Welcome guest. Before posting on our computer help forum, you must register. Click here it's easy and free.

Author Topic: Sas log, missing taskbar, start menu, no sound, can't copy, etc.. error 372, vba  (Read 17077 times)

0 Members and 1 Guest are viewing this topic.

goodie2010

    Topic Starter


    Beginner

    48 minutes and this thing is still only at 13%, yeah i remembered correctly, i think the last time i used this particular scan it took hours, i think i ended up stopping it. 

    so far its found 3 win32 trojan downloader/unruy bt.trojan, there are 3 files so far that say the same thing.  thanks

    SuperDave

    • Malware Removal Specialist
    • Moderator


    • Genius
    • Thanked: 1020
    • Certifications: List
    • Experience: Expert
    • OS: Windows 10
    Give it another couple of hours. If it doesn't complete by then, closed it and I'll send you another. BTW, how were you able to copy and paste all these logs in your thread?
    Windows 8 and Windows 10 dual boot with two SSD's

    goodie2010

      Topic Starter


      Beginner

      its tricky, i can copy in Google Chrome Browser.  I never really used Chrome, i've always used Firefox, I can't copy paste in firefox or ie.  I only went to chrome because i had like 15 tabs i didn't want to wait to load in firefox.  I'm actually sort of liking chrome.  I can't copy/paste in folders or files on computer, i can't drag or drop anything.  I considered reinstalling windows, but realized I couldn't copy folders, and files to back them up. 

      SuperDave

      • Malware Removal Specialist
      • Moderator


      • Genius
      • Thanked: 1020
      • Certifications: List
      • Experience: Expert
      • OS: Windows 10
      Have you tried ALt. + A to copy and Alt + V to paste?

      Place the OS CD  in your CD ROM drive and follow the instructions below:
      •Click on Start > Run and type sfc /scannow then press Enter (note the space between scf and /scannow)
      *Let this run undisturbed until the window with the blue  progress bar goes away
      SFC - Which stands for System File Checker, retrieves the correct version of the file from %Systemroot%\System32\Dllcache or the Windows installation source files, and then replaces the incorrect file.
      Windows 8 and Windows 10 dual boot with two SSD's

      goodie2010

        Topic Starter


        Beginner


        i ran sfc and put it in combofix


         - x86
        Running from: c:\documents and settings\Administrator\My Documents\Downloads\ComboFix.exe
        .

        ((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
        .

        F:\Autorun.inf

        .
        ((((((((((((((((((((((((( Files Created from 2010-05-26 to 2010-06-26 )))))))))))))))))))))))))))))))
        .

        2010-06-26 16:55 . 2008-04-14 09:42   116224   -c--a-w-   c:\windows\system32\dllcache\xrxwiadr.dll
        2010-06-26 16:53 . 2001-08-17 17:28   771581   -c--a-w-   c:\windows\system32\dllcache\winacisa.sys
        2010-06-26 16:52 . 2001-08-17 17:28   604253   -c--a-w-   c:\windows\system32\dllcache\vmodem.sys
        2010-06-26 16:51 . 2001-08-18 02:36   28160   -c--a-w-   c:\windows\system32\dllcache\umaxu40.dll
        2010-06-26 16:50 . 2001-08-17 18:56   315520   -c--a-w-   c:\windows\system32\dllcache\trid3d.dll
        2010-06-26 16:49 . 2001-08-17 17:52   7040   -c--a-w-   c:\windows\system32\dllcache\tandqic.sys
        2010-06-26 16:48 . 2001-08-17 16:11   48736   -c--a-w-   c:\windows\system32\dllcache\srwlnd5.sys
        2010-06-26 16:47 . 2001-08-17 16:10   35913   -c--a-w-   c:\windows\system32\dllcache\smcirda.sys
        2010-06-26 16:46 . 2001-08-17 18:56   252032   -c--a-w-   c:\windows\system32\dllcache\sis300iv.dll
        2010-06-26 16:45 . 2001-08-17 17:51   23936   -c--a-w-   c:\windows\system32\dllcache\sccmn50m.sys
        2010-06-26 16:44 . 2001-08-18 02:36   9216   -c--a-w-   c:\windows\system32\dllcache\rsmgrstr.dll
        2010-06-26 16:43 . 2001-08-17 17:28   130942   -c--a-w-   c:\windows\system32\dllcache\ptserlv.sys
        2010-06-26 16:42 . 2008-04-14 09:40   211584   -c--a-w-   c:\windows\system32\dllcache\perm2dll.dll
        2010-06-26 16:41 . 2001-08-17 18:05   48000   -c--a-w-   c:\windows\system32\dllcache\ovcam2.sys
        2010-06-26 16:40 . 2001-08-17 16:11   65278   -c--a-w-   c:\windows\system32\dllcache\netflx3.sys
        2010-06-26 16:39 . 2008-04-14 04:09   5504   -c--a-w-   c:\windows\system32\dllcache\mstee.sys
        2010-06-26 16:39 . 2008-04-14 04:16   49024   -c--a-w-   c:\windows\system32\dllcache\mstape.sys
        2010-06-26 16:39 . 2001-08-17 17:48   12416   -c--a-w-   c:\windows\system32\dllcache\msriffwv.sys
        2010-06-26 16:39 . 2001-08-17 18:00   2944   -c--a-w-   c:\windows\system32\dllcache\msmpu401.sys
        2010-06-26 16:39 . 2008-04-14 04:24   22016   -c--a-w-   c:\windows\system32\dllcache\msircomm.sys
        2010-06-26 16:39 . 2010-06-26 16:54   --------   dc----w-   c:\windows\LastGood
        2010-06-26 00:54 . 2010-06-26 00:54   --------   dc----w-   c:\documents and settings\Administrator\Local Settings\Application Data\Help
        2010-06-25 20:17 . 2010-06-26 17:03   --------   dc----w-   c:\windows\system32\CatRoot2
        2010-06-24 01:22 . 2010-06-24 01:22   --------   dc----w-   c:\documents and settings\Administrator\Local Settings\Application Data\Microsoft Corporation
        2010-06-23 22:02 . 2010-04-29 19:39   38224   -c--a-w-   c:\windows\system32\drivers\mbamswissarmy.sys
        2010-06-23 22:02 . 2010-04-29 19:39   20952   -c--a-w-   c:\windows\system32\drivers\mbam.sys
        2010-06-23 19:23 . 2010-06-23 19:23   --------   dc----w-   C:\Setup
        2010-06-23 19:23 . 2010-06-23 19:23   --------   dc----w-   C:\VSS
        2010-06-23 19:22 . 2010-06-23 19:23   --------   dc----w-   C:\VB98
        2010-06-23 19:22 . 2010-06-23 19:22   --------   dc----w-   C:\Shared
        2010-06-23 19:22 . 2010-06-23 19:22   --------   dc----w-   C:\MSDesign
        2010-06-23 19:22 . 2010-06-23 19:22   --------   dc----w-   C:\Common
        2010-06-23 19:22 . 2010-06-23 19:22   --------   dc----w-   C:\os
        2010-06-23 12:19 . 2010-06-23 12:19   132608   -csha-r-   c:\windows\system32\systemi.dll
        2010-06-21 02:35 . 2010-05-31 20:34   702120   -c--a-w-   c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\l8r50sm9.default\extensions\{e001c731-5e37-4538-a5cb-8168736a2360}\components\qscanff.dll
        2010-06-21 02:35 . 2010-05-31 20:34   868456   -c--a-w-   c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\l8r50sm9.default\extensions\{e001c731-5e37-4538-a5cb-8168736a2360}\plugins\npqscan.dll
        2010-06-14 06:18 . 2010-06-14 06:21   --------   dc----w-   c:\documents and settings\All Users\Application Data\Ulead Systems
        2010-06-14 06:18 . 2010-06-14 06:18   --------   dc----w-   c:\documents and settings\Administrator\Application Data\Ulead Systems
        2010-06-14 06:18 . 2010-06-14 06:18   --------   dc----w-   c:\program files\Ulead Systems
        2010-06-14 06:17 . 1999-10-15 16:50   1056768   -c--a-w-   c:\windows\system32\ROBOEX32.DLL
        2010-06-14 06:17 . 1999-01-28 19:44   49152   -c--a-w-   c:\windows\system32\INETWH32.dll
        2010-06-14 06:17 . 2010-06-14 06:17   --------   dc----w-   c:\windows\Noslip
        2010-06-12 21:44 . 2008-05-02 03:05   26112   -c--a-w-   c:\windows\system32\stu2.exe

        .
        (((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
        .
        2010-06-26 00:54 . 2009-03-29 04:02   --------   dc----w-   c:\program files\IrfanView3.99
        2010-06-24 23:31 . 2009-12-09 00:38   --------   dc----w-   c:\program files\Malwarebytes' Anti-Malware
        2010-06-24 18:16 . 2009-03-15 20:43   --------   dc----w-   c:\program files\Sonique
        2010-06-23 22:03 . 2009-03-16 04:30   --------   dc----w-   c:\documents and settings\Administrator\Application Data\DMCache
        2010-06-23 20:13 . 2009-08-28 04:52   --------   dc----w-   c:\documents and settings\All Users\Application Data\Spybot - Search & Destroy
        2010-06-23 12:50 . 2009-05-30 11:47   --------   dc----w-   c:\documents and settings\Administrator\Application Data\Tracktion 3
        2010-06-23 12:50 . 2009-05-11 23:41   --------   dc----w-   c:\documents and settings\All Users\Application Data\Tracktion 3
        2010-06-21 09:57 . 2004-01-06 09:32   --------   dc----w-   c:\program files\SUPERAntiSpyware
        2010-06-15 00:46 . 2009-03-07 04:53   29336   -c--a-w-   c:\documents and settings\Administrator\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
        2010-06-14 06:17 . 2009-03-07 02:21   --------   dc-h--w-   c:\program files\InstallShield Installation Information
        2010-05-03 21:48 . 2010-05-03 21:48   0   -c-ha-w-   c:\windows\system32\drivers\Msft_Kernel_WinUSB_01007.Wdf
        2010-05-03 21:47 . 2010-05-03 21:47   0   -c-ha-w-   c:\windows\system32\drivers\MsftWdf_Kernel_01007_Coinstaller_Critical.Wdf
        2010-05-03 13:39 . 2010-05-03 13:39   581192   -c--a-w-   c:\windows\system32\WinUSBCoInstaller.dll
        2010-05-03 13:39 . 2010-05-03 13:39   1112288   -c--a-w-   c:\windows\system32\WdfCoInstaller01007.dll
        2010-04-23 01:12 . 2010-01-24 11:01   16   -c--a-w-   c:\windows\msocreg32.dat
        2010-04-22 10:51 . 2010-04-22 10:51   2892   -c--a-w-   c:\windows\system32\audcon.sys
        2010-04-18 22:35 . 2010-04-18 22:35   69632   -c--a-w-   c:\windows\system32\com.fxpansion.fxshared.dll
        2010-04-18 22:35 . 2010-01-08 03:46   69632   -c--a-w-   c:\windows\system32\FxShared.dll
        .

        ------- Sigcheck -------

        [-] 2008-05-02 . 9F3A2F5AA6875C72BF062C712CFA2674 . 96512 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\atapi.sys
        [-] 2008-05-02 . 9F3A2F5AA6875C72BF062C712CFA2674 . 96512 . . [5.1.2600.5512] . . c:\windows\system32\drivers\atapi.sys
        [-] 2008-05-02 . 9F3A2F5AA6875C72BF062C712CFA2674 . 96512 . . [5.1.2600.5512] . . c:\windows\system32\ReinstallBackups\0009\DriverFiles\i386\atapi.sys
        [-] 2008-04-14 . 9F3A2F5AA6875C72BF062C712CFA2674 . 96512 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\2bc0b3c55e0c166e04844934d1c7c342\atapi.sys
        [-] 2008-04-14 . 9F3A2F5AA6875C72BF062C712CFA2674 . 96512 . . [5.1.2600.5512] . . c:\windows\system32\ReinstallBackups\0010\DriverFiles\i386\atapi.sys

        [-] 2008-05-02 . B153AFFAC761E7F5FCFA822B9C4E97BC . 14336 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\asyncmac.sys
        [-] 2008-05-02 . B153AFFAC761E7F5FCFA822B9C4E97BC . 14336 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\2bc0b3c55e0c166e04844934d1c7c342\asyncmac.sys
        [-] 2008-05-02 . B153AFFAC761E7F5FCFA822B9C4E97BC . 14336 . . [5.1.2600.5512] . . c:\windows\system32\drivers\asyncmac.sys

        [-] 2008-05-02 . DA1F27D85E0D1525F6621372E7B685E9 . 4224 . . [5.1.2600.0] . . c:\windows\ERDNT\cache\beep.sys
        [-] 2008-05-02 . DA1F27D85E0D1525F6621372E7B685E9 . 4224 . . [5.1.2600.0] . . c:\windows\system32\drivers\beep.sys

        [-] 2008-05-02 . 463C1EC80CD17420A542B7F36A36F128 . 24576 . . [5.1.2600.5512] . . c:\windows\system32\ReinstallBackups\0019\DriverFiles\i386\kbdclass.sys
        [-] 2008-04-14 . 463C1EC80CD17420A542B7F36A36F128 . 24576 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\kbdclass.sys
        [-] 2008-04-14 . 463C1EC80CD17420A542B7F36A36F128 . 24576 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\2bc0b3c55e0c166e04844934d1c7c342\kbdclass.sys
        [-] 2008-04-14 . 463C1EC80CD17420A542B7F36A36F128 . 24576 . . [5.1.2600.5512] . . c:\windows\system32\drivers\kbdclass.sys

