76,38,42,26,a2,29,53,\
8b,ed,16,63,12,71,7f,84,d9,e2,1c,1f,f0,1e,1f,2e,be,06,e2,ac,a0,8d,df,4a,d2,\
0e,4e,64,93,e3,cd,33,84,33,b2,44,52,0b,a7,29,94,b1,ae,6e,f7,35,63,ce,98,48,\
81,a7,b1,51,a8,ac,78,be,5e,da,44,98,53,ad,f2,5b,e9,93,87,04,f3,a1,16,6b,bd,\
85,e4,d3,4d,bc,cb,c0,e9,04,dc,08,d9,15,48,2d,6e,8c,81,ea,44,a6,9c,0c,c3,38,\
fa,83,ec,54,27,b9,52,4c,02,22,66,5e,1f,15,f8,ac,69,da,fb,ec,0c,04,89,62,92,\
01,26,0b,4b,ef,49,1b,f3,b1,18,aa,8f,43,74,ab,98,4a,35,1d,5b,f0,b7,85,a0,ee,\
95,9b,8a,ea,b4,44,be,04,84,c0,c7,ac,82,25,b9,b6,01,0c,15,b0,2b,8a,f8,73,43,\
62,49,f8,2c,78,c8,6d,2f,89,8b,88,f9,1a,4e,1c,e3,ae,d8,ea,77,3c,96,b9,2f,e0,\
83,a8,7f,d1,4a,c4,16,93,af,d6,61,6e,2b,7e,52,1e,d6,86,5f,cc,8a,70,cd,3d,46,\
51,2e,4a,d0,e2,29,90,9f,d5,79,68,f7,65,38,19,56,31,5e,4d,0f,4a,84,c2,35,cf,\
ee,42,ba,29,c9,d5,d8,8a,b1,35,b0,5b,77,82,32,dd,20,37,3c,7f,31,5d,06,b2,29,\
fe,bd,f9,50,dd,6e,3f,af,64,26,6e,60,de,57,3d,08,e6,7e,49,a1,20,03,68,7d,27,\
61,3a,87,c6,86,00,cc,6a,7d,b2,3b,d7,4a,4b,a9,1b,16,68,18,c0,8c,11,39,46,82,\
d7,a9,d0,dc,1f,96,1e,ad,bd,c4,bb,a0,c5,4f,78,97,9d,cf,18,91,57,e5,4d,d1,3e,\
7c,e3,3c,af,4e,3c,04,2b,aa,fc,83,a9,75,05,69,31,6f,a6,1a,a6,b8,0f,52,e3,93,\
09,0b,0a,69,e4,a0,19,11,b0,32,bf,4e,af,4b,6d,9a,0b,c1,af,22,c5,de,bd,11,ee,\
bd,4d,11,a0,f7,ac,0f,10,7f,0d,3f,c6,cb,21,61,8d,35,e8,42,89,a0,c6,85,65,5e,\
d9,a3,44,51,8a,31,fb,51,62,62,7d,ce,1f,cc,96,b7,08,6f,dd,9a,7d,f3,e3,0c,d2,\
31,b1,4b,5d,f5,72,22,ce,02,6c,0d,bf,57,35,9e,8c,b1,23,1f,65,51,04,79,a2,ff,\
0f,54,56,4f,1b,cb,26,23,0f,94,5c,71,9a,d5,37,47,24,59,85,0c,04,6b,74,08,f3,\
32,a6,26,c0,8e,83,f9,46,43,d3,fe,9b,59,8c,21,8b,c2,e8,82,45,3e,bb,78,53,7c,\
04,d6,d0,82,c2,6e,d5,4e,09,d4,34,be,54,64,69,ad,1d,87,cd,5f,ab,31,0d,1f,2c,\
ae,db,26,03,9f,e3,bf,bf,40,01,a9,1d,ec,b1,bd,b6,e2,c6,d0,bd,49,60,db,5b,72,\
18,59,2c,5e,7d,f1,4d,80,c4,55,b7,c3,bb,6a,cb,cf,ff,a9,2d,88,6f,c5,d6,d8,e0,\
8e,65,af,12,15,b6,48,e3,11,b6,ad,c3,81,76,7d,68,93,7e,ed,c3,c5,63,0d,32,4a,\
9b,4c,f7,af,91,3f,e9,be,f5,d7,69,a3,56,8f,98,4d,f2,28,c7,17,cd,2f,2f,a8,00,\
24,e3,17,54,81,02,53,0f,40,31,c3,0e,9e,49,29,14,1f,4c,cc,62,d2,9e,d6,88,d6,\
72,fb,7a,1d,82,5b,e6,70,03,aa,c5,b3,d8,8e,30,6b,06,48,76,7d,68,97,6b,38,a3,\
d9,03,96,5d,74,1f,bf,aa,74,a6,cf,e8,75,d8,d9,0b,c4,df,2c,1a,c1,a7,d5,5c,88,\
f0,64,ae,d0,a2,f3,57,12,60,65,3d,ee,5f,ec,58,cb,79,ce,68,bf,7d,68,e3,ae,ca,\
73,32,b5,1c,86,1c,c9,a5,dc,83,9b,60,58,4e,bf,a2,c6,a6,0e,f1,64,65,49,1a,a1,\
cb,fe,7e,24,73,b0,ad,10,86,32,36,87,2f,b8,bc,6c,4f,c1,4d,6e,71,28,f0,42,00,\
9a,7d,2f,b7,33,b2,d0,5a,fd,82,16,a4,11,b0,8c,80,00,9d,df,7b,71,5e,9d,7a,0b,\
12,3d,a8,95,73,60,b3,5b,aa,56,38,d4,68,e4,7b,83,32,44,5c,1b,fc,6e,87,e6,fa,\
96,ea,67,b3,f6,6c,3e,57,cd,dc,4d,52,a8,27,19,a3,e0,cf,73,65,64,98,57,36,b8,\
84,14,b9,3e,02,ad,f5,b5,63,80,e2,ff,8d,25,c3,27,f3,99,b6,a2,c5,9c,8a,d5,63,\
57,d0,d8,18,42,35,7a,05,45,0f,85,5b,1d,35,42,cd,02,14,40,46,87,ff,52,d7,c1,\
c7,d7,f3,ab,8c,3e,de,c9,d2,c8,63,0c,d7,90,c5,f6,24,e9,f9,fe,63,48,12,36,70,\
42,fd,2b,b2,56,6e,0d,ac,ce,1a,10,cf,22,27,11,93,bd,e1,7d,c6,04,ae,6f,23,95,\
44,18,26,cc,19,64,1f,8c,1b,da,85,3c,a2,c4,8e,0f,a3,91,fc,89,26,77,3a,3f,fa,\
5c,a7,de,a7,f7,32,6e,a4,33,27,d8,ca,d4,48,a6,09,5c,20,0b,bb,30,94,23,f4,f7,\
bb,7b,c3,43,f0,d4,16,73,25,24,97,d7,79,de,81,16,0d,73,0d,cd,14,19,2d,79,2a,\
cb,7d,97,e7,91,77,09,b3,01,e6,bc,dc,06,9d,88,e5,e0,68,58,22,6c,43,8a,81,a6,\
ca,99,ab,6c,f1,f9,4c,84,f5,42,ae,e1,92,91,8d,22,77,2b,27,5c,f7,bf,92,19,01,\
c0,52,a1,52,57,2b,78,e9,7e,34,27,bc,a3,2d,3f,a9,79,12,9c,af,55,f0,e7,5e,d8,\
f8,5e,8c,cf,d2,d8,4a,57,33,03,16,45,b2,f1,52,c5,d8,d3,f5,40,76,04,81,84,3b,\
49,35,1f,85,56,83,0b,78,95,c4,91,4d,24,2b,67,ed,1c,f8,1b,bf,19,ee,b5,e4,f7,\
06,98,ce,d9,65,aa,50,70,8c,b5,f4,7a,cf,0c,ce,88,08,71,ad,05,8c,36,a8,74,5e,\
a3,f9,f9,a3,98,0e,1b,56,73,de,c8,3d,34,7a,99,1c,df,e4,58,28,22,23,c0,be,38,\
97,83,55,0d,8b,91,b2,a3,09,98,5a,b4,f2,c7,4d,99,4d,d8,f1,6a,e0,4d,4d,67,fd,\
fd,77,97,9f,c3,50,ae,b5,a7,6e,34,be,fd,5a,e4,96,fe,fc,53,90,84,53,d2,c4,11,\
69,94,ab,13,87,14,e9,67,a5,b1,69,1b,24,9b,af,78,c0,f3,6a,40,c0,2e,49,34,6f,\
bb,10,d9,d0,e5,eb,7c,8e,fa,02,74,32,ad,4d,a7,98,b9,aa,4f,a4,c7,2d,fe,31,92,\
b7,e0,b4,49,ca,41,9d,34,9b,4f,2c,9b,69,20,46,e4,0e,f7,b6,fb,d4,c3,3a,f6,89,\
e8,37,fa,d6,42,aa,58,cc,67,62,fc,c0,2d,6c,08,59,6d,cf,bc,e7,06,7a,99,f6,24,\
7b,c6,23,c2,72,b2,2f,6d,44,fb,52,4b,14,8f,d2,5d,6f,10,d3,01,c6,7d,71,bb,22,\
10,0c,34,13,be,e3,83,e9,d5,e5,ac,27,33,c3,66,35,93,4a,22,55,7d,f0,48,d8,4e,\
ad,c4,92,dd,0c,c1,8b,5e,81,b4,f7,87,fd,9d,69,f2,c0,89,43,c3,6e,5c,71,8a,66,\
cd,57,6a,4f,b2,07,7b,f3,7e,b8,6e,51,08,73,70,ed,8e,10,50,6b,f9,61,e3,5c,62,\
ad,a8,58,d6,60,a8,b6,56,00,a0,16,22,63,62,50,37,20,79,69,17,43,0c,f9,c8,45,\
04,56,1f,3b,71,62,3e,4d,2a,a8,5c,6a,b4,a8,c4,3a,66,6e,21,54,ca,6a,f8,b2,45,\
7b,76,61,fb,4d,6c,7d,ed,e5,98,5d,64,7a,26,0b,93,87,76,f7,78,1e,20,ec,03,7f,\
36,42,7a,e9,c8,56,1c,b0,de,37,04,90,81,a2,51,41,eb,31,84,4b,21,cf,29,1c,ad,\
6f,ba,58,71,fd,c0,70,e9,95,3b,76,b0,f4,44,30,46,2c,f1,6b,10,9b,79,91,a0,1d,\
99,7e,37,81,36,90,88,3a,43,fd,bf,57,e5,6a,c2,b5,d5,b9,b7,74,06,22,c6,a7,89,\
85,20,50,ad,fe,40,8b,6a,ba,70,99,00,0a,90,c0,db,b6,13,e1,ba,94,4a,0b,10,59,\
e5,be,aa,ae,b6,12,93,87,b9,a9,35,b0,52,e2,c0,a8,d5,4f,d0,b3,4b,6a,49,2b,74,\
83,86,17,08,fd,b4,fe,42,ba,78,fd,9f,d4,d8,18,e3,8e,58,ce,5e,8a,63,f0,6d,3c,\
ed,b3,43,9e,57,03,ea,25,93,1a,84,f4,ce,52,d7,50,b8,37,09,55,20,e1,a7,e7,5f,\
80,ec,ea,1b,39,41,b6,a1,31,00,c5,cb,e7,7d,af,27,c6,47,59,55,fa,ab,69,b1,84,\
7a,fd,32,89,0c,9c,92,f0,85,6c,b0,2b,57,a6,32,55,08,48,6e,7e,36,09,8b,43,d8,\
92,e3,a1,c6,eb,ac,0a,7c,34,d8,b9,1b,95,39,b2,b0,77,e9,70,b9,f5,e9,48,e5,8d,\
08,71,1c,1c,07,b8,bf,09,fa,ed,31,c0,f1,f4,96,62,d8,19,db,ba,9c,a4,f6,74,8f,\
ad,6f,89,0e,32,1f,fe,61,67,37,ce,e2,4d,85,24,62,86,f3,ce,c8,68,51,ef,fb,50,\
54,f4,03,39,de,c9,6a,8d,7f,4c,e9,3a,3c,02,40,09,d1,08,66,2b,b1,4d,e2,15,14,\
ff,79,8e,33,43,09,07,8e,29,b5,2a,f0,df,42,b5,f3,24,c1,89,c6,00,6f,fe,2e,b3,\
d9,7a,cb,eb,44,42,9d,3a,4b,90,c6,c6,ca,e5,92,43,fb,a0,b4,1e,df,d0,d2,fb,e0,\
47,45,62,b4,ef,1a,b5,84,61,5c,66,4e,b4,95,66,88,93,92,f3,06,93,67,28,1d,c3,\
b3,ee,09,84,25,b8,8c,9b,3f,8f,d8,84,5a,f8,af,09,eb,26,c9,14,04,6d,76,c2,1e,\
fa,84,b8,15,c2,63,ba,74,b8,87,79,f3,43,0e,ad,3e,ef,a3,64,f8,62,a2,9a,00,92,\
7c,09,f3,36,5d,42,f2,7a,0d,fd,a5,f7,14,ae,7f,e2,22,59,44,84,de,a6,c9,ea,dc,\
38,fb,dd,a4,3b,23,14,31,3c,68,a9,87,3e,96,ca,69,0a,1e,b1,7a,c6,5d,d6,a2,c9,\
21,63,b3,ae,69,e8,4d,a7,6c,50,fe,14,dd,13,ae,55,6e,ae,3b,dc,93,50,60,86,88,\
d7,db,2b,95,fa,cf,73,90,c8,67,ec,a4,51,bc,5a,52,a3,f9,4e,b5,f8,bc,fd,0a,2d,\
c0,44,6f,76,b9,19,eb,51,80,04,af,b8,70,ff,9c,9b,10,89,05,8d,f2,f9,b5,bd,db,\
11,34,29,23,d6,46,0e,5f,9f,b5,a3,3e,6d,50,06,b1,7a,34,77,4f,15,4a,c4,f7,ac,\
11,04,b7,2b,9e,88,ec,84,e0,0f,ab,8f,29,39,60,15,ea,3f,b5,27,be,e0,b6,b5,dc,\
9f,32,5b,a4,2b,64,7e,52,1f,d2,98,13,eb,76,d0,44,12,1c,ce,bb,97,0b,cd,98,b1,\
e7,f2,3e,c6,d6,dc,9c,97,e2,7c,b1,b8,9e,27,4f,44,0d,e9,1f,ce,bf,1d,e5,9b,3d,\
3a,05,0e,a7,f0,46,63,9c,74,d7,a0,5a,17,8f,c9,27,1e,79,54,ef,ce,90,dc,2e,c6,\
c7,a0,10,92,4d,10,d7,7c,0e,87,7e,a5,7d,bc,9c,55,91,57,8a,90,0d,9c,c8,ea,05,\
e5,9d,9b,9e,50,fe,d6,15,b5,b1,57,03,db,b2,3b,df,eb,d6,15,c4,24,ae,3e,74,d1,\
ae,6c,9d,78,8f,87,5c,55,f1,b8,00,06,45,c2,10,88,ea,95,8f,62,96,20,7e,20,f8,\
68,a3,03,d6,d7,89,f7,0e,d6,c8,c5,42,9d,86,8a,33,4a,3e,68,cb,31,c0,7b,03,74,\
7a,0f,4b,d3,f5,10,2c,c5,a2,c1,2c,c7,d7,b1,f2,f4,15,eb,aa,d6,8c,6e,ab,7c,e1,\
dd,57,cc,2e,77,43,1b,4a,48,98,fb,4c,a1,ba,54,4a,c7,27,b7,66,e8,a1,ee,0c,53,\
8f,d8,75,e7,a1,c6,70,cc,b3,3b,61,62,f4,b3,8a,77,47,41,89,bd,e9,3e,22,7b,54,\
4e,3f,82,64,ed,35,63,b9,4b,49,df,5c,5a,73,9f,a5,25,61,25,5c,63,bf,03,1e,4c,\
b6,4b,02,ab,b3,46,7d,35,69,69,83,19,19,84,ef,d8,11,3d,25,57,72,bd,f6,32,37,\
a9,c3,54,73,54,e6,c5,f0,33,4d,c2,83,91,68,13,ec,83,46,99,3f,1f,fb,27,d4,e9,\
44,92,f6,8e,6e,0c,ea,d5,73,ad,2d,d2,66,53,fe,5c,12,ac,1c,c2,de,91,d1,ba,f4,\
96,2f,9a,a3,df,9a,cb,01,35,86,7a,d4,58,82,90,b3,97,76,e5,68,9f,29,b0,99,91,\
06,42,a7,57,1f,f5,d7,37,72,bd,b0,a8,6b,cb,a3,65,ab,e9,f2,c1,08,c4,ca,3a,d5,\
f5,b2,50,63,16,29,97,c7,7a,8b,0c,de,1b,35,a5,8f,d4,e9,2c,50,d1,74,4c,ec,43,\
8e,ec,83,58,01,bd,d2,6a,0e,0f,b4,76,0c,e9,e9,d1,52,58,17,16,57,07,0e,63,18,\
10,50,c5,ba,12,d1,f0,71,84,fb,34,d8,49,f5,ac,42,84,25,b9,88,ad,f4,ae,c3,e4,\
d1,cd,85,86,78,73,03,ff,74,8f,be,df,e2,58,63,2f,79,40,ef,05,c7,23,16,56,bd,\
c5,e6,0c,6e,7b,a8,58,14,28,07,4a,54,6b,73,9f,c3,17,c8,d9,a8,e4,2b,95,03,64,\
35,1a,cf,38,54,2e,85,83,6e,2d,e1,9f,c7,bc,e8,0f,24,7a,2a,b5,30,98,45,45,20,\
2b,aa,fa,93,60,a4,88,bc,af,95,51,c2,b3,83,db,67,39,d4,82,e8,96,56,6a,25,3e,\
83,b8,02,93,02,02,0d,fb,70,03,61,35,61,94,ca,ed,a2,d7,2a,8e,c1,b6,1b,57,d0,\
8c,d5,b1,65,21,52,c0,e5,dc,b1,38,03,34,d8,72,cc,68,5e,be,44,70,a8,fb,7d,33,\
52,66,47,fa,d0,b0,5c,25,55,53,1e,1c,f3,25,db,89,04,2e,4f,c5,ca,b7,6a,8f,52,\
a3,54,04,9e,03,ae,cb,02,e4,1b,91,cf,6b,00,b5,2f,25,87,44,50,98,ea,27,c5,1e,\
ee,9b,29,f3,ad,e2,05,8c,99,38,f3,2a,be,09,04,b0,47,be,60,b1,44,a4,2c,ce,ab,\
7f,b1,3f,9c,1e,ba,af,e9,a0,3d,4d,d5,c8,3e,20,1c,f5,f1,9a,34,54,1f,71,d3,54,\
ca,aa,b1,5a,14,f6,8f,b6,5d,42,78,d6,ac,8a,47,ba,50,ee,69,a8,c7,07,e4,21,de,\
7b,98,13,1a,cf,c5,50,57,7d,ce,3f,af,47,3d,d2,9d,ca,06,b8,be,56,10,d3,a8,fd,\
f1,ec,66,ea,f9,a6,03,f4,73,b0,be,73,27,3f,4d,53,23,bc,c4,67,bc,b9,b9,ff,cf,\
2a,a6,bc,4c,d2,8e,a3,f6,fb,e4,71,64,6a,a8,2e,4c,92,d3,05,00,08,f5,53,39,37,\
1d,fe,14,55,f9,08,5a,95,3e,64,04,9f,4a,08,ff,3d,08,43,2c,57,15,b7,ab,21,21,\
2c,59,93,97,a6,97,19,80,b5,4e,8d,a4,0e,2f,62,f3,f5,40,22,24,53,94,1a,9c,09,\
59,53,91,84,18,c5,6f,91,39,c8,7b,73,c6,cb,b6,33,70,48,04,38,d7,f7,8d,17,06,\
43,64,ac,3d,fa,66,6a,f4,48,65,ef,1c,e6,86,dc,a8,8f,e8,e3,4c,b4,87,21,cd,70,\
5f,af,d9,be,d4,74,60,ea,51,3d,83,45,30,0f,04,1d,da,bb,3e,ec,2f,b4,af,d0,28,\
1e,b3,3b,ba,27,92,ec,fe,9a,bd,1e,90,b1,55,ff,34,2b,ed,63,c0,9f,91,ba,36,10,\
07,3f,30,c1,54,73,81,4b,82,ca,19,ec,a1,a4,29,22,0c,7e,88,79,ed,6a,55,a1,04,\
e4,de,c3,a4,07,c1,15,fe,48,51,ad,a1,60,3c,92,42,c8,6a,19,b9,80,28,6f,4d,48,\
85,72,31,13,fc,c5,4e,b9,54,23,43,ec,c5,f3,ab,6d,5c,1d,9e,7f,a0,1d,7a,9c,76,\
55,e3,68,42,a8,08,e3,4f,44,28,e2,71,bf,55,c0,e9,66,79,51,88,d2,96,17,17,bb,\
52,b9,fc,11,b2,b0,05,49,26,44,c0,f5,c6,b7,ae,98,db,c0,fb,b8,a1,3a,64,35,4b,\
1e,53,d8,48,af,4c,2f,c5,f4,87,99,73,6b,df,9d,8a,fc,ea,80,0d,2c,6a,16,50,93,\
e4,d8,b8,90,8e,37,c3,3b,6e,30,48,9b,c1,21,ff,19,9a,db,43,35,cb,f8,17,78,08,\
6e,68,aa,4a,bf,91,44,72,46,24,28,2f,15,e8,90,21,00,1e,45,3f,38,09,11,76,ff,\
ad,76,92,02,d6,a0,62,ea,5c,99,17,2e,a6,bc,ee,2b,6d,6c,0f,76,c2,05,b4,71,53,\
13,8d,1c,ea,c3,63,2e,36,96,fc,65,ce,5d,40,1a,73,61,99,18,95,e2,a0,ae,19,c3,\
f5,03,5a,83,6e,aa,c3,6f,75,76,aa,16,ab,90,68,fe,d1,c6,07,95,e9,26,34,6a,98,\
cc,68,9d,cf,f8,b2,94,aa,63,b7,f0,99,d4,f7,c0,bd,ee,52,f4,95,4c,ca,14,d9,d0,\
8a,00

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer\Run]

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"dontdisplaylastusername"=dword:00000000
"legalnoticecaption"=""
"legalnoticetext"=""
"shutdownwithoutlogon"=dword:00000001
"undockwithoutlogon"=dword:00000001

[HKEY_USERS\.default\software\microsoft\windows\currentversion\policies\explorer]
"NoDriveTypeAutoRun"=dword:00000091
"CDRAutoRun"=dword:00000000

[HKEY_USERS\s-1-5-18\software\microsoft\windows\currentversion\policies\explorer]
"NoDriveTypeAutoRun"=dword:00000091
"CDRAutoRun"=dword:00000000

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\shellserviceobjectdelayload]
"PostBootReminder"="{7849596a-48ea-486e-8937-a2a3009f31a9}"
"CDBurn"="{fbeb8a05-beee-4442-804e-409d6c4515e9}"
"WebCheck"="{E6FB5E20-DE35-11CF-9C87-00AA005127ED}"
"SysTray"="{35CEC8A3-2BE6-11D2-8773-92E220524153}"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^chris^Start Menu^Programs^Startup^bs5-zxlbme.exe]
"path"="C:\\Documents and Settings\\chris\\Start Menu\\Programs\\Startup\\bs5-zxlbme.exe"
"backup"="C:\\WINDOWS\\pss\\bs5-zxlbme.exeStartup"
"location"="Startup"
"command"="C:\\Documents and Settings\\chris\\Start Menu\\Programs\\Startup\\bs5-zxlbme.exe"
"item"="bs5-zxlbme"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^chris^Start Menu^Programs^Startup^initial.cfg]
"path"="C:\\Documents and Settings\\chris\\Start Menu\\Programs\\Startup\\initial.cfg"
"backup"="C:\\WINDOWS\\pss\\initial.cfgStartup"
"location"="Startup"
"command"="C:\\Documents and Settings\\chris\\Start Menu\\Programs\\Startup\\initial.cfg"
"item"="initial"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^chris^Start Menu^Programs^Startup^saapau.dat]
"path"="C:\\Documents and Settings\\chris\\Start Menu\\Programs\\Startup\\saapau.dat"
"backup"="C:\\WINDOWS\\pss\\saapau.datStartup"
"location"="Startup"
"command"="C:\\Documents and Settings\\chris\\Start Menu\\Programs\\Startup\\saapau.dat"
"item"="saapau"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^chris^Start Menu^Programs^Startup^saap_kyf.dat]
"path"="C:\\Documents and Settings\\chris\\Start Menu\\Programs\\Startup\\saap_kyf.dat"
"backup"="C:\\WINDOWS\\pss\\saap_kyf.datStartup"
"location"="Startup"
"command"="C:\\Documents and Settings\\chris\\Start Menu\\Programs\\Startup\\saap_kyf.dat"
"item"="saap_kyf"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\8c2f4ecf3c9e]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="bidispl5"
"hkey"="HKLM"
"command"="C:\\WINDOWS\\System32\\bidispl5.exe"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\bxxs5]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="bxxs5"
"hkey"="HKLM"
"command"="RunDLL32.EXE C:\\WINDOWS\\bxxs5.dll,DllRun"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CARPService]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="carpserv"
"hkey"="HKLM"
"command"="carpserv.exe"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DrvLsnr]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="DrvLsnr"
"hkey"="HKLM"
"command"="C:\\Program Files\\Analog Devices\\SoundMAX\\DrvLsnr.exe"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Free Download Manager]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="fdm"
"hkey"="HKCU"
"command"="C:\\Program Files\\Free Download Manager\\fdm.exe -autorun"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\psnP3pO]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="odponfig"
"hkey"="HKLM"
"command"="odponfig.exe"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QCn5Kx1cW]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="QCn5Kx1cW"
"hkey"="HKLM"
"command"="C:\\documents and settings\\chris\\local settings\\temp\\QCn5Kx1cW.exe"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="qttask"
"hkey"="HKLM"
"command"="\"C:\\Program Files\\QuickTime\\qttask.exe\" -atboottime"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Rdqlck]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="Rdqlck"
"hkey"="HKLM"
"command"="C:\\documents and settings\\chris\\local settings\\temp\\Rdqlck.exe"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Start WingMan Profiler]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"=""
"hkey"="HKCU"
"command"=""
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="jusched"
"hkey"="HKLM"
"command"="C:\\Program Files\\Java\\j2re1.4.2_06\\bin\\jusched.exe"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TkBellExe]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="realsched"
"hkey"="HKLM"
"command"="\"C:\\Program Files\\Common Files\\Real\\Update_OB\\realsched.exe\" -osboot"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"="msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll"


[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost]
LocalService REG_MULTI_SZ Alerter\0WebClient\0LmHosts\0RemoteRegistry\0upnphost\0SSDPSRV\0\0
NetworkService REG_MULTI_SZ DnsCache\0\0
rpcss REG_MULTI_SZ RpcSs\0\0
imgsvc REG_MULTI_SZ StiSvc\0\0
termsvcs REG_MULTI_SZ TermService\0\0
HTTPFilter REG_MULTI_SZ HTTPFilter\0\0

HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost *netsvcs*
Ip6FwHlp

Completion time: 06-12-17 1711.14
C:\ComboFix.txt ... 06-12-17 17:06

---------------------------------------------------------
AVG Anti-Spyware - Scan Report
---------------------------------------------------------

+ Created at: 4:07:59 PM 12/18/2006

+ Scan result:



C:\System Volume Information\_restore{BB888FFE-4445-41B8-9B3B-F91E1712BA55}\RP718\A0183641.vxd/C:/WINDOWS/system32/exdl.exe -> Adware.BargainBuddy : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{BB888FFE-4445-41B8-9B3B-F91E1712BA55}\RP718\A0183641.vxd/C:/WINDOWS/system32/exul.exe -> Adware.BargainBuddy : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{BB888FFE-4445-41B8-9B3B-F91E1712BA55}\RP718\A0183641.vxd/C:/WINDOWS/system32/javexulm.vxd -> Adware.BargainBuddy : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{BB888FFE-4445-41B8-9B3B-F91E1712BA55}\RP718\A0183641.vxd/C:/WINDOWS/system32/mqexdlm.srg -> Adware.BargainBuddy : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{BB888FFE-4445-41B8-9B3B-F91E1712BA55}\RP718\A0183646.vxd/C:/Program Files/NaviSearch/bin/nls.exe -> Adware.BargainBuddy : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{BB888FFE-4445-41B8-9B3B-F91E1712BA55}\RP718\A0183646.vxd/C:/WINDOWS/system32/nvms.dll -> Adware.BargainBuddy : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{BB888FFE-4445-41B8-9B3B-F91E1712BA55}\RP718\A0183647.ax/C:/Program Files/CashBack/bin/cashback.exe -> Adware.BargainBuddy : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{BB888FFE-4445-41B8-9B3B-F91E1712BA55}\RP718\A0183647.ax/C:/Program Files/CashBack/bin/cb.exe -> Adware.BargainBuddy : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{BB888FFE-4445-41B8-9B3B-F91E1712BA55}\RP718\A0183647.ax/C:/Program Files/CashBack/bin/flash.exe -> Adware.BargainBuddy : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{BB888FFE-4445-41B8-9B3B-F91E1712BA55}\RP718\A0183647.ax/C:/WINDOWS/system32/mscb.dll -> Adware.BargainBuddy : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{BB888FFE-4445-41B8-9B3B-F91E1712BA55}\RP718\A0183643.exe -> Adware.BestPhrases : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{BB888FFE-4445-41B8-9B3B-F91E1712BA55}\RP718\A0183644.dll -> Adware.EZula : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{BB888FFE-4445-41B8-9B3B-F91E1712BA55}\RP718\A0183645.exe -> Adware.IEDriver : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{BB888FFE-4445-41B8-9B3B-F91E1712BA55}\RP718\A0183642.dll -> Adware.Minibug : Cleaned with backup (quarantined).
C:\WINDOWS\system32\jwmvq.dll -> Adware.PurityScan : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{BB888FFE-4445-41B8-9B3B-F91E1712BA55}\RP718\A0183641.vxd/C:/WINDOWS/system32/msexreg.exe -> Dialer.Small : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{BB888FFE-4445-41B8-9B3B-F91E1712BA55}\RP718\A0183640.exe -> Downloader.Agent.ala : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{BB888FFE-4445-41B8-9B3B-F91E1712BA55}\RP718\A0183637.exe -> Downloader.Swizzor.cw : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{BB888FFE-4445-41B8-9B3B-F91E1712BA55}\RP718\A0183638.exe -> Downloader.Swizzor.cw : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{BB888FFE-4445-41B8-9B3B-F91E1712BA55}\RP718\A0183639.exe -> Trojan.Small : Cleaned with backup (quarantined).


::Report end



Incident Status Location

Adware:adware/ezula Not disinfected c:\windows\system32\ezPopStub.exe
Adware:adware/exact.bargainbuddy Not disinfected c:\windows\system32\vx0.nls
Adware:adware/statblaster Not disinfected c:\windows\downloaded program files\WildApp.inf
Adware:adware/keenvalue Not disinfected c:\windows\system32\drivers\etc\hosts.bho
Adware:adware/sidesearch Not disinfected c:\windows\sepsd.bin
Potentially unwanted tool:application/myway Not disinfected c:\program files\MyWay
Adware:adware/downloadware Not disinfected c:\program files\Recommended Hotfix - 421701D
Adware:adware/winad Not disinfected c:\program files\Winad Client
Spyware:spyware/apropos Not disinfected C:\Documents and Settings\chris\Application Data\POP!
Adware:adware/wintools Not disinfected Windows Registry
Adware:adware/instdollars Not disinfected Windows Registry
Adware:adware/wupd Not disinfected Windows Registry
Potentially unwanted tool:application/mywebsearch Not disinfected hkey_classes_root\clsid\{147A976E-EEE1-4377-8EA7-4716E4CDD239}
Adware:adware/dyfuca Not disinfected Windows Registry
Spyware:spyware/media-motor Not disinfected Windows Registry
Adware:adware/virtualbouncer Not disinfected Windows Registry
Adware:adware/ncase Not disinfected Windows Registry
Adware:adware/memorywatcher Not disinfected Windows Registry
Adware:adware/iedriver Not disinfected Windows Registry
Adware:adware/otx Not disinfected Windows Registry
Adware:adware/powersearch Not disinfected Windows Registry
Adware:adware/elitebar Not disinfected Windows Registry
Adware:adware/ist.sidefind Not disinfected Windows Registry
Adware:adware/bookedspace Not disinfected Windows Registry
Adware:adware/ist.istbar Not disinfected Windows Registry
Adware:adware/gator Not disinfected Windows Registry
Spyware:Cookie/PointRoll Not disinfected C:\Documents and Settings\chris\Cookies\chris@ads.pointroll[2].txt
Spyware:Cookie/Atwola Not disinfected C:\Documents and Settings\chris\Cookies\chris@atwola[1].txt
Spyware:Cookie/QuestionMarket Not disinfected C:\Documents and Settings\chris\Cookies\chris@questionmarket[2].txt
Spyware:Cookie/Statcounter Not disinfected C:\Documents and Settings\chris\Cookies\chris@statcounter[2].txt
Spyware:Cookie/Hitbox Not disinfected C:\FOUND.016\FILE0004.CHK
Adware:Adware/PurityScan Not disinfected C:\QooBox\Purity\Program Files\YSTEM~1\scanregw.exe
Adware:Adware/PurityScan Not disinfected C:\QooBox\Purity\WINDOWS\system32\TSKS~1\?ttrib.exe
Adware:Adware/eZula Not disinfected C:\RECYCLED\NPROTECT\00923408.lnk
Adware:Adware/eZula Not disinfected C:\RECYCLED\NPROTECT\00923409.lnk
Adware:Adware/eZula Not disinfected C:\RECYCLED\NPROTECT\00923410.lnk
Adware:Adware/EliteBar Not disinfected C:\WINDOWS\blocklist.reg
Adware:Adware/BookedSpace Not disinfected C:\WINDOWS\pss\bs5-zxlbme.exeStartup
Adware:Adware/SAHAgent Not disinfected C:\WINDOWS\system32\xmltok.dll

chris - 06-12-18 16:23:56.34 Service Pack 1
ComboFix 06.12.01W - Running from: "C:\Documents and Settings\chris\Desktop"

(((((((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))



~ ~ ~ ~ ~ ~ ~ ~ ~ ~ ~ ~ ~ ~ Purity ~ ~ ~ ~ ~ ~ ~ ~~ ~ ~ ~ ~ ~ ~ ~ ~ ~ ~ ~

Folders Quarantined:

C:\qoobox\purity\Documents and Settings\chris\Application Data\APPATC~1
C:\qoobox\purity\Documents and Settings\chris\Application Data\MCROSO~1
C:\qoobox\purity\Documents and Settings\chris\My Documents\CROSOF~1
C:\qoobox\purity\Documents and Settings\chris\My Documents\ICROSO~1
C:\qoobox\purity\Program Files\ICROSO~1.NET
C:\qoobox\purity\Program Files\YSTEM~1
C:\qoobox\purity\Program Files\Common Files\CROSOF~1
C:\qoobox\purity\Program Files\Common Files\ICROSO~1
C:\qoobox\purity\Program Files\Common Files\MANTEC~1
C:\qoobox\purity\Program Files\YSTEM~1\scanregw.exe
C:\qoobox\purity\Program Files\YSTEM~1\YSTEM~1
C:\qoobox\purity\WINDOWS\SMBOLS~1
C:\qoobox\purity\WINDOWS\system32\TSKS~1
C:\qoobox\purity\WINDOWS\system32\TSKS~1\?ttrib.exe


((((((((((((((((((((((((((((((( Files Created from 2006-11-18 to 2006-12-18 ))))))))))))))))))))))))))))))))))


2006-12-18 01:40 <DIR> d-------- C:\WINDOWS\system32\ActiveScan
2006-12-18 01:15 <DIR> d-------- C:\bintheredunthat
2006-12-17 17:03 <DIR> d-------- C:\WINDOWS\erdnt
2006-12-17 16:31 <DIR> d-------- C:\bfu
2006-12-17 16:20 3,968 --a------ C:\WINDOWS\system32\drivers\AvgAsCln.sys
2006-12-17 16:19 <DIR> d-------- C:\Program Files\Grisoft
2006-12-17 16:15 <DIR> d-------- C:\Program Files\CleanUp!
2006-12-16 20:05 5,248 --a------ C:\WINDOWS\system32\drivers\vax347s.sys
2006-12-16 20:05 159,616 --a------ C:\WINDOWS\system32\drivers\vax347b.sys
2006-12-16 20:05 <DIR> d-------- C:\Program Files\Alcohol Soft
2006-12-16 20:02 <DIR> d-------- C:\Program Files\Alcoholer
2006-12-16 17:56 <DIR> d-------- C:\WINDOWS\çasks
2006-12-11 18:55 991,232 --a------ C:\WINDOWS\system32\esent.dll
2006-12-09 01:22 <DIR> d-------- C:\Program Files\Hijackthis
2006-12-09 00:41 <DIR> d-------- C:\Documents and Settings\All Users.WINDOWS\Application Data\Zenturi
2006-12-03 16:46 <DIR> d-------- C:\WINDOWS\qqzo
2006-12-03 16:12 131 --a-s---- C:\WINDOWS\test.bat


(((((((((((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))))))


