Jump to content

PUM.Disabled.SecurityCenter, Trojan.Malpack.Gen Recurring problem


Recommended Posts

Hello there, sorry if this is answered elsewhere repeatedly I did try to find a thread that fixed it but most of them only referred to False Positives which I don't believe is what I have. The issue began a few days ago, my computer will run semi fine when turned on, although over time the CPU usage will ramp up until it becomes unbearably slow and applications start crashing. Upon doing a MalwareBytes scan, I will find between 20 and 2000 infected items depending on length of time the computer has been on. However after "removing" with MalwareBytes when I turn back on I find my Firewall disabled and if I scan immediately I already find the same Registry issues as well as some of the Trojan.Malpack.Gen. 

 

This is what a typical log looks like

 

 

Malwarebytes Anti-Malware 1.75.0.1300
www.malwarebytes.org
 
Database version: v2013.07.09.08
 
Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 9.0.8112.16421
Grant :: ALEIYA [administrator]
 
09/07/2013 22:06:50
mbam-log-2013-07-09 (22-06-50).txt
 
Scan type: Quick scan
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 233316
Time elapsed: 4 minute(s), 27 second(s)
 
Memory Processes Detected: 0
(No malicious items detected)
 
Memory Modules Detected: 0
(No malicious items detected)
 
Registry Keys Detected: 0
(No malicious items detected)
 
Registry Values Detected: 0
(No malicious items detected)
 
Registry Data Items Detected: 3
HKLM\SOFTWARE\Microsoft\Security Center|AntiVirusDisableNotify (PUM.Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and repaired successfully.
HKLM\SOFTWARE\Microsoft\Security Center|FirewallDisableNotify (PUM.Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and repaired successfully.
HKLM\SOFTWARE\Microsoft\Security Center|UpdatesDisableNotify (PUM.Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and repaired successfully.
 
Folders Detected: 0
(No malicious items detected)
 
Files Detected: 25
C:\Users\Grant\AppData\Local\Temp\fvidin.exe (Trojan.Downloader) -> Quarantined and deleted successfully.
C:\Users\Grant\AppData\Local\Temp\vlysqf.exe (Trojan.Downloader) -> Quarantined and deleted successfully.
C:\Users\Grant\AppData\Local\Temp\winefhvsi.exe (Trojan.Downloader) -> Quarantined and deleted successfully.
C:\Users\Grant\AppData\Local\Temp\winffkfh.exe (Trojan.Downloader) -> Quarantined and deleted successfully.
C:\Users\Grant\AppData\Local\Temp\winmate.exe (Spyware.Password) -> Quarantined and deleted successfully.
C:\dddx.exe (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\dkocsm.exe (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\eixxuc.pif (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\exfsfv.exe (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\fhcim.pif (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\gnxqf.pif (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\icjvav.exe (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\ixhjg.exe (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\jbqre.exe (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\mecka.pif (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\pjcb.pif (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\qssdtd.exe (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\rmgjj.exe (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\sxon.exe (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\uvto.pif (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\vcuyn.exe (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\vyqneq.exe (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\wfpty.pif (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\xuna.exe (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\yssxwg.pif (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
 
(end)
 
 
 
 
 
and then if I scan almost immediately after
 
 
 
 
Malwarebytes Anti-Malware 1.75.0.1300
www.malwarebytes.org
 
Database version: v2013.07.09.08
 
Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 9.0.8112.16421
Grant :: ALEIYA [administrator]
 
09/07/2013 22:38:26
mbam-log-2013-07-09 (22-38-26).txt
 
Scan type: Quick scan
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 234512
Time elapsed: 3 minute(s), 56 second(s)
 
Memory Processes Detected: 0
(No malicious items detected)
 
Memory Modules Detected: 0
(No malicious items detected)
 
Registry Keys Detected: 0
(No malicious items detected)
 
Registry Values Detected: 0
(No malicious items detected)
 
Registry Data Items Detected: 3
HKLM\SOFTWARE\Microsoft\Security Center|AntiVirusDisableNotify (PUM.Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and repaired successfully.
HKLM\SOFTWARE\Microsoft\Security Center|FirewallDisableNotify (PUM.Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and repaired successfully.
HKLM\SOFTWARE\Microsoft\Security Center|UpdatesDisableNotify (PUM.Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and repaired successfully.
 
Folders Detected: 0
(No malicious items detected)
 
Files Detected: 70
C:\akcmn.exe (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\atus.exe (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\avnm.exe (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\bfvp.exe (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\bifaro.pif (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\bnbgp.exe (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\cisck.exe (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\croq.pif (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\cuqr.exe (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\cyon.exe (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\dflvo.exe (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\dkyrps.exe (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\drfqd.exe (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\edvrrs.exe (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\elekdy.pif (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\exbe.exe (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\ffbqw.exe (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\fgllju.pif (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\fjdvbg.pif (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\frst.pif (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\gljg.pif (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\gymucu.exe (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\hdvt.exe (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\hkkt.pif (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\hoswuo.exe (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\klnljj.exe (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\ktow.pif (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\kudkk.exe (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\kybfvo.pif (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\lfshjb.exe (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\lkkr.pif (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\ltpuiw.exe (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\lvipie.pif (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\mbjsor.exe (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\mhrafh.exe (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\mmimlf.pif (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\mrpijs.pif (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\mrrhx.exe (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\mwaj.exe (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\neyhli.exe (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\ofwr.exe (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\ogagyw.pif (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\omna.exe (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\pkidgu.pif (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\pvhr.exe (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\qmwm.exe (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\qpqlf.exe (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\qqov.pif (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\rfjpl.exe (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\saiq.pif (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\slhd.pif (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\sulhw.exe (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\sxtkck.pif (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\tfbi.pif (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\tmhcuh.exe (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\togow.exe (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\tpmwt.exe (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\tsys.pif (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\tysivv.exe (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\ummfw.exe (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\urcjs.pif (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\vxysr.exe (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\wnni.pif (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\xcfi.exe (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\xurcfb.pif (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\xwyvu.exe (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\xxqphk.exe (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\yfskd.exe (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\ykjyg.exe (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\yvdqkf.pif (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
 
(end)
 

Unfortunately I will now be away for a little while but would be very grateful for any advice received.

 

Thank you very much.

Link to post
Share on other sites

download Farbar Recovery Scan Tool and save it to your desktop.

 

Note: You need to run the version compatible with your system (32 bit or 64 bit). If you are not sure which version applies to your system download both of them and try to run them. Only one of them will run on your system, that will be the right version.

  • Double-click to run it. When the tool opens click Yes to disclaimer.
  • Press Scan button.
  • It will make a log (FRST.txt) in the same directory the tool is run. Please copy and paste it to your reply.
  • The first time the tool is run, it makes also another log (Addition.txt). Please attach it to your reply.

Link to post
Share on other sites

Hello, sorry for the delayed response, thank you very much for your assistance. Is it worth mentioning that the first time I ran the tool after a minute or so the whole system froze and I had to manually reboot? However after that it ran fine. Although I am now encountering Windows C Runtime errors randomly.

 

FRST.txt

 

 

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 09-07-2013 01
Ran by Grant (administrator) on 10-07-2013 12:43:26
Running from C:\Users\Grant\Desktop
Windows 7 Home Premium Service Pack 1 (X64) OS Language: English(US)
Internet Explorer Version 9
Boot Mode: Normal
 
==================== Processes (Whitelisted) =================
 
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Lenovo (Beijing) Limited) C:\Program Files\Lenovo\Instant Reset\DamageGuardSvc.exe
(LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
(Intel® Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
() C:\Program Files (x86)\Intel\Intel® Management Engine Components\FWService\IntelMeFWService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\jhi_service.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
(Skype Technologies S.A.) C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
(Skype Technologies) C:\Program Files (x86)\Skype\Updater\Updater.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Atheros) C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
(Wistron Corp.) C:\Program Files\Launch Manager\WisLMSvc.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Alcor Micro Corp.) C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe
(Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Lenovo (Beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe
(Lenovo(beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Management\utility.exe
(Mister Group) C:\Program Files (x86)\System Explorer\SystemExplorer.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(Mister Group) C:\Program Files (x86)\System Explorer\service\SystemExplorerService64.exe
(Synaptics Incorporated) C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE
() C:\Program Files (x86)\puush\puush.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe
(Dolby Laboratories Inc.) C:\Program Files (x86)\Dolby Advanced Audio v2\pcee4.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
(CyberLink) C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe
(Lenovo) C:\Program Files (x86)\Lenovo\VeriFace\PManage.exe
(Wistron Corp.) C:\Program Files\Launch Manager\HotkeyApp.exe
(Sun Microsystems, Inc.) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe
(LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbam.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbam.exe
 
==================== Registry (Whitelisted) ==================
 
HKLM\...\Run: [igfxTray] - C:\Windows\system32\igfxtray.exe [170264 2012-03-30] (Intel Corporation)
HKLM\...\Run: [HotKeysCmds] - C:\Windows\system32\hkcmd.exe [398616 2012-03-30] (Intel Corporation)
HKLM\...\Run: [Persistence] - C:\Windows\system32\igfxpers.exe [439064 2012-03-30] (Intel Corporation)
HKLM\...\Run: [AmIcoSinglun64] - C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe [368728 2012-04-27] (Alcor Micro Corp.)
HKLM\...\Run: [RtHDVCpl] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s [12445288 2012-01-10] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_Dolby] - C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe /FORPCEE4  [1156712 2011-11-15] (Realtek Semiconductor)
HKLM\...\Run: [AtherosBtStack] - "C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe" [984224 2011-10-28] (Atheros Commnucations)
HKLM\...\Run: [AthBtTray] - "C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe" [800416 2011-10-28] (Atheros Commnucations)
HKLM\...\Run: [synTPEnh] - %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe [2899216 2012-04-17] (Synaptics Incorporated)
HKLM\...\Run: [synLenovoGestureMgr] - %ProgramFiles%\Synaptics\SynTP\SynLenovoGestureMgr.exe [1529104 2012-04-17] (Synaptics)
HKLM\...\Run: [Energy Management] - C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [8079408 2012-07-06] (Lenovo (Beijing) Limited)
HKLM\...\Run: [EnergyUtility] - C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe [6202416 2012-07-06] (Lenovo(beijing) Limited)
HKLM\...\Run: [Lenovo EE Boot Optimizer] - C:\Program Files (x86)\Lenovo\Boot Optimizer\PopWnd.exe [1324384 2012-07-06] (Lenovo)
HKCU\...\Run: [RockMelt Update] - "C:\Users\Grant\AppData\Local\RockMelt\Update\RockMeltUpdate.exe" /c [210064 2012-09-06] (RockMelt Inc.)
HKCU\...\Run: [systemExplorerAutoStart] - "C:\Program Files (x86)\System Explorer\SystemExplorer.exe" /TRAY [2754008 2012-11-11] (Mister Group)
HKCU\...\Run: [skype] - "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun [19603048 2013-06-03] (Skype Technologies S.A.)
HKCU\...\Run: [puush] - C:\Program Files (x86)\puush\puush.exe [567880 2013-07-04] ()
HKLM-x32\...\Run: [iAStorIcon] - C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe [1402648 2011-11-30] (Intel Corporation)
HKLM-x32\...\Run: [Dolby Advanced Audio v2] - "C:\Program Files (x86)\Dolby Advanced Audio v2\pcee4.exe" -autostart [507744 2011-12-21] (Dolby Laboratories Inc.)
HKLM-x32\...\Run: [uSB3MON] - "C:\Program Files (x86)\Intel\Intel® USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe" [2528024 2012-01-26] (Intel Corporation)
HKLM-x32\...\Run: [snp2uvc] - C:\Windows\vsnp2uvc.exe [x]
HKLM-x32\...\Run: [Adobe ARM] - "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [958576 2013-04-04] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Lenovo Registration] - C:\Program Files (x86)\Lenovo Registration\LenovoReg.exe /boot [18888416 2012-01-26] (Lenovo, Inc.)
HKLM-x32\...\Run: [YouCam Mirage] - "C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe" [136488 2011-01-29] (CyberLink)
HKLM-x32\...\Run: [YouCam Tray] - "C:\Program Files (x86)\Lenovo\YouCam\YouCam.exe" /s [1346656 2011-01-29] (CyberLink Corp.)
HKLM-x32\...\Run: [updateP2GShortCut] - "C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\Lenovo\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\5.0" [1340712 2013-07-06] (CyberLink Corp.)
HKLM-x32\...\Run: [VeriFaceManager] - C:\Program Files (x86)\Lenovo\VeriFace\PManage.exe [329056 2012-07-06] (Lenovo)
HKLM-x32\...\Run: [updatePRCShortCut] - "C:\Program Files\Lenovo\OneKey App\OneKey Recovery\MUITransfer\MUIStartMenu.exe" "C:\Program Files\Lenovo\OneKey App\OneKey Recovery" UpdateWithCreateOnce "Software\Lenovo\OneKey App\OneKey Recovery" [1340712 2009-05-14] (CyberLink Corp.)
HKLM-x32\...\Run: [{CDF13D74-E6AA-4006-818A-B360D6A3573C}] - "C:\Program Files\Launch Manager\HotkeyApp.exe" [415272 2012-03-01] (Wistron Corp.)
HKLM-x32\...\Run: [sunJavaUpdateSched] - "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" [322480 2012-07-03] (Sun Microsystems, Inc.)
HKLM-x32\...\Run: [APSDaemon] - "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" [59720 2013-01-28] (Apple Inc.)
HKLM-x32\...\Run: [iTunesHelper] - "C:\Program Files (x86)\iTunes\iTunesHelper.exe" [152392 2013-02-20] (Apple Inc.)
HKLM-x32\...\Run: [LogMeIn Hamachi Ui] - "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start [2324816 2013-06-28] (LogMeIn Inc.)
HKU\Default\...\RunOnce: [mctadmin] - C:\Windows\System32\mctadmin.exe [97280 2009-07-14] (Microsoft Corporation)
HKU\Default\...\RunOnce: [Lenovo.ShowBand] - C:\Program Files\Lenovo\SimpleTap DeskBand\ShowBand.exe /show [156000 2012-05-16] (Lenovo)
HKU\Default User\...\RunOnce: [mctadmin] - C:\Windows\System32\mctadmin.exe [97280 2009-07-14] (Microsoft Corporation)
HKU\Default User\...\RunOnce: [Lenovo.ShowBand] - C:\SWTOOLS\SimpleTap DeskBand\ShowBand.exe /show [x]
HKU\Aleiya\...\Run: [swg] - "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [x]
HKU\Aleiya\...\Run: [msnmsgr] - "C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe" /background [4272640 2012-09-12] (Microsoft Corporation)
AlternateShell: 
 
==================== Internet (Whitelisted) ====================
 
HKCU\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = http://www.lenovo.com
BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Skype add-on for Internet Explorer - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Skype Technologies S.A.)
BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: CIESpeechBHO Class - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll (Atheros Commnucations)
BHO-x32: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Skype Browser Helper - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
BHO-x32: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKCU - No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} -  No File
DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} https://fpdownload.macromedia.com/get/shockwave/cabs/flash/swflash.cab
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Skype Technologies S.A.)
Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.254
 
Chrome: 
=======
CHR DefaultSearchURL: (Google) - {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}ie={inputEncoding}
CHR DefaultSuggestURL: (Google) - {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&q={searchTerms}&{google:cursorPosition}sugkey={google:suggestAPIKeyParameter}
CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\27.0.1453.116\PepperFlash\pepflashplayer.dll ()
CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\27.0.1453.116\ppGoogleNaClPluginChrome.dll ()
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\27.0.1453.116\pdf.dll ()
CHR Plugin: (McAfee SiteAdvisor) - C:\Users\Grant\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho\3.50.146.2_0\McChPlg.dll No File
CHR Plugin: (McAfee SiteAdvisor) - C:\Program Files (x86)\McAfee\SiteAdvisor\npmcffplg32.dll No File
CHR Plugin: (Skype Click to Call) - C:\Users\Grant\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\6.3.0.11079_0\npSkypeChromePlugin.dll No File
CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.)
CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.123\npGoogleUpdate3.dll No File
CHR Plugin: (Intel\u00AE Identity Protection Technology) - C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
CHR Plugin: (Intel\u00AE Identity Protection Technology) - C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
CHR Plugin: (Java Platform SE 7 U7) - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
CHR Plugin: (Java Deployment Toolkit 7.0.70.10) - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
CHR Plugin: (Photo Gallery) - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
CHR Plugin: (QUAKE LIVE) - C:\ProgramData\id Software\QuakeLive\npquakezero.dll (id Software Inc.)
CHR Plugin: (RockMelt Update) - C:\Users\Grant\AppData\Local\RockMelt\Update\1.2.189.1\npRockMeltOneClick8.dll (RockMelt Inc.)
CHR Plugin: (Silverlight Plug-In) - c:\Program Files (x86)\Microsoft Silverlight\4.1.10329.0\npctrl.dll No File
CHR Plugin: (McAfee SecurityCenter) - c:\progra~2\mcafee\msc\npmcsn~1.dll No File
CHR Extension: (Skype Click to Call) - C:\Users\Grant\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\6.9.0.12585_0
 
==================== Services (Whitelisted) =================
 
R2 DamageGuardSvc; C:\Program Files\Lenovo\Instant Reset\DamageGuardSvc.exe [572976 2012-03-26] (Lenovo (Beijing) Limited)
S2 imwdrsnhmmcnnp; c:\windows\SysWOW64\yiemsl.exe [172032 2012-01-02] ( Copyrighted  ©  )
R2 Intel® ME Service; C:\Program Files (x86)\Intel\Intel® Management Engine Components\FWService\IntelMeFWService.exe [128280 2011-12-16] ()
R2 jhi_service; C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\jhi_service.exe [161560 2011-12-16] (Intel Corporation)
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation)
R3 SystemExplorerHelpService; C:\Program Files (x86)\System Explorer\service\SystemExplorerService64.exe [821720 2012-08-21] (Mister Group)
S3 TunngleService; C:\Program Files (x86)\Tunngle\TnglCtrl.exe [743320 2012-09-25] (Tunngle.net GmbH)
R2 WisLMSvc; C:\Program Files\Launch Manager\WisLMSvc.exe [119848 2011-12-21] (Wistron Corp.)
R2 ZAtheros Bt&Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [158880 2011-10-28] (Atheros)
 
==================== Drivers (Whitelisted) ====================
 
R1 DamageGuard; C:\Windows\System32\DRIVERS\DamageGuardX64.sys [217392 2012-02-11] (Lenovo)
R1 dgFltr; C:\Windows\System32\drivers\dgFltrX64.sys [23648 2011-12-13] (Lenovo)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation)
R3 SmbDrvIntel; C:\Windows\System32\DRIVERS\Smb_driver_Intel.sys [27408 2012-04-17] (Synaptics Incorporated)
R3 SNP2UVC; C:\Windows\System32\DRIVERS\snp2uvc.sys [3532160 2011-10-11] (Sonix Technology Co., Ltd.)
R3 tap0901t; C:\Windows\System32\DRIVERS\tap0901t.sys [31232 2009-09-16] (Tunngle.net)
U3 BcmSqlStartupSvc; 
U2 CLKMSVC10_3A60B698; 
U2 CLKMSVC10_C3B3B687; 
U2 DriverService; 
U2 iATAgentService; 
U2 idealife Update Service; 
U3 IGRS; 
U2 IviRegMgr; 
U2 nvUpdatusService; 
U2 Oasis2Service; 
U2 PCCarerService; 
U2 ReadyComm.DirectRouter; 
U2 RichVideo; 
U2 RtLedService; 
U2 SeaPort; 
U2 SoftwareService; 
U3 SQLWriter; 
 
