cistern_eve
-
Posts
32 -
Joined
-
Last visited
Content Type
Events
Profiles
Forums
Posts posted by cistern_eve
-
-
Dear Kevin,
No improvement after that fixit-- it gives the same errors as before.
Thank you,
CE
-
Dear Kevin,
This troubleshooter gives the following on completion:
Service registration is missing or corruptFixedReset service registrationCompletedWindows Update error 0x80070057(2014-07-25-T-09_46_30A)Not FixedResetting Windows Update data storeCompletedProblems installing recent updatesFixedRepair Windows UpdateCompletedProblems installing recent updatesFixedRepair Windows UpdateCompletedRunning windows update results in the following error:
"Windows could not search for new updates"
Code 80072EE2
Thank you,
CE
-
Dear Kevin,
Hopefully things are visible here. The ISP went out after I ran the update (unrelated) and I needed to leave, so I took a few pictures with my phone before I left. This is what happens after I ran windows update:
Error code is 80070663, the message is different than before the reboot: "some updates were not installed." When you "view update history," you see this:
Before the reboot, it did not include the two entries, but was empty.
Thank you!
CE
-
PS -- windows update fails, saying that I could not search for new updates. There is nothing in the history.
-
Dear Kevin,
I have posted the log below. I am running windows update again and will post results when it finishes.
Thank you!
CE
******
System Variables
--------------------------------------------------------------------------------
OS: Windows 7 Professional
OS Architecture: 64-bit
OS Version: 6.1.7601
OS Service Pack: Service Pack 1
Computer Name: WEE_FN_ADMIN10
Windows Drive: C:\
Windows Path: C:\Windows
Program Files: C:\Program Files
Program Files (x86): C:\Program Files (x86)
Current Profile: C:\Users\Administrator
Current Profile SID: S-1-5-21-2990107124-1154940266-691022547-500
Current Profile Classes: S-1-5-21-2990107124-1154940266-691022547-500_Classes
Profiles Location: C:\Users
Profiles Location 2: C:\Windows\ServiceProfiles
Local Settings AppData: C:\Users\Administrator\AppData\Local
--------------------------------------------------------------------------------
System Information
--------------------------------------------------------------------------------
System Up Time: 02 Days 00:57:09
Process Count: 76
Commit Total: 2.07 GB
Commit Limit: 15.99 GB
Commit Peak: 2.93 GB
Handle Count: 26517
Kernel Total: 504.72 MB
Kernel Paged: 417.84 MB
Kernel Non Paged: 86.88 MB
System Cache: 5.71 GB
Thread Count: 998
--------------------------------------------------------------------------------
Memory Before Cleaning with CleanMem
--------------------------------------------------------------------------------
Memory Total: 8.00 GB
Memory Used: 1.90 GB(23.7227%)
Memory Avail.: 6.10 GB
--------------------------------------------------------------------------------
Cleaning Memory Before Starting Repairs...
Memory After Cleaning with CleanMem
--------------------------------------------------------------------------------
Memory Total: 8.00 GB
Memory Used: 1.60 GB(19.9763%)
Memory Avail.: 6.40 GB
--------------------------------------------------------------------------------
Starting Repairs...
Started at (7/23/2014 3:41:35 PM)
01 - Reset Registry Permissions 01/03
HKEY_CURRENT_USER & Sub Keys
Start (7/23/2014 3:41:51 PM)
Running Repair Under Current User Account
Done (7/23/2014 3:41:55 PM)
01 - Reset Registry Permissions 02/03
HKEY_LOCAL_MACHINE & Sub Keys
Start (7/23/2014 3:41:55 PM)
Running Repair Under System Account
Done (7/23/2014 3:45:36 PM)
01 - Reset Registry Permissions 03/03
HKEY_CLASSES_ROOT & Sub Keys
Start (7/23/2014 3:45:36 PM)
Running Repair Under System Account
Done (7/23/2014 3:47:51 PM)
02 - Reset File Permissions: C:
C: & Sub Folders
Start (7/23/2014 3:47:51 PM)
Running Repair Under Current User Account
Done (7/23/2014 3:47:57 PM)
02 - Reset File Permissions: D:
D: & Sub Folders
Start (7/23/2014 3:47:57 PM)
Running Repair Under Current User Account
Done (7/23/2014 3:48:00 PM)
02 - Reset File Permissions: E:
E: & Sub Folders
Start (7/23/2014 3:48:00 PM)
Running Repair Under Current User Account
Done (7/23/2014 3:48:03 PM)
02 - Reset File Permissions: G:
G: & Sub Folders
Start (7/23/2014 3:48:04 PM)
Running Repair Under Current User Account
Done (7/23/2014 3:48:42 PM)
02 - Reset File Permissions: Q:
Q: & Sub Folders
Start (7/23/2014 3:48:42 PM)
Running Repair Under Current User Account
Done (7/23/2014 3:48:47 PM)
02 - Reset File Permissions: All Profiles
C:\Users & Sub Folders
Start (7/23/2014 3:48:47 PM)
Running Repair Under System Account
Done (7/23/2014 3:50:18 PM)
02 - Reset File Permissions: Current Profile
C:\Users\Administrator & Sub Folders
Start (7/23/2014 3:50:18 PM)
Running Repair Under System Account
Done (7/23/2014 3:50:49 PM)
02 - Reset File Permissions: Cleanup
Repairing Restricted Folders Permissions To Avoid Infinite Loops
Start (7/23/2014 3:50:49 PM)
Running Repair Under System Account
Done (7/23/2014 3:51:02 PM)
03 - Reset Service Permissions
Start (7/23/2014 3:51:03 PM)
Running Repair Under System Account
Done (7/23/2014 3:52:31 PM)
04 - Register System Files
Start (7/23/2014 3:52:31 PM)
Running Repair Under Current User Account
Running Repair Under System Account
Done (7/23/2014 3:53:48 PM)
05 - Repair WMI
Start (7/23/2014 3:53:48 PM)
Starting Security Center So We Can Export The Security Info.
Exporting Antivirus Info...
AVG AntiVirus Free Edition 2014 Exported.
Exporting AntiSpyware Info...
Windows Defender Exported.
Spybot - Search and Destroy Exported.
AVG AntiVirus Free Edition 2014 Exported.
Exporting 3rd Party Firewall Info...
AVG Internet Security 2014 Exported.
Running Repair Under Current User Account
Done (7/23/2014 3:55:08 PM)
06 - Repair Windows Firewall
Start (7/23/2014 3:55:08 PM)
Running Repair Under Current User Account
Running Repair Under System Account
Done (7/23/2014 3:56:16 PM)
07 - Repair Internet Explorer
Start (7/23/2014 3:56:16 PM)
Running Repair Under Current User Account
Running Repair Under System Account
Done (7/23/2014 3:57:02 PM)
08 - Repair MDAC/MS Jet
Start (7/23/2014 3:57:02 PM)
Running Repair Under Current User Account
Running Repair Under System Account
Done (7/23/2014 3:57:19 PM)
09 - Repair Hosts File
Start (7/23/2014 3:57:20 PM)
Running Repair Under System Account
Done (7/23/2014 3:57:26 PM)
10 - Remove Policies Set By Infections
Start (7/23/2014 3:57:26 PM)
Running Repair Under Current User Account
Running Repair Under System Account
Done (7/23/2014 3:57:37 PM)
11 - Repair Start Menu Icons Removed By Infections
Start (7/23/2014 3:57:37 PM)
Running Repair Under System Account
Done (7/23/2014 3:57:49 PM)
12 - Repair Icons
Start (7/23/2014 3:57:50 PM)
Running Repair Under Current User Account
Done (7/23/2014 3:57:53 PM)
13 - Repair Winsock & DNS Cache
Start (7/23/2014 3:57:53 PM)
Running Repair Under Current User Account
Running Repair Under System Account
Done (7/23/2014 3:58:21 PM)
15 - Repair Proxy Settings
Start (7/23/2014 3:58:21 PM)
Running Repair Under Current User Account
Running Repair Under System Account
Done (7/23/2014 3:58:34 PM)
17 - Repair Windows Updates
Start (7/23/2014 3:58:34 PM)
Running Repair Under Current User Account
Running Repair Under System Account
Done (7/23/2014 3:59:06 PM)
18 - Repair CD/DVD Missing/Not Working
Start (7/23/2014 3:59:06 PM)
iTunes not found, not applying UpperFilters iTunes Reg Key
Done (7/23/2014 3:59:06 PM)
19 - Repair Volume Shadow Copy Service
Start (7/23/2014 3:59:06 PM)
Running Repair Under Current User Account
Running Repair Under System Account
Done (7/23/2014 3:59:33 PM)
21 - Repair MSI (Windows Installer)
Start (7/23/2014 3:59:33 PM)
Running Repair Under Current User Account
Running Repair Under System Account
Done (7/23/2014 3:59:53 PM)
23.01 - Repair bat Association
Start (7/23/2014 3:59:53 PM)
Running Repair Under Current User Account
Running Repair Under System Account
Done (7/23/2014 4:00:03 PM)
23.02 - Repair cmd Association
Start (7/23/2014 4:00:03 PM)
Running Repair Under Current User Account
Running Repair Under System Account
Done (7/23/2014 4:00:12 PM)
23.03 - Repair com Association
Start (7/23/2014 4:00:12 PM)
Running Repair Under Current User Account
Running Repair Under System Account
Done (7/23/2014 4:00:22 PM)
23.04 - Repair Directory Association
Start (7/23/2014 4:00:22 PM)
Running Repair Under Current User Account
Running Repair Under System Account
Done (7/23/2014 4:00:30 PM)
23.05 - Repair Drive Association
Start (7/23/2014 4:00:30 PM)
Running Repair Under Current User Account
Running Repair Under System Account
Done (7/23/2014 4:00:40 PM)
23.06 - Repair exe Association
Start (7/23/2014 4:00:40 PM)
Running Repair Under Current User Account
Running Repair Under System Account
Done (7/23/2014 4:00:56 PM)
23.07 - Repair Folder Association
Start (7/23/2014 4:00:56 PM)
Running Repair Under Current User Account
Running Repair Under System Account
Done (7/23/2014 4:01:04 PM)
23.08 - Repair inf Association
Start (7/23/2014 4:01:04 PM)
Running Repair Under Current User Account
Running Repair Under System Account
Done (7/23/2014 4:01:13 PM)
23.09 - Repair lnk (Shortcuts) Association
Start (7/23/2014 4:01:13 PM)
Running Repair Under Current User Account
Running Repair Under System Account
Done (7/23/2014 4:01:23 PM)
23.10 - Repair msc Association
Start (7/23/2014 4:01:23 PM)
Running Repair Under Current User Account
Running Repair Under System Account
Done (7/23/2014 4:01:32 PM)
23.11 - Repair reg Association
Start (7/23/2014 4:01:32 PM)
Running Repair Under Current User Account
Running Repair Under System Account
Done (7/23/2014 4:01:42 PM)
23.12 - Repair scr Association
Start (7/23/2014 4:01:42 PM)
Running Repair Under Current User Account
Running Repair Under System Account
Done (7/23/2014 4:01:51 PM)
24 - Repair Windows Safe Mode
Start (7/23/2014 4:01:51 PM)
Running Repair Under Current User Account
Running Repair Under System Account
Done (7/23/2014 4:02:02 PM)
25 - Repair Print Spooler
Start (7/23/2014 4:02:02 PM)
Running Repair Under Current User Account
Running Repair Under System Account
Done (7/23/2014 4:02:43 PM)
26 - Restore Important Windows Services
Start (7/23/2014 4:02:43 PM)
Running Repair Under Current User Account
Running Repair Under System Account
Done (7/23/2014 4:02:59 PM)
27 - Set Windows Services To Default Startup
Start (7/23/2014 4:02:59 PM)
Running Repair Under Current User Account
Running Repair Under System Account
Done (7/23/2014 4:04:03 PM)
31 - Repair Windows 'New' Submenu
Start (7/23/2014 4:04:03 PM)
Running Repair Under Current User Account
Running Repair Under System Account
Done (7/23/2014 4:04:11 PM)
Cleaning up empty logs...
All Selected Repairs Done.
Done at (7/23/2014 4:04:11 PM)
Total Repair Time: 00:23:13
...YOU MUST RESTART YOUR SYSTEM...
Running Repair Under Current User Account
-
Dear Kevin,
That log is below.
Thank you!
CE
*******
Vino's Event Viewer v01c run on Windows 2008 in English
Report run at 23/07/2014 10:08:58 AM
Note: All dates below are in the format dd/mm/yyyy
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'Application' Log - Critical Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'Application' Log - Error Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'Application' Date/Time: 21/07/2014 6:42:14 PM
Type: Error Category: 100
Event: 1000 Source: Application Error
Faulting application name: Explorer.EXE, version: 6.1.7601.17567, time stamp: 0x4d672ee4 Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000 Exception code: 0xc0000005 Fault offset: 0x0000000000000000 Faulting process id: 0xae0 Faulting application start time: 0x01cfa5136cafd8e4 Faulting application path: C:\Windows\Explorer.EXE Faulting module path: unknown Report Id: bb4ec6b2-1106-11e4-a39a-0020188cf1d7
Log: 'Application' Date/Time: 16/07/2014 1:49:04 PM
Type: Error Category: 100
Event: 1000 Source: Application Error
Faulting application name: Explorer.EXE, version: 6.1.7601.17567, time stamp: 0x4d672ee4 Faulting module name: DUI70.dll, version: 6.1.7600.16385, time stamp: 0x4a5bdf25 Exception code: 0xc0000005 Fault offset: 0x00000000000010c5 Faulting process id: 0xbd8 Faulting application start time: 0x01cfa0fa820ac9a0 Faulting application path: C:\Windows\Explorer.EXE Faulting module path: C:\Windows\system32\DUI70.dll Report Id: f29f5f2b-0cef-11e4-bfd0-0020188cf1d7
Log: 'Application' Date/Time: 03/07/2014 1:48:51 PM
Type: Error Category: 0
Event: 11311 Source: MsiInstaller
SA_Error1709: StandardAction(0xC00706AD): Product: AVG 2014 -- Error 1311. SA_Error1311: StandardAction(0xC007051F): Source file not found(cabinet): C:\ProgramData\AVG2014\SetupBackup\lng_esa.cab. Verify that the file exists and that you can access it.
