![]() |
![]() |
![]() |
|||||
![]() |
![]() |
![]() |
![]() |
![]() |
|||
| Welcome
to Tech Support Forum home to more then 136,000 problems solved. Issues
have included: Spyware, Malware, Virus Issues, Windows, Microsoft,
Linux, Networking, Security, Hardware, and Gaming Getting your
problem solved is as easy as: 1. Registering for a free account 2. Asking your question 3. Receiving an answer Registered members: * See fewer ads. * And much more..
|
|
| Want to know how to post a question? click here | Having problems with spyware and pop-ups? First Steps |
|
|||||||
| Resolved HJT Threads Resolved spyware and popup issues. |
|
|
LinkBack | Thread Tools |
|
|
#1 (permalink) |
|
Registered User
|
outerinfo oin pop-ups
hey guys i need some help i have run adaware se, spybot, and my ez trust antivirus program to try and get rid of this outerinfo adware crap. i also did a disk cleanup and that got rid of the outerinfo stuff for about 2 hours then it just comes back. i get pop up ads even when im not in my internet browser. here is a hjt logfile. thanks in advance.
Logfile of HijackThis v1.99.1 Scan saved at 6:12:21 PM, on 12/14/2006 Platform: Windows XP SP1 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\System32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\CA\eTrust EZ Armor\eTrust EZ Anti-Spam\QSP-2.1.212.0\QOELoader.exe C:\PROGRA~1\CA\ETRUST~1\ETRUST~2\VetTray.exe C:\Program Files\Java\jre1.5.0_02\bin\jusched.exe C:\WINDOWS\System32\Rundll32.exe C:\Program Files\ATI Technologies\ATI.ACE\cli.exe C:\PROGRA~1\YSTEM~1\scanregw.exe C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe C:\Program Files\VentSrv\ventrilo_svc.exe C:\Program Files\VentSrv\ventrilo_srv.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\ATI Technologies\ATI.ACE\cli.exe C:\Program Files\ATI Technologies\ATI.ACE\cli.exe C:\Documents and Settings\chris\Desktop\JoyToKey.exe C:\Program Files\Google\GoogleToolbarNotifier\1.2.908.5008\GoogleToolbarNotifier.exe C:\WINDOWS\explorer.exe C:\WINDOWS\system32\T?sks\?ttrib.exe C:\PROGRA~1\CA\ETRUST~1\ETRUST~2\VetMsg.exe C:\Program Files\Common Files\Real\Update_OB\realsched.exe C:\Program Files\AIM\aim.exe C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\Hijackthis\HijackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.fasturd.com/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.yahoo.com/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/...ch/search.html R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/ R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = http://www.mrfindalot.com/search.asp?si= R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page_bak = www.myfunstart.com/index.cfm?pc=bdhp R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = R3 - URLSearchHook: (no name) - {F1B64D7D-AAE0-B247-C9FE-F2FA36DF3A9B} - C:\WINDOWS\System32\ayttz.dll R3 - URLSearchHook: (no name) - _{CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file) R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn2\yt.dll O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn2\yt.dll O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O2 - BHO: Malicious Scripts Scanner - {55EA1964-F5E4-4D6A-B9B2-125B37655FCB} - C:\Documents and Settings\All Users.WINDOWS\Application Data\Prevx\pxbho.dll O2 - BHO: Yahoo! IE Services Button - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll O2 - BHO: (no name) - {9138FEF8-D339-8F51-83E5-DDF048189E36} - C:\WINDOWS\Vflnpzkt.dll (file missing) O2 - BHO: Wfpmj Class - {A5AD8FF3-64A3-4A07-BE7E-A7E6C197DF73} - C:\WINDOWS\System32\vm7cmapox.dll (file missing) O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar4.dll O2 - BHO: (no name) - {F1B64D7D-AAE0-B247-C9FE-F2FA36DF3A9B} - C:\WINDOWS\System32\ayttz.dll O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn2\yt.dll O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar4.dll O4 - HKLM\..\Run: [QOELOADER] "C:\Program Files\CA\eTrust EZ Armor\eTrust EZ Anti-Spam\QSP-2.1.212.0\QOELoader.exe" O4 - HKLM\..\Run: [VetTray] C:\PROGRA~1\CA\ETRUST~1\ETRUST~2\VetTray.exe O4 - HKLM\..\Run: [Zone Labs Client] C:\PROGRA~1\CA\ETRUST~1\ETRUST~3\ca.exe O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_02\bin\jusched.exe O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot O4 - HKLM\..\Run: [P17Helper] Rundll32 P17.dll,P17Helper O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\cli.exe" runtime -Delay O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Program Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe" O4 - HKLM\..\Run: [keyboard] C:\\kybrdff_8.exe O4 - HKLM\..\Run: [oimc79d4] RUNDLL32.EXE w5b2922a.dll,n 002c79d20000000a5b2922a O4 - HKLM\..\Run: [newname] C:\\nwnmff_8.exe O4 - HKLM\..\Run: [defender] C:\\dfndrff_8.exe O4 - HKLM\..\Run: [PrevxOne] "C:\Program Files\Prevx1\PXConsole.exe" O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k O4 - HKCU\..\Run: [Yahoo! Pager] "C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe" -quiet O4 - HKCU\..\Run: [Free Download Manager] C:\Program Files\Free Download Manager\fdm.exe -autorun O4 - HKCU\..\Run: [Nnru] "C:\PROGRA~1\YSTEM~1\scanregw.exe" -vt yazr O4 - HKCU\..\Run: [Liism] C:\WINDOWS\system32\T?sks\?ttrib.exe O4 - HKCU\..\Run: [qqzo] C:\PROGRA~1\COMMON~1\qqzo\qqzom.exe O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE O8 - Extra context menu item: &Yahoo! Search - file:///C:\Program Files\Yahoo!\Common/ycsrch.htm O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office10\EXCEL.EXE/3000 O8 - Extra context menu item: Yahoo! &Dictionary - file:///C:\Program Files\Yahoo!\Common/ycdict.htm O8 - Extra context menu item: Yahoo! &Maps - file:///C:\Program Files\Yahoo!\Common/ycmap.htm O8 - Extra context menu item: Yahoo! &SMS - file:///C:\Program Files\Yahoo!\Common/ycsms.htm O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll O9 - Extra button: (no name) - {120E090D-9136-4b78-8258-F0B44B4BD2AC} - C:\WINDOWS\System32\ms.exe (file missing) O9 - Extra 'Tools' menuitem: MaxSpeed - {120E090D-9136-4b78-8258-F0B44B4BD2AC} - C:\WINDOWS\System32\ms.exe (file missing) O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE O9 - Extra 'Tools' menuitem: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE O9 - Extra button: (no name) - {0CDAF688-CEBC-41FD-99FC-BF9088A8C0D5} - (no file) (HKCU) O9 - Extra button: (no name) - {66703F63-14D4-4779-B7CE-C852B02B6165} - C:\WINDOWS\System32\lmrt920g.dll (file missing) (HKCU) O9 - Extra button: (no name) - {6948D398-2959-4B6E-BB84-A4AC22F863BA} - C:\WINDOWS\System32\dpmodemx179t.dll (file missing) (HKCU) O9 - Extra button: (no name) - {766772B9-A746-408D-B09D-0ABFF3E9D52B} - (no file) (HKCU) O9 - Extra button: (no name) - {9F101A58-28D5-46E7-B4FC-B9AF87EB0483} - C:\WINDOWS\System32\mprmsg712w.dll (file missing) (HKCU) O9 - Extra button: (no name) - {B9619A7D-D552-4178-B380-0F2FFB39E53E} - C:\WINDOWS\System32\vcdex426a.dll (file missing) (HKCU) O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204 O16 - DPF: {2E28242B-A689-11D4-80F2-0040266CBB8D} (KX-HCM10 Control) - http://hvmmarinacam.viewnetcam.com:8080/kxhcm10.ocx O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll O16 - DPF: {63DF43C2-469A-41F3-B119-17B1ACE8BB34} (Sony SNC-RZ30 Image Viewer) - http://66.208.222.163/home/SonySncRz30View.cab O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsu...?1132181825796 O16 - DPF: {745395C8-D0E1-4227-8586-624CA9A10A8D} (AxisMediaControl Class) - http://198.189.234.9/activex/AMC.cab O16 - DPF: {8A0DCBDB-6E20-489C-9041-C1E8A0352E75} - http://awbeta.net-nucleus.com/FIX/WinATS.cab O16 - DPF: {A364AF35-0CDF-41E8-8F3B-E0E55E15EBA1} (Zenturi Active Programs Control) - http://www.programchecker.com/dll/nixon.cab O16 - DPF: {A90A5822-F108-45AD-8482-9BC8B12DD539} (Crucial cpcScan) - http://www.crucial.com/controls/cpcScanner.cab O16 - DPF: {C5E28B9D-0A68-4B50-94E9-E8F6B4697514} (NsvPlayX Control) - http://www.nullsoft.com/nsv/embed/nsvplayx_vp3_mp3.cab O16 - DPF: {DE625294-70E6-45ED-B895-CFFA13AEB044} (AxisMediaControlEmb Class) - http://69.66.104.110/activex/AMC.cab O16 - DPF: {E3E02F12-2ADB-478C-8742-5F0819F9F0F4} (Quantum Streaming IE VersionManager Class) - http://qmedia.xlontech.net/100170/sd...ie06041001.cab O17 - HKLM\System\CCS\Services\Tcpip\..\{A276BDA0-D097-4C4F-9E74-E63DA476C4DF}: NameServer = 192.168.1.1 O20 - Winlogon Notify: SideBySide - C:\WINDOWS\system32\sImlib.dll (file missing) O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\System32\Ati2evxx.exe O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe O23 - Service: Autodesk Licensing Service - Unknown owner - C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe O23 - Service: Prevx Agent (PREVXAgent) - Unknown owner - C:\Program Files\Prevx1\PXAgent.exe" -f (file missing) O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe O23 - Service: Ventrilo - Unknown owner - C:\Program Files\VentSrv\ventrilo_svc.exe O23 - Service: VET Message Service (VETMSGNT) - Computer Associates International, Inc. - C:\PROGRA~1\CA\ETRUST~1\ETRUST~2\VetMsg.exe O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs Inc. - C:\WINDOWS\system32\ZoneLabs\vsmon.exe |
|
|
| Important Information |
|
Join the #1 Tech Support Forum Today - It's Totally Free!
TechSupportForum.com is a leading support website for your computer needs. We offer free, friendly and personalized computer support. Why pay to have your computer fixed when you can do it for free. Join TechSupportforum.com Today - Click Here |
|
|
#2 (permalink) |
|
TSF Enthusiast
|
Hi and welcome to TSF.
I am currently reviewing your log. Please note that this is under the supervision of an expert analyst, and I will be back with a fix for your problem as soon as possible. You may wish to Subscribe to this thread (Thread Tools) so that you are notified when you receive a reply. Please be patient with me during this time.
__________________
Registered Linux user #426065 |
|
|
|
|
#3 (permalink) |
|
TSF Enthusiast
|
Hello Christopher and welcome to TSF
.Please print out or copy this page to Notepad in order to assist you when carrying out the following instructions. If there's anything that you don't understand, ask your question(s) before proceeding with the fixes. You should 'not' have any open browsers when you are following the procedures below. You may like to subscribe to this thread to get immediate notification of replies as soon as they are posted. To do this click Thread Tools located near the top of this page, then click Subscribe to this Thread. Make sure it is set to Instant email Notification, then click Subscribe. ________________________________________________ Multiple AV It appears that you are running two antivirus programs, namely, Prevex1 and EZTrust Internet Security simultaneously. It does not provide you with any extra protection though it may seem so. On the contrary these two programs may interfere with each other creating serious problems regarding security vulnerability as well as system stability. I suggest that you uninstall Prevex1 and keep EZTrust Internet Security as EZTrust Internet Security provides a more complete protection package including an Anti Virus and Firewall. It appears that you have some traces of Norton AntiVirus present in your system. Did you uninstalled Norton some times back? If you do not intend to use Norton then the traces left by it should be removed as that consumes system resources unnecessarily and can also come in conflict with your present Anti Virus creating critical system instability. If you need I shall help you out in removing Norton after your system is completely clean. ________________________________________________________________ Downloads 1. Please download Cleanup! and install it. You will use this later. Do not install if you are using the 64 bit version of windows. If you're unsure please do not run it! If you don't already know, you're probably not using XP64, but you can download & run this tool to find out for sure.....http://www.kellys-korner-xp.com/regs...p_whichcpu.exe *NOTE* Cleanup deletes EVERYTHING out of temporary folders and does not make backups. The following is the alternate download location for CleanUp!. Please download the program from this link if the main link is out of service: http://www.stevengould.org/downloads...CleanUp452.exe 2. Download AVG Anti Spyware Use the link at the bottom of the page under "AVG Anti-Spyware Free for Windows" ![]()
3. Please download Brute Force Uninstaller to your desktop.
Save it in the same folder you made earlier (c:BFU). Do not do anything with these yet! 4. Download combofix from one of these locations: **Save it to your desktop** Go to <<Start>> then <<Run>> then paste in the single line command then click OK "%userprofile%\desktop\combofix.exe" /v ayttz ![]() When finished, it shall produce a log for you. Post that log in your next reply ________________________________________________ Show Hidden Files and Folders Go to My Computer >Tools >Folder Options >View tab and select Show hidden files and folders. Uncheck the Hide protected operating system files (recommended) option. Also make sure there is no checkmark beside Hide file extensions for known file types. Click OK. ________________________________________________________________________________ Fix Restart your computer and boot into Safe Mode by tapping the F8 key repeatedly until a menu shows up (and choose Safe Mode from the list). In some systems, this may be the F5 key, so try that if F8 doesn't work. Login on your usual account. Make sure to close any open browsers. Click > Start > Control Panel > Add / Remove Programs and uninstall the following programs (if they exist): YSTEM~1 [Remove any add/remove entry which starts with the 5 letters YSTEM in the exact given order]. Open HijackThis and click on 'Do a System Scan Only'. Check the following entries (If they still exist, make sure you do not miss any) R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page_bak = www.myfunstart.com/index.cfm?pc=bdhp R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = R3 - URLSearchHook: (no name) - {F1B64D7D-AAE0-B247-C9FE-F2FA36DF3A9B} - C:\WINDOWS\System32\ayttz.dll R3 - URLSearchHook: (no name) - _{CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file) O2 - BHO: (no name) - {9138FEF8-D339-8F51-83E5-DDF048189E36} - C:\WINDOWS\Vflnpzkt.dll (file missing) O2 - BHO: Wfpmj Class - {A5AD8FF3-64A3-4A07-BE7E-A7E6C197DF73} - C:\WINDOWS\System32\vm7cmapox.dll (file missing) O4 - HKLM\..\Run: [oimc79d4] RUNDLL32.EXE w5b2922a.dll,n 002c79d20000000a5b2922a O4 - HKCU\..\Run: [Nnru] "C:\PROGRA~1\YSTEM~1\scanregw.exe" -vt yazr O4 - HKCU\..\Run: [Liism] C:\WINDOWS\system32\T?sks\?ttrib.exe O4 - HKCU\..\Run: [qqzo] C:\PROGRA~1\COMMON~1\qqzo\qqzom.exe O9 - Extra button: (no name) - {120E090D-9136-4b78-8258-F0B44B4BD2AC} - C:\WINDOWS\System32\ms.exe (file missing) O9 - Extra 'Tools' menuitem: MaxSpeed - {120E090D-9136-4b78-8258-F0B44B4BD2AC} - C:\WINDOWS\System32\ms.exe (file missing) O9 - Extra button: (no name) - {0CDAF688-CEBC-41FD-99FC-BF9088A8C0D5} - (no file) (HKCU) O9 - Extra button: (no name) - {66703F63-14D4-4779-B7CE-C852B02B6165} - C:\WINDOWS\System32\lmrt920g.dll (file missing) (HKCU) O9 - Extra button: (no name) - {6948D398-2959-4B6E-BB84-A4AC22F863BA} - C:\WINDOWS\System32\dpmodemx179t.dll (file missing) (HKCU) O9 - Extra button: (no name) - {766772B9-A746-408D-B09D-0ABFF3E9D52B} - (no file) (HKCU) O9 - Extra button: (no name) - {9F101A58-28D5-46E7-B4FC-B9AF87EB0483} - C:\WINDOWS\System32\mprmsg712w.dll (file missing) (HKCU) O9 - Extra button: (no name) - {B9619A7D-D552-4178-B380-0F2FFB39E53E} - C:\WINDOWS\System32\vcdex426a.dll (file missing) (HKCU) O16 - DPF: {2E28242B-A689-11D4-80F2-0040266CBB8D} (KX-HCM10 Control) - http://hvmmarinacam.viewnetcam.com:8080/kxhcm10.ocx O16 - DPF: {8A0DCBDB-6E20-489C-9041-C1E8A0352E75} - http://awbeta.net-nucleus.com/FIX/WinATS.cab O20 - Winlogon Notify: SideBySide - C:\WINDOWS\system32\sImlib.dll (file missing) Please remember to close all other windows, including browsers then click Fix checked. Delete the following Files indicated in RED and Folders indicated in BLUE if they still exist. C:\Program Files\Common Files\ qqzo w5b2922a.dll- Find this file using START>SEARCH. _________________________________________________________________ Cleanup! Open Cleanup! by double-clicking the icon on your desktop (or from the Start > All Programs menu). Set the program up as follows: Click "Options..." Move the arrow down to "Custom CleanUp!" Put a check next to the following (Make sure nothing else is checked!):
Press the CleanUp! button to start the program. Do not logoff or reboot when prompted. AVG Anti-Spyware Run AVG Anti-Spyware with it's updated definitions:(...it's important that all windows must be closed)
BFU please go to Start > My Computer and navigate to the C:BFU folder.
Reboot your system in Normal Mode. _________________________________________________________________ ComboFix Please run ComboFix.exe again and post the contents of the the log it produces. ________________________________________________________________ Online Scan Perform an online scan with Internet Explorer with Panda ActiveScan
![]()
* Turn off the real time scanner of any existing antivirus program while performing the online scan Please provide the following logs in the given order with your next post: Combofix2.txt AVG Anti-Spyware Panda Scan Combofix.txt HijackThis (A fresh one) Please let me know about your systems overall behaviour .
__________________
Registered Linux user #426065 |
|
|
|
|
#4 (permalink) |
|
Registered User
|
thanks for helping me out. its getting late tonite and i have to work tomorrow so im gonna try and tackle most of this project tomorrow night. as far as multiple anti-virus programs go ez trust is the only 1 i use for my computer i just uninstalled prevx1 that was just a 30 day free trail thing anyways. Norton you said i had traces of on my computer 2 and i looked on the add/remove programs list and i didnt see anything named norton there but i see the folder in the program files list. so would it be ok if i just delete the norton folder from the program files list since i havent even been using norton on my computer in probably over 2 years now.
-Chris |
|
|
|
|
#5 (permalink) |
|
TSF Enthusiast
|
Hello Chris
Regarding the multiple AV issue, w will tackle that after I see the result of the first round of battle with the malwares. Take your time but I suggest try to remain offline as much as you can. That will reduce the chances of reinfection in the intermediate stage of our fix. Thank you.
__________________
Registered Linux user #426065 |
|
|
|
|
#6 (permalink) |
|
Registered User
|
ok im finally all done doing all of the instructions listed above. i actually had to basically do the process twice. the 1st time i checked all the boxs that needed to be checked on the hijackthis program and pushed the fix button. when i was doing the last step of the fix doing a fresh hijackthis log i noticed that all of the bad entries that needed to be deleted were still there. so everything but the very 1st time i ran combofix i had to do a 2nd time. here are the results.
chris - 06-12-17 16:51:49.51 Service Pack 1 ComboFix 06.12.01W - Running from: "C:\Documents and Settings\chris\desktop" Command switches used :: /v ayttz ((((((((((((((((((((((((((((((((((((((((((((( Look2Me's Log )))))))))))))))))))))))))))))))))))))))))))))))))) REGISTRY ENTRIES REMOVED: Windows Registry Editor Version 5.00 [HKEY_CLASSES_ROOT\clsid\{e7f46981-f5d3-4940-8db8-5e53440caf32}] @="" "IDEx"="ADDR" [HKEY_CLASSES_ROOT\clsid\{e7f46981-f5d3-4940-8db8-5e53440caf32}\Implemented Categories] @="" [HKEY_CLASSES_ROOT\clsid\{e7f46981-f5d3-4940-8db8-5e53440caf32}\Implemented Categories\{00021492-0000-0000-C000-000000000046}] @="" [HKEY_CLASSES_ROOT\clsid\{e7f46981-f5d3-4940-8db8-5e53440caf32}\InprocServer32] @="C:\\WINDOWS\\system32\\sImlib.dll" "ThreadingModel"="Apartment" * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * (((((((((((((((((((((((((((((((((((((((((((( Other Deletions ))))))))))))))))))))))))))))))))))))))))))))))))) C:\WINDOWS\MirarSetup_876075.exe C:\WINDOWS\system32\aaa00000.sys C:\WINDOWS\system32\WinNB58.dll C:\Program Files\Inetget2 C:\Program Files\TheSearchAccelerator C:\Program Files\Common Files\{0CE8F833-0574-1033-0314-020504140001} ~ ~ ~ ~ ~ ~ ~ ~ ~ ~ ~ ~ ~ ~ Purity ~ ~ ~ ~ ~ ~ ~ ~~ ~ ~ ~ ~ ~ ~ ~ ~ ~ ~ ~ Folders Quarantined: C:\qoobox\purity\Documents and Settings\chris\Application Data\APPATC~1 C:\qoobox\purity\Documents and Settings\chris\Application Data\MCROSO~1 C:\qoobox\purity\Documents and Settings\chris\My Documents\CROSOF~1 C:\qoobox\purity\Documents and Settings\chris\My Documents\ICROSO~1 C:\qoobox\purity\Program Files\ICROSO~1.NET C:\qoobox\purity\Program Files\YSTEM~1 C:\qoobox\purity\Program Files\Common Files\CROSOF~1 C:\qoobox\purity\Program Files\Common Files\ICROSO~1 C:\qoobox\purity\Program Files\Common Files\MANTEC~1 C:\qoobox\purity\Program Files\YSTEM~1\scanregw.exe C:\qoobox\purity\Program Files\YSTEM~1\YSTEM~1 C:\qoobox\purity\WINDOWS\SMBOLS~1 C:\qoobox\purity\WINDOWS\system32\TSKS~1 C:\qoobox\purity\WINDOWS\system32\TSKS~1\?ttrib.exe ((((((((((((((((((((((((((((((( Files Created from 2006-11-17 to 2006-12-17 )))))))))))))))))))))))))))))))))) 2006-12-17 17:03 <DIR> d-------- C:\WINDOWS\erdnt 2006-12-17 16:31 <DIR> d-------- C:\bfu 2006-12-17 16:20 3,968 --a------ C:\WINDOWS\system32\drivers\AvgAsCln.sys 2006-12-17 16:19 <DIR> d-------- C:\Program Files\Grisoft 2006-12-17 16:15 <DIR> d-------- C:\Program Files\CleanUp! 2006-12-16 22:59 58,880 --a------ C:\WINDOWS\system32\jwmvq.dll 2006-12-16 20:05 5,248 --a------ C:\WINDOWS\system32\drivers\vax347s.sys 2006-12-16 20:05 159,616 --a------ C:\WINDOWS\system32\drivers\vax347b.sys 2006-12-16 20:05 <DIR> d-------- C:\Program Files\Alcohol Soft 2006-12-16 20:02 <DIR> d-------- C:\Program Files\Alcoholer 2006-12-16 17:56 <DIR> d-------- C:\WINDOWS\çasks 2006-12-11 18:55 991,232 --a------ C:\WINDOWS\system32\esent.dll 2006-12-09 01:22 <DIR> d-------- C:\Program Files\Hijackthis 2006-12-09 00:41 <DIR> d-------- C:\Documents and Settings\All Users.WINDOWS\Application Data\Zenturi 2006-12-03 16:46 <DIR> d-------- C:\WINDOWS\qqzo 2006-12-03 16:46 <DIR> d-------- C:\Program Files\Common Files\qqzo 2006-12-03 16:12 2 --a------ C:\WINDOWS\system32\wtstr.exe 2006-12-03 16:12 131 --a-s---- C:\WINDOWS\test.bat (((((((((((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))) 2006-12-17 17:03 -------- d-a------ C:\Program Files\Common Files 2006-12-17 16:01 -------- d-------- C:\Program Files\Mozilla Firefox 2006-12-16 13:10 -------- d-------- C:\Program Files\NRTV 2006-12-11 19:12 -------- d-------- C:\Program Files\Outlook Express 2006-12-11 19:12 -------- d-------- C:\Program Files\Common Files\System 2006-12-11 19:11 -------- d-------- C:\Program Files\Windows Media Player 2006-12-01 19:32 -------- d-------- C:\Program Files\rFactor1150 2006-11-30 22:06 -------- d-------- C:\Program Files\Axis Communications 2006-11-30 12:05 -------- d-------- C:\Program Files\Common Files\Microsoft Shared 2006-11-13 21:47 -------- d-------- C:\Program Files\Ventrilo 2006-11-13 21:47 -------- d-------- C:\Program Files\Common Files\Wise Installation Wizard 2006-11-05 02:34 -------- d-------- C:\Program Files\Teamspeak2_RC2 2006-09-29 15:22 56 -r-hs---- C:\WINDOWS\system32\E67C4BEBB8.sys 2006-09-29 15:22 3350 --ahs---- C:\WINDOWS\system32\KGyGaAvL.sys (((((((((((((((((((((((((((((((((((((((((( Reg Loading Points )))))))))))))))))))))))))))))))))))))))))))))))) *Note* empty entries are not shown [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run] "Start WingMan Profiler"="" "Yahoo! Pager"="\"C:\\PROGRA~1\\Yahoo!