2006-12-18 03:34 -------- d-------- C:\Program Files\VentSrv
2006-12-18 03:33 -------- d-------- C:\Program Files\Spybot - Search & Destroy
2006-12-18 03:20 -------- d-------- C:\Program Files\Internet Explorer
2006-12-18 03:19 -------- d-------- C:\Program Files\Google
2006-12-18 03:14 -------- d-------- C:\Program Files\AIM
2006-12-18 01:47 -------- d-------- C:\Program Files\WinZip
2006-12-18 01:47 -------- d-------- C:\Program Files\WinRAR
2006-12-18 01:47 -------- d-------- C:\Program Files\MagicISO
2006-12-18 01:45 -------- d-------- C:\Program Files\Ventrilo
2006-12-17 21:35 -------- d-a------ C:\Program Files\Common Files
2006-12-17 16:01 -------- d-------- C:\Program Files\Mozilla Firefox
2006-12-16 13:10 -------- d-------- C:\Program Files\NRTV
2006-12-11 19:12 -------- d-------- C:\Program Files\Outlook Express
2006-12-11 19:12 -------- d-------- C:\Program Files\Common Files\System
2006-12-11 19:11 -------- d-------- C:\Program Files\Windows Media Player
2006-12-01 19:32 -------- d-------- C:\Program Files\rFactor1150
2006-11-30 22:06 -------- d-------- C:\Program Files\Axis Communications
2006-11-30 12:05 -------- d-------- C:\Program Files\Common Files\Microsoft Shared
2006-11-13 21:47 -------- d-------- C:\Program Files\Common Files\Wise Installation Wizard
2006-11-05 02:34 -------- d-------- C:\Program Files\Teamspeak2_RC2
2006-09-29 15:22 56 -r-hs---- C:\WINDOWS\system32\E67C4BEBB8.sys
2006-09-29 15:22 3350 --ahs---- C:\WINDOWS\system32\KGyGaAvL.sys


(((((((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))

*Note* empty entries are not shown

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run]
"Start WingMan Profiler"=""
"Yahoo! Pager"="\"C:\\PROGRA~1\\Yahoo!\\MESSEN~1\\YAHOOM~1.EXE\" -quiet"
"Free Download Manager"="C:\\Program Files\\Free Download Manager\\fdm.exe -autorun"

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run]
"QOELOADER"="\"C:\\Program Files\\CA\\eTrust EZ Armor\\eTrust EZ Anti-Spam\\QSP-2.1.212.0\\QOELoader.exe\""
"VetTray"="C:\\PROGRA~1\\CA\\ETRUST~1\\ETRUST~2\\VetTray.exe"
"Zone Labs Client"="C:\\PROGRA~1\\CA\\ETRUST~1\\ETRUST~3\\ca.exe"
"QuickTime Task"="\"C:\\Program Files\\QuickTime\\qttask.exe\" -atboottime"
"SunJavaUpdateSched"="C:\\Program Files\\Java\\jre1.5.0_02\\bin\\jusched.exe"
"ATIPTA"="C:\\Program Files\\ATI Technologies\\ATI Control Panel\\atiptaxx.exe"
"TkBellExe"="\"C:\\Program Files\\Common Files\\Real\\Update_OB\\realsched.exe\" -osboot"
"P17Helper"="Rundll32 P17.dll,P17Helper"
"ATICCC"="\"C:\\Program Files\\ATI Technologies\\ATI.ACE\\cli.exe\" runtime -Delay"
"Adobe Photo Downloader"="\"C:\\Program Files\\Adobe\\Photoshop Album Starter Edition\\3.0\\Apps\\apdproxy.exe\""
"!AVG Anti-Spyware"="\"C:\\Program Files\\Grisoft\\AVG Anti-Spyware 7.5\\avgas.exe\" /minimized"

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents]

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\IMAIL]
"Installed"="1"

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MAPI]
"Installed"="1"
"NoChange"="1"

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MSFS]
"Installed"="1"

[HKEY_CURRENT_USER\software\microsoft\internet explorer\desktop\components]
"DeskHtmlVersion"=dword:00000110
"DeskHtmlMinorVersion"=dword:00000005
"Settings"=dword:00000001
"GeneralFlags"=dword:00000001

[HKEY_CURRENT_USER\software\microsoft\internet explorer\desktop\components\0]
"Source"="About:Home"
"SubscribedURL"="About:Home"
"FriendlyName"="My Current Home Page"
"Flags"=dword:00000002
"Position"=hex:2c,00,00,00,cc,00,00,00,00,00,00,00,34,03,00,00,e2,02,00,00,00,\
00,00,00,01,00,00,00,01,00,00,00,01,00,00,00,00,00,00,00,00,00,00,00
"CurrentState"=hex:04,00,00,40
"OriginalStateInfo"=hex:18,00,00,00,a0,00,00,00,00,00,00,00,80,02,00,00,3a,02,\
00,00,04,00,00,40
"RestoredStateInfo"=hex:18,00,00,00,a0,00,00,00,00,00,00,00,80,02,00,00,3a,02,\
00,00,01,00,00,00

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\sharedtaskscheduler]
"{438755C2-A8BA-11D1-B96B-00A0C90312E1}"="Browseui preloader"
"{8C7461EF-2B13-11d2-BE35-3078302C2030}"="Component Categories cache daemon"

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shellexecutehooks]
"{AEB6717E-7E19-11d0-97EE-00C04FD91972}"=""
"{57B86673-276A-48B2-BAE7-C6DBB3020EB8}"="AVG Anti-Spyware 7.5"

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]
"NoDriveTypeAutoRun"=dword:00000091
"DriveConfiguration"=hex:2e,55,a9,07,cf,ff,47,95,2e,0c,e9,9d,8e,c1,89,be,64,d2,\
de,66,b9,32,de,42,d0,2a,81,f9,09,a8,c9,19,05,da,ff,51,0b,fc,3f,e2,aa,6f,36,\
50,a0,0a,2b,5d,fb,b4,3c,37,7e,33,eb,f1,46,3f,d9,30,ad,db,d0,27,6f,e5,07,c5,\
0b,eb,a2,2c,6d,40,79,66,e9,4f,1a,53,ca,30,11,e6,ec,79,67,91,26,57,68,fe,cd,\
dd,a9,00,b5,9b,4a,c9,99,73,79,5d,bd,a8,37,46,d1,38,5f,8a,19,6c,e4,da,cb,ad,\
5a,0c,b8,99,b8,cb,2f,56,5c,8e,1f,26,4f,c6,7b,3c,cb,5c,e3,ce,fa,5a,80,6c,01,\
e8,30,90,3d,7b,e3,76,cc,49,44,a9,50,00,9c,ef,ef,b7,f4,ae,9e,25,7a,ef,a0,11,\
27,dc,49,09,9e,94,08,57,56,c5,a4,31,fb,7d,c6,30,12,3d,b8,03,dc,4f,6c,65,7e,\
5a,c0,4c,5e,34,00,64,d0,f7,ad,bb,f2,57,7d,be,d4,33,a2,64,dd,69,4f,a9,6a,ef,\
79,3e,b7,20,da,7f,03,53,3c,a5,ef,b2,fb,3d,28,49,ad,d8,45,5e,67,05,f2,01,be,\
7c,4f,e3,70,9c,93,6c,1a,18,f5,07,42,ed,cc,c1,9a,97,f5,12,83,84,75,fa,d1,c9,\
5f,50,ce,13,f8,57,81,e1,1a,93,30,f1,d6,db,23,f8,5d,ae,ab,96,21,ca,63,89,37,\
fb,b6,21,00,32,a1,f4,08,d6,ba,d2,2e,5f,72,fe,06,20,97,90,7b,64,1c,48,b9,bd,\
1d,64,49,99,1e,e5,7e,16,94,fc,11,18,a6,c2,08,98,34,29,dc,3e,19,33,da,33,ad,\
62,ca,30,8e,6f,cf,dc,a1,3e,8e,54,53,12,92,0b,25,fd,ef,d4,67,9b,26,3d,43,00,\
49,1f,fe,ef,60,73,7b,4d,0a,67,01,d5,67,b1,3d,0c,ac,24,8b,78,3b,81,71,0d,e4,\
8f,6c,e8,2b,6e,f0,40,be,28,aa,99,5e,89,08,3a,85,31,fb,e2,4b,e7,fb,b7,8a,30,\
4c,7f,41,20,81,12,36,71,3e,0f,e0,d2,42,cf,83,81,a4,97,9d,1c,5c,12,81,b4,06,\
fe,42,24,e3,25,d2,a1,21,8f,6b,92,5c,f6,2e,a1,64,7a,0a,9d,41,96,e0,53,74,53,\
e5,d5,80,bb,47,1b,a9,91,13,10,fc,3f,56,9e,8f,10,82,7c,0a,9f,14,48,66,8f,74,\
d5,f5,7d,1d,c6,a3,33,fd,5c,7b,1f,1f,8c,6d,03,87,55,4e,ed,5d,50,20,6a,4f,89,\
94,f7,30,8d,cd,b8,e5,c4,67,6d,81,01,b8,a1,af,58,55,24,50,2f,ef,bc,66,98,e1,\
18,31,de,5b,05,97,5e,01,e4,c9,99,20,5c,24,87,9e,4c,55,2d,3b,04,c1,71,17,b4,\
24,2e,74,24,78,84,be,a6,18,71,c8,49,25,a6,59,50,29,93,e7,e3,fa,c5,a2,03,e1,\
71,b4,c3,fc,51,c8,b6,e1,ae,c9,a4,84,be,ec,81,5b,31,f0,9f,c0,07,a4,a4,96,a4,\
ab,b4,2f,26,7c,7b,6d,f6,ac,48,28,9d,70,12,d0,da,5d,a2,54,f1,73,8f,42,45,5a,\
6d,2f,29,eb,42,59,f4,f2,39,8b,53,33,9b,41,e4,ab,fa,0d,00,17,af,39,d7,bb,87,\
ae,c3,5c,ba,14,d6,8e,1d,3b,b5,36,98,ba,aa,47,d9,d6,f4,cf,4a,a5,62,37,41,c5,\
20,c6,77,64,d0,68,bc,5b,dc,ae,e9,1b,0b,15,15,ac,53,8b,0c,00,ee,2f,fc,d7,b0,\
59,72,e0,98,da,85,21,a5,85,51,98,eb,ed,a8,23,e5,71,03,9d,0d,76,bf,4a,aa,f4,\
86,75,ea,34,0a,57,30,d8,fa,3b,af,1b,2e,e0,38,5a,25,1f,50,d3,b2,cd,86,ad,f2,\
e3,97,39,81,dc,63,78,ee,5f,c3,dd,6c,1e,1c,54,ca,fe,cf,82,a5,78,81,4f,dc,3f,\
28,a2,44,23,66,6b,9d,35,16,e7,c5,2c,25,1f,2c,07,a4,b2,88,f4,1b,d5,ca,71,1f,\
98,50,b1,27,6b,5c,41,9b,e0,c5,eb,2e,b3,ec,da,6e,07,f2,00,99,f2,28,b5,b3,3c,\
c7,a1,d5,bf,e2,db,c8,e4,98,52,d2,b6,8e,6d,d0,17,9c,ee,85,8b,c7,1c,32,21,70,\
21,67,f8,ca,b1,18,02,91,ec,f3,08,fa,86,f1,ef,e5,25,2c,39,5a,0a,f0,ce,33,f4,\
14,fd,16,41,8b,be,a7,57,36,3a,fb,42,fc,8d,4f,9e,1d,ca,fa,b8,c3,3f,a0,f0,da,\
fb,a9,62,22,8e,fa,c5,83,10,c1,92,a0,65,ff,69,ae,be,a1,b1,87,63,67,7f,fa,b0,\
ca,ba,66,5e,2f,7c,87,04,61,bb,8f,de,3e,28,79,cc,b0,57,9a,9e,e0,21,79,8e,a6,\
47,e0,0e,43,57,33,c5,52,d4,01,d4,fc,91,d9,5d,6c,5e,5f,46,82,e6,9e,3a,cc,d8,\
a0,f1,b2,45,3c,b2,f0,b4,30,16,49,ee,6f,0e,7a,4d,bc,27,6e,f6,78,0d,b0,93,b9,\
4e,25,c7,9b,61,fb,5c,db,e7,dd,9e,a2,30,69,02,9e,01,e3,0c,57,95,2b,6f,c1,e1,\
ec,75,0d,1c,17,a1,c5,7f,90,93,18,4a,26,2d,72,07,c9,f4,50,12,f7,b9,53,59,78,\
78,93,61,4b,80,35,89,e0,d4,b0,93,87,d2,ac,60,29,12,bc,fb,36,91,8e,d9,de,0f,\
f1,60,84,b5,76,a5,70,fb,ca,7a,c4,c9,43,a8,b1,dc,b8,79,ea,6c,96,7a,59,0c,30,\
7e,11,d1,57,e6,85,b6,2b,20,f7,3f,30,6e,33,5d,a5,e9,7c,92,11,c5,c7,55,1e,d6,\
27,b8,aa,53,89,48,1c,db,a1,35,f4,e1,24,b3,a6,5c,38,9f,a9,3b,28,66,cb,b5,5d,\
23,c7,68,8a,07,19,b3,26,fe,11,75,1f,8f,27,18,cd,04,8e,cf,24,cc,0b,1b,2f,1d,\
08,94,b9,dd,e4,e6,4d,c3,8e,1a,62,ba,52,17,cf,86,f3,68,85,a9,f9,3f,7c,88,4c,\
ba,ee,ca,02,66,c4,01,76,01,4d,8c,9a,85,ac,bb,8e,61,b7,35,71,0a,0a,97,76,b2,\
21,5e,3b,57,98,07,57,00,e9,74,32,44,df,92,1a,0b,4d,39,93,98,ff,54,ee,c8,f1,\
41,1d,94,bf,7a,c5,dd,5d,76,95,69,08,ca,d6,28,7c,94,44,bd,68,19,1d,39,1f,ad,\
77,2a,90,d3,d6,d4,78,a6,fe,be,d6,78,06,71,9f,e2,ae,7c,b4,19,f2,bb,11,f0,e0,\
d9,47,de,a6,14,2c,b0,ef,40,d1,83,70,0f,b4,2c,bd,8f,37,d7,62,f4,51,ed,2f,98,\
84,3c,d3,40,0f,52,ac,a1,64,29,de,23,dc,0a,a3,e4,aa,ab,e1,00,0d,9a,02,10,ca,\
df,00,f0,da,dd,bf,c5,60,7a,a0,3f,dd,80,53,1c,a7,42,f8,ee,98,82,3a,1d,03,92,\
54,2f,ec,ba,74,47,78,da,09,ec,a2,50,07,0c,30,1c,82,41,e5,42,7b,52,f9,70,fa,\
fd,c6,e1,5c,f4,c4,81,ef,25,b7,52,bc,3e,27,0e,a4,71,11,0e,af,74,dc,6a,a0,cd,\
8e,62,cd,4c,40,fd,2d,d9,cf,ef,b3,6f,d5,c0,da,69,d8,2b,81,fe,c0,c4,fa,06,8f,\
de,5e,06,4c,ac,23,6b,40,a6,f0,11,65,2f,af,09,1c,74,e4,99,1e,97,3e,83,b5,0d,\
6c,8a,2c,44,32,33,84,8a,bc,c9,68,2a,32,a3,63,d8,8c,a9,51,4f,a8,15,14,38,9a,\
77,88,4e,43,fc,b8,c0,25,ef,52,d6,75,80,58,d8,72,c5,19,2c,f6,fe,bd,be,4b,1d,\
eb,a4,3f,86,1e,02,7b,13,f9,2c,10,5b,48,0b,53,34,19,c2,eb,76,73,91,28,02,45,\
f9,96,03,9d,21,d3,74,1a,78,9d,e2,a4,9c,2f,74,5a,7a,ce,28,cc,b7,9f,5f,6b,4f,\
bb,9c,3d,7d,85,89,d6,da,3b,3b,83,c8,cc,b6,c8,11,ea,b4,0d,cc,5f,a2,94,cb,a4,\
ec,ae,8c,b0,7a,2f,c7,0e,7a,1f,63,32,61,b2,17,0d,2c,7a,7d,df,ec,dc,b8,4d,81,\
c1,5b,b3,a6,8d,86,bb,2d,55,52,2f,8c,4c,70,0b,99,7f,0c,d7,92,c3,f8,33,60,eb,\
06,b3,1d,3e,b5,ee,d3,27,11,d2,87,2f,d4,3a,76,29,d1,c3,9e,ac,93,db,80,c7,41,\
a1,25,ef,c4,d6,5f,3c,2c,f2,51,d5,50,f6,31,a9,b5,65,4d,61,b2,4a,4c,92,d1,15,\
b7,36,77,a5,b7,5d,c8,a6,21,20,c5,1d,af,d7,b7,41,90,8b,d1,8d,24,ae,11,13,00,\
0a,67,13,39,f8,19,cc,df,d2,66,92,c7,ab,69,21,8e,3d,41,31,da,22,6f,4a,e3,47,\
7f,da,ab,9f,eb,85,a9,14,3c,bc,c4,c3,72,91,1e,68,a6,ca,37,17,ee,34,74,2e,81,\
39,68,87,1c,b5,51,f2,a4,06,e6,e2,0c,62,50,66,79,6e,76,5b,a4,0c,7d,e0,80,74,\
8f,0b,1d,86,dc,da,cd,5e,df,6d,85,2a,e3,72,86,38,c5,e0,3c,53,fb,e8,66,50,d5,\
28,77,e4,03,a4,3c,b8,58,ee,c0,c0,cd,2b,6d,c8,c9,3b,73,50,a0,b0,6d,99,59,01,\
42,00,b4,82,4a,8b,6b,93,b3,c2,b9,17,22,c0,19,28,9d,89,50,08,a8,9e,ad,5b,ae,\
cf,90,94,a3,51,29,ae,e8,10,82,1c,6f,46,c0,02,1f,4d,a5,a5,7a,b1,5a,20,7d,8a,\
6c,59,c7,09,14,34,ff,50,bb,07,6f,87,bd,4d,f4,2c,6e,9e,1b,aa,5a,de,84,2e,d1,\
b5,8b,b6,a4,40,27,6a,29,07,12,30,85,2e,2b,7b,2a,ef,18,63,9e,47,2f,fb,7e,f0,\
97,df,c3,90,aa,0c,45,30,9e,f5,7d,ef,65,d2,8f,f8,d1,3c,88,b1,fc,f7,e4,35,e7,\
0f,53,05,61,26,bc,fa,2b,9b,83,7f,59,90,08,fc,fb,96,70,95,fd,6a,a7,15,4c,54,\
a5,25,3a,6d,f1,c2,24,b0,64,ee,52,54,30,a5,1e,59,20,12,59,61,21,03,ea,c2,02,\
9b,b8,d9,78,46,cb,a1,65,f2,ad,84,5a,7d,17,71,5a,69,c9,2e,e1,d7,ba,f0,24,b3,\
71,29,9b,2c,b3,a1,bd,67,5e,c8,9a,74,95,4a,4f,81,1d,e5,26,4d,07,77,bc,e0,90,\
5c,d7,79,45,f6,17,c9,6b,8d,7b,5e,9d,5a,28,62,b7,de,66,85,f3,78,ec,38,52,37,\
5d,1c,3e,ed,12,ba,6d,85,1a,74,08,96,7f,bb,0d,37,cb,83,f1,16,cb,f4,8a,c4,93,\
63,2d,53,c2,80,13,23,08,d1,02,f9,e5,bd,29,51,b3,ae,4b,f6,e6,f3,20,cf,93,82,\
f8,fc,2f,86,a1,21,99,f4,8b,02,5b,c2,2a,51,2d,53,9c,c3,bb,36,8c,69,a9,11,56,\
3e,d3,d8,6b,fc,d9,43,f7,35,db,7e,c2,9e,81,22,54,ae,3f,64,5d,68,d7,8c,54,74,\
1f,a9,5d,75,04,84,70,97,cf,d2,b8,67,a7,ae,ad,e8,57,46,b6,e3,52,d4,d2,7e,f4,\
d0,75,10,0b,63,71,34,96,1f,66,1c,cc,ee,e2,29,61,49,cd,b8,04,ab,05,3e,2c,44,\
45,97,14,f1,4b,9b,04,6c,3a,f3,d3,c0,3d,2a,aa,01,6d,07,0a,39,f5,1b,11,a5,73,\
96,f9,22,a2,5e,e1,e2,36,63,d0,63,08,2c,f7,a2,73,e1,36,8b,fe,7f,e2,b5,3b,de,\
c6,4c,ee,95,67,4e,72,a9,8c,fb,59,72,fe,86,53,ee,8d,11,51,5a,53,d8,ea,04,3d,\
ad,fd,5b,c6,a4,98,48,06,0f,18,c1,ec,ad,92,9a,c7,1e,72,9f,0c,9a,62,e1,53,e3,\
6e,4d,a2,78,65,83,ee,0c,82,e4,df,36,4b,ed,d4,6a,ba,c4,a6,28,9b,11,b2,73,35,\
0f,92,85,2c,e3,2a,c1,a6,2c,6b,e9,ad,db,53,91,d4,45,b4,d4,1e,76,37,45,1b,c9,\
a0,28,54,b5,54,e3,e9,ea,18,af,79,9d,1b,93,42,20,37,93,8a,b5,74,24,3d,a4,ce,\
e4,d7,8b,38,88,84,f6,e0,16,86,2f,b5,54,d8,57,26,80,11,b6,2d,b1,8a,50,8d,de,\
c3,b9,57,ae,03,2a,b3,cf,3f,d3,dd,1b,3d,73,6e,58,f9,27,dd,af,48,7f,45,60,bb,\
d7,69,b3,c6,e5,f5,32,22,8e,06,15,6f,fe,ed,fe,1e,f7,30,e7,8e,69,d2,58,75,44,\
d5,dd,82,8a,fc,b7,41,a8,d5,d2,3e,06,f7,f7,6d,dd,89,43,c9,48,04,d8,ae,9f,39,\
d2,bf,00,95,7c,c2,2e,a4,c4,ce,9f,d4,ed,69,d0,7c,84,3a,dc,1c,95,6d,4d,e6,1e,\
59,32,7e,c4,60,71,ff,c5,17,5f,3e,2e,a7,8e,52,4e,73,e6,54,6a,fc,f8,63,b2,01,\
8e,eb,74,ea,87,27,90,66,e2,e5,2c,54,18,8a,a9,df,af,55,d5,ee,0c,e8,62,bb,ce,\
04,96,c1,c7,94,45,dc,45,ed,fd,ac,32,54,80,3a,80,c0,77,de,3a,e2,64,60,17,63,\
d9,5d,4f,6d,e7,ec,ad,6c,da,82,e6,16,23,13,29,a8,96,7a,f7,73,d6,1b,35,98,0d,\
c7,80,10,e0,df,c0,ef,a1,bd,00,e9,c7,4f,7c,15,9c,05,fc,f1,36,ee,61,a6,a8,1d,\
7e,d1,79,52,29,f4,56,d6,91,1b,03,a7,d1,81,97,d5,c6,64,e9,2c,1e,86,46,13,b2,\
2d,65,b4,16,6f,9c,5e,6e,ac,53,27,83,5c,b9,d5,16,0b,b7,ff,73,a1,22,6f,4a,e7,\
35,cb,bb,47,3e,74,b0,d3,97,af,6f,89,d8,03,6f,d6,4b,e1,6b,58,a1,8a,b6,e8,e3,\
2e,ce,d8,dc,51,33,79,93,73,7a,e1,ee,f0,9d,eb,b6,25,95,7e,c6,d4,2b,13,49,ca,\
0b,71,73,bf,1a,bb,6e,7d,09,ad,98,44,2a,23,eb,6e,83,db,bc,4f,21,7b,a9,5f,af,\
d6,cd,9b,47,6b,35,28,88,2e,98,3a,e9,8c,42,34,4d,a9,52,10,d7,ec,25,02,ff,bd,\
12,58,e6,8d,58,da,e6,17,54,1e,6e,e6,f8,44,0d,18,78,c4,cc,61,46,9b,c1,52,41,\
7d,e1,dc,29,78,16,10,57,d4,91,28,ab,3f,62,cb,c5,26,46,8d,78,66,c0,b5,7b,24,\
6b,44,62,f9,8e,33,cd,53,f1,fb,e0,18,ef,5a,f3,8c,cd,55,8a,74,4a,79,87,7b,77,\
67,9e,d6,c9,90,0a,24,c3,3c,7e,98,db,d1,5f,59,ae,52,30,29,b3,26,4d,45,40,1b,\
dd,8d,c7,aa,02,e5,aa,7c,52,db,51,2e,8b,8a,7a,51,82,be,d1,b6,5d,58,c1,e8,02,\
f5,89,f9,cf,ca,92,82,8c,d2,00,e5,9e,2c,87,d5,7d,be,80,19,68,1f,3c,8c,57,b4,\
98,69,31,19,d1,c5,3f,c2,9a,94,5d,e0,e2,6c,92,7f,8b,1e,b2,c3,17,b5,79,05,c8,\
7d,d8,07,ab,58,f4,e3,c2,57,72,41,61,87,f2,cd,d9,0e,d9,e8,54,76,54,9e,00,48,\
99,d9,70,dd,70,d4,3e,71,f3,d2,f6,79,92,0f,2f,36,5a,f7,fb,8b,76,96,82,0c,f6,\
50,e9,57,cf,d2,79,a7,23,48,fd,a6,e6,d0,6b,83,f2,2f,c7,45,6c,c3,45,5f,a7,b9,\
ae,84,59,80,04,bc,3a,7e,69,b8,0b,01,3d,62,d7,78,87,b9,79,e3,96,dc,5e,88,e7,\
64,8d,e8,4a,f7,e4,f1,41,1a,a4,75,a9,47,2f,db,9c,40,11,15,95,a2,3e,d1,d5,bd,\
9a,f4,06,a3,bf,44,1f,7f,fa,64,87,29,96,98,7d,f7,5e,5c,b7,d5,5d,cf,49,98,e8,\
f4,c9,8f,de,bc,b1,5b,2f,ea,04,01,9b,cb,35,3e,bc,21,44,1a,47,60,2a,c0,8f,1d,\
77,8d,4b,c3,3a,67,98,88,21,50,42,9f,e1,3b,3f,af,d8,1e,7c,85,f1,48,dc,05,c9,\
f5,7e,67,10,20,3f,a0,31,98,81,1d,35,56,2a,b7,f4,0e,ef,e4,2e,04,d2,2a,ca,21,\
e9,da,1d,46,62,fa,5d,e0,c4,83,f6,bd,77,cc,2d,1d,87,47,03,0d,a5,6b,5c,f0,6f,\
f1,60,5f,f0,43,22,33,6b,32,7f,df,54,e7,49,03,a0,1c,a5,3f,3e,8b,b2,45,e6,a7,\
6c,33,11,8b,cf,1f,48,30,3f,f3,a2,e2,27,7b,89,f5,e1,e4,bc,b4,d6,88,9a,9a,e6,\
4f,9d,c5,09,38,25,a7,37,70,77,ff,86,c2,05,07,92,69,ef,ef,22,22,cb,8b,09,84,\
a1,48,49,94,3a,65,7f,95,9b,60,7b,1d,cc,ae,2e,6e,de,ae,c9,02,2b,e0,23,68,e0,\
52,5b,4f,b9,5c,bf,e0,0c,8d,ed,52,09,e5,38,b8,40,45,4e,1d,bf,23,17,d2,4e,82,\
e0,07,44,22,b8,99,7c,f4,1a,2b,dc,d0,cd,78,04,6a,09,e7,8e,83,db,60,94,5c,ca,\
5f,73,70,bb,47,cf,62,12,f8,d8,35,1a,a3,cb,bb,a7,dd,bb,50,fa,f3,91,c7,e4,7e,\
51,a5,2e,37,a0,8d,39,0c,83,fc,e2,73,6a,36,a8,fe,6d,81,11,2f,d5,d1,49,8e,de,\
42,0d,fa,bb,8d,c7,3d,db,b4,fb,e2,6b,c1,e1,4b,1c,2f,53,fe,26,e7,ea,40,8d,6d,\
65,e5,a3,5c,4a,66,ce,10,cf,34,8b,a2,fa,4c,b3,19,08,0c,fd,de,0c,45,c5,71,d8,\
91,0c,5b,20,e7,bf,63,dd,6c,3c,05,f0,8c,12,20,08,4a,08,ef,c5,d4,61,3a,a2,5b,\
5f,ce,00,21,06,2a,37,d4,22,7b,92,1a,8c,cb,42,6d,a8,75,84,29,32,dc,7f,e3,3b,\
5c,70,fd,6e,81,04,77,98,77,05,08,67,c2,39,6e,72,2f,88,02,7a,0b,5c,8f,f0,92,\
4d,64,b7,aa,fe,a8,2a,d2,42,ee,61,55,84,09,b0,c3,65,22,71,a1,a6,07,04,60,49,\
e8,13,8c,f3,7b,1b,46,95,66,28,f4,4b,41,df,37,84,d0,c2,1d,64,b9,b0,99,66,96,\
ab,30,46,49,de,f4,1e,8f,df,b6,cf,d8,31,78,a2,57,0d,21,2f,55,62,74,7f,ca,1a,\
43,6d,2e,9f,e0,52,8d,9e,d5,e1,da,0a,d5,4f,85,65,f2,b7,4f,3b,0f,be,5d,ef,99,\
72,8c,e2,72,78,05,f0,2e,67,11,85,82,6f,2e,d0,f9,3e,62,90,e9,24,cf,2d,a6,75,\
88,3f,f5,2f,a3,54,c4,dc,8f,ee,18,ba,a8,cc,46,1a,09,6b,66,06,a2,cb,05,26,8a,\
76,1a,e4,96,bf,3b,cf,2a,48,11,3d,4f,c7,0a,35,06,09,4d,8c,dc,36,f3,4d,bf,58,\
74,5e,10,17,bd,61,f9,c6,4f,d9,01,a4,1a,8e,de,5b,4b,32,8a,cd,d3,44,99,10,fb,\
35,c9,b7,9d,ca,db,54,94,c1,a1,3a,71,b7,59,88,6f,49,39,63,a9,7a,4b,82,8b,54,\
7b,f0,87,d2,ee,0d,09,fe,96,d6,ac,57,04,67,ae,75,7d,be,a1,f0,4f,c2,64,7d,65,\
84,52,5a,1a,c4,b9,f8,4b,b7,8e,a7,b0,07,5f,2f,6c,1c,88,bd,e2,9a,aa,c3,cb,2b,\
59,d3,85,7e,15,bd,ae,8f,7c,f7,f2,2a,bd,43,21,aa,50,8b,85,07,e5,10,72,10,9a,\
c3,1e,f4,70,f3,b3,07,00,29,a3,c3,6a,51,3c,0d,8f,1a,7c,ba,80,9e,26,52,35,46,\
15,14,83,e8,d1,3a,48,33,bd,7d,e8,4d,5f,dc,fe,ba,50,9a,4b,80,36,86,f2,89,5f,\
7e,e8,48,82,36,a6,9f,09,36,21,01,b0,22,fb,d4,4f,3e,fb,19,f4,31,bb,4e,35,09,\
a0,93,c5,80,0f,0d,44,7e,de,88,5c,df,09,60,09,75,a7,a1,38,51,1c,6d,94,3e,8f,\
9e,9d,8f,9e,ad,fa,1b,51,d2,10,cd,4d,6d,d3,c1,4b,a5,dc,d3,c8,4f,bc,da,fd,11,\
91,4e,11,c7,d6,86,8e,25,80,7d,11,9e,46,d5,46,85,40,1c,14,73,b3,4f,15,e8,2b,\
9c,49,35,cb,6c,0b,99,e2,a1,44,aa,be,1c,de,f6,c5,83,7c,eb,c1,41,68,f4,7c,ce,\
cc,e5,8d,30,26,99,71,c2,f6,d9,de,34,e2,80,53,d3,1b,dd,f4,0a,69,59,95,29,45,\
5a,15,66,9d,67,ed,21,dd,8c,08,6d,64,00,d5,cb,35,05,9b,38,f0,10,0e,6b,00,2a,\
1f,58,15,96,18,f8,d5,b4,e7,4c,ce,25,ba,9f,b0,30,cd,0c,b9,64,80,41,70,7f,ad,\
82,96,8f,38,f1,5a,57,e8,0c,cc,f4,75,77,94,e5,e2,fc,e4,77,0c,d0,ab,99,83,18,\
0c,0f,9a,ab,0e,10,ba,1a,95,46,fc,ed,91,2d,f6,30,75,bc,d4,2f,ea,48,ab,7d,c5,\
a5,0b,3b,37,8e,d3,96,44,47,4a,92,77,80,6b,06,d3,7d,7f,e8,0c,74,f2,cb,f7,37,\
5f,a6,40,12,ed,d7,5b,f7,de,68,bd,d8,65,90,4b,55,e2,7d,13,97,67,50,3a,7c,ec,\
6a,35,f4,83,e6,3c,aa,3c,66,fc,e8,4e,13,8d,b4,ae,df,a3,3f,e0,0d,08,81,0d,f4,\
4a,1d,57,00,b0,8a,69,f9,73,74,52,88,2b,60,93,f7,88,90,76,38,42,26,a2,29,53,\
8b,ed,16,63,12,71,7f,84,d9,e2,1c,1f,f0,1e,1f,2e,be,06,e2,ac,a0,8d,df,4a,d2,\
0e,4e,64,93,e3,cd,33,84,33,b2,44,52,0b,a7,29,94,b1,ae,6e,f7,35,63,ce,98,48,\
81,a7,b1,51,a8,ac,78,be,5e,da,44,98,53,ad,f2,5b,e9,93,87,04,f3,a1,16,6b,bd,\
85,e4,d3,4d,bc,cb,c0,e9,04,dc,08,d9,15,48,2d,6e,8c,81,ea,44,a6,9c,0c,c3,38,\
fa,83,ec,54,27,b9,52,4c,02,22,66,5e,1f,15,f8,ac,69,da,fb,ec,0c,04,89,62,92,\
01,26,0b,4b,ef,49,1b,f3,b1,18,aa,8f,43,74,ab,98,4a,35,1d,5b,f0,b7,85,a0,ee,\
95,9b,8a,ea,b4,44,be,04,84,c0,c7,ac,82,25,b9,b6,01,0c,15,b0,2b,8a,f8,73,43,\
62,49,f8,2c,78,c8,6d,2f,89,8b,88,f9,1a,4e,1c,e3,ae,d8,ea,77,3c,96,b9,2f,e0,\
83,a8,7f,d1,4a,c4,16,93,af,d6,61,6e,2b,7e,52,1e,d6,86,5f,cc,8a,70,cd,3d,46,\
51,2e,4a,d0,e2,29,90,9f,d5,79,68,f7,65,38,19,56,31,5e,4d,0f,4a,84,c2,35,cf,\
ee,42,ba,29,c9,d5,d8,8a,b1,35,b0,5b,77,82,32,dd,20,37,3c,7f,31,5d,06,b2,29,\
fe,bd,f9,50,dd,6e,3f,af,64,26,6e,60,de,57,3d,08,e6,7e,49,a1,20,03,68,7d,27,\
61,3a,87,c6,86,00,cc,6a,7d,b2,3b,d7,4a,4b,a9,1b,16,68,18,c0,8c,11,39,46,82,\
d7,a9,d0,dc,1f,96,1e,ad,bd,c4,bb,a0,c5,4f,78,97,9d,cf,18,91,57,e5,4d,d1,3e,\
7c,e3,3c,af,4e,3c,04,2b,aa,fc,83,a9,75,05,69,31,6f,a6,1a,a6,b8,0f,52,e3,93,\
09,0b,0a,69,e4,a0,19,11,b0,32,bf,4e,af,4b,6d,9a,0b,c1,af,22,c5,de,bd,11,ee,\
bd,4d,11,a0,f7,ac,0f,10,7f,0d,3f,c6,cb,21,61,8d,35,e8,42,89,a0,c6,85,65,5e,\
d9,a3,44,51,8a,31,fb,51,62,62,7d,ce,1f,cc,96,b7,08,6f,dd,9a,7d,f3,e3,0c,d2,\
31,b1,4b,5d,f5,72,22,ce,02,6c,0d,bf,57,35,9e,8c,b1,23,1f,65,51,04,79,a2,ff,\
0f,54,56,4f,1b,cb,26,23,0f,94,5c,71,9a,d5,37,47,24,59,85,0c,04,6b,74,08,f3,\
32,a6,26,c0,8e,83,f9,46,43,d3,fe,9b,59,8c,21,8b,c2,e8,82,45,3e,bb,78,53,7c,\
04,d6,d0,82,c2,6e,d5,4e,09,d4,34,be,54,64,69,ad,1d,87,cd,5f,ab,31,0d,1f,2c,\
ae,db,26,03,9f,e3,bf,bf,40,01,a9,1d,ec,b1,bd,b6,e2,c6,d0,bd,49,60,db,5b,72,\
18,59,2c,5e,7d,f1,4d,80,c4,55,b7,c3,bb,6a,cb,cf,ff,a9,2d,88,6f,c5,d6,d8,e0,\
8e,65,af,12,15,b6,48,e3,11,b6,ad,c3,81,76,7d,68,93,7e,ed,c3,c5,63,0d,32,4a,\
9b,4c,f7,af,91,3f,e9,be,f5,d7,69,a3,56,8f,98,4d,f2,28,c7,17,cd,2f,2f,a8,00,\
24,e3,17,54,81,02,53,0f,40,31,c3,0e,9e,49,29,14,1f,4c,cc,62,d2,9e,d6,88,d6,\
72,fb,7a,1d,82,5b,e6,70,03,aa,c5,b3,d8,8e,30,6b,06,48,76,7d,68,97,6b,38,a3,\
d9,03,96,5d,74,1f,bf,aa,74,a6,cf,e8,75,d8,d9,0b,c4,df,2c,1a,c1,a7,d5,5c,88,\
f0,64,ae,d0,a2,f3,57,12,60,65,3d,ee,5f,ec,58,cb,79,ce,68,bf,7d,68,e3,ae,ca,\
73,32,b5,1c,86,1c,c9,a5,dc,83,9b,60,58,4e,bf,a2,c6,a6,0e,f1,64,65,49,1a,a1,\
cb,fe,7e,24,73,b0,ad,10,86,32,36,87,2f,b8,bc,6c,4f,c1,4d,6e,71,28,f0,42,00,\
9a,7d,2f,b7,33,b2,d0,5a,fd,82,16,a4,11,b0,8c,80,00,9d,df,7b,71,5e,9d,7a,0b,\
12,3d,a8,95,73,60,b3,5b,aa,56,38,d4,68,e4,7b,83,32,44,5c,1b,fc,6e,87,e6,fa,\
96,ea,67,b3,f6,6c,3e,57,cd,dc,4d,52,a8,27,19,a3,e0,cf,73,65,64,98,57,36,b8,\
84,14,b9,3e,02,ad,f5,b5,63,80,e2,ff,8d,25,c3,27,f3,99,b6,a2,c5,9c,8a,d5,63,\
57,d0,d8,18,42,35,7a,05,45,0f,85,5b,1d,35,42,cd,02,14,40,46,87,ff,52,d7,c1,\
c7,d7,f3,ab,8c,3e,de,c9,d2,c8,63,0c,d7,90,c5,f6,24,e9,f9,fe,63,48,12,36,70,\
42,fd,2b,b2,56,6e,0d,ac,ce,1a,10,cf,22,27,11,93,bd,e1,7d,c6,04,ae,6f,23,95,\
44,18,26,cc,19,64,1f,8c,1b,da,85,3c,a2,c4,8e,0f,a3,91,fc,89,26,77,3a,3f,fa,\
5c,a7,de,a7,f7,32,6e,a4,33,27,d8,ca,d4,48,a6,09,5c,20,0b,bb,30,94,23,f4,f7,\
bb,7b,c3,43,f0,d4,16,73,25,24,97,d7,79,de,81,16,0d,73,0d,cd,14,19,2d,79,2a,\
cb,7d,97,e7,91,77,09,b3,01,e6,bc,dc,06,9d,88,e5,e0,68,58,22,6c,43,8a,81,a6,\
ca,99,ab,6c,f1,f9,4c,84,f5,42,ae,e1,92,91,8d,22,77,2b,27,5c,f7,bf,92,19,01,\
c0,52,a1,52,57,2b,78,e9,7e,34,27,bc,a3,2d,3f,a9,79,12,9c,af,55,f0,e7,5e,d8,\
f8,5e,8c,cf,d2,d8,4a,57,33,03,16,45,b2,f1,52,c5,d8,d3,f5,40,76,04,81,84,3b,\
49,35,1f,85,56,83,0b,78,95,c4,91,4d,24,2b,67,ed,1c,f8,1b,bf,19,ee,b5,e4,f7,\
06,98,ce,d9,65,aa,50,70,8c,b5,f4,7a,cf,0c,ce,88,08,71,ad,05,8c,36,a8,74,5e,\
a3,f9,f9,a3,98,0e,1b,56,73,de,c8,3d,34,7a,99,1c,df,e4,58,28,22,23,c0,be,38,\
97,83,55,0d,8b,91,b2,a3,09,98,5a,b4,f2,c7,4d,99,4d,d8,f1,6a,e0,4d,4d,67,fd,\
fd,77,97,9f,c3,50,ae,b5,a7,6e,34,be,fd,5a,e4,96,fe,fc,53,90,84,53,d2,c4,11,\
69,94,ab,13,87,14,e9,67,a5,b1,69,1b,24,9b,af,78,c0,f3,6a,40,c0,2e,49,34,6f,\
bb,10,d9,d0,e5,eb,7c,8e,fa,02,74,32,ad,4d,a7,98,b9,aa,4f,a4,c7,2d,fe,31,92,\
b7,e0,b4,49,ca,41,9d,34,9b,4f,2c,9b,69,20,46,e4,0e,f7,b6,fb,d4,c3,3a,f6,89,\
e8,37,fa,d6,42,aa,58,cc,67,62,fc,c0,2d,6c,08,59,6d,cf,bc,e7,06,7a,99,f6,24,\
7b,c6,23,c2,72,b2,2f,6d,44,fb,52,4b,14,8f,d2,5d,6f,10,d3,01,c6,7d,71,bb,22,\
10,0c,34,13,be,e3,83,e9,d5,e5,ac,27,33,c3,66,35,93,4a,22,55,7d,f0,48,d8,4e,\
ad,c4,92,dd,0c,c1,8b,5e,81,b4,f7,87,fd,9d,69,f2,c0,89,43,c3,6e,5c,71,8a,66,\
cd,57,6a,4f,b2,07,7b,f3,7e,b8,6e,51,08,73,70,ed,8e,10,50,6b,f9,61,e3,5c,62,\
ad,a8,58,d6,60,a8,b6,56,00,a0,16,22,63,62,50,37,20,79,69,17,43,0c,f9,c8,45,\
04,56,1f,3b,71,62,3e,4d,2a,a8,5c,6a,b4,a8,c4,3a,66,6e,21,54,ca,6a,f8,b2,45,\
7b,76,61,fb,4d,6c,7d,ed,e5,98,5d,64,7a,26,0b,93,87,76,f7,78,1e,20,ec,03,7f,\
36,42,7a,e9,c8,56,1c,b0,de,37,04,90,81,a2,51,41,eb,31,84,4b,21,cf,29,1c,ad,\
6f,ba,58,71,fd,c0,70,e9,95,3b,76,b0,f4,44,30,46,2c,f1,6b,10,9b,79,91,a0,1d,\
99,7e,37,81,36,90,88,3a,43,fd,bf,57,e5,6a,c2,b5,d5,b9,b7,74,06,22,c6,a7,89,\
85,20,50,ad,fe,40,8b,6a,ba,70,99,00,0a,90,c0,db,b6,13,e1,ba,94,4a,0b,10,59,\
e5,be,aa,ae,b6,12,93,87,b9,a9,35,b0,52,e2,c0,a8,d5,4f,d0,b3,4b,6a,49,2b,74,\
83,86,17,08,fd,b4,fe,42,ba,78,fd,9f,d4,d8,18,e3,8e,58,ce,5e,8a,63,f0,6d,3c,\
ed,b3,43,9e,57,03,ea,25,93,1a,84,f4,ce,52,d7,50,b8,37,09,55,20,e1,a7,e7,5f,\
80,ec,ea,1b,39,41,b6,a1,31,00,c5,cb,e7,7d,af,27,c6,47,59,55,fa,ab,69,b1,84,\
7a,fd,32,89,0c,9c,92,f0,85,6c,b0,2b,57,a6,32,55,08,48,6e,7e,36,09,8b,43,d8,\
92,e3,a1,c6,eb,ac,0a,7c,34,d8,b9,1b,95,39,b2,b0,77,e9,70,b9,f5,e9,48,e5,8d,\
08,71,1c,1c,07,b8,bf,09,fa,ed,31,c0,f1,f4,96,62,d8,19,db,ba,9c,a4,f6,74,8f,\
ad,6f,89,0e,32,1f,fe,61,67,37,ce,e2,4d,85,24,62,86,f3,ce,c8,68,51,ef,fb,50,\
54,f4,03,39,de,c9,6a,8d,7f,4c,e9,3a,3c,02,40,09,d1,08,66,2b,b1,4d,e2,15,14,\
ff,79,8e,33,43,09,07,8e,29,b5,2a,f0,df,42,b5,f3,24,c1,89,c6,00,6f,fe,2e,b3,\
d9,7a,cb,eb,44,42,9d,3a,4b,90,c6,c6,ca,e5,92,43,fb,a0,b4,1e,df,d0,d2,fb,e0,\
47,45,62,b4,ef,1a,b5,84,61,5c,66,4e,b4,95,66,88,93,92,f3,06,93,67,28,1d,c3,\
b3,ee,09,84,25,b8,8c,9b,3f,8f,d8,84,5a,f8,af,09,eb,26,c9,14,04,6d,76,c2,1e,\
fa,84,b8,15,c2,63,ba,74,b8,87,79,f3,43,0e,ad,3e,ef,a3,64,f8,62,a2,9a,00,92,\
7c,09,f3,36,5d,42,f2,7a,0d,fd,a5,f7,14,ae,7f,e2,22,59,44,84,de,a6,c9,ea,dc,\
38,fb,dd,a4,3b,23,14,31,3c,68,a9,87,3e,96,ca,69,0a,1e,b1,7a,c6,5d,d6,a2,c9,\
21,63,b3,ae,69,e8,4d,a7,6c,50,fe,14,dd,13,ae,55,6e,ae,3b,dc,93,50,60,86,88,\
d7,db,2b,95,fa,cf,73,90,c8,67,ec,a4,51,bc,5a,52,a3,f9,4e,b5,f8,bc,fd,0a,2d,\
c0,44,6f,76,b9,19,eb,51,80,04,af,b8,70,ff,9c,9b,10,89,05,8d,f2,f9,b5,bd,db,\
11,34,29,23,d6,46,0e,5f,9f,b5,a3,3e,6d,50,06,b1,7a,34,77,4f,15,4a,c4,f7,ac,\
11,04,b7,2b,9e,88,ec,84,e0,0f,ab,8f,29,39,60,15,ea,3f,b5,27,be,e0,b6,b5,dc,\
9f,32,5b,a4,2b,64,7e,52,1f,d2,98,13,eb,76,d0,44,12,1c,ce,bb,97,0b,cd,98,b1,\
e7,f2,3e,c6,d6,dc,9c,97,e2,7c,b1,b8,9e,27,4f,44,0d,e9,1f,ce,bf,1d,e5,9b,3d,\
3a,05,0e,a7,f0,46,63,9c,74,d7,a0,5a,17,8f,c9,27,1e,79,54,ef,ce,90,dc,2e,c6,\
c7,a0,10,92,4d,10,d7,7c,0e,87,7e,a5,7d,bc,9c,55,91,57,8a,90,0d,9c,c8,ea,05,\
e5,9d,9b,9e,50,fe,d6,15,b5,b1,57,03,db,b2,3b,df,eb,d6,15,c4,24,ae,3e,74,d1,\
ae,6c,9d,78,8f,87,5c,55,f1,b8,00,06,45,c2,10,88,ea,95,8f,62,96,20,7e,20,f8,\
68,a3,03,d6,d7,89,f7,0e,d6,c8,c5,42,9d,86,8a,33,4a,3e,68,cb,31,c0,7b,03,74,\
7a,0f,4b,d3,f5,10,2c,c5,a2,c1,2c,c7,d7,b1,f2,f4,15,eb,aa,d6,8c,6e,ab,7c,e1,\
dd,57,cc,2e,77,43,1b,4a,48,98,fb,4c,a1,ba,54,4a,c7,27,b7,66,e8,a1,ee,0c,53,\
8f,d8,75,e7,a1,c6,70,cc,b3,3b,61,62,f4,b3,8a,77,47,41,89,bd,e9,3e,22,7b,54,\
4e,3f,82,64,ed,35,63,b9,4b,49,df,5c,5a,73,9f,a5,25,61,25,5c,63,bf,03,1e,4c,\
b6,4b,02,ab,b3,46,7d,35,69,69,83,19,19,84,ef,d8,11,3d,25,57,72,bd,f6,32,37,\
a9,c3,54,73,54,e6,c5,f0,33,4d,c2,83,91,68,13,ec,83,46,99,3f,1f,fb,27,d4,e9,\
44,92,f6,8e,6e,0c,ea,d5,73,ad,2d,d2,66,53,fe,5c,12,ac,1c,c2,de,91,d1,ba,f4,\
96,2f,9a,a3,df,9a,cb,01,35,86,7a,d4,58,82,90,b3,97,76,e5,68,9f,29,b0,99,91,\
06,42,a7,57,1f,f5,d7,37,72,bd,b0,a8,6b,cb,a3,65,ab,e9,f2,c1,08,c4,ca,3a,d5,\
f5,b2,50,63,16,29,97,c7,7a,8b,0c,de,1b,35,a5,8f,d4,e9,2c,50,d1,74,4c,ec,43,\
8e,ec,83,58,01,bd,d2,6a,0e,0f,b4,76,0c,e9,e9,d1,52,58,17,16,57,07,0e,63,18,\
10,50,c5,ba,12,d1,f0,71,84,fb,34,d8,49,f5,ac,42,84,25,b9,88,ad,f4,ae,c3,e4,\
d1,cd,85,86,78,73,03,ff,74,8f,be,df,e2,58,63,2f,79,40,ef,05,c7,23,16,56,bd,\
c5,e6,0c,6e,7b,a8,58,14,28,07,4a,54,6b,73,9f,c3,17,c8,d9,a8,e4,2b,95,03,64,\
35,1a,cf,38,54,2e,85,83,6e,2d,e1,9f,c7,bc,e8,0f,24,7a,2a,b5,30,98,45,45,20,\
2b,aa,fa,93,60,a4,88,bc,af,95,51,c2,b3,83,db,67,39,d4,82,e8,96,56,6a,25,3e,\
83,b8,02,93,02,02,0d,fb,70,03,61,35,61,94,ca,ed,a2,d7,2a,8e,c1,b6,1b,57,d0,\
8c,d5,b1,65,21,52,c0,e5,dc,b1,38,03,34,d8,72,cc,68,5e,be,44,70,a8,fb,7d,33,\
52,66,47,fa,d0,b0,5c,25,55,53,1e,1c,f3,25,db,89,04,2e,4f,c5,ca,b7,6a,8f,52,\
a3,54,04,9e,03,ae,cb,02,e4,1b,91,cf,6b,00,b5,2f,25,87,44,50,98,ea,27,c5,1e,\
ee,9b,29,f3,ad,e2,05,8c,99,38,f3,2a,be,09,04,b0,47,be,60,b1,44,a4,2c,ce,ab,\
7f,b1,3f,9c,1e,ba,af,e9,a0,3d,4d,d5,c8,3e,20,1c,f5,f1,9a,34,54,1f,71,d3,54,\
ca,aa,b1,5a,14,f6,8f,b6,5d,42,78,d6,ac,8a,47,ba,50,ee,69,a8,c7,07,e4,21,de,\
7b,98,13,1a,cf,c5,50,57,7d,ce,3f,af,47,3d,d2,9d,ca,06,b8,be,56,10,d3,a8,fd,\
f1,ec,66,ea,f9,a6,03,f4,73,b0,be,73,27,3f,4d,53,23,bc,c4,67,bc,b9,b9,ff,cf,\
2a,a6,bc,4c,d2,8e,a3,f6,fb,e4,71,64,6a,a8,2e,4c,92,d3,05,00,08,f5,53,39,37,\
1d,fe,14,55,f9,08,5a,95,3e,64,04,9f,4a,08,ff,3d,08,43,2c,57,15,b7,ab,21,21,\
2c,59,93,97,a6,97,19,80,b5,4e,8d,a4,0e,2f,62,f3,f5,40,22,24,53,94,1a,9c,09,\
59,53,91,84,18,c5,6f,91,39,c8,7b,73,c6,cb,b6,33,70,48,04,38,d7,f7,8d,17,06,\
43,64,ac,3d,fa,66,6a,f4,48,65,ef,1c,e6,86,dc,a8,8f,e8,e3,4c,b4,87,21,cd,70,\
5f,af,d9,be,d4,74,60,ea,51,3d,83,45,30,0f,04,1d,da,bb,3e,ec,2f,b4,af,d0,28,\
1e,b3,3b,ba,27,92,ec,fe,9a,bd,1e,90,b1,55,ff,34,2b,ed,63,c0,9f,91,ba,36,10,\
07,3f,30,c1,54,73,81,4b,82,ca,19,ec,a1,a4,29,22,0c,7e,88,79,ed,6a,55,a1,04,\
e4,de,c3,a4,07,c1,15,fe,48,51,ad,a1,60,3c,92,42,c8,6a,19,b9,80,28,6f,4d,48,\
85,72,31,13,fc,c5,4e,b9,54,23,43,ec,c5,f3,ab,6d,5c,1d,9e,7f,a0,1d,7a,9c,76,\
55,e3,68,42,a8,08,e3,4f,44,28,e2,71,bf,55,c0,e9,66,79,51,88,d2,96,17,17,bb,\
52,b9,fc,11,b2,b0,05,49,26,44,c0,f5,c6,b7,ae,98,db,c0,fb,b8,a1,3a,64,35,4b,\
1e,53,d8,48,af,4c,2f,c5,f4,87,99,73,6b,df,9d,8a,fc,ea,80,0d,2c,6a,16,50,93,\
e4,d8,b8,90,8e,37,c3,3b,6e,30,48,9b,c1,21,ff,19,9a,db,43,35,cb,f8,17,78,08,\
6e,68,aa,4a,bf,91,44,72,46,24,28,2f,15,e8,90,21,00,1e,45,3f,38,09,11,76,ff,\
ad,76,92,02,d6,a0,62,ea,5c,99,17,2e,a6,bc,ee,2b,6d,6c,0f,76,c2,05,b4,71,53,\
13,8d,1c,ea,c3,63,2e,36,96,fc,65,ce,5d,40,1a,73,61,99,18,95,e2,a0,ae,19,c3,\
f5,03,5a,83,6e,aa,c3,6f,75,76,aa,16,ab,90,68,fe,d1,c6,07,95,e9,26,34,6a,98,\
cc,68,9d,cf,f8,b2,94,aa,63,b7,f0,99,d4,f7,c0,bd,ee,52,f4,95,4c,ca,14,d9,d0,\
8a,00