Log: 'Application' Date/Time: 03/07/2014 1:48:39 PM
Type: Error Category: 0
Event: 11311 Source: MsiInstaller
SA_Error1709: StandardAction(0xC00706AD): Product: AVG 2014 -- Error 1311. SA_Error1311: StandardAction(0xC007051F): Source file not found(cabinet): C:\ProgramData\AVG2014\SetupBackup\lng_zta.cab. Verify that the file exists and that you can access it.
Log: 'Application' Date/Time: 03/07/2014 1:48:28 PM
Type: Error Category: 0
Event: 11311 Source: MsiInstaller
SA_Error1709: StandardAction(0xC00706AD): Product: AVG 2014 -- Error 1311. SA_Error1311: StandardAction(0xC007051F): Source file not found(cabinet): C:\ProgramData\AVG2014\SetupBackup\lng_zha.cab. Verify that the file exists and that you can access it.
Log: 'Application' Date/Time: 03/07/2014 1:48:17 PM
Type: Error Category: 0
Event: 11311 Source: MsiInstaller
SA_Error1709: StandardAction(0xC00706AD): Product: AVG 2014 -- Error 1311. SA_Error1311: StandardAction(0xC007051F): Source file not found(cabinet): C:\ProgramData\AVG2014\SetupBackup\lng_tra.cab. Verify that the file exists and that you can access it.
Log: 'Application' Date/Time: 03/07/2014 1:48:06 PM
Type: Error Category: 0
Event: 11311 Source: MsiInstaller
SA_Error1709: StandardAction(0xC00706AD): Product: AVG 2014 -- Error 1311. SA_Error1311: StandardAction(0xC007051F): Source file not found(cabinet): C:\ProgramData\AVG2014\SetupBackup\lng_rua.cab. Verify that the file exists and that you can access it.
Log: 'Application' Date/Time: 03/07/2014 1:47:54 PM
Type: Error Category: 0
Event: 11311 Source: MsiInstaller
SA_Error1709: StandardAction(0xC00706AD): Product: AVG 2014 -- Error 1311. SA_Error1311: StandardAction(0xC007051F): Source file not found(cabinet): C:\ProgramData\AVG2014\SetupBackup\lng_msa.cab. Verify that the file exists and that you can access it.
Log: 'Application' Date/Time: 03/07/2014 1:47:44 PM
Type: Error Category: 0
Event: 11311 Source: MsiInstaller
SA_Error1709: StandardAction(0xC00706AD): Product: AVG 2014 -- Error 1311. SA_Error1311: StandardAction(0xC007051F): Source file not found(cabinet): C:\ProgramData\AVG2014\SetupBackup\lng_koa.cab. Verify that the file exists and that you can access it.
Log: 'Application' Date/Time: 03/07/2014 1:47:33 PM
Type: Error Category: 0
Event: 11311 Source: MsiInstaller
SA_Error1709: StandardAction(0xC00706AD): Product: AVG 2014 -- Error 1311. SA_Error1311: StandardAction(0xC007051F): Source file not found(cabinet): C:\ProgramData\AVG2014\SetupBackup\lng_ida.cab. Verify that the file exists and that you can access it.
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'System' Log - Critical Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'System' Log - Error Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'System' Date/Time: 23/07/2014 7:00:41 AM
Type: Error Category: 1
Event: 20 Source: Microsoft-Windows-WindowsUpdateClient
Installation Failure: Windows failed to install the following update with error 0x80070663: Update for Microsoft Filter Pack 2.0 (KB2878281) 32-Bit Edition.
Log: 'System' Date/Time: 23/07/2014 7:00:41 AM
Type: Error Category: 1
Event: 20 Source: Microsoft-Windows-WindowsUpdateClient
Installation Failure: Windows failed to install the following update with error 0x80070663: Security Update for Microsoft Office 2010 (KB2880971) 32-Bit Edition.
Log: 'System' Date/Time: 22/07/2014 1:26:08 PM
Type: Error Category: 1
Event: 20 Source: Microsoft-Windows-WindowsUpdateClient
Installation Failure: Windows failed to install the following update with error 0x80070663: Update for Microsoft Filter Pack 2.0 (KB2878281) 32-Bit Edition.
Log: 'System' Date/Time: 22/07/2014 1:26:08 PM
Type: Error Category: 1
Event: 20 Source: Microsoft-Windows-WindowsUpdateClient
Installation Failure: Windows failed to install the following update with error 0x80070663: Security Update for Microsoft Office 2010 (KB2880971) 32-Bit Edition.
Log: 'System' Date/Time: 22/07/2014 1:23:48 PM
Type: Error Category: 1
Event: 20 Source: Microsoft-Windows-WindowsUpdateClient
Installation Failure: Windows failed to install the following update with error 0x80070663: Update for Microsoft Filter Pack 2.0 (KB2878281) 32-Bit Edition.
Log: 'System' Date/Time: 22/07/2014 1:23:48 PM
Type: Error Category: 1
Event: 20 Source: Microsoft-Windows-WindowsUpdateClient
Installation Failure: Windows failed to install the following update with error 0x80070663: Security Update for Microsoft Office 2010 (KB2880971) 32-Bit Edition.
Log: 'System' Date/Time: 22/07/2014 7:10:31 AM
Type: Error Category: 1
Event: 20 Source: Microsoft-Windows-WindowsUpdateClient
Installation Failure: Windows failed to install the following update with error 0x80070663: Update for Microsoft Filter Pack 2.0 (KB2878281) 32-Bit Edition.
Log: 'System' Date/Time: 22/07/2014 7:04:08 AM
Type: Error Category: 1
Event: 20 Source: Microsoft-Windows-WindowsUpdateClient
Installation Failure: Windows failed to install the following update with error 0x80070663: Security Update for Microsoft Office 2010 (KB2880971) 32-Bit Edition.
Log: 'System' Date/Time: 21/07/2014 6:44:14 PM
Type: Error Category: 0
Event: 7000 Source: Service Control Manager
The NVIDIA Update Service Daemon service failed to start due to the following error: The service did not start due to a logon failure.
Log: 'System' Date/Time: 21/07/2014 6:44:14 PM
Type: Error Category: 0
Event: 7038 Source: Service Control Manager
The nvUpdatusService service was unable to log on as .\UpdatusUser with the currently configured password due to the following error: Logon failure: the specified account password has expired. To ensure that the service is configured properly, use the Services snap-in in Microsoft Management Console (MMC).
-
postscript: Windows update fails with code 80070663.
-
Dear Kevin,
The updates still failed after running the linked tool, so I uninstalled and then reinstalled the MS office programs.
When MS office was uninstalled, windows update would run successfully. When I reinstalled, 43 updates were found (relating to MS office 2010), which were installed successfully.
However, after all of that, running windows update still fails for 2 updates that are found, with the same KB numbers:
KB2880971 (security update for MS office)
KB2878281 (MS filter pack 2.0)
Thank you for your help!
CE
-
Dear Kevin,
They are
KB2878281
KB2880971
Thank you!
CE
-
Dear Kevin,
Under Cryptographic services, it lists
Status = Started
Startup type = Automatic
Thank you!
-
Dear Kevin,
Thank you for your help!
Windows update still fails with Error code 80070663 after running the windows update troubleshooter you suggested above.
The issue after windows update is data recovery. Would PhotoRec help? Do you have program suggestions? Or should this wait until windows update is fixed?
Thank you again
CE
-
Dear Kevin,
This windows fixit fails also with windows update error0x80070057
It says "repair missing or corrupt files. SFC Output: Windows Resource Protection could not start the repair service."
When I run windows update, it finds the same 11 updates. When I attempt to install them, it fails with the same error code as before.
I pasted the FSS log below.
Thank you for your help!
CE
******
Farbar Service Scanner Version: 10-06-2014
Ran by Administrator (administrator) on 27-06-2014 at 14:03:47
Running from "C:\Users\jane_delgavio\Downloads"
Microsoft Windows 7 Professional Service Pack 1 (X64)
Boot Mode: Normal
****************************************************************
Internet Services:
============
Connection Status:
==============
Localhost is accessible.
LAN connected.
Google IP is accessible.
Google.com is accessible.
Yahoo.com is accessible.
Windows Firewall:
=============
Firewall Disabled Policy:
==================
System Restore:
============
System Restore Disabled Policy:
========================
Action Center:
============
Windows Update:
============
Windows Autoupdate Disabled Policy:
============================
Windows Defender:
==============
WinDefend Service is not running. Checking service configuration:
The start type of WinDefend service is set to Demand. The default start type is Auto.
The ImagePath of WinDefend service is OK.
The ServiceDll of WinDefend service is OK.
Windows Defender Disabled Policy:
==========================
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows Defender]
"DisableAntiSpyware"=DWORD:1
Other Services:
==============
File Check:
========
C:\Windows\System32\nsisvc.dll => File is digitally signed
C:\Windows\System32\drivers\nsiproxy.sys => File is digitally signed
C:\Windows\System32\dhcpcore.dll => File is digitally signed
C:\Windows\System32\drivers\afd.sys => File is digitally signed
C:\Windows\System32\drivers\tdx.sys => File is digitally signed
C:\Windows\System32\Drivers\tcpip.sys => File is digitally signed
C:\Windows\System32\dnsrslvr.dll => File is digitally signed
C:\Windows\System32\mpssvc.dll => File is digitally signed
C:\Windows\System32\bfe.dll => File is digitally signed
C:\Windows\System32\drivers\mpsdrv.sys => File is digitally signed
C:\Windows\System32\SDRSVC.dll => File is digitally signed
C:\Windows\System32\vssvc.exe => File is digitally signed
C:\Windows\System32\wscsvc.dll => File is digitally signed
C:\Windows\System32\wbem\WMIsvc.dll => File is digitally signed
C:\Windows\System32\wuaueng.dll => File is digitally signed
C:\Windows\System32\qmgr.dll => File is digitally signed
C:\Windows\System32\es.dll => File is digitally signed
C:\Windows\System32\cryptsvc.dll => File is digitally signed
C:\Program Files\Windows Defender\MpSvc.dll => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
**** End of log **** -
Dear Kevin,
After Windows Update looks for updates, it lists 11 updates, of which 2 are "important" and 9 are "optional"--there are details on the content of each update, as normal. Clicking on install results in a pause and then an error message ( "unknown error" code 80246007 ) and the updates are not installed. The details on the error are what I pasted into my previous post.
It looks like this error relates the Background Intelligent Transfer Service:
http://windows.microsoft.com/en-us/windows/windows-update-error-80246007#1TC=windows-7
The fixit that you linked to actually gave the option to "fix" either Windows Update or BITS within one of the dialogue boxes. Should I run it again and select BITS this time?
Thank you.
Regards,
CE
-
Dear Kevin,
After this fixit runs, the report is a mixed bag. The result has been pasted below.
Checking for updates finds new updates but fails to install them with "unknown error" code 80246007
Thank you for your help!
CE
**
Windows UpdatePublisher detailsProblems installing recent updatesProblems installing recent updatesNot fixedRepair Windows UpdateCompletedProblems installing recent updatesProblems installing recent updatesNot fixedRepair Windows UpdateCompletedCheck for missing or corrupt filesCheck for missing or corrupt filesDetectedRepair missing or corrupt filesCompletedSome security settings are missing or have been changedSome security settings are missing or have been changedFixedReset security settingsCompletedService registration is missing or corruptService registration is missing or corruptFixedReset service registrationCompletedWindows Update error 0x8024402C(2014-06-26-T-04_01_04P)Windows Update error 0x8024402C(2014-06-26-T-04_01_04P)FixedResetting Windows Update data storeCompletedWindows Update environment variables are incorrectWindows Update environment variables are incorrectIssue not presentWindows Update services are not runningWindows Update services are not runningIssue not presentCryptographic service components are not registeredCryptographic service components are not registeredIssue not presentIssues found5Problems installing recent
Error ReportRootCause: RC_DataStore ErrorCode: 0x8024402C TimeDetected: 2014-06-26-T-04:01:04PCollected FileFile Name: CheckSURLog.cab Collection information Computer Name: WEE_FN_ADMIN10 Windows Version:6.1Architecture:amd64Time:Thursday, June 26, 2014 4:00:46 PMPublisher detailsBackground Intelligent Transfer Service Find and fix problems that may prevent background downloads from working Package Version:1.2.1.20131113Publisher:Microsoft CorporationWindows Update Find and fix problems with Windows Update Package Version:8.1.1.20131113Publisher:Microsoft CorporationWindows Update Find and fix problems with Windows Update Package Version:8.1.1.20131113Publisher:Microsoft Corporation -
Dear Kevin,
I ran the services repair tool and then ran FSS again. I have pasted the log below.