==================== NetSvcs (Whitelisted) ===================
 
 
==================== One Month Created Files and Folders ========
 
2013-07-10 12:44 - 2013-07-10 12:44 - 00103140 __RSH C:\djdja.pif
2013-07-10 12:42 - 2013-07-10 12:42 - 00103140 __RSH C:\wbgi.pif
2013-07-10 12:36 - 2013-07-10 12:36 - 00103140 __RSH C:\tfjq.pif
2013-07-10 12:36 - 2013-07-10 12:36 - 00103140 __RSH C:\ersys.pif
2013-07-10 12:35 - 2013-07-10 12:35 - 00103140 __RSH C:\qqqfo.exe
2013-07-10 12:35 - 2013-07-10 12:35 - 00103140 __RSH C:\benb.exe
2013-07-10 12:35 - 2013-07-10 12:35 - 00000000 ____D C:\FRST
2013-07-10 12:35 - 2013-07-10 12:34 - 01776221 ____A (Farbar) C:\Users\Grant\Desktop\FRST64.exe
2013-07-10 12:34 - 2013-07-10 12:34 - 00103140 __RSH C:\wekunf.pif
2013-07-10 12:34 - 2013-07-10 12:34 - 00103140 __RSH C:\hqtsm.pif
2013-07-10 12:33 - 2013-07-10 12:33 - 00103140 __RSH C:\rsvup.pif
2013-07-10 12:33 - 2013-07-10 12:33 - 00103140 __RSH C:\pgytm.exe
2013-07-10 12:33 - 2013-07-10 12:33 - 00103140 __RSH C:\jutu.exe
2013-07-10 12:32 - 2013-07-10 12:32 - 00103140 __RSH C:\ivut.exe
2013-07-10 12:32 - 2013-07-10 12:32 - 00103140 __RSH C:\hletne.pif
2013-07-10 12:31 - 2013-07-10 12:31 - 00103140 __RSH C:\ocdcnn.exe
2013-07-10 12:31 - 2013-07-10 12:31 - 00103140 __RSH C:\gdee.pif
2013-07-10 12:30 - 2013-07-10 12:30 - 00103140 __RSH C:\stcq.pif
2013-07-10 12:30 - 2013-07-10 12:30 - 00103140 __RSH C:\qowa.exe
2013-07-10 12:29 - 2013-07-10 12:29 - 00103140 __RSH C:\ysho.exe
2013-07-10 12:29 - 2013-07-10 12:29 - 00103140 __RSH C:\mkor.pif
2013-07-10 12:29 - 2013-07-10 12:29 - 00103140 __RSH C:\dbwe.pif
2013-07-10 12:28 - 2013-07-10 12:28 - 00103140 __RSH C:\pbwl.exe
2013-07-10 12:28 - 2013-07-10 12:28 - 00103140 __RSH C:\lffvuq.pif
2013-07-10 12:27 - 2013-07-10 12:27 - 00103140 __RSH C:\yvhc.pif
2013-07-10 12:27 - 2013-07-10 12:27 - 00103140 __RSH C:\ylybqw.pif
2013-07-10 12:26 - 2013-07-10 12:26 - 00103140 __RSH C:\osbis.exe
2013-07-10 12:26 - 2013-07-10 12:26 - 00103140 __RSH C:\gvlrl.exe
2013-07-10 12:25 - 2013-07-10 12:25 - 00103140 __RSH C:\jkknj.pif
2013-07-10 12:25 - 2013-07-10 12:25 - 00103140 __RSH C:\ghpli.exe
2013-07-10 12:24 - 2013-07-10 12:24 - 00103140 __RSH C:\otllk.exe
2013-07-10 12:24 - 2013-07-10 12:24 - 00103140 __RSH C:\imwx.exe
2013-07-10 12:24 - 2013-07-10 12:24 - 00103140 __RSH C:\aved.pif
2013-07-10 12:23 - 2013-07-10 12:23 - 00103140 __RSH C:\jcasv.pif
2013-07-10 12:23 - 2013-07-10 12:23 - 00103140 __RSH C:\hshkl.exe
2013-07-10 12:22 - 2013-07-10 12:22 - 00103140 __RSH C:\slvadh.exe
2013-07-10 12:22 - 2013-07-10 12:22 - 00103140 __RSH C:\auxdvl.pif
2013-07-10 12:21 - 2013-07-10 12:21 - 00103140 __RSH C:\qcmdgs.exe
2013-07-10 12:21 - 2013-07-10 12:21 - 00103140 __RSH C:\olkbqj.pif
2013-07-10 12:20 - 2013-07-10 12:20 - 00103140 __RSH C:\soka.exe
2013-07-10 12:20 - 2013-07-10 12:20 - 00103140 __RSH C:\qptv.pif
2013-07-10 12:19 - 2013-07-10 12:19 - 00103140 __RSH C:\vjkfrn.exe
2013-07-10 12:19 - 2013-07-10 12:19 - 00103140 __RSH C:\fkyxc.exe
2013-07-10 12:19 - 2013-07-10 12:19 - 00103140 __RSH C:\agjove.pif
2013-07-10 12:18 - 2013-07-10 12:18 - 00103140 __RSH C:\pmrb.pif
2013-07-10 12:18 - 2013-07-10 12:18 - 00103140 __RSH C:\eqqm.exe
2013-07-10 12:17 - 2013-07-10 12:17 - 00103140 __RSH C:\tltly.exe
2013-07-10 12:17 - 2013-07-10 12:17 - 00103140 __RSH C:\dtuet.exe
2013-07-10 12:16 - 2013-07-10 12:16 - 00103140 __RSH C:\uujqsy.exe
2013-07-10 12:16 - 2013-07-10 12:16 - 00103140 __RSH C:\ofvuid.exe
2013-07-10 12:15 - 2013-07-10 12:15 - 00103140 __RSH C:\ldch.pif
2013-07-10 12:15 - 2013-07-10 12:15 - 00103140 __RSH C:\klxwd.pif
2013-07-10 12:15 - 2013-07-10 12:15 - 00103140 __RSH C:\erwgm.pif
2013-07-10 12:14 - 2013-07-10 12:14 - 00103140 __RSH C:\qpox.exe
2013-07-10 12:14 - 2013-07-10 12:14 - 00103140 __RSH C:\mbhun.exe
2013-07-10 12:13 - 2013-07-10 12:13 - 00103140 __RSH C:\ghffh.pif
2013-07-10 12:13 - 2013-07-10 12:13 - 00103140 __RSH C:\cmcr.pif
2013-07-10 12:12 - 2013-07-10 12:12 - 00103140 __RSH C:\xejqs.exe
2013-07-10 12:12 - 2013-07-10 12:12 - 00103140 __RSH C:\myul.exe
2013-07-10 12:11 - 2013-07-10 12:11 - 00103140 __RSH C:\vgdq.pif
2013-07-10 12:11 - 2013-07-10 12:11 - 00103140 __RSH C:\orfvw.exe
2013-07-10 12:10 - 2013-07-10 12:10 - 00103140 __RSH C:\wrqoco.pif
2013-07-10 12:10 - 2013-07-10 12:10 - 00103140 __RSH C:\jrfve.exe
2013-07-10 12:10 - 2013-07-10 12:10 - 00103140 __RSH C:\ijrl.pif
2013-07-10 12:09 - 2013-07-10 12:09 - 00103140 __RSH C:\wyamf.exe
2013-07-10 12:09 - 2013-07-10 12:09 - 00103140 __RSH C:\qgrm.exe
2013-07-10 12:08 - 2013-07-10 12:08 - 00103140 __RSH C:\umqe.exe
2013-07-10 12:08 - 2013-07-10 12:08 - 00103140 __RSH C:\jrnvhy.pif
2013-07-10 12:07 - 2013-07-10 12:07 - 00103140 __RSH C:\voxatk.pif
2013-07-10 12:07 - 2013-07-10 12:07 - 00103140 __RSH C:\dcga.pif
2013-07-10 12:06 - 2013-07-10 12:06 - 00103140 __RSH C:\qvsam.exe
2013-07-10 12:06 - 2013-07-10 12:06 - 00103140 __RSH C:\ijieb.pif
2013-07-10 12:06 - 2013-07-10 12:06 - 00103140 __RSH C:\gwuca.exe
2013-07-10 12:05 - 2013-07-10 12:05 - 00103140 __RSH C:\dybte.exe
2013-07-10 12:05 - 2013-07-10 12:05 - 00103140 __RSH C:\ajda.exe
2013-07-10 12:04 - 2013-07-10 12:04 - 00103140 __RSH C:\uwmhrd.pif
2013-07-10 12:04 - 2013-07-10 12:04 - 00103140 __RSH C:\sogmt.pif
2013-07-10 12:03 - 2013-07-10 12:03 - 00103140 __RSH C:\oxpaq.pif
2013-07-10 12:03 - 2013-07-10 12:03 - 00103140 __RSH C:\cuoe.exe
2013-07-10 12:02 - 2013-07-10 12:02 - 00103140 __RSH C:\lfxwr.exe
2013-07-10 12:02 - 2013-07-10 12:02 - 00103140 __RSH C:\gqcjmt.exe
2013-07-10 12:01 - 2013-07-10 12:01 - 00103140 __RSH C:\pvfvra.pif
2013-07-10 12:01 - 2013-07-10 12:01 - 00103140 __RSH C:\mqivfr.pif
2013-07-10 12:01 - 2013-07-10 12:01 - 00103140 __RSH C:\isfbnu.pif
2013-07-10 12:00 - 2013-07-10 12:00 - 00103140 __RSH C:\yksi.exe
2013-07-10 12:00 - 2013-07-10 12:00 - 00103140 __RSH C:\bgjms.exe
2013-07-10 11:59 - 2013-07-10 11:59 - 00103140 __RSH C:\vapqgn.exe
2013-07-10 11:59 - 2013-07-10 11:59 - 00103140 __RSH C:\oqcvcu.exe
2013-07-10 11:58 - 2013-07-10 11:58 - 00103140 __RSH C:\iwgbm.exe
2013-07-10 11:58 - 2013-07-10 11:58 - 00103140 __RSH C:\fuqu.pif
2013-07-10 11:57 - 2013-07-10 11:57 - 00103140 __RSH C:\yptqhn.pif
2013-07-10 11:57 - 2013-07-10 11:57 - 00103140 __RSH C:\pctmb.exe
2013-07-10 11:57 - 2013-07-10 11:57 - 00103140 __RSH C:\olwqs.pif
2013-07-10 11:56 - 2013-07-10 11:56 - 00103140 __RSH C:\pjrb.exe
2013-07-10 11:56 - 2013-07-10 11:56 - 00103140 __RSH C:\ojuej.pif
2013-07-10 11:55 - 2013-07-10 11:55 - 00103140 __RSH C:\vmcyk.pif
2013-07-10 11:55 - 2013-07-10 11:55 - 00103140 __RSH C:\smaf.exe
2013-07-10 11:54 - 2013-07-10 11:54 - 00103140 __RSH C:\tyvm.pif
2013-07-10 11:54 - 2013-07-10 11:54 - 00103140 __RSH C:\oxhb.exe
2013-07-10 11:53 - 2013-07-10 11:53 - 00103140 __RSH C:\stjno.pif
2013-07-10 11:53 - 2013-07-10 11:53 - 00103140 __RSH C:\gqyho.exe
2013-07-10 11:52 - 2013-07-10 11:52 - 00103140 __RSH C:\xmgrcl.pif
2013-07-10 11:52 - 2013-07-10 11:52 - 00103140 __RSH C:\umvqb.pif
2013-07-10 11:52 - 2013-07-10 11:52 - 00103140 __RSH C:\objft.exe
2013-07-10 11:51 - 2013-07-10 11:51 - 00103140 __RSH C:\liqxo.exe
2013-07-10 11:51 - 2013-07-10 11:51 - 00103140 __RSH C:\jxurqn.exe
2013-07-10 11:50 - 2013-07-10 11:50 - 00103140 __RSH C:\kkfr.pif
2013-07-10 11:50 - 2013-07-10 11:50 - 00103140 __RSH C:\bwxe.exe
2013-07-10 11:49 - 2013-07-10 11:49 - 00103140 __RSH C:\ojfb.pif
2013-07-10 11:49 - 2013-07-10 11:49 - 00103140 __RSH C:\oecv.pif
2013-07-10 11:48 - 2013-07-10 11:48 - 00103140 __RSH C:\wtuswg.pif
2013-07-10 11:48 - 2013-07-10 11:48 - 00103140 __RSH C:\egra.exe
2013-07-10 11:48 - 2013-07-10 11:48 - 00103140 __RSH C:\ahiex.pif
2013-07-10 11:47 - 2013-07-10 11:47 - 00103140 __RSH C:\snvf.exe
2013-07-10 11:47 - 2013-07-10 11:47 - 00103140 __RSH C:\bvkan.pif
2013-07-10 11:46 - 2013-07-10 11:46 - 00103140 __RSH C:\lhlfgh.pif
2013-07-10 11:46 - 2013-07-10 11:46 - 00103140 __RSH C:\gpti.pif
2013-07-10 11:45 - 2013-07-10 11:45 - 00103140 __RSH C:\yvtgay.exe
2013-07-10 11:45 - 2013-07-10 11:45 - 00103140 __RSH C:\vstx.exe
2013-07-10 11:44 - 2013-07-10 11:44 - 00103140 __RSH C:\yxchal.exe
2013-07-10 11:44 - 2013-07-10 11:44 - 00103140 __RSH C:\qpil.exe
2013-07-10 11:43 - 2013-07-10 11:43 - 00103140 __RSH C:\wjwtwt.exe
2013-07-10 11:43 - 2013-07-10 11:43 - 00103140 __RSH C:\iqelei.exe
2013-07-10 11:43 - 2013-07-10 11:43 - 00103140 __RSH C:\evgwko.exe
2013-07-10 11:42 - 2013-07-10 11:42 - 00103140 __RSH C:\tkvv.exe
2013-07-10 11:42 - 2013-07-10 11:42 - 00103140 __RSH C:\rpcxec.exe
2013-07-10 11:41 - 2013-07-10 11:41 - 00103140 __RSH C:\pihj.exe
2013-07-10 11:41 - 2013-07-10 11:41 - 00103140 __RSH C:\dppc.pif
2013-07-10 11:40 - 2013-07-10 11:40 - 00103140 __RSH C:\ysel.exe
2013-07-10 11:40 - 2013-07-10 11:40 - 00103140 __RSH C:\sossth.pif
2013-07-10 11:39 - 2013-07-10 11:39 - 00103140 __RSH C:\xsfhsm.pif
2013-07-10 11:39 - 2013-07-10 11:39 - 00103140 __RSH C:\wsug.exe
2013-07-10 11:38 - 2013-07-10 11:38 - 00103140 __RSH C:\vokaw.exe
2013-07-10 11:38 - 2013-07-10 11:38 - 00103140 __RSH C:\umcp.exe
2013-07-10 11:38 - 2013-07-10 11:38 - 00103140 __RSH C:\eivx.pif
2013-07-10 11:37 - 2013-07-10 11:37 - 00103140 __RSH C:\olfoj.pif
2013-07-10 11:37 - 2013-07-10 11:37 - 00103140 __RSH C:\geidcf.pif
2013-07-10 11:36 - 2013-07-10 11:36 - 00103140 __RSH C:\phskay.exe
2013-07-10 11:36 - 2013-07-10 11:36 - 00103140 __RSH C:\nvuj.exe
2013-07-10 11:35 - 2013-07-10 11:35 - 00103140 __RSH C:\ifnlv.pif
2013-07-10 11:35 - 2013-07-10 11:35 - 00103140 __RSH C:\fywdwg.pif
2013-07-10 11:34 - 2013-07-10 11:34 - 00103140 __RSH C:\oiocbw.exe
2013-07-10 11:34 - 2013-07-10 11:34 - 00103140 __RSH C:\fsfvwe.pif
2013-07-10 11:34 - 2013-07-10 11:34 - 00103140 __RSH C:\ejia.exe
2013-07-10 11:33 - 2013-07-10 11:33 - 00103140 __RSH C:\tylrp.pif
2013-07-10 11:33 - 2013-07-10 11:33 - 00103140 __RSH C:\otra.pif
2013-07-10 11:32 - 2013-07-10 11:32 - 00103140 __RSH C:\snnkwb.pif
2013-07-10 11:32 - 2013-07-10 11:32 - 00103140 __RSH C:\ccqei.exe
2013-07-10 11:31 - 2013-07-10 11:31 - 00103140 __RSH C:\sxiibj.pif
2013-07-10 11:31 - 2013-07-10 11:31 - 00103140 __RSH C:\ratgr.pif
2013-07-10 11:30 - 2013-07-10 11:30 - 00103140 __RSH C:\slup.exe
2013-07-10 11:30 - 2013-07-10 11:30 - 00103140 __RSH C:\lgly.exe
2013-07-10 11:29 - 2013-07-10 11:29 - 00103140 __RSH C:\vrhmq.exe
2013-07-10 11:29 - 2013-07-10 11:29 - 00103140 __RSH C:\rboeoo.exe
2013-07-10 11:29 - 2013-07-10 11:29 - 00103140 __RSH C:\cimhqp.pif
2013-07-10 11:28 - 2013-07-10 11:28 - 00103140 __RSH C:\qiqyr.pif
2013-07-10 11:28 - 2013-07-10 11:28 - 00103140 __RSH C:\axihqd.pif
2013-07-10 11:27 - 2013-07-10 11:27 - 00103140 __RSH C:\xhowe.exe
2013-07-10 11:27 - 2013-07-10 11:27 - 00103140 __RSH C:\kmybxf.exe
2013-07-10 11:26 - 2013-07-10 11:26 - 00103140 __RSH C:\obmdx.exe
2013-07-10 11:26 - 2013-07-10 11:26 - 00103140 __RSH C:\ergylj.pif
2013-07-10 11:25 - 2013-07-10 11:25 - 00103140 __RSH C:\lkrvfp.exe
2013-07-10 11:25 - 2013-07-10 11:25 - 00103140 __RSH C:\hacoq.pif
2013-07-10 11:25 - 2013-07-10 11:25 - 00103140 __RSH C:\eodcd.pif
2013-07-10 11:24 - 2013-07-10 11:24 - 00103140 __RSH C:\ypwej.pif
2013-07-10 11:24 - 2013-07-10 11:24 - 00103140 __RSH C:\gqjph.exe
2013-07-10 11:23 - 2013-07-10 11:23 - 00103140 __RSH C:\qylmvc.exe
2013-07-10 11:23 - 2013-07-10 11:23 - 00103140 __RSH C:\ddseqo.pif
2013-07-10 11:22 - 2013-07-10 11:22 - 00103140 __RSH C:\eurtaw.pif
2013-07-10 11:22 - 2013-07-10 11:22 - 00103140 __RSH C:\bwxu.pif
2013-07-10 11:21 - 2013-07-10 11:21 - 00103140 __RSH C:\tklfw.exe
2013-07-10 11:21 - 2013-07-10 11:21 - 00103140 __RSH C:\lwyo.exe
2013-07-10 11:20 - 2013-07-10 11:20 - 00103140 __RSH C:\jaosv.exe
2013-07-10 11:20 - 2013-07-10 11:20 - 00103140 __RSH C:\ewmk.pif
2013-07-10 11:20 - 2013-07-10 11:20 - 00103140 __RSH C:\akupn.exe
2013-07-10 11:19 - 2013-07-10 11:19 - 00103140 __RSH C:\qgblcm.exe
2013-07-10 11:19 - 2013-07-10 11:19 - 00103140 __RSH C:\ppafjj.pif
2013-07-10 11:18 - 2013-07-10 11:18 - 00103140 __RSH C:\uihob.pif
2013-07-10 11:18 - 2013-07-10 11:18 - 00103140 __RSH C:\tfdsdm.pif
2013-07-10 11:17 - 2013-07-10 11:17 - 00103140 __RSH C:\vmruv.pif
2013-07-10 11:17 - 2013-07-10 11:17 - 00103140 __RSH C:\rsyks.pif
2013-07-10 11:16 - 2013-07-10 11:16 - 00103140 __RSH C:\uqnu.pif
2013-07-10 11:16 - 2013-07-10 11:16 - 00103140 __RSH C:\sahvol.exe
2013-07-10 11:16 - 2013-07-10 11:16 - 00103140 __RSH C:\ipag.exe
2013-07-10 11:15 - 2013-07-10 11:15 - 00103140 __RSH C:\yfjwti.pif
2013-07-10 11:15 - 2013-07-10 11:15 - 00103140 __RSH C:\jhav.exe
2013-07-10 11:14 - 2013-07-10 11:14 - 00103140 __RSH C:\myawn.exe
2013-07-10 11:14 - 2013-07-10 11:14 - 00103140 __RSH C:\cbbgm.pif
2013-07-10 11:13 - 2013-07-10 11:13 - 00103140 __RSH C:\qtotot.exe
2013-07-10 11:13 - 2013-07-10 11:13 - 00103140 __RSH C:\jgflnd.pif
2013-07-10 11:12 - 2013-07-10 11:12 - 00103140 __RSH C:\rnqc.exe
2013-07-10 11:12 - 2013-07-10 11:12 - 00103140 __RSH C:\ouuvi.exe
2013-07-10 11:11 - 2013-07-10 11:11 - 00103140 __RSH C:\ywah.pif
2013-07-10 11:11 - 2013-07-10 11:11 - 00103140 __RSH C:\gugdxf.exe
2013-07-10 11:11 - 2013-07-10 11:11 - 00103140 __RSH C:\bylk.pif
2013-07-10 11:10 - 2013-07-10 11:10 - 00103140 __RSH C:\ulflrt.pif
2013-07-10 11:10 - 2013-07-10 11:10 - 00103140 __RSH C:\dnep.pif
2013-07-10 11:09 - 2013-07-10 11:09 - 00103140 __RSH C:\xcoy.exe
2013-07-10 11:09 - 2013-07-10 11:09 - 00103140 __RSH C:\bckvm.exe
2013-07-10 11:08 - 2013-07-10 11:08 - 00103140 __RSH C:\vjspeo.pif
2013-07-10 11:08 - 2013-07-10 11:08 - 00103140 __RSH C:\gvvdjh.pif
2013-07-10 11:07 - 2013-07-10 11:07 - 00103140 __RSH C:\ujae.exe
2013-07-10 11:07 - 2013-07-10 11:07 - 00103140 __RSH C:\kuli.pif
2013-07-10 11:07 - 2013-07-10 11:07 - 00103140 __RSH C:\axghpe.exe
2013-07-10 11:06 - 2013-07-10 11:06 - 00103140 __RSH C:\jyuc.pif
2013-07-10 11:06 - 2013-07-10 11:06 - 00103140 __RSH C:\ggrx.pif
2013-07-10 11:05 - 2013-07-10 11:05 - 00103140 __RSH C:\ydeks.pif
2013-07-10 11:05 - 2013-07-10 11:05 - 00103140 __RSH C:\efyl.exe
2013-07-10 11:04 - 2013-07-10 11:04 - 00103140 __RSH C:\lpgvf.exe
2013-07-10 11:04 - 2013-07-10 11:04 - 00103140 __RSH C:\ikrir.pif
2013-07-10 11:03 - 2013-07-10 11:03 - 00103140 __RSH C:\nihwlf.pif
2013-07-10 11:03 - 2013-07-10 11:03 - 00103140 __RSH C:\mtciml.exe
2013-07-10 11:02 - 2013-07-10 11:02 - 00103140 __RSH C:\nbieea.exe
2013-07-10 11:02 - 2013-07-10 11:02 - 00103140 __RSH C:\ltdbse.pif
2013-07-10 11:02 - 2013-07-10 11:02 - 00103140 __RSH C:\guypec.pif
2013-07-10 11:01 - 2013-07-10 11:01 - 00103140 __RSH C:\wpwfsr.pif
2013-07-10 11:01 - 2013-07-10 11:01 - 00103140 __RSH C:\cynj.pif
2013-07-10 11:00 - 2013-07-10 11:00 - 00103140 __RSH C:\hpfpg.pif
2013-07-10 11:00 - 2013-07-10 11:00 - 00103140 __RSH C:\fdviwe.pif
2013-07-10 10:59 - 2013-07-10 10:59 - 00103140 __RSH C:\pppx.pif
2013-07-10 10:59 - 2013-07-10 10:59 - 00103140 __RSH C:\apit.exe
2013-07-10 10:58 - 2013-07-10 10:58 - 00103140 __RSH C:\lsuhx.pif
2013-07-10 10:58 - 2013-07-10 10:58 - 00103140 __RSH C:\clxoj.pif
2013-07-10 10:57 - 2013-07-10 10:57 - 00103140 __RSH C:\idhosl.exe
2013-07-10 10:57 - 2013-07-10 10:57 - 00103140 __RSH C:\bqqnkl.pif
2013-07-10 10:57 - 2013-07-10 10:57 - 00103140 __RSH C:\bljfbv.exe
2013-07-10 10:56 - 2013-07-10 10:56 - 00103140 __RSH C:\snnt.exe
2013-07-10 10:56 - 2013-07-10 10:56 - 00103140 __RSH C:\liqsj.pif
2013-07-10 10:55 - 2013-07-10 10:55 - 00103140 __RSH C:\ssgfyw.exe
2013-07-10 10:55 - 2013-07-10 10:55 - 00103140 __RSH C:\kdgvc.pif
2013-07-10 10:54 - 2013-07-10 10:54 - 00103140 __RSH C:\lmsbnd.exe
2013-07-10 10:54 - 2013-07-10 10:54 - 00103140 __RSH C:\enxm.exe
2013-07-10 10:53 - 2013-07-10 10:53 - 00103140 __RSH C:\vopp.pif
2013-07-10 10:53 - 2013-07-10 10:53 - 00103140 __RSH C:\ortvxo.pif
2013-07-10 10:53 - 2013-07-10 10:53 - 00103140 __RSH C:\atth.pif
2013-07-10 10:52 - 2013-07-10 10:52 - 00103140 __RSH C:\hwut.exe
2013-07-10 10:52 - 2013-07-10 10:52 - 00103140 __RSH C:\cfkpwi.pif
2013-07-10 10:51 - 2013-07-10 10:51 - 00103140 __RSH C:\uxdh.exe
2013-07-10 10:51 - 2013-07-10 10:51 - 00103140 __RSH C:\bterw.exe
2013-07-10 10:50 - 2013-07-10 10:50 - 00103140 __RSH C:\panft.exe
2013-07-10 10:50 - 2013-07-10 10:50 - 00103140 __RSH C:\ahnf.pif
2013-07-10 10:49 - 2013-07-10 10:49 - 00103140 __RSH C:\wcjwoh.exe
2013-07-10 10:49 - 2013-07-10 10:49 - 00103140 __RSH C:\dmbv.exe
2013-07-10 10:48 - 2013-07-10 10:48 - 00103140 __RSH C:\qcnnnk.pif
2013-07-10 10:48 - 2013-07-10 10:48 - 00103140 __RSH C:\nsch.exe
2013-07-10 10:48 - 2013-07-10 10:48 - 00103140 __RSH C:\nblsi.exe
2013-07-10 10:47 - 2013-07-10 10:47 - 00103140 __RSH C:\vkql.pif
2013-07-10 10:47 - 2013-07-10 10:47 - 00103140 __RSH C:\qmpg.exe
2013-07-10 10:46 - 2013-07-10 10:46 - 00103140 __RSH C:\ubutp.exe
2013-07-10 10:46 - 2013-07-10 10:46 - 00103140 __RSH C:\hwhuv.exe
2013-07-10 10:45 - 2013-07-10 10:45 - 00103140 __RSH C:\rwuakk.pif
2013-07-10 10:45 - 2013-07-10 10:45 - 00103140 __RSH C:\htgmyq.exe
2013-07-10 10:44 - 2013-07-10 10:44 - 00103140 __RSH C:\kwpgi.exe
2013-07-10 10:44 - 2013-07-10 10:44 - 00103140 __RSH C:\ktmad.pif
2013-07-10 10:44 - 2013-07-10 10:44 - 00103140 __RSH C:\daxr.exe
2013-07-10 10:43 - 2013-07-10 10:43 - 00103140 __RSH C:\jnead.pif
2013-07-10 10:43 - 2013-07-10 10:43 - 00103140 __RSH C:\iovd.pif
2013-07-10 10:42 - 2013-07-10 10:42 - 00103140 __RSH C:\oihegs.pif
2013-07-10 10:42 - 2013-07-10 10:42 - 00103140 __RSH C:\ammi.pif
2013-07-10 10:41 - 2013-07-10 10:41 - 00103140 __RSH C:\pggib.exe
2013-07-10 10:41 - 2013-07-10 10:41 - 00103140 __RSH C:\iqxiu.pif
2013-07-10 10:40 - 2013-07-10 10:40 - 00103140 __RSH C:\vxrt.pif
2013-07-10 10:40 - 2013-07-10 10:40 - 00103140 __RSH C:\ettqot.pif
2013-07-10 10:39 - 2013-07-10 10:39 - 00103140 __RSH C:\yirhb.exe
2013-07-10 10:39 - 2013-07-10 10:39 - 00103140 __RSH C:\nhxkou.pif
2013-07-10 10:39 - 2013-07-10 10:39 - 00103140 __RSH C:\akkib.exe
2013-07-10 10:38 - 2013-07-10 10:38 - 00103140 __RSH C:\stjg.exe
2013-07-10 10:38 - 2013-07-10 10:38 - 00103140 __RSH C:\jlphy.pif
2013-07-10 10:37 - 2013-07-10 10:37 - 00103140 __RSH C:\kdsd.exe
2013-07-10 10:37 - 2013-07-10 10:37 - 00103140 __RSH C:\jomlgm.exe
2013-07-10 10:36 - 2013-07-10 10:36 - 00103140 __RSH C:\nxorb.exe
2013-07-10 10:36 - 2013-07-10 10:36 - 00103140 __RSH C:\fgxv.exe
2013-07-10 10:35 - 2013-07-10 10:35 - 00103140 __RSH C:\ywhsmd.pif
2013-07-10 10:35 - 2013-07-10 10:35 - 00103140 __RSH C:\wkwqde.exe
2013-07-10 10:35 - 2013-07-10 10:35 - 00103140 __RSH C:\evjb.exe
2013-07-10 10:34 - 2013-07-10 10:34 - 00103140 __RSH C:\triccd.exe
2013-07-10 10:34 - 2013-07-10 10:34 - 00103140 __RSH C:\kxehg.exe
2013-07-10 10:33 - 2013-07-10 10:33 - 00103140 __RSH C:\yxev.exe
2013-07-10 10:33 - 2013-07-10 10:33 - 00103140 __RSH C:\vnngyw.pif
2013-07-10 10:32 - 2013-07-10 10:32 - 00103140 __RSH C:\xeqb.pif
2013-07-10 10:32 - 2013-07-10 10:32 - 00103140 __RSH C:\desea.pif
2013-07-10 10:31 - 2013-07-10 10:31 - 00103140 __RSH C:\ddcbp.pif
2013-07-10 10:31 - 2013-07-10 10:31 - 00103140 __RSH C:\adpdsa.pif
2013-07-10 10:30 - 2013-07-10 10:30 - 00103140 __RSH C:\fsaskg.exe
2013-07-10 10:30 - 2013-07-10 10:30 - 00103140 __RSH C:\ehqfrs.exe
2013-07-10 10:30 - 2013-07-10 10:30 - 00103140 __RSH C:\bimuji.pif
2013-07-10 10:29 - 2013-07-10 10:29 - 00103140 __RSH C:\jklg.exe
2013-07-10 10:29 - 2013-07-10 10:29 - 00103140 __RSH C:\iowqg.pif
2013-07-10 10:28 - 2013-07-10 10:28 - 00103140 __RSH C:\qghajq.exe
2013-07-10 10:28 - 2013-07-10 10:28 - 00103140 __RSH C:\lxqagj.exe
2013-07-10 10:27 - 2013-07-10 10:27 - 00103140 __RSH C:\hmijxu.pif
2013-07-10 10:27 - 2013-07-10 10:27 - 00103140 __RSH C:\cpxsbs.exe
2013-07-10 10:26 - 2013-07-10 10:26 - 00103140 __RSH C:\rgjn.pif
2013-07-10 10:26 - 2013-07-10 10:26 - 00103140 __RSH C:\obxcac.exe
2013-07-10 10:26 - 2013-07-10 10:26 - 00103140 __RSH C:\ghyet.exe
2013-07-10 10:25 - 2013-07-10 10:25 - 00103140 __RSH C:\xqobud.exe
2013-07-10 10:25 - 2013-07-10 10:25 - 00103140 __RSH C:\ofhik.exe
2013-07-10 10:24 - 2013-07-10 10:24 - 00103140 __RSH C:\tweg.pif
2013-07-10 10:24 - 2013-07-10 10:24 - 00103140 __RSH C:\iexltm.exe
2013-07-10 10:23 - 2013-07-10 10:23 - 00103140 __RSH C:\istpf.exe
2013-07-10 10:23 - 2013-07-10 10:23 - 00103140 __RSH C:\fbiw.pif
2013-07-10 10:22 - 2013-07-10 10:22 - 00103140 __RSH C:\nvblpf.exe
2013-07-10 10:22 - 2013-07-10 10:22 - 00103140 __RSH C:\htyukk.exe
2013-07-10 10:21 - 2013-07-10 10:21 - 00103140 __RSH C:\xdtfyx.pif
2013-07-10 10:21 - 2013-07-10 10:21 - 00103140 __RSH C:\ubyokr.exe
2013-07-10 10:21 - 2013-07-10 10:21 - 00103140 __RSH C:\ncqhp.pif
2013-07-10 10:20 - 2013-07-10 10:20 - 00103140 __RSH C:\mofl.exe
2013-07-10 10:20 - 2013-07-10 10:20 - 00103140 __RSH C:\jpmha.exe
2013-07-10 10:19 - 2013-07-10 10:19 - 00103140 __RSH C:\xrpuxr.pif
2013-07-10 10:19 - 2013-07-10 10:19 - 00103140 __RSH C:\rkbs.pif
2013-07-10 10:18 - 2013-07-10 10:18 - 00103140 __RSH C:\vnsw.exe
2013-07-10 10:18 - 2013-07-10 10:18 - 00103140 __RSH C:\srsdji.pif
2013-07-10 10:17 - 2013-07-10 10:17 - 00103140 __RSH C:\sbxdkw.pif
2013-07-10 10:17 - 2013-07-10 10:17 - 00103140 __RSH C:\qnqkkk.pif
2013-07-10 10:17 - 2013-07-10 10:17 - 00103140 __RSH C:\mmcx.exe
2013-07-10 10:16 - 2013-07-10 10:16 - 00103140 __RSH C:\dnjdu.exe
2013-07-10 10:16 - 2013-07-10 10:16 - 00103140 __RSH C:\dbjtd.exe
2013-07-10 10:15 - 2013-07-10 10:15 - 00103140 __RSH C:\qbmbdx.exe
2013-07-10 10:15 - 2013-07-10 10:15 - 00103140 __RSH C:\jadg.exe
2013-07-10 10:14 - 2013-07-10 10:14 - 00103140 __RSH C:\mfid.pif
2013-07-10 10:14 - 2013-07-10 10:14 - 00103140 __RSH C:\hsufq.exe
2013-07-10 10:13 - 2013-07-10 10:13 - 00103140 __RSH C:\wwyf.exe
2013-07-10 10:13 - 2013-07-10 10:13 - 00103140 __RSH C:\qdxp.pif
2013-07-10 10:12 - 2013-07-10 10:12 - 00103140 __RSH C:\wvwn.exe
2013-07-10 10:12 - 2013-07-10 10:12 - 00103140 __RSH C:\rryn.pif
2013-07-10 10:12 - 2013-07-10 10:12 - 00103140 __RSH C:\iskhqk.exe