        [-] 2008-05-02 . 1DF7F42665C94B825322FAE71721130D . 182656 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\ndis.sys
        [-] 2008-05-02 . 1DF7F42665C94B825322FAE71721130D . 182656 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\2bc0b3c55e0c166e04844934d1c7c342\ndis.sys
        [-] 2008-05-02 . 1DF7F42665C94B825322FAE71721130D . 182656 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ndis.sys
        [-] 2008-05-02 . 1DF7F42665C94B825322FAE71721130D . 182656 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ndis.sys

        [-] 2008-05-02 . 78A08DD6A8D65E697C18E1DB01C5CDCA . 574976 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\ntfs.sys
        [-] 2008-05-02 . 78A08DD6A8D65E697C18E1DB01C5CDCA . 574976 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\2bc0b3c55e0c166e04844934d1c7c342\ntfs.sys
        [-] 2008-05-02 . 78A08DD6A8D65E697C18E1DB01C5CDCA . 574976 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ntfs.sys

        [-] 2008-05-02 . 73C1E1F395918BC2C6DD67AF7591A3AD . 2944 . . [5.1.2600.0] . . c:\windows\ERDNT\cache\null.sys
        [-] 2008-05-02 . 73C1E1F395918BC2C6DD67AF7591A3AD . 2944 . . [5.1.2600.0] . . c:\windows\system32\dllcache\null.sys
        [-] 2008-05-02 . 73C1E1F395918BC2C6DD67AF7591A3AD . 2944 . . [5.1.2600.0] . . c:\windows\system32\drivers\null.sys

        [-] 2008-06-20 . AD978A1B783B5719720CFF204B666C8E . 361600 . . [5.1.2600.5625] . . c:\windows\$hf_mig$\KB951748\SP3QFE\tcpip.sys
        [-] 2008-06-20 . 9AEFA14BD6B182D61E3119FA5F436D3D . 361600 . . [5.1.2600.5625] . . c:\windows\ERDNT\cache\tcpip.sys
        [-] 2008-06-20 . 9AEFA14BD6B182D61E3119FA5F436D3D . 361600 . . [5.1.2600.5625] . . c:\windows\system32\dllcache\tcpip.sys
        [-] 2008-06-20 . 9AEFA14BD6B182D61E3119FA5F436D3D . 361600 . . [5.1.2600.5625] . . c:\windows\system32\drivers\tcpip.sys
        [-] 2008-05-02 . 93EA8D04EC73A85DB02EB8805988F733 . 361344 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB951748$\tcpip.sys
        [-] 2008-05-02 . 93EA8D04EC73A85DB02EB8805988F733 . 361344 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\2bc0b3c55e0c166e04844934d1c7c342\tcpip.sys

        [-] 2008-05-02 . A06CE3399D16DB864F55FAEB1F1927A9 . 77824 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\browser.dll
        [-] 2008-05-02 . A06CE3399D16DB864F55FAEB1F1927A9 . 77824 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\2bc0b3c55e0c166e04844934d1c7c342\browser.dll
        [-] 2008-05-02 . A06CE3399D16DB864F55FAEB1F1927A9 . 77824 . . [5.1.2600.5512] . . c:\windows\system32\browser.dll

        [-] 2008-05-02 . BF2466B3E18E970D8A976FB95FC1CA85 . 13312 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\lsass.exe
        [-] 2008-05-02 . BF2466B3E18E970D8A976FB95FC1CA85 . 13312 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\2bc0b3c55e0c166e04844934d1c7c342\lsass.exe
        [-] 2008-05-02 . BF2466B3E18E970D8A976FB95FC1CA85 . 13312 . . [5.1.2600.5512] . . c:\windows\system32\lsass.exe

        [-] 2008-05-02 . 13E67B55B3ABD7BF3FE7AAE5A0F9A9DE . 198144 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\netman.dll
        [-] 2008-05-02 . 13E67B55B3ABD7BF3FE7AAE5A0F9A9DE . 198144 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\2bc0b3c55e0c166e04844934d1c7c342\netman.dll
        [-] 2008-05-02 . 13E67B55B3ABD7BF3FE7AAE5A0F9A9DE . 198144 . . [5.1.2600.5512] . . c:\windows\system32\netman.dll
        [-] 2008-05-02 . 13E67B55B3ABD7BF3FE7AAE5A0F9A9DE . 198144 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\netman.dll

        [-] 2008-05-02 . 574738F61FCA2935F5265DC4E5691314 . 409088 . . [6.7.2600.5512] . . c:\windows\ERDNT\cache\qmgr.dll
        [-] 2008-05-02 . 574738F61FCA2935F5265DC4E5691314 . 409088 . . [6.7.2600.5512] . . c:\windows\SoftwareDistribution\Download\2bc0b3c55e0c166e04844934d1c7c342\qmgr.dll
        [-] 2008-05-02 . 574738F61FCA2935F5265DC4E5691314 . 409088 . . [6.7.2600.5512] . . c:\windows\system32\qmgr.dll
        [-] 2008-05-02 . 574738F61FCA2935F5265DC4E5691314 . 409088 . . [6.7.2600.5512] . . c:\windows\system32\dllcache\qmgr.dll

        [-] 2009-02-09 . 6B27A5C03DFB94B4245739065431322C . 401408 . . [5.1.2600.5755] . . c:\windows\ERDNT\cache\rpcss.dll
        [-] 2009-02-09 . 6B27A5C03DFB94B4245739065431322C . 401408 . . [5.1.2600.5755] . . c:\windows\system32\rpcss.dll
        [-] 2009-02-09 . 6B27A5C03DFB94B4245739065431322C . 401408 . . [5.1.2600.5755] . . c:\windows\system32\dllcache\rpcss.dll
        [-] 2009-02-09 . 9222562D44021B988B9F9F62207FB6F2 . 401408 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3QFE\rpcss.dll
        [-] 2008-05-02 . 2589FE6015A316C0F5D5112B4DA7B509 . 399360 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB956572$\rpcss.dll
        [-] 2008-05-02 . 2589FE6015A316C0F5D5112B4DA7B509 . 399360 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\2bc0b3c55e0c166e04844934d1c7c342\rpcss.dll

        [-] 2009-02-06 . 65DF52F5B8B6E9BBD183505225C37315 . 110592 . . [5.1.2600.5755] . . c:\windows\ERDNT\cache\services.exe
        [-] 2009-02-06 . 65DF52F5B8B6E9BBD183505225C37315 . 110592 . . [5.1.2600.5755] . . c:\windows\system32\services.exe
        [-] 2009-02-06 . 65DF52F5B8B6E9BBD183505225C37315 . 110592 . . [5.1.2600.5755] . . c:\windows\system32\dllcache\services.exe
        [-] 2009-02-06 . 020CEAAEDC8EB655B6506B8C70D53BB6 . 110592 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3QFE\services.exe
        [-] 2008-05-02 . 0E776ED5F7CC9F94299E70461B7B8185 . 108544 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB956572$\services.exe
        [-] 2008-05-02 . 0E776ED5F7CC9F94299E70461B7B8185 . 108544 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\2bc0b3c55e0c166e04844934d1c7c342\services.exe

        [-] 2008-05-02 . D8E14A61ACC1D4A6CD0D38AEBAC7FA3B . 57856 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\spoolsv.exe
        [-] 2008-05-02 . D8E14A61ACC1D4A6CD0D38AEBAC7FA3B . 57856 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\2bc0b3c55e0c166e04844934d1c7c342\spoolsv.exe
        [-] 2008-05-02 . D8E14A61ACC1D4A6CD0D38AEBAC7FA3B . 57856 . . [5.1.2600.5512] . . c:\windows\system32\spoolsv.exe
        [-] 2008-05-02 . D8E14A61ACC1D4A6CD0D38AEBAC7FA3B . 57856 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\spoolsv.exe

        [-] 2008-05-02 . ED0EF0A136DEC83DF69F04118870003E . 507904 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\winlogon.exe
        [-] 2008-05-02 . ED0EF0A136DEC83DF69F04118870003E . 507904 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\2bc0b3c55e0c166e04844934d1c7c342\winlogon.exe
        [-] 2008-05-02 . ED0EF0A136DEC83DF69F04118870003E . 507904 . . [5.1.2600.5512] . . c:\windows\system32\winlogon.exe

        [-] 2008-05-02 . 06F247492BC786CE5C24A23E178C711A . 617472 . . [5.82] . . c:\windows\ERDNT\cache\comctl32.dll
        [-] 2008-05-02 . 06F247492BC786CE5C24A23E178C711A . 617472 . . [5.82] . . c:\windows\SoftwareDistribution\Download\2bc0b3c55e0c166e04844934d1c7c342\comctl32.dll
        [-] 2008-05-02 . BD38D1EBE24A46BD3EDA059560AFBA12 . 1054208 . . [6.0] . . c:\windows\SoftwareDistribution\Download\2bc0b3c55e0c166e04844934d1c7c342\asms\60\msft\windows\common\controls\comctl32.dll
        [-] 2008-05-02 . 06F247492BC786CE5C24A23E178C711A . 617472 . . [5.82] . . c:\windows\system32\comctl32.dll

        [-] 2008-05-02 . 3D4E199942E29207970E04315D02AD3B . 62464 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\cryptsvc.dll
        [-] 2008-05-02 . 3D4E199942E29207970E04315D02AD3B . 62464 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\2bc0b3c55e0c166e04844934d1c7c342\cryptsvc.dll
        [-] 2008-05-02 . 3D4E199942E29207970E04315D02AD3B . 62464 . . [5.1.2600.5512] . . c:\windows\system32\cryptsvc.dll

        [-] 2008-07-07 20:26 . D4991D98F2DB73C60D042F1AEF79EFAE . 253952 . . [2001.12.4414.706] . . c:\windows\ERDNT\cache\es.dll
        [-] 2008-07-07 20:26 . D4991D98F2DB73C60D042F1AEF79EFAE . 253952 . . [2001.12.4414.706] . . c:\windows\system32\es.dll
        [-] 2008-07-07 20:23 . F17F6226BDC0CD5F0BEF0DAF84D29BEC . 253952 . . [2001.12.4414.706] . . c:\windows\$hf_mig$\KB950974\SP3QFE\es.dll
        [-] 2008-05-02 03:05 . 19A799805B24990867B00C120D300C3A . 246272 . . [2001.12.4414.701] . . c:\windows\$NtUninstallKB950974$\es.dll
        [-] 2008-05-02 03:05 . 19A799805B24990867B00C120D300C3A . 246272 . . [2001.12.4414.701] . . c:\windows\SoftwareDistribution\Download\2bc0b3c55e0c166e04844934d1c7c342\es.dll

        [-] 2008-05-02 . 0DA85218E92526972A821587E6A8BF8F . 110080 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\imm32.dll
        [-] 2008-05-02 . 0DA85218E92526972A821587E6A8BF8F . 110080 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\2bc0b3c55e0c166e04844934d1c7c342\imm32.dll
        [-] 2008-05-02 . 0DA85218E92526972A821587E6A8BF8F . 110080 . . [5.1.2600.5512] . . c:\windows\system32\imm32.dll

        [-] 2009-03-21 . B921FB870C9AC0D509B2CCABBBBE95F3 . 989696 . . [5.1.2600.5781] . . c:\windows\ERDNT\cache\kernel32.dll
        [-] 2009-03-21 . B921FB870C9AC0D509B2CCABBBBE95F3 . 989696 . . [5.1.2600.5781] . . c:\windows\system32\kernel32.dll
        [-] 2009-03-21 . DA11D9D6ECBDF0F93436A4B7C13F7BEC . 991744 . . [5.1.2600.5781] . . c:\windows\$hf_mig$\KB959426\SP3QFE\kernel32.dll
        [-] 2008-05-02 . C24B983D211C34DA8FCC1AC38477971D . 989696 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB959426$\kernel32.dll
        [-] 2008-05-02 . C24B983D211C34DA8FCC1AC38477971D . 989696 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\2bc0b3c55e0c166e04844934d1c7c342\kernel32.dll

        [-] 2008-05-02 . 2DC5A8019E2387987905F77C664E4BE2 . 19968 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\linkinfo.dll
        [-] 2008-05-02 . 2DC5A8019E2387987905F77C664E4BE2 . 19968 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\2bc0b3c55e0c166e04844934d1c7c342\linkinfo.dll
        [-] 2008-05-02 . 2DC5A8019E2387987905F77C664E4BE2 . 19968 . . [5.1.2600.5512] . . c:\windows\system32\linkinfo.dll

        [-] 2008-05-02 . 012DF358CEBAA23ACB26D82077820817 . 22016 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\lpk.dll
        [-] 2008-05-02 . 012DF358CEBAA23ACB26D82077820817 . 22016 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\2bc0b3c55e0c166e04844934d1c7c342\lpk.dll
        [-] 2008-05-02 . 012DF358CEBAA23ACB26D82077820817 . 22016 . . [5.1.2600.5512] . . c:\windows\system32\lpk.dll