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer\Run]

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"dontdisplaylastusername"=dword:00000000
"legalnoticecaption"=""
"legalnoticetext"=""
"shutdownwithoutlogon"=dword:00000001
"undockwithoutlogon"=dword:00000001

[HKEY_USERS\.default\software\microsoft\windows\currentversion\policies\explorer]
"NoDriveTypeAutoRun"=dword:00000091
"CDRAutoRun"=dword:00000000

[HKEY_USERS\s-1-5-18\software\microsoft\windows\currentversion\policies\explorer]
"NoDriveTypeAutoRun"=dword:00000091
"CDRAutoRun"=dword:00000000

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\shellserviceobjectdelayload]
"PostBootReminder"="{7849596a-48ea-486e-8937-a2a3009f31a9}"
"CDBurn"="{fbeb8a05-beee-4442-804e-409d6c4515e9}"
"WebCheck"="{E6FB5E20-DE35-11CF-9C87-00AA005127ED}"
"SysTray"="{35CEC8A3-2BE6-11D2-8773-92E220524153}"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^chris^Start Menu^Programs^Startup^bs5-zxlbme.exe]
"path"="C:\\Documents and Settings\\chris\\Start Menu\\Programs\\Startup\\bs5-zxlbme.exe"
"backup"="C:\\WINDOWS\\pss\\bs5-zxlbme.exeStartup"
"location"="Startup"
"command"="C:\\Documents and Settings\\chris\\Start Menu\\Programs\\Startup\\bs5-zxlbme.exe"
"item"="bs5-zxlbme"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^chris^Start Menu^Programs^Startup^initial.cfg]
"path"="C:\\Documents and Settings\\chris\\Start Menu\\Programs\\Startup\\initial.cfg"
"backup"="C:\\WINDOWS\\pss\\initial.cfgStartup"
"location"="Startup"
"command"="C:\\Documents and Settings\\chris\\Start Menu\\Programs\\Startup\\initial.cfg"
"item"="initial"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^chris^Start Menu^Programs^Startup^saapau.dat]
"path"="C:\\Documents and Settings\\chris\\Start Menu\\Programs\\Startup\\saapau.dat"
"backup"="C:\\WINDOWS\\pss\\saapau.datStartup"
"location"="Startup"
"command"="C:\\Documents and Settings\\chris\\Start Menu\\Programs\\Startup\\saapau.dat"
"item"="saapau"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^chris^Start Menu^Programs^Startup^saap_kyf.dat]
"path"="C:\\Documents and Settings\\chris\\Start Menu\\Programs\\Startup\\saap_kyf.dat"
"backup"="C:\\WINDOWS\\pss\\saap_kyf.datStartup"
"location"="Startup"
"command"="C:\\Documents and Settings\\chris\\Start Menu\\Programs\\Startup\\saap_kyf.dat"
"item"="saap_kyf"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\8c2f4ecf3c9e]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="bidispl5"
"hkey"="HKLM"
"command"="C:\\WINDOWS\\System32\\bidispl5.exe"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\bxxs5]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="bxxs5"
"hkey"="HKLM"
"command"="RunDLL32.EXE C:\\WINDOWS\\bxxs5.dll,DllRun"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CARPService]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="carpserv"
"hkey"="HKLM"
"command"="carpserv.exe"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DrvLsnr]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="DrvLsnr"
"hkey"="HKLM"
"command"="C:\\Program Files\\Analog Devices\\SoundMAX\\DrvLsnr.exe"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Free Download Manager]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="fdm"
"hkey"="HKCU"
"command"="C:\\Program Files\\Free Download Manager\\fdm.exe -autorun"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\psnP3pO]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="odponfig"
"hkey"="HKLM"
"command"="odponfig.exe"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QCn5Kx1cW]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="QCn5Kx1cW"
"hkey"="HKLM"
"command"="C:\\documents and settings\\chris\\local settings\\temp\\QCn5Kx1cW.exe"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="qttask"
"hkey"="HKLM"
"command"="\"C:\\Program Files\\QuickTime\\qttask.exe\" -atboottime"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Rdqlck]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="Rdqlck"
"hkey"="HKLM"
"command"="C:\\documents and settings\\chris\\local settings\\temp\\Rdqlck.exe"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Start WingMan Profiler]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"=""
"hkey"="HKCU"
"command"=""
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="jusched"
"hkey"="HKLM"
"command"="C:\\Program Files\\Java\\j2re1.4.2_06\\bin\\jusched.exe"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TkBellExe]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="realsched"
"hkey"="HKLM"
"command"="\"C:\\Program Files\\Common Files\\Real\\Update_OB\\realsched.exe\" -osboot"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"="msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll"


[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost]
LocalService REG_MULTI_SZ Alerter\0WebClient\0LmHosts\0RemoteRegistry\0upnphost\0SSDPSRV\0\0
NetworkService REG_MULTI_SZ DnsCache\0\0
rpcss REG_MULTI_SZ RpcSs\0\0
imgsvc REG_MULTI_SZ StiSvc\0\0
termsvcs REG_MULTI_SZ TermService\0\0
HTTPFilter REG_MULTI_SZ HTTPFilter\0\0

HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost *netsvcs*
Ip6FwHlp

Completion time: 06-12-18 16:34:22.43
C:\ComboFix.txt ... 06-12-18 16:34
C:\ComboFix2.txt ... 06-12-18 01:34
C:\ComboFix3.txt ... 06-12-17 17:06
Christ84opher is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Reddit!
Old 12-19-2006, 09:09 PM   #7 (permalink)
Registered User
 
Christ84opher's Avatar
 
Join Date: Dec 2006
Location: ny
Posts: 13
OS: xp


Send a message via AIM to Christ84opher Send a message via Yahoo to Christ84opher
Logfile of HijackThis v1.99.1
Scan saved at 11:00:31 PM, on 12/19/2006
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\System32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
C:\Program Files\CA\eTrust EZ Armor\eTrust EZ Anti-Spam\QSP-2.1.212.0\QOELoader.exe
C:\PROGRA~1\CA\ETRUST~1\ETRUST~2\VetTray.exe
C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe
C:\Program Files\Java\jre1.5.0_02\bin\jusched.exe
C:\WINDOWS\System32\Rundll32.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\VentSrv\ventrilo_svc.exe
C:\Program Files\VentSrv\ventrilo_srv.exe
C:\PROGRA~1\CA\ETRUST~1\ETRUST~2\VetMsg.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\Google\GoogleToolbarNotifier\1.2.908.5008\GoogleToolbarNotifier.exe
C:\Documents and Settings\chris\Desktop\JoyToKey.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\AIM\aim.exe
C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe
C:\Program Files\internet explorer\iexplore.exe
C:\Program Files\Hijackthis\HijackThis.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.yahoo.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/...ch/search.html
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
R3 - URLSearchHook: (no name) - {BAAEB691-5B0B-17F5-74F5-02457D782493} - C:\WINDOWS\System32\jwmvq.dll (file missing)
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn2\yt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn2\yt.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: Yahoo! IE Services Button - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar4.dll
O2 - BHO: (no name) - {BAAEB691-5B0B-17F5-74F5-02457D782493} - C:\WINDOWS\System32\jwmvq.dll (file missing)
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn2\yt.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar4.dll
O4 - HKLM\..\Run: [QOELOADER] "C:\Program Files\CA\eTrust EZ Armor\eTrust EZ Anti-Spam\QSP-2.1.212.0\QOELoader.exe"
O4 - HKLM\..\Run: [VetTray] C:\PROGRA~1\CA\ETRUST~1\ETRUST~2\VetTray.exe
O4 - HKLM\..\Run: [Zone Labs Client] C:\PROGRA~1\CA\ETRUST~1\ETRUST~3\ca.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_02\bin\jusched.exe
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [P17Helper] Rundll32 P17.dll,P17Helper
O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\cli.exe" runtime -Delay
O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Program Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe"
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKCU\..\Run: [Yahoo! Pager] "C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe" -quiet
O4 - HKCU\..\Run: [Free Download Manager] C:\Program Files\Free Download Manager\fdm.exe -autorun
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
O8 - Extra context menu item: &Yahoo! Search - file:///C:\Program Files\Yahoo!\Common/ycsrch.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Yahoo! &Dictionary - file:///C:\Program Files\Yahoo!\Common/ycdict.htm
O8 - Extra context menu item: Yahoo! &Maps - file:///C:\Program Files\Yahoo!\Common/ycmap.htm
O8 - Extra context menu item: Yahoo! &SMS - file:///C:\Program Files\Yahoo!\Common/ycsms.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll
O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
O9 - Extra 'Tools' menuitem: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {63DF43C2-469A-41F3-B119-17B1ACE8BB34} (Sony SNC-RZ30 Image Viewer) - http://66.208.222.163/home/SonySncRz30View.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsu...?1132181825796
O16 - DPF: {745395C8-D0E1-4227-8586-624CA9A10A8D} (AxisMediaControl Class) - http://198.189.234.9/activex/AMC.cab
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/actives...ree/asinst.cab
O16 - DPF: {A364AF35-0CDF-41E8-8F3B-E0E55E15EBA1} (Zenturi Active Programs Control) - http://www.programchecker.com/dll/nixon.cab
O16 - DPF: {A90A5822-F108-45AD-8482-9BC8B12DD539} (Crucial cpcScan) - http://www.crucial.com/controls/cpcScanner.cab
O16 - DPF: {C5E28B9D-0A68-4B50-94E9-E8F6B4697514} (NsvPlayX Control) - http://www.nullsoft.com/nsv/embed/nsvplayx_vp3_mp3.cab
O16 - DPF: {DE625294-70E6-45ED-B895-CFFA13AEB044} (AxisMediaControlEmb Class) - http://69.66.104.110/activex/AMC.cab
O16 - DPF: {E3E02F12-2ADB-478C-8742-5F0819F9F0F4} (Quantum Streaming IE VersionManager Class) - http://qmedia.xlontech.net/100170/sd...ie06041001.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{A276BDA0-D097-4C4F-9E74-E63DA476C4DF}: NameServer = 192.168.1.1
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\System32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: Autodesk Licensing Service - Unknown owner - C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe
O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
O23 - Service: StarWind iSCSI Service (StarWindService) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe
O23 - Service: Ventrilo - Unknown owner - C:\Program Files\VentSrv\ventrilo_svc.exe
O23 - Service: VET Message Service (VETMSGNT) - Computer Associates International, Inc. - C:\PROGRA~1\CA\ETRUST~1\ETRUST~2\VetMsg.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs Inc. - C:\WINDOWS\system32\ZoneLabs\vsmon.exe
Christ84opher is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Reddit!
Old 12-21-2006, 12:59 AM   #8 (permalink)
TSF Enthusiast
 
src2206's Avatar
 
Join Date: Apr 2006
Location: Kolkata, India
Posts: 2,068
OS: WinXP Pro SP3

My System

Send a message via Yahoo to src2206
Post

Hello Christopher, good job!

Your computer is severely infected. Though we have own the first round of battle, there are few more rounds we need to go through. So stick with me- we are surely going to clear your PC.

Follow the next set of instructions carefully and in the order given.

Downloads

1. Please download AproposFix from here:
http://swandog46.geekstogo.com/aproposfix.exe

Save it to your desktop but do NOT run it yet.

2. Download Hoster.
Save it to your desktop but do NOT run it yet.

3. Please DELETE the present Combofix.exe that you have and download a new version from the following link

http://download.bleepingcomputer.com...h/combofix.exe

Save this on your Desktop but do NOT run it yet.

4. You need to update your AVG AS to the latest definition. Run AVG Anti-Spyware
  • From the main screen, click on update, then click the Start
    update
    button.
  • After the update finishes (the status bar at the bottom will display "Update
    successful")
  • select the "Settings" tab.
  • Once in the Settings screen click on "Recommended actions" and then select "Quarantine".
  • Under "Reports"
  • Select "Automatically generate report after every scan"
  • Un-Select "Only if threats were found"
  • Exit AVG Anti-Spyware. DO NOT scan yet.
________________________________________________

Disable Security Softwares

Double-click the icon on Desktop to launch AVG Anti-Spyware. Please disable your AVG Anti-Spyware Guard, as it may hinder the removal of some entries.
  • On the top of the main screen click Shield
  • Click the word active to change it to inactive
________________________________________________

Fix

Restart your computer and boot into Safe Mode by tapping the F8 key repeatedly until a menu shows up (and choose Safe Mode from the list). In some systems, this may be the F5 key, so try that if F8 doesn't work. Login on your usual account. Make sure to close any open browsers.

Click > Start > Control Panel > Add / Remove Programs and uninstall the following programs (if they exist):

Winad Client
Recommended Hotfix - 421701D
MyWay

________________________________________________________________

Aproposfix.exe

Please double-click aproposfix.exe and unzip it to the desktop. Open the aproposfix folder on your desktop and run RunThis.bat. Follow the prompts.

This tool will produce a log. Post the entire contents of the log.txt file available in the aproposfix folder with your next reply.

If the tool asks you to reboot, do not reboot now, as we will do that later.
_____________________________________________________________

Open HijackThis and click on 'Do a System Scan Only'. Check the following entries (If they still exist, make sure you do not miss any)

R3 - URLSearchHook: (no name) - {BAAEB691-5B0B-17F5-74F5-02457D782493} - C:\WINDOWS\System32\jwmvq.dll (file missing)
O2 - BHO: (no name) - {BAAEB691-5B0B-17F5-74F5-02457D782493} - C:\WINDOWS\System32\jwmvq.dll (file missing)


Please remember to close all other windows, including browsers then click Fix checked.

Delete the following Files indicated in RED and Folders indicated in BLUE if they still exist.

C:\WINDOWS\çasks
c:\program files\ MyWay
c:\program files\ Recommended Hotfix - 421701D
C:\WINDOWS\ pss
C:\WINDOWS\ qqzo
C:\ FOUND.016
C:\Documents and Settings\chris\Application Data\ POP!
c:\program files\ Winad Client
c:\windows\system32\drivers\etc\ hosts.bho
c:\windows\downloaded program files\ WildApp.inf
c:\windows\system32\ vx0.nls
c:\windows\system32\ ezPopStub.exe
c:\windows\ sepsd.bin
C:\WINDOWS\ blocklist.reg
C:\WINDOWS\system32\ xmltok.dll
C:\WINDOWS\ test.bat
C:\Documents and Settings\chris\Start Menu\Programs\Startup\ bs5-zxlbme.exe
C:\Documents and Settings\chris\Start Menu\Programs\Startup\ saapau.dat
C:\Documents and Settings\chris\Start Menu\Programs\Startup\ saap_kyf.dat
C:\WINDOWS\System32\ bidispl5.exe
C:\WINDOWS\ bxxs5.dll
C:\documents and settings\chris\local settings\temp\ Rdqlck.exe
C:\documents and settings\chris\local settings\temp\ QCn5Kx1cW.exe
odponfig.exe
- Find this file using Start>Search.
_______________________________________________________________

Clear IE6 cookies

1. On the Internet Explorer 6 Tools menu, click Internet Options. The Internet Options box should open to the General tab.

2. On the General tab, in the Temporary Internet Files section, click the Delete Files button. This will delete all the files that are currently stored in your cache [that includes cookies too].

3. Click OK, and then click OK again.

You can check this link for more information.
________________________________________________________________

Registry Fix

Open notepad and copy and paste next present in the quote box below in it:
(don't forget to copy and paste REGEDIT4)

Quote:
REGEDIT4

[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Rdqlck]

[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QCn5Kx1cW]

[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\psnP3pO]

[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\bxxs5]

[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\8c2f4ecf3c9e]

[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^chris^Start Menu^Programs^Startup^saap_kyf.dat]

[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^chris^Start Menu^Programs^Startup^saapau.dat]

[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^chris^Start Menu^Programs^Startup^bs5-zxlbme.exe]

[-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^chris^Start Menu^Programs^Startup^initial.cfg]

[-hkey_classes_root\clsid\{147A976E-EEE1-4377-8EA7-4716E4CDD239}]
Save this as fix.reg Choose to "Save type as - All Files"
It should look like this:
Double click on fix.reg & allow it to merge into the registry.
_______________________________________________________________

It appears that you had some problem in configuring the scan options of AVG Anti- Spyware, and so AVG AS only searched the System Restore folders. So please read the following instructions very carefully to configure AVG AS properly and then do another scan.

AVG Anti-Spyware

Run AVG Anti-Spyware with it's updated definitions:(...it's important that all windows must be closed)
  • Click Scanner
  • Click on the Scan tab
  • Click Complete System Scan to begin scanning.
    Once the scan is complete do the following:
  • If you have any infections you will prompted, then select "Apply all actions"
  • Once finished, click the Save report button, then click Save Report As and save it to your desktop. (make sure to remember where you saved that file, this is important).

Reboot your system in Normal Mode.
________________________________________________________________

Hoster
  • Unzip Hoster to it's own folder.
  • Run Hoster.exe
  • Click "Make Hosts Writable?" in the upper right corner.
  • Click Restore Microsoft's Original Hosts file and then click OK.
  • Close Hoster.
  • Note: If a custom Hosts file was in place, you'll have to edit those entries back in.
_____________________________________________________________

ComboFix

Please run ComboFix.exe [the newly downloaded one] once more and post the content of the log it produces.
________________________________________________________________

Online File Submission

Upload this file C:\WINDOWS\system32\E67C4BEBB8.sys to http://virusscan.jotti.org and report back what it found.

At the top of the window you should see "File to Upload & scan" and a blank box. Copy and paste the the full path of E67C4BEBB8.sys into the box. Then click "submit".