2013-07-10 10:11 - 2013-07-10 10:11 - 00103140 __RSH C:\xrflo.exe
2013-07-10 10:11 - 2013-07-10 10:11 - 00103140 __RSH C:\gjeqc.exe
2013-07-10 10:10 - 2013-07-10 10:10 - 00103140 __RSH C:\ghypgj.pif
2013-07-10 10:10 - 2013-07-10 10:10 - 00103140 __RSH C:\amnk.exe
2013-07-10 10:09 - 2013-07-10 10:09 - 00103140 __RSH C:\moehe.pif
2013-07-10 10:09 - 2013-07-10 10:09 - 00103140 __RSH C:\exjaka.pif
2013-07-10 10:08 - 2013-07-10 10:08 - 00103140 __RSH C:\ldtj.pif
2013-07-10 10:08 - 2013-07-10 10:08 - 00103140 __RSH C:\kwsyl.pif
2013-07-10 10:07 - 2013-07-10 10:07 - 00103140 __RSH C:\wkhgv.exe
2013-07-10 10:07 - 2013-07-10 10:07 - 00103140 __RSH C:\jibvn.exe
2013-07-10 10:07 - 2013-07-10 10:07 - 00103140 __RSH C:\iwgixu.exe
2013-07-10 10:06 - 2013-07-10 10:06 - 00103140 __RSH C:\mxatc.exe
2013-07-10 10:06 - 2013-07-10 10:06 - 00103140 __RSH C:\arubop.exe
2013-07-10 10:05 - 2013-07-10 10:05 - 00103140 __RSH C:\ubtaup.exe
2013-07-10 10:05 - 2013-07-10 10:05 - 00103140 __RSH C:\rvxcd.exe
2013-07-10 10:04 - 2013-07-10 10:04 - 00103140 __RSH C:\jtngrp.exe
2013-07-10 10:04 - 2013-07-10 10:04 - 00103140 __RSH C:\cdjnyr.pif
2013-07-10 10:03 - 2013-07-10 10:03 - 00103140 __RSH C:\wgxr.exe
2013-07-10 10:03 - 2013-07-10 10:03 - 00103140 __RSH C:\pilt.exe
2013-07-10 10:03 - 2013-07-10 10:03 - 00103140 __RSH C:\jfsrp.pif
2013-07-10 10:02 - 2013-07-10 10:02 - 00103140 __RSH C:\pjxw.exe
2013-07-10 10:02 - 2013-07-10 10:02 - 00103140 __RSH C:\fkkxqv.exe
2013-07-10 10:01 - 2013-07-10 10:01 - 00103140 __RSH C:\voqmf.pif
2013-07-10 10:01 - 2013-07-10 10:01 - 00103140 __RSH C:\clegv.exe
2013-07-10 10:00 - 2013-07-10 10:00 - 00103140 __RSH C:\vdlyol.exe
2013-07-10 10:00 - 2013-07-10 10:00 - 00103140 __RSH C:\cdia.exe
2013-07-10 09:59 - 2013-07-10 09:59 - 00103140 __RSH C:\satvrw.exe
2013-07-10 09:59 - 2013-07-10 09:59 - 00103140 __RSH C:\jcuo.exe
2013-07-10 09:58 - 2013-07-10 09:58 - 00103140 __RSH C:\vcubsp.exe
2013-07-10 09:58 - 2013-07-10 09:58 - 00103140 __RSH C:\usah.pif
2013-07-10 09:58 - 2013-07-10 09:58 - 00103140 __RSH C:\nhfw.pif
2013-07-10 09:57 - 2013-07-10 09:57 - 00103140 __RSH C:\wnmnd.pif
2013-07-10 09:57 - 2013-07-10 09:57 - 00103140 __RSH C:\jqwdty.exe
2013-07-10 09:56 - 2013-07-10 09:56 - 00103140 __RSH C:\ygbfsu.pif
2013-07-10 09:56 - 2013-07-10 09:56 - 00103140 __RSH C:\oklv.exe
2013-07-10 09:55 - 2013-07-10 09:55 - 00103140 __RSH C:\uaiav.exe
2013-07-10 09:55 - 2013-07-10 09:55 - 00103140 __RSH C:\iuxcwf.pif
2013-07-10 09:54 - 2013-07-10 09:54 - 00103140 __RSH C:\xwcu.exe
2013-07-10 09:54 - 2013-07-10 09:54 - 00103140 __RSH C:\lygai.exe
2013-07-10 09:54 - 2013-07-10 09:54 - 00103140 __RSH C:\ksld.pif
2013-07-10 09:53 - 2013-07-10 09:53 - 00103140 __RSH C:\sdfn.exe
2013-07-10 09:53 - 2013-07-10 09:53 - 00103140 __RSH C:\lusn.exe
2013-07-10 09:52 - 2013-07-10 09:52 - 00103140 __RSH C:\yrjy.exe
2013-07-10 09:52 - 2013-07-10 09:52 - 00103140 __RSH C:\jibsg.exe
2013-07-10 09:51 - 2013-07-10 09:51 - 00103140 __RSH C:\qmqp.exe
2013-07-10 09:51 - 2013-07-10 09:51 - 00103140 __RSH C:\idkkub.pif
2013-07-10 09:50 - 2013-07-10 09:50 - 00103140 __RSH C:\cxxiet.pif
2013-07-10 09:50 - 2013-07-10 09:50 - 00103140 __RSH C:\absfl.exe
2013-07-10 09:49 - 2013-07-10 09:49 - 00103140 __RSH C:\wfqgm.exe
2013-07-10 09:49 - 2013-07-10 09:49 - 00103140 __RSH C:\ksmw.pif
2013-07-10 09:49 - 2013-07-10 09:49 - 00103140 __RSH C:\djqndv.exe
2013-07-10 09:48 - 2013-07-10 09:48 - 00103140 __RSH C:\eeucr.exe
2013-07-10 09:48 - 2013-07-10 09:48 - 00103140 __RSH C:\aawwe.exe
2013-07-10 09:47 - 2013-07-10 09:47 - 00103140 __RSH C:\vklom.pif
2013-07-10 09:47 - 2013-07-10 09:47 - 00103140 __RSH C:\dnsv.pif
2013-07-10 09:46 - 2013-07-10 09:46 - 00103140 __RSH C:\sqmiyv.pif
2013-07-10 09:46 - 2013-07-10 09:46 - 00103140 __RSH C:\cgcvjx.pif
2013-07-10 09:45 - 2013-07-10 09:45 - 00103140 __RSH C:\kpdi.pif
2013-07-10 09:45 - 2013-07-10 09:45 - 00103140 __RSH C:\khyg.pif
2013-07-10 09:45 - 2013-07-10 09:45 - 00103140 __RSH C:\gtkif.exe
2013-07-10 09:44 - 2013-07-10 09:44 - 00103140 __RSH C:\wexgcp.pif
2013-07-10 09:44 - 2013-07-10 09:44 - 00103140 __RSH C:\dynepb.pif
2013-07-10 09:43 - 2013-07-10 09:43 - 00103140 __RSH C:\qfglmp.pif
2013-07-10 09:43 - 2013-07-10 09:43 - 00103140 __RSH C:\mxrp.exe
2013-07-10 09:42 - 2013-07-10 09:42 - 00103140 __RSH C:\vqvcrg.pif
2013-07-10 09:42 - 2013-07-10 09:42 - 00103140 __RSH C:\fkcbfd.exe
2013-07-10 09:41 - 2013-07-10 09:41 - 00103140 __RSH C:\vstm.exe
2013-07-10 09:41 - 2013-07-10 09:41 - 00103140 __RSH C:\cstng.pif
2013-07-10 09:40 - 2013-07-10 09:40 - 00103140 __RSH C:\wexe.exe
2013-07-10 09:40 - 2013-07-10 09:40 - 00103140 __RSH C:\nessuo.exe
2013-07-10 09:40 - 2013-07-10 09:40 - 00103140 __RSH C:\hhks.exe
2013-07-10 09:39 - 2013-07-10 09:39 - 00103140 __RSH C:\xbtins.pif
2013-07-10 09:39 - 2013-07-10 09:39 - 00103140 __RSH C:\cggt.exe
2013-07-10 09:38 - 2013-07-10 09:38 - 00103140 __RSH C:\yjjh.pif
2013-07-10 09:38 - 2013-07-10 09:38 - 00103140 __RSH C:\mwjds.pif
2013-07-10 09:37 - 2013-07-10 09:37 - 00103140 __RSH C:\wmwd.pif
2013-07-10 09:37 - 2013-07-10 09:37 - 00103140 __RSH C:\meoiwc.pif
2013-07-10 09:36 - 2013-07-10 09:36 - 00103140 __RSH C:\qakbw.exe
2013-07-10 09:36 - 2013-07-10 09:36 - 00103140 __RSH C:\irmma.pif
2013-07-10 09:35 - 2013-07-10 09:35 - 00103140 __RSH C:\orjlt.pif
2013-07-10 09:35 - 2013-07-10 09:35 - 00103140 __RSH C:\ephnj.pif
2013-07-10 09:35 - 2013-07-10 09:35 - 00103140 __RSH C:\bbniu.exe
2013-07-10 09:34 - 2013-07-10 09:34 - 00103140 __RSH C:\yrfa.pif
2013-07-10 09:34 - 2013-07-10 09:34 - 00103140 __RSH C:\npedh.exe
2013-07-10 09:33 - 2013-07-10 09:33 - 00103140 __RSH C:\vadfs.exe
2013-07-10 09:33 - 2013-07-10 09:33 - 00103140 __RSH C:\puwd.exe
2013-07-10 09:32 - 2013-07-10 09:32 - 00103140 __RSH C:\gtlcjt.exe
2013-07-10 09:32 - 2013-07-10 09:32 - 00103140 __RSH C:\cukhtp.pif
2013-07-10 09:31 - 2013-07-10 09:31 - 00103140 __RSH C:\oksgj.exe
2013-07-10 09:31 - 2013-07-10 09:31 - 00103140 __RSH C:\jrxs.exe
2013-07-10 09:31 - 2013-07-10 09:31 - 00103140 __RSH C:\cixtw.exe
2013-07-10 09:30 - 2013-07-10 09:30 - 00103140 __RSH C:\uoaet.pif
2013-07-10 09:30 - 2013-07-10 09:30 - 00103140 __RSH C:\esyp.exe
2013-07-10 09:29 - 2013-07-10 09:29 - 00103140 __RSH C:\vtwxb.exe
2013-07-10 09:29 - 2013-07-10 09:29 - 00103140 __RSH C:\pxqkp.exe
2013-07-10 09:28 - 2013-07-10 09:28 - 00103140 __RSH C:\mbeo.exe
2013-07-10 09:28 - 2013-07-10 09:28 - 00103140 __RSH C:\lwxt.pif
2013-07-10 09:27 - 2013-07-10 09:27 - 00103140 __RSH C:\ydjb.pif
2013-07-10 09:27 - 2013-07-10 09:27 - 00103140 __RSH C:\tyxxf.pif
2013-07-10 09:26 - 2013-07-10 09:26 - 00103140 __RSH C:\shri.exe
2013-07-10 09:26 - 2013-07-10 09:26 - 00103140 __RSH C:\ldhro.pif
2013-07-10 09:26 - 2013-07-10 09:26 - 00103140 __RSH C:\khxhf.pif
2013-07-10 09:25 - 2013-07-10 09:25 - 00103140 __RSH C:\jwsw.exe
2013-07-10 09:25 - 2013-07-10 09:25 - 00103140 __RSH C:\bwfbx.pif
2013-07-10 09:24 - 2013-07-10 09:24 - 00103140 __RSH C:\ounc.pif
2013-07-10 09:24 - 2013-07-10 09:24 - 00103140 __RSH C:\olhg.pif
2013-07-10 09:23 - 2013-07-10 09:23 - 00103140 __RSH C:\vblap.exe
2013-07-10 09:23 - 2013-07-10 09:23 - 00103140 __RSH C:\srva.exe
2013-07-10 09:22 - 2013-07-10 09:22 - 00103140 __RSH C:\ynfut.exe
2013-07-10 09:22 - 2013-07-10 09:22 - 00103140 __RSH C:\vjwmjd.exe
2013-07-10 09:22 - 2013-07-10 09:22 - 00103140 __RSH C:\phgtc.pif
2013-07-10 09:21 - 2013-07-10 09:21 - 00103140 __RSH C:\liwju.pif
2013-07-10 09:21 - 2013-07-10 09:21 - 00103140 __RSH C:\ipsif.pif
2013-07-10 09:20 - 2013-07-10 09:20 - 00103140 __RSH C:\yliaf.exe
2013-07-10 09:20 - 2013-07-10 09:20 - 00103140 __RSH C:\qesdo.exe
2013-07-10 09:19 - 2013-07-10 09:19 - 00103140 __RSH C:\xxij.exe
2013-07-10 09:19 - 2013-07-10 09:19 - 00103140 __RSH C:\mnign.pif
2013-07-10 09:18 - 2013-07-10 09:18 - 00103140 __RSH C:\gcff.exe
2013-07-10 09:18 - 2013-07-10 09:18 - 00103140 __RSH C:\flarmv.pif
2013-07-10 09:17 - 2013-07-10 09:17 - 00103140 __RSH C:\vblrbj.pif
2013-07-10 09:17 - 2013-07-10 09:17 - 00103140 __RSH C:\fwhbfd.pif
2013-07-10 09:17 - 2013-07-10 09:17 - 00103140 __RSH C:\djvjjy.exe
2013-07-10 09:16 - 2013-07-10 09:16 - 00103140 __RSH C:\yctj.exe
2013-07-10 09:16 - 2013-07-10 09:16 - 00103140 __RSH C:\wuxjw.exe
2013-07-10 09:15 - 2013-07-10 09:15 - 00103140 __RSH C:\udsjmd.exe
2013-07-10 09:15 - 2013-07-10 09:15 - 00103140 __RSH C:\spera.pif
2013-07-10 09:14 - 2013-07-10 09:14 - 00103140 __RSH C:\gdoqw.exe
2013-07-10 09:14 - 2013-07-10 09:14 - 00103140 __RSH C:\ekda.exe
2013-07-10 09:13 - 2013-07-10 09:13 - 00103140 __RSH C:\xxxdr.pif
2013-07-10 09:13 - 2013-07-10 09:13 - 00103140 __RSH C:\kwnvm.pif
2013-07-10 09:13 - 2013-07-10 09:13 - 00103140 __RSH C:\hlpsv.pif
2013-07-10 09:12 - 2013-07-10 09:12 - 00103140 __RSH C:\oybmum.pif
2013-07-10 09:12 - 2013-07-10 09:12 - 00103140 __RSH C:\figkq.exe
2013-07-10 09:11 - 2013-07-10 09:11 - 00103140 __RSH C:\uatkbl.pif
2013-07-10 09:11 - 2013-07-10 09:11 - 00103140 __RSH C:\jjull.exe
2013-07-10 09:10 - 2013-07-10 09:10 - 00103140 __RSH C:\gurn.pif
2013-07-10 09:10 - 2013-07-10 09:10 - 00103140 __RSH C:\fwjogg.exe
2013-07-10 09:09 - 2013-07-10 09:09 - 00103140 __RSH C:\joieu.pif
2013-07-10 09:09 - 2013-07-10 09:09 - 00103140 __RSH C:\aijahx.pif
2013-07-10 09:08 - 2013-07-10 09:08 - 00103140 __RSH C:\ycjqm.exe
2013-07-10 09:08 - 2013-07-10 09:08 - 00103140 __RSH C:\urmpb.pif
2013-07-10 09:08 - 2013-07-10 09:08 - 00103140 __RSH C:\etqd.pif
2013-07-10 09:07 - 2013-07-10 09:07 - 00103140 __RSH C:\uektmn.exe
2013-07-10 09:07 - 2013-07-10 09:07 - 00103140 __RSH C:\cjjfbx.pif
2013-07-10 09:06 - 2013-07-10 09:06 - 00103140 __RSH C:\lfurpy.exe
2013-07-10 09:06 - 2013-07-10 09:06 - 00103140 __RSH C:\klhtd.pif
2013-07-10 09:05 - 2013-07-10 09:05 - 00103140 __RSH C:\jltk.pif
2013-07-10 09:05 - 2013-07-10 09:05 - 00103140 __RSH C:\cpnhmh.exe
2013-07-10 09:04 - 2013-07-10 09:04 - 00103140 __RSH C:\uibb.exe
2013-07-10 09:04 - 2013-07-10 09:04 - 00103140 __RSH C:\dnjog.exe
2013-07-10 09:04 - 2013-07-10 09:04 - 00103140 __RSH C:\cpquwa.pif
2013-07-10 09:03 - 2013-07-10 09:03 - 00103140 __RSH C:\wehxwm.pif
2013-07-10 09:03 - 2013-07-10 09:03 - 00103140 __RSH C:\jsgtm.exe
2013-07-10 09:02 - 2013-07-10 09:02 - 00103140 __RSH C:\xoftd.exe
2013-07-10 09:02 - 2013-07-10 09:02 - 00103140 __RSH C:\eaxxbj.exe
2013-07-10 09:01 - 2013-07-10 09:01 - 00103140 __RSH C:\wmfha.pif
2013-07-10 09:01 - 2013-07-10 09:01 - 00103140 __RSH C:\oddlw.pif
2013-07-10 09:00 - 2013-07-10 09:00 - 00103140 __RSH C:\cprqhy.exe
2013-07-10 09:00 - 2013-07-10 09:00 - 00103140 __RSH C:\aqmj.exe
2013-07-10 08:59 - 2013-07-10 08:59 - 00103140 __RSH C:\owdlh.pif
2013-07-10 08:59 - 2013-07-10 08:59 - 00103140 __RSH C:\fjabl.pif
2013-07-10 08:59 - 2013-07-10 08:59 - 00103140 __RSH C:\cmvro.exe
2013-07-10 08:58 - 2013-07-10 08:58 - 00103140 __RSH C:\myrf.exe
2013-07-10 08:58 - 2013-07-10 08:58 - 00103140 __RSH C:\eitlql.exe
2013-07-10 08:57 - 2013-07-10 08:57 - 00103140 __RSH C:\vejef.exe
2013-07-10 08:57 - 2013-07-10 08:57 - 00103140 __RSH C:\fsjpux.pif
2013-07-10 08:56 - 2013-07-10 08:56 - 00103140 __RSH C:\txjm.pif
2013-07-10 08:56 - 2013-07-10 08:56 - 00103140 __RSH C:\qhdyv.exe
2013-07-10 01:59 - 2013-07-10 01:59 - 00103140 __RSH C:\otqbom.exe
2013-07-10 01:58 - 2013-07-10 01:58 - 00103140 __RSH C:\xnydjs.pif
2013-07-10 01:58 - 2013-07-10 01:58 - 00103140 __RSH C:\keqane.exe
2013-07-10 01:58 - 2013-07-10 01:58 - 00103140 __RSH C:\hynf.exe
2013-07-10 01:57 - 2013-07-10 01:57 - 00103140 __RSH C:\urbof.exe
2013-07-10 01:57 - 2013-07-10 01:57 - 00103140 __RSH C:\crpp.exe
2013-07-10 01:56 - 2013-07-10 01:56 - 00103140 __RSH C:\vute.pif
2013-07-10 01:56 - 2013-07-10 01:56 - 00103140 __RSH C:\kbgosm.pif
2013-07-10 01:55 - 2013-07-10 01:55 - 00103140 __RSH C:\lpito.exe
2013-07-10 01:55 - 2013-07-10 01:55 - 00103140 __RSH C:\foaqx.exe
2013-07-10 01:54 - 2013-07-10 01:54 - 00103140 __RSH C:\jgfjm.exe
2013-07-10 01:54 - 2013-07-10 01:54 - 00103140 __RSH C:\ghrql.pif
2013-07-10 01:53 - 2013-07-10 01:53 - 00103140 __RSH C:\wypdy.exe
2013-07-10 01:53 - 2013-07-10 01:53 - 00103140 __RSH C:\ncuovx.pif
2013-07-10 01:53 - 2013-07-10 01:53 - 00103140 __RSH C:\ebhnau.exe
2013-07-10 01:52 - 2013-07-10 01:52 - 00103140 __RSH C:\ptbgj.pif
2013-07-10 01:52 - 2013-07-10 01:52 - 00103140 __RSH C:\hcglkr.exe
2013-07-10 01:51 - 2013-07-10 01:51 - 00103140 __RSH C:\kcmdgk.pif
2013-07-10 01:51 - 2013-07-10 01:51 - 00103140 __RSH C:\gmayhi.pif
2013-07-10 01:50 - 2013-07-10 01:50 - 00103140 __RSH C:\wxkrt.pif
2013-07-10 01:50 - 2013-07-10 01:50 - 00103140 __RSH C:\nconqc.pif
2013-07-10 01:50 - 2013-07-10 01:50 - 00103140 __RSH C:\ibevn.pif
2013-07-10 01:49 - 2013-07-10 01:49 - 00103140 __RSH C:\wlwy.exe
2013-07-10 01:49 - 2013-07-10 01:49 - 00103140 __RSH C:\qkfwk.pif
2013-07-10 01:49 - 2013-07-10 01:49 - 00103140 __RSH C:\pejg.pif
2013-07-10 01:49 - 2013-07-10 01:49 - 00103140 __RSH C:\oeyvd.pif
2013-07-10 01:49 - 2013-07-10 01:49 - 00103140 __RSH C:\lwnxq.pif
2013-07-10 01:49 - 2013-07-10 01:49 - 00103140 __RSH C:\hppuv.exe
2013-07-10 01:48 - 2013-07-10 01:48 - 00103140 __RSH C:\wqorm.exe
2013-07-10 01:48 - 2013-07-10 01:48 - 00103140 __RSH C:\trcmrr.exe
2013-07-10 01:48 - 2013-07-10 01:48 - 00103140 __RSH C:\jksi.pif
2013-07-10 01:48 - 2013-07-10 01:48 - 00103140 __RSH C:\bnoja.exe
2013-07-10 01:47 - 2013-07-10 01:47 - 00103140 __RSH C:\yebfw.pif
2013-07-10 01:47 - 2013-07-10 01:47 - 00103140 __RSH C:\pmreem.exe
2013-07-10 01:47 - 2013-07-10 01:47 - 00103140 __RSH C:\fchyn.pif
2013-07-10 01:47 - 2013-07-10 01:47 - 00103140 __RSH C:\atupe.exe
2013-07-10 01:46 - 2013-07-10 01:46 - 00103140 __RSH C:\nhql.pif
2013-07-10 01:46 - 2013-07-10 01:46 - 00103140 __RSH C:\lpmsbq.exe
2013-07-10 01:46 - 2013-07-10 01:46 - 00103140 __RSH C:\isgxbw.pif
2013-07-10 01:46 - 2013-07-10 01:46 - 00103140 __RSH C:\ewnf.exe
2013-07-10 01:45 - 2013-07-10 01:45 - 00103140 __RSH C:\kevc.exe
2013-07-10 01:45 - 2013-07-10 01:45 - 00103140 __RSH C:\etqk.pif
2013-07-10 01:45 - 2013-07-10 01:45 - 00103140 __RSH C:\cntr.exe
2013-07-10 01:44 - 2013-07-10 01:44 - 00103140 __RSH C:\jbic.pif
2013-07-10 01:44 - 2013-07-10 01:44 - 00103140 __RSH C:\cmunjf.exe
2013-07-10 01:44 - 2013-07-10 01:44 - 00103140 __RSH C:\awlgfr.pif
2013-07-10 01:43 - 2013-07-10 01:43 - 00103140 __RSH C:\vuqls.exe
2013-07-10 01:43 - 2013-07-10 01:43 - 00103140 __RSH C:\aouqeg.pif
2013-07-10 01:42 - 2013-07-10 01:42 - 00103140 __RSH C:\qsgnpy.exe
2013-07-10 01:42 - 2013-07-10 01:42 - 00103140 __RSH C:\kpbne.exe
2013-07-10 01:41 - 2013-07-10 01:41 - 00103140 __RSH C:\qewc.pif
2013-07-10 01:41 - 2013-07-10 01:41 - 00103140 __RSH C:\gybok.exe
2013-07-10 01:40 - 2013-07-10 01:40 - 00103140 __RSH C:\xjrxc.exe
2013-07-10 01:40 - 2013-07-10 01:40 - 00103140 __RSH C:\kmdcvu.pif
2013-07-10 01:40 - 2013-07-10 01:40 - 00103140 __RSH C:\fhxv.pif
2013-07-10 01:39 - 2013-07-10 01:39 - 00103140 __RSH C:\oodsh.pif
2013-07-10 01:39 - 2013-07-10 01:39 - 00103140 __RSH C:\jedc.exe
2013-07-10 01:38 - 2013-07-10 01:38 - 00103140 __RSH C:\lyclnd.exe
2013-07-10 01:38 - 2013-07-10 01:38 - 00103140 __RSH C:\kqlc.exe
2013-07-10 01:37 - 2013-07-10 01:37 - 00103140 __RSH C:\qsci.exe
2013-07-10 01:37 - 2013-07-10 01:37 - 00103140 __RSH C:\lreq.exe
2013-07-10 01:36 - 2013-07-10 01:36 - 00103140 __RSH C:\ljpjdo.exe
2013-07-10 01:36 - 2013-07-10 01:36 - 00103140 __RSH C:\kxqbvv.exe
2013-07-10 01:35 - 2013-07-10 01:35 - 00103140 __RSH C:\svtbuy.exe
2013-07-10 01:35 - 2013-07-10 01:35 - 00103140 __RSH C:\dlxl.exe
2013-07-10 01:35 - 2013-07-10 01:35 - 00103140 __RSH C:\cyirf.pif
2013-07-10 01:34 - 2013-07-10 01:34 - 00103140 __RSH C:\vwbe.exe
2013-07-10 01:34 - 2013-07-10 01:34 - 00103140 __RSH C:\tdftm.pif
2013-07-10 01:33 - 2013-07-10 01:33 - 00103140 __RSH C:\orody.exe
2013-07-10 01:33 - 2013-07-10 01:33 - 00103140 __RSH C:\bbtsr.exe
2013-07-10 01:32 - 2013-07-10 01:32 - 00103140 __RSH C:\vtpdn.pif
2013-07-10 01:32 - 2013-07-10 01:32 - 00103140 __RSH C:\cgbu.exe
2013-07-10 01:31 - 2013-07-10 01:31 - 00103140 __RSH C:\kvdvqy.exe
2013-07-10 01:31 - 2013-07-10 01:31 - 00103140 __RSH C:\knflf.exe
2013-07-10 01:31 - 2013-07-10 01:31 - 00103140 __RSH C:\gorw.pif
2013-07-10 01:30 - 2013-07-10 01:30 - 00103140 __RSH C:\xhtnpe.pif
2013-07-10 01:30 - 2013-07-10 01:30 - 00103140 __RSH C:\dgjjli.exe
2013-07-10 01:29 - 2013-07-10 01:29 - 00103140 __RSH C:\prhdw.pif
2013-07-10 01:29 - 2013-07-10 01:29 - 00103140 __RSH C:\drvg.pif
2013-07-10 01:28 - 2013-07-10 01:28 - 00103140 __RSH C:\ukkdir.pif
2013-07-10 01:28 - 2013-07-10 01:28 - 00103140 __RSH C:\qqvht.exe
2013-07-10 01:27 - 2013-07-10 01:27 - 00103140 __RSH C:\msvtp.exe
2013-07-10 01:27 - 2013-07-10 01:27 - 00103140 __RSH C:\bdjp.exe
2013-07-10 01:26 - 2013-07-10 01:26 - 00103140 __RSH C:\sqyj.exe
2013-07-10 01:26 - 2013-07-10 01:26 - 00103140 __RSH C:\snkl.exe
2013-07-10 01:26 - 2013-07-10 01:26 - 00103140 __RSH C:\dkbgs.exe
2013-07-10 01:25 - 2013-07-10 01:25 - 00103140 __RSH C:\rcxts.pif
2013-07-10 01:25 - 2013-07-10 01:25 - 00103140 __RSH C:\lsbw.pif
2013-07-10 01:24 - 2013-07-10 01:24 - 00103140 __RSH C:\trax.exe
2013-07-10 01:24 - 2013-07-10 01:24 - 00103140 __RSH C:\nvacb.exe
2013-07-10 01:23 - 2013-07-10 01:23 - 00103140 __RSH C:\hpjfrs.exe
2013-07-10 01:23 - 2013-07-10 01:23 - 00103140 __RSH C:\buhmy.exe
2013-07-10 01:22 - 2013-07-10 01:22 - 00103140 __RSH C:\epkp.exe
2013-07-10 01:22 - 2013-07-10 01:22 - 00103140 __RSH C:\alxhb.pif
2013-07-10 01:21 - 2013-07-10 01:21 - 00103140 __RSH C:\xoxq.pif
2013-07-10 01:21 - 2013-07-10 01:21 - 00103140 __RSH C:\huqcmp.pif
2013-07-10 01:21 - 2013-07-10 01:21 - 00103140 __RSH C:\ehkbp.exe
2013-07-10 01:20 - 2013-07-10 01:20 - 00103140 __RSH C:\xqlvix.pif
2013-07-10 01:20 - 2013-07-10 01:20 - 00103140 __RSH C:\okpx.exe
2013-07-10 01:19 - 2013-07-10 01:19 - 00103140 __RSH C:\hjegty.exe
2013-07-10 01:19 - 2013-07-10 01:19 - 00103140 __RSH C:\cssttw.exe
2013-07-10 01:18 - 2013-07-10 01:18 - 00103140 __RSH C:\tkojt.pif
2013-07-10 01:18 - 2013-07-10 01:18 - 00103140 __RSH C:\qsxey.pif
2013-07-10 01:17 - 2013-07-10 01:17 - 00103140 __RSH C:\yiuhnt.pif
2013-07-10 01:17 - 2013-07-10 01:17 - 00103140 __RSH C:\krllr.exe
2013-07-10 01:17 - 2013-07-10 01:17 - 00103140 __RSH C:\dhgoh.pif
2013-07-10 01:16 - 2013-07-10 01:16 - 00103140 __RSH C:\tfroy.exe
2013-07-10 01:16 - 2013-07-10 01:16 - 00103140 __RSH C:\debh.exe
2013-07-10 01:15 - 2013-07-10 01:15 - 00103140 __RSH C:\wrsmft.exe
2013-07-10 01:15 - 2013-07-10 01:15 - 00103140 __RSH C:\okdtn.exe
2013-07-10 01:14 - 2013-07-10 01:14 - 00103140 __RSH C:\pxgxe.pif
2013-07-10 01:14 - 2013-07-10 01:14 - 00103140 __RSH C:\ogisup.exe
2013-07-10 01:13 - 2013-07-10 01:13 - 00103140 __RSH C:\wqxaa.exe
2013-07-10 01:13 - 2013-07-10 01:13 - 00103140 __RSH C:\ckfk.exe
2013-07-10 01:12 - 2013-07-10 01:12 - 00103140 __RSH C:\xwumm.exe
2013-07-10 01:12 - 2013-07-10 01:12 - 00103140 __RSH C:\mqprt.pif
2013-07-10 01:12 - 2013-07-10 01:12 - 00103140 __RSH C:\eekj.pif
2013-07-10 01:11 - 2013-07-10 01:11 - 00103140 __RSH C:\yhmd.pif
2013-07-10 01:11 - 2013-07-10 01:11 - 00103140 __RSH C:\pjmac.exe
2013-07-10 01:10 - 2013-07-10 01:10 - 00103140 __RSH C:\wuso.exe
2013-07-10 01:10 - 2013-07-10 01:10 - 00103140 __RSH C:\qkvswp.pif
2013-07-10 01:09 - 2013-07-10 01:09 - 00103140 __RSH C:\fnerad.pif
2013-07-10 01:09 - 2013-07-10 01:09 - 00103140 __RSH C:\dfhh.pif
2013-07-10 01:08 - 2013-07-10 01:08 - 00103140 __RSH C:\tmwbk.exe
2013-07-10 01:08 - 2013-07-10 01:08 - 00103140 __RSH C:\quhsnn.exe
2013-07-10 01:08 - 2013-07-10 01:08 - 00103140 __RSH C:\qsqyb.pif
2013-07-10 01:07 - 2013-07-10 01:07 - 00103140 __RSH C:\qxjlo.pif
2013-07-10 01:07 - 2013-07-10 01:07 - 00103140 __RSH C:\aqtbu.pif
2013-07-10 01:06 - 2013-07-10 01:06 - 00103140 __RSH C:\mkfix.exe
2013-07-10 01:06 - 2013-07-10 01:06 - 00103140 __RSH C:\gkksrw.pif
2013-07-10 01:05 - 2013-07-10 01:05 - 00103140 __RSH C:\ieme.pif
2013-07-10 01:05 - 2013-07-10 01:05 - 00103140 __RSH C:\dsowbp.exe
2013-07-10 01:04 - 2013-07-10 01:04 - 00103140 __RSH C:\mukee.exe
2013-07-10 01:04 - 2013-07-10 01:04 - 00103140 __RSH C:\fffdfe.pif
2013-07-10 01:03 - 2013-07-10 01:03 - 00103140 __RSH C:\uqnou.exe
2013-07-10 01:03 - 2013-07-10 01:03 - 00103140 __RSH C:\rosb.exe
2013-07-10 01:03 - 2013-07-10 01:03 - 00103140 __RSH C:\enxlce.exe
2013-07-10 01:02 - 2013-07-10 01:02 - 00103140 __RSH C:\qvojxs.pif
2013-07-10 01:02 - 2013-07-10 01:02 - 00103140 __RSH C:\ohwg.exe
2013-07-10 01:01 - 2013-07-10 01:01 - 00103140 __RSH C:\iwutun.pif
2013-07-10 01:01 - 2013-07-10 01:01 - 00103140 __RSH C:\hxvlf.exe
2013-07-10 01:00 - 2013-07-10 01:00 - 00103140 __RSH C:\gayg.pif
2013-07-10 01:00 - 2013-07-10 01:00 - 00103140 __RSH C:\cvww.pif
2013-07-10 00:59 - 2013-07-10 00:59 - 00103140 __RSH C:\lhoq.exe
2013-07-10 00:59 - 2013-07-10 00:59 - 00103140 __RSH C:\geihca.exe
2013-07-10 00:58 - 2013-07-10 00:58 - 00103140 __RSH C:\yycbq.pif
2013-07-10 00:58 - 2013-07-10 00:58 - 00103140 __RSH C:\rtgywb.pif
2013-07-10 00:58 - 2013-07-10 00:58 - 00103140 __RSH C:\njnh.exe
2013-07-10 00:57 - 2013-07-10 00:57 - 00103140 __RSH C:\owswq.pif
2013-07-10 00:57 - 2013-07-10 00:57 - 00103140 __RSH C:\muai.pif
2013-07-10 00:56 - 2013-07-10 00:56 - 00103140 __RSH C:\oxhu.exe
2013-07-10 00:56 - 2013-07-10 00:56 - 00103140 __RSH C:\odmi.pif
2013-07-10 00:55 - 2013-07-10 00:55 - 00103140 __RSH C:\fihgcl.exe
2013-07-10 00:55 - 2013-07-10 00:55 - 00103140 __RSH C:\dgjx.exe
2013-07-10 00:54 - 2013-07-10 00:54 - 00103140 __RSH C:\qfauay.pif
2013-07-10 00:54 - 2013-07-10 00:54 - 00103140 __RSH C:\hkcr.pif
2013-07-10 00:54 - 2013-07-10 00:54 - 00103140 __RSH C:\bhnpk.exe
2013-07-10 00:53 - 2013-07-10 00:53 - 00103140 __RSH C:\qwolii.exe
2013-07-10 00:53 - 2013-07-10 00:53 - 00103140 __RSH C:\okdva.pif
2013-07-10 00:52 - 2013-07-10 00:52 - 00103140 __RSH C:\plsfwy.pif