        [-] 2009-07-19 . 758C8BEDAB7CE5F9070C85E2E57CBD80 . 3597824 . . [7.00.6000.16890] . . c:\windows\SoftwareDistribution\Download\cfdf673d5f64980a67e3f1a551949306\sp3gdr\mshtml.dll
        [-] 2009-07-19 . F6098CC1B1C3858D53F20F3CB5774F3B . 3600384 . . [7.00.6000.21089] . . c:\windows\SoftwareDistribution\Download\cfdf673d5f64980a67e3f1a551949306\sp3qfe\mshtml.dll
        [-] 2009-04-29 . 2B4315EC9E3124408A2A5074C4B97700 . 3596288 . . [7.00.6000.16850] . . c:\windows\ERDNT\cache\mshtml.dll
        [-] 2009-04-29 . 2B4315EC9E3124408A2A5074C4B97700 . 3596288 . . [7.00.6000.16850] . . c:\windows\system32\mshtml.dll
        [-] 2009-04-29 . C6FD770D518FB024245A0EE217D72BC1 . 3598336 . . [7.00.6000.21045] . . c:\windows\$hf_mig$\KB969897-IE7\SP3QFE\mshtml.dll
        [-] 2009-02-21 . 1BB754AB47B327DE8DBF2FA18C36357C . 3596800 . . [7.00.6000.21015] . . c:\windows\$hf_mig$\KB963027-IE7\SP3QFE\mshtml.dll
        [-] 2009-02-20 . C7C3E41CC2F6EB4A629FE2184136C098 . 3595264 . . [7.00.6000.16825] . . c:\windows\ie7updates\KB969897-IE7\mshtml.dll
        [-] 2009-01-17 . 3B413267DA8AE71C20E5EF3E54F74728 . 3594752 . . [7.00.6000.16809] . . c:\windows\ie7updates\KB963027-IE7\mshtml.dll
        [-] 2009-01-16 . CC9D001B7370B292C35B366CA05B12B4 . 3596288 . . [7.00.6000.20996] . . c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\mshtml.dll
        [-] 2008-12-12 . B6DAA74E2ED36C71B502945589A683AE . 3067904 . . [6.00.2900.5726] . . c:\windows\$hf_mig$\KB960714\SP3QFE\mshtml.dll
        [-] 2008-10-16 . CC5A2205D37AE67CE23AB7FD3E1FDACA . 3067904 . . [6.00.2900.5694] . . c:\windows\$hf_mig$\KB958215\SP3QFE\mshtml.dll
        [-] 2008-05-02 . A706E122B398FE1AB85CB9B75D044223 . 3066880 . . [6.00.2900.5512] . . c:\windows\ie7\mshtml.dll
        [-] 2008-05-02 . A706E122B398FE1AB85CB9B75D044223 . 3066880 . . [6.00.2900.5512] . . c:\windows\SoftwareDistribution\Download\2bc0b3c55e0c166e04844934d1c7c342\mshtml.dll
        [-] 2007-08-13 . C6EC2493346ED8888A549F59210A8ED3 . 3578368 . . [7.00.5730.13] . . c:\windows\ie7updates\KB961260-IE7\mshtml.dll

        [-] 2008-05-02 . 355EDBB4D412B01F1740C17E3F50FA00 . 343040 . . [7.0.2600.5512] . . c:\windows\ERDNT\cache\msvcrt.dll
        [-] 2008-05-02 . 355EDBB4D412B01F1740C17E3F50FA00 . 343040 . . [7.0.2600.5512] . . c:\windows\SoftwareDistribution\Download\2bc0b3c55e0c166e04844934d1c7c342\msvcrt.dll
        [-] 2008-05-02 . D7075E95AA599EE77B7A89D39296BD3D . 343040 . . [7.0.2600.5512] . . c:\windows\SoftwareDistribution\Download\2bc0b3c55e0c166e04844934d1c7c342\asms\70\msft\windows\mswincrt\msvcrt.dll
        [-] 2008-05-02 . 355EDBB4D412B01F1740C17E3F50FA00 . 343040 . . [7.0.2600.5512] . . c:\windows\system32\msvcrt.dll

        [-] 2008-06-20 . 832E4DD8964AB7ACC880B2837CB1ED20 . 245248 . . [5.1.2600.5625] . . c:\windows\ERDNT\cache\mswsock.dll
        [-] 2008-06-20 . 832E4DD8964AB7ACC880B2837CB1ED20 . 245248 . . [5.1.2600.5625] . . c:\windows\system32\mswsock.dll
        [-] 2008-06-20 . 832E4DD8964AB7ACC880B2837CB1ED20 . 245248 . . [5.1.2600.5625] . . c:\windows\system32\dllcache\mswsock.dll
        [-] 2008-06-20 . FCEE5FCB99F7C724593365C706D28388 . 245248 . . [5.1.2600.5625] . . c:\windows\$hf_mig$\KB951748\SP3QFE\mswsock.dll
        [-] 2008-05-02 . B4138E99236F0F57D4CF49BAE98A0746 . 245248 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB951748$\mswsock.dll
        [-] 2008-05-02 . B4138E99236F0F57D4CF49BAE98A0746 . 245248 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\2bc0b3c55e0c166e04844934d1c7c342\mswsock.dll

        [-] 2008-05-02 . 1B7F071C51B77C272875C3A23E1E4550 . 407040 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\netlogon.dll
        [-] 2008-05-02 . 1B7F071C51B77C272875C3A23E1E4550 . 407040 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\2bc0b3c55e0c166e04844934d1c7c342\netlogon.dll
        [-] 2008-05-02 . 1B7F071C51B77C272875C3A23E1E4550 . 407040 . . [5.1.2600.5512] . . c:\windows\system32\netlogon.dll
        [-] 2008-05-02 . 1B7F071C51B77C272875C3A23E1E4550 . 407040 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\netlogon.dll

        [-] 2009-02-07 . EFE8EACE83EAAD5849A7A548FB75B584 . 2189184 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3QFE\ntoskrnl.exe
        [-] 2009-02-06 . 7A95B10A73737EBF24139AAA63F5212B . 2189056 . . [5.1.2600.5755] . . c:\windows\Driver Cache\i386\ntoskrnl.exe
        [-] 2009-02-06 . 0CBA44D0938D57F334C0862424148B70 . 2145280 . . [5.1.2600.5755] . . c:\windows\ERDNT\cache\ntoskrnl.exe
        [-] 2009-02-06 . 0CBA44D0938D57F334C0862424148B70 . 2145280 . . [5.1.2600.5755] . . c:\windows\system32\ntoskrnl.exe
        [-] 2008-08-14 . 31914172342BFF330063F343AC6958FE . 2189184 . . [5.1.2600.5657] . . c:\windows\$hf_mig$\KB956841\SP3QFE\ntoskrnl.exe
        [-] 2008-08-14 . F6F8245B3A2E9CA834DD318E7AE0C6D0 . 2145280 . . [5.1.2600.5657] . . c:\windows\$NtUninstallKB956572$\ntoskrnl.exe
        [-] 2008-05-02 . 40F8880122A030A7E9E1FEDEA833B33D . 2145280 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB956841$\ntoskrnl.exe
        [-] 2008-04-14 . 0C89243C7C3EE199B96FCC16990E0679 . 2188928 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\2bc0b3c55e0c166e04844934d1c7c342\ntoskrnl.exe

        [-] 2008-05-02 . 50A166237A0FA771261275A405646CC0 . 17408 . . [6.00.2900.5512] . . c:\windows\ERDNT\cache\powrprof.dll
        [-] 2008-05-02 . 50A166237A0FA771261275A405646CC0 . 17408 . . [6.00.2900.5512] . . c:\windows\SoftwareDistribution\Download\2bc0b3c55e0c166e04844934d1c7c342\powrprof.dll
        [-] 2008-05-02 . 50A166237A0FA771261275A405646CC0 . 17408 . . [6.00.2900.5512] . . c:\windows\system32\powrprof.dll
        [-] 2008-05-02 . 50A166237A0FA771261275A405646CC0 . 17408 . . [6.00.2900.5512] . . c:\windows\system32\dllcache\powrprof.dll

        [-] 2008-05-02 . A86BB5E61BF3E39B62AB4C7E7085A084 . 181248 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\scecli.dll
        [-] 2008-05-02 . A86BB5E61BF3E39B62AB4C7E7085A084 . 181248 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\2bc0b3c55e0c166e04844934d1c7c342\scecli.dll
        [-] 2008-05-02 . A86BB5E61BF3E39B62AB4C7E7085A084 . 181248 . . [5.1.2600.5512] . . c:\windows\system32\scecli.dll
        [-] 2008-05-02 . A86BB5E61BF3E39B62AB4C7E7085A084 . 181248 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\scecli.dll

        [-] 2008-05-02 . 96E1C926F22EE1BFBAE82901A35F6BF3 . 5120 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\sfc.dll
        [-] 2008-05-02 . 96E1C926F22EE1BFBAE82901A35F6BF3 . 5120 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\2bc0b3c55e0c166e04844934d1c7c342\sfc.dll
        [-] 2008-05-02 . 96E1C926F22EE1BFBAE82901A35F6BF3 . 5120 . . [5.1.2600.5512] . . c:\windows\system32\sfc.dll

        [-] 2008-05-02 . 27C6D03BCDB8CFEB96B716F3D8BE3E18 . 14336 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\svchost.exe
        [-] 2008-05-02 . 27C6D03BCDB8CFEB96B716F3D8BE3E18 . 14336 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\2bc0b3c55e0c166e04844934d1c7c342\svchost.exe
        [-] 2008-05-02 . 27C6D03BCDB8CFEB96B716F3D8BE3E18 . 14336 . . [5.1.2600.5512] . . c:\windows\system32\svchost.exe
        [-] 2008-05-02 . 27C6D03BCDB8CFEB96B716F3D8BE3E18 . 14336 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\svchost.exe

        [-] 2008-05-02 . 3CB78C17BB664637787C9A1C98F79C38 . 249856 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\tapisrv.dll
        [-] 2008-05-02 . 3CB78C17BB664637787C9A1C98F79C38 . 249856 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\2bc0b3c55e0c166e04844934d1c7c342\tapisrv.dll
        [-] 2008-05-02 . 3CB78C17BB664637787C9A1C98F79C38 . 249856 . . [5.1.2600.5512] . . c:\windows\system32\tapisrv.dll
        [-] 2008-05-02 . 3CB78C17BB664637787C9A1C98F79C38 . 249856 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\tapisrv.dll

        [-] 2008-05-02 . B26B135FF1B9F60C9388B4A7D16F600B . 578560 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\user32.dll
        [-] 2008-05-02 . B26B135FF1B9F60C9388B4A7D16F600B . 578560 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\2bc0b3c55e0c166e04844934d1c7c342\user32.dll
        [-] 2008-05-02 . B26B135FF1B9F60C9388B4A7D16F600B . 578560 . . [5.1.2600.5512] . . c:\windows\system32\user32.dll
        [-] 2008-05-02 . B26B135FF1B9F60C9388B4A7D16F600B . 578560 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\user32.dll

        [-] 2008-05-02 . A93AEE1928A9D7CE3E16D24EC7380F89 . 26112 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\userinit.exe
        [-] 2008-05-02 . A93AEE1928A9D7CE3E16D24EC7380F89 . 26112 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\2bc0b3c55e0c166e04844934d1c7c342\userinit.exe
        [-] 2008-05-02 . A93AEE1928A9D7CE3E16D24EC7380F89 . 26112 . . [5.1.2600.5512] . . c:\windows\system32\userinit.exe
        [-] 2008-05-02 . A93AEE1928A9D7CE3E16D24EC7380F89 . 26112 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\userinit.exe

        [-] 2009-06-29 . 4C6B4138165A4C53FE8A5B1D809526C3 . 828928 . . [7.00.6000.21073] . . c:\windows\SoftwareDistribution\Download\cfdf673d5f64980a67e3f1a551949306\sp3qfe\wininet.dll
        [-] 2009-06-29 . A39B7BA7AB9B1CC2A0009F59772DB83C . 827392 . . [7.00.6000.16876] . . c:\windows\SoftwareDistribution\Download\cfdf673d5f64980a67e3f1a551949306\sp3gdr\wininet.dll
        [-] 2009-04-29 . 8E2D471157B0DF329D8D0EA5D83B0DDB . 827392 . . [7.00.6000.16850] . . c:\windows\ERDNT\cache\wininet.dll
        [-] 2009-04-29 . 8E2D471157B0DF329D8D0EA5D83B0DDB . 827392 . . [7.00.6000.16850] . . c:\windows\system32\wininet.dll
        [-] 2009-04-29 . 62CCA075F44015147B8971DAFFBCFF76 . 828928 . . [7.00.6000.21045] . . c:\windows\$hf_mig$\KB969897-IE7\SP3QFE\wininet.dll
        [-] 2009-03-03 . 28775945CCD53DEE280EF58DEA1A94C4 . 826368 . . [7.00.6000.16827] . . c:\windows\ie7updates\KB969897-IE7\wininet.dll
        [-] 2009-03-03 . C8667854873938CA13C986F16B0CD183 . 828416 . . [7.00.6000.21020] . . c:\windows\$hf_mig$\KB963027-IE7\SP3QFE\wininet.dll
        [-] 2008-12-20 . 044E0A4E9FE97C0FB9AFE9C89E2A82E6 . 827904 . . [7.00.6000.20978] . . c:\windows\$hf_mig$\KB961260-IE7\SP2QFE\wininet.dll
        [-] 2008-12-20 . A82935D32D0672E8FF4E91AE398E901C . 826368 . . [7.00.6000.16791] . . c:\windows\ie7updates\KB963027-IE7\wininet.dll
        [-] 2008-10-16 . E8FCE58A470999350F64C591557F9E42 . 667136 . . [6.00.2900.5694] . . c:\windows\$hf_mig$\KB958215\SP3QFE\wininet.dll
        [-] 2008-05-02 . 7A4F775ABB2F1C97DEF3E73AFA2FAEDD . 666112 . . [6.00.2900.5512] . . c:\windows\ie7\wininet.dll
        [-] 2008-05-02 . 7A4F775ABB2F1C97DEF3E73AFA2FAEDD . 666112 . . [6.00.2900.5512] . . c:\windows\SoftwareDistribution\Download\2bc0b3c55e0c166e04844934d1c7c342\wininet.dll
        [-] 2007-08-13 . A4A0FC92358F39538A6494C42EF99FE9 . 818688 . . [7.00.5730.13] . . c:\windows\ie7updates\KB961260-IE7\wininet.dll