\\MESSEN~1\\YAHOOM~1.EXE\" -quiet" "Free Download Manager"="C:\\Program Files\\Free Download Manager\\fdm.exe -autorun" "Nnru"="\"C:\\PROGRA~1\\YSTEM~1\\scanregw.exe\" -vt yazr" "Liism"="C:\\WINDOWS\\system32\\T?sks\\?ttrib.exe" "qqzo"="C:\\PROGRA~1\\COMMON~1\\qqzo\\qqzom.exe" [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run] "QOELOADER"="\"C:\\Program Files\\CA\\eTrust EZ Armor\\eTrust EZ Anti-Spam\\QSP-2.1.212.0\\QOELoader.exe\"" "VetTray"="C:\\PROGRA~1\\CA\\ETRUST~1\\ETRUST~2\\VetTray.exe" "Zone Labs Client"="C:\\PROGRA~1\\CA\\ETRUST~1\\ETRUST~3\\ca.exe" "QuickTime Task"="\"C:\\Program Files\\QuickTime\\qttask.exe\" -atboottime" "SunJavaUpdateSched"="C:\\Program Files\\Java\\jre1.5.0_02\\bin\\jusched.exe" "ATIPTA"="C:\\Program Files\\ATI Technologies\\ATI Control Panel\\atiptaxx.exe" "TkBellExe"="\"C:\\Program Files\\Common Files\\Real\\Update_OB\\realsched.exe\" -osboot" "P17Helper"="Rundll32 P17.dll,P17Helper" "ATICCC"="\"C:\\Program Files\\ATI Technologies\\ATI.ACE\\cli.exe\" runtime -Delay" "Adobe Photo Downloader"="\"C:\\Program Files\\Adobe\\Photoshop Album Starter Edition\\3.0\\Apps\\apdproxy.exe\"" "oimc79d4"="RUNDLL32.EXE w5b2922a.dll,n 002c79d20000000a5b2922a" "KernelFaultCheck"=hex(2):25,73,79,73,74,65,6d,72,6f,6f,74,25,5c,73,79,73,74,\ 65,6d,33,32,5c,64,75,6d,70,72,65,70,20,30,20,2d,6b,00 "!AVG Anti-Spyware"="\"C:\\Program Files\\Grisoft\\AVG Anti-Spyware 7.5\\avgas.exe\" /minimized" [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents] [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\IMAIL] "Installed"="1" [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MAPI] "Installed"="1" "NoChange"="1" [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MSFS] "Installed"="1" [HKEY_CURRENT_USER\software\microsoft\internet explorer\desktop\components] "DeskHtmlVersion"=dword:00000110 "DeskHtmlMinorVersion"=dword:00000005 "Settings"=dword:00000001 "GeneralFlags"=dword:00000001 [HKEY_CURRENT_USER\software\microsoft\internet explorer\desktop\components\0] "Source"="About:Home" "SubscribedURL"="About:Home" "FriendlyName"="My Current Home Page" "Flags"=dword:00000002 "Position"=hex:2c,00,00,00,cc,00,00,00,00,00,00,00,34,03,00,00,e2,02,00,00,00,\ 00,00,00,01,00,00,00,01,00,00,00,01,00,00,00,00,00,00,00,00,00,00,00 "CurrentState"=hex:04,00,00,40 "OriginalStateInfo"=hex:18,00,00,00,a0,00,00,00,00,00,00,00,80,02,00,00,3a,02,\ 00,00,04,00,00,40 "RestoredStateInfo"=hex:18,00,00,00,a0,00,00,00,00,00,00,00,80,02,00,00,3a,02,\ 00,00,01,00,00,00 [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\sharedtaskscheduler] "{438755C2-A8BA-11D1-B96B-00A0C90312E1}"="Browseui preloader" "{8C7461EF-2B13-11d2-BE35-3078302C2030}"="Component Categories cache daemon" [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shellexecutehooks] "{AEB6717E-7E19-11d0-97EE-00C04FD91972}"="" "{57B86673-276A-48B2-BAE7-C6DBB3020EB8}"="AVG Anti-Spyware 7.5" [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer] "NoDriveTypeAutoRun"=dword:00000091 "DriveConfiguration"=hex:2e,55,a9,07,cf,ff,47,95,2e,0c,e9,9d,8e,c1,89,be,64,d2,\ de,66,b9,32,de,42,d0,2a,81,f9,09,a8,c9,19,05,da,ff,51,0b,fc,3f,e2,aa,6f,36,\ 50,a0,0a,2b,5d,fb,b4,3c,37,7e,33,eb,f1,46,3f,d9,30,ad,db,d0,27,6f,e5,07,c5,\ 0b,eb,a2,2c,6d,40,79,66,e9,4f,1a,53,ca,30,11,e6,ec,79,67,91,26,57,68,fe,cd,\ dd,a9,00,b5,9b,4a,c9,99,73,79,5d,bd,a8,37,46,d1,38,5f,8a,19,6c,e4,da,cb,ad,\ 5a,0c,b8,99,b8,cb,2f,56,5c,8e,1f,26,4f,c6,7b,3c,cb,5c,e3,ce,fa,5a,80,6c,01,\ e8,30,90,3d,7b,e3,76,cc,49,44,a9,50,00,9c,ef,ef,b7,f4,ae,9e,25,7a,ef,a0,11,\ 27,dc,49,09,9e,94,08,57,56,c5,a4,31,fb,7d,c6,30,12,3d,b8,03,dc,4f,6c,65,7e,\ 5a,c0,4c,5e,34,00,64,d0,f7,ad,bb,f2,57,7d,be,d4,33,a2,64,dd,69,4f,a9,6a,ef,\ 79,3e,b7,20,da,7f,03,53,3c,a5,ef,b2,fb,3d,28,49,ad,d8,45,5e,67,05,f2,01,be,\ 7c,4f,e3,70,9c,93,6c,1a,18,f5,07,42,ed,cc,c1,9a,97,f5,12,83,84,75,fa,d1,c9,\ 5f,50,ce,13,f8,57,81,e1,1a,93,30,f1,d6,db,23,f8,5d,ae,ab,96,21,ca,63,89,37,\ fb,b6,21,00,32,a1,f4,08,d6,ba,d2,2e,5f,72,fe,06,20,97,90,7b,64,1c,48,b9,bd,\ 1d,64,49,99,1e,e5,7e,16,94,fc,11,18,a6,c2,08,98,34,29,dc,3e,19,33,da,33,ad,\ 62,ca,30,8e,6f,cf,dc,a1,3e,8e,54,53,12,92,0b,25,fd,ef,d4,67,9b,26,3d,43,00,\ 49,1f,fe,ef,60,73,7b,4d,0a,67,01,d5,67,b1,3d,0c,ac,24,8b,78,3b,81,71,0d,e4,\ 8f,6c,e8,2b,6e,f0,40,be,28,aa,99,5e,89,08,3a,85,31,fb,e2,4b,e7,fb,b7,8a,30,\ 4c,7f,41,20,81,12,36,71,3e,0f,e0,d2,42,cf,83,81,a4,97,9d,1c,5c,12,81,b4,06,\ fe,42,24,e3,25,d2,a1,21,8f,6b,92,5c,f6,2e,a1,64,7a,0a,9d,41,96,e0,53,74,53,\ e5,d5,80,bb,47,1b,a9,91,13,10,fc,3f,56,9e,8f,10,82,7c,0a,9f,14,48,66,8f,74,\ d5,f5,7d,1d,c6,a3,33,fd,5c,7b,1f,1f,8c,6d,03,87,55,4e,ed,5d,50,20,6a,4f,89,\ 94,f7,30,8d,cd,b8,e5,c4,67,6d,81,01,b8,a1,af,58,55,24,50,2f,ef,bc,66,98,e1,\ 18,31,de,5b,05,97,5e,01,e4,c9,99,20,5c,24,87,9e,4c,55,2d,3b,04,c1,71,17,b4,\ 24,2e,74,24,78,84,be,a6,18,71,c8,49,25,a6,59,50,29,93,e7,e3,fa,c5,a2,03,e1,\ 71,b4,c3,fc,51,c8,b6,e1,ae,c9,a4,84,be,ec,81,5b,31,f0,9f,c0,07,a4,a4,96,a4,\ ab,b4,2f,26,7c,7b,6d,f6,ac,48,28,9d,70,12,d0,da,5d,a2,54,f1,73,8f,42,45,5a,\ 6d,2f,29,eb,42,59,f4,f2,39,8b,53,33,9b,41,e4,ab,fa,0d,00,17,af,39,d7,bb,87,\ ae,c3,5c,ba,14,d6,8e,1d,3b,b5,36,98,ba,aa,47,d9,d6,f4,cf,4a,a5,62,37,41,c5,\ 20,c6,77,64,d0,68,bc,5b,dc,ae,e9,1b,0b,15,15,ac,53,8b,0c,00,ee,2f,fc,d7,b0,\ 59,72,e0,98,da,85,21,a5,85,51,98,eb,ed,a8,23,e5,71,03,9d,0d,76,bf,4a,aa,f4,\ 86,75,ea,34,0a,57,30,d8,fa,3b,af,1b,2e,e0,38,5a,25,1f,50,d3,b2,cd,86,ad,f2,\ e3,97,39,81,dc,63,78,ee,5f,c3,dd,6c,1e,1c,54,ca,fe,cf,82,a5,78,81,4f,dc,3f,\ 28,a2,44,23,66,6b,9d,35,16,e7,c5,2c,25,1f,2c,07,a4,b2,88,f4,1b,d5,ca,71,1f,\ 98,50,b1,27,6b,5c,41,9b,e0,c5,eb,2e,b3,ec,da,6e,07,f2,00,99,f2,28,b5,b3,3c,\ c7,a1,d5,bf,e2,db,c8,e4,98,52,d2,b6,8e,6d,d0,17,9c,ee,85,8b,c7,1c,32,21,70,\ 21,67,f8,ca,b1,18,02,91,ec,f3,08,fa,86,f1,ef,e5,25,2c,39,5a,0a,f0,ce,33,f4,\ 14,fd,16,41,8b,be,a7,57,36,3a,fb,42,fc,8d,4f,9e,1d,ca,fa,b8,c3,3f,a0,f0,da,\ fb,a9,62,22,8e,fa,c5,83,10,c1,92,a0,65,ff,69,ae,be,a1,b1,87,63,67,7f,fa,b0,\ ca,ba,66,5e,2f,7c,87,04,61,bb,8f,de,3e,28,79,cc,b0,57,9a,9e,e0,21,79,8e,a6,\ 47,e0,0e,43,57,33,c5,52,d4,01,d4,fc,91,d9,5d,6c,5e,5f,46,82,e6,9e,3a,cc,d8,\ a0,f1,b2,45,3c,b2,f0,b4,30,16,49,ee,6f,0e,7a,4d,bc,27,6e,f6,78,0d,b0,93,b9,\ 4e,25,c7,9b,61,fb,5c,db,e7,dd,9e,a2,30,69,02,9e,01,e3,0c,57,95,2b,6f,c1,e1,\ ec,75,0d,1c,17,a1,c5,7f,90,93,18,4a,26,2d,72,07,c9,f4,50,12,f7,b9,53,59,78,\ 78,93,61,4b,80,35,89,e0,d4,b0,93,87,d2,ac,60,29,12,bc,fb,36,91,8e,d9,de,0f,\ f1,60,84,b5,76,a5,70,fb,ca,7a,c4,c9,43,a8,b1,dc,b8,79,ea,6c,96,7a,59,0c,30,\ 7e,11,d1,57,e6,85,b6,2b,20,f7,3f,30,6e,33,5d,a5,e9,7c,92,11,c5,c7,55,1e,d6,\ 27,b8,aa,53,89,48,1c,db,a1,35,f4,e1,24,b3,a6,5c,38,9f,a9,3b,28,66,cb,b5,5d,\ 23,c7,68,8a,07,19,b3,26,fe,11,75,1f,8f,27,18,cd,04,8e,cf,24,cc,0b,1b,2f,1d,\ 08,94,b9,dd,e4,e6,4d,c3,8e,1a,62,ba,52,17,cf,86,f3,68,85,a9,f9,3f,7c,88,4c,\ ba,ee,ca,02,66,c4,01,76,01,4d,8c,9a,85,ac,bb,8e,61,b7,35,71,0a,0a,97,76,b2,\ 21,5e,3b,57,98,07,57,00,e9,74,32,44,df,92,1a,0b,4d,39,93,98,ff,54,ee,c8,f1,\ 41,1d,94,bf,7a,c5,dd,5d,76,95,69,08,ca,d6,28,7c,94,44,bd,68,19,1d,39,1f,ad,\ 77,2a,90,d3,d6,d4,78,a6,fe,be,d6,78,06,71,9f,e2,ae,7c,b4,19,f2,bb,11,f0,e0,\ d9,47,de,a6,14,2c,b0,ef,40,d1,83,70,0f,b4,2c,bd,8f,37,d7,62,f4,51,ed,2f,98,\ 84,3c,d3,40,0f,52,ac,a1,64,29,de,23,dc,0a,a3,e4,aa,ab,e1,00,0d,9a,02,10,ca,\ df,00,f0,da,dd,bf,c5,60,7a,a0,3f,dd,80,53,1c,a7,42,f8,ee,98,82,3a,1d,03,92,\ 54,2f,ec,ba,74,47,78,da,09,ec,a2,50,07,0c,30,1c,82,41,e5,42,7b,52,f9,70,fa,\ fd,c6,e1,5c,f4,c4,81,ef,25,b7,52,bc,3e,27,0e,a4,71,11,0e,af,74,dc,6a,a0,cd,\ 8e,62,cd,4c,40,fd,2d,d9,cf,ef,b3,6f,d5,c0,da,69,d8,2b,81,fe,c0,c4,fa,06,8f,\ de,5e,06,4c,ac,23,6b,40,a6,f0,11,65,2f,af,09,1c,74,e4,99,1e,97,3e,83,b5,0d,\ 6c,8a,2c,44,32,33,84,8a,bc,c9,68,2a,32,a3,63,d8,8c,a9,51,4f,a8,15,14,38,9a,\ 77,88,4e,43,fc,b8,c0,25,ef,52,d6,75,80,58,d8,72,c5,19,2c,f6,fe,bd,be,4b,1d,\ eb,a4,3f,86,1e,02,7b,13,f9,2c,10,5b,48,0b,53,34,19,c2,eb,76,73,91,28,02,45,\ f9,96,03,9d,21,d3,74,1a,78,9d,e2,a4,9c,2f,74,5a,7a,ce,28,cc,b7,9f,5f,6b,4f,\ bb,9c,3d,7d,85,89,d6,da,3b,3b,83,c8,cc,b6,c8,11,ea,b4,0d,cc,5f,a2,94,cb,a4,\ ec,ae,8c,b0,7a,2f,c7,0e,7a,1f,63,32,61,b2,17,0d,2c,7a,7d,df,ec,dc,b8,4d,81,\ c1,5b,b3,a6,8d,86,bb,2d,55,52,2f,8c,4c,70,0b,99,7f,0c,d7,92,c3,f8,33,60,eb,\ 06,b3,1d,3e,b5,ee,d3,27,11,d2,87,2f,d4,3a,76,29,d1,c3,9e,ac,93,db,80,c7,41,\ a1,25,ef,c4,d6,5f,3c,2c,f2,51,d5,50,f6,31,a9,b5,65,4d,61,b2,4a,4c,92,d1,15,\ b7,36,77,a5,b7,5d,c8,a6,21,20,c5,1d,af,d7,b7,41,90,8b,d1,8d,24,ae,11,13,00,\ 0a,67,13,39,f8,19,cc,df,d2,66,92,c7,ab,69,21,8e,3d,41,31,da,22,6f,4a,e3,47,\ 7f,da,ab,9f,eb,85,a9,14,3c,bc,c4,c3,72,91,1e,68,a6,ca,37,17,ee,34,74,2e,81,\ 39,68,87,1c,b5,51,f2,a4,06,e6,e2,0c,62,50,66,79,6e,76,5b,a4,0c,7d,e0,80,74,\ 8f,0b,1d,86,dc,da,cd,5e,df,6d,85,2a,e3,72,86,38,c5,e0,3c,53,fb,e8,66,50,d5,\ 28,77,e4,03,a4,3c,b8,58,ee,c0,c0,cd,2b,6d,c8,c9,3b,73,50,a0,b0,6d,99,59,01,\ 42,00,b4,82,4a,8b,6b,93,b3,c2,b9,17,22,c0,19,28,9d,89,50,08,a8,9e,ad,5b,ae,\ cf,90,94,a3,51,29,ae,e8,10,82,1c,6f,46,c0,02,1f,4d,a5,a5,7a,b1,5a,20,7d,8a,\ 6c,59,c7,09,14,34,ff,50,bb,07,6f,87,bd,4d,f4,2c,6e,9e,1b,aa,5a,de,84,2e,d1,\ b5,8b,b6,a4,40,27,6a,29,07,12,30,85,2e,2b,7b,2a,ef,18,63,9e,47,2f,fb,7e,f0,\ 97,df,c3,90,aa,0c,45,30,9e,f5,7d,ef,65,d2,8f,f8,d1,3c,88,b1,fc,f7,e4,35,e7,\ 0f,53,05,61,26,bc,fa,2b,9b,83,7f,59,90,08,fc,fb,96,70,95,fd,6a,a7,15,4c,54,\ a5,25,3a,6d,f1,c2,24,b0,64,ee,52,54,30,a5,1e,59,20,12,59,61,21,03,ea,c2,02,\ 9b,b8,d9,78,46,cb,a1,65,f2,ad,84,5a,7d,17,71,5a,69,c9,2e,e1,d7,ba,f0,24,b3,\ 71,29,9b,2c,b3,a1,bd,67,5e,c8,9a,74,95,4a,4f,81,1d,e5,26,4d,07,77,bc,e0,90,\ 5c,d7,79,45,f6,17,c9,6b,8d,7b,5e,9d,5a,28,62,b7,de,66,85,f3,78,ec,38,52,37,\ 5d,1c,3e,ed,12,ba,6d,85,1a,74,08,96,7f,bb,0d,37,cb,83,f1,16,cb,f4,8a,c4,93,\ 63,2d,53,c2,80,13,23,08,d1,02,f9,e5,bd,29,51,b3,ae,4b,f6,e6,f3,20,cf,93,82,\ f8,fc,2f,86,a1,21,99,f4,8b,02,5b,c2,2a,51,2d,53,9c,c3,bb,36,8c,69,a9,11,56,\ 3e,d3,d8,6b,fc,d9,43,f7,35,db,7e,c2,9e,81,22,54,ae,3f,64,5d,68,d7,8c,54,74,\ 1f,a9,5d,75,04,84,70,97,cf,d2,b8,67,a7,ae,ad,e8,57,46,b6,e3,52,d4,d2,7e,f4,\ d0,75,10,0b,63,71,34,96,1f,66,1c,cc,ee,e2,29,61,49,cd,b8,04,ab,05,3e,2c,44,\ 45,97,14,f1,4b,9b,04,6c,3a,f3,d3,c0,3d,2a,aa,01,6d,07,0a,39,f5,1b,11,a5,73,\ 96,f9,22,a2,5e,e1,e2,36,63,d0,63,08,2c,f7,a2,73,e1,36,8b,fe,7f,e2,b5,3b,de,\ c6,4c,ee,95,67,4e,72,a9,8c,fb,59,72,fe,86,53,ee,8d,11,51,5a,53,d8,ea,04,3d,\ ad,fd,5b,c6,a4,98,48,06,0f,18,c1,ec,ad,92,9a,c7,1e,72,9f,0c,9a,62,e1,53,e3,\ 6e,4d,a2,78,65,83,ee,0c,82,e4,df,36,4b,ed,d4,6a,ba,c4,a6,28,9b,11,b2,73,35,\ 0f,92,85,2c,e3,2a,c1,a6,2c,6b,e9,ad,db,53,91,d4,45,b4,d4,1e,76,37,45,1b,c9,\ a0,28,54,b5,54,e3,e9,ea,18,af,79,9d,1b,93,42,20,37,93,8a,b5,74,24,3d,a4,ce,\ e4,d7,8b,38,88,84,f6,e0,16,86,2f,b5,54,d8,57,26,80,11,b6,2d,b1,8a,50,8d,de,\ c3,b9,57,ae,03,2a,b3,cf,3f,d3,dd,1b,3d,73,6e,58,f9,27,dd,af,48,7f,45,60,bb,\ d7,69,b3,c6,e5,f5,32,22,8e,06,15,6f,fe,ed,fe,1e,f7,30,e7,8e,69,d2,58,75,44,\ d5,dd,82,8a,fc,b7,41,a8,d5,d2,3e,06,f7,f7,6d,dd,89,43,c9,48,04,d8,ae,9f,39,\ d2,bf,00,95,7c,c2,2e,a4,c4,ce,9f,d4,ed,69,d0,7c,84,3a,dc,1c,95,6d,4d,e6,1e,\ 59,32,7e,c4,60,71,ff,c5,17,5f,3e,2e,a7,8e,52,4e,73,e6,54,6a,fc,f8,63,b2,01,\ 8e,eb,74,ea,87,27,90,66,e2,e5,2c,54,18,8a,a9,df,af,55,d5,ee,0c,e8,62,bb,ce,\ 04,96,c1,c7,94,45,dc,45,ed,fd,ac,32,54,80,3a,80,c0,77,de,3a,e2,64,60,17,63,\ d9,5d,4f,6d,e7,ec,ad,6c,da,82,e6,16,23,13,29,a8,96,7a,f7,73,d6,1b,35,98,0d,\ c7,80,10,e0,df,c0,ef,a1,bd,00,e9,c7,4f,7c,15,9c,05,fc,f1,36,ee,61,a6,a8,1d,\ 7e,d1,79,52,29,f4,56,d6,91,1b,03,a7,d1,81,97,d5,c6,64,e9,2c,1e,86,46,13,b2,\ 2d,65,b4,16,6f,9c,5e,6e,ac,53,27,83,5c,b9,d5,16,0b,b7,ff,73,a1,22,6f,4a,e7,\ 35,cb,bb,47,3e,74,b0,d3,97,af,6f,89,d8,03,6f,d6,4b,e1,6b,58,a1,8a,b6,e8,e3,\ 2e,ce,d8,dc,51,33,79,93,73,7a,e1,ee,f0,9d,eb,b6,25,95,7e,c6,d4,2b,13,49,ca,\ 0b,71,73,bf,1a,bb,6e,7d,09,ad,98,44,2a,23,eb,6e,83,db,bc,4f,21,7b,a9,5f,af,\ d6,cd,9b,47,6b,35,28,88,2e,98,3a,e9,8c,42,34,4d,a9,52,10,d7,ec,25,02,ff,bd,\ 12,58,e6,8d,58,da,e6,17,54,1e,6e,e6,f8,44,0d,18,78,c4,cc,61,46,9b,c1,52,41,\ 7d,e1,dc,29,78,16,10,57,d4,91,28,ab,3f,62,cb,c5,26,46,8d,78,66,c0,b5,7b,24,\ 6b,44,62,f9,8e,33,cd,53,f1,fb,e0,18,ef,5a,f3,8c,cd,55,8a,74,4a,79,87,7b,77,\ 67,9e,d6,c9,90,0a,24,c3,3c,7e,98,db,d1,5f,59,ae,52,30,29,b3,26,4d,45,40,1b,\ dd,8d,c7,aa,02,e5,aa,7c,52,db,51,2e,8b,8a,7a,51,82,be,d1,b6,5d,58,c1,e8,02,\ f5,89,f9,cf,ca,92,82,8c,d2,00,e5,9e,2c,87,d5,7d,be,80,19,68,1f,3c,8c,57,b4,\ 98,69,31,19,d1,c5,3f,c2,9a,94,5d,e0,e2,6c,92,7f,8b,1e,b2,c3,17,b5,79,05,c8,\ 7d,d8,07,ab,58,f4,e3,c2,57,72,41,61,87,f2,cd,d9,0e,d9,e8,54,76,54,9e,00,48,\ 99,d9,70,dd,70,d4,3e,71,f3,d2,f6,79,92,0f,2f,36,5a,f7,fb,8b,76,96,82,0c,f6,\ 50,e9,57,cf,d2,79,a7,23,48,fd,a6,e6,d0,6b,83,f2,2f,c7,45,6c,c3,45,5f,a7,b9,\ ae,84,59,80,04,bc,3a,7e,69,b8,0b,01,3d,62,d7,78,87,b9,79,e3,96,dc,5e,88,e7,\ 64,8d,e8,4a,f7,e4,f1,41,1a,a4,75,a9,47,2f,db,9c,40,11,15,95,a2,3e,d1,d5,bd,\ 9a,f4,06,a3,bf,44,1f,7f,fa,64,87,29,96,98,7d,f7,5e,5c,b7,d5,5d,cf,49,98,e8,\ f4,c9,8f,de,bc,b1,5b,2f,ea,04,01,9b,cb,35,3e,bc,21,44,1a,47,60,2a,c0,8f,1d,\ 77,8d,4b,c3,3a,67,98,88,21,50,42,9f,e1,3b,3f,af,d8,1e,7c,85,f1,48,dc,05,c9,\ f5,7e,67,10,20,3f,a0,31,98,81,1d,35,56,2a,b7,f4,0e,ef,e4,2e,04,d2,2a,ca,21,\ e9,da,1d,46,62,fa,5d,e0,c4,83,f6,bd,77,cc,2d,1d,87,47,03,0d,a5,6b,5c,f0,6f,\ f1,60,5f,f0,43,22,33,6b,32,7f,df,54,e7,49,03,a0,1c,a5,3f,3e,8b,b2,45,e6,a7,\ 6c,33,11,8b,cf,1f,48,30,3f,f3,a2,e2,27,7b,89,f5,e1,e4,bc,b4,d6,88,9a,9a,e6,\ 4f,9d,c5,09,38,25,a7,37,70,77,ff,86,c2,05,07,92,69,ef,ef,22,22,cb,8b,09,84,\ a1,48,49,94,3a,65,7f,95,9b,60,7b,1d,cc,ae,2e,6e,de,ae,c9,02,2b,e0,23,68,e0,\ 52,5b,4f,b9,5c,bf,e0,0c,8d,ed,52,09,e5,38,b8,40,45,4e,1d,bf,23,17,d2,4e,82,\ e0,07,44,22,b8,99,7c,f4,1a,2b,dc,d0,cd,78,04,6a,09,e7,8e,83,db,60,94,5c,ca,\ 5f,73,70,bb,47,cf,62,12,f8,d8,35,1a,a3,cb,bb,a7,dd,bb,50,fa,f3,91,c7,e4,7e,\ 51,a5,2e,37,a0,8d,39,0c,83,fc,e2,73,6a,36,a8,fe,6d,81,11,2f,d5,d1,49,8e,de,\ 42,0d,fa,bb,8d,c7,3d,db,b4,fb,e2,6b,c1,e1,4b,1c,2f,53,fe,26,e7,ea,40,8d,6d,\ 65,e5,a3,5c,4a,66,ce,10,cf,34,8b,a2,fa,4c,b3,19,08,0c,fd,de,0c,45,c5,71,d8,\ 91,0c,5b,20,e7,bf,63,dd,6c,3c,05,f0,8c,12,20,08,4a,08,ef,c5,d4,61,3a,a2,5b,\ 5f,ce,00,21,06,2a,37,d4,22,7b,92,1a,8c,cb,42,6d,a8,75,84,29,32,dc,7f,e3,3b,\ 5c,70,fd,6e,81,04,77,98,77,05,08,67,c2,39,6e,72,2f,88,02,7a,0b,5c,8f,f0,92,\ 4d,64,b7,aa,fe,a8,2a,d2,42,ee,61,55,84,09,b0,c3,65,22,71,a1,a6,07,04,60,49,\ e8,13,8c,f3,7b,1b,46,95,66,28,f4,4b,41,df,37,84,d0,c2,1d,64,b9,b0,99,66,96,\ ab,30,46,49,de,f4,1e,8f,df,b6,cf,d8,31,78,a2,57,0d,21,2f,55,62,74,7f,ca,1a,\ 43,6d,2e,9f,e0,52,8d,9e,d5,e1,da,0a,d5,4f,85,65,f2,b7,4f,3b,0f,be,5d,ef,99,\ 72,8c,e2,72,78,05,f0,2e,67,11,85,82,6f,2e,d0,f9,3e,62,90,e9,24,cf,2d,a6,75,\ 88,3f,f5,2f,a3,54,c4,dc,8f,ee,18,ba,a8,cc,46,1a,09,6b,66,06,a2,cb,05,26,8a,\ 76,1a,e4,96,bf,3b,cf,2a,48,11,3d,4f,c7,0a,35,06,09,4d,8c,dc,36,f3,4d,bf,58,\ 74,5e,10,17,bd,61,f9,c6,4f,d9,01,a4,1a,8e,de,5b,4b,32,8a,cd,d3,44,99,10,fb,\ 35,c9,b7,9d,ca,db,54,94,c1,a1,3a,71,b7,59,88,6f,49,39,63,a9,7a,4b,82,8b,54,\ 7b,f0,87,d2,ee,0d,09,fe,96,d6,ac,57,04,67,ae,75,7d,be,a1,f0,4f,c2,64,7d,65,\ 84,52,5a,1a,c4,b9,f8,4b,b7,8e,a7,b0,07,5f,2f,6c,1c,88,bd,e2,9a,aa,c3,cb,2b,\ 59,d3,85,7e,15,bd,ae,8f,7c,f7,f2,2a,bd,43,21,aa,50,8b,85,07,e5,10,72,10,9a,\ c3,1e,f4,70,f3,b3,07,00,29,a3,c3,6a,51,3c,0d,8f,1a,7c,ba,80,9e,26,52,35,46,\ 15,14,83,e8,d1,3a,48,33,bd,7d,e8,4d,5f,dc,fe,ba,50,9a,4b,80,36,86,f2,89,5f,\ 7e,e8,48,82,36,a6,9f,09,36,21,01,b0,22,fb,d4,4f,3e,fb,19,f4,31,bb,4e,35,09,\ a0,93,c5,80,0f,0d,44,7e,de,88,5c,df,09,60,09,75,a7,a1,38,51,1c,6d,94,3e,8f,\ 9e,9d,8f,9e,ad,fa,1b,51,d2,10,cd,4d,6d,d3,c1,4b,a5,dc,d3,c8,4f,bc,da,fd,11,\ 91,4e,11,c7,d6,86,8e,25,80,7d,11,9e,46,d5,46,85,40,1c,14,73,b3,4f,15,e8,2b,\ 9c,49,35,cb,6c,0b,99,e2,a1,44,aa,be,1c,de,f6,c5,83,7c,eb,c1,41,68,f4,7c,ce,\ cc,e5,8d,30,26,99,71,c2,f6,d9,de,34,e2,80,53,d3,1b,dd,f4,0a,69,59,95,29,45,\ 5a,15,66,9d,67,ed,21,dd,8c,08,6d,64,00,d5,cb,35,05,9b,38,f0,10,0e,6b,00,2a,\ 1f,58,15,96,18,f8,d5,b4,e7,4c,ce,25,ba,9f,b0,30,cd,0c,b9,64,80,41,70,7f,ad,\ 82,96,8f,38,f1,5a,57,e8,0c,cc,f4,75,77,94,e5,e2,fc,e4,77,0c,d0,ab,99,83,18,\ 0c,0f,9a,ab,0e,10,ba,1a,95,46,fc,ed,91,2d,f6,30,75,bc,d4,2f,ea,48,ab,7d,c5,\ a5,0b,3b,37,8e,d3,96,44,47,4a,92,77,80,6b,06,d3,7d,7f,e8,0c,74,f2,cb,f7,37,\ 5f,a6,40,12,ed,d7,5b,f7,de,68,bd,d8,65,90,4b,55,e2,7d,13,97,67,50,3a,7c,ec,\ 6a,35,f4,83,e6,3c,aa,3c,66,fc,e8,4e,13,8d,b4,ae,df,a3,3f,e0,0d,08,81,0d,f4,\ 4a,1d,57,00,b0,8a,69,f9,73,74,52,88,2b,60,93,f7,88,90,76,38,42,26,a2,29,53,\ 8b,ed,16,63,12,71,7f,84,d9,e2,1c,1f,f0,1e,1f,2e,be,06,e2,ac,a0,8d,df,4a,d2,\ 0e,4e,64,93,e3,cd,33,84,33,b2,44,52,0b,a7,29,94,b1,ae,6e,f7,35,63,ce,98,48,\ 81,a7,b1,51,a8,ac,78,be,5e,da,44,98,53,ad,f2,5b,e9,93,87,04,f3,a1,16,6b,bd,\ 85,e4,d3,4d,bc,cb,c0,e9,04,dc,08,d9,15,48,2d,6e,8c,81,ea,44,a6,9c,0c,c3,38,\ fa,83,ec,54,27,b9,52,4c,02,22,66,5e,1f,15,f8,ac,69,da,fb,ec,0c,04,89,62,92,\ 01,26,0b,4b,ef,49,1b,f3,b1,18,aa,8f,43,74,ab,98,4a,35,1d,5b,f0,b7,85,a0,ee,\ 95,9b,8a,ea,b4,44,be,04,84,c0,c7,ac,82,25,b9,b6,01,0c,15,b0,2b,8a,f8,73,43,\ 62,49,f8,2c,78,c8,6d,2f,89,8b,88,f9,1a,4e,1c,e3,ae,d8,ea,77,3c,96,b9,2f,e0,\ 83,a8,7f,d1,4a,c4,16,93,af,d6,61,6e,2b,7e,52,1e,d6,86,5f,cc,8a,70,cd,3d,46,\ 51,2e,4a,d0,e2,29,90,9f,d5,79,68,f7,65,38,19,56,31,5e,4d,0f,4a,84,c2,35,cf,\ ee,42,ba,29,c9,d5,d8,8a,b1,35,b0,5b,77,82,32,dd,20,37,3c,7f,31,5d,06,b2,29,\ fe,bd,f9,50,dd,6e,3f,af,64,26,6e,60,de,57,3d,08,e6,7e,49,a1,20,03,68,7d,27,\ 61,3a,87,c6,86,00,cc,6a,7d,b2,3b,d7,4a,4b,a9,1b,16,68,18,c0,8c,11,39,46,82,\ d7,a9,d0,dc,1f,96,1e,ad,bd,c4,bb,a0,c5,4f,78,97,9d,cf,18,91,57,e5,4d,d1,3e,\ 7c,e3,3c,af,4e,3c,04,2b,aa,fc,83,a9,75,05,69,31,6f,a6,1a,a6,b8,0f,52,e3,93,\ 09,0b,0a,69,e4,a0,19,11,b0,32,bf,4e,af,4b,6d,9a,0b,c1,af,22,c5,de,bd,11,ee,\ bd,4d,11,a0,f7,ac,0f,10,7f,0d,3f,c6,cb,21,61,8d,35,e8,42,89,a0,c6,85,65,5e,\ d9,a3,44,51,8a,31,fb,51,62,62,7d,ce,1f,cc,96,b7,08,6f,dd,9a,7d,f3,e3,0c,d2,\ 31,b1,4b,5d,f5,72,22,ce,02,6c,0d,bf,57,35,9e,8c,b1,23,1f,65,51,04,79,a2,ff,\ 0f,54,56,4f,1b,cb,26,23,0f,94,5c,71,9a,d5,37,47,24,59,85,0c,04,6b,74,08,f3,\ 32,a6,26,c0,8e,83,f9,46,43,d3,fe,9b,59,8c,21,8b,c2,e8,82,45,3e,bb,78,53,7c,\ 04,d6,d0,82,c2,6e,d5,4e,09,d4,34,be,54,64,69,ad,1d,87,cd,5f,ab,31,0d,1f,2c,\ ae,db,26,03,9f,e3,bf,bf,40,01,a9,1d,ec,b1,bd,b6,e2,c6,d0,bd,49,60,db,5b,72,\ 18,59,2c,5e,7d,f1,4d,80,c4,55,b7,c3,bb,6a,cb,cf,ff,a9,2d,88,6f,c5,d6,d8,e0,\ 8e,65,af,12,15,b6,48,e3,11,b6,ad,c3,81,76,7d,68,93,7e,ed,c3,c5,63,0d,32,4a,\ 9b,4c,f7,af,91,3f,e9,be,f5,d7,69,a3,56,8f,98,4d,f2,28,c7,17,cd,2f,2f,a8,00,\ 24,e3,17,54,81,02,53,0f,40,31,c3,0e,9e,49,29,14,1f,4c,cc,62,d2,9e,d6,88,d6,\ 72,fb,7a,1d,82,5b,e6,70,03,aa,c5,b3,d8,8e,30,6b,06,48,76,7d,68,97,6b,38,a3,\ d9,03,96,5d,74,1f,bf,aa,74,a6,cf,e8,75,d8,d9,0b,c4,df,2c,1a,c1,a7,d5,5c,88,\ f0,64,ae,d0,a2,f3,57,12,60,65,3d,ee,5f,ec,58,cb,79,ce,68,bf,7d,68,e3,ae,ca,\ 73,32,b5,1c,86,1c,c9,a5,dc,83,9b,60,58,4e,bf,a2,c6,a6,0e,f1,64,65,49,1a,a1,\ cb,fe,7e,24,73,b0,ad,10,86,32,36,87,2f,b8,bc,6c,4f,c1,4d,6e,71,28,f0,42,00,\ 9a,7d,2f,b7,33,b2,d0,5a,fd,82,16,a4,11,b0,8c,80,00,9d,df,7b,71,5e,9d,7a,0b,\ 12,3d,a8,95,73,60,b3,5b,aa,56,38,d4,68,e4,7b,83,32,44,5c,1b,fc,6e,87,e6,fa,\ 96,ea,67,b3,f6,6c,3e,57,cd,dc,4d,52,a8,27,19,a3,e0,cf,73,65,64,98,57,36,b8,\ 84,14,b9,3e,02,ad,f5,b5,63,80,e2,ff,8d,25,c3,27,f3,99,b6,a2,c5,9c,8a,d5,63,\ 57,d0,d8,18,42,35,7a,05,45,0f,85,5b,1d,35,42,cd,02,14,40,46,87,ff,52,d7,c1,\ c7,d7,f3,ab,8c,3e,de,c9,d2,c8,63,0c,d7,90,c5,f6,24,e9,f9,fe,63,48,12,36,70,\ 42,fd,2b,b2,56,6e,0d,ac,ce,1a,10,cf,22,27,11,93,bd,e1,7d,c6,04,ae,6f,23,95,\ 44,18,26,cc,19,64,1f,8c,1b,da,85,3c,a2,c4,8e,0f,a3,91,fc,89,26,77,3a,3f,fa,\ 5c,a7,de,a7,f7,32,6e,a4,33,27,d8,ca,d4,48,a6,09,5c,20,0b,bb,30,94,23,f4,f7,\ bb,7b,c3,43,f0,d4,16,73,25,24,97,d7,79,de,81,16,0d,73,0d,cd,14,19,2d,79,2a,\ cb,7d,97,e7,91,77,09,b3,01,e6,bc,dc,06,9d,88,e5,e0,68,58,22,6c,43,8a,81,a6,\ ca,99,ab,6c,f1,f9,4c,84,f5,42,ae,e1,92,91,8d,22,77,2b,27,5c,f7,bf,92,19,01,\ c0,52,a1,52,57,2b,78,e9,7e,34,27,bc,a3,2d,3f,a9,79,12,9c,af,55,f0,e7,5e,d8,\ f8,5e,8c,cf,d2,d8,4a,57,33,03,16,45,b2,f1,52,c5,d8,d3,f5,40,76,04,81,84,3b,\ 49,35,1f,85,56,83,0b,78,95,c4,91,4d,24,2b,67,ed,1c,f8,1b,bf,19,ee,b5,e4,f7,\ 06,98,ce,d9,65,aa,50,70,8c,b5,f4,7a,cf,0c,ce,88,08,71,ad,05,8c,36,a8,74,5e,\ a3,f9,f9,a3,98,0e,1b,56,73,de,c8,3d,34,7a,99,1c,df,e4,58,28,22,23,c0,be,38,\ 97,83,55,0d,8b,91,b2,a3,09,98,5a,b4,f2,c7,4d,99,4d,d8,f1,6a,e0,4d,4d,67,fd,\ fd,77,97,9f,c3,50,ae,b5,a7,6e,34,be,fd,5a,e4,96,fe,fc,53,90,84,53,d2,c4,11,\ 69,94,ab,13,87,14,e9,67,a5,b1,69,1b,24,9b,af,78,c0,f3,6a,40,c0,2e,49,34,6f,\ bb,10,d9,d0,e5,eb,7c,8e,fa,02,74,32,ad,4d,a7,98,b9,aa,4f,a4,c7,2d,fe,31,92,\ b7,e0,b4,49,ca,41,9d,34,9b,4f,2c,9b,69,20,46,e4,0e,f7,b6,fb,d4,c3,3a,f6,89,\ e8,37,fa,d6,42,aa,58,cc,67,62,fc,c0,2d,6c,08,59,6d,cf,bc,e7,06,7a,99,f6,24,\ 7b,c6,23,c2,72,b2,2f,6d,44,fb,52,4b,14,8f,d2,5d,6f,10,d3,01,c6,7d,71,bb,22,\ 10,0c,34,13,be,e3,83,e9,d5,e5,ac,27,33,c3,66,35,93,4a,22,55,7d,f0,48,d8,4e,\ ad,c4,92,dd,0c,c1,8b,5e,81,b4,f7,87,fd,9d,69,f2,c0,89,43,c3,6e,5c,71,8a,66,\ cd,57,6a,4f,b2,07,7b,f3,7e,b8,6e,51,08,73,70,ed,8e,10,50,6b,f9,61,e3,5c,62,\ ad,a8,58,d6,60,a8,b6,56,00,a0,16,22,63,62,50,37,20,79,69,17,43,0c,f9,c8,45,\ 04,56,1f,3b,71,62,3e,4d,2a,a8,5c,6a,b4,a8,c4,3a,66,6e,21,54,ca,6a,f8,b2,45,\ 7b,76,61,fb,4d,6c,7d,ed,e5,98,5d,64,7a,26,0b,93,87,76,f7,78,1e,20,ec,03,7f,\ 36,42,7a,e9,c8,56,1c,b0,de,37,04,90,81,a2,51,41,eb,31,84,4b,21,cf,29,1c,ad,\ 6f,ba,58,71,fd,c0,70,e9,95,3b,76,b0,f4,44,30,46,2c,f1,6b,10,9b,79,91,a0,1d,\ 99,7e,37,81,36,90,88,3a,43,fd,bf,57,e5,6a,c2,b5,d5,b9,b7,74,06,22,c6,a7,89,\ 85,20,50,ad,fe,40,8b,6a,ba,70,99,00,0a,90,c0,db,b6,13,e1,ba,94,4a,0b,10,59,\ e5,be,aa,ae,b6,12,93,87,b9,a9,35,b0,52,e2,c0,a8,d5,4f,d0,b3,4b,6a,49,2b,74,\ 83,86,17,08,fd,b4,fe,42,ba,78,fd,9f,d4,d8,18,e3,8e,58,ce,5e,8a,63,f0,6d,3c,\ ed,b3,43,9e,57,03,ea,25,93,1a,84,f4,ce,52,d7,50,b8,37,09,55,20,e1,a7,e7,5f,\ 80,ec,ea,1b,39,41,b6,a1,31,00,c5,cb,e7,7d,af,27,c6,47,59,55,fa,ab,69,b1,84,\ 7a,fd,32,89,0c,9c,92,f0,85,6c,b0,2b,57,a6,32,55,08,48,6e,7e,36,09,8b,43,d8,\ 92,e3,a1,c6,eb,ac,0a,7c,34,d8,b9,1b,95,39,b2,b0,77,e9,70,b9,f5,e9,48,e5,8d,\ 08,71,1c,1c,07,b8,bf,09,fa,ed,31,c0,f1,f4,96,62,d8,19,db,ba,9c,a4,f6,74,8f,\ ad,6f,89,0e,32,1f,fe,61,67,37,ce,e2,4d,85,24,62,86,f3,ce,c8,68,51,ef,fb,50,\ 54,f4,03,39,de,c9,6a,8d,7f,4c,e9,3a,3c,02,40,09,d1,08,66,2b,b1,4d,e2,15,14,\ ff,79,8e,33,43,09,07,8e,29,b5,2a,f0,df,42,b5,f3,24,c1,89,c6,00,6f,fe,2e,b3,\ d9,7a,cb,eb,44,42,9d,3a,4b,90,c6,c6,ca,e5,92,43,fb,a0,b4,1e,df,d0,d2,fb,e0,\ 47,45,62,b4,ef,1a,b5,84,61,5c,66,4e,b4,95,66,88,93,92,f3,06,93,67,28,1d,c3,\ b3,ee,09,84,25,b8,8c,9b,3f,8f,d8,84,5a,f8,af,09,eb,26,c9,14,04,6d,76,c2,1e,\ fa,84,b8,15,c2,63,ba,74,b8,87,79,f3,43,0e,ad,3e,ef,a3,64,f8,62,a2,9a,00,92,\ 7c,09,f3,36,5d,42,f2,7a,0d,fd,a5,f7,14,ae,7f,e2,22,59,44,84,de,a6,c9,ea,dc,\ 38,fb,dd,a4,3b,23,14,31,3c,68,a9,87,3e,96,ca,69,0a,1e,b1,7a,c6,5d,d6,a2,c9,\ 21,63,b3,ae,69,e8,4d,a7,6c,50,fe,14,dd,13,ae,55,6e,ae,3b,dc,93,50,60,86,88,\ d7,db,2b,95,fa,cf,73,90,c8,67,ec,a4,51,bc,5a,52,a3,f9,4e,b5,f8,bc,fd,0a,2d,\ c0,44,6f,76,b9,19,eb,51,80,04,af,b8,70,ff,9c,9b,10,89,05,8d,f2,f9,b5,bd,db,\ 11,34,29,23,d6,46,0e,5f,9f,b5,a3,3e,6d,50,06,b1,7a,34,77,4f,15,4a,c4,f7,ac,\ 11,04,b7,2b,9e,88,ec,84,e0,0f,ab,8f,29,39,60,15,ea,3f,b5,27,be,e0,b6,b5,dc,\ 9f,32,5b,a4,2b,64,7e,52,1f,d2,98,13,eb,76,d0,44,12,1c,ce,bb,97,0b,cd,98,b1,\ e7,f2,3e,c6,d6,dc,9c,97,e2,7c,b1,b8,9e,27,4f,44,0d,e9,1f,ce,bf,1d,e5,9b,3d,\ 3a,05,0e,a7,f0,46,63,9c,74,d7,a0,5a,17,8f,c9,27,1e,79,54,ef,ce,90,dc,2e,c6,\ c7,a0,10,92,4d,10,d7,7c,0e,87,7e,a5,7d,bc,9c,55,91,57,8a,90,0d,9c,c8,ea,05,\ e5,9d,9b,9e,50,fe,d6,15,b5,b1,57,03,db,b2,3b,df,eb,d6,15,c4,24,ae,3e,74,d1,\ ae,6c,9d,78,8f,87,5c,55,f1,b8,00,06,45,c2,10,88,ea,95,8f,62,96,20,7e,20,f8,\ 68,a3,03,d6,d7,89,f7,0e,d6,c8,c5,42,9d,86,8a,33,4a,3e,68,cb,31,c0,7b,03,74,\ 7a,0f,4b,d3,f5,10,2c,c5,a2,c1,2c,c7,d7,b1,f2,f4,15,eb,aa,d6,8c,6e,ab,7c,e1,\ dd,57,cc,2e,77,43,1b,4a,48,98,fb,4c,a1,ba,54,4a,c7,27,b7,66,e8,a1,ee,0c,53,\ 8f,d8,75,e7,a1,c6,70,cc,b3,3b,61,62,f4,b3,8a,77,47,41,89,bd,e9,3e,22,7b,54,\ 4e,3f,82,64,ed,35,63,b9,4b,49,df,5c,5a,73,9f,a5,25,61,25,5c,63,bf,03,1e,4c,\ b6,4b,02,ab,b3,46,7d,35,69,69,83,19,19,84,ef,d8,11,3d,25,57,72,bd,f6,32,37,\ a9,c3,54,73,54,e6,c5,f0,33,4d,c2,83,91,68,13,ec,83,46,99,3f,1f,fb,27,d4,e9,\ 44,92,f6,8e,6e,0c,ea,d5,73,ad,2d,d2,66,53,fe,5c,12,ac,1c,c2,de,91,d1,ba,f4,\ 96,2f,9a,a3,df,9a,cb,01,35,86,7a,d4,58,82,90,b3,97,76,e5,68,9f,29,b0,99,91,\ 06,42,a7,57,1f,f5,d7,37,72,bd,b0,a8,6b,cb,a3,65,ab,e9,f2,c1,08,c4,ca,3a,d5,\ f5,b2,50,63,16,29,97,c7,7a,8b,0c,de,1b,35,a5,8f,d4,e9,2c,50,d1,74,4c,ec,43,\ 8e,ec,83,58,01,bd,d2,6a,0e,0f,b4,76,0c,e9,e9,d1,52,58,17,16,57,07,0e,63,18,\ 10,50,c5,ba,12,d1,f0,71,84,fb,34,d8,49,f5,ac,42,84,25,b9,88,ad,f4,ae,c3,e4,\ d1,cd,85,86,78,73,03,ff,74,8f,be,df,e2,58,63,2f,79,40,ef,05,c7,23,16,56,bd,\ c5,e6,0c,6e,7b,a8,58,14,28,07,4a,54,6b,73,9f,c3,17,c8,d9,a8,e4,2b,95,03,64,\ 35,1a,cf,38,54,2e,85,83,6e,2d,e1,9f,c7,bc,e8,0f,24,7a,2a,b5,30,98,45,45,20,\ 2b,aa,fa,93,60,a4,88,bc,af,95,51,c2,b3,83,db,67,39,d4,82,e8,96,56,6a,25,3e,\ 83,b8,02,93,02,02,0d,fb,70,03,61,35,61,94,ca,ed,a2,d7,2a,8e,c1,b6,1b,57,d0,\ 8c,d5,b1,65,21,52,c0,e5,dc,b1,38,03,34,d8,72,cc,68,5e,be,44,70,a8,fb,7d,33,\ 52,66,47,fa,d0,b0,5c,25,55,53,1e,1c,f3,25,db,89,04,2e,4f,c5,ca,b7,6a,8f,52,\ a3,54,04,9e,03,ae,cb,02,e4,1b,91,cf,6b,00,b5,2f,25,87,44,50,98,ea,27,c5,1e,\ ee,9b,29,f3,ad,e2,05,8c,99,38,f3,2a,be,09,04,b0,47,be,60,b1,44,a4,2c,ce,ab,\ 7f,b1,3f,9c,1e,ba,af,e9,a0,3d,4d,d5,c8,3e,20,1c,f5,f1,9a,34,54,1f,71,d3,54,\ ca,aa,b1,5a,14,f6,8f,b6,5d,42,78,d6,ac,8a,47,ba,50,ee,69,a8,c7,07,e4,21,de,\ 7b,98,13,1a,cf,c5,50,57,7d,ce,3f,af,47,3d,d2,9d,ca,06,b8,be,56,10,d3,a8,fd,\ f1,ec,66,ea,f9,a6,03,f4,73,b0,be,73,27,3f,4d,53,23,bc,c4,67,bc,b9,b9,ff,cf,\ 2a,a6,bc,4c,d2,8e,a3,f6,fb,e4,71,64,6a,a8,2e,4c,92,d3,05,00,08,f5,53,39,37,\ 1d,fe,14,55,f9,08,5a,95,3e,64,04,9f,4a,08,ff,3d,08,43,2c,57,15,b7,ab,21,21,\ 2c,59,93,97,a6,97,19,80,b5,4e,8d,a4,0e,2f,62,f3,f5,40,22,24,53,94,1a,9c,09,\ 59,53,91,84,18,c5,6f,91,39,c8,7b,73,c6,cb,b6,33,70,48,04,38,d7,f7,8d,17,06,\ 43,64,ac,3d,fa,66,6a,f4,48,65,ef,1c,e6,86,dc,a8,8f,e8,e3,4c,b4,87,21,cd,70,\ 5f,af,d9,be,d4,74,60,ea,51,3d,83,45,30,0f,04,1d,da,bb,3e,ec,2f,b4,af,d0,28,\ 1e,b3,3b,ba,27,92,ec,fe,9a,bd,1e,90,b1,55,ff,34,2b,ed,63,c0,9f,91,ba,36,10,\ 07,3f,30,c1,54,73,81,4b,82,ca,19,ec,a1,a4,29,22,0c,7e,88,79,ed,6a,55,a1,04,\ e4,de,c3,a4,07,c1,15,fe,48,51,ad,a1,60,3c,92,42,c8,6a,19,b9,80,28,6f,4d,48,\ 85,72,31,13,fc,c5,4e,b9,54,23,43,ec,c5,f3,ab,6d,5c,1d,9e,7f,a0,1d,7a,9c,76,\ 55,e3,68,42,a8,08,e3,4f,44,28,e2,71,bf,55,c0,e9,66,79,51,88,d2,96,17,17,bb,\ 52,b9,fc,11,b2,b0,05,49,26,44,c0,f5,c6,b7,ae,98,db,c0,fb,b8,a1,3a,64,35,4b,\ 1e,53,d8,48,af,4c,2f,c5,f4,87,99,73,6b,df,9d,8a,fc,ea,80,0d,2c,6a,16,50,93,\ e4,d8,b8,90,8e,37,c3,3b,6e,30,48,9b,c1,21,ff,19,9a,db,43,35,cb,f8,17,78,08,\ 6e,68,aa,4a,bf,91,44,72,46,24,28,2f,15,e8,90,21,00,1e,45,3f,38,09,11,76,ff,\ ad,76,92,02,d6,a0,62,ea,5c,99,17,2e,a6,bc,ee,2b,6d,6c,0f,76,c2,05,b4,71,53,\ 13,8d,1c,ea,c3,63,2e,36,96,fc,65,ce,5d,40,1a,73,61,99,18,95,e2,a0,ae,19,c3,\ f5,03,5a,83,6e,aa,c3,6f,75,76,aa,16,ab,90,68,fe,d1,c6,07,95,e9,26,34,6a,98,\ cc,68,9d,cf,f8,b2,94,aa,63,b7,f0,99,d4,f7,c0,bd,ee,52,f4,95,4c,ca,14,d9,d0,\ 8a,00 [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer\Run] [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "dontdisplaylastusername"=dword:00000000 "legalnoticecaption"="" "legalnoticetext"="" "shutdownwithoutlogon"=dword:00000001 "undockwithoutlogon"=dword:00000001 [HKEY_USERS\.default\software\microsoft\windows\currentversion\policies\explorer] "NoDriveTypeAutoRun"=dword:00000091 "CDRAutoRun"=dword:00000000 [HKEY_USERS\s-1-5-18\software\microsoft\windows\currentversion\policies\explorer] "NoDriveTypeAutoRun"=dword:00000091 "CDRAutoRun"=dword:00000000 [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\shellserviceobjectdelayload] "PostBootReminder"="{7849596a-48ea-486e-8937-a2a3009f31a9}" "CDBurn"="{fbeb8a05-beee-4442-804e-409d6c4515e9}" "WebCheck"="{E6FB5E20-DE35-11CF-9C87-00AA005127ED}" "SysTray"="{35CEC8A3-2BE6-11D2-8773-92E220524153}" [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^chris^Start Menu^Programs^Startup^bs5-zxlbme.exe] "path"="C:\\Documents and Settings\\chris\\Start Menu\\Programs\\Startup\\bs5-zxlbme.exe" "backup"="C:\\WINDOWS\\pss\\bs5-zxlbme.exeStartup" "location"="Startup" "command"="C:\\Documents and Settings\\chris\\Start Menu\\Programs\\Startup\\bs5-zxlbme.exe" "item"="bs5-zxlbme" [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^chris^Start Menu^Programs^Startup^initial.cfg] "path"="C:\\Documents and Settings\\chris\\Start Menu\\Programs\\Startup\\initial.cfg" "backup"="C:\\WINDOWS\\pss\\initial.cfgStartup" "location"="Startup" "command"="C:\\Documents and Settings\\chris\\Start Menu\\Programs\\Startup\\initial.cfg" "item"="initial" [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^chris^Start Menu^Programs^Startup^saapau.dat] "path"="C:\\Documents and Settings\\chris\\Start Menu\\Programs\\Startup\\saapau.dat" "backup"="C:\\WINDOWS\\pss\\saapau.datStartup" "location"="Startup" "command"="C:\\Documents and Settings\\chris\\Start Menu\\Programs\\Startup\\saapau.dat" "item"="saapau" [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^chris^Start Menu^Programs^Startup^saap_kyf.dat] "path"="C:\\Documents and Settings\\chris\\Start Menu\\Programs\\Startup\\saap_kyf.dat" "backup"="C:\\WINDOWS\\pss\\saap_kyf.datStartup" "location"="Startup" "command"="C:\\Documents and Settings\\chris\\Start Menu\\Programs\\Startup\\saap_kyf.dat" "item"="saap_kyf" [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\8c2f4ecf3c9e] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="bidispl5" "hkey"="HKLM" "command"="C:\\WINDOWS\\System32\\bidispl5.exe" "inimapping"="0" [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\bxxs5] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="bxxs5" "hkey"="HKLM" "command"="RunDLL32.EXE C:\\WINDOWS\\bxxs5.dll,DllRun" "inimapping"="0" [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CARPService] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="carpserv" "hkey"="HKLM" "command"="carpserv.exe" "inimapping"="0" [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DrvLsnr] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="DrvLsnr" "hkey"="HKLM" "command"="C:\\Program Files\\Analog Devices\\SoundMAX\\DrvLsnr.exe" "inimapping"="0" [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Free Download Manager] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="fdm" "hkey"="HKCU" "command"="C:\\Program Files\\Free Download Manager\\fdm.exe -autorun" "inimapping"="0" [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\psnP3pO] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="odponfig" "hkey"="HKLM" "command"="odponfig.exe" "inimapping"="0" [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QCn5Kx1cW] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="QCn5Kx1cW" "hkey"="HKLM" "command"="C:\\documents and settings\\chris\\local settings\\temp\\QCn5Kx1cW.exe" "inimapping"="0" [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="qttask" "hkey"="HKLM" "command"="\"C:\\Program Files\\QuickTime\\qttask.exe\" -atboottime" "inimapping"="0" [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Rdqlck] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="Rdqlck" "hkey"="HKLM" "command"="C:\\documents and settings\\chris\\local settings\\temp\\Rdqlck.exe" "inimapping"="0" [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Start WingMan Profiler] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="" "hkey"="HKCU" "command"="" "inimapping"="0" [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="jusched" "hkey"="HKLM" "command"="C:\\Program Files\\Java\\j2re1.4.2_06\\bin\\jusched.exe" "inimapping"="0" [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TkBellExe] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="realsched" "hkey"="HKLM" "command"="\"C:\\Program Files\\Common Files\\Real\\Update_OB\\realsched.exe\" -osboot" "inimapping"="0" [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders] "SecurityProviders"="msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost] LocalService REG_MULTI_SZ Alerter\0WebClient\0LmHosts\0RemoteRegistry\0upnphost\0SSDPSRV\0\0 NetworkService REG_MULTI_SZ DnsCache\0\0 rpcss REG_MULTI_SZ RpcSs\0\0 imgsvc REG_MULTI_SZ StiSvc\0\0 termsvcs REG_MULTI_SZ TermService\0\0 HTTPFilter REG_MULTI_SZ HTTPFilter\0\0 HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost *netsvcs* Ip6FwHlp Completion time: 06-12-17 17 11.14C:\ComboFix.txt ... 