2013-07-10 00:52 - 2013-07-10 00:52 - 00103140 __RSH C:\pbrh.exe
2013-07-10 00:51 - 2013-07-10 00:51 - 00103140 __RSH C:\lvtwp.pif
2013-07-10 00:51 - 2013-07-10 00:51 - 00103140 __RSH C:\blrf.pif
2013-07-10 00:50 - 2013-07-10 00:50 - 00103140 __RSH C:\wqiedl.pif
2013-07-10 00:50 - 2013-07-10 00:50 - 00103140 __RSH C:\tgvkl.exe
2013-07-10 00:49 - 2013-07-10 00:49 - 00103140 __RSH C:\pulr.exe
2013-07-10 00:49 - 2013-07-10 00:49 - 00103140 __RSH C:\opas.pif
2013-07-10 00:49 - 2013-07-10 00:49 - 00103140 __RSH C:\iawbhn.pif
2013-07-10 00:48 - 2013-07-10 00:48 - 00103140 __RSH C:\wwucb.exe
2013-07-10 00:48 - 2013-07-10 00:48 - 00103140 __RSH C:\afsu.exe
2013-07-10 00:47 - 2013-07-10 00:47 - 00103140 __RSH C:\rhij.exe
2013-07-10 00:47 - 2013-07-10 00:47 - 00103140 __RSH C:\goqhhg.exe
2013-07-10 00:46 - 2013-07-10 00:46 - 00103140 __RSH C:\mpdtyj.pif
2013-07-10 00:46 - 2013-07-10 00:46 - 00103140 __RSH C:\bchcn.pif
2013-07-10 00:45 - 2013-07-10 00:45 - 00103140 __RSH C:\idtxg.pif
2013-07-10 00:45 - 2013-07-10 00:45 - 00103140 __RSH C:\ibuf.exe
2013-07-10 00:45 - 2013-07-10 00:45 - 00103140 __RSH C:\fqhni.exe
2013-07-10 00:44 - 2013-07-10 00:44 - 00103140 __RSH C:\hyalhc.pif
2013-07-10 00:44 - 2013-07-10 00:44 - 00103140 __RSH C:\bbvhm.exe
2013-07-10 00:43 - 2013-07-10 00:43 - 00103140 __RSH C:\wlrfu.exe
2013-07-10 00:43 - 2013-07-10 00:43 - 00103140 __RSH C:\chhwq.exe
2013-07-10 00:42 - 2013-07-10 00:42 - 00103140 __RSH C:\sxrc.pif
2013-07-10 00:42 - 2013-07-10 00:42 - 00103140 __RSH C:\evoifn.exe
2013-07-10 00:41 - 2013-07-10 00:41 - 00103140 __RSH C:\nhidlw.pif
2013-07-10 00:41 - 2013-07-10 00:41 - 00103140 __RSH C:\fhclr.pif
2013-07-10 00:40 - 2013-07-10 00:40 - 00103140 __RSH C:\ucspc.exe
2013-07-10 00:40 - 2013-07-10 00:40 - 00103140 __RSH C:\pxxgf.pif
2013-07-10 00:40 - 2013-07-10 00:40 - 00103140 __RSH C:\jhub.pif
2013-07-10 00:39 - 2013-07-10 00:39 - 00103140 __RSH C:\pwin.pif
2013-07-10 00:39 - 2013-07-10 00:39 - 00103140 __RSH C:\mwcr.pif
2013-07-10 00:38 - 2013-07-10 00:38 - 00103140 __RSH C:\xwxsfo.pif
2013-07-10 00:38 - 2013-07-10 00:38 - 00103140 __RSH C:\lgpxke.pif
2013-07-10 00:37 - 2013-07-10 00:37 - 00103140 __RSH C:\lqju.pif
2013-07-10 00:37 - 2013-07-10 00:37 - 00103140 __RSH C:\fcdcjq.pif
2013-07-10 00:36 - 2013-07-10 00:36 - 00103140 __RSH C:\vypatl.exe
2013-07-10 00:36 - 2013-07-10 00:36 - 00103140 __RSH C:\qjqo.exe
2013-07-10 00:36 - 2013-07-10 00:36 - 00103140 __RSH C:\hcyb.pif
2013-07-10 00:35 - 2013-07-10 00:35 - 00103140 __RSH C:\tsyu.pif
2013-07-10 00:35 - 2013-07-10 00:35 - 00103140 __RSH C:\icfu.pif
2013-07-10 00:34 - 2013-07-10 00:34 - 00103140 __RSH C:\rhfl.pif
2013-07-10 00:34 - 2013-07-10 00:34 - 00103140 __RSH C:\fwous.pif
2013-07-10 00:33 - 2013-07-10 00:33 - 00103140 __RSH C:\wpsec.exe
2013-07-10 00:33 - 2013-07-10 00:33 - 00103140 __RSH C:\sxqj.exe
2013-07-10 00:32 - 2013-07-10 00:32 - 00103140 __RSH C:\hwymla.exe
2013-07-10 00:32 - 2013-07-10 00:32 - 00103140 __RSH C:\cyijf.exe
2013-07-10 00:31 - 2013-07-10 00:31 - 00103140 __RSH C:\lufy.exe
2013-07-10 00:31 - 2013-07-10 00:31 - 00103140 __RSH C:\icktg.pif
2013-07-10 00:31 - 2013-07-10 00:31 - 00103140 __RSH C:\ahofg.pif
2013-07-10 00:30 - 2013-07-10 00:30 - 00103140 __RSH C:\xdnnrx.pif
2013-07-10 00:30 - 2013-07-10 00:30 - 00103140 __RSH C:\tomy.exe
2013-07-10 00:29 - 2013-07-10 00:29 - 00103140 __RSH C:\yrsska.exe
2013-07-10 00:29 - 2013-07-10 00:29 - 00103140 __RSH C:\qkdcof.exe
2013-07-10 00:28 - 2013-07-10 00:28 - 00103140 __RSH C:\heuty.exe
2013-07-10 00:28 - 2013-07-10 00:28 - 00103140 __RSH C:\fgrsn.pif
2013-07-10 00:27 - 2013-07-10 00:27 - 00103140 __RSH C:\vdpigq.exe
2013-07-10 00:27 - 2013-07-10 00:27 - 00103140 __RSH C:\oxqny.exe
2013-07-10 00:27 - 2013-07-10 00:27 - 00103140 __RSH C:\dcifjo.pif
2013-07-10 00:26 - 2013-07-10 00:26 - 00103140 __RSH C:\rxmf.pif
2013-07-10 00:26 - 2013-07-10 00:26 - 00103140 __RSH C:\fcpc.pif
2013-07-10 00:25 - 2013-07-10 00:25 - 00103140 __RSH C:\vdidcm.exe
2013-07-10 00:25 - 2013-07-10 00:25 - 00103140 __RSH C:\kidi.exe
2013-07-10 00:24 - 2013-07-10 00:24 - 00103140 __RSH C:\pdola.pif
2013-07-10 00:24 - 2013-07-10 00:24 - 00103140 __RSH C:\ohbi.pif
2013-07-10 00:23 - 2013-07-10 00:23 - 00103140 __RSH C:\lqetqf.pif
2013-07-10 00:23 - 2013-07-10 00:23 - 00103140 __RSH C:\fhghw.exe
2013-07-10 00:22 - 2013-07-10 00:22 - 00103140 __RSH C:\vtwye.exe
2013-07-10 00:22 - 2013-07-10 00:22 - 00103140 __RSH C:\jcjitr.exe
2013-07-10 00:22 - 2013-07-10 00:22 - 00103140 __RSH C:\delf.pif
2013-07-10 00:21 - 2013-07-10 00:21 - 00103140 __RSH C:\qiyq.pif
2013-07-10 00:21 - 2013-07-10 00:21 - 00103140 __RSH C:\kneepf.pif
2013-07-10 00:20 - 2013-07-10 00:20 - 00103140 __RSH C:\smquul.pif
2013-07-10 00:20 - 2013-07-10 00:20 - 00103140 __RSH C:\cnaxd.exe
2013-07-10 00:19 - 2013-07-10 00:19 - 00103140 __RSH C:\shcyum.exe
2013-07-10 00:19 - 2013-07-10 00:19 - 00103140 __RSH C:\ivuyml.exe
2013-07-10 00:18 - 2013-07-10 00:18 - 00103140 __RSH C:\xvvhi.exe
2013-07-10 00:18 - 2013-07-10 00:18 - 00103140 __RSH C:\nljofr.pif
2013-07-10 00:18 - 2013-07-10 00:18 - 00103140 __RSH C:\frwvk.pif
2013-07-10 00:17 - 2013-07-10 00:17 - 00103140 __RSH C:\mkipj.exe
2013-07-10 00:17 - 2013-07-10 00:17 - 00103140 __RSH C:\jdjl.pif
2013-07-10 00:16 - 2013-07-10 00:16 - 00103140 __RSH C:\ddkab.pif
2013-07-10 00:16 - 2013-07-10 00:16 - 00103140 __RSH C:\atquh.exe
2013-07-10 00:15 - 2013-07-10 00:15 - 00103140 __RSH C:\sgotxv.exe
2013-07-10 00:15 - 2013-07-10 00:15 - 00103140 __RSH C:\cdojd.exe
2013-07-10 00:14 - 2013-07-10 00:14 - 00103140 __RSH C:\ixtnjs.pif
2013-07-10 00:14 - 2013-07-10 00:14 - 00103140 __RSH C:\bdaf.exe
2013-07-10 00:13 - 2013-07-10 00:13 - 00103140 __RSH C:\tnnnib.exe
2013-07-10 00:13 - 2013-07-10 00:13 - 00103140 __RSH C:\mrutbn.pif
2013-07-10 00:13 - 2013-07-10 00:13 - 00103140 __RSH C:\moukpr.pif
2013-07-10 00:12 - 2013-07-10 00:12 - 00103140 __RSH C:\lrglx.pif
2013-07-10 00:12 - 2013-07-10 00:12 - 00103140 __RSH C:\eabjkm.pif
2013-07-10 00:11 - 2013-07-10 00:11 - 00103140 __RSH C:\rudori.pif
2013-07-10 00:11 - 2013-07-10 00:11 - 00103140 __RSH C:\mkeqo.exe
2013-07-10 00:10 - 2013-07-10 00:10 - 00103140 __RSH C:\visv.exe
2013-07-10 00:10 - 2013-07-10 00:10 - 00103140 __RSH C:\boyp.pif
2013-07-10 00:09 - 2013-07-10 00:09 - 00103140 __RSH C:\ucbi.exe
2013-07-10 00:09 - 2013-07-10 00:09 - 00103140 __RSH C:\jxmo.pif
2013-07-10 00:08 - 2013-07-10 00:08 - 00103140 __RSH C:\xgaxd.pif
2013-07-10 00:08 - 2013-07-10 00:08 - 00103140 __RSH C:\vwpuhy.pif
2013-07-10 00:08 - 2013-07-10 00:08 - 00103140 __RSH C:\kxhyqy.exe
2013-07-10 00:07 - 2013-07-10 00:07 - 00103140 __RSH C:\vxpm.exe
2013-07-10 00:07 - 2013-07-10 00:07 - 00103140 __RSH C:\uegs.pif
2013-07-10 00:06 - 2013-07-10 00:06 - 00103140 __RSH C:\yykxyp.exe
2013-07-10 00:06 - 2013-07-10 00:06 - 00103140 __RSH C:\qjwfxr.exe
2013-07-10 00:05 - 2013-07-10 00:05 - 00103140 __RSH C:\pfvdnr.exe
2013-07-10 00:05 - 2013-07-10 00:05 - 00103140 __RSH C:\humkr.exe
2013-07-10 00:04 - 2013-07-10 00:04 - 00103140 __RSH C:\lovwn.exe
2013-07-10 00:04 - 2013-07-10 00:04 - 00103140 __RSH C:\jekm.pif
2013-07-10 00:04 - 2013-07-10 00:04 - 00103140 __RSH C:\cydwbe.pif
2013-07-10 00:03 - 2013-07-10 00:03 - 00103140 __RSH C:\vprmuv.pif
2013-07-10 00:03 - 2013-07-10 00:03 - 00103140 __RSH C:\riwug.exe
2013-07-10 00:02 - 2013-07-10 00:02 - 00103140 __RSH C:\qcjrg.exe
2013-07-10 00:02 - 2013-07-10 00:02 - 00103140 __RSH C:\lblcb.exe
2013-07-10 00:01 - 2013-07-10 00:01 - 00103140 __RSH C:\jmesj.exe
2013-07-10 00:01 - 2013-07-10 00:01 - 00103140 __RSH C:\cdwu.exe
2013-07-10 00:00 - 2013-07-10 00:00 - 00103140 __RSH C:\xcmla.pif
2013-07-10 00:00 - 2013-07-10 00:00 - 00103140 __RSH C:\nmpwg.exe
2013-07-09 23:59 - 2013-07-09 23:59 - 00103140 __RSH C:\smcta.exe
2013-07-09 23:59 - 2013-07-09 23:59 - 00103140 __RSH C:\rqlgr.pif
2013-07-09 23:59 - 2013-07-09 23:59 - 00103140 __RSH C:\pbom.pif
2013-07-09 23:58 - 2013-07-09 23:58 - 00103140 __RSH C:\qnjexr.exe
2013-07-09 23:58 - 2013-07-09 23:58 - 00103140 __RSH C:\mtfut.exe
2013-07-09 23:57 - 2013-07-09 23:57 - 00103140 __RSH C:\otgn.exe
2013-07-09 23:57 - 2013-07-09 23:57 - 00103140 __RSH C:\myksca.exe
2013-07-09 23:56 - 2013-07-09 23:56 - 00103140 __RSH C:\jxqgu.exe
2013-07-09 23:56 - 2013-07-09 23:56 - 00103140 __RSH C:\bxwq.exe
2013-07-09 23:55 - 2013-07-09 23:55 - 00103140 __RSH C:\yfnr.exe
2013-07-09 23:55 - 2013-07-09 23:55 - 00103140 __RSH C:\sxsxg.exe
2013-07-09 23:55 - 2013-07-09 23:55 - 00103140 __RSH C:\cldc.pif
2013-07-09 23:54 - 2013-07-09 23:54 - 00103140 __RSH C:\cqkhu.exe
2013-07-09 23:54 - 2013-07-09 23:54 - 00103140 __RSH C:\axnpe.exe
2013-07-09 23:53 - 2013-07-09 23:53 - 00103140 __RSH C:\mgbud.exe
2013-07-09 23:53 - 2013-07-09 23:53 - 00103140 __RSH C:\ilqkma.exe
2013-07-09 23:52 - 2013-07-09 23:52 - 00103140 __RSH C:\xhmm.pif
2013-07-09 23:52 - 2013-07-09 23:52 - 00103140 __RSH C:\pwqeol.exe
2013-07-09 23:51 - 2013-07-09 23:51 - 00103140 __RSH C:\qlmw.pif
2013-07-09 23:51 - 2013-07-09 23:51 - 00103140 __RSH C:\pcrt.exe
2013-07-09 23:50 - 2013-07-09 23:50 - 00103140 __RSH C:\wivwfa.pif
2013-07-09 23:50 - 2013-07-09 23:50 - 00103140 __RSH C:\ukpiw.exe
2013-07-09 23:50 - 2013-07-09 23:50 - 00103140 __RSH C:\bhndt.exe
2013-07-09 23:49 - 2013-07-09 23:49 - 00103140 __RSH C:\rmrsgh.exe
2013-07-09 23:49 - 2013-07-09 23:49 - 00103140 __RSH C:\owwagt.exe
2013-07-09 23:48 - 2013-07-09 23:48 - 00103140 __RSH C:\tqer.exe
2013-07-09 23:48 - 2013-07-09 23:48 - 00103140 __RSH C:\jjgvm.pif
2013-07-09 23:47 - 2013-07-09 23:47 - 00103140 __RSH C:\vluuu.pif
2013-07-09 23:47 - 2013-07-09 23:47 - 00103140 __RSH C:\lsimek.exe
2013-07-09 23:46 - 2013-07-09 23:46 - 00103140 __RSH C:\jbkc.pif
2013-07-09 23:46 - 2013-07-09 23:46 - 00103140 __RSH C:\fwpvn.exe
2013-07-09 23:46 - 2013-07-09 23:46 - 00103140 __RSH C:\bjao.pif
2013-07-09 23:45 - 2013-07-09 23:45 - 00103140 __RSH C:\yvohxu.pif
2013-07-09 23:45 - 2013-07-09 23:45 - 00103140 __RSH C:\jvlydr.pif
2013-07-09 23:44 - 2013-07-09 23:44 - 00103140 __RSH C:\lsxw.exe
2013-07-09 23:44 - 2013-07-09 23:44 - 00103140 __RSH C:\dyqr.exe
2013-07-09 23:43 - 2013-07-09 23:43 - 00103140 __RSH C:\saae.exe
2013-07-09 23:43 - 2013-07-09 23:43 - 00103140 __RSH C:\mrasi.exe
2013-07-09 23:42 - 2013-07-09 23:42 - 00103140 __RSH C:\bwihq.exe
2013-07-09 23:42 - 2013-07-09 23:42 - 00103140 __RSH C:\buucgr.exe
2013-07-09 23:41 - 2013-07-09 23:41 - 00103140 __RSH C:\plvbt.exe
2013-07-09 23:41 - 2013-07-09 23:41 - 00103140 __RSH C:\jsbpi.pif
2013-07-09 23:41 - 2013-07-09 23:41 - 00103140 __RSH C:\fsdhl.exe
2013-07-09 23:40 - 2013-07-09 23:40 - 00103140 __RSH C:\ptpb.pif
2013-07-09 23:40 - 2013-07-09 23:40 - 00103140 __RSH C:\aqyb.pif
2013-07-09 23:39 - 2013-07-09 23:39 - 00103140 __RSH C:\klbarv.exe
2013-07-09 23:39 - 2013-07-09 23:39 - 00103140 __RSH C:\hympc.exe
2013-07-09 23:38 - 2013-07-09 23:38 - 00103140 __RSH C:\qdat.pif
2013-07-09 23:38 - 2013-07-09 23:38 - 00103140 __RSH C:\pdapy.exe
2013-07-09 23:37 - 2013-07-09 23:37 - 00103140 __RSH C:\mjbr.exe
2013-07-09 23:37 - 2013-07-09 23:37 - 00103140 __RSH C:\jpxob.exe
2013-07-09 23:37 - 2013-07-09 23:37 - 00103140 __RSH C:\bjkfr.exe
2013-07-09 23:36 - 2013-07-09 23:36 - 00103140 __RSH C:\vkcaya.pif
2013-07-09 23:36 - 2013-07-09 23:36 - 00103140 __RSH C:\bvil.pif
2013-07-09 23:35 - 2013-07-09 23:35 - 00103140 __RSH C:\tycwde.pif
2013-07-09 23:35 - 2013-07-09 23:35 - 00103140 __RSH C:\adpjgq.exe
2013-07-09 23:34 - 2013-07-09 23:34 - 00103140 __RSH C:\tihvil.pif
2013-07-09 23:34 - 2013-07-09 23:34 - 00103140 __RSH C:\kvgij.exe
2013-07-09 23:33 - 2013-07-09 23:33 - 00103140 __RSH C:\vmdpxc.pif
2013-07-09 23:33 - 2013-07-09 23:33 - 00103140 __RSH C:\khku.pif
2013-07-09 23:32 - 2013-07-09 23:32 - 00103140 __RSH C:\qmmgyu.exe
2013-07-09 23:32 - 2013-07-09 23:32 - 00103140 __RSH C:\prmr.pif
2013-07-09 23:32 - 2013-07-09 23:32 - 00103140 __RSH C:\etjuho.pif
2013-07-09 23:31 - 2013-07-09 23:31 - 00103140 __RSH C:\qeeom.pif
2013-07-09 23:31 - 2013-07-09 23:31 - 00103140 __RSH C:\kwunv.exe
2013-07-09 23:30 - 2013-07-09 23:30 - 00103140 __RSH C:\iimild.exe
2013-07-09 23:30 - 2013-07-09 23:30 - 00103140 __RSH C:\cers.exe
2013-07-09 23:29 - 2013-07-09 23:29 - 00103140 __RSH C:\lnwhv.pif
2013-07-09 23:29 - 2013-07-09 23:29 - 00103140 __RSH C:\jqmvj.pif
2013-07-09 23:28 - 2013-07-09 23:28 - 00103140 __RSH C:\oufltg.exe
2013-07-09 23:28 - 2013-07-09 23:28 - 00103140 __RSH C:\gsow.pif
2013-07-09 23:28 - 2013-07-09 23:28 - 00103140 __RSH C:\grhjhr.pif
2013-07-09 23:27 - 2013-07-09 23:27 - 00103140 __RSH C:\qhhc.pif
2013-07-09 23:27 - 2013-07-09 23:27 - 00103140 __RSH C:\globba.exe
2013-07-09 23:26 - 2013-07-09 23:26 - 00103140 __RSH C:\lnuc.pif
2013-07-09 23:26 - 2013-07-09 23:26 - 00103140 __RSH C:\bayjef.pif
2013-07-09 23:25 - 2013-07-09 23:25 - 00103140 __RSH C:\oavh.pif
2013-07-09 23:25 - 2013-07-09 23:25 - 00103140 __RSH C:\eagxdh.pif
2013-07-09 23:24 - 2013-07-09 23:24 - 00103140 __RSH C:\povn.pif
2013-07-09 23:24 - 2013-07-09 23:24 - 00103140 __RSH C:\oqtw.pif
2013-07-09 23:23 - 2013-07-09 23:23 - 00103140 __RSH C:\wffmh.exe
2013-07-09 23:23 - 2013-07-09 23:23 - 00103140 __RSH C:\uhitwc.pif
2013-07-09 23:23 - 2013-07-09 23:23 - 00103140 __RSH C:\ojmr.exe
2013-07-09 23:22 - 2013-07-09 23:22 - 00103140 __RSH C:\oomung.pif
2013-07-09 23:22 - 2013-07-09 23:22 - 00103140 __RSH C:\kfdor.exe
2013-07-09 23:21 - 2013-07-09 23:21 - 00103140 __RSH C:\kusdh.exe
2013-07-09 23:21 - 2013-07-09 23:21 - 00103140 __RSH C:\glrnx.exe
2013-07-09 23:20 - 2013-07-09 23:20 - 00103140 __RSH C:\pshwn.exe
2013-07-09 23:20 - 2013-07-09 23:20 - 00103140 __RSH C:\boeuy.pif
2013-07-09 23:19 - 2013-07-09 23:19 - 00103140 __RSH C:\tcmo.exe
2013-07-09 23:19 - 2013-07-09 23:19 - 00103140 __RSH C:\dbet.exe
2013-07-09 23:18 - 2013-07-09 23:18 - 00103140 __RSH C:\vuasv.exe
2013-07-09 23:18 - 2013-07-09 23:18 - 00103140 __RSH C:\pfdh.exe
2013-07-09 23:18 - 2013-07-09 23:18 - 00103140 __RSH C:\ecsxf.pif
2013-07-09 23:17 - 2013-07-09 23:17 - 00103140 __RSH C:\ocebq.exe
2013-07-09 23:17 - 2013-07-09 23:17 - 00103140 __RSH C:\albv.pif
2013-07-09 23:16 - 2013-07-09 23:16 - 00103140 __RSH C:\vfetq.exe
2013-07-09 23:16 - 2013-07-09 23:16 - 00103140 __RSH C:\mufl.exe
2013-07-09 23:15 - 2013-07-09 23:15 - 00103140 __RSH C:\gnxin.exe
2013-07-09 23:15 - 2013-07-09 23:15 - 00103140 __RSH C:\cubx.exe
2013-07-09 23:14 - 2013-07-09 23:14 - 00103140 __RSH C:\xsmh.exe
2013-07-09 23:14 - 2013-07-09 23:14 - 00103140 __RSH C:\rtcvb.exe
2013-07-09 23:14 - 2013-07-09 23:14 - 00103140 __RSH C:\bmtlmb.pif
2013-07-09 23:13 - 2013-07-09 23:13 - 00103140 __RSH C:\sqxop.pif
2013-07-09 23:13 - 2013-07-09 23:13 - 00103140 __RSH C:\qnlp.exe
2013-07-09 23:12 - 2013-07-09 23:12 - 00103140 __RSH C:\hbodr.pif
2013-07-09 23:12 - 2013-07-09 23:12 - 00103140 __RSH C:\focp.exe
2013-07-09 23:11 - 2013-07-09 23:11 - 00103140 __RSH C:\ibymxx.exe
2013-07-09 23:11 - 2013-07-09 23:11 - 00103140 __RSH C:\dfcnkk.exe
2013-07-09 23:10 - 2013-07-09 23:10 - 00103140 __RSH C:\rsly.pif
2013-07-09 23:10 - 2013-07-09 23:10 - 00103140 __RSH C:\lpfi.pif
2013-07-09 23:09 - 2013-07-09 23:09 - 00103140 __RSH C:\whkpqh.exe
2013-07-09 23:09 - 2013-07-09 23:09 - 00103140 __RSH C:\usptmy.pif
2013-07-09 23:09 - 2013-07-09 23:09 - 00103140 __RSH C:\gcrr.pif
2013-07-09 23:08 - 2013-07-09 23:08 - 00103140 __RSH C:\jxvilp.exe
2013-07-09 23:08 - 2013-07-09 23:08 - 00103140 __RSH C:\bislv.pif
2013-07-09 23:07 - 2013-07-09 23:07 - 00103140 __RSH C:\nythko.exe
2013-07-09 23:07 - 2013-07-09 23:07 - 00103140 __RSH C:\jcvqx.exe
2013-07-09 23:06 - 2013-07-09 23:06 - 00103140 __RSH C:\fqchv.exe
2013-07-09 23:06 - 2013-07-09 23:06 - 00103140 __RSH C:\fciiyp.exe
2013-07-09 23:05 - 2013-07-09 23:05 - 00103140 __RSH C:\jvaldn.exe
2013-07-09 23:05 - 2013-07-09 23:05 - 00103140 __RSH C:\bqgo.exe
2013-07-09 23:05 - 2013-07-09 23:05 - 00103140 __RSH C:\amer.exe
2013-07-09 23:04 - 2013-07-09 23:04 - 00103140 __RSH C:\xjlnc.exe
2013-07-09 23:04 - 2013-07-09 23:04 - 00103140 __RSH C:\gtuikh.exe
2013-07-09 23:03 - 2013-07-09 23:03 - 00103140 __RSH C:\yowwmt.pif
2013-07-09 23:03 - 2013-07-09 23:03 - 00103140 __RSH C:\pgwh.pif
2013-07-09 23:02 - 2013-07-09 23:02 - 00103140 __RSH C:\xbbap.exe
2013-07-09 23:02 - 2013-07-09 23:02 - 00103140 __RSH C:\uvmbxo.exe
2013-07-09 23:01 - 2013-07-09 23:01 - 00103140 __RSH C:\isiopq.exe
2013-07-09 23:01 - 2013-07-09 23:01 - 00103140 __RSH C:\hgsqpt.exe
2013-07-09 23:00 - 2013-07-09 23:00 - 00103140 __RSH C:\semk.exe
2013-07-09 23:00 - 2013-07-09 23:00 - 00103140 __RSH C:\jwyqh.pif
2013-07-09 23:00 - 2013-07-09 23:00 - 00103140 __RSH C:\hywx.pif
2013-07-09 22:59 - 2013-07-09 22:59 - 00103140 __RSH C:\xucuoh.exe
2013-07-09 22:59 - 2013-07-09 22:59 - 00103140 __RSH C:\wlahib.pif
2013-07-09 22:58 - 2013-07-09 22:58 - 00103140 __RSH C:\sbjld.pif
2013-07-09 22:58 - 2013-07-09 22:58 - 00103140 __RSH C:\agfwma.pif
2013-07-09 22:57 - 2013-07-09 22:57 - 00103140 __RSH C:\vmfc.exe
2013-07-09 22:57 - 2013-07-09 22:57 - 00103140 __RSH C:\lojbvv.pif
2013-07-09 22:56 - 2013-07-09 22:56 - 00103140 __RSH C:\hmdyeh.pif
2013-07-09 22:56 - 2013-07-09 22:56 - 00103140 __RSH C:\fiynhq.exe
2013-07-09 22:56 - 2013-07-09 22:56 - 00103140 __RSH C:\alfj.exe
2013-07-09 22:55 - 2013-07-09 22:55 - 00103140 __RSH C:\pyyq.pif
2013-07-09 22:55 - 2013-07-09 22:55 - 00103140 __RSH C:\lboo.exe
2013-07-09 22:54 - 2013-07-09 22:54 - 00103140 __RSH C:\pwfik.pif
2013-07-09 22:54 - 2013-07-09 22:54 - 00103140 __RSH C:\ecjxr.pif
2013-07-09 22:53 - 2013-07-09 22:53 - 00103140 __RSH C:\stqaux.exe
2013-07-09 22:53 - 2013-07-09 22:53 - 00103140 __RSH C:\fiupx.pif
2013-07-09 22:52 - 2013-07-09 22:52 - 00103140 __RSH C:\vion.pif
2013-07-09 22:52 - 2013-07-09 22:52 - 00103140 __RSH C:\cwtw.pif
2013-07-09 22:51 - 2013-07-09 22:51 - 00103140 __RSH C:\xrweq.exe
2013-07-09 22:51 - 2013-07-09 22:51 - 00103140 __RSH C:\kwtkf.exe
2013-07-09 22:51 - 2013-07-09 22:51 - 00103140 __RSH C:\faanbr.pif
2013-07-09 22:50 - 2013-07-09 22:50 - 00103140 __RSH C:\cbpb.exe
2013-07-09 22:50 - 2013-07-09 22:50 - 00103140 __RSH C:\aadjb.pif
2013-07-09 22:49 - 2013-07-09 22:49 - 00103140 __RSH C:\uoniw.exe
2013-07-09 22:49 - 2013-07-09 22:49 - 00103140 __RSH C:\bxon.pif
2013-07-09 22:48 - 2013-07-09 22:48 - 00103140 __RSH C:\sgdq.exe
2013-07-09 22:48 - 2013-07-09 22:48 - 00103140 __RSH C:\mwdtj.pif
2013-07-09 22:47 - 2013-07-09 22:47 - 00103140 __RSH C:\xqxh.exe
2013-07-09 22:47 - 2013-07-09 22:47 - 00103140 __RSH C:\qesl.pif
2013-07-09 22:47 - 2013-07-09 22:47 - 00103140 __RSH C:\oblbn.pif
2013-07-09 22:46 - 2013-07-09 22:46 - 00103140 __RSH C:\wjrei.exe
2013-07-09 22:46 - 2013-07-09 22:46 - 00103140 __RSH C:\jwvhno.exe
2013-07-09 22:45 - 2013-07-09 22:45 - 00103140 __RSH C:\xiks.pif
2013-07-09 22:45 - 2013-07-09 22:45 - 00103140 __RSH C:\ltyro.exe
2013-07-09 22:44 - 2013-07-09 22:44 - 00103140 __RSH C:\sbfe.exe
2013-07-09 22:44 - 2013-07-09 22:44 - 00103140 __RSH C:\fhoi.pif
2013-07-09 22:43 - 2013-07-09 22:43 - 00103140 __RSH C:\jbiqjh.pif
2013-07-09 22:43 - 2013-07-09 22:43 - 00103140 __RSH C:\esuw.pif
2013-07-09 22:42 - 2013-07-09 22:42 - 00103140 __RSH C:\regqj.pif
2013-07-09 22:42 - 2013-07-09 22:42 - 00103140 __RSH C:\mqdwkd.exe
2013-07-09 22:42 - 2013-07-09 22:42 - 00103140 __RSH C:\elenyt.exe
2013-07-09 22:41 - 2013-07-09 22:41 - 00103140 __RSH C:\pqegjr.pif
2013-07-09 22:41 - 2013-07-09 22:41 - 00103140 __RSH C:\ensg.exe
2013-07-09 22:40 - 2013-07-09 22:40 - 00103140 __RSH C:\lrpg.exe
2013-07-09 22:40 - 2013-07-09 22:40 - 00103140 __RSH C:\hwhj.exe
2013-07-09 22:39 - 2013-07-09 22:39 - 00103140 __RSH C:\wfmf.pif
2013-07-09 09:19 - 2013-07-09 09:19 - 00000000 ____D C:\Users\Grant\Downloads\Outlook
2013-07-09 09:18 - 2013-07-09 09:18 - 11113988 ____A C:\Users\Grant\Downloads\Outlook.zip
2013-07-07 19:14 - 2013-07-07 19:14 - 00000000 ____D C:\Program Files (x86)\LogMeIn Hamachi
2013-06-28 11:11 - 2013-06-28 11:11 - 00000000 ____D C:\Users\Aleiya\AppData\Local\Apple
2013-06-24 17:35 - 2013-06-24 17:35 - 00000000 ____D C:\Users\Grant\AppData\Local\PopCap Games
2013-06-24 17:35 - 2013-06-24 17:35 - 00000000 ____D C:\ProgramData\PopCap Games
2013-06-24 17:33 - 2013-06-24 17:34 - 87436896 ____A C:\Users\Grant\Downloads\Bejeweled3Setup-en.exe
2013-06-19 19:21 - 2013-06-19 19:22 - 09459883 ____A C:\Users\Aleiya\Downloads\vlc-0.8.6h-win32.exe
2013-06-14 09:36 - 2013-02-11 20:45 - 00159744 ____A C:\Windows\SysWOW64\wkiwuigus.dat
2013-06-14 09:36 - 2012-08-22 09:36 - 00011776 ____A C:\Windows\System32\yiems.exe
2013-06-14 09:36 - 2012-07-09 16:46 - 00120832 ____A C:\Windows\System32\tblltddl.dat
2013-06-14 09:35 - 2013-06-26 06:25 - 00000000 ___HD C:\Program Files (x86)\Dzhnednjrxo
2013-06-14 09:35 - 2012-07-21 23:50 - 00022655 ____A C:\Windows\SysWOW64\mswinaore.dll
2013-06-14 09:35 - 2012-04-28 09:36 - 00120832 ____A C:\Windows\System32\mseLnaern64.dll
2013-06-14 09:35 - 2012-01-02 09:35 - 00172032 ____A ( Copyrighted  ©  ) C:\Windows\SysWOW64\yiemsl.exe
2013-06-14 09:35 - 2011-09-13 09:36 - 00159744 ____A C:\Windows\SysWOW64\mseLnaern.dll
2013-06-14 09:35 - 2005-04-15 19:58 - 01071088 ____A (Microsoft Corporation) C:\Windows\SysWOW64\MSCOMCTL.OCX
2013-06-14 09:35 - 2004-03-09 00:00 - 00212240 ____A (Microsoft Corporation) C:\Windows\SysWOW64\RICHTX32.OCX
2013-06-14 09:35 - 2004-03-09 00:00 - 00124688 ____A (Microsoft Corporation) C:\Windows\SysWOW64\MSWINSCK.OCX
2013-06-14 09:35 - 2004-02-23 00:00 - 00119808 ____A (Microsoft Corporation) C:\Windows\SysWOW64\MSSTDFMT.DLL
2013-06-14 09:35 - 2003-07-06 14:07 - 00372736 ____A (Intel Corporation) C:\Windows\SysWOW64\IJL_11.DLL
2013-06-13 18:56 - 2013-06-13 18:57 - 00000000 ____D C:\Users\Aleiya\AppData\Local\Microsoft Games
2013-06-10 15:37 - 2013-06-10 15:37 - 00292744 ____A (StarApp) C:\Users\Aleiya\Downloads\Cold.Case.S07E17.Flashover.HDTV.XviD-NoTV.avi.exe
 