        [-] 2008-05-02 . 2CCC474EB85CEAA3E1FA1726580A3E5A . 82432 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\ws2_32.dll
        [-] 2008-05-02 . 2CCC474EB85CEAA3E1FA1726580A3E5A . 82432 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\2bc0b3c55e0c166e04844934d1c7c342\ws2_32.dll
        [-] 2008-05-02 . 2CCC474EB85CEAA3E1FA1726580A3E5A . 82432 . . [5.1.2600.5512] . . c:\windows\system32\ws2_32.dll
        [-] 2008-05-02 . 2CCC474EB85CEAA3E1FA1726580A3E5A . 82432 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ws2_32.dll

        [-] 2008-05-02 . 9789E95E1D88EEB4B922BF3EA7779C28 . 19968 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\2bc0b3c55e0c166e04844934d1c7c342\ws2help.dll
        [-] 2008-05-02 . 9789E95E1D88EEB4B922BF3EA7779C28 . 19968 . . [5.1.2600.5512] . . c:\windows\system32\ws2help.dll
        [-] 2008-05-02 . 9789E95E1D88EEB4B922BF3EA7779C28 . 19968 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ws2help.dll

        [-] 2008-05-02 . 12896823FB95BFB3DC9B46BCAEDC9923 . 1033728 . . [6.00.2900.5512] . . c:\windows\explorer.exe
        [-] 2008-05-02 . 12896823FB95BFB3DC9B46BCAEDC9923 . 1033728 . . [6.00.2900.5512] . . c:\windows\ERDNT\cache\explorer.exe
        [-] 2008-05-02 . 12896823FB95BFB3DC9B46BCAEDC9923 . 1033728 . . [6.00.2900.5512] . . c:\windows\SoftwareDistribution\Download\2bc0b3c55e0c166e04844934d1c7c342\explorer.exe

        [-] 2008-05-02 . 3805DF0AC4296A34BA4BF93B346CC378 . 171008 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\srsvc.dll
        [-] 2008-05-02 . 3805DF0AC4296A34BA4BF93B346CC378 . 171008 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\2bc0b3c55e0c166e04844934d1c7c342\srsvc.dll
        [-] 2008-05-02 . 3805DF0AC4296A34BA4BF93B346CC378 . 171008 . . [5.1.2600.5512] . . c:\windows\system32\srsvc.dll
        [-] 2008-05-02 . 3805DF0AC4296A34BA4BF93B346CC378 . 171008 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\srsvc.dll

        [-] 2008-05-02 . F92E1076C42FCD6DB3D72D8CFE9816D5 . 13824 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\wscntfy.exe
        [-] 2008-05-02 . F92E1076C42FCD6DB3D72D8CFE9816D5 . 13824 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\2bc0b3c55e0c166e04844934d1c7c342\wscntfy.exe
        [-] 2008-05-02 . F92E1076C42FCD6DB3D72D8CFE9816D5 . 13824 . . [5.1.2600.5512] . . c:\windows\system32\wscntfy.exe
        [-] 2008-05-02 . F92E1076C42FCD6DB3D72D8CFE9816D5 . 13824 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\wscntfy.exe

        [-] 2008-05-02 . 295D21F14C335B53CB8154E5B1F892B9 . 129024 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\xmlprov.dll
        [-] 2008-05-02 . 295D21F14C335B53CB8154E5B1F892B9 . 129024 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\2bc0b3c55e0c166e04844934d1c7c342\xmlprov.dll
        [-] 2008-05-02 . 295D21F14C335B53CB8154E5B1F892B9 . 129024 . . [5.1.2600.5512] . . c:\windows\system32\xmlprov.dll
        [-] 2008-05-02 . 295D21F14C335B53CB8154E5B1F892B9 . 129024 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\xmlprov.dll

        [-] 2008-05-02 . 6D4FEB43EE538FC5428CC7F0565AA656 . 56320 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\eventlog.dll
        [-] 2008-05-02 . 6D4FEB43EE538FC5428CC7F0565AA656 . 56320 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\2bc0b3c55e0c166e04844934d1c7c342\eventlog.dll
        [-] 2008-05-02 . 6D4FEB43EE538FC5428CC7F0565AA656 . 56320 . . [5.1.2600.5512] . . c:\windows\system32\eventlog.dll

        [-] 2008-05-02 . 9DD07AF82244867CA36681EA2D29CE79 . 1614848 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\sfcfiles.dll
        [-] 2008-05-02 . 9DD07AF82244867CA36681EA2D29CE79 . 1614848 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\2bc0b3c55e0c166e04844934d1c7c342\sfcfiles.dll
        [-] 2008-05-02 . 9DD07AF82244867CA36681EA2D29CE79 . 1614848 . . [5.1.2600.5512] . . c:\windows\system32\sfcfiles.dll

        [-] 2008-05-02 . 5F1D5F88303D4A4DBC8E5F97BA967CC3 . 15360 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\ctfmon.exe
        [-] 2008-05-02 . 5F1D5F88303D4A4DBC8E5F97BA967CC3 . 15360 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\2bc0b3c55e0c166e04844934d1c7c342\ctfmon.exe
        [-] 2008-05-02 . 5F1D5F88303D4A4DBC8E5F97BA967CC3 . 15360 . . [5.1.2600.5512] . . c:\windows\system32\ctfmon.exe

        [-] 2008-05-02 . 1926899BF9FFE2602B63074971700412 . 135168 . . [6.00.2900.5512] . . c:\windows\ERDNT\cache\shsvcs.dll
        [-] 2008-05-02 . 1926899BF9FFE2602B63074971700412 . 135168 . . [6.00.2900.5512] . . c:\windows\SoftwareDistribution\Download\2bc0b3c55e0c166e04844934d1c7c342\shsvcs.dll
        [-] 2008-05-02 . 1926899BF9FFE2602B63074971700412 . 135168 . . [6.00.2900.5512] . . c:\windows\system32\shsvcs.dll
        [-] 2008-05-02 . 1926899BF9FFE2602B63074971700412 . 135168 . . [6.00.2900.5512] . . c:\windows\system32\dllcache\shsvcs.dll

        [-] 2008-05-02 . 5B19B557B0C188210A56A6B699D90B8F . 59904 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\regsvc.dll
        [-] 2008-05-02 . 5B19B557B0C188210A56A6B699D90B8F . 59904 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\2bc0b3c55e0c166e04844934d1c7c342\regsvc.dll
        [-] 2008-05-02 . 5B19B557B0C188210A56A6B699D90B8F . 59904 . . [5.1.2600.5512] . . c:\windows\system32\regsvc.dll
        [-] 2008-05-02 . 5B19B557B0C188210A56A6B699D90B8F . 59904 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\regsvc.dll

        [-] 2008-05-02 . 0A9A7365A1CA4319AA7C1D6CD8E4EAFA . 192512 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\schedsvc.dll
        [-] 2008-05-02 . 0A9A7365A1CA4319AA7C1D6CD8E4EAFA . 192512 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\2bc0b3c55e0c166e04844934d1c7c342\schedsvc.dll
        [-] 2008-05-02 . 0A9A7365A1CA4319AA7C1D6CD8E4EAFA . 192512 . . [5.1.2600.5512] . . c:\windows\system32\schedsvc.dll
        [-] 2008-05-02 . 0A9A7365A1CA4319AA7C1D6CD8E4EAFA . 192512 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\schedsvc.dll

        [-] 2008-05-02 . 0A5679B3714EDAB99E357057EE88FCA6 . 71680 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\ssdpsrv.dll
        [-] 2008-05-02 . 0A5679B3714EDAB99E357057EE88FCA6 . 71680 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\2bc0b3c55e0c166e04844934d1c7c342\ssdpsrv.dll
        [-] 2008-05-02 . 0A5679B3714EDAB99E357057EE88FCA6 . 71680 . . [5.1.2600.5512] . . c:\windows\system32\ssdpsrv.dll
        [-] 2008-05-02 . 0A5679B3714EDAB99E357057EE88FCA6 . 71680 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\ssdpsrv.dll

        [-] 2008-05-02 . FF3477C03BE7201C294C35F684B3479F . 295424 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\termsrv.dll
        [-] 2008-05-02 . FF3477C03BE7201C294C35F684B3479F . 295424 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\2bc0b3c55e0c166e04844934d1c7c342\termsrv.dll
        [-] 2008-05-02 . FF3477C03BE7201C294C35F684B3479F . 295424 . . [5.1.2600.5512] . . c:\windows\system32\termsrv.dll
        [-] 2008-05-02 . FF3477C03BE7201C294C35F684B3479F . 295424 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\termsrv.dll

        [-] 2008-05-02 . D8849F77C0B66226335A59D26CB4EDC6 . 167936 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\appmgmts.dll
        [-] 2008-05-02 . D8849F77C0B66226335A59D26CB4EDC6 . 167936 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\2bc0b3c55e0c166e04844934d1c7c342\appmgmts.dll
        [-] 2008-05-02 . D8849F77C0B66226335A59D26CB4EDC6 . 167936 . . [5.1.2600.5512] . . c:\windows\system32\appmgmts.dll

        [-] 2008-05-02 . 9859C0F6936E723E4892D7141B1327D5 . 11648 . . [5.1.2600.0] . . c:\windows\ERDNT\cache\acpiec.sys
        [-] 2008-05-02 . 9859C0F6936E723E4892D7141B1327D5 . 11648 . . [5.1.2600.0] . . c:\windows\system32\drivers\acpiec.sys

        [-] 2008-04-14 03:09 . 8BED39E3C35D6A489438B8141717A557 . 142592 . . [5.1.2601.3142] . . c:\windows\ERDNT\cache\aec.sys
        [-] 2008-04-14 03:09 . 8BED39E3C35D6A489438B8141717A557 . 142592 . . [5.1.2601.3142] . . c:\windows\SoftwareDistribution\Download\2bc0b3c55e0c166e04844934d1c7c342\aec.sys
        [-] 2008-04-14 03:09 . 8BED39E3C35D6A489438B8141717A557 . 142592 . . [5.1.2601.3142] . . c:\windows\system32\drivers\aec.sys

        [-] 2008-05-02 . 3BB22519A194418D5FEC05D800A19AD0 . 36608 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\ip6fw.sys
        [-] 2008-05-02 . 3BB22519A194418D5FEC05D800A19AD0 . 36608 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\2bc0b3c55e0c166e04844934d1c7c342\ip6fw.sys
        [-] 2008-05-02 . 3BB22519A194418D5FEC05D800A19AD0 . 36608 . . [5.1.2600.5512] . . c:\windows\system32\drivers\ip6fw.sys

        [-] 2008-05-02 03:05 . CDDD4416B2B4C7295FE3FDB6DDE57E4E . 927504 . . [4.1.0.61] . . c:\windows\ERDNT\cache\mfc40u.dll
        [-] 2008-05-02 03:05 . CDDD4416B2B4C7295FE3FDB6DDE57E4E . 927504 . . [4.1.0.61] . . c:\windows\SoftwareDistribution\Download\2bc0b3c55e0c166e04844934d1c7c342\mfc40u.dll
        [-] 2008-05-02 03:05 . CDDD4416B2B4C7295FE3FDB6DDE57E4E . 927504 . . [4.1.0.61] . . c:\windows\system32\mfc40u.dll

        [-] 2008-05-02 . 986B1FF5814366D71E0AC5755C88F2D3 . 33792 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\msgsvc.dll
        [-] 2008-05-02 . 986B1FF5814366D71E0AC5755C88F2D3 . 33792 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\2bc0b3c55e0c166e04844934d1c7c342\msgsvc.dll
        [-] 2008-05-02 . 986B1FF5814366D71E0AC5755C88F2D3 . 33792 . . [5.1.2600.5512] . . c:\windows\system32\msgsvc.dll

        [-] 2008-05-02 03:05 . C7E39EA41233E9F5B86C8DA3A9F1E4A8 . 52224 . . [9.0.1.56] . . c:\windows\$NtUninstallWMFDist11$\mspmsnsv.dll
        [-] 2006-10-19 02:47 . C51B4A5C05A5475708E3C81C7765B71D . 27136 . . [11.0.5721.5145] . . c:\windows\ERDNT\cache\mspmsnsv.dll
        [-] 2006-10-19 02:47 . C51B4A5C05A5475708E3C81C7765B71D . 27136 . . [11.0.5721.5145] . . c:\windows\system32\mspmsnsv.dll
        [-] 2006-10-19 02:47 . C51B4A5C05A5475708E3C81C7765B71D . 27136 . . [11.0.5721.5145] . . c:\windows\system32\dllcache\mspmsnsv.dll

        [-] 2009-02-07 . 5BA7F2141BC6DB06100D0E5A732C617A . 2066048 . . [5.1.2600.5755] . . c:\windows\Driver Cache\i386\ntkrnlpa.exe
        [-] 2009-02-07 . 5BA7F2141BC6DB06100D0E5A732C617A . 2066048 . . [5.1.2600.5755] . . c:\windows\LastGood\system32\dllcache\ntkrnlpa.exe
        [-] 2009-02-07 . 5BA7F2141BC6DB06100D0E5A732C617A . 2066048 . . [5.1.2600.5755] . . c:\windows\system32\dllcache\ntkrnlpa.exe
        [-] 2009-02-06 . 65D4220799E6FC2CB079070A6393CC0E . 2023936 . . [5.1.2600.5755] . . c:\windows\ERDNT\cache\ntkrnlpa.exe
        [-] 2009-02-06 . 65D4220799E6FC2CB079070A6393CC0E . 2023936 . . [5.1.2600.5755] . . c:\windows\system32\ntkrnlpa.exe
        [-] 2009-02-06 . 607352B9CB3D708C67F6039097801B5A . 2066176 . . [5.1.2600.5755] . . c:\windows\$hf_mig$\KB956572\SP3QFE\ntkrnlpa.exe
        [-] 2008-08-14 . A25E9B86EFFB2AF33BF51E676B68BFB0 . 2066048 . . [5.1.2600.5657] . . c:\windows\$hf_mig$\KB956841\SP3QFE\ntkrnlpa.exe
        [-] 2008-08-14 . 8206B5F94A6A9450E934029420C1693F . 2023936 . . [5.1.2600.5657] . . c:\windows\$NtUninstallKB956572$\ntkrnlpa.exe
        [-] 2008-05-02 . 7F653A89F6E89E3AE0D49830EECE35D4 . 2023936 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB956841$\ntkrnlpa.exe
        [-] 2008-04-14 . 109F8E3E3C82E337BB71B6BC9B895D61 . 2065792 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\2bc0b3c55e0c166e04844934d1c7c342\ntkrnlpa.exe