When it is finished, please copy and paste the information listed under "Service" and "Scanner Results" here.
________________________________________________________________

Online Scan

Perform an online scan with Internet Explorer with

Kaspersky WebScanner

Next Click on Launch Kaspersky Anti-Virus Web Scanner

You will be prompted to install an ActiveX component from Kaspersky, Click Yes.
  • The program will then begin downloading the latest definition files.
  • Once the files have been downloaded click on NEXT
  • Locate the Scan Settings button & configure to:
    • Scan using the following Anti-Virus database:
      • Extended
    • Scan Options:
      • Scan Archives
      • Scan Mail Bases
  • Click OK & have it scan My Computer
  • Once the scan is complete, it will display if your system has been infected. It does not provide an option to clean/disinfect. We only require a report from it.
  • Click the Save as Text button to save the file to your desktop so that you may post it in your next reply
* Turn off the real time scanner of any existing antivirus program while performing the online scan

So with your next post please provide the following logs:

AVG AS
Kaspersky Scan Log
Log.txt [from AproposFix]
Combofix.txt
Jotti Scan Report


Please let me know about your system's overall behaviour, that whether you are still experiencing the initial troubles with random pop ups.
__________________
Registered Linux user #426065
src2206 is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Reddit!
Old 01-01-2007, 01:40 AM   #9 (permalink)
Registered User
 
Christ84opher's Avatar
 
Join Date: Dec 2006
Location: ny
Posts: 13
OS: xp


Send a message via AIM to Christ84opher Send a message via Yahoo to Christ84opher
sorry i havent had a chance to do this yet been pretty busy last week with the holidays and everything will try and get this done within the next day or 2

-Chris
Christ84opher is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Reddit!
Old 01-01-2007, 07:38 AM   #10 (permalink)
TSF Enthusiast
 
src2206's Avatar
 
Join Date: Apr 2006
Location: Kolkata, India
Posts: 2,068
OS: WinXP Pro SP3

My System

Send a message via Yahoo to src2206
Hello Christopher,
I hope you have enjoyed your holiday.
Please follow the instructions already given in the post no 8 [ outerinfo oin pop-ups ] above. Your computer really needs some cleaning my friend.
So I'll be waiting.
__________________
Registered Linux user #426065
src2206 is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Reddit!
Old 01-01-2007, 11:15 PM   #11 (permalink)
Registered User
 
Christ84opher's Avatar
 
Join Date: Dec 2006
Location: ny
Posts: 13
OS: xp


Send a message via AIM to Christ84opher Send a message via Yahoo to Christ84opher
---------------------------------------------------------
AVG Anti-Spyware - Scan Report
---------------------------------------------------------

+ Created at: 5:55:46 PM 1/1/2007

+ Scan result:



C:\Documents and Settings\chris\Cookies\chris@2o7[2].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\chris\Cookies\chris@cbs.112.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\chris\Cookies\chris@msnportal.112.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\chris\Local Settings\Temp\Cookies\chris@2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\chris\Local Settings\Temp\Cookies\chris@msnportal.112.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\chris\Cookies\chris@adbrite[2].txt -> TrackingCookie.Adbrite : Cleaned.
C:\Documents and Settings\chris\Cookies\chris@adrevolver[1].txt -> TrackingCookie.Adrevolver : Cleaned.
C:\Documents and Settings\chris\Cookies\chris@media.adrevolver[1].txt -> TrackingCookie.Adrevolver : Cleaned.
C:\Documents and Settings\chris\Local Settings\Temp\Cookies\chris@adrevolver[3].txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.20:C:\Documents and Settings\chris\Application Data\Mozilla\Firefox\Profiles\ave90rj8.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.21:C:\Documents and Settings\chris\Application Data\Mozilla\Firefox\Profiles\ave90rj8.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.22:C:\Documents and Settings\chris\Application Data\Mozilla\Firefox\Profiles\ave90rj8.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.23:C:\Documents and Settings\chris\Application Data\Mozilla\Firefox\Profiles\ave90rj8.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.29:C:\Documents and Settings\chris\Application Data\Mozilla\Firefox\Profiles\ave90rj8.default\cookies.txt -> TrackingCookie.Atdmt : Cleaned.
C:\Documents and Settings\chris\Cookies\chris@citi.bridgetrack[1].txt -> TrackingCookie.Bridgetrack : Cleaned.
C:\Documents and Settings\chris\Local Settings\Temp\Cookies\chris@com[1].txt -> TrackingCookie.Com : Cleaned.
C:\Documents and Settings\chris\Cookies\chris@as-eu.falkag[2].txt -> TrackingCookie.Falkag : Cleaned.
C:\Documents and Settings\chris\Cookies\chris@as-us.falkag[1].txt -> TrackingCookie.Falkag : Cleaned.
C:\Documents and Settings\chris\Cookies\chris@ads.gamershell[1].txt -> TrackingCookie.Gamershell : Cleaned.
C:\Documents and Settings\chris\Cookies\chris@gamershell[1].txt -> TrackingCookie.Gamershell : Cleaned.
C:\Documents and Settings\chris\Cookies\chris@overture[2].txt -> TrackingCookie.Overture : Cleaned.
C:\Documents and Settings\chris\Local Settings\Temp\Cookies\chris@overture[1].txt -> TrackingCookie.Overture : Cleaned.
C:\Documents and Settings\chris\Local Settings\Temp\Cookies\chris@perf.overture[1].txt -> TrackingCookie.Overture : Cleaned.
C:\Documents and Settings\chris\Cookies\chris@ads.pointroll[2].txt -> TrackingCookie.Pointroll : Cleaned.
C:\Documents and Settings\chris\Local Settings\Temp\Cookies\chris@ads.pointroll[2].txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.14:C:\Documents and Settings\chris\Application Data\Mozilla\Firefox\Profiles\ave90rj8.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
C:\Documents and Settings\chris\Cookies\chris@questionmarket[2].txt -> TrackingCookie.Questionmarket : Cleaned.
C:\Documents and Settings\chris\Local Settings\Temp\Cookies\chris@questionmarket[2].txt -> TrackingCookie.Questionmarket : Cleaned.
C:\Documents and Settings\chris\Cookies\chris@edge.ru4[2].txt -> TrackingCookie.Ru4 : Cleaned.
C:\Documents and Settings\chris\Local Settings\Temp\Cookies\chris@edge.ru4[1].txt -> TrackingCookie.Ru4 : Cleaned.
C:\Documents and Settings\chris\Cookies\chris@serving-sys[2].txt -> TrackingCookie.Serving-sys : Cleaned.
C:\Documents and Settings\chris\Cookies\chris@adopt.specificclick[1].txt -> TrackingCookie.Specificclick : Cleaned.
C:\Documents and Settings\chris\Cookies\chris@statcounter[2].txt -> TrackingCookie.Statcounter : Cleaned.
C:\Documents and Settings\chris\Local Settings\Temp\Cookies\chris@statcounter[2].txt -> TrackingCookie.Statcounter : Cleaned.
C:\Documents and Settings\chris\Cookies\chris@tacoda[2].txt -> TrackingCookie.Tacoda : Cleaned.
C:\Documents and Settings\chris\Local Settings\Temp\Cookies\chris@tacoda[1].txt -> TrackingCookie.Tacoda : Cleaned.
C:\Documents and Settings\chris\Local Settings\Temp\Cookies\chris@trafficmp[2].txt -> TrackingCookie.Trafficmp : Cleaned.
C:\Documents and Settings\chris\Cookies\chris@tribalfusion[1].txt -> TrackingCookie.Tribalfusion : Cleaned.
C:\Documents and Settings\chris\Cookies\chris@ad.yieldmanager[2].txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Documents and Settings\chris\Local Settings\Temp\Cookies\chris@ad.yieldmanager[2].txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Documents and Settings\chris\Cookies\chris@zedo[1].txt -> TrackingCookie.Zedo : Cleaned.


::Report end

log.txt from aproposfix

Log of AproposFix v1.1

************

Running from directory:
C:\Documents and Settings\chris\Desktop\aproposfix

************



Registry entries found:


************

No service found!

Removing hidden folder:
No folder found!

Deleting files:


Backing up files:
Done!

Removing registry entries:

REGEDIT4


Done!

Finished!


"chris" - 07-01-01 21:50:28.25 Service Pack 1
ComboFix 06-12-23W-BetaE2 - Running from: "C:\Documents and Settings\chris\Desktop"

(((((((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))


e:\autorun.inf" . . . . failed to delete
~ ~ ~ ~ ~ ~ ~ ~ ~ ~ ~ ~ ~ ~ Purity ~ ~ ~ ~ ~ ~ ~ ~~ ~ ~ ~ ~ ~ ~ ~ ~ ~ ~ ~
Folders Quarantined:
C:\qoobox\purity\Documents and Settings\chris\Application Data\APPATC~1
C:\qoobox\purity\Documents and Settings\chris\Application Data\MCROSO~1
C:\qoobox\purity\Documents and Settings\chris\My Documents\CROSOF~1
C:\qoobox\purity\Documents and Settings\chris\My Documents\ICROSO~1
C:\qoobox\purity\Program Files\ICROSO~1.NET
C:\qoobox\purity\Program Files\YSTEM~1
C:\qoobox\purity\Program Files\Common Files\CROSOF~1
C:\qoobox\purity\Program Files\Common Files\ICROSO~1
C:\qoobox\purity\Program Files\Common Files\MANTEC~1
C:\qoobox\purity\Program Files\YSTEM~1\scanregw.exe
C:\qoobox\purity\Program Files\YSTEM~1\YSTEM~1
C:\qoobox\purity\WINDOWS\SMBOLS~1
C:\qoobox\purity\WINDOWS\system32\TSKS~1
C:\qoobox\purity\WINDOWS\system32\TSKS~1\?ttrib.exe


((((((((((((((((((((((((((((((( Files Created from 2006-12-01 to 2007-01-01 ))))))))))))))))))))))))))))))))))


2006-12-29 00:59 <DIR> d-------- C:\Program Files\Ventrilo
2006-12-18 01:40 <DIR> d-------- C:\WINDOWS\system32\ActiveScan
2006-12-18 01:15 <DIR> d-------- C:\bintheredunthat
2006-12-17 17:03 <DIR> d-------- C:\WINDOWS\erdnt
2006-12-17 16:31 <DIR> d-------- C:\bfu
2006-12-17 16:20 3,968 --a------ C:\WINDOWS\system32\drivers\AvgAsCln.sys
2006-12-17 16:19 <DIR> d-------- C:\Program Files\Grisoft
2006-12-16 20:05 5,248 --a------ C:\WINDOWS\system32\drivers\vax347s.sys
2006-12-16 20:05 159,616 --a------ C:\WINDOWS\system32\drivers\vax347b.sys
2006-12-16 20:05 <DIR> d-------- C:\Program Files\Alcohol Soft
2006-12-16 20:02 <DIR> d-------- C:\Program Files\Alcoholer
2006-12-16 17:56 <DIR> d-------- C:\WINDOWS\çasks
2006-12-11 18:55 991,232 --a------ C:\WINDOWS\system32\esent.dll
2006-12-09 01:22 <DIR> d-------- C:\Program Files\Hijackthis
2006-12-09 00:41 <DIR> d-------- C:\Documents and Settings\All Users.WINDOWS\Application Data\Zenturi


(((((((((((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))))))


2006-12-31 01:17 -------- d-------- C:\Program Files\mozilla firefox
2006-12-29 00:58 -------- d-------- C:\Program Files\Common Files\wise installation wizard
2006-12-27 15:34 -------- d-------- C:\Program Files\rfactor1150
2006-12-19 05:21 -------- d-------- C:\Program Files\ventsrv
2006-12-19 05:11 -------- d-------- C:\Program Files\magiciso
2006-12-19 05:07 -------- d-------- C:\Program Files\google
2006-12-19 05:01 -------- d-------- C:\Program Files\aim
2006-12-18 17:01 -------- d-------- C:\Program Files\quicktime
2006-12-16 13:10 -------- d-------- C:\Program Files\nrtv
2006-11-30 22:06 -------- d-------- C:\Program Files\axis communications
2006-11-05 02:34 -------- d-------- C:\Program Files\teamspeak2_rc2


(((((((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))

*Note* empty entries are not shown

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run]
"Start WingMan Profiler"=""
"Yahoo! Pager"="\"C:\\Program Files\\Yahoo!\\Messenger\\YahooMessenger.exe\" -quiet"
"Free Download Manager"="C:\\Program Files\\Free Download Manager\\fdm.exe -autorun"

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run]
"QOELOADER"="\"C:\\Program Files\\CA\\eTrust EZ Armor\\eTrust EZ Anti-Spam\\QSP-2.1.212.0\\QOELoader.exe\""
"VetTray"="C:\\PROGRA~1\\CA\\ETRUST~1\\ETRUST~2\\VetTray.exe"
"Zone Labs Client"="C:\\PROGRA~1\\CA\\ETRUST~1\\ETRUST~3\\ca.exe"
"QuickTime Task"="\"C:\\Program Files\\QuickTime\\qttask.exe\" -atboottime"
"SunJavaUpdateSched"="C:\\Program Files\\Java\\jre1.5.0_02\\bin\\jusched.exe"
"ATIPTA"="C:\\Program Files\\ATI Technologies\\ATI Control Panel\\atiptaxx.exe"
"TkBellExe"="\"C:\\Program Files\\Common Files\\Real\\Update_OB\\realsched.exe\" -osboot"
"P17Helper"="Rundll32 P17.dll,P17Helper"
"ATICCC"="\"C:\\Program Files\\ATI Technologies\\ATI.ACE\\cli.exe\" runtime -Delay"
"Adobe Photo Downloader"="\"C:\\Program Files\\Adobe\\Photoshop Album Starter Edition\\3.0\\Apps\\apdproxy.exe\""
"!AVG Anti-Spyware"="\"C:\\Program Files\\Grisoft\\AVG Anti-Spyware 7.5\\avgas.exe\" /minimized"

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents]

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\IMAIL]
"Installed"="1"

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MAPI]
"Installed"="1"
"NoChange"="1"

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MSFS]
"Installed"="1"

[HKEY_CURRENT_USER\software\microsoft\internet explorer\desktop\components]
"DeskHtmlVersion"=dword:00000110
"DeskHtmlMinorVersion"=dword:00000005
"Settings"=dword:00000001
"GeneralFlags"=dword:00000001

[HKEY_CURRENT_USER\software\microsoft\internet explorer\desktop\components\0]
"Source"="About:Home"
"SubscribedURL"="About:Home"
"FriendlyName"="My Current Home Page"
"Flags"=dword:00000002
"Position"=hex:2c,00,00,00,cc,00,00,00,00,00,00,00,34,03,00,00,e2,02,00,00,00,\
00,00,00,01,00,00,00,01,00,00,00,01,00,00,00,00,00,00,00,00,00,00,00
"CurrentState"=hex:04,00,00,40
"OriginalStateInfo"=hex:18,00,00,00,a0,00,00,00,00,00,00,00,80,02,00,00,3a,02,\
00,00,04,00,00,40
"RestoredStateInfo"=hex:18,00,00,00,a0,00,00,00,00,00,00,00,80,02,00,00,3a,02,\
00,00,01,00,00,00

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\sharedtaskscheduler]
"{438755C2-A8BA-11D1-B96B-00A0C90312E1}"="Browseui preloader"
"{8C7461EF-2B13-11d2-BE35-3078302C2030}"="Component Categories cache daemon"

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shellexecutehooks]
"{AEB6717E-7E19-11d0-97EE-00C04FD91972}"=""
"{57B86673-276A-48B2-BAE7-C6DBB3020EB8}"="AVG Anti-Spyware 7.5"

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]
"NoDriveTypeAutoRun"=dword:00000091
"DriveConfiguration"=hex:2e,55,a9,07,cf,ff,47,95,2e,0c,e9,9d,8e,c1,89,be,64,d2,\
de,66,b9,32,de,42,d0,2a,81,f9,09,a8,c9,19,05,da,ff,51,0b,fc,3f,e2,aa,6f,36,\
50,a0,0a,2b,5d,fb,b4,3c,37,7e,33,eb,f1,46,3f,d9,30,ad,db,d0,27,6f,e5,07,c5,\
0b,eb,a2,2c,6d,40,79,66,e9,4f,1a,53,ca,30,11,e6,ec,79,67,91,26,57,68,fe,cd,\
dd,a9,00,b5,9b,4a,c9,99,73,79,5d,bd,a8,37,46,d1,38,5f,8a,19,6c,e4,da,cb,ad,\
5a,0c,b8,99,b8,cb,2f,56,5c,8e,1f,26,4f,c6,7b,3c,cb,5c,e3,ce,fa,5a,80,6c,01,\
e8,30,90,3d,7b,e3,76,cc,49,44,a9,50,00,9c,ef,ef,b7,f4,ae,9e,25,7a,ef,a0,11,\
27,dc,49,09,9e,94,08,57,56,c5,a4,31,fb,7d,c6,30,12,3d,b8,03,dc,4f,6c,65,7e,\
5a,c0,4c,5e,34,00,64,d0,f7,ad,bb,f2,57,7d,be,d4,33,a2,64,dd,69,4f,a9,6a,ef,\
79,3e,b7,20,da,7f,03,53,3c,a5,ef,b2,fb,3d,28,49,ad,d8,45,5e,67,05,f2,01,be,\
7c,4f,e3,70,9c,93,6c,1a,18,f5,07,42,ed,cc,c1,9a,97,f5,12,83,84,75,fa,d1,c9,\
5f,50,ce,13,f8,57,81,e1,1a,93,30,f1,d6,db,23,f8,5d,ae,ab,96,21,ca,63,89,37,\
fb,b6,21,00,32,a1,f4,08,d6,ba,d2,2e,5f,72,fe,06,20,97,90,7b,64,1c,48,b9,bd,\
1d,64,49,99,1e,e5,7e,16,94,fc,11,18,a6,c2,08,98,34,29,dc,3e,19,33,da,33,ad,\
62,ca,30,8e,6f,cf,dc,a1,3e,8e,54,53,12,92,0b,25,fd,ef,d4,67,9b,26,3d,43,00,\
49,1f,fe,ef,60,73,7b,4d,0a,67,01,d5,67,b1,3d,0c,ac,24,8b,78,3b,81,71,0d,e4,\
8f,6c,e8,2b,6e,f0,40,be,28,aa,99,5e,89,08,3a,85,31,fb,e2,4b,e7,fb,b7,8a,30,\
4c,7f,41,20,81,12,36,71,3e,0f,e0,d2,42,cf,83,81,a4,97,9d,1c,5c,12,81,b4,06,\
fe,42,24,e3,25,d2,a1,21,8f,6b,92,5c,f6,2e,a1,64,7a,0a,9d,41,96,e0,53,74,53,\
e5,d5,80,bb,47,1b,a9,91,13,10,fc,3f,56,9e,8f,10,82,7c,0a,9f,14,48,66,8f,74,\
d5,f5,7d,1d,c6,a3,33,fd,5c,7b,1f,1f,8c,6d,03,87,55,4e,ed,5d,50,20,6a,4f,89,\
94,f7,30,8d,cd,b8,e5,c4,67,6d,81,01,b8,a1,af,58,55,24,50,2f,ef,bc,66,98,e1,\
18,31,de,5b,05,97,5e,01,e4,c9,99,20,5c,24,87,9e,4c,55,2d,3b,04,c1,71,17,b4,\
24,2e,74,24,78,84,be,a6,18,71,c8,49,25,a6,59,50,29,93,e7,e3,fa,c5,a2,03,e1,\
71,b4,c3,fc,51,c8,b6,e1,ae,c9,a4,84,be,ec,81,5b,31,f0,9f,c0,07,a4,a4,96,a4,\
ab,b4,2f,26,7c,7b,6d,f6,ac,48,28,9d,70,12,d0,da,5d,a2,54,f1,73,8f,42,45,5a,\
6d,2f,29,eb,42,59,f4,f2,39,8b,53,33,9b,41,e4,ab,fa,0d,00,17,af,39,d7,bb,87,\
ae,c3,5c,ba,14,d6,8e,1d,3b,b5,36,98,ba,aa,47,d9,d6,f4,cf,4a,a5,62,37,41,c5,\
20,c6,77,64,d0,68,bc,5b,dc,ae,e9,1b,0b,15,15,ac,53,8b,0c,00,ee,2f,fc,d7,b0,\
59,72,e0,98,da,85,21,a5,85,51,98,eb,ed,a8,23,e5,71,03,9d,0d,76,bf,4a,aa,f4,\
86,75,ea,34,0a,57,30,d8,fa,3b,af,1b,2e,e0,38,5a,25,1f,50,d3,b2,cd,86,ad,f2,\
e3,97,39,81,dc,63,78,ee,5f,c3,dd,6c,1e,1c,54,ca,fe,cf,82,a5,78,81,4f,dc,3f,\
28,a2,44,23,66,6b,9d,35,16,e7,c5,2c,25,1f,2c,07,a4,b2,88,f4,1b,d5,ca,71,1f,\
98,50,b1,27,6b,5c,41,9b,e0,c5,eb,2e,b3,ec,da,6e,07,f2,00,99,f2,28,b5,b3,3c,\
c7,a1,d5,bf,e2,db,c8,e4,98,52,d2,b6,8e,6d,d0,17,9c,ee,85,8b,c7,1c,32,21,70,\
21,67,f8,ca,b1,18,02,91,ec,f3,08,fa,86,f1,ef,e5,25,2c,39,5a,0a,f0,ce,33,f4,\
14,fd,16,41,8b,be,a7,57,36,3a,fb,42,fc,8d,4f,9e,1d,ca,fa,b8,c3,3f,a0,f0,da,\
fb,a9,62,22,8e,fa,c5,83,10,c1,92,a0,65,ff,69,ae,be,a1,b1,87,63,67,7f,fa,b0,\
ca,ba,66,5e,2f,7c,87,04,61,bb,8f,de,3e,28,79,cc,b0,57,9a,9e,e0,21,79,8e,a6,\
47,e0,0e,43,57,33,c5,52,d4,01,d4,fc,91,d9,5d,6c,5e,5f,46,82,e6,9e,3a,cc,d8,\
a0,f1,b2,45,3c,b2,f0,b4,30,16,49,ee,6f,0e,7a,4d,bc,27,6e,f6,78,0d,b0,93,b9,\
4e,25,c7,9b,61,fb,5c,db,e7,dd,9e,a2,30,69,02,9e,01,e3,0c,57,95,2b,6f,c1,e1,\
ec,75,0d,1c,17,a1,c5,7f,90,93,18,4a,26,2d,72,07,c9,f4,50,12,f7,b9,53,59,78,\
78,93,61,4b,80,35,89,e0,d4,b0,93,87,d2,ac,60,29,12,bc,fb,36,91,8e,d9,de,0f,\
f1,60,84,b5,76,a5,70,fb,ca,7a,c4,c9,43,a8,b1,dc,b8,79,ea,6c,96,7a,59,0c,30,\
7e,11,d1,57,e6,85,b6,2b,20,f7,3f,30,6e,33,5d,a5,e9,7c,92,11,c5,c7,55,1e,d6,\
27,b8,aa,53,89,48,1c,db,a1,35,f4,e1,24,b3,a6,5c,38,9f,a9,3b,28,66,cb,b5,5d,\
23,c7,68,8a,07,19,b3,26,fe,11,75,1f,8f,27,18,cd,04,8e,cf,24,cc,0b,1b,2f,1d,\
08,94,b9,dd,e4,e6,4d,c3,8e,1a,62,ba,52,17,cf,86,f3,68,85,a9,f9,3f,7c,88,4c,\
ba,ee,ca,02,66,c4,01,76,01,4d,8c,9a,85,ac,bb,8e,61,b7,35,71,0a,0a,97,76,b2,\
21,5e,3b,57,98,07,57,00,e9,74,32,44,df,92,1a,0b,4d,39,93,98,ff,54,ee,c8,f1,\
41,1d,94,bf,7a,c5,dd,5d,76,95,69,08,ca,d6,28,7c,94,44,bd,68,19,1d,39,1f,ad,\
77,2a,90,d3,d6,d4,78,a6,fe,be,d6,78,06,71,9f,e2,ae,7c,b4,19,f2,bb,11,f0,e0,\
d9,47,de,a6,14,2c,b0,ef,40,d1,83,70,0f,b4,2c,bd,8f,37,d7,62,f4,51,ed,2f,98,\
84,3c,d3,40,0f,52,ac,a1,64,29,de,23,dc,0a,a3,e4,aa,ab,e1,00,0d,9a,02,10,ca,\
df,00,f0,da,dd,bf,c5,60,7a,a0,3f,dd,80,53,1c,a7,42,f8,ee,98,82,3a,1d,03,92,\
54,2f,ec,ba,74,47,78,da,09,ec,a2,50,07,0c,30,1c,82,41,e5,42,7b,52,f9,70,fa,\
fd,c6,e1,5c,f4,c4,81,ef,25,b7,52,bc,3e,27,0e,a4,71,11,0e,af,74,dc,6a,a0,cd,\
8e,62,cd,4c,40,fd,2d,d9,cf,ef,b3,6f,d5,c0,da,69,d8,2b,81,fe,c0,c4,fa,06,8f,\
de,5e,06,4c,ac,23,6b,40,a6,f0,11,65,2f,af,09,1c,74,e4,99,1e,97,3e,83,b5,0d,\
6c,8a,2c,44,32,33,84,8a,bc,c9,68,2a,32,a3,63,d8,8c,a9,51,4f,a8,15,14,38,9a,\
77,88,4e,43,fc,b8,c0,25,ef,52,d6,75,80,58,d8,72,c5,19,2c,f6,fe,bd,be,4b,1d,\
eb,a4,3f,86,1e,02,7b,13,f9,2c,10,5b,48,0b,53,34,19,c2,eb,76,73,91,28,02,45,\
f9,96,03,9d,21,d3,74,1a,78,9d,e2,a4,9c,2f,74,5a,7a,ce,28,cc,b7,9f,5f,6b,4f,\
bb,9c,3d,7d,85,89,d6,da,3b,3b,83,c8,cc,b6,c8,11,ea,b4,0d,cc,5f,a2,94,cb,a4,\
ec,ae,8c,b0,7a,2f,c7,0e,7a,1f,63,32,61,b2,17,0d,2c,7a,7d,df,ec,dc,b8,4d,81,\
c1,5b,b3,a6,8d,86,bb,2d,55,52,2f,8c,4c,70,0b,99,7f,0c,d7,92,c3,f8,33,60,eb,\
06,b3,1d,3e,b5,ee,d3,27,11,d2,87,2f,d4,3a,76,29,d1,c3,9e,ac,93,db,80,c7,41,\
a1,25,ef,c4,d6,5f,3c,2c,f2,51,d5,50,f6,31,a9,b5,65,4d,61,b2,4a,4c,92,d1,15,\
b7,36,77,a5,b7,5d,c8,a6,21,20,c5,1d,af,d7,b7,41,90,8b,d1,8d,24,ae,11,13,00,\
0a,67,13,39,f8,19,cc,df,d2,66,92,c7,ab,69,21,8e,3d,41,31,da,22,6f,4a,e3,47,\
7f,da,ab,9f,eb,85,a9,14,3c,bc,c4,c3,72,91,1e,68,a6,ca,37,17,ee,34,74,2e,81,\
39,68,87,1c,b5,51,f2,a4,06,e6,e2,0c,62,50,66,79,6e,76,5b,a4,0c,7d,e0,80,74,\
8f,0b,1d,86,dc,da,cd,5e,df,6d,85,2a,e3,72,86,38,c5,e0,3c,53,fb,e8,66,50,d5,\
28,77,e4,03,a4,3c,b8,58,ee,c0,c0,cd,2b,6d,c8,c9,3b,73,50,a0,b0,6d,99,59,01,\
42,00,b4,82,4a,8b,6b,93,b3,c2,b9,17,22,c0,19,28,9d,89,50,08,a8,9e,ad,5b,ae,\
cf,90,94,a3,51,29,ae,e8,10,82,1c,6f,46,c0,02,1f,4d,a5,a5,7a,b1,5a,20,7d,8a,\
6c,59,c7,09,14,34,ff,50,bb,07,6f,87,bd,4d,f4,2c,6e,9e,1b,aa,5a,de,84,2e,d1,\
b5,8b,b6,a4,40,27,6a,29,07,12,30,85,2e,2b,7b,2a,ef,18,63,9e,47,2f,fb,7e,f0,\
97,df,c3,90,aa,0c,45,30,9e,f5,7d,ef,65,d2,8f,f8,d1,3c,88,b1,fc,f7,e4,35,e7,\
0f,53,05,61,26,bc,fa,2b,9b,83,7f,59,90,08,fc,fb,96,70,95,fd,6a,a7,15,4c,54,\
a5,25,3a,6d,f1,c2,24,b0,64,ee,52,54,30,a5,1e,59,20,12,59,61,21,03,ea,c2,02,\
9b,b8,d9,78,46,cb,a1,65,f2,ad,84,5a,7d,17,71,5a,69,c9,2e,e1,d7,ba,f0,24,b3,\
71,29,9b,2c,b3,a1,bd,67,5e,c8,9a,74,95,4a,4f,81,1d,e5,26,4d,07,77,bc,e0,90,\
5c,d7,79,45,f6,17,c9,6b,8d,7b,5e,9d,5a,28,62,b7,de,66,85,f3,78,ec,38,52,37,\
5d,1c,3e,ed,12,ba,6d,85,1a,74,08,96,7f,bb,0d,37,cb,83,f1,16,cb,f4,8a,c4,93,\
63,2d,53,c2,80,13,23,08,d1,02,f9,e5,bd,29,51,b3,ae,4b,f6,e6,f3,20,cf,93,82,\
f8,fc,2f,86,a1,21,99,f4,8b,02,5b,c2,2a,51,2d,53,9c,c3,bb,36,8c,69,a9,11,56,\
3e,d3,d8,6b,fc,d9,43,f7,35,db,7e,c2,9e,81,22,54,ae,3f,64,5d,68,d7,8c,54,74,\
1f,a9,5d,75,04,84,70,97,cf,d2,b8,67,a7,ae,ad,e8,57,46,b6,e3,52,d4,d2,7e,f4,\
d0,75,10,0b,63,71,34,96,1f,66,1c,cc,ee,e2,29,61,49,cd,b8,04,ab,05,3e,2c,44,\
45,97,14,f1,4b,9b,04,6c,3a,f3,d3,c0,3d,2a,aa,01,6d,07,0a,39,f5,1b,11,a5,73,\
96,f9,22,a2,5e,e1,e2,36,63,d0,63,08,2c,f7,a2,73,e1,36,8b,fe,7f,e2,b5,3b,de,\
c6,4c,ee,95,67,4e,72,a9,8c,fb,59,72,fe,86,53,ee,8d,11,51,5a,53,d8,ea,04,3d,\
ad,fd,5b,c6,a4,98,48,06,0f,18,c1,ec,ad,92,9a,c7,1e,72,9f,0c,9a,62,e1,53,e3,\
6e,4d,a2,78,65,83,ee,0c,82,e4,df,36,4b,ed,d4,6a,ba,c4,a6,28,9b,11,b2,73,35,\
0f,92,85,2c,e3,2a,c1,a6,2c,6b,e9,ad,db,53,91,d4,45,b4,d4,1e,76,37,45,1b,c9,\
a0,28,54,b5,54,e3,e9,ea,18,af,79,9d,1b,93,42,20,37,93,8a,b5,74,24,3d,a4,ce,\
e4,d7,8b,38,88,84,f6,e0,16,86,2f,b5,54,d8,57,26,80,11,b6,2d,b1,8a,50,8d,de,\
c3,b9,57,ae,03,2a,b3,cf,3f,d3,dd,1b,3d,73,6e,58,f9,27,dd,af,48,7f,45,60,bb,\
d7,69,b3,c6,e5,f5,32,22,8e,06,15,6f,fe,ed,fe,1e,f7,30,e7,8e,69,d2,58,75,44,\
d5,dd,82,8a,fc,b7,41,a8,d5,d2,3e,06,f7,f7,6d,dd,89,43,c9,48,04,d8,ae,9f,39,\
d2,bf,00,95,7c,c2,2e,a4,c4,ce,9f,d4,ed,69,d0,7c,84,3a,dc,1c,95,6d,4d,e6,1e,\
59,32,7e,c4,60,71,ff,c5,17,5f,3e,2e,a7,8e,52,4e,73,e6,54,6a,fc,f8,63,b2,01,\
8e,eb,74,ea,87,27,90,66,e2,e5,2c,54,18,8a,a9,df,af,55,d5,ee,0c,e8,62,bb,ce,\
04,96,c1,c7,94,45,dc,45,ed,fd,ac,32,54,80,3a,80,c0,77,de,3a,e2,64,60,17,63,\
d9,5d,4f,6d,e7,ec,ad,6c,da,82,e6,16,23,13,29,a8,96,7a,f7,73,d6,1b,35,98,0d,\
c7,80,10,e0,df,c0,ef,a1,bd,00,e9,c7,4f,7c,15,9c,05,fc,f1,36,ee,61,a6,a8,1d,\
7e,d1,79,52,29,f4,56,d6,91,1b,03,a7,d1,81,97,d5,c6,64,e9,2c,1e,86,46,13,b2,\
2d,65,b4,16,6f,9c,5e,6e,ac,53,27,83,5c,b9,d5,16,0b,b7,ff,73,a1,22,6f,4a,e7,\
35,cb,bb,47,3e,74,b0,d3,97,af,6f,89,d8,03,6f,d6,4b,e1,6b,58,a1,8a,b6,e8,e3,\
2e,ce,d8,dc,51,33,79,93,73,7a,e1,ee,f0,9d,eb,b6,25,95,7e,c6,d4,2b,13,49,ca,\
0b,71,73,bf,1a,bb,6e,7d,09,ad,98,44,2a,23,eb,6e,83,db,bc,4f,21,7b,a9,5f,af,\
d6,cd,9b,47,6b,35,28,88,2e,98,3a,e9,8c,42,34,4d,a9,52,10,d7,ec,25,02,ff,bd,\
12,58,e6,8d,58,da,e6,17,54,1e,6e,e6,f8,44,0d,18,78,c4,cc,61,46,9b,c1,52,41,\
7d,e1,dc,29,78,16,10,57,d4,91,28,ab,3f,62,cb,c5,26,46,8d,78,66,c0,b5,7b,24,\
6b,44,62,f9,8e,33,cd,53,f1,fb,e0,18,ef,5a,f3,8c,cd,55,8a,74,4a,79,87,7b,77,\
67,9e,d6,c9,90,0a,24,c3,3c,7e,98,db,d1,5f,59,ae,52,30,29,b3,26,4d,45,40,1b,\
dd,8d,c7,aa,02,e5,aa,7c,52,db,51,2e,8b,8a,7a,51,82,be,d1,b6,5d,58,c1,e8,02,\
f5,89,f9,cf,ca,92,82,8c,d2,00,e5,9e,2c,87,d5,7d,be,80,19,68,1f,3c,8c,57,b4,\
98,69,31,19,d1,c5,3f,c2,9a,94,5d,e0,e2,6c,92,7f,8b,1e,b2,c3,17,b5,79,05,c8,\
7d,d8,07,ab,58,f4,e3,c2,57,72,41,61,87,f2,cd,d9,0e,d9,e8,54,76,54,9e,00,48,\
99,d9,70,dd,70,d4,3e,71,f3,d2,f6,79,92,0f,2f,36,5a,f7,fb,8b,76,96,82,0c,f6,\
50,e9,57,cf,d2,79,a7,23,48,fd,a6,e6,d0,6b,83,f2,2f,c7,45,6c,c3,45,5f,a7,b9,\
ae,84,59,80,04,bc,3a,7e,69,b8,0b,01,3d,62,d7,78,87,b9,79,e3,96,dc,5e,88,e7,\
64,8d,e8,4a,f7,e4,f1,41,1a,a4,75,a9,47,2f,db,9c,40,11,15,95,a2,3e,d1,d5,bd,\
9a,f4,06,a3,bf,44,1f,7f,fa,64,87,29,96,98,7d,f7,5e,5c,b7,d5,5d,cf,49,98,e8,\
f4,c9,8f,de,bc,b1,5b,2f,ea,04,01,9b,cb,35,3e,bc,21,44,1a,47,60,2a,c0,8f,1d,\
77,8d,4b,c3,3a,67,98,88,21,50,42,9f,e1,3b,3f,af,d8,1e,7c,85,f1,48,dc,05,c9,\
f5,7e,67,10,20,3f,a0,31,98,81,1d,35,56,2a,b7,f4,0e,ef,e4,2e,04,d2,2a,ca,21,\
e9,da,1d,46,62,fa,5d,e0,c4,83,f6,bd,77,cc,2d,1d,87,47,03,0d,a5,6b,5c,f0,6f,\
f1,60,5f,f0,43,22,33,6b,32,7f,df,54,e7,49,03,a0,1c,a5,3f,3e,8b,b2,45,e6,a7,\
6c,33,11,8b,cf,1f,48,30,3f,f3,a2,e2,27,7b,89,f5,e1,e4,bc,b4,d6,88,9a,9a,e6,\
4f,9d,c5,09,38,25,a7,37,70,77,ff,86,c2,05,07,92,69,ef,ef,22,22,cb,8b,09,84,\
a1,48,49,94,3a,65,7f,95,9b,60,7b,1d,cc,ae,2e,6e,de,ae,c9,02,2b,e0,23,68,e0,\
52,5b,4f,b9,5c,bf,e0,0c,8d,ed,52,09,e5,38,b8,40,45,4e,1d,bf,23,17,d2,4e,82,\
e0,07,44,22,b8,99,7c,f4,1a,2b,dc,d0,cd,78,04,6a,09,e7,8e,83,db,60,94,5c,ca,\
5f,73,70,bb,47,cf,62,12,f8,d8,35,1a,a3,cb,bb,a7,dd,bb,50,fa,f3,91,c7,e4,7e,\
51,a5,2e,37,a0,8d,39,0c,83,fc,e2,73,6a,36,a8,fe,6d,81,11,2f,d5,d1,49,8e,de,\
42,0d,fa,bb,8d,c7,3d,db,b4,fb,e2,6b,c1,e1,4b,1c,2f,53,fe,26,e7,ea,40,8d,6d,\
65,e5,a3,5c,4a,66,ce,10,cf,34,8b,a2,fa,4c,b3,19,08,0c,fd,de,0c,45,c5,71,d8,\
91,0c,5b,20,e7,bf,63,dd,6c,3c,05,f0,8c,12,20,08,4a,08,ef,c5,d4,61,3a,a2,5b,\
5f,ce,00,21,06,2a,37,d4,22,7b,92,1a,8c,cb,42,6d,a8,75,84,29,32,dc,7f,e3,3b,\
5c,70,fd,6e,81,04,77,98,77,05,08,67,c2,39,6e,72,2f,88,02,7a,0b,5c,8f,f0,92,\
4d,64,b7,aa,fe,a8,2a,d2,42,ee,61,55,84,09,b0,c3,65,22,71,a1,a6,07,04,60,49,\
e8,13,8c,f3,7b,1b,46,95,66,28,f4,4b,41,df,37,84,d0,c2,1d,64,b9,b0,99,66,96,\
ab,30,46,49,de,f4,1e,8f,df,b6,cf,d8,31,78,a2,57,0d,21,2f,55,62,74,7f,ca,1a,\
43,6d,2e,9f,e0,52,8d,9e,d5,e1,da,0a,d5,4f,85,65,f2,b7,4f,3b,0f,be,5d,ef,99,\
72,8c,e2,72,78,05,f0,2e,67,11,85,82,6f,2e,d0,f9,3e,62,90,e9,24,cf,2d,a6,75,\
88,3f,f5,2f,a3,54,c4,dc,8f,ee,18,ba,a8,cc,46,1a,09,6b,66,06,a2,cb,05,26,8a,\
76,1a,e4,96,bf,3b,cf,2a,48,11,3d,4f,c7,0a,35,06,09,4d,8c,dc,36,f3,4d,bf,58,\
74,5e,10,17,bd,61,f9,c6,4f,d9,01,a4,1a,8e,de,5b,4b,32,8a,cd,d3,44,99,10,fb,\
35,c9,b7,9d,ca,db,54,94,c1,a1,3a,71,b7,59,88,6f,49,39,63,a9,7a,4b,82,8b,54,\
7b,f0,87,d2,ee,0d,09,fe,96,d6,ac,57,04,67,ae,75,7d,be,a1,f0,4f,c2,64,7d,65,\
84,52,5a,1a,c4,b9,f8,4b,b7,8e,a7,b0,07,5f,2f,6c,1c,88,bd,e2,9a,aa,c3,cb,2b,\
59,d3,85,7e,15,bd,ae,8f,7c,f7,f2,2a,bd,43,21,aa,50,8b,85,07,e5,10,72,10,9a,\
c3,1e,f4,70,f3,b3,07,00,29,a3,c3,6a,51,3c,0d,8f,1a,7c,ba,80,9e,26,52,35,46,\
15,14,83,e8,d1,3a,48,33,bd,7d,e8,4d,5f,dc,fe,ba,50,9a,4b,80,36,86,f2,89,5f,\
7e,e8,48,82,36,a6,9f,09,36,21,01,b0,22,fb,d4,4f,3e,fb,19,f4,31,bb,4e,35,09,\
a0,93,c5,80,0f,0d,44,7e,de,88,5c,df,09,60,09,75,a7,a1,38,51,1c,6d,94,3e,8f,\
9e,9d,8f,9e,ad,fa,1b,51,d2,10,cd,4d,6d,d3,c1,4b,a5,dc,d3,c8,4f,bc,da,fd,11,\
91,4e,11,c7,d6,86,8e,25,80,7d,11,9e,46,d5,46,85,40,1c,14,73,b3,4f,15,e8,2b,\
9c,49,35,cb,6c,0b,99,e2,a1,44,aa,be,1c,de,f6,c5,83,7c,eb,c1,41,68,f4,7c,ce,\
cc,e5,8d,30,26,99,71,c2,f6,d9,de,34,e2,80,53,d3,1b,dd,f4,0a,69,59,95,29,45,\
5a,15,66,9d,67,ed,21,dd,8c,08,6d,64,00,d5,cb,35,05,9b,38,f0,10,0e,6b,00,2a,\
1f,58,15,96,18,f8,d5,b4,e7,4c,ce,25,ba,9f,b0,30,cd,0c,b9,64,80,41,70,7f,ad,\
82,96,8f,38,f1,5a,57,e8,0c,cc,f4,75,77,94,e5,e2,fc,e4,77,0c,d0,ab,99,83,18,\
0c,0f,9a,ab,0e,10,ba,1a,95,46,fc,ed,91,2d,f6,30,75,bc,d4,2f,ea,48,ab,7d,c5,\
a5,0b,3b,37,8e,d3,96,44,47,4a,92,77,80,6b,06,d3,7d,7f,e8,0c,74,f2,cb,f7,37,\
5f,a6,40,12,ed,d7,5b,f7,de,68,bd,d8,65,90,4b,55,e2,7d,13,97,67,50,3a,7c,ec,\
6a,35,f4,83,e6,3c,aa,3c,66,fc,e8,4e,13,8d,b4,ae,df,a3,3f,e0,0d,08,81,0d,f4,\
4a,1d,57,00,b0,8a,69,f9,73,74,52,88,2b,60,93,f7,88,90,76,38,42,26,a2,29,53,\
8b,ed,16,63,12,71,7f,84,d9,e2,1c,1f,f0,1e,1f,2e,be,06,e2,ac,a0,8d,df,4a,d2,\
0e,4e,64,93,e3,cd,33,84,33,b2,44,52,0b,a7,29,94,b1,ae,6e,f7,35,63,ce,98,48,\
81,a7,b1,51,a8,ac,78,be,5e,da,44,98,53,ad,f2,5b,e9,93,87,04,f3,a1,16,6b,bd,\
85,e4,d3,4d,bc,cb,c0,e9,04,dc,08,d9,15,48,2d,6e,8c,81,ea,44,a6,9c,0c,c3,38,\
fa,83,ec,54,27,b9,52,4c,02,22,66,5e,1f,15,f8,ac,69,da,fb,ec,0c,04,89,62,92,\
01,26,0b,4b,ef,49,1b,f3,b1,18,aa,8f,43,74,ab,98,4a,35,1d,5b,f0,b7,85,a0,ee,\
95,9b,8a,ea,b4,44,be,04,84,c0,c7,ac,82,25,b9,b6,01,0c,15,b0,2b,8a,f8,73,43,\
62,49,f8,2c,78,c8,6d,2f,89,8b,88,f9,1a,4e,1c,e3,ae,d8,ea,77,3c,96,b9,2f,e0,\
83,a8,7f,d1,4a,c4,16,93,af,d6,61,6e,2b,7e,52,1e,d6,86,5f,cc,8a,70,cd,3d,46,\
51,2e,4a,d0,e2,29,90,9f,d5,79,68,f7,65,38,19,56,31,5e,4d,0f,4a,84,c2,35,cf,\
ee,42,ba,29,c9,d5,d8,8a,b1,35,b0,5b,77,82,32,dd,20,37,3c,7f,31,5d,06,b2,29,\
fe,bd,f9,50,dd,6e,3f,af,64,26,6e,60,de,57,3d,08,e6,7e,49,a1,20,03,68,7d,27,\
61,3a,87,c6,86,00,cc,6a,7d,b2,3b,d7,4a,4b,a9,1b,16,68,18,c0,8c,11,39,46,82,\
d7,a9,d0,dc,1f,96,1e,ad,bd,c4,bb,a0,c5,4f,78,97,9d,cf,18,91,57,e5,4d,d1,3e,\
7c,e3,3c,af,4e,3c,04,2b,aa,fc,83,a9,75,05,69,31,6f,a6,1a,a6,b8,0f,52,e3,93,\
09,0b,0a,69,e4,a0,19,11,b0,32,bf,4e,af,4b,6d,9a,0b,c1,af,22,c5,de,bd,11,ee,\
bd,4d,11,a0,f7,ac,0f,10,7f,0d,3f,c6,cb,21,61,8d,35,e8,42,89,a0,c6,85,65,5e,\
d9,a3,44,51,8a,31,fb,51,62,62,7d,ce,1f,cc,96,b7,08,6f,dd,9a,7d,f3,e3,0c,d2,\
31,b1,4b,5d,f5,72,22,ce,02,6c,0d,bf,57,35,9e,8c,b1,23,1f,65,51,04,79,a2,ff,\
0f,54,56,4f,1b,cb,26,23,0f,94,5c,71,9a,d5,37,47,24,59,85,0c,04,6b,74,08,f3,\
32,a6,26,c0,8e,83,f9,46,43,d3,fe,9b,59,8c,21,8b,c2,e8,82,45,3e,bb,78,53,7c,\
04,d6,d0,82,c2,6e,d5,4e,09,d4,34,be,54,64,69,ad,1d,87,cd,5f,ab,31,0d,1f,2c,\
ae,db,26,03,9f,e3,bf,bf,40,01,a9,1d,ec,b1,bd,b6,e2,c6,d0,bd,49,60,db,5b,72,\
18,59,2c,5e,7d,f1,4d,80,c4,55,b7,c3,bb,6a,cb,cf,ff,a9,2d,88,6f,c5,d6,d8,e0,\
8e,65,af,12,15,b6,48,e3,11,b6,ad,c3,81,76,7d,68,93,7e,ed,c3,c5,63,0d,32,4a,\
9b,4c,f7,af,91,3f,e9,be,f5,d7,69,a3,56,8f,98,4d,f2,28,c7,17,cd,2f,2f,a8,00,\
24,e3,17,54,81,02,53,0f,40,31,c3,0e,9e,49,29,14,1f,4c,cc,62,d2,9e,d6,88,d6,\
72,fb,7a,1d,82,5b,e6,70,03,aa,c5,b3,d8,8e,30,6b,06,48,76,7d,68,97,6b,38,a3,\
d9,03,96,5d,74,1f,bf,aa,74,a6,cf,e8,75,d8,d9,0b,c4,df,2c,1a,c1,a7,d5,5c,88,\
f0,64,ae,d0,a2,f3,57,12,60,65,3d,ee,5f,ec,58,cb,79,ce,68,bf,7d,68,e3,ae,ca,\
73,32,b5,1c,86,1c,c9,a5,dc,83,9b,60,58,4e,bf,a2,c6,a6,0e,f1,64,65,49,1a,a1,\
cb,fe,7e,24,73,b0,ad,10,86,32,36,87,2f,b8,bc,6c,4f,c1,4d,6e,71,28,f0,42,00,\
9a,7d,2f,b7,33,b2,d0,5a,fd,82,16,a4,11,b0,8c,80,00,9d,df,7b,71,5e,9d,7a,0b,\
12,3d,a8,95,73,60,b3,5b,aa,56,38,d4,68,e4,7b,83,32,44,5c,1b,fc,6e,87,e6,fa,\
96,ea,67,b3,f6,6c,3e,57,cd,dc,4d,52,a8,27,19,a3,e0,cf,73,65,64,98,57,36,b8,\
84,14,b9,3e,02,ad,f5,b5,63,80,e2,ff,8d,25,c3,27,f3,99,b6,a2,c5,9c,8a,d5,63,\
57,d0,d8,18,42,35,7a,05,45,0f,85,5b,1d,35,42,cd,02,14,40,46,87,ff,52,d7,c1,\
c7,d7,f3,ab,8c,3e,de,c9,d2,c8,63,0c,d7,90,c5,f6,24,e9,f9,fe,63,48,12,36,70,\
42,fd,2b,b2,56,6e,0d,ac,ce,1a,10,cf,22,27,11,93,bd,e1,7d,c6,04,ae,6f,23,95,\
44,18,26,cc,19,64,1f,8c,1b,da,85,3c,a2,c4,8e,0f,a3,91,fc,89,26,77,3a,3f,fa,\
5c,a7,de,a7,f7,32,6e,a4,33,27,d8,ca,d4,48,a6,09,5c,20,0b,bb,30,94,23,f4,f7,\
bb,7b,c3,43,f0,d4,16,73,25,24,97,d7,79,de,81,16,0d,73,0d,cd,14,19,2d,79,2a,\
cb,7d,97,e7,91,77,09,b3,01,e6,bc,dc,06,9d,88,e5,e0,68,58,22,6c,43,8a,81,a6,\
ca,99,ab,6c,f1,f9,4c,84,f5,42,ae,e1,92,91,8d,22,77,2b,27,5c,f7,bf,92,19,01,\
c0,52,a1,52,57,2b,78,e9,7e,34,27,bc,a3,2d,3f,a9,79,12,9c,af,55,f0,e7,5e,d8,\
f8,5e,8c,cf,d2,d8,4a,57,33,03,16,45,b2,f1,52,c5,d8,d3,f5,40,76,04,81,84,3b,\
49,35,1f,85,56,83,0b,78,95,c4,91,4d,24,2b,67,ed,1c,f8,1b,bf,19,ee,b5,e4,f7,\
06,98,ce,d9,65,aa,50,70,8c,b5,f4,7a,cf,0c,ce,88,08,71,ad,05,8c,36,a8,74,5e,\
a3,f9,f9,a3,98,0e,1b,56,73,de,c8,3d,34,7a,99,1c,df,e4,58,28,22,23,c0,be,38,\
97,83,55,0d,8b,91,b2,a3,09,98,5a,b4,f2,c7,4d,99,4d,d8,f1,6a,e0,4d,4d,67,fd,\
fd,77,97,9f,c3,50,ae,b5,a7,6e,34,be,fd,5a,e4,96,fe,fc,53,90,84,53,d2,c4,11,\
69,94,ab,13,87,14,e9,67,a5,b1,69,1b,24,9b,af,78,c0,f3,6a,40,c0,2e,49,34,6f,\
bb,10,d9,d0,e5,eb,7c,8e,fa,02,74,32,ad,4d,a7,98,b9,aa,4f,a4,c7,2d,fe,31,92,\
b7,e0,b4,49,ca,41,9d,34,9b,4f,2c,9b,69,20,46,e4,0e,f7,b6,fb,d4,c3,3a,f6,89,\
e8,37,fa,d6,42,aa,58,cc,67,62,fc,c0,2d,6c,08,59,6d,cf,bc,e7,06,7a,99,f6,24,\
7b,c6,23,c2,72,b2,2f,6d,44,fb,52,4b,14,8f,d2,5d,6f,10,d3,01,c6,7d,71,bb,22,\
10,0c,34,13,be,e3,83,e9,d5,e5,ac,27,33,c3,66,35,93,4a,22,55,7d,f0,48,d8,4e,\
ad,c4,92,dd,0c,c1,8b,5e,81,b4,f7,87,fd,9d,69,f2,c0,89,43,c3,6e,5c,71,8a,66,\
cd,57,6a,4f,b2,07,7b,f3,7e,b8,6e,51,08,73,70,ed,8e,10,50,6b,f9,61,e3,5c,62,\
ad,a8,58,d6,60,a8,b6,56,00,a0,16,22,63,62,50,37,20,79,69,17,43,0c,f9,c8,45,\
04,56,1f,3b,71,62,3e,4d,2a,a8,5c,6a,b4,a8,c4,3a,66,6e,21,54,ca,6a,f8,b2,45,\
7b,76,61,fb,4d,6c,7d,ed,e5,98,5d,64,7a,26,0b,93,87,76,f7,78,1e,20,ec,03,7f,\
36,42,7a,e9,c8,56,1c,b0,de,37,04,90,81,a2,51,41,eb,31,84,4b,21,cf,29,1c,ad,\
6f,ba,58,71,fd,c0,70,e9,95,3b,76,b0,f4,44,30,46,2c,f1,6b,10,9b,79,91,a0,1d,\
99,7e,37,81,36,90,88,3a,43,fd,bf,57,e5,6a,c2,b5,d5,b9,b7,74,06,22,c6,a7,89,\
85,20,50,ad,fe,40,8b,6a,ba,70,99,00,0a,90,c0,db,b6,13,e1,ba,94,4a,0b,10,59,\
e5,be,aa,ae,b6,12,93,87,b9,a9,35,b0,52,e2,c0,a8,d5,4f,d0,b3,4b,6a,49,2b,74,\
83,86,17,08,fd,b4,fe,42,ba,78,fd,9f,d4,d8,18,e3,8e,58,ce,5e,8a,63,f0,6d,3c,\
ed,b3,43,9e,57,03,ea,25,93,1a,84,f4,ce,52,d7,50,b8,37,09,55,20,e1,a7,e7,5f,\
80,ec,ea,1b,39,41,b6,a1,31,00,c5,cb,e7,7d,af,27,c6,47,59,55,fa,ab,69,b1,84,\
7a,fd,32,89,0c,9c,92,f0,85,6c,b0,2b,57,a6,32,55,08,48,6e,7e,36,09,8b,43,d8,\
92,e3,a1,c6,eb,ac,0a,7c,34,d8,b9,1b,95,39,b2,b0,77,e9,70,b9,f5,e9,48,e5,8d,\
08,71,1c,1c,07,b8,bf,09,fa,ed,31,c0,f1,f4,96,62,d8,19,db,ba,9c,a4,f6,74,8f,\
ad,6f,89,0e,32,1f,fe,61,67,37,ce,e2,4d,85,24,62,86,f3,ce,c8,68,51,ef,fb,50,\
54,f4,03,39,de,c9,6a,8d,7f,4c,e9,3a,3c,02,40,09,d1,08,66,2b,b1,4d,e2,15,14,\
ff,79,8e,33,43,09,07,8e,29,b5,2a,f0,df,42,b5,f3,24,c1,89,c6,00,6f,fe,2e,b3,\
d9,7a,cb,eb,44,42,9d,3a,4b,90,c6,c6,ca,e5,92,43,fb,a0,b4,1e,df,d0,d2,fb,e0,\
47,45,62,b4,ef,1a,b5,84,61,5c,66,4e,b4,95,66,88,93,92,f3,06,93,67,28,1d,c3,\
b3,ee,09,84,25,b8,8c,9b,3f,8f,d8,84,5a,f8,af,09,eb,26,c9,14,04,6d,76,c2,1e,\
fa,84,b8,15,c2,63,ba,74,b8,87,79,f3,43,0e,ad,3e,ef,a3,64,f8,62,a2,9a,00,92,\
7c,09,f3,36,5d,42,f2,7a,0d,fd,a5,f7,14,ae,7f,e2,22,59,44,84,de,a6,c9,ea,dc,\
38,fb,dd,a4,3b,23,14,31,3c,68,a9,87,3e,96,ca,69,0a,1e,b1,7a,c6,5d,d6,a2,c9,\
21,63,b3,ae,69,e8,4d,a7,6c,50,fe,14,dd,13,ae,55,6e,ae,3b,dc,93,50,60,86,88,\
d7,db,2b,95,fa,cf,73,90,c8,67,ec,a4,51,bc,5a,52,a3,f9,4e,b5,f8,bc,fd,0a,2d,\
c0,44,6f,76,b9,19,eb,51,80,04,af,b8,70,ff,9c,9b,10,89,05,8d,f2,f9,b5,bd,db,\
11,34,29,23,d6,46,0e,5f,9f,b5,a3,3e,6d,50,06,b1,7a,34,77,4f,15,4a,c4,f7,ac,\
11,04,b7,2b,9e,88,ec,84,e0,0f,ab,8f,29,39,60,15,ea,3f,b5,27,be,e0,b6,b5,dc,\
9f,32,5b,a4,2b,64,7e,52,1f,d2,98,13,eb,76,d0,44,12,1c,ce,bb,97,0b,cd,98,b1,\
e7,f2,3e,c6,d6,dc,9c,97,e2,7c,b1,b8,9e,27,4f,44,0d,e9,1f,ce,bf,1d,e5,9b,3d,\
3a,05,0e,a7,f0,46,63,9c,74,d7,a0,5a,17,8f,c9,27,1e,79,54,ef,ce,90,dc,2e,c6,\
c7,a0,10,92,4d,10,d7,7c,0e,87,7e,a5,7d,bc,9c,55,91,57,8a,90,0d,9c,c8,ea,05,\
e5,9d,9b,9e,50,fe,d6,15,b5,b1,57,03,db,b2,3b,df,eb,d6,15,c4,24,ae,3e,74,d1,\
ae,6c,9d,78,8f,87,5c,55,f1,b8,00,06,45,c2,10,88,ea,95,8f,62,96,20,7e,20,f8,\
68,a3,03,d6,d7,89,f7,0e,d6,c8,c5,42,9d,86,8a,33,4a,3e,68,cb,31,c0,7b,03,74,\
7a,0f,4b,d3,f5,10,2c,c5,a2,c1,2c,c7,d7,b1,f2,f4,15,eb,aa,d6,8c,6e,ab,7c,e1,\
dd,57,cc,2e,77,43,1b,4a,48,98,fb,4c,a1,ba,54,4a,c7,27,b7,66,e8,a1,ee,0c,53,\
8f,d8,75,e7,a1,c6,70,cc,b3,3b,61,62,f4,b3,8a,77,47,41,89,bd,e9,3e,22,7b,54,\
4e,3f,82,64,ed,35,63,b9,4b,49,df,5c,5a,73,9f,a5,25,61,25,5c,63,bf,03,1e,4c,\
b6,4b,02,ab,b3,46,7d,35,69,69,83,19,19,84,ef,d8,11,3d,25,57,72,bd,f6,32,37,\
a9,c3,54,73,54,e6,c5,f0,33,4d,c2,83,91,68,13,ec,83,46,99,3f,1f,fb,27,d4,e9,\
44,92,f6,8e,6e,0c,ea,d5,73,ad,2d,d2,66,53,fe,5c,12,ac,1c,c2,de,91,d1,ba,f4,\
96,2f,9a,a3,df,9a,cb,01,35,86,7a,d4,58,82,90,b3,97,76,e5,68,9f,29,b0,99,91,\
06,42,a7,57,1f,f5,d7,37,72,bd,b0,a8,6b,cb,a3,65,ab,e9,f2,c1,08,c4,ca,3a,d5,\
f5,b2,50,63,16,29,97,c7,7a,8b,0c,de,1b,35,a5,8f,d4,e9,2c,50,d1,74,4c,ec,43,\
8e,ec,83,58,01,bd,d2,6a,0e,0f,b4,76,0c,e9,e9,d1,52,58,17,16,57,07,0e,63,18,\
10,50,c5,ba,12,d1,f0,71,84,fb,34,d8,49,f5,ac,42,84,25,b9,88,ad,f4,ae,c3,e4,\
d1,cd,85,86,78,73,03,ff,74,8f,be,df,e2,58,63,2f,79,40,ef,05,c7,23,16,56,bd,\
c5,e6,0c,6e,7b,a8,58,14,28,07,4a,54,6b,73,9f,c3,17,c8,d9,a8,e4,2b,95,03,64,\
35,1a,cf,38,54,2e,85,83,6e,2d,e1,9f,c7,bc,e8,0f,24,7a,2a,b5,30,98,45,45,20,\
2b,aa,fa,93,60,a4,88,bc,af,95,51,c2,b3,83,db,67,39,d4,82,e8,96,56,6a,25,3e,\
83,b8,02,93,02,02,0d,fb,70,03,61,35,61,94,ca,ed,a2,d7,2a,8e,c1,b6,1b,57,d0,\
8c,d5,b1,65,21,52,c0,e5,dc,b1,38,03,34,d8,72,cc,68,5e,be,44,70,a8,fb,7d,33,\
52,66,47,fa,d0,b0,5c,25,55,53,1e,1c,f3,25,db,89,04,2e,4f,c5,ca,b7,6a,8f,52,\
a3,54,04,9e,03,ae,cb,02,e4,1b,91,cf,6b,00,b5,2f,25,87,44,50,98,ea,27,c5,1e,\
ee,9b,29,f3,ad,e2,05,8c,99,38,f3,2a,be,09,04,b0,47,be,60,b1,44,a4,2c,ce,ab,\
7f,b1,3f,9c,1e,ba,af,e9,a0,3d,4d,d5,c8,3e,20,1c,f5,f1,9a,34,54,1f,71,d3,54,\
ca,aa,b1,5a,14,f6,8f,b6,5d,42,78,d6,ac,8a,47,ba,50,ee,69,a8,c7,07,e4,21,de,\
7b,98,13,1a,cf,c5,50,57,7d,ce,3f,af,47,3d,d2,9d,ca,06,b8,be,56,10,d3,a8,fd,\
f1,ec,66,ea,f9,a6,03,f4,73,b0,be,73,27,3f,4d,53,23,bc,c4,67,bc,b9,b9,ff,cf,\
2a,a6,bc,4c,d2,8e,a3,f6,fb,e4,71,64,6a,a8,2e,4c,92,d3,05,00,08,f5,53,39,37,\
1d,fe,14,55,f9,08,5a,95,3e,64,04,9f,4a,08,ff,3d,08,43,2c,57,15,b7,ab,21,21,\
2c,59,93,97,a6,97,19,80,b5,4e,8d,a4,0e,2f,62,f3,f5,40,22,24,53,94,1a,9c,09,\
59,53,91,84,18,c5,6f,91,39,c8,7b,73,c6,cb,b6,33,70,48,04,38,d7,f7,8d,17,06,\
43,64,ac,3d,fa,66,6a,f4,48,65,ef,1c,e6,86,dc,a8,8f,e8,e3,4c,b4,87,21,cd,70,\
5f,af,d9,be,d4,74,60,ea,51,3d,83,45,30,0f,04,1d,da,bb,3e,ec,2f,b4,af,d0,28,\
1e,b3,3b,ba,27,92,ec,fe,9a,bd,1e,90,b1,55,ff,34,2b,ed,63,c0,9f,91,ba,36,10,\
07,3f,30,c1,54,73,81,4b,82,ca,19,ec,a1,a4,29,22,0c,7e,88,79,ed,6a,55,a1,04,\
e4,de,c3,a4,07,c1,15,fe,48,51,ad,a1,60,3c,92,42,c8,6a,19,b9,80,28,6f,4d,48,\
85,72,31,13,fc,c5,4e,b9,54,23,43,ec,c5,f3,ab,6d,5c,1d,9e,7f,a0,1d,7a,9c,76,\
55,e3,68,42,a8,08,e3,4f,44,28,e2,71,bf,55,c0,e9,66,79,51,88,d2,96,17,17,bb,\
52,b9,fc,11,b2,b0,05,49,26,44,c0,f5,c6,b7,ae,98,db,c0,fb,b8,a1,3a,64,35,4b,\
1e,53,d8,48,af,4c,2f,c5,f4,87,99,73,6b,df,9d,8a,fc,ea,80,0d,2c,6a,16,50,93,\
e4,d8,b8,90,8e,37,c3,3b,6e,30,48,9b,c1,21,ff,19,9a,db,43,35,cb,f8,17,78,08,\
6e,68,aa,4a,bf,91,44,72,46,24,28,2f,15,e8,90,21,00,1e,45,3f,38,09,11,76,ff,\
ad,76,92,02,d6,a0,62,ea,5c,99,17,2e,a6,bc,ee,2b,6d,6c,0f,76,c2,05,b4,71,53,\
13,8d,1c,ea,c3,63,2e,36,96,fc,65,ce,5d,40,1a,73,61,99,18,95,e2,a0,ae,19,c3,\
f5,03,5a,83,6e,aa,c3,6f,75,76,aa,16,ab,90,68,fe,d1,c6,07,95,e9,26,34,6a,98,\
cc,68,9d,cf,f8,b2,94,aa,63,b7,f0,99,d4,f7,c0,bd,ee,52,f4,95,4c,ca,14,d9,d0,\
8a,00