06-12-17 17:06 --------------------------------------------------------- AVG Anti-Spyware - Scan Report --------------------------------------------------------- + Created at: 4:07:59 PM 12/18/2006 + Scan result: C:\System Volume Information\_restore{BB888FFE-4445-41B8-9B3B-F91E1712BA55}\RP718\A0183641.vxd/C:/WINDOWS/system32/exdl.exe -> Adware.BargainBuddy : Cleaned with backup (quarantined). C:\System Volume Information\_restore{BB888FFE-4445-41B8-9B3B-F91E1712BA55}\RP718\A0183641.vxd/C:/WINDOWS/system32/exul.exe -> Adware.BargainBuddy : Cleaned with backup (quarantined). C:\System Volume Information\_restore{BB888FFE-4445-41B8-9B3B-F91E1712BA55}\RP718\A0183641.vxd/C:/WINDOWS/system32/javexulm.vxd -> Adware.BargainBuddy : Cleaned with backup (quarantined). C:\System Volume Information\_restore{BB888FFE-4445-41B8-9B3B-F91E1712BA55}\RP718\A0183641.vxd/C:/WINDOWS/system32/mqexdlm.srg -> Adware.BargainBuddy : Cleaned with backup (quarantined). C:\System Volume Information\_restore{BB888FFE-4445-41B8-9B3B-F91E1712BA55}\RP718\A0183646.vxd/C:/Program Files/NaviSearch/bin/nls.exe -> Adware.BargainBuddy : Cleaned with backup (quarantined). C:\System Volume Information\_restore{BB888FFE-4445-41B8-9B3B-F91E1712BA55}\RP718\A0183646.vxd/C:/WINDOWS/system32/nvms.dll -> Adware.BargainBuddy : Cleaned with backup (quarantined). C:\System Volume Information\_restore{BB888FFE-4445-41B8-9B3B-F91E1712BA55}\RP718\A0183647.ax/C:/Program Files/CashBack/bin/cashback.exe -> Adware.BargainBuddy : Cleaned with backup (quarantined). C:\System Volume Information\_restore{BB888FFE-4445-41B8-9B3B-F91E1712BA55}\RP718\A0183647.ax/C:/Program Files/CashBack/bin/cb.exe -> Adware.BargainBuddy : Cleaned with backup (quarantined). C:\System Volume Information\_restore{BB888FFE-4445-41B8-9B3B-F91E1712BA55}\RP718\A0183647.ax/C:/Program Files/CashBack/bin/flash.exe -> Adware.BargainBuddy : Cleaned with backup (quarantined). C:\System Volume Information\_restore{BB888FFE-4445-41B8-9B3B-F91E1712BA55}\RP718\A0183647.ax/C:/WINDOWS/system32/mscb.dll -> Adware.BargainBuddy : Cleaned with backup (quarantined). C:\System Volume Information\_restore{BB888FFE-4445-41B8-9B3B-F91E1712BA55}\RP718\A0183643.exe -> Adware.BestPhrases : Cleaned with backup (quarantined). C:\System Volume Information\_restore{BB888FFE-4445-41B8-9B3B-F91E1712BA55}\RP718\A0183644.dll -> Adware.EZula : Cleaned with backup (quarantined). C:\System Volume Information\_restore{BB888FFE-4445-41B8-9B3B-F91E1712BA55}\RP718\A0183645.exe -> Adware.IEDriver : Cleaned with backup (quarantined). C:\System Volume Information\_restore{BB888FFE-4445-41B8-9B3B-F91E1712BA55}\RP718\A0183642.dll -> Adware.Minibug : Cleaned with backup (quarantined). C:\WINDOWS\system32\jwmvq.dll -> Adware.PurityScan : Cleaned with backup (quarantined). C:\System Volume Information\_restore{BB888FFE-4445-41B8-9B3B-F91E1712BA55}\RP718\A0183641.vxd/C:/WINDOWS/system32/msexreg.exe -> Dialer.Small : Cleaned with backup (quarantined). C:\System Volume Information\_restore{BB888FFE-4445-41B8-9B3B-F91E1712BA55}\RP718\A0183640.exe -> Downloader.Agent.ala : Cleaned with backup (quarantined). C:\System Volume Information\_restore{BB888FFE-4445-41B8-9B3B-F91E1712BA55}\RP718\A0183637.exe -> Downloader.Swizzor.cw : Cleaned with backup (quarantined). C:\System Volume Information\_restore{BB888FFE-4445-41B8-9B3B-F91E1712BA55}\RP718\A0183638.exe -> Downloader.Swizzor.cw : Cleaned with backup (quarantined). C:\System Volume Information\_restore{BB888FFE-4445-41B8-9B3B-F91E1712BA55}\RP718\A0183639.exe -> Trojan.Small : Cleaned with backup (quarantined). ::Report end Incident Status Location Adware:adware/ezula Not disinfected c:\windows\system32\ezPopStub.exe Adware:adware/exact.bargainbuddy Not disinfected c:\windows\system32\vx0.nls Adware:adware/statblaster Not disinfected c:\windows\downloaded program files\WildApp.inf Adware:adware/keenvalue Not disinfected c:\windows\system32\drivers\etc\hosts.bho Adware:adware/sidesearch Not disinfected c:\windows\sepsd.bin Potentially unwanted tool:application/myway Not disinfected c:\program files\MyWay Adware:adware/downloadware Not disinfected c:\program files\Recommended Hotfix - 421701D Adware:adware/winad Not disinfected c:\program files\Winad Client Spyware:spyware/apropos Not disinfected C:\Documents and Settings\chris\Application Data\POP! Adware:adware/wintools Not disinfected Windows Registry Adware:adware/instdollars Not disinfected Windows Registry Adware:adware/wupd Not disinfected Windows Registry Potentially unwanted tool:application/mywebsearch Not disinfected hkey_classes_root\clsid\{147A976E-EEE1-4377-8EA7-4716E4CDD239} Adware:adware/dyfuca Not disinfected Windows Registry Spyware:spyware/media-motor Not disinfected Windows Registry Adware:adware/virtualbouncer Not disinfected Windows Registry Adware:adware/ncase Not disinfected Windows Registry Adware:adware/memorywatcher Not disinfected Windows Registry Adware:adware/iedriver Not disinfected Windows Registry Adware:adware/otx Not disinfected Windows Registry Adware:adware/powersearch Not disinfected Windows Registry Adware:adware/elitebar Not disinfected Windows Registry Adware:adware/ist.sidefind Not disinfected Windows Registry Adware:adware/bookedspace Not disinfected Windows Registry Adware:adware/ist.istbar Not disinfected Windows Registry Adware:adware/gator Not disinfected Windows Registry Spyware:Cookie/PointRoll Not disinfected C:\Documents and Settings\chris\Cookies\chris@ads.pointroll[2].txt Spyware:Cookie/Atwola Not disinfected C:\Documents and Settings\chris\Cookies\chris@atwola[1].txt Spyware:Cookie/QuestionMarket Not disinfected C:\Documents and Settings\chris\Cookies\chris@questionmarket[2].txt Spyware:Cookie/Statcounter Not disinfected C:\Documents and Settings\chris\Cookies\chris@statcounter[2].txt Spyware:Cookie/Hitbox Not disinfected C:\FOUND.016\FILE0004.CHK Adware:Adware/PurityScan Not disinfected C:\QooBox\Purity\Program Files\YSTEM~1\scanregw.exe Adware:Adware/PurityScan Not disinfected C:\QooBox\Purity\WINDOWS\system32\TSKS~1\?ttrib.exe Adware:Adware/eZula Not disinfected C:\RECYCLED\NPROTECT\00923408.lnk Adware:Adware/eZula Not disinfected C:\RECYCLED\NPROTECT\00923409.lnk Adware:Adware/eZula Not disinfected C:\RECYCLED\NPROTECT\00923410.lnk Adware:Adware/EliteBar Not disinfected C:\WINDOWS\blocklist.reg Adware:Adware/BookedSpace Not disinfected C:\WINDOWS\pss\bs5-zxlbme.exeStartup Adware:Adware/SAHAgent Not disinfected C:\WINDOWS\system32\xmltok.dll chris - 06-12-18 16:23:56.34 Service Pack 1 ComboFix 06.12.01W - Running from: "C:\Documents and Settings\chris\Desktop" (((((((((((((((((((((((((((((((((((((((((((( Other Deletions ))))))))))))))))))))))))))))))))))))))))))))))))) ~ ~ ~ ~ ~ ~ ~ ~ ~ ~ ~ ~ ~ ~ Purity ~ ~ ~ ~ ~ ~ ~ ~~ ~ ~ ~ ~ ~ ~ ~ ~ ~ ~ ~ Folders Quarantined: C:\qoobox\purity\Documents and Settings\chris\Application Data\APPATC~1 C:\qoobox\purity\Documents and Settings\chris\Application Data\MCROSO~1 C:\qoobox\purity\Documents and Settings\chris\My Documents\CROSOF~1 C:\qoobox\purity\Documents and Settings\chris\My Documents\ICROSO~1 C:\qoobox\purity\Program Files\ICROSO~1.NET C:\qoobox\purity\Program Files\YSTEM~1 C:\qoobox\purity\Program Files\Common Files\CROSOF~1 C:\qoobox\purity\Program Files\Common Files\ICROSO~1 C:\qoobox\purity\Program Files\Common Files\MANTEC~1 C:\qoobox\purity\Program Files\YSTEM~1\scanregw.exe C:\qoobox\purity\Program Files\YSTEM~1\YSTEM~1 C:\qoobox\purity\WINDOWS\SMBOLS~1 C:\qoobox\purity\WINDOWS\system32\TSKS~1 C:\qoobox\purity\WINDOWS\system32\TSKS~1\?ttrib.exe ((((((((((((((((((((((((((((((( Files Created from 2006-11-18 to 2006-12-18 )))))))))))))))))))))))))))))))))) 2006-12-18 01:40 <DIR> d-------- C:\WINDOWS\system32\ActiveScan 2006-12-18 01:15 <DIR> d-------- C:\bintheredunthat 2006-12-17 17:03 <DIR> d-------- C:\WINDOWS\erdnt 2006-12-17 16:31 <DIR> d-------- C:\bfu 2006-12-17 16:20 3,968 --a------ C:\WINDOWS\system32\drivers\AvgAsCln.sys 2006-12-17 16:19 <DIR> d-------- C:\Program Files\Grisoft 2006-12-17 16:15 <DIR> d-------- C:\Program Files\CleanUp! 2006-12-16 20:05 5,248 --a------ C:\WINDOWS\system32\drivers\vax347s.sys 2006-12-16 20:05 159,616 --a------ C:\WINDOWS\system32\drivers\vax347b.sys 2006-12-16 20:05 <DIR> d-------- C:\Program Files\Alcohol Soft 2006-12-16 20:02 <DIR> d-------- C:\Program Files\Alcoholer 2006-12-16 17:56 <DIR> d-------- C:\WINDOWS\çasks 2006-12-11 18:55 991,232 --a------ C:\WINDOWS\system32\esent.dll 2006-12-09 01:22 <DIR> d-------- C:\Program Files\Hijackthis 2006-12-09 00:41 <DIR> d-------- C:\Documents and Settings\All Users.WINDOWS\Application Data\Zenturi 2006-12-03 16:46 <DIR> d-------- C:\WINDOWS\qqzo 2006-12-03 16:12 131 --a-s---- C:\WINDOWS\test.bat (((((((((((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))) 2006-12-18 03:34 -------- d-------- C:\Program Files\VentSrv 2006-12-18 03:33 -------- d-------- C:\Program Files\Spybot - Search & Destroy 2006-12-18 03:20 -------- d-------- C:\Program Files\Internet Explorer 2006-12-18 03:19 -------- d-------- C:\Program Files\Google 2006-12-18 03:14 -------- d-------- C:\Program Files\AIM 2006-12-18 01:47 -------- d-------- C:\Program Files\WinZip 2006-12-18 01:47 -------- d-------- C:\Program Files\WinRAR 2006-12-18 01:47 -------- d-------- C:\Program Files\MagicISO 2006-12-18 01:45 -------- d-------- C:\Program Files\Ventrilo 2006-12-17 21:35 -------- d-a------ C:\Program Files\Common Files 2006-12-17 16:01 -------- d-------- C:\Program Files\Mozilla Firefox 2006-12-16 13:10 -------- d-------- C:\Program Files\NRTV 2006-12-11 19:12 -------- d-------- C:\Program Files\Outlook Express 2006-12-11 19:12 -------- d-------- C:\Program Files\Common Files\System 2006-12-11 19:11 -------- d-------- C:\Program Files\Windows Media Player 2006-12-01 19:32 -------- d-------- C:\Program Files\rFactor1150 2006-11-30 22:06 -------- d-------- C:\Program Files\Axis Communications 2006-11-30 12:05 -------- d-------- C:\Program Files\Common Files\Microsoft Shared 2006-11-13 21:47 -------- d-------- C:\Program Files\Common Files\Wise Installation Wizard 2006-11-05 02:34 -------- d-------- C:\Program Files\Teamspeak2_RC2 2006-09-29 15:22 56 -r-hs---- C:\WINDOWS\system32\E67C4BEBB8.sys 2006-09-29 15:22 3350 --ahs---- C:\WINDOWS\system32\KGyGaAvL.sys (((((((((((((((((((((((((((((((((((((((((( Reg Loading Points )))))))))))))))))))))))))))))))))))))))))))))))) *Note* empty entries are not shown [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run] "Start WingMan Profiler"="" "Yahoo! Pager"="\"C:\\PROGRA~1\\Yahoo!\\MESSEN~1\\YAHOOM~1.EXE\" -quiet" "Free Download Manager"="C:\\Program Files\\Free Download Manager\\fdm.exe -autorun" [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run] "QOELOADER"="\"C:\\Program Files\\CA\\eTrust EZ Armor\\eTrust EZ Anti-Spam\\QSP-2.1.212.0\\QOELoader.exe\"" "VetTray"="C:\\PROGRA~1\\CA\\ETRUST~1\\ETRUST~2\\VetTray.exe" "Zone Labs Client"="C:\\PROGRA~1\\CA\\ETRUST~1\\ETRUST~3\\ca.exe" "QuickTime Task"="\"C:\\Program Files\\QuickTime\\qttask.exe\" -atboottime" "SunJavaUpdateSched"="C:\\Program Files\\Java\\jre1.5.0_02\\bin\\jusched.exe" "ATIPTA"="C:\\Program Files\\ATI Technologies\\ATI Control Panel\\atiptaxx.exe" "TkBellExe"="\"C:\\Program Files\\Common Files\\Real\\Update_OB\\realsched.exe\" -osboot" "P17Helper"="Rundll32 P17.dll,P17Helper" "ATICCC"="\"C:\\Program Files\\ATI Technologies\\ATI.ACE\\cli.exe\" runtime -Delay" "Adobe Photo Downloader"="\"C:\\Program Files\\Adobe\\Photoshop Album Starter Edition\\3.0\\Apps\\apdproxy.exe\"" "!AVG Anti-Spyware"="\"C:\\Program Files\\Grisoft\\AVG Anti-Spyware 7.5\\avgas.exe\" /minimized" [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents] [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\IMAIL] "Installed"="1" [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MAPI] "Installed"="1" "NoChange"="1" [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MSFS] "Installed"="1" [HKEY_CURRENT_USER\software\microsoft\internet explorer\desktop\components] "DeskHtmlVersion"=dword:00000110 "DeskHtmlMinorVersion"=dword:00000005 "Settings"=dword:00000001 "GeneralFlags"=dword:00000001 [HKEY_CURRENT_USER\software\microsoft\internet explorer\desktop\components\0] "Source"="About:Home" "SubscribedURL"="About:Home" "FriendlyName"="My Current Home Page" "Flags"=dword:00000002 "Position"=hex:2c,00,00,00,cc,00,00,00,00,00,00,00,34,03,00,00,e2,02,00,00,00,\ 00,00,00,01,00,00,00,01,00,00,00,01,00,00,00,00,00,00,00,00,00,00,00 "CurrentState"=hex:04,00,00,40 "OriginalStateInfo"=hex:18,00,00,00,a0,00,00,00,00,00,00,00,80,02,00,00,3a,02,\ 00,00,04,00,00,40 "RestoredStateInfo"=hex:18,00,00,00,a0,00,00,00,00,00,00,00,80,02,00,00,3a,02,\ 00,00,01,00,00,00 [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\sharedtaskscheduler] "{438755C2-A8BA-11D1-B96B-00A0C90312E1}"="Browseui preloader" "{8C7461EF-2B13-11d2-BE35-3078302C2030}"="Component Categories cache daemon" [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shellexecutehooks] "{AEB6717E-7E19-11d0-97EE-00C04FD91972}"="" "{57B86673-276A-48B2-BAE7-C6DBB3020EB8}"="AVG Anti-Spyware 7.5" [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer] "NoDriveTypeAutoRun"=dword:00000091 "DriveConfiguration"=hex:2e,55,a9,07,cf,ff,47,95,2e,0c,e9,9d,8e,c1,89,be,64,d2,\ de,66,b9,32,de,42,d0,2a,81,f9,09,a8,c9,19,05,da,ff,51,0b,fc,3f,e2,aa,6f,36,\ 50,a0,0a,2b,5d,fb,b4,3c,37,7e,33,eb,f1,46,3f,d9,30,ad,db,d0,27,6f,e5,07,c5,\ 0b,eb,a2,2c,6d,40,79,66,e9,4f,1a,53,ca,30,11,e6,ec,79,67,91,26,57,68,fe,cd,\ dd,a9,00,b5,9b,4a,c9,99,73,79,5d,bd,a8,37,46,d1,38,5f,8a,19,6c,e4,da,cb,ad,\ 5a,0c,b8,99,b8,cb,2f,56,5c,8e,1f,26,4f,c6,7b,3c,cb,5c,e3,ce,fa,5a,80,6c,01,\ e8,30,90,3d,7b,e3,76,cc,49,44,a9,50,00,9c,ef,ef,b7,f4,ae,9e,25,7a,ef,a0,11,\ 27,dc,49,09,9e,94,08,57,56,c5,a4,31,fb,7d,c6,30,12,3d,b8,03,dc,4f,6c,65,7e,\ 5a,c0,4c,5e,34,00,64,d0,f7,ad,bb,f2,57,7d,be,d4,33,a2,64,dd,69,4f,a9,6a,ef,\ 79,3e,b7,20,da,7f,03,53,3c,a5,ef,b2,fb,3d,28,49,ad,d8,45,5e,67,05,f2,01,be,\ 7c,4f,e3,70,9c,93,6c,1a,18,f5,07,42,ed,cc,c1,9a,97,f5,12,83,84,75,fa,d1,c9,\ 5f,50,ce,13,f8,57,81,e1,1a,93,30,f1,d6,db,23,f8,5d,ae,ab,96,21,ca,63,89,37,\ fb,b6,21,00,32,a1,f4,08,d6,ba,d2,2e,5f,72,fe,06,20,97,90,7b,64,1c,48,b9,bd,\ 1d,64,49,99,1e,e5,7e,16,94,fc,11,18,a6,c2,08,98,34,29,dc,3e,19,33,da,33,ad,\ 62,ca,30,8e,6f,cf,dc,a1,3e,8e,54,53,12,92,0b,25,fd,ef,d4,67,9b,26,3d,43,00,\ 49,1f,fe,ef,60,73,7b,4d,0a,67,01,d5,67,b1,3d,0c,ac,24,8b,78,3b,81,71,0d,e4,\ 8f,6c,e8,2b,6e,f0,40,be,28,aa,99,5e,89,08,3a,85,31,fb,e2,4b,e7,fb,b7,8a,30,\ 4c,7f,41,20,81,12,36,71,3e,0f,e0,d2,42,cf,83,81,a4,97,9d,1c,5c,12,81,b4,06,\ fe,42,24,e3,25,d2,a1,21,8f,6b,92,5c,f6,2e,a1,64,7a,0a,9d,41,96,e0,53,74,53,\ e5,d5,80,bb,47,1b,a9,91,13,10,fc,3f,56,9e,8f,10,82,7c,0a,9f,14,48,66,8f,74,\ d5,f5,7d,1d,c6,a3,33,fd,5c,7b,1f,1f,8c,6d,03,87,55,4e,ed,5d,50,20,6a,4f,89,\ 94,f7,30,8d,cd,b8,e5,c4,67,6d,81,01,b8,a1,af,58,55,24,50,2f,ef,bc,66,98,e1,\ 18,31,de,5b,05,97,5e,01,e4,c9,99,20,5c,24,87,9e,4c,55,2d,3b,04,c1,71,17,b4,\ 24,2e,74,24,78,84,be,a6,18,71,c8,49,25,a6,59,50,29,93,e7,e3,fa,c5,a2,03,e1,\ 71,b4,c3,fc,51,c8,b6,e1,ae,c9,a4,84,be,ec,81,5b,31,f0,9f,c0,07,a4,a4,96,a4,\ ab,b4,2f,26,7c,7b,6d,f6,ac,48,28,9d,70,12,d0,da,5d,a2,54,f1,73,8f,42,45,5a,\ 6d,2f,29,eb,42,59,f4,f2,39,8b,53,33,9b,41,e4,ab,fa,0d,00,17,af,39,d7,bb,87,\ ae,c3,5c,ba,14,d6,8e,1d,3b,b5,36,98,ba,aa,47,d9,d6,f4,cf,4a,a5,62,37,41,c5,\ 20,c6,77,64,d0,68,bc,5b,dc,ae,e9,1b,0b,15,15,ac,53,8b,0c,00,ee,2f,fc,d7,b0,\ 59,72,e0,98,da,85,21,a5,85,51,98,eb,ed,a8,23,e5,71,03,9d,0d,76,bf,4a,aa,f4,\ 86,75,ea,34,0a,57,30,d8,fa,3b,af,1b,2e,e0,38,5a,25,1f,50,d3,b2,cd,86,ad,f2,\ e3,97,39,81,dc,63,78,ee,5f,c3,dd,6c,1e,1c,54,ca,fe,cf,82,a5,78,81,4f,dc,3f,\ 28,a2,44,23,66,6b,9d,35,16,e7,c5,2c,25,1f,2c,07,a4,b2,88,f4,1b,d5,ca,71,1f,\ 98,50,b1,27,6b,5c,41,9b,e0,c5,eb,2e,b3,ec,da,6e,07,f2,00,99,f2,28,b5,b3,3c,\ c7,a1,d5,bf,e2,db,c8,e4,98,52,d2,b6,8e,6d,d0,17,9c,ee,85,8b,c7,1c,32,21,70,\ 21,67,f8,ca,b1,18,02,91,ec,f3,08,fa,86,f1,ef,e5,25,2c,39,5a,0a,f0,ce,33,f4,\ 14,fd,16,41,8b,be,a7,57,36,3a,fb,42,fc,8d,4f,9e,1d,ca,fa,b8,c3,3f,a0,f0,da,\ fb,a9,62,22,8e,fa,c5,83,10,c1,92,a0,65,ff,69,ae,be,a1,b1,87,63,67,7f,fa,b0,\ ca,ba,66,5e,2f,7c,87,04,61,bb,8f,de,3e,28,79,cc,b0,57,9a,9e,e0,21,79,8e,a6,\ 47,e0,0e,43,57,33,c5,52,d4,01,d4,fc,91,d9,5d,6c,5e,5f,46,82,e6,9e,3a,cc,d8,\ a0,f1,b2,45,3c,b2,f0,b4,30,16,49,ee,6f,0e,7a,4d,bc,27,6e,f6,78,0d,b0,93,b9,\ 4e,25,c7,9b,61,fb,5c,db,e7,dd,9e,a2,30,69,02,9e,01,e3,0c,57,95,2b,6f,c1,e1,\ ec,75,0d,1c,17,a1,c5,7f,90,93,18,4a,26,2d,72,07,c9,f4,50,12,f7,b9,53,59,78,\ 78,93,61,4b,80,35,89,e0,d4,b0,93,87,d2,ac,60,29,12,bc,fb,36,91,8e,d9,de,0f,\ f1,60,84,b5,76,a5,70,fb,ca,7a,c4,c9,43,a8,b1,dc,b8,79,ea,6c,96,7a,59,0c,30,\ 7e,11,d1,57,e6,85,b6,2b,20,f7,3f,30,6e,33,5d,a5,e9,7c,92,11,c5,c7,55,1e,d6,\ 27,b8,aa,53,89,48,1c,db,a1,35,f4,e1,24,b3,a6,5c,38,9f,a9,3b,28,66,cb,b5,5d,\ 23,c7,68,8a,07,19,b3,26,fe,11,75,1f,8f,27,18,cd,04,8e,cf,24,cc,0b,1b,2f,1d,\ 08,94,b9,dd,e4,e6,4d,c3,8e,1a,62,ba,52,17,cf,86,f3,68,85,a9,f9,3f,7c,88,4c,\ ba,ee,ca,02,66,c4,01,76,01,4d,8c,9a,85,ac,bb,8e,61,b7,35,71,0a,0a,97,76,b2,\ 21,5e,3b,57,98,07,57,00,e9,74,32,44,df,92,1a,0b,4d,39,93,98,ff,54,ee,c8,f1,\ 41,1d,94,bf,7a,c5,dd,5d,76,95,69,08,ca,d6,28,7c,94,44,bd,68,19,1d,39,1f,ad,\ 77,2a,90,d3,d6,d4,78,a6,fe,be,d6,78,06,71,9f,e2,ae,7c,b4,19,f2,bb,11,f0,e0,\ d9,47,de,a6,14,2c,b0,ef,40,d1,83,70,0f,b4,2c,bd,8f,37,d7,62,f4,51,ed,2f,98,\ 84,3c,d3,40,0f,52,ac,a1,64,29,de,23,dc,0a,a3,e4,aa,ab,e1,00,0d,9a,02,10,ca,\ df,00,f0,da,dd,bf,c5,60,7a,a0,3f,dd,80,53,1c,a7,42,f8,ee,98,82,3a,1d,03,92,\ 54,2f,ec,ba,74,47,78,da,09,ec,a2,50,07,0c,30,1c,82,41,e5,42,7b,52,f9,70,fa,\ fd,c6,e1,5c,f4,c4,81,ef,25,b7,52,bc,3e,27,0e,a4,71,11,0e,af,74,dc,6a,a0,cd,\ 8e,62,cd,4c,40,fd,2d,d9,cf,ef,b3,6f,d5,c0,da,69,d8,2b,81,fe,c0,c4,fa,06,8f,\ de,5e,06,4c,ac,23,6b,40,a6,f0,11,65,2f,af,09,1c,74,e4,99,1e,97,3e,83,b5,0d,\ 6c,8a,2c,44,32,33,84,8a,bc,c9,68,2a,32,a3,63,d8,8c,a9,51,4f,a8,15,14,38,9a,\ 77,88,4e,43,fc,b8,c0,25,ef,52,d6,75,80,58,d8,72,c5,19,2c,f6,fe,bd,be,4b,1d,\ eb,a4,3f,86,1e,02,7b,13,f9,2c,10,5b,48,0b,53,34,19,c2,eb,76,73,91,28,02,45,\ f9,96,03,9d,21,d3,74,1a,78,9d,e2,a4,9c,2f,74,5a,7a,ce,28,cc,b7,9f,5f,6b,4f,\ bb,9c,3d,7d,85,89,d6,da,3b,3b,83,c8,cc,b6,c8,11,ea,b4,0d,cc,5f,a2,94,cb,a4,\ ec,ae,8c,b0,7a,2f,c7,0e,7a,1f,63,32,61,b2,17,0d,2c,7a,7d,df,ec,dc,b8,4d,81,\ c1,5b,b3,a6,8d,86,bb,2d,55,52,2f,8c,4c,70,0b,99,7f,0c,d7,92,c3,f8,33,60,eb,\ 06,b3,1d,3e,b5,ee,d3,27,11,d2,87,2f,d4,3a,76,29,d1,c3,9e,ac,93,db,80,c7,41,\ a1,25,ef,c4,d6,5f,3c,2c,f2,51,d5,50,f6,31,a9,b5,65,4d,61,b2,4a,4c,92,d1,15,\ b7,36,77,a5,b7,5d,c8,a6,21,20,c5,1d,af,d7,b7,41,90,8b,d1,8d,24,ae,11,13,00,\ 0a,67,13,39,f8,19,cc,df,d2,66,92,c7,ab,69,21,8e,3d,41,31,da,22,6f,4a,e3,47,\ 7f,da,ab,9f,eb,85,a9,14,3c,bc,c4,c3,72,91,1e,68,a6,ca,37,17,ee,34,74,2e,81,\ 39,68,87,1c,b5,51,f2,a4,06,e6,e2,0c,62,50,66,79,6e,76,5b,a4,0c,7d,e0,80,74,\ 8f,0b,1d,86,dc,da,cd,5e,df,6d,85,2a,e3,72,86,38,c5,e0,3c,53,fb,e8,66,50,d5,\ 28,77,e4,03,a4,3c,b8,58,ee,c0,c0,cd,2b,6d,c8,c9,3b,73,50,a0,b0,6d,99,59,01,\ 42,00,b4,82,4a,8b,6b,93,b3,c2,b9,17,22,c0,19,28,9d,89,50,08,a8,9e,ad,5b,ae,\ cf,90,94,a3,51,29,ae,e8,10,82,1c,6f,46,c0,02,1f,4d,a5,a5,7a,b1,5a,20,7d,8a,\ 6c,59,c7,09,14,34,ff,50,bb,07,6f,87,bd,4d,f4,2c,6e,9e,1b,aa,5a,de,84,2e,d1,\ b5,8b,b6,a4,40,27,6a,29,07,12,30,85,2e,2b,7b,2a,ef,18,63,9e,47,2f,fb,7e,f0,\ 97,df,c3,90,aa,0c,45,30,9e,f5,7d,ef,65,d2,8f,f8,d1,3c,88,b1,fc,f7,e4,35,e7,\ 0f,53,05,61,26,bc,fa,2b,9b,83,7f,59,90,08,fc,fb,96,70,95,fd,6a,a7,15,4c,54,\ a5,25,3a,6d,f1,c2,24,b0,64,ee,52,54,30,a5,1e,59,20,12,59,61,21,03,ea,c2,02,\ 9b,b8,d9,78,46,cb,a1,65,f2,ad,84,5a,7d,17,71,5a,69,c9,2e,e1,d7,ba,f0,24,b3,\ 71,29,9b,2c,b3,a1,bd,67,5e,c8,9a,74,95,4a,4f,81,1d,e5,26,4d,07,77,bc,e0,90,\ 5c,d7,79,45,f6,17,c9,6b,8d,7b,5e,9d,5a,28,62,b7,de,66,85,f3,78,ec,38,52,37,\ 5d,1c,3e,ed,12,ba,6d,85,1a,74,08,96,7f,bb,0d,37,cb,83,f1,16,cb,f4,8a,c4,93,\ 63,2d,53,c2,80,13,23,08,d1,02,f9,e5,bd,29,51,b3,ae,4b,f6,e6,f3,20,cf,93,82,\ f8,fc,2f,86,a1,21,99,f4,8b,02,5b,c2,2a,51,2d,53,9c,c3,bb,36,8c,69,a9,11,56,\ 3e,d3,d8,6b,fc,d9,43,f7,35,db,7e,c2,9e,81,22,54,ae,3f,64,5d,68,d7,8c,54,74,\ 1f,a9,5d,75,04,84,70,97,cf,d2,b8,67,a7,ae,ad,e8,57,46,b6,e3,52,d4,d2,7e,f4,\ d0,75,10,0b,63,71,34,96,1f,66,1c,cc,ee,e2,29,61,49,cd,b8,04,ab,05,3e,2c,44,\ 45,97,14,f1,4b,9b,04,6c,3a,f3,d3,c0,3d,2a,aa,01,6d,07,0a,39,f5,1b,11,a5,73,\ 96,f9,22,a2,5e,e1,e2,36,63,d0,63,08,2c,f7,a2,73,e1,36,8b,fe,7f,e2,b5,3b,de,\ c6,4c,ee,95,67,4e,72,a9,8c,fb,59,72,fe,86,53,ee,8d,11,51,5a,53,d8,ea,04,3d,\ ad,fd,5b,c6,a4,98,48,06,0f,18,c1,ec,ad,92,9a,c7,1e,72,9f,0c,9a,62,e1,53,e3,\ 6e,4d,a2,78,65,83,ee,0c,82,e4,df,36,4b,ed,d4,6a,ba,c4,a6,28,9b,11,b2,73,35,\ 0f,92,85,2c,e3,2a,c1,a6,2c,6b,e9,ad,db,53,91,d4,45,b4,d4,1e,76,37,45,1b,c9,\ a0,28,54,b5,54,e3,e9,ea,18,af,79,9d,1b,93,42,20,37,93,8a,b5,74,24,3d,a4,ce,\ e4,d7,8b,38,88,84,f6,e0,16,86,2f,b5,54,d8,57,26,80,11,b6,2d,b1,8a,50,8d,de,\ c3,b9,57,ae,03,2a,b3,cf,3f,d3,dd,1b,3d,73,6e,58,f9,27,dd,af,48,7f,45,60,bb,\ d7,69,b3,c6,e5,f5,32,22,8e,06,15,6f,fe,ed,fe,1e,f7,30,e7,8e,69,d2,58,75,44,\ d5,dd,82,8a,fc,b7,41,a8,d5,d2,3e,06,f7,f7,6d,dd,89,43,c9,48,04,d8,ae,9f,39,\ d2,bf,00,95,7c,c2,2e,a4,c4,ce,9f,d4,ed,69,d0,7c,84,3a,dc,1c,95,6d,4d,e6,1e,\ 59,32,7e,c4,60,71,ff,c5,17,5f,3e,2e,a7,8e,52,4e,73,e6,54,6a,fc,f8,63,b2,01,\ 8e,eb,74,ea,87,27,90,66,e2,e5,2c,54,18,8a,a9,df,af,55,d5,ee,0c,e8,62,bb,ce,\ 04,96,c1,c7,94,45,dc,45,ed,fd,ac,32,54,80,3a,80,c0,77,de,3a,e2,64,60,17,63,\ d9,5d,4f,6d,e7,ec,ad,6c,da,82,e6,16,23,13,29,a8,96,7a,f7,73,d6,1b,35,98,0d,\ c7,80,10,e0,df,c0,ef,a1,bd,00,e9,c7,4f,7c,15,9c,05,fc,f1,36,ee,61,a6,a8,1d,\ 7e,d1,79,52,29,f4,56,d6,91,1b,03,a7,d1,81,97,d5,c6,64,e9,2c,1e,86,46,13,b2,\ 2d,65,b4,16,6f,9c,5e,6e,ac,53,27,83,5c,b9,d5,16,0b,b7,ff,73,a1,22,6f,4a,e7,\ 35,cb,bb,47,3e,74,b0,d3,97,af,6f,89,d8,03,6f,d6,4b,e1,6b,58,a1,8a,b6,e8,e3,\ 2e,ce,d8,dc,51,33,79,93,73,7a,e1,ee,f0,9d,eb,b6,25,95,7e,c6,d4,2b,13,49,ca,\ 0b,71,73,bf,1a,bb,6e,7d,09,ad,98,44,2a,23,eb,6e,83,db,bc,4f,21,7b,a9,5f,af,\ d6,cd,9b,47,6b,35,28,88,2e,98,3a,e9,8c,42,34,4d,a9,52,10,d7,ec,25,02,ff,bd,\ 12,58,e6,8d,58,da,e6,17,54,1e,6e,e6,f8,44,0d,18,78,c4,cc,61,46,9b,c1,52,41,\ 7d,e1,dc,29,78,16,10,57,d4,91,28,ab,3f,62,cb,c5,26,46,8d,78,66,c0,b5,7b,24,\ 6b,44,62,f9,8e,33,cd,53,f1,fb,e0,18,ef,5a,f3,8c,cd,55,8a,74,4a,79,87,7b,77,\ 67,9e,d6,c9,90,0a,24,c3,3c,7e,98,db,d1,5f,59,ae,52,30,29,b3,26,4d,45,40,1b,\ dd,8d,c7,aa,02,e5,aa,7c,52,db,51,2e,8b,8a,7a,51,82,be,d1,b6,5d,58,c1,e8,02,\ f5,89,f9,cf,ca,92,82,8c,d2,00,e5,9e,2c,87,d5,7d,be,80,19,68,1f,3c,8c,57,b4,\ 98,69,31,19,d1,c5,3f,c2,9a,94,5d,e0,e2,6c,92,7f,8b,1e,b2,c3,17,b5,79,05,c8,\ 7d,d8,07,ab,58,f4,e3,c2,57,72,41,61,87,f2,cd,d9,0e,d9,e8,54,76,54,9e,00,48,\ 99,d9,70,dd,70,d4,3e,71,f3,d2,f6,79,92,0f,2f,36,5a,f7,fb,8b,76,96,82,0c,f6,\ 50,e9,57,cf,d2,79,a7,23,48,fd,a6,e6,d0,6b,83,f2,2f,c7,45,6c,c3,45,5f,a7,b9,\ ae,84,59,80,04,bc,3a,7e,69,b8,0b,01,3d,62,d7,78,87,b9,79,e3,96,dc,5e,88,e7,\ 64,8d,e8,4a,f7,e4,f1,41,1a,a4,75,a9,47,2f,db,9c,40,11,15,95,a2,3e,d1,d5,bd,\ 9a,f4,06,a3,bf,44,1f,7f,fa,64,87,29,96,98,7d,f7,5e,5c,b7,d5,5d,cf,49,98,e8,\ f4,c9,8f,de,bc,b1,5b,2f,ea,04,01,9b,cb,35,3e,bc,21,44,1a,47,60,2a,c0,8f,1d,\ 77,8d,4b,c3,3a,67,98,88,21,50,42,9f,e1,3b,3f,af,d8,1e,7c,85,f1,48,dc,05,c9,\ f5,7e,67,10,20,3f,a0,31,98,81,1d,35,56,2a,b7,f4,0e,ef,e4,2e,04,d2,2a,ca,21,\ e9,da,1d,46,62,fa,5d,e0,c4,83,f6,bd,77,cc,2d,1d,87,47,03,0d,a5,6b,5c,f0,6f,\ f1,60,5f,f0,43,22,33,6b,32,7f,df,54,e7,49,03,a0,1c,a5,3f,3e,8b,b2,45,e6,a7,\ 6c,33,11,8b,cf,1f,48,30,3f,f3,a2,e2,27,7b,89,f5,e1,e4,bc,b4,d6,88,9a,9a,e6,\ 4f,9d,c5,09,38,25,a7,37,70,77,ff,86,c2,05,07,92,69,ef,ef,22,22,cb,8b,09,84,\ a1,48,49,94,3a,65,7f,95,9b,60,7b,1d,cc,ae,2e,6e,de,ae,c9,02,2b,e0,23,68,e0,\ 52,5b,4f,b9,5c,bf,e0,0c,8d,ed,52,09,e5,38,b8,40,45,4e,1d,bf,23,17,d2,4e,82,\ e0,07,44,22,b8,99,7c,f4,1a,2b,dc,d0,cd,78,04,6a,09,e7,8e,83,db,60,94,5c,ca,\ 5f,73,70,bb,47,cf,62,12,f8,d8,35,1a,a3,cb,bb,a7,dd,bb,50,fa,f3,91,c7,e4,7e,\ 51,a5,2e,37,a0,8d,39,0c,83,fc,e2,73,6a,36,a8,fe,6d,81,11,2f,d5,d1,49,8e,de,\ 42,0d,fa,bb,8d,c7,3d,db,b4,fb,e2,6b,c1,e1,4b,1c,2f,53,fe,26,e7,ea,40,8d,6d,\ 65,e5,a3,5c,4a,66,ce,10,cf,34,8b,a2,fa,4c,b3,19,08,0c,fd,de,0c,45,c5,71,d8,\ 91,0c,5b,20,e7,bf,63,dd,6c,3c,05,f0,8c,12,20,08,4a,08,ef,c5,d4,61,3a,a2,5b,\ 5f,ce,00,21,06,2a,37,d4,22,7b,92,1a,8c,cb,42,6d,a8,75,84,29,32,dc,7f,e3,3b,\ 5c,70,fd,6e,81,04,77,98,77,05,08,67,c2,39,6e,72,2f,88,02,7a,0b,5c,8f,f0,92,\ 4d,64,b7,aa,fe,a8,2a,d2,42,ee,61,55,84,09,b0,c3,65,22,71,a1,a6,07,04,60,49,\ e8,13,8c,f3,7b,1b,46,95,66,28,f4,4b,41,df,37,84,d0,c2,1d,64,b9,b0,99,66,96,\ ab,30,46,49,de,f4,1e,8f,df,b6,cf,d8,31,78,a2,57,0d,21,2f,55,62,74,7f,ca,1a,\ 43,6d,2e,9f,e0,52,8d,9e,d5,e1,da,0a,d5,4f,85,65,f2,b7,4f,3b,0f,be,5d,ef,99,\ 72,8c,e2,72,78,05,f0,2e,67,11,85,82,6f,2e,d0,f9,3e,62,90,e9,24,cf,2d,a6,75,\ 88,3f,f5,2f,a3,54,c4,dc,8f,ee,18,ba,a8,cc,46,1a,09,6b,66,06,a2,cb,05,26,8a,\ 76,1a,e4,96,bf,3b,cf,2a,48,11,3d,4f,c7,0a,35,06,09,4d,8c,dc,36,f3,4d,bf,58,\ 74,5e,10,17,bd,61,f9,c6,4f,d9,01,a4,1a,8e,de,5b,4b,32,8a,cd,d3,44,99,10,fb,\ 35,c9,b7,9d,ca,db,54,94,c1,a1,3a,71,b7,59,88,6f,49,39,63,a9,7a,4b,82,8b,54,\ 7b,f0,87,d2,ee,0d,09,fe,96,d6,ac,57,04,67,ae,75,7d,be,a1,f0,4f,c2,64,7d,65,\ 84,52,5a,1a,c4,b9,f8,4b,b7,8e,a7,b0,07,5f,2f,6c,1c,88,bd,e2,9a,aa,c3,cb,2b,\ 59,d3,85,7e,15,bd,ae,8f,7c,f7,f2,2a,bd,43,21,aa,50,8b,85,07,e5,10,72,10,9a,\ c3,1e,f4,70,f3,b3,07,00,29,a3,c3,6a,51,3c,0d,8f,1a,7c,ba,80,9e,26,52,35,46,\ 15,14,83,e8,d1,3a,48,33,bd,7d,e8,4d,5f,dc,fe,ba,50,9a,4b,80,36,86,f2,89,5f,\ 7e,e8,48,82,36,a6,9f,09,36,21,01,b0,22,fb,d4,4f,3e,fb,19,f4,31,bb,4e,35,09,\ a0,93,c5,80,0f,0d,44,7e,de,88,5c,df,09,60,09,75,a7,a1,38,51,1c,6d,94,3e,8f,\ 9e,9d,8f,9e,ad,fa,1b,51,d2,10,cd,4d,6d,d3,c1,4b,a5,dc,d3,c8,4f,bc,da,fd,11,\ 91,4e,11,c7,d6,86,8e,25,80,7d,11,9e,46,d5,46,85,40,1c,14,73,b3,4f,15,e8,2b,\ 9c,49,35,cb,6c,0b,99,e2,a1,44,aa,be,1c,de,f6,c5,83,7c,eb,c1,41,68,f4,7c,ce,\ cc,e5,8d,30,26,99,71,c2,f6,d9,de,34,e2,80,53,d3,1b,dd,f4,0a,69,59,95,29,45,\ 5a,15,66,9d,67,ed,21,dd,8c,08,6d,64,00,d5,cb,35,05,9b,38,f0,10,0e,6b,00,2a,\ 1f,58,15,96,18,f8,d5,b4,e7,4c,ce,25,ba,9f,b0,30,cd,0c,b9,64,80,41,70,7f,ad,\ 82,96,8f,38,f1,5a,57,e8,0c,cc,f4,75,77,94,e5,e2,fc,e4,77,0c,d0,ab,99,83,18,\ 0c,0f,9a,ab,0e,10,ba,1a,95,46,fc,ed,91,2d,f6,30,75,bc,d4,2f,ea,48,ab,7d,c5,\ a5,0b,3b,37,8e,d3,96,44,47,4a,92,77,80,6b,06,d3,7d,7f,e8,0c,74,f2,cb,f7,37,\ 5f,a6,40,12,ed,d7,5b,f7,de,68,bd,d8,65,90,4b,55,e2,7d,13,97,67,50,3a,7c,ec,\ 6a,35,f4,83,e6,3c,aa,3c,66,fc,e8,4e,13,8d,b4,ae,df,a3,3f,e0,0d,08,81,0d,f4,\ 4a,1d,57,00,b0,8a,69,f9,73,74,52,88,2b,60,93,f7,88,90,76,38,42,26,a2,29,53,\ 8b,ed,16,63,12,71,7f,84,d9,e2,1c,1f,f0,1e,1f,2e,be,06,e2,ac,a0,8d,df,4a,d2,\ 0e,4e,64,93,e3,cd,33,84,33,b2,44,52,0b,a7,29,94,b1,ae,6e,f7,35,63,ce,98,48,\ 81,a7,b1,51,a8,ac,78,be,5e,da,44,98,53,ad,f2,5b,e9,93,87,04,f3,a1,16,6b,bd,\ 85,e4,d3,4d,bc,cb,c0,e9,04,dc,08,d9,15,48,2d,6e,8c,81,ea,44,a6,9c,0c,c3,38,\ fa,83,ec,54,27,b9,52,4c,02,22,66,5e,1f,15,f8,ac,69,da,fb,ec,0c,04,89,62,92,\ 01,26,0b,4b,ef,49,1b,f3,b1,18,aa,8f,43,74,ab,98,4a,35,1d,5b,f0,b7,85,a0,ee,\ 95,9b,8a,ea,b4,44,be,04,84,c0,c7,ac,82,25,b9,b6,01,0c,15,b0,2b,8a,f8,73,43,\ 62,49,f8,2c,78,c8,6d,2f,89,8b,88,f9,1a,4e,1c,e3,ae,d8,ea,77,3c,96,b9,2f,e0,\ 83,a8,7f,d1,4a,c4,16,93,af,d6,61,6e,2b,7e,52,1e,d6,86,5f,cc,8a,70,cd,3d,46,\ 51,2e,4a,d0,e2,29,90,9f,d5,79,68,f7,65,38,19,56,31,5e,4d,0f,4a,84,c2,35,cf,\ ee,42,ba,29,c9,d5,d8,8a,b1,35,b0,5b,77,82,32,dd,20,37,3c,7f,31,5d,06,b2,29,\ fe,bd,f9,50,dd,6e,3f,af,64,26,6e,60,de,57,3d,08,e6,7e,49,a1,20,03,68,7d,27,\ 61,3a,87,c6,86,00,cc,6a,7d,b2,3b,d7,4a,4b,a9,1b,16,68,18,c0,8c,11,39,46,82,\ d7,a9,d0,dc,1f,96,1e,ad,bd,c4,bb,a0,c5,4f,78,97,9d,cf,18,91,57,e5,4d,d1,3e,\ 7c,e3,3c,af,4e,3c,04,2b,aa,fc,83,a9,75,05,69,31,6f,a6,1a,a6,b8,0f,52,e3,93,\ 09,0b,0a,69,e4,a0,19,11,b0,32,bf,4e,af,4b,6d,9a,0b,c1,af,22,c5,de,bd,11,ee,\ bd,4d,11,a0,f7,ac,0f,10,7f,0d,3f,c6,cb,21,61,8d,35,e8,42,89,a0,c6,85,65,5e,\ d9,a3,44,51,8a,31,fb,51,62,62,7d,ce,1f,cc,96,b7,08,6f,dd,9a,7d,f3,e3,0c,d2,\ 31,b1,4b,5d,f5,72,22,ce,02,6c,0d,bf,57,35,9e,8c,b1,23,1f,65,51,04,79,a2,ff,\ 0f,54,56,4f,1b,cb,26,23,0f,94,5c,71,9a,d5,37,47,24,59,85,0c,04,6b,74,08,f3,\ 32,a6,26,c0,8e,83,f9,46,43,d3,fe,9b,59,8c,21,8b,c2,e8,82,45,3e,bb,78,53,7c,\ 04,d6,d0,82,c2,6e,d5,4e,09,d4,34,be,54,64,69,ad,1d,87,cd,5f,ab,31,0d,1f,2c,\ ae,db,26,03,9f,e3,bf,bf,40,01,a9,1d,ec,b1,bd,b6,e2,c6,d0,bd,49,60,db,5b,72,\ 18,59,2c,5e,7d,f1,4d,80,c4,55,b7,c3,bb,6a,cb,cf,ff,a9,2d,88,6f,c5,d6,d8,e0,\ 8e,65,af,12,15,b6,48,e3,11,b6,ad,c3,81,76,7d,68,93,7e,ed,c3,c5,63,0d,32,4a,\ 9b,4c,f7,af,91,3f,e9,be,f5,d7,69,a3,56,8f,98,4d,f2,28,c7,17,cd,2f,2f,a8,00,\ 24,e3,17,54,81,02,53,0f,40,31,c3,0e,9e,49,29,14,1f,4c,cc,62,d2,9e,d6,88,d6,\ 72,fb,7a,1d,82,5b,e6,70,03,aa,c5,b3,d8,8e,30,6b,06,48,76,7d,68,97,6b,38,a3,\ d9,03,96,5d,74,1f,bf,aa,74,a6,cf,e8,75,d8,d9,0b,c4,df,2c,1a,c1,a7,d5,5c,88,\ f0,64,ae,d0,a2,f3,57,12,60,65,3d,ee,5f,ec,58,cb,79,ce,68,bf,7d,68,e3,ae,ca,\ 73,32,b5,1c,86,1c,c9,a5,dc,83,9b,60,58,4e,bf,a2,c6,a6,0e,f1,64,65,49,1a,a1,\ cb,fe,7e,24,73,b0,ad,10,86,32,36,87,2f,b8,bc,6c,4f,c1,4d,6e,71,28,f0,42,00,\ 9a,7d,2f,b7,33,b2,d0,5a,fd,82,16,a4,11,b0,8c,80,00,9d,df,7b,71,5e,9d,7a,0b,\ 12,3d,a8,95,73,60,b3,5b,aa,56,38,d4,68,e4,7b,83,32,44,5c,1b,fc,6e,87,e6,fa,\ 96,ea,67,b3,f6,6c,3e,57,cd,dc,4d,52,a8,27,19,a3,e0,cf,73,65,64,98,57,36,b8,\ 84,14,b9,3e,02,ad,f5,b5,63,80,e2,ff,8d,25,c3,27,f3,99,b6,a2,c5,9c,8a,d5,63,\ 57,d0,d8,18,42,35,7a,05,45,0f,85,5b,1d,35,42,cd,02,14,40,46,87,ff,52,d7,c1,\ c7,d7,f3,ab,8c,3e,de,c9,d2,c8,63,0c,d7,90,c5,f6,24,e9,f9,fe,63,48,12,36,70,\ 42,fd,2b,b2,56,6e,0d,ac,ce,1a,10,cf,22,27,11,93,bd,e1,7d,c6,04,ae,6f,23,95,\ 44,18,26,cc,19,64,1f,8c,1b,da,85,3c,a2,c4,8e,0f,a3,91,fc,89,26,77,3a,3f,fa,\ 5c,a7,de,a7,f7,32,6e,a4,33,27,d8,ca,d4,48,a6,09,5c,20,0b,bb,30,94,23,f4,f7,\ bb,7b,c3,43,f0,d4,16,73,25,24,97,d7,79,de,81,16,0d,73,0d,cd,14,19,2d,79,2a,\ cb,7d,97,e7,91,77,09,b3,01,e6,bc,dc,06,9d,88,e5,e0,68,58,22,6c,43,8a,81,a6,\ ca,99,ab,6c,f1,f9,4c,84,f5,42,ae,e1,92,91,8d,22,77,2b,27,5c,f7,bf,92,19,01,\ c0,52,a1,52,57,2b,78,e9,7e,34,27,bc,a3,2d,3f,a9,79,12,9c,af,55,f0,e7,5e,d8,\ f8,5e,8c,cf,d2,d8,4a,57,33,03,16,45,b2,f1,52,c5,d8,d3,f5,40,76,04,81,84,3b,\ 49,35,1f,85,56,83,0b,78,95,c4,91,4d,24,2b,67,ed,1c,f8,1b,bf,19,ee,b5,e4,f7,\ 06,98,ce,d9,65,aa,50,70,8c,b5,f4,7a,cf,0c,ce,88,08,71,ad,05,8c,36,a8,74,5e,\ a3,f9,f9,a3,98,0e,1b,56,73,de,c8,3d,34,7a,99,1c,df,e4,58,28,22,23,c0,be,38,\ 97,83,55,0d,8b,91,b2,a3,09,98,5a,b4,f2,c7,4d,99,4d,d8,f1,6a,e0,4d,4d,67,fd,\ fd,77,97,9f,c3,50,ae,b5,a7,6e,34,be,fd,5a,e4,96,fe,fc,53,90,84,53,d2,c4,11,\ 69,94,ab,13,87,14,e9,67,a5,b1,69,1b,24,9b,af,78,c0,f3,6a,40,c0,2e,49,34,6f,\ bb,10,d9,d0,e5,eb,7c,8e,fa,02,74,32,ad,4d,a7,98,b9,aa,4f,a4,c7,2d,fe,31,92,\ b7,e0,b4,49,ca,41,9d,34,9b,4f,2c,9b,69,20,46,e4,0e,f7,b6,fb,d4,c3,3a,f6,89,\ e8,37,fa,d6,42,aa,58,cc,67,62,fc,c0,2d,6c,08,59,6d,cf,bc,e7,06,7a,99,f6,24,\ 7b,c6,23,c2,72,b2,2f,6d,44,fb,52,4b,14,8f,d2,5d,6f,10,d3,01,c6,7d,71,bb,22,\ 10,0c,34,13,be,e3,83,e9,d5,e5,ac,27,33,c3,66,35,93,4a,22,55,7d,f0,48,d8,4e,\ ad,c4,92,dd,0c,c1,8b,5e,81,b4,f7,87,fd,9d,69,f2,c0,89,43,c3,6e,5c,71,8a,66,\ cd,57,6a,4f,b2,07,7b,f3,7e,b8,6e,51,08,73,70,ed,8e,10,50,6b,f9,61,e3,5c,62,\ ad,a8,58,d6,60,a8,b6,56,00,a0,16,22,63,62,50,37,20,79,69,17,43,0c,f9,c8,45,\ 04,56,1f,3b,71,62,3e,4d,2a,a8,5c,6a,b4,a8,c4,3a,66,6e,21,54,ca,6a,f8,b2,45,\ 7b,76,61,fb,4d,6c,7d,ed,e5,98,5d,64,7a,26,0b,93,87,76,f7,78,1e,20,ec,03,7f,\ 36,42,7a,e9,c8,56,1c,b0,de,37,04,90,81,a2,51,41,eb,31,84,4b,21,cf,29,1c,ad,\ 6f,ba,58,71,fd,c0,70,e9,95,3b,76,b0,f4,44,30,46,2c,f1,6b,10,9b,79,91,a0,1d,\ 99,7e,37,81,36,90,88,3a,43,fd,bf,57,e5,6a,c2,b5,d5,b9,b7,74,06,22,c6,a7,89,\ 85,20,50,ad,fe,40,8b,6a,ba,70,99,00,0a,90,c0,db,b6,13,e1,ba,94,4a,0b,10,59,\ e5,be,aa,ae,b6,12,93,87,b9,a9,35,b0,52,e2,c0,a8,d5,4f,d0,b3,4b,6a,49,2b,74,\ 83,86,17,08,fd,b4,fe,42,ba,78,fd,9f,d4,d8,18,e3,8e,58,ce,5e,8a,63,f0,6d,3c,\ ed,b3,43,9e,57,03,ea,25,93,1a,84,f4,ce,52,d7,50,b8,37,09,55,20,e1,a7,e7,5f,\ 80,ec,ea,1b,39,41,b6,a1,31,00,c5,cb,e7,7d,af,27,c6,47,59,55,fa,ab,69,b1,84,\ 7a,fd,32,89,0c,9c,92,f0,85,6c,b0,2b,57,a6,32,55,08,48,6e,7e,36,09,8b,43,d8,\ 92,e3,a1,c6,eb,ac,0a,7c,34,d8,b9,1b,95,39,b2,b0,77,e9,70,b9,f5,e9,48,e5,8d,\ 08,71,1c,1c,07,b8,bf,09,fa,ed,31,c0,f1,f4,96,62,d8,19,db,ba,9c,a4,f6,74,8f,\ ad,6f,89,0e,32,1f,fe,61,67,37,ce,e2,4d,85,24,62,86,f3,ce,c8,68,51,ef,fb,50,\ 54,f4,03,39,de,c9,6a,8d,7f,4c,e9,3a,3c,02,40,09,d1,08,66,2b,b1,4d,e2,15,14,\ ff,79,8e,33,43,09,07,8e,29,b5,2a,f0,df,42,b5,f3,24,c1,89,c6,00,6f,fe,2e,b3,\ d9,7a,cb,eb,44,42,9d,3a,4b,90,c6,c6,ca,e5,92,43,fb,a0,b4,1e,df,d0,d2,fb,e0,\ 47,45,62,b4,ef,1a,b5,84,61,5c,66,4e,b4,95,66,88,93,92,f3,06,93,67,28,1d,c3,\ b3,ee,09,84,25,b8,8c,9b,3f,8f,d8,84,5a,f8,af,09,eb,26,c9,14,04,6d,76,c2,1e,\ fa,84,b8,15,c2,63,ba,74,b8,87,79,f3,43,0e,ad,3e,ef,a3,64,f8,62,a2,9a,00,92,\ 7c,09,f3,36,5d,42,f2,7a,0d,fd,a5,f7,14,ae,7f,e2,22,59,44,84,de,a6,c9,ea,dc,\ 38,fb,dd,a4,3b,23,14,31,3c,68,a9,87,3e,96,ca,69,0a,1e,b1,7a,c6,5d,d6,a2,c9,\ 21,63,b3,ae,69,e8,4d,a7,6c,50,fe,14,dd,13,ae,55,6e,ae,3b,dc,93,50,60,86,88,\ d7,db,2b,95,fa,cf,73,90,c8,67,ec,a4,51,bc,5a,52,a3,f9,4e,b5,f8,bc,fd,0a,2d,\ c0,44,6f,76,b9,19,eb,51,80,04,af,b8,70,ff,9c,9b,10,89,05,8d,f2,f9,b5,bd,db,\ 11,34,29,23,d6,46,0e,5f,9f,b5,a3,3e,6d,50,06,b1,7a,34,77,4f,15,4a,c4,f7,ac,\ 11,04,b7,2b,9e,88,ec,84,e0,0f,ab,8f,29,39,60,15,ea,3f,b5,27,be,e0,b6,b5,dc,\ 9f,32,5b,a4,2b,64,7e,52,1f,d2,98,13,eb,76,d0,44,12,1c,ce,bb,97,0b,cd,98,b1,\ e7,f2,3e,c6,d6,dc,9c,97,e2,7c,b1,b8,9e,27,4f,44,0d,e9,1f,ce,bf,1d,e5,9b,3d,\ 3a,05,0e,a7,f0,46,63,9c,74,d7,a0,5a,17,8f,c9,27,1e,79,54,ef,ce,90,dc,2e,c6,\ c7,a0,10,92,4d,10,d7,7c,0e,87,7e,a5,7d,bc,9c,55,91,57,8a,90,0d,9c,c8,ea,05,\ e5,9d,9b,9e,50,fe,d6,15,b5,b1,57,03,db,b2,3b,df,eb,d6,15,c4,24,ae,3e,74,d1,\ ae,6c,9d,78,8f,87,5c,55,f1,b8,00,06,45,c2,10,88,ea,95,8f,62,96,20,7e,20,f8,\ 68,a3,03,d6,d7,89,f7,0e,d6,c8,c5,42,9d,86,8a,33,4a,3e,68,cb,31,c0,7b,03,74,\ 7a,0f,4b,d3,f5,10,2c,c5,a2,c1,2c,c7,d7,b1,f2,f4,15,eb,aa,d6,8c,6e,ab,7c,e1,\ dd,57,cc,2e,77,43,1b,4a,48,98,fb,4c,a1,ba,54,4a,c7,27,b7,66,e8,a1,ee,0c,53,\ 8f,d8,75,e7,a1,c6,70,cc,b3,3b,61,62,f4,b3,8a,77,47,41,89,bd,e9,3e,22,7b,54,\ 4e,3f,82,64,ed,35,63,b9,4b,49,df,5c,5a,73,9f,a5,25,61,25,5c,63,bf,03,1e,4c,\ b6,4b,02,ab,b3,46,7d,35,69,69,83,19,19,84,ef,d8,11,3d,25,57,72,bd,f6,32,37,\ a9,c3,54,73,54,e6,c5,f0,33,4d,c2,83,91,68,13,ec,83,46,99,3f,1f,fb,27,d4,e9,\ 44,92,f6,8e,6e,0c,ea,d5,73,ad,2d,d2,66,53,fe,5c,12,ac,1c,c2,de,91,d1,ba,f4,\ 96,2f,9a,a3,df,9a,cb,01,35,86,7a,d4,58,82,90,b3,97,76,e5,68,9f,29,b0,99,91,\ 06,42,a7,57,1f,f5,d7,37,72,bd,b0,a8,6b,cb,a3,65,ab,e9,f2,c1,08,c4,ca,3a,d5,\ f5,b2,50,63,16,29,97,c7,7a,8b,0c,de,1b,35,a5,8f,d4,e9,2c,50,d1,74,4c,ec,43,\ 8e,ec,83,58,01,bd,d2,6a,0e,0f,b4,76,0c,e9,e9,d1,52,58,17,16,57,07,0e,63,18,\ 10,50,c5,ba,12,d1,f0,71,84,fb,34,d8,49,f5,ac,42,84,25,b9,88,ad,f4,ae,c3,e4,\ d1,cd,85,86,78,73,03,ff,74,8f,be,df,e2,58,63,2f,79,40,ef,05,c7,23,16,56,bd,\ c5,e6,0c,6e,7b,a8,58,14,28,07,4a,54,6b,73,9f,c3,17,c8,d9,a8,e4,2b,95,03,64,\ 35,1a,cf,38,54,2e,85,83,6e,2d,e1,9f,c7,bc,e8,0f,24,7a,2a,b5,30,98,45,45,20,\ 2b,aa,fa,93,60,a4,88,bc,af,95,51,c2,b3,83,db,67,39,d4,82,e8,96,56,6a,25,3e,\ 83,b8,02,93,02,02,0d,fb,70,03,61,35,61,94,ca,ed,a2,d7,2a,8e,c1,b6,1b,57,d0,\ 8c,d5,b1,65,21,52,c0,e5,dc,b1,38,03,34,d8,72,cc,68,5e,be,44,70,a8,fb,7d,33,\ 52,66,47,fa,d0,b0,5c,25,55,53,1e,1c,f3,25,db,89,04,2e,4f,c5,ca,b7,6a,8f,52,\ a3,54,04,9e,03,ae,cb,02,e4,1b,91,cf,6b,00,b5,2f,25,87,44,50,98,ea,27,c5,1e,\ ee,9b,29,f3,ad,e2,05,8c,99,38,f3,2a,be,09,04,b0,47,be,60,b1,44,a4,2c,ce,ab,\ 7f,b1,3f,9c,1e,ba,af,e9,a0,3d,4d,d5,c8,3e,20,1c,f5,f1,9a,34,54,1f,71,d3,54,\ ca,aa,b1,5a,14,f6,8f,b6,5d,42,78,d6,ac,8a,47,ba,50,ee,69,a8,c7,07,e4,21,de,\ 7b,98,13,1a,cf,c5,50,57,7d,ce,3f,af,47,3d,d2,9d,ca,06,b8,be,56,10,d3,a8,fd,\ f1,ec,66,ea,f9,a6,03,f4,73,b0,be,73,27,3f,4d,53,23,bc,c4,67,bc,b9,b9,ff,cf,\ 2a,a6,bc,4c,d2,8e,a3,f6,fb,e4,71,64,6a,a8,2e,4c,92,d3,05,00,08,f5,53,39,37,\ 1d,fe,14,55,f9,08,5a,95,3e,64,04,9f,4a,08,ff,3d,08,43,2c,57,15,b7,ab,21,21,\ 2c,59,93,97,a6,97,19,80,b5,4e,8d,a4,0e,2f,62,f3,f5,40,22,24,53,94,1a,9c,09,\ 59,53,91,84,18,c5,6f,91,39,c8,7b,73,c6,cb,b6,33,70,48,04,38,d7,f7,8d,17,06,\ 43,64,ac,3d,fa,66,6a,f4,48,65,ef,1c,e6,86,dc,a8,8f,e8,e3,4c,b4,87,21,cd,70,\ 5f,af,d9,be,d4,74,60,ea,51,3d,83,45,30,0f,04,1d,da,bb,3e,ec,2f,b4,af,d0,28,\ 1e,b3,3b,ba,27,92,ec,fe,9a,bd,1e,90,b1,55,ff,34,2b,ed,63,c0,9f,91,ba,36,10,\ 07,3f,30,c1,54,73,81,4b,82,ca,19,ec,a1,a4,29,22,0c,7e,88,79,ed,6a,55,a1,04,\ e4,de,c3,a4,07,c1,15,fe,48,51,ad,a1,60,3c,92,42,c8,6a,19,b9,80,28,6f,4d,48,\ 85,72,31,13,fc,c5,4e,b9,54,23,43,ec,c5,f3,ab,6d,5c,1d,9e,7f,a0,1d,7a,9c,76,\ 55,e3,68,42,a8,08,e3,4f,44,28,e2,71,bf,55,c0,e9,66,79,51,88,d2,96,17,17,bb,\ 52,b9,fc,11,b2,b0,05,49,26,44,c0,f5,c6,b7,ae,98,db,c0,fb,b8,a1,3a,64,35,4b,\ 1e,53,d8,48,af,4c,2f,c5,f4,87,99,73,6b,df,9d,8a,fc,ea,80,0d,2c,6a,16,50,93,\ e4,d8,b8,90,8e,37,c3,3b,6e,30,48,9b,c1,21,ff,19,9a,db,43,35,cb,f8,17,78,08,\ 6e,68,aa,4a,bf,91,44,72,46,24,28,2f,15,e8,90,21,00,1e,45,3f,38,09,11,76,ff,\ ad,76,92,02,d6,a0,62,ea,5c,99,17,2e,a6,bc,ee,2b,6d,6c,0f,76,c2,05,b4,71,53,\ 13,8d,1c,ea,c3,63,2e,36,96,fc,65,ce,5d,40,1a,73,61,99,18,95,e2,a0,ae,19,c3,\ f5,03,5a,83,6e,aa,c3,6f,75,76,aa,16,ab,90,68,fe,d1,c6,07,95,e9,26,34,6a,98,\ cc,68,9d,cf,f8,b2,94,aa,63,b7,f0,99,d4,f7,c0,bd,ee,52,f4,95,4c,ca,14,d9,d0,\ 8a,00 [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer\Run] [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "dontdisplaylastusername"=dword:00000000 "legalnoticecaption"="" "legalnoticetext"="" "shutdownwithoutlogon"=dword:00000001 "undockwithoutlogon"=dword:00000001 [HKEY_USERS\.default\software\microsoft\windows\currentversion\policies\explorer] "NoDriveTypeAutoRun"=dword:00000091 "CDRAutoRun"=dword:00000000 [HKEY_USERS\s-1-5-18\software\microsoft\windows\currentversion\policies\explorer] "NoDriveTypeAutoRun"=dword:00000091 "CDRAutoRun"=dword:00000000 [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\shellserviceobjectdelayload] "PostBootReminder"="{7849596a-48ea-486e-8937-a2a3009f31a9}" "CDBurn"="{fbeb8a05-beee-4442-804e-409d6c4515e9}" "WebCheck"="{E6FB5E20-DE35-11CF-9C87-00AA005127ED}" "SysTray"="{35CEC8A3-2BE6-11D2-8773-92E220524153}" [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^chris^Start Menu^Programs^Startup^bs5-zxlbme.exe] "path"="C:\\Documents and Settings\\chris\\Start Menu\\Programs\\Startup\\bs5-zxlbme.exe" "backup"="C:\\WINDOWS\\pss\\bs5-zxlbme.exeStartup" "location"="Startup" "command"="C:\\Documents and Settings\\chris\\Start Menu\\Programs\\Startup\\bs5-zxlbme.exe" "item"="bs5-zxlbme" [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^chris^Start Menu^Programs^Startup^initial.cfg] "path"="C:\\Documents and Settings\\chris\\Start Menu\\Programs\\Startup\\initial.cfg" "backup"="C:\\WINDOWS\\pss\\initial.cfgStartup" "location"="Startup" "command"="C:\\Documents and Settings\\chris\\Start Menu\\Programs\\Startup\\initial.cfg" "item"="initial" [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^chris^Start Menu^Programs^Startup^saapau.dat] "path"="C:\\Documents and Settings\\chris\\Start Menu\\Programs\\Startup\\saapau.dat" "backup"="C:\\WINDOWS\\pss\\saapau.datStartup" "location"="Startup" "command"="C:\\Documents and Settings\\chris\\Start Menu\\Programs\\Startup\\saapau.dat" "item"="saapau" [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^chris^Start Menu^Programs^Startup^saap_kyf.dat] "path"="C:\\Documents and Settings\\chris\\Start Menu\\Programs\\Startup\\saap_kyf.dat" "backup"="C:\\WINDOWS\\pss\\saap_kyf.datStartup" "location"="Startup" "command"="C:\\Documents and Settings\\chris\\Start Menu\\Programs\\Startup\\saap_kyf.dat" "item"="saap_kyf" [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\8c2f4ecf3c9e] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="bidispl5" "hkey"="HKLM" "command"="C:\\WINDOWS\\System32\\bidispl5.exe" "inimapping"="0" [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\bxxs5] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="bxxs5" "hkey"="HKLM" "command"="RunDLL32.EXE C:\\WINDOWS\\bxxs5.dll,DllRun" "inimapping"="0" [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CARPService] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="carpserv" "hkey"="HKLM" "command"="carpserv.exe" "inimapping"="0" [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DrvLsnr] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="DrvLsnr" "hkey"="HKLM" "command"="C:\\Program Files\\Analog Devices\\SoundMAX\\DrvLsnr.exe" "inimapping"="0" [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Free Download Manager] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="fdm" "hkey"="HKCU" "command"="C:\\Program Files\\Free Download Manager\\fdm.exe -autorun" "inimapping"="0" [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\psnP3pO] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="odponfig" "hkey"="HKLM" "command"="odponfig.exe" "inimapping"="0" [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QCn5Kx1cW] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="QCn5Kx1cW" "hkey"="HKLM" "command"="C:\\documents and settings\\chris\\local settings\\temp\\QCn5Kx1cW.exe" "inimapping"="0" [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="qttask" "hkey"="HKLM" "command"="\"C:\\Program Files\\QuickTime\\qttask.exe\" -atboottime" "inimapping"="0" [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Rdqlck] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="Rdqlck" "hkey"="HKLM" "command"="C:\\documents and settings\\chris\\local settings\\temp\\Rdqlck.exe" "inimapping"="0" [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Start WingMan Profiler] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="" "hkey"="HKCU" "command"="" "inimapping"="0" [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="jusched" "hkey"="HKLM" "command"="C:\\Program Files\\Java\\j2re1.4.2_06\\bin\\jusched.exe" "inimapping"="0" [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TkBellExe] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="realsched" "hkey"="HKLM" "command"="\"C:\\Program Files\\Common Files\\Real\\Update_OB\\realsched.exe\" -osboot" "inimapping"="0" [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders] "SecurityProviders"="msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost] LocalService REG_MULTI_SZ Alerter\0WebClient\0LmHosts\0RemoteRegistry\0upnphost\0SSDPSRV\0\0 NetworkService REG_MULTI_SZ DnsCache\0\0 rpcss REG_MULTI_SZ RpcSs\0\0 imgsvc REG_MULTI_SZ StiSvc\0\0 termsvcs REG_MULTI_SZ TermService\0\0 HTTPFilter REG_MULTI_SZ HTTPFilter\0\0 HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost *netsvcs* Ip6FwHlp Completion time: 06-12-18 16:34:22.43 C:\ComboFix.txt ... 06-12-18 16:34 C:\ComboFix2.txt ... 06-12-18 01:34 C:\ComboFix3.txt ... 06-12-17 17:06 |
|
|
|
|
#7 (permalink) |
|
Registered User
|
Logfile of HijackThis v1.99.1
Scan saved at 11:00:31 PM, on 12/19/2006 Platform: Windows XP SP1 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\System32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\Explorer.EXE C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe C:\Program Files\CA\eTrust EZ Armor\eTrust EZ Anti-Spam\QSP-2.1.212.0\QOELoader.exe C:\PROGRA~1\CA\ETRUST~1\ETRUST~2\VetTray.exe C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe C:\Program Files\Java\jre1.5.0_02\bin\jusched.exe C:\WINDOWS\System32\Rundll32.exe C:\Program Files\ATI Technologies\ATI.ACE\cli.exe C:\Program Files\VentSrv\ventrilo_svc.exe C:\Program Files\VentSrv\ventrilo_srv.exe C:\PROGRA~1\CA\ETRUST~1\ETRUST~2\VetMsg.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\ATI Technologies\ATI.ACE\cli.exe C:\Program Files\ATI Technologies\ATI.ACE\cli.exe C:\Program Files\Google\GoogleToolbarNotifier\1.2.908.5008\GoogleToolbarNotifier.exe C:\Documents and Settings\chris\Desktop\JoyToKey.exe C:\Program Files\Common Files\Real\Update_OB\realsched.exe C:\Program Files\AIM\aim.exe C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe C:\Program Files\internet explorer\iexplore.exe C:\Program Files\Hijackthis\HijackThis.exe R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.yahoo.com/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/...ch/search.html R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/ R3 - URLSearchHook: (no name) - {BAAEB691-5B0B-17F5-74F5-02457D782493} - C:\WINDOWS\System32\jwmvq.dll (file missing) R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn2\yt.dll O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn2\yt.dll O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O2 - BHO: Yahoo! IE Services Button - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar4.dll O2 - BHO: (no name) - {BAAEB691-5B0B-17F5-74F5-02457D782493} - C:\WINDOWS\System32\jwmvq.dll (file missing) O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn2\yt.dll O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar4.dll O4 - HKLM\..\Run: [QOELOADER] "C:\Program Files\CA\eTrust EZ Armor\eTrust EZ Anti-Spam\QSP-2.1.212.0\QOELoader.exe" O4 - HKLM\..\Run: [VetTray] C:\PROGRA~1\CA\ETRUST~1\ETRUST~2\VetTray.exe O4 - HKLM\..\Run: [Zone Labs Client] C:\PROGRA~1\CA\ETRUST~1\ETRUST~3\ca.exe O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_02\bin\jusched.exe O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot O4 - HKLM\..\Run: [P17Helper] Rundll32 P17.dll,P17Helper O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\cli.exe" runtime -Delay O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Program Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe" O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized O4 - HKCU\..\Run: [Yahoo! Pager] "C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe" -quiet O4 - HKCU\..\Run: [Free Download Manager] C:\Program Files\Free Download Manager\fdm.exe -autorun O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE O8 - Extra context menu item: &Yahoo! Search - file:///C:\Program Files\Yahoo!\Common/ycsrch.htm O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office10\EXCEL.EXE/3000 O8 - Extra context menu item: Yahoo! &Dictionary - file:///C:\Program Files\Yahoo!\Common/ycdict.htm O8 - Extra context menu item: Yahoo! &Maps - file:///C:\Program Files\Yahoo!\Common/ycmap.htm O8 - Extra context menu item: Yahoo! &SMS - file:///C:\Program Files\Yahoo!\Common/ycsms.htm O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE O9 - Extra 'Tools' menuitem: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204 O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll O16 - DPF: {63DF43C2-469A-41F3-B119-17B1ACE8BB34} (Sony SNC-RZ30 Image Viewer) - http://66.208.222.163/home/SonySncRz30View.cab O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsu...?1132181825796 O16 - DPF: {745395C8-D0E1-4227-8586-624CA9A10A8D} (AxisMediaControl Class) - http://198.189.234.9/activex/AMC.cab O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/actives...ree/asinst.cab O16 - DPF: {A364AF35-0CDF-41E8-8F3B-E0E55E15EBA1} (Zenturi Active Programs Control) - http://www.programchecker.com/dll/nixon.cab O16 - DPF: {A90A5822-F108-45AD-8482-9BC8B12DD539} (Crucial cpcScan) - http://www.crucial.com/controls/cpcScanner.cab O16 - DPF: {C5E28B9D-0A68-4B50-94E9-E8F6B4697514} (NsvPlayX Control) - http://www.nullsoft.com/nsv/embed/nsvplayx_vp3_mp3.cab O16 - DPF: {DE625294-70E6-45ED-B895-CFFA13AEB044} (AxisMediaControlEmb Class) - http://69.66.104.110/activex/AMC.cab O16 - DPF: {E3E02F12-2ADB-478C-8742-5F0819F9F0F4} (Quantum Streaming IE VersionManager Class) - http://qmedia.xlontech.net/100170/sd...ie06041001.cab O17 - HKLM\System\CCS\Services\Tcpip\..\{A276BDA0-D097-4C4F-9E74-E63DA476C4DF}: NameServer = 192.168.1.1 O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\System32\Ati2evxx.exe O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe O23 - Service: Autodesk Licensing Service - Unknown owner - C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe O23 - Service: StarWind iSCSI Service (StarWindService) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe O23 - Service: Ventrilo - Unknown owner - C:\Program Files\VentSrv\ventrilo_svc.exe O23 - Service: VET Message Service (VETMSGNT) - Computer Associates International, Inc. - C:\PROGRA~1\CA\ETRUST~1\ETRUST~2\VetMsg.exe O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs Inc. - C:\WINDOWS\system32\ZoneLabs\vsmon.exe |
|
|
|
|
#8 (permalink) | |
|
TSF Enthusiast
|
Hello Christopher, good job!
![]() Your computer is severely infected. Though we have own the first round of battle, there are few more rounds we need to go through. So stick with me- we are surely going to clear your PC. Follow the next set of instructions carefully and in the order given. Downloads 1. Please download AproposFix from here: http://swandog46.geekstogo.com/aproposfix.exe Save it to your desktop but do NOT run it yet. 2. Download Hoster. Save it to your desktop but do NOT run it yet. 3. Please DELETE the present Combofix.exe that you have and download a new version from the following link http://download.bleepingcomputer.com...h/combofix.exe Save this on your Desktop but do NOT run it yet. 4. You need to update your AVG AS to the latest definition. Run AVG Anti-Spyware
Disable Security Softwares Double-click the icon on Desktop to launch AVG Anti-Spyware. Please disable your AVG Anti-Spyware Guard, as it may hinder the removal of some entries.
Fix Restart your computer and boot into Safe Mode by tapping the F8 key repeatedly until a menu shows up (and choose Safe Mode from the list). In some systems, this may be the F5 key, so try that if F8 doesn't work. Login on your usual account. Make sure to close any open browsers. Click > Start > Control Panel > Add / Remove Programs and uninstall the following programs (if they exist): Winad Client Recommended Hotfix - 421701D MyWay ________________________________________________________________ Aproposfix.exe Please double-click aproposfix.exe and unzip it to the desktop. Open the aproposfix folder on your desktop and run RunThis.bat. Follow the prompts. This tool will produce a log. Post the entire contents of the log.txt file available in the aproposfix folder with your next reply. If the tool asks you to reboot, do not reboot now, as we will do that later. _____________________________________________________________ Open HijackThis and click on 'Do a System Scan Only'. Check the following entries (If they still exist, make sure you do not miss any) R3 - URLSearchHook: (no name) - {BAAEB691-5B0B-17F5-74F5-02457D782493} - C:\WINDOWS\System32\jwmvq.dll (file missing) O2 - BHO: (no name) - {BAAEB691-5B0B-17F5-74F5-02457D782493} - C:\WINDOWS\System32\jwmvq.dll (file missing) Please remember to close all other windows, including browsers then click Fix checked. Delete the following Files indicated in RED and Folders indicated in BLUE if they still exist. C:\WINDOWS\çasks c:\program files\ MyWay c:\program files\ Recommended Hotfix - 421701D C:\WINDOWS\ pss C:\WINDOWS\ qqzo C:\ FOUND.016 C:\Documents and Settings\chris\Application Data\ POP! c:\program files\ Winad Client c:\windows\system32\drivers\etc\ hosts.bho c:\windows\downloaded program files\ WildApp.inf c:\windows\system32\ vx0.nls c:\windows\system32\ ezPopStub.exe c:\windows\ sepsd.bin C:\WINDOWS\ blocklist.reg C:\WINDOWS\system32\ xmltok.dll C:\WINDOWS\ test.bat C:\Documents and Settings\chris\Start Menu\Programs\Startup\ bs5-zxlbme.exe C:\Documents and Settings\chris\Start Menu\Programs\Startup\ saapau.dat C:\Documents and Settings\chris\Start Menu\Programs\Startup\ saap_kyf.dat C:\WINDOWS\System32\ bidispl5.exe C:\WINDOWS\ bxxs5.dll C:\documents and settings\chris\local settings\temp\ Rdqlck.exe C:\documents and settings\chris\local settings\temp\ QCn5Kx1cW.exe odponfig.exe- Find this file using Start>Search. _______________________________________________________________ Clear IE6 cookies 1. On the Internet Explorer 6 Tools menu, click Internet Options. The Internet Options box should open to the General tab. 2. On the General tab, in the Temporary Internet Files section, click the Delete Files button. This will delete all the files that are currently stored in your cache [that includes cookies too]. 3. Click OK, and then click OK again. You can check this link for more information. ________________________________________________________________ Registry Fix Open notepad and copy and paste next present in the quote box below in it: (don't forget to copy and paste REGEDIT4) Quote:
It should look like this: ![]() Double click on fix.reg & allow it to merge into the registry. _______________________________________________________________ It appears that you had some problem in configuring the scan options of AVG Anti- Spyware, and so AVG AS only searched the System Restore folders. So please read the following instructions very carefully to configure AVG AS properly and then do another scan. AVG Anti-Spyware Run AVG Anti-Spyware with it's updated definitions:(...it's important that all windows must be closed)
Reboot your system in Normal Mode. ________________________________________________________________ Hoster
ComboFix Please run ComboFix.exe [the newly downloaded one] once more and post the content of the log it produces. ________________________________________________________________ Online File Submission Upload this file C:\WINDOWS\system32\E67C4BEBB8.sys to http://virusscan.jotti.org and report back what it found. At the top of the window you should see "File to Upload & scan" and a blank box. Copy and paste the the full path of E67C4BEBB8.sys into the box. Then click "submit". When it is finished, please copy and paste the information listed under "Service" and "Scanner Results" here. ________________________________________________________________ Online Scan Perform an online scan with Internet Explorer with Kaspersky WebScanner Next Click on Launch Kaspersky Anti-Virus Web Scanner You will be prompted to install an ActiveX component from Kaspersky, Click Yes.
So with your next post please provide the following logs: AVG AS Kaspersky Scan Log Log.txt [from AproposFix] Combofix.txt Jotti Scan Report Please let me know about your system's overall behaviour, that whether you are still experiencing the initial troubles with random pop ups.
__________________
Registered Linux user #426065 |
|
|
|
|
|
#10 (permalink) |
|
TSF Enthusiast
|
Hello Christopher,
I hope you have enjoyed your holiday. Please follow the instructions already given in the post no 8 [ outerinfo oin pop-ups ] above. Your computer really needs some cleaning my friend. So I'll be waiting.