Thank you again for all of your help. What is the next step?
Regards,
CE
****
Farbar Service Scanner Version: 10-06-2014
Ran by Administrator (administrator) on 26-06-2014 at 09:35:52
Running from "C:\Users\jane_delgavio\Downloads"
Microsoft Windows 7 Professional Service Pack 1 (X64)
Boot Mode: Normal
****************************************************************
Internet Services:
============
Connection Status:
==============
Localhost is accessible.
LAN connected.
Google IP is accessible.
Google.com is accessible.
Yahoo.com is accessible.
Windows Firewall:
=============
Firewall Disabled Policy:
==================
System Restore:
============
System Restore Disabled Policy:
========================
Action Center:
============
Windows Update:
============
wuauserv Service is not running. Checking service configuration:
The start type of wuauserv service is OK.
The ImagePath of wuauserv service is OK.
The ServiceDll of wuauserv service is OK.
Windows Autoupdate Disabled Policy:
============================
Windows Defender:
==============
WinDefend Service is not running. Checking service configuration:
The start type of WinDefend service is OK.
The ImagePath of WinDefend service is OK.
The ServiceDll of WinDefend service is OK.
Windows Defender Disabled Policy:
==========================
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows Defender]
"DisableAntiSpyware"=DWORD:1
Other Services:
==============
File Check:
========
C:\Windows\System32\nsisvc.dll => File is digitally signed
C:\Windows\System32\drivers\nsiproxy.sys => File is digitally signed
C:\Windows\System32\dhcpcore.dll => File is digitally signed
C:\Windows\System32\drivers\afd.sys => File is digitally signed
C:\Windows\System32\drivers\tdx.sys => File is digitally signed
C:\Windows\System32\Drivers\tcpip.sys => File is digitally signed
C:\Windows\System32\dnsrslvr.dll => File is digitally signed
C:\Windows\System32\mpssvc.dll => File is digitally signed
C:\Windows\System32\bfe.dll => File is digitally signed
C:\Windows\System32\drivers\mpsdrv.sys => File is digitally signed
C:\Windows\System32\SDRSVC.dll => File is digitally signed
C:\Windows\System32\vssvc.exe => File is digitally signed
C:\Windows\System32\wscsvc.dll => File is digitally signed
C:\Windows\System32\wbem\WMIsvc.dll => File is digitally signed
C:\Windows\System32\wuaueng.dll => File is digitally signed
C:\Windows\System32\qmgr.dll => File is digitally signed
C:\Windows\System32\es.dll => File is digitally signed
C:\Windows\System32\cryptsvc.dll => File is digitally signed
C:\Program Files\Windows Defender\MpSvc.dll => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
**** End of log **** -
Dear Kevin,
I updated the adobe reader and the update of flash failed. Whenever I try to run it, it hangs. Should I uninstall Flash and reinstall it?
I have pasted the log from FSS below.
Thank you for your help!
Regards,
CE
****
Farbar Service Scanner Version: 10-06-2014
Ran by jane_delgavio (ATTENTION: The logged in user is not administrator) on 25-06-2014 at 14:24:04
Running from "C:\Users\jane_delgavio\Downloads"
Microsoft Windows 7 Professional Service Pack 1 (X64)
Boot Mode: Normal
****************************************************************
Internet Services:
============
Connection Status:
==============
Localhost is accessible.
LAN connected.
Google IP is accessible.
Google.com is accessible.
Yahoo.com is accessible.
Windows Firewall:
=============
Firewall Disabled Policy:
==================
System Restore:
============
SDRSVC Service is not running. Checking service configuration:
The start type of SDRSVC service is OK.
The ImagePath of SDRSVC service is OK.
The ServiceDll of SDRSVC service is OK.
VSS Service is not running. Checking service configuration:
The start type of VSS service is OK.
The ImagePath of VSS service is OK.
System Restore Disabled Policy:
========================
Action Center:
============
Windows Update:
============
BITS Service is not running. Checking service configuration:
The start type of BITS service is set to Demand. The default start type is Auto.
The ImagePath of BITS service is OK.
The ServiceDll of BITS service is OK.
Windows Autoupdate Disabled Policy:
============================
Windows Defender:
==============
WinDefend Service is not running. Checking service configuration:
The start type of WinDefend service is set to Demand. The default start type is Auto.
The ImagePath of WinDefend service is OK.
The ServiceDll of WinDefend service is OK.
Windows Defender Disabled Policy:
==========================
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows Defender]
"DisableAntiSpyware"=DWORD:1
Other Services:
==============
File Check:
========
C:\Windows\System32\nsisvc.dll => File is digitally signed
C:\Windows\System32\drivers\nsiproxy.sys => File is digitally signed
C:\Windows\System32\dhcpcore.dll => File is digitally signed
C:\Windows\System32\drivers\afd.sys => File is digitally signed
C:\Windows\System32\drivers\tdx.sys => File is digitally signed
C:\Windows\System32\Drivers\tcpip.sys => File is digitally signed
C:\Windows\System32\dnsrslvr.dll => File is digitally signed
C:\Windows\System32\mpssvc.dll => File is digitally signed
C:\Windows\System32\bfe.dll => File is digitally signed
C:\Windows\System32\drivers\mpsdrv.sys => File is digitally signed
C:\Windows\System32\SDRSVC.dll => File is digitally signed
C:\Windows\System32\vssvc.exe => File is digitally signed
C:\Windows\System32\wscsvc.dll => File is digitally signed
C:\Windows\System32\wbem\WMIsvc.dll => File is digitally signed
C:\Windows\System32\wuaueng.dll => File is digitally signed
C:\Windows\System32\qmgr.dll => File is digitally signed
C:\Windows\System32\es.dll => File is digitally signed
C:\Windows\System32\cryptsvc.dll => File is digitally signed
C:\Program Files\Windows Defender\MpSvc.dll => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
**** End of log **** -
Dear Kevin,
Is there any reason that the scans would have removed system restore points?
I was planning on recovering the files via "previous versions" (the backup flash drive happened to be attached the computer when this software struck and those are encrypted, also), which was working earlier in this process, but I thought that I would wait to do the recovery so that logs would show the activity of the virus, and if it struck again, I wouldn't need to do it twice. However, now it cannot find system restore points when I look at properties --> previous versions on files.
Thank you for all of your help with this.
Regards,
CE
-
Dear Kevin,
Is there any reason that these scans would have affected the system restore points? I was waiting to recover the files until after the virus was removed-- I had recovered some of them, but now when I try to restore previous versions, it does not find find any previous versions.
Thank you for your help!
Regards,
CE
-
Dear Kevin,
Thank you very much!
I have attached the malwarebytes log, and I pasted the screen317 log below.
I don't find any evidence of the virus, but I haven't for a bit, while the scans were still catching things.
Thank you for all of your help with this.
Regards,
CE
****
Results of screen317's Security Check version 0.99.85
Windows 7 Service Pack 1 x64 (UAC is enabled)
Internet Explorer 11
``````````````Antivirus/Firewall Check:``````````````
Windows Firewall Enabled!
AVG AntiVirus Free Edition 2014
Antivirus up to date!
`````````Anti-malware/Other Utilities Check:`````````
Spybot - Search & Destroy
Adobe Flash Player 13.0.0.214 Flash Player out of Date!
Adobe Reader 9 Adobe Reader out of Date!
Mozilla Firefox 15.0.1 Firefox out of Date!
````````Process Check: objlist.exe by Laurent````````
Malwarebytes Anti-Malware mbamservice.exe
Malwarebytes Anti-Malware mbam.exe
Spybot Teatimer.exe is disabled!
AVG avgwdsvc.exe
Malwarebytes Anti-Malware mbamscheduler.exe
`````````````````System Health check`````````````````
Total Fragmentation on Drive C: 0%
````````````````````End of Log`````````````````````` -
Dear kevinf80,
I ran ESET again and removed the threats that were detected. I cannot find any obvious symptoms of a problem. Do you suggest further steps?
Thank you so much!
Regards,
CE
-
(log continued 2nd time-- it was too long to post)
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Beachcomber\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Beachcomber\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Bigboy\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Bigboy\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Black Tie\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Black Tie\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Blockhead\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Blockhead\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Breeze\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Breeze\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Butterfly\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Butterfly\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Camp\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Camp\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Candles\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Candles\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Cats & Dogs\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Cats & Dogs\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Christmas Berries\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Christmas Berries\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Fall\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Fall\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Family\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Family\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Fan Club\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Fan Club\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Fish Bones\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Fish Bones\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Fishing Pole\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Fishing Pole\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Freedom\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Freedom\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Funkie Fun\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Funkie Fun\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Game Night\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Game Night\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Gifts\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Gifts\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Glyphs\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Glyphs\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Happy Camper\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Happy Camper\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Hunting\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Hunting\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\June Bugs\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\June Bugs\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Long & Lanky\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Long & Lanky\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Off Road\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Off Road\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Ouch\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Ouch\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Party\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Party\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Peeking Posies\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Peeking Posies\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Picket Fence\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Picket Fence\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Pillow\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Pillow\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Play Ball\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Play Ball\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Ransom\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Ransom\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Romance\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Romance\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Shear Madness\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Shear Madness\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Sink or Swim\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Sink or Swim\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Slime\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Slime\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Smooth Rock\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Smooth Rock\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Sp Baseball\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Sp Baseball\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Sp Basketball\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Sp Basketball\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Sp Bowling\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Sp Bowling\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Sp Football\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Sp Football\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Sp Golf\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Sp Golf\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Sp Hockey\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Sp Hockey\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Sp Plain\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Sp Plain\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Sp Soccer\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Sp Soccer\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Sp Tennis\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Sp Tennis\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Sp Volleyball\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Sp Volleyball\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Spirit\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Spirit\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Spring\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Spring\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Summer\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Summer\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Sweet Bows\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Sweet Bows\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Tags\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Tags\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Take a Hike\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Take a Hike\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Timeless\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Timeless\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Winter\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Winter\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Wrangler\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Wrangler\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Wreaths\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Wreaths\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Patterns\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Patterns\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Res\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Res\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Res\Color\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Res\Color\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Res\Color\Winters\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Res\Color\Winters\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Res\Color\Winters\Winter\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Res\Color\Winters\Winter\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Res\Color\Winters\Winter\Mask 1\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Res\Color\Winters\Winter\Mask 1\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Res\graphics\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Res\graphics\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Tutorials\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Tutorials\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Tutorials\Character Spacing\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Tutorials\Character Spacing\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Tutorials\Character Spacing\TourImages\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Tutorials\Character Spacing\TourImages\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Tutorials\Character Spacing\TourText\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Tutorials\Character Spacing\TourText\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Tutorials\Journalettes\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Tutorials\Journalettes\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Tutorials\Journalettes\TourImages\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Tutorials\Journalettes\TourImages\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Tutorials\Journalettes\TourText\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Tutorials\Journalettes\TourText\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Tutorials\Mirror\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Tutorials\Mirror\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Tutorials\Mirror\TourImages\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Tutorials\Mirror\TourImages\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Tutorials\Mirror\TourText\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Tutorials\Mirror\TourText\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Tutorials\Moving_Sizing\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Tutorials\Moving_Sizing\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Tutorials\Moving_Sizing\TourImages\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Tutorials\Moving_Sizing\TourImages\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Tutorials\Moving_Sizing\TourText\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Tutorials\Moving_Sizing\TourText\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Tutorials\Print Vertical\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Tutorials\Print Vertical\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Tutorials\Print Vertical\TourImages\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Tutorials\Print Vertical\TourImages\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Tutorials\Print Vertical\TourText\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Tutorials\Print Vertical\TourText\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Tutorials\Text Box\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Tutorials\Text Box\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Tutorials\Text Box\TourImages\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Tutorials\Text Box\TourImages\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Tutorials\Text Box\TourText\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Tutorials\Text Box\TourText\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Tutorials\Using Mixers\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Tutorials\Using Mixers\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Tutorials\Using Mixers\TourImages\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Tutorials\Using Mixers\TourImages\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Tutorials\Using Mixers\TourText\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Tutorials\Using Mixers\TourText\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Tutorials\Using Twisters\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Tutorials\Using Twisters\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Tutorials\Using Twisters\TourImages\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Tutorials\Using Twisters\TourImages\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Tutorials\Using Twisters\TourText\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Tutorials\Using Twisters\TourText\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\scan\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\scan\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\WINACS\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\WINACS\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\WINACS\ACSFORM\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\WINACS\ACSFORM\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\WINACS\Multimedia\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\WINACS\Multimedia\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Wee Dietrich\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Wee Dietrich\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Wee Dietrich\wee (Dietrich)\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Wee Dietrich\wee (Dietrich)\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Wee Dietrich\wee (Dietrich)\vb\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Wee Dietrich\wee (Dietrich)\vb\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Wee Dietrich\wee (Dietrich)\WP51\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Wee Dietrich\wee (Dietrich)\WP51\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Wee Dietrich\wee (Dietrich)\FILES\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Wee Dietrich\wee (Dietrich)\FILES\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Wee Dietrich\wee (Dietrich)\DRIVERS\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Wee Dietrich\wee (Dietrich)\DRIVERS\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Wee Dietrich\wee (Dietrich)\DRIVERS\DOCS\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Wee Dietrich\wee (Dietrich)\DRIVERS\DOCS\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Wee Dietrich\wee (Dietrich)\DRIVERS\D5W31\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Wee Dietrich\wee (Dietrich)\DRIVERS\D5W31\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Wee Dietrich\wee (Dietrich)\DRIVERS\DJ100\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Wee Dietrich\wee (Dietrich)\DRIVERS\DJ100\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Wee Dietrich\wee (Dietrich)\DRIVERS\FONTS\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Wee Dietrich\wee (Dietrich)\DRIVERS\FONTS\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Wee Dietrich\wee (Dietrich)\WORD2\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Wee Dietrich\wee (Dietrich)\WORD2\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Wee Dietrich\wee (Dietrich)\WORKS\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Wee Dietrich\wee (Dietrich)\WORKS\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Wee Dietrich\wee (Dietrich)\WORKS\WPS\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Wee Dietrich\wee (Dietrich)\WORKS\WPS\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Wee Dietrich\wee (Dietrich)\ZIPBACK\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Wee Dietrich\wee (Dietrich)\ZIPBACK\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Wee Dietrich\wee (Dietrich)\ZIPBACK\MSWORKS\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Wee Dietrich\wee (Dietrich)\ZIPBACK\MSWORKS\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Wee Dietrich\wee (Dietrich)\ZIPBACK\MSWORKS\SAMPLES\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Wee Dietrich\wee (Dietrich)\ZIPBACK\MSWORKS\SAMPLES\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Wee Dietrich\wee (Dietrich)\ZIPBACK\MSWORKS\MSWORKS\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Wee Dietrich\wee (Dietrich)\ZIPBACK\MSWORKS\MSWORKS\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Wee Dietrich\wee (Dietrich)\ZIPBACK\MSWORKS\WKSTMPL\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Wee Dietrich\wee (Dietrich)\ZIPBACK\MSWORKS\WKSTMPL\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Wee Dietrich\wee (Dietrich)\ZIPBACK\MSWORKS\MSWORKS.CBT\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Wee Dietrich\wee (Dietrich)\ZIPBACK\MSWORKS\MSWORKS.CBT\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Wee Dietrich\wee (Dietrich)\ZIPBACK\MSWORKS\CLIPART\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Wee Dietrich\wee (Dietrich)\ZIPBACK\MSWORKS\CLIPART\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Wee Dietrich\wee (Dietrich)\Newsletters\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Wee Dietrich\wee (Dietrich)\Newsletters\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Wee Dietrich\wee (Dietrich)\janehp\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Wee Dietrich\wee (Dietrich)\janehp\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Wee Dietrich\wee (Dietrich)\janehp\mydocuments\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Wee Dietrich\wee (Dietrich)\janehp\mydocuments\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Wee Dietrich\wee (Dietrich)\WINWORD\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Wee Dietrich\wee (Dietrich)\WINWORD\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Wee Dietrich\wee (Dietrich)\Field Trips\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Wee Dietrich\wee (Dietrich)\Field Trips\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Wee Dietrich\wee (Dietrich)\Gmail - the letter - jane.wbc.eec@gmail.com_files\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Wee Dietrich\wee (Dietrich)\Gmail - the letter - jane.wbc.eec@gmail.com_files\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Wee