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer\Run]

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"dontdisplaylastusername"=dword:00000000
"legalnoticecaption"=""
"legalnoticetext"=""
"shutdownwithoutlogon"=dword:00000001
"undockwithoutlogon"=dword:00000001

[HKEY_USERS\.default\software\microsoft\windows\currentversion\policies\explorer]
"NoDriveTypeAutoRun"=dword:00000091
"CDRAutoRun"=dword:00000000

[HKEY_USERS\s-1-5-18\software\microsoft\windows\currentversion\policies\explorer]
"NoDriveTypeAutoRun"=dword:00000091
"CDRAutoRun"=dword:00000000

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\shellserviceobjectdelayload]
"PostBootReminder"="{7849596a-48ea-486e-8937-a2a3009f31a9}"
"CDBurn"="{fbeb8a05-beee-4442-804e-409d6c4515e9}"
"WebCheck"="{E6FB5E20-DE35-11CF-9C87-00AA005127ED}"
"SysTray"="{35CEC8A3-2BE6-11D2-8773-92E220524153}"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CARPService]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="carpserv"
"hkey"="HKLM"
"command"="carpserv.exe"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DrvLsnr]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="DrvLsnr"
"hkey"="HKLM"
"command"="C:\\Program Files\\Analog Devices\\SoundMAX\\DrvLsnr.exe"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Free Download Manager]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="fdm"
"hkey"="HKCU"
"command"="C:\\Program Files\\Free Download Manager\\fdm.exe -autorun"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="qttask"
"hkey"="HKLM"
"command"="\"C:\\Program Files\\QuickTime\\qttask.exe\" -atboottime"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Start WingMan Profiler]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"=""
"hkey"="HKCU"
"command"=""
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="jusched"
"hkey"="HKLM"
"command"="C:\\Program Files\\Java\\j2re1.4.2_06\\bin\\jusched.exe"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TkBellExe]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="realsched"
"hkey"="HKLM"
"command"="\"C:\\Program Files\\Common Files\\Real\\Update_OB\\realsched.exe\" -osboot"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"="msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll"


[HKEY_LOCAL_MACHINE\software\Microsoft\Windows NT\CurrentVersion\Svchost]
LocalService REG_MULTI_SZ Alerter\0WebClient\0LmHosts\0RemoteRegistry\0upnphost\0SSDPSRV\0\0
NetworkService REG_MULTI_SZ DnsCache\0\0
rpcss REG_MULTI_SZ RpcSs\0\0
imgsvc REG_MULTI_SZ StiSvc\0\0
termsvcs REG_MULTI_SZ TermService\0\0
HTTPFilter REG_MULTI_SZ HTTPFilter\0\0

HKLM\software\Microsoft\Windows NT\CurrentVersion\Svchost *netsvcs*
Ip6FwHlp

Completion time: 07-01-01 22:03:42.90
C:\ComboFix2.txt ... 06-12-18 16:34
C:\ComboFix3.txt ... 06-12-18 01:34
Christ84opher is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Reddit!
Old 01-01-2007, 11:19 PM   #12 (permalink)
Registered User
 
Christ84opher's Avatar
 
Join Date: Dec 2006
Location: ny
Posts: 13
OS: xp


Send a message via AIM to Christ84opher Send a message via Yahoo to Christ84opher
jotti scan results of E67C4BEBB8.sys

Scan taken on 02 Jan 2007 03:11:14 (GMT)
AntiVir Found nothing
ArcaVir Found nothing
Avast Found nothing
AVG Antivirus Found nothing
BitDefender Found nothing
ClamAV Found nothing
Dr.Web Found nothing
F-Prot Antivirus Found nothing
F-Secure Anti-Virus Found nothing
Fortinet Found nothing
Kaspersky Anti-Virus Found nothing
NOD32 Found nothing
Norman Virus Control Found nothing
VirusBuster Found nothing
VBA32 Found nothing


kaspersky.txt

*KASPERSKY ONLINE SCANNER REPORT*
Tuesday, January 02, 2007 12:45:37 AM
Operating System: Microsoft Windows XP Home Edition, Service Pack 1
(Build 2600)
Kaspersky Online Scanner version: 5.0.83.0
Kaspersky Anti-Virus database last update: 2/01/2007
Kaspersky Anti-Virus database records: 255490

*Scan Settings*
Scan using the following antivirus database extended
Scan Archives true
Scan Mail Bases true
*Scan Target* My Computer
A:\
C:\
D:\
E:\
*Scan Statistics*
Total number of scanned objects 124833
Number of viruses found 29
Number of infected objects 1416 / 0
Number of suspicious objects 10
Duration of the scan process 02:14:47