        [-] 2008-05-02 03:05 . 156F64A3345BD23C600655FB4D10BC08 . 435200 . . [5.1.2400.5512] . . c:\windows\ERDNT\cache\ntmssvc.dll
        [-] 2008-05-02 03:05 . 156F64A3345BD23C600655FB4D10BC08 . 435200 . . [5.1.2400.5512] . . c:\windows\SoftwareDistribution\Download\2bc0b3c55e0c166e04844934d1c7c342\ntmssvc.dll
        [-] 2008-05-02 03:05 . 156F64A3345BD23C600655FB4D10BC08 . 435200 . . [5.1.2400.5512] . . c:\windows\system32\ntmssvc.dll
        [-] 2008-05-02 03:05 . 156F64A3345BD23C600655FB4D10BC08 . 435200 . . [5.1.2400.5512] . . c:\windows\system32\dllcache\ntmssvc.dll

        [-] 2008-05-02 . 1EBAFEB9A3FBDC41B8D9C7F0F687AD91 . 185856 . . [5.1.2600.5512] . . c:\windows\ERDNT\cache\upnphost.dll
        [-] 2008-05-02 . 1EBAFEB9A3FBDC41B8D9C7F0F687AD91 . 185856 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\2bc0b3c55e0c166e04844934d1c7c342\upnphost.dll
        [-] 2008-05-02 . 1EBAFEB9A3FBDC41B8D9C7F0F687AD91 . 185856 . . [5.1.2600.5512] . . c:\windows\system32\upnphost.dll
        [-] 2008-05-02 . 1EBAFEB9A3FBDC41B8D9C7F0F687AD91 . 185856 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\upnphost.dll

        [-] 2008-05-02 . 4D83ED8BDDEC431FC8AD907B47CFB6E3 . 367616 . . [5.3.2600.5512] . . c:\windows\ERDNT\cache\dsound.dll
        [-] 2008-05-02 . 4D83ED8BDDEC431FC8AD907B47CFB6E3 . 367616 . . [5.3.2600.5512] . . c:\windows\SoftwareDistribution\Download\2bc0b3c55e0c166e04844934d1c7c342\dsound.dll
        [-] 2008-05-02 . 4D83ED8BDDEC431FC8AD907B47CFB6E3 . 367616 . . [5.3.2600.5512] . . c:\windows\system32\dsound.dll

        [-] 2008-05-02 . 0607CBC6FA20114CB491EFE4B2F9EFAD . 1689088 . . [5.03.2600.5512] . . c:\windows\SoftwareDistribution\Download\2bc0b3c55e0c166e04844934d1c7c342\d3d9.dll
        [-] 2008-05-02 . 0607CBC6FA20114CB491EFE4B2F9EFAD . 1689088 . . [5.03.2600.5512] . . c:\windows\system32\d3d9.dll

        [-] 2008-05-02 . A340CD71EB535A3DD751B5F28723E50C . 279552 . . [5.03.2600.5512] . . c:\windows\SoftwareDistribution\Download\2bc0b3c55e0c166e04844934d1c7c342\ddraw.dll
        [-] 2008-05-02 . A340CD71EB535A3DD751B5F28723E50C . 279552 . . [5.03.2600.5512] . . c:\windows\system32\ddraw.dll

        [-] 2008-05-02 03:05 . 5652F6CE1D9E9D8068B9D29BC21B5409 . 84992 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\2bc0b3c55e0c166e04844934d1c7c342\olepro32.dll
        [-] 2008-05-02 03:05 . 5652F6CE1D9E9D8068B9D29BC21B5409 . 84992 . . [5.1.2600.5512] . . c:\windows\system32\olepro32.dll