__________________
Registered Linux user #426065 |
|
|
|
|
#11 (permalink) |
|
Registered User
|
---------------------------------------------------------
AVG Anti-Spyware - Scan Report --------------------------------------------------------- + Created at: 5:55:46 PM 1/1/2007 + Scan result: C:\Documents and Settings\chris\Cookies\chris@2o7[2].txt -> TrackingCookie.2o7 : Cleaned. C:\Documents and Settings\chris\Cookies\chris@cbs.112.2o7[1].txt -> TrackingCookie.2o7 : Cleaned. C:\Documents and Settings\chris\Cookies\chris@msnportal.112.2o7[1].txt -> TrackingCookie.2o7 : Cleaned. C:\Documents and Settings\chris\Local Settings\Temp\Cookies\chris@2o7[1].txt -> TrackingCookie.2o7 : Cleaned. C:\Documents and Settings\chris\Local Settings\Temp\Cookies\chris@msnportal.112.2o7[1].txt -> TrackingCookie.2o7 : Cleaned. C:\Documents and Settings\chris\Cookies\chris@adbrite[2].txt -> TrackingCookie.Adbrite : Cleaned. C:\Documents and Settings\chris\Cookies\chris@adrevolver[1].txt -> TrackingCookie.Adrevolver : Cleaned. C:\Documents and Settings\chris\Cookies\chris@media.adrevolver[1].txt -> TrackingCookie.Adrevolver : Cleaned. C:\Documents and Settings\chris\Local Settings\Temp\Cookies\chris@adrevolver[3].txt -> TrackingCookie.Adrevolver : Cleaned. :mozilla.20:C:\Documents and Settings\chris\Application Data\Mozilla\Firefox\Profiles\ave90rj8.default\cookies.txt -> TrackingCookie.Advertising : Cleaned. :mozilla.21:C:\Documents and Settings\chris\Application Data\Mozilla\Firefox\Profiles\ave90rj8.default\cookies.txt -> TrackingCookie.Advertising : Cleaned. :mozilla.22:C:\Documents and Settings\chris\Application Data\Mozilla\Firefox\Profiles\ave90rj8.default\cookies.txt -> TrackingCookie.Advertising : Cleaned. :mozilla.23:C:\Documents and Settings\chris\Application Data\Mozilla\Firefox\Profiles\ave90rj8.default\cookies.txt -> TrackingCookie.Advertising : Cleaned. :mozilla.29:C:\Documents and Settings\chris\Application Data\Mozilla\Firefox\Profiles\ave90rj8.default\cookies.txt -> TrackingCookie.Atdmt : Cleaned. C:\Documents and Settings\chris\Cookies\chris@citi.bridgetrack[1].txt -> TrackingCookie.Bridgetrack : Cleaned. C:\Documents and Settings\chris\Local Settings\Temp\Cookies\chris@com[1].txt -> TrackingCookie.Com : Cleaned. C:\Documents and Settings\chris\Cookies\chris@as-eu.falkag[2].txt -> TrackingCookie.Falkag : Cleaned. C:\Documents and Settings\chris\Cookies\chris@as-us.falkag[1].txt -> TrackingCookie.Falkag : Cleaned. C:\Documents and Settings\chris\Cookies\chris@ads.gamershell[1].txt -> TrackingCookie.Gamershell : Cleaned. C:\Documents and Settings\chris\Cookies\chris@gamershell[1].txt -> TrackingCookie.Gamershell : Cleaned. C:\Documents and Settings\chris\Cookies\chris@overture[2].txt -> TrackingCookie.Overture : Cleaned. C:\Documents and Settings\chris\Local Settings\Temp\Cookies\chris@overture[1].txt -> TrackingCookie.Overture : Cleaned. C:\Documents and Settings\chris\Local Settings\Temp\Cookies\chris@perf.overture[1].txt -> TrackingCookie.Overture : Cleaned. C:\Documents and Settings\chris\Cookies\chris@ads.pointroll[2].txt -> TrackingCookie.Pointroll : Cleaned. C:\Documents and Settings\chris\Local Settings\Temp\Cookies\chris@ads.pointroll[2].txt -> TrackingCookie.Pointroll : Cleaned. :mozilla.14:C:\Documents and Settings\chris\Application Data\Mozilla\Firefox\Profiles\ave90rj8.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned. C:\Documents and Settings\chris\Cookies\chris@questionmarket[2].txt -> TrackingCookie.Questionmarket : Cleaned. C:\Documents and Settings\chris\Local Settings\Temp\Cookies\chris@questionmarket[2].txt -> TrackingCookie.Questionmarket : Cleaned. C:\Documents and Settings\chris\Cookies\chris@edge.ru4[2].txt -> TrackingCookie.Ru4 : Cleaned. C:\Documents and Settings\chris\Local Settings\Temp\Cookies\chris@edge.ru4[1].txt -> TrackingCookie.Ru4 : Cleaned. C:\Documents and Settings\chris\Cookies\chris@serving-sys[2].txt -> TrackingCookie.Serving-sys : Cleaned. C:\Documents and Settings\chris\Cookies\chris@adopt.specificclick[1].txt -> TrackingCookie.Specificclick : Cleaned. C:\Documents and Settings\chris\Cookies\chris@statcounter[2].txt -> TrackingCookie.Statcounter : Cleaned. C:\Documents and Settings\chris\Local Settings\Temp\Cookies\chris@statcounter[2].txt -> TrackingCookie.Statcounter : Cleaned. C:\Documents and Settings\chris\Cookies\chris@tacoda[2].txt -> TrackingCookie.Tacoda : Cleaned. C:\Documents and Settings\chris\Local Settings\Temp\Cookies\chris@tacoda[1].txt -> TrackingCookie.Tacoda : Cleaned. C:\Documents and Settings\chris\Local Settings\Temp\Cookies\chris@trafficmp[2].txt -> TrackingCookie.Trafficmp : Cleaned. C:\Documents and Settings\chris\Cookies\chris@tribalfusion[1].txt -> TrackingCookie.Tribalfusion : Cleaned. C:\Documents and Settings\chris\Cookies\chris@ad.yieldmanager[2].txt -> TrackingCookie.Yieldmanager : Cleaned. C:\Documents and Settings\chris\Local Settings\Temp\Cookies\chris@ad.yieldmanager[2].txt -> TrackingCookie.Yieldmanager : Cleaned. C:\Documents and Settings\chris\Cookies\chris@zedo[1].txt -> TrackingCookie.Zedo : Cleaned. ::Report end log.txt from aproposfix Log of AproposFix v1.1 ************ Running from directory: C:\Documents and Settings\chris\Desktop\aproposfix ************ Registry entries found: ************ No service found! Removing hidden folder: No folder found! Deleting files: Backing up files: Done! Removing registry entries: REGEDIT4 Done! Finished! "chris" - 07-01-01 21:50:28.25 Service Pack 1 ComboFix 06-12-23W-BetaE2 - Running from: "C:\Documents and Settings\chris\Desktop" (((((((((((((((((((((((((((((((((((((((((((( Other Deletions ))))))))))))))))))))))))))))))))))))))))))))))))) e:\autorun.inf" . . . . failed to delete ~ ~ ~ ~ ~ ~ ~ ~ ~ ~ ~ ~ ~ ~ Purity ~ ~ ~ ~ ~ ~ ~ ~~ ~ ~ ~ ~ ~ ~ ~ ~ ~ ~ ~ Folders Quarantined: C:\qoobox\purity\Documents and Settings\chris\Application Data\APPATC~1 C:\qoobox\purity\Documents and Settings\chris\Application Data\MCROSO~1 C:\qoobox\purity\Documents and Settings\chris\My Documents\CROSOF~1 C:\qoobox\purity\Documents and Settings\chris\My Documents\ICROSO~1 C:\qoobox\purity\Program Files\ICROSO~1.NET C:\qoobox\purity\Program Files\YSTEM~1 C:\qoobox\purity\Program Files\Common Files\CROSOF~1 C:\qoobox\purity\Program Files\Common Files\ICROSO~1 C:\qoobox\purity\Program Files\Common Files\MANTEC~1 C:\qoobox\purity\Program Files\YSTEM~1\scanregw.exe C:\qoobox\purity\Program Files\YSTEM~1\YSTEM~1 C:\qoobox\purity\WINDOWS\SMBOLS~1 C:\qoobox\purity\WINDOWS\system32\TSKS~1 C:\qoobox\purity\WINDOWS\system32\TSKS~1\?ttrib.exe ((((((((((((((((((((((((((((((( Files Created from 2006-12-01 to 2007-01-01 )))))))))))))))))))))))))))))))))) 2006-12-29 00:59 <DIR> d-------- C:\Program Files\Ventrilo 2006-12-18 01:40 <DIR> d-------- C:\WINDOWS\system32\ActiveScan 2006-12-18 01:15 <DIR> d-------- C:\bintheredunthat 2006-12-17 17:03 <DIR> d-------- C:\WINDOWS\erdnt 2006-12-17 16:31 <DIR> d-------- C:\bfu 2006-12-17 16:20 3,968 --a------ C:\WINDOWS\system32\drivers\AvgAsCln.sys 2006-12-17 16:19 <DIR> d-------- C:\Program Files\Grisoft 2006-12-16 20:05 5,248 --a------ C:\WINDOWS\system32\drivers\vax347s.sys 2006-12-16 20:05 159,616 --a------ C:\WINDOWS\system32\drivers\vax347b.sys 2006-12-16 20:05 <DIR> d-------- C:\Program Files\Alcohol Soft 2006-12-16 20:02 <DIR> d-------- C:\Program Files\Alcoholer 2006-12-16 17:56 <DIR> d-------- C:\WINDOWS\çasks 2006-12-11 18:55 991,232 --a------ C:\WINDOWS\system32\esent.dll 2006-12-09 01:22 <DIR> d-------- C:\Program Files\Hijackthis 2006-12-09 00:41 <DIR> d-------- C:\Documents and Settings\All Users.WINDOWS\Application Data\Zenturi (((((((((((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))) 2006-12-31 01:17 -------- d-------- C:\Program Files\mozilla firefox 2006-12-29 00:58 -------- d-------- C:\Program Files\Common Files\wise installation wizard 2006-12-27 15:34 -------- d-------- C:\Program Files\rfactor1150 2006-12-19 05:21 -------- d-------- C:\Program Files\ventsrv 2006-12-19 05:11 -------- d-------- C:\Program Files\magiciso 2006-12-19 05:07 -------- d-------- C:\Program Files\google 2006-12-19 05:01 -------- d-------- C:\Program Files\aim 2006-12-18 17:01 -------- d-------- C:\Program Files\quicktime 2006-12-16 13:10 -------- d-------- C:\Program Files\nrtv 2006-11-30 22:06 -------- d-------- C:\Program Files\axis communications 2006-11-05 02:34 -------- d-------- C:\Program Files\teamspeak2_rc2 (((((((((((((((((((((((((((((((((((((((((( Reg Loading Points )))))))))))))))))))))))))))))))))))))))))))))))) *Note* empty entries are not shown [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run] "Start WingMan Profiler"="" "Yahoo! Pager"="\"C:\\Program Files\\Yahoo!\\Messenger\\YahooMessenger.exe\" -quiet" "Free Download Manager"="C:\\Program Files\\Free Download Manager\\fdm.exe -autorun" [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run] "QOELOADER"="\"C:\\Program Files\\CA\\eTrust EZ Armor\\eTrust EZ Anti-Spam\\QSP-2.1.212.0\\QOELoader.exe\"" "VetTray"="C:\\PROGRA~1\\CA\\ETRUST~1\\ETRUST~2\\VetTray.exe" "Zone Labs Client"="C:\\PROGRA~1\\CA\\ETRUST~1\\ETRUST~3\\ca.exe" "QuickTime Task"="\"C:\\Program Files\\QuickTime\\qttask.exe\" -atboottime" "SunJavaUpdateSched"="C:\\Program Files\\Java\\jre1.5.0_02\\bin\\jusched.exe" "ATIPTA"="C:\\Program Files\\ATI Technologies\\ATI Control Panel\\atiptaxx.exe" "TkBellExe"="\"C:\\Program Files\\Common Files\\Real\\Update_OB\\realsched.exe\" -osboot" "P17Helper"="Rundll32 P17.dll,P17Helper" "ATICCC"="\"C:\\Program Files\\ATI Technologies\\ATI.ACE\\cli.exe\" runtime -Delay" "Adobe Photo Downloader"="\"C:\\Program Files\\Adobe\\Photoshop Album Starter Edition\\3.0\\Apps\\apdproxy.exe\"" "!AVG Anti-Spyware"="\"C:\\Program Files\\Grisoft\\AVG Anti-Spyware 7.5\\avgas.exe\" /minimized" [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents] [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\IMAIL] "Installed"="1" [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MAPI] "Installed"="1" "NoChange"="1" [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MSFS] "Installed"="1" [HKEY_CURRENT_USER\software\microsoft\internet explorer\desktop\components] "DeskHtmlVersion"=dword:00000110 "DeskHtmlMinorVersion"=dword:00000005 "Settings"=dword:00000001 "GeneralFlags"=dword:00000001 [HKEY_CURRENT_USER\software\microsoft\internet explorer\desktop\components\0] "Source"="About:Home" "SubscribedURL"="About:Home" "FriendlyName"="My Current Home Page" "Flags"=dword:00000002 "Position"=hex:2c,00,00,00,cc,00,00,00,00,00,00,00,34,03,00,00,e2,02,00,00,00,\ 00,00,00,01,00,00,00,01,00,00,00,01,00,00,00,00,00,00,00,00,00,00,00 "CurrentState"=hex:04,00,00,40 "OriginalStateInfo"=hex:18,00,00,00,a0,00,00,00,00,00,00,00,80,02,00,00,3a,02,\ 00,00,04,00,00,40 "RestoredStateInfo"=hex:18,00,00,00,a0,00,00,00,00,00,00,00,80,02,00,00,3a,02,\ 00,00,01,00,00,00 [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\sharedtaskscheduler] "{438755C2-A8BA-11D1-B96B-00A0C90312E1}"="Browseui preloader" "{8C7461EF-2B13-11d2-BE35-3078302C2030}"="Component Categories cache daemon" [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shellexecutehooks] "{AEB6717E-7E19-11d0-97EE-00C04FD91972}"="" "{57B86673-276A-48B2-BAE7-C6DBB3020EB8}"="AVG Anti-Spyware 7.5" [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer] "NoDriveTypeAutoRun"=dword:00000091 "DriveConfiguration"=hex:2e,55,a9,07,cf,ff,47,95,2e,0c,e9,9d,8e,c1,89,be,64,d2,\ de,66,b9,32,de,42,d0,2a,81,f9,09,a8,c9,19,05,da,ff,51,0b,fc,3f,e2,aa,6f,36,\ 50,a0,0a,2b,5d,fb,b4,3c,37,7e,33,eb,f1,46,3f,d9,30,ad,db,d0,27,6f,e5,07,c5,\ 0b,eb,a2,2c,6d,40,79,66,e9,4f,1a,53,ca,30,11,e6,ec,79,67,91,26,57,68,fe,cd,\ dd,a9,00,b5,9b,4a,c9,99,73,79,5d,bd,a8,37,46,d1,38,5f,8a,19,6c,e4,da,cb,ad,\ 5a,0c,b8,99,b8,cb,2f,56,5c,8e,1f,26,4f,c6,7b,3c,cb,5c,e3,ce,fa,5a,80,6c,01,\ e8,30,90,3d,7b,e3,76,cc,49,44,a9,50,00,9c,ef,ef,b7,f4,ae,9e,25,7a,ef,a0,11,\ 27,dc,49,09,9e,94,08,57,56,c5,a4,31,fb,7d,c6,30,12,3d,b8,03,dc,4f,6c,65,7e,\ 5a,c0,4c,5e,34,00,64,d0,f7,ad,bb,f2,57,7d,be,d4,33,a2,64,dd,69,4f,a9,6a,ef,\ 79,3e,b7,20,da,7f,03,53,3c,a5,ef,b2,fb,3d,28,49,ad,d8,45,5e,67,05,f2,01,be,\ 7c,4f,e3,70,9c,93,6c,1a,18,f5,07,42,ed,cc,c1,9a,97,f5,12,83,84,75,fa,d1,c9,\ 5f,50,ce,13,f8,57,81,e1,1a,93,30,f1,d6,db,23,f8,5d,ae,ab,96,21,ca,63,89,37,\ fb,b6,21,00,32,a1,f4,08,d6,ba,d2,2e,5f,72,fe,06,20,97,90,7b,64,1c,48,b9,bd,\ 1d,64,49,99,1e,e5,7e,16,94,fc,11,18,a6,c2,08,98,34,29,dc,3e,19,33,da,33,ad,\ 62,ca,30,8e,6f,cf,dc,a1,3e,8e,54,53,12,92,0b,25,fd,ef,d4,67,9b,26,3d,43,00,\ 49,1f,fe,ef,60,73,7b,4d,0a,67,01,d5,67,b1,3d,0c,ac,24,8b,78,3b,81,71,0d,e4,\ 8f,6c,e8,2b,6e,f0,40,be,28,aa,99,5e,89,08,3a,85,31,fb,e2,4b,e7,fb,b7,8a,30,\ 4c,7f,41,20,81,12,36,71,3e,0f,e0,d2,42,cf,83,81,a4,97,9d,1c,5c,12,81,b4,06,\ fe,42,24,e3,25,d2,a1,21,8f,6b,92,5c,f6,2e,a1,64,7a,0a,9d,41,96,e0,53,74,53,\ e5,d5,80,bb,47,1b,a9,91,13,10,fc,3f,56,9e,8f,10,82,7c,0a,9f,14,48,66,8f,74,\ d5,f5,7d,1d,c6,a3,33,fd,5c,7b,1f,1f,8c,6d,03,87,55,4e,ed,5d,50,20,6a,4f,89,\ 94,f7,30,8d,cd,b8,e5,c4,67,6d,81,01,b8,a1,af,58,55,24,50,2f,ef,bc,66,98,e1,\ 18,31,de,5b,05,97,5e,01,e4,c9,99,20,5c,24,87,9e,4c,55,2d,3b,04,c1,71,17,b4,\ 24,2e,74,24,78,84,be,a6,18,71,c8,49,25,a6,59,50,29,93,e7,e3,fa,c5,a2,03,e1,\ 71,b4,c3,fc,51,c8,b6,e1,ae,c9,a4,84,be,ec,81,5b,31,f0,9f,c0,07,a4,a4,96,a4,\ ab,b4,2f,26,7c,7b,6d,f6,ac,48,28,9d,70,12,d0,da,5d,a2,54,f1,73,8f,42,45,5a,\ 6d,2f,29,eb,42,59,f4,f2,39,8b,53,33,9b,41,e4,ab,fa,0d,00,17,af,39,d7,bb,87,\ ae,c3,5c,ba,14,d6,8e,1d,3b,b5,36,98,ba,aa,47,d9,d6,f4,cf,4a,a5,62,37,41,c5,\ 20,c6,77,64,d0,68,bc,5b,dc,ae,e9,1b,0b,15,15,ac,53,8b,0c,00,ee,2f,fc,d7,b0,\ 59,72,e0,98,da,85,21,a5,85,51,98,eb,ed,a8,23,e5,71,03,9d,0d,76,bf,4a,aa,f4,\ 86,75,ea,34,0a,57,30,d8,fa,3b,af,1b,2e,e0,38,5a,25,1f,50,d3,b2,cd,86,ad,f2,\ e3,97,39,81,dc,63,78,ee,5f,c3,dd,6c,1e,1c,54,ca,fe,cf,82,a5,78,81,4f,dc,3f,\ 28,a2,44,23,66,6b,9d,35,16,e7,c5,2c,25,1f,2c,07,a4,b2,88,f4,1b,d5,ca,71,1f,\ 98,50,b1,27,6b,5c,41,9b,e0,c5,eb,2e,b3,ec,da,6e,07,f2,00,99,f2,28,b5,b3,3c,\ c7,a1,d5,bf,e2,db,c8,e4,98,52,d2,b6,8e,6d,d0,17,9c,ee,85,8b,c7,1c,32,21,70,\ 21,67,f8,ca,b1,18,02,91,ec,f3,08,fa,86,f1,ef,e5,25,2c,39,5a,0a,f0,ce,33,f4,\ 14,fd,16,41,8b,be,a7,57,36,3a,fb,42,fc,8d,4f,9e,1d,ca,fa,b8,c3,3f,a0,f0,da,\ fb,a9,62,22,8e,fa,c5,83,10,c1,92,a0,65,ff,69,ae,be,a1,b1,87,63,67,7f,fa,b0,\ ca,ba,66,5e,2f,7c,87,04,61,bb,8f,de,3e,28,79,cc,b0,57,9a,9e,e0,21,79,8e,a6,\ 47,e0,0e,43,57,33,c5,52,d4,01,d4,fc,91,d9,5d,6c,5e,5f,46,82,e6,9e,3a,cc,d8,\ a0,f1,b2,45,3c,b2,f0,b4,30,16,49,ee,6f,0e,7a,4d,bc,27,6e,f6,78,0d,b0,93,b9,\ 4e,25,c7,9b,61,fb,5c,db,e7,dd,9e,a2,30,69,02,9e,01,e3,0c,57,95,2b,6f,c1,e1,\ ec,75,0d,1c,17,a1,c5,7f,90,93,18,4a,26,2d,72,07,c9,f4,50,12,f7,b9,53,59,78,\ 78,93,61,4b,80,35,89,e0,d4,b0,93,87,d2,ac,60,29,12,bc,fb,36,91,8e,d9,de,0f,\ f1,60,84,b5,76,a5,70,fb,ca,7a,c4,c9,43,a8,b1,dc,b8,79,ea,6c,96,7a,59,0c,30,\ 7e,11,d1,57,e6,85,b6,2b,20,f7,3f,30,6e,33,5d,a5,e9,7c,92,11,c5,c7,55,1e,d6,\ 27,b8,aa,53,89,48,1c,db,a1,35,f4,e1,24,b3,a6,5c,38,9f,a9,3b,28,66,cb,b5,5d,\ 23,c7,68,8a,07,19,b3,26,fe,11,75,1f,8f,27,18,cd,04,8e,cf,24,cc,0b,1b,2f,1d,\ 08,94,b9,dd,e4,e6,4d,c3,8e,1a,62,ba,52,17,cf,86,f3,68,85,a9,f9,3f,7c,88,4c,\ ba,ee,ca,02,66,c4,01,76,01,4d,8c,9a,85,ac,bb,8e,61,b7,35,71,0a,0a,97,76,b2,\ 21,5e,3b,57,98,07,57,00,e9,74,32,44,df,92,1a,0b,4d,39,93,98,ff,54,ee,c8,f1,\ 41,1d,94,bf,7a,c5,dd,5d,76,95,69,08,ca,d6,28,7c,94,44,bd,68,19,1d,39,1f,ad,\ 77,2a,90,d3,d6,d4,78,a6,fe,be,d6,78,06,71,9f,e2,ae,7c,b4,19,f2,bb,11,f0,e0,\ d9,47,de,a6,14,2c,b0,ef,40,d1,83,70,0f,b4,2c,bd,8f,37,d7,62,f4,51,ed,2f,98,\ 84,3c,d3,40,0f,52,ac,a1,64,29,de,23,dc,0a,a3,e4,aa,ab,e1,00,0d,9a,02,10,ca,\ df,00,f0,da,dd,bf,c5,60,7a,a0,3f,dd,80,53,1c,a7,42,f8,ee,98,82,3a,1d,03,92,\ 54,2f,ec,ba,74,47,78,da,09,ec,a2,50,07,0c,30,1c,82,41,e5,42,7b,52,f9,70,fa,\ fd,c6,e1,5c,f4,c4,81,ef,25,b7,52,bc,3e,27,0e,a4,71,11,0e,af,74,dc,6a,a0,cd,\ 8e,62,cd,4c,40,fd,2d,d9,cf,ef,b3,6f,d5,c0,da,69,d8,2b,81,fe,c0,c4,fa,06,8f,\ de,5e,06,4c,ac,23,6b,40,a6,f0,11,65,2f,af,09,1c,74,e4,99,1e,97,3e,83,b5,0d,\ 6c,8a,2c,44,32,33,84,8a,bc,c9,68,2a,32,a3,63,d8,8c,a9,51,4f,a8,15,14,38,9a,\ 77,88,4e,43,fc,b8,c0,25,ef,52,d6,75,80,58,d8,72,c5,19,2c,f6,fe,bd,be,4b,1d,\ eb,a4,3f,86,1e,02,7b,13,f9,2c,10,5b,48,0b,53,34,19,c2,eb,76,73,91,28,02,45,\ f9,96,03,9d,21,d3,74,1a,78,9d,e2,a4,9c,2f,74,5a,7a,ce,28,cc,b7,9f,5f,6b,4f,\ bb,9c,3d,7d,85,89,d6,da,3b,3b,83,c8,cc,b6,c8,11,ea,b4,0d,cc,5f,a2,94,cb,a4,\ ec,ae,8c,b0,7a,2f,c7,0e,7a,1f,63,32,61,b2,17,0d,2c,7a,7d,df,ec,dc,b8,4d,81,\ c1,5b,b3,a6,8d,86,bb,2d,55,52,2f,8c,4c,70,0b,99,7f,0c,d7,92,c3,f8,33,60,eb,\ 06,b3,1d,3e,b5,ee,d3,27,11,d2,87,2f,d4,3a,76,29,d1,c3,9e,ac,93,db,80,c7,41,\ a1,25,ef,c4,d6,5f,3c,2c,f2,51,d5,50,f6,31,a9,b5,65,4d,61,b2,4a,4c,92,d1,15,\ b7,36,77,a5,b7,5d,c8,a6,21,20,c5,1d,af,d7,b7,41,90,8b,d1,8d,24,ae,11,13,00,\ 0a,67,13,39,f8,19,cc,df,d2,66,92,c7,ab,69,21,8e,3d,41,31,da,22,6f,4a,e3,47,\ 7f,da,ab,9f,eb,85,a9,14,3c,bc,c4,c3,72,91,1e,68,a6,ca,37,17,ee,34,74,2e,81,\ 39,68,87,1c,b5,51,f2,a4,06,e6,e2,0c,62,50,66,79,6e,76,5b,a4,0c,7d,e0,80,74,\ 8f,0b,1d,86,dc,da,cd,5e,df,6d,85,2a,e3,72,86,38,c5,e0,3c,53,fb,e8,66,50,d5,\ 28,77,e4,03,a4,3c,b8,58,ee,c0,c0,cd,2b,6d,c8,c9,3b,73,50,a0,b0,6d,99,59,01,\ 42,00,b4,82,4a,8b,6b,93,b3,c2,b9,17,22,c0,19,28,9d,89,50,08,a8,9e,ad,5b,ae,\ cf,90,94,a3,51,29,ae,e8,10,82,1c,6f,46,c0,02,1f,4d,a5,a5,7a,b1,5a,20,7d,8a,\ 6c,59,c7,09,14,34,ff,50,bb,07,6f,87,bd,4d,f4,2c,6e,9e,1b,aa,5a,de,84,2e,d1,\ b5,8b,b6,a4,40,27,6a,29,07,12,30,85,2e,2b,7b,2a,ef,18,63,9e,47,2f,fb,7e,f0,\ 97,df,c3,90,aa,0c,45,30,9e,f5,7d,ef,65,d2,8f,f8,d1,3c,88,b1,fc,f7,e4,35,e7,\ 0f,53,05,61,26,bc,fa,2b,9b,83,7f,59,90,08,fc,fb,96,70,95,fd,6a,a7,15,4c,54,\ a5,25,3a,6d,f1,c2,24,b0,64,ee,52,54,30,a5,1e,59,20,12,59,61,21,03,ea,c2,02,\ 9b,b8,d9,78,46,cb,a1,65,f2,ad,84,5a,7d,17,71,5a,69,c9,2e,e1,d7,ba,f0,24,b3,\ 71,29,9b,2c,b3,a1,bd,67,5e,c8,9a,74,95,4a,4f,81,1d,e5,26,4d,07,77,bc,e0,90,\ 5c,d7,79,45,f6,17,c9,6b,8d,7b,5e,9d,5a,28,62,b7,de,66,85,f3,78,ec,38,52,37,\ 5d,1c,3e,ed,12,ba,6d,85,1a,74,08,96,7f,bb,0d,37,cb,83,f1,16,cb,f4,8a,c4,93,\ 63,2d,53,c2,80,13,23,08,d1,02,f9,e5,bd,29,51,b3,ae,4b,f6,e6,f3,20,cf,93,82,\ f8,fc,2f,86,a1,21,99,f4,8b,02,5b,c2,2a,51,2d,53,9c,c3,bb,36,8c,69,a9,11,56,\ 3e,d3,d8,6b,fc,d9,43,f7,35,db,7e,c2,9e,81,22,54,ae,3f,64,5d,68,d7,8c,54,74,\ 1f,a9,5d,75,04,84,70,97,cf,d2,b8,67,a7,ae,ad,e8,57,46,b6,e3,52,d4,d2,7e,f4,\ d0,75,10,0b,63,71,34,96,1f,66,1c,cc,ee,e2,29,61,49,cd,b8,04,ab,05,3e,2c,44,\ 45,97,14,f1,4b,9b,04,6c,3a,f3,d3,c0,3d,2a,aa,01,6d,07,0a,39,f5,1b,11,a5,73,\ 96,f9,22,a2,5e,e1,e2,36,63,d0,63,08,2c,f7,a2,73,e1,36,8b,fe,7f,e2,b5,3b,de,\ c6,4c,ee,95,67,4e,72,a9,8c,fb,59,72,fe,86,53,ee,8d,11,51,5a,53,d8,ea,04,3d,\ ad,fd,5b,c6,a4,98,48,06,0f,18,c1,ec,ad,92,9a,c7,1e,72,9f,0c,9a,62,e1,53,e3,\ 6e,4d,a2,78,65,83,ee,0c,82,e4,df,36,4b,ed,d4,6a,ba,c4,a6,28,9b,11,b2,73,35,\ 0f,92,85,2c,e3,2a,c1,a6,2c,6b,e9,ad,db,53,91,d4,45,b4,d4,1e,76,37,45,1b,c9,\ a0,28,54,b5,54,e3,e9,ea,18,af,79,9d,1b,93,42,20,37,93,8a,b5,74,24,3d,a4,ce,\ e4,d7,8b,38,88,84,f6,e0,16,86,2f,b5,54,d8,57,26,80,11,b6,2d,b1,8a,50,8d,de,\ c3,b9,57,ae,03,2a,b3,cf,3f,d3,dd,1b,3d,73,6e,58,f9,27,dd,af,48,7f,45,60,bb,\ d7,69,b3,c6,e5,f5,32,22,8e,06,15,6f,fe,ed,fe,1e,f7,30,e7,8e,69,d2,58,75,44,\ d5,dd,82,8a,fc,b7,41,a8,d5,d2,3e,06,f7,f7,6d,dd,89,43,c9,48,04,d8,ae,9f,39,\ d2,bf,00,95,7c,c2,2e,a4,c4,ce,9f,d4,ed,69,d0,7c,84,3a,dc,1c,95,6d,4d,e6,1e,\ 59,32,7e,c4,60,71,ff,c5,17,5f,3e,2e,a7,8e,52,4e,73,e6,54,6a,fc,f8,63,b2,01,\ 8e,eb,74,ea,87,27,90,66,e2,e5,2c,54,18,8a,a9,df,af,55,d5,ee,0c,e8,62,bb,ce,\ 04,96,c1,c7,94,45,dc,45,ed,fd,ac,32,54,80,3a,80,c0,77,de,3a,e2,64,60,17,63,\ d9,5d,4f,6d,e7,ec,ad,6c,da,82,e6,16,23,13,29,a8,96,7a,f7,73,d6,1b,35,98,0d,\ c7,80,10,e0,df,c0,ef,a1,bd,00,e9,c7,4f,7c,15,9c,05,fc,f1,36,ee,61,a6,a8,1d,\ 7e,d1,79,52,29,f4,56,d6,91,1b,03,a7,d1,81,97,d5,c6,64,e9,2c,1e,86,46,13,b2,\ 2d,65,b4,16,6f,9c,5e,6e,ac,53,27,83,5c,b9,d5,16,0b,b7,ff,73,a1,22,6f,4a,e7,\ 35,cb,bb,47,3e,74,b0,d3,97,af,6f,89,d8,03,6f,d6,4b,e1,6b,58,a1,8a,b6,e8,e3,\ 2e,ce,d8,dc,51,33,79,93,73,7a,e1,ee,f0,9d,eb,b6,25,95,7e,c6,d4,2b,13,49,ca,\ 0b,71,73,bf,1a,bb,6e,7d,09,ad,98,44,2a,23,eb,6e,83,db,bc,4f,21,7b,a9,5f,af,\ d6,cd,9b,47,6b,35,28,88,2e,98,3a,e9,8c,42,34,4d,a9,52,10,d7,ec,25,02,ff,bd,\ 12,58,e6,8d,58,da,e6,17,54,1e,6e,e6,f8,44,0d,18,78,c4,cc,61,46,9b,c1,52,41,\ 7d,e1,dc,29,78,16,10,57,d4,91,28,ab,3f,62,cb,c5,26,46,8d,78,66,c0,b5,7b,24,\ 6b,44,62,f9,8e,33,cd,53,f1,fb,e0,18,ef,5a,f3,8c,cd,55,8a,74,4a,79,87,7b,77,\ 67,9e,d6,c9,90,0a,24,c3,3c,7e,98,db,d1,5f,59,ae,52,30,29,b3,26,4d,45,40,1b,\ dd,8d,c7,aa,02,e5,aa,7c,52,db,51,2e,8b,8a,7a,51,82,be,d1,b6,5d,58,c1,e8,02,\ f5,89,f9,cf,ca,92,82,8c,d2,00,e5,9e,2c,87,d5,7d,be,80,19,68,1f,3c,8c,57,b4,\ 98,69,31,19,d1,c5,3f,c2,9a,94,5d,e0,e2,6c,92,7f,8b,1e,b2,c3,17,b5,79,05,c8,\ 7d,d8,07,ab,58,f4,e3,c2,57,72,41,61,87,f2,cd,d9,0e,d9,e8,54,76,54,9e,00,48,\ 99,d9,70,dd,70,d4,3e,71,f3,d2,f6,79,92,0f,2f,36,5a,f7,fb,8b,76,96,82,0c,f6,\ 50,e9,57,cf,d2,79,a7,23,48,fd,a6,e6,d0,6b,83,f2,2f,c7,45,6c,c3,45,5f,a7,b9,\ ae,84,59,80,04,bc,3a,7e,69,b8,0b,01,3d,62,d7,78,87,b9,79,e3,96,dc,5e,88,e7,\ 64,8d,e8,4a,f7,e4,f1,41,1a,a4,75,a9,47,2f,db,9c,40,11,15,95,a2,3e,d1,d5,bd,\ 9a,f4,06,a3,bf,44,1f,7f,fa,64,87,29,96,98,7d,f7,5e,5c,b7,d5,5d,cf,49,98,e8,\ f4,c9,8f,de,bc,b1,5b,2f,ea,04,01,9b,cb,35,3e,bc,21,44,1a,47,60,2a,c0,8f,1d,\ 77,8d,4b,c3,3a,67,98,88,21,50,42,9f,e1,3b,3f,af,d8,1e,7c,85,f1,48,dc,05,c9,\ f5,7e,67,10,20,3f,a0,31,98,81,1d,35,56,2a,b7,f4,0e,ef,e4,2e,04,d2,2a,ca,21,\ e9,da,1d,46,62,fa,5d,e0,c4,83,f6,bd,77,cc,2d,1d,87,47,03,0d,a5,6b,5c,f0,6f,\ f1,60,5f,f0,43,22,33,6b,32,7f,df,54,e7,49,03,a0,1c,a5,3f,3e,8b,b2,45,e6,a7,\ 6c,33,11,8b,cf,1f,48,30,3f,f3,a2,e2,27,7b,89,f5,e1,e4,bc,b4,d6,88,9a,9a,e6,\ 4f,9d,c5,09,38,25,a7,37,70,77,ff,86,c2,05,07,92,69,ef,ef,22,22,cb,8b,09,84,\ a1,48,49,94,3a,65,7f,95,9b,60,7b,1d,cc,ae,2e,6e,de,ae,c9,02,2b,e0,23,68,e0,\ 52,5b,4f,b9,5c,bf,e0,0c,8d,ed,52,09,e5,38,b8,40,45,4e,1d,bf,23,17,d2,4e,82,\ e0,07,44,22,b8,99,7c,f4,1a,2b,dc,d0,cd,78,04,6a,09,e7,8e,83,db,60,94,5c,ca,\ 5f,73,70,bb,47,cf,62,12,f8,d8,35,1a,a3,cb,bb,a7,dd,bb,50,fa,f3,91,c7,e4,7e,\ 51,a5,2e,37,a0,8d,39,0c,83,fc,e2,73,6a,36,a8,fe,6d,81,11,2f,d5,d1,49,8e,de,\ 42,0d,fa,bb,8d,c7,3d,db,b4,fb,e2,6b,c1,e1,4b,1c,2f,53,fe,26,e7,ea,40,8d,6d,\ 65,e5,a3,5c,4a,66,ce,10,cf,34,8b,a2,fa,4c,b3,19,08,0c,fd,de,0c,45,c5,71,d8,\ 91,0c,5b,20,e7,bf,63,dd,6c,3c,05,f0,8c,12,20,08,4a,08,ef,c5,d4,61,3a,a2,5b,\ 5f,ce,00,21,06,2a,37,d4,22,7b,92,1a,8c,cb,42,6d,a8,75,84,29,32,dc,7f,e3,3b,\ 5c,70,fd,6e,81,04,77,98,77,05,08,67,c2,39,6e,72,2f,88,02,7a,0b,5c,8f,f0,92,\ 4d,64,b7,aa,fe,a8,2a,d2,42,ee,61,55,84,09,b0,c3,65,22,71,a1,a6,07,04,60,49,\ e8,13,8c,f3,7b,1b,46,95,66,28,f4,4b,41,df,37,84,d0,c2,1d,64,b9,b0,99,66,96,\ ab,30,46,49,de,f4,1e,8f,df,b6,cf,d8,31,78,a2,57,0d,21,2f,55,62,74,7f,ca,1a,\ 43,6d,2e,9f,e0,52,8d,9e,d5,e1,da,0a,d5,4f,85,65,f2,b7,4f,3b,0f,be,5d,ef,99,\ 72,8c,e2,72,78,05,f0,2e,67,11,85,82,6f,2e,d0,f9,3e,62,90,e9,24,cf,2d,a6,75,\ 88,3f,f5,2f,a3,54,c4,dc,8f,ee,18,ba,a8,cc,46,1a,09,6b,66,06,a2,cb,05,26,8a,\ 76,1a,e4,96,bf,3b,cf,2a,48,11,3d,4f,c7,0a,35,06,09,4d,8c,dc,36,f3,4d,bf,58,\ 74,5e,10,17,bd,61,f9,c6,4f,d9,01,a4,1a,8e,de,5b,4b,32,8a,cd,d3,44,99,10,fb,\ 35,c9,b7,9d,ca,db,54,94,c1,a1,3a,71,b7,59,88,6f,49,39,63,a9,7a,4b,82,8b,54,\ 7b,f0,87,d2,ee,0d,09,fe,96,d6,ac,57,04,67,ae,75,7d,be,a1,f0,4f,c2,64,7d,65,\ 84,52,5a,1a,c4,b9,f8,4b,b7,8e,a7,b0,07,5f,2f,6c,1c,88,bd,e2,9a,aa,c3,cb,2b,\ 59,d3,85,7e,15,bd,ae,8f,7c,f7,f2,2a,bd,43,21,aa,50,8b,85,07,e5,10,72,10,9a,\ c3,1e,f4,70,f3,b3,07,00,29,a3,c3,6a,51,3c,0d,8f,1a,7c,ba,80,9e,26,52,35,46,\ 15,14,83,e8,d1,3a,48,33,bd,7d,e8,4d,5f,dc,fe,ba,50,9a,4b,80,36,86,f2,89,5f,\ 7e,e8,48,82,36,a6,9f,09,36,21,01,b0,22,fb,d4,4f,3e,fb,19,f4,31,bb,4e,35,09,\ a0,93,c5,80,0f,0d,44,7e,de,88,5c,df,09,60,09,75,a7,a1,38,51,1c,6d,94,3e,8f,\ 9e,9d,8f,9e,ad,fa,1b,51,d2,10,cd,4d,6d,d3,c1,4b,a5,dc,d3,c8,4f,bc,da,fd,11,\ 91,4e,11,c7,d6,86,8e,25,80,7d,11,9e,46,d5,46,85,40,1c,14,73,b3,4f,15,e8,2b,\ 9c,49,35,cb,6c,0b,99,e2,a1,44,aa,be,1c,de,f6,c5,83,7c,eb,c1,41,68,f4,7c,ce,\ cc,e5,8d,30,26,99,71,c2,f6,d9,de,34,e2,80,53,d3,1b,dd,f4,0a,69,59,95,29,45,\ 5a,15,66,9d,67,ed,21,dd,8c,08,6d,64,00,d5,cb,35,05,9b,38,f0,10,0e,6b,00,2a,\ 1f,58,15,96,18,f8,d5,b4,e7,4c,ce,25,ba,9f,b0,30,cd,0c,b9,64,80,41,70,7f,ad,\ 82,96,8f,38,f1,5a,57,e8,0c,cc,f4,75,77,94,e5,e2,fc,e4,77,0c,d0,ab,99,83,18,\ 0c,0f,9a,ab,0e,10,ba,1a,95,46,fc,ed,91,2d,f6,30,75,bc,d4,2f,ea,48,ab,7d,c5,\ a5,0b,3b,37,8e,d3,96,44,47,4a,92,77,80,6b,06,d3,7d,7f,e8,0c,74,f2,cb,f7,37,\ 5f,a6,40,12,ed,d7,5b,f7,de,68,bd,d8,65,90,4b,55,e2,7d,13,97,67,50,3a,7c,ec,\ 6a,35,f4,83,e6,3c,aa,3c,66,fc,e8,4e,13,8d,b4,ae,df,a3,3f,e0,0d,08,81,0d,f4,\ 4a,1d,57,00,b0,8a,69,f9,73,74,52,88,2b,60,93,f7,88,90,76,38,42,26,a2,29,53,\ 8b,ed,16,63,12,71,7f,84,d9,e2,1c,1f,f0,1e,1f,2e,be,06,e2,ac,a0,8d,df,4a,d2,\ 0e,4e,64,93,e3,cd,33,84,33,b2,44,52,0b,a7,29,94,b1,ae,6e,f7,35,63,ce,98,48,\ 81,a7,b1,51,a8,ac,78,be,5e,da,44,98,53,ad,f2,5b,e9,93,87,04,f3,a1,16,6b,bd,\ 85,e4,d3,4d,bc,cb,c0,e9,04,dc,08,d9,15,48,2d,6e,8c,81,ea,44,a6,9c,0c,c3,38,\ fa,83,ec,54,27,b9,52,4c,02,22,66,5e,1f,15,f8,ac,69,da,fb,ec,0c,04,89,62,92,\ 01,26,0b,4b,ef,49,1b,f3,b1,18,aa,8f,43,74,ab,98,4a,35,1d,5b,f0,b7,85,a0,ee,\ 95,9b,8a,ea,b4,44,be,04,84,c0,c7,ac,82,25,b9,b6,01,0c,15,b0,2b,8a,f8,73,43,\ 62,49,f8,2c,78,c8,6d,2f,89,8b,88,f9,1a,4e,1c,e3,ae,d8,ea,77,3c,96,b9,2f,e0,\ 83,a8,7f,d1,4a,c4,16,93,af,d6,61,6e,2b,7e,52,1e,d6,86,5f,cc,8a,70,cd,3d,46,\ 51,2e,4a,d0,e2,29,90,9f,d5,79,68,f7,65,38,19,56,31,5e,4d,0f,4a,84,c2,35,cf,\ ee,42,ba,29,c9,d5,d8,8a,b1,35,b0,5b,77,82,32,dd,20,37,3c,7f,31,5d,06,b2,29,\ fe,bd,f9,50,dd,6e,3f,af,64,26,6e,60,de,57,3d,08,e6,7e,49,a1,20,03,68,7d,27,\ 61,3a,87,c6,86,00,cc,6a,7d,b2,3b,d7,4a,4b,a9,1b,16,68,18,c0,8c,11,39,46,82,\ d7,a9,d0,dc,1f,96,1e,ad,bd,c4,bb,a0,c5,4f,78,97,9d,cf,18,91,57,e5,4d,d1,3e,\ 7c,e3,3c,af,4e,3c,04,2b,aa,fc,83,a9,75,05,69,31,6f,a6,1a,a6,b8,0f,52,e3,93,\ 09,0b,0a,69,e4,a0,19,11,b0,32,bf,4e,af,4b,6d,9a,0b,c1,af,22,c5,de,bd,11,ee,\ bd,4d,11,a0,f7,ac,0f,10,7f,0d,3f,c6,cb,21,61,8d,35,e8,42,89,a0,c6,85,65,5e,\ d9,a3,44,51,8a,31,fb,51,62,62,7d,ce,1f,cc,96,b7,08,6f,dd,9a,7d,f3,e3,0c,d2,\ 31,b1,4b,5d,f5,72,22,ce,02,6c,0d,bf,57,35,9e,8c,b1,23,1f,65,51,04,79,a2,ff,\ 0f,54,56,4f,1b,cb,26,23,0f,94,5c,71,9a,d5,37,47,24,59,85,0c,04,6b,74,08,f3,\ 32,a6,26,c0,8e,83,f9,46,43,d3,fe,9b,59,8c,21,8b,c2,e8,82,45,3e,bb,78,53,7c,\ 04,d6,d0,82,c2,6e,d5,4e,09,d4,34,be,54,64,69,ad,1d,87,cd,5f,ab,31,0d,1f,2c,\ ae,db,26,03,9f,e3,bf,bf,40,01,a9,1d,ec,b1,bd,b6,e2,c6,d0,bd,49,60,db,5b,72,\ 18,59,2c,5e,7d,f1,4d,80,c4,55,b7,c3,bb,6a,cb,cf,ff,a9,2d,88,6f,c5,d6,d8,e0,\ 8e,65,af,12,15,b6,48,e3,11,b6,ad,c3,81,76,7d,68,93,7e,ed,c3,c5,63,0d,32,4a,\ 9b,4c,f7,af,91,3f,e9,be,f5,d7,69,a3,56,8f,98,4d,f2,28,c7,17,cd,2f,2f,a8,00,\ 24,e3,17,54,81,02,53,0f,40,31,c3,0e,9e,49,29,14,1f,4c,cc,62,d2,9e,d6,88,d6,\ 72,fb,7a,1d,82,5b,e6,70,03,aa,c5,b3,d8,8e,30,6b,06,48,76,7d,68,97,6b,38,a3,\ d9,03,96,5d,74,1f,bf,aa,74,a6,cf,e8,75,d8,d9,0b,c4,df,2c,1a,c1,a7,d5,5c,88,\ f0,64,ae,d0,a2,f3,57,12,60,65,3d,ee,5f,ec,58,cb,79,ce,68,bf,7d,68,e3,ae,ca,\ 73,32,b5,1c,86,1c,c9,a5,dc,83,9b,60,58,4e,bf,a2,c6,a6,0e,f1,64,65,49,1a,a1,\ cb,fe,7e,24,73,b0,ad,10,86,32,36,87,2f,b8,bc,6c,4f,c1,4d,6e,71,28,f0,42,00,\ 9a,7d,2f,b7,33,b2,d0,5a,fd,82,16,a4,11,b0,8c,80,00,9d,df,7b,71,5e,9d,7a,0b,\ 12,3d,a8,95,73,60,b3,5b,aa,56,38,d4,68,e4,7b,83,32,44,5c,1b,fc,6e,87,e6,fa,\ 96,ea,67,b3,f6,6c,3e,57,cd,dc,4d,52,a8,27,19,a3,e0,cf,73,65,64,98,57,36,b8,\ 84,14,b9,3e,02,ad,f5,b5,63,80,e2,ff,8d,25,c3,27,f3,99,b6,a2,c5,9c,8a,d5,63,\ 57,d0,d8,18,42,35,7a,05,45,0f,85,5b,1d,35,42,cd,02,14,40,46,87,ff,52,d7,c1,\ c7,d7,f3,ab,8c,3e,de,c9,d2,c8,63,0c,d7,90,c5,f6,24,e9,f9,fe,63,48,12,36,70,\ 42,fd,2b,b2,56,6e,0d,ac,ce,1a,10,cf,22,27,11,93,bd,e1,7d,c6,04,ae,6f,23,95,\ 44,18,26,cc,19,64,1f,8c,1b,da,85,3c,a2,c4,8e,0f,a3,91,fc,89,26,77,3a,3f,fa,\ 5c,a7,de,a7,f7,32,6e,a4,33,27,d8,ca,d4,48,a6,09,5c,20,0b,bb,30,94,23,f4,f7,\ bb,7b,c3,43,f0,d4,16,73,25,24,97,d7,79,de,81,16,0d,73,0d,cd,14,19,2d,79,2a,\ cb,7d,97,e7,91,77,09,b3,01,e6,bc,dc,06,9d,88,e5,e0,68,58,22,6c,43,8a,81,a6,\ ca,99,ab,6c,f1,f9,4c,84,f5,42,ae,e1,92,91,8d,22,77,2b,27,5c,f7,bf,92,19,01,\ c0,52,a1,52,57,2b,78,e9,7e,34,27,bc,a3,2d,3f,a9,79,12,9c,af,55,f0,e7,5e,d8,\ f8,5e,8c,cf,d2,d8,4a,57,33,03,16,45,b2,f1,52,c5,d8,d3,f5,40,76,04,81,84,3b,\ 49,35,1f,85,56,83,0b,78,95,c4,91,4d,24,2b,67,ed,1c,f8,1b,bf,19,ee,b5,e4,f7,\ 06,98,ce,d9,65,aa,50,70,8c,b5,f4,7a,cf,0c,ce,88,08,71,ad,05,8c,36,a8,74,5e,\ a3,f9,f9,a3,98,0e,1b,56,73,de,c8,3d,34,7a,99,1c,df,e4,58,28,22,23,c0,be,38,\ 97,83,55,0d,8b,91,b2,a3,09,98,5a,b4,f2,c7,4d,99,4d,d8,f1,6a,e0,4d,4d,67,fd,\ fd,77,97,9f,c3,50,ae,b5,a7,6e,34,be,fd,5a,e4,96,fe,fc,53,90,84,53,d2,c4,11,\ 69,94,ab,13,87,14,e9,67,a5,b1,69,1b,24,9b,af,78,c0,f3,6a,40,c0,2e,49,34,6f,\ bb,10,d9,d0,e5,eb,7c,8e,fa,02,74,32,ad,4d,a7,98,b9,aa,4f,a4,c7,2d,fe,31,92,\ b7,e0,b4,49,ca,41,9d,34,9b,4f,2c,9b,69,20,46,e4,0e,f7,b6,fb,d4,c3,3a,f6,89,\ e8,37,fa,d6,42,aa,58,cc,67,62,fc,c0,2d,6c,08,59,6d,cf,bc,e7,06,7a,99,f6,24,\ 7b,c6,23,c2,72,b2,2f,6d,44,fb,52,4b,14,8f,d2,5d,6f,10,d3,01,c6,7d,71,bb,22,\ 10,0c,34,13,be,e3,83,e9,d5,e5,ac,27,33,c3,66,35,93,4a,22,55,7d,f0,48,d8,4e,\ ad,c4,92,dd,0c,c1,8b,5e,81,b4,f7,87,fd,9d,69,f2,c0,89,43,c3,6e,5c,71,8a,66,\ cd,57,6a,4f,b2,07,7b,f3,7e,b8,6e,51,08,73,70,ed,8e,10,50,6b,f9,61,e3,5c,62,\ ad,a8,58,d6,60,a8,b6,56,00,a0,16,22,63,62,50,37,20,79,69,17,43,0c,f9,c8,45,\ 04,56,1f,3b,71,62,3e,4d,2a,a8,5c,6a,b4,a8,c4,3a,66,6e,21,54,ca,6a,f8,b2,45,\ 7b,76,61,fb,4d,6c,7d,ed,e5,98,5d,64,7a,26,0b,93,87,76,f7,78,1e,20,ec,03,7f,\ 36,42,7a,e9,c8,56,1c,b0,de,37,04,90,81,a2,51,41,eb,31,84,4b,21,cf,29,1c,ad,\ 6f,ba,58,71,fd,c0,70,e9,95,3b,76,b0,f4,44,30,46,2c,f1,6b,10,9b,79,91,a0,1d,\ 99,7e,37,81,36,90,88,3a,43,fd,bf,57,e5,6a,c2,b5,d5,b9,b7,74,06,22,c6,a7,89,\ 85,20,50,ad,fe,40,8b,6a,ba,70,99,00,0a,90,c0,db,b6,13,e1,ba,94,4a,0b,10,59,\ e5,be,aa,ae,b6,12,93,87,b9,a9,35,b0,52,e2,c0,a8,d5,4f,d0,b3,4b,6a,49,2b,74,\ 83,86,17,08,fd,b4,fe,42,ba,78,fd,9f,d4,d8,18,e3,8e,58,ce,5e,8a,63,f0,6d,3c,\ ed,b3,43,9e,57,03,ea,25,93,1a,84,f4,ce,52,d7,50,b8,37,09,55,20,e1,a7,e7,5f,\ 80,ec,ea,1b,39,41,b6,a1,31,00,c5,cb,e7,7d,af,27,c6,47,59,55,fa,ab,69,b1,84,\ 7a,fd,32,89,0c,9c,92,f0,85,6c,b0,2b,57,a6,32,55,08,48,6e,7e,36,09,8b,43,d8,\ 92,e3,a1,c6,eb,ac,0a,7c,34,d8,b9,1b,95,39,b2,b0,77,e9,70,b9,f5,e9,48,e5,8d,\ 08,71,1c,1c,07,b8,bf,09,fa,ed,31,c0,f1,f4,96,62,d8,19,db,ba,9c,a4,f6,74,8f,\ ad,6f,89,0e,32,1f,fe,61,67,37,ce,e2,4d,85,24,62,86,f3,ce,c8,68,51,ef,fb,50,\ 54,f4,03,39,de,c9,6a,8d,7f,4c,e9,3a,3c,02,40,09,d1,08,66,2b,b1,4d,e2,15,14,\ ff,79,8e,33,43,09,07,8e,29,b5,2a,f0,df,42,b5,f3,24,c1,89,c6,00,6f,fe,2e,b3,\ d9,7a,cb,eb,44,42,9d,3a,4b,90,c6,c6,ca,e5,92,43,fb,a0,b4,1e,df,d0,d2,fb,e0,\ 47,45,62,b4,ef,1a,b5,84,61,5c,66,4e,b4,95,66,88,93,92,f3,06,93,67,28,1d,c3,\ b3,ee,09,84,25,b8,8c,9b,3f,8f,d8,84,5a,f8,af,09,eb,26,c9,14,04,6d,76,c2,1e,\ fa,84,b8,15,c2,63,ba,74,b8,87,79,f3,43,0e,ad,3e,ef,a3,64,f8,62,a2,9a,00,92,\ 7c,09,f3,36,5d,42,f2,7a,0d,fd,a5,f7,14,ae,7f,e2,22,59,44,84,de,a6,c9,ea,dc,\ 38,fb,dd,a4,3b,23,14,31,3c,68,a9,87,3e,96,ca,69,0a,1e,b1,7a,c6,5d,d6,a2,c9,\ 21,63,b3,ae,69,e8,4d,a7,6c,50,fe,14,dd,13,ae,55,6e,ae,3b,dc,93,50,60,86,88,\ d7,db,2b,95,fa,cf,73,90,c8,67,ec,a4,51,bc,5a,52,a3,f9,4e,b5,f8,bc,fd,0a,2d,\ c0,44,6f,76,b9,19,eb,51,80,04,af,b8,70,ff,9c,9b,10,89,05,8d,f2,f9,b5,bd,db,\ 11,34,29,23,d6,46,0e,5f,9f,b5,a3,3e,6d,50,06,b1,7a,34,77,4f,15,4a,c4,f7,ac,\ 11,04,b7,2b,9e,88,ec,84,e0,0f,ab,8f,29,39,60,15,ea,3f,b5,27,be,e0,b6,b5,dc,\ 9f,32,5b,a4,2b,64,7e,52,1f,d2,98,13,eb,76,d0,44,12,1c,ce,bb,97,0b,cd,98,b1,\ e7,f2,3e,c6,d6,dc,9c,97,e2,7c,b1,b8,9e,27,4f,44,0d,e9,1f,ce,bf,1d,e5,9b,3d,\ 3a,05,0e,a7,f0,46,63,9c,74,d7,a0,5a,17,8f,c9,27,1e,79,54,ef,ce,90,dc,2e,c6,\ c7,a0,10,92,4d,10,d7,7c,0e,87,7e,a5,7d,bc,9c,55,91,57,8a,90,0d,9c,c8,ea,05,\ e5,9d,9b,9e,50,fe,d6,15,b5,b1,57,03,db,b2,3b,df,eb,d6,15,c4,24,ae,3e,74,d1,\ ae,6c,9d,78,8f,87,5c,55,f1,b8,00,06,45,c2,10,88,ea,95,8f,62,96,20,7e,20,f8,\ 68,a3,03,d6,d7,89,f7,0e,d6,c8,c5,42,9d,86,8a,33,4a,3e,68,cb,31,c0,7b,03,74,\ 7a,0f,4b,d3,f5,10,2c,c5,a2,c1,2c,c7,d7,b1,f2,f4,15,eb,aa,d6,8c,6e,ab,7c,e1,\ dd,57,cc,2e,77,43,1b,4a,48,98,fb,4c,a1,ba,54,4a,c7,27,b7,66,e8,a1,ee,0c,53,\ 8f,d8,75,e7,a1,c6,70,cc,b3,3b,61,62,f4,b3,8a,77,47,41,89,bd,e9,3e,22,7b,54,\ 4e,3f,82,64,ed,35,63,b9,4b,49,df,5c,5a,73,9f,a5,25,61,25,5c,63,bf,03,1e,4c,\ b6,4b,02,ab,b3,46,7d,35,69,69,83,19,19,84,ef,d8,11,3d,25,57,72,bd,f6,32,37,\ a9,c3,54,73,54,e6,c5,f0,33,4d,c2,83,91,68,13,ec,83,46,99,3f,1f,fb,27,d4,e9,\ 44,92,f6,8e,6e,0c,ea,d5,73,ad,2d,d2,66,53,fe,5c,12,ac,1c,c2,de,91,d1,ba,f4,\ 96,2f,9a,a3,df,9a,cb,01,35,86,7a,d4,58,82,90,b3,97,76,e5,68,9f,29,b0,99,91,\ 06,42,a7,57,1f,f5,d7,37,72,bd,b0,a8,6b,cb,a3,65,ab,e9,f2,c1,08,c4,ca,3a,d5,\ f5,b2,50,63,16,29,97,c7,7a,8b,0c,de,1b,35,a5,8f,d4,e9,2c,50,d1,74,4c,ec,43,\ 8e,ec,83,58,01,bd,d2,6a,0e,0f,b4,76,0c,e9,e9,d1,52,58,17,16,57,07,0e,63,18,\ 10,50,c5,ba,12,d1,f0,71,84,fb,34,d8,49,f5,ac,42,84,25,b9,88,ad,f4,ae,c3,e4,\ d1,cd,85,86,78,73,03,ff,74,8f,be,df,e2,58,63,2f,79,40,ef,05,c7,23,16,56,bd,\ c5,e6,0c,6e,7b,a8,58,14,28,07,4a,54,6b,73,9f,c3,17,c8,d9,a8,e4,2b,95,03,64,\ 35,1a,cf,38,54,2e,85,83,6e,2d,e1,9f,c7,bc,e8,0f,24,7a,2a,b5,30,98,45,45,20,\ 2b,aa,fa,93,60,a4,88,bc,af,95,51,c2,b3,83,db,67,39,d4,82,e8,96,56,6a,25,3e,\ 83,b8,02,93,02,02,0d,fb,70,03,61,35,61,94,ca,ed,a2,d7,2a,8e,c1,b6,1b,57,d0,\ 8c,d5,b1,65,21,52,c0,e5,dc,b1,38,03,34,d8,72,cc,68,5e,be,44,70,a8,fb,7d,33,\ 52,66,47,fa,d0,b0,5c,25,55,53,1e,1c,f3,25,db,89,04,2e,4f,c5,ca,b7,6a,8f,52,\ a3,54,04,9e,03,ae,cb,02,e4,1b,91,cf,6b,00,b5,2f,25,87,44,50,98,ea,27,c5,1e,\ ee,9b,29,f3,ad,e2,05,8c,99,38,f3,2a,be,09,04,b0,47,be,60,b1,44,a4,2c,ce,ab,\ 7f,b1,3f,9c,1e,ba,af,e9,a0,3d,4d,d5,c8,3e,20,1c,f5,f1,9a,34,54,1f,71,d3,54,\ ca,aa,b1,5a,14,f6,8f,b6,5d,42,78,d6,ac,8a,47,ba,50,ee,69,a8,c7,07,e4,21,de,\ 7b,98,13,1a,cf,c5,50,57,7d,ce,3f,af,47,3d,d2,9d,ca,06,b8,be,56,10,d3,a8,fd,\ f1,ec,66,ea,f9,a6,03,f4,73,b0,be,73,27,3f,4d,53,23,bc,c4,67,bc,b9,b9,ff,cf,\ 2a,a6,bc,4c,d2,8e,a3,f6,fb,e4,71,64,6a,a8,2e,4c,92,d3,05,00,08,f5,53,39,37,\ 1d,fe,14,55,f9,08,5a,95,3e,64,04,9f,4a,08,ff,3d,08,43,2c,57,15,b7,ab,21,21,\ 2c,59,93,97,a6,97,19,80,b5,4e,8d,a4,0e,2f,62,f3,f5,40,22,24,53,94,1a,9c,09,\ 59,53,91,84,18,c5,6f,91,39,c8,7b,73,c6,cb,b6,33,70,48,04,38,d7,f7,8d,17,06,\ 43,64,ac,3d,fa,66,6a,f4,48,65,ef,1c,e6,86,dc,a8,8f,e8,e3,4c,b4,87,21,cd,70,\ 5f,af,d9,be,d4,74,60,ea,51,3d,83,45,30,0f,04,1d,da,bb,3e,ec,2f,b4,af,d0,28,\ 1e,b3,3b,ba,27,92,ec,fe,9a,bd,1e,90,b1,55,ff,34,2b,ed,63,c0,9f,91,ba,36,10,\ 07,3f,30,c1,54,73,81,4b,82,ca,19,ec,a1,a4,29,22,0c,7e,88,79,ed,6a,55,a1,04,\ e4,de,c3,a4,07,c1,15,fe,48,51,ad,a1,60,3c,92,42,c8,6a,19,b9,80,28,6f,4d,48,\ 85,72,31,13,fc,c5,4e,b9,54,23,43,ec,c5,f3,ab,6d,5c,1d,9e,7f,a0,1d,7a,9c,76,\ 55,e3,68,42,a8,08,e3,4f,44,28,e2,71,bf,55,c0,e9,66,79,51,88,d2,96,17,17,bb,\ 52,b9,fc,11,b2,b0,05,49,26,44,c0,f5,c6,b7,ae,98,db,c0,fb,b8,a1,3a,64,35,4b,\ 1e,53,d8,48,af,4c,2f,c5,f4,87,99,73,6b,df,9d,8a,fc,ea,80,0d,2c,6a,16,50,93,\ e4,d8,b8,90,8e,37,c3,3b,6e,30,48,9b,c1,21,ff,19,9a,db,43,35,cb,f8,17,78,08,\ 6e,68,aa,4a,bf,91,44,72,46,24,28,2f,15,e8,90,21,00,1e,45,3f,38,09,11,76,ff,\ ad,76,92,02,d6,a0,62,ea,5c,99,17,2e,a6,bc,ee,2b,6d,6c,0f,76,c2,05,b4,71,53,\ 13,8d,1c,ea,c3,63,2e,36,96,fc,65,ce,5d,40,1a,73,61,99,18,95,e2,a0,ae,19,c3,\ f5,03,5a,83,6e,aa,c3,6f,75,76,aa,16,ab,90,68,fe,d1,c6,07,95,e9,26,34,6a,98,\ cc,68,9d,cf,f8,b2,94,aa,63,b7,f0,99,d4,f7,c0,bd,ee,52,f4,95,4c,ca,14,d9,d0,\ 8a,00 [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer\Run] [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "dontdisplaylastusername"=dword:00000000 "legalnoticecaption"="" "legalnoticetext"="" "shutdownwithoutlogon"=dword:00000001 "undockwithoutlogon"=dword:00000001 [HKEY_USERS\.default\software\microsoft\windows\currentversion\policies\explorer] "NoDriveTypeAutoRun"=dword:00000091 "CDRAutoRun"=dword:00000000 [HKEY_USERS\s-1-5-18\software\microsoft\windows\currentversion\policies\explorer] "NoDriveTypeAutoRun"=dword:00000091 "CDRAutoRun"=dword:00000000 [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\shellserviceobjectdelayload] "PostBootReminder"="{7849596a-48ea-486e-8937-a2a3009f31a9}" "CDBurn"="{fbeb8a05-beee-4442-804e-409d6c4515e9}" "WebCheck"="{E6FB5E20-DE35-11CF-9C87-00AA005127ED}" "SysTray"="{35CEC8A3-2BE6-11D2-8773-92E220524153}" [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CARPService] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="carpserv" "hkey"="HKLM" "command"="carpserv.exe" "inimapping"="0" [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DrvLsnr] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="DrvLsnr" "hkey"="HKLM" "command"="C:\\Program Files\\Analog Devices\\SoundMAX\\DrvLsnr.exe" "inimapping"="0" [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Free Download Manager] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="fdm" "hkey"="HKCU" "command"="C:\\Program Files\\Free Download Manager\\fdm.exe -autorun" "inimapping"="0" [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="qttask" "hkey"="HKLM" "command"="\"C:\\Program Files\\QuickTime\\qttask.exe\" -atboottime" "inimapping"="0" [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Start WingMan Profiler] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="" "hkey"="HKCU" "command"="" "inimapping"="0" [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="jusched" "hkey"="HKLM" "command"="C:\\Program Files\\Java\\j2re1.4.2_06\\bin\\jusched.exe" "inimapping"="0" [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TkBellExe] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="realsched" "hkey"="HKLM" "command"="\"C:\\Program Files\\Common Files\\Real\\Update_OB\\realsched.exe\" -osboot" "inimapping"="0" [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders] "SecurityProviders"="msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll" [HKEY_LOCAL_MACHINE\software\Microsoft\Windows NT\CurrentVersion\Svchost] LocalService REG_MULTI_SZ Alerter\0WebClient\0LmHosts\0RemoteRegistry\0upnphost\0SSDPSRV\0\0 NetworkService REG_MULTI_SZ DnsCache\0\0 rpcss REG_MULTI_SZ RpcSs\0\0 imgsvc REG_MULTI_SZ StiSvc\0\0 termsvcs REG_MULTI_SZ TermService\0\0 HTTPFilter REG_MULTI_SZ HTTPFilter\0\0 HKLM\software\Microsoft\Windows NT\CurrentVersion\Svchost *netsvcs* Ip6FwHlp Completion time: 07-01-01 22:03:42.90 C:\ComboFix2.txt ... 06-12-18 16:34 C:\ComboFix3.txt ... 06-12-18 01:34 |
|
|
|
|
#12 (permalink) |
|
Registered User
|
jotti scan results of E67C4BEBB8.sys
Scan taken on 02 Jan 2007 03:11:14 (GMT) AntiVir Found nothing ArcaVir Found nothing Avast Found nothing AVG Antivirus Found nothing BitDefender Found nothing ClamAV Found nothing Dr.Web Found nothing F-Prot Antivirus Found nothing F-Secure Anti-Virus Found nothing Fortinet Found nothing Kaspersky Anti-Virus Found nothing NOD32 Found nothing Norman Virus Control Found nothing VirusBuster Found nothing VBA32 Found nothing kaspersky.txt *KASPERSKY ONLINE SCANNER REPORT* Tuesday, January 02, 2007 12:45:37 AM Operating System: Microsoft Windows XP Home Edition, Service Pack 1 (Build 2600) Kaspersky Online Scanner version: 5.0.83.0 Kaspersky Anti-Virus database last update: 2/01/2007 Kaspersky Anti-Virus database records: 255490 *Scan Settings* Scan using the following antivirus database extended Scan Archives true Scan Mail Bases true *Scan Target* My Computer A:\ C:\ D:\ E:\ *Scan Statistics* Total number of scanned objects 124833 Number of viruses found 29 Number of infected objects 1416 / 0 Number of suspicious objects 10 Duration of the scan process 02:14:47 *Infected Object Name* *Virus Name* *Last Action* C:\dist.exe/uptodate.exe Infected: Trojan-Downloader.Win32.Braidupdate.c skipped C:\dist.exe CreateInstall: infected - 1 skipped C:\Documents and Settings\All Users.WINDOWS\Application Data\Microsoft\Network\Downloader\qmgr0.dat Object is locked skipped C:\Documents and Settings\All Users.WINDOWS\Application Data\Microsoft\Network\Downloader\qmgr1.dat Object is locked skipped C:\Documents and Settings\All Users.WINDOWS\Application Data\Spybot - Search & Destroy\Recovery\eXactAdvertisingBargainsBuddy16.zip/msexreg.exe Suspicious: Password-protected-EXE skipped C:\Documents and Settings\All Users.WINDOWS\Application Data\Spybot - Search & Destroy\Recovery\eXactAdvertisingBargainsBuddy16.zip ZIP: suspicious - 1 skipped C:\Documents and Settings\All Users.WINDOWS\Application Data\Spybot - Search & Destroy\Recovery\eXactAdvertisingBargainsBuddy25.zip/msexreg.exe Suspicious: Password-protected-EXE skipped C:\Documents and Settings\All Users.WINDOWS\Application Data\Spybot - Search & Destroy\Recovery\eXactAdvertisingBargainsBuddy25.zip ZIP: suspicious - 1 skipped C:\Documents and Settings\All Users.WINDOWS\Application Data\Spybot - Search & Destroy\Recovery\eXactAdvertisingBargainsBuddy42.zip/msexreg.exe Suspicious: Password-protected-EXE skipped C:\Documents and Settings\All Users.WINDOWS\Application Data\Spybot - Search & Destroy\Recovery\eXactAdvertisingBargainsBuddy42.zip ZIP: suspicious - 1 skipped C:\Documents and Settings\All Users.WINDOWS\Application Data\Spybot - Search & Destroy\Recovery\eXactAdvertisingBargainsBuddy5.zip/msexreg.exe Suspicious: Password-protected-EXE skipped C:\Documents and Settings\All Users.WINDOWS\Application Data\Spybot - Search & Destroy\Recovery\eXactAdvertisingBargainsBuddy5.zip ZIP: suspicious - 1 skipped C:\Documents and Settings\All Users.WINDOWS\Application Data\Spybot - Search & Destroy\Recovery\eXactAdvertisingBargainsBuddy61.zip/msexreg.exe Suspicious: Password-protected-EXE skipped C:\Documents and Settings\All Users.WINDOWS\Application Data\Spybot - Search & Destroy\Recovery\eXactAdvertisingBargainsBuddy61.zip ZIP: suspicious - 1 skipped C:\Documents and Settings\chris\Cookies\index.dat Object is locked skipped C:\Documents and Settings\chris\Local Settings\Application Data\ApplicationHistory\cli.exe.c88dbd71.ini.inuse Object is locked skipped C:\Documents and Settings\chris\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped C:\Documents and Settings\chris\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped C:\Documents and Settings\chris\Local Settings\History\History.IE5\index.dat Object is locked skipped C:\Documents and Settings\chris\Local Settings\Temp\History\History.IE5\MSHist012007010120070102\index.dat Object is locked skipped C:\Documents and Settings\chris\Local Settings\Temp\Perflib_Perfdata_12c.dat Object is locked skipped C:\Documents and Settings\chris\Local Settings\Temp\Perflib_Perfdata_154.dat Object is locked skipped C:\Documents and Settings\chris\Local Settings\Temp\Perflib_Perfdata_1c0.dat Object is locked skipped C:\Documents and Settings\chris\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped C:\Documents and Settings\chris\ntuser.dat Object is locked skipped C:\Documents and Settings\chris\ntuser.dat.LOG Object is locked skipped C:\Documents and Settings\Default User\My Documents\Data\all_files2-1.exe/data0002 Infected: Backdoor.Win32.Ruledor.c skipped C:\Documents and Settings\Default User\My Documents\Data\all_files2-1.exe/data0003 Infected: Trojan-Downloader.Win32.Poplite.a skipped C:\Documents and Settings\Default User\My Documents\Data\all_files2-1.exe NSIS: infected - 2 skipped C:\Documents and Settings\Default User\My Documents\Data\all_files2-2.exe/data0002 Infected: not-a-virus:AdWare.Win32.HelpExpress skipped C:\Documents and Settings\Default User\My Documents\Data\all_files2-2.exe/data0003/data0004 Infected: not-a-virus:AdWare.Win32.SideSearch.l skipped C:\Documents and Settings\Default User\My Documents\Data\all_files2-2.exe/data0003 Infected: not-a-virus:AdWare.Win32.SideSearch.l skipped C:\Documents and Settings\Default User\My Documents\Data\all_files2-2.exe/data0008 Infected: not-a-virus:AdWare.Win32.IGetNet skipped C:\Documents and Settings\Default User\My Documents\Data\all_files2-2.exe NSIS: infected - 4 skipped C:\Documents and Settings\Default User\My Documents\Data\all_files2.exe/data0002/data299033.zip/Setup.exe Infected: not-a-virus:AdWare.Win32.IEDriver.b skipped C:\Documents and Settings\Default User\My Documents\Data\all_files2.exe/data0002/data299033.zip/Files/3.exe Infected: not-a-virus:AdWare.Win32.IEDriver.b skipped C:\Documents and Settings\Default User\My Documents\Data\all_files2.exe/data0002/data299033.zip/Files/5.exe Infected: not-a-virus:AdWare.Win32.IEDriver.b skipped C:\Documents and Settings\Default User\My Documents\Data\all_files2.exe/data0002/data299033.zip/Files/IEDRIVER.EXE Infected: Trojan-Downloader.Win32.Turown.h skipped C:\Documents and Settings\Default User\My Documents\Data\all_files2.exe/data0002/data299033.zip/Files/ieupdate.exe Infected: Trojan-Downloader.Win32.Turown.b skipped C:\Documents and Settings\Default User\My Documents\Data\all_files2.exe/data0002/data299033.zip/Files/td.exe Infected: Trojan-Downloader.Win32.Turown.a skipped C:\Documents and Settings\Default User\My Documents\Data\all_files2.exe/data0002/data299033.zip Infected: Trojan-Downloader.Win32.Turown.a skipped C:\Documents and Settings\Default User\My Documents\Data\all_files2.exe/data0002 Infected: Trojan-Downloader.Win32.Turown.a skipped C:\Documents and Settings\Default User\My Documents\Data\all_files2.exe/data0003 Infected: not-a-virus:AdWare.Win32.180Solutions skipped C:\Documents and Settings\Default User\My Documents\Data\all_files2.exe/data0004/data0003 Infected: not-a-virus:AdWare.Win32.Connector skipped C:\Documents and Settings\Default User\My Documents\Data\all_files2.exe/data0004/data0004 Infected: not-a-virus:AdWare.Win32.Connector skipped C:\Documents and Settings\Default User\My Documents\Data\all_files2.exe/data0004 Infected: not-a-virus:AdWare.Win32.Connector skipped C:\Documents and Settings\Default User\My Documents\Data\all_files2.exe/data0006/data0001.cab/Save.exe Infected: not-a-virus:AdWare.Win32.SaveNow.t skipped C:\Documents and Settings\Default User\My Documents\Data\all_files2.exe/data0006/data0001.cab/SaveUninst.exe Infected: not-a-virus:AdWare.Win32.SaveNow.af skipped C:\Documents and Settings\Default User\My Documents\Data\all_files2.exe/data0006/data0001.cab Infected: not-a-virus:AdWare.Win32.SaveNow.af skipped C:\Documents and Settings\Default User\My Documents\Data\all_files2.exe/data0006/data0002.cab/Sync.exe Infected: not-a-virus:AdWare.Win32.SaveNow.v skipped C:\Documents and Settings\Default User\My Documents\Data\all_files2.exe/data0006/data0002.cab/Uninst.exe Infected: not-a-virus:AdWare.Win32.SaveNow.v skipped C:\Documents and Settings\Default User\My Documents\Data\all_files2.exe/data0006/data0002.cab Infected: not-a-virus:AdWare.Win32.SaveNow.v skipped C:\Documents and Settings\Default User\My Documents\Data\all_files2.exe/data0006 Infected: not-a-virus:AdWare.Win32.SaveNow.v skipped C:\Documents and Settings\Default User\My Documents\Data\all_files2.exe/data0007/data0120 Infected: not-a-virus:AdWare.Win32.HelpExpress skipped C:\Documents and Settings\Default User\My Documents\Data\all_files2.exe/data0007 Infected: not-a-virus:AdWare.Win32.HelpExpress skipped C:\Documents and Settings\Default User\My Documents\Data\all_files2.exe/data0008 Infected: not-a-virus:AdWare.Win32.HelpExpress skipped C:\Documents and Settings\Default