*Infected Object Name* *Virus Name* *Last Action*
C:\dist.exe/uptodate.exe Infected:
Trojan-Downloader.Win32.Braidupdate.c skipped
C:\dist.exe CreateInstall: infected - 1 skipped
C:\Documents and Settings\All Users.WINDOWS\Application
Data\Microsoft\Network\Downloader\qmgr0.dat Object is locked skipped
C:\Documents and Settings\All Users.WINDOWS\Application
Data\Microsoft\Network\Downloader\qmgr1.dat Object is locked skipped
C:\Documents and Settings\All Users.WINDOWS\Application Data\Spybot -
Search &
Destroy\Recovery\eXactAdvertisingBargainsBuddy16.zip/msexreg.exe
Suspicious: Password-protected-EXE skipped
C:\Documents and Settings\All Users.WINDOWS\Application Data\Spybot -
Search & Destroy\Recovery\eXactAdvertisingBargainsBuddy16.zip ZIP:
suspicious - 1 skipped
C:\Documents and Settings\All Users.WINDOWS\Application Data\Spybot -
Search &
Destroy\Recovery\eXactAdvertisingBargainsBuddy25.zip/msexreg.exe
Suspicious: Password-protected-EXE skipped
C:\Documents and Settings\All Users.WINDOWS\Application Data\Spybot -
Search & Destroy\Recovery\eXactAdvertisingBargainsBuddy25.zip ZIP:
suspicious - 1 skipped
C:\Documents and Settings\All Users.WINDOWS\Application Data\Spybot -
Search &
Destroy\Recovery\eXactAdvertisingBargainsBuddy42.zip/msexreg.exe
Suspicious: Password-protected-EXE skipped
C:\Documents and Settings\All Users.WINDOWS\Application Data\Spybot -
Search & Destroy\Recovery\eXactAdvertisingBargainsBuddy42.zip ZIP:
suspicious - 1 skipped
C:\Documents and Settings\All Users.WINDOWS\Application Data\Spybot -
Search &
Destroy\Recovery\eXactAdvertisingBargainsBuddy5.zip/msexreg.exe
Suspicious: Password-protected-EXE skipped
C:\Documents and Settings\All Users.WINDOWS\Application Data\Spybot -
Search & Destroy\Recovery\eXactAdvertisingBargainsBuddy5.zip ZIP:
suspicious - 1 skipped
C:\Documents and Settings\All Users.WINDOWS\Application Data\Spybot -
Search &
Destroy\Recovery\eXactAdvertisingBargainsBuddy61.zip/msexreg.exe
Suspicious: Password-protected-EXE skipped
C:\Documents and Settings\All Users.WINDOWS\Application Data\Spybot -
Search & Destroy\Recovery\eXactAdvertisingBargainsBuddy61.zip ZIP:
suspicious - 1 skipped
C:\Documents and Settings\chris\Cookies\index.dat Object is locked
skipped
C:\Documents and Settings\chris\Local Settings\Application
Data\ApplicationHistory\cli.exe.c88dbd71.ini.inuse Object is locked
skipped
C:\Documents and Settings\chris\Local Settings\Application
Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\chris\Local Settings\Application
Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\chris\Local
Settings\History\History.IE5\index.dat Object is locked skipped
C:\Documents and Settings\chris\Local
Settings\Temp\History\History.IE5\MSHist012007010120070102\index.dat
Object is locked skipped
C:\Documents and Settings\chris\Local
Settings\Temp\Perflib_Perfdata_12c.dat Object is locked skipped
C:\Documents and Settings\chris\Local
Settings\Temp\Perflib_Perfdata_154.dat Object is locked skipped
C:\Documents and Settings\chris\Local
Settings\Temp\Perflib_Perfdata_1c0.dat Object is locked skipped
C:\Documents and Settings\chris\Local Settings\Temporary Internet
Files\Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\chris\ntuser.dat Object is locked skipped
C:\Documents and Settings\chris\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\Default User\My
Documents\Data\all_files2-1.exe/data0002 Infected:
Backdoor.Win32.Ruledor.c skipped
C:\Documents and Settings\Default User\My
Documents\Data\all_files2-1.exe/data0003 Infected:
Trojan-Downloader.Win32.Poplite.a skipped
C:\Documents and Settings\Default User\My
Documents\Data\all_files2-1.exe NSIS: infected - 2 skipped
C:\Documents and Settings\Default User\My
Documents\Data\all_files2-2.exe/data0002 Infected:
not-a-virus:AdWare.Win32.HelpExpress skipped
C:\Documents and Settings\Default User\My
Documents\Data\all_files2-2.exe/data0003/data0004 Infected:
not-a-virus:AdWare.Win32.SideSearch.l skipped
C:\Documents and Settings\Default User\My
Documents\Data\all_files2-2.exe/data0003 Infected:
not-a-virus:AdWare.Win32.SideSearch.l skipped
C:\Documents and Settings\Default User\My
Documents\Data\all_files2-2.exe/data0008 Infected:
not-a-virus:AdWare.Win32.IGetNet skipped
C:\Documents and Settings\Default User\My
Documents\Data\all_files2-2.exe NSIS: infected - 4 skipped
C:\Documents and Settings\Default User\My
Documents\Data\all_files2.exe/data0002/data299033.zip/Setup.exe
Infected: not-a-virus:AdWare.Win32.IEDriver.b skipped
C:\Documents and Settings\Default User\My
Documents\Data\all_files2.exe/data0002/data299033.zip/Files/3.exe
Infected: not-a-virus:AdWare.Win32.IEDriver.b skipped
C:\Documents and Settings\Default User\My
Documents\Data\all_files2.exe/data0002/data299033.zip/Files/5.exe
Infected: not-a-virus:AdWare.Win32.IEDriver.b skipped
C:\Documents and Settings\Default User\My
Documents\Data\all_files2.exe/data0002/data299033.zip/Files/IEDRIVER.EXE
Infected: Trojan-Downloader.Win32.Turown.h skipped
C:\Documents and Settings\Default User\My
Documents\Data\all_files2.exe/data0002/data299033.zip/Files/ieupdate.exe
Infected: Trojan-Downloader.Win32.Turown.b skipped
C:\Documents and Settings\Default User\My
Documents\Data\all_files2.exe/data0002/data299033.zip/Files/td.exe
Infected: Trojan-Downloader.Win32.Turown.a skipped
C:\Documents and Settings\Default User\My
Documents\Data\all_files2.exe/data0002/data299033.zip Infected:
Trojan-Downloader.Win32.Turown.a skipped
C:\Documents and Settings\Default User\My
Documents\Data\all_files2.exe/data0002 Infected:
Trojan-Downloader.Win32.Turown.a skipped
C:\Documents and Settings\Default User\My
Documents\Data\all_files2.exe/data0003 Infected:
not-a-virus:AdWare.Win32.180Solutions skipped
C:\Documents and Settings\Default User\My
Documents\Data\all_files2.exe/data0004/data0003 Infected:
not-a-virus:AdWare.Win32.Connector skipped
C:\Documents and Settings\Default User\My
Documents\Data\all_files2.exe/data0004/data0004 Infected:
not-a-virus:AdWare.Win32.Connector skipped
C:\Documents and Settings\Default User\My
Documents\Data\all_files2.exe/data0004 Infected:
not-a-virus:AdWare.Win32.Connector skipped
C:\Documents and Settings\Default User\My
Documents\Data\all_files2.exe/data0006/data0001.cab/Save.exe Infected:
not-a-virus:AdWare.Win32.SaveNow.t skipped
C:\Documents and Settings\Default User\My
Documents\Data\all_files2.exe/data0006/data0001.cab/SaveUninst.exe
Infected: not-a-virus:AdWare.Win32.SaveNow.af skipped
C:\Documents and Settings\Default User\My
Documents\Data\all_files2.exe/data0006/data0001.cab Infected:
not-a-virus:AdWare.Win32.SaveNow.af skipped
C:\Documents and Settings\Default User\My
Documents\Data\all_files2.exe/data0006/data0002.cab/Sync.exe Infected:
not-a-virus:AdWare.Win32.SaveNow.v skipped
C:\Documents and Settings\Default User\My
Documents\Data\all_files2.exe/data0006/data0002.cab/Uninst.exe
Infected: not-a-virus:AdWare.Win32.SaveNow.v skipped
C:\Documents and Settings\Default User\My
Documents\Data\all_files2.exe/data0006/data0002.cab Infected:
not-a-virus:AdWare.Win32.SaveNow.v skipped
C:\Documents and Settings\Default User\My
Documents\Data\all_files2.exe/data0006 Infected:
not-a-virus:AdWare.Win32.SaveNow.v skipped
C:\Documents and Settings\Default User\My
Documents\Data\all_files2.exe/data0007/data0120 Infected:
not-a-virus:AdWare.Win32.HelpExpress skipped
C:\Documents and Settings\Default User\My
Documents\Data\all_files2.exe/data0007 Infected:
not-a-virus:AdWare.Win32.HelpExpress skipped
C:\Documents and Settings\Default User\My
Documents\Data\all_files2.exe/data0008 Infected:
not-a-virus:AdWare.Win32.HelpExpress skipped
C:\Documents and Settings\Default User\My
Documents\Data\all_files2.exe/data0009/data0004 Infected:
not-a-virus:AdWare.Win32.SideSearch.l skipped
C:\Documents and Settings\Default User\My
Documents\Data\all_files2.exe/data0009 Infected:
not-a-virus:AdWare.Win32.SideSearch.l skipped
C:\Documents and Settings\Default User\My
Documents\Data\all_files2.exe/data0008 Infected:
not-a-virus:AdWare.Win32.IGetNet skipped
C:\Documents and Settings\Default User\My
Documents\Data\all_files2.exe/data0009 Infected:
Backdoor.Win32.Ruledor.c skipped
C:\Documents and Settings\Default User\My
Documents\Data\all_files2.exe/data0010 Infected:
Trojan-Downloader.Win32.Poplite.a skipped
C:\Documents and Settings\Default User\My
Documents\Data\all_files2.exe NSIS: infected - 27 skipped
C:\Documents and Settings\Default User\My
Documents\Data\all_files2b.exe/data0002 Infected:
Backdoor.Win32.Ruledor.c skipped
C:\Documents and Settings\Default User\My
Documents\Data\all_files2b.exe/data0003 Infected:
Trojan-Downloader.Win32.Poplite.a skipped
C:\Documents and Settings\Default User\My
Documents\Data\all_files2b.exe NSIS: infected - 2 skipped
C:\Documents and Settings\Default User\My
Documents\Data\all_files2_at.exe/data0002 Infected:
Trojan-Downloader.Win32.VB.q skipped
C:\Documents and Settings\Default User\My
Documents\Data\all_files2_at.exe NSIS: infected - 1 skipped
C:\Documents and Settings\Default User\My
Documents\Data\all_files_sjb_2.exe/data0003/data0002 Infected:
not-a-virus:AdWare.Win32.BargainBuddy.a skipped
C:\Documents and Settings\Default User\My
Documents\Data\all_files_sjb_2.exe/data0003/data0003 Infected:
not-a-virus:AdWare.Win32.BargainBuddy.a skipped
C:\Documents and Settings\Default User\My
Documents\Data\all_files_sjb_2.exe/data0003 Infected:
not-a-virus:AdWare.Win32.BargainBuddy.a skipped
C:\Documents and Settings\Default User\My
Documents\Data\all_files_sjb_2.exe/data0008 Infected:
not-a-virus:AdWare.Win32.EZula.a skipped
C:\Documents and Settings\Default User\My
Documents\Data\all_files_sjb_2.exe NSIS: infected - 4 skipped
C:\Documents and Settings\Default User\My
Documents\Data\Data\all_files2-1.exe/data0002 Infected:
Backdoor.Win32.Ruledor.c skipped
C:\Documents and Settings\Default User\My
Documents\Data\Data\all_files2-1.exe/data0003 Infected:
Trojan-Downloader.Win32.Poplite.a skipped
C:\Documents and Settings\Default User\My
Documents\Data\Data\all_files2-1.exe NSIS: infected - 2 skipped
C:\Documents and Settings\Default User\My
Documents\Data\Data\all_files2-2.exe/data0002 Infected:
not-a-virus:AdWare.Win32.HelpExpress skipped
C:\Documents and Settings\Default User\My
Documents\Data\Data\all_files2-2.exe/data0003/data0004 Infected:
not-a-virus:AdWare.Win32.SideSearch.l skipped
C:\Documents and Settings\Default User\My
Documents\Data\Data\all_files2-2.exe/data0003 Infected:
not-a-virus:AdWare.Win32.SideSearch.l skipped
C:\Documents and Settings\Default User\My
Documents\Data\Data\all_files2-2.exe/data0008 Infected:
not-a-virus:AdWare.Win32.IGetNet skipped
C:\Documents and Settings\Default User\My
Documents\Data\Data\all_files2-2.exe NSIS: infected - 4 skipped
C:\Documents and Settings\Default User\My
Documents\Data\Data\all_files2.exe/data0002/data299033.zip/Setup.exe
Infected: not-a-virus:AdWare.Win32.IEDriver.b skipped
C:\Documents and Settings\Default User\My
Documents\Data\Data\all_files2.exe/data0002/data299033.zip/Files/3.exe
Infected: not-a-virus:AdWare.Win32.IEDriver.b skipped
C:\Documents and Settings\Default User\My
Documents\Data\Data\all_files2.exe/data0002/data299033.zip/Files/5.exe
Infected: not-a-virus:AdWare.Win32.IEDriver.b skipped
C:\Documents and Settings\Default User\My
Documents\Data\Data\all_files2.exe/data0002/data299033.zip/Files/IEDRIVER.EXE
Infected: Trojan-Downloader.Win32.Turown.h skipped
C:\Documents and Settings\Default User\My
Documents\Data\Data\all_files2.exe/data0002/data299033.zip/Files/ieupdate.exe
Infected: Trojan-Downloader.Win32.Turown.b skipped
C:\Documents and Settings\Default User\My
Documents\Data\Data\all_files2.exe/data0002/data299033.zip/Files/td.exe Infected:
Trojan-Downloader.Win32.Turown.a skipped
C:\Documents and Settings\Default User\My
Documents\Data\Data\all_files2.exe/data0002/data299033.zip Infected:
Trojan-Downloader.Win32.Turown.a skipped
C:\Documents and Settings\Default User\My
Documents\Data\Data\all_files2.exe/data0002 Infected:
Trojan-Downloader.Win32.Turown.a skipped
C:\Documents and Settings\Default User\My
Documents\Data\Data\all_files2.exe/data0003 Infected:
not-a-virus:AdWare.Win32.180Solutions skipped
C:\Documents and Settings\Default User\My
Documents\Data\Data\all_files2.exe/data0004/data0003 Infected:
not-a-virus:AdWare.Win32.Connector skipped
C:\Documents and Settings\Default User\My
Documents\Data\Data\all_files2.exe/data0004/data0004 Infected:
not-a-virus:AdWare.Win32.Connector skipped
C:\Documents and Settings\Default User\My
Documents\Data\Data\all_files2.exe/data0004 Infected:
not-a-virus:AdWare.Win32.Connector skipped
C:\Documents and Settings\Default User\My
Documents\Data\Data\all_files2.exe/data0006/data0001.cab/Save.exe
Infected: not-a-virus:AdWare.Win32.SaveNow.t skipped
C:\Documents and Settings\Default User\My
Documents\Data\Data\all_files2.exe/data0006/data0001.cab/SaveUninst.exe Infected:
not-a-virus:AdWare.Win32.SaveNow.af skipped
C:\Documents and Settings\Default User\My
Documents\Data\Data\all_files2.exe/data0006/data0001.cab Infected:
not-a-virus:AdWare.Win32.SaveNow.af skipped
C:\Documents and Settings\Default User\My
Documents\Data\Data\all_files2.exe/data0006/data0002.cab/Sync.exe
Infected: not-a-virus:AdWare.Win32.SaveNow.v skipped
C:\Documents and Settings\Default User\My
Documents\Data\Data\all_files2.exe/data0006/data0002.cab/Uninst.exe
Infected: not-a-virus:AdWare.Win32.SaveNow.v skipped
C:\Documents and Settings\Default User\My
Documents\Data\Data\all_files2.exe/data0006/data0002.cab Infected:
not-a-virus:AdWare.Win32.SaveNow.v skipped
C:\Documents and Settings\Default User\My
Documents\Data\Data\all_files2.exe/data0006 Infected:
not-a-virus:AdWare.Win32.SaveNow.v skipped
C:\Documents and Settings\Default User\My
Documents\Data\Data\all_files2.exe/data0007/data0120 Infected:
not-a-virus:AdWare.Win32.HelpExpress skipped
C:\Documents and Settings\Default User\My
Documents\Data\Data\all_files2.exe/data0007 Infected:
not-a-virus:AdWare.Win32.HelpExpress skipped
C:\Documents and Settings\Default User\My
Documents\Data\Data\all_files2.exe/data0008 Infected:
not-a-virus:AdWare.Win32.HelpExpress skipped
C:\Documents and Settings\Default User\My
Documents\Data\Data\all_files2.exe/data0009/data0004 Infected:
not-a-virus:AdWare.Win32.SideSearch.l skipped
C:\Documents and Settings\Default User\My
Documents\Data\Data\all_files2.exe/data0009 Infected:
not-a-virus:AdWare.Win32.SideSearch.l skipped
C:\Documents and Settings\Default User\My
Documents\Data\Data\all_files2.exe/data0008 Infected:
not-a-virus:AdWare.Win32.IGetNet skipped
C:\Documents and Settings\Default User\My
Documents\Data\Data\all_files2.exe/data0009 Infected:
Backdoor.Win32.Ruledor.c skipped
C:\Documents and Settings\Default User\My
Documents\Data\Data\all_files2.exe/data0010 Infected:
Trojan-Downloader.Win32.Poplite.a skipped
C:\Documents and Settings\Default User\My
Documents\Data\Data\all_files2.exe NSIS: infected - 27 skipped
C:\Documents and Settings\Default User\My
Documents\Data\Data\all_files2b.exe/data0002 Infected:
Backdoor.Win32.Ruledor.c skipped
C:\Documents and Settings\Default User\My
Documents\Data\Data\all_files2b.exe/data0003 Infected:
Trojan-Downloader.Win32.Poplite.a skipped
C:\Documents and Settings\Default User\My
Documents\Data\Data\all_files2b.exe NSIS: infected - 2 skipped
C:\Documents and Settings\Default User\My
Documents\Data\Data\all_files2_at.exe/data0002 Infected:
Trojan-Downloader.Win32.VB.q skipped
C:\Documents and Settings\Default User\My
Documents\Data\Data\all_files2_at.exe NSIS: infected - 1 skipped
C:\Documents and Settings\Default User\My
Documents\Data\Data\all_files_sjb_2.exe/data0003/data0002 Infected:
not-a-virus:AdWare.Win32.BargainBuddy.a skipped
C:\Documents and Settings\Default User\My
Documents\Data\Data\all_files_sjb_2.exe/data0003/data0003 Infected:
not-a-virus:AdWare.Win32.BargainBuddy.a skipped
C:\Documents and Settings\Default User\My
Documents\Data\Data\all_files_sjb_2.exe/data0003 Infected:
not-a-virus:AdWare.Win32.BargainBuddy.a skipped
C:\Documents and Settings\Default User\My
Documents\Data\Data\all_files_sjb_2.exe/data0008 Infected:
not-a-virus:AdWare.Win32.EZula.a skipped
C:\Documents and Settings\Default User\My
Documents\Data\Data\all_files_sjb_2.exe NSIS: infected - 4 skipped
C:\Documents and Settings\Default User\My
Documents\Data\Data\memorywatcher.exe/data0004 Infected:
Trojan-Downloader.Win32.VB.q skipped
C:\Documents and Settings\Default User\My
Documents\Data\Data\memorywatcher.exe NSIS: infected - 1 skipped
C:\Documents and Settings\Default User\My Documents\Data\Data\td.exe
Infected: Trojan-Downloader.Win32.Turown.j skipped
C:\Documents and Settings\Default User\My
Documents\Data\memorywatcher.exe/data0004 Infected:
Trojan-Downloader.Win32.VB.q skipped
C:\Documents and Settings\Default User\My
Documents\Data\memorywatcher.exe NSIS: infected - 1 skipped
C:\Documents and Settings\Default User\My Documents\Data\td.exe
Infected: Trojan-Downloader.Win32.Turown.j skipped
C:\Documents and Settings\HelpAssistant\My
Documents\Data\all_files2.exe/data0002 Infected: Backdoor.Win32.VB.kr
skipped
C:\Documents and Settings\HelpAssistant\My
Documents\Data\all_files2.exe/data0003 Infected:
not-a-virus:AdWare.Win32.GigatechSuperBar skipped
C:\Documents and Settings\HelpAssistant\My
Documents\Data\all_files2.exe/data0004 Infected:
not-a-virus:AdWare.Win32.180Solutions skipped
C:\Documents and Settings\HelpAssistant\My
Documents\Data\all_files2.exe/data0006 Infected:
Trojan-Downloader.Win32.Keenval.m skipped
C:\Documents and Settings\HelpAssistant\My
Documents\Data\all_files2.exe/data0004/uptodate.exe Infected:
Trojan-Downloader.Win32.Braidupdate.c skipped
C:\Documents and Settings\HelpAssistant\My
Documents\Data\all_files2.exe/data0004 Infected:
Trojan-Downloader.Win32.Braidupdate.c skipped
C:\Documents and Settings\HelpAssistant\My
Documents\Data\all_files2.exe/data0005/data0001.cab/Save.exe Infected:
not-a-virus:AdWare.Win32.SaveNow.t skipped
C:\Documents and Settings\HelpAssistant\My
Documents\Data\all_files2.exe/data0005/data0001.cab/SaveUninst.exe
Infected: not-a-virus:AdWare.Win32.SaveNow.af skipped
C:\Documents and Settings\HelpAssistant\My
Documents\Data\all_files2.exe/data0005/data0001.cab Infected:
not-a-virus:AdWare.Win32.SaveNow.af skipped
C:\Documents and Settings\HelpAssistant\My
Documents\Data\all_files2.exe/data0005/data0002.cab/Sync.exe Infected:
not-a-virus:AdWare.Win32.SaveNow.v skipped
C:\Documents and Settings\HelpAssistant\My
Documents\Data\all_files2.exe/data0005/data0002.cab/Uninst.exe
Infected: not-a-virus:AdWare.Win32.SaveNow.v skipped
C:\Documents and Settings\HelpAssistant\My
Documents\Data\all_files2.exe/data0005/data0002.cab Infected:
not-a-virus:AdWare.Win32.SaveNow.v skipped
C:\Documents and Settings\HelpAssistant\My
Documents\Data\all_files2.exe/data0005 Infected:
not-a-virus:AdWare.Win32.SaveNow.v skipped
C:\Documents and Settings\HelpAssistant\My
Documents\Data\all_files2.exe NSIS: infected - 13 skipped
C:\Documents and Settings\HelpAssistant\My
Documents\Data\all_files_sjb_2.exe/data0003/data0002 Infected:
not-a-virus:AdWare.Win32.BargainBuddy.a skipped
C:\Documents and Settings\HelpAssistant\My
Documents\Data\all_files_sjb_2.exe/data0003/data0003 Infected:
not-a-virus:AdWare.Win32.BargainBuddy.a skipped
C:\Documents and Settings\HelpAssistant\My
Documents\Data\all_files_sjb_2.exe/data0003 Infected:
not-a-virus:AdWare.Win32.BargainBuddy.a skipped
C:\Documents and Settings\HelpAssistant\My
Documents\Data\all_files_sjb_2.exe/data0008 Infected:
not-a-virus:AdWare.Win32.EZula.a skipped
C:\Documents and Settings\HelpAssistant\My
Documents\Data\all_files_sjb_2.exe NSIS: infected - 4 skipped
C:\Documents and Settings\HelpAssistant\My
Documents\Data\Data\all_files2.exe/data0002 Infected:
Backdoor.Win32.VB.kr skipped
C:\Documents and Settings\HelpAssistant\My
Documents\Data\Data\all_files2.exe/data0003 Infected:
not-a-virus:AdWare.Win32.GigatechSuperBar skipped
C:\Documents and Settings\HelpAssistant\My
Documents\Data\Data\all_files2.exe/data0004 Infected:
not-a-virus:AdWare.Win32.180Solutions skipped
C:\Documents and Settings\HelpAssistant\My
Documents\Data\Data\all_files2.exe/data0006 Infected:
Trojan-Downloader.Win32.Keenval.m skipped
C:\Documents and Settings\HelpAssistant\My
Documents\Data\Data\all_files2.exe/data0004/uptodate.exe Infected:
Trojan-Downloader.Win32.Braidupdate.c skipped
C:\Documents and Settings\HelpAssistant\My
Documents\Data\Data\all_files2.exe/data0004 Infected:
Trojan-Downloader.Win32.Braidupdate.c skipped
C:\Documents and Settings\HelpAssistant\My
Documents\Data\Data\all_files2.exe/data0005/data0001.cab/Save.exe
Infected: not-a-virus:AdWare.Win32.SaveNow.t skipped
C:\Documents and Settings\HelpAssistant\My
Documents\Data\Data\all_files2.exe/data0005/data0001.cab/SaveUninst.exe Infected:
not-a-virus:AdWare.Win32.SaveNow.af skipped
C:\Documents and Settings\HelpAssistant\My
Documents\Data\Data\all_files2.exe/data0005/data0001.cab Infected:
not-a-virus:AdWare.Win32.SaveNow.af skipped
C:\Documents and Settings\HelpAssistant\My
Documents\Data\Data\all_files2.exe/data0005/data0002.cab/Sync.exe
Infected: not-a-virus:AdWare.Win32.SaveNow.v skipped
C:\Documents and Settings\HelpAssistant\My
Documents\Data\Data\all_files2.exe/data0005/data0002.cab/Uninst.exe
Infected: not-a-virus:AdWare.Win32.SaveNow.v skipped
C:\Documents and Settings\HelpAssistant\My
Documents\Data\Data\all_files2.exe/data0005/data0002.cab Infected:
not-a-virus:AdWare.Win32.SaveNow.v skipped
C:\Documents and Settings\HelpAssistant\My
Documents\Data\Data\all_files2.exe/data0005 Infected:
not-a-virus:AdWare.Win32.SaveNow.v skipped
C:\Documents and Settings\HelpAssistant\My
Documents\Data\Data\all_files2.exe NSIS: infected - 13 skipped
C:\Documents and Settings\HelpAssistant\My
Documents\Data\Data\all_files_sjb_2.exe/data0003/data0002 Infected:
not-a-virus:AdWare.Win32.BargainBuddy.a skipped
C:\Documents and Settings\HelpAssistant\My
Documents\Data\Data\all_files_sjb_2.exe/data0003/data0003 Infected:
not-a-virus:AdWare.Win32.BargainBuddy.a skipped
C:\Documents and Settings\HelpAssistant\My
Documents\Data\Data\all_files_sjb_2.exe/data0003 Infected:
not-a-virus:AdWare.Win32.BargainBuddy.a skipped
C:\Documents and Settings\HelpAssistant\My
Documents\Data\Data\all_files_sjb_2.exe/data0008 Infected:
not-a-virus:AdWare.Win32.EZula.a skipped
C:\Documents and Settings\HelpAssistant\My
Documents\Data\Data\all_files_sjb_2.exe NSIS: infected - 4 skipped
C:\Documents and Settings\LocalService.NT AUTHORITY\Cookies\index.dat
Object is locked skipped
C:\Documents and Settings\LocalService.NT AUTHORITY\Local
Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is
locked skipped
C:\Documents and Settings\LocalService.NT AUTHORITY\Local
Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is
locked skipped
C:\Documents and Settings\LocalService.NT AUTHORITY\Local
Settings\History\History.IE5\index.dat Object is locked skipped
C:\Documents and Settings\LocalService.NT AUTHORITY\Local
Settings\Temporary Internet Files\Content.IE5\index.dat Object is
locked skipped
C:\Documents and Settings\LocalService.NT AUTHORITY\NTUSER.DAT Object
is locked skipped
C:\Documents and Settings\LocalService.NT AUTHORITY\ntuser.dat.LOG
Object is locked skipped
C:\Documents and Settings\NetworkService.NT AUTHORITY\Local
Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is
locked skipped
C:\Documents and Settings\NetworkService.NT AUTHORITY\Local
Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is
locked skipped
C:\Documents and Settings\NetworkService.NT AUTHORITY\NTUSER.DAT Object
is locked skipped
C:\Documents and Settings\NetworkService.NT AUTHORITY\ntuser.dat.LOG
Object is locked skipped
C:\Program Files\Alcohol Soft\Alcohol
120\StarWind\logs\starwind.2007-01-01.21-58-34.log Object is locked
skipped
C:\Program Files\Norton SystemWorks\Norton
AntiVirus\Quarantine\04D24DA9 Infected: Backdoor.Win32.SdBot.gen skipped
C:\Program Files\Norton SystemWorks\Norton
AntiVirus\Quarantine\42EB094B Infected: Backdoor.Win32.SdBot.gen skipped
C:\Program Files\Norton SystemWorks\Norton
AntiVirus\Quarantine\49AD7FB3 Infected: Backdoor.Win32.Iroffer.1213.d
skipped
C:\Program Files\Norton SystemWorks\Norton
AntiVirus\Quarantine\5DDF15A1 Infected: Backdoor.Win32.SdBot.gen skipped
C:\Program Files\VentSrv\ventrilo_srv.log Object is locked skipped
C:\RECYCLED\NPROTECT\00914413.ino Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00914516.ilf Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00914554.fio Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00914640.msi Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00914674.xrs Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00914778.tlb Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00914786.mor Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00914787.hct Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00914889.adk Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00914928.csb Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00914942.mdm Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00915132.bpx Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00915175.dob Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00915202.gst Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00915208.ole Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00915210.csi Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00915286.mnl Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00915296.spe Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00915472.mnc Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00915577.nfo Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00915826.rad Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00915878.shx Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00915902.tnl Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00915975.ids Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00916031.vbs Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00916160.eot Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00916213.dcf Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00916265.dob Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00916275.dsc Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00916305.uil Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00916313.spe Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00916404.shx Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00916407.txr Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00916653.lex Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00916663.dsx Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00916813.mhk Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00916816.pol Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00916841.lmc Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00916858.wpc Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00916862.xmx Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00916876.udt Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00916888.awx Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00916895.lgd Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00916971.bdr Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00916989.msb Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00917021.sfp Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00917297.tnl Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00917362.quf Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00917437.dir Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00917501.tol Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00917512.tdf Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00917530.lex Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00917533.txr Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00917539.amb Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00917616.ini Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00917685.cpb Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00917706.tuw Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00917720.gst Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00917725.cao Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00917768.wtr Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00917834.ecf Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00918076.udt Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00918127.poc Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00918219.did Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00918275.hwl Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00918328.ulk Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00918353.icm Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00918432.lmg Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00918445.old Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00918572.tzd Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00918644.ins Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00918674.pif Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00918730.smc Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00918771.rbf Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00918912.vof Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00919063.lso Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00919073.cty Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00919165.nqm Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00919205.tsk Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00919223.ctg Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00919269.dwt Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00919314.tlb Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00919348.exa Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00919351.bpx Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00919367.nfo Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00919372.nam Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00919389.exa Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00919410.cag Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00919450.vph Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00919510.psp Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00919520.hwl Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00919584.pdi Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00919674.ink Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00919678.apv Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00919843.tsk Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00919916.hgd Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00919934.udi Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00919953.tld Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00919959.rad Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00919985.cty Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00920013.rtr Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00920092.mnr Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00920107.bid Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00920133.bma Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00920178.wdl Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00920191.pif Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00920291.mmm Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00920339.udc Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00920358.tlu Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00920451.ddb Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00920537.zrw Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00920539.dwt Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00920614.nfo Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00920633.cat Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00920690.pfr Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00920691.dsk Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00920693.mmc Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00920738.vdb Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00920814.rjs Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00920922.fin Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00920926.bld Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00920977.pag Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00921027.alt Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00921030.hdi Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00921073.tym Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00921076.usr Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00921100.atn Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00921174.mst Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00921181.ole Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00921207.inl Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00921234.arx Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00921235.dos Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00921288.fll Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00921390.tpa Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00921444.tip Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00921458.dtt Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00921495.rct Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00921534.tie Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00921546.gdb Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00921582.odl Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00921606.bcf Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00921656.hta Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00921693.mxt Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00921700.lmp Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00921707.tpa Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00921715.pbk Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00921804.ttf Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00921829.lid Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00921870.lgf Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00921898.csi Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00921938.tnl Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00921942.lck Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00922017.aip Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00922053.vlx Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00922065.std Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00922097.ecf Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00922101.smc Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00922140.gms Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00922166.hta Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00922195.cly Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00922200.hyp Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00922236.dxt Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00922240.lam Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00922245.det Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00922317.lck Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00922350.nsi Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00922353.vqa Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00922424.inv Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00922464.lso Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00922518.ctg Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00922529.buc Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00922535.tlb Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00922586.lge Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00922730.mcm Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00922818.lmg Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00922820.stb Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00922859.ucm Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00922886.tzd Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00922896.vsh Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00922929.lid Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00922950.tip Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00922971.dll Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00923046.qtw Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00923078.apm Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00923131.lex Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00923153.poc Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00923185.lgf Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00923235.tlt Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00923239.adw Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00923267.ucp Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00923269.csl Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00923278.inv Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00923311.nsw Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00923328.fin Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00923393.exe/WISE0001.BIN Infected:
not-a-virus:AdWare.Win32.EZula.ak skipped
C:\RECYCLED\NPROTECT\00923393.exe WiseSFX: infected - 1 skipped
C:\RECYCLED\NPROTECT\00924101.xbu Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924102.tqs Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924103.ovl Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924104.djq Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924105.qst Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924106.lhi Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924107.qjc Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924108.lep Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924109.hea Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924110.lkb Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924111.rea Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924112.vhd Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924113.amg Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924114.shw Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924115.wph Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924116.lze Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924117.azv Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924118.gyd Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924119.nie Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924120.biw Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924121.lqr Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924122.gfv Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924123.lbn Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924125.dwx Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924126.xiv Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924127.aho Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924128.jte Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924129.ova Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924130.vnw Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924131.tzj Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924132.zjr Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924133.nlm Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924134.hiv Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924135.qvv Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924136.wwp Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924137.uld Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924138.oss Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924139.vyx Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924140.qzg Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924141.sft Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924142.ahj Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924143.icz Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924144.rke Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924145.wqy Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924146.quh Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924147.hqu Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924148.lpi Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924149.rbo Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924150.plv Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924151.whe Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924153.zqs Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924154.ker Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924155.dal Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924156.pdk Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924157.uvv Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924158.zqy Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924159.zjl Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924160.hes Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924161.mtf Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924162.orf Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924163.cwo Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924164.ppi Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924165.hwu Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924166.gmt Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924167.bnj Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924168.czi Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924169.cjl Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924170.zjy Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924171.hrb Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924172.oxm Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924173.szc Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924174.dpa Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924175.uey Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924176.hsl Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924177.uls Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924178.csv Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924179.vwt Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924180.del Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924182.oxr Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924183.gzv Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924184.ptd Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924185.btt Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924186.lbo Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924187.bme Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924188.gdl Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924189.shw Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924190.rja Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924191.hto Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924192.azd Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924193.eye Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924194.pqu Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924195.ibu Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924196.qlq Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924197.jxh Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924198.tbi Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924199.abe Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924200.epf Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924201.ajg Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924202.jru Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924203.rgi Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924204.cys Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924205.nrd Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924206.dtl Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924207.cjb Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924208.xik Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924210.bge Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924211.pnr Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924212.fzd Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924213.xbc Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924214.ona Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924215.dqa Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924216.imu Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924217.xry Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924218.xtg Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924219.flj Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924220.hhn Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924221.zyo Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924222.esj Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924223.tmf Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924224.lff Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924225.xtr Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924226.kmv Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924227.ixm Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924228.ivx Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924229.ckk Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924230.zeu Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924231.axi Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924232.hwz Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924233.mvl Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924234.ikp Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924235.try Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924236.cgb Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924237.lag Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924239.kpq Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924240.tnb Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924241.xvg Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924242.rpx Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924243.pxm Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924244.ckg Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924245.huy Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924246.jcp Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924247.ouw Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924248.yyz Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924249.ldc Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924250.ody Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924251.olw Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924252.upr Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924253.fia Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924254.amb Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924255.bnw Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924256.mqk Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924257.jwv Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924258.sjl Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924259.ttu Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924260.oyw Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924261.kam Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924262.vej Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924263.tip Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924264.nlk Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924265.voz Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924267.uzg Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924268.xgb Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924269.rgi Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924278.hhn Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924279.ync Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924280.eqo Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924281.spy Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924282.qdj Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924283.ybv Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924284.vuw Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924285.ril Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924286.rsz Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924287.zmn Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924288.qen Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924289.qei Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924290.nww Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924291.llf Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924292.voo Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924293.hog Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924294.pkf Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924295.rfo Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924296.bgf Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924297.xln Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924298.jxt Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924299.hzf Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924300.lsk Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924301.hgp Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924303.vrz Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924304.lsg Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924305.gyi Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924306.lex Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924307.brz Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924308.glx Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924309.jef Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924310.vwq Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924311.krs Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924312.fbk Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924313.uba Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924314.lgm Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924315.spn Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924316.wrr Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924317.ild Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924318.jne Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924319.csh Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924320.mxm Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924321.bge Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924322.rrk Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924323.sra Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924324.chg Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924325.mgs Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924326.map Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924327.uvi Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924328.hrf Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924329.idd Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924330.kiy Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924332.rfc Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924333.ibs Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924334.nxa Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924335.pcn Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924336.cph Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924337.bxe Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924338.bdj Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924339.rke Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924340.bmy Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924341.jgd Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924342.dsi Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924343.goz Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924344.szl Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924345.kbb Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924346.ctj Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924347.vsg Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924348.zlo Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924349.pmw Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924350.abr Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924351.ikt Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924352.glv Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924353.ycb Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924354.nbh Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924355.ibo Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924356.fyk Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924357.gde Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924358.lnj Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924360.qex Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924361.liw Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924362.iuq Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924363.dwf Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924364.glr Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924365.uwf Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924366.vss Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924367.nvt Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924368.cmi Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924369.mii Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924370.eck Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924371.cee Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924372.ywk Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924377.hlp Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924378.ehl Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924379.ahn Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924380.fjr Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924381.wqr Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924382.uwv Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924383.opd Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924384.zgg Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924385.ivp Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924386.srv Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924387.fev Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924388.fjj Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924389.thl Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924390.jff Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924391.ona Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924393.dys Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924394.pwa Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924395.jpu Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924396.tpk Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924397.ijt Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924398.uue Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924399.sbe Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924400.jxh Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924401.lwu Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924402.egl Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924403.lti Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924404.hoh Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924405.iqr Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924406.fdo Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924407.xfu Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924408.tdf Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924409.rnk Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924410.ttw Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924411.gih Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924412.kqs Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924413.otl Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924414.spy Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924415.vvz Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924416.myi Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924417.nmx Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924418.hey Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924419.ujx Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924421.mqy Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924422.kzf Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924423.amk Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924424.sss Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924425.ham Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924426.sma Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924427.phy Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924428.ioo Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924429.uqf Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924430.xek Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924431.ctf Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924432.bos Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924433.pta Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924434.llx Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924435.qfu Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924436.knx Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924437.pqp Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924438.fgo Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924439.isi Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924440.tac Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924441.jso Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924442.mfo Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924443.dxk Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924444.qet Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924445.mjx Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924446.bru Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924447.ckw Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924448.owv Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924450.eba Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924451.dlh Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924462.zek Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924463.hhs Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924464.feg Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924465.zeo Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924466.xte Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924467.wwm Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924468.xmf Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924469.hgu Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924470.jow Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924471.aqt Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924472.jzy Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924473.nzo Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924474.qkg Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924475.hrx Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924476.mot Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924477.lyr Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924478.btz Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924479.pyo Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924480.juv Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924481.fky Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924482.zhd Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924483.gho Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924484.jfx Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924485.urv Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924486.aec Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924488.vrx Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924489.zlr Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924490.fzy Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924491.psn Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924492.uyc Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924493.zsi Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924494.rvc Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924495.pvn Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924496.exd Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924497.rfz Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924498.ufi Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924499.ovi Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924500.mqz Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924501.jup Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924502.djy Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924503.lpg Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924504.enz Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924505.ctj Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924506.rqv Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924507.ycd Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924508.itb Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924509.wsd Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924510.hmx Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924511.rdt Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924512.agu Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924513.uhc Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924514.bmd Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924516.xrr Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924517.tno Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924518.udd Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924519.jdi Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924520.msm Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924521.ipp Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924522.oae Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924523.xax Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924525.qnq Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924526.nzo Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924527.xqx Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924528.ixo Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924529.epg Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924530.wmv Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924531.qnv Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924532.ucu Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924533.yns Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924534.kbl Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924535.bws Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924536.cly Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924537.vra Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924538.kng Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924539.wjz Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924540.kgt Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924541.cnt Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924542.jcn Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924543.vdp Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924544.tnr Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924546.zhd Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924547.iux Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924548.dca Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924549.nyf Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924550.jwr Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924551.nru Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924552.nko Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924553.ibp Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924554.har Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924555.ffv Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924556.nsy Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924557.hvv Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924558.iyk Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924559.kxh Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924560.igw Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924561.qvy Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924562.idm Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924563.uyr Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924564.ryk Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924565.iqd Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924566.aut Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924567.wdg Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924568.ots Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924569.grn Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924570.szd Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924571.fad Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924572.dfv Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924574.jae Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924575.inm Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924576.vhs Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924577.ktd Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924578.lix Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924579.dtg Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924580.bxg Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924581.llv Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924582.ddd Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924583.deq Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924584.gmu Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924585.flf Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924586.fpi Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924587.abn Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924588.myl Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924589.unz Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924590.tdd Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924591.tlm Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924592.gse Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924593.eij Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924594.dfd Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924595.lgr Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924596.gyw Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924597.knm Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924598.rvy Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924599.mwd Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924600.aod Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924601.vhe Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924603.qpz Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924604.wlm Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924605.kck Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924606.fkw Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924607.bnn Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924608.xrm Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924609.tnt Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924610.utl Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924611.wal Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924612.hxu Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924613.idi Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924614.uua Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924615.oxd Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924616.rri Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924617.jhf Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924618.xjj Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924619.gcu Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924620.mfg Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924621.jaf Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924622.ytp Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924623.kps Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924624.nng Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924625.sjc Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924626.qrs Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924627.zzd Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924628.mng Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924629.qiy Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924631.dwo Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924632.abm Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924633.zeo Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924642.vrq Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924643.cgn Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924644.vyz Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924645.dgn Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924646.ued Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924647.sgw Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924648.ncc Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924649.eiz Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924650.mru Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924651.iod Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924652.kya Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924653.jbm Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924654.dtc Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924655.dzl Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924656.asd Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924657.ksr Infected: Trojan.Win32.Qhost.ce skipped
Christ84opher is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Reddit!
Old 01-01-2007, 11:25 PM   #13 (permalink)
Registered User
 