        [-] 2008-05-02 . DBE2B62353660ECCA0D75EA307A717E9 . 39936 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\2bc0b3c55e0c166e04844934d1c7c342\perfctrs.dll
        [-] 2008-05-02 . DBE2B62353660ECCA0D75EA307A717E9 . 39936 . . [5.1.2600.5512] . . c:\windows\system32\perfctrs.dll
        [-] 2008-05-02 . DBE2B62353660ECCA0D75EA307A717E9 . 39936 . . [5.1.2600.5512] . . c:\windows\system32\dllcache\perfctrs.dll
        .
        ((((((((((((((((((((((((((((( SnapShot@2010-06-24_14.51.17 )))))))))))))))))))))))))))))))))))))))))
        .
        + 2010-06-25 20:54 . 2010-06-25 20:54   16384 c:\windows\temp\Perflib_Perfdata_6a0.dat
        + 2008-05-02 03:05 . 2004-08-04 11:00   14848 c:\windows\system32\msidntld.dll
        - 2008-05-02 03:05 . 2008-05-02 03:05   14848 c:\windows\system32\msidntld.dll
        + 2010-06-26 16:54 . 2001-08-18 02:36   23040 c:\windows\system32\dllcache\xrxwbtmp.dll
        + 2010-06-26 16:54 . 2008-04-14 09:42   18944 c:\windows\system32\dllcache\xrxscnui.dll
        + 2010-06-26 16:54 . 2001-08-18 02:37   27648 c:\windows\system32\dllcache\xrxftplt.exe
        + 2010-06-26 16:54 . 2001-08-18 02:37   99865 c:\windows\system32\dllcache\xlog.exe
        + 2010-06-26 16:54 . 2001-08-17 16:11   16970 c:\windows\system32\dllcache\xem336n5.sys
        + 2008-04-14 05:42 . 2008-05-02 03:05   52736 c:\windows\system32\dllcache\wzcsapi.dll
        + 2010-06-26 16:54 . 2008-04-14 02:04   19455 c:\windows\system32\dllcache\wvchntxx.sys
        + 2010-06-26 16:54 . 2008-04-14 04:16   19200 c:\windows\system32\dllcache\wstcodec.sys
        + 2010-06-26 16:54 . 2008-04-14 02:04   12063 c:\windows\system32\dllcache\wsiintxx.sys
        + 2010-06-26 16:54 . 2001-08-17 16:12   34890 c:\windows\system32\dllcache\wlandrv2.sys
        + 2010-06-26 16:53 . 2001-08-18 02:36   53760 c:\windows\system32\dllcache\wiamsmud.dll
        + 2009-03-07 02:00 . 2004-08-04 11:00   31232 c:\windows\system32\dllcache\weitekp9.sys
        - 2009-03-07 02:00 . 2008-05-02 03:05   31232 c:\windows\system32\dllcache\weitekp9.sys
        + 2009-03-07 02:00 . 2004-08-04 11:00   41600 c:\windows\system32\dllcache\weitekp9.dll
        - 2009-03-07 02:00 . 2008-05-02 03:05   41600 c:\windows\system32\dllcache\weitekp9.dll
        + 2010-06-26 16:53 . 2008-04-14 02:04   23615 c:\windows\system32\dllcache\wch7xxnt.sys
        + 2010-06-26 16:53 . 2008-04-14 04:15   31744 c:\windows\system32\dllcache\wceusbsh.sys
        + 2010-06-26 16:53 . 2001-08-17 16:10   35871 c:\windows\system32\dllcache\wbfirdma.sys
        + 2010-06-26 16:53 . 2008-04-14 02:04   25471 c:\windows\system32\dllcache\watv10nt.sys
        + 2010-06-26 16:53 . 2008-04-14 02:04   22271 c:\windows\system32\dllcache\watv06nt.sys
        + 2010-06-26 16:53 . 2008-04-14 02:04   33599 c:\windows\system32\dllcache\watv04nt.sys
        + 2010-06-26 16:53 . 2008-04-14 02:04   19551 c:\windows\system32\dllcache\watv02nt.sys
        + 2010-06-26 16:53 . 2008-04-14 02:04   29311 c:\windows\system32\dllcache\watv01nt.sys
        + 2010-06-26 16:53 . 2008-04-14 02:04   11935 c:\windows\system32\dllcache\wadv11nt.sys
        + 2010-06-26 16:53 . 2008-04-14 02:04   11871 c:\windows\system32\dllcache\wadv09nt.sys
        + 2010-06-26 16:53 . 2008-04-14 02:04   11295 c:\windows\system32\dllcache\wadv08nt.sys
        + 2010-06-26 16:53 . 2008-04-14 02:04   11807 c:\windows\system32\dllcache\wadv07nt.sys
        + 2010-06-26 16:53 . 2008-04-14 02:04   11775 c:\windows\system32\dllcache\wadv05nt.sys
        + 2010-06-26 16:53 . 2008-04-14 02:04   12127 c:\windows\system32\dllcache\wadv02nt.sys
        + 2010-06-26 16:53 . 2008-04-14 02:04   12415 c:\windows\system32\dllcache\wadv01nt.sys
        + 2010-06-26 16:53 . 2008-04-14 04:13   14208 c:\windows\system32\dllcache\wacompen.sys
        + 2010-06-26 16:53 . 2001-08-17 16:13   16925 c:\windows\system32\dllcache\w940nd.sys
        + 2010-06-26 16:53 . 2001-08-17 16:13   19016 c:\windows\system32\dllcache\w926nd.sys
        + 2010-06-26 16:53 . 2001-08-17 16:13   19528 c:\windows\system32\dllcache\w840nd.sys
        - 2009-03-07 02:00 . 2008-05-02 03:05   73728 c:\windows\system32\dllcache\w3ext.dll
        + 2009-03-07 02:00 . 2004-08-04 11:00   73728 c:\windows\system32\dllcache\w3ext.dll
        - 2009-03-07 02:00 . 2008-05-02 03:05   48256 c:\windows\system32\dllcache\w32.dll
        + 2009-03-07 02:00 . 2004-08-04 11:00   48256 c:\windows\system32\dllcache\w32.dll
        + 2010-06-26 16:53 . 2001-08-17 17:28   64605 c:\windows\system32\dllcache\vvoice.sys
        + 2010-06-26 16:52 . 2001-08-17 17:49   24576 c:\windows\system32\dllcache\viairda.sys
        + 2010-06-26 16:52 . 2008-04-14 04:06   42240 c:\windows\system32\dllcache\viaagp.sys
        + 2010-06-26 16:52 . 2008-04-14 09:42   53760 c:\windows\system32\dllcache\vfwwdm32.dll
        + 2010-06-26 16:52 . 2008-04-14 09:42   11325 c:\windows\system32\dllcache\vchnt5.dll
        + 2010-06-26 16:52 . 2008-04-14 04:15   26112 c:\windows\system32\dllcache\usbser.sys
        + 2010-06-26 16:52 . 2008-04-14 04:15   17152 c:\windows\system32\dllcache\usbohci.sys
        + 2010-06-26 16:52 . 2008-04-14 04:26   12800 c:\windows\system32\dllcache\usb8023x.sys
        + 2010-06-26 16:52 . 2008-04-14 02:05   32384 c:\windows\system32\dllcache\usb101et.sys
        + 2010-06-26 16:52 . 2001-08-18 02:36   94720 c:\windows\system32\dllcache\umaxud32.dll
        + 2010-06-26 16:51 . 2001-08-18 02:36   26624 c:\windows\system32\dllcache\umaxu22.dll
        + 2010-06-26 16:51 . 2001-08-18 02:36   69632 c:\windows\system32\dllcache\umaxu12.dll
        + 2010-06-26 16:51 . 2001-08-18 02:36   50688 c:\windows\system32\dllcache\umaxscan.dll
        + 2010-06-26 16:51 . 2001-08-17 17:58   22912 c:\windows\system32\dllcache\umaxpcls.sys
        + 2010-06-26 16:51 . 2001-08-18 02:36   50176 c:\windows\system32\dllcache\umaxp60.dll
        + 2010-06-26 16:51 . 2001-08-18 02:36   47616 c:\windows\system32\dllcache\umaxcam.dll
        + 2010-06-26 16:51 . 2001-08-17 17:52   36736 c:\windows\system32\dllcache\ultra.sys
        + 2010-06-26 16:51 . 2008-04-14 04:06   44672 c:\windows\system32\dllcache\uagp35.sys
        + 2010-06-26 16:51 . 2001-08-17 17:48   11520 c:\windows\system32\dllcache\twotrack.sys
        + 2009-03-07 02:00 . 2004-08-04 11:00   14336 c:\windows\system32\dllcache\tsprof.exe
        - 2009-03-07 02:00 . 2008-05-02 03:05   14336 c:\windows\system32\dllcache\tsprof.exe
        + 2010-06-26 16:50 . 2001-08-17 16:12   34375 c:\windows\system32\dllcache\tpro4.sys
        + 2010-06-26 16:50 . 2001-08-18 02:35   42496 c:\windows\system32\dllcache\tp4res.dll
        + 2010-06-26 16:50 . 2008-04-14 09:42   82944 c:\windows\system32\dllcache\tp4mon.exe
        + 2010-06-26 16:50 . 2001-08-18 02:36   31744 c:\windows\system32\dllcache\tp4.dll
        + 2010-06-26 16:50 . 2001-08-17 16:10   28232 c:\windows\system32\dllcache\tos4mo.sys
        - 2009-03-07 02:00 . 2008-05-02 03:05   44032 c:\windows\system32\dllcache\tintlphr.exe
        + 2009-03-07 02:00 . 2007-11-30 12:16   44032 c:\windows\system32\dllcache\tintlphr.exe
        + 2010-06-26 16:50 . 2001-08-17 18:56   81408 c:\windows\system32\dllcache\tgiul50.dll
        + 2009-03-07 02:00 . 2004-08-04 11:00   19464 c:\windows\system32\dllcache\tdspx.sys
        - 2009-03-07 02:00 . 2008-05-02 03:05   19464 c:\windows\system32\dllcache\tdspx.sys
        + 2010-06-26 16:50 . 2001-08-17 16:13   17129 c:\windows\system32\dllcache\tdkcd31.sys
        + 2010-06-26 16:50 . 2001-08-17 16:13   37961 c:\windows\system32\dllcache\tdk100b.sys
        - 2009-03-07 02:00 . 2008-05-02 03:05   21896 c:\windows\system32\dllcache\tdipx.sys
        + 2009-03-07 02:00 . 2004-08-04 11:00   21896 c:\windows\system32\dllcache\tdipx.sys
        + 2009-03-07 02:00 . 2004-08-04 11:00   13192 c:\windows\system32\dllcache\tdasync.sys
        - 2009-03-07 02:00 . 2008-05-02 03:05   13192 c:\windows\system32\dllcache\tdasync.sys
        + 2010-06-26 16:50 . 2001-08-17 17:49   30464 c:\windows\system32\dllcache\tbatm155.sys
        + 2010-06-26 16:49 . 2001-08-17 16:50   36640 c:\windows\system32\dllcache\t2r4mini.sys
        + 2010-06-26 16:49 . 2001-08-17 18:07   32640 c:\windows\system32\dllcache\symc8xx.sys
        + 2010-06-26 16:49 . 2001-08-17 18:07   16256 c:\windows\system32\dllcache\symc810.sys
        + 2010-06-26 16:49 . 2001-08-17 18:07   30688 c:\windows\system32\dllcache\sym_u3.sys
        + 2010-06-26 16:49 . 2001-08-17 18:07   28384 c:\windows\system32\dllcache\sym_hi.sys
        + 2010-06-26 16:49 . 2001-08-18 02:36   94293 c:\windows\system32\dllcache\sxports.dll
        + 2010-06-26 16:49 . 2001-08-18 02:36   10240 c:\windows\system32\dllcache\swpidflt.dll
        + 2010-06-26 16:49 . 2001-08-18 02:36   10240 c:\windows\system32\dllcache\swpdflt2.dll
        + 2010-06-26 16:49 . 2001-08-18 02:36   53760 c:\windows\system32\dllcache\sw_wheel.dll
        + 2010-06-26 16:49 . 2001-08-18 02:36   41472 c:\windows\system32\dllcache\sw_effct.dll
        + 2010-06-26 16:49 . 2008-04-14 04:16   15232 c:\windows\system32\dllcache\streamip.sys
        + 2010-06-26 16:49 . 2001-08-18 02:36   53248 c:\windows\system32\dllcache\stlncoin.dll
        + 2010-06-26 16:49 . 2001-08-17 17:51   16896 c:\windows\system32\dllcache\stcusb.sys
        - 2009-03-07 02:00 . 2008-05-02 03:05   16896 c:\windows\system32\dllcache\status.dll
        + 2009-03-07 02:00 . 2004-08-04 11:00   16896 c:\windows\system32\dllcache\status.dll
        + 2010-06-26 16:48 . 2001-08-18 02:36   99328 c:\windows\system32\dllcache\srusd.dll
        + 2010-06-26 16:48 . 2001-08-18 02:36   24660 c:\windows\system32\dllcache\spxupchk.dll
        + 2010-06-26 16:48 . 2001-08-17 17:51   61824 c:\windows\system32\dllcache\speed.sys
        + 2010-06-26 16:48 . 2001-08-17 18:07   19072 c:\windows\system32\dllcache\sparrow.sys
        + 2010-06-26 16:48 . 2001-08-17 16:51   37040 c:\windows\system32\dllcache\sonypi.sys
        + 2010-06-26 16:48 . 2001-08-17 16:51   20752 c:\windows\system32\dllcache\sonync.sys
        + 2009-03-07 02:00 . 2004-08-04 11:00   10240 c:\windows\system32\dllcache\snmpstup.dll
        - 2009-03-07 02:00 . 2008-05-02 03:05   10240 c:\windows\system32\dllcache\snmpstup.dll
        + 2010-06-26 16:48 . 2001-08-17 16:51   58368 c:\windows\system32\dllcache\smiminib.sys
        - 2009-03-07 02:00 . 2008-05-02 03:05   15872 c:\windows\system32\dllcache\smierrsm.dll
        + 2009-03-07 02:00 . 2004-08-04 11:00   15872 c:\windows\system32\dllcache\smierrsm.dll
        + 2010-06-26 16:48 . 2001-08-17 16:12   25034 c:\windows\system32\dllcache\smcpwr2n.sys
        + 2010-06-26 16:47 . 2001-08-17 16:12   24576 c:\windows\system32\dllcache\smc8000n.sys
        + 2010-06-26 16:47 . 2008-04-14 04:06   16000 c:\windows\system32\dllcache\smbbatt.sys
        - 2009-03-07 02:00 . 2008-05-02 03:05   31744 c:\windows\system32\dllcache\smb6w.dll
        + 2009-03-07 02:00 . 2004-08-04 11:00   31744 c:\windows\system32\dllcache\smb6w.dll
        + 2010-06-26 16:47 . 2001-08-18 02:36   45568 c:\windows\system32\dllcache\smb3w.dll
        + 2010-06-26 16:47 . 2001-08-18 02:36   33792 c:\windows\system32\dllcache\smb0w.dll
        + 2009-03-07 02:00 . 2004-08-04 11:00   31744 c:\windows\system32\dllcache\sma3w.dll
        - 2009-03-07 02:00 . 2008-05-02 03:05   31744 c:\windows\system32\dllcache\sma3w.dll
        + 2010-06-26 16:47 . 2001-08-18 02:36   28672 c:\windows\system32\dllcache\sma0w.dll
        - 2009-03-07 02:00 . 2008-05-02 03:05   38912 c:\windows\system32\dllcache\sm9aw.dll
        + 2009-03-07 02:00 . 2004-08-04 11:00   38912 c:\windows\system32\dllcache\sm9aw.dll
        + 2009-03-07 02:00 . 2004-08-04 11:00   26624 c:\windows\system32\dllcache\sm93w.dll
        - 2009-03-07 02:00 . 2008-05-02 03:05   26624 c:\windows\system32\dllcache\sm93w.dll
        + 2009-03-07 02:00 . 2004-08-04 11:00   26624 c:\windows\system32\dllcache\sm92w.dll
        - 2009-03-07 02:00 . 2008-05-02 03:05   26624 c:\windows\system32\dllcache\sm92w.dll
        + 2010-06-26 16:47 . 2001-08-18 02:36   28160 c:\windows\system32\dllcache\sm91w.dll
        + 2009-03-07 02:00 . 2004-08-04 11:00   26112 c:\windows\system32\dllcache\sm90w.dll
        - 2009-03-07 02:00 . 2008-05-02 03:05   26112 c:\windows\system32\dllcache\sm90w.dll
        + 2009-03-07 02:00 . 2004-08-04 11:00   26112 c:\windows\system32\dllcache\sm8dw.dll
        - 2009-03-07 02:00 . 2008-05-02 03:05   26112 c:\windows\system32\dllcache\sm8dw.dll
        + 2009-03-07 02:00 . 2004-08-04 11:00   29184 c:\windows\system32\dllcache\sm8cw.dll
        - 2009-03-07 02:00 . 2008-05-02 03:05   29184 c:\windows\system32\dllcache\sm8cw.dll
        - 2009-03-07 02:00 . 2008-05-02 03:05   26112 c:\windows\system32\dllcache\sm8aw.dll
        + 2009-03-07 02:00 . 2004-08-04 11:00   26112 c:\windows\system32\dllcache\sm8aw.dll
        - 2009-03-07 02:00 . 2008-05-02 03:05   26112 c:\windows\system32\dllcache\sm89w.dll
        + 2009-03-07 02:00 . 2004-08-04 11:00   26112 c:\windows\system32\dllcache\sm89w.dll
        - 2009-03-07 02:00 . 2008-05-02 03:05   30208 c:\windows\system32\dllcache\sm87w.dll
        + 2009-03-07 02:00 . 2004-08-04 11:00   30208 c:\windows\system32\dllcache\sm87w.dll
        - 2009-03-07 02:00 . 2008-05-02 03:05   30208 c:\windows\system32\dllcache\sm81w.dll
        + 2009-03-07 02:00 . 2004-08-04 11:00   30208 c:\windows\system32\dllcache\sm81w.dll
        - 2009-03-07 02:00 . 2008-05-02 03:05   25088 c:\windows\system32\dllcache\sm59w.dll
        + 2009-03-07 02:00 . 2004-08-04 11:00   25088 c:\windows\system32\dllcache\sm59w.dll
        + 2010-06-26 16:47 . 2008-04-14 03:53   13240 c:\windows\system32\dllcache\slwdmsup.sys
        + 2010-06-26 16:47 . 2008-04-14 09:42   73796 c:\windows\system32\dllcache\slserv.exe
        + 2010-06-26 16:47 . 2008-04-14 09:42   32866 c:\windows\system32\dllcache\slrundll.exe
        + 2010-06-26 16:47 . 2008-04-14 03:53   95424 c:\windows\system32\dllcache\slnthal.sys
        + 2010-06-26 16:47 . 2008-04-14 04:16   11136 c:\windows\system32\dllcache\slip.sys
        + 2010-06-26 16:47 . 2008-04-14 09:42   73832 c:\windows\system32\dllcache\slcoinst.dll
        + 2010-06-26 16:47 . 2008-04-14 02:05   63547 c:\windows\system32\dllcache\sla30nd5.sys
        + 2010-06-26 16:47 . 2001-08-17 16:12   91294 c:\windows\system32\dllcache\skfpwin.sys
        + 2010-06-26 16:47 . 2001-08-17 16:12   94698 c:\windows\system32\dllcache\sk98xwin.sys
        + 2010-06-26 16:47 . 2001-08-17 16:50   50432 c:\windows\system32\dllcache\sisv.sys
        + 2010-06-26 16:47 . 2008-04-14 02:05   32768 c:\windows\system32\dllcache\sisnic.sys
        + 2010-06-26 16:47 . 2008-04-14 04:06   40960 c:\windows\system32\dllcache\sisagp.sys
        + 2010-06-26 16:47 . 2001-08-17 16:50   68608 c:\windows\system32\dllcache\sis6306p.sys
        - 2009-03-07 02:00 . 2008-05-02 03:05   18944 c:\windows\system32\dllcache\simptcp.dll
        + 2009-03-07 02:00 . 2004-08-04 11:00   18944 c:\windows\system32\dllcache\simptcp.dll
        + 2010-06-26 16:46 . 2001-07-21 18:29   18400 c:\windows\system32\dllcache\sgsmld.sys
        + 2010-06-26 16:46 . 2001-08-17 16:51   98080 c:\windows\system32\dllcache\sgiulnt5.sys
        + 2010-06-26 16:46 . 2001-08-17 16:19   36480 c:\windows\system32\dllcache\sfmanm.sys
        + 2010-06-26 16:46 . 2001-08-17 17:48   17664 c:\windows\system32\dllcache\sermouse.sys
        + 2010-06-26 16:46 . 2008-04-14 04:15   11520 c:\windows\system32\dllcache\scsiscan.sys
        + 2010-06-26 16:46 . 2001-08-17 17:52   11648 c:\windows\system32\dllcache\scsiprnt.sys
        + 2010-06-26 16:46 . 2001-08-17 17:51   17280 c:\windows\system32\dllcache\scr111.sys
        + 2010-06-26 16:46 . 2001-08-17 17:51   16640 c:\windows\system32\dllcache\scmstcs.sys
        + 2010-06-26 16:46 . 2001-08-17 17:51   23936 c:\windows\system32\dllcache\sccmusbm.sys
        + 2010-06-26 16:45 . 2008-04-14 04:10   43904 c:\windows\system32\dllcache\sbp2port.sys
        + 2010-06-26 16:45 . 2001-08-17 16:50   75392 c:\windows\system32\dllcache\s3savmxm.sys
        + 2010-06-26 16:45 . 2001-08-17 16:50   77824 c:\windows\system32\dllcache\s3sav4m.sys
        + 2010-06-26 16:45 . 2001-08-17 16:50   61504 c:\windows\system32\dllcache\s3sav3dm.sys
        + 2010-06-26 16:45 . 2001-08-18 02:36   62496 c:\windows\system32\dllcache\s3mtrio.dll
        + 2010-06-26 16:45 . 2001-08-17 16:50   41216 c:\windows\system32\dllcache\s3mt3d.sys
        + 2010-06-26 16:45 . 2001-08-17 17:57   65664 c:\windows\system32\dllcache\s3legacy.sys
        + 2010-06-26 16:45 . 2001-08-18 02:36   82432 c:\windows\system32\dllcache\rwia450.dll
        + 2010-06-26 16:45 . 2001-08-18 02:36   79872 c:\windows\system32\dllcache\rwia430.dll
        - 2009-03-07 02:00 . 2008-05-02 03:05   79872 c:\windows\system32\dllcache\rwia330.dll
        + 2009-03-07 02:00 . 2004-08-04 11:00   79872 c:\windows\system32\dllcache\rwia330.dll
        + 2009-03-07 02:00 . 2004-08-04 11:00   79872 c:\windows\system32\dllcache\rwia001.dll
        - 2009-03-07 02:00 . 2008-05-02 03:05   79872 c:\windows\system32\dllcache\rwia001.dll
        + 2010-06-26 16:45 . 2008-04-14 09:42   29696 c:\windows\system32\dllcache\rw450ext.dll
        + 2010-06-26 16:45 . 2008-04-14 09:42   27648 c:\windows\system32\dllcache\rw430ext.dll
        + 2010-06-26 16:45 . 2008-04-14 02:05   20992 c:\windows\system32\dllcache\rtl8139.sys
        + 2010-06-26 16:45 . 2001-08-17 16:12   19017 c:\windows\system32\dllcache\rtl8029.sys
        + 2010-06-26 16:45 . 2001-08-17 16:19   30720 c:\windows\system32\dllcache\rthwcls.sys
        + 2010-06-26 16:44 . 2008-04-14 04:10   79104 c:\windows\system32\dllcache\rocket.sys
        + 2010-06-26 16:44 . 2008-04-14 04:26   30592 c:\windows\system32\dllcache\rndismpx.sys
        + 2010-06-26 16:44 . 2001-08-17 16:12   37563 c:\windows\system32\dllcache\rlnet5.sys
        + 2010-06-26 16:44 . 2008-04-14 04:16   59136 c:\windows\system32\dllcache\rfcomm.sys
        + 2010-06-26 16:44 . 2001-08-18 02:36   86097 c:\windows\system32\dllcache\reslog32.dll
        - 2009-03-07 02:00 . 2008-05-02 03:05   14848 c:\windows\system32\dllcache\register.exe
        + 2009-03-07 02:00 . 2004-08-04 11:00   14848 c:\windows\system32\dllcache\register.exe
        + 2010-06-26 16:44 . 2008-04-14 03:53   13776 c:\windows\system32\dllcache\recagent.sys
        + 2010-06-26 16:44 . 2001-08-17 17:51   19584 c:\windows\system32\dllcache\rasirda.sys
        + 2010-06-26 16:44 . 2001-08-18 02:36   41472 c:\windows\system32\dllcache\qvusd.dll
        + 2009-03-07 02:00 . 2004-08-04 11:00   16384 c:\windows\system32\dllcache\quser.exe
        - 2009-03-07 02:00 . 2008-05-02 03:05   16384 c:\windows\system32\dllcache\quser.exe
        + 2010-06-26 16:44 . 2001-08-17 17:52   49024 c:\windows\system32\dllcache\ql1280.sys
        + 2010-06-26 16:44 . 2001-08-17 17:52   40448 c:\windows\system32\dllcache\ql1240.sys
        + 2010-06-26 16:44 . 2001-08-17 17:52   45312 c:\windows\system32\dllcache\ql12160.sys
        + 2010-06-26 16:44 . 2001-08-17 17:52   33152 c:\windows\system32\dllcache\ql10wnt.sys
        + 2010-06-26 16:44 . 2001-08-17 17:52   40320 c:\windows\system32\dllcache\ql1080.sys
        + 2010-06-26 16:43 . 2001-08-18 02:36   35328 c:\windows\system32\dllcache\psisload.dll
        + 2010-06-26 16:43 . 2001-08-17 17:51   16128 c:\windows\system32\dllcache\pscr.sys
        + 2010-06-26 16:43 . 2008-04-14 04:11   17664 c:\windows\system32\dllcache\ppa3.sys
        + 2010-06-26 16:43 . 2001-08-17 17:53   17792 c:\windows\system32\dllcache\ppa.sys
        + 2009-03-07 02:00 . 2004-08-04 11:00   11264 c:\windows\system32\dllcache\pmxmcro.dll
        - 2009-03-07 02:00 . 2008-05-02 03:05   11264 c:\windows\system32\dllcache\pmxmcro.dll
        + 2008-04-14 05:42 . 2008-05-02 03:05   15360 c:\windows\system32\dllcache\pjlmon.dll
        + 2010-06-26 16:43 . 2001-08-17 18:07   19840 c:\windows\system32\dllcache\philtune.sys
        + 2010-06-26 16:43 . 2001-08-17 18:04   92416 c:\windows\system32\dllcache\phildec.sys
        + 2010-06-26 16:43 . 2001-08-17 18:04   75776 c:\windows\system32\dllcache\philcam1.sys
        + 2010-06-26 16:43 . 2001-08-18 02:36   16384 c:\windows\system32\dllcache\philcam1.dll
        + 2009-03-07 02:00 . 2004-08-04 11:00   20992 c:\windows\system32\dllcache\permchk.dll
        - 2009-03-07 02:00 . 2008-05-02 03:05   20992 c:\windows\system32\dllcache\permchk.dll
        + 2010-06-26 16:43 . 2008-04-14 04:14   28032 c:\windows\system32\dllcache\perm3.sys
        + 2010-06-26 16:42 . 2008-04-14 04:14   27904 c:\windows\system32\dllcache\perm2.sys
        + 2010-06-26 16:42 . 2001-08-17 18:07   27296 c:\windows\system32\dllcache\perc2.sys
        + 2010-06-26 16:42 . 2001-08-18 02:36   86016 c:\windows\system32\dllcache\pctspk.exe
        + 2010-06-26 16:42 . 2001-08-17 16:11   35328 c:\windows\system32\dllcache\pcntpci5.sys
        + 2010-06-26 16:42 . 2001-08-17 16:11   29769 c:\windows\system32\dllcache\pcntn5m.sys
        + 2010-06-26 16:42 . 2001-08-17 16:11   30282 c:\windows\system32\dllcache\pcntn5hl.sys
        + 2010-06-26 16:42 . 2001-08-17 16:12   26153 c:\windows\system32\dllcache\pcmlm56.sys
        + 2010-06-26 16:42 . 2008-04-14 02:05   29502 c:\windows\system32\dllcache\pca200e.sys
        + 2010-06-26 16:42 . 2001-08-17 16:12   30495 c:\windows\system32\dllcache\pc100nds.sys
        + 2009-03-07 02:00 . 2004-08-04 11:00   31744 c:\windows\system32\dllcache\pagecnt.dll
        - 2009-03-07 02:00 . 2008-05-02 03:05   31744 c:\windows\system32\dllcache\pagecnt.dll
        - 2009-03-07 02:00 . 2008-05-02 03:05   14336 c:\windows\system32\dllcache\padrs412.dll
        + 2009-03-07 02:00 . 2004-08-04 11:00   14336 c:\windows\system32\dllcache\padrs412.dll
        + 2009-03-07 02:00 . 2004-08-04 11:00   36927 c:\windows\system32\dllcache\padrs411.dll
        - 2009-03-07 02:00 . 2008-05-02 03:05   36927 c:\windows\system32\dllcache\padrs411.dll
        + 2010-06-26 16:42 . 2001-08-18 02:36   41984 c:\windows\system32\dllcache\ovui2rc.dll
        + 2010-06-26 16:42 . 2001-08-18 02:36   44544 c:\windows\system32\dllcache\ovui2.dll
        + 2010-06-26 16:42 . 2001-08-17 18:05   25216 c:\windows\system32\dllcache\ovsound2.sys
        + 2010-06-26 16:42 . 2001-08-18 02:36   39424 c:\windows\system32\dllcache\ovcoms.exe
        + 2010-06-26 16:42 . 2001-08-18 02:36   20480 c:\windows\system32\dllcache\ovcomc.dll
        + 2010-06-26 16:42 . 2001-08-17 18:05   31872 c:\windows\system32\dllcache\ovce.sys
        + 2010-06-26 16:42 . 2001-08-17 18:05   28032 c:\windows\system32\dllcache\ovcd.sys
        + 2010-06-26 16:41 . 2001-08-17 18:05   25088 c:\windows\system32\dllcache\ovca.sys
        + 2010-06-26 16:41 . 2001-08-17 17:28   54186 c:\windows\system32\dllcache\otcsercb.sys
        + 2010-06-26 16:41 . 2001-08-17 16:12   43689 c:\windows\system32\dllcache\otceth5.sys
        + 2010-06-26 16:41 . 2001-08-17 16:12   27209 c:\windows\system32\dllcache\otc06x5.sys