 

Addition.txt

Link to post
Share on other sites

==================== One Month Modified Files and Folders =======

 

2013-07-10 12:45 - 2012-07-06 11:14 - 00000912 ____A C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job

2013-07-10 12:45 - 2012-07-06 11:14 - 00000908 ____A C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job

2013-07-10 12:44 - 2013-07-10 12:44 - 00103140 __RSH C:\djdja.pif

2013-07-10 12:44 - 2012-09-07 00:15 - 00000000 ____D C:\Users\Grant\AppData\Roaming\Skype

2013-07-10 12:42 - 2013-07-10 12:42 - 00103140 __RSH C:\wbgi.pif

2013-07-10 12:42 - 2012-09-27 18:11 - 00000000 ____D C:\Users\Grant\AppData\Local\LogMeIn Hamachi

2013-07-10 12:42 - 2012-07-06 11:00 - 00000828 ____A C:\Windows\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon.job

2013-07-10 12:42 - 1601-01-02 05:16 - 00138895 ____A C:\Windows\System32\fastboot.set

2013-07-10 12:41 - 2012-09-06 15:34 - 00000928 ____A C:\Windows\Tasks\RockMeltUpdateTaskUserS-1-5-21-462160559-2116912635-3052411980-1000UA.job

2013-07-10 12:41 - 1601-01-02 05:16 - 00000006 ___AH C:\Windows\Tasks\SA.DAT

2013-07-10 12:36 - 2013-07-10 12:36 - 00103140 __RSH C:\tfjq.pif

2013-07-10 12:36 - 2013-07-10 12:36 - 00103140 __RSH C:\ersys.pif

2013-07-10 12:35 - 2013-07-10 12:35 - 00103140 __RSH C:\qqqfo.exe

2013-07-10 12:35 - 2013-07-10 12:35 - 00103140 __RSH C:\benb.exe

2013-07-10 12:35 - 2013-07-10 12:35 - 00000000 ____D C:\FRST

2013-07-10 12:34 - 2013-07-10 12:35 - 01776221 ____A (Farbar) C:\Users\Grant\Desktop\FRST64.exe

2013-07-10 12:34 - 2013-07-10 12:34 - 00103140 __RSH C:\wekunf.pif

2013-07-10 12:34 - 2013-07-10 12:34 - 00103140 __RSH C:\hqtsm.pif

2013-07-10 12:34 - 2012-09-06 16:48 - 00000024 ____A C:\Users\Grant\random.dat

2013-07-10 12:33 - 2013-07-10 12:33 - 00103140 __RSH C:\rsvup.pif

2013-07-10 12:33 - 2013-07-10 12:33 - 00103140 __RSH C:\pgytm.exe

2013-07-10 12:33 - 2013-07-10 12:33 - 00103140 __RSH C:\jutu.exe

2013-07-10 12:32 - 2013-07-10 12:32 - 00103140 __RSH C:\ivut.exe

2013-07-10 12:32 - 2013-07-10 12:32 - 00103140 __RSH C:\hletne.pif

2013-07-10 12:31 - 2013-07-10 12:31 - 00103140 __RSH C:\ocdcnn.exe

2013-07-10 12:31 - 2013-07-10 12:31 - 00103140 __RSH C:\gdee.pif

2013-07-10 12:30 - 2013-07-10 12:30 - 00103140 __RSH C:\stcq.pif

2013-07-10 12:30 - 2013-07-10 12:30 - 00103140 __RSH C:\qowa.exe

2013-07-10 12:29 - 2013-07-10 12:29 - 00103140 __RSH C:\ysho.exe

2013-07-10 12:29 - 2013-07-10 12:29 - 00103140 __RSH C:\mkor.pif

2013-07-10 12:29 - 2013-07-10 12:29 - 00103140 __RSH C:\dbwe.pif

2013-07-10 12:28 - 2013-07-10 12:28 - 00103140 __RSH C:\pbwl.exe

2013-07-10 12:28 - 2013-07-10 12:28 - 00103140 __RSH C:\lffvuq.pif

2013-07-10 12:27 - 2013-07-10 12:27 - 00103140 __RSH C:\yvhc.pif

2013-07-10 12:27 - 2013-07-10 12:27 - 00103140 __RSH C:\ylybqw.pif

2013-07-10 12:26 - 2013-07-10 12:26 - 00103140 __RSH C:\osbis.exe

2013-07-10 12:26 - 2013-07-10 12:26 - 00103140 __RSH C:\gvlrl.exe

2013-07-10 12:25 - 2013-07-10 12:25 - 00103140 __RSH C:\jkknj.pif

2013-07-10 12:25 - 2013-07-10 12:25 - 00103140 __RSH C:\ghpli.exe

2013-07-10 12:24 - 2013-07-10 12:24 - 00103140 __RSH C:\otllk.exe

2013-07-10 12:24 - 2013-07-10 12:24 - 00103140 __RSH C:\imwx.exe

2013-07-10 12:24 - 2013-07-10 12:24 - 00103140 __RSH C:\aved.pif

2013-07-10 12:23 - 2013-07-10 12:23 - 00103140 __RSH C:\jcasv.pif

2013-07-10 12:23 - 2013-07-10 12:23 - 00103140 __RSH C:\hshkl.exe

2013-07-10 12:22 - 2013-07-10 12:22 - 00103140 __RSH C:\slvadh.exe

2013-07-10 12:22 - 2013-07-10 12:22 - 00103140 __RSH C:\auxdvl.pif

2013-07-10 12:21 - 2013-07-10 12:21 - 00103140 __RSH C:\qcmdgs.exe

2013-07-10 12:21 - 2013-07-10 12:21 - 00103140 __RSH C:\olkbqj.pif

2013-07-10 12:20 - 2013-07-10 12:20 - 00103140 __RSH C:\soka.exe

2013-07-10 12:20 - 2013-07-10 12:20 - 00103140 __RSH C:\qptv.pif

2013-07-10 12:19 - 2013-07-10 12:19 - 00103140 __RSH C:\vjkfrn.exe

2013-07-10 12:19 - 2013-07-10 12:19 - 00103140 __RSH C:\fkyxc.exe

2013-07-10 12:19 - 2013-07-10 12:19 - 00103140 __RSH C:\agjove.pif

2013-07-10 12:18 - 2013-07-10 12:18 - 00103140 __RSH C:\pmrb.pif

2013-07-10 12:18 - 2013-07-10 12:18 - 00103140 __RSH C:\eqqm.exe

2013-07-10 12:17 - 2013-07-10 12:17 - 00103140 __RSH C:\tltly.exe

2013-07-10 12:17 - 2013-07-10 12:17 - 00103140 __RSH C:\dtuet.exe

2013-07-10 12:16 - 2013-07-10 12:16 - 00103140 __RSH C:\uujqsy.exe

2013-07-10 12:16 - 2013-07-10 12:16 - 00103140 __RSH C:\ofvuid.exe

2013-07-10 12:15 - 2013-07-10 12:15 - 00103140 __RSH C:\ldch.pif

2013-07-10 12:15 - 2013-07-10 12:15 - 00103140 __RSH C:\klxwd.pif

2013-07-10 12:15 - 2013-07-10 12:15 - 00103140 __RSH C:\erwgm.pif

2013-07-10 12:14 - 2013-07-10 12:14 - 00103140 __RSH C:\qpox.exe

2013-07-10 12:14 - 2013-07-10 12:14 - 00103140 __RSH C:\mbhun.exe

2013-07-10 12:13 - 2013-07-10 12:13 - 00103140 __RSH C:\ghffh.pif

2013-07-10 12:13 - 2013-07-10 12:13 - 00103140 __RSH C:\cmcr.pif

2013-07-10 12:12 - 2013-07-10 12:12 - 00103140 __RSH C:\xejqs.exe

2013-07-10 12:12 - 2013-07-10 12:12 - 00103140 __RSH C:\myul.exe

2013-07-10 12:11 - 2013-07-10 12:11 - 00103140 __RSH C:\vgdq.pif

2013-07-10 12:11 - 2013-07-10 12:11 - 00103140 __RSH C:\orfvw.exe

2013-07-10 12:10 - 2013-07-10 12:10 - 00103140 __RSH C:\wrqoco.pif

2013-07-10 12:10 - 2013-07-10 12:10 - 00103140 __RSH C:\jrfve.exe

2013-07-10 12:10 - 2013-07-10 12:10 - 00103140 __RSH C:\ijrl.pif

2013-07-10 12:09 - 2013-07-10 12:09 - 00103140 __RSH C:\wyamf.exe

2013-07-10 12:09 - 2013-07-10 12:09 - 00103140 __RSH C:\qgrm.exe

2013-07-10 12:08 - 2013-07-10 12:08 - 00103140 __RSH C:\umqe.exe

2013-07-10 12:08 - 2013-07-10 12:08 - 00103140 __RSH C:\jrnvhy.pif

2013-07-10 12:07 - 2013-07-10 12:07 - 00103140 __RSH C:\voxatk.pif

2013-07-10 12:07 - 2013-07-10 12:07 - 00103140 __RSH C:\dcga.pif

2013-07-10 12:06 - 2013-07-10 12:06 - 00103140 __RSH C:\qvsam.exe

2013-07-10 12:06 - 2013-07-10 12:06 - 00103140 __RSH C:\ijieb.pif

2013-07-10 12:06 - 2013-07-10 12:06 - 00103140 __RSH C:\gwuca.exe

2013-07-10 12:05 - 2013-07-10 12:05 - 00103140 __RSH C:\dybte.exe

2013-07-10 12:05 - 2013-07-10 12:05 - 00103140 __RSH C:\ajda.exe

2013-07-10 12:04 - 2013-07-10 12:04 - 00103140 __RSH C:\uwmhrd.pif

2013-07-10 12:04 - 2013-07-10 12:04 - 00103140 __RSH C:\sogmt.pif

2013-07-10 12:03 - 2013-07-10 12:03 - 00103140 __RSH C:\oxpaq.pif

2013-07-10 12:03 - 2013-07-10 12:03 - 00103140 __RSH C:\cuoe.exe

2013-07-10 12:02 - 2013-07-10 12:02 - 00103140 __RSH C:\lfxwr.exe

2013-07-10 12:02 - 2013-07-10 12:02 - 00103140 __RSH C:\gqcjmt.exe

2013-07-10 12:01 - 2013-07-10 12:01 - 00103140 __RSH C:\pvfvra.pif

2013-07-10 12:01 - 2013-07-10 12:01 - 00103140 __RSH C:\mqivfr.pif

2013-07-10 12:01 - 2013-07-10 12:01 - 00103140 __RSH C:\isfbnu.pif

2013-07-10 12:01 - 2012-09-27 18:10 - 00000830 ____A C:\Windows\Tasks\Adobe Flash Player Updater.job