Christ84opher's Avatar
 
Join Date: Dec 2006
Location: ny
Posts: 13
OS: xp


Send a message via AIM to Christ84opher Send a message via Yahoo to Christ84opher
C:\RECYCLED\NPROTECT\00924658.iyp Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924659.cdd Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924660.nme Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924661.lzh Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924662.rpa Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924663.rtt Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924664.zxq Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924665.iup Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924666.wak Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924668.asq Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924669.ijc Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924670.bsz Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924671.szl Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924673.lbm Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924674.key Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924675.kwp Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924677.kwv Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924679.cgi Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924680.jxx Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924686.rfn Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924688.gti Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924689.rtp Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924690.opk Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924691.zaa Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924692.wok Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924693.qwb Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924694.xdk Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924695.ins Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924700.cjz Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924851.dil Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924855.cbv Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924858.ree Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924861.ldz Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924865.yxn Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924867.gvs Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924869.gqi Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924873.fgn Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924874.xnc Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924876.exj Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924879.aat Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924881.tyh Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924882.gvu Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924884.hnu Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924885.ocg Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924887.ctj Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924889.lkf Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924894.epl Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924896.zkr Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924898.nwz Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924900.ltc Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924910.rxk Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924911.giq Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924913.qvk Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924914.xyw Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924917.gpv Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924918.dku Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924920.ezo Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924921.uwv Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924923.zlh Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924925.lvf Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924926.agw Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924928.rfc Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924929.akb Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924932.uax Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924933.boi Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924935.dib Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924936.yvb Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924938.zoi Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924942.gxc Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924944.ign Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924945.hck Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924947.ruv Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924949.fdv Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924950.xnz Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924952.vdz Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924953.jov Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924955.xba Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924956.rcd Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924958.vin Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924959.gsh Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924961.wlo Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924962.uqv Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924964.kgj Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924965.qgl Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924967.cow Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924968.djq Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924970.kqf Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924971.kcv Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924972.kws Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924974.enq Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924975.pkj Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924977.kgr Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924978.fty Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924980.yyc Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924981.svl Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924983.ykt Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924984.rpk Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924986.snp Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924987.wls Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924989.jco Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924990.iqr Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924992.juw Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924993.bnj Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924995.wqh Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924996.ree Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924997.cgl Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924999.zzt Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925000.njc Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925002.icw Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925004.mmc Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925006.iyn Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925007.giu Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925009.zok Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925010.zbj Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925012.flx Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925013.qvx Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925015.ost Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925016.jaa Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925017.wpn Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925019.tkv Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925020.sic Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925022.lcb Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925023.ftb Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925025.lij Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925026.juz Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925027.inf Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925029.yoq Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925030.zwl Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925032.qvv Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925033.jea Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925035.dhr Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925036.jve Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925037.ggb Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925039.fih Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925040.ivb Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925042.ruc Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925043.kfz Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925045.smc Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925046.axi Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925047.fcs Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925049.gte Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925050.ofv Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925052.bjx Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925053.dkb Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925055.ukk Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925056.xly Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925058.zsx Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925059.wzg Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925060.uya Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925062.hvf Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925064.esi Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925066.acr Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925067.yih Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925069.vpy Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925070.blq Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925073.bgt Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925074.xxw Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925076.eee Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925079.lgd Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925081.hqd Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925082.ayi Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925084.nop Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925085.snd Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925087.ima Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925088.wed Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925089.qfo Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925091.tiv Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925092.ach Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925094.ntg Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925095.rkr Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925097.unz Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925098.zxp Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925100.oxs Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925101.zsk Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925103.bkt Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925104.wgl Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925106.isq Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925107.fjh Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925109.orh Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925111.qsp Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925113.jzm Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925114.avd Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925116.zuq Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925117.ppi Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925118.jvp Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925120.rwb Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925121.vtl Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925123.myz Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925124.oab Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925126.lkn Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925128.ecs Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925129.ljo Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925131.vfp Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925132.mlm Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925134.kuk Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925135.atu Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925137.iug Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925138.xma Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925140.hzd Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925141.rqr Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925142.xoo Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925144.wuq Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925145.gwe Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925147.hcj Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925148.prt Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925150.iox Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925151.idp Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925153.eub Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925154.ilm Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925156.ynb Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925157.yzs Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925158.ztt Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925160.flb Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925161.hot Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925163.alo Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925164.wmm Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925166.puj Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925167.buy Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925169.twk Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925170.jnu Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925172.zio Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925173.lpv Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925174.wzp Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925176.cfa Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925177.duc Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925179.ljc Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925180.iov Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925182.hmz Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925183.uag Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925185.gvy Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925186.peu Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925188.inb Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925190.jqr Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925191.kqc Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925193.ize Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925194.xbf Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925196.ntk Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925197.lcb Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925199.xod Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925200.jyn Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925202.zkq Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925203.hhh Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925205.hzj Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925206.onj Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925207.asj Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925209.byg Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925210.pud Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925212.vcz Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925213.qtw Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925215.znx Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925216.wwc Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925218.tdz Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925219.hkp Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925221.zgk Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925222.svv Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925224.ppa Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925225.hjy Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925227.gsd Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925228.tlc Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925230.wjt Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925231.pfp Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925232.qea Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925234.szr Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925235.jee Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925237.pgi Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925238.chn Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925240.tcp Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925241.ztk Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925243.pvp Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925244.cim Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925246.qfa Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925247.pvk Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925249.yln Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925250.acn Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925252.bxs Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925253.mjj Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925254.fco Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925256.cif Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925257.dra Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925259.asq Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925260.cnm Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925262.xja Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925271.rfw Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925273.dsu Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925274.pmk Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925276.qya Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925277.pny Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925279.vtw Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925280.pss Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925282.ckr Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925283.mah Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925285.jfy Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925286.hsj Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925287.skj Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925289.hvb Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925290.las Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925292.pxk Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925293.kwc Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925295.uzp Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925296.ind Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925298.fec Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925299.spk Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925301.ziz Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925302.vtb Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925304.zgt Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925305.ujh Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925307.yuq Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925308.hvu Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925310.llr Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925311.zsu Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925313.cok Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925314.wdp Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925315.dmi Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925317.ytc Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925318.lvr Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925320.kae Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925321.zah Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925323.ddx Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925325.pze Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925329.add Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925330.ojc Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925332.adg Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925333.gzf Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925335.ozq Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925336.jok Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925338.lin Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925339.usn Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925341.wmz Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925342.pni Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925344.xjg Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925345.oyo Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925347.ynn Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925348.agt Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925349.azc Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925351.qhi Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925352.coo Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925354.cmw Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925357.svt Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925360.mlu Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925361.chj Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925363.gri Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925364.ohr Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925366.fum Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925367.gqz Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925369.apn Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925370.rbf Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925372.xpv Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925373.dpc Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925375.nhs Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925376.ubk Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925378.aey Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925379.hnt Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925380.rew Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925382.zjo Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925383.pqe Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925385.qwf Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925386.gnt Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925388.zml Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925389.gwv Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925391.ycq Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925392.rev Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925394.vgx Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925395.kbw Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925397.fkh Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925398.dlp Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925400.vgw Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925401.xdj Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925403.uvr Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925404.kkh Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925406.yeq Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925407.szt Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925409.kwt Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925410.hgm Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925411.peo Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925413.quo Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925414.pau Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925416.qmu Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925417.qnt Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925419.xor Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925420.xlc Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925422.cfx Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925423.jmd Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925425.paa Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925426.spn Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925428.nib Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925429.ave Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925431.otb Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925432.kdu Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925434.xvj Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925435.hvd Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925437.neu Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925438.iel Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925439.wgr Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925441.umz Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925442.kmc Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925444.drl Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925445.hxz Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925447.yqx Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925448.bvo Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925450.qyu Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925451.iji Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925453.fpx Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925454.zzs Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925456.nha Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925457.hfa Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925459.igm Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925460.qom Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925462.pwn Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925463.rzw Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925465.gro Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925466.ipb Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925468.ygw Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925469.hig Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925471.ldr Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925472.bqn Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925474.rsl Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925475.rya Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925477.oua Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925478.odl Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925480.uum Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925481.zwf Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925483.enz Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925484.hwo Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925486.xax Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925487.oju Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925489.sex Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925490.dfr Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925492.vux Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925493.naj Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925495.djs Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925496.hju Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925498.hvj Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925499.fmp Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925501.lct Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925502.rfu Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925504.twd Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925505.glj Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925506.ylb Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925508.pda Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925509.bnk Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925511.yzp Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925512.dnt Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925514.aau Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925515.sut Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925517.irp Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925518.bis Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925520.tpm Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925521.tak Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925523.ivw Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925524.wcv Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925526.mms Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925527.ofh Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925529.nli Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925530.teh Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925532.pae Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925533.wsi Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925535.skz Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925536.udm Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925538.pel Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925541.xod Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925549.any Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925550.lee Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925552.jly Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925553.tgo Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925555.bwk Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925556.xfk Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925559.ssr Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925567.cai Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925570.lfj Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925571.fog Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925575.okv Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925576.kid Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925578.did Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925579.sys Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925581.dsi Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925582.kyk Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925584.aro Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925585.why Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925587.gog Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925588.cca Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925589.iiu Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925591.llw Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925592.vtl Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925594.bnu Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925595.oar Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925597.kyl Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925598.wer Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925600.ydj Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925616.byy Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925618.ggj Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925625.wxe Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925630.zlo Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925631.juu Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925633.vwj Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925635.rrl Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925637.opn Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925638.qjn Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925640.iad Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925643.szs Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925646.zhu Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925648.udd Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925651.drn Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925652.sxe Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925658.etp Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925659.okh Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925669.yck Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925672.tut Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925678.cuj Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925685.buv Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925824.nxk Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925827.zap Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925829.cgv Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925830.gib Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925833.tyn Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925842.lkv Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925845.vdu Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925846.mao Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925849.xwy Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925850.ufb Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925852.xih Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925853.prv Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925855.gzs Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925858.qfm Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925859.cca Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925861.tae Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925862.wvr Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925865.uhc Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925866.wjh Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925868.ayq Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925871.scy Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925873.utf Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925875.ibw Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925879.qkr Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925880.mro Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925882.eep Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925883.fao Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925886.oac Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925887.jjr Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925889.tsr Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925891.hkw Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925893.iqh Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925895.csz Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925896.htg Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925898.xeu Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925899.yvf Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925903.xwh Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925904.koc Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925906.etl Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925907.bfw Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925911.zcn Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925912.sil Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925914.noq Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925915.iux Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925917.yje Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925920.tjb Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925921.xre Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925923.mxn Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925924.hcd Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925926.cwf Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925927.grh Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925929.obl Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925930.hox Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925932.bcv Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925933.npx Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925935.wax Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00925955.yte Infected: Trojan.Win32.Qhost.ce skipped
C:\System Volume
Information\_restore{BB888FFE-4445-41B8-9B3B-F91E1712BA55}\RP734\change.log
Object is locked skipped
C:\WINDOWS\Debug\PASSWD.LOG Object is locked skipped
C:\WINDOWS\MEMORY.DMP Object is locked skipped
C:\WINDOWS\SchedLgU.Txt Object is locked skipped
C:\WINDOWS\SoftwareDistribution\ReportingEvents.log Object is locked
skipped
C:\WINDOWS\Sti_Trace.log Object is locked skipped
C:\WINDOWS\system32\config\ACEEvent.evt Object is locked skipped
C:\WINDOWS\system32\config\AppEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\default Object is locked skipped
C:\WINDOWS\system32\config\default.LOG Object is locked skipped
C:\WINDOWS\system32\config\SAM Object is locked skipped
C:\WINDOWS\system32\config\SAM.LOG Object is locked skipped
C:\WINDOWS\system32\config\SecEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\SECURITY Object is locked skipped
C:\WINDOWS\system32\config\SECURITY.LOG Object is locked skipped
C:\WINDOWS\system32\config\software Object is locked skipped
C:\WINDOWS\system32\config\software.LOG Object is locked skipped
C:\WINDOWS\system32\config\SysEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\system Object is locked skipped
C:\WINDOWS\system32\config\system.LOG Object is locked skipped
C:\WINDOWS\system32\config\systemprofile\Cookies\index.dat Object is
locked skipped
C:\WINDOWS\system32\config\systemprofile\Local
Settings\History\History.IE5\index.dat Object is locked skipped
C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary
Internet Files\Content.IE5\index.dat Object is locked skipped
C:\WINDOWS\system32\h323log.txt Object is locked skipped
C:\WINDOWS\system32\Ktm8r9.exe Infected:
Trojan-Downloader.Win32.VB.em skipped
C:\WINDOWS\system32\wbem\Repository\FS\INDEX.BTR Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.DATA Object is locked
skipped
C:\WINDOWS\wiadebug.log Object is locked skipped
C:\WINDOWS\wiaservc.log Object is locked skipped
C:\WINDOWS\WindowsUpdate.log Object is locked skipped
C:\winupdt2.exe/TargetSoft.exe Infected:
Trojan-Downloader.Win32.TargetSoft.a skipped
C:\winupdt2.exe InstallCreator: infected - 1 skipped
C:\winupdt2.exe UPX: infected - 1 skipped
*Scan process completed*

ill do adaware and my anti-virus program tonite or tomorrow im having a hard time believing that kaspersky found 29 viruses on my computer and i even made shure my anti-virus prgram was on snooze so it was disabled when i ran the kaspersky scan. my computer is rid of the oin pop ups though and seems to be doing alot better. thanks for the help.

-Chris
Christ84opher is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Reddit!
Old 01-04-2007, 01:17 PM   #14 (permalink)
TSF Enthusiast
 
src2206's Avatar
 
Join Date: Apr 2006
Location: Kolkata, India
Posts: 2,068
OS: WinXP Pro SP3

My System

Send a message via Yahoo to src2206
Post

Hello Chris

We are closing to home, so please carry on the next set of instruction in the exact order given, and if you face any difficulty, lease do not forget to let me know in your next reply.
___________________________________________________________________

Fix

Delete the following files:

C:\ dist.exe
C:\ winupdt2.exe
C:\WINDOWS\system32\ Ktm8r9.exe


If you did not create these 2 folders yourself, please delete them:

C:\Documents and Settings\Default User\My Documents\ Data
C:\Documents and Settings\HelpAssistant\My Documents\ Data


Navigate to the following folder marked in BLUE and delete this folder:

C:\WINDOWS\çasks

In my last fix, I have asked you to delete the above folder, but it appears to me that you have missed it. Did you face any difficulty while deleting this folder? Please let me know in detail if you face any difficulty this time.

**If any of the above resist deletion, boot into Safe Mode to delete.

------------------------------------------------------------

Launch Spybot Search & Destroy. In the left panel of the program window you can find a option labeled as "Recovery"- select it. In the right pane of the program window you should see entries under the column "Backup". Select all backups available and then click the " X" button labeled as "Purge all the selected items". Exit the program.

------------------------------------------------------------

Clear out Norton's Quarantine folder. If you're unsure on how to do it, you can use Symantec's guide.

------------------------------------------------------------

Empty Norton Protected:
See this site for instructions on how to empty Norton's protected Recycle Bin.
_____________________________________________________________________

Combofix

Please run Combofix again. Double click on the file combofix.exe saved on your desktop and follow the prompts and post the content of the log it produces with your next reply.
Do not mouse click combofix's window whilst it's running. That may cause it to stall.
_____________________________________________________________________

Please post back here with a new HijackThis Log, Combofix.txt and let me know whether you face any difficulty in deleting the files or folder.
__________________
Registered Linux user #426065
src2206 is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Reddit!
Old 01-06-2007, 05:08 PM   #15 (permalink)
Registered User
 
Christ84opher's Avatar
 
Join Date: Dec 2006
Location: ny
Posts: 13
OS: xp


Send a message via AIM to Christ84opher Send a message via Yahoo to Christ84opher
hi there i tried to do all of the things that you mentioned above but i couldnt find the folder called casks in the c/windows directory is there any other name that it could be called b/c i noticed that it was spelled with a weird looking c (ç) i also tried looking for it with search but no results were found.

as far as norton goes im kinda confused i have norton antivirus uninstalled from my computer but some files are still on my computer. i tried to read the instructions from nortons site but to follow those instructions it sounds like i need to have the antivirus program installed on my computer and i uninstalled that like a couple of years ago and i have no idea were the cd is. also my recycle bin on my desktop is not norton protected but i did find the norton recycled folder on my c/recycled/nprotect drive should i just delete the nprotect folder?

besides that stuff everything else i did and heres the reports

"chris" - 07-01-06 18:18:56.28 Service Pack 1
ComboFix 06-12-23W-BetaE2 - Running from: "C:\Documents and Settings\chris\Desktop"

(((((((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))


e:\autorun.inf" . . . . failed to delete
~ ~ ~ ~ ~ ~ ~ ~ ~ ~ ~ ~ ~ ~ Purity ~ ~ ~ ~ ~ ~ ~ ~~ ~ ~ ~ ~ ~ ~ ~ ~ ~ ~ ~
Folders Quarantined:
C:\qoobox\purity\Documents and Settings\chris\Application Data\APPATC~1
C:\qoobox\purity\Documents and Settings\chris\Application Data\MCROSO~1
C:\qoobox\purity\Documents and Settings\chris\My Documents\CROSOF~1
C:\qoobox\purity\Documents and Settings\chris\My Documents\ICROSO~1
C:\qoobox\purity\Program Files\ICROSO~1.NET
C:\qoobox\purity\Program Files\YSTEM~1
C:\qoobox\purity\Program Files\Common Files\CROSOF~1
C:\qoobox\purity\Program Files\Common Files\ICROSO~1
C:\qoobox\purity\Program Files\Common Files\MANTEC~1
C:\qoobox\purity\Program Files\YSTEM~1\scanregw.exe
C:\qoobox\purity\Program Files\YSTEM~1\YSTEM~1
C:\qoobox\purity\WINDOWS\SMBOLS~1
C:\qoobox\purity\WINDOWS\system32\TSKS~1
C:\qoobox\purity\WINDOWS\system32\TSKS~1\?ttrib.exe


((((((((((((((((((((((((((((((( Files Created from 2006-12-06 to 2007-01-06 ))))))))))))))))))))))))))))))))))


2007-01-01 22:22 <DIR> d-------- C:\WINDOWS\system32\Kaspersky Lab
2006-12-29 00:59 <DIR> d-------- C:\Program Files\Ventrilo
2006-12-18 01:40 <DIR> d-------- C:\WINDOWS\system32\ActiveScan
2006-12-18 01:15 <DIR> d-------- C:\bintheredunthat
2006-12-17 17:03 <DIR> d-------- C:\WINDOWS\erdnt
2006-12-17 16:31 <DIR> d-------- C:\bfu
2006-12-17 16:20 3,968 --a------ C:\WINDOWS\system32\drivers\AvgAsCln.sys
2006-12-17 16:19 <DIR> d-------- C:\Program Files\Grisoft
2006-12-16 20:05 5,248 --a------ C:\WINDOWS\system32\drivers\vax347s.sys
2006-12-16 20:05 159,616 --a------ C:\WINDOWS\system32\drivers\vax347b.sys
2006-12-16 20:05 <DIR> d-------- C:\Program Files\Alcohol Soft
2006-12-16 20:02 <DIR> d-------- C:\Program Files\Alcoholer
2006-12-16 17:56 <DIR> d-------- C:\WINDOWS\çasks
2006-12-11 18:55 991,232 --a------ C:\WINDOWS\system32\esent.dll
2006-12-09 01:22 <DIR> d-------- C:\Program Files\Hijackthis
2006-12-09 00:41 <DIR> d-------- C:\Documents and Settings\All Users.WINDOWS\Application Data\Zenturi


(((((((((((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))))))


2007-01-06 17:55 -------- d-------- C:\Program Files\norton systemworks
2007-01-06 03:49 -------- d-------- C:\Program Files\mozilla firefox
2006-12-29 00:58 -------- d-------- C:\Program Files\Common Files\wise installation wizard
2006-12-27 15:34 -------- d-------- C:\Program Files\rfactor1150
2006-12-19 05:21 -------- d-------- C:\Program Files\ventsrv
2006-12-19 05:11 -------- d-------- C:\Program Files\magiciso
2006-12-19 05:07 -------- d-------- C:\Program Files\google
2006-12-19 05:01 -------- d-------- C:\Program Files\aim
2006-12-18 17:01 -------- d-------- C:\Program Files\quicktime
2006-12-16 13:10 -------- d-------- C:\Program Files\nrtv
2006-11-30 22:06 -------- d-------- C:\Program Files\axis communications


(((((((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))

*Note* empty entries are not shown

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run]
"Start WingMan Profiler"=""
"Yahoo! Pager"="\"C:\\Program Files\\Yahoo!\\Messenger\\YahooMessenger.exe\" -quiet"
"Free Download Manager"="C:\\Program Files\\Free Download Manager\\fdm.exe -autorun"

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run]
"QOELOADER"="\"C:\\Program Files\\CA\\eTrust EZ Armor\\eTrust EZ Anti-Spam\\QSP-2.1.212.0\\QOELoader.exe\""
"VetTray"="C:\\PROGRA~1\\CA\\ETRUST~1\\ETRUST~2\\VetTray.exe"
"Zone Labs Client"="C:\\PROGRA~1\\CA\\ETRUST~1\\ETRUST~3\\ca.exe"
"QuickTime Task"="\"C:\\Program Files\\QuickTime\\qttask.exe\" -atboottime"
"SunJavaUpdateSched"="C:\\Program Files\\Java\\jre1.5.0_02\\bin\\jusched.exe"
"ATIPTA"="C:\\Program Files\\ATI Technologies\\ATI Control Panel\\atiptaxx.exe"
"TkBellExe"="\"C:\\Program Files\\Common Files\\Real\\Update_OB\\realsched.exe\" -osboot"
"P17Helper"="Rundll32 P17.dll,P17Helper"
"ATICCC"="\"C:\\Program Files\\ATI Technologies\\ATI.ACE\\cli.exe\" runtime -Delay"
"Adobe Photo Downloader"="\"C:\\Program Files\\Adobe\\Photoshop Album Starter Edition\\3.0\\Apps\\apdproxy.exe\""
"!AVG Anti-Spyware"="\"C:\\Program Files\\Grisoft\\AVG Anti-Spyware 7.5\\avgas.exe\" /minimized"

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents]

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\IMAIL]
"Installed"="1"

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MAPI]
"Installed"="1"
"NoChange"="1"

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MSFS]
"Installed"="1"

[HKEY_CURRENT_USER\software\microsoft\internet explorer\desktop\components]
"DeskHtmlVersion"=dword:00000110
"DeskHtmlMinorVersion"=dword:00000005
"Settings"=dword:00000001
"GeneralFlags"=dword:00000001

[HKEY_CURRENT_USER\software\microsoft\internet explorer\desktop\components\0]
"Source"="About:Home"
"SubscribedURL"="About:Home"
"FriendlyName"="My Current Home Page"
"Flags"=dword:00000002
"Position"=hex:2c,00,00,00,cc,00,00,00,00,00,00,00,34,03,00,00,e2,02,00,00,00,\
00,00,00,01,00,00,00,01,00,00,00,01,00,00,00,00,00,00,00,00,00,00,00
"CurrentState"=hex:04,00,00,40
"OriginalStateInfo"=hex:18,00,00,00,a0,00,00,00,00,00,00,00,80,02,00,00,3a,02,\
00,00,04,00,00,40
"RestoredStateInfo"=hex:18,00,00,00,a0,00,00,00,00,00,00,00,80,02,00,00,3a,02,\
00,00,01,00,00,00

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\sharedtaskscheduler]
"{438755C2-A8BA-11D1-B96B-00A0C90312E1}"="Browseui preloader"
"{8C7461EF-2B13-11d2-BE35-3078302C2030}"="Component Categories cache daemon"

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shellexecutehooks]
"{AEB6717E-7E19-11d0-97EE-00C04FD91972}"=""
"{57B86673-276A-48B2-BAE7-C6DBB3020EB8}"="AVG Anti-Spyware 7.5"