        goodie2010

          Topic Starter


          Beginner

          When I woke up the scan was on 99%, i waited for 2 hrs and just stopped it.  When i stopped it, it had been running for over 12 hours.

          here's what was found, also should i check where it says delete quarantined files or just leave them alone?




          C:\Documents and Settings\Administrator\Application Data\Sun\Java\Deployment\cache\6.0\59\316e0f7b-3a1d1b30   a variant of Win32/TrojanDownloader.Unruy.BT trojan   cleaned by deleting - quarantined
          C:\Documents and Settings\Administrator\Application Data\Sun\Java\Deployment\cache\6.0\59\316e0f7b-42fba565   a variant of Win32/TrojanDownloader.Unruy.BT trojan   cleaned by deleting - quarantined
          C:\Documents and Settings\Administrator\Application Data\Sun\Java\Deployment\cache\6.0\59\316e0f7b-6d1cbaea   a variant of Win32/TrojanDownloader.Unruy.BT trojan   cleaned by deleting - quarantined
          C:\Qoobox\Quarantine\C\WINDOWS\Aluzaa.exe.vir   a variant of Win32/Kryptik.FDP trojan   cleaned by deleting - quarantined
          E:\compressed moved\Compressed\Toolbar.exe   Win32/Toolbar.AskSBar application   cleaned by deleting - quarantined
          E:\compressed moved\Compressed\flstudio8_rc3\flstudio8_rc3.exe   probably a variant of Win32/Delf trojan   deleted - quarantined
          E:\compressed moved\Compressed\Fruityloops.Studio.Producer.Edition.XXL.v8.0.0-NoPE\Fruityloops.Studio.Producer.Edition.XXL.v8.0.0-NoPE\setup\flstudio_8.0_install.exe   probably a variant of Win32/Delf trojan   deleted - quarantined
          E:\Documents\Downloads\Compressed\DivXInstaller.exe   probably a variant of Win32/Inject trojan   deleted - quarantined
          E:\Downloads from c\Compressed\Nero-8.3.6.0_eng_keygen_activation\Nero-8.3.6.0_eng+keygen+activation\Nero-8.3.6.0_eng_trial.exe   Win32/Toolbar.AskSBar application   deleted - quarantined
          E:\keygen\Keygen.exe   probably a variant of Win32/Agent trojan   cleaned by deleting - quarantined
          E:\My Documents\Downloads\Compressed\Nero.8.3.2.1.by.Dardann.CW\Nero.8.3.2.1.by.Dardann.CW\Nero-8.3.2.1_eng_trial_2.exe   Win32/Toolbar.AskSBar application   deleted - quarantined
          E:\WINDOWS\system32\mtstocom.exe   probably unknown STEALTH.POLY.CRYPT.TSR.DRIVER virus   deleted - quarantined
          F:\Seagate Backup\CS-B883B7E3273E\C\Program Files\Kingdia Software\Kingdia Video Converter\ave.exe   a variant of Win32/Kryptik.CBG trojan   cleaned by deleting - quarantined

          SuperDave

          • Malware Removal Specialist
          • Moderator


          • Genius
          • Thanked: 1020
          • Certifications: List
          • Experience: Expert
          • OS: Windows 10
          How did the SFC go? Did it find any bad files?

          Quote
          here's what was found, also should i check where it says delete quarantined files or just leave them alone?
          Just leave them. Let's try one more scan.

          Quote
          i ran sfc and put it in combofix
          What does this mean?

          Download Dr.Web CureIt to the desktop:
          Dr WebCureIt
          • Double-click the launch.exe or cureit.exe file and Allow to run the express scan
          • This will scan the files currently running in memory and when something is found, click the yes button when it asks you if you want to cure it. This is only a short scan.
          • Once the short scan has finished, just let it cure whatever it finds...

            o Now, go to Settings >> Change Settings
            o Go to Actions tab >> under Objects section, change the settings to below
            Infected objects - Cure
            Incurable objects - Report
            Suspicious objects - Report
            o Don't change any other settings
          • Start the scan again. This time, choose Complete Scan
          • Click the green arrow button at the right, and the scan will start.
          • After the scan finished, click Select all
          • Click on Cure and choose Report incurable (means take no actions.. Don't "move", or "rename" or "delete")
          • When the scan has finished, in the menu, click File and choose Save report list
          • Save the report to your Desktop. The report will be called DrWeb.csv
          • Post DrWeb.csv in your next reply (Open it as Notepad).. Do NOT reboot the computer yet..
          Windows 8 and Windows 10 dual boot with two SSD's

          goodie2010

            Topic Starter


            Beginner

            thanks Super Dave, i took well over 10 hours for the scan, i believe don't know it was still running when i went to sleep, and when i got off work.

            When i clicked on report and said i'd have to upgrade for that option, after the scan was done, i clicked cure, it didn't give me the option to report.  Anyways I saved the log, minimized the window and now its gone, its not in my task manager either.  So I don't know if the problems were removed.