2013-07-10 12:00 - 2013-07-10 12:00 - 00103140 __RSH C:\yksi.exe

2013-07-10 12:00 - 2013-07-10 12:00 - 00103140 __RSH C:\bgjms.exe

2013-07-10 11:59 - 2013-07-10 11:59 - 00103140 __RSH C:\vapqgn.exe

2013-07-10 11:59 - 2013-07-10 11:59 - 00103140 __RSH C:\oqcvcu.exe

2013-07-10 11:58 - 2013-07-10 11:58 - 00103140 __RSH C:\iwgbm.exe

2013-07-10 11:58 - 2013-07-10 11:58 - 00103140 __RSH C:\fuqu.pif

2013-07-10 11:57 - 2013-07-10 11:57 - 00103140 __RSH C:\yptqhn.pif

2013-07-10 11:57 - 2013-07-10 11:57 - 00103140 __RSH C:\pctmb.exe

2013-07-10 11:57 - 2013-07-10 11:57 - 00103140 __RSH C:\olwqs.pif

2013-07-10 11:56 - 2013-07-10 11:56 - 00103140 __RSH C:\pjrb.exe

2013-07-10 11:56 - 2013-07-10 11:56 - 00103140 __RSH C:\ojuej.pif

2013-07-10 11:55 - 2013-07-10 11:55 - 00103140 __RSH C:\vmcyk.pif

2013-07-10 11:55 - 2013-07-10 11:55 - 00103140 __RSH C:\smaf.exe

2013-07-10 11:54 - 2013-07-10 11:54 - 00103140 __RSH C:\tyvm.pif

2013-07-10 11:54 - 2013-07-10 11:54 - 00103140 __RSH C:\oxhb.exe

2013-07-10 11:53 - 2013-07-10 11:53 - 00103140 __RSH C:\stjno.pif

2013-07-10 11:53 - 2013-07-10 11:53 - 00103140 __RSH C:\gqyho.exe

2013-07-10 11:52 - 2013-07-10 11:52 - 00103140 __RSH C:\xmgrcl.pif

2013-07-10 11:52 - 2013-07-10 11:52 - 00103140 __RSH C:\umvqb.pif

2013-07-10 11:52 - 2013-07-10 11:52 - 00103140 __RSH C:\objft.exe

2013-07-10 11:51 - 2013-07-10 11:51 - 00103140 __RSH C:\liqxo.exe

2013-07-10 11:51 - 2013-07-10 11:51 - 00103140 __RSH C:\jxurqn.exe

2013-07-10 11:50 - 2013-07-10 11:50 - 00103140 __RSH C:\kkfr.pif

2013-07-10 11:50 - 2013-07-10 11:50 - 00103140 __RSH C:\bwxe.exe

2013-07-10 11:49 - 2013-07-10 11:49 - 00103140 __RSH C:\ojfb.pif

2013-07-10 11:49 - 2013-07-10 11:49 - 00103140 __RSH C:\oecv.pif

2013-07-10 11:48 - 2013-07-10 11:48 - 00103140 __RSH C:\wtuswg.pif

2013-07-10 11:48 - 2013-07-10 11:48 - 00103140 __RSH C:\egra.exe

2013-07-10 11:48 - 2013-07-10 11:48 - 00103140 __RSH C:\ahiex.pif

2013-07-10 11:47 - 2013-07-10 11:47 - 00103140 __RSH C:\snvf.exe

2013-07-10 11:47 - 2013-07-10 11:47 - 00103140 __RSH C:\bvkan.pif

2013-07-10 11:46 - 2013-07-10 11:46 - 00103140 __RSH C:\lhlfgh.pif

2013-07-10 11:46 - 2013-07-10 11:46 - 00103140 __RSH C:\gpti.pif

2013-07-10 11:45 - 2013-07-10 11:45 - 00103140 __RSH C:\yvtgay.exe

2013-07-10 11:45 - 2013-07-10 11:45 - 00103140 __RSH C:\vstx.exe

2013-07-10 11:44 - 2013-07-10 11:44 - 00103140 __RSH C:\yxchal.exe

2013-07-10 11:44 - 2013-07-10 11:44 - 00103140 __RSH C:\qpil.exe

2013-07-10 11:43 - 2013-07-10 11:43 - 00103140 __RSH C:\wjwtwt.exe

2013-07-10 11:43 - 2013-07-10 11:43 - 00103140 __RSH C:\iqelei.exe

2013-07-10 11:43 - 2013-07-10 11:43 - 00103140 __RSH C:\evgwko.exe

2013-07-10 11:42 - 2013-07-10 11:42 - 00103140 __RSH C:\tkvv.exe

2013-07-10 11:42 - 2013-07-10 11:42 - 00103140 __RSH C:\rpcxec.exe

2013-07-10 11:41 - 2013-07-10 11:41 - 00103140 __RSH C:\pihj.exe

2013-07-10 11:41 - 2013-07-10 11:41 - 00103140 __RSH C:\dppc.pif

2013-07-10 11:40 - 2013-07-10 11:40 - 00103140 __RSH C:\ysel.exe

2013-07-10 11:40 - 2013-07-10 11:40 - 00103140 __RSH C:\sossth.pif

2013-07-10 11:39 - 2013-07-10 11:39 - 00103140 __RSH C:\xsfhsm.pif

2013-07-10 11:39 - 2013-07-10 11:39 - 00103140 __RSH C:\wsug.exe

2013-07-10 11:38 - 2013-07-10 11:38 - 00103140 __RSH C:\vokaw.exe

2013-07-10 11:38 - 2013-07-10 11:38 - 00103140 __RSH C:\umcp.exe

2013-07-10 11:38 - 2013-07-10 11:38 - 00103140 __RSH C:\eivx.pif

2013-07-10 11:37 - 2013-07-10 11:37 - 00103140 __RSH C:\olfoj.pif

2013-07-10 11:37 - 2013-07-10 11:37 - 00103140 __RSH C:\geidcf.pif

2013-07-10 11:36 - 2013-07-10 11:36 - 00103140 __RSH C:\phskay.exe

2013-07-10 11:36 - 2013-07-10 11:36 - 00103140 __RSH C:\nvuj.exe

2013-07-10 11:35 - 2013-07-10 11:35 - 00103140 __RSH C:\ifnlv.pif

2013-07-10 11:35 - 2013-07-10 11:35 - 00103140 __RSH C:\fywdwg.pif

2013-07-10 11:34 - 2013-07-10 11:34 - 00103140 __RSH C:\oiocbw.exe

2013-07-10 11:34 - 2013-07-10 11:34 - 00103140 __RSH C:\fsfvwe.pif

2013-07-10 11:34 - 2013-07-10 11:34 - 00103140 __RSH C:\ejia.exe

2013-07-10 11:33 - 2013-07-10 11:33 - 00103140 __RSH C:\tylrp.pif

2013-07-10 11:33 - 2013-07-10 11:33 - 00103140 __RSH C:\otra.pif

2013-07-10 11:32 - 2013-07-10 11:32 - 00103140 __RSH C:\snnkwb.pif

2013-07-10 11:32 - 2013-07-10 11:32 - 00103140 __RSH C:\ccqei.exe

2013-07-10 11:31 - 2013-07-10 11:31 - 00103140 __RSH C:\sxiibj.pif

2013-07-10 11:31 - 2013-07-10 11:31 - 00103140 __RSH C:\ratgr.pif

2013-07-10 11:30 - 2013-07-10 11:30 - 00103140 __RSH C:\slup.exe

2013-07-10 11:30 - 2013-07-10 11:30 - 00103140 __RSH C:\lgly.exe

2013-07-10 11:29 - 2013-07-10 11:29 - 00103140 __RSH C:\vrhmq.exe

2013-07-10 11:29 - 2013-07-10 11:29 - 00103140 __RSH C:\rboeoo.exe

2013-07-10 11:29 - 2013-07-10 11:29 - 00103140 __RSH C:\cimhqp.pif

2013-07-10 11:28 - 2013-07-10 11:28 - 00103140 __RSH C:\qiqyr.pif

2013-07-10 11:28 - 2013-07-10 11:28 - 00103140 __RSH C:\axihqd.pif

2013-07-10 11:27 - 2013-07-10 11:27 - 00103140 __RSH C:\xhowe.exe

2013-07-10 11:27 - 2013-07-10 11:27 - 00103140 __RSH C:\kmybxf.exe

2013-07-10 11:26 - 2013-07-10 11:26 - 00103140 __RSH C:\obmdx.exe

2013-07-10 11:26 - 2013-07-10 11:26 - 00103140 __RSH C:\ergylj.pif

2013-07-10 11:25 - 2013-07-10 11:25 - 00103140 __RSH C:\lkrvfp.exe

2013-07-10 11:25 - 2013-07-10 11:25 - 00103140 __RSH C:\hacoq.pif

2013-07-10 11:25 - 2013-07-10 11:25 - 00103140 __RSH C:\eodcd.pif

2013-07-10 11:24 - 2013-07-10 11:24 - 00103140 __RSH C:\ypwej.pif

2013-07-10 11:24 - 2013-07-10 11:24 - 00103140 __RSH C:\gqjph.exe

2013-07-10 11:23 - 2013-07-10 11:23 - 00103140 __RSH C:\qylmvc.exe

2013-07-10 11:23 - 2013-07-10 11:23 - 00103140 __RSH C:\ddseqo.pif

2013-07-10 11:22 - 2013-07-10 11:22 - 00103140 __RSH C:\eurtaw.pif

2013-07-10 11:22 - 2013-07-10 11:22 - 00103140 __RSH C:\bwxu.pif

2013-07-10 11:21 - 2013-07-10 11:21 - 00103140 __RSH C:\tklfw.exe

2013-07-10 11:21 - 2013-07-10 11:21 - 00103140 __RSH C:\lwyo.exe

2013-07-10 11:20 - 2013-07-10 11:20 - 00103140 __RSH C:\jaosv.exe

2013-07-10 11:20 - 2013-07-10 11:20 - 00103140 __RSH C:\ewmk.pif

2013-07-10 11:20 - 2013-07-10 11:20 - 00103140 __RSH C:\akupn.exe

2013-07-10 11:19 - 2013-07-10 11:19 - 00103140 __RSH C:\qgblcm.exe

2013-07-10 11:19 - 2013-07-10 11:19 - 00103140 __RSH C:\ppafjj.pif

2013-07-10 11:18 - 2013-07-10 11:18 - 00103140 __RSH C:\uihob.pif

2013-07-10 11:18 - 2013-07-10 11:18 - 00103140 __RSH C:\tfdsdm.pif

2013-07-10 11:17 - 2013-07-10 11:17 - 00103140 __RSH C:\vmruv.pif

2013-07-10 11:17 - 2013-07-10 11:17 - 00103140 __RSH C:\rsyks.pif

2013-07-10 11:16 - 2013-07-10 11:16 - 00103140 __RSH C:\uqnu.pif

2013-07-10 11:16 - 2013-07-10 11:16 - 00103140 __RSH C:\sahvol.exe

2013-07-10 11:16 - 2013-07-10 11:16 - 00103140 __RSH C:\ipag.exe

2013-07-10 11:15 - 2013-07-10 11:15 - 00103140 __RSH C:\yfjwti.pif

2013-07-10 11:15 - 2013-07-10 11:15 - 00103140 __RSH C:\jhav.exe

2013-07-10 11:14 - 2013-07-10 11:14 - 00103140 __RSH C:\myawn.exe

2013-07-10 11:14 - 2013-07-10 11:14 - 00103140 __RSH C:\cbbgm.pif

2013-07-10 11:13 - 2013-07-10 11:13 - 00103140 __RSH C:\qtotot.exe

2013-07-10 11:13 - 2013-07-10 11:13 - 00103140 __RSH C:\jgflnd.pif

2013-07-10 11:12 - 2013-07-10 11:12 - 00103140 __RSH C:\rnqc.exe

2013-07-10 11:12 - 2013-07-10 11:12 - 00103140 __RSH C:\ouuvi.exe

2013-07-10 11:11 - 2013-07-10 11:11 - 00103140 __RSH C:\ywah.pif

2013-07-10 11:11 - 2013-07-10 11:11 - 00103140 __RSH C:\gugdxf.exe

2013-07-10 11:11 - 2013-07-10 11:11 - 00103140 __RSH C:\bylk.pif

2013-07-10 11:10 - 2013-07-10 11:10 - 00103140 __RSH C:\ulflrt.pif

2013-07-10 11:10 - 2013-07-10 11:10 - 00103140 __RSH C:\dnep.pif

2013-07-10 11:09 - 2013-07-10 11:09 - 00103140 __RSH C:\xcoy.exe

2013-07-10 11:09 - 2013-07-10 11:09 - 00103140 __RSH C:\bckvm.exe

2013-07-10 11:08 - 2013-07-10 11:08 - 00103140 __RSH C:\vjspeo.pif

2013-07-10 11:08 - 2013-07-10 11:08 - 00103140 __RSH C:\gvvdjh.pif

2013-07-10 11:07 - 2013-07-10 11:07 - 00103140 __RSH C:\ujae.exe

2013-07-10 11:07 - 2013-07-10 11:07 - 00103140 __RSH C:\kuli.pif

2013-07-10 11:07 - 2013-07-10 11:07 - 00103140 __RSH C:\axghpe.exe

2013-07-10 11:06 - 2013-07-10 11:06 - 00103140 __RSH C:\jyuc.pif

2013-07-10 11:06 - 2013-07-10 11:06 - 00103140 __RSH C:\ggrx.pif

2013-07-10 11:05 - 2013-07-10 11:05 - 00103140 __RSH C:\ydeks.pif

2013-07-10 11:05 - 2013-07-10 11:05 - 00103140 __RSH C:\efyl.exe

2013-07-10 11:04 - 2013-07-10 11:04 - 00103140 __RSH C:\lpgvf.exe

2013-07-10 11:04 - 2013-07-10 11:04 - 00103140 __RSH C:\ikrir.pif

2013-07-10 11:03 - 2013-07-10 11:03 - 00103140 __RSH C:\nihwlf.pif

2013-07-10 11:03 - 2013-07-10 11:03 - 00103140 __RSH C:\mtciml.exe

2013-07-10 11:02 - 2013-07-10 11:02 - 00103140 __RSH C:\nbieea.exe

2013-07-10 11:02 - 2013-07-10 11:02 - 00103140 __RSH C:\ltdbse.pif

2013-07-10 11:02 - 2013-07-10 11:02 - 00103140 __RSH C:\guypec.pif

2013-07-10 11:01 - 2013-07-10 11:01 - 00103140 __RSH C:\wpwfsr.pif

2013-07-10 11:01 - 2013-07-10 11:01 - 00103140 __RSH C:\cynj.pif

2013-07-10 11:00 - 2013-07-10 11:00 - 00103140 __RSH C:\hpfpg.pif

2013-07-10 11:00 - 2013-07-10 11:00 - 00103140 __RSH C:\fdviwe.pif

2013-07-10 10:59 - 2013-07-10 10:59 - 00103140 __RSH C:\pppx.pif

2013-07-10 10:59 - 2013-07-10 10:59 - 00103140 __RSH C:\apit.exe

2013-07-10 10:58 - 2013-07-10 10:58 - 00103140 __RSH C:\lsuhx.pif

2013-07-10 10:58 - 2013-07-10 10:58 - 00103140 __RSH C:\clxoj.pif

2013-07-10 10:57 - 2013-07-10 10:57 - 00103140 __RSH C:\idhosl.exe

2013-07-10 10:57 - 2013-07-10 10:57 - 00103140 __RSH C:\bqqnkl.pif

2013-07-10 10:57 - 2013-07-10 10:57 - 00103140 __RSH C:\bljfbv.exe

2013-07-10 10:56 - 2013-07-10 10:56 - 00103140 __RSH C:\snnt.exe

2013-07-10 10:56 - 2013-07-10 10:56 - 00103140 __RSH C:\liqsj.pif

2013-07-10 10:55 - 2013-07-10 10:55 - 00103140 __RSH C:\ssgfyw.exe

2013-07-10 10:55 - 2013-07-10 10:55 - 00103140 __RSH C:\kdgvc.pif

2013-07-10 10:54 - 2013-07-10 10:54 - 00103140 __RSH C:\lmsbnd.exe

2013-07-10 10:54 - 2013-07-10 10:54 - 00103140 __RSH C:\enxm.exe

2013-07-10 10:53 - 2013-07-10 10:53 - 00103140 __RSH C:\vopp.pif

2013-07-10 10:53 - 2013-07-10 10:53 - 00103140 __RSH C:\ortvxo.pif

2013-07-10 10:53 - 2013-07-10 10:53 - 00103140 __RSH C:\atth.pif

2013-07-10 10:52 - 2013-07-10 10:52 - 00103140 __RSH C:\hwut.exe

2013-07-10 10:52 - 2013-07-10 10:52 - 00103140 __RSH C:\cfkpwi.pif

2013-07-10 10:51 - 2013-07-10 10:51 - 00103140 __RSH C:\uxdh.exe

2013-07-10 10:51 - 2013-07-10 10:51 - 00103140 __RSH C:\bterw.exe

2013-07-10 10:50 - 2013-07-10 10:50 - 00103140 __RSH C:\panft.exe

2013-07-10 10:50 - 2013-07-10 10:50 - 00103140 __RSH C:\ahnf.pif

2013-07-10 10:49 - 2013-07-10 10:49 - 00103140 __RSH C:\wcjwoh.exe

2013-07-10 10:49 - 2013-07-10 10:49 - 00103140 __RSH C:\dmbv.exe

2013-07-10 10:48 - 2013-07-10 10:48 - 00103140 __RSH C:\qcnnnk.pif

2013-07-10 10:48 - 2013-07-10 10:48 - 00103140 __RSH C:\nsch.exe

2013-07-10 10:48 - 2013-07-10 10:48 - 00103140 __RSH C:\nblsi.exe

2013-07-10 10:47 - 2013-07-10 10:47 - 00103140 __RSH C:\vkql.pif

2013-07-10 10:47 - 2013-07-10 10:47 - 00103140 __RSH C:\qmpg.exe

2013-07-10 10:46 - 2013-07-10 10:46 - 00103140 __RSH C:\ubutp.exe

2013-07-10 10:46 - 2013-07-10 10:46 - 00103140 __RSH C:\hwhuv.exe

2013-07-10 10:45 - 2013-07-10 10:45 - 00103140 __RSH C:\rwuakk.pif

2013-07-10 10:45 - 2013-07-10 10:45 - 00103140 __RSH C:\htgmyq.exe

2013-07-10 10:44 - 2013-07-10 10:44 - 00103140 __RSH C:\kwpgi.exe

2013-07-10 10:44 - 2013-07-10 10:44 - 00103140 __RSH C:\ktmad.pif

2013-07-10 10:44 - 2013-07-10 10:44 - 00103140 __RSH C:\daxr.exe

2013-07-10 10:43 - 2013-07-10 10:43 - 00103140 __RSH C:\jnead.pif

2013-07-10 10:43 - 2013-07-10 10:43 - 00103140 __RSH C:\iovd.pif

2013-07-10 10:42 - 2013-07-10 10:42 - 00103140 __RSH C:\oihegs.pif

2013-07-10 10:42 - 2013-07-10 10:42 - 00103140 __RSH C:\ammi.pif

2013-07-10 10:41 - 2013-07-10 10:41 - 00103140 __RSH C:\pggib.exe

2013-07-10 10:41 - 2013-07-10 10:41 - 00103140 __RSH C:\iqxiu.pif

2013-07-10 10:40 - 2013-07-10 10:40 - 00103140 __RSH C:\vxrt.pif

2013-07-10 10:40 - 2013-07-10 10:40 - 00103140 __RSH C:\ettqot.pif

2013-07-10 10:39 - 2013-07-10 10:39 - 00103140 __RSH C:\yirhb.exe

2013-07-10 10:39 - 2013-07-10 10:39 - 00103140 __RSH C:\nhxkou.pif

2013-07-10 10:39 - 2013-07-10 10:39 - 00103140 __RSH C:\akkib.exe

2013-07-10 10:38 - 2013-07-10 10:38 - 00103140 __RSH C:\stjg.exe

2013-07-10 10:38 - 2013-07-10 10:38 - 00103140 __RSH C:\jlphy.pif

2013-07-10 10:37 - 2013-07-10 10:37 - 00103140 __RSH C:\kdsd.exe

2013-07-10 10:37 - 2013-07-10 10:37 - 00103140 __RSH C:\jomlgm.exe

2013-07-10 10:36 - 2013-07-10 10:36 - 00103140 __RSH C:\nxorb.exe

2013-07-10 10:36 - 2013-07-10 10:36 - 00103140 __RSH C:\fgxv.exe

2013-07-10 10:35 - 2013-07-10 10:35 - 00103140 __RSH C:\ywhsmd.pif

2013-07-10 10:35 - 2013-07-10 10:35 - 00103140 __RSH C:\wkwqde.exe

2013-07-10 10:35 - 2013-07-10 10:35 - 00103140 __RSH C:\evjb.exe

2013-07-10 10:34 - 2013-07-10 10:34 - 00103140 __RSH C:\triccd.exe

2013-07-10 10:34 - 2013-07-10 10:34 - 00103140 __RSH C:\kxehg.exe

2013-07-10 10:33 - 2013-07-10 10:33 - 00103140 __RSH C:\yxev.exe

2013-07-10 10:33 - 2013-07-10 10:33 - 00103140 __RSH C:\vnngyw.pif

2013-07-10 10:32 - 2013-07-10 10:32 - 00103140 __RSH C:\xeqb.pif

2013-07-10 10:32 - 2013-07-10 10:32 - 00103140 __RSH C:\desea.pif

2013-07-10 10:31 - 2013-07-10 10:31 - 00103140 __RSH C:\ddcbp.pif

2013-07-10 10:31 - 2013-07-10 10:31 - 00103140 __RSH C:\adpdsa.pif

2013-07-10 10:30 - 2013-07-10 10:30 - 00103140 __RSH C:\fsaskg.exe

2013-07-10 10:30 - 2013-07-10 10:30 - 00103140 __RSH C:\ehqfrs.exe

2013-07-10 10:30 - 2013-07-10 10:30 - 00103140 __RSH C:\bimuji.pif

2013-07-10 10:29 - 2013-07-10 10:29 - 00103140 __RSH C:\jklg.exe

2013-07-10 10:29 - 2013-07-10 10:29 - 00103140 __RSH C:\iowqg.pif

2013-07-10 10:28 - 2013-07-10 10:28 - 00103140 __RSH C:\qghajq.exe

2013-07-10 10:28 - 2013-07-10 10:28 - 00103140 __RSH C:\lxqagj.exe

2013-07-10 10:27 - 2013-07-10 10:27 - 00103140 __RSH C:\hmijxu.pif

2013-07-10 10:27 - 2013-07-10 10:27 - 00103140 __RSH C:\cpxsbs.exe

2013-07-10 10:26 - 2013-07-10 10:26 - 00103140 __RSH C:\rgjn.pif

2013-07-10 10:26 - 2013-07-10 10:26 - 00103140 __RSH C:\obxcac.exe

2013-07-10 10:26 - 2013-07-10 10:26 - 00103140 __RSH C:\ghyet.exe

2013-07-10 10:25 - 2013-07-10 10:25 - 00103140 __RSH C:\xqobud.exe

2013-07-10 10:25 - 2013-07-10 10:25 - 00103140 __RSH C:\ofhik.exe

2013-07-10 10:24 - 2013-07-10 10:24 - 00103140 __RSH C:\tweg.pif

2013-07-10 10:24 - 2013-07-10 10:24 - 00103140 __RSH C:\iexltm.exe

2013-07-10 10:23 - 2013-07-10 10:23 - 00103140 __RSH C:\istpf.exe

2013-07-10 10:23 - 2013-07-10 10:23 - 00103140 __RSH C:\fbiw.pif

2013-07-10 10:22 - 2013-07-10 10:22 - 00103140 __RSH C:\nvblpf.exe

2013-07-10 10:22 - 2013-07-10 10:22 - 00103140 __RSH C:\htyukk.exe

2013-07-10 10:21 - 2013-07-10 10:21 - 00103140 __RSH C:\xdtfyx.pif

2013-07-10 10:21 - 2013-07-10 10:21 - 00103140 __RSH C:\ubyokr.exe

2013-07-10 10:21 - 2013-07-10 10:21 - 00103140 __RSH C:\ncqhp.pif

2013-07-10 10:20 - 2013-07-10 10:20 - 00103140 __RSH C:\mofl.exe

2013-07-10 10:20 - 2013-07-10 10:20 - 00103140 __RSH C:\jpmha.exe

2013-07-10 10:19 - 2013-07-10 10:19 - 00103140 __RSH C:\xrpuxr.pif

2013-07-10 10:19 - 2013-07-10 10:19 - 00103140 __RSH C:\rkbs.pif

2013-07-10 10:18 - 2013-07-10 10:18 - 00103140 __RSH C:\vnsw.exe

2013-07-10 10:18 - 2013-07-10 10:18 - 00103140 __RSH C:\srsdji.pif

2013-07-10 10:17 - 2013-07-10 10:17 - 00103140 __RSH C:\sbxdkw.pif

2013-07-10 10:17 - 2013-07-10 10:17 - 00103140 __RSH C:\qnqkkk.pif

2013-07-10 10:17 - 2013-07-10 10:17 - 00103140 __RSH C:\mmcx.exe

2013-07-10 10:16 - 2013-07-10 10:16 - 00103140 __RSH C:\dnjdu.exe

2013-07-10 10:16 - 2013-07-10 10:16 - 00103140 __RSH C:\dbjtd.exe

2013-07-10 10:15 - 2013-07-10 10:15 - 00103140 __RSH C:\qbmbdx.exe

2013-07-10 10:15 - 2013-07-10 10:15 - 00103140 __RSH C:\jadg.exe

2013-07-10 10:14 - 2013-07-10 10:14 - 00103140 __RSH C:\mfid.pif

2013-07-10 10:14 - 2013-07-10 10:14 - 00103140 __RSH C:\hsufq.exe

2013-07-10 10:13 - 2013-07-10 10:13 - 00103140 __RSH C:\wwyf.exe

2013-07-10 10:13 - 2013-07-10 10:13 - 00103140 __RSH C:\qdxp.pif

2013-07-10 10:12 - 2013-07-10 10:12 - 00103140 __RSH C:\wvwn.exe

2013-07-10 10:12 - 2013-07-10 10:12 - 00103140 __RSH C:\rryn.pif

2013-07-10 10:12 - 2013-07-10 10:12 - 00103140 __RSH C:\iskhqk.exe

2013-07-10 10:11 - 2013-07-10 10:11 - 00103140 __RSH C:\xrflo.exe

2013-07-10 10:11 - 2013-07-10 10:11 - 00103140 __RSH C:\gjeqc.exe

2013-07-10 10:10 - 2013-07-10 10:10 - 00103140 __RSH C:\ghypgj.pif

2013-07-10 10:10 - 2013-07-10 10:10 - 00103140 __RSH C:\amnk.exe

2013-07-10 10:09 - 2013-07-10 10:09 - 00103140 __RSH C:\moehe.pif

2013-07-10 10:09 - 2013-07-10 10:09 - 00103140 __RSH C:\exjaka.pif

2013-07-10 10:08 - 2013-07-10 10:08 - 00103140 __RSH C:\ldtj.pif

2013-07-10 10:08 - 2013-07-10 10:08 - 00103140 __RSH C:\kwsyl.pif

2013-07-10 10:07 - 2013-07-10 10:07 - 00103140 __RSH C:\wkhgv.exe

2013-07-10 10:07 - 2013-07-10 10:07 - 00103140 __RSH C:\jibvn.exe

2013-07-10 10:07 - 2013-07-10 10:07 - 00103140 __RSH C:\iwgixu.exe

2013-07-10 10:06 - 2013-07-10 10:06 - 00103140 __RSH C:\mxatc.exe

2013-07-10 10:06 - 2013-07-10 10:06 - 00103140 __RSH C:\arubop.exe

2013-07-10 10:05 - 2013-07-10 10:05 - 00103140 __RSH C:\ubtaup.exe

2013-07-10 10:05 - 2013-07-10 10:05 - 00103140 __RSH C:\rvxcd.exe

2013-07-10 10:04 - 2013-07-10 10:04 - 00103140 __RSH C:\jtngrp.exe

2013-07-10 10:04 - 2013-07-10 10:04 - 00103140 __RSH C:\cdjnyr.pif

2013-07-10 10:03 - 2013-07-10 10:03 - 00103140 __RSH C:\wgxr.exe

2013-07-10 10:03 - 2013-07-10 10:03 - 00103140 __RSH C:\pilt.exe

2013-07-10 10:03 - 2013-07-10 10:03 - 00103140 __RSH C:\jfsrp.pif

2013-07-10 10:02 - 2013-07-10 10:02 - 00103140 __RSH C:\pjxw.exe

2013-07-10 10:02 - 2013-07-10 10:02 - 00103140 __RSH C:\fkkxqv.exe

2013-07-10 10:01 - 2013-07-10 10:01 - 00103140 __RSH C:\voqmf.pif

2013-07-10 10:01 - 2013-07-10 10:01 - 00103140 __RSH C:\clegv.exe

2013-07-10 10:00 - 2013-07-10 10:00 - 00103140 __RSH C:\vdlyol.exe

2013-07-10 10:00 - 2013-07-10 10:00 - 00103140 __RSH C:\cdia.exe

2013-07-10 09:59 - 2013-07-10 09:59 - 00103140 __RSH C:\satvrw.exe

2013-07-10 09:59 - 2013-07-10 09:59 - 00103140 __RSH C:\jcuo.exe

2013-07-10 09:58 - 2013-07-10 09:58 - 00103140 __RSH C:\vcubsp.exe

2013-07-10 09:58 - 2013-07-10 09:58 - 00103140 __RSH C:\usah.pif

2013-07-10 09:58 - 2013-07-10 09:58 - 00103140 __RSH C:\nhfw.pif

2013-07-10 09:57 - 2013-07-10 09:57 - 00103140 __RSH C:\wnmnd.pif

2013-07-10 09:57 - 2013-07-10 09:57 - 00103140 __RSH C:\jqwdty.exe

2013-07-10 09:56 - 2013-07-10 09:56 - 00103140 __RSH C:\ygbfsu.pif

2013-07-10 09:56 - 2013-07-10 09:56 - 00103140 __RSH C:\oklv.exe

2013-07-10 09:55 - 2013-07-10 09:55 - 00103140 __RSH C:\uaiav.exe

2013-07-10 09:55 - 2013-07-10 09:55 - 00103140 __RSH C:\iuxcwf.pif

2013-07-10 09:54 - 2013-07-10 09:54 - 00103140 __RSH C:\xwcu.exe

2013-07-10 09:54 - 2013-07-10 09:54 - 00103140 __RSH C:\lygai.exe

2013-07-10 09:54 - 2013-07-10 09:54 - 00103140 __RSH C:\ksld.pif

2013-07-10 09:53 - 2013-07-10 09:53 - 00103140 __RSH C:\sdfn.exe

2013-07-10 09:53 - 2013-07-10 09:53 - 00103140 __RSH C:\lusn.exe

2013-07-10 09:52 - 2013-07-10 09:52 - 00103140 __RSH C:\yrjy.exe

2013-07-10 09:52 - 2013-07-10 09:52 - 00103140 __RSH C:\jibsg.exe

2013-07-10 09:51 - 2013-07-10 09:51 - 00103140 __RSH C:\qmqp.exe

2013-07-10 09:51 - 2013-07-10 09:51 - 00103140 __RSH C:\idkkub.pif

2013-07-10 09:50 - 2013-07-10 09:50 - 00103140 __RSH C:\cxxiet.pif

2013-07-10 09:50 - 2013-07-10 09:50 - 00103140 __RSH C:\absfl.exe

2013-07-10 09:49 - 2013-07-10 09:49 - 00103140 __RSH C:\wfqgm.exe

2013-07-10 09:49 - 2013-07-10 09:49 - 00103140 __RSH C:\ksmw.pif

2013-07-10 09:49 - 2013-07-10 09:49 - 00103140 __RSH C:\djqndv.exe

2013-07-10 09:48 - 2013-07-10 09:48 - 00103140 __RSH C:\eeucr.exe

2013-07-10 09:48 - 2013-07-10 09:48 - 00103140 __RSH C:\aawwe.exe

2013-07-10 09:47 - 2013-07-10 09:47 - 00103140 __RSH C:\vklom.pif

2013-07-10 09:47 - 2013-07-10 09:47 - 00103140 __RSH C:\dnsv.pif

2013-07-10 09:46 - 2013-07-10 09:46 - 00103140 __RSH C:\sqmiyv.pif

2013-07-10 09:46 - 2013-07-10 09:46 - 00103140 __RSH C:\cgcvjx.pif

2013-07-10 09:45 - 2013-07-10 09:45 - 00103140 __RSH C:\kpdi.pif

2013-07-10 09:45 - 2013-07-10 09:45 - 00103140 __RSH C:\khyg.pif

2013-07-10 09:45 - 2013-07-10 09:45 - 00103140 __RSH C:\gtkif.exe

2013-07-10 09:44 - 2013-07-10 09:44 - 00103140 __RSH C:\wexgcp.pif

2013-07-10 09:44 - 2013-07-10 09:44 - 00103140 __RSH C:\dynepb.pif

2013-07-10 09:43 - 2013-07-10 09:43 - 00103140 __RSH C:\qfglmp.pif

2013-07-10 09:43 - 2013-07-10 09:43 - 00103140 __RSH C:\mxrp.exe

2013-07-10 09:42 - 2013-07-10 09:42 - 00103140 __RSH C:\vqvcrg.pif

2013-07-10 09:42 - 2013-07-10 09:42 - 00103140 __RSH C:\fkcbfd.exe

2013-07-10 09:41 - 2013-07-10 09:41 - 00103140 __RSH C:\vstm.exe

2013-07-10 09:41 - 2013-07-10 09:41 - 00103140 __RSH C:\cstng.pif

2013-07-10 09:40 - 2013-07-10 09:40 - 00103140 __RSH C:\wexe.exe

2013-07-10 09:40 - 2013-07-10 09:40 - 00103140 __RSH C:\nessuo.exe

2013-07-10 09:40 - 2013-07-10 09:40 - 00103140 __RSH C:\hhks.exe

2013-07-10 09:39 - 2013-07-10 09:39 - 00103140 __RSH C:\xbtins.pif

2013-07-10 09:39 - 2013-07-10 09:39 - 00103140 __RSH C:\cggt.exe

2013-07-10 09:38 - 2013-07-10 09:38 - 00103140 __RSH C:\yjjh.pif

2013-07-10 09:38 - 2013-07-10 09:38 - 00103140 __RSH C:\mwjds.pif

2013-07-10 09:37 - 2013-07-10 09:37 - 00103140 __RSH C:\wmwd.pif

2013-07-10 09:37 - 2013-07-10 09:37 - 00103140 __RSH C:\meoiwc.pif

2013-07-10 09:36 - 2013-07-10 09:36 - 00103140 __RSH C:\qakbw.exe

2013-07-10 09:36 - 2013-07-10 09:36 - 00103140 __RSH C:\irmma.pif

2013-07-10 09:35 - 2013-07-10 09:35 - 00103140 __RSH C:\orjlt.pif

2013-07-10 09:35 - 2013-07-10 09:35 - 00103140 __RSH C:\ephnj.pif

2013-07-10 09:35 - 2013-07-10 09:35 - 00103140 __RSH C:\bbniu.exe

2013-07-10 09:34 - 2013-07-10 09:34 - 00103140 __RSH C:\yrfa.pif

2013-07-10 09:34 - 2013-07-10 09:34 - 00103140 __RSH C:\npedh.exe

2013-07-10 09:33 - 2013-07-10 09:33 - 00103140 __RSH C:\vadfs.exe

2013-07-10 09:33 - 2013-07-10 09:33 - 00103140 __RSH C:\puwd.exe

2013-07-10 09:32 - 2013-07-10 09:32 - 00103140 __RSH C:\gtlcjt.exe

2013-07-10 09:32 - 2013-07-10 09:32 - 00103140 __RSH C:\cukhtp.pif

2013-07-10 09:31 - 2013-07-10 09:31 - 00103140 __RSH C:\oksgj.exe

2013-07-10 09:31 - 2013-07-10 09:31 - 00103140 __RSH C:\jrxs.exe

2013-07-10 09:31 - 2013-07-10 09:31 - 00103140 __RSH C:\cixtw.exe

2013-07-10 09:30 - 2013-07-10 09:30 - 00103140 __RSH C:\uoaet.pif

2013-07-10 09:30 - 2013-07-10 09:30 - 00103140 __RSH C:\esyp.exe

2013-07-10 09:29 - 2013-07-10 09:29 - 00103140 __RSH C:\vtwxb.exe

2013-07-10 09:29 - 2013-07-10 09:29 - 00103140 __RSH C:\pxqkp.exe

2013-07-10 09:28 - 2013-07-10 09:28 - 00103140 __RSH C:\mbeo.exe

2013-07-10 09:28 - 2013-07-10 09:28 - 00103140 __RSH C:\lwxt.pif

2013-07-10 09:27 - 2013-07-10 09:27 - 00103140 __RSH C:\ydjb.pif

2013-07-10 09:27 - 2013-07-10 09:27 - 00103140 __RSH C:\tyxxf.pif

2013-07-10 09:26 - 2013-07-10 09:26 - 00103140 __RSH C:\shri.exe

2013-07-10 09:26 - 2013-07-10 09:26 - 00103140 __RSH C:\ldhro.pif

2013-07-10 09:26 - 2013-07-10 09:26 - 00103140 __RSH C:\khxhf.pif

2013-07-10 09:25 - 2013-07-10 09:25 - 00103140 __RSH C:\jwsw.exe

2013-07-10 09:25 - 2013-07-10 09:25 - 00103140 __RSH C:\bwfbx.pif

2013-07-10 09:24 - 2013-07-10 09:24 - 00103140 __RSH C:\ounc.pif

2013-07-10 09:24 - 2013-07-10 09:24 - 00103140 __RSH C:\olhg.pif

2013-07-10 09:23 - 2013-07-10 09:23 - 00103140 __RSH C:\vblap.exe

2013-07-10 09:23 - 2013-07-10 09:23 - 00103140 __RSH C:\srva.exe

2013-07-10 09:22 - 2013-07-10 09:22 - 00103140 __RSH C:\ynfut.exe

2013-07-10 09:22 - 2013-07-10 09:22 - 00103140 __RSH C:\vjwmjd.exe

2013-07-10 09:22 - 2013-07-10 09:22 - 00103140 __RSH C:\phgtc.pif

2013-07-10 09:21 - 2013-07-10 09:21 - 00103140 __RSH C:\liwju.pif

2013-07-10 09:21 - 2013-07-10 09:21 - 00103140 __RSH C:\ipsif.pif

2013-07-10 09:20 - 2013-07-10 09:20 - 00103140 __RSH C:\yliaf.exe

2013-07-10 09:20 - 2013-07-10 09:20 - 00103140 __RSH C:\qesdo.exe

2013-07-10 09:19 - 2013-07-10 09:19 - 00103140 __RSH C:\xxij.exe

2013-07-10 09:19 - 2013-07-10 09:19 - 00103140 __RSH C:\mnign.pif

2013-07-10 09:18 - 2013-07-10 09:18 - 00103140 __RSH C:\gcff.exe

2013-07-10 09:18 - 2013-07-10 09:18 - 00103140 __RSH C:\flarmv.pif

2013-07-10 09:17 - 2013-07-10 09:17 - 00103140 __RSH C:\vblrbj.pif

2013-07-10 09:17 - 2013-07-10 09:17 - 00103140 __RSH C:\fwhbfd.pif

2013-07-10 09:17 - 2013-07-10 09:17 - 00103140 __RSH C:\djvjjy.exe

2013-07-10 09:16 - 2013-07-10 09:16 - 00103140 __RSH C:\yctj.exe

2013-07-10 09:16 - 2013-07-10 09:16 - 00103140 __RSH C:\wuxjw.exe

2013-07-10 09:15 - 2013-07-10 09:15 - 00103140 __RSH C:\udsjmd.exe

2013-07-10 09:15 - 2013-07-10 09:15 - 00103140 __RSH C:\spera.pif

2013-07-10 09:14 - 2013-07-10 09:14 - 00103140 __RSH C:\gdoqw.exe

2013-07-10 09:14 - 2013-07-10 09:14 - 00103140 __RSH C:\ekda.exe

2013-07-10 09:14 - 2012-09-06 16:33 - 00000024 ____A C:\Users\Grant\jagexappletviewer.preferences

2013-07-10 09:13 - 2013-07-10 09:13 - 00103140 __RSH C:\xxxdr.pif

2013-07-10 09:13 - 2013-07-10 09:13 - 00103140 __RSH C:\kwnvm.pif

2013-07-10 09:13 - 2013-07-10 09:13 - 00103140 __RSH C:\hlpsv.pif

2013-07-10 09:12 - 2013-07-10 09:12 - 00103140 __RSH C:\oybmum.pif

2013-07-10 09:12 - 2013-07-10 09:12 - 00103140 __RSH C:\figkq.exe

2013-07-10 09:11 - 2013-07-10 09:11 - 00103140 __RSH C:\uatkbl.pif

2013-07-10 09:11 - 2013-07-10 09:11 - 00103140 __RSH C:\jjull.exe

2013-07-10 09:10 - 2013-07-10 09:10 - 00103140 __RSH C:\gurn.pif

2013-07-10 09:10 - 2013-07-10 09:10 - 00103140 __RSH C:\fwjogg.exe

2013-07-10 09:09 - 2013-07-10 09:09 - 00103140 __RSH C:\joieu.pif

2013-07-10 09:09 - 2013-07-10 09:09 - 00103140 __RSH C:\aijahx.pif

2013-07-10 09:08 - 2013-07-10 09:08 - 00103140 __RSH C:\ycjqm.exe

2013-07-10 09:08 - 2013-07-10 09:08 - 00103140 __RSH C:\urmpb.pif

2013-07-10 09:08 - 2013-07-10 09:08 - 00103140 __RSH C:\etqd.pif

2013-07-10 09:07 - 2013-07-10 09:07 - 00103140 __RSH C:\uektmn.exe

2013-07-10 09:07 - 2013-07-10 09:07 - 00103140 __RSH C:\cjjfbx.pif

2013-07-10 09:06 - 2013-07-10 09:06 - 00103140 __RSH C:\lfurpy.exe

2013-07-10 09:06 - 2013-07-10 09:06 - 00103140 __RSH C:\klhtd.pif

2013-07-10 09:05 - 2013-07-10 09:05 - 00103140 __RSH C:\jltk.pif

2013-07-10 09:05 - 2013-07-10 09:05 - 00103140 __RSH C:\cpnhmh.exe

2013-07-10 09:04 - 2013-07-10 09:04 - 00103140 __RSH C:\uibb.exe

2013-07-10 09:04 - 2013-07-10 09:04 - 00103140 __RSH C:\dnjog.exe

2013-07-10 09:04 - 2013-07-10 09:04 - 00103140 __RSH C:\cpquwa.pif

2013-07-10 09:03 - 2013-07-10 09:03 - 00103140 __RSH C:\wehxwm.pif

2013-07-10 09:03 - 2013-07-10 09:03 - 00103140 __RSH C:\jsgtm.exe

2013-07-10 09:02 - 2013-07-10 09:02 - 00103140 __RSH C:\xoftd.exe

2013-07-10 09:02 - 2013-07-10 09:02 - 00103140 __RSH C:\eaxxbj.exe

2013-07-10 09:01 - 2013-07-10 09:01 - 00103140 __RSH C:\wmfha.pif

2013-07-10 09:01 - 2013-07-10 09:01 - 00103140 __RSH C:\oddlw.pif

2013-07-10 09:00 - 2013-07-10 09:00 - 00103140 __RSH C:\cprqhy.exe

2013-07-10 09:00 - 2013-07-10 09:00 - 00103140 __RSH C:\aqmj.exe

2013-07-10 08:59 - 2013-07-10 08:59 - 00103140 __RSH C:\owdlh.pif

2013-07-10 08:59 - 2013-07-10 08:59 - 00103140 __RSH C:\fjabl.pif

2013-07-10 08:59 - 2013-07-10 08:59 - 00103140 __RSH C:\cmvro.exe

2013-07-10 08:58 - 2013-07-10 08:58 - 00103140 __RSH C:\myrf.exe

2013-07-10 08:58 - 2013-07-10 08:58 - 00103140 __RSH C:\eitlql.exe

2013-07-10 08:57 - 2013-07-10 08:57 - 00103140 __RSH C:\vejef.exe

2013-07-10 08:57 - 2013-07-10 08:57 - 00103140 __RSH C:\fsjpux.pif

2013-07-10 08:56 - 2013-07-10 08:56 - 00103140 __RSH C:\txjm.pif

2013-07-10 08:56 - 2013-07-10 08:56 - 00103140 __RSH C:\qhdyv.exe

2013-07-10 08:56 - 2012-09-06 16:48 - 00000044 ____A C:\Users\Grant\jagex_cl_runescape_LIVE.dat