Dietrich\wee (Dietrich)\Gmail - the letter - jane.wbc.eec@gmail.com_files\a_data_002\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Wee Dietrich\wee (Dietrich)\Gmail - the letter - jane.wbc.eec@gmail.com_files\a_data_002\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Wee Dietrich\wee (Dietrich)\Gmail - the letter - jane.wbc.eec@gmail.com_files\a_data_004\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Wee Dietrich\wee (Dietrich)\Gmail - the letter - jane.wbc.eec@gmail.com_files\a_data_004\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Wee Dietrich\wee (Dietrich)\Gmail - the letter - jane.wbc.eec@gmail.com_files\a_data\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Wee Dietrich\wee (Dietrich)\Gmail - the letter - jane.wbc.eec@gmail.com_files\a_data\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\WD_Windows_Tools\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\WD_Windows_Tools\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\WD_Windows_Tools\EULA\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\WD_Windows_Tools\EULA\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\WD_Windows_Tools\EULA\KOR\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\WD_Windows_Tools\EULA\KOR\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\WD_Windows_Tools\EULA\JPN\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\WD_Windows_Tools\EULA\JPN\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\WD_Windows_Tools\EULA\ITA\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\WD_Windows_Tools\EULA\ITA\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\WD_Windows_Tools\EULA\FRA\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\WD_Windows_Tools\EULA\FRA\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\WD_Windows_Tools\EULA\ESN\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\WD_Windows_Tools\EULA\ESN\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\WD_Windows_Tools\EULA\ENG\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\WD_Windows_Tools\EULA\ENG\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\WD_Windows_Tools\EULA\DEU\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\WD_Windows_Tools\EULA\DEU\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\WD_Windows_Tools\EULA\CHT\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\WD_Windows_Tools\EULA\CHT\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\WD_Windows_Tools\EULA\CHS\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\WD_Windows_Tools\EULA\CHS\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\WD_Windows_Tools\Documentation\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\WD_Windows_Tools\Documentation\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\WD_Windows_Tools\Documentation\KOR\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\WD_Windows_Tools\Documentation\KOR\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\WD_Windows_Tools\Documentation\JPN\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\WD_Windows_Tools\Documentation\JPN\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\WD_Windows_Tools\Documentation\ITA\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\WD_Windows_Tools\Documentation\ITA\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\WD_Windows_Tools\Documentation\FRA\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\WD_Windows_Tools\Documentation\FRA\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\WD_Windows_Tools\Documentation\ESN\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\WD_Windows_Tools\Documentation\ESN\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\WD_Windows_Tools\Documentation\ENG\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\WD_Windows_Tools\Documentation\ENG\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\WD_Windows_Tools\Documentation\DEU\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\WD_Windows_Tools\Documentation\DEU\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\WD_Windows_Tools\Documentation\CHT\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\WD_Windows_Tools\Documentation\CHT\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\WD_Windows_Tools\Documentation\CHS\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\WD_Windows_Tools\Documentation\CHS\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Documentation\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Documentation\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Documentation\TUR\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Documentation\TUR\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Documentation\SWE\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Documentation\SWE\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Documentation\SLO\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Documentation\SLO\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Documentation\RUS\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Documentation\RUS\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Documentation\POR\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Documentation\POR\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Documentation\POL\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Documentation\POL\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Documentation\NOR\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Documentation\NOR\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Documentation\NLD\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Documentation\NLD\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Documentation\KOR\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Documentation\KOR\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Documentation\JPN\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Documentation\JPN\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Documentation\ITA\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Documentation\ITA\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Documentation\GRE\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Documentation\GRE\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Documentation\FRA\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Documentation\FRA\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Documentation\FIN\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Documentation\FIN\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Documentation\ESN\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Documentation\ESN\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Documentation\ENG\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Documentation\ENG\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Documentation\DEU\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Documentation\DEU\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Documentation\DAN\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Documentation\DAN\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Documentation\CZE\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Documentation\CZE\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Documentation\CHT\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Documentation\CHT\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Documentation\CHS\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Documentation\CHS\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Documentation\ARA\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Documentation\ARA\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\WD Sync Data\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\WD Sync Data\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\WD Sync Data\My Stuff\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\WD Sync Data\My Stuff\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\WD Sync Data\My Stuff\Data\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\WD Sync Data\My Stuff\Data\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\WD Sync Data\WeeBackup\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\WD Sync Data\WeeBackup\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\WD Sync Data\WeeBackup\Data\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\WD Sync Data\WeeBackup\Data\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Recycled\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Recycled\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Recycled\De1.old\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Recycled\De1.old\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Recycled\De1.old\Templates\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Recycled\De1.old\Templates\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Recycled\De1.old\My Documents\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Recycled\De1.old\My Documents\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Recycled\De1.old\My Documents\My Pictures\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Recycled\De1.old\My Documents\My Pictures\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Recycled\De1.old\My Documents\My Music\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Recycled\De1.old\My Documents\My Music\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Recycled\De1.old\Application Data\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Recycled\De1.old\Application Data\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Recycled\De1.old\Application Data\Microsoft\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Recycled\De1.old\Application Data\Microsoft\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Recycled\De1.old\Application Data\Microsoft\Internet Explorer\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Recycled\De1.old\Application Data\Microsoft\Internet Explorer\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Recycled\De4\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Recycled\De4\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Recycled\De4\All Users\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Recycled\De4\All Users\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Recycled\De4\All Users\DRM\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Recycled\De4\All Users\DRM\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Recycled\De6.WOODOMAIN2\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Recycled\De6.WOODOMAIN2\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Recycled\De6.WOODOMAIN2\Application Data\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Recycled\De6.WOODOMAIN2\Application Data\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Recycled\De6.WOODOMAIN2\Application Data\WeatherBug\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Recycled\De6.WOODOMAIN2\Application Data\WeatherBug\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Recycled\De6.WOODOMAIN2\Application Data\Mozilla\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Recycled\De6.WOODOMAIN2\Application Data\Mozilla\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Recycled\De6.WOODOMAIN2\Application Data\Mozilla\Firefox\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Recycled\De6.WOODOMAIN2\Application Data\Mozilla\Firefox\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Recycled\De6.WOODOMAIN2\Application Data\Mozilla\Firefox\Profiles\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Recycled\De6.WOODOMAIN2\Application Data\Mozilla\Firefox\Profiles\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Recycled\De6.WOODOMAIN2\Application Data\Mozilla\Firefox\Profiles\fmb14rdz.default\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Recycled\De6.WOODOMAIN2\Application Data\Mozilla\Firefox\Profiles\fmb14rdz.default\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Recycled\De6.WOODOMAIN2\Application Data\Microsoft\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Recycled\De6.WOODOMAIN2\Application Data\Microsoft\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Recycled\De6.WOODOMAIN2\Application Data\Microsoft\Outlook\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Recycled\De6.WOODOMAIN2\Application Data\Microsoft\Outlook\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Janes docs\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Janes docs\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Janes docs\My Documents\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Janes docs\My Documents\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Janes docs\My Documents\My Pictures\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Janes docs\My Documents\My Pictures\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Janes docs\My Documents\My Pictures\Microsoft Clip Organizer\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Janes docs\My Documents\My Pictures\Microsoft Clip Organizer\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Janes docs\My Documents\My Music\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Janes docs\My Documents\My Music\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Janes docs\My Documents\My Music\From Internet\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Janes docs\My Documents\My Music\From Internet\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Janes docs\My Documents\My Documents\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Janes docs\My Documents\My Documents\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Janes docs\My Documents\Downloads\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Janes docs\My Documents\Downloads\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Dietrich docs\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Dietrich docs\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Dietrich docs\DRIVERS\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Dietrich docs\DRIVERS\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Dietrich docs\DRIVERS\FONTS\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Dietrich docs\DRIVERS\FONTS\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Dietrich docs\DRIVERS\DJ100\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Dietrich docs\DRIVERS\DJ100\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Dietrich docs\DRIVERS\D5W31\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Dietrich docs\DRIVERS\D5W31\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Dietrich docs\DRIVERS\DOCS\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Dietrich docs\DRIVERS\DOCS\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Dietrich docs\Field Trips\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Dietrich docs\Field Trips\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Dietrich docs\FILES\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Dietrich docs\FILES\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Dietrich docs\janehp\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Dietrich docs\janehp\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Dietrich docs\janehp\mydocuments\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Dietrich docs\janehp\mydocuments\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Dietrich docs\Newsletters\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Dietrich docs\Newsletters\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Dietrich docs\vb\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Dietrich docs\vb\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Dietrich docs\WINWORD\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Dietrich docs\WINWORD\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Dietrich docs\WORD2\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Dietrich docs\WORD2\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Dietrich docs\WORKS\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Dietrich docs\WORKS\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Dietrich docs\WORKS\WPS\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Dietrich docs\WORKS\WPS\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Dietrich docs\WP51\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Dietrich docs\WP51\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Dietrich docs\ZIPBACK\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Dietrich docs\ZIPBACK\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Dietrich docs\ZIPBACK\MSWORKS\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Dietrich docs\ZIPBACK\MSWORKS\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Dietrich docs\ZIPBACK\MSWORKS\CLIPART\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Dietrich docs\ZIPBACK\MSWORKS\CLIPART\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Dietrich docs\ZIPBACK\MSWORKS\MSWORKS.CBT\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Dietrich docs\ZIPBACK\MSWORKS\MSWORKS.CBT\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Dietrich docs\ZIPBACK\MSWORKS\WKSTMPL\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Dietrich docs\ZIPBACK\MSWORKS\WKSTMPL\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Dietrich docs\ZIPBACK\MSWORKS\MSWORKS\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Dietrich docs\ZIPBACK\MSWORKS\MSWORKS\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Dietrich docs\ZIPBACK\MSWORKS\SAMPLES\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Dietrich docs\ZIPBACK\MSWORKS\SAMPLES\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\steven_acs_backup912010\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\steven_acs_backup912010\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\steven_acs_backup912010\ACSNET\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\steven_acs_backup912010\ACSNET\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\steven_acs_backup912010\ACSNET\DOCS\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\steven_acs_backup912010\ACSNET\DOCS\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\steven_acs_backup912010\ACSNET\ACSDATA\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\steven_acs_backup912010\ACSNET\ACSDATA\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\steven_acs_backup912010\ACSNET\ACSDATA\RHONDAG\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\steven_acs_backup912010\ACSNET\ACSDATA\RHONDAG\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\steven_acs_backup912010\ACSNET\ACSDATA\SAUSTIN\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\steven_acs_backup912010\ACSNET\ACSDATA\SAUSTIN\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\steven_acs_backup912010\ACSNET\ACSDATA\SAV_TBL\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\steven_acs_backup912010\ACSNET\ACSDATA\SAV_TBL\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\steven_acs_backup912010\ACSNET\ACSFDAT\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\steven_acs_backup912010\ACSNET\ACSFDAT\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\steven_acs_backup912010\ACSNET\ACSFDAT\CHECKS\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\steven_acs_backup912010\ACSNET\ACSFDAT\CHECKS\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\steven_acs_backup912010\ACSNETold\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\steven_acs_backup912010\ACSNETold\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\steven_acs_backup912010\ACSNETold\DOCS\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\steven_acs_backup912010\ACSNETold\DOCS\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\steven_acs_backup912010\ACSNETold\ACSDATA\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\steven_acs_backup912010\ACSNETold\ACSDATA\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\steven_acs_backup912010\ACSNETold\ACSDATA\tim\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\steven_acs_backup912010\ACSNETold\ACSDATA\tim\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\steven_acs_backup912010\ACSNETold\ACSDATA\greg\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\steven_acs_backup912010\ACSNETold\ACSDATA\greg\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\steven_acs_backup912010\ACSNETold\ACSDATA\jane\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\steven_acs_backup912010\ACSNETold\ACSDATA\jane\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\steven_acs_backup912010\ACSNETold\ACSDATA\SAV_TBL\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\steven_acs_backup912010\ACSNETold\ACSDATA\SAV_TBL\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\steven_acs_backup912010\ACSNETold\ACSDATA\bobby\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\steven_acs_backup912010\ACSNETold\ACSDATA\bobby\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\steven_acs_backup912010\ACSNETold\ACSDATA\rhondag\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\steven_acs_backup912010\ACSNETold\ACSDATA\rhondag\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\steven_acs_backup912010\ACSNETold\ACSDATA\srice\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\steven_acs_backup912010\ACSNETold\ACSDATA\srice\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\steven_acs_backup912010\ACSNETold\ACSDATA\steve\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\steven_acs_backup912010\ACSNETold\ACSDATA\steve\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\steven_acs_backup912010\ACSNETold\ACSDATA\lcbolin\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\steven_acs_backup912010\ACSNETold\ACSDATA\lcbolin\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\steven_acs_backup912010\ACSNETold\ACSDATA\saustin\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\steven_acs_backup912010\ACSNETold\ACSDATA\saustin\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\steven_acs_backup912010\ACSNETold\ACSDATA\marylynn\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\steven_acs_backup912010\ACSNETold\ACSDATA\marylynn\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\steven_acs_backup912010\ACSNETold\ACSDATA\phyllis\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\steven_acs_backup912010\ACSNETold\ACSDATA\phyllis\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\steven_acs_backup912010\ACSNETold\ACSFDAT\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\steven_acs_backup912010\ACSNETold\ACSFDAT\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\steven_acs_backup912010\ACSNETold\ACSFDAT\Checks\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\steven_acs_backup912010\ACSNETold\ACSFDAT\Checks\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\steven_acs_backup912010\ACSNETold\ACSFDAT\DATA1\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\steven_acs_backup912010\ACSNETold\ACSFDAT\DATA1\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\steven_acs_backup912010\ACSNETold\ACSPICT\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\steven_acs_backup912010\ACSNETold\ACSPICT\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\steven_acs_backup912010\ACSNETold\BACKUP\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\steven_acs_backup912010\ACSNETold\BACKUP\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan(end of log)
-
(log continued-- it was too long to post)