User\My Documents\Data\all_files2.exe/data0009/data0004 Infected: not-a-virus:AdWare.Win32.SideSearch.l skipped C:\Documents and Settings\Default User\My Documents\Data\all_files2.exe/data0009 Infected: not-a-virus:AdWare.Win32.SideSearch.l skipped C:\Documents and Settings\Default User\My Documents\Data\all_files2.exe/data0008 Infected: not-a-virus:AdWare.Win32.IGetNet skipped C:\Documents and Settings\Default User\My Documents\Data\all_files2.exe/data0009 Infected: Backdoor.Win32.Ruledor.c skipped C:\Documents and Settings\Default User\My Documents\Data\all_files2.exe/data0010 Infected: Trojan-Downloader.Win32.Poplite.a skipped C:\Documents and Settings\Default User\My Documents\Data\all_files2.exe NSIS: infected - 27 skipped C:\Documents and Settings\Default User\My Documents\Data\all_files2b.exe/data0002 Infected: Backdoor.Win32.Ruledor.c skipped C:\Documents and Settings\Default User\My Documents\Data\all_files2b.exe/data0003 Infected: Trojan-Downloader.Win32.Poplite.a skipped C:\Documents and Settings\Default User\My Documents\Data\all_files2b.exe NSIS: infected - 2 skipped C:\Documents and Settings\Default User\My Documents\Data\all_files2_at.exe/data0002 Infected: Trojan-Downloader.Win32.VB.q skipped C:\Documents and Settings\Default User\My Documents\Data\all_files2_at.exe NSIS: infected - 1 skipped C:\Documents and Settings\Default User\My Documents\Data\all_files_sjb_2.exe/data0003/data0002 Infected: not-a-virus:AdWare.Win32.BargainBuddy.a skipped C:\Documents and Settings\Default User\My Documents\Data\all_files_sjb_2.exe/data0003/data0003 Infected: not-a-virus:AdWare.Win32.BargainBuddy.a skipped C:\Documents and Settings\Default User\My Documents\Data\all_files_sjb_2.exe/data0003 Infected: not-a-virus:AdWare.Win32.BargainBuddy.a skipped C:\Documents and Settings\Default User\My Documents\Data\all_files_sjb_2.exe/data0008 Infected: not-a-virus:AdWare.Win32.EZula.a skipped C:\Documents and Settings\Default User\My Documents\Data\all_files_sjb_2.exe NSIS: infected - 4 skipped C:\Documents and Settings\Default User\My Documents\Data\Data\all_files2-1.exe/data0002 Infected: Backdoor.Win32.Ruledor.c skipped C:\Documents and Settings\Default User\My Documents\Data\Data\all_files2-1.exe/data0003 Infected: Trojan-Downloader.Win32.Poplite.a skipped C:\Documents and Settings\Default User\My Documents\Data\Data\all_files2-1.exe NSIS: infected - 2 skipped C:\Documents and Settings\Default User\My Documents\Data\Data\all_files2-2.exe/data0002 Infected: not-a-virus:AdWare.Win32.HelpExpress skipped C:\Documents and Settings\Default User\My Documents\Data\Data\all_files2-2.exe/data0003/data0004 Infected: not-a-virus:AdWare.Win32.SideSearch.l skipped C:\Documents and Settings\Default User\My Documents\Data\Data\all_files2-2.exe/data0003 Infected: not-a-virus:AdWare.Win32.SideSearch.l skipped C:\Documents and Settings\Default User\My Documents\Data\Data\all_files2-2.exe/data0008 Infected: not-a-virus:AdWare.Win32.IGetNet skipped C:\Documents and Settings\Default User\My Documents\Data\Data\all_files2-2.exe NSIS: infected - 4 skipped C:\Documents and Settings\Default User\My Documents\Data\Data\all_files2.exe/data0002/data299033.zip/Setup.exe Infected: not-a-virus:AdWare.Win32.IEDriver.b skipped C:\Documents and Settings\Default User\My Documents\Data\Data\all_files2.exe/data0002/data299033.zip/Files/3.exe Infected: not-a-virus:AdWare.Win32.IEDriver.b skipped C:\Documents and Settings\Default User\My Documents\Data\Data\all_files2.exe/data0002/data299033.zip/Files/5.exe Infected: not-a-virus:AdWare.Win32.IEDriver.b skipped C:\Documents and Settings\Default User\My Documents\Data\Data\all_files2.exe/data0002/data299033.zip/Files/IEDRIVER.EXE Infected: Trojan-Downloader.Win32.Turown.h skipped C:\Documents and Settings\Default User\My Documents\Data\Data\all_files2.exe/data0002/data299033.zip/Files/ieupdate.exe Infected: Trojan-Downloader.Win32.Turown.b skipped C:\Documents and Settings\Default User\My Documents\Data\Data\all_files2.exe/data0002/data299033.zip/Files/td.exe Infected: Trojan-Downloader.Win32.Turown.a skipped C:\Documents and Settings\Default User\My Documents\Data\Data\all_files2.exe/data0002/data299033.zip Infected: Trojan-Downloader.Win32.Turown.a skipped C:\Documents and Settings\Default User\My Documents\Data\Data\all_files2.exe/data0002 Infected: Trojan-Downloader.Win32.Turown.a skipped C:\Documents and Settings\Default User\My Documents\Data\Data\all_files2.exe/data0003 Infected: not-a-virus:AdWare.Win32.180Solutions skipped C:\Documents and Settings\Default User\My Documents\Data\Data\all_files2.exe/data0004/data0003 Infected: not-a-virus:AdWare.Win32.Connector skipped C:\Documents and Settings\Default User\My Documents\Data\Data\all_files2.exe/data0004/data0004 Infected: not-a-virus:AdWare.Win32.Connector skipped C:\Documents and Settings\Default User\My Documents\Data\Data\all_files2.exe/data0004 Infected: not-a-virus:AdWare.Win32.Connector skipped C:\Documents and Settings\Default User\My Documents\Data\Data\all_files2.exe/data0006/data0001.cab/Save.exe Infected: not-a-virus:AdWare.Win32.SaveNow.t skipped C:\Documents and Settings\Default User\My Documents\Data\Data\all_files2.exe/data0006/data0001.cab/SaveUninst.exe Infected: not-a-virus:AdWare.Win32.SaveNow.af skipped C:\Documents and Settings\Default User\My Documents\Data\Data\all_files2.exe/data0006/data0001.cab Infected: not-a-virus:AdWare.Win32.SaveNow.af skipped C:\Documents and Settings\Default User\My Documents\Data\Data\all_files2.exe/data0006/data0002.cab/Sync.exe Infected: not-a-virus:AdWare.Win32.SaveNow.v skipped C:\Documents and Settings\Default User\My Documents\Data\Data\all_files2.exe/data0006/data0002.cab/Uninst.exe Infected: not-a-virus:AdWare.Win32.SaveNow.v skipped C:\Documents and Settings\Default User\My Documents\Data\Data\all_files2.exe/data0006/data0002.cab Infected: not-a-virus:AdWare.Win32.SaveNow.v skipped C:\Documents and Settings\Default User\My Documents\Data\Data\all_files2.exe/data0006 Infected: not-a-virus:AdWare.Win32.SaveNow.v skipped C:\Documents and Settings\Default User\My Documents\Data\Data\all_files2.exe/data0007/data0120 Infected: not-a-virus:AdWare.Win32.HelpExpress skipped C:\Documents and Settings\Default User\My Documents\Data\Data\all_files2.exe/data0007 Infected: not-a-virus:AdWare.Win32.HelpExpress skipped C:\Documents and Settings\Default User\My Documents\Data\Data\all_files2.exe/data0008 Infected: not-a-virus:AdWare.Win32.HelpExpress skipped C:\Documents and Settings\Default User\My Documents\Data\Data\all_files2.exe/data0009/data0004 Infected: not-a-virus:AdWare.Win32.SideSearch.l skipped C:\Documents and Settings\Default User\My Documents\Data\Data\all_files2.exe/data0009 Infected: not-a-virus:AdWare.Win32.SideSearch.l skipped C:\Documents and Settings\Default User\My Documents\Data\Data\all_files2.exe/data0008 Infected: not-a-virus:AdWare.Win32.IGetNet skipped C:\Documents and Settings\Default User\My Documents\Data\Data\all_files2.exe/data0009 Infected: Backdoor.Win32.Ruledor.c skipped C:\Documents and Settings\Default User\My Documents\Data\Data\all_files2.exe/data0010 Infected: Trojan-Downloader.Win32.Poplite.a skipped C:\Documents and Settings\Default User\My Documents\Data\Data\all_files2.exe NSIS: infected - 27 skipped C:\Documents and Settings\Default User\My Documents\Data\Data\all_files2b.exe/data0002 Infected: Backdoor.Win32.Ruledor.c skipped C:\Documents and Settings\Default User\My Documents\Data\Data\all_files2b.exe/data0003 Infected: Trojan-Downloader.Win32.Poplite.a skipped C:\Documents and Settings\Default User\My Documents\Data\Data\all_files2b.exe NSIS: infected - 2 skipped C:\Documents and Settings\Default User\My Documents\Data\Data\all_files2_at.exe/data0002 Infected: Trojan-Downloader.Win32.VB.q skipped C:\Documents and Settings\Default User\My Documents\Data\Data\all_files2_at.exe NSIS: infected - 1 skipped C:\Documents and Settings\Default User\My Documents\Data\Data\all_files_sjb_2.exe/data0003/data0002 Infected: not-a-virus:AdWare.Win32.BargainBuddy.a skipped C:\Documents and Settings\Default User\My Documents\Data\Data\all_files_sjb_2.exe/data0003/data0003 Infected: not-a-virus:AdWare.Win32.BargainBuddy.a skipped C:\Documents and Settings\Default User\My Documents\Data\Data\all_files_sjb_2.exe/data0003 Infected: not-a-virus:AdWare.Win32.BargainBuddy.a skipped C:\Documents and Settings\Default User\My Documents\Data\Data\all_files_sjb_2.exe/data0008 Infected: not-a-virus:AdWare.Win32.EZula.a skipped C:\Documents and Settings\Default User\My Documents\Data\Data\all_files_sjb_2.exe NSIS: infected - 4 skipped C:\Documents and Settings\Default User\My Documents\Data\Data\memorywatcher.exe/data0004 Infected: Trojan-Downloader.Win32.VB.q skipped C:\Documents and Settings\Default User\My Documents\Data\Data\memorywatcher.exe NSIS: infected - 1 skipped C:\Documents and Settings\Default User\My Documents\Data\Data\td.exe Infected: Trojan-Downloader.Win32.Turown.j skipped C:\Documents and Settings\Default User\My Documents\Data\memorywatcher.exe/data0004 Infected: Trojan-Downloader.Win32.VB.q skipped C:\Documents and Settings\Default User\My Documents\Data\memorywatcher.exe NSIS: infected - 1 skipped C:\Documents and Settings\Default User\My Documents\Data\td.exe Infected: Trojan-Downloader.Win32.Turown.j skipped C:\Documents and Settings\HelpAssistant\My Documents\Data\all_files2.exe/data0002 Infected: Backdoor.Win32.VB.kr skipped C:\Documents and Settings\HelpAssistant\My Documents\Data\all_files2.exe/data0003 Infected: not-a-virus:AdWare.Win32.GigatechSuperBar skipped C:\Documents and Settings\HelpAssistant\My Documents\Data\all_files2.exe/data0004 Infected: not-a-virus:AdWare.Win32.180Solutions skipped C:\Documents and Settings\HelpAssistant\My Documents\Data\all_files2.exe/data0006 Infected: Trojan-Downloader.Win32.Keenval.m skipped C:\Documents and Settings\HelpAssistant\My Documents\Data\all_files2.exe/data0004/uptodate.exe Infected: Trojan-Downloader.Win32.Braidupdate.c skipped C:\Documents and Settings\HelpAssistant\My Documents\Data\all_files2.exe/data0004 Infected: Trojan-Downloader.Win32.Braidupdate.c skipped C:\Documents and Settings\HelpAssistant\My Documents\Data\all_files2.exe/data0005/data0001.cab/Save.exe Infected: not-a-virus:AdWare.Win32.SaveNow.t skipped C:\Documents and Settings\HelpAssistant\My Documents\Data\all_files2.exe/data0005/data0001.cab/SaveUninst.exe Infected: not-a-virus:AdWare.Win32.SaveNow.af skipped C:\Documents and Settings\HelpAssistant\My Documents\Data\all_files2.exe/data0005/data0001.cab Infected: not-a-virus:AdWare.Win32.SaveNow.af skipped C:\Documents and Settings\HelpAssistant\My Documents\Data\all_files2.exe/data0005/data0002.cab/Sync.exe Infected: not-a-virus:AdWare.Win32.SaveNow.v skipped C:\Documents and Settings\HelpAssistant\My Documents\Data\all_files2.exe/data0005/data0002.cab/Uninst.exe Infected: not-a-virus:AdWare.Win32.SaveNow.v skipped C:\Documents and Settings\HelpAssistant\My Documents\Data\all_files2.exe/data0005/data0002.cab Infected: not-a-virus:AdWare.Win32.SaveNow.v skipped C:\Documents and Settings\HelpAssistant\My Documents\Data\all_files2.exe/data0005 Infected: not-a-virus:AdWare.Win32.SaveNow.v skipped C:\Documents and Settings\HelpAssistant\My Documents\Data\all_files2.exe NSIS: infected - 13 skipped C:\Documents and Settings\HelpAssistant\My Documents\Data\all_files_sjb_2.exe/data0003/data0002 Infected: not-a-virus:AdWare.Win32.BargainBuddy.a skipped C:\Documents and Settings\HelpAssistant\My Documents\Data\all_files_sjb_2.exe/data0003/data0003 Infected: not-a-virus:AdWare.Win32.BargainBuddy.a skipped C:\Documents and Settings\HelpAssistant\My Documents\Data\all_files_sjb_2.exe/data0003 Infected: not-a-virus:AdWare.Win32.BargainBuddy.a skipped C:\Documents and Settings\HelpAssistant\My Documents\Data\all_files_sjb_2.exe/data0008 Infected: not-a-virus:AdWare.Win32.EZula.a skipped C:\Documents and Settings\HelpAssistant\My Documents\Data\all_files_sjb_2.exe NSIS: infected - 4 skipped C:\Documents and Settings\HelpAssistant\My Documents\Data\Data\all_files2.exe/data0002 Infected: Backdoor.Win32.VB.kr skipped C:\Documents and Settings\HelpAssistant\My Documents\Data\Data\all_files2.exe/data0003 Infected: not-a-virus:AdWare.Win32.GigatechSuperBar skipped C:\Documents and Settings\HelpAssistant\My Documents\Data\Data\all_files2.exe/data0004 Infected: not-a-virus:AdWare.Win32.180Solutions skipped C:\Documents and Settings\HelpAssistant\My Documents\Data\Data\all_files2.exe/data0006 Infected: Trojan-Downloader.Win32.Keenval.m skipped C:\Documents and Settings\HelpAssistant\My Documents\Data\Data\all_files2.exe/data0004/uptodate.exe Infected: Trojan-Downloader.Win32.Braidupdate.c skipped C:\Documents and Settings\HelpAssistant\My Documents\Data\Data\all_files2.exe/data0004 Infected: Trojan-Downloader.Win32.Braidupdate.c skipped C:\Documents and Settings\HelpAssistant\My Documents\Data\Data\all_files2.exe/data0005/data0001.cab/Save.exe Infected: not-a-virus:AdWare.Win32.SaveNow.t skipped C:\Documents and Settings\HelpAssistant\My Documents\Data\Data\all_files2.exe/data0005/data0001.cab/SaveUninst.exe Infected: not-a-virus:AdWare.Win32.SaveNow.af skipped C:\Documents and Settings\HelpAssistant\My Documents\Data\Data\all_files2.exe/data0005/data0001.cab Infected: not-a-virus:AdWare.Win32.SaveNow.af skipped C:\Documents and Settings\HelpAssistant\My Documents\Data\Data\all_files2.exe/data0005/data0002.cab/Sync.exe Infected: not-a-virus:AdWare.Win32.SaveNow.v skipped C:\Documents and Settings\HelpAssistant\My Documents\Data\Data\all_files2.exe/data0005/data0002.cab/Uninst.exe Infected: not-a-virus:AdWare.Win32.SaveNow.v skipped C:\Documents and Settings\HelpAssistant\My Documents\Data\Data\all_files2.exe/data0005/data0002.cab Infected: not-a-virus:AdWare.Win32.SaveNow.v skipped C:\Documents and Settings\HelpAssistant\My Documents\Data\Data\all_files2.exe/data0005 Infected: not-a-virus:AdWare.Win32.SaveNow.v skipped C:\Documents and Settings\HelpAssistant\My Documents\Data\Data\all_files2.exe NSIS: infected - 13 skipped C:\Documents and Settings\HelpAssistant\My Documents\Data\Data\all_files_sjb_2.exe/data0003/data0002 Infected: not-a-virus:AdWare.Win32.BargainBuddy.a skipped C:\Documents and Settings\HelpAssistant\My Documents\Data\Data\all_files_sjb_2.exe/data0003/data0003 Infected: not-a-virus:AdWare.Win32.BargainBuddy.a skipped C:\Documents and Settings\HelpAssistant\My Documents\Data\Data\all_files_sjb_2.exe/data0003 Infected: not-a-virus:AdWare.Win32.BargainBuddy.a skipped C:\Documents and Settings\HelpAssistant\My Documents\Data\Data\all_files_sjb_2.exe/data0008 Infected: not-a-virus:AdWare.Win32.EZula.a skipped C:\Documents and Settings\HelpAssistant\My Documents\Data\Data\all_files_sjb_2.exe NSIS: infected - 4 skipped C:\Documents and Settings\LocalService.NT AUTHORITY\Cookies\index.dat Object is locked skipped C:\Documents and Settings\LocalService.NT AUTHORITY\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped C:\Documents and Settings\LocalService.NT AUTHORITY\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped C:\Documents and Settings\LocalService.NT AUTHORITY\Local Settings\History\History.IE5\index.dat Object is locked skipped C:\Documents and Settings\LocalService.NT AUTHORITY\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped C:\Documents and Settings\LocalService.NT AUTHORITY\NTUSER.DAT Object is locked skipped C:\Documents and Settings\LocalService.NT AUTHORITY\ntuser.dat.LOG Object is locked skipped C:\Documents and Settings\NetworkService.NT AUTHORITY\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped C:\Documents and Settings\NetworkService.NT AUTHORITY\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped C:\Documents and Settings\NetworkService.NT AUTHORITY\NTUSER.DAT Object is locked skipped C:\Documents and Settings\NetworkService.NT AUTHORITY\ntuser.dat.LOG Object is locked skipped C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\logs\starwind.2007-01-01.21-58-34.log Object is locked skipped C:\Program Files\Norton SystemWorks\Norton AntiVirus\Quarantine\04D24DA9 Infected: Backdoor.Win32.SdBot.gen skipped C:\Program Files\Norton SystemWorks\Norton AntiVirus\Quarantine\42EB094B Infected: Backdoor.Win32.SdBot.gen skipped C:\Program Files\Norton SystemWorks\Norton AntiVirus\Quarantine\49AD7FB3 Infected: Backdoor.Win32.Iroffer.1213.d skipped C:\Program Files\Norton SystemWorks\Norton AntiVirus\Quarantine\5DDF15A1 Infected: Backdoor.Win32.SdBot.gen skipped C:\Program Files\VentSrv\ventrilo_srv.log Object is locked skipped C:\RECYCLED\NPROTECT\00914413.ino Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00914516.ilf Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00914554.fio Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00914640.msi Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00914674.xrs Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00914778.tlb Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00914786.mor Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00914787.hct Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00914889.adk Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00914928.csb Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00914942.mdm Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00915132.bpx Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00915175.dob Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00915202.gst Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00915208.ole Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00915210.csi Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00915286.mnl Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00915296.spe Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00915472.mnc Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00915577.nfo Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00915826.rad Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00915878.shx Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00915902.tnl Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00915975.ids Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00916031.vbs Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00916160.eot Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00916213.dcf Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00916265.dob Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00916275.dsc Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00916305.uil Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00916313.spe Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00916404.shx Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00916407.txr Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00916653.lex Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00916663.dsx Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00916813.mhk Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00916816.pol Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00916841.lmc Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00916858.wpc Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00916862.xmx Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00916876.udt Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00916888.awx Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00916895.lgd Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00916971.bdr Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00916989.msb Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00917021.sfp Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00917297.tnl Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00917362.quf Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00917437.dir Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00917501.tol Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00917512.tdf Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00917530.lex Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00917533.txr Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00917539.amb Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00917616.ini Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00917685.cpb Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00917706.tuw Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00917720.gst Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00917725.cao Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00917768.wtr Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00917834.ecf Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00918076.udt Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00918127.poc Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00918219.did Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00918275.hwl Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00918328.ulk Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00918353.icm Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00918432.lmg Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00918445.old Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00918572.tzd Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00918644.ins Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00918674.pif Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00918730.smc Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00918771.rbf Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00918912.vof Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00919063.lso Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00919073.cty Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00919165.nqm Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00919205.tsk Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00919223.ctg Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00919269.dwt Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00919314.tlb Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00919348.exa Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00919351.bpx Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00919367.nfo Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00919372.nam Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00919389.exa Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00919410.cag Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00919450.vph Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00919510.psp Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00919520.hwl Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00919584.pdi Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00919674.ink Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00919678.apv Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00919843.tsk Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00919916.hgd Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00919934.udi Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00919953.tld Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00919959.rad Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00919985.cty Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00920013.rtr Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00920092.mnr Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00920107.bid Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00920133.bma Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00920178.wdl Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00920191.pif Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00920291.mmm Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00920339.udc Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00920358.tlu Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00920451.ddb Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00920537.zrw Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00920539.dwt Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00920614.nfo Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00920633.cat Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00920690.pfr Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00920691.dsk Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00920693.mmc Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00920738.vdb Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00920814.rjs Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00920922.fin Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00920926.bld Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00920977.pag Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00921027.alt Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00921030.hdi Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00921073.tym Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00921076.usr Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00921100.atn Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00921174.mst Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00921181.ole Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00921207.inl Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00921234.arx Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00921235.dos Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00921288.fll Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00921390.tpa Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00921444.tip Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00921458.dtt Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00921495.rct Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00921534.tie Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00921546.gdb Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00921582.odl Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00921606.bcf Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00921656.hta Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00921693.mxt Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00921700.lmp Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00921707.tpa Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00921715.pbk Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00921804.ttf Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00921829.lid Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00921870.lgf Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00921898.csi Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00921938.tnl Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00921942.lck Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00922017.aip Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00922053.vlx Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00922065.std Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00922097.ecf Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00922101.smc Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00922140.gms Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00922166.hta Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00922195.cly Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00922200.hyp Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00922236.dxt Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00922240.lam Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00922245.det Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00922317.lck Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00922350.nsi Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00922353.vqa Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00922424.inv Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00922464.lso Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00922518.ctg Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00922529.buc Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00922535.tlb Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00922586.lge Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00922730.mcm Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00922818.lmg Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00922820.stb Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00922859.ucm Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00922886.tzd Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00922896.vsh Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00922929.lid Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00922950.tip Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00922971.dll Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00923046.qtw Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00923078.apm Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00923131.lex Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00923153.poc Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00923185.lgf Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00923235.tlt Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00923239.adw Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00923267.ucp Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00923269.csl Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00923278.inv Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00923311.nsw Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00923328.fin Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00923393.exe/WISE0001.BIN Infected: not-a-virus:AdWare.Win32.EZula.ak skipped C:\RECYCLED\NPROTECT\00923393.exe WiseSFX: infected - 1 skipped C:\RECYCLED\NPROTECT\00924101.xbu Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924102.tqs Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924103.ovl Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924104.djq Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924105.qst Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924106.lhi Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924107.qjc Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924108.lep Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924109.hea Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924110.lkb Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924111.rea Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924112.vhd Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924113.amg Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924114.shw Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924115.wph Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924116.lze Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924117.azv Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924118.gyd Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924119.nie Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924120.biw Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924121.lqr Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924122.gfv Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924123.lbn Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924125.dwx Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924126.xiv Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924127.aho Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924128.jte Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924129.ova Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924130.vnw Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924131.tzj Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924132.zjr Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924133.nlm Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924134.hiv Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924135.qvv Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924136.wwp Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924137.uld Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924138.oss Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924139.vyx Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924140.qzg Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924141.sft Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924142.ahj Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924143.icz Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924144.rke Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924145.wqy Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924146.quh Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924147.hqu Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924148.lpi Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924149.rbo Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924150.plv Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924151.whe Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924153.zqs Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924154.ker Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924155.dal Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924156.pdk Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924157.uvv Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924158.zqy Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924159.zjl Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924160.hes Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924161.mtf Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924162.orf Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924163.cwo Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924164.ppi Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924165.hwu Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924166.gmt Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924167.bnj Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924168.czi Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924169.cjl Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924170.zjy Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924171.hrb Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924172.oxm Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924173.szc Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924174.dpa Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924175.uey Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924176.hsl Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924177.uls Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924178.csv Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924179.vwt Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924180.del Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924182.oxr Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924183.gzv Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924184.ptd Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924185.btt Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924186.lbo Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924187.bme Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924188.gdl Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924189.shw Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924190.rja Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924191.hto Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924192.azd Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924193.eye Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924194.pqu Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924195.ibu Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924196.qlq Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924197.jxh Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924198.tbi Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924199.abe Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924200.epf Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924201.ajg Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924202.jru Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924203.rgi Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924204.cys Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924205.nrd Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924206.dtl Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924207.cjb Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924208.xik Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924210.bge Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924211.pnr Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924212.fzd Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924213.xbc Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924214.ona Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924215.dqa Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924216.imu Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924217.xry Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924218.xtg Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924219.flj Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924220.hhn Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924221.zyo Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924222.esj Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924223.tmf Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924224.lff Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924225.xtr Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924226.kmv Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924227.ixm Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924228.ivx Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924229.ckk Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924230.zeu Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924231.axi Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924232.hwz Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924233.mvl Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924234.ikp Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924235.try Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924236.cgb Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924237.lag Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924239.kpq Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924240.tnb Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924241.xvg Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924242.rpx Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924243.pxm Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924244.ckg Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924245.huy Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924246.jcp Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924247.ouw Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924248.yyz Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924249.ldc Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924250.ody Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924251.olw Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924252.upr Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924253.fia Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924254.amb Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924255.bnw Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924256.mqk Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924257.jwv Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924258.sjl Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924259.ttu Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924260.oyw Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924261.kam Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924262.vej Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924263.tip Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924264.nlk Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924265.voz Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924267.uzg Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924268.xgb Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924269.rgi Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924278.hhn Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924279.ync Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924280.eqo Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924281.spy Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924282.qdj Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924283.ybv Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924284.vuw Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924285.ril Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924286.rsz Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924287.zmn Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924288.qen Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924289.qei Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924290.nww Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924291.llf Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924292.voo Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924293.hog Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924294.pkf Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924295.rfo Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924296.bgf Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924297.xln Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924298.jxt Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924299.hzf Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924300.lsk Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924301.hgp Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924303.vrz Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924304.lsg Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924305.gyi Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924306.lex Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924307.brz Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924308.glx Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924309.jef Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924310.vwq Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924311.krs Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924312.fbk Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924313.uba Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924314.lgm Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924315.spn Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924316.wrr Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924317.ild Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924318.jne Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924319.csh Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924320.mxm Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924321.bge Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924322.rrk Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924323.sra Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924324.chg Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924325.mgs Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924326.map Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924327.uvi Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924328.hrf Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924329.idd Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924330.kiy Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924332.rfc Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924333.ibs Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924334.nxa Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924335.pcn Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924336.cph Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924337.bxe Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924338.bdj Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924339.rke Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924340.bmy Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924341.jgd Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924342.dsi Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924343.goz Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924344.szl Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924345.kbb Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924346.ctj Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924347.vsg Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924348.zlo Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924349.pmw Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924350.abr Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924351.ikt Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924352.glv Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924353.ycb Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924354.nbh Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924355.ibo Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924356.fyk Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924357.gde Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924358.lnj Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924360.qex Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924361.liw Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924362.iuq Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924363.dwf Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924364.glr Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924365.uwf Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924366.vss Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924367.nvt Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924368.cmi Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924369.mii Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924370.eck Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924371.cee Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924372.ywk Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924377.hlp Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924378.ehl Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924379.ahn Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924380.fjr Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924381.wqr Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924382.uwv Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924383.opd Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924384.zgg Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924385.ivp Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924386.srv Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924387.fev Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924388.fjj Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924389.thl Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924390.jff Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924391.ona Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924393.dys Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924394.pwa Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924395.jpu Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924396.tpk Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924397.ijt Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924398.uue Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924399.sbe Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924400.jxh Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924401.lwu Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924402.egl Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924403.lti Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924404.hoh Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924405.iqr Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924406.fdo Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924407.xfu Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924408.tdf Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924409.rnk Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924410.ttw Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924411.gih Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924412.kqs Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924413.otl Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924414.spy Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924415.vvz Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924416.myi Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924417.nmx Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924418.hey Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924419.ujx Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924421.mqy Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924422.kzf Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924423.amk Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924424.sss Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924425.ham Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924426.sma Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924427.phy Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924428.ioo Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924429.uqf Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924430.xek Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924431.ctf Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924432.bos Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924433.pta Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924434.llx Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924435.qfu Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924436.knx Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924437.pqp Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924438.fgo Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924439.isi Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924440.tac Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924441.jso Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924442.mfo Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924443.dxk Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924444.qet Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924445.mjx Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924446.bru Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924447.ckw Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924448.owv Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924450.eba Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924451.dlh Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924462.zek Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924463.hhs Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924464.feg Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924465.zeo Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924466.xte Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924467.wwm Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924468.xmf Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924469.hgu Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924470.jow Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924471.aqt Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924472.jzy Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924473.nzo Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924474.qkg Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924475.hrx Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924476.mot Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924477.lyr Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924478.btz Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924479.pyo Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924480.juv Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924481.fky Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924482.zhd Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924483.gho Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924484.jfx Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924485.urv Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924486.aec Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924488.vrx Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924489.zlr Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924490.fzy Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924491.psn Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924492.uyc Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924493.zsi Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924494.rvc Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924495.pvn Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924496.exd Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924497.rfz Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924498.ufi Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924499.ovi Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924500.mqz Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924501.jup Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924502.djy Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924503.lpg Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924504.enz Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924505.ctj Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924506.rqv Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924507.ycd Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924508.itb Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924509.wsd Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924510.hmx Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924511.rdt Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924512.agu Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924513.uhc Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924514.bmd Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924516.xrr Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924517.tno Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924518.udd Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924519.jdi Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924520.msm Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924521.ipp Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924522.oae Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924523.xax Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924525.qnq Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924526.nzo Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924527.xqx Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924528.ixo Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924529.epg Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924530.wmv Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924531.qnv Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924532.ucu Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924533.yns Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924534.kbl Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924535.bws Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924536.cly Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924537.vra Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924538.kng Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924539.wjz Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924540.kgt Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924541.cnt Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924542.jcn Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924543.vdp Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924544.tnr Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924546.zhd Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924547.iux Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924548.dca Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924549.nyf Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924550.jwr Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924551.nru Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924552.nko Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924553.ibp Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924554.har Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924555.ffv Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924556.nsy Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924557.hvv Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924558.iyk Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924559.kxh Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924560.igw Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924561.qvy Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924562.idm Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924563.uyr Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924564.ryk Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924565.iqd Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924566.aut Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924567.wdg Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924568.ots Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924569.grn Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924570.szd Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924571.fad Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924572.dfv Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924574.jae Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924575.inm Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924576.vhs Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924577.ktd Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924578.lix Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924579.dtg Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924580.bxg Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924581.llv Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924582.ddd Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924583.deq Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924584.gmu Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924585.flf Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924586.fpi Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924587.abn Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924588.myl Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924589.unz Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924590.tdd Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924591.tlm Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924592.gse Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924593.eij Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924594.dfd Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924595.lgr Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924596.gyw Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924597.knm Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924598.rvy Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924599.mwd Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924600.aod Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924601.vhe Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924603.qpz Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924604.wlm Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924605.kck Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924606.fkw Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924607.bnn Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924608.xrm Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924609.tnt Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924610.utl Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924611.wal Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924612.hxu Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924613.idi Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924614.uua Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924615.oxd Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924616.rri Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924617.jhf Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924618.xjj Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924619.gcu Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924620.mfg Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924621.jaf Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924622.ytp Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924623.kps Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924624.nng Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924625.sjc Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924626.qrs Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924627.zzd Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924628.mng Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924629.qiy Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924631.dwo Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924632.abm Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924633.zeo Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924642.vrq Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924643.cgn Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924644.vyz Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924645.dgn Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924646.ued Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924647.sgw Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924648.ncc Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924649.eiz Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924650.mru Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924651.iod Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924652.kya Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924653.jbm Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924654.dtc Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924655.dzl Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924656.asd Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924657.ksr Infected: Trojan.Win32.Qhost.ce skipped |
|
|
|
|
#13 (permalink) |
|
Registered User
|
C:\RECYCLED\NPROTECT\00924658.iyp Infected: Trojan.Win32.Qhost.ce skipped
C:\RECYCLED\NPROTECT\00924659.cdd Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924660.nme Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924661.lzh Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924662.rpa Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924663.rtt Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924664.zxq Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924665.iup Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924666.wak Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924668.asq Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924669.ijc Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924670.bsz Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924671.szl Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924673.lbm Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924674.key Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924675.kwp Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924677.kwv Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924679.cgi Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924680.jxx Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924686.rfn Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924688.gti Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924689.rtp Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924690.opk Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924691.zaa Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924692.wok Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924693.qwb Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924694.xdk Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924695.ins Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924700.cjz Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924851.dil Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924855.cbv Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924858.ree Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924861.ldz Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924865.yxn Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924867.gvs Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924869.gqi Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924873.fgn Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924874.xnc Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924876.exj Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924879.aat Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924881.tyh Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924882.gvu Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924884.hnu Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924885.ocg Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924887.ctj Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924889.lkf Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924894.epl Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924896.zkr Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924898.nwz Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924900.ltc Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924910.rxk Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924911.giq Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924913.qvk Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924914.xyw Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924917.gpv Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924918.dku Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924920.ezo Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924921.uwv Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924923.zlh Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924925.lvf Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924926.agw Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924928.rfc Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924929.akb Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924932.uax Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924933.boi Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924935.dib Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924936.yvb Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924938.zoi Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924942.gxc Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924944.ign Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924945.hck Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924947.ruv Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924949.fdv Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924950.xnz Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924952.vdz Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924953.jov Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924955.xba Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924956.rcd Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924958.vin Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924959.gsh Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924961.wlo Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924962.uqv Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924964.kgj Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924965.qgl Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924967.cow Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924968.djq Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924970.kqf Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924971.kcv Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924972.kws Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924974.enq Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924975.pkj Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924977.kgr Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924978.fty Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924980.yyc Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924981.svl Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924983.ykt Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924984.rpk Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924986.snp Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924987.wls Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924989.jco Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924990.iqr Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924992.juw Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924993.bnj Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924995.wqh Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924996.ree Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924997.cgl Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00924999.zzt Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925000.njc Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925002.icw Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925004.mmc Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925006.iyn Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925007.giu Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925009.zok Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925010.zbj Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925012.flx Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925013.qvx Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925015.ost Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925016.jaa Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925017.wpn Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925019.tkv Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925020.sic Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925022.lcb Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925023.ftb Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925025.lij Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925026.juz Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925027.inf Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925029.yoq Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925030.zwl Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925032.qvv Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925033.jea Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925035.dhr Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925036.jve Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925037.ggb Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925039.fih Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925040.ivb Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925042.ruc Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925043.kfz Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925045.smc Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925046.axi Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925047.fcs Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925049.gte Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925050.ofv Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925052.bjx Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925053.dkb Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925055.ukk Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925056.xly Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925058.zsx Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925059.wzg Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925060.uya Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925062.hvf Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925064.esi Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925066.acr Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925067.yih Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925069.vpy Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925070.blq Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925073.bgt Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925074.xxw Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925076.eee Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925079.lgd Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925081.hqd Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925082.ayi Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925084.nop Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925085.snd Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925087.ima Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925088.wed Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925089.qfo Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925091.tiv Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925092.ach Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925094.ntg Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925095.rkr Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925097.unz Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925098.zxp Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925100.oxs Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925101.zsk Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925103.bkt Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925104.wgl Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925106.isq Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925107.fjh Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925109.orh Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925111.qsp Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925113.jzm Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925114.avd Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925116.zuq Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925117.ppi Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925118.jvp Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925120.rwb Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925121.vtl Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925123.myz Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925124.oab Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925126.lkn Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925128.ecs Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925129.ljo Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925131.vfp Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925132.mlm Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925134.kuk Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925135.atu Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925137.iug Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925138.xma Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925140.hzd Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925141.rqr Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925142.xoo Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925144.wuq Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925145.gwe Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925147.hcj Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925148.prt Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925150.iox Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925151.idp Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925153.eub Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925154.ilm Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925156.ynb Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925157.yzs Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925158.ztt Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925160.flb Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925161.hot Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925163.alo Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925164.wmm Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925166.puj Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925167.buy Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925169.twk Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925170.jnu Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925172.zio Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925173.lpv Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925174.wzp Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925176.cfa Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925177.duc Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925179.ljc Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925180.iov Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925182.hmz Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925183.uag Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925185.gvy Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925186.peu Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925188.inb Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925190.jqr Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925191.kqc Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925193.ize Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925194.xbf Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925196.ntk Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925197.lcb Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925199.xod Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925200.jyn Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925202.zkq Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925203.hhh Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925205.hzj Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925206.onj Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925207.asj Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925209.byg Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925210.pud Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925212.vcz Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925213.qtw Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925215.znx Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925216.wwc Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925218.tdz Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925219.hkp Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925221.zgk Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925222.svv Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925224.ppa Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925225.hjy Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925227.gsd Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925228.tlc Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925230.wjt Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925231.pfp Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925232.qea Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925234.szr Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925235.jee Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925237.pgi Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925238.chn Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925240.tcp Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925241.ztk Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925243.pvp Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925244.cim Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925246.qfa Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925247.pvk Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925249.yln Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925250.acn Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925252.bxs Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925253.mjj Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925254.fco Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925256.cif Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925257.dra Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925259.asq Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925260.cnm Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925262.xja Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925271.rfw Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925273.dsu Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925274.pmk Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925276.qya Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925277.pny Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925279.vtw Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925280.pss Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925282.ckr Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925283.mah Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925285.jfy Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925286.hsj Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925287.skj Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925289.hvb Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925290.las Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925292.pxk Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925293.kwc Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925295.uzp Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925296.ind Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925298.fec Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925299.spk Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925301.ziz Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925302.vtb Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925304.zgt Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925305.ujh Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925307.yuq Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925308.hvu Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925310.llr Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925311.zsu Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925313.cok Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925314.wdp Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925315.dmi Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925317.ytc Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925318.lvr Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925320.kae Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925321.zah Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925323.ddx Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925325.pze Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925329.add Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925330.ojc Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925332.adg Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925333.gzf Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925335.ozq Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925336.jok Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925338.lin Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925339.usn Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925341.wmz Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925342.pni Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925344.xjg Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925345.oyo Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925347.ynn Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925348.agt Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925349.azc Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925351.qhi Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925352.coo Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925354.cmw Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925357.svt Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925360.mlu Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925361.chj Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925363.gri Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925364.ohr Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925366.fum Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925367.gqz Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925369.apn Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925370.rbf Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925372.xpv Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925373.dpc Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925375.nhs Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925376.ubk Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925378.aey Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925379.hnt Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925380.rew Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925382.zjo Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925383.pqe Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925385.qwf Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925386.gnt Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925388.zml Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925389.gwv Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925391.ycq Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925392.rev Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925394.vgx Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925395.kbw Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925397.fkh Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925398.dlp Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925400.vgw Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925401.xdj Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925403.uvr Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925404.kkh Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925406.yeq Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925407.szt Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925409.kwt Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925410.hgm Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925411.peo Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925413.quo Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925414.pau Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925416.qmu Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925417.qnt Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925419.xor Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925420.xlc Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925422.cfx Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925423.jmd Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925425.paa Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925426.spn Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925428.nib Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925429.ave Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925431.otb Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925432.kdu Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925434.xvj Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925435.hvd Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925437.neu Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925438.iel Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925439.wgr Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925441.umz Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925442.kmc Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925444.drl Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925445.hxz Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925447.yqx Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925448.bvo Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925450.qyu Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925451.iji Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925453.fpx Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925454.zzs Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925456.nha Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925457.hfa Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925459.igm Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925460.qom Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925462.pwn Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925463.rzw Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925465.gro Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925466.ipb Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925468.ygw Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925469.hig Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925471.ldr Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925472.bqn Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925474.rsl Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925475.rya Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925477.oua Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925478.odl Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925480.uum Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925481.zwf Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925483.enz Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925484.hwo Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925486.xax Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925487.oju Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925489.sex Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925490.dfr Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925492.vux Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925493.naj Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925495.djs Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925496.hju Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925498.hvj Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925499.fmp Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925501.lct Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925502.rfu Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925504.twd Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925505.glj Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925506.ylb Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925508.pda Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925509.bnk Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925511.yzp Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925512.dnt Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925514.aau Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925515.sut Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925517.irp Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925518.bis Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925520.tpm Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925521.tak Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925523.ivw Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925524.wcv Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925526.mms Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925527.ofh Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925529.nli Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925530.teh Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925532.pae Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925533.wsi Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925535.skz Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925536.udm Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925538.pel Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925541.xod Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925549.any Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925550.lee Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925552.jly Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925553.tgo Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925555.bwk Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925556.xfk Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925559.ssr Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925567.cai Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925570.lfj Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925571.fog Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925575.okv Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925576.kid Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925578.did Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925579.sys Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925581.dsi Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925582.kyk Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925584.aro Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925585.why Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925587.gog Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925588.cca Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925589.iiu Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925591.llw Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925592.vtl Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925594.bnu Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925595.oar Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925597.kyl Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925598.wer Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925600.ydj Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925616.byy Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925618.ggj Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925625.wxe Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925630.zlo Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925631.juu Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925633.vwj Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925635.rrl Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925637.opn Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925638.qjn Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925640.iad Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925643.szs Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925646.zhu Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925648.udd Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925651.drn Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925652.sxe Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925658.etp Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925659.okh Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925669.yck Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925672.tut Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925678.cuj Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925685.buv Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925824.nxk Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925827.zap Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925829.cgv Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925830.gib Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925833.tyn Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925842.lkv Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925845.vdu Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925846.mao Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925849.xwy Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925850.ufb Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925852.xih Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925853.prv Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925855.gzs Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925858.qfm Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925859.cca Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925861.tae Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925862.wvr Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925865.uhc Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925866.wjh Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925868.ayq Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925871.scy Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925873.utf Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925875.ibw Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925879.qkr Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925880.mro Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925882.eep Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925883.fao Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925886.oac Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925887.jjr Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925889.tsr Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925891.hkw Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925893.iqh Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925895.csz Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925896.htg Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925898.xeu Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925899.yvf Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925903.xwh Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925904.koc Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925906.etl Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925907.bfw Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925911.zcn Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925912.sil Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925914.noq Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925915.iux Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925917.yje Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925920.tjb Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925921.xre Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925923.mxn Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925924.hcd Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925926.cwf Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925927.grh Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925929.obl Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925930.hox Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925932.bcv Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925933.npx Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925935.wax Infected: Trojan.Win32.Qhost.ce skipped C:\RECYCLED\NPROTECT\00925955.yte Infected: Trojan.Win32.Qhost.ce skipped C:\System Volume Information\_restore{BB888FFE-4445-41B8-9B3B-F91E1712BA55}\RP734\change.log Object is locked skipped C:\WINDOWS\Debug\PASSWD.LOG Object is locked skipped C:\WINDOWS\MEMORY.DMP Object is locked skipped C:\WINDOWS\SchedLgU.Txt Object is locked skipped C:\WINDOWS\SoftwareDistribution\ReportingEvents.log Object is locked skipped C:\WINDOWS\Sti_Trace.log Object is locked skipped C:\WINDOWS\system32\config\ACEEvent.evt Object is locked skipped C:\WINDOWS\system32\config\AppEvent.Evt Object is locked skipped C:\WINDOWS\system32\config\default Object is locked skipped C:\WINDOWS\system32\config\default.LOG Object is locked skipped C:\WINDOWS\system32\config\SAM Object is locked skipped C:\WINDOWS\system32\config\SAM.LOG Object is locked skipped C:\WINDOWS\system32\config\SecEvent.Evt Object is locked skipped C:\WINDOWS\system32\config\SECURITY Object is locked skipped C:\WINDOWS\system32\config\SECURITY.LOG Object is locked skipped C:\WINDOWS\system32\config\software Object is locked skipped C:\WINDOWS\system32\config\software.LOG Object is locked skipped C:\WINDOWS\system32\config\SysEvent.Evt Object is locked skipped C:\WINDOWS\system32\config\system Object is locked skipped C:\WINDOWS\system32\config\system.LOG Object is locked skipped C:\WINDOWS\system32\config\systemprofile\Cookies\index.dat Object is locked skipped C:\WINDOWS\system32\config\systemprofile\Local Settings\History\History.IE5\index.dat Object is locked skipped C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped C:\WINDOWS\system32\h323log.txt Object is locked skipped C:\WINDOWS\system32\Ktm8r9.exe Infected: Trojan-Downloader.Win32.VB.em skipped C:\WINDOWS\system32\wbem\Repository\FS\INDEX.BTR Object is locked skipped C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.DATA Object is locked skipped C:\WINDOWS\wiadebug.log Object is locked skipped C:\WINDOWS\wiaservc.log Object is locked skipped C:\WINDOWS\WindowsUpdate.log Object is locked skipped C:\winupdt2.exe/TargetSoft.exe Infected: Trojan-Downloader.Win32.TargetSoft.a skipped C:\winupdt2.exe InstallCreator: infected - 1 skipped C:\winupdt2.exe UPX: infected - 1 skipped *Scan process completed* ill do adaware and my anti-virus program tonite or tomorrow im having a hard time believing that kaspersky found 29 viruses on my computer and i even made shure my anti-virus prgram was on snooze so it was disabled when i ran the kaspersky scan. my computer is rid of the oin pop ups though and seems to be doing alot better. thanks for the help. -Chris |