2013-07-10 01:59 - 2013-07-10 01:59 - 00103140 __RSH C:\otqbom.exe

2013-07-10 01:58 - 2013-07-10 01:58 - 00103140 __RSH C:\xnydjs.pif

2013-07-10 01:58 - 2013-07-10 01:58 - 00103140 __RSH C:\keqane.exe

2013-07-10 01:58 - 2013-07-10 01:58 - 00103140 __RSH C:\hynf.exe

2013-07-10 01:57 - 2013-07-10 01:57 - 00103140 __RSH C:\urbof.exe

2013-07-10 01:57 - 2013-07-10 01:57 - 00103140 __RSH C:\crpp.exe

2013-07-10 01:56 - 2013-07-10 01:56 - 00103140 __RSH C:\vute.pif

2013-07-10 01:56 - 2013-07-10 01:56 - 00103140 __RSH C:\kbgosm.pif

2013-07-10 01:55 - 2013-07-10 01:55 - 00103140 __RSH C:\lpito.exe

2013-07-10 01:55 - 2013-07-10 01:55 - 00103140 __RSH C:\foaqx.exe

2013-07-10 01:54 - 2013-07-10 01:54 - 00103140 __RSH C:\jgfjm.exe

2013-07-10 01:54 - 2013-07-10 01:54 - 00103140 __RSH C:\ghrql.pif

2013-07-10 01:53 - 2013-07-10 01:53 - 00103140 __RSH C:\wypdy.exe

2013-07-10 01:53 - 2013-07-10 01:53 - 00103140 __RSH C:\ncuovx.pif

2013-07-10 01:53 - 2013-07-10 01:53 - 00103140 __RSH C:\ebhnau.exe

2013-07-10 01:52 - 2013-07-10 01:52 - 00103140 __RSH C:\ptbgj.pif

2013-07-10 01:52 - 2013-07-10 01:52 - 00103140 __RSH C:\hcglkr.exe

2013-07-10 01:51 - 2013-07-10 01:51 - 00103140 __RSH C:\kcmdgk.pif

2013-07-10 01:51 - 2013-07-10 01:51 - 00103140 __RSH C:\gmayhi.pif

2013-07-10 01:50 - 2013-07-10 01:50 - 00103140 __RSH C:\wxkrt.pif

2013-07-10 01:50 - 2013-07-10 01:50 - 00103140 __RSH C:\nconqc.pif

2013-07-10 01:50 - 2013-07-10 01:50 - 00103140 __RSH C:\ibevn.pif

2013-07-10 01:49 - 2013-07-10 01:49 - 00103140 __RSH C:\wlwy.exe

2013-07-10 01:49 - 2013-07-10 01:49 - 00103140 __RSH C:\qkfwk.pif

2013-07-10 01:49 - 2013-07-10 01:49 - 00103140 __RSH C:\pejg.pif

2013-07-10 01:49 - 2013-07-10 01:49 - 00103140 __RSH C:\oeyvd.pif

2013-07-10 01:49 - 2013-07-10 01:49 - 00103140 __RSH C:\lwnxq.pif

2013-07-10 01:49 - 2013-07-10 01:49 - 00103140 __RSH C:\hppuv.exe

2013-07-10 01:48 - 2013-07-10 01:48 - 00103140 __RSH C:\wqorm.exe

2013-07-10 01:48 - 2013-07-10 01:48 - 00103140 __RSH C:\trcmrr.exe

2013-07-10 01:48 - 2013-07-10 01:48 - 00103140 __RSH C:\jksi.pif

2013-07-10 01:48 - 2013-07-10 01:48 - 00103140 __RSH C:\bnoja.exe

2013-07-10 01:47 - 2013-07-10 01:47 - 00103140 __RSH C:\yebfw.pif

2013-07-10 01:47 - 2013-07-10 01:47 - 00103140 __RSH C:\pmreem.exe

2013-07-10 01:47 - 2013-07-10 01:47 - 00103140 __RSH C:\fchyn.pif

2013-07-10 01:47 - 2013-07-10 01:47 - 00103140 __RSH C:\atupe.exe

2013-07-10 01:46 - 2013-07-10 01:46 - 00103140 __RSH C:\nhql.pif

2013-07-10 01:46 - 2013-07-10 01:46 - 00103140 __RSH C:\lpmsbq.exe

2013-07-10 01:46 - 2013-07-10 01:46 - 00103140 __RSH C:\isgxbw.pif

2013-07-10 01:46 - 2013-07-10 01:46 - 00103140 __RSH C:\ewnf.exe

2013-07-10 01:45 - 2013-07-10 01:45 - 00103140 __RSH C:\kevc.exe

2013-07-10 01:45 - 2013-07-10 01:45 - 00103140 __RSH C:\etqk.pif

2013-07-10 01:45 - 2013-07-10 01:45 - 00103140 __RSH C:\cntr.exe

2013-07-10 01:44 - 2013-07-10 01:44 - 00103140 __RSH C:\jbic.pif

2013-07-10 01:44 - 2013-07-10 01:44 - 00103140 __RSH C:\cmunjf.exe

2013-07-10 01:44 - 2013-07-10 01:44 - 00103140 __RSH C:\awlgfr.pif

2013-07-10 01:43 - 2013-07-10 01:43 - 00103140 __RSH C:\vuqls.exe

2013-07-10 01:43 - 2013-07-10 01:43 - 00103140 __RSH C:\aouqeg.pif

2013-07-10 01:42 - 2013-07-10 01:42 - 00103140 __RSH C:\qsgnpy.exe

2013-07-10 01:42 - 2013-07-10 01:42 - 00103140 __RSH C:\kpbne.exe

2013-07-10 01:41 - 2013-07-10 01:41 - 00103140 __RSH C:\qewc.pif

2013-07-10 01:41 - 2013-07-10 01:41 - 00103140 __RSH C:\gybok.exe

2013-07-10 01:40 - 2013-07-10 01:40 - 00103140 __RSH C:\xjrxc.exe

2013-07-10 01:40 - 2013-07-10 01:40 - 00103140 __RSH C:\kmdcvu.pif

2013-07-10 01:40 - 2013-07-10 01:40 - 00103140 __RSH C:\fhxv.pif

2013-07-10 01:39 - 2013-07-10 01:39 - 00103140 __RSH C:\oodsh.pif

2013-07-10 01:39 - 2013-07-10 01:39 - 00103140 __RSH C:\jedc.exe

2013-07-10 01:38 - 2013-07-10 01:38 - 00103140 __RSH C:\lyclnd.exe

2013-07-10 01:38 - 2013-07-10 01:38 - 00103140 __RSH C:\kqlc.exe

2013-07-10 01:37 - 2013-07-10 01:37 - 00103140 __RSH C:\qsci.exe

2013-07-10 01:37 - 2013-07-10 01:37 - 00103140 __RSH C:\lreq.exe

2013-07-10 01:36 - 2013-07-10 01:36 - 00103140 __RSH C:\ljpjdo.exe

2013-07-10 01:36 - 2013-07-10 01:36 - 00103140 __RSH C:\kxqbvv.exe

2013-07-10 01:35 - 2013-07-10 01:35 - 00103140 __RSH C:\svtbuy.exe

2013-07-10 01:35 - 2013-07-10 01:35 - 00103140 __RSH C:\dlxl.exe

2013-07-10 01:35 - 2013-07-10 01:35 - 00103140 __RSH C:\cyirf.pif

2013-07-10 01:34 - 2013-07-10 01:34 - 00103140 __RSH C:\vwbe.exe

2013-07-10 01:34 - 2013-07-10 01:34 - 00103140 __RSH C:\tdftm.pif

2013-07-10 01:33 - 2013-07-10 01:33 - 00103140 __RSH C:\orody.exe

2013-07-10 01:33 - 2013-07-10 01:33 - 00103140 __RSH C:\bbtsr.exe

2013-07-10 01:32 - 2013-07-10 01:32 - 00103140 __RSH C:\vtpdn.pif

2013-07-10 01:32 - 2013-07-10 01:32 - 00103140 __RSH C:\cgbu.exe

2013-07-10 01:31 - 2013-07-10 01:31 - 00103140 __RSH C:\kvdvqy.exe

2013-07-10 01:31 - 2013-07-10 01:31 - 00103140 __RSH C:\knflf.exe

2013-07-10 01:31 - 2013-07-10 01:31 - 00103140 __RSH C:\gorw.pif

2013-07-10 01:30 - 2013-07-10 01:30 - 00103140 __RSH C:\xhtnpe.pif

2013-07-10 01:30 - 2013-07-10 01:30 - 00103140 __RSH C:\dgjjli.exe

2013-07-10 01:29 - 2013-07-10 01:29 - 00103140 __RSH C:\prhdw.pif

2013-07-10 01:29 - 2013-07-10 01:29 - 00103140 __RSH C:\drvg.pif

2013-07-10 01:28 - 2013-07-10 01:28 - 00103140 __RSH C:\ukkdir.pif

2013-07-10 01:28 - 2013-07-10 01:28 - 00103140 __RSH C:\qqvht.exe

2013-07-10 01:27 - 2013-07-10 01:27 - 00103140 __RSH C:\msvtp.exe

2013-07-10 01:27 - 2013-07-10 01:27 - 00103140 __RSH C:\bdjp.exe

2013-07-10 01:26 - 2013-07-10 01:26 - 00103140 __RSH C:\sqyj.exe

2013-07-10 01:26 - 2013-07-10 01:26 - 00103140 __RSH C:\snkl.exe

2013-07-10 01:26 - 2013-07-10 01:26 - 00103140 __RSH C:\dkbgs.exe

2013-07-10 01:25 - 2013-07-10 01:25 - 00103140 __RSH C:\rcxts.pif

2013-07-10 01:25 - 2013-07-10 01:25 - 00103140 __RSH C:\lsbw.pif

2013-07-10 01:24 - 2013-07-10 01:24 - 00103140 __RSH C:\trax.exe

2013-07-10 01:24 - 2013-07-10 01:24 - 00103140 __RSH C:\nvacb.exe

2013-07-10 01:23 - 2013-07-10 01:23 - 00103140 __RSH C:\hpjfrs.exe

2013-07-10 01:23 - 2013-07-10 01:23 - 00103140 __RSH C:\buhmy.exe

2013-07-10 01:22 - 2013-07-10 01:22 - 00103140 __RSH C:\epkp.exe

2013-07-10 01:22 - 2013-07-10 01:22 - 00103140 __RSH C:\alxhb.pif

2013-07-10 01:21 - 2013-07-10 01:21 - 00103140 __RSH C:\xoxq.pif

2013-07-10 01:21 - 2013-07-10 01:21 - 00103140 __RSH C:\huqcmp.pif

2013-07-10 01:21 - 2013-07-10 01:21 - 00103140 __RSH C:\ehkbp.exe

2013-07-10 01:20 - 2013-07-10 01:20 - 00103140 __RSH C:\xqlvix.pif

2013-07-10 01:20 - 2013-07-10 01:20 - 00103140 __RSH C:\okpx.exe

2013-07-10 01:19 - 2013-07-10 01:19 - 00103140 __RSH C:\hjegty.exe

2013-07-10 01:19 - 2013-07-10 01:19 - 00103140 __RSH C:\cssttw.exe

2013-07-10 01:18 - 2013-07-10 01:18 - 00103140 __RSH C:\tkojt.pif

2013-07-10 01:18 - 2013-07-10 01:18 - 00103140 __RSH C:\qsxey.pif

2013-07-10 01:17 - 2013-07-10 01:17 - 00103140 __RSH C:\yiuhnt.pif

2013-07-10 01:17 - 2013-07-10 01:17 - 00103140 __RSH C:\krllr.exe

2013-07-10 01:17 - 2013-07-10 01:17 - 00103140 __RSH C:\dhgoh.pif

2013-07-10 01:16 - 2013-07-10 01:16 - 00103140 __RSH C:\tfroy.exe

2013-07-10 01:16 - 2013-07-10 01:16 - 00103140 __RSH C:\debh.exe

2013-07-10 01:15 - 2013-07-10 01:15 - 00103140 __RSH C:\wrsmft.exe

2013-07-10 01:15 - 2013-07-10 01:15 - 00103140 __RSH C:\okdtn.exe

2013-07-10 01:14 - 2013-07-10 01:14 - 00103140 __RSH C:\pxgxe.pif

2013-07-10 01:14 - 2013-07-10 01:14 - 00103140 __RSH C:\ogisup.exe

2013-07-10 01:13 - 2013-07-10 01:13 - 00103140 __RSH C:\wqxaa.exe

2013-07-10 01:13 - 2013-07-10 01:13 - 00103140 __RSH C:\ckfk.exe

2013-07-10 01:12 - 2013-07-10 01:12 - 00103140 __RSH C:\xwumm.exe

2013-07-10 01:12 - 2013-07-10 01:12 - 00103140 __RSH C:\mqprt.pif

2013-07-10 01:12 - 2013-07-10 01:12 - 00103140 __RSH C:\eekj.pif

2013-07-10 01:11 - 2013-07-10 01:11 - 00103140 __RSH C:\yhmd.pif

2013-07-10 01:11 - 2013-07-10 01:11 - 00103140 __RSH C:\pjmac.exe

2013-07-10 01:10 - 2013-07-10 01:10 - 00103140 __RSH C:\wuso.exe

2013-07-10 01:10 - 2013-07-10 01:10 - 00103140 __RSH C:\qkvswp.pif

2013-07-10 01:09 - 2013-07-10 01:09 - 00103140 __RSH C:\fnerad.pif

2013-07-10 01:09 - 2013-07-10 01:09 - 00103140 __RSH C:\dfhh.pif

2013-07-10 01:08 - 2013-07-10 01:08 - 00103140 __RSH C:\tmwbk.exe

2013-07-10 01:08 - 2013-07-10 01:08 - 00103140 __RSH C:\quhsnn.exe

2013-07-10 01:08 - 2013-07-10 01:08 - 00103140 __RSH C:\qsqyb.pif

2013-07-10 01:07 - 2013-07-10 01:07 - 00103140 __RSH C:\qxjlo.pif

2013-07-10 01:07 - 2013-07-10 01:07 - 00103140 __RSH C:\aqtbu.pif

2013-07-10 01:06 - 2013-07-10 01:06 - 00103140 __RSH C:\mkfix.exe

2013-07-10 01:06 - 2013-07-10 01:06 - 00103140 __RSH C:\gkksrw.pif

2013-07-10 01:05 - 2013-07-10 01:05 - 00103140 __RSH C:\ieme.pif

2013-07-10 01:05 - 2013-07-10 01:05 - 00103140 __RSH C:\dsowbp.exe

2013-07-10 01:04 - 2013-07-10 01:04 - 00103140 __RSH C:\mukee.exe

2013-07-10 01:04 - 2013-07-10 01:04 - 00103140 __RSH C:\fffdfe.pif

2013-07-10 01:03 - 2013-07-10 01:03 - 00103140 __RSH C:\uqnou.exe

2013-07-10 01:03 - 2013-07-10 01:03 - 00103140 __RSH C:\rosb.exe

2013-07-10 01:03 - 2013-07-10 01:03 - 00103140 __RSH C:\enxlce.exe

2013-07-10 01:02 - 2013-07-10 01:02 - 00103140 __RSH C:\qvojxs.pif

2013-07-10 01:02 - 2013-07-10 01:02 - 00103140 __RSH C:\ohwg.exe

2013-07-10 01:01 - 2013-07-10 01:01 - 00103140 __RSH C:\iwutun.pif

2013-07-10 01:01 - 2013-07-10 01:01 - 00103140 __RSH C:\hxvlf.exe

2013-07-10 01:00 - 2013-07-10 01:00 - 00103140 __RSH C:\gayg.pif

2013-07-10 01:00 - 2013-07-10 01:00 - 00103140 __RSH C:\cvww.pif

2013-07-10 00:59 - 2013-07-10 00:59 - 00103140 __RSH C:\lhoq.exe

2013-07-10 00:59 - 2013-07-10 00:59 - 00103140 __RSH C:\geihca.exe

2013-07-10 00:58 - 2013-07-10 00:58 - 00103140 __RSH C:\yycbq.pif

2013-07-10 00:58 - 2013-07-10 00:58 - 00103140 __RSH C:\rtgywb.pif

2013-07-10 00:58 - 2013-07-10 00:58 - 00103140 __RSH C:\njnh.exe

2013-07-10 00:57 - 2013-07-10 00:57 - 00103140 __RSH C:\owswq.pif

2013-07-10 00:57 - 2013-07-10 00:57 - 00103140 __RSH C:\muai.pif

2013-07-10 00:56 - 2013-07-10 00:56 - 00103140 __RSH C:\oxhu.exe

2013-07-10 00:56 - 2013-07-10 00:56 - 00103140 __RSH C:\odmi.pif

2013-07-10 00:55 - 2013-07-10 00:55 - 00103140 __RSH C:\fihgcl.exe

2013-07-10 00:55 - 2013-07-10 00:55 - 00103140 __RSH C:\dgjx.exe

2013-07-10 00:54 - 2013-07-10 00:54 - 00103140 __RSH C:\qfauay.pif

2013-07-10 00:54 - 2013-07-10 00:54 - 00103140 __RSH C:\hkcr.pif

2013-07-10 00:54 - 2013-07-10 00:54 - 00103140 __RSH C:\bhnpk.exe

2013-07-10 00:53 - 2013-07-10 00:53 - 00103140 __RSH C:\qwolii.exe

2013-07-10 00:53 - 2013-07-10 00:53 - 00103140 __RSH C:\okdva.pif

2013-07-10 00:52 - 2013-07-10 00:52 - 00103140 __RSH C:\plsfwy.pif

2013-07-10 00:52 - 2013-07-10 00:52 - 00103140 __RSH C:\pbrh.exe

2013-07-10 00:51 - 2013-07-10 00:51 - 00103140 __RSH C:\lvtwp.pif

2013-07-10 00:51 - 2013-07-10 00:51 - 00103140 __RSH C:\blrf.pif

2013-07-10 00:50 - 2013-07-10 00:50 - 00103140 __RSH C:\wqiedl.pif

2013-07-10 00:50 - 2013-07-10 00:50 - 00103140 __RSH C:\tgvkl.exe

2013-07-10 00:49 - 2013-07-10 00:49 - 00103140 __RSH C:\pulr.exe

2013-07-10 00:49 - 2013-07-10 00:49 - 00103140 __RSH C:\opas.pif

2013-07-10 00:49 - 2013-07-10 00:49 - 00103140 __RSH C:\iawbhn.pif

2013-07-10 00:48 - 2013-07-10 00:48 - 00103140 __RSH C:\wwucb.exe

2013-07-10 00:48 - 2013-07-10 00:48 - 00103140 __RSH C:\afsu.exe

2013-07-10 00:47 - 2013-07-10 00:47 - 00103140 __RSH C:\rhij.exe

2013-07-10 00:47 - 2013-07-10 00:47 - 00103140 __RSH C:\goqhhg.exe

2013-07-10 00:46 - 2013-07-10 00:46 - 00103140 __RSH C:\mpdtyj.pif

2013-07-10 00:46 - 2013-07-10 00:46 - 00103140 __RSH C:\bchcn.pif

2013-07-10 00:45 - 2013-07-10 00:45 - 00103140 __RSH C:\idtxg.pif

2013-07-10 00:45 - 2013-07-10 00:45 - 00103140 __RSH C:\ibuf.exe

2013-07-10 00:45 - 2013-07-10 00:45 - 00103140 __RSH C:\fqhni.exe

2013-07-10 00:44 - 2013-07-10 00:44 - 00103140 __RSH C:\hyalhc.pif

2013-07-10 00:44 - 2013-07-10 00:44 - 00103140 __RSH C:\bbvhm.exe

2013-07-10 00:43 - 2013-07-10 00:43 - 00103140 __RSH C:\wlrfu.exe

2013-07-10 00:43 - 2013-07-10 00:43 - 00103140 __RSH C:\chhwq.exe

2013-07-10 00:42 - 2013-07-10 00:42 - 00103140 __RSH C:\sxrc.pif

2013-07-10 00:42 - 2013-07-10 00:42 - 00103140 __RSH C:\evoifn.exe

2013-07-10 00:41 - 2013-07-10 00:41 - 00103140 __RSH C:\nhidlw.pif

2013-07-10 00:41 - 2013-07-10 00:41 - 00103140 __RSH C:\fhclr.pif

2013-07-10 00:40 - 2013-07-10 00:40 - 00103140 __RSH C:\ucspc.exe

2013-07-10 00:40 - 2013-07-10 00:40 - 00103140 __RSH C:\pxxgf.pif

2013-07-10 00:40 - 2013-07-10 00:40 - 00103140 __RSH C:\jhub.pif

2013-07-10 00:39 - 2013-07-10 00:39 - 00103140 __RSH C:\pwin.pif

2013-07-10 00:39 - 2013-07-10 00:39 - 00103140 __RSH C:\mwcr.pif

2013-07-10 00:38 - 2013-07-10 00:38 - 00103140 __RSH C:\xwxsfo.pif

2013-07-10 00:38 - 2013-07-10 00:38 - 00103140 __RSH C:\lgpxke.pif

2013-07-10 00:37 - 2013-07-10 00:37 - 00103140 __RSH C:\lqju.pif

2013-07-10 00:37 - 2013-07-10 00:37 - 00103140 __RSH C:\fcdcjq.pif

2013-07-10 00:36 - 2013-07-10 00:36 - 00103140 __RSH C:\vypatl.exe

2013-07-10 00:36 - 2013-07-10 00:36 - 00103140 __RSH C:\qjqo.exe

2013-07-10 00:36 - 2013-07-10 00:36 - 00103140 __RSH C:\hcyb.pif

2013-07-10 00:35 - 2013-07-10 00:35 - 00103140 __RSH C:\tsyu.pif

2013-07-10 00:35 - 2013-07-10 00:35 - 00103140 __RSH C:\icfu.pif

2013-07-10 00:34 - 2013-07-10 00:34 - 00103140 __RSH C:\rhfl.pif

2013-07-10 00:34 - 2013-07-10 00:34 - 00103140 __RSH C:\fwous.pif

2013-07-10 00:33 - 2013-07-10 00:33 - 00103140 __RSH C:\wpsec.exe

2013-07-10 00:33 - 2013-07-10 00:33 - 00103140 __RSH C:\sxqj.exe

2013-07-10 00:32 - 2013-07-10 00:32 - 00103140 __RSH C:\hwymla.exe

2013-07-10 00:32 - 2013-07-10 00:32 - 00103140 __RSH C:\cyijf.exe

2013-07-10 00:31 - 2013-07-10 00:31 - 00103140 __RSH C:\lufy.exe

2013-07-10 00:31 - 2013-07-10 00:31 - 00103140 __RSH C:\icktg.pif

2013-07-10 00:31 - 2013-07-10 00:31 - 00103140 __RSH C:\ahofg.pif

2013-07-10 00:30 - 2013-07-10 00:30 - 00103140 __RSH C:\xdnnrx.pif

2013-07-10 00:30 - 2013-07-10 00:30 - 00103140 __RSH C:\tomy.exe

2013-07-10 00:29 - 2013-07-10 00:29 - 00103140 __RSH C:\yrsska.exe

2013-07-10 00:29 - 2013-07-10 00:29 - 00103140 __RSH C:\qkdcof.exe

2013-07-10 00:28 - 2013-07-10 00:28 - 00103140 __RSH C:\heuty.exe

2013-07-10 00:28 - 2013-07-10 00:28 - 00103140 __RSH C:\fgrsn.pif

2013-07-10 00:27 - 2013-07-10 00:27 - 00103140 __RSH C:\vdpigq.exe

2013-07-10 00:27 - 2013-07-10 00:27 - 00103140 __RSH C:\oxqny.exe

2013-07-10 00:27 - 2013-07-10 00:27 - 00103140 __RSH C:\dcifjo.pif

2013-07-10 00:26 - 2013-07-10 00:26 - 00103140 __RSH C:\rxmf.pif

2013-07-10 00:26 - 2013-07-10 00:26 - 00103140 __RSH C:\fcpc.pif

2013-07-10 00:25 - 2013-07-10 00:25 - 00103140 __RSH C:\vdidcm.exe

2013-07-10 00:25 - 2013-07-10 00:25 - 00103140 __RSH C:\kidi.exe

2013-07-10 00:24 - 2013-07-10 00:24 - 00103140 __RSH C:\pdola.pif

2013-07-10 00:24 - 2013-07-10 00:24 - 00103140 __RSH C:\ohbi.pif

2013-07-10 00:23 - 2013-07-10 00:23 - 00103140 __RSH C:\lqetqf.pif

2013-07-10 00:23 - 2013-07-10 00:23 - 00103140 __RSH C:\fhghw.exe

2013-07-10 00:22 - 2013-07-10 00:22 - 00103140 __RSH C:\vtwye.exe

2013-07-10 00:22 - 2013-07-10 00:22 - 00103140 __RSH C:\jcjitr.exe

2013-07-10 00:22 - 2013-07-10 00:22 - 00103140 __RSH C:\delf.pif

2013-07-10 00:21 - 2013-07-10 00:21 - 00103140 __RSH C:\qiyq.pif

2013-07-10 00:21 - 2013-07-10 00:21 - 00103140 __RSH C:\kneepf.pif

2013-07-10 00:20 - 2013-07-10 00:20 - 00103140 __RSH C:\smquul.pif

2013-07-10 00:20 - 2013-07-10 00:20 - 00103140 __RSH C:\cnaxd.exe

2013-07-10 00:19 - 2013-07-10 00:19 - 00103140 __RSH C:\shcyum.exe

2013-07-10 00:19 - 2013-07-10 00:19 - 00103140 __RSH C:\ivuyml.exe

2013-07-10 00:18 - 2013-07-10 00:18 - 00103140 __RSH C:\xvvhi.exe

2013-07-10 00:18 - 2013-07-10 00:18 - 00103140 __RSH C:\nljofr.pif

2013-07-10 00:18 - 2013-07-10 00:18 - 00103140 __RSH C:\frwvk.pif

2013-07-10 00:17 - 2013-07-10 00:17 - 00103140 __RSH C:\mkipj.exe

2013-07-10 00:17 - 2013-07-10 00:17 - 00103140 __RSH C:\jdjl.pif

2013-07-10 00:16 - 2013-07-10 00:16 - 00103140 __RSH C:\ddkab.pif

2013-07-10 00:16 - 2013-07-10 00:16 - 00103140 __RSH C:\atquh.exe

2013-07-10 00:15 - 2013-07-10 00:15 - 00103140 __RSH C:\sgotxv.exe

2013-07-10 00:15 - 2013-07-10 00:15 - 00103140 __RSH C:\cdojd.exe

2013-07-10 00:14 - 2013-07-10 00:14 - 00103140 __RSH C:\ixtnjs.pif

2013-07-10 00:14 - 2013-07-10 00:14 - 00103140 __RSH C:\bdaf.exe

2013-07-10 00:13 - 2013-07-10 00:13 - 00103140 __RSH C:\tnnnib.exe

2013-07-10 00:13 - 2013-07-10 00:13 - 00103140 __RSH C:\mrutbn.pif

2013-07-10 00:13 - 2013-07-10 00:13 - 00103140 __RSH C:\moukpr.pif

2013-07-10 00:12 - 2013-07-10 00:12 - 00103140 __RSH C:\lrglx.pif

2013-07-10 00:12 - 2013-07-10 00:12 - 00103140 __RSH C:\eabjkm.pif

2013-07-10 00:11 - 2013-07-10 00:11 - 00103140 __RSH C:\rudori.pif

2013-07-10 00:11 - 2013-07-10 00:11 - 00103140 __RSH C:\mkeqo.exe

2013-07-10 00:10 - 2013-07-10 00:10 - 00103140 __RSH C:\visv.exe

2013-07-10 00:10 - 2013-07-10 00:10 - 00103140 __RSH C:\boyp.pif

2013-07-10 00:09 - 2013-07-10 00:09 - 00103140 __RSH C:\ucbi.exe

2013-07-10 00:09 - 2013-07-10 00:09 - 00103140 __RSH C:\jxmo.pif

2013-07-10 00:08 - 2013-07-10 00:08 - 00103140 __RSH C:\xgaxd.pif

2013-07-10 00:08 - 2013-07-10 00:08 - 00103140 __RSH C:\vwpuhy.pif

2013-07-10 00:08 - 2013-07-10 00:08 - 00103140 __RSH C:\kxhyqy.exe

2013-07-10 00:07 - 2013-07-10 00:07 - 00103140 __RSH C:\vxpm.exe

2013-07-10 00:07 - 2013-07-10 00:07 - 00103140 __RSH C:\uegs.pif

2013-07-10 00:06 - 2013-07-10 00:06 - 00103140 __RSH C:\yykxyp.exe

2013-07-10 00:06 - 2013-07-10 00:06 - 00103140 __RSH C:\qjwfxr.exe

2013-07-10 00:05 - 2013-07-10 00:05 - 00103140 __RSH C:\pfvdnr.exe

2013-07-10 00:05 - 2013-07-10 00:05 - 00103140 __RSH C:\humkr.exe

2013-07-10 00:04 - 2013-07-10 00:04 - 00103140 __RSH C:\lovwn.exe

2013-07-10 00:04 - 2013-07-10 00:04 - 00103140 __RSH C:\jekm.pif

2013-07-10 00:04 - 2013-07-10 00:04 - 00103140 __RSH C:\cydwbe.pif

2013-07-10 00:03 - 2013-07-10 00:03 - 00103140 __RSH C:\vprmuv.pif

2013-07-10 00:03 - 2013-07-10 00:03 - 00103140 __RSH C:\riwug.exe

2013-07-10 00:02 - 2013-07-10 00:02 - 00103140 __RSH C:\qcjrg.exe

2013-07-10 00:02 - 2013-07-10 00:02 - 00103140 __RSH C:\lblcb.exe

2013-07-10 00:01 - 2013-07-10 00:01 - 00103140 __RSH C:\jmesj.exe

2013-07-10 00:01 - 2013-07-10 00:01 - 00103140 __RSH C:\cdwu.exe

2013-07-10 00:00 - 2013-07-10 00:00 - 00103140 __RSH C:\xcmla.pif

2013-07-10 00:00 - 2013-07-10 00:00 - 00103140 __RSH C:\nmpwg.exe

2013-07-09 23:59 - 2013-07-09 23:59 - 00103140 __RSH C:\smcta.exe

2013-07-09 23:59 - 2013-07-09 23:59 - 00103140 __RSH C:\rqlgr.pif

2013-07-09 23:59 - 2013-07-09 23:59 - 00103140 __RSH C:\pbom.pif

2013-07-09 23:58 - 2013-07-09 23:58 - 00103140 __RSH C:\qnjexr.exe

2013-07-09 23:58 - 2013-07-09 23:58 - 00103140 __RSH C:\mtfut.exe

2013-07-09 23:57 - 2013-07-09 23:57 - 00103140 __RSH C:\otgn.exe

2013-07-09 23:57 - 2013-07-09 23:57 - 00103140 __RSH C:\myksca.exe

2013-07-09 23:56 - 2013-07-09 23:56 - 00103140 __RSH C:\jxqgu.exe

2013-07-09 23:56 - 2013-07-09 23:56 - 00103140 __RSH C:\bxwq.exe

2013-07-09 23:55 - 2013-07-09 23:55 - 00103140 __RSH C:\yfnr.exe

2013-07-09 23:55 - 2013-07-09 23:55 - 00103140 __RSH C:\sxsxg.exe

2013-07-09 23:55 - 2013-07-09 23:55 - 00103140 __RSH C:\cldc.pif

2013-07-09 23:54 - 2013-07-09 23:54 - 00103140 __RSH C:\cqkhu.exe

2013-07-09 23:54 - 2013-07-09 23:54 - 00103140 __RSH C:\axnpe.exe

2013-07-09 23:53 - 2013-07-09 23:53 - 00103140 __RSH C:\mgbud.exe

2013-07-09 23:53 - 2013-07-09 23:53 - 00103140 __RSH C:\ilqkma.exe

2013-07-09 23:52 - 2013-07-09 23:52 - 00103140 __RSH C:\xhmm.pif

2013-07-09 23:52 - 2013-07-09 23:52 - 00103140 __RSH C:\pwqeol.exe

2013-07-09 23:51 - 2013-07-09 23:51 - 00103140 __RSH C:\qlmw.pif

2013-07-09 23:51 - 2013-07-09 23:51 - 00103140 __RSH C:\pcrt.exe

2013-07-09 23:50 - 2013-07-09 23:50 - 00103140 __RSH C:\wivwfa.pif

2013-07-09 23:50 - 2013-07-09 23:50 - 00103140 __RSH C:\ukpiw.exe

2013-07-09 23:50 - 2013-07-09 23:50 - 00103140 __RSH C:\bhndt.exe

2013-07-09 23:49 - 2013-07-09 23:49 - 00103140 __RSH C:\rmrsgh.exe

2013-07-09 23:49 - 2013-07-09 23:49 - 00103140 __RSH C:\owwagt.exe

2013-07-09 23:48 - 2013-07-09 23:48 - 00103140 __RSH C:\tqer.exe

2013-07-09 23:48 - 2013-07-09 23:48 - 00103140 __RSH C:\jjgvm.pif

2013-07-09 23:47 - 2013-07-09 23:47 - 00103140 __RSH C:\vluuu.pif

2013-07-09 23:47 - 2013-07-09 23:47 - 00103140 __RSH C:\lsimek.exe

2013-07-09 23:46 - 2013-07-09 23:46 - 00103140 __RSH C:\jbkc.pif

2013-07-09 23:46 - 2013-07-09 23:46 - 00103140 __RSH C:\fwpvn.exe

2013-07-09 23:46 - 2013-07-09 23:46 - 00103140 __RSH C:\bjao.pif

2013-07-09 23:45 - 2013-07-09 23:45 - 00103140 __RSH C:\yvohxu.pif

2013-07-09 23:45 - 2013-07-09 23:45 - 00103140 __RSH C:\jvlydr.pif

2013-07-09 23:44 - 2013-07-09 23:44 - 00103140 __RSH C:\lsxw.exe

2013-07-09 23:44 - 2013-07-09 23:44 - 00103140 __RSH C:\dyqr.exe

2013-07-09 23:43 - 2013-07-09 23:43 - 00103140 __RSH C:\saae.exe

2013-07-09 23:43 - 2013-07-09 23:43 - 00103140 __RSH C:\mrasi.exe

2013-07-09 23:42 - 2013-07-09 23:42 - 00103140 __RSH C:\bwihq.exe

2013-07-09 23:42 - 2013-07-09 23:42 - 00103140 __RSH C:\buucgr.exe

2013-07-09 23:41 - 2013-07-09 23:41 - 00103140 __RSH C:\plvbt.exe

2013-07-09 23:41 - 2013-07-09 23:41 - 00103140 __RSH C:\jsbpi.pif

2013-07-09 23:41 - 2013-07-09 23:41 - 00103140 __RSH C:\fsdhl.exe

2013-07-09 23:40 - 2013-07-09 23:40 - 00103140 __RSH C:\ptpb.pif

2013-07-09 23:40 - 2013-07-09 23:40 - 00103140 __RSH C:\aqyb.pif

2013-07-09 23:39 - 2013-07-09 23:39 - 00103140 __RSH C:\klbarv.exe

2013-07-09 23:39 - 2013-07-09 23:39 - 00103140 __RSH C:\hympc.exe

2013-07-09 23:38 - 2013-07-09 23:38 - 00103140 __RSH C:\qdat.pif

2013-07-09 23:38 - 2013-07-09 23:38 - 00103140 __RSH C:\pdapy.exe

2013-07-09 23:37 - 2013-07-09 23:37 - 00103140 __RSH C:\mjbr.exe

2013-07-09 23:37 - 2013-07-09 23:37 - 00103140 __RSH C:\jpxob.exe

2013-07-09 23:37 - 2013-07-09 23:37 - 00103140 __RSH C:\bjkfr.exe

2013-07-09 23:36 - 2013-07-09 23:36 - 00103140 __RSH C:\vkcaya.pif

2013-07-09 23:36 - 2013-07-09 23:36 - 00103140 __RSH C:\bvil.pif

2013-07-09 23:35 - 2013-07-09 23:35 - 00103140 __RSH C:\tycwde.pif

2013-07-09 23:35 - 2013-07-09 23:35 - 00103140 __RSH C:\adpjgq.exe

2013-07-09 23:34 - 2013-07-09 23:34 - 00103140 __RSH C:\tihvil.pif

2013-07-09 23:34 - 2013-07-09 23:34 - 00103140 __RSH C:\kvgij.exe

2013-07-09 23:33 - 2013-07-09 23:33 - 00103140 __RSH C:\vmdpxc.pif

2013-07-09 23:33 - 2013-07-09 23:33 - 00103140 __RSH C:\khku.pif

2013-07-09 23:32 - 2013-07-09 23:32 - 00103140 __RSH C:\qmmgyu.exe

2013-07-09 23:32 - 2013-07-09 23:32 - 00103140 __RSH C:\prmr.pif

2013-07-09 23:32 - 2013-07-09 23:32 - 00103140 __RSH C:\etjuho.pif

2013-07-09 23:31 - 2013-07-09 23:31 - 00103140 __RSH C:\qeeom.pif

2013-07-09 23:31 - 2013-07-09 23:31 - 00103140 __RSH C:\kwunv.exe

2013-07-09 23:30 - 2013-07-09 23:30 - 00103140 __RSH C:\iimild.exe

2013-07-09 23:30 - 2013-07-09 23:30 - 00103140 __RSH C:\cers.exe

2013-07-09 23:29 - 2013-07-09 23:29 - 00103140 __RSH C:\lnwhv.pif

2013-07-09 23:29 - 2013-07-09 23:29 - 00103140 __RSH C:\jqmvj.pif

2013-07-09 23:28 - 2013-07-09 23:28 - 00103140 __RSH C:\oufltg.exe

2013-07-09 23:28 - 2013-07-09 23:28 - 00103140 __RSH C:\gsow.pif

2013-07-09 23:28 - 2013-07-09 23:28 - 00103140 __RSH C:\grhjhr.pif

2013-07-09 23:27 - 2013-07-09 23:27 - 00103140 __RSH C:\qhhc.pif

2013-07-09 23:27 - 2013-07-09 23:27 - 00103140 __RSH C:\globba.exe

2013-07-09 23:26 - 2013-07-09 23:26 - 00103140 __RSH C:\lnuc.pif

2013-07-09 23:26 - 2013-07-09 23:26 - 00103140 __RSH C:\bayjef.pif

2013-07-09 23:25 - 2013-07-09 23:25 - 00103140 __RSH C:\oavh.pif

2013-07-09 23:25 - 2013-07-09 23:25 - 00103140 __RSH C:\eagxdh.pif

2013-07-09 23:24 - 2013-07-09 23:24 - 00103140 __RSH C:\povn.pif

2013-07-09 23:24 - 2013-07-09 23:24 - 00103140 __RSH C:\oqtw.pif

2013-07-09 23:23 - 2013-07-09 23:23 - 00103140 __RSH C:\wffmh.exe

2013-07-09 23:23 - 2013-07-09 23:23 - 00103140 __RSH C:\uhitwc.pif

2013-07-09 23:23 - 2013-07-09 23:23 - 00103140 __RSH C:\ojmr.exe

2013-07-09 23:22 - 2013-07-09 23:22 - 00103140 __RSH C:\oomung.pif

2013-07-09 23:22 - 2013-07-09 23:22 - 00103140 __RSH C:\kfdor.exe

2013-07-09 23:21 - 2013-07-09 23:21 - 00103140 __RSH C:\kusdh.exe

2013-07-09 23:21 - 2013-07-09 23:21 - 00103140 __RSH C:\glrnx.exe

2013-07-09 23:20 - 2013-07-09 23:20 - 00103140 __RSH C:\pshwn.exe

2013-07-09 23:20 - 2013-07-09 23:20 - 00103140 __RSH C:\boeuy.pif

2013-07-09 23:19 - 2013-07-09 23:19 - 00103140 __RSH C:\tcmo.exe

2013-07-09 23:19 - 2013-07-09 23:19 - 00103140 __RSH C:\dbet.exe

2013-07-09 23:18 - 2013-07-09 23:18 - 00103140 __RSH C:\vuasv.exe

2013-07-09 23:18 - 2013-07-09 23:18 - 00103140 __RSH C:\pfdh.exe

2013-07-09 23:18 - 2013-07-09 23:18 - 00103140 __RSH C:\ecsxf.pif

2013-07-09 23:17 - 2013-07-09 23:17 - 00103140 __RSH C:\ocebq.exe

2013-07-09 23:17 - 2013-07-09 23:17 - 00103140 __RSH C:\albv.pif

2013-07-09 23:16 - 2013-07-09 23:16 - 00103140 __RSH C:\vfetq.exe

2013-07-09 23:16 - 2013-07-09 23:16 - 00103140 __RSH C:\mufl.exe

2013-07-09 23:15 - 2013-07-09 23:15 - 00103140 __RSH C:\gnxin.exe

2013-07-09 23:15 - 2013-07-09 23:15 - 00103140 __RSH C:\cubx.exe

2013-07-09 23:14 - 2013-07-09 23:14 - 00103140 __RSH C:\xsmh.exe

2013-07-09 23:14 - 2013-07-09 23:14 - 00103140 __RSH C:\rtcvb.exe

2013-07-09 23:14 - 2013-07-09 23:14 - 00103140 __RSH C:\bmtlmb.pif

2013-07-09 23:13 - 2013-07-09 23:13 - 00103140 __RSH C:\sqxop.pif

2013-07-09 23:13 - 2013-07-09 23:13 - 00103140 __RSH C:\qnlp.exe

2013-07-09 23:12 - 2013-07-09 23:12 - 00103140 __RSH C:\hbodr.pif

2013-07-09 23:12 - 2013-07-09 23:12 - 00103140 __RSH C:\focp.exe

2013-07-09 23:11 - 2013-07-09 23:11 - 00103140 __RSH C:\ibymxx.exe

2013-07-09 23:11 - 2013-07-09 23:11 - 00103140 __RSH C:\dfcnkk.exe

2013-07-09 23:10 - 2013-07-09 23:10 - 00103140 __RSH C:\rsly.pif

2013-07-09 23:10 - 2013-07-09 23:10 - 00103140 __RSH C:\lpfi.pif

2013-07-09 23:09 - 2013-07-09 23:09 - 00103140 __RSH C:\whkpqh.exe

2013-07-09 23:09 - 2013-07-09 23:09 - 00103140 __RSH C:\usptmy.pif

2013-07-09 23:09 - 2013-07-09 23:09 - 00103140 __RSH C:\gcrr.pif

2013-07-09 23:08 - 2013-07-09 23:08 - 00103140 __RSH C:\jxvilp.exe

2013-07-09 23:08 - 2013-07-09 23:08 - 00103140 __RSH C:\bislv.pif

2013-07-09 23:07 - 2013-07-09 23:07 - 00103140 __RSH C:\nythko.exe

2013-07-09 23:07 - 2013-07-09 23:07 - 00103140 __RSH C:\jcvqx.exe

2013-07-09 23:06 - 2013-07-09 23:06 - 00103140 __RSH C:\fqchv.exe

2013-07-09 23:06 - 2013-07-09 23:06 - 00103140 __RSH C:\fciiyp.exe

2013-07-09 23:05 - 2013-07-09 23:05 - 00103140 __RSH C:\jvaldn.exe

2013-07-09 23:05 - 2013-07-09 23:05 - 00103140 __RSH C:\bqgo.exe

2013-07-09 23:05 - 2013-07-09 23:05 - 00103140 __RSH C:\amer.exe

2013-07-09 23:04 - 2013-07-09 23:04 - 00103140 __RSH C:\xjlnc.exe

2013-07-09 23:04 - 2013-07-09 23:04 - 00103140 __RSH C:\gtuikh.exe

2013-07-09 23:03 - 2013-07-09 23:03 - 00103140 __RSH C:\yowwmt.pif

2013-07-09 23:03 - 2013-07-09 23:03 - 00103140 __RSH C:\pgwh.pif

2013-07-09 23:02 - 2013-07-09 23:02 - 00103140 __RSH C:\xbbap.exe

2013-07-09 23:02 - 2013-07-09 23:02 - 00103140 __RSH C:\uvmbxo.exe

2013-07-09 23:01 - 2013-07-09 23:01 - 00103140 __RSH C:\isiopq.exe

2013-07-09 23:01 - 2013-07-09 23:01 - 00103140 __RSH C:\hgsqpt.exe

2013-07-09 23:00 - 2013-07-09 23:00 - 00103140 __RSH C:\semk.exe

2013-07-09 23:00 - 2013-07-09 23:00 - 00103140 __RSH C:\jwyqh.pif

2013-07-09 23:00 - 2013-07-09 23:00 - 00103140 __RSH C:\hywx.pif

2013-07-09 22:59 - 2013-07-09 22:59 - 00103140 __RSH C:\xucuoh.exe

2013-07-09 22:59 - 2013-07-09 22:59 - 00103140 __RSH C:\wlahib.pif

2013-07-09 22:58 - 2013-07-09 22:58 - 00103140 __RSH C:\sbjld.pif

2013-07-09 22:58 - 2013-07-09 22:58 - 00103140 __RSH C:\agfwma.pif

2013-07-09 22:57 - 2013-07-09 22:57 - 00103140 __RSH C:\vmfc.exe

2013-07-09 22:57 - 2013-07-09 22:57 - 00103140 __RSH C:\lojbvv.pif

2013-07-09 22:56 - 2013-07-09 22:56 - 00103140 __RSH C:\hmdyeh.pif

2013-07-09 22:56 - 2013-07-09 22:56 - 00103140 __RSH C:\fiynhq.exe

2013-07-09 22:56 - 2013-07-09 22:56 - 00103140 __RSH C:\alfj.exe

2013-07-09 22:55 - 2013-07-09 22:55 - 00103140 __RSH C:\pyyq.pif

2013-07-09 22:55 - 2013-07-09 22:55 - 00103140 __RSH C:\lboo.exe

2013-07-09 22:54 - 2013-07-09 22:54 - 00103140 __RSH C:\pwfik.pif

2013-07-09 22:54 - 2013-07-09 22:54 - 00103140 __RSH C:\ecjxr.pif

2013-07-09 22:53 - 2013-07-09 22:53 - 00103140 __RSH C:\stqaux.exe

2013-07-09 22:53 - 2013-07-09 22:53 - 00103140 __RSH C:\fiupx.pif

2013-07-09 22:52 - 2013-07-09 22:52 - 00103140 __RSH C:\vion.pif

2013-07-09 22:52 - 2013-07-09 22:52 - 00103140 __RSH C:\cwtw.pif

2013-07-09 22:51 - 2013-07-09 22:51 - 00103140 __RSH C:\xrweq.exe

2013-07-09 22:51 - 2013-07-09 22:51 - 00103140 __RSH C:\kwtkf.exe

2013-07-09 22:51 - 2013-07-09 22:51 - 00103140 __RSH C:\faanbr.pif

2013-07-09 22:50 - 2013-07-09 22:50 - 00103140 __RSH C:\cbpb.exe

2013-07-09 22:50 - 2013-07-09 22:50 - 00103140 __RSH C:\aadjb.pif

2013-07-09 22:49 - 2013-07-09 22:49 - 00103140 __RSH C:\uoniw.exe

2013-07-09 22:49 - 2013-07-09 22:49 - 00103140 __RSH C:\bxon.pif

2013-07-09 22:48 - 2013-07-09 22:48 - 00103140 __RSH C:\sgdq.exe

2013-07-09 22:48 - 2013-07-09 22:48 - 00103140 __RSH C:\mwdtj.pif

2013-07-09 22:47 - 2013-07-09 22:47 - 00103140 __RSH C:\xqxh.exe

2013-07-09 22:47 - 2013-07-09 22:47 - 00103140 __RSH C:\qesl.pif

2013-07-09 22:47 - 2013-07-09 22:47 - 00103140 __RSH C:\oblbn.pif

2013-07-09 22:46 - 2013-07-09 22:46 - 00103140 __RSH C:\wjrei.exe

2013-07-09 22:46 - 2013-07-09 22:46 - 00103140 __RSH C:\jwvhno.exe

2013-07-09 22:45 - 2013-07-09 22:45 - 00103140 __RSH C:\xiks.pif

2013-07-09 22:45 - 2013-07-09 22:45 - 00103140 __RSH C:\ltyro.exe

2013-07-09 22:44 - 2013-07-09 22:44 - 00103140 __RSH C:\sbfe.exe

2013-07-09 22:44 - 2013-07-09 22:44 - 00103140 __RSH C:\fhoi.pif

2013-07-09 22:43 - 2013-07-09 22:43 - 00103140 __RSH C:\jbiqjh.pif

2013-07-09 22:43 - 2013-07-09 22:43 - 00103140 __RSH C:\esuw.pif

2013-07-09 22:42 - 2013-07-09 22:42 - 00103140 __RSH C:\regqj.pif

2013-07-09 22:42 - 2013-07-09 22:42 - 00103140 __RSH C:\mqdwkd.exe

2013-07-09 22:42 - 2013-07-09 22:42 - 00103140 __RSH C:\elenyt.exe

2013-07-09 22:41 - 2013-07-09 22:41 - 00103140 __RSH C:\pqegjr.pif

2013-07-09 22:41 - 2013-07-09 22:41 - 00103140 __RSH C:\ensg.exe

2013-07-09 22:40 - 2013-07-09 22:40 - 00103140 __RSH C:\lrpg.exe

2013-07-09 22:40 - 2013-07-09 22:40 - 00103140 __RSH C:\hwhj.exe

2013-07-09 22:39 - 2013-07-09 22:39 - 00103140 __RSH C:\wfmf.pif

2013-07-09 22:07 - 2012-07-06 10:46 - 00268981 ____A C:\Windows\WindowsUpdate.log

2013-07-09 16:26 - 2012-07-06 11:00 - 00000830 ____A C:\Windows\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d.job

2013-07-09 15:39 - 2012-09-06 15:34 - 00000876 ____A C:\Windows\Tasks\RockMeltUpdateTaskUserS-1-5-21-462160559-2116912635-3052411980-1000Core.job

2013-07-09 09:19 - 2013-07-09 09:19 - 00000000 ____D C:\Users\Grant\Downloads\Outlook

2013-07-09 09:18 - 2013-07-09 09:18 - 11113988 ____A C:\Users\Grant\Downloads\Outlook.zip

2013-07-08 09:30 - 2012-09-06 15:32 - 00000000 ____D C:\Users\Grant\AppData\Local\Google

2013-07-08 09:09 - 2012-09-11 17:55 - 00000000 ____D C:\Users\Grant\AppData\Local\Windows Live

2013-07-08 09:08 - 2012-09-11 18:03 - 00000000 ____D C:\Users\Grant\Tracing

2013-07-07 23:26 - 2013-01-03 20:52 - 00000000 ____D C:\Users\Grant\AppData\Roaming\vlc

2013-07-07 19:14 - 2013-07-07 19:14 - 00000000 ____D C:\Program Files (x86)\LogMeIn Hamachi

2013-07-06 17:02 - 2012-10-29 17:27 - 00000000 ____D C:\Users\Grant\AppData\Roaming\Spotify

2013-07-05 10:48 - 2012-09-19 22:18 - 00000000 ____D C:\Users\Grant\AppData\Roaming\Azureus

2013-07-05 01:10 - 2012-09-29 15:28 - 00000000 ____D C:\Users\Grant\AppData\Local\CrashDumps

2013-07-04 16:18 - 2013-03-12 01:42 - 00000000 ____D C:\Program Files (x86)\puush

2013-07-03 11:19 - 2013-05-03 18:19 - 00000000 ____D C:\Users\Aleiya\AppData\Local\LogMeIn Hamachi

2013-07-01 17:04 - 2012-10-29 17:28 - 00000000 ____D C:\Users\Grant\AppData\Local\Spotify

2013-07-01 00:28 - 2012-09-29 16:32 - 00000000 ____D C:\Users\Grant\Documents\EA SPORTS Rugby 08

2013-06-30 10:03 - 2013-06-05 18:46 - 00000169 ____A C:\Users\Grant\Desktop\Network Deets.txt

2013-06-30 09:42 - 2013-05-03 18:19 - 00000000 ____D C:\Users\Aleiya\Documents\Bluetooth Folder

2013-06-29 22:49 - 2012-09-07 12:13 - 00000045 ____A C:\Users\Grant\jagex_cl_runescape_LIVE1.dat

2013-06-28 11:13 - 2013-05-03 18:23 - 00000000 ____D C:\Users\Aleiya\AppData\Roaming\Skype

2013-06-28 11:13 - 2012-09-07 00:14 - 00000000 ____D C:\ProgramData\Skype

2013-06-28 11:11 - 2013-06-28 11:11 - 00000000 ____D C:\Users\Aleiya\AppData\Local\Apple

2013-06-27 15:42 - 2012-09-16 13:23 - 00000049 ____A C:\Users\Grant\jagex_cl_runescape_LIVE_BETA.dat

2013-06-27 12:01 - 2012-09-19 22:18 - 00000000 ____D C:\Program Files (x86)\Vuze

2013-06-26 06:25 - 2013-06-14 09:35 - 00000000 ___HD C:\Program Files (x86)\Dzhnednjrxo

2013-06-24 17:35 - 2013-06-24 17:35 - 00000000 ____D C:\Users\Grant\AppData\Local\PopCap Games

2013-06-24 17:35 - 2013-06-24 17:35 - 00000000 ____D C:\ProgramData\PopCap Games

2013-06-24 17:34 - 2013-06-24 17:33 - 87436896 ____A C:\Users\Grant\Downloads\Bejeweled3Setup-en.exe

2013-06-22 19:44 - 2013-05-22 18:36 - 00000000 ____D C:\Users\Aleiya\AppData\Roaming\vlc

2013-06-22 10:38 - 2013-05-28 23:46 - 00000000 ____D C:\Users\Aleiya\AppData\Local\Windows Live

2013-06-21 15:29 - 1601-01-02 05:16 - 00002194 ____A C:\Users\Public\Desktop\Google Chrome.lnk

2013-06-20 14:49 - 2013-05-28 23:46 - 00000000 ____D C:\Users\Aleiya\Tracing

2013-06-19 20:50 - 2013-05-05 19:00 - 00000000 ____D C:\Users\Aleiya\Documents\Youcam

2013-06-19 19:22 - 2013-06-19 19:21 - 09459883 ____A C:\Users\Aleiya\Downloads\vlc-0.8.6h-win32.exe

2013-06-17 12:55 - 2013-05-09 18:02 - 00000000 ____D C:\Users\Aleiya\AppData\Local\Adobe

2013-06-17 12:55 - 2013-05-03 18:27 - 00000000 ____D C:\Users\Aleiya\AppData\Roaming\Adobe

2013-06-16 20:29 - 1601-01-02 05:16 - 00086016 ____A C:\Users\Grant\Documents\IMG_2826.jpeg

2013-06-13 18:57 - 2013-06-13 18:56 - 00000000 ____D C:\Users\Aleiya\AppData\Local\Microsoft Games

2013-06-12 16:01 - 2012-09-27 18:10 - 00692104 ____A (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe

2013-06-12 16:01 - 2012-09-27 18:10 - 00071048 ____A (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl

2013-06-10 15:37 - 2013-06-10 15:37 - 00292744 ____A (StarApp) C:\Users\Aleiya\Downloads\Cold.Case.S07E17.Flashover.HDTV.XviD-NoTV.avi.exe

 

==================== Bamital & volsnap Check =================

 

C:\Windows\System32\winlogon.exe => MD5 is legit

C:\Windows\System32\wininit.exe => MD5 is legit

C:\Windows\SysWOW64\wininit.exe => MD5 is legit

C:\Windows\explorer.exe => MD5 is legit

C:\Windows\SysWOW64\explorer.exe => MD5 is legit

C:\Windows\System32\svchost.exe => MD5 is legit

C:\Windows\SysWOW64\svchost.exe => MD5 is legit

C:\Windows\System32\services.exe => MD5 is legit

C:\Windows\System32\User32.dll => MD5 is legit

C:\Windows\SysWOW64\User32.dll => MD5 is legit

C:\Windows\System32\userinit.exe => MD5 is legit

C:\Windows\SysWOW64\userinit.exe => MD5 is legit

C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit

 

 

LastRegBack: 2013-07-03 16:14

 

==================== End Of Log ============================
Link to post
Share on other sites

Download attached fixlist.txt file and save it to the Desktop.

 

NOTE. It's important that both FRST and fixlist.txt are in the same location or the fix will not work.

 

Run FRST/FRST64 and press the Fix button just once and wait.

 

The tool will make a log on the Desktop (Fixlog.txt). Please post it to your reply.