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\General\Aqua\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\General\Berry Red\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\General\Berry Red\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\General\Black\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\General\Black\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\General\Blue\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\General\Blue\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\General\Brick\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\General\Brick\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\General\Brown\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\General\Brown\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\General\Cool Blue\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\General\Cool Blue\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\General\Emerald Green\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\General\Emerald Green\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\General\Green\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\General\Green\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\General\Kraft\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\General\Kraft\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\General\Lime\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\General\Lime\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\General\Magenta\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\General\Magenta\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\General\Navy Blue\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\General\Navy Blue\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\General\Orange\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\General\Orange\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\General\Purple\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\General\Purple\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\General\Raspberry\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\General\Raspberry\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\General\Red\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\General\Red\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\General\Sage\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\General\Sage\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\General\Sand\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\General\Sand\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\General\Sunflower\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\General\Sunflower\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\General\Tangerine\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\General\Tangerine\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\General\Yellow\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\General\Yellow\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Outdoors\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Outdoors\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Outdoors\Bark\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Outdoors\Bark\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Outdoors\Camouflage\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Outdoors\Camouflage\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Outdoors\Fizzy Water\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Outdoors\Fizzy Water\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Outdoors\Flannel Blue\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Outdoors\Flannel Blue\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Outdoors\Flannel Red\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Outdoors\Flannel Red\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Outdoors\Fur Bear\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Outdoors\Fur Bear\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Outdoors\Fur Deer\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Outdoors\Fur Deer\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Outdoors\Herringbone\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Outdoors\Herringbone\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Outdoors\Hunter's Orange\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Outdoors\Hunter's Orange\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Outdoors\Mud\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Outdoors\Mud\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Outdoors\Tire Tread\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Outdoors\Tire Tread\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Outdoors\Turf\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Outdoors\Turf\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Outdoors\Wood\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Outdoors\Wood\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Outdoors\Wood Grain\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Outdoors\Wood Grain\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Pastels\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Pastels\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Pastels\Blocks\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Pastels\Blocks\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Pastels\Dusty Rose\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Pastels\Dusty Rose\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Pastels\Pastel Blue\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Pastels\Pastel Blue\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Pastels\Pastel Green\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Pastels\Pastel Green\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Pastels\Pastel Purple\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Pastels\Pastel Purple\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Pastels\Pastel Yellow\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Pastels\Pastel Yellow\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Pastels\Peach\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Pastels\Peach\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Pastels\Periwinkle\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Pastels\Periwinkle\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Pastels\Pink\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Pastels\Pink\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Pastels\Slate\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Pastels\Slate\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Specialty\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Specialty\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Specialty\Denim\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Specialty\Denim\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Specialty\Fire\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Specialty\Fire\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Specialty\Granite\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Specialty\Granite\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Specialty\Green Apple\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Specialty\Green Apple\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Specialty\Leaves\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Specialty\Leaves\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Specialty\Rainbow\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Specialty\Rainbow\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Specialty\VioletBlue\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Specialty\VioletBlue\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Specialty\Wood\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Specialty\Wood\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Sports\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Sports\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Sports\Basketball\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Sports\Basketball\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Sports\Court\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Sports\Court\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Sports\Dimples\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Sports\Dimples\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Sports\Football\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Sports\Football\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Sports\Pinstripes\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Sports\Pinstripes\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Sports\Referee\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Sports\Referee\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Sports\Rugby Horizontal\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Sports\Rugby Horizontal\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Sports\Rugby Vertical\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Sports\Rugby Vertical\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Sports\Tennis\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\Sports\Tennis\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Help\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Help\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Help\help\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Help\help\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Help\help\images\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Help\help\images\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Clipart\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Clipart\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Clipart\Color\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Clipart\Color\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Clipart\Color\Glyphs\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Clipart\Color\Glyphs\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Bamboo\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Bamboo\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Bamboo\Mask 1\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Bamboo\Mask 1\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Barbed Wire\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Barbed Wire\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Barbed Wire\Mask 1\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Barbed Wire\Mask 1\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Beachcomber\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Beachcomber\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Beachcomber\Mask 1\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Beachcomber\Mask 1\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Beachcomber\Mask 2\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Beachcomber\Mask 2\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Bigboy\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Bigboy\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Bigboy\Mask 1\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Bigboy\Mask 1\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Black Tie\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Black Tie\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Black Tie\Mask 1\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Black Tie\Mask 1\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Black Tie\Mask 2\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Black Tie\Mask 2\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Blockhead\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Blockhead\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Blockhead\Mask 1\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Blockhead\Mask 1\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Breeze\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Breeze\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Breeze\Mask 1\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Breeze\Mask 1\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Butterfly\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Butterfly\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Butterfly\Mask 1\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Butterfly\Mask 1\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Butterfly\Mask 2\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Butterfly\Mask 2\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Camp\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Camp\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Camp\Mask 1\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Camp\Mask 1\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Camp\Mask 2\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Camp\Mask 2\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Candles\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Candles\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Candles\Mask 1\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Candles\Mask 1\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Candles\Mask 2\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Candles\Mask 2\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Cats & Dogs\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Cats & Dogs\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Cats & Dogs\Mask 1\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Cats & Dogs\Mask 1\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Christmas Berries\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Christmas Berries\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Christmas Berries\Mask 1\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Christmas Berries\Mask 1\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Christmas Berries\Mask 2\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Christmas Berries\Mask 2\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Fan Club\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Fan Club\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Fan Club\Mask 1\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Fan Club\Mask 1\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Fan Club\Mask 2\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Fan Club\Mask 2\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Fish Bones\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Fish Bones\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Fish Bones\Mask 1\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Fish Bones\Mask 1\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Fish Bones\Mask 2\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Fish Bones\Mask 2\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Fishing Pole\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Fishing Pole\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Fishing Pole\Mask 1\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Fishing Pole\Mask 1\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Freedom\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Freedom\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Freedom\Mask 1\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Freedom\Mask 1\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Fun Boxes\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Fun Boxes\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Fun Boxes\Mask 1\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Fun Boxes\Mask 1\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Fun Boxes\Mask 2\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Fun Boxes\Mask 2\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Funkie Fun\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Funkie Fun\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Funkie Fun\Mask 1\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Funkie Fun\Mask 1\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Game Night\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Game Night\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Game Night\Mask 1\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Game Night\Mask 1\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Gifts\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Gifts\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Gifts\Mask 1\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Gifts\Mask 1\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Gifts\Mask 2\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Gifts\Mask 2\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Glyphs Alpha\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Glyphs Alpha\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Glyphs Alpha\Mask 1\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Glyphs Alpha\Mask 1\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Glyphs Alpha\Mask 2\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Glyphs Alpha\Mask 2\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Happy Camper\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Happy Camper\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Happy Camper\Mask 1\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Happy Camper\Mask 1\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Hunting\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Hunting\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Hunting\Mask 1\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Hunting\Mask 1\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Hunting\Mask 2\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Hunting\Mask 2\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\June Bugs\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\June Bugs\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\June Bugs\Mask 1\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\June Bugs\Mask 1\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\June Bugs\Mask 2\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\June Bugs\Mask 2\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Long & Lanky\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Long & Lanky\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Long & Lanky\Mask 1\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Long & Lanky\Mask 1\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Long & Lanky\Mask 2\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Long & Lanky\Mask 2\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Off Road\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Off Road\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Off Road\Mask 1\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Off Road\Mask 1\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Off Road\Mask 2\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Off Road\Mask 2\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Ouch\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Ouch\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Ouch\Mask 1\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Ouch\Mask 1\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Ouch\Mask 2\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Ouch\Mask 2\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Peeking Posies\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Peeking Posies\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Peeking Posies\Mask 1\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Peeking Posies\Mask 1\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Peeking Posies\Mask 2\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Peeking Posies\Mask 2\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Picket Fence\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Picket Fence\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Picket Fence\Mask 1\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Picket Fence\Mask 1\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Pillow\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Pillow\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Pillow\Mask 1\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Pillow\Mask 1\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Pillow\Mask 2\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Pillow\Mask 2\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Play Ball\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Play Ball\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Play Ball\Mask 1\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Play Ball\Mask 1\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Play Ball\Mask 2\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Play Ball\Mask 2\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Ransom\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Ransom\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Ransom\Mask 1\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Ransom\Mask 1\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Shear Madness\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Shear Madness\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Shear Madness\Mask 1\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Shear Madness\Mask 1\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Shear Madness\Mask 2\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Shear Madness\Mask 2\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Sink Or Swim\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Sink Or Swim\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Sink Or Swim\Mask 1\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Sink Or Swim\Mask 1\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Sink Or Swim\Mask 2\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Sink Or Swim\Mask 2\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Slime\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Slime\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Slime\Mask 1\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Slime\Mask 1\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Smooth Rock\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Smooth Rock\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Smooth Rock\Mask 1\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Smooth Rock\Mask 1\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Sp Baseball\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Sp Baseball\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Sp Baseball\Mask 1\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Sp Baseball\Mask 1\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Sp Basketball\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Sp Basketball\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Sp Basketball\mask 1\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Sp Basketball\mask 1\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Sp Bowling\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Sp Bowling\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Sp Bowling\Mask 1\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Sp Bowling\Mask 1\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Sp Football\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Sp Football\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Sp Football\Mask 1\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Sp Football\Mask 1\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Sp Golf\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Sp Golf\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Sp Golf\Mask 1\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Sp Golf\Mask 1\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Sp Hockey\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Sp Hockey\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Sp Hockey\Mask 1\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Sp Hockey\Mask 1\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Sp Plain\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Sp Plain\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Sp Plain\Mask 1\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Sp Plain\Mask 1\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Sp Soccer\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Sp Soccer\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Sp Soccer\Mask 1\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Sp Soccer\Mask 1\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Sp Tennis\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Sp Tennis\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Sp Tennis\Mask 1\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Sp Tennis\Mask 1\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Sp Volleyball\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Sp Volleyball\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Sp Volleyball\Mask 1\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Sp Volleyball\Mask 1\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Spirit\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Spirit\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Spirit\Mask 1\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Spirit\Mask 1\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Spirit\Mask 2\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Spirit\Mask 2\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Stalk\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Stalk\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Stalk\Mask 1\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Stalk\Mask 1\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Stalk\Mask 2\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Stalk\Mask 2\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Sweet Bows\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Sweet Bows\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Sweet Bows\Mask 1\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Sweet Bows\Mask 1\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Sweet Bows\Mask 2\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Sweet Bows\Mask 2\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Tags\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Tags\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Tags\Mask 1\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Tags\Mask 1\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Take a Hike\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Take a Hike\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Take a Hike\Mask 1\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Take a Hike\Mask 1\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Take a Hike\Mask 2\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Take a Hike\Mask 2\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Timeless\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Timeless\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Timeless\Mask 1\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Timeless\Mask 1\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Wrangler\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Wrangler\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Wrangler\Mask 1\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Wrangler\Mask 1\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Wreaths\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Wreaths\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Wreaths\Mask 1\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Wreaths\Mask 1\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Wreaths\Mask 2\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Color\Wreaths\Mask 2\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Bamboo\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Bamboo\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Bamboo Stalk\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Bamboo Stalk\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Barbed Wire\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Images\Samples\Barbed Wire\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
-
Dear kevinf80,
Thank you again!