            Are we almost there? I'm so frustrated i've contemplated reinstalling windows, but it says 3waredrv.sys not found. 




            srvany.exe;C:\Program Files\Paragon Software\Drive Backup 9 Professional\Net Burner Service;Program.SrvAny;;
            5BF6AA07.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.DownLoad.54095;;
            5BF6AA08.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.DownLoad.54095;;
            5BF6AB5A.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.DownLoad.54095;;
            5BF6AB71.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            5BF6AB78.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.DownLoad.54095;;
            5BF6AB8A.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.DownLoad.54095;;
            5BF6AB91.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            5BF6AB99.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.DownLoad.54095;;
            5BF6AB9D.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            5BF6AB9F.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            5BF6ABAF.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            5BF6ABB1.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            5BF6ABC3.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.DownLoad.54095;;
            5BF6ABD3.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            5BF6ABE6.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.DownLoad.54095;;
            5BF6AC00.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            5BF6AC05.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.DownLoad.54095;;
            5BF6AC11.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            5BF6AC1B.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            5BF6AC38.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            5BF6AC3E.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            5BF6AC80.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            5BF6ACB7.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            5BF6AD2B.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            5BF6AD59.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            5BF6AD83.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            5BF6ADC4.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            5BF6ADDE.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            5BF6AE1B.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            5BF6AE2B.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            5BF6AE34.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            5BF6AE5E.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            5BF6AE63.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            5BF6AE7E.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            5BF6AE88.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            5BF6AEA4.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            5BF6B03F.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.DownLoad.54095;;
            5BF6B11D.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            5BF6B13C.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            5BF6B188.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.DownLoad.54095;;
            5BF6B1BA.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            5BF6B26E.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            5BF6B27F.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.DownLoad.54095;;
            5BF6B2E0.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.DownLoad.54095;;
            5BF6B405.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.DownLoad.54095;;
            5BF6B42A.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            5BF6B4DB.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            5BF6B4E8.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            5BF6B501.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            5BF6B527.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            5BF6B592.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            5BF6B6AF.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            5BF6B7C0.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.DownLoad.54095;;
            5BF6B7D0.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            5BF6B93D.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            5BF6B95A.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            5BF6B983.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            5BF6B9B0.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            5BF6BA46.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            5BF6BA81.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            5BF6BBCB.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            5BF6BD58.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            5BF6BE07.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.DownLoad.54095;;
            5BF6BF56.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            5BF6C00D.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            5BF6C0B8.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            5BF6C0BB.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            5BF6C0CF.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            5BF6C0D0.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.DownLoad.54095;;
            5BF6C0D3.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            5F69932B.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            5F699361.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            5F699383.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            5F6994D7.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            5F6994F8.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.DownLoad.54095;;
            5F699575.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.DownLoad.54095;;
            5F6995E8.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            5F699603.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            5F6996DE.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            5F69971B.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            5F699735.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            5F699757.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            5F699785.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            5F6998A6.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            5F699965.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            5F699981.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            5F699A88.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            5F699A9B.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            5F699AE7.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.DownLoad.54095;;
            5F699B64.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.DownLoad.54095;;
            5F699C0A.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            5F699CB2.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            5F699D4A.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            5F699F4C.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            5F69A1A9.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            5F69A39E.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.DownLoad.54095;;
            5F69A4DF.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            5F69AB24.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            5F69AB74.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            5F69B174.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            5F69B2BB.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.DownLoad.54095;;
            5F69B3D4.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            5F69B4F0.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            5F69B77A.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            5F69B8F0.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.DownLoad.54095;;
            5F69BA51.VBN;C:\_OTM\MovedFiles\05152010_133750\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            06FC0002.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            06FC0012.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            06FC0016.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            06FC001C.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            06FC001F.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            06FC0023.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.DownLoad.54095;;
            06FC0026.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            06FC0030.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.DownLoad.54095;;
            06FC0038.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            06FC003B.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            06FC0046.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.DownLoad.54095;;
            06FC0051.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            06FC005A.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            06FC006F.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            06FC007A.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            06FC007B.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            06FC0088.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            06FC008A.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            06FC008D.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            06FC0095.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            06FC009E.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            06FC00AA.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            06FC00B3.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.DownLoad.54095;;
            06FC00B7.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            06FC00C1.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            06FC00C4.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            06FC00C7.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.DownLoad.54095;;
            06FC00CC.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.DownLoad.54095;;
            06FC00CD.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            06FC00D0.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            06FC00D3.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            06FC00D4.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            06FC00D8.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            06FC00D9.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            06FC00DC.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            06FC00DD.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            06FC00E1.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            06FC00EA.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.DownLoad.54095;;
            06FC00EC.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            06FC00F3.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            06FC00F5.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            06FC00FF.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            06FC0105.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            06FC0106.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            06FC0107.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            06FC0115.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            0C98053A.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            0C98053B.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            0C98054E.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            0C98054F.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            0C980552.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            0C980553.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            13E40118.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            13E40119.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            13E40172.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            13E40173.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            13E402D4.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            13E402D5.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            13E40324.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            13E40327.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            13E40328.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            13E40348.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            13E4035F.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            13E40360.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            13E40502.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            13E40503.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            13E40598.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.DownLoad.54095;;
            13E405BE.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            13E405BF.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            13E405C2.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            13E40611.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            13E40612.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            13E40630.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            13E40647.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            13E40649.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4BFDD791.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4BFDD797.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4BFDD7B7.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4BFDD7C9.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.DownLoad.54095;;
            4BFDD81C.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4BFDD848.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4BFDD939.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4BFDD93E.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4BFDD959.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4BFDD968.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4BFDD982.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4BFDDA42.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4BFDDA4D.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.DownLoad.54095;;
            4BFDDA84.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4BFDDA88.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4BFDDA8C.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.DownLoad.54095;;
            4BFDDAA8.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4BFDDB10.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4BFDDB20.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4BFDDB24.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4BFDDB7C.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4BFDDB7F.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4BFDDB87.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4BFDDB8B.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4BFDDBA4.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.DownLoad.54095;;
            4BFDDBA8.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.DownLoad.54095;;
            4BFDDBBA.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4BFDDBCC.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4BFDDBF0.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4BFDDC66.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.DownLoad.54095;;
            4BFDDC71.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4BFDDC87.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4BFDDC8A.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4BFDDCCD.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4BFDDCE0.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.DownLoad.54095;;
            4BFDDCF3.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4BFDDD7E.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.DownLoad.54095;;
            4BFDDD85.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4BFDDE93.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4BFDDEB1.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4BFDDEB3.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4BFDDEBB.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.DownLoad.54095;;
            4BFDDED0.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4BFDDED5.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4BFDDED7.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4BFDDEDA.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4BFDDEDB.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4BFDDEDE.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4BFDDEDF.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4BFE1A8E.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4BFE1A98.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4BFE1AC3.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4BFE1AC6.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4BFE1ACA.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4BFE1B09.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3D6322.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3D632D.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3D632F.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3D6338.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3D633D.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.DownLoad.54095;;
            4B3D6340.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3D6343.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3D6345.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.DownLoad.54095;;
            4B3D6382.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3D63CC.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3D63D4.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3D63D8.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3D63EC.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3D63F6.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3D63F8.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3D63FD.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3D6422.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3D6429.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3D646D.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3D6477.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3D6B36.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3D6B3E.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3D6B43.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3D6B46.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3D6B95.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3D6BCA.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.DownLoad.54095;;
            4B3D6C36.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3D6C88.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3D6CCF.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3D6CE3.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.DownLoad.54095;;
            4B3D6D3F.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3D6D46.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.DownLoad.54095;;
            4B3D6D4D.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3D6DB2.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3D6EAB.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3D6EC0.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3D6F06.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3D7115.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3D7188.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3D71AE.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3D71BF.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3D7201.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3D7213.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.DownLoad.54095;;
            4B3D7234.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3D72A1.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3D72DA.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.DownLoad.54095;;
            4B3D7345.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3D7458.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.DownLoad.54095;;
            4B3D7464.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.DownLoad.54095;;
            4B3D7499.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3D74D5.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.DownLoad.54095;;
            4B3D74F5.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3D7583.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3D75BC.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3D767C.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3D76D3.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3D7745.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3D7907.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3D79D7.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.DownLoad.54095;;
            4B3D7A39.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.DownLoad.54095;;
            4B3D7AEA.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3D7BC2.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.DownLoad.54095;;
            4B3D7C36.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3D7C59.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3D7C9D.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3D7E34.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3D7FE3.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.DownLoad.54095;;
            4B3D80C2.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.DownLoad.54095;;
            4B3D8145.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3D81E6.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3D821C.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3D8463.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3D84FE.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.DownLoad.54095;;
            4B3D8647.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3D885B.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3D88AD.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.DownLoad.54095;;
            4B3D89B5.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.DownLoad.54095;;
            4B3D89D1.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3D8A88.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3D8B4F.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3D8C10.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3D8C7D.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.DownLoad.54095;;
            4B3D90D0.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3D9174.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.DownLoad.54095;;
            4B3D918F.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3D9353.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3D9454.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3D94A3.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3D952A.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3D95E6.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.DownLoad.54095;;
            4B3D98A7.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3D98BF.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3D9B89.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3D9C11.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.DownLoad.54095;;
            4B3D9D24.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3D9D79.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3D9D8F.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3D9E0C.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3D9E4C.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3D9EA1.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3D9F35.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3D9F4A.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3D9F73.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3D9FA1.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3DA0FD.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3DA144.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3DA1E2.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.DownLoad.54095;;
            4B3DA20F.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3DA27E.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3DA295.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3DA2E9.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3DA314.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3DA36B.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3DA37F.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3DA395.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3DA3AB.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3DA4F6.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3DA713.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3DA784.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3DA7C7.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3DA942.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.DownLoad.54095;;
            4B3DA96C.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3DA9F2.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3DAAAB.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3DAC3D.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3DAC55.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3DACB2.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3DACCB.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3DAD42.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3DAD6C.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3DAFA7.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3DB1A1.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3DB239.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3DB33B.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3DB414.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3DB47F.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3DB4D5.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3DB568.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3DB57D.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.DownLoad.54095;;
            4B3DB5D3.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3DB63E.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3DB67C.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3DB691.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3DBBC3.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3DBC2D.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3DBC6E.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3DBF41.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3DBF81.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3DC184.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.DownLoad.54095;;
            4B3DC22F.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Ed;Trojan.Click.34193;;
            4B3DC343.VBN;C:\_OTM\MovedFiles\05152010_134900\C_Documents and Settings\All Users\Application Da

            SuperDave

            • Malware Removal Specialist
            • Moderator


            • Genius
            • Thanked: 1020
            • Certifications: List
            • Experience: Expert
            • OS: Windows 10
            What program produced this log?

            Quote
            but it says 3waredrv.sys not found.
            Are you getting this message as soon as you try to re-install the OS or does it come later in the process?


            Quote
            Are we almost there?
            I'm quite sure your computer is clean. I just want to have another on-line done on it. Let's try another one.

            Please uninstall your copy of MBAM and download a new one to see if it will run.

            Please download Malwarebytes Anti-Malware from here.

            Double Click mbam-setup.exe to install the application.
            • Make sure a checkmark is placed next to Update Malwarebytes' Anti-Malware and Launch Malwarebytes Anti-Malware, then click Finish.
            • If an update is found, it will download and install the latest version.
            • Once the program has loaded, select "Perform Full Scan", then click Scan.
            • The scan may take some time to finish,so please be patient.
            • When the scan is complete, click OK, then Show Results to view the results.
            • Make sure that everything is checked, and click Remove Selected.
            • When disinfection is completed, a log will open in Notepad and you may be prompted to Restart. (See Extra Note)
            • Please save the log to a location you will remember.
            • The log is automatically saved by MBAM and can be viewed by clicking the Logs tab in MBAM.
            • Copy and paste the entire report in your next reply.
            Extra Note:

            If MBAM encounters a file that is difficult to remove,you will be presented with 1 of 2 prompts,click OK to either and let MBAM proceed with the disinfection process. If asked to restart the computer, please do so immediately.

            ==========================================

            Scan your computer with Panda ActiveScan

            * Once you are on the Panda site click the Scan your PC now button.
            * A new window will open...click the Scan Now button.
            * If it wants to install an ActiveX component allow it.
            * It will start downloading the files it requires for the scan. (Note: It may take a couple of minutes)
            * You may get a warning from Internet Explorer that Panda is ready to install, please allow it.
            * The scan will begin. Please be patient as it can take an hour or more to complete.
            * When the scan completes, if anything malicious is detected, click the Export to: button (looks like a little Notepad).
            * Save the ActiveScan.txt to a convenient location like your desktop.
            * Note: You do not need to select any of the Disinfect options. We will remove any threats manually.

            * Post the contents of the ActiveScan report in your next reply.
            Windows 8 and Windows 10 dual boot with two SSD's

            goodie2010

              Topic Starter


              Beginner

              Thx I'm. Typing this on my phone. Should be home i an hour.  I'll try mbam again it hasn' been working but when I get in I'll. Try again.  Error comes up soon as. I start windows repair.  Pardon the grammar typing on phone. Thx

              goodie2010

                Topic Starter


                Beginner

                i uninstalled mbam, downloaded the link you provided and while installing i got the same error message initially reported in my original post "runtime 372 vbalgrid.ocx"    I also put my xp cd in my old computer and it ran fine, but when i put it in this computer it gave me that missing driver error. thanks

                SuperDave

                • Malware Removal Specialist
                • Moderator


                • Genius
                • Thanked: 1020
                • Certifications: List
                • Experience: Expert
                • OS: Windows 10
                That missing driver error could be caused by a defective CD or DVD drive.  Were you able to run the Panda Scan?
                Windows 8 and Windows 10 dual boot with two SSD's

                goodie2010

                  Topic Starter


                  Beginner

                  there's no error with the xp, it works fine in my other computer, a friend also let me hold an xp sp3 cd, it gives me the same driver error 3 seconds after i click setup on boot from cd.  I put both cds in my old computer and they run fine.

                  it says active x can't download, i've tried in firefox and ie.

                  SuperDave

                  • Malware Removal Specialist
                  • Moderator


                  • Genius
                  • Thanked: 1020
                  • Certifications: List
                  • Experience: Expert
                  • OS: Windows 10
                  It's not usually a problem with the OS disk. It's the CD-Rom drive that could be defective. I'm going to get some help with this problem. I'll be back.
                  Windows 8 and Windows 10 dual boot with two SSD's

                  goodie2010

                    Topic Starter


                    Beginner

                    ok, thanks, by the way, the cd rom drive has been playing everything smoothly, burning disk, etc..... thanks