 

Next,

 

Open Malwarebytes, check for updates then run Quick scan. Full instructions follow if  Malwarebytes is not installed:

 

Download Malwarebytes from one of the following links and save it to your desktop.:

 

 

http://www.malwarebytes.org/mbam.php 

http://www.softpedia.com/get/Antivirus/Malwarebytes-Anti-Malware.shtml[/url]

http://www.majorgeeks.com/Malwarebytes_Anti-Malware_d5756.html

 

Double Click mbam-setup.exe to install the application.

 

 

Extra Note:

If MBAM encounters a file that is difficult to remove,you will be presented with 1 of 2 prompts,click OK to either and let MBAM proceed with the disinfection process. If asked to restart the computer, please do so immediately.

fixlist.txt

Link to post
Share on other sites

Sorry for the delayed response once again, the log for MalwareBytes is here, and fixlog.txt attatched.

 

 

Malwarebytes Anti-Malware 1.75.0.1300
www.malwarebytes.org
 
Database version: v2013.07.10.06
 
Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 9.0.8112.16421
Grant :: ALEIYA [administrator]
 
10/07/2013 18:35:04
mbam-log-2013-07-10 (18-35-04).txt
 
Scan type: Quick scan
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 234421
Time elapsed: 5 minute(s), 4 second(s)
 
Memory Processes Detected: 4
C:\Users\Grant\AppData\Local\Temp\WINNHXQAH.EXE (Spyware.Password) -> 7732 -> Delete on reboot.
C:\Users\Grant\AppData\Local\Temp\WINFYORYJ.EXE (Trojan.Downloader) -> 7876 -> Delete on reboot.
C:\Windows\Temp\winhkgcy.exe (Spyware.Password) -> 7484 -> Delete on reboot.
C:\Windows\Temp\winjtjy.exe (Trojan.Downloader) -> 5192 -> Delete on reboot.
 
Memory Modules Detected: 0
(No malicious items detected)
 
Registry Keys Detected: 0
(No malicious items detected)
 
Registry Values Detected: 0
(No malicious items detected)
 
Registry Data Items Detected: 3
HKLM\SOFTWARE\Microsoft\Security Center|AntiVirusDisableNotify (PUM.Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and repaired successfully.
HKLM\SOFTWARE\Microsoft\Security Center|FirewallDisableNotify (PUM.Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and repaired successfully.
HKLM\SOFTWARE\Microsoft\Security Center|UpdatesDisableNotify (PUM.Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and repaired successfully.
 
Folders Detected: 0
(No malicious items detected)
 
Files Detected: 65
C:\Users\Grant\AppData\Local\Temp\WINNHXQAH.EXE (Spyware.Password) -> Quarantined and deleted successfully.
C:\Users\Grant\AppData\Local\Temp\WINFYORYJ.EXE (Trojan.Downloader) -> Quarantined and deleted successfully.
C:\Windows\Temp\winhkgcy.exe (Spyware.Password) -> Quarantined and deleted successfully.
C:\Windows\Temp\winjtjy.exe (Trojan.Downloader) -> Quarantined and deleted successfully.
C:\Users\Grant\AppData\Local\Temp\winhchn.exe (Trojan.Downloader) -> Quarantined and deleted successfully.
C:\aocri.pif (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\bmmfgt.pif (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\bmmx.exe (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\bngywg.exe (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\bnkxbh.pif (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\bsvdgm.pif (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\cjingj.exe (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\ctlub.pif (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\eedlr.pif (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\ejutx.pif (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\flbmvk.exe (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\gascw.exe (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\gyyuf.pif (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\hbjg.pif (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\ilrkk.pif (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\ivccj.pif (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\jdmivk.exe (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\jvrbns.pif (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\jxlqlh.pif (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\kels.exe (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\kpfc.pif (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\kpus.exe (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\kqrqh.pif (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\lhinb.exe (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\ljxbfv.exe (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\lpodmd.pif (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\lukr.pif (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\lvymsr.exe (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\mbsc.pif (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\mhhmeb.exe (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\mqmesq.exe (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\msbmc.exe (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\nvlh.pif (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\obths.pif (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\oedsx.pif (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\pijl.pif (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\pytowa.exe (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\rtwdsu.exe (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\ruwwwh.exe (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\scwhq.pif (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\sfqs.pif (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\skoc.exe (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\snxfw.exe (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\spdfsv.pif (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\thwhq.exe (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\twbhhi.exe (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\twjnxc.pif (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\uhtnt.exe (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\vdec.pif (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\vjqfa.exe (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\vojfyy.pif (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\wfhgex.exe (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\wlbk.pif (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\womtb.pif (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\wxlhuf.pif (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\ybas.pif (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\ygnmln.exe (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\ynfr.pif (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\ysawd.pif (Trojan.Malpack.Gen) -> Quarantined and deleted successfully.
C:\Windows\Temp\winqcal.exe (Trojan.Downloader) -> Quarantined and deleted successfully.
 
(end)
 
However after the reboot by MalwareBytes, my firewall was once again turned off and random applications were using up to 25% of the cpu, for instance, right now mbamgui.exe is using 25% of my cpu and there are two exes with random filenames running off it from my appdata/TEMP folder. I'm also doing a scan now after the reboot and am already finding more infected objects in the same locations. I can post the log for that scan after it has completed as well if that would help?
 
Thank you very much.

Fixlog.txt

Link to post
Share on other sites

Yep I do assume hidden Rootkit is to blame, these issues will just continue to reproduce until we kill it off.... Se if the following makes any progress, if you have issues with this tell me and maybe we try another way...

 

STEP A:

 

Download and create a bootable Kaspersky Rescue Disk CD

 

1. Download the Kaspersky Rescue Disk ISOimage from below.

 KASPERSKY RESCUE DISK DOWNLOAD LINK (This link will open a new page from where you can download Kaspersky Rescue Disk ISO)

2. Download ImgBurn, a software that will help us create this bootable disk.

 IMGBURN DOWNLOAD LINK (This link will open a new page from where you can download ImgBurn)

3. You can now insert your blank DVD/CD in your burner.

4. Install ImgBurn by following the prompts and then start this program.

5. Click on the Write image file to disc button.

 

 

ImgB1-1.png

 

 

6. Under ‘Source’ click on the Browse for file button, then browse to the location where you previously saved the Kaspersky Rescue Disk ISO file.(kav_rescue_10.iso)

 

 

ImgB2-1.png

 

 

7. Click on the big Write button.

 

 

ImgB3-1.png

 

 

8. The disc creation process will now start and it will take around 5-10 minutes to complete.

 

 

STEP B:

 

Configure the computer to boot from CD-ROM

 

On some machines,if you restart the computer and repeatedly tap the F11 key it should bring up the Boot Menu, from there you can select to boot from the CD.

IF this doesn’t happen then you’ll need to configure your computer to boot for a CD like you’ll see below.

 

 Use the Delete or F2 keys, to load the BIOS menu.Information how to enter the BIOS menu is displayed on the screen at the start of the OS boot:

 

1. Use the Delete or F2 keys, to load the BIOS menu.Information how to enter the BIOS menu is displayed on the screen at the start of the OS boot:

 

 

Bios1-1.png

 

 

2. In your PC BIOS settings select the Boot menu and set CD/DVD-ROM as a primary boot device.

 

 

Bios2-1.png

 

 

3. Insert your Kaspersky Rescue Disk and restart your computer.

 

 

STEP C:

 

Boot your computer from Kaspersky Rescue Disk

 

1. Your computer will now boot from the Kaspersky Rescue Disk,and you’ll be asked to press any key to proceed with this process

 

 

Kasp1-1.png

 

 

2. In the start up wizard window that will open, select your language using the cursor moving keys. Press the ENTER key on the keyboard.

 

 

Kasp2-1.png

 

 

3. On the next screen, select Kaspersky Rescue Disk. Graphic Mode then press ENTER.

 

 

Kasp3-1.png

 

 

4. The End User License Agreement of Kaspersky Rescue Disk will be displayed on the screen. Read carefully the agreement then press the C button on your keyboard.

 

 

Kasp4-1.png

 

 

5. Once the actions described above have been performed, the Kasprsky operating system will start.

 

STEP D:

 

Launch Kaspersky WindowsUnlocker to remove the malicious registry changes

 

This ransomware trojan has modified your Windows system registry so that when you’re trying to boot your computer it will instead launch his lock screen.To remove this malicious registry changes we need to use the Kasersky WindowsUnlocker from Kaspersky Rescue Disk.

 

1. Click on the Start button located in the left bottom corner of the screen and select the Kaspersky WindowsUnlocker.

 

 

Kasp5-1.png

 

 

IF you can’t find the WindowsUnlocker button, you can select Terminal and in the command prompt type windowsunlocker and then press Enter on the keyboard.

 

2. A white colored console window will appear and will automatically start loading the registry files for scanning and disinfection. The whole process will take only a couple of seconds and after this process you should be able to boot your computer in normal mode.

 

 

http://i121.photobucket.com/albums/o239/kevinf80/Kaspersky%20Rescue%20CD/Kasp6-1.png

 

 

STEP E:

 

Scan your system with Kaspersky Rescue Disk

 

1. Click on the Start button located in the left bottom corner of the screen and select the Kaspersky Rescue Disk then click on My Update Center and press Start update.

 

 

http://i121.photobucket.com/albums/o239/kevinf80/Kaspersky%20Rescue%20CD/Kasp7-1.png

 

 

2. When the update process has completed, the light at the top of the window will turn green, and the databases release date will be updated.

 

 

http://i121.photobucket.com/albums/o239/kevinf80/Kaspersky%20Rescue%20CD/Kasp8-1.png

 

 

3. Click on the Objects Scan tab, then click Start Objects Scanto begin the scan.

 

 

http://i121.photobucket.com/albums/o239/kevinf80/Kaspersky%20Rescue%20CD/Kasp9-1.png

 

 

4. If any malicious items are found, the default settings are to prompt you for action with a red popup window on the bottom right. Delete is the recommended action in most cases but we strongly recommend that you try first to disinfect , and if it doesn’t work chose to quarantine the infected files just to be on the safe side.

 

 

http://i121.photobucket.com/albums/o239/kevinf80/Kaspersky%20Rescue%20CD/Kasp10-1.png

 

 

5. When all detected items have been processed and removed, the light in the window will turn green and the scan will show as completed.

 

 

http://i121.photobucket.com/albums/o239/kevinf80/Kaspersky%20Rescue%20CD/Kasp11-1.png

 

 

6. When done you can close the Kaspersky Rescue Disk window and use the Start Menu to Restart the computer.

 

7. When booted back into Windows Navigate > Start > Computer > C:\Kaspersky Rescue Disck 10.0 Open the folder, inside is log from KRD run named "ScanObject" copy/paste that file to your reply.

Link to post
Share on other sites

Attached is the logfile from Kaspersky, however upon reboot I did a MalwareBytes scan and still encountered infected objects I will copy paste the log below. Thank you.

 

 

Malwarebytes Anti-Malware 1.75.0.1300
www.malwarebytes.org
 
Database version: v2013.07.11.05
 
Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 9.0.8112.16421
Grant :: ALEIYA [administrator]
 
11/07/2013 17:37:39
mbam-log-2013-07-11 (17-37-39).txt
 
Scan type: Quick scan
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 235438
Time elapsed: 4 minute(s), 38 second(s)
 
Memory Processes Detected: 0
(No malicious items detected)
 
Memory Modules Detected: 0
(No malicious items detected)
 
Registry Keys Detected: 0
(No malicious items detected)
 
Registry Values Detected: 0
(No malicious items detected)
 
Registry Data Items Detected: 3
HKLM\SOFTWARE\Microsoft\Security Center|AntiVirusDisableNotify (PUM.Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and repaired successfully.
HKLM\SOFTWARE\Microsoft\Security Center|FirewallDisableNotify (PUM.Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and repaired successfully.
HKLM\SOFTWARE\Microsoft\Security Center|UpdatesDisableNotify (PUM.Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and repaired successfully.
 
Folders Detected: 0
(No malicious items detected)
 
Files Detected: 1025
C:\aabrnj.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\aappk.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\aayqpl.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\aceiey.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\achwj.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\acmt.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\acrm.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\aega.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\aetpra.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\afekyq.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\afjgj.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ahkse.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ahndy.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ajjkw.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ajlfhw.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\alayks.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\alos.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\alve.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\amdi.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\amjbgg.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\amsnmn.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\amtt.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\amyh.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\anmr.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\antmaw.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\anvy.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\apcdnu.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\aprgpr.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\aqjxv.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\aqyvu.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\area.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\atdph.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\athxc.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\atnk.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\aulmf.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\aurd.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\axjsp.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\axntlp.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ayrne.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ayyd.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\bbfpt.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\bbymg.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\bclo.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\bdlsrj.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\bfedy.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\bfpq.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\bhcbb.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\bhgo.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\bhqa.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\bjrjts.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\blyf.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\bntysm.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\boda.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\bpet.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\bqlq.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\brlvom.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\bsgxc.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\btoi.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\btxeta.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\caxqao.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\cbnei.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\cccuj.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ccpvqk.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\cctpuy.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ccwm.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\cdaci.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\cddls.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ceti.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\cfmy.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\cgyk.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ciei.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\cjenfo.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\cjlgkf.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\claai.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\clblak.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\cldex.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\clmjuq.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\clun.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\cmafb.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\cmna.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\cnnh.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\cnpomn.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\coplo.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\cotywb.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\cqabqm.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\cqmtb.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\cqowww.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\cquc.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\crrq.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\csfowh.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\cubkie.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\cvbkd.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\cvljkm.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\cvpod.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\cwocp.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\cxhmpm.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\cxxx.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\cypt.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\cytnau.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\cyyqoc.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\dagb.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\darsmh.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\dcbkc.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\dcsuk.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\dcvqoc.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\dcxjp.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ddbvj.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ddhwfu.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ddkc.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ddunm.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\denjhj.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\deuf.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\dfdtr.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\dfvfx.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\dgfu.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\dggu.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\dgmc.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\dgpl.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\dgus.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\dhipuy.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\dhlx.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\diad.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\diepu.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\divjjb.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\djdckd.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\djdew.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\dldwiv.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\dlmi.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\dlts.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\dmreg.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\dnqbn.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\dodigb.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\doel.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\dohjqg.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\dowk.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\dpivyl.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\dpjmet.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\dqqgv.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\dqyymu.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\dsrl.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\dtomwu.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\dufj.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\dushc.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\dvhnmi.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\dvvkaf.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\dxkpi.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\eahh.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ebba.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\eboqyp.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ebpc.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ebunfm.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\echw.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\edhtm.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\edrh.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\eevy.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\egfgqf.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\egjl.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ehcdt.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ehflk.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ehyrfn.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\eigid.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ejky.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ejlopy.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ejtkrs.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ejyu.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ekqp.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\elfkd.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\elohu.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\elugqs.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\emtxmd.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\emym.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\enah.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\eoqjt.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\epcttq.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\epdfdp.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\eppk.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\epuh.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\epwdh.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\eqqes.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ergsl.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ersee.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\essw.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\evoww.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\evpr.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\evwtck.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\evxj.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ewio.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ewlj.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\excaq.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\exch.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\exyj.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\eyroqx.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\faenhh.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\falpy.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\faqw.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\fbffqe.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\fbpw.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\fcucrp.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\fedyyq.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\fertkv.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ffba.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ffkf.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ffsuc.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\fgkpe.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\fgvgbu.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\fhxkr.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\fjemc.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\fkdr.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\fkuj.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\flghw.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\fnbwpa.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\fpgmcx.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\fqfwrj.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ftadrp.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ftapdk.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\fubqk.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\fugpx.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\fuuije.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\fuxia.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\fwky.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\fwplf.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\fxfoq.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\fyjwy.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\gberpp.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\gbsj.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\gcbune.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\gefbcg.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\gefqhy.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\getq.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\gfqnx.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\gggi.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ghsab.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ghyv.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\gidogx.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\gifnb.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\gkmmw.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\glaoat.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\glfr.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\glnge.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\glrxd.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\gmow.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\gmqawm.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\gmrqk.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\gmuvay.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\gnbgj.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\gnvtg.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\goip.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\gonfq.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\goplsh.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\gpbb.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\gpne.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\gptiaq.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\gqwo.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\grgy.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\grlo.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\grutp.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\gsnnep.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\gtnyl.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\guiau.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\guju.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\gurqc.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\gvhvgo.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\gvnvg.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\gvoe.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\gxpkqv.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\gxyxot.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\gystv.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\hammlx.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\hcmeax.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\hcom.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\hcsts.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\hebsiw.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\hecl.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\hedmb.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\hftjd.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\hfuasq.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\hhaf.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\hhwpo.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\hjni.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\hkgso.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\hkjssd.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\hkqu.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\hkshb.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\hkva.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\hmggsa.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\hmmkg.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\hmny.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\hmqqqd.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\hnor.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\hokujr.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\hoviem.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\hplrkr.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\hqtute.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\htafg.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\htbp.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\htnmp.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\huti.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\huwqss.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\hvrtcd.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\hyfk.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\hyjjij.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\hyuehl.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\iadsvh.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ibbcv.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\iccuj.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\idjpxo.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\idpjx.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ieqor.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\iffj.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ifrlsv.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\igfoe.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ighkwe.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\igmyvv.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ihvl.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ihywa.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\iiyy.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ijecw.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ijkffg.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ijoem.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ikbi.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ikbir.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ikdh.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ilihk.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\imhi.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ints.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\iohmx.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\iohsku.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ioquxr.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\iqed.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\iqeda.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\iqqu.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\irdv.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\irfd.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\irrf.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\iryvil.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\isxlkf.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\itxn.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\iucora.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\iucxj.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\iuivxd.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\iuwfa.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ivfjk.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\iwdnkr.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\iwvq.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\iwydv.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\iybwb.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\iyvh.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\jayygj.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\jbefa.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\jccg.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\jcnsy.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\jdinh.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\jdtxvg.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\jdxkg.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\jfdggy.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\jfdq.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\jfjmfn.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\jfljaa.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\jhbtdg.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\jhur.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\jiake.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\jiiyc.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\jjuxq.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\jkcg.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\jkqy.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\jljup.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\jmgf.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\jnjs.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\jnmnh.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\joqlp.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\joxhm.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\jplve.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\jrqenj.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\jrrvk.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\jscjdv.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\jsdeg.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\jshq.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\jshxi.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\jvysss.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\jwba.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\jwrj.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\jwykx.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\jxwea.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\jxwo.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\jyagav.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\jygvf.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\jylj.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\jysqn.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\jywcld.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\kaxwlm.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\kbxrau.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\kcfy.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\kctb.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\kdjdq.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\kenbo.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\keobwy.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\keochc.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\keowhe.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\kewxa.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\kfhg.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\kfltxm.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\kgch.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\kgmymv.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\kgtlsg.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\khcixg.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\kixfo.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\kjsoer.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\kkgq.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\klbp.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\knhwef.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\konuh.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\koqyw.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\kpbx.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\kpdh.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\kpjali.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\kpnbb.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\kqkgol.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\kqnogn.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\kqou.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\kqsfby.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\kquv.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ksok.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ktid.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\kumufi.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\kuoc.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\kuyu.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\kviqch.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\kvxm.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\kwohyt.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\kwtkn.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\kwvg.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\kxng.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\kxoese.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\kxxqcl.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\kyosx.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\labmg.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\labtk.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\lamb.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\lawdn.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\lbdgqh.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\lbgnv.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\lcrth.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ldhwl.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\lfqhx.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\lfxvj.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\lgguq.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\lgkyma.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\lhmef.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\libm.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\lirt.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\lkpwtu.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\llmet.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\llxmm.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\lmfau.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\lmqvb.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\lqfxxr.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\lqumxw.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\lqvb.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\lriha.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\lshyyc.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\lstb.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\lubf.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\lugb.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\lvax.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\lxhv.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\lxls.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\lxlu.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\lxvrf.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\lxwwny.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\lyoeqw.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\maabap.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\mabd.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\mavq.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\mawj.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\mbfm.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\mbmhjn.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\mdro.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\megmuf.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\mevpx.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\mfhk.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\mfqjli.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\mgxmc.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\mhhwvk.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\mibv.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\mids.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\mkllcv.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\mkohl.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\mlhku.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\mloboo.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\mlpdti.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\mlsebj.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\mmeyv.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\mmmht.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\mmpnw.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\mnge.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\mobt.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\mojel.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\mooma.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\morm.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\motlk.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\mqapq.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\mqdr.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\mrcdis.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\mruu.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\mskyxs.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\msvtxv.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\mtxkn.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\mufjo.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\muupt.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\mwct.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\mwjthq.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\mxpsd.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\mxtap.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\mygmhr.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\naaop.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\namcuc.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\napkb.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\napu.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\naqreg.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\nbciab.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\nbehrs.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\nbja.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\nbqtlp.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\nchfe.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\nfit.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ngbhwu.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ngpq.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ngqkk.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\njdcxc.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\nmayq.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\nmdudy.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\nmkekf.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\nntr.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\nnug.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\nqeke.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\nqpqw.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\nsrxvv.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ntlo.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ntysgu.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\nuad.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\nucc.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\nuwk.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\nuxcob.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\nvgr.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\nvivs.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\nvjdcn.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\nvwov.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\nwgq.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\nwgyd.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\nwhwbh.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\nwnpcs.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\nwyo.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\nxei.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\nyaxt.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\nygsjh.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\oallb.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\oaxmp.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\obtkby.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ocukk.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\odcejw.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\oemns.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\oexh.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ofet.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\offkqc.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ogda.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ogiqy.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ogrkv.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ohmq.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\oirag.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ojejy.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ojokso.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ojom.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\olim.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\olqvji.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\omeyi.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\omlj.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\omsh.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\omtxtp.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\onlon.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\onmqj.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\oorr.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\oqbrrh.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\oqwex.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\orgj.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\orltti.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ornv.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\orsotl.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\osee.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ovarg.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ovvie.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\oxie.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\oxllss.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\oyni.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\pagqu.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\pakdt.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\paxh.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\pbdvn.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\pbiaq.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\pbvav.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\pcgagd.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\pcmy.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\pcmykd.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\pcnxsa.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\pcoqpu.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\pcqc.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\pdkgv.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\pdrjv.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\pgatdb.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\pgfys.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\phev.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\phmy.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\piacv.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\picq.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\pimdie.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\pitke.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\pjdydi.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\pjgi.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\pjrvfg.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\pkcqm.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\pmcqr.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\pmkdqf.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\pmlhgj.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\pmrkp.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\pohwl.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\pois.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\povqvu.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\pphdt.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\pqlrb.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\pscwp.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\pteck.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ptfe.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ptnwq.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\pvff.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\pvrpe.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\pvtxkv.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\pwah.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\pwwax.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\pyqy.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\pytvr.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\qakues.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\qanxli.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\qarc.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\qaup.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\qbnlg.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\qctns.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\qdclug.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\qdhn.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\qdlnu.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\qdqao.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\qeirpe.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\qexw.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\qfni.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\qgbnp.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\qgcifq.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\qgoyv.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\qgwoxq.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\qhavp.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\qhdw.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\qhqx.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\qhtc.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\qhtyf.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\qilb.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\qkmnw.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\qlpeg.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\qlsmyn.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\qmyy.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\qnjarj.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\qnred.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\qnwpg.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\qobyr.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\qoreh.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\qpgq.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\qphs.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\qpothr.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\qqrbv.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\qrgjcr.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\qrjknj.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\qrvvr.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\qsnlg.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\qsuqkk.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\qttg.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\qvfch.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\qvpop.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\qvqgq.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\qwscas.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\qwwfrt.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\qwwjkl.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\qxbet.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\qxsv.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\qxvxwo.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\qxxjef.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\qycfd.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\qygk.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\raaqm.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\racrpp.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\raixc.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\raked.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\rbaoie.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\rbbs.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\rbft.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\rbprlb.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\rcnaao.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\rdeg.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\rdpw.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\rdxlh.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\reeo.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\reqqbp.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\rfog.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\rfsi.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\rgbo.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\rhjymr.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\rhlrw.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\rhpw.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\rirqd.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\rjkes.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\rkack.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\rksmb.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\rmarrw.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\rmkmw.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\rmors.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\rmtwf.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\rnlwqb.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\rnpe.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\rocvyw.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\rotfar.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\rpfwt.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\rpqky.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\rprwpq.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\rqcyiu.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\rqubh.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\rqve.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\rrmmp.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\rstfpe.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\rtbn.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\rtbul.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\runj.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ruuhns.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\rvsh.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\rwit.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ryjg.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ryoj.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\sacw.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\saslar.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\sbum.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\scjmc.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\scqx.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\sdanl.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\sddenu.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\sdrf.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\seloo.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\seuw.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\sfayq.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\sfkqi.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\shef.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\shkdul.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\siaf.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\siahrp.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\sihs.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\siipup.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\sjgex.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\sjhceu.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\skfc.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\sliipx.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\slvt.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\spmvxp.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\spngo.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\sppkyy.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\sprg.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\sqbn.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\srpfph.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\stmopq.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\swrhol.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\swrsp.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\swvncy.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\sxmq.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\syuhvh.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\tahsbk.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\tborwm.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\tbwra.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\tcar.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\tdhrwr.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\tdkvkn.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\tdnve.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\tdqsy.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\tdtlx.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\tedg.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\terl.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\tgawal.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\tgbxub.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\tggl.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\tgiqca.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\tgupgp.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\thji.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\thwl.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\tijcbv.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\tiwo.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\tixw.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\tjsyi.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\tjti.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\tksys.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\tlkde.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\tlpri.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\tneqi.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\tnos.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\tpbqw.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\tpdeah.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\tqvy.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\tqww.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\trhib.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ttjf.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ttnfcb.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\tuei.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\tuiw.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\tvkbk.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\tvoy.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\twfl.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\twoamf.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\typak.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\uafue.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ubvgoa.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ucdiu.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\uciy.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ucqj.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ucrywv.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\uehe.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ufktaf.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\uhjra.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\uhyyrg.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\uihjdh.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\uipjrf.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ujph.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ujrwn.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ukst.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ulvg.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ulwhwe.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\umyqt.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\unfkoq.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\unmqvp.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\uplj.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\uqhabk.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\uqpdg.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\utacd.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\utfdor.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\utmvth.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\uybva.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\uygn.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\vacid.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\valdr.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\vawg.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\vaxag.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\vbfi.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\vbgnjp.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\vbmm.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\vbtbx.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\vcdq.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\vcqp.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\vdaxjf.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\vdibsr.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\vdkf.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\vejre.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\vepmr.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\vfeawb.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\vgervw.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\vgxrw.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\vhuh.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\viasd.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\vigdwy.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\vioay.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\vixsg.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\vjkyj.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\vjqm.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\vkheg.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\vkms.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\vlpalp.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\vnba.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\vneo.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\vnga.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\vnuc.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\vnuw.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\vpnn.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\vqij.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\vqlhwf.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\vqnnp.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\vrts.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\vsgu.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\vsoqat.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\vthk.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\vtpt.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\vuaigo.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\vuoayl.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\vvefcb.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\vvkwsu.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\vwkwu.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\vwlhc.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\vwocc.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\vxqih.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\vydb.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\vyfa.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\vyfo.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\wabl.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\waptsy.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\warrp.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\waxrvs.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\wbxarv.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\wccoa.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\wdanep.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\wdcpme.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\wfyhtr.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\wgljb.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\whnkfb.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\whusjh.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\wippyr.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\wjpcgn.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\wjvqav.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\wjyt.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\wkejfy.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\wkoxyd.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\wkuel.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\woqjc.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\woyy.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\wprq.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\wpuwq.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\wpwkt.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\wpxs.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\wqcxe.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\wqid.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\wrau.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\wrgmf.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\wrij.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\wrmjq.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\wthx.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\wusx.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\wvlh.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\wvoj.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\wvrdp.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\wxjw.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\wxoq.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\wyfydm.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\wywvny.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\wyxco.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\xakmkt.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\xammeb.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\xbjnea.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\xcnub.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\xdkcxk.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\xdotqs.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\xdshqg.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\xehgi.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\xewve.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\xfcg.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\xflm.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\xfpee.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\xfphuy.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\xhlorm.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\xhtail.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\xjklg.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\xkyqf.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\xldgj.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\xltaeh.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\xnmhv.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\xnwwbc.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\xpebf.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\xpve.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\xqanaf.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\xqdfl.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\xqme.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\xqmkvb.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\xrirm.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\xrtcgk.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\xrxvja.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\xsbqr.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\xsdly.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\xsgf.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\xsua.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\xsuk.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\xtlq.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\xtyx.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\xuhriw.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\xvycl.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\xwqgw.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\xycn.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\xypv.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\yaimpq.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\yaoe.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ybik.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\yblt.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ycnab.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\yfanu.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\yfou.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\yfsgpu.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\yfxr.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ygiyk.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ygrmky.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\yikt.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\yimrvm.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\yjhqfi.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\yjxu.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ykcs.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ylhlva.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ylkby.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ylwudu.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ymarn.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ynote.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ynwo.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\yocgqr.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\yodyhd.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\yotnwv.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\yovtu.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ypqpw.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\yqqpdu.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\yrjr.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\yskr.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ytdqk.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\yugs.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\yujvp.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\yuyxca.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\yvrk.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\yvxx.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ywbo.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ywiol.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\ywoark.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\yxiej.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\yxke.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\yxpif.pif (Malware.Packer.Gen) -> Quarantined and deleted successfully.
C:\yyqbs.exe (Malware.Packer.Gen) -> Quarantined and deleted successfully.
 
(end)
 

ScanObject.txt

Link to post
Share on other sites

Yes this is an awful infection to clear up, run the following:

 

Download Malwarebytes Anti-Rootkit from this link http://www.malwarebytes.org/products/mbar/

Unzip the File to a convenient location. (Recommend the Desktop)

 

1. Open the mbar folder run mbar.exe

 

Image1.png

 

2. Double-click on the mbar.exe file, you may receive a User Account Control prompt asking if you are sure you wish to allow the program to run. Please allow the program to run and MBAR will now start to install any necessary drivers that are required for the program to operate correctly. If a rootkit is interfering with the installation of the drivers you will see a message that states that the DDA driver was not installed and that you should reboot your computer to install it. You will see this image:

 

mbarwm.png

 

3. If you receive this message, please click on the Yes button and Malwarebytes Anti-Rootkit will now restart your computer. Once the computer is rebooted and you login, MBAR will automatically start and you will now be at the start screen. (If no Rootkit warning you will go from step 4 to 6.)

 

4. The following image opens, select Next.

 

Image2.png

 

5. The following image opens, select Update

 

Image3.png

 

6. When the update completes select Next.

 

Image4.png

 

7. In the following window ensure "Targets" are ticked. Then select "Scan"

 

Image5.png

 

8. If an infection/s are found ensure "Create Restore Point" is checked, then select the "Cleanup Button" to remove threats. Or if you are sure any entries should not be kept, just untick them.

 

MBAntiRKcleanA.png

 

9. The Clean up procedure will be Scheduled for process.

 

Capture.png

 

10. When scheduling is complete the following image will appear,

 

Capture2.png

 

11. Select the Yes tab, the system should re-boot to complete the cleaning process.

 

12. Let me know how your system now responds. Copy and paste the two following logs from the mbar folder:

 

System - log

Mbar - log   Date and time of scan will also be shown, (copy/paste the most recent by date/time)

 

Image10.png

 

Thanks,

 

Kevin...

Link to post
Share on other sites

Thank you so much for continuing to help, I can't seem to Update the Anti-Rootkit program. No Driver blocking seemed to occur and no restarting happened however the program fails to update. Should I attempt to use it without updating? Or is there a solution to this?

Link to post
Share on other sites

Probably the infection is stopping the program from working correctly, leave MBAR for now and try DrWeb...

 

Download Dr.Web CureItto the desktop.

The download is nearly 104.6 MB in size

 

  • Turn OFF your antivirus program.
    How To Temporarily Disable Your Anti-virus, Firewall And Anti-malware Programs
     
  • Turn off any other add-on security app {if you have them} like MBAM File System Protection.
     
  • If this system is Windows 8/7 or VISTA, then Right-click on Drweb-cureit-9_zpsa6b7b265.gif  drweb-cureit.exe and select Run as Administrator.
  • Otherwise, on Windows XP, doubleclick on Drweb-cureit-9_zpsa6b7b265.gif  drweb-cureit.exe file to start the tool.
     
     
  • You will see a screen similar to this:
    Drweb-cureit-1_zps34a2f747.gif
    Click the checkbox to participate, and then click on Continue button.
     
  • Next
    Drweb-cureit-2_zpsee7bdcb6.gif
     
    Click on Select onjects for scanning
     
  • Next
    Drweb-cureit-3_zps137b4332.gif
     
    Put a checkmark by clicking on the boxes as shown.
    Do not select Temporary files or System Restore points.
     
    Then click on Start scanning button
     
  • The scan in progress will be shown like this
    Drweb-cureit-4_zps211037d0.gif
     
  • IF something is detected, you will see a screen similar to this
    Drweb-cureit-5_zpsd7be6acf.gif
     
    For each item "detected", click on the Action column down arrow, like this
    Drweb-cureit-8_zpsb099f9d5.gif
    Your options will be Cure or Ignore
     
    IF you see an item that you are very sure is ok, then un-check the checkbox for that item.
    Typically, you will keep the Cute default.
     
    Then click on the Neutralize button.
     
  • When the actions are completed, you will see this
    Drweb-cureit-7_zpsd290a127.gif
     
  • Click on the green Open Report line.  It will pop-up the report in NOTEPAD.
    Save the report to your desktop. The report will be called Cureit.log
     
  • While in NOTEPAD, do a CTRL+A  to Copy all to clipboard.
  • You should be able to get back to your forum topic, start a new reply,
    click 1 time in the box
    and do a CTRL+V    (Paste}
    into reply.
     
  • Close Dr.Web Cureit.
  • Reboot your computer to allow files that were in use to be moved/deleted during reboot.
  • After reboot, post the contents of the log from Cureit.log you saved previously in your next reply.
    ONLY if the log is too large, then you may "attach" it.

 

Re-Enable your antivirus program when all done.

Link to post
Share on other sites

  • Root Admin

Due to the lack of feedback this topic is closed to prevent others from posting here. If you need this topic reopened, please send a Private Message to any one of the moderating team members. Please include a link to this thread with your request. This applies only to the originator of this thread.

Other members who need assistance please start your own topic in a new thread. Thanks!

Link to post
Share on other sites

Guest
This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.