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]
"NoDriveTypeAutoRun"=dword:00000091
"DriveConfiguration"=hex:2e,55,a9,07,cf,ff,47,95,2e,0c,e9,9d,8e,c1,89,be,64,d2,\
de,66,b9,32,de,42,d0,2a,81,f9,09,a8,c9,19,05,da,ff,51,0b,fc,3f,e2,aa,6f,36,\
50,a0,0a,2b,5d,fb,b4,3c,37,7e,33,eb,f1,46,3f,d9,30,ad,db,d0,27,6f,e5,07,c5,\
0b,eb,a2,2c,6d,40,79,66,e9,4f,1a,53,ca,30,11,e6,ec,79,67,91,26,57,68,fe,cd,\
dd,a9,00,b5,9b,4a,c9,99,73,79,5d,bd,a8,37,46,d1,38,5f,8a,19,6c,e4,da,cb,ad,\
5a,0c,b8,99,b8,cb,2f,56,5c,8e,1f,26,4f,c6,7b,3c,cb,5c,e3,ce,fa,5a,80,6c,01,\
e8,30,90,3d,7b,e3,76,cc,49,44,a9,50,00,9c,ef,ef,b7,f4,ae,9e,25,7a,ef,a0,11,\
27,dc,49,09,9e,94,08,57,56,c5,a4,31,fb,7d,c6,30,12,3d,b8,03,dc,4f,6c,65,7e,\
5a,c0,4c,5e,34,00,64,d0,f7,ad,bb,f2,57,7d,be,d4,33,a2,64,dd,69,4f,a9,6a,ef,\
79,3e,b7,20,da,7f,03,53,3c,a5,ef,b2,fb,3d,28,49,ad,d8,45,5e,67,05,f2,01,be,\
7c,4f,e3,70,9c,93,6c,1a,18,f5,07,42,ed,cc,c1,9a,97,f5,12,83,84,75,fa,d1,c9,\
5f,50,ce,13,f8,57,81,e1,1a,93,30,f1,d6,db,23,f8,5d,ae,ab,96,21,ca,63,89,37,\
fb,b6,21,00,32,a1,f4,08,d6,ba,d2,2e,5f,72,fe,06,20,97,90,7b,64,1c,48,b9,bd,\
1d,64,49,99,1e,e5,7e,16,94,fc,11,18,a6,c2,08,98,34,29,dc,3e,19,33,da,33,ad,\
62,ca,30,8e,6f,cf,dc,a1,3e,8e,54,53,12,92,0b,25,fd,ef,d4,67,9b,26,3d,43,00,\
49,1f,fe,ef,60,73,7b,4d,0a,67,01,d5,67,b1,3d,0c,ac,24,8b,78,3b,81,71,0d,e4,\
8f,6c,e8,2b,6e,f0,40,be,28,aa,99,5e,89,08,3a,85,31,fb,e2,4b,e7,fb,b7,8a,30,\
4c,7f,41,20,81,12,36,71,3e,0f,e0,d2,42,cf,83,81,a4,97,9d,1c,5c,12,81,b4,06,\
fe,42,24,e3,25,d2,a1,21,8f,6b,92,5c,f6,2e,a1,64,7a,0a,9d,41,96,e0,53,74,53,\
e5,d5,80,bb,47,1b,a9,91,13,10,fc,3f,56,9e,8f,10,82,7c,0a,9f,14,48,66,8f,74,\
d5,f5,7d,1d,c6,a3,33,fd,5c,7b,1f,1f,8c,6d,03,87,55,4e,ed,5d,50,20,6a,4f,89,\
94,f7,30,8d,cd,b8,e5,c4,67,6d,81,01,b8,a1,af,58,55,24,50,2f,ef,bc,66,98,e1,\
18,31,de,5b,05,97,5e,01,e4,c9,99,20,5c,24,87,9e,4c,55,2d,3b,04,c1,71,17,b4,\
24,2e,74,24,78,84,be,a6,18,71,c8,49,25,a6,59,50,29,93,e7,e3,fa,c5,a2,03,e1,\
71,b4,c3,fc,51,c8,b6,e1,ae,c9,a4,84,be,ec,81,5b,31,f0,9f,c0,07,a4,a4,96,a4,\
ab,b4,2f,26,7c,7b,6d,f6,ac,48,28,9d,70,12,d0,da,5d,a2,54,f1,73,8f,42,45,5a,\
6d,2f,29,eb,42,59,f4,f2,39,8b,53,33,9b,41,e4,ab,fa,0d,00,17,af,39,d7,bb,87,\
ae,c3,5c,ba,14,d6,8e,1d,3b,b5,36,98,ba,aa,47,d9,d6,f4,cf,4a,a5,62,37,41,c5,\
20,c6,77,64,d0,68,bc,5b,dc,ae,e9,1b,0b,15,15,ac,53,8b,0c,00,ee,2f,fc,d7,b0,\
59,72,e0,98,da,85,21,a5,85,51,98,eb,ed,a8,23,e5,71,03,9d,0d,76,bf,4a,aa,f4,\
86,75,ea,34,0a,57,30,d8,fa,3b,af,1b,2e,e0,38,5a,25,1f,50,d3,b2,cd,86,ad,f2,\
e3,97,39,81,dc,63,78,ee,5f,c3,dd,6c,1e,1c,54,ca,fe,cf,82,a5,78,81,4f,dc,3f,\
28,a2,44,23,66,6b,9d,35,16,e7,c5,2c,25,1f,2c,07,a4,b2,88,f4,1b,d5,ca,71,1f,\
98,50,b1,27,6b,5c,41,9b,e0,c5,eb,2e,b3,ec,da,6e,07,f2,00,99,f2,28,b5,b3,3c,\
c7,a1,d5,bf,e2,db,c8,e4,98,52,d2,b6,8e,6d,d0,17,9c,ee,85,8b,c7,1c,32,21,70,\
21,67,f8,ca,b1,18,02,91,ec,f3,08,fa,86,f1,ef,e5,25,2c,39,5a,0a,f0,ce,33,f4,\
14,fd,16,41,8b,be,a7,57,36,3a,fb,42,fc,8d,4f,9e,1d,ca,fa,b8,c3,3f,a0,f0,da,\
fb,a9,62,22,8e,fa,c5,83,10,c1,92,a0,65,ff,69,ae,be,a1,b1,87,63,67,7f,fa,b0,\
ca,ba,66,5e,2f,7c,87,04,61,bb,8f,de,3e,28,79,cc,b0,57,9a,9e,e0,21,79,8e,a6,\
47,e0,0e,43,57,33,c5,52,d4,01,d4,fc,91,d9,5d,6c,5e,5f,46,82,e6,9e,3a,cc,d8,\
a0,f1,b2,45,3c,b2,f0,b4,30,16,49,ee,6f,0e,7a,4d,bc,27,6e,f6,78,0d,b0,93,b9,\
4e,25,c7,9b,61,fb,5c,db,e7,dd,9e,a2,30,69,02,9e,01,e3,0c,57,95,2b,6f,c1,e1,\
ec,75,0d,1c,17,a1,c5,7f,90,93,18,4a,26,2d,72,07,c9,f4,50,12,f7,b9,53,59,78,\
78,93,61,4b,80,35,89,e0,d4,b0,93,87,d2,ac,60,29,12,bc,fb,36,91,8e,d9,de,0f,\
f1,60,84,b5,76,a5,70,fb,ca,7a,c4,c9,43,a8,b1,dc,b8,79,ea,6c,96,7a,59,0c,30,\
7e,11,d1,57,e6,85,b6,2b,20,f7,3f,30,6e,33,5d,a5,e9,7c,92,11,c5,c7,55,1e,d6,\
27,b8,aa,53,89,48,1c,db,a1,35,f4,e1,24,b3,a6,5c,38,9f,a9,3b,28,66,cb,b5,5d,\
23,c7,68,8a,07,19,b3,26,fe,11,75,1f,8f,27,18,cd,04,8e,cf,24,cc,0b,1b,2f,1d,\
08,94,b9,dd,e4,e6,4d,c3,8e,1a,62,ba,52,17,cf,86,f3,68,85,a9,f9,3f,7c,88,4c,\
ba,ee,ca,02,66,c4,01,76,01,4d,8c,9a,85,ac,bb,8e,61,b7,35,71,0a,0a,97,76,b2,\
21,5e,3b,57,98,07,57,00,e9,74,32,44,df,92,1a,0b,4d,39,93,98,ff,54,ee,c8,f1,\
41,1d,94,bf,7a,c5,dd,5d,76,95,69,08,ca,d6,28,7c,94,44,bd,68,19,1d,39,1f,ad,\
77,2a,90,d3,d6,d4,78,a6,fe,be,d6,78,06,71,9f,e2,ae,7c,b4,19,f2,bb,11,f0,e0,\
d9,47,de,a6,14,2c,b0,ef,40,d1,83,70,0f,b4,2c,bd,8f,37,d7,62,f4,51,ed,2f,98,\
84,3c,d3,40,0f,52,ac,a1,64,29,de,23,dc,0a,a3,e4,aa,ab,e1,00,0d,9a,02,10,ca,\
df,00,f0,da,dd,bf,c5,60,7a,a0,3f,dd,80,53,1c,a7,42,f8,ee,98,82,3a,1d,03,92,\
54,2f,ec,ba,74,47,78,da,09,ec,a2,50,07,0c,30,1c,82,41,e5,42,7b,52,f9,70,fa,\
fd,c6,e1,5c,f4,c4,81,ef,25,b7,52,bc,3e,27,0e,a4,71,11,0e,af,74,dc,6a,a0,cd,\
8e,62,cd,4c,40,fd,2d,d9,cf,ef,b3,6f,d5,c0,da,69,d8,2b,81,fe,c0,c4,fa,06,8f,\
de,5e,06,4c,ac,23,6b,40,a6,f0,11,65,2f,af,09,1c,74,e4,99,1e,97,3e,83,b5,0d,\
6c,8a,2c,44,32,33,84,8a,bc,c9,68,2a,32,a3,63,d8,8c,a9,51,4f,a8,15,14,38,9a,\
77,88,4e,43,fc,b8,c0,25,ef,52,d6,75,80,58,d8,72,c5,19,2c,f6,fe,bd,be,4b,1d,\
eb,a4,3f,86,1e,02,7b,13,f9,2c,10,5b,48,0b,53,34,19,c2,eb,76,73,91,28,02,45,\
f9,96,03,9d,21,d3,74,1a,78,9d,e2,a4,9c,2f,74,5a,7a,ce,28,cc,b7,9f,5f,6b,4f,\
bb,9c,3d,7d,85,89,d6,da,3b,3b,83,c8,cc,b6,c8,11,ea,b4,0d,cc,5f,a2,94,cb,a4,\
ec,ae,8c,b0,7a,2f,c7,0e,7a,1f,63,32,61,b2,17,0d,2c,7a,7d,df,ec,dc,b8,4d,81,\
c1,5b,b3,a6,8d,86,bb,2d,55,52,2f,8c,4c,70,0b,99,7f,0c,d7,92,c3,f8,33,60,eb,\
06,b3,1d,3e,b5,ee,d3,27,11,d2,87,2f,d4,3a,76,29,d1,c3,9e,ac,93,db,80,c7,41,\
a1,25,ef,c4,d6,5f,3c,2c,f2,51,d5,50,f6,31,a9,b5,65,4d,61,b2,4a,4c,92,d1,15,\
b7,36,77,a5,b7,5d,c8,a6,21,20,c5,1d,af,d7,b7,41,90,8b,d1,8d,24,ae,11,13,00,\
0a,67,13,39,f8,19,cc,df,d2,66,92,c7,ab,69,21,8e,3d,41,31,da,22,6f,4a,e3,47,\
7f,da,ab,9f,eb,85,a9,14,3c,bc,c4,c3,72,91,1e,68,a6,ca,37,17,ee,34,74,2e,81,\
39,68,87,1c,b5,51,f2,a4,06,e6,e2,0c,62,50,66,79,6e,76,5b,a4,0c,7d,e0,80,74,\
8f,0b,1d,86,dc,da,cd,5e,df,6d,85,2a,e3,72,86,38,c5,e0,3c,53,fb,e8,66,50,d5,\
28,77,e4,03,a4,3c,b8,58,ee,c0,c0,cd,2b,6d,c8,c9,3b,73,50,a0,b0,6d,99,59,01,\
42,00,b4,82,4a,8b,6b,93,b3,c2,b9,17,22,c0,19,28,9d,89,50,08,a8,9e,ad,5b,ae,\
cf,90,94,a3,51,29,ae,e8,10,82,1c,6f,46,c0,02,1f,4d,a5,a5,7a,b1,5a,20,7d,8a,\
6c,59,c7,09,14,34,ff,50,bb,07,6f,87,bd,4d,f4,2c,6e,9e,1b,aa,5a,de,84,2e,d1,\
b5,8b,b6,a4,40,27,6a,29,07,12,30,85,2e,2b,7b,2a,ef,18,63,9e,47,2f,fb,7e,f0,\
97,df,c3,90,aa,0c,45,30,9e,f5,7d,ef,65,d2,8f,f8,d1,3c,88,b1,fc,f7,e4,35,e7,\
0f,53,05,61,26,bc,fa,2b,9b,83,7f,59,90,08,fc,fb,96,70,95,fd,6a,a7,15,4c,54,\
a5,25,3a,6d,f1,c2,24,b0,64,ee,52,54,30,a5,1e,59,20,12,59,61,21,03,ea,c2,02,\
9b,b8,d9,78,46,cb,a1,65,f2,ad,84,5a,7d,17,71,5a,69,c9,2e,e1,d7,ba,f0,24,b3,\
71,29,9b,2c,b3,a1,bd,67,5e,c8,9a,74,95,4a,4f,81,1d,e5,26,4d,07,77,bc,e0,90,\
5c,d7,79,45,f6,17,c9,6b,8d,7b,5e,9d,5a,28,62,b7,de,66,85,f3,78,ec,38,52,37,\
5d,1c,3e,ed,12,ba,6d,85,1a,74,08,96,7f,bb,0d,37,cb,83,f1,16,cb,f4,8a,c4,93,\
63,2d,53,c2,80,13,23,08,d1,02,f9,e5,bd,29,51,b3,ae,4b,f6,e6,f3,20,cf,93,82,\
f8,fc,2f,86,a1,21,99,f4,8b,02,5b,c2,2a,51,2d,53,9c,c3,bb,36,8c,69,a9,11,56,\
3e,d3,d8,6b,fc,d9,43,f7,35,db,7e,c2,9e,81,22,54,ae,3f,64,5d,68,d7,8c,54,74,\
1f,a9,5d,75,04,84,70,97,cf,d2,b8,67,a7,ae,ad,e8,57,46,b6,e3,52,d4,d2,7e,f4,\
d0,75,10,0b,63,71,34,96,1f,66,1c,cc,ee,e2,29,61,49,cd,b8,04,ab,05,3e,2c,44,\
45,97,14,f1,4b,9b,04,6c,3a,f3,d3,c0,3d,2a,aa,01,6d,07,0a,39,f5,1b,11,a5,73,\
96,f9,22,a2,5e,e1,e2,36,63,d0,63,08,2c,f7,a2,73,e1,36,8b,fe,7f,e2,b5,3b,de,\
c6,4c,ee,95,67,4e,72,a9,8c,fb,59,72,fe,86,53,ee,8d,11,51,5a,53,d8,ea,04,3d,\
ad,fd,5b,c6,a4,98,48,06,0f,18,c1,ec,ad,92,9a,c7,1e,72,9f,0c,9a,62,e1,53,e3,\
6e,4d,a2,78,65,83,ee,0c,82,e4,df,36,4b,ed,d4,6a,ba,c4,a6,28,9b,11,b2,73,35,\
0f,92,85,2c,e3,2a,c1,a6,2c,6b,e9,ad,db,53,91,d4,45,b4,d4,1e,76,37,45,1b,c9,\
a0,28,54,b5,54,e3,e9,ea,18,af,79,9d,1b,93,42,20,37,93,8a,b5,74,24,3d,a4,ce,\
e4,d7,8b,38,88,84,f6,e0,16,86,2f,b5,54,d8,57,26,80,11,b6,2d,b1,8a,50,8d,de,\
c3,b9,57,ae,03,2a,b3,cf,3f,d3,dd,1b,3d,73,6e,58,f9,27,dd,af,48,7f,45,60,bb,\
d7,69,b3,c6,e5,f5,32,22,8e,06,15,6f,fe,ed,fe,1e,f7,30,e7,8e,69,d2,58,75,44,\
d5,dd,82,8a,fc,b7,41,a8,d5,d2,3e,06,f7,f7,6d,dd,89,43,c9,48,04,d8,ae,9f,39,\
d2,bf,00,95,7c,c2,2e,a4,c4,ce,9f,d4,ed,69,d0,7c,84,3a,dc,1c,95,6d,4d,e6,1e,\
59,32,7e,c4,60,71,ff,c5,17,5f,3e,2e,a7,8e,52,4e,73,e6,54,6a,fc,f8,63,b2,01,\
8e,eb,74,ea,87,27,90,66,e2,e5,2c,54,18,8a,a9,df,af,55,d5,ee,0c,e8,62,bb,ce,\
04,96,c1,c7,94,45,dc,45,ed,fd,ac,32,54,80,3a,80,c0,77,de,3a,e2,64,60,17,63,\
d9,5d,4f,6d,e7,ec,ad,6c,da,82,e6,16,23,13,29,a8,96,7a,f7,73,d6,1b,35,98,0d,\
c7,80,10,e0,df,c0,ef,a1,bd,00,e9,c7,4f,7c,15,9c,05,fc,f1,36,ee,61,a6,a8,1d,\
7e,d1,79,52,29,f4,56,d6,91,1b,03,a7,d1,81,97,d5,c6,64,e9,2c,1e,86,46,13,b2,\
2d,65,b4,16,6f,9c,5e,6e,ac,53,27,83,5c,b9,d5,16,0b,b7,ff,73,a1,22,6f,4a,e7,\
35,cb,bb,47,3e,74,b0,d3,97,af,6f,89,d8,03,6f,d6,4b,e1,6b,58,a1,8a,b6,e8,e3,\
2e,ce,d8,dc,51,33,79,93,73,7a,e1,ee,f0,9d,eb,b6,25,95,7e,c6,d4,2b,13,49,ca,\
0b,71,73,bf,1a,bb,6e,7d,09,ad,98,44,2a,23,eb,6e,83,db,bc,4f,21,7b,a9,5f,af,\
d6,cd,9b,47,6b,35,28,88,2e,98,3a,e9,8c,42,34,4d,a9,52,10,d7,ec,25,02,ff,bd,\
12,58,e6,8d,58,da,e6,17,54,1e,6e,e6,f8,44,0d,18,78,c4,cc,61,46,9b,c1,52,41,\
7d,e1,dc,29,78,16,10,57,d4,91,28,ab,3f,62,cb,c5,26,46,8d,78,66,c0,b5,7b,24,\
6b,44,62,f9,8e,33,cd,53,f1,fb,e0,18,ef,5a,f3,8c,cd,55,8a,74,4a,79,87,7b,77,\
67,9e,d6,c9,90,0a,24,c3,3c,7e,98,db,d1,5f,59,ae,52,30,29,b3,26,4d,45,40,1b,\
dd,8d,c7,aa,02,e5,aa,7c,52,db,51,2e,8b,8a,7a,51,82,be,d1,b6,5d,58,c1,e8,02,\
f5,89,f9,cf,ca,92,82,8c,d2,00,e5,9e,2c,87,d5,7d,be,80,19,68,1f,3c,8c,57,b4,\
98,69,31,19,d1,c5,3f,c2,9a,94,5d,e0,e2,6c,92,7f,8b,1e,b2,c3,17,b5,79,05,c8,\
7d,d8,07,ab,58,f4,e3,c2,57,72,41,61,87,f2,cd,d9,0e,d9,e8,54,76,54,9e,00,48,\
99,d9,70,dd,70,d4,3e,71,f3,d2,f6,79,92,0f,2f,36,5a,f7,fb,8b,76,96,82,0c,f6,\
50,e9,57,cf,d2,79,a7,23,48,fd,a6,e6,d0,6b,83,f2,2f,c7,45,6c,c3,45,5f,a7,b9,\
ae,84,59,80,04,bc,3a,7e,69,b8,0b,01,3d,62,d7,78,87,b9,79,e3,96,dc,5e,88,e7,\
64,8d,e8,4a,f7,e4,f1,41,1a,a4,75,a9,47,2f,db,9c,40,11,15,95,a2,3e,d1,d5,bd,\
9a,f4,06,a3,bf,44,1f,7f,fa,64,87,29,96,98,7d,f7,5e,5c,b7,d5,5d,cf,49,98,e8,\
f4,c9,8f,de,bc,b1,5b,2f,ea,04,01,9b,cb,35,3e,bc,21,44,1a,47,60,2a,c0,8f,1d,\
77,8d,4b,c3,3a,67,98,88,21,50,42,9f,e1,3b,3f,af,d8,1e,7c,85,f1,48,dc,05,c9,\
f5,7e,67,10,20,3f,a0,31,98,81,1d,35,56,2a,b7,f4,0e,ef,e4,2e,04,d2,2a,ca,21,\
e9,da,1d,46,62,fa,5d,e0,c4,83,f6,bd,77,cc,2d,1d,87,47,03,0d,a5,6b,5c,f0,6f,\
f1,60,5f,f0,43,22,33,6b,32,7f,df,54,e7,49,03,a0,1c,a5,3f,3e,8b,b2,45,e6,a7,\
6c,33,11,8b,cf,1f,48,30,3f,f3,a2,e2,27,7b,89,f5,e1,e4,bc,b4,d6,88,9a,9a,e6,\
4f,9d,c5,09,38,25,a7,37,70,77,ff,86,c2,05,07,92,69,ef,ef,22,22,cb,8b,09,84,\
a1,48,49,94,3a,65,7f,95,9b,60,7b,1d,cc,ae,2e,6e,de,ae,c9,02,2b,e0,23,68,e0,\
52,5b,4f,b9,5c,bf,e0,0c,8d,ed,52,09,e5,38,b8,40,45,4e,1d,bf,23,17,d2,4e,82,\
e0,07,44,22,b8,99,7c,f4,1a,2b,dc,d0,cd,78,04,6a,09,e7,8e,83,db,60,94,5c,ca,\
5f,73,70,bb,47,cf,62,12,f8,d8,35,1a,a3,cb,bb,a7,dd,bb,50,fa,f3,91,c7,e4,7e,\
51,a5,2e,37,a0,8d,39,0c,83,fc,e2,73,6a,36,a8,fe,6d,81,11,2f,d5,d1,49,8e,de,\
42,0d,fa,bb,8d,c7,3d,db,b4,fb,e2,6b,c1,e1,4b,1c,2f,53,fe,26,e7,ea,40,8d,6d,\
65,e5,a3,5c,4a,66,ce,10,cf,34,8b,a2,fa,4c,b3,19,08,0c,fd,de,0c,45,c5,71,d8,\
91,0c,5b,20,e7,bf,63,dd,6c,3c,05,f0,8c,12,20,08,4a,08,ef,c5,d4,61,3a,a2,5b,\
5f,ce,00,21,06,2a,37,d4,22,7b,92,1a,8c,cb,42,6d,a8,75,84,29,32,dc,7f,e3,3b,\
5c,70,fd,6e,81,04,77,98,77,05,08,67,c2,39,6e,72,2f,88,02,7a,0b,5c,8f,f0,92,\
4d,64,b7,aa,fe,a8,2a,d2,42,ee,61,55,84,09,b0,c3,65,22,71,a1,a6,07,04,60,49,\
e8,13,8c,f3,7b,1b,46,95,66,28,f4,4b,41,df,37,84,d0,c2,1d,64,b9,b0,99,66,96,\
ab,30,46,49,de,f4,1e,8f,df,b6,cf,d8,31,78,a2,57,0d,21,2f,55,62,74,7f,ca,1a,\
43,6d,2e,9f,e0,52,8d,9e,d5,e1,da,0a,d5,4f,85,65,f2,b7,4f,3b,0f,be,5d,ef,99,\
72,8c,e2,72,78,05,f0,2e,67,11,85,82,6f,2e,d0,f9,3e,62,90,e9,24,cf,2d,a6,75,\
88,3f,f5,2f,a3,54,c4,dc,8f,ee,18,ba,a8,cc,46,1a,09,6b,66,06,a2,cb,05,26,8a,\
76,1a,e4,96,bf,3b,cf,2a,48,11,3d,4f,c7,0a,35,06,09,4d,8c,dc,36,f3,4d,bf,58,\
74,5e,10,17,bd,61,f9,c6,4f,d9,01,a4,1a,8e,de,5b,4b,32,8a,cd,d3,44,99,10,fb,\
35,c9,b7,9d,ca,db,54,94,c1,a1,3a,71,b7,59,88,6f,49,39,63,a9,7a,4b,82,8b,54,\
7b,f0,87,d2,ee,0d,09,fe,96,d6,ac,57,04,67,ae,75,7d,be,a1,f0,4f,c2,64,7d,65,\
84,52,5a,1a,c4,b9,f8,4b,b7,8e,a7,b0,07,5f,2f,6c,1c,88,bd,e2,9a,aa,c3,cb,2b,\
59,d3,85,7e,15,bd,ae,8f,7c,f7,f2,2a,bd,43,21,aa,50,8b,85,07,e5,10,72,10,9a,\
c3,1e,f4,70,f3,b3,07,00,29,a3,c3,6a,51,3c,0d,8f,1a,7c,ba,80,9e,26,52,35,46,\
15,14,83,e8,d1,3a,48,33,bd,7d,e8,4d,5f,dc,fe,ba,50,9a,4b,80,36,86,f2,89,5f,\
7e,e8,48,82,36,a6,9f,09,36,21,01,b0,22,fb,d4,4f,3e,fb,19,f4,31,bb,4e,35,09,\
a0,93,c5,80,0f,0d,44,7e,de,88,5c,df,09,60,09,75,a7,a1,38,51,1c,6d,94,3e,8f,\
9e,9d,8f,9e,ad,fa,1b,51,d2,10,cd,4d,6d,d3,c1,4b,a5,dc,d3,c8,4f,bc,da,fd,11,\
91,4e,11,c7,d6,86,8e,25,80,7d,11,9e,46,d5,46,85,40,1c,14,73,b3,4f,15,e8,2b,\
9c,49,35,cb,6c,0b,99,e2,a1,44,aa,be,1c,de,f6,c5,83,7c,eb,c1,41,68,f4,7c,ce,\
cc,e5,8d,30,26,99,71,c2,f6,d9,de,34,e2,80,53,d3,1b,dd,f4,0a,69,59,95,29,45,\
5a,15,66,9d,67,ed,21,dd,8c,08,6d,64,00,d5,cb,35,05,9b,38,f0,10,0e,6b,00,2a,\
1f,58,15,96,18,f8,d5,b4,e7,4c,ce,25,ba,9f,b0,30,cd,0c,b9,64,80,41,70,7f,ad,\
82,96,8f,38,f1,5a,57,e8,0c,cc,f4,75,77,94,e5,e2,fc,e4,77,0c,d0,ab,99,83,18,\
0c,0f,9a,ab,0e,10,ba,1a,95,46,fc,ed,91,2d,f6,30,75,bc,d4,2f,ea,48,ab,7d,c5,\
a5,0b,3b,37,8e,d3,96,44,47,4a,92,77,80,6b,06,d3,7d,7f,e8,0c,74,f2,cb,f7,37,\
5f,a6,40,12,ed,d7,5b,f7,de,68,bd,d8,65,90,4b,55,e2,7d,13,97,67,50,3a,7c,ec,\
6a,35,f4,83,e6,3c,aa,3c,66,fc,e8,4e,13,8d,b4,ae,df,a3,3f,e0,0d,08,81,0d,f4,\
4a,1d,57,00,b0,8a,69,f9,73,74,52,88,2b,60,93,f7,88,90,76,38,42,26,a2,29,53,\
8b,ed,16,63,12,71,7f,84,d9,e2,1c,1f,f0,1e,1f,2e,be,06,e2,ac,a0,8d,df,4a,d2,\
0e,4e,64,93,e3,cd,33,84,33,b2,44,52,0b,a7,29,94,b1,ae,6e,f7,35,63,ce,98,48,\
81,a7,b1,51,a8,ac,78,be,5e,da,44,98,53,ad,f2,5b,e9,93,87,04,f3,a1,16,6b,bd,\
85,e4,d3,4d,bc,cb,c0,e9,04,dc,08,d9,15,48,2d,6e,8c,81,ea,44,a6,9c,0c,c3,38,\
fa,83,ec,54,27,b9,52,4c,02,22,66,5e,1f,15,f8,ac,69,da,fb,ec,0c,04,89,62,92,\
01,26,0b,4b,ef,49,1b,f3,b1,18,aa,8f,43,74,ab,98,4a,35,1d,5b,f0,b7,85,a0,ee,\
95,9b,8a,ea,b4,44,be,04,84,c0,c7,ac,82,25,b9,b6,01,0c,15,b0,2b,8a,f8,73,43,\
62,49,f8,2c,78,c8,6d,2f,89,8b,88,f9,1a,4e,1c,e3,ae,d8,ea,77,3c,96,b9,2f,e0,\
83,a8,7f,d1,4a,c4,16,93,af,d6,61,6e,2b,7e,52,1e,d6,86,5f,cc,8a,70,cd,3d,46,\
51,2e,4a,d0,e2,29,90,9f,d5,79,68,f7,65,38,19,56,31,5e,4d,0f,4a,84,c2,35,cf,\
ee,42,ba,29,c9,d5,d8,8a,b1,35,b0,5b,77,82,32,dd,20,37,3c,7f,31,5d,06,b2,29,\
fe,bd,f9,50,dd,6e,3f,af,64,26,6e,60,de,57,3d,08,e6,7e,49,a1,20,03,68,7d,27,\
61,3a,87,c6,86,00,cc,6a,7d,b2,3b,d7,4a,4b,a9,1b,16,68,18,c0,8c,11,39,46,82,\
d7,a9,d0,dc,1f,96,1e,ad,bd,c4,bb,a0,c5,4f,78,97,9d,cf,18,91,57,e5,4d,d1,3e,\
7c,e3,3c,af,4e,3c,04,2b,aa,fc,83,a9,75,05,69,31,6f,a6,1a,a6,b8,0f,52,e3,93,\
09,0b,0a,69,e4,a0,19,11,b0,32,bf,4e,af,4b,6d,9a,0b,c1,af,22,c5,de,bd,11,ee,\
bd,4d,11,a0,f7,ac,0f,10,7f,0d,3f,c6,cb,21,61,8d,35,e8,42,89,a0,c6,85,65,5e,\
d9,a3,44,51,8a,31,fb,51,62,62,7d,ce,1f,cc,96,b7,08,6f,dd,9a,7d,f3,e3,0c,d2,\
31,b1,4b,5d,f5,72,22,ce,02,6c,0d,bf,57,35,9e,8c,b1,23,1f,65,51,04,79,a2,ff,\
0f,54,56,4f,1b,cb,26,23,0f,94,5c,71,9a,d5,37,47,24,59,85,0c,04,6b,74,08,f3,\
32,a6,26,c0,8e,83,f9,46,43,d3,fe,9b,59,8c,21,8b,c2,e8,82,45,3e,bb,78,53,7c,\
04,d6,d0,82,c2,6e,d5,4e,09,d4,34,be,54,64,69,ad,1d,87,cd,5f,ab,31,0d,1f,2c,\
ae,db,26,03,9f,e3,bf,bf,40,01,a9,1d,ec,b1,bd,b6,e2,c6,d0,bd,49,60,db,5b,72,\
18,59,2c,5e,7d,f1,4d,80,c4,55,b7,c3,bb,6a,cb,cf,ff,a9,2d,88,6f,c5,d6,d8,e0,\
8e,65,af,12,15,b6,48,e3,11,b6,ad,c3,81,76,7d,68,93,7e,ed,c3,c5,63,0d,32,4a,\
9b,4c,f7,af,91,3f,e9,be,f5,d7,69,a3,56,8f,98,4d,f2,28,c7,17,cd,2f,2f,a8,00,\
24,e3,17,54,81,02,53,0f,40,31,c3,0e,9e,49,29,14,1f,4c,cc,62,d2,9e,d6,88,d6,\
72,fb,7a,1d,82,5b,e6,70,03,aa,c5,b3,d8,8e,30,6b,06,48,76,7d,68,97,6b,38,a3,\
d9,03,96,5d,74,1f,bf,aa,74,a6,cf,e8,75,d8,d9,0b,c4,df,2c,1a,c1,a7,d5,5c,88,\
f0,64,ae,d0,a2,f3,57,12,60,65,3d,ee,5f,ec,58,cb,79,ce,68,bf,7d,68,e3,ae,ca,\
73,32,b5,1c,86,1c,c9,a5,dc,83,9b,60,58,4e,bf,a2,c6,a6,0e,f1,64,65,49,1a,a1,\
cb,fe,7e,24,73,b0,ad,10,86,32,36,87,2f,b8,bc,6c,4f,c1,4d,6e,71,28,f0,42,00,\
9a,7d,2f,b7,33,b2,d0,5a,fd,82,16,a4,11,b0,8c,80,00,9d,df,7b,71,5e,9d,7a,0b,\
12,3d,a8,95,73,60,b3,5b,aa,56,38,d4,68,e4,7b,83,32,44,5c,1b,fc,6e,87,e6,fa,\
96,ea,67,b3,f6,6c,3e,57,cd,dc,4d,52,a8,27,19,a3,e0,cf,73,65,64,98,57,36,b8,\
84,14,b9,3e,02,ad,f5,b5,63,80,e2,ff,8d,25,c3,27,f3,99,b6,a2,c5,9c,8a,d5,63,\
57,d0,d8,18,42,35,7a,05,45,0f,85,5b,1d,35,42,cd,02,14,40,46,87,ff,52,d7,c1,\
c7,d7,f3,ab,8c,3e,de,c9,d2,c8,63,0c,d7,90,c5,f6,24,e9,f9,fe,63,48,12,36,70,\
42,fd,2b,b2,56,6e,0d,ac,ce,1a,10,cf,22,27,11,93,bd,e1,7d,c6,04,ae,6f,23,95,\
44,18,26,cc,19,64,1f,8c,1b,da,85,3c,a2,c4,8e,0f,a3,91,fc,89,26,77,3a,3f,fa,\
5c,a7,de,a7,f7,32,6e,a4,33,27,d8,ca,d4,48,a6,09,5c,20,0b,bb,30,94,23,f4,f7,\
bb,7b,c3,43,f0,d4,16,73,25,24,97,d7,79,de,81,16,0d,73,0d,cd,14,19,2d,79,2a,\
cb,7d,97,e7,91,77,09,b3,01,e6,bc,dc,06,9d,88,e5,e0,68,58,22,6c,43,8a,81,a6,\
ca,99,ab,6c,f1,f9,4c,84,f5,42,ae,e1,92,91,8d,22,77,2b,27,5c,f7,bf,92,19,01,\
c0,52,a1,52,57,2b,78,e9,7e,34,27,bc,a3,2d,3f,a9,79,12,9c,af,55,f0,e7,5e,d8,\
f8,5e,8c,cf,d2,d8,4a,57,33,03,16,45,b2,f1,52,c5,d8,d3,f5,40,76,04,81,84,3b,\
49,35,1f,85,56,83,0b,78,95,c4,91,4d,24,2b,67,ed,1c,f8,1b,bf,19,ee,b5,e4,f7,\
06,98,ce,d9,65,aa,50,70,8c,b5,f4,7a,cf,0c,ce,88,08,71,ad,05,8c,36,a8,74,5e,\
a3,f9,f9,a3,98,0e,1b,56,73,de,c8,3d,34,7a,99,1c,df,e4,58,28,22,23,c0,be,38,\
97,83,55,0d,8b,91,b2,a3,09,98,5a,b4,f2,c7,4d,99,4d,d8,f1,6a,e0,4d,4d,67,fd,\
fd,77,97,9f,c3,50,ae,b5,a7,6e,34,be,fd,5a,e4,96,fe,fc,53,90,84,53,d2,c4,11,\
69,94,ab,13,87,14,e9,67,a5,b1,69,1b,24,9b,af,78,c0,f3,6a,40,c0,2e,49,34,6f,\
bb,10,d9,d0,e5,eb,7c,8e,fa,02,74,32,ad,4d,a7,98,b9,aa,4f,a4,c7,2d,fe,31,92,\
b7,e0,b4,49,ca,41,9d,34,9b,4f,2c,9b,69,20,46,e4,0e,f7,b6,fb,d4,c3,3a,f6,89,\
e8,37,fa,d6,42,aa,58,cc,67,62,fc,c0,2d,6c,08,59,6d,cf,bc,e7,06,7a,99,f6,24,\
7b,c6,23,c2,72,b2,2f,6d,44,fb,52,4b,14,8f,d2,5d,6f,10,d3,01,c6,7d,71,bb,22,\
10,0c,34,13,be,e3,83,e9,d5,e5,ac,27,33,c3,66,35,93,4a,22,55,7d,f0,48,d8,4e,\
ad,c4,92,dd,0c,c1,8b,5e,81,b4,f7,87,fd,9d,69,f2,c0,89,43,c3,6e,5c,71,8a,66,\
cd,57,6a,4f,b2,07,7b,f3,7e,b8,6e,51,08,73,70,ed,8e,10,50,6b,f9,61,e3,5c,62,\
ad,a8,58,d6,60,a8,b6,56,00,a0,16,22,63,62,50,37,20,79,69,17,43,0c,f9,c8,45,\
04,56,1f,3b,71,62,3e,4d,2a,a8,5c,6a,b4,a8,c4,3a,66,6e,21,54,ca,6a,f8,b2,45,\
7b,76,61,fb,4d,6c,7d,ed,e5,98,5d,64,7a,26,0b,93,87,76,f7,78,1e,20,ec,03,7f,\
36,42,7a,e9,c8,56,1c,b0,de,37,04,90,81,a2,51,41,eb,31,84,4b,21,cf,29,1c,ad,\
6f,ba,58,71,fd,c0,70,e9,95,3b,76,b0,f4,44,30,46,2c,f1,6b,10,9b,79,91,a0,1d,\
99,7e,37,81,36,90,88,3a,43,fd,bf,57,e5,6a,c2,b5,d5,b9,b7,74,06,22,c6,a7,89,\
85,20,50,ad,fe,40,8b,6a,ba,70,99,00,0a,90,c0,db,b6,13,e1,ba,94,4a,0b,10,59,\
e5,be,aa,ae,b6,12,93,87,b9,a9,35,b0,52,e2,c0,a8,d5,4f,d0,b3,4b,6a,49,2b,74,\
83,86,17,08,fd,b4,fe,42,ba,78,fd,9f,d4,d8,18,e3,8e,58,ce,5e,8a,63,f0,6d,3c,\
ed,b3,43,9e,57,03,ea,25,93,1a,84,f4,ce,52,d7,50,b8,37,09,55,20,e1,a7,e7,5f,\
80,ec,ea,1b,39,41,b6,a1,31,00,c5,cb,e7,7d,af,27,c6,47,59,55,fa,ab,69,b1,84,\
7a,fd,32,89,0c,9c,92,f0,85,6c,b0,2b,57,a6,32,55,08,48,6e,7e,36,09,8b,43,d8,\
92,e3,a1,c6,eb,ac,0a,7c,34,d8,b9,1b,95,39,b2,b0,77,e9,70,b9,f5,e9,48,e5,8d,\
08,71,1c,1c,07,b8,bf,09,fa,ed,31,c0,f1,f4,96,62,d8,19,db,ba,9c,a4,f6,74,8f,\
ad,6f,89,0e,32,1f,fe,61,67,37,ce,e2,4d,85,24,62,86,f3,ce,c8,68,51,ef,fb,50,\
54,f4,03,39,de,c9,6a,8d,7f,4c,e9,3a,3c,02,40,09,d1,08,66,2b,b1,4d,e2,15,14,\
ff,79,8e,33,43,09,07,8e,29,b5,2a,f0,df,42,b5,f3,24,c1,89,c6,00,6f,fe,2e,b3,\
d9,7a,cb,eb,44,42,9d,3a,4b,90,c6,c6,ca,e5,92,43,fb,a0,b4,1e,df,d0,d2,fb,e0,\
47,45,62,b4,ef,1a,b5,84,61,5c,66,4e,b4,95,66,88,93,92,f3,06,93,67,28,1d,c3,\
b3,ee,09,84,25,b8,8c,9b,3f,8f,d8,84,5a,f8,af,09,eb,26,c9,14,04,6d,76,c2,1e,\
fa,84,b8,15,c2,63,ba,74,b8,87,79,f3,43,0e,ad,3e,ef,a3,64,f8,62,a2,9a,00,92,\
7c,09,f3,36,5d,42,f2,7a,0d,fd,a5,f7,14,ae,7f,e2,22,59,44,84,de,a6,c9,ea,dc,\
38,fb,dd,a4,3b,23,14,31,3c,68,a9,87,3e,96,ca,69,0a,1e,b1,7a,c6,5d,d6,a2,c9,\
21,63,b3,ae,69,e8,4d,a7,6c,50,fe,14,dd,13,ae,55,6e,ae,3b,dc,93,50,60,86,88,\
d7,db,2b,95,fa,cf,73,90,c8,67,ec,a4,51,bc,5a,52,a3,f9,4e,b5,f8,bc,fd,0a,2d,\
c0,44,6f,76,b9,19,eb,51,80,04,af,b8,70,ff,9c,9b,10,89,05,8d,f2,f9,b5,bd,db,\
11,34,29,23,d6,46,0e,5f,9f,b5,a3,3e,6d,50,06,b1,7a,34,77,4f,15,4a,c4,f7,ac,\
11,04,b7,2b,9e,88,ec,84,e0,0f,ab,8f,29,39,60,15,ea,3f,b5,27,be,e0,b6,b5,dc,\
9f,32,5b,a4,2b,64,7e,52,1f,d2,98,13,eb,76,d0,44,12,1c,ce,bb,97,0b,cd,98,b1,\
e7,f2,3e,c6,d6,dc,9c,97,e2,7c,b1,b8,9e,27,4f,44,0d,e9,1f,ce,bf,1d,e5,9b,3d,\
3a,05,0e,a7,f0,46,63,9c,74,d7,a0,5a,17,8f,c9,27,1e,79,54,ef,ce,90,dc,2e,c6,\
c7,a0,10,92,4d,10,d7,7c,0e,87,7e,a5,7d,bc,9c,55,91,57,8a,90,0d,9c,c8,ea,05,\
e5,9d,9b,9e,50,fe,d6,15,b5,b1,57,03,db,b2,3b,df,eb,d6,15,c4,24,ae,3e,74,d1,\
ae,6c,9d,78,8f,87,5c,55,f1,b8,00,06,45,c2,10,88,ea,95,8f,62,96,20,7e,20,f8,\
68,a3,03,d6,d7,89,f7,0e,d6,c8,c5,42,9d,86,8a,33,4a,3e,68,cb,31,c0,7b,03,74,\
7a,0f,4b,d3,f5,10,2c,c5,a2,c1,2c,c7,d7,b1,f2,f4,15,eb,aa,d6,8c,6e,ab,7c,e1,\
dd,57,cc,2e,77,43,1b,4a,48,98,fb,4c,a1,ba,54,4a,c7,27,b7,66,e8,a1,ee,0c,53,\
8f,d8,75,e7,a1,c6,70,cc,b3,3b,61,62,f4,b3,8a,77,47,41,89,bd,e9,3e,22,7b,54,\
4e,3f,82,64,ed,35,63,b9,4b,49,df,5c,5a,73,9f,a5,25,61,25,5c,63,bf,03,1e,4c,\
b6,4b,02,ab,b3,46,7d,35,69,69,83,19,19,84,ef,d8,11,3d,25,57,72,bd,f6,32,37,\
a9,c3,54,73,54,e6,c5,f0,33,4d,c2,83,91,68,13,ec,83,46,99,3f,1f,fb,27,d4,e9,\
44,92,f6,8e,6e,0c,ea,d5,73,ad,2d,d2,66,53,fe,5c,12,ac,1c,c2,de,91,d1,ba,f4,\
96,2f,9a,a3,df,9a,cb,01,35,86,7a,d4,58,82,90,b3,97,76,e5,68,9f,29,b0,99,91,\
06,42,a7,57,1f,f5,d7,37,72,bd,b0,a8,6b,cb,a3,65,ab,e9,f2,c1,08,c4,ca,3a,d5,\
f5,b2,50,63,16,29,97,c7,7a,8b,0c,de,1b,35,a5,8f,d4,e9,2c,50,d1,74,4c,ec,43,\
8e,ec,83,58,01,bd,d2,6a,0e,0f,b4,76,0c,e9,e9,d1,52,58,17,16,57,07,0e,63,18,\
10,50,c5,ba,12,d1,f0,71,84,fb,34,d8,49,f5,ac,42,84,25,b9,88,ad,f4,ae,c3,e4,\
d1,cd,85,86,78,73,03,ff,74,8f,be,df,e2,58,63,2f,79,40,ef,05,c7,23,16,56,bd,\
c5,e6,0c,6e,7b,a8,58,14,28,07,4a,54,6b,73,9f,c3,17,c8,d9,a8,e4,2b,95,03,64,\
35,1a,cf,38,54,2e,85,83,6e,2d,e1,9f,c7,bc,e8,0f,24,7a,2a,b5,30,98,45,45,20,\
2b,aa,fa,93,60,a4,88,bc,af,95,51,c2,b3,83,db,67,39,d4,82,e8,96,56,6a,25,3e,\
83,b8,02,93,02,02,0d,fb,70,03,61,35,61,94,ca,ed,a2,d7,2a,8e,c1,b6,1b,57,d0,\
8c,d5,b1,65,21,52,c0,e5,dc,b1,38,03,34,d8,72,cc,68,5e,be,44,70,a8,fb,7d,33,\
52,66,47,fa,d0,b0,5c,25,55,53,1e,1c,f3,25,db,89,04,2e,4f,c5,ca,b7,6a,8f,52,\
a3,54,04,9e,03,ae,cb,02,e4,1b,91,cf,6b,00,b5,2f,25,87,44,50,98,ea,27,c5,1e,\
ee,9b,29,f3,ad,e2,05,8c,99,38,f3,2a,be,09,04,b0,47,be,60,b1,44,a4,2c,ce,ab,\
7f,b1,3f,9c,1e,ba,af,e9,a0,3d,4d,d5,c8,3e,20,1c,f5,f1,9a,34,54,1f,71,d3,54,\
ca,aa,b1,5a,14,f6,8f,b6,5d,42,78,d6,ac,8a,47,ba,50,ee,69,a8,c7,07,e4,21,de,\
7b,98,13,1a,cf,c5,50,57,7d,ce,3f,af,47,3d,d2,9d,ca,06,b8,be,56,10,d3,a8,fd,\
f1,ec,66,ea,f9,a6,03,f4,73,b0,be,73,27,3f,4d,53,23,bc,c4,67,bc,b9,b9,ff,cf,\
2a,a6,bc,4c,d2,8e,a3,f6,fb,e4,71,64,6a,a8,2e,4c,92,d3,05,00,08,f5,53,39,37,\
1d,fe,14,55,f9,08,5a,95,3e,64,04,9f,4a,08,ff,3d,08,43,2c,57,15,b7,ab,21,21,\
2c,59,93,97,a6,97,19,80,b5,4e,8d,a4,0e,2f,62,f3,f5,40,22,24,53,94,1a,9c,09,\
59,53,91,84,18,c5,6f,91,39,c8,7b,73,c6,cb,b6,33,70,48,04,38,d7,f7,8d,17,06,\
43,64,ac,3d,fa,66,6a,f4,48,65,ef,1c,e6,86,dc,a8,8f,e8,e3,4c,b4,87,21,cd,70,\
5f,af,d9,be,d4,74,60,ea,51,3d,83,45,30,0f,04,1d,da,bb,3e,ec,2f,b4,af,d0,28,\
1e,b3,3b,ba,27,92,ec,fe,9a,bd,1e,90,b1,55,ff,34,2b,ed,63,c0,9f,91,ba,36,10,\
07,3f,30,c1,54,73,81,4b,82,ca,19,ec,a1,a4,29,22,0c,7e,88,79,ed,6a,55,a1,04,\
e4,de,c3,a4,07,c1,15,fe,48,51,ad,a1,60,3c,92,42,c8,6a,19,b9,80,28,6f,4d,48,\
85,72,31,13,fc,c5,4e,b9,54,23,43,ec,c5,f3,ab,6d,5c,1d,9e,7f,a0,1d,7a,9c,76,\
55,e3,68,42,a8,08,e3,4f,44,28,e2,71,bf,55,c0,e9,66,79,51,88,d2,96,17,17,bb,\
52,b9,fc,11,b2,b0,05,49,26,44,c0,f5,c6,b7,ae,98,db,c0,fb,b8,a1,3a,64,35,4b,\
1e,53,d8,48,af,4c,2f,c5,f4,87,99,73,6b,df,9d,8a,fc,ea,80,0d,2c,6a,16,50,93,\
e4,d8,b8,90,8e,37,c3,3b,6e,30,48,9b,c1,21,ff,19,9a,db,43,35,cb,f8,17,78,08,\
6e,68,aa,4a,bf,91,44,72,46,24,28,2f,15,e8,90,21,00,1e,45,3f,38,09,11,76,ff,\
ad,76,92,02,d6,a0,62,ea,5c,99,17,2e,a6,bc,ee,2b,6d,6c,0f,76,c2,05,b4,71,53,\
13,8d,1c,ea,c3,63,2e,36,96,fc,65,ce,5d,40,1a,73,61,99,18,95,e2,a0,ae,19,c3,\
f5,03,5a,83,6e,aa,c3,6f,75,76,aa,16,ab,90,68,fe,d1,c6,07,95,e9,26,34,6a,98,\
cc,68,9d,cf,f8,b2,94,aa,63,b7,f0,99,d4,f7,c0,bd,ee,52,f4,95,4c,ca,14,d9,d0,\
8a,00

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer\Run]

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"dontdisplaylastusername"=dword:00000000
"legalnoticecaption"=""
"legalnoticetext"=""
"shutdownwithoutlogon"=dword:00000001
"undockwithoutlogon"=dword:00000001

[HKEY_USERS\.default\software\microsoft\windows\currentversion\policies\explorer]
"NoDriveTypeAutoRun"=dword:00000091
"CDRAutoRun"=dword:00000000

[HKEY_USERS\s-1-5-18\software\microsoft\windows\currentversion\policies\explorer]
"NoDriveTypeAutoRun"=dword:00000091
"CDRAutoRun"=dword:00000000

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\shellserviceobjectdelayload]
"PostBootReminder"="{7849596a-48ea-486e-8937-a2a3009f31a9}"
"CDBurn"="{fbeb8a05-beee-4442-804e-409d6c4515e9}"
"WebCheck"="{E6FB5E20-DE35-11CF-9C87-00AA005127ED}"
"SysTray"="{35CEC8A3-2BE6-11D2-8773-92E220524153}"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CARPService]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="carpserv"
"hkey"="HKLM"
"command"="carpserv.exe"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DrvLsnr]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="DrvLsnr"
"hkey"="HKLM"
"command"="C:\\Program Files\\Analog Devices\\SoundMAX\\DrvLsnr.exe"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Free Download Manager]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="fdm"
"hkey"="HKCU"
"command"="C:\\Program Files\\Free Download Manager\\fdm.exe -autorun"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="qttask"
"hkey"="HKLM"
"command"="\"C:\\Program Files\\QuickTime\\qttask.exe\" -atboottime"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Start WingMan Profiler]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"=""
"hkey"="HKCU"
"command"=""
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="jusched"
"hkey"="HKLM"
"command"="C:\\Program Files\\Java\\j2re1.4.2_06\\bin\\jusched.exe"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TkBellExe]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="realsched"
"hkey"="HKLM"
"command"="\"C:\\Program Files\\Common Files\\Real\\Update_OB\\realsched.exe\" -osboot"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"="msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll"


[HKEY_LOCAL_MACHINE\software\Microsoft\Windows NT\CurrentVersion\Svchost]
LocalService REG_MULTI_SZ Alerter\0WebClient\0LmHosts\0RemoteRegistry\0upnphost\0SSDPSRV\0\0
NetworkService REG_MULTI_SZ DnsCache\0\0
rpcss REG_MULTI_SZ RpcSs\0\0
imgsvc REG_MULTI_SZ StiSvc\0\0
termsvcs REG_MULTI_SZ TermService\0\0
HTTPFilter REG_MULTI_SZ HTTPFilter\0\0

HKLM\software\Microsoft\Windows NT\CurrentVersion\Svchost *netsvcs*
Ip6FwHlp

Completion time: 07-01-06 18:29:39.64
C:\ComboFix2.txt ... 07-01-01 22:03
C:\ComboFix3.txt ... 06-12-18 16:34


Logfile of HijackThis v1.99.1
Scan saved at 6:32:13 PM, on 1/6/2007
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\System32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe
C:\Program Files\VentSrv\ventrilo_svc.exe
C:\Program Files\VentSrv\ventrilo_srv.exe
C:\PROGRA~1\CA\ETRUST~1\ETRUST~2\VetMsg.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\Program Files\CA\eTrust EZ Armor\eTrust EZ Anti-Spam\QSP-2.1.212.0\QOELoader.exe
C:\PROGRA~1\CA\ETRUST~1\ETRUST~2\VetTray.exe
C:\PROGRA~1\CA\ETRUST~1\ETRUST~3\ca.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Java\jre1.5.0_02\bin\jusched.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\WINDOWS\System32\Rundll32.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe
C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
C:\Program Files\WinZip\WZQKPICK.EXE
C:\WINDOWS\System32\svchost.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\Hijackthis\HijackThis.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.yahoo.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/...ch/search.html
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn2\yt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn2\yt.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: Yahoo! IE Services Button - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar4.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn2\yt.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar4.dll
O4 - HKLM\..\Run: [QOELOADER] "C:\Program Files\CA\eTrust EZ Armor\eTrust EZ Anti-Spam\QSP-2.1.212.0\QOELoader.exe"
O4 - HKLM\..\Run: [VetTray] C:\PROGRA~1\CA\ETRUST~1\ETRUST~2\VetTray.exe
O4 - HKLM\..\Run: [Zone Labs Client] C:\PROGRA~1\CA\ETRUST~1\ETRUST~3\ca.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_02\bin\jusched.exe
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [P17Helper] Rundll32 P17.dll,P17Helper
O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\cli.exe" runtime -Delay
O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Program Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe"
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKCU\..\Run: [Yahoo! Pager] "C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe" -quiet
O4 - HKCU\..\Run: [Free Download Manager] C:\Program Files\Free Download Manager\fdm.exe -autorun
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O8 - Extra context menu item: &Yahoo! Search - file:///C:\Program Files\Yahoo!\Common/ycsrch.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Yahoo! &Dictionary - file:///C:\Program Files\Yahoo!\Common/ycdict.htm
O8 - Extra context menu item: Yahoo! &Maps - file:///C:\Program Files\Yahoo!\Common/ycmap.htm
O8 - Extra context menu item: Yahoo! &SMS - file:///C:\Program Files\Yahoo!\Common/ycsms.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll
O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
O9 - Extra 'Tools' menuitem: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://www.kaspersky.com/kos/eng/par...an_unicode.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {63DF43C2-469A-41F3-B119-17B1ACE8BB34} (Sony SNC-RZ30 Image Viewer) - http://66.208.222.163/home/SonySncRz30View.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsu...?1132181825796
O16 - DPF: {745395C8-D0E1-4227-8586-624CA9A10A8D} (AxisMediaControl Class) - http://198.189.234.9/activex/AMC.cab
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/actives...ree/asinst.cab
O16 - DPF: {A364AF35-0CDF-41E8-8F3B-E0E55E15EBA1} (Zenturi Active Programs Control) - http://www.programchecker.com/dll/nixon.cab
O16 - DPF: {A90A5822-F108-45AD-8482-9BC8B12DD539} (Crucial cpcScan) - http://www.crucial.com/controls/cpcScanner.cab
O16 - DPF: {C5E28B9D-0A68-4B50-94E9-E8F6B4697514} (NsvPlayX Control) - http://www.nullsoft.com/nsv/embed/nsvplayx_vp3_mp3.cab
O16 - DPF: {DE625294-70E6-45ED-B895-CFFA13AEB044} (AxisMediaControlEmb Class) - http://69.66.104.110/activex/AMC.cab
O16 - DPF: {E3E02F12-2ADB-478C-8742-5F0819F9F0F4} (Quantum Streaming IE VersionManager Class) - http://qmedia.xlontech.net/100170/sd...ie06041001.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{A276BDA0-D097-4C4F-9E74-E63DA476C4DF}: NameServer = 192.168.1.1
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\System32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: Autodesk Licensing Service - Unknown owner - C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe
O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
O23 - Service: StarWind iSCSI Service (StarWindService) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe
O23 - Service: Ventrilo - Unknown owner - C:\Program Files\VentSrv\ventrilo_svc.exe
O23 - Service: VET Message Service (VETMSGNT) - Computer Associates International, Inc. - C:\PROGRA~1\CA\ETRUST~1\ETRUST~2\VetMsg.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs Inc. - C:\WINDOWS\system32\ZoneLabs\vsmon.exe
Christ84opher is offline