|
|
|
|
#14 (permalink) |
|
TSF Enthusiast
|
Hello Chris
![]() We are closing to home, so please carry on the next set of instruction in the exact order given, and if you face any difficulty, lease do not forget to let me know in your next reply. ___________________________________________________________________ Fix Delete the following files: C:\ dist.exe C:\ winupdt2.exe C:\WINDOWS\system32\ Ktm8r9.exe If you did not create these 2 folders yourself, please delete them: C:\Documents and Settings\Default User\My Documents\ Data C:\Documents and Settings\HelpAssistant\My Documents\ Data Navigate to the following folder marked in BLUE and delete this folder: C:\WINDOWS\çasks In my last fix, I have asked you to delete the above folder, but it appears to me that you have missed it. Did you face any difficulty while deleting this folder? Please let me know in detail if you face any difficulty this time. **If any of the above resist deletion, boot into Safe Mode to delete. ------------------------------------------------------------ Launch Spybot Search & Destroy. In the left panel of the program window you can find a option labeled as "Recovery"- select it. In the right pane of the program window you should see entries under the column "Backup". Select all backups available and then click the " X" button labeled as "Purge all the selected items". Exit the program. ------------------------------------------------------------ Clear out Norton's Quarantine folder. If you're unsure on how to do it, you can use Symantec's guide. ------------------------------------------------------------ Empty Norton Protected: See this site for instructions on how to empty Norton's protected Recycle Bin. _____________________________________________________________________ Combofix Please run Combofix again. Double click on the file combofix.exe saved on your desktop and follow the prompts and post the content of the log it produces with your next reply. Do not mouse click combofix's window whilst it's running. That may cause it to stall. _____________________________________________________________________ Please post back here with a new HijackThis Log, Combofix.txt and let me know whether you face any difficulty in deleting the files or folder.
__________________
Registered Linux user #426065 |
|
|
|
|
#15 (permalink) |
|
Registered User
|
hi there i tried to do all of the things that you mentioned above but i couldnt find the folder called casks in the c/windows directory is there any other name that it could be called b/c i noticed that it was spelled with a weird looking c (ç) i also tried looking for it with search but no results were found.
as far as norton goes im kinda confused i have norton antivirus uninstalled from my computer but some files are still on my computer. i tried to read the instructions from nortons site but to follow those instructions it sounds like i need to have the antivirus program installed on my computer and i uninstalled that like a couple of years ago and i have no idea were the cd is. also my recycle bin on my desktop is not norton protected but i did find the norton recycled folder on my c/recycled/nprotect drive should i just delete the nprotect folder? besides that stuff everything else i did and heres the reports "chris" - 07-01-06 18:18:56.28 Service Pack 1 ComboFix 06-12-23W-BetaE2 - Running from: "C:\Documents and Settings\chris\Desktop" (((((((((((((((((((((((((((((((((((((((((((( Other Deletions ))))))))))))))))))))))))))))))))))))))))))))))))) e:\autorun.inf" . . . . failed to delete ~ ~ ~ ~ ~ ~ ~ ~ ~ ~ ~ ~ ~ ~ Purity ~ ~ ~ ~ ~ ~ ~ ~~ ~ ~ ~ ~ ~ ~ ~ ~ ~ ~ ~ Folders Quarantined: C:\qoobox\purity\Documents and Settings\chris\Application Data\APPATC~1 C:\qoobox\purity\Documents and Settings\chris\Application Data\MCROSO~1 C:\qoobox\purity\Documents and Settings\chris\My Documents\CROSOF~1 C:\qoobox\purity\Documents and Settings\chris\My Documents\ICROSO~1 C:\qoobox\purity\Program Files\ICROSO~1.NET C:\qoobox\purity\Program Files\YSTEM~1 C:\qoobox\purity\Program Files\Common Files\CROSOF~1 C:\qoobox\purity\Program Files\Common Files\ICROSO~1 C:\qoobox\purity\Program Files\Common Files\MANTEC~1 C:\qoobox\purity\Program Files\YSTEM~1\scanregw.exe C:\qoobox\purity\Program Files\YSTEM~1\YSTEM~1 C:\qoobox\purity\WINDOWS\SMBOLS~1 C:\qoobox\purity\WINDOWS\system32\TSKS~1 C:\qoobox\purity\WINDOWS\system32\TSKS~1\?ttrib.exe ((((((((((((((((((((((((((((((( Files Created from 2006-12-06 to 2007-01-06 )))))))))))))))))))))))))))))))))) 2007-01-01 22:22 <DIR> d-------- C:\WINDOWS\system32\Kaspersky Lab 2006-12-29 00:59 <DIR> d-------- C:\Program Files\Ventrilo 2006-12-18 01:40 <DIR> d-------- C:\WINDOWS\system32\ActiveScan 2006-12-18 01:15 <DIR> d-------- C:\bintheredunthat 2006-12-17 17:03 <DIR> d-------- C:\WINDOWS\erdnt 2006-12-17 16:31 <DIR> d-------- C:\bfu 2006-12-17 16:20 3,968 --a------ C:\WINDOWS\system32\drivers\AvgAsCln.sys 2006-12-17 16:19 <DIR> d-------- C:\Program Files\Grisoft 2006-12-16 20:05 5,248 --a------ C:\WINDOWS\system32\drivers\vax347s.sys 2006-12-16 20:05 159,616 --a------ C:\WINDOWS\system32\drivers\vax347b.sys 2006-12-16 20:05 <DIR> d-------- C:\Program Files\Alcohol Soft 2006-12-16 20:02 <DIR> d-------- C:\Program Files\Alcoholer 2006-12-16 17:56 <DIR> d-------- C:\WINDOWS\çasks 2006-12-11 18:55 991,232 --a------ C:\WINDOWS\system32\esent.dll 2006-12-09 01:22 <DIR> d-------- C:\Program Files\Hijackthis 2006-12-09 00:41 <DIR> d-------- C:\Documents and Settings\All Users.WINDOWS\Application Data\Zenturi (((((((((((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))) 2007-01-06 17:55 -------- d-------- C:\Program Files\norton systemworks 2007-01-06 03:49 -------- d-------- C:\Program Files\mozilla firefox 2006-12-29 00:58 -------- d-------- C:\Program Files\Common Files\wise installation wizard 2006-12-27 15:34 -------- d-------- C:\Program Files\rfactor1150 2006-12-19 05:21 -------- d-------- C:\Program Files\ventsrv 2006-12-19 05:11 -------- d-------- C:\Program Files\magiciso 2006-12-19 05:07 -------- d-------- C:\Program Files\google 2006-12-19 05:01 -------- d-------- C:\Program Files\aim 2006-12-18 17:01 -------- d-------- C:\Program Files\quicktime 2006-12-16 13:10 -------- d-------- C:\Program Files\nrtv 2006-11-30 22:06 -------- d-------- C:\Program Files\axis communications (((((((((((((((((((((((((((((((((((((((((( Reg Loading Points )))))))))))))))))))))))))))))))))))))))))))))))) *Note* empty entries are not shown [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run] "Start WingMan Profiler"="" "Yahoo! Pager"="\"C:\\Program Files\\Yahoo!\\Messenger\\YahooMessenger.exe\" -quiet" "Free Download Manager"="C:\\Program Files\\Free Download Manager\\fdm.exe -autorun" [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run] "QOELOADER"="\"C:\\Program Files\\CA\\eTrust EZ Armor\\eTrust EZ Anti-Spam\\QSP-2.1.212.0\\QOELoader.exe\"" "VetTray"="C:\\PROGRA~1\\CA\\ETRUST~1\\ETRUST~2\\VetTray.exe" "Zone Labs Client"="C:\\PROGRA~1\\CA\\ETRUST~1\\ETRUST~3\\ca.exe" "QuickTime Task"="\"C:\\Program Files\\QuickTime\\qttask.exe\" -atboottime" "SunJavaUpdateSched"="C:\\Program Files\\Java\\jre1.5.0_02\\bin\\jusched.exe" "ATIPTA"="C:\\Program Files\\ATI Technologies\\ATI Control Panel\\atiptaxx.exe" "TkBellExe"="\"C:\\Program Files\\Common Files\\Real\\Update_OB\\realsched.exe\" -osboot" "P17Helper"="Rundll32 P17.dll,P17Helper" "ATICCC"="\"C:\\Program Files\\ATI Technologies\\ATI.ACE\\cli.exe\" runtime -Delay" "Adobe Photo Downloader"="\"C:\\Program Files\\Adobe\\Photoshop Album Starter Edition\\3.0\\Apps\\apdproxy.exe\"" "!AVG Anti-Spyware"="\"C:\\Program Files\\Grisoft\\AVG Anti-Spyware 7.5\\avgas.exe\" /minimized" [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents] [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\IMAIL] "Installed"="1" [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MAPI] "Installed"="1" "NoChange"="1" [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MSFS] "Installed"="1" [HKEY_CURRENT_USER\software\microsoft\internet explorer\desktop\components] "DeskHtmlVersion"=dword:00000110 "DeskHtmlMinorVersion"=dword:00000005 "Settings"=dword:00000001 "GeneralFlags"=dword:00000001 [HKEY_CURRENT_USER\software\microsoft\internet explorer\desktop\components\0] "Source"="About:Home" "SubscribedURL"="About:Home" "FriendlyName"="My Current Home Page" "Flags"=dword:00000002 "Position"=hex:2c,00,00,00,cc,00,00,00,00,00,00,00,34,03,00,00,e2,02,00,00,00,\ 00,00,00,01,00,00,00,01,00,00,00,01,00,00,00,00,00,00,00,00,00,00,00 "CurrentState"=hex:04,00,00,40 "OriginalStateInfo"=hex:18,00,00,00,a0,00,00,00,00,00,00,00,80,02,00,00,3a,02,\ 00,00,04,00,00,40 "RestoredStateInfo"=hex:18,00,00,00,a0,00,00,00,00,00,00,00,80,02,00,00,3a,02,\ 00,00,01,00,00,00 [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\sharedtaskscheduler] "{438755C2-A8BA-11D1-B96B-00A0C90312E1}"="Browseui preloader" "{8C7461EF-2B13-11d2-BE35-3078302C2030}"="Component Categories cache daemon" [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shellexecutehooks] "{AEB6717E-7E19-11d0-97EE-00C04FD91972}"="" "{57B86673-276A-48B2-BAE7-C6DBB3020EB8}"="AVG Anti-Spyware 7.5" [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer] "NoDriveTypeAutoRun"=dword:00000091 "DriveConfiguration"=hex:2e,55,a9,07,cf,ff,47,95,2e,0c,e9,9d,8e,c1,89,be,64,d2,\ de,66,b9,32,de,42,d0,2a,81,f9,09,a8,c9,19,05,da,ff,51,0b,fc,3f,e2,aa,6f,36,\ 50,a0,0a,2b,5d,fb,b4,3c,37,7e,33,eb,f1,46,3f,d9,30,ad,db,d0,27,6f,e5,07,c5,\ 0b,eb,a2,2c,6d,40,79,66,e9,4f,1a,53,ca,30,11,e6,ec,79,67,91,26,57,68,fe,cd,\ dd,a9,00,b5,9b,4a,c9,99,73,79,5d,bd,a8,37,46,d1,38,5f,8a,19,6c,e4,da,cb,ad,\ 5a,0c,b8,99,b8,cb,2f,56,5c,8e,1f,26,4f,c6,7b,3c,cb,5c,e3,ce,fa,5a,80,6c,01,\ e8,30,90,3d,7b,e3,76,cc,49,44,a9,50,00,9c,ef,ef,b7,f4,ae,9e,25,7a,ef,a0,11,\ 27,dc,49,09,9e,94,08,57,56,c5,a4,31,fb,7d,c6,30,12,3d,b8,03,dc,4f,6c,65,7e,\ 5a,c0,4c,5e,34,00,64,d0,f7,ad,bb,f2,57,7d,be,d4,33,a2,64,dd,69,4f,a9,6a,ef,\ 79,3e,b7,20,da,7f,03,53,3c,a5,ef,b2,fb,3d,28,49,ad,d8,45,5e,67,05,f2,01,be,\ 7c,4f,e3,70,9c,93,6c,1a,18,f5,07,42,ed,cc,c1,9a,97,f5,12,83,84,75,fa,d1,c9,\ 5f,50,ce,13,f8,57,81,e1,1a,93,30,f1,d6,db,23,f8,5d,ae,ab,96,21,ca,63,89,37,\ fb,b6,21,00,32,a1,f4,08,d6,ba,d2,2e,5f,72,fe,06,20,97,90,7b,64,1c,48,b9,bd,\ 1d,64,49,99,1e,e5,7e,16,94,fc,11,18,a6,c2,08,98,34,29,dc,3e,19,33,da,33,ad,\ 62,ca,30,8e,6f,cf,dc,a1,3e,8e,54,53,12,92,0b,25,fd,ef,d4,67,9b,26,3d,43,00,\ 49,1f,fe,ef,60,73,7b,4d,0a,67,01,d5,67,b1,3d,0c,ac,24,8b,78,3b,81,71,0d,e4,\ 8f,6c,e8,2b,6e,f0,40,be,28,aa,99,5e,89,08,3a,85,31,fb,e2,4b,e7,fb,b7,8a,30,\ 4c,7f,41,20,81,12,36,71,3e,0f,e0,d2,42,cf,83,81,a4,97,9d,1c,5c,12,81,b4,06,\ fe,42,24,e3,25,d2,a1,21,8f,6b,92,5c,f6,2e,a1,64,7a,0a,9d,41,96,e0,53,74,53,\ e5,d5,80,bb,47,1b,a9,91,13,10,fc,3f,56,9e,8f,10,82,7c,0a,9f,14,48,66,8f,74,\ d5,f5,7d,1d,c6,a3,33,fd,5c,7b,1f,1f,8c,6d,03,87,55,4e,ed,5d,50,20,6a,4f,89,\ 94,f7,30,8d,cd,b8,e5,c4,67,6d,81,01,b8,a1,af,58,55,24,50,2f,ef,bc,66,98,e1,\ 18,31,de,5b,05,97,5e,01,e4,c9,99,20,5c,24,87,9e,4c,55,2d,3b,04,c1,71,17,b4,\ 24,2e,74,24,78,84,be,a6,18,71,c8,49,25,a6,59,50,29,93,e7,e3,fa,c5,a2,03,e1,\ 71,b4,c3,fc,51,c8,b6,e1,ae,c9,a4,84,be,ec,81,5b,31,f0,9f,c0,07,a4,a4,96,a4,\ ab,b4,2f,26,7c,7b,6d,f6,ac,48,28,9d,70,12,d0,da,5d,a2,54,f1,73,8f,42,45,5a,\ 6d,2f,29,eb,42,59,f4,f2,39,8b,53,33,9b,41,e4,ab,fa,0d,00,17,af,39,d7,bb,87,\ ae,c3,5c,ba,14,d6,8e,1d,3b,b5,36,98,ba,aa,47,d9,d6,f4,cf,4a,a5,62,37,41,c5,\ 20,c6,77,64,d0,68,bc,5b,dc,ae,e9,1b,0b,15,15,ac,53,8b,0c,00,ee,2f,fc,d7,b0,\ 59,72,e0,98,da,85,21,a5,85,51,98,eb,ed,a8,23,e5,71,03,9d,0d,76,bf,4a,aa,f4,\ 86,75,ea,34,0a,57,30,d8,fa,3b,af,1b,2e,e0,38,5a,25,1f,50,d3,b2,cd,86,ad,f2,\ e3,97,39,81,dc,63,78,ee,5f,c3,dd,6c,1e,1c,54,ca,fe,cf,82,a5,78,81,4f,dc,3f,\ 28,a2,44,23,66,6b,9d,35,16,e7,c5,2c,25,1f,2c,07,a4,b2,88,f4,1b,d5,ca,71,1f,\ 98,50,b1,27,6b,5c,41,9b,e0,c5,eb,2e,b3,ec,da,6e,07,f2,00,99,f2,28,b5,b3,3c,\ c7,a1,d5,bf,e2,db,c8,e4,98,52,d2,b6,8e,6d,d0,17,9c,ee,85,8b,c7,1c,32,21,70,\ 21,67,f8,ca,b1,18,02,91,ec,f3,08,fa,86,f1,ef,e5,25,2c,39,5a,0a,f0,ce,33,f4,\ 14,fd,16,41,8b,be,a7,57,36,3a,fb,42,fc,8d,4f,9e,1d,ca,fa,b8,c3,3f,a0,f0,da,\ fb,a9,62,22,8e,fa,c5,83,10,c1,92,a0,65,ff,69,ae,be,a1,b1,87,63,67,7f,fa,b0,\ ca,ba,66,5e,2f,7c,87,04,61,bb,8f,de,3e,28,79,cc,b0,57,9a,9e,e0,21,79,8e,a6,\ 47,e0,0e,43,57,33,c5,52,d4,01,d4,fc,91,d9,5d,6c,5e,5f,46,82,e6,9e,3a,cc,d8,\ a0,f1,b2,45,3c,b2,f0,b4,30,16,49,ee,6f,0e,7a,4d,bc,27,6e,f6,78,0d,b0,93,b9,\ 4e,25,c7,9b,61,fb,5c,db,e7,dd,9e,a2,30,69,02,9e,01,e3,0c,57,95,2b,6f,c1,e1,\ ec,75,0d,1c,17,a1,c5,7f,90,93,18,4a,26,2d,72,07,c9,f4,50,12,f7,b9,53,59,78,\ 78,93,61,4b,80,35,89,e0,d4,b0,93,87,d2,ac,60,29,12,bc,fb,36,91,8e,d9,de,0f,\ f1,60,84,b5,76,a5,70,fb,ca,7a,c4,c9,43,a8,b1,dc,b8,79,ea,6c,96,7a,59,0c,30,\ 7e,11,d1,57,e6,85,b6,2b,20,f7,3f,30,6e,33,5d,a5,e9,7c,92,11,c5,c7,55,1e,d6,\ 27,b8,aa,53,89,48,1c,db,a1,35,f4,e1,24,b3,a6,5c,38,9f,a9,3b,28,66,cb,b5,5d,\ 23,c7,68,8a,07,19,b3,26,fe,11,75,1f,8f,27,18,cd,04,8e,cf,24,cc,0b,1b,2f,1d,\ 08,94,b9,dd,e4,e6,4d,c3,8e,1a,62,ba,52,17,cf,86,f3,68,85,a9,f9,3f,7c,88,4c,\ ba,ee,ca,02,66,c4,01,76,01,4d,8c,9a,85,ac,bb,8e,61,b7,35,71,0a,0a,97,76,b2,\ 21,5e,3b,57,98,07,57,00,e9,74,32,44,df,92,1a,0b,4d,39,93,98,ff,54,ee,c8,f1,\ 41,1d,94,bf,7a,c5,dd,5d,76,95,69,08,ca,d6,28,7c,94,44,bd,68,19,1d,39,1f,ad,\ 77,2a,90,d3,d6,d4,78,a6,fe,be,d6,78,06,71,9f,e2,ae,7c,b4,19,f2,bb,11,f0,e0,\ d9,47,de,a6,14,2c,b0,ef,40,d1,83,70,0f,b4,2c,bd,8f,37,d7,62,f4,51,ed,2f,98,\ 84,3c,d3,40,0f,52,ac,a1,64,29,de,23,dc,0a,a3,e4,aa,ab,e1,00,0d,9a,02,10,ca,\ df,00,f0,da,dd,bf,c5,60,7a,a0,3f,dd,80,53,1c,a7,42,f8,ee,98,82,3a,1d,03,92,\ 54,2f,ec,ba,74,47,78,da,09,ec,a2,50,07,0c,30,1c,82,41,e5,42,7b,52,f9,70,fa,\ fd,c6,e1,5c,f4,c4,81,ef,25,b7,52,bc,3e,27,0e,a4,71,11,0e,af,74,dc,6a,a0,cd,\ 8e,62,cd,4c,40,fd,2d,d9,cf,ef,b3,6f,d5,c0,da,69,d8,2b,81,fe,c0,c4,fa,06,8f,\ de,5e,06,4c,ac,23,6b,40,a6,f0,11,65,2f,af,09,1c,74,e4,99,1e,97,3e,83,b5,0d,\ 6c,8a,2c,44,32,33,84,8a,bc,c9,68,2a,32,a3,63,d8,8c,a9,51,4f,a8,15,14,38,9a,\ 77,88,4e,43,fc,b8,c0,25,ef,52,d6,75,80,58,d8,72,c5,19,2c,f6,fe,bd,be,4b,1d,\ eb,a4,3f,86,1e,02,7b,13,f9,2c,10,5b,48,0b,53,34,19,c2,eb,76,73,91,28,02,45,\ f9,96,03,9d,21,d3,74,1a,78,9d,e2,a4,9c,2f,74,5a,7a,ce,28,cc,b7,9f,5f,6b,4f,\ bb,9c,3d,7d,85,89,d6,da,3b,3b,83,c8,cc,b6,c8,11,ea,b4,0d,cc,5f,a2,94,cb,a4,\ ec,ae,8c,b0,7a,2f,c7,0e,7a,1f,63,32,61,b2,17,0d,2c,7a,7d,df,ec,dc,b8,4d,81,\ c1,5b,b3,a6,8d,86,bb,2d,55,52,2f,8c,4c,70,0b,99,7f,0c,d7,92,c3,f8,33,60,eb,\ 06,b3,1d,3e,b5,ee,d3,27,11,d2,87,2f,d4,3a,76,29,d1,c3,9e,ac,93,db,80,c7,41,\ a1,25,ef,c4,d6,5f,3c,2c,f2,51,d5,50,f6,31,a9,b5,65,4d,61,b2,4a,4c,92,d1,15,\ b7,36,77,a5,b7,5d,c8,a6,21,20,c5,1d,af,d7,b7,41,90,8b,d1,8d,24,ae,11,13,00,\ 0a,67,13,39,f8,19,cc,df,d2,66,92,c7,ab,69,21,8e,3d,41,31,da,22,6f,4a,e3,47,\ 7f,da,ab,9f,eb,85,a9,14,3c,bc,c4,c3,72,91,1e,68,a6,ca,37,17,ee,34,74,2e,81,\ 39,68,87,1c,b5,51,f2,a4,06,e6,e2,0c,62,50,66,79,6e,76,5b,a4,0c,7d,e0,80,74,\ 8f,0b,1d,86,dc,da,cd,5e,df,6d,85,2a,e3,72,86,38,c5,e0,3c,53,fb,e8,66,50,d5,\ 28,77,e4,03,a4,3c,b8,58,ee,c0,c0,cd,2b,6d,c8,c9,3b,73,50,a0,b0,6d,99,59,01,\ 42,00,b4,82,4a,8b,6b,93,b3,c2,b9,17,22,c0,19,28,9d,89,50,08,a8,9e,ad,5b,ae,\ cf,90,94,a3,51,29,ae,e8,10,82,1c,6f,46,c0,02,1f,4d,a5,a5,7a,b1,5a,20,7d,8a,\ 6c,59,c7,09,14,34,ff,50,bb,07,6f,87,bd,4d,f4,2c,6e,9e,1b,aa,5a,de,84,2e,d1,\ b5,8b,b6,a4,40,27,6a,29,07,12,30,85,2e,2b,7b,2a,ef,18,63,9e,47,2f,fb,7e,f0,\ 97,df,c3,90,aa,0c,45,30,9e,f5,7d,ef,65,d2,8f,f8,d1,3c,88,b1,fc,f7,e4,35,e7,\ 0f,53,05,61,26,bc,fa,2b,9b,83,7f,59,90,08,fc,fb,96,70,95,fd,6a,a7,15,4c,54,\ a5,25,3a,6d,f1,c2,24,b0,64,ee,52,54,30,a5,1e,59,20,12,59,61,21,03,ea,c2,02,\ 9b,b8,d9,78,46,cb,a1,65,f2,ad,84,5a,7d,17,71,5a,69,c9,2e,e1,d7,ba,f0,24,b3,\ 71,29,9b,2c,b3,a1,bd,67,5e,c8,9a,74,95,4a,4f,81,1d,e5,26,4d,07,77,bc,e0,90,\ 5c,d7,79,45,f6,17,c9,6b,8d,7b,5e,9d,5a,28,62,b7,de,66,85,f3,78,ec,38,52,37,\ 5d,1c,3e,ed,12,ba,6d,85,1a,74,08,96,7f,bb,0d,37,cb,83,f1,16,cb,f4,8a,c4,93,\ 63,2d,53,c2,80,13,23,08,d1,02,f9,e5,bd,29,51,b3,ae,4b,f6,e6,f3,20,cf,93,82,\ f8,fc,2f,86,a1,21,99,f4,8b,02,5b,c2,2a,51,2d,53,9c,c3,bb,36,8c,69,a9,11,56,\ 3e,d3,d8,6b,fc,d9,43,f7,35,db,7e,c2,9e,81,22,54,ae,3f,64,5d,68,d7,8c,54,74,\ 1f,a9,5d,75,04,84,70,97,cf,d2,b8,67,a7,ae,ad,e8,57,46,b6,e3,52,d4,d2,7e,f4,\ d0,75,10,0b,63,71,34,96,1f,66,1c,cc,ee,e2,29,61,49,cd,b8,04,ab,05,3e,2c,44,\ 45,97,14,f1,4b,9b,04,6c,3a,f3,d3,c0,3d,2a,aa,01,6d,07,0a,39,f5,1b,11,a5,73,\ 96,f9,22,a2,5e,e1,e2,36,63,d0,63,08,2c,f7,a2,73,e1,36,8b,fe,7f,e2,b5,3b,de,\ c6,4c,ee,95,67,4e,72,a9,8c,fb,59,72,fe,86,53,ee,8d,11,51,5a,53,d8,ea,04,3d,\ ad,fd,5b,c6,a4,98,48,06,0f,18,c1,ec,ad,92,9a,c7,1e,72,9f,0c,9a,62,e1,53,e3,\ 6e,4d,a2,78,65,83,ee,0c,82,e4,df,36,4b,ed,d4,6a,ba,c4,a6,28,9b,11,b2,73,35,\ 0f,92,85,2c,e3,2a,c1,a6,2c,6b,e9,ad,db,53,91,d4,45,b4,d4,1e,76,37,45,1b,c9,\ a0,28,54,b5,54,e3,e9,ea,18,af,79,9d,1b,93,42,20,37,93,8a,b5,74,24,3d,a4,ce,\ e4,d7,8b,38,88,84,f6,e0,16,86,2f,b5,54,d8,57,26,80,11,b6,2d,b1,8a,50,8d,de,\ c3,b9,57,ae,03,2a,b3,cf,3f,d3,dd,1b,3d,73,6e,58,f9,27,dd,af,48,7f,45,60,bb,\ d7,69,b3,c6,e5,f5,32,22,8e,06,15,6f,fe,ed,fe,1e,f7,30,e7,8e,69,d2,58,75,44,\ d5,dd,82,8a,fc,b7,41,a8,d5,d2,3e,06,f7,f7,6d,dd,89,43,c9,48,04,d8,ae,9f,39,\ d2,bf,00,95,7c,c2,2e,a4,c4,ce,9f,d4,ed,69,d0,7c,84,3a,dc,1c,95,6d,4d,e6,1e,\ 59,32,7e,c4,60,71,ff,c5,17,5f,3e,2e,a7,8e,52,4e,73,e6,54,6a,fc,f8,63,b2,01,\ 8e,eb,74,ea,87,27,90,66,e2,e5,2c,54,18,8a,a9,df,af,55,d5,ee,0c,e8,62,bb,ce,\ 04,96,c1,c7,94,45,dc,45,ed,fd,ac,32,54,80,3a,80,c0,77,de,3a,e2,64,60,17,63,\ d9,5d,4f,6d,e7,ec,ad,6c,da,82,e6,16,23,13,29,a8,96,7a,f7,73,d6,1b,35,98,0d,\ c7,80,10,e0,df,c0,ef,a1,bd,00,e9,c7,4f,7c,15,9c,05,fc,f1,36,ee,61,a6,a8,1d,\ 7e,d1,79,52,29,f4,56,d6,91,1b,03,a7,d1,81,97,d5,c6,64,e9,2c,1e,86,46,13,b2,\ 2d,65,b4,16,6f,9c,5e,6e,ac,53,27,83,5c,b9,d5,16,0b,b7,ff,73,a1,22,6f,4a,e7,\ 35,cb,bb,47,3e,74,b0,d3,97,af,6f,89,d8,03,6f,d6,4b,e1,6b,58,a1,8a,b6,e8,e3,\ 2e,ce,d8,dc,51,33,79,93,73,7a,e1,ee,f0,9d,eb,b6,25,95,7e,c6,d4,2b,13,49,ca,\ 0b,71,73,bf,1a,bb,6e,7d,09,ad,98,44,2a,23,eb,6e,83,db,bc,4f,21,7b,a9,5f,af,\ d6,cd,9b,47,6b,35,28,88,2e,98,3a,e9,8c,42,34,4d,a9,52,10,d7,ec,25,02,ff,bd,\ 12,58,e6,8d,58,da,e6,17,54,1e,6e,e6,f8,44,0d,18,78,c4,cc,61,46,9b,c1,52,41,\ 7d,e1,dc,29,78,16,10,57,d4,91,28,ab,3f,62,cb,c5,26,46,8d,78,66,c0,b5,7b,24,\ 6b,44,62,f9,8e,33,cd,53,f1,fb,e0,18,ef,5a,f3,8c,cd,55,8a,74,4a,79,87,7b,77,\ 67,9e,d6,c9,90,0a,24,c3,3c,7e,98,db,d1,5f,59,ae,52,30,29,b3,26,4d,45,40,1b,\ dd,8d,c7,aa,02,e5,aa,7c,52,db,51,2e,8b,8a,7a,51,82,be,d1,b6,5d,58,c1,e8,02,\ f5,89,f9,cf,ca,92,82,8c,d2,00,e5,9e,2c,87,d5,7d,be,80,19,68,1f,3c,8c,57,b4,\ 98,69,31,19,d1,c5,3f,c2,9a,94,5d,e0,e2,6c,92,7f,8b,1e,b2,c3,17,b5,79,05,c8,\ 7d,d8,07,ab,58,f4,e3,c2,57,72,41,61,87,f2,cd,d9,0e,d9,e8,54,76,54,9e,00,48,\ 99,d9,70,dd,70,d4,3e,71,f3,d2,f6,79,92,0f,2f,36,5a,f7,fb,8b,76,96,82,0c,f6,\ 50,e9,57,cf,d2,79,a7,23,48,fd,a6,e6,d0,6b,83,f2,2f,c7,45,6c,c3,45,5f,a7,b9,\ ae,84,59,80,04,bc,3a,7e,69,b8,0b,01,3d,62,d7,78,87,b9,79,e3,96,dc,5e,88,e7,\ 64,8d,e8,4a,f7,e4,f1,41,1a,a4,75,a9,47,2f,db,9c,40,11,15,95,a2,3e,d1,d5,bd,\ 9a,f4,06,a3,bf,44,1f,7f,fa,64,87,29,96,98,7d,f7,5e,5c,b7,d5,5d,cf,49,98,e8,\ f4,c9,8f,de,bc,b1,5b,2f,ea,04,01,9b,cb,35,3e,bc,21,44,1a,47,60,2a,c0,8f,1d,\ 77,8d,4b,c3,3a,67,98,88,21,50,42,9f,e1,3b,3f,af,d8,1e,7c,85,f1,48,dc,05,c9,\ f5,7e,67,10,20,3f,a0,31,98,81,1d,35,56,2a,b7,f4,0e,ef,e4,2e,04,d2,2a,ca,21,\ e9,da,1d,46,62,fa,5d,e0,c4,83,f6,bd,77,cc,2d,1d,87,47,03,0d,a5,6b,5c,f0,6f,\ f1,60,5f,f0,43,22,33,6b,32,7f,df,54,e7,49,03,a0,1c,a5,3f,3e,8b,b2,45,e6,a7,\ 6c,33,11,8b,cf,1f,48,30,3f,f3,a2,e2,27,7b,89,f5,e1,e4,bc,b4,d6,88,9a,9a,e6,\ 4f,9d,c5,09,38,25,a7,37,70,77,ff,86,c2,05,07,92,69,ef,ef,22,22,cb,8b,09,84,\ a1,48,49,94,3a,65,7f,95,9b,60,7b,1d,cc,ae,2e,6e,de,ae,c9,02,2b,e0,23,68,e0,\ 52,5b,4f,b9,5c,bf,e0,0c,8d,ed,52,09,e5,38,b8,40,45,4e,1d,bf,23,17,d2,4e,82,\ e0,07,44,22,b8,99,7c,f4,1a,2b,dc,d0,cd,78,04,6a,09,e7,8e,83,db,60,94,5c,ca,\ 5f,73,70,bb,47,cf,62,12,f8,d8,35,1a,a3,cb,bb,a7,dd,bb,50,fa,f3,91,c7,e4,7e,\ 51,a5,2e,37,a0,8d,39,0c,83,fc,e2,73,6a,36,a8,fe,6d,81,11,2f,d5,d1,49,8e,de,\ 42,0d,fa,bb,8d,c7,3d,db,b4,fb,e2,6b,c1,e1,4b,1c,2f,53,fe,26,e7,ea,40,8d,6d,\ 65,e5,a3,5c,4a,66,ce,10,cf,34,8b,a2,fa,4c,b3,19,08,0c,fd,de,0c,45,c5,71,d8,\ 91,0c,5b,20,e7,bf,63,dd,6c,3c,05,f0,8c,12,20,08,4a,08,ef,c5,d4,61,3a,a2,5b,\ 5f,ce,00,21,06,2a,37,d4,22,7b,92,1a,8c,cb,42,6d,a8,75,84,29,32,dc,7f,e3,3b,\ 5c,70,fd,6e,81,04,77,98,77,05,08,67,c2,39,6e,72,2f,88,02,7a,0b,5c,8f,f0,92,\ 4d,64,b7,aa,fe,a8,2a,d2,42,ee,61,55,84,09,b0,c3,65,22,71,a1,a6,07,04,60,49,\ e8,13,8c,f3,7b,1b,46,95,66,28,f4,4b,41,df,37,84,d0,c2,1d,64,b9,b0,99,66,96,\ ab,30,46,49,de,f4,1e,8f,df,b6,cf,d8,31,78,a2,57,0d,21,2f,55,62,74,7f,ca,1a,\ 43,6d,2e,9f,e0,52,8d,9e,d5,e1,da,0a,d5,4f,85,65,f2,b7,4f,3b,0f,be,5d,ef,99,\ 72,8c,e2,72,78,05,f0,2e,67,11,85,82,6f,2e,d0,f9,3e,62,90,e9,24,cf,2d,a6,75,\ 88,3f,f5,2f,a3,54,c4,dc,8f,ee,18,ba,a8,cc,46,1a,09,6b,66,06,a2,cb,05,26,8a,\ 76,1a,e4,96,bf,3b,cf,2a,48,11,3d,4f,c7,0a,35,06,09,4d,8c,dc,36,f3,4d,bf,58,\ 74,5e,10,17,bd,61,f9,c6,4f,d9,01,a4,1a,8e,de,5b,4b,32,8a,cd,d3,44,99,10,fb,\ 35,c9,b7,9d,ca,db,54,94,c1,a1,3a,71,b7,59,88,6f,49,39,63,a9,7a,4b,82,8b,54,\ 7b,f0,87,d2,ee,0d,09,fe,96,d6,ac,57,04,67,ae,75,7d,be,a1,f0,4f,c2,64,7d,65,\ 84,52,5a,1a,c4,b9,f8,4b,b7,8e,a7,b0,07,5f,2f,6c,1c,88,bd,e2,9a,aa,c3,cb,2b,\ 59,d3,85,7e,15,bd,ae,8f,7c,f7,f2,2a,bd,43,21,aa,50,8b,85,07,e5,10,72,10,9a,\ c3,1e,f4,70,f3,b3,07,00,29,a3,c3,6a,51,3c,0d,8f,1a,7c,ba,80,9e,26,52,35,46,\ 15,14,83,e8,d1,3a,48,33,bd,7d,e8,4d,5f,dc,fe,ba,50,9a,4b,80,36,86,f2,89,5f,\ 7e,e8,48,82,36,a6,9f,09,36,21,01,b0,22,fb,d4,4f,3e,fb,19,f4,31,bb,4e,35,09,\ a0,93,c5,80,0f,0d,44,7e,de,88,5c,df,09,60,09,75,a7,a1,38,51,1c,6d,94,3e,8f,\ 9e,9d,8f,9e,ad,fa,1b,51,d2,10,cd,4d,6d,d3,c1,4b,a5,dc,d3,c8,4f,bc,da,fd,11,\ 91,4e,11,c7,d6,86,8e,25,80,7d,11,9e,46,d5,46,85,40,1c,14,73,b3,4f,15,e8,2b,\ 9c,49,35,cb,6c,0b,99,e2,a1,44,aa,be,1c,de,f6,c5,83,7c,eb,c1,41,68,f4,7c,ce,\ cc,e5,8d,30,26,99,71,c2,f6,d9,de,34,e2,80,53,d3,1b,dd,f4,0a,69,59,95,29,45,\ 5a,15,66,9d,67,ed,21,dd,8c,08,6d,64,00,d5,cb,35,05,9b,38,f0,10,0e,6b,00,2a,\ 1f,58,15,96,18,f8,d5,b4,e7,4c,ce,25,ba,9f,b0,30,cd,0c,b9,64,80,41,70,7f,ad,\ 82,96,8f,38,f1,5a,57,e8,0c,cc,f4,75,77,94,e5,e2,fc,e4,77,0c,d0,ab,99,83,18,\ 0c,0f,9a,ab,0e,10,ba,1a,95,46,fc,ed,91,2d,f6,30,75,bc,d4,2f,ea,48,ab,7d,c5,\ a5,0b,3b,37,8e,d3,96,44,47,4a,92,77,80,6b,06,d3,7d,7f,e8,0c,74,f2,cb,f7,37,\ 5f,a6,40,12,ed,d7,5b,f7,de,68,bd,d8,65,90,4b,55,e2,7d,13,97,67,50,3a,7c,ec,\ 6a,35,f4,83,e6,3c,aa,3c,66,fc,e8,4e,13,8d,b4,ae,df,a3,3f,e0,0d,08,81,0d,f4,\ 4a,1d,57,00,b0,8a,69,f9,73,74,52,88,2b,60,93,f7,88,90,76,38,42,26,a2,29,53,\ 8b,ed,16,63,12,71,7f,84,d9,e2,1c,1f,f0,1e,1f,2e,be,06,e2,ac,a0,8d,df,4a,d2,\ 0e,4e,64,93,e3,cd,33,84,33,b2,44,52,0b,a7,29,94,b1,ae,6e,f7,35,63,ce,98,48,\ 81,a7,b1,51,a8,ac,78,be,5e,da,44,98,53,ad,f2,5b,e9,93,87,04,f3,a1,16,6b,bd,\ 85,e4,d3,4d,bc,cb,c0,e9,04,dc,08,d9,15,48,2d,6e,8c,81,ea,44,a6,9c,0c,c3,38,\ fa,83,ec,54,27,b9,52,4c,02,22,66,5e,1f,15,f8,ac,69,da,fb,ec,0c,04,89,62,92,\ 01,26,0b,4b,ef,49,1b,f3,b1,18,aa,8f,43,74,ab,98,4a,35,1d,5b,f0,b7,85,a0,ee,\ 95,9b,8a,ea,b4,44,be,04,84,c0,c7,ac,82,25,b9,b6,01,0c,15,b0,2b,8a,f8,73,43,\ 62,49,f8,2c,78,c8,6d,2f,89,8b,88,f9,1a,4e,1c,e3,ae,d8,ea,77,3c,96,b9,2f,e0,\ 83,a8,7f,d1,4a,c4,16,93,af,d6,61,6e,2b,7e,52,1e,d6,86,5f,cc,8a,70,cd,3d,46,\ 51,2e,4a,d0,e2,29,90,9f,d5,79,68,f7,65,38,19,56,31,5e,4d,0f,4a,84,c2,35,cf,\ ee,42,ba,29,c9,d5,d8,8a,b1,35,b0,5b,77,82,32,dd,20,37,3c,7f,31,5d,06,b2,29,\ fe,bd,f9,50,dd,6e,3f,af,64,26,6e,60,de,57,3d,08,e6,7e,49,a1,20,03,68,7d,27,\ 61,3a,87,c6,86,00,cc,6a,7d,b2,3b,d7,4a,4b,a9,1b,16,68,18,c0,8c,11,39,46,82,\ d7,a9,d0,dc,1f,96,1e,ad,bd,c4,bb,a0,c5,4f,78,97,9d,cf,18,91,57,e5,4d,d1,3e,\ 7c,e3,3c,af,4e,3c,04,2b,aa,fc,83,a9,75,05,69,31,6f,a6,1a,a6,b8,0f,52,e3,93,\ 09,0b,0a,69,e4,a0,19,11,b0,32,bf,4e,af,4b,6d,9a,0b,c1,af,22,c5,de,bd,11,ee,\ bd,4d,11,a0,f7,ac,0f,10,7f,0d,3f,c6,cb,21,61,8d,35,e8,42,89,a0,c6,85,65,5e,\ d9,a3,44,51,8a,31,fb,51,62,62,7d,ce,1f,cc,96,b7,08,6f,dd,9a,7d,f3,e3,0c,d2,\ 31,b1,4b,5d,f5,72,22,ce,02,6c,0d,bf,57,35,9e,8c,b1,23,1f,65,51,04,79,a2,ff,\ 0f,54,56,4f,1b,cb,26,23,0f,94,5c,71,9a,d5,37,47,24,59,85,0c,04,6b,74,08,f3,\ 32,a6,26,c0,8e,83,f9,46,43,d3,fe,9b,59,8c,21,8b,c2,e8,82,45,3e,bb,78,53,7c,\ 04,d6,d0,82,c2,6e,d5,4e,09,d4,34,be,54,64,69,ad,1d,87,cd,5f,ab,31,0d,1f,2c,\ ae,db,26,03,9f,e3,bf,bf,40,01,a9,1d,ec,b1,bd,b6,e2,c6,d0,bd,49,60,db,5b,72,\ 18,59,2c,5e,7d,f1,4d,80,c4,55,b7,c3,bb,6a,cb,cf,ff,a9,2d,88,6f,c5,d6,d8,e0,\ 8e,65,af,12,15,b6,48,e3,11,b6,ad,c3,81,76,7d,68,93,7e,ed,c3,c5,63,0d,32,4a,\ 9b,4c,f7,af,91,3f,e9,be,f5,d7,69,a3,56,8f,98,4d,f2,28,c7,17,cd,2f,2f,a8,00,\ 24,e3,17,54,81,02,53,0f,40,31,c3,0e,9e,49,29,14,1f,4c,cc,62,d2,9e,d6,88,d6,\ 72,fb,7a,1d,82,5b,e6,70,03,aa,c5,b3,d8,8e,30,6b,06,48,76,7d,68,97,6b,38,a3,\ d9,03,96,5d,74,1f,bf,aa,74,a6,cf,e8,75,d8,d9,0b,c4,df,2c,1a,c1,a7,d5,5c,88,\ f0,64,ae,d0,a2,f3,57,12,60,65,3d,ee,5f,ec,58,cb,79,ce,68,bf,7d,68,e3,ae,ca,\ 73,32,b5,1c,86,1c,c9,a5,dc,83,9b,60,58,4e,bf,a2,c6,a6,0e,f1,64,65,49,1a,a1,\ cb,fe,7e,24,73,b0,ad,10,86,32,36,87,2f,b8,bc,6c,4f,c1,4d,6e,71,28,f0,42,00,\ 9a,7d,2f,b7,33,b2,d0,5a,fd,82,16,a4,11,b0,8c,80,00,9d,df,7b,71,5e,9d,7a,0b,\ 12,3d,a8,95,73,60,b3,5b,aa,56,38,d4,68,e4,7b,83,32,44,5c,1b,fc,6e,87,e6,fa,\ 96,ea,67,b3,f6,6c,3e,57,cd,dc,4d,52,a8,27,19,a3,e0,cf,73,65,64,98,57,36,b8,\ 84,14,b9,3e,02,ad,f5,b5,63,80,e2,ff,8d,25,c3,27,f3,99,b6,a2,c5,9c,8a,d5,63,\ 57,d0,d8,18,42,35,7a,05,45,0f,85,5b,1d,35,42,cd,02,14,40,46,87,ff,52,d7,c1,\ c7,d7,f3,ab,8c,3e,de,c9,d2,c8,63,0c,d7,90,c5,f6,24,e9,f9,fe,63,48,12,36,70,\ 42,fd,2b,b2,56,6e,0d,ac,ce,1a,10,cf,22,27,11,93,bd,e1,7d,c6,04,ae,6f,23,95,\ 44,18,26,cc,19,64,1f,8c,1b,da,85,3c,a2,c4,8e,0f,a3,91,fc,89,26,77,3a,3f,fa,\ 5c,a7,de,a7,f7,32,6e,a4,33,27,d8,ca,d4,48,a6,09,5c,20,0b,bb,30,94,23,f4,f7,\ bb,7b,c3,43,f0,d4,16,73,25,24,97,d7,79,de,81,16,0d,73,0d,cd,14,19,2d,79,2a,\ cb,7d,97,e7,91,77,09,b3,01,e6,bc,dc,06,9d,88,e5,e0,68,58,22,6c,43,8a,81,a6,\ ca,99,ab,6c,f1,f9,4c,84,f5,42,ae,e1,92,91,8d,22,77,2b,27,5c,f7,bf,92,19,01,\ c0,52,a1,52,57,2b,78,e9,7e,34,27,bc,a3,2d,3f,a9,79,12,9c,af,55,f0,e7,5e,d8,\ f8,5e,8c,cf,d2,d8,4a,57,33,03,16,45,b2,f1,52,c5,d8,d3,f5,40,76,04,81,84,3b,\ 49,35,1f,85,56,83,0b,78,95,c4,91,4d,24,2b,67,ed,1c,f8,1b,bf,19,ee,b5,e4,f7,\ 06,98,ce,d9,65,aa,50,70,8c,b5,f4,7a,cf,0c,ce,88,08,71,ad,05,8c,36,a8,74,5e,\ a3,f9,f9,a3,98,0e,1b,56,73,de,c8,3d,34,7a,99,1c,df,e4,58,28,22,23,c0,be,38,\ 97,83,55,0d,8b,91,b2,a3,09,98,5a,b4,f2,c7,4d,99,4d,d8,f1,6a,e0,4d,4d,67,fd,\ fd,77,97,9f,c3,50,ae,b5,a7,6e,34,be,fd,5a,e4,96,fe,fc,53,90,84,53,d2,c4,11,\ 69,94,ab,13,87,14,e9,67,a5,b1,69,1b,24,9b,af,78,c0,f3,6a,40,c0,2e,49,34,6f,\ bb,10,d9,d0,e5,eb,7c,8e,fa,02,74,32,ad,4d,a7,98,b9,aa,4f,a4,c7,2d,fe,31,92,\ b7,e0,b4,49,ca,41,9d,34,9b,4f,2c,9b,69,20,46,e4,0e,f7,b6,fb,d4,c3,3a,f6,89,\ e8,37,fa,d6,42,aa,58,cc,67,62,fc,c0,2d,6c,08,59,6d,cf,bc,e7,06,7a,99,f6,24,\ 7b,c6,23,c2,72,b2,2f,6d,44,fb,52,4b,14,8f,d2,5d,6f,10,d3,01,c6,7d,71,bb,22,\ 10,0c,34,13,be,e3,83,e9,d5,e5,ac,27,33,c3,66,35,93,4a,22,55,7d,f0,48,d8,4e,\ ad,c4,92,dd,0c,c1,8b,5e,81,b4,f7,87,fd,9d,69,f2,c0,89,43,c3,6e,5c,71,8a,66,\ cd,57,6a,4f,b2,07,7b,f3,7e,b8,6e,51,08,73,70,ed,8e,10,50,6b,f9,61,e3,5c,62,\ ad,a8,58,d6,60,a8,b6,56,00,a0,16,22,63,62,50,37,20,79,69,17,43,0c,f9,c8,45,\ 04,56,1f,3b,71,62,3e,4d,2a,a8,5c,6a,b4,a8,c4,3a,66,6e,21,54,ca,6a,f8,b2,45,\ 7b,76,61,fb,4d,6c,7d,ed,e5,98,5d,64,7a,26,0b,93,87,76,f7,78,1e,20,ec,03,7f,\ 36,42,7a,e9,c8,56,1c,b0,de,37,04,90,81,a2,51,41,eb,31,84,4b,21,cf,29,1c,ad,\ 6f,ba,58,71,fd,c0,70,e9,95,3b,76,b0,f4,44,30,46,2c,f1,6b,10,9b,79,91,a0,1d,\ 99,7e,37,81,36,90,88,3a,43,fd,bf,57,e5,6a,c2,b5,d5,b9,b7,74,06,22,c6,a7,89,\ 85,20,50,ad,fe,40,8b,6a,ba,70,99,00,0a,90,c0,db,b6,13,e1,ba,94,4a,0b,10,59,\ e5,be,aa,ae,b6,12,93,87,b9,a9,35,b0,52,e2,c0,a8,d5,4f,d0,b3,4b,6a,49,2b,74,\ 83,86,17,08,fd,b4,fe,42,ba,78,fd,9f,d4,d8,18,e3,8e,58,ce,5e,8a,63,f0,6d,3c,\ ed,b3,43,9e,57,03,ea,25,93,1a,84,f4,ce,52,d7,50,b8,37,09,55,20,e1,a7,e7,5f,\ 80,ec,ea,1b,39,41,b6,a1,31,00,c5,cb,e7,7d,af,27,c6,47,59,55,fa,ab,69,b1,84,\ 7a,fd,32,89,0c,9c,92,f0,85,6c,b0,2b,57,a6,32,55,08,48,6e,7e,36,09,8b,43,d8,\ 92,e3,a1,c6,eb,ac,0a,7c,34,d8,b9,1b,95,39,b2,b0,77,e9,70,b9,f5,e9,48,e5,8d,\ 08,71,1c,1c,07,b8,bf,09,fa,ed,31,c0,f1,f4,96,62,d8,19,db,ba,9c,a4,f6,74,8f,\ ad,6f,89,0e,32,1f,fe,61,67,37,ce,e2,4d,85,24,62,86,f3,ce,c8,68,51,ef,fb,50,\ 54,f4,03,39,de,c9,6a,8d,7f,4c,e9,3a,3c,02,40,09,d1,08,66,2b,b1,4d,e2,15,14,\ ff,79,8e,33,43,09,07,8e,29,b5,2a,f0,df,42,b5,f3,24,c1,89,c6,00,6f,fe,2e,b3,\ d9,7a,cb,eb,44,42,9d,3a,4b,90,c6,c6,ca,e5,92,43,fb,a0,b4,1e,df,d0,d2,fb,e0,\ 47,45,62,b4,ef,1a,b5,84,61,5c,66,4e,b4,95,66,88,93,92,f3,06,93,67,28,1d,c3,\ b3,ee,09,84,25,b8,8c,9b,3f,8f,d8,84,5a,f8,af,09,eb,26,c9,14,04,6d,76,c2,1e,\ fa,84,b8,15,c2,63,ba,74,b8,87,79,f3,43,0e,ad,3e,ef,a3,64,f8,62,a2,9a,00,92,\ 7c,09,f3,36,5d,42,f2,7a,0d,fd,a5,f7,14,ae,7f,e2,22,59,44,84,de,a6,c9,ea,dc,\ 38,fb,dd,a4,3b,23,14,31,3c,68,a9,87,3e,96,ca,69,0a,1e,b1,7a,c6,5d,d6,a2,c9,\ 21,63,b3,ae,69,e8,4d,a7,6c,50,fe,14,dd,13,ae,55,6e,ae,3b,dc,93,50,60,86,88,\ d7,db,2b,95,fa,cf,73,90,c8,67,ec,a4,51,bc,5a,52,a3,f9,4e,b5,f8,bc,fd,0a,2d,\ c0,44,6f,76,b9,19,eb,51,80,04,af,b8,70,ff,9c,9b,10,89,05,8d,f2,f9,b5,bd,db,\ 11,34,29,23,d6,46,0e,5f,9f,b5,a3,3e,6d,50,06,b1,7a,34,77,4f,15,4a,c4,f7,ac,\ 11,04,b7,2b,9e,88,ec,84,e0,0f,ab,8f,29,39,60,15,ea,3f,b5,27,be,e0,b6,b5,dc,\ 9f,32,5b,a4,2b,64,7e,52,1f,d2,98,13,eb,76,d0,44,12,1c,ce,bb,97,0b,cd,98,b1,\ e7,f2,3e,c6,d6,dc,9c,97,e2,7c,b1,b8,9e,27,4f,44,0d,e9,1f,ce,bf,1d,e5,9b,3d,\ 3a,05,0e,a7,f0,46,63,9c,74,d7,a0,5a,17,8f,c9,27,1e,79,54,ef,ce,90,dc,2e,c6,\ c7,a0,10,92,4d,10,d7,7c,0e,87,7e,a5,7d,bc,9c,55,91,57,8a,90,0d,9c,c8,ea,05,\ e5,9d,9b,9e,50,fe,d6,15,b5,b1,57,03,db,b2,3b,df,eb,d6,15,c4,24,ae,3e,74,d1,\ ae,6c,9d,78,8f,87,5c,55,f1,b8,00,06,45,c2,10,88,ea,95,8f,62,96,20,7e,20,f8,\ 68,a3,03,d6,d7,89,f7,0e,d6,c8,c5,42,9d,86,8a,33,4a,3e,68,cb,31,c0,7b,03,74,\ 7a,0f,4b,d3,f5,10,2c,c5,a2,c1,2c,c7,d7,b1,f2,f4,15,eb,aa,d6,8c,6e,ab,7c,e1,\ dd,57,cc,2e,77,43,1b,4a,48,98,fb,4c,a1,ba,54,4a,c7,27,b7,66,e8,a1,ee,0c,53,\ 8f,d8,75,e7,a1,c6,70,cc,b3,3b,61,62,f4,b3,8a,77,47,41,89,bd,e9,3e,22,7b,54,\ 4e,3f,82,64,ed,35,63,b9,4b,49,df,5c,5a,73,9f,a5,25,61,25,5c,63,bf,03,1e,4c,\ b6,4b,02,ab,b3,46,7d,35,69,69,83,19,19,84,ef,d8,11,3d,25,57,72,bd,f6,32,37,\ a9,c3,54,73,54,e6,c5,f0,33,4d,c2,83,91,68,13,ec,83,46,99,3f,1f,fb,27,d4,e9,\ 44,92,f6,8e,6e,0c,ea,d5,73,ad,2d,d2,66,53,fe,5c,12,ac,1c,c2,de,91,d1,ba,f4,\ 96,2f,9a,a3,df,9a,cb,01,35,86,7a,d4,58,82,90,b3,97,76,e5,68,9f,29,b0,99,91,\ 06,42,a7,57,1f,f5,d7,37,72,bd,b0,a8,6b,cb,a3,65,ab,e9,f2,c1,08,c4,ca,3a,d5,\ f5,b2,50,63,16,29,97,c7,7a,8b,0c,de,1b,35,a5,8f,d4,e9,2c,50,d1,74,4c,ec,43,\ 8e,ec,83,58,01,bd,d2,6a,0e,0f,b4,76,0c,e9,e9,d1,52,58,17,16,57,07,0e,63,18,\ 10,50,c5,ba,12,d1,f0,71,84,fb,34,d8,49,f5,ac,42,84,25,b9,88,ad,f4,ae,c3,e4,\ d1,cd,85,86,78,73,03,ff,74,8f,be,df,e2,58,63,2f,79,40,ef,05,c7,23,16,56,bd,\ c5,e6,0c,6e,7b,a8,58,14,28,07,4a,54,6b,73,9f,c3,17,c8,d9,a8,e4,2b,95,03,64,\ 35,1a,cf,38,54,2e,85,83,6e,2d,e1,9f,c7,bc,e8,0f,24,7a,2a,b5,30,98,45,45,20,\ 2b,aa,fa,93,60,a4,88,bc,af,95,51,c2,b3,83,db,67,39,d4,82,e8,96,56,6a,25,3e,\ 83,b8,02,93,02,02,0d,fb,70,03,61,35,61,94,ca,ed,a2,d7,2a,8e,c1,b6,1b,57,d0,\ 8c,d5,b1,65,21,52,c0,e5,dc,b1,38,03,34,d8,72,cc,68,5e,be,44,70,a8,fb,7d,33,\ 52,66,47,fa,d0,b0,5c,25,55,53,1e,1c,f3,25,db,89,04,2e,4f,c5,ca,b7,6a,8f,52,\ a3,54,04,9e,03,ae,cb,02,e4,1b,91,cf,6b,00,b5,2f,25,87,44,50,98,ea,27,c5,1e,\ ee,9b,29,f3,ad,e2,05,8c,99,38,f3,2a,be,09,04,b0,47,be,60,b1,44,a4,2c,ce,ab,\ 7f,b1,3f,9c,1e,ba,af,e9,a0,3d,4d,d5,c8,3e,20,1c,f5,f1,9a,34,54,1f,71,d3,54,\ ca,aa,b1,5a,14,f6,8f,b6,5d,42,78,d6,ac,8a,47,ba,50,ee,69,a8,c7,07,e4,21,de,\ 7b,98,13,1a,cf,c5,50,57,7d,ce,3f,af,47,3d,d2,9d,ca,06,b8,be,56,10,d3,a8,fd,\ f1,ec,66,ea,f9,a6,03,f4,73,b0,be,73,27,3f,4d,53,23,bc,c4,67,bc,b9,b9,ff,cf,\ 2a,a6,bc,4c,d2,8e,a3,f6,fb,e4,71,64,6a,a8,2e,4c,92,d3,05,00,08,f5,53,39,37,\ 1d,fe,14,55,f9,08,5a,95,3e,64,04,9f,4a,08,ff,3d,08,43,2c,57,15,b7,ab,21,21,\ 2c,59,93,97,a6,97,19,80,b5,4e,8d,a4,0e,2f,62,f3,f5,40,22,24,53,94,1a,9c,09,\ 59,53,91,84,18,c5,6f,91,39,c8,7b,73,c6,cb,b6,33,70,48,04,38,d7,f7,8d,17,06,\ 43,64,ac,3d,fa,66,6a,f4,48,65,ef,1c,e6,86,dc,a8,8f,e8,e3,4c,b4,87,21,cd,70,\ 5f,af,d9,be,d4,74,60,ea,51,3d,83,45,30,0f,04,1d,da,bb,3e,ec,2f,b4,af,d0,28,\ 1e,b3,3b,ba,27,92,ec,fe,9a,bd,1e,90,b1,55,ff,34,2b,ed,63,c0,9f,91,ba,36,10,\ 07,3f,30,c1,54,73,81,4b,82,ca,19,ec,a1,a4,29,22,0c,7e,88,79,ed,6a,55,a1,04,\ e4,de,c3,a4,07,c1,15,fe,48,51,ad,a1,60,3c,92,42,c8,6a,19,b9,80,28,6f,4d,48,\ 85,72,31,13,fc,c5,4e,b9,54,23,43,ec,c5,f3,ab,6d,5c,1d,9e,7f,a0,1d,7a,9c,76,\ 55,e3,68,42,a8,08,e3,4f,44,28,e2,71,bf,55,c0,e9,66,79,51,88,d2,96,17,17,bb,\ 52,b9,fc,11,b2,b0,05,49,26,44,c0,f5,c6,b7,ae,98,db,c0,fb,b8,a1,3a,64,35,4b,\ 1e,53,d8,48,af,4c,2f,c5,f4,87,99,73,6b,df,9d,8a,fc,ea,80,0d,2c,6a,16,50,93,\ e4,d8,b8,90,8e,37,c3,3b,6e,30,48,9b,c1,21,ff,19,9a,db,43,35,cb,f8,17,78,08,\ 6e,68,aa,4a,bf,91,44,72,46,24,28,2f,15,e8,90,21,00,1e,45,3f,38,09,11,76,ff,\ ad,76,92,02,d6,a0,62,ea,5c,99,17,2e,a6,bc,ee,2b,6d,6c,0f,76,c2,05,b4,71,53,\ 13,8d,1c,ea,c3,63,2e,36,96,fc,65,ce,5d,40,1a,73,61,99,18,95,e2,a0,ae,19,c3,\ f5,03,5a,83,6e,aa,c3,6f,75,76,aa,16,ab,90,68,fe,d1,c6,07,95,e9,26,34,6a,98,\ cc,68,9d,cf,f8,b2,94,aa,63,b7,f0,99,d4,f7,c0,bd,ee,52,f4,95,4c,ca,14,d9,d0,\ 8a,00 [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer\Run] [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "dontdisplaylastusername"=dword:00000000 "legalnoticecaption"="" "legalnoticetext"="" "shutdownwithoutlogon"=dword:00000001 "undockwithoutlogon"=dword:00000001 [HKEY_USERS\.default\software\microsoft\windows\currentversion\policies\explorer] "NoDriveTypeAutoRun"=dword:00000091 "CDRAutoRun"=dword:00000000 [HKEY_USERS\s-1-5-18\software\microsoft\windows\currentversion\policies\explorer] "NoDriveTypeAutoRun"=dword:00000091 "CDRAutoRun"=dword:00000000 [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\shellserviceobjectdelayload] "PostBootReminder"="{7849596a-48ea-486e-8937-a2a3009f31a9}" "CDBurn"="{fbeb8a05-beee-4442-804e-409d6c4515e9}" "WebCheck"="{E6FB5E20-DE35-11CF-9C87-00AA005127ED}" "SysTray"="{35CEC8A3-2BE6-11D2-8773-92E220524153}" [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CARPService] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="carpserv" "hkey"="HKLM" "command"="carpserv.exe" "inimapping"="0" [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DrvLsnr] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="DrvLsnr" "hkey"="HKLM" "command"="C:\\Program Files\\Analog Devices\\SoundMAX\\DrvLsnr.exe" "inimapping"="0" [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Free Download Manager] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="fdm" "hkey"="HKCU" "command"="C:\\Program Files\\Free Download Manager\\fdm.exe -autorun" "inimapping"="0" [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="qttask" "hkey"="HKLM" "command"="\"C:\\Program Files\\QuickTime\\qttask.exe\" -atboottime" "inimapping"="0" [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Start WingMan Profiler] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="" "hkey"="HKCU" "command"="" "inimapping"="0" [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="jusched" "hkey"="HKLM" "command"="C:\\Program Files\\Java\\j2re1.4.2_06\\bin\\jusched.exe" "inimapping"="0" [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TkBellExe] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="realsched" "hkey"="HKLM" "command"="\"C:\\Program Files\\Common Files\\Real\\Update_OB\\realsched.exe\" -osboot" "inimapping"="0" [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders] "SecurityProviders"="msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll" [HKEY_LOCAL_MACHINE\software\Microsoft\Windows NT\CurrentVersion\Svchost] LocalService REG_MULTI_SZ Alerter\0WebClient\0LmHosts\0RemoteRegistry\0upnphost\0SSDPSRV\0\0 NetworkService REG_MULTI_SZ DnsCache\0\0 rpcss REG_MULTI_SZ RpcSs\0\0 imgsvc REG_MULTI_SZ StiSvc\0\0 termsvcs REG_MULTI_SZ TermService\0\0 HTTPFilter REG_MULTI_SZ HTTPFilter\0\0 HKLM\software\Microsoft\Windows NT\CurrentVersion\Svchost *netsvcs* Ip6FwHlp Completion time: 07-01-06 18:29:39.64 C:\ComboFix2.txt ... 07-01-01 22:03 C:\ComboFix3.txt ... 06-12-18 16:34 Logfile of HijackThis v1.99.1 Scan saved at 6:32:13 PM, on 1/6/2007 Platform: Windows XP SP1 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\System32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe C:\Program Files\VentSrv\ventrilo_svc.exe C:\Program Files\VentSrv\ventrilo_srv.exe C:\PROGRA~1\CA\ETRUST~1\ETRUST~2\VetMsg.exe C:\WINDOWS\system32\ZoneLabs\vsmon.exe C:\Program Files\CA\eTrust EZ Armor\eTrust EZ Anti-Spam\QSP-2.1.212.0\QOELoader.exe C:\PROGRA~1\CA\ETRUST~1\ETRUST~2\VetTray.exe C:\PROGRA~1\CA\ETRUST~1\ETRUST~3\ca.exe C:\Program Files\QuickTime\qttask.exe C:\Program Files\Java\jre1.5.0_02\bin\jusched.exe C:\Program Files\Common Files\Real\Update_OB\realsched.exe C:\WINDOWS\System32\Rundll32.exe C:\Program Files\ATI Technologies\ATI.ACE\cli.exe C:\Program Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe C:\Program Files\WinZip\WZQKPICK.EXE C:\WINDOWS\System32\svchost.exe C:\Program Files\ATI Technologies\ATI.ACE\cli.exe C:\Program Files\ATI Technologies\ATI.ACE\cli.exe C:\Program Files\Hijackthis\HijackThis.exe R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.yahoo.com/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/...ch/search.html R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/ R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn2\yt.dll O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn2\yt.dll O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O2 - BHO: Yahoo! IE Services Button - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar4.dll O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn2\yt.dll O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar4.dll O4 - HKLM\..\Run: [QOELOADER] "C:\Program Files\CA\eTrust EZ Armor\eTrust EZ Anti-Spam\QSP-2.1.212.0\QOELoader.exe" O4 - HKLM\..\Run: [VetTray] C:\PROGRA~1\CA\ETRUST~1\ETRUST~2\VetTray.exe O4 - HKLM\..\Run: [Zone Labs Client] C:\PROGRA~1\CA\ETRUST~1\ETRUST~3\ca.exe O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_02\bin\jusched.exe O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot O4 - HKLM\..\Run: [P17Helper] Rundll32 P17.dll,P17Helper O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\cli.exe" runtime -Delay O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Program Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe" O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized O4 - HKCU\..\Run: [Yahoo! Pager] "C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe" -quiet O4 - HKCU\..\Run: [Free Download Manager] C:\Program Files\Free Download Manager\fdm.exe -autorun O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present O8 - Extra context menu item: &Yahoo! Search - file:///C:\Program Files\Yahoo!\Common/ycsrch.htm O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office10\EXCEL.EXE/3000 O8 - Extra context menu item: Yahoo! &Dictionary - file:///C:\Program Files\Yahoo!\Common/ycdict.htm O8 - Extra context menu item: Yahoo! &Maps - file:///C:\Program Files\Yahoo!\Common/ycmap.htm O8 - Extra context menu item: Yahoo! &SMS - file:///C:\Program Files\Yahoo!\Common/ycsms.htm O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE O9 - Extra 'Tools' menuitem: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://www.kaspersky.com/kos/eng/par...an_unicode.cab O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204 O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll O16 - DPF: {63DF43C2-469A-41F3-B119-17B1ACE8BB34} (Sony SNC-RZ30 Image Viewer) - http://66.208.222.163/home/SonySncRz30View.cab O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsu...?1132181825796 O16 - DPF: {745395C8-D0E1-4227-8586-624CA9A10A8D} (AxisMediaControl Class) - http://198.189.234.9/activex/AMC.cab O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/actives...ree/asinst.cab O16 - DPF: {A364AF35-0CDF-41E8-8F3B-E0E55E15EBA1} (Zenturi Active Programs Control) - http://www.programchecker.com/dll/nixon.cab O16 - DPF: {A90A5822-F108-45AD-8482-9BC8B12DD539} (Crucial cpcScan) - http://www.crucial.com/controls/cpcScanner.cab O16 - DPF: {C5E28B9D-0A68-4B50-94E9-E8F6B4697514} (NsvPlayX Control) - http://www.nullsoft.com/nsv/embed/nsvplayx_vp3_mp3.cab O16 - DPF: {DE625294-70E6-45ED-B895-CFFA13AEB044} (AxisMediaControlEmb Class) - http://69.66.104.110/activex/AMC.cab O16 - DPF: {E3E02F12-2ADB-478C-8742-5F0819F9F0F4} (Quantum Streaming IE VersionManager Class) - http://qmedia.xlontech.net/100170/sd...ie06041001.cab O17 - HKLM\System\CCS\Services\Tcpip\..\{A276BDA0-D097-4C4F-9E74-E63DA476C4DF}: NameServer = 192.168.1.1 O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\System32\Ati2evxx.exe O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe O23 - Service: Autodesk Licensing Service - Unknown owner - C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe O23 - Service: StarWind iSCSI Service (StarWindService) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe O23 - Service: Ventrilo - Unknown owner - C:\Program Files\VentSrv\ventrilo_svc.exe O23 - Service: VET Message Service (VETMSGNT) - Computer Associates International, Inc. - C:\PROGRA~1\CA\ETRUST~1\ETRUST~2\VetMsg.exe O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs Inc. - C:\WINDOWS\system32\ZoneLabs\vsmon.exe |
|
|