I was able to run ESET and it found threats. I have pasted the log file that it generated below.
Regards,
CE
**
C:\AdwCleaner\Quarantine\C\ProgramData\AVG Secure Search\DECRYPT_INSTRUCTION.HTML.vir Win32/Filecoder.CR trojan
C:\AdwCleaner\Quarantine\C\ProgramData\AVG Secure Search\DECRYPT_INSTRUCTION.TXT.vir Win32/Filecoder.CR trojan
C:\AdwCleaner\Quarantine\C\ProgramData\AVG Secure Search\FireFoxExt\DECRYPT_INSTRUCTION.HTML.vir Win32/Filecoder.CR trojan
C:\AdwCleaner\Quarantine\C\ProgramData\AVG Secure Search\FireFoxExt\DECRYPT_INSTRUCTION.TXT.vir Win32/Filecoder.CR trojan
C:\AdwCleaner\Quarantine\C\ProgramData\AVG Secure Search\FireFoxExt\18.1.0.443\DECRYPT_INSTRUCTION.HTML.vir Win32/Filecoder.CR trojan
C:\AdwCleaner\Quarantine\C\ProgramData\AVG Secure Search\FireFoxExt\18.1.0.443\DECRYPT_INSTRUCTION.TXT.vir Win32/Filecoder.CR trojan
C:\AdwCleaner\Quarantine\C\ProgramData\AVG Secure Search\FireFoxExt\18.1.0.443\locale\DECRYPT_INSTRUCTION.HTML.vir Win32/Filecoder.CR trojan
C:\AdwCleaner\Quarantine\C\ProgramData\AVG Secure Search\FireFoxExt\18.1.0.443\locale\DECRYPT_INSTRUCTION.TXT.vir Win32/Filecoder.CR trojan
C:\AdwCleaner\Quarantine\C\ProgramData\AVG Secure Search\FireFoxExt\18.1.0.443\locale\en-US\DECRYPT_INSTRUCTION.HTML.vir Win32/Filecoder.CR trojan
C:\AdwCleaner\Quarantine\C\ProgramData\AVG Secure Search\FireFoxExt\18.1.0.443\locale\en-US\DECRYPT_INSTRUCTION.TXT.vir Win32/Filecoder.CR trojan
C:\AdwCleaner\Quarantine\C\ProgramData\AVG Secure Search\FireFoxExt\18.1.0.443\modules\DECRYPT_INSTRUCTION.HTML.vir Win32/Filecoder.CR trojan
C:\AdwCleaner\Quarantine\C\ProgramData\AVG Secure Search\FireFoxExt\18.1.0.443\modules\DECRYPT_INSTRUCTION.TXT.vir Win32/Filecoder.CR trojan
C:\AdwCleaner\Quarantine\C\ProgramData\AVG Secure Search\FireFoxExt\18.1.0.443\modules\locale\DECRYPT_INSTRUCTION.HTML.vir Win32/Filecoder.CR trojan
C:\AdwCleaner\Quarantine\C\ProgramData\AVG Secure Search\FireFoxExt\18.1.0.443\modules\locale\DECRYPT_INSTRUCTION.TXT.vir Win32/Filecoder.CR trojan
C:\AdwCleaner\Quarantine\C\ProgramData\AVG Secure Search\FireFoxExt\18.1.0.443\modules\locale\af\DECRYPT_INSTRUCTION.HTML.vir Win32/Filecoder.CR trojan
C:\AdwCleaner\Quarantine\C\ProgramData\AVG Secure Search\FireFoxExt\18.1.0.443\modules\locale\af\DECRYPT_INSTRUCTION.TXT.vir Win32/Filecoder.CR trojan
C:\AdwCleaner\Quarantine\C\ProgramData\AVG Secure Search\FireFoxExt\18.1.0.443\modules\locale\cs\DECRYPT_INSTRUCTION.HTML.vir Win32/Filecoder.CR trojan
C:\AdwCleaner\Quarantine\C\ProgramData\AVG Secure Search\FireFoxExt\18.1.0.443\modules\locale\cs\DECRYPT_INSTRUCTION.TXT.vir Win32/Filecoder.CR trojan
C:\AdwCleaner\Quarantine\C\ProgramData\AVG Secure Search\FireFoxExt\18.1.0.443\modules\locale\da\DECRYPT_INSTRUCTION.HTML.vir Win32/Filecoder.CR trojan
C:\AdwCleaner\Quarantine\C\ProgramData\AVG Secure Search\FireFoxExt\18.1.0.443\modules\locale\da\DECRYPT_INSTRUCTION.TXT.vir Win32/Filecoder.CR trojan
C:\AdwCleaner\Quarantine\C\ProgramData\AVG Secure Search\FireFoxExt\18.1.0.443\modules\locale\de\DECRYPT_INSTRUCTION.HTML.vir Win32/Filecoder.CR trojan
C:\AdwCleaner\Quarantine\C\ProgramData\AVG Secure Search\FireFoxExt\18.1.0.443\modules\locale\de\DECRYPT_INSTRUCTION.TXT.vir Win32/Filecoder.CR trojan
C:\AdwCleaner\Quarantine\C\ProgramData\AVG Secure Search\FireFoxExt\18.1.0.443\modules\locale\el\DECRYPT_INSTRUCTION.HTML.vir Win32/Filecoder.CR trojan
C:\AdwCleaner\Quarantine\C\ProgramData\AVG Secure Search\FireFoxExt\18.1.0.443\modules\locale\el\DECRYPT_INSTRUCTION.TXT.vir Win32/Filecoder.CR trojan
C:\AdwCleaner\Quarantine\C\ProgramData\AVG Secure Search\FireFoxExt\18.1.0.443\modules\locale\en\DECRYPT_INSTRUCTION.HTML.vir Win32/Filecoder.CR trojan
C:\AdwCleaner\Quarantine\C\ProgramData\AVG Secure Search\FireFoxExt\18.1.0.443\modules\locale\en\DECRYPT_INSTRUCTION.TXT.vir Win32/Filecoder.CR trojan
C:\AdwCleaner\Quarantine\C\ProgramData\AVG Secure Search\FireFoxExt\18.1.0.443\modules\locale\es\DECRYPT_INSTRUCTION.HTML.vir Win32/Filecoder.CR trojan
C:\AdwCleaner\Quarantine\C\ProgramData\AVG Secure Search\FireFoxExt\18.1.0.443\modules\locale\es\DECRYPT_INSTRUCTION.TXT.vir Win32/Filecoder.CR trojan
C:\AdwCleaner\Quarantine\C\ProgramData\AVG Secure Search\FireFoxExt\18.1.0.443\modules\locale\es-es\DECRYPT_INSTRUCTION.HTML.vir Win32/Filecoder.CR trojan
C:\AdwCleaner\Quarantine\C\ProgramData\AVG Secure Search\FireFoxExt\18.1.0.443\modules\locale\es-es\DECRYPT_INSTRUCTION.TXT.vir Win32/Filecoder.CR trojan
C:\AdwCleaner\Quarantine\C\ProgramData\AVG Secure Search\FireFoxExt\18.1.0.443\modules\locale\fi\DECRYPT_INSTRUCTION.HTML.vir Win32/Filecoder.CR trojan
C:\AdwCleaner\Quarantine\C\ProgramData\AVG Secure Search\FireFoxExt\18.1.0.443\modules\locale\fi\DECRYPT_INSTRUCTION.TXT.vir Win32/Filecoder.CR trojan
C:\AdwCleaner\Quarantine\C\ProgramData\AVG Secure Search\FireFoxExt\18.1.0.443\modules\locale\fr\DECRYPT_INSTRUCTION.HTML.vir Win32/Filecoder.CR trojan
C:\AdwCleaner\Quarantine\C\ProgramData\AVG Secure Search\FireFoxExt\18.1.0.443\modules\locale\fr\DECRYPT_INSTRUCTION.TXT.vir Win32/Filecoder.CR trojan
C:\AdwCleaner\Quarantine\C\ProgramData\AVG Secure Search\FireFoxExt\18.1.0.443\modules\locale\hi\DECRYPT_INSTRUCTION.HTML.vir Win32/Filecoder.CR trojan
C:\AdwCleaner\Quarantine\C\ProgramData\AVG Secure Search\FireFoxExt\18.1.0.443\modules\locale\hi\DECRYPT_INSTRUCTION.TXT.vir Win32/Filecoder.CR trojan
C:\AdwCleaner\Quarantine\C\ProgramData\AVG Secure Search\FireFoxExt\18.1.0.443\modules\locale\hu\DECRYPT_INSTRUCTION.HTML.vir Win32/Filecoder.CR trojan
C:\AdwCleaner\Quarantine\C\ProgramData\AVG Secure Search\FireFoxExt\18.1.0.443\modules\locale\hu\DECRYPT_INSTRUCTION.TXT.vir Win32/Filecoder.CR trojan
C:\AdwCleaner\Quarantine\C\ProgramData\AVG Secure Search\FireFoxExt\18.1.0.443\modules\locale\id\DECRYPT_INSTRUCTION.HTML.vir Win32/Filecoder.CR trojan
C:\AdwCleaner\Quarantine\C\ProgramData\AVG Secure Search\FireFoxExt\18.1.0.443\modules\locale\id\DECRYPT_INSTRUCTION.TXT.vir Win32/Filecoder.CR trojan
C:\AdwCleaner\Quarantine\C\ProgramData\AVG Secure Search\FireFoxExt\18.1.0.443\modules\locale\it\DECRYPT_INSTRUCTION.HTML.vir Win32/Filecoder.CR trojan
C:\AdwCleaner\Quarantine\C\ProgramData\AVG Secure Search\FireFoxExt\18.1.0.443\modules\locale\it\DECRYPT_INSTRUCTION.TXT.vir Win32/Filecoder.CR trojan
C:\AdwCleaner\Quarantine\C\ProgramData\AVG Secure Search\FireFoxExt\18.1.0.443\modules\locale\ja\DECRYPT_INSTRUCTION.HTML.vir Win32/Filecoder.CR trojan
C:\AdwCleaner\Quarantine\C\ProgramData\AVG Secure Search\FireFoxExt\18.1.0.443\modules\locale\ja\DECRYPT_INSTRUCTION.TXT.vir Win32/Filecoder.CR trojan
C:\AdwCleaner\Quarantine\C\ProgramData\AVG Secure Search\FireFoxExt\18.1.0.443\modules\locale\ko\DECRYPT_INSTRUCTION.HTML.vir Win32/Filecoder.CR trojan
C:\AdwCleaner\Quarantine\C\ProgramData\AVG Secure Search\FireFoxExt\18.1.0.443\modules\locale\ko\DECRYPT_INSTRUCTION.TXT.vir Win32/Filecoder.CR trojan
C:\AdwCleaner\Quarantine\C\ProgramData\AVG Secure Search\FireFoxExt\18.1.0.443\modules\locale\ms\DECRYPT_INSTRUCTION.HTML.vir Win32/Filecoder.CR trojan
C:\AdwCleaner\Quarantine\C\ProgramData\AVG Secure Search\FireFoxExt\18.1.0.443\modules\locale\ms\DECRYPT_INSTRUCTION.TXT.vir Win32/Filecoder.CR trojan
C:\AdwCleaner\Quarantine\C\ProgramData\AVG Secure Search\FireFoxExt\18.1.0.443\modules\locale\nb\DECRYPT_INSTRUCTION.HTML.vir Win32/Filecoder.CR trojan
C:\AdwCleaner\Quarantine\C\ProgramData\AVG Secure Search\FireFoxExt\18.1.0.443\modules\locale\nb\DECRYPT_INSTRUCTION.TXT.vir Win32/Filecoder.CR trojan
C:\AdwCleaner\Quarantine\C\ProgramData\AVG Secure Search\FireFoxExt\18.1.0.443\modules\locale\nl\DECRYPT_INSTRUCTION.HTML.vir Win32/Filecoder.CR trojan
C:\AdwCleaner\Quarantine\C\ProgramData\AVG Secure Search\FireFoxExt\18.1.0.443\modules\locale\nl\DECRYPT_INSTRUCTION.TXT.vir Win32/Filecoder.CR trojan
C:\AdwCleaner\Quarantine\C\ProgramData\AVG Secure Search\FireFoxExt\18.1.0.443\modules\locale\pl\DECRYPT_INSTRUCTION.HTML.vir Win32/Filecoder.CR trojan
C:\AdwCleaner\Quarantine\C\ProgramData\AVG Secure Search\FireFoxExt\18.1.0.443\modules\locale\pl\DECRYPT_INSTRUCTION.TXT.vir Win32/Filecoder.CR trojan
C:\AdwCleaner\Quarantine\C\ProgramData\AVG Secure Search\FireFoxExt\18.1.0.443\modules\locale\pt\DECRYPT_INSTRUCTION.HTML.vir Win32/Filecoder.CR trojan
C:\AdwCleaner\Quarantine\C\ProgramData\AVG Secure Search\FireFoxExt\18.1.0.443\modules\locale\pt\DECRYPT_INSTRUCTION.TXT.vir Win32/Filecoder.CR trojan
C:\AdwCleaner\Quarantine\C\ProgramData\AVG Secure Search\FireFoxExt\18.1.0.443\modules\locale\pt-br\DECRYPT_INSTRUCTION.HTML.vir Win32/Filecoder.CR trojan
C:\AdwCleaner\Quarantine\C\ProgramData\AVG Secure Search\FireFoxExt\18.1.0.443\modules\locale\pt-br\DECRYPT_INSTRUCTION.TXT.vir Win32/Filecoder.CR trojan
C:\AdwCleaner\Quarantine\C\ProgramData\AVG Secure Search\FireFoxExt\18.1.0.443\modules\locale\ro\DECRYPT_INSTRUCTION.HTML.vir Win32/Filecoder.CR trojan
C:\AdwCleaner\Quarantine\C\ProgramData\AVG Secure Search\FireFoxExt\18.1.0.443\modules\locale\ro\DECRYPT_INSTRUCTION.TXT.vir Win32/Filecoder.CR trojan
C:\AdwCleaner\Quarantine\C\ProgramData\AVG Secure Search\FireFoxExt\18.1.0.443\modules\locale\ru\DECRYPT_INSTRUCTION.HTML.vir Win32/Filecoder.CR trojan
C:\AdwCleaner\Quarantine\C\ProgramData\AVG Secure Search\FireFoxExt\18.1.0.443\modules\locale\ru\DECRYPT_INSTRUCTION.TXT.vir Win32/Filecoder.CR trojan
C:\AdwCleaner\Quarantine\C\ProgramData\AVG Secure Search\FireFoxExt\18.1.0.443\modules\locale\sk\DECRYPT_INSTRUCTION.HTML.vir Win32/Filecoder.CR trojan
C:\AdwCleaner\Quarantine\C\ProgramData\AVG Secure Search\FireFoxExt\18.1.0.443\modules\locale\sk\DECRYPT_INSTRUCTION.TXT.vir Win32/Filecoder.CR trojan
C:\AdwCleaner\Quarantine\C\ProgramData\AVG Secure Search\FireFoxExt\18.1.0.443\modules\locale\sr\DECRYPT_INSTRUCTION.HTML.vir Win32/Filecoder.CR trojan
C:\AdwCleaner\Quarantine\C\ProgramData\AVG Secure Search\FireFoxExt\18.1.0.443\modules\locale\sr\DECRYPT_INSTRUCTION.TXT.vir Win32/Filecoder.CR trojan
C:\AdwCleaner\Quarantine\C\ProgramData\AVG Secure Search\FireFoxExt\18.1.0.443\modules\locale\sv\DECRYPT_INSTRUCTION.HTML.vir Win32/Filecoder.CR trojan
C:\AdwCleaner\Quarantine\C\ProgramData\AVG Secure Search\FireFoxExt\18.1.0.443\modules\locale\sv\DECRYPT_INSTRUCTION.TXT.vir Win32/Filecoder.CR trojan
C:\AdwCleaner\Quarantine\C\ProgramData\AVG Secure Search\FireFoxExt\18.1.0.443\modules\locale\th\DECRYPT_INSTRUCTION.HTML.vir Win32/Filecoder.CR trojan
C:\AdwCleaner\Quarantine\C\ProgramData\AVG Secure Search\FireFoxExt\18.1.0.443\modules\locale\th\DECRYPT_INSTRUCTION.TXT.vir Win32/Filecoder.CR trojan
C:\AdwCleaner\Quarantine\C\ProgramData\AVG Secure Search\FireFoxExt\18.1.0.443\modules\locale\tr\DECRYPT_INSTRUCTION.HTML.vir Win32/Filecoder.CR trojan
C:\AdwCleaner\Quarantine\C\ProgramData\AVG Secure Search\FireFoxExt\18.1.0.443\modules\locale\tr\DECRYPT_INSTRUCTION.TXT.vir Win32/Filecoder.CR trojan
C:\AdwCleaner\Quarantine\C\ProgramData\AVG Secure Search\FireFoxExt\18.1.0.443\modules\locale\zh-cn\DECRYPT_INSTRUCTION.HTML.vir Win32/Filecoder.CR trojan
C:\AdwCleaner\Quarantine\C\ProgramData\AVG Secure Search\FireFoxExt\18.1.0.443\modules\locale\zh-cn\DECRYPT_INSTRUCTION.TXT.vir Win32/Filecoder.CR trojan
C:\AdwCleaner\Quarantine\C\ProgramData\AVG Secure Search\FireFoxExt\18.1.0.443\modules\locale\zh-tw\DECRYPT_INSTRUCTION.HTML.vir Win32/Filecoder.CR trojan
C:\AdwCleaner\Quarantine\C\ProgramData\AVG Secure Search\FireFoxExt\18.1.0.443\modules\locale\zh-tw\DECRYPT_INSTRUCTION.TXT.vir Win32/Filecoder.CR trojan
C:\AdwCleaner\Quarantine\C\Users\jane_delgavio\AppData\Local\AVG Secure Search\DECRYPT_INSTRUCTION.HTML.vir Win32/Filecoder.CR trojan
C:\AdwCleaner\Quarantine\C\Users\jane_delgavio\AppData\Local\AVG Secure Search\DECRYPT_INSTRUCTION.TXT.vir Win32/Filecoder.CR trojan
C:\AdwCleaner\Quarantine\C\Users\jane_delgavio\AppData\Local\AVG Secure Search\SiteSafety\DECRYPT_INSTRUCTION.HTML.vir Win32/Filecoder.CR trojan
C:\AdwCleaner\Quarantine\C\Users\jane_delgavio\AppData\Local\AVG Secure Search\SiteSafety\DECRYPT_INSTRUCTION.TXT.vir Win32/Filecoder.CR trojan
C:\FRST\Quarantine\C\ProgramData\DECRYPT_INSTRUCTION.HTML.xBAD Win32/Filecoder.CR trojan
C:\FRST\Quarantine\C\ProgramData\DECRYPT_INSTRUCTION.TXT.xBAD Win32/Filecoder.CR trojan
C:\FRST\Quarantine\C\Users\jane_delgavio\DECRYPT_INSTRUCTION.HTML.xBAD Win32/Filecoder.CR trojan
C:\FRST\Quarantine\C\Users\jane_delgavio\DECRYPT_INSTRUCTION.TXT.xBAD Win32/Filecoder.CR trojan
C:\FRST\Quarantine\C\Users\jane_delgavio\AppData\DECRYPT_INSTRUCTION.HTML.xBAD Win32/Filecoder.CR trojan
C:\FRST\Quarantine\C\Users\jane_delgavio\AppData\DECRYPT_INSTRUCTION.TXT.xBAD Win32/Filecoder.CR trojan
C:\FRST\Quarantine\C\Users\jane_delgavio\AppData\Local\DECRYPT_INSTRUCTION.HTML.xBAD Win32/Filecoder.CR trojan
C:\FRST\Quarantine\C\Users\jane_delgavio\AppData\Local\DECRYPT_INSTRUCTION.TXT.xBAD Win32/Filecoder.CR trojan
C:\FRST\Quarantine\C\Users\jane_delgavio\AppData\Roaming\DECRYPT_INSTRUCTION.HTML.xBAD Win32/Filecoder.CR trojan
C:\FRST\Quarantine\C\Users\jane_delgavio\AppData\Roaming\DECRYPT_INSTRUCTION.TXT.xBAD Win32/Filecoder.CR trojan
C:\FRST\Quarantine\C\Users\jane_delgavio\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\DECRYPT_INSTRUCTION.HTML.xBAD Win32/Filecoder.CR trojan
C:\FRST\Quarantine\C\Users\jane_delgavio\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\DECRYPT_INSTRUCTION.TXT.xBAD Win32/Filecoder.CR trojan
C:\FRST\Quarantine\C\Users\jane_delgavio\Desktop\DECRYPT_INSTRUCTION.HTML.xBAD Win32/Filecoder.CR trojan
C:\FRST\Quarantine\C\Users\jane_delgavio\Desktop\DECRYPT_INSTRUCTION.TXT.xBAD Win32/Filecoder.CR trojan
C:\FRST\Quarantine\C\Users\jane_delgavio\Desktop\Documents\DECRYPT_INSTRUCTION.HTML.xBAD Win32/Filecoder.CR trojan
C:\FRST\Quarantine\C\Users\jane_delgavio\Desktop\Documents\DECRYPT_INSTRUCTION.TXT.xBAD Win32/Filecoder.CR trojan
C:\FRST\Quarantine\C\Users\jane_delgavio\Downloads\DECRYPT_INSTRUCTION.HTML.xBAD Win32/Filecoder.CR trojan
C:\FRST\Quarantine\C\Users\jane_delgavio\Downloads\DECRYPT_INSTRUCTION.TXT.xBAD Win32/Filecoder.CR trojan
C:\scan\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
C:\scan\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\AppData\Local\Adobe\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\AppData\Local\Adobe\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\AppData\Local\Adobe\Updater6\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\AppData\Local\Adobe\Updater6\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\AppData\Local\Adobe\Updater6\Data\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\AppData\Local\Adobe\Updater6\Data\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\AppData\Local\Microsoft\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\AppData\Local\Microsoft\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\AppData\Local\Microsoft\Internet Explorer\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\AppData\Local\Microsoft\Internet Explorer\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\AppData\Local\Microsoft\Media Player\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\AppData\Local\Microsoft\Media Player\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\AppData\Local\Microsoft\Media Player\Art Cache\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\AppData\Local\Microsoft\Media Player\Art Cache\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\AppData\Local\Microsoft\Media Player\Art Cache\LocalMLS\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\AppData\Local\Microsoft\Media Player\Art Cache\LocalMLS\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\AppData\Local\Microsoft\OIS\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\AppData\Local\Microsoft\OIS\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\AppData\Local\Microsoft\OIS\thumbnails\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\AppData\Local\Microsoft\OIS\thumbnails\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\AppData\Local\Microsoft\Photo Acquisition\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\AppData\Local\Microsoft\Photo Acquisition\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\AppData\Local\Microsoft\Windows Mail\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\AppData\Local\Microsoft\Windows Mail\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\AppData\Local\Microsoft\Windows Mail\Stationery\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\AppData\Local\Microsoft\Windows Mail\Stationery\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\AppData\Local\Microsoft\Windows Media\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\AppData\Local\Microsoft\Windows Media\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\AppData\Local\Microsoft\Windows Media\12.0\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\AppData\Local\Microsoft\Windows Media\12.0\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\AppData\Local\Microsoft Games\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\AppData\Local\Microsoft Games\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\AppData\Local\Microsoft Games\FreeCell\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\AppData\Local\Microsoft Games\FreeCell\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\AppData\Local\Microsoft Games\Mahjong Titans\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\AppData\Local\Microsoft Games\Mahjong Titans\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\AppData\Local\Microsoft Games\Minesweeper\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\AppData\Local\Microsoft Games\Minesweeper\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\AppData\Local\Microsoft Games\Purble Place\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\AppData\Local\Microsoft Games\Purble Place\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\AppData\Local\Microsoft Games\Solitaire\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\AppData\Local\Microsoft Games\Solitaire\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\AppData\Local\Microsoft Games\Spider Solitaire\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\AppData\Local\Microsoft Games\Spider Solitaire\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\AppData\Roaming\Adobe\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\AppData\Roaming\Adobe\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\AppData\Roaming\Adobe\Flash Player\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\AppData\Roaming\Adobe\Flash Player\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\AppData\Roaming\Adobe\Flash Player\AssetCache\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\AppData\Roaming\Adobe\Flash Player\AssetCache\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\AppData\Roaming\Adobe\Flash Player\AssetCache\JFDZJB77\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\AppData\Roaming\Adobe\Flash Player\AssetCache\JFDZJB77\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\AppData\Roaming\Microsoft\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\AppData\Roaming\Microsoft\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\AppData\Roaming\Microsoft\Excel\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\AppData\Roaming\Microsoft\Excel\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\AppData\Roaming\Microsoft\Excel\WEE%20ATTENDANCE%20RECORD%202012-13302459703576081017\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\AppData\Roaming\Microsoft\Excel\WEE%20ATTENDANCE%20RECORD%202012-13302459703576081017\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\AppData\Roaming\Microsoft\Templates\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\AppData\Roaming\Microsoft\Templates\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\AppData\Roaming\Mozilla\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\AppData\Roaming\Mozilla\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\AppData\Roaming\Mozilla\Firefox\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\AppData\Roaming\Mozilla\Firefox\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\AppData\Roaming\Mozilla\Firefox\Crash Reports\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\AppData\Roaming\Mozilla\Firefox\Crash Reports\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\AppData\Roaming\Mozilla\Firefox\Crash Reports\submitted\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\AppData\Roaming\Mozilla\Firefox\Crash Reports\submitted\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\AppData\Roaming\Mozilla\Firefox\Profiles\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\AppData\Roaming\Mozilla\Firefox\Profiles\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\AppData\Roaming\Mozilla\Firefox\Profiles\wf3nqhm9.default\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\AppData\Roaming\Mozilla\Firefox\Profiles\wf3nqhm9.default\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\AppData\Roaming\Mozilla\Firefox\Profiles\wf3nqhm9.default\extensions\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\AppData\Roaming\Mozilla\Firefox\Profiles\wf3nqhm9.default\extensions\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\AppData\Roaming\Mozilla\Firefox\Profiles\wf3nqhm9.default\ghostery\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\AppData\Roaming\Mozilla\Firefox\Profiles\wf3nqhm9.default\ghostery\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\Desktop\Documents\Downloads\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\Desktop\Documents\Downloads\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\Desktop\Documents\My Documents\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\Desktop\Documents\My Documents\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\Desktop\Documents\Scanned Documents\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\Desktop\Documents\Scanned Documents\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\Desktop\Documents\Summer Daze\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\Desktop\Documents\Summer Daze\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\Desktop\Documents\Temp Jeanne\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\Desktop\Documents\Temp Jeanne\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\Music\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\Music\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\Music\From Internet\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\Music\From Internet\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\Pictures\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\Pictures\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\Pictures\2012-09-24\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\Pictures\2012-09-24\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\Pictures\2012-09-27 blue room\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\Pictures\2012-09-27 blue room\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\Pictures\math lessons_files\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\Pictures\math lessons_files\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\Pictures\Microsoft Clip Organizer\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
C:\Users\jane_delgavio\Pictures\Microsoft Clip Organizer\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
C:\zoek_backup\C_Users_jane_delgavio_AppData_Roaming_Mozilla_Firefox_Profiles_wf3nqhm9.default_extensions_firefox@ghostery.com\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
C:\zoek_backup\C_Users_jane_delgavio_AppData_Roaming_Mozilla_Firefox_Profiles_wf3nqhm9.default_extensions_firefox@ghostery.com\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
C:\zoek_backup\C_Users_jane_delgavio_AppData_Roaming_Mozilla_Firefox_Profiles_wf3nqhm9.default_extensions_firefox@ghostery.com\chrome\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
C:\zoek_backup\C_Users_jane_delgavio_AppData_Roaming_Mozilla_Firefox_Profiles_wf3nqhm9.default_extensions_firefox@ghostery.com\chrome\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
C:\zoek_backup\C_Users_jane_delgavio_AppData_Roaming_Mozilla_Firefox_Profiles_wf3nqhm9.default_extensions_firefox@ghostery.com\chrome\content\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
C:\zoek_backup\C_Users_jane_delgavio_AppData_Roaming_Mozilla_Firefox_Profiles_wf3nqhm9.default_extensions_firefox@ghostery.com\chrome\content\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
C:\zoek_backup\C_Users_jane_delgavio_AppData_Roaming_Mozilla_Firefox_Profiles_wf3nqhm9.default_extensions_firefox@ghostery.com\chrome\locale\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
C:\zoek_backup\C_Users_jane_delgavio_AppData_Roaming_Mozilla_Firefox_Profiles_wf3nqhm9.default_extensions_firefox@ghostery.com\chrome\locale\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
C:\zoek_backup\C_Users_jane_delgavio_AppData_Roaming_Mozilla_Firefox_Profiles_wf3nqhm9.default_extensions_firefox@ghostery.com\chrome\locale\de-DE\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
C:\zoek_backup\C_Users_jane_delgavio_AppData_Roaming_Mozilla_Firefox_Profiles_wf3nqhm9.default_extensions_firefox@ghostery.com\chrome\locale\de-DE\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
C:\zoek_backup\C_Users_jane_delgavio_AppData_Roaming_Mozilla_Firefox_Profiles_wf3nqhm9.default_extensions_firefox@ghostery.com\chrome\locale\en-US\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
C:\zoek_backup\C_Users_jane_delgavio_AppData_Roaming_Mozilla_Firefox_Profiles_wf3nqhm9.default_extensions_firefox@ghostery.com\chrome\locale\en-US\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
C:\zoek_backup\C_Users_jane_delgavio_AppData_Roaming_Mozilla_Firefox_Profiles_wf3nqhm9.default_extensions_firefox@ghostery.com\chrome\locale\es-ES\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
C:\zoek_backup\C_Users_jane_delgavio_AppData_Roaming_Mozilla_Firefox_Profiles_wf3nqhm9.default_extensions_firefox@ghostery.com\chrome\locale\es-ES\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
C:\zoek_backup\C_Users_jane_delgavio_AppData_Roaming_Mozilla_Firefox_Profiles_wf3nqhm9.default_extensions_firefox@ghostery.com\chrome\locale\fr-FR\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
C:\zoek_backup\C_Users_jane_delgavio_AppData_Roaming_Mozilla_Firefox_Profiles_wf3nqhm9.default_extensions_firefox@ghostery.com\chrome\locale\fr-FR\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
C:\zoek_backup\C_Users_jane_delgavio_AppData_Roaming_Mozilla_Firefox_Profiles_wf3nqhm9.default_extensions_firefox@ghostery.com\chrome\locale\ja-JP\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
C:\zoek_backup\C_Users_jane_delgavio_AppData_Roaming_Mozilla_Firefox_Profiles_wf3nqhm9.default_extensions_firefox@ghostery.com\chrome\locale\ja-JP\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
C:\zoek_backup\C_Users_jane_delgavio_AppData_Roaming_Mozilla_Firefox_Profiles_wf3nqhm9.default_extensions_firefox@ghostery.com\chrome\locale\ru-RU\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
C:\zoek_backup\C_Users_jane_delgavio_AppData_Roaming_Mozilla_Firefox_Profiles_wf3nqhm9.default_extensions_firefox@ghostery.com\chrome\locale\ru-RU\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
C:\zoek_backup\C_Users_jane_delgavio_AppData_Roaming_Mozilla_Firefox_Profiles_wf3nqhm9.default_extensions_firefox@ghostery.com\resource\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
C:\zoek_backup\C_Users_jane_delgavio_AppData_Roaming_Mozilla_Firefox_Profiles_wf3nqhm9.default_extensions_firefox@ghostery.com\resource\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
C:\zoek_backup\C_Users_jane_delgavio_AppData_Roaming_Mozilla_Firefox_Profiles_wf3nqhm9.default_extensions_firefox@ghostery.com\resource\font\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
C:\zoek_backup\C_Users_jane_delgavio_AppData_Roaming_Mozilla_Firefox_Profiles_wf3nqhm9.default_extensions_firefox@ghostery.com\resource\font\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
C:\zoek_backup\C_Users_JANE_D~1_AppData_Roaming_Mozilla_Firefox_Profiles_wf3nqhm9.default_extensions_firefox@ghostery.com\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
C:\zoek_backup\C_Users_JANE_D~1_AppData_Roaming_Mozilla_Firefox_Profiles_wf3nqhm9.default_extensions_firefox@ghostery.com\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
C:\zoek_backup\C_Users_JANE_D~1_AppData_Roaming_Mozilla_Firefox_Profiles_wf3nqhm9.default_extensions_firefox@ghostery.com\chrome\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
C:\zoek_backup\C_Users_JANE_D~1_AppData_Roaming_Mozilla_Firefox_Profiles_wf3nqhm9.default_extensions_firefox@ghostery.com\chrome\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
C:\zoek_backup\C_Users_JANE_D~1_AppData_Roaming_Mozilla_Firefox_Profiles_wf3nqhm9.default_extensions_firefox@ghostery.com\chrome\content\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
C:\zoek_backup\C_Users_JANE_D~1_AppData_Roaming_Mozilla_Firefox_Profiles_wf3nqhm9.default_extensions_firefox@ghostery.com\chrome\content\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
C:\zoek_backup\C_Users_JANE_D~1_AppData_Roaming_Mozilla_Firefox_Profiles_wf3nqhm9.default_extensions_firefox@ghostery.com\chrome\locale\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
C:\zoek_backup\C_Users_JANE_D~1_AppData_Roaming_Mozilla_Firefox_Profiles_wf3nqhm9.default_extensions_firefox@ghostery.com\chrome\locale\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
C:\zoek_backup\C_Users_JANE_D~1_AppData_Roaming_Mozilla_Firefox_Profiles_wf3nqhm9.default_extensions_firefox@ghostery.com\chrome\locale\de-DE\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
C:\zoek_backup\C_Users_JANE_D~1_AppData_Roaming_Mozilla_Firefox_Profiles_wf3nqhm9.default_extensions_firefox@ghostery.com\chrome\locale\de-DE\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
C:\zoek_backup\C_Users_JANE_D~1_AppData_Roaming_Mozilla_Firefox_Profiles_wf3nqhm9.default_extensions_firefox@ghostery.com\chrome\locale\en-US\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
C:\zoek_backup\C_Users_JANE_D~1_AppData_Roaming_Mozilla_Firefox_Profiles_wf3nqhm9.default_extensions_firefox@ghostery.com\chrome\locale\en-US\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
C:\zoek_backup\C_Users_JANE_D~1_AppData_Roaming_Mozilla_Firefox_Profiles_wf3nqhm9.default_extensions_firefox@ghostery.com\chrome\locale\es-ES\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
C:\zoek_backup\C_Users_JANE_D~1_AppData_Roaming_Mozilla_Firefox_Profiles_wf3nqhm9.default_extensions_firefox@ghostery.com\chrome\locale\es-ES\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
C:\zoek_backup\C_Users_JANE_D~1_AppData_Roaming_Mozilla_Firefox_Profiles_wf3nqhm9.default_extensions_firefox@ghostery.com\chrome\locale\fr-FR\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
C:\zoek_backup\C_Users_JANE_D~1_AppData_Roaming_Mozilla_Firefox_Profiles_wf3nqhm9.default_extensions_firefox@ghostery.com\chrome\locale\fr-FR\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
C:\zoek_backup\C_Users_JANE_D~1_AppData_Roaming_Mozilla_Firefox_Profiles_wf3nqhm9.default_extensions_firefox@ghostery.com\chrome\locale\ja-JP\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
C:\zoek_backup\C_Users_JANE_D~1_AppData_Roaming_Mozilla_Firefox_Profiles_wf3nqhm9.default_extensions_firefox@ghostery.com\chrome\locale\ja-JP\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
C:\zoek_backup\C_Users_JANE_D~1_AppData_Roaming_Mozilla_Firefox_Profiles_wf3nqhm9.default_extensions_firefox@ghostery.com\chrome\locale\ru-RU\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
C:\zoek_backup\C_Users_JANE_D~1_AppData_Roaming_Mozilla_Firefox_Profiles_wf3nqhm9.default_extensions_firefox@ghostery.com\chrome\locale\ru-RU\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
C:\zoek_backup\C_Users_JANE_D~1_AppData_Roaming_Mozilla_Firefox_Profiles_wf3nqhm9.default_extensions_firefox@ghostery.com\resource\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
C:\zoek_backup\C_Users_JANE_D~1_AppData_Roaming_Mozilla_Firefox_Profiles_wf3nqhm9.default_extensions_firefox@ghostery.com\resource\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
C:\zoek_backup\C_Users_JANE_D~1_AppData_Roaming_Mozilla_Firefox_Profiles_wf3nqhm9.default_extensions_firefox@ghostery.com\resource\font\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
C:\zoek_backup\C_Users_JANE_D~1_AppData_Roaming_Mozilla_Firefox_Profiles_wf3nqhm9.default_extensions_firefox@ghostery.com\resource\font\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
D:\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
D:\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
E:\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
E:\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Documents\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Documents\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Documents\Downloads\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Documents\Downloads\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Documents\My Documents\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Documents\My Documents\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Documents\Scanned Documents\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Documents\Scanned Documents\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Music\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Music\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Music\From Internet\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Music\From Internet\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Pictures\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Pictures\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Pictures\Pictures\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Pictures\Pictures\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Pictures\Pictures\Microsoft Clip Organizer\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Pictures\Pictures\Microsoft Clip Organizer\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\General\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\General\DECRYPT_INSTRUCTION.HTML Win32/Filecoder.CR trojan
G:\Hurricane Backup 2011\Local Disc\Local Disk\CKBrowser\Fills\General\Aqua\DECRYPT_INSTRUCTION.TXT Win32/Filecoder.CR trojan
-
Dear kevinf80,
I'll keep trying, but so far the eset online scanner has not been running: after I accept the add on, the popup window seems to have trouble loading anything after that. After I I ran systemlook, and the log is pasted below.
Thank you again for your help! I'll make another reply after seeing if I can get the eset scanner to work again.
Regards,
CE
****
SystemLook 30.07.11 by jpshortstuff
Log created at 06:36 on 24/06/2014 by Administrator
Administrator - Elevation successful
========== regfind ==========
Searching for "cryptowall"
No data found.
Searching for "*cryptowall*"
No data found.
-= EOF =-
Cryptowall, dns problem
in Resolved Malware Removal Logs
Posted
Dear Kevin,
I eventually took this issue to MS support. They determined after extensive testing that these updates do not apply to this computer and removed them from the update cue. All other updates install fine and windows update now responds with "windows is up to date"
Are there next steps you had in mind?
Do you have suggestions about file recovery programs? I have photorec ready to go. I tried ShadowExplorer, which does not pull up anything.
